Short Bio

This detection is for the Pony spyware that steals all kinds of data from affected computers. These computers are then added to a botnet, and the stolen data get sent to C2 servers where the threat actor can view them by logging into an administration panel.

Common infection method

Most of the time, Pony is spread by malicious mail attachments.


Malwarebytes can remove Spyware.Pony without further user interaction. However, it is recommended to change all passwords that could have been stolen from the affected system.

Cybersecurity info you can’t do without

Want to stay informed on the latest news in cybersecurity? Sign up for our newsletter and learn how to protect your computer from threats.

Select your language