Spy

How to remove “Win32/Spy.Agent.POX”?

Malware Removal

The Win32/Spy.Agent.POX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Spy.Agent.POX virus can do?

  • A process created a hidden window
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs

How to determine Win32/Spy.Agent.POX?


File Info:

crc32: 76338363
md5: d160d0845b654c3aa23552ac0a3725a7
name: D160D0845B654C3AA23552AC0A3725A7.mlw
sha1: a9cc72e785cbd46abcdf7cf90f57beca46c29fab
sha256: 0e6fadc64284167473bfc8eb22987852a8a8e8cb323548d2e2efdfb26354adb3
sha512: 112c6a9b296db6d51cb49cb2a1a1ff0dcb9c2a7650fe9b2883405ce0cca50723c1d1a7879b18c31c920c0795f03733fb4104db42619ff80a3a770e0cd4911649
ssdeep: 24576:EfKNFce//g1AnmWlpavbVZ00nMMqIemSeWJjnjhV6f6YqT7k8:EflQtajVeyMXgs/H6f6YqTw8
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Spy.Agent.POX also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.40897242
FireEyeTrojan.GenericKD.40897242
McAfeePWS-FCNU!D160D0845B65
CylanceUnsafe
ZillyaTrojan.Fsysna.Win32.16877
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojanSpy:Win32/Fsysna.5f3d20af
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.45b654
InvinceaMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34634.JwW@a4WozKli
SymantecML.Attribute.HighConfidence
APEXMalicious
KasperskyTrojan.Win32.Fsysna.ezcy
BitDefenderTrojan.GenericKD.40897242
NANO-AntivirusTrojan.Win32.Fsysna.fmzjpq
Paloaltogeneric.ml
RisingTrojan.Generic@ML.95 (RDMK:GMJV6VavN+O6D/IeyGXbMA)
Ad-AwareTrojan.GenericKD.40897242
EmsisoftTrojan.GenericKD.40897242 (B)
F-SecureHeuristic.HEUR/AGEN.1102515
DrWebTrojan.DownLoader30.28350
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionPWS-FCNU!D160D0845B65
SophosMal/Generic-S
IkarusTrojan-Spy.Agent
GDataTrojan.GenericKD.40897242
JiangminTrojan.Fsysna.lkl
AviraHEUR/AGEN.1102515
Antiy-AVLTrojan/Win32.Fsysna
ArcabitTrojan.Generic.D2700ADA
AegisLabTrojan.Win32.Fsysna.4!c
ZoneAlarmTrojan.Win32.Fsysna.ezcy
MicrosoftTrojanSpy:Win32/Fsysna.RL!MTB
CynetMalicious (score: 85)
AhnLab-V3Malware/Gen.Generic.C2921383
VBA32Trojan.Fsysna
ALYacTrojan.Agent.Fsysna
TACHYONTrojan/W32.Fsysna.2681344
ESET-NOD32a variant of Win32/Spy.Agent.POX
TencentMalware.Win32.Gencirc.114d76d1
eGambitUnsafe.AI_Score_99%
FortinetW32/Fsysna.EZCY!tr
MaxSecureTrojan.Malware.73763370.susgen
AVGFileRepMalware
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Win32/Backdoor.f0a

How to remove Win32/Spy.Agent.POX?

Win32/Spy.Agent.POX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment