Click on screenshot to zoom
Danger level 9
Type: Malware
Common infection symptoms:
  • Block exe files from running
  • Installs itself without permissions
  • Connects to the internet without permission
  • Slow Computer

Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden!

Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! Virus is a ransomware and you should remove this clandestine Windows threat without further hesitations. The malicious program is activated by the Devdar Trojan, and this particular infection may hide from detection and removal. Even though the Trojan may hide, you should recognize its existence as soon as the PC becomes locked and a bogus alert, allegedly presented by the FBI and ICSPA, is presented. Unfortunately, many gullible computer users do not recognize this as a scam, partially due to the attached credentials of reputable cyber security departments. Even though the names are legitimate – they have been attached illegally. Note that you may also face these credentials when dealing with the FBI Cybercrime Division Virus and the International Cyber Security Protection Alliance Virus. Have you found them running on the PC? Then remove them at once. If you wish to delete Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! Virus – continue reading.

The upper part of the fake ransomware alert is dedicated to the logos and names of the aforementioned law enforcement departments. Below you can see a fragment of the Austrian flag, and there is no doubt that the main target for schemers behind this threat is the Austrian Windows users. Unfortunately, such clones as the Datamaskinen har blitt låst og alle dine data ble kryptert Virus or the Tietokoneessa on lukittu ja kaikki tiedot on salattu Virus may target other countries as well. Once schemers create an illusion that the police have taken over your system, you are presented with the Paysafecard and Ukash payment systems. Note that they have been attached to a number of different ransomware scams and you should not trust them if they are linked to any virtual scams. After this – the misleading alert follows:

WARNUNG! Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden!
Ihr Computer wurde blockiert und alle Ihre Dateien verschlüsselt wurden. […]

Verbot der Einfuhr, Herstellung und Distribution – Es darf keine Person zu importieren, herstellen oder vertreiben jede digitale Audio-Aufnahmegerät oder digitalen Audio-Schnittselle. Gerät, das nicht entspricht […]

The bogus accusations are followed by the demand to pay a fine of €200. You should ignore the fine and the scary-looking threats of imprisonment or even larger fines. Scare tactics are used by schemers to make you pay a fine which has no legal base. If you still have doubts, you should contact the official FBI offices. In the meantime, you must delete Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! Virus from the system and we recommend using a reliable automatic spyware detection and removal tool which will also delete the Trojan. Here are the removal instructions which will help you perform the task.

How to Delete Ransomware?

Remove from Windows 8:

  1. Launch Internet Explorer from the Metro UI start screen.
  2. Type http://www.pcthreat.com/download-sph into the address box and tap Enter.
  3. Follow the instructions to download and install SpyHunter.
  4. Once the tool is installed onto the PC – delete spyware.

Remove from Windows Vista/Windows 7:

  1. Restart the PC, wait for the BIOS screen to disappear and immediately start tapping the F8 key.
  2. Using arrow keys select Safe Mode with Networking and tap Enter.
  3. Download SpyHunter.
  4. Install it onto the PC, perform a system scan and delete detected infections.

Remove from Windows XP:

  1. Restart the computer.
  2. Once BIOS loads up – start tapping F8.
  3. Use arrow keys to select Safe Mode with Networking.
  4. Tap Enter.
  5. Click YES for the Desktop alert.
  6. Open the Start menu.
  7. Launch RUN, enter msconfig and click OK.
  8. Click the Startup tab in the System Configuration Utility.
  9. Select Disable All and click OK.
  10. Download the automatic spyware removal tool SpyHunter.
  11. Restart the PC.
  12. Install the application and remove existing infections.
Download Spyware Removal Tool to Remove* Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden!
  • Quick & tested solution for Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! removal.
  • 100% Free Scan for Windows
disclaimer

How to manually remove Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden!

Files associated with Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! infection:

DLL321.dll
pYunY8m4VL3qLc.exe
yaiiwockc.dll
%LOCALAPPDATA%\lollipop
msn.exe
Updating.exe
aPr0hY9.exe
crack.exe
DA0B.exe
m2PythonLoader.exe
skype.dat
wjthvwjb.dss
bzsbkotiu.exe
csrsss.exe
Task Scheduler.exe
audipbrd.exe
hwj3ba6j.dss
TimeDateMUICallback.exe
%WINDIR%\system32
ex3b.dll
n.
pmstcdjwz.exe
bf8h8d02hf.exe
87b2cb3916261d5c807bf44262755cb0.exe
%AppData%
2084473.dll
oygqyunapnp.exe
dtkmujvo.exe
administration.exe
p1.exe
Nbt.exe
ifgxpers.exe
acuvzomo.exe
OmaSG21e.exe
wlsidten.dll
uenovfiu.exe
setex.exe
%SystemDrive%\????????????
sqlncli.exe
%WINDIR%\Temp
msnmsgrr.exe
questscan.dll
msavfit.exe
C87C.exe
jsdhlexdqkllnbcxgai.bfg
dqnbdq7.dss
xmlfilter.exe
%ALLUSERSPROFILE%
00b5d693.exe
cf6640a77ed4926a4c6be661ab93def9d13408753dd07e8d02836996a2f247b6.exe
brenasa.exe
SyncHostps.exe
dyjdl.exe
ctfmon.exe
wgsdgsdgdsgsd.exe
VaultSysUi.exe
msdtmsrd.exe
wlsidten.exe
96dddda4.dll
Firewallservice.exe
%LOCALAPPDATA%\Temp
ssntvs.exe
NTServiceManager.exe
zqmkrehUkpoKfsafsaZg.exe
rool0_pk.exe
scvhost.exe
gcrwcoak.exe
{097444e7-2d87-ba3c-2efe-9f54812d824a}.exe
svchost.exe
msshell.exe
%APPDATA%\system
ubvhynpxh.exe
MusicCollector.exe
xctqakcqbeo.dll
idiokbbrv.exe
魔法桌面第三方主题破解补丁V1.1.exe
00qbipeq.exe
obvwo.exe
JfCqQ5JC.exe
Other.res
50E1.exe
wahneaqa.exe
%CommonProgramFiles%
xlqbteeb.exe
UpgradeHelper.exe
UpdatePriv.exe
bvhylsviw.exe
wpbt0.dll
najeoxtt.exe
securitywindrv.exe
taskhost.exe.exe
%APPDATA%\Task Scheduler
WinSyncMetastore.exe
puozlkmyj.dll
ACEIEAddOn.dll
xaZYOVJW.exe
systemcpl.exe
b34btbztdb0vavaw.exe
comeo.exe
iner.exe
rvcbcyks.exe
Q3d38543.exe
ieudator.dll
install_0_msi.exe
%ALLUSERSPROFILE%\Application Data
secproc_isv.exe
%APPDATA%\updates
WINDED6.exe
%UserProfile%
mplayer2.exe
Piranha.exe
%TEMP%
3511172082012Build.exe
videotwisterSA.exe

Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! DLL's to remove:

ex3b.dll
yaiiwockc.dll
DLL321.dll
ieudator.dll
puozlkmyj.dll
wlsidten.dll
2084473.dll
wpbt0.dll
ACEIEAddOn.dll
questscan.dll
96dddda4.dll
xctqakcqbeo.dll

Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! processes to kill:

OmaSG21e.exe
UpdatePriv.exe
ifgxpers.exe
pmstcdjwz.exe
m2PythonLoader.exe
csrsss.exe
Updating.exe
bzsbkotiu.exe
xaZYOVJW.exe
videotwisterSA.exe
wgsdgsdgdsgsd.exe
oygqyunapnp.exe
najeoxtt.exe
Task Scheduler.exe
administration.exe
WINDED6.exe
obvwo.exe
bvhylsviw.exe
gcrwcoak.exe
iner.exe
Firewallservice.exe
acuvzomo.exe
aPr0hY9.exe
NTServiceManager.exe
xlqbteeb.exe
zqmkrehUkpoKfsafsaZg.exe
setex.exe
cf6640a77ed4926a4c6be661ab93def9d13408753dd07e8d02836996a2f247b6.exe
WinSyncMetastore.exe
audipbrd.exe
uenovfiu.exe
C87C.exe
msn.exe
ctfmon.exe
{097444e7-2d87-ba3c-2efe-9f54812d824a}.exe
Nbt.exe
wlsidten.exe
secproc_isv.exe
sqlncli.exe
scvhost.exe
TimeDateMUICallback.exe
dtkmujvo.exe
idiokbbrv.exe
taskhost.exe.exe
00b5d693.exe
msshell.exe
p1.exe
Piranha.exe
rvcbcyks.exe
ssntvs.exe
crack.exe
mplayer2.exe
comeo.exe
SyncHostps.exe
bf8h8d02hf.exe
wahneaqa.exe
ubvhynpxh.exe
install_0_msi.exe
魔法桌面第三方主题破解补丁V1.1.exe
50E1.exe
UpgradeHelper.exe
pYunY8m4VL3qLc.exe
systemcpl.exe
dyjdl.exe
msavfit.exe
rool0_pk.exe
3511172082012Build.exe
brenasa.exe
JfCqQ5JC.exe
00qbipeq.exe
xmlfilter.exe
Q3d38543.exe
DA0B.exe
svchost.exe
securitywindrv.exe
VaultSysUi.exe
msnmsgrr.exe
MusicCollector.exe
87b2cb3916261d5c807bf44262755cb0.exe
msdtmsrd.exe
b34btbztdb0vavaw.exe
Disclaimer

Post comment — WE NEED YOUR OPINION!

Comment:
Name:
Please enter security code:
This is a captcha-picture. It is used to prevent mass-access by robots.