Start to remove Backdoor:Win32/Darkmoon.E now!
Backdoor:Win32/Darkmoon.E description and removal instruction

Backdoor:Win32/Darkmoon.E

Free Backdoor:Win32/Darkmoon.E Scan

Technical information
Payload
Removal instructions

Technical information

The Backdoor:Win32/Darkmoon.E will install rogue security software Cleanup Assistant into the affected machines without users knowledge. The Backdoor:Win32/Darkmoon.E file size is 149056 bytes.

Payload

Once launched, the Backdoor:Win32/Darkmoon.E performs the following actions:

  • Download rogue security tool Cleanup Assistant from the following domains:
    http://www.dbsoft.be/
  • Modify the properties of the following files:
    %SYSTEMROOT%:\WINDOWS\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_95cfb4ced8afab0e\\nvraid.sys

    (149056 bytes; detected by HitMalware as " Backdoor:Win32/Darkmoon.E")
  • Removal instructions

    If your machine doesn't have antivirus/antispyware, please take the following steps to resolve the problems caused by Backdoor:Win32/Darkmoon.E:

    1. Replace the infected file nvraid.sys for free by using nvraid.sys repair tool - DLL Suite. See how to replace nvraid.sys by using DLL Suite.

    2. Perform a full Backdoor:Win32/Darkmoon.E scan by using the latest antivirus/antispyware HitMalware.
    (Download Trial Version Now)

    MD5: 73907627390762


    How to replace nvraid.sys by using DLL Suite

  • Download DLL Suite, install and run
  • Click "Start Scan" button to check nvraid.sys file
  • Choose nvraid.sys and click "More Information"
  • Download nvraid.sys for free from the open web page
  • Save nvraid.sys to its default folder to replace infected nvraid.sys file.
  • Download Backdoor:Win32/Darkmoon.E Removal Tool Now

    Download Backdoor:Win32/Darkmoon.E Removal Tool Now