Trojan.Reveton.F

Trojan.Reveton.F is a computer infection that is a constituent part of a ransomware program that attacks users in various countries. When Trojan.Reveton.F gets into the target computer it locks the computer by blocking desktop access and displaying a localized message that covers the entire screen. Trojan.Reveton.F "knows" which language to display the message in, because it finds out the user's locale from his IP address. The message comes with a demand to pay a release fee, otherwise the user will face an imprisonment due to the fact that he supposedly possesses some illicit material.

Unlike rogues' interfaces that can be minimized, the full-screen message displayed by Trojan.Reveton.F basically renders the computer unusable. Not to mention that this ransomware pretends to be a representative of a legal institution, so a lot of users do get scared and pay their money for something they haven't done. But little do they know that, even if they spend their money, Trojan.Reveton.F does not disappear and the computer is still cannot be used.

Trojan.Reveton.F is directly related to Trojan.Reveton.A and similar to Trojan.Ransom.FL. It is a part of a wide Ukash ransomware infection scheme, that appear in many names and forms. For example, here are the English and Italian versions of the message displayed:

Attention!!!
Under the laws of the United Kingdom and investigation of Metropolitan Police Serve and Strathclyde Police Your computer is locked to prevent illegal activity in the network.

To unlock the computer you are obliged, within 48 hours of receiving notice to pay a fine of £ 100.

Attenzione!!!
E stata rivelata un'attivita illegale. Il sistema operativo e stata bloccata per una violenza deile leggi della Rebubblica Italiana!

Per togliere il bloccaggio devi pagare una multa di 100 euro.

Apart from installing the ransomware, Trojan.Reveton.F can also connect to a remote server in order to download and install such malicious programs as PWS:Win32/Reveton.A, putting your personal information at risk of being leaked.

Since with the ransomware active you cannot access the desktop, you should restart your computer and then press F8 while the system boots in order to load Safe Mode with Networking. Within this mode you can access the Internet and acquire a reliable antimalware program that will remove Trojan.Reveton.F from your computer in no time. Of course, you can also try removing Trojan.Reveton.F on your own, but that is not a good idea if you are not a computer expert.

Download Spyware Removal Tool to Remove* Trojan.Reveton.F
  • Quick & tested solution for Trojan.Reveton.F removal.
  • 100% Free Scan for Windows
Click on screenshot to zoom
Danger level 6
Type: Trojans
Common infection symptoms:
  • Annoying Pop-up's
  • Block exe files from running
  • Blocks internet connection
  • Connects to the internet without permission
  • Installs itself without permissions
  • Shows commercial adverts
  • Slow internet connection
  • System crashes

How to manually remove Trojan.Reveton.F

Files associated with Trojan.Reveton.F infection:

0.9640741931733952.tmp
windowsupdate.dll
vqoxo.dll
0.23296068646586143.tmp
alg.dll
3c28b0e4.dll
icq.dll
wlsidten.dll
roper0dun.exe
deo0_sar.exe
spoolsv.dll
acrobat.dll
conhost.dll
java.dll
glom0_og.exe
teamviewer.dll
wgsdgsdgdsgsd.exe
wpbt0.dll
mstsc.dll
iop0__cha.exe
rundll32.dll
install_0_msi.exe
roper0dun.exe
ctfmon.dll
flashplayer.dll
skype.dll
0.5190671714222374.tmp
jucheck.dll
notepad.dll
139d2e78.dll
jqs.dll
googleupdate.dll
72d87ef8.dll
install_0_msi.exe
0.75324418272234.tmp
0.9043946102160106.tmp

Trojan.Reveton.F DLL's to remove:

vqoxo.dll
mstsc.dll
conhost.dll
skype.dll
139d2e78.dll
java.dll
spoolsv.dll
windowsupdate.dll
icq.dll
flashplayer.dll
acrobat.dll
3c28b0e4.dll
72d87ef8.dll
wpbt0.dll
alg.dll
jqs.dll
jucheck.dll
googleupdate.dll
rundll32.dll
ctfmon.dll
teamviewer.dll
wlsidten.dll
notepad.dll

Trojan.Reveton.F processes to kill:

glom0_og.exe
install_0_msi.exe
iop0__cha.exe
install_0_msi.exe
roper0dun.exe
roper0dun.exe
deo0_sar.exe
roper0dun.exe
wgsdgsdgdsgsd.exe
Disclaimer

Post comment — WE NEED YOUR OPINION!

Comment:
Name:
Please enter security code:
This is a captcha-picture. It is used to prevent mass-access by robots.