Click on screenshot to zoom
Danger level 9
Type: Malware
Common infection symptoms:
  • Block exe files from running
  • Installs itself without permissions
  • Connects to the internet without permission
  • Slow Computer

Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden!

Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! Virus is a ransomware and you should remove this clandestine Windows threat without further hesitations. The malicious program is activated by the Devdar Trojan, and this particular infection may hide from detection and removal. Even though the Trojan may hide, you should recognize its existence as soon as the PC becomes locked and a bogus alert, allegedly presented by the FBI and ICSPA, is presented. Unfortunately, many gullible computer users do not recognize this as a scam, partially due to the attached credentials of reputable cyber security departments. Even though the names are legitimate – they have been attached illegally. Note that you may also face these credentials when dealing with the FBI Cybercrime Division Virus and the International Cyber Security Protection Alliance Virus. Have you found them running on the PC? Then remove them at once. If you wish to delete Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! Virus – continue reading.

The upper part of the fake ransomware alert is dedicated to the logos and names of the aforementioned law enforcement departments. Below you can see a fragment of the Austrian flag, and there is no doubt that the main target for schemers behind this threat is the Austrian Windows users. Unfortunately, such clones as the Datamaskinen har blitt låst og alle dine data ble kryptert Virus or the Tietokoneessa on lukittu ja kaikki tiedot on salattu Virus may target other countries as well. Once schemers create an illusion that the police have taken over your system, you are presented with the Paysafecard and Ukash payment systems. Note that they have been attached to a number of different ransomware scams and you should not trust them if they are linked to any virtual scams. After this – the misleading alert follows:

WARNUNG! Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden!
Ihr Computer wurde blockiert und alle Ihre Dateien verschlüsselt wurden. […]

Verbot der Einfuhr, Herstellung und Distribution – Es darf keine Person zu importieren, herstellen oder vertreiben jede digitale Audio-Aufnahmegerät oder digitalen Audio-Schnittselle. Gerät, das nicht entspricht […]

The bogus accusations are followed by the demand to pay a fine of €200. You should ignore the fine and the scary-looking threats of imprisonment or even larger fines. Scare tactics are used by schemers to make you pay a fine which has no legal base. If you still have doubts, you should contact the official FBI offices. In the meantime, you must delete Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! Virus from the system and we recommend using a reliable automatic spyware detection and removal tool which will also delete the Trojan. Here are the removal instructions which will help you perform the task.

How to Delete Ransomware?

Remove from Windows 8:

  1. Launch Internet Explorer from the Metro UI start screen.
  2. Type http://www.pcthreat.com/download-sph into the address box and tap Enter.
  3. Follow the instructions to download and install SpyHunter.
  4. Once the tool is installed onto the PC – delete spyware.

Remove from Windows Vista/Windows 7:

  1. Restart the PC, wait for the BIOS screen to disappear and immediately start tapping the F8 key.
  2. Using arrow keys select Safe Mode with Networking and tap Enter.
  3. Download SpyHunter.
  4. Install it onto the PC, perform a system scan and delete detected infections.

Remove from Windows XP:

  1. Restart the computer.
  2. Once BIOS loads up – start tapping F8.
  3. Use arrow keys to select Safe Mode with Networking.
  4. Tap Enter.
  5. Click YES for the Desktop alert.
  6. Open the Start menu.
  7. Launch RUN, enter msconfig and click OK.
  8. Click the Startup tab in the System Configuration Utility.
  9. Select Disable All and click OK.
  10. Download the automatic spyware removal tool SpyHunter.
  11. Restart the PC.
  12. Install the application and remove existing infections.
Download Spyware Removal Tool to Remove* Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden!
  • Quick & tested solution for Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! removal.
  • 100% Free Scan for Windows
disclaimer

How to manually remove Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden!

Files associated with Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! infection:

b34btbztdb0vavaw.exe
xmlfilter.exe
wlsidten.dll
50E1.exe
bzsbkotiu.exe
%ALLUSERSPROFILE%\Application Data
DA0B.exe
Other.res
WinSyncMetastore.exe
aPr0hY9.exe
SyncHostps.exe
ubvhynpxh.exe
skype.dat
puozlkmyj.dll
pmstcdjwz.exe
obvwo.exe
wjthvwjb.dss
acuvzomo.exe
MusicCollector.exe
Updating.exe
msavfit.exe
brenasa.exe
UpdatePriv.exe
securitywindrv.exe
魔法桌面第三方主题破解补丁V1.1.exe
uenovfiu.exe
n.
bf8h8d02hf.exe
wpbt0.dll
idiokbbrv.exe
ctfmon.exe
rvcbcyks.exe
JfCqQ5JC.exe
gcrwcoak.exe
systemcpl.exe
ssntvs.exe
jsdhlexdqkllnbcxgai.bfg
Nbt.exe
C87C.exe
oygqyunapnp.exe
secproc_isv.exe
%CommonProgramFiles%
crack.exe
96dddda4.dll
ex3b.dll
TimeDateMUICallback.exe
OmaSG21e.exe
wlsidten.exe
pYunY8m4VL3qLc.exe
UpgradeHelper.exe
%ALLUSERSPROFILE%
p1.exe
%LOCALAPPDATA%\Temp
sqlncli.exe
DLL321.dll
wahneaqa.exe
%WINDIR%\system32
yaiiwockc.dll
m2PythonLoader.exe
ifgxpers.exe
msn.exe
WINDED6.exe
taskhost.exe.exe
3511172082012Build.exe
VaultSysUi.exe
NTServiceManager.exe
dtkmujvo.exe
install_0_msi.exe
mplayer2.exe
hwj3ba6j.dss
%AppData%
87b2cb3916261d5c807bf44262755cb0.exe
svchost.exe
videotwisterSA.exe
%APPDATA%\system
questscan.dll
2084473.dll
xlqbteeb.exe
%WINDIR%\Temp
audipbrd.exe
cf6640a77ed4926a4c6be661ab93def9d13408753dd07e8d02836996a2f247b6.exe
%TEMP%
setex.exe
%SystemDrive%\????????????
%LOCALAPPDATA%\lollipop
comeo.exe
{097444e7-2d87-ba3c-2efe-9f54812d824a}.exe
xaZYOVJW.exe
dqnbdq7.dss
Q3d38543.exe
administration.exe
Firewallservice.exe
csrsss.exe
bvhylsviw.exe
Piranha.exe
msdtmsrd.exe
dyjdl.exe
Task Scheduler.exe
msshell.exe
scvhost.exe
najeoxtt.exe
rool0_pk.exe
%APPDATA%\Task Scheduler
00qbipeq.exe
msnmsgrr.exe
wgsdgsdgdsgsd.exe
ieudator.dll
00b5d693.exe
%UserProfile%
ACEIEAddOn.dll
iner.exe
zqmkrehUkpoKfsafsaZg.exe
xctqakcqbeo.dll
%APPDATA%\updates

Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! DLL's to remove:

96dddda4.dll
puozlkmyj.dll
questscan.dll
wpbt0.dll
wlsidten.dll
ACEIEAddOn.dll
yaiiwockc.dll
2084473.dll
xctqakcqbeo.dll
ieudator.dll
DLL321.dll
ex3b.dll

Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! processes to kill:

Nbt.exe
TimeDateMUICallback.exe
xmlfilter.exe
zqmkrehUkpoKfsafsaZg.exe
rool0_pk.exe
wlsidten.exe
taskhost.exe.exe
VaultSysUi.exe
魔法桌面第三方主题破解补丁V1.1.exe
install_0_msi.exe
87b2cb3916261d5c807bf44262755cb0.exe
iner.exe
Q3d38543.exe
oygqyunapnp.exe
msn.exe
msavfit.exe
WINDED6.exe
aPr0hY9.exe
systemcpl.exe
rvcbcyks.exe
msshell.exe
DA0B.exe
dyjdl.exe
scvhost.exe
b34btbztdb0vavaw.exe
{097444e7-2d87-ba3c-2efe-9f54812d824a}.exe
msnmsgrr.exe
wahneaqa.exe
Updating.exe
obvwo.exe
Task Scheduler.exe
dtkmujvo.exe
ssntvs.exe
audipbrd.exe
JfCqQ5JC.exe
C87C.exe
m2PythonLoader.exe
MusicCollector.exe
00b5d693.exe
secproc_isv.exe
WinSyncMetastore.exe
Piranha.exe
00qbipeq.exe
videotwisterSA.exe
NTServiceManager.exe
p1.exe
ubvhynpxh.exe
sqlncli.exe
bf8h8d02hf.exe
csrsss.exe
cf6640a77ed4926a4c6be661ab93def9d13408753dd07e8d02836996a2f247b6.exe
Firewallservice.exe
bzsbkotiu.exe
setex.exe
brenasa.exe
pYunY8m4VL3qLc.exe
crack.exe
najeoxtt.exe
OmaSG21e.exe
acuvzomo.exe
mplayer2.exe
3511172082012Build.exe
pmstcdjwz.exe
securitywindrv.exe
UpgradeHelper.exe
bvhylsviw.exe
comeo.exe
svchost.exe
administration.exe
SyncHostps.exe
uenovfiu.exe
msdtmsrd.exe
idiokbbrv.exe
xlqbteeb.exe
50E1.exe
gcrwcoak.exe
ctfmon.exe
wgsdgsdgdsgsd.exe
UpdatePriv.exe
ifgxpers.exe
xaZYOVJW.exe
Disclaimer

Post comment — WE NEED YOUR OPINION!

Comment:
Name:
Please enter security code:
This is a captcha-picture. It is used to prevent mass-access by robots.