In this article, I am going to clarify the way the Blackmoon trojan injected right into your PC, and how to eliminate Blackmoon trojan virus.
What is Blackmoon trojan?
Name | Blackmoon |
Infection Type | Trojan |
Symptoms |
|
Similar behavior | Wagex, Destroyer, Libie, Wihien, Redonc, Sedato |
Fix Tool | See If Your System Has Been Affected by Blackmoon trojan |

Trojan viruses are among the leading malware kinds by its injection frequency for quite a very long time. And now, throughout the pandemic, when malware got tremendously active, trojan viruses boosted their activity, too. You can see lots of messages on diverse resources, where people are complaining concerning the Blackmoon trojan virus in their computer systems, and requesting aid with Blackmoon trojan virus clearing.
Trojan Blackmoon is a type of virus that injects into your system, and afterwards executes different malicious functions. These features rely on a kind of Blackmoon trojan: it may work as a downloader for other malware or as a launcher for an additional destructive program which is downloaded in addition to the Blackmoon trojan. Over the last two years, trojans are likewise dispersed through email add-ons, and most of situations used for phishing or ransomware infiltration.
Blackmoon2 also known as
Bkav | W32.AIDetectMalware |
Lionic | Trojan.Win32.Razy.4!c |
tehtris | Generic.Malware |
MicroWorld-eScan | Gen:Variant.Razy.653494 |
Skyhigh | GenericRXFQ-KD!17A531F940F3 |
ALYac | Gen:Variant.Razy.653494 |
Malwarebytes | MachineLearning/Anomalous.96% |
Sangfor | Suspicious.Win32.Save.a |
Alibaba | Trojan:Win32/Blackmoon.db1138e0 |
CrowdStrike | win/grayware_confidence_60% (D) |
Arcabit | Trojan.Razy.D9F8B6 |
Symantec | ML.Attribute.HighConfidence |
Elastic | malicious (moderate confidence) |
ESET-NOD32 | a variant of Win32/Packed.BlackMoon.A suspicious |
Cynet | Malicious (score: 100) |
APEX | Malicious |
ClamAV | Win.Dropper.Tiggre-9845940-0 |
BitDefender | Gen:Variant.Razy.653494 |
NANO-Antivirus | Trojan.Win32.Mlw.ghwbus |
Avast | Win32:Malware-gen |
Emsisoft | Gen:Variant.Razy.653494 (B) |
F-Secure | Trojan.TR/Crypt.XPACK.Gen3 |
VIPRE | Gen:Variant.Razy.653494 |
FireEye | Gen:Variant.Razy.653494 |
Sophos | Generic Reputation PUA (PUA) |
SentinelOne | Static AI – Malicious PE |
Varist | W32/Blackmoon.CM.gen!Eldorado |
Avira | TR/Crypt.XPACK.Gen3 |
MAX | malware (ai score=80) |
Antiy-AVL | Trojan/Win32.Fuery |
Xcitium | Packed.Win32.MUPX.Gen@24tbus |
Microsoft | Trojan:Win32/Blackmoon!mclg |
GData | Win32.Trojan-Stealer.BlackMoon.D |
Detected | |
McAfee | Artemis!C65EA52A36BA |
VBA32 | BScope.Trojan.Blamon |
Cylance | unsafe |
Panda | Trj/GdSda.A |
Rising | Trojan.Blackmoon!8.FBD3 (CLOUD) |
Yandex | Riskware.BlackMoon!C1dd5fpTXWc |
Ikarus | PUA.PUPStudio |
MaxSecure | Trojan.Malware.300983.susgen |
Fortinet | Riskware/Blackmoon |
BitDefenderTheta | Gen:NN.ZexaF.36792.ymGfaqMtVuei |
AVG | Win32:Malware-gen |
DeepInstinct | MALICIOUS |
What are the symptoms of Blackmoon trojan?
- The binary contains an unknown PE section name indicative of packing;
- The binary likely contains encrypted or compressed data.;
- The executable is compressed using UPX;
- Authenticode signature is invalid;
- Yara rule detections observed from a process memory dump/dropped files/CAPE;
The usual indicator of the Blackmoon trojan virus is a steady appearance of various malware – adware, browser hijackers, and so on. Because of the activity of these destructive programs, your PC comes to be extremely sluggish: malware utilizes large quantities of RAM and CPU capabilities.
Another detectable impact of the Blackmoon trojan virus existence is unknown programs displayed in task manager. Sometimes, these processes might try to simulate system processes, but you can recognize that they are not legit by looking at the source of these tasks. Quasi system applications and Blackmoon trojan’s processes are always specified as a user’s tasks, not as a system’s.
How to remove Blackmoon trojan virus?
- Download and install Loaris Trojan Remover.
- Open Loaris and perform a “Standard scan“.
- “Move to quarantine” all items.
- Open “Tools” tab – Press “Reset Browser Settings“.
- Approve the reset pressing “Yes” button in the appeared window.
- Restart your computer.
To eliminate Blackmoon trojan and also ensure that all extra malware, downloaded with the help of this trojan, will be deleted, too, I’d recommend you to use Loaris Trojan Remover.

Blackmoon removal guide
To spot and delete all malicious programs on your computer using Loaris, it’s better to make use of Standard or Full scan. Removable scan, as well as Custom, will check only specified locations, so these types of scans are not able to provide the full information.
You can see the detects till the scan process lasts. However, to perform any actions against spotted malicious programs, you need to wait until the scan is over, or to stop the scan.
To designate the special action for each detected malicious programs, choose the button in front of the detection name of detected viruses. By default, all malicious programs will be moved to quarantine.
How to remove Blackmoon Trojan?

Name: Blackmoon
Description: Trojan Blackmoon is a kind of virus that infiltrates into your computer, and after that performs different destructive functions. These features depend upon a type of Blackmoon trojan: it can act as a downloader for many other malware or as a launcher for another destructive program which is downloaded in addition to the Blackmoon trojan. During the last two years, trojans are also dispersed via e-mail attachments, and most of situations utilized for phishing or ransomware infiltration.
Operating System: Windows
Application Category: Trojan
User Review
( votes)- What is Trojan Horse: https://en.wikipedia.org/wiki/Trojan_horse_(computing)
- Blackmoon VirusTotal Report: https://www.virustotal.com/api/v3/files/be00d9e920ee6d88eb87362549047ca8c565c05621e06252536fd25ed2b763e0