Author Topic: FBI Randsom Ware  (Read 14348 times)

0 Members and 1 Guest are viewing this topic.

markae

  • Guest
FBI Randsom Ware
« on: June 26, 2012, 11:44:45 PM »
This locked up my PC and I have to manually turn it off and start it back up without internet connection to keep it from locking up again.  As soon as I connect the internet cable to locks up again.  When it locks up it has a full-screen information display, the task manager and registry editor are disabled and the system hot keys are disabled to avoid the termination.  The full screen has FBI at the top and a lot of descriptions that basically say you did someone the FBI does not like and you need to pay $100 to unlock your computer.

I did a full system scan but, even though there were a few thinks it deleted and then scan pre-Windows with some more deletions, once Windows restarted and I reconnected the internet cable the PC locked up again.

In doing some Google seraches I found this appears to be called FBI Randsomware or the FBI MoneyPak virus.  How do I remove this?

Offline Left123

  • There Is No Patch For Human Stupidity.
  • Avast Evangelist
  • Advanced Poster
  • ***
  • Posts: 1048
  • Proud Community Member&Helper.
Re: FBI Randsom Ware
« Reply #1 on: June 27, 2012, 01:31:25 AM »
Hi there,
Follow the steps here : http://www.zimbio.com/Latest+Computer+Threats/articles/yuaiypcnmeB/How+Remove+FBI+Ransomware+Delete+FBI+Moneypak
If you are unable to do so,please post here and we will help you futher.
AMD Athlon(tm) X2 Dual-Core Processor 4200+ - 2.20 GHz,3,00 GB RAM -
Browser:Mozilla Firefox +WOT - SoftWare:CCleaner - Windows 7 32 bit
No Anti-Virus

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: FBI Randsom Ware
« Reply #2 on: June 27, 2012, 04:31:26 PM »
The most important log will be the OTL all users scan

markae

  • Guest
Re: FBI Randsom Ware
« Reply #3 on: June 27, 2012, 08:33:28 PM »
Does anyone know about using combofix, hitman pro, and/or malwarebytes?

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: FBI Randsom Ware
« Reply #4 on: June 27, 2012, 08:35:10 PM »
Yep, but before you use any of them you need to know what the infection has done to the system

 Download OTL  to your Desktop
  • Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.

  • Select All Users
  • Under the Custom Scan box paste this in
netsvcs
%SYSTEMDRIVE%\*.exe
/md5start
services.*
explorer.exe
winlogon.exe
Userinit.exe
svchost.exe
/md5stop
CREATERESTOREPOINT

  • Click the Quick Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.
    • When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.
    • Attach both logs

Mrsmith

  • Guest
Re: FBI Randsom Ware
« Reply #5 on: August 09, 2012, 06:53:08 PM »
Just got the same FBI virus on my machine here is a video link and the tools you need to remove it, I am kinda upset the that avast suit couldn't remove it. http://www.youtube.com/watch?v=pdUrMr0UqWc&feature=youtube_gdata_player

you need Ccleaner and Malwarebites

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37554
  • Not a avast user
Re: FBI Randsom Ware
« Reply #6 on: August 09, 2012, 07:00:53 PM »
Quote
you need Ccleaner and Malwarebites
not always that easy...... but we have something that works  ;)