How to remove SmallAgent Spyware from PC?

In this post, I am going to inform you about the signs of SmallAgent spyware presence, as well as the way to remove SmallAgent spyware virus from your personal computer.

GridinSoft Anti-Malware
Editor's choice
GridinSoft Anti-Malware
Manual SmallAgent removal might be a lengthy and complicated process that requires expert skills. GridinSoft Anti-Malware is a professional antivirus tool that is recommended to get rid of this SmallAgent spyware trojan.
By downloading any software listed on this website you agree to our Privacy Policy and Terms of Use. To use full-featured product, you have to purchase a license for GridinSoft Anti-Malware. 6 days free trial available.

Describing SmallAgent spyware

SmallAgent TrojanSpy as the virus is not an autonomous program, but a part of far bigger as well as complicated malware – trojan-stealer. It’s a sort of trojan, which is targeted on your private data, and also collects really whatever about you and also your PC. Usually, stealers have keylogger functions1, which let them to capture your keystrokes. In addition to that, this virus can collect your cookie files, your mobile number, location; it likewise can thieve all your passwords from the keychain within the web browser.

Name SmallAgent
Infection Type Spyware
  • Authenticode signature is invalid;
  • CAPE detected the RedLine malware family;
Similar behavior Treemz, Keodoct, Logsnif
Fix Tool

See If Your System Has Been Affected by SmallAgent spyware

Nonetheless, the substantial share of SmallAgent spy are seeking for your banking information: credit card number, safety codes as well as expiration date. In case if you use online banking, the SmallAgent stealer virus has the ability to compromise your login and password, so the criminals will get access to your financial account. Different corporate data can also be an item of attention of SmallAgent virus distributors, and in the situation of big companies such information pass can create catastrophic impacts.

Statistics of spyware activity in 2020
TrojanSpy activity in 2020, compared to backdoor viruses activity

The major distribution methods of SmallAgent spyware are comparable to other trojans. Nowadays, the majority of such applications are dispersed through e-mail attachments. These additions (. docx,. pdf files) contain corrupted macroses, that are used by SmallAgent spy to corrupt your system. In some cases, such mails include web links to the phishing copies of legitimate sites, like Facebook, Twitter, LinkedIn or so.

Related Articles
Rating of different spyware activity

Most popular spyware in 20202

It is very important to mention that there is an autonomous group of spyware – for Android operating system. Such applications have comparable capabilities as the computer version does, however, mobile malware is spread as an official app for tracking the spouse’s or kids’s area. Nevertheless, besides taking various private data, it can also reveal you a totally incorrect geographic location of the gadget you are attempting to track. Such scenarios may cause quarrels out of the blue.

How can I understand that my computer is infected with SmallAgent spyware?

SmallAgent spy is a pretty stealth malware, because its performance depends upon how much time it will function prior to being tracked. So, SmallAgent spyware producers made everything to make their app existence as imperceptible as possible. Certainly, you will discover that your accounts in social networks are stolen, as well as money from your bank account is moving away, however it is too late.

SmallAgent also known as

Lionic Trojan.Win32.Bulz.4!c
tehtris Generic.Malware
Cynet Malicious (score: 100)
FireEye Generic.mg.e707761ecdead507
Skyhigh BehavesLike.Win32.Generic.zm
ALYac Gen:Trojan.Mardom.PN.11
Cylance unsafe
Sangfor Trojan.Win32.Save.a
CrowdStrike win/malicious_confidence_100% (W)
Alibaba TrojanSpy:MSIL/SmallAgent.79b2a945
K7GW Trojan ( 00576c111 )
K7AntiVirus Trojan ( 00576c111 )
BitDefenderTheta Gen:NN.ZemsilF.36792.am0@aexVNDn
VirIT Trojan.Win32.Dnldr36.CBXE
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of MSIL/Agent.TZL
APEX Malicious
ClamAV Win.Malware.Msilkrypt-9839010-0
Kaspersky HEUR:Trojan.MSIL.Agent.gen
BitDefender Gen:Trojan.Mardom.PN.11
MicroWorld-eScan Gen:Trojan.Mardom.PN.11
Avast Win32:MalwareX-gen [Trj]
Tencent Trojan.Win32.Generic.zc
TACHYON Trojan/W32.DN-Agent.9728.AW
Sophos Troj/MSIL-PNC
F-Secure Heuristic.HEUR/AGEN.1308474
DrWeb Trojan.DownLoader36.36430
VIPRE Gen:Trojan.Mardom.PN.11
TrendMicro Trojan.MSIL.USICE.SMJCDP2
Emsisoft Gen:Trojan.Mardom.PN.11 (B)
SentinelOne Static AI – Malicious PE
Varist W32/MSIL_Troj.AHV.gen!Eldorado
Avira HEUR/AGEN.1308474
Antiy-AVL GrayWare/MSIL.Smallagent.a
Kingsoft malware.kb.c.946
Microsoft TrojanSpy:MSIL/SmallAgent.SBR!MSR
Arcabit Trojan.Mardom.PN.11
ZoneAlarm HEUR:Trojan.MSIL.Agent.gen
GData MSIL.Trojan.Agent.AXW
Google Detected
AhnLab-V3 Malware/Win.Generic.R375015
McAfee GenericRXMU-QB!E707761ECDEA
MAX malware (ai score=85)
VBA32 Trojan.MSIL.Krypt
Malwarebytes Generic.Malware/Suspicious
Panda Trj/GdSda.A
Rising Trojan.Agent!1.D274 (CLASSIC)
Ikarus Trojan-Downloader.MSIL.Agent
MaxSecure Trojan.Malware.300983.susgen
Fortinet MSIL/SmallAgent.A!tr
AVG Win32:MalwareX-gen [Trj]
DeepInstinct MALICIOUS

Domains that associated with SmallAgent:

What are the symptoms of SmallAgent trojan?

  • Authenticode signature is invalid;
  • CAPE detected the RedLine malware family;

To prevent injection of SmallAgent spyware, stay away from launching any kind of attachments to the e-mails from unfamiliar addresses. Nowadays, at the time of quarantine, email-distributed malware becomes way more active. Users (particularly ones that started buying every little thing on online-marketplaces) do not pay attention to the weird email addresses, and open everything that gets to their email. And SmallAgent stealer is right in such messages.

How to remove SmallAgent spyware?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • “Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

You can try to do it manually, nonetheless, like any other trojan, SmallAgent TrojanSpy applies the changes very deep within the system. For this reason, it’s incredibly difficult to spot all these changes, and even more challenging to clean up them out. To deal with this unsafe malware totally, I can advise you to make use of GridinSoft Anti-Malware.


To detect and erase all unwanted programs on your computer with GridinSoft Anti-Malware, it’s better to use Standard or Full scan. Quick Scan is not able to find all viruses, because it scans only the most popular registry entries and directories.

Scan types in Gridinsoft Anti-Malware

You can spectate the detected malicious items sorted by their possible hazard till the scan process. But to perform any actions against malware, you need to wait until the scan is finished, or to stop the scan.

GridinSoft Anti-Malware during the scan

To set the action for every spotted virus or unwanted program, click the arrow in front of the name of detected malware. By default, all malware will be removed to quarantine.

List of detected malware after the scan

How to remove SmallAgent Spyware?

Name: SmallAgent

Description: SmallAgent TrojanSpy is classified as a type of malware — malicious software designed to gain access to or damage your computer, often without your knowledge. The SmallAgent gathers your personal information and relays it to advertisers, data firms, or external users. The SmallAgent can install additional software and change the security settings on your PC.

Operating System: Windows

Application Category: Spyware

User Review
4.09 (11 votes)
Comments Rating 0 (0 reviews)
  1. What is Spyware: https://en.wikipedia.org/wiki/Spyware
  2. ESET quaterly report: ESET_Threat_Report_Q22020.pdf

William Reddy

I am from Ireland. My parents bought me a computer when I was 11, and several month after I have got a virus on this PC. I decided to enter the INSA Centre Val de Loire university after being graduated from the school. This French educational institution was offering a brand-new cybersecurity course. After getting the master degree in cybersecurity, I've started working in as virus analyst in a little anti-malware vendor. In 2018, I've decided to start Virus Removal project. The main target of this site is to help people to deal with PC viruses of any kind.

Leave a Reply

Your email address will not be published. Required fields are marked *


Back to top button