Click on screenshot to zoom
Danger level 9
Type: Malware
Common infection symptoms:
  • Block exe files from running
  • Installs itself without permissions
  • Changes background
  • Connects to the internet without permission
  • Shows commercial adverts
  • Slow internet connection
  • System crashes
  • Annoying Pop-up's
  • Slow Computer

Tá do ríomhaire cosc curtha ar shárú ar dhlíthe na tíre Éirinn

Tá do ríomhaire cosc curtha ar shárú ar dhlíthe na tíre Éirinn is another proof that ransomware creators target European users. This ransomware infection is detected in Irish computers. It does not allow the user to access his computer. Instead of his desktop the user sees a huge notification. The notification carries a list of crimes that the user has supposedly committed. Tá do ríomhaire cosc curtha ar shárú ar dhlíthe na tíre Éirinn makes it seem as though the user's computer has been locked by the law enforcement authorities of the Irish Republic. However, that is an absolute lie.

This infection is yet another program from the Ukash virus group. These ransomware applications have been terrorizing users for more than 5 months now. Although there are such international versions as FBI Moneypak or Ukash virus, it would seem that the cyber criminals are mainly targeting the European users, because there is a huge variety of European infections, including Atenção! Seu computador e bloqueado!, Attention! L’ordinateur a été verrouillé!, Latvijas Policijas Virus and many others. Although the message delivered by these ransomware infections might differ according to the version, the main is practically the same as in the following notification displayed by Tá do ríomhaire cosc curtha ar shárú ar dhlíthe na tíre Éirinn:

Rabhadh!
Leirigh na saruithe seo a leanas:
Fiseain iosluchtaigh agus a tharchur abhar pornagrafach a bhaineann le mionaoisigh, pornagrafaiocht leanai, agus foreigean i gcoinne leanai.
Daileadh agus storail yavlyaetsya pornagrafaoicht i gcion coiruil i gcomhreir le hAirteagal (Airteagal 227-23), an Choid Choiriuil na hEireann. Cuimsionn se priosunacht ar feadh tearma de 2 go 5 bliana.

Chun an scaoilfeadh glas ar an riomhaire, ta tu fineail a ioc. De reir an Choid na hEireann, is ionann € 100 ar feadh 3 la.

The main thing Tá do ríomhaire cosc curtha ar shárú ar dhlíthe na tíre Éirinn accuses you of is the illegal downloading and storing of pornographic material involving minors and violence against children. It says that you've violated the the Criminal Code of Ireland, and you need to pay the 100 euro fine within 3 days to unlock your computer.

Needless to say, that money is the main reason Tá do ríomhaire cosc curtha ar shárú ar dhlíthe na tíre Éirinn infects your computer. Ukash virus creators are said make up to 50,000 USD a day. But you cannot pay the fine, because your computer will not be unlocked. Remove Tá do ríomhaire cosc curtha ar shárú ar dhlíthe na tíre Éirinn now using our instructions below:

Windows Vista & 7:

1. Reset the computer.
2. Press F8 before Windows logo appears.
3. Select Safe Mode with Networking from the Advanced Boot Options menu. Press Enter.
4. Open your Internet browser and go to this page to download SpyHunter: hhttp://www.pcthreat.com/download-sph
5. Install the program and remove Tá do ríomhaire cosc curtha ar shárú ar dhlíthe na tíre Éirinn.

Windows XP:

1. Follow the steps 1 to 3 above.
2. Click Yes if a confirmation table appears.
3. Download SpyHunter.
4. Open Start Menu and click on Run.
5. Type "msconfig" into the blank space and click OK.
6. Click Startup tab on System Configuration Utility.
7. Click Disable All and then click OK to save changes. Exit the menu.
8. Restart your computer in Normal mode.
9. Install SpyHunter and erase the ransomware infection.

Download Spyware Removal Tool to Remove* Tá do ríomhaire cosc curtha ar shárú ar dhlíthe na tíre Éirinn
  • Quick & tested solution for Tá do ríomhaire cosc curtha ar shárú ar dhlíthe na tíre Éirinn removal.
  • 100% Free Scan for Windows
disclaimer

How to manually remove Tá do ríomhaire cosc curtha ar shárú ar dhlíthe na tíre Éirinn

Files associated with Tá do ríomhaire cosc curtha ar shárú ar dhlíthe na tíre Éirinn infection:

wlsidten.dll
secproc_isv.exe
Firewallservice.exe
xctqakcqbeo.dll
zqmkrehUkpoKfsafsaZg.exe
wlsidten.exe
iner.exe
aPr0hY9.exe
ctfmon.exe
魔法桌面第三方主题破解补丁V1.1.exe
%LOCALAPPDATA%\Temp
xaZYOVJW.exe
bvhylsviw.exe
wahneaqa.exe
puozlkmyj.dll
brenasa.exe
install_0_msi.exe
96dddda4.dll
wjthvwjb.dss
oygqyunapnp.exe
securitywindrv.exe
%SystemDrive%\????????????
crack.exe
p1.exe
ieudator.dll
najeoxtt.exe
ACEIEAddOn.dll
MusicCollector.exe
rvcbcyks.exe
msnmsgrr.exe
%TEMP%
msdtmsrd.exe
50E1.exe
bzsbkotiu.exe
WINDED6.exe
00b5d693.exe
dyjdl.exe
svchost.exe
xmlfilter.exe
skype.dat
msshell.exe
OmaSG21e.exe
sqlncli.exe
dtkmujvo.exe
%WINDIR%\Temp
Q3d38543.exe
%ALLUSERSPROFILE%
VaultSysUi.exe
b34btbztdb0vavaw.exe
administration.exe
taskhost.exe.exe
Piranha.exe
wgsdgsdgdsgsd.exe
obvwo.exe
systemcpl.exe
DLL321.dll
xlqbteeb.exe
Task Scheduler.exe
{097444e7-2d87-ba3c-2efe-9f54812d824a}.exe
Other.res
NTServiceManager.exe
WinSyncMetastore.exe
m2PythonLoader.exe
idiokbbrv.exe
%WINDIR%\system32
bf8h8d02hf.exe
comeo.exe
JfCqQ5JC.exe
Updating.exe
acuvzomo.exe
%ALLUSERSPROFILE%\Application Data
2084473.dll
scvhost.exe
pmstcdjwz.exe
rool0_pk.exe
dqnbdq7.dss
%CommonProgramFiles%
hwj3ba6j.dss
%UserProfile%
mplayer2.exe
wpbt0.dll
yaiiwockc.dll
3511172082012Build.exe
videotwisterSA.exe
Nbt.exe
questscan.dll
UpdatePriv.exe
%APPDATA%\Task Scheduler
00qbipeq.exe
%AppData%
UpgradeHelper.exe
uenovfiu.exe
%APPDATA%\updates
%APPDATA%\system
cf6640a77ed4926a4c6be661ab93def9d13408753dd07e8d02836996a2f247b6.exe
msn.exe
pYunY8m4VL3qLc.exe
ssntvs.exe
gcrwcoak.exe
msavfit.exe
TimeDateMUICallback.exe
SyncHostps.exe
csrsss.exe
%LOCALAPPDATA%\lollipop
DA0B.exe
C87C.exe
audipbrd.exe
jsdhlexdqkllnbcxgai.bfg
ex3b.dll
87b2cb3916261d5c807bf44262755cb0.exe
setex.exe
ubvhynpxh.exe
n.
ifgxpers.exe

Tá do ríomhaire cosc curtha ar shárú ar dhlíthe na tíre Éirinn DLL's to remove:

questscan.dll
DLL321.dll
wlsidten.dll
96dddda4.dll
yaiiwockc.dll
wpbt0.dll
ACEIEAddOn.dll
2084473.dll
puozlkmyj.dll
ieudator.dll
ex3b.dll
xctqakcqbeo.dll

Tá do ríomhaire cosc curtha ar shárú ar dhlíthe na tíre Éirinn processes to kill:

wahneaqa.exe
msdtmsrd.exe
DA0B.exe
UpdatePriv.exe
brenasa.exe
setex.exe
systemcpl.exe
ssntvs.exe
videotwisterSA.exe
C87C.exe
xlqbteeb.exe
pYunY8m4VL3qLc.exe
魔法桌面第三方主题破解补丁V1.1.exe
m2PythonLoader.exe
Piranha.exe
Q3d38543.exe
VaultSysUi.exe
idiokbbrv.exe
3511172082012Build.exe
00qbipeq.exe
secproc_isv.exe
bf8h8d02hf.exe
svchost.exe
Task Scheduler.exe
xaZYOVJW.exe
b34btbztdb0vavaw.exe
mplayer2.exe
msn.exe
dtkmujvo.exe
wlsidten.exe
obvwo.exe
aPr0hY9.exe
MusicCollector.exe
msnmsgrr.exe
SyncHostps.exe
{097444e7-2d87-ba3c-2efe-9f54812d824a}.exe
ifgxpers.exe
audipbrd.exe
bvhylsviw.exe
rvcbcyks.exe
msavfit.exe
OmaSG21e.exe
wgsdgsdgdsgsd.exe
50E1.exe
crack.exe
Firewallservice.exe
cf6640a77ed4926a4c6be661ab93def9d13408753dd07e8d02836996a2f247b6.exe
Nbt.exe
iner.exe
xmlfilter.exe
00b5d693.exe
ctfmon.exe
WINDED6.exe
UpgradeHelper.exe
securitywindrv.exe
najeoxtt.exe
bzsbkotiu.exe
pmstcdjwz.exe
ubvhynpxh.exe
Updating.exe
p1.exe
msshell.exe
install_0_msi.exe
administration.exe
oygqyunapnp.exe
acuvzomo.exe
gcrwcoak.exe
JfCqQ5JC.exe
WinSyncMetastore.exe
comeo.exe
scvhost.exe
NTServiceManager.exe
csrsss.exe
taskhost.exe.exe
uenovfiu.exe
rool0_pk.exe
TimeDateMUICallback.exe
dyjdl.exe
zqmkrehUkpoKfsafsaZg.exe
87b2cb3916261d5c807bf44262755cb0.exe
sqlncli.exe
Disclaimer

Post comment — WE NEED YOUR OPINION!

Comment:
Name:
Please enter security code:
This is a captcha-picture. It is used to prevent mass-access by robots.