Spy

Win32/Spy.Agent.PNO information

Malware Removal

The Win32/Spy.Agent.PNO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Spy.Agent.PNO virus can do?

  • Steals private information from local Internet browsers
  • Attempts to access Bitcoin/ALTCoin wallets
  • Harvests credentials from local FTP client softwares

Related domains:

f0424303.xsph.ru

How to determine Win32/Spy.Agent.PNO?


File Info:

crc32: 4E000CFF
md5: 9b538c3e32135cbb2680451d98ab2dd1
name: leakhost.exe
sha1: 9ab89dd2df79f9350f8b56fa51f408e66da26fed
sha256: e71dbf4ef089a6d2cc07041eeab2dae4f92602f84c9af6625f20c79091dd84b7
sha512: 092b3bc8d2f02447b46578b2808abb16b7510f79d56ed19812a785c0ca55348b91a1bd7350dd054f95352b40fdad2f9ae64f72207106bb575878efc5f00db39f
ssdeep: 6144:BONAsJwl++/d7Lk4nPTrHJ9K4AWQaYRuohRDENm2eK7mnoUSgpAY8ODcDcm7cIs:4NAdl++Vs4PTLJ9KZWvY9f
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Spy.Agent.PNO also known as:

BkavW32.AIDetectVM.malware
MicroWorld-eScanTrojan.Agent.EKMC
FireEyeGeneric.mg.9b538c3e32135cbb
CAT-QuickHealTrojan.Mauvaise.SL1
Qihoo-360Win32/Trojan.PSW.a88
McAfeeGenericRXGN-FO!9B538C3E3213
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusSpyware ( 0053ee831 )
BitDefenderTrojan.Agent.EKMC
K7GWSpyware ( 0053ee831 )
CrowdStrikewin/malicious_confidence_90% (W)
Invinceaheuristic
F-ProtW32/Ulise.Z.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Malware.Predator-7194940-0
GDataTrojan.Agent.EKMC
KasperskyTrojan-PSW.Win32.Predator.nt
AlibabaTrojanPSW:Win32/Predator.ac286690
AegisLabTrojan.Win32.Predator.tpTt
RisingSpyware.Agent!8.C6 (CLOUD)
Ad-AwareTrojan.Agent.EKMC
EmsisoftTrojan.Agent.EKMC (B)
ComodoBackdoor.Win32.PredatorThief.A@822tr2
F-SecureTrojan.TR/AD.PredatorThief.A
DrWebTrojan.PWS.Stealer.25463
ZillyaBackdoor.Predator.Win32.17
TrendMicroTrojanSpy.Win32.PREDATOR.SMTH
McAfee-GW-EditionGenericRXGN-FO!9B538C3E3213
IkarusWin32.Outbreak
CyrenW32/Ulise.Z.gen!Eldorado
JiangminTrojanDownloader.Agent.fsmk
WebrootW32.Malware.Gen
AviraTR/AD.PredatorThief.A
MAXmalware (ai score=84)
Antiy-AVLTrojan[Backdoor]/Win32.Predator
Endgamemalicious (high confidence)
ArcabitTrojan.Agent.EKMC
SUPERAntiSpywareTrojan.Agent/Gen-Spy
ZoneAlarmTrojan-PSW.Win32.Predator.nt
MicrosoftTrojan:Win32/Predator.J!MTB
AhnLab-V3Trojan/Win32.Agent.R261059
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34106.rqW@aex6U0ki
ALYacTrojan.Agent.EKMC
TACHYONBackdoor/W32.Predator.283136
VBA32TrojanPSW.Stealer
MalwarebytesSpyware.PredatorTheThief
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/Spy.Agent.PNO
TrendMicro-HouseCallTrojanSpy.Win32.PREDATOR.SMTH
TencentMalware.Win32.Gencirc.10b080ad
YandexBackdoor.Predator!N0qmL+/3j/8
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_91%
FortinetW32/Agent.POT!tr
AVGWin32:CrypterX-gen [Trj]
Cybereasonmalicious.e32135
AvastWin32:CrypterX-gen [Trj]
MaxSecureTrojan.Malware.73694961.susgen

How to remove Win32/Spy.Agent.PNO?

Win32/Spy.Agent.PNO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment