Thursday, March 21, 2013

How to Remove Department of Justice FBI Virus Scam that Asks for $450?

How to Remove Department of Justice FBI Virus Scam that Asks for $450?


FBI Virus Scam is extremely dangerous for an infected system. Cyber criminals keep coming up new variants to attack random computer and get easy money by locking up infected PC and asking for payment. Just as other fbi viruses, Department of Justice virus scam blocks your access to system with a fake alert titled with The work of your computer has been suspended on the grounds of the violation of the law of the United States of America, which states you have been violated laws and are fined for $450 via greendot MoneyPak to get the machine unlocked. You should know that this is a trap created to threatening you into paying money.

YOUR COMPUTER HAS BEEN BLOCKED
THE UNITED STATES
DEPARTMENT OF JUSTICE
The work of your computer has been suspended on the grounds of the violation of the law of the United States of America.
Possible violations are described below:

Article - 184. Pornography involving children (under 18 years)
Imprisonment for the term of up to 10 -15 years
(The use or distribution of pornographic files)
Article - 171. Copyright
Imprisonment for the term of up to 2-5 years
(The use or sharing of copyrighted files)
Article - 113. The use of unlicensed software
Imprisonment for the term of up to 2 years
(the use of unlicensed software)
All illegal activities conducted throughout your computer have been recorded in the police database, including photos and videos from your computer camera for further identification. You have been registered by viewing pornography involving minors.
In connection with the decision of the Government as of October 11, 2012, all of the violations described above could be considered as criminal. If the fine has not been paid, you will become the subject of criminal prosecution. The fine is applicable in the case of a primary violation. In the case of second violation you will appear before the Supreme Court of the USA.
Amount of the fine is $450. Payment must be made within 48 hours after the computer blocking. If the fine has not been paid, you will become the subject of criminal prosecution without the right to pay the fine.
An attempt to unlock the computer by yourself will lead to the full formatting of the operating system. All the files, videos, photos, documents on your computer will be deleted.
The first violation may not entail the criminal liability if the payment of the fine in connection with the law of loyalty to the people, on 5 December 2012. In repeated violations of criminal responsibility is inevitable.
To unlock your computer and avoid other legal consequences, you are obliged to pay a release fee of $450.
How to unlock computer using MoneyPak?
1. Find a retail location near you.
2. Look for a MoneyPak in the prepaid section. Take it to the cashier and load it with cash. A service fee of up to $4.95 will apply.
3. To pay fine, you should enter the digits MoneyPak resulting code in the payment form and press Pay MoneyPak.



How to Remove Department of Justice FBI Virus Scam?


Department of Justice FBI Virus Scam acts aggressively and cunningly conceals its existences in random codes. Apparently, anti-virus programs installed on your computer would not be able to block Department of Justice FBI Virus Scam from invasion or remove it. Department of Justice FBI Virus modifies system settings and allows its automatically running right after you log in the system. And you may not log in safe mode with networking as well. In this circumstance, manual removal is considered as the most effective way to use.

Step1, start the infected PC in safe mode with networking or command prompt by constantly pressing F8 after reboot.

Step2, disable startup entries added by Department of Justice FBI Virus

Open Start Menu and click Run.Type "msconfig" and click OK. Click the Startup tab on System Configuration Utility. Select Disable All and click OK. Exit the menu. Restart your computer in Normal Mode.

Step3, Delete Processes

Random.exe

Step4, Delete Registry Entries

HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command "(Default)" = "%LocalAppData%\[random].exe" -a "C:\Program Files\Mozilla Firefox\firefox.exe" HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\safemode\command "(Default)" = "%LocalAppData%\[random].exe" -a "C:\Program Files\Mozilla Firefox\firefox.exe" -safe-mode HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command "(Default)" = "%LocalAppData%\[random].exe" -a "C:\Program Files\Internet Explorer\iexplore.exe"

Step5, Delete Files

%Temp%\random.tlb
%System%\drivers\random.sys
%System%\random.exe
%System%\random.dll
C:\ProgramData\Skype.dat

Still Having Troubles with Department of Justice FBI Virus virus? Get Online Tech Support right now!

4 comments:

  1. Or you can do what I did. RESTART in SAFE MODE. Go to Computer> C:
    and click ORGANIZE drop-down, FOLDERS AND SEARCH OPTIONS, VIEW tab, and SHOW HIDDEN FOLDERS AND FILES, Then While still in C:>ProgramData
    Organize by Date Modified, Then there will be a HYPERTERMINAL File along with two photos just delete all three files and restart your computer. MAKE SURE TO EMPTY THE RECYCLE BIN AFTERWARDS, And probably do some Anti-virus Scans

    ReplyDelete
  2. Is that above process is enough to remove the FBI virus or we have to install any tool for removal?

    ReplyDelete
  3. What if you can't find "Random.exe"?

    ReplyDelete
  4. This being the second time I have had to deal with this virus, I have noticed that if your computer's wireless connectivity is turned off while it is booting up; the virus' effects are either delayed or simply do not appear UNTIL you turn on the wireless connection. I hope this helps anyone.

    ReplyDelete