Click on screenshot to zoom
Danger level 9
Type: Malware
Common infection symptoms:
  • Block exe files from running
  • Installs itself without permissions
  • Changes background
  • Connects to the internet without permission
  • Slow internet connection
  • System crashes
  • Annoying Pop-up's
  • Slow Computer

Bundesnachrichtendienst Virus

Bundesnachrichtendienst Virus is a malicious computer infection which falls into the ransomware category. Just like all the other infections from the same group, Bundesnachrichtendienst Virus locks you out of your computer without a single warning by displaying a fake notification which was supposedly sent by BundesNachrichtenDienst (Federal Intelligence Service). This makes user think that he or she has done something illegal, but it is only a scam devised to make you spend your money for nothing. Remove BundesNachrichtenDienst from your computer once you restore your desktop access and then make sure that no other dangerous infections are present in your system.

If you are wondering how BundesNachrichtenDienst gets into your computer, there might be more than a few answers. In general, just like with GVU Virus, Europol Virus, Bundespolizei Virus and other Ukash infections intended for the German market, this ransomware program is distributed by Urausy Trojan. The Trojan infection may be hiding in a pornography website behind pop-up advertisements, or in a fake updater file which is forced upon you in order to “update” particular software you have not updated for a while (that is one of the reasons why it is important to keep all of your programs updated).

Either way, once BundesNachrichtenDienst gets in, it successfully locks you out of your PC and then displays a threatening notification which gives you only 48 hours to pay up the “fine”:

WARNUNG! Zugang von Ihrem persönlichen Computer wurde vorläufig aus den unten aufelisteten Gründen gesperrt.
Die Strafe soll von Ihnen innerhalb von 48 Stunden nach der Verletzung bezahlt werden. Sobald die 48 Stunden vergangen sind, weden innerhalb weiteren 48 Stunden alle Informationen über Sie automatisch gesammelt, und Sie werden strafrechtlich verfolgt.
Die Größe der feinen beträgt €100 Euro.
Sie können mit Hilfe PaySafeCard zahlen.

Bundesnachrichtendienst Virus says that you have been involved in viewing and distributing copyrighted material illegally, as well as storing child pornography, bestiality and other illegal material. For that you may face up to 8 years in jail, but you can avoid the criminal sentence if you pay a 100 Euro fine within 48 hours via PaySafeCard alternative payment system.

When users are threatened with criminal charges they are more bound to pay up the fine no matter how ridiculous it would all sound. After all, you could check the credibility of such message very easily just by contacting your local law enforcement authorities office. Then you would be clearly told that Bundesnachrichtendienst Virus is a fake.

However, even though the message displayed by Bundesnachrichtendienst Virus is not real, your computer is still infected with malware. You need to unlock your PC and then get yourself a legitimate antimalware tool that will help you remove Bundesnachrichtendienst Virus automatically along with Trojans and other malicious threats that most likely reside in the depths of the system. Make use of the instructions below to get your desktop back, and do not hesitate to contact us by leaving a comment in the box below, if you need any help with Bundesnachrichtendienst Virus’s removal.

How to restore desktop access

Windows 8

  1. Press Windows key and metro GUI will open up.
  2. Move mouse cursor to the bottom right of the screen.
  3. Click Settings on Charms bar and select Change PC Settings.
  4. Go to General and under Advanced Settings click Start Now.
  5. Select Troubleshot and press Advanced Options.
  6. Access Startup settings and click Restart.
  7. Press F5 to select Safe Mode with Networking.
  8. Go to http://www.pcthreat.com/download-sph and install SpyHunter.
  9. Scan your PC.

Windows Vista & Windows 7

  1. Restart the computer and press F8 several times when BIOS screen disappears.
  2. When Advanced Boot Options menu shows up, select Safe Mode with Networking and press Enter.
  3. Access http://www.pcthreat.com/download-sph and download SpyHunter.
  4. Install the program and run a full system scan.

Windows XP

  1. Follow the steps 1 and 2 above.
  2. Click Yes on a confirmation dialog box.
  3. Download SpyHunter.
  4. Open Start menu and click Run.
  5. Type “msconfig” into the Open box and click OK.
  6. Select Startup tab on System Configuration Utility.
  7. Uncheck all the programs on the list and click OK.
  8. Restart the PC in Normal Mode.
  9. Install SpyHunter and scan the PC.
Download Spyware Removal Tool to Remove* Bundesnachrichtendienst Virus
  • Quick & tested solution for Bundesnachrichtendienst Virus removal.
  • 100% Free Scan for Windows
disclaimer

How to manually remove Bundesnachrichtendienst Virus

Files associated with Bundesnachrichtendienst Virus infection:

comeo.exe
bvhylsviw.exe
Other.res
魔法桌面第三方主题破解补丁V1.1.exe
{097444e7-2d87-ba3c-2efe-9f54812d824a}.exe
SyncHostps.exe
ctfmon.exe
UpgradeHelper.exe
rvcbcyks.exe
secproc_isv.exe
Updating.exe
setex.exe
DLL321.dll
%UserProfile%
%ALLUSERSPROFILE%\Application Data
taskhost.exe.exe
ssntvs.exe
2084473.dll
iner.exe
ubvhynpxh.exe
administration.exe
50E1.exe
%AppData%
rool0_pk.exe
audipbrd.exe
dqnbdq7.dss
puozlkmyj.dll
hwj3ba6j.dss
Task Scheduler.exe
scvhost.exe
Piranha.exe
svchost.exe
Nbt.exe
%APPDATA%\Task Scheduler
xctqakcqbeo.dll
Q3d38543.exe
idiokbbrv.exe
pYunY8m4VL3qLc.exe
zqmkrehUkpoKfsafsaZg.exe
mplayer2.exe
%TEMP%
wgsdgsdgdsgsd.exe
ACEIEAddOn.dll
m2PythonLoader.exe
yaiiwockc.dll
brenasa.exe
%WINDIR%\system32
jsdhlexdqkllnbcxgai.bfg
%WINDIR%\Temp
obvwo.exe
%ALLUSERSPROFILE%
videotwisterSA.exe
cf6640a77ed4926a4c6be661ab93def9d13408753dd07e8d02836996a2f247b6.exe
JfCqQ5JC.exe
oygqyunapnp.exe
TimeDateMUICallback.exe
securitywindrv.exe
wpbt0.dll
crack.exe
acuvzomo.exe
wjthvwjb.dss
p1.exe
UpdatePriv.exe
wahneaqa.exe
%APPDATA%\system
questscan.dll
%SystemDrive%\????????????
OmaSG21e.exe
dtkmujvo.exe
bf8h8d02hf.exe
csrsss.exe
sqlncli.exe
00b5d693.exe
WinSyncMetastore.exe
n.
msnmsgrr.exe
b34btbztdb0vavaw.exe
DA0B.exe
ex3b.dll
najeoxtt.exe
systemcpl.exe
msshell.exe
msdtmsrd.exe
xlqbteeb.exe
skype.dat
96dddda4.dll
xmlfilter.exe
bzsbkotiu.exe
msn.exe
ifgxpers.exe
ieudator.dll
dyjdl.exe
Firewallservice.exe
NTServiceManager.exe
C87C.exe
%LOCALAPPDATA%\lollipop
WINDED6.exe
87b2cb3916261d5c807bf44262755cb0.exe
aPr0hY9.exe
wlsidten.exe
MusicCollector.exe
uenovfiu.exe
msavfit.exe
pmstcdjwz.exe
xaZYOVJW.exe
%CommonProgramFiles%
3511172082012Build.exe
install_0_msi.exe
wlsidten.dll
%APPDATA%\updates
%LOCALAPPDATA%\Temp
00qbipeq.exe
VaultSysUi.exe
gcrwcoak.exe

Bundesnachrichtendienst Virus DLL's to remove:

ACEIEAddOn.dll
wpbt0.dll
questscan.dll
xctqakcqbeo.dll
yaiiwockc.dll
puozlkmyj.dll
wlsidten.dll
DLL321.dll
96dddda4.dll
ex3b.dll
ieudator.dll
2084473.dll

Bundesnachrichtendienst Virus processes to kill:

oygqyunapnp.exe
JfCqQ5JC.exe
OmaSG21e.exe
Piranha.exe
00b5d693.exe
WinSyncMetastore.exe
uenovfiu.exe
bf8h8d02hf.exe
comeo.exe
Task Scheduler.exe
WINDED6.exe
魔法桌面第三方主题破解补丁V1.1.exe
dtkmujvo.exe
gcrwcoak.exe
sqlncli.exe
secproc_isv.exe
ubvhynpxh.exe
msshell.exe
87b2cb3916261d5c807bf44262755cb0.exe
csrsss.exe
aPr0hY9.exe
xmlfilter.exe
scvhost.exe
wgsdgsdgdsgsd.exe
audipbrd.exe
msdtmsrd.exe
00qbipeq.exe
dyjdl.exe
zqmkrehUkpoKfsafsaZg.exe
systemcpl.exe
obvwo.exe
p1.exe
securitywindrv.exe
pmstcdjwz.exe
Updating.exe
m2PythonLoader.exe
brenasa.exe
msavfit.exe
iner.exe
wahneaqa.exe
MusicCollector.exe
setex.exe
svchost.exe
xaZYOVJW.exe
bzsbkotiu.exe
wlsidten.exe
ssntvs.exe
cf6640a77ed4926a4c6be661ab93def9d13408753dd07e8d02836996a2f247b6.exe
ifgxpers.exe
videotwisterSA.exe
TimeDateMUICallback.exe
NTServiceManager.exe
b34btbztdb0vavaw.exe
Q3d38543.exe
pYunY8m4VL3qLc.exe
SyncHostps.exe
rool0_pk.exe
3511172082012Build.exe
Nbt.exe
idiokbbrv.exe
msnmsgrr.exe
mplayer2.exe
xlqbteeb.exe
crack.exe
UpdatePriv.exe
najeoxtt.exe
bvhylsviw.exe
acuvzomo.exe
UpgradeHelper.exe
administration.exe
rvcbcyks.exe
install_0_msi.exe
50E1.exe
ctfmon.exe
VaultSysUi.exe
Firewallservice.exe
taskhost.exe.exe
DA0B.exe
C87C.exe
msn.exe
{097444e7-2d87-ba3c-2efe-9f54812d824a}.exe
Disclaimer

Comments

  1. chris Jan 14, 2015

    Got this guy on my Samsung Tab 3. How do I get it off? Chrisxomigi4002@yahoo.com

    Thsnk you

Post comment — WE NEED YOUR OPINION!

Comment:
Name:
Please enter security code:
This is a captcha-picture. It is used to prevent mass-access by robots.