Start to remove Backdoor:Win32/Darkmoon.A now!
Backdoor:Win32/Darkmoon.A description and removal instruction

Backdoor:Win32/Darkmoon.A

Free Backdoor:Win32/Darkmoon.A Scan

Technical information
Payload
Removal instructions

Technical information

The Backdoor:Win32/Darkmoon.A will install rogue security software Registry Booster 2012 into the affected computers without users knowledge. The Backdoor:Win32/Darkmoon.A file size is 3584 bytes.

Payload

Once launched, the Backdoor:Win32/Darkmoon.A performs the following actions:

  • Download rogue security tool Registry Booster 2012 from the following domains:
    http://www.registrybooster.com/
  • Modify the properties of the following files:
    %SYSTEMROOT%:\WINDOWS\System32\\api-ms-win-core-interlocked-l1-1-0.dll

    (3584 bytes; detected by HitMalware as " Backdoor:Win32/Darkmoon.A")
  • Removal instructions

    If your machine doesn't have antivirus/antispyware, please take the following steps to resolve the problems caused by Backdoor:Win32/Darkmoon.A:

    1. Replace the infected file api-ms-win-core-interlocked-l1-1-0.dll for free by using api-ms-win-core-interlocked-l1-1-0.dll repair tool - DLL Suite. See how to replace api-ms-win-core-interlocked-l1-1-0.dll by using DLL Suite.

    2. Perform a full Backdoor:Win32/Darkmoon.A scan by using the latest antivirus/antispyware HitMalware.
    (Download Trial Version Now)

    MD5: 56578945657894


    How to replace api-ms-win-core-interlocked-l1-1-0.dll by using DLL Suite

  • Download DLL Suite, install and run
  • Click "Start Scan" button to check api-ms-win-core-interlocked-l1-1-0.dll file
  • Choose api-ms-win-core-interlocked-l1-1-0.dll and click "More Information"
  • Download api-ms-win-core-interlocked-l1-1-0.dll for free from the open web page
  • Save api-ms-win-core-interlocked-l1-1-0.dll to its default folder to replace infected api-ms-win-core-interlocked-l1-1-0.dll file.
  • Download Backdoor:Win32/Darkmoon.A Removal Tool Now

    Download Backdoor:Win32/Darkmoon.A Removal Tool Now