Author Topic: Your computer has been blocked by the United States Department of Justice  (Read 10447 times)

0 Members and 1 Guest are viewing this topic.

Kollens

  • Guest
I was on facebook when this ransom ware hit, no i am not sure what i did at the exact moment it hit. But everything says go into safemode. Run your Anti  - Virus then a spy ware removal. My problem is all the sites that say how to remove it say get into safe mode which i had already tried but it locks my keyboard and mouse until just before the pop up reappears after a Manual shutdown.

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37581
  • Not a avast user
if able to.....

follow this guide and attach the requested logs....not copy and paste    http://forum.avast.com/index.php?topic=53253.0

AdwCleaner
Malwarebytes
OTL
aswMBR


malware specialists are notified. it may take hours before one arrive so be patient



« Last Edit: January 10, 2013, 11:53:25 AM by Pondus »

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Hi what version of windows do you have

Kollens

  • Guest
sorry, i misread the other topic, i have windows 7 my net provider got rid of it for me.. though my pc is still a bit sluggish now.

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37581
  • Not a avast user
if you follow the guide above and let essexboy have a look at the logs, he may solve that for you
Essexboy is an expert remover....this is what he does all day, there may be leftover files your net provider did not get?
« Last Edit: January 14, 2013, 05:03:33 PM by Pondus »

Happy Hornet

  • Guest
Evening folks,

I'm trying to remove this nasty virus froma  friend's PC running Vista - is there a revovery version available for this OS?

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Hi create a topic and I will pick you up there.. Are you able to access safe mode ?  On the safe mode menu is there the option "Repair my Comoputer".  Is it 32 or 64bit

MowerMedic

  • Guest
I have the same message and problem, Your computer has been lock and will cost $350 to unlock.  I have Win 8.  Any help anybody can give me will be greatly appreciated

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37581
  • Not a avast user
I have the same message and problem, Your computer has been lock and will cost $350 to unlock.  I have Win 8.  Any help anybody can give me will be greatly appreciated
read what Essexboy said in the post above yours....

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33925
  • malware fighter
These rogues were worked unto computers via the latest java zero day that just recently became patched. Update java and use it only if you have no other option, firefox browser will only allow the plug-in on an on demand basis, so you have to click to run it intentionally.
Well as victims of this exploit driven malware you follow essexboy's instructions as he is a qualified removal expert and instructor for qualified malware removal.
With him you are in the best of hands to get this malcoded threatcrap from your systems,

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Kollens

  • Guest
Re: Your computer has been blocked by the United States Department of Justice
« Reply #10 on: January 15, 2013, 04:54:26 AM »
Thanks, I just started the process, as suggested i just ran the adwcleaner. Attaching the log now. I am working on my part, though it is taking time as the 2nd program freezes me up each time. Ok, any advice as it will not go through the scan on the Malwarebytes' Anti-Malware program it freezes each and every time.
« Last Edit: January 15, 2013, 02:28:36 PM by Kollens »

Kollens

  • Guest
Re: Your computer has been blocked by the United States Department of Justice
« Reply #11 on: January 15, 2013, 03:07:04 PM »
Any other programs maybe that do the same thing?

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Your computer has been blocked by the United States Department of Justice
« Reply #12 on: January 15, 2013, 03:50:48 PM »
Move direct to OTL, if one programme fails then move to the next

Kollens

  • Guest
Re: Your computer has been blocked by the United States Department of Justice
« Reply #13 on: January 15, 2013, 07:07:06 PM »
AdwCleaner; ran and file posted
Malwarebytes: froze tried over 20 times
OTL: tried 5 times froze
aswMBR: caused my pc to crash i got the blue screen saying that my pc was shutting down

I am beyond frustrated. Thinking a complete restore is around the corner.

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Your computer has been blocked by the United States Department of Justice
« Reply #14 on: January 15, 2013, 07:18:36 PM »
Is this a 32 or 64bit windows 7 ?

Selected the right option from the list of programmes

Download the following three programmes to your desktop :

 
1.  WiNTBootIc
2.  Windows RC 32
3.  Farbar Recovery Scan Tool 32

1.  WiNTBootIc
2.  Windows RC 64
3.  Farbar Recovery Scan Tool 64
 



Extract wintoboot to your desktop
Insert a USB drive of at least 1GB
Run Wintoboot



Drag and drop the Windows 7 ISO to the programme in the space indicated
Tick the Format box and accept the warnings
Press Do It

You will see it progressing



It will let you know when it is done
Then copy FRST to the same USB




Insert the USB into the sick computer and start the computer.  First ensuring that the system is set to boot from USB
Note: If you are not sure how to do that follow the instructions Here

 
When you reboot you will  see this although yours will say windows 7.
Click repair my computer

 
Select your operating system

 
Select Command prompt

 
At the command prompt type the following  :

notepad and press Enter.
The notepad opens. Under File menu select Open.
Select "Computer" and find your flash drive letter and close the notepad.
In the command window type e:\FRST.exe and press Enter (or FRST64.exe)
Note: Replace letter e with the drive letter of your flash drive.
The tool will start to run.

  • When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will make a log (FRST.txt) on the flash drive. Please copy and paste it to your reply.