We received the file DEVIL3.EXE and detected that DEVIL3.EXE is not good.
DEVIL3.EXE is Adware. You should remove the file DEVIL3.EXE.
Kill the process DEVIL3.EXE and remove DEVIL3.EXE from Windows.
Malware Analysis of DEVIL3.EXE
Full path on a computer: %SysDir%\Devil3.exe
Detected by UnHackMe:
DEVIL3.EXE
Default location: %SysDir%\Devil3.exe
Removal Results: Success
Number of reboot: 1
DEVIL3.EXE is known as:
BackDoor.Devil, BehavesLike.Malware.ssc (mx-v), BDS.Delf.HG, Troj.Delf-HG, Backdoor.Devil3, Trojan.Agent.Gen-Autorun[Swisyn], W32.Backdoor.DWJB-4965, Trojan.Xema, Backdoor.Trojan.rem, Win32.Delf.HG, Trojan-PWS.Lmir.mw, W32.Delf.HG.tr.bdr, BackDoor.Delf.DW
DEVIL3.EXE hash:
- MD5: 743824411414097bae5aeceef637efdd
How to quickly detect DEVIL3.EXE presence?
Registry:
- HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\load: “%SysDir%\Devil3.exe”
Files:
- %SysDir%\Devil3.exe
- %SysDir%\DevilFollower.dll