Click on screenshot to zoom
Danger level 9
Type: Malware
Common infection symptoms:
  • Block exe files from running
  • Installs itself without permissions
  • Connects to the internet without permission
  • Slow Computer

Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden!

Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! Virus is a ransomware and you should remove this clandestine Windows threat without further hesitations. The malicious program is activated by the Devdar Trojan, and this particular infection may hide from detection and removal. Even though the Trojan may hide, you should recognize its existence as soon as the PC becomes locked and a bogus alert, allegedly presented by the FBI and ICSPA, is presented. Unfortunately, many gullible computer users do not recognize this as a scam, partially due to the attached credentials of reputable cyber security departments. Even though the names are legitimate – they have been attached illegally. Note that you may also face these credentials when dealing with the FBI Cybercrime Division Virus and the International Cyber Security Protection Alliance Virus. Have you found them running on the PC? Then remove them at once. If you wish to delete Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! Virus – continue reading.

The upper part of the fake ransomware alert is dedicated to the logos and names of the aforementioned law enforcement departments. Below you can see a fragment of the Austrian flag, and there is no doubt that the main target for schemers behind this threat is the Austrian Windows users. Unfortunately, such clones as the Datamaskinen har blitt låst og alle dine data ble kryptert Virus or the Tietokoneessa on lukittu ja kaikki tiedot on salattu Virus may target other countries as well. Once schemers create an illusion that the police have taken over your system, you are presented with the Paysafecard and Ukash payment systems. Note that they have been attached to a number of different ransomware scams and you should not trust them if they are linked to any virtual scams. After this – the misleading alert follows:

WARNUNG! Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden!
Ihr Computer wurde blockiert und alle Ihre Dateien verschlüsselt wurden. […]

Verbot der Einfuhr, Herstellung und Distribution – Es darf keine Person zu importieren, herstellen oder vertreiben jede digitale Audio-Aufnahmegerät oder digitalen Audio-Schnittselle. Gerät, das nicht entspricht […]

The bogus accusations are followed by the demand to pay a fine of €200. You should ignore the fine and the scary-looking threats of imprisonment or even larger fines. Scare tactics are used by schemers to make you pay a fine which has no legal base. If you still have doubts, you should contact the official FBI offices. In the meantime, you must delete Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! Virus from the system and we recommend using a reliable automatic spyware detection and removal tool which will also delete the Trojan. Here are the removal instructions which will help you perform the task.

How to Delete Ransomware?

Remove from Windows 8:

  1. Launch Internet Explorer from the Metro UI start screen.
  2. Type http://www.pcthreat.com/download-sph into the address box and tap Enter.
  3. Follow the instructions to download and install SpyHunter.
  4. Once the tool is installed onto the PC – delete spyware.

Remove from Windows Vista/Windows 7:

  1. Restart the PC, wait for the BIOS screen to disappear and immediately start tapping the F8 key.
  2. Using arrow keys select Safe Mode with Networking and tap Enter.
  3. Download SpyHunter.
  4. Install it onto the PC, perform a system scan and delete detected infections.

Remove from Windows XP:

  1. Restart the computer.
  2. Once BIOS loads up – start tapping F8.
  3. Use arrow keys to select Safe Mode with Networking.
  4. Tap Enter.
  5. Click YES for the Desktop alert.
  6. Open the Start menu.
  7. Launch RUN, enter msconfig and click OK.
  8. Click the Startup tab in the System Configuration Utility.
  9. Select Disable All and click OK.
  10. Download the automatic spyware removal tool SpyHunter.
  11. Restart the PC.
  12. Install the application and remove existing infections.
Download Spyware Removal Tool to Remove* Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden!
  • Quick & tested solution for Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! removal.
  • 100% Free Scan for Windows
disclaimer

How to manually remove Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden!

Files associated with Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! infection:

b34btbztdb0vavaw.exe
dyjdl.exe
TimeDateMUICallback.exe
msshell.exe
%APPDATA%\system
%LOCALAPPDATA%\Temp
%UserProfile%
魔法桌面第三方主题破解补丁V1.1.exe
sqlncli.exe
wpbt0.dll
jsdhlexdqkllnbcxgai.bfg
puozlkmyj.dll
UpgradeHelper.exe
ssntvs.exe
ex3b.dll
videotwisterSA.exe
skype.dat
dqnbdq7.dss
bvhylsviw.exe
%SystemDrive%\????????????
aPr0hY9.exe
wjthvwjb.dss
obvwo.exe
bf8h8d02hf.exe
msn.exe
{097444e7-2d87-ba3c-2efe-9f54812d824a}.exe
questscan.dll
VaultSysUi.exe
scvhost.exe
wlsidten.dll
administration.exe
Firewallservice.exe
msavfit.exe
yaiiwockc.dll
rool0_pk.exe
%APPDATA%\Task Scheduler
MusicCollector.exe
%WINDIR%\Temp
audipbrd.exe
secproc_isv.exe
00qbipeq.exe
mplayer2.exe
install_0_msi.exe
uenovfiu.exe
xmlfilter.exe
OmaSG21e.exe
wlsidten.exe
cf6640a77ed4926a4c6be661ab93def9d13408753dd07e8d02836996a2f247b6.exe
%WINDIR%\system32
wahneaqa.exe
96dddda4.dll
Updating.exe
m2PythonLoader.exe
ubvhynpxh.exe
bzsbkotiu.exe
p1.exe
xctqakcqbeo.dll
%TEMP%
%LOCALAPPDATA%\lollipop
Piranha.exe
xaZYOVJW.exe
ctfmon.exe
pYunY8m4VL3qLc.exe
%APPDATA%\updates
xlqbteeb.exe
87b2cb3916261d5c807bf44262755cb0.exe
brenasa.exe
csrsss.exe
DLL321.dll
taskhost.exe.exe
gcrwcoak.exe
%ALLUSERSPROFILE%
2084473.dll
50E1.exe
pmstcdjwz.exe
idiokbbrv.exe
NTServiceManager.exe
Other.res
wgsdgsdgdsgsd.exe
%CommonProgramFiles%
ieudator.dll
00b5d693.exe
iner.exe
oygqyunapnp.exe
C87C.exe
n.
systemcpl.exe
svchost.exe
crack.exe
rvcbcyks.exe
Task Scheduler.exe
ACEIEAddOn.dll
comeo.exe
msnmsgrr.exe
WINDED6.exe
najeoxtt.exe
SyncHostps.exe
securitywindrv.exe
DA0B.exe
Nbt.exe
JfCqQ5JC.exe
Q3d38543.exe
hwj3ba6j.dss
setex.exe
UpdatePriv.exe
WinSyncMetastore.exe
ifgxpers.exe
zqmkrehUkpoKfsafsaZg.exe
%ALLUSERSPROFILE%\Application Data
msdtmsrd.exe
3511172082012Build.exe
acuvzomo.exe
dtkmujvo.exe
%AppData%

Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! DLL's to remove:

puozlkmyj.dll
96dddda4.dll
xctqakcqbeo.dll
2084473.dll
ex3b.dll
wpbt0.dll
wlsidten.dll
ACEIEAddOn.dll
yaiiwockc.dll
questscan.dll
ieudator.dll
DLL321.dll

Ihr Computer wurde gesperrt und alle Daten verschlüsselt wurden! processes to kill:

uenovfiu.exe
UpdatePriv.exe
idiokbbrv.exe
sqlncli.exe
acuvzomo.exe
bf8h8d02hf.exe
UpgradeHelper.exe
msavfit.exe
00qbipeq.exe
50E1.exe
xlqbteeb.exe
{097444e7-2d87-ba3c-2efe-9f54812d824a}.exe
Firewallservice.exe
wahneaqa.exe
comeo.exe
00b5d693.exe
oygqyunapnp.exe
OmaSG21e.exe
zqmkrehUkpoKfsafsaZg.exe
bzsbkotiu.exe
Piranha.exe
iner.exe
bvhylsviw.exe
3511172082012Build.exe
svchost.exe
mplayer2.exe
msn.exe
VaultSysUi.exe
dtkmujvo.exe
m2PythonLoader.exe
administration.exe
brenasa.exe
pmstcdjwz.exe
msnmsgrr.exe
scvhost.exe
b34btbztdb0vavaw.exe
pYunY8m4VL3qLc.exe
aPr0hY9.exe
crack.exe
xmlfilter.exe
secproc_isv.exe
ubvhynpxh.exe
audipbrd.exe
obvwo.exe
Task Scheduler.exe
xaZYOVJW.exe
rvcbcyks.exe
Updating.exe
wgsdgsdgdsgsd.exe
cf6640a77ed4926a4c6be661ab93def9d13408753dd07e8d02836996a2f247b6.exe
csrsss.exe
WINDED6.exe
taskhost.exe.exe
najeoxtt.exe
securitywindrv.exe
87b2cb3916261d5c807bf44262755cb0.exe
WinSyncMetastore.exe
dyjdl.exe
systemcpl.exe
NTServiceManager.exe
ifgxpers.exe
SyncHostps.exe
JfCqQ5JC.exe
videotwisterSA.exe
install_0_msi.exe
Q3d38543.exe
wlsidten.exe
ssntvs.exe
gcrwcoak.exe
rool0_pk.exe
ctfmon.exe
Nbt.exe
setex.exe
msdtmsrd.exe
DA0B.exe
msshell.exe
C87C.exe
MusicCollector.exe
TimeDateMUICallback.exe
p1.exe
魔法桌面第三方主题破解补丁V1.1.exe
Disclaimer

Post comment — WE NEED YOUR OPINION!

Comment:
Name:
Please enter security code:
This is a captcha-picture. It is used to prevent mass-access by robots.