FBI Cybercrime Division Virus is a dangerous computer infection which specifically targets Windows users living in the United States. The dreadful infection is a ransomware which can apply scare tactics and deception methods in order to trick you into giving up your money. As the name of the threat suggests, the malicious virus uses the reputable name of the Federal Bureau of Investigation to trick oblivious Windows users into paying attention and conforming to the demands of cyber criminals. All of the bogus information is presented through a bogus screen-locking notification. Has your computer been locked? Do you believe that FBI has been involved? If yes – continue reading and find out how to remove FBI Cybercrime Division Virus from your operating Windows system.
Even though the infection seems to be categorized as a virus it actually is a variation of Trojan.Urausy. This malicious, clandestine Trojan is responsible for a number of different ransomware infections, including the GVU Virus, Cuerpo Nacional de Policia Virus and PCeU Virus. All of these malignant threats lock PCs, present bogus security warnings using the names of reputable law enforcers and demand to pay fines for bogus cyber crimes. Please see an excerpt of the bogus warning which you will not be able to remove from the screen until FBI Cybercrime Division Virus is deleted:
FBI. Cybercrime Division
International Cyber Security Protection Alliance
Supported and Protected by [Windows logo]ATTENTION! Your PC is blocked to at least one of the reasons specified below. You have been violating <> (Video, Music, Software) and illegally using or distributing copyrighted content, thus infringing Article 1, Section 2, Clause 8, also known as the Copyright of the Criminal Code of United States of America.
To unblock the computer you must pay the fine through MoneyPak of $300.
Pay no attention to the attached ICSPA, FBI Cyber Division, Cybercrime Division or Interpol logos and ignore bogus statements supposedly indicating illegal distribution of copyrighted material, pornographic content and spam. Additionally, ignore the demands to pay $300 for these fictitiously presented crimes. If you pay the fine via MoneyPak – your computer will remain locked and your money will be lost.
Instead of allowing schemers to fool you – delete FBI Cybercrime Division Virus without further hesitation. Even though manual removal is not the task you should proceed with, you still have the automatic removal option. All you have to do is install a reliable and legitimate security application which will guard your privacy in the future and which will remove FBI Cybercrime Division Virus automatically. To install an authentic ransomware removal tool SpyHunter follow the instructions provided below.

| # | File Name | File Size (Bytes) | File Hash |
|---|---|---|---|
| 1 | rool0_pk.exe | 134144 bytes | MD5: a363c25160f5bb09bdaee0e03d85278c |
| 2 | %APPDATA%\updates | ||
| 3 | autoosk.dll | 60928 bytes | MD5: a64e4dfb484bebb96f1bbf91c813200a |
| 4 | TimeDateMUICallback.exe | 87552 bytes | MD5: 2d108d8f3d914658f74768a8eb120dde |
| 5 | DA0B.exe | 61440 bytes | MD5: 15279561b4232d0600f4cede0d7de174 |
| 6 | iner.exe | 674816 bytes | MD5: 6b485eb86c32deca15b26e47e66a94e7 |
| 7 | JfCqQ5JC.exe | 270336 bytes | MD5: 023829e50c93205ac81dd27009762620 |
| 8 | crack.exe | 306176 bytes | MD5: ab5af9b01941bff73068abf9c7def3bd |
| 9 | 00qbipeq.exe | 108032 bytes | MD5: b46bec93ed0cbf470b7a4e5421c30655 |
| 10 | 50E1.exe | 340992 bytes | MD5: 0e337ac9e0242482503a3c31559ed661 |
| 11 | NTServiceManager.exe | 666624 bytes | MD5: 8e931cb28a92d7ee1a7f146b7f6c4664 |
| 12 | %APPDATA%\Task Scheduler | ||
| 13 | yybiwwhj.exe | 86016 bytes | MD5: 3ec42e48033e3543bb0dc85b880363c1 |
| 14 | 2084473.dll | 92672 bytes | MD5: 4b53eef2de438858d7cc1360feb3c6c2 |
| 15 | msuyqa.cmd | 64512 bytes | MD5: 55b337b9741df50dbdbec29aba6bae91 |
| 16 | acuvzomo.exe | 61440 bytes | MD5: 64d6b4385310293e6ca81631c1652d59 |
| 17 | m2PythonLoader.exe | 135680 bytes | MD5: d8dab211e0db20f00118f25ad64be90c |
| 18 | mplayer2.exe | 403456 bytes | MD5: a01f673216f9a83cb352028319809f2f |
| 19 | C87C.exe | 79360 bytes | MD5: efe25f747cdc17ebebc22604c4cdd209 |
| 20 | jucheck.dll | 212992 bytes | MD5: afd39fda07129ea22b7963b77c58ff53 |
| 21 | %ALLUSERSPROFILE%\Application Data | ||
| 22 | DLL321.dll | 191712 bytes | MD5: bd6c2627b0f2e007d371f71edc0762a4 |
| 23 | oygqyunapnp.exe | 78336 bytes | MD5: acdd61209ba5a132915c565f669b0d81 |
| 24 | wahneaqa.exe | 102912 bytes | MD5: dfd58427f8741b480eae4d9535a1e5f3 |
| 25 | Updating.exe | 1517520 bytes | MD5: e5d532e96f42229d89993da562fbb5b4 |
| 26 | ifgxpers.exe | 331648 bytes | MD5: 4765da2ba43a0ce9206d29c4c7aa76b6 |
| 27 | %APPDATA%\system | ||
| 28 | secproc_isv.exe | 108544 bytes | MD5: 25595c5104cafc7c667c73d1e2c74447 |
| 29 | Piranha.exe | 449161 bytes | MD5: eb0f419c0a98b065271effae67c4920f |
| 30 | gcrwcoak.exe | 108544 bytes | MD5: 095507587859038b638fe1c0d6c0c74c |
| 31 | skype.dat | 65024 bytes | MD5: 13985f6b7ca5c771b28dbf42aef80984 |
| 32 | %SystemDrive%\???????????? | ||
| 33 | najeoxtt.exe | 105984 bytes | MD5: d0761e37cdef392ee249e24c84f0a66c |
| 34 | comeo.exe | 3581440 bytes | MD5: 17b063d029da62b8afc715880c0ae047 |
| 35 | wpbt0.dll | 225280 bytes | MD5: 3dfd93b751a0f9168739a7e668d14023 |
| 36 | n. | 46592 bytes | MD5: 61a29236fee6568908a9bc629b8ada22 |
| 37 | ieudator.dll | 55808 bytes | MD5: bfe953f0f96438290914369a7797cf84 |
| 38 | ssntvs.exe | 103415 bytes | MD5: 863c2d694dc3cf82711420aa089e16e4 |
| 39 | pYunY8m4VL3qLc.exe | 286822 bytes | MD5: 3415bcb9153afa1e0c1400b2f7fa1335 |
| 40 | %WINDIR%\Temp | ||
| 41 | idiokbbrv.exe | 98448 bytes | MD5: 3cd07724cf408fc515a711042d4a0524 |
| 42 | videotwisterSA.exe | 746496 bytes | MD5: a72b74832ff54293504f3c1b441db398 |
| 43 | csrsss.exe | 83928 bytes | MD5: c41898f24d84a4ada9fe9b71e94ccd64 |
| 44 | %LOCALAPPDATA%\lollipop | ||
| 45 | rvcbcyks.exe | 103424 bytes | MD5: e63bdd7e5eb894ca59900f155ad62158 |
| 46 | VSD3DRefDebug.exe | 124416 bytes | MD5: 0cc8134e81ff99e54ea1844888ec8f56 |
| 47 | dyjdl.exe | 194560 bytes | MD5: 5b94a572fd15f5416c4a88d02f406189 |
| 48 | %LOCALAPPDATA%\Temp | ||
| 49 | obvwo.exe | 129024 bytes | MD5: e5893ac27c4ee6817f380e3607a3664c |
| 50 | xmlfilter.exe | 115200 bytes | MD5: 0ecf7e220a38e4fd86a5d67e8ce7c88a |
| 51 | msn.exe | 675840 bytes | MD5: a403f9d53ad6a07073c9236842dd865e |
| 52 | OmaSG21e.exe | 107520 bytes | MD5: 27baf21f123fe80b8e0bf2a3d0a9c91e |
| 53 | dtkmujvo.exe | 87040 bytes | MD5: b8d2f2fb25bc89994c96079e6079a3ec |
| 54 | %TEMP% | ||
| 55 | %ALLUSERSPROFILE% | ||
| 56 | uenovfiu.exe | 100864 bytes | MD5: 47ebbd7f529d71b8eac53b7ca0f7eeaa |
| 57 | systemcpl.exe | 100352 bytes | MD5: de7c781205d31f58a04d5acd13ff977d |
| 58 | xlqbteeb.exe | 64512 bytes | MD5: 5f2861537c90cd2d3ec9620e67b91de7 |
| 59 | aPr0hY9.exe | 45558 bytes | MD5: 100b8f04f2bff5c49052173dc231eea1 |
| 60 | msdtmsrd.exe | 224256 bytes | MD5: acf3959bb985b616f9b221ae15d252eb |
| 61 | administration.exe | 5242880 bytes | MD5: f3e4e59a27b1ed11ebf0330b02b408f7 |
| 62 | install_0_msi.exe | 118272 bytes | MD5: 68f337adbfbdaad81faa7ea3ec22da0b |
| 63 | SyncHostps.exe | 94208 bytes | MD5: 286f4c7e06c1c467e58426b916985567 |
| 64 | Americana Dreams.exe | 179712 bytes | MD5: e909c36e06e0c978655389e89e6f1e76 |
| 65 | msqjrothu.pif | 35800 bytes | MD5: 414a57fdd1a951035df9c09614ee8623 |
| 66 | puozlkmyj.dll | 356352 bytes | MD5: a36b0b1c2a6c4ad06418ab137b62ee6c |
| 67 | MWSBAR.DLL | 376901 bytes | MD5: 8d23a39be47954dc43fcbb0114ce2a55 |
| 68 | %UserProfile% | ||
| 69 | setex.exe | 38759 bytes | MD5: 01da942199a8e606a09889a23f7d27b5 |
| 70 | flashplayer.dll | 186456 bytes | MD5: c92c7c8c57363a2996d0ceb731cef6ba |
| 71 | UpgradeHelper.exe | 289792 bytes | MD5: 70f2dfab3a93558fec4dbc2d4b9d8a31 |
| 72 | questscan.dll | 1019904 bytes | MD5: 0965f3611e919838ad794fcf11db43cf |
| 73 | taskhost.exe.exe | 15872 bytes | MD5: 8cdc3a6a50af07cbdc4a1193e45f8721 |
| 74 | sqlncli.exe | 75264 bytes | MD5: 1b8b3b51d8b52bed7a7bc0b05bdafbcb |
| 75 | Task Scheduler.exe | 122368 bytes | MD5: b923b9094635464cb81a245716d2d932 |
| 76 | bvhylsviw.exe | 98560 bytes | MD5: 4b1c6c2aabc0314f7558151834b63717 |
| 77 | %WINDIR%\system32 | ||
| 78 | %CommonProgramFiles% | ||
| 79 | ACEIEAddOn.dll | 204800 bytes | MD5: f42778c8d316a0e2f45844f8051242ff |
| 80 | UpdatePriv.exe | 65536 bytes | MD5: a29c0d8665033ec58739bebd1693727e |
| 81 | msnmsgrr.exe | 1427968 bytes | MD5: 49300637db06b13f0bc0ee3b742e6399 |
| 82 | WinSyncMetastore.exe | 83456 bytes | MD5: b7614742cc2adf0264a038267d35a78a |
| 83 | svchost.exe | 417792 bytes | MD5: 805c3831ce41e9f7123398409d6b5c40 |
| 84 | zqmkrehUkpoKfsafsaZg.exe | 33012 bytes | MD5: 461caa595d898e273656853c337d81c4 |
| 85 | brenasa.exe | 45056 bytes | MD5: a626c9a877af7d078e67be021a5baf28 |
| 86 | %AppData% | ||
| 87 | VaultSysUi.exe | 62464 bytes | MD5: e6922b3d1e2a74fa8620c4e004224a71 |
| 88 | Q3d38543.exe | 33280 bytes | MD5: 67f05820f38cf6ce319d92b55bae0956 |
| 89 | bhoclass.dll | 400896 bytes | MD5: 00f4e6542235cc34958a1778a93d2bfb |
| 90 | wlsidten.dll | 155648 bytes | MD5: 26ca88d3fc9175797365a8553eb6948d |
| 91 | wlsidten.exe | 111616 bytes | MD5: 1f2052c6529cd8a76a20ce858f080e68 |
| 92 | 96dddda4.dll | 3303936 bytes | MD5: 522cb91f694f6866568b91b7a11f5802 |
| 93 | Firewallservice.exe | 423424 bytes | MD5: 8f4305c63693259f648f33c59370978c |
| 94 | opera.dll | 192232 bytes | MD5: 02f0e5b598be8c2ceabb17a965e6e67c |
| 95 | 00b5d693.exe | 282112 bytes | MD5: 4dd835b5b72613c8f7fa71aed486b6c7 |
| 96 | Nbt.exe | 643072 bytes | MD5: 90f72d0a2cc6956c07c46b47f6a3d40e |
| 97 | MusicCollector.exe | 6901936 bytes | MD5: 42d5f1c904eae88de63cabeaa6a4bf50 |
| 98 | 锿³•桌é¢ç¬¬ä¸‰æ–¹ä¸»é¢˜ç ´è§£è¡¥ä¸V1.1.exe | 188416 bytes | MD5: 5252ca014813b18c517ff44951628329 |
| 99 | msshell.exe | 18432 bytes | MD5: 0e9e0b2092e1c643f103d93f4a04b82a |
| 100 | ex3b.dll | 1792000 bytes | MD5: 992d5e68d52b908e744f0ea1db1deb89 |
| 101 | yaiiwockc.dll | 483328 bytes | MD5: 9460de1c3485d5f3cc9f5fa1d4a09708 |
| 102 | scvhost.exe | 231936 bytes | MD5: 2dc8b92985e96aabc9ab0937f1018ff7 |
| 103 | 3511172082012Build.exe | 297984 bytes | MD5: 835c431d44e546ac46f899466acff0e1 |
| 104 | pmstcdjwz.exe | 97344 bytes | MD5: dc30b025294d0ed58a16141e64942ff7 |
| 105 | wgsdgsdgdsgsd.exe | 144896 bytes | MD5: 3a8e4b69add412fd66d11c7ace416421 |
| # | Process Name | Process Filename | Main module size |
|---|---|---|---|
| 1 | rool0_pk.exe | rool0_pk.exe | 134144 bytes |
| 2 | TimeDateMUICallback.exe | TimeDateMUICallback.exe | 87552 bytes |
| 3 | DA0B.exe | DA0B.exe | 61440 bytes |
| 4 | iner.exe | iner.exe | 674816 bytes |
| 5 | JfCqQ5JC.exe | JfCqQ5JC.exe | 270336 bytes |
| 6 | crack.exe | crack.exe | 306176 bytes |
| 7 | 00qbipeq.exe | 00qbipeq.exe | 108032 bytes |
| 8 | 50E1.exe | 50E1.exe | 340992 bytes |
| 9 | NTServiceManager.exe | NTServiceManager.exe | 666624 bytes |
| 10 | yybiwwhj.exe | yybiwwhj.exe | 86016 bytes |
| 11 | acuvzomo.exe | acuvzomo.exe | 61440 bytes |
| 12 | m2PythonLoader.exe | m2PythonLoader.exe | 135680 bytes |
| 13 | mplayer2.exe | mplayer2.exe | 403456 bytes |
| 14 | C87C.exe | C87C.exe | 79360 bytes |
| 15 | oygqyunapnp.exe | oygqyunapnp.exe | 78336 bytes |
| 16 | wahneaqa.exe | wahneaqa.exe | 102912 bytes |
| 17 | Updating.exe | Updating.exe | 1517520 bytes |
| 18 | ifgxpers.exe | ifgxpers.exe | 331648 bytes |
| 19 | secproc_isv.exe | secproc_isv.exe | 108544 bytes |
| 20 | Piranha.exe | Piranha.exe | 449161 bytes |
| 21 | gcrwcoak.exe | gcrwcoak.exe | 108544 bytes |
| 22 | najeoxtt.exe | najeoxtt.exe | 105984 bytes |
| 23 | comeo.exe | comeo.exe | 3581440 bytes |
| 24 | ssntvs.exe | ssntvs.exe | 103415 bytes |
| 25 | pYunY8m4VL3qLc.exe | pYunY8m4VL3qLc.exe | 286822 bytes |
| 26 | idiokbbrv.exe | idiokbbrv.exe | 98448 bytes |
| 27 | videotwisterSA.exe | videotwisterSA.exe | 746496 bytes |
| 28 | csrsss.exe | csrsss.exe | 83928 bytes |
| 29 | rvcbcyks.exe | rvcbcyks.exe | 103424 bytes |
| 30 | VSD3DRefDebug.exe | VSD3DRefDebug.exe | 124416 bytes |
| 31 | dyjdl.exe | dyjdl.exe | 194560 bytes |
| 32 | obvwo.exe | obvwo.exe | 129024 bytes |
| 33 | xmlfilter.exe | xmlfilter.exe | 115200 bytes |
| 34 | msn.exe | msn.exe | 675840 bytes |
| 35 | OmaSG21e.exe | OmaSG21e.exe | 107520 bytes |
| 36 | dtkmujvo.exe | dtkmujvo.exe | 87040 bytes |
| 37 | uenovfiu.exe | uenovfiu.exe | 100864 bytes |
| 38 | systemcpl.exe | systemcpl.exe | 100352 bytes |
| 39 | xlqbteeb.exe | xlqbteeb.exe | 64512 bytes |
| 40 | aPr0hY9.exe | aPr0hY9.exe | 45558 bytes |
| 41 | msdtmsrd.exe | msdtmsrd.exe | 224256 bytes |
| 42 | administration.exe | administration.exe | 5242880 bytes |
| 43 | install_0_msi.exe | install_0_msi.exe | 118272 bytes |
| 44 | SyncHostps.exe | SyncHostps.exe | 94208 bytes |
| 45 | Americana Dreams.exe | Americana Dreams.exe | 179712 bytes |
| 46 | setex.exe | setex.exe | 38759 bytes |
| 47 | UpgradeHelper.exe | UpgradeHelper.exe | 289792 bytes |
| 48 | taskhost.exe.exe | taskhost.exe.exe | 15872 bytes |
| 49 | sqlncli.exe | sqlncli.exe | 75264 bytes |
| 50 | Task Scheduler.exe | Task Scheduler.exe | 122368 bytes |
| 51 | bvhylsviw.exe | bvhylsviw.exe | 98560 bytes |
| 52 | UpdatePriv.exe | UpdatePriv.exe | 65536 bytes |
| 53 | msnmsgrr.exe | msnmsgrr.exe | 1427968 bytes |
| 54 | WinSyncMetastore.exe | WinSyncMetastore.exe | 83456 bytes |
| 55 | svchost.exe | svchost.exe | 417792 bytes |
| 56 | zqmkrehUkpoKfsafsaZg.exe | zqmkrehUkpoKfsafsaZg.exe | 33012 bytes |
| 57 | brenasa.exe | brenasa.exe | 45056 bytes |
| 58 | VaultSysUi.exe | VaultSysUi.exe | 62464 bytes |
| 59 | Q3d38543.exe | Q3d38543.exe | 33280 bytes |
| 60 | wlsidten.exe | wlsidten.exe | 111616 bytes |
| 61 | Firewallservice.exe | Firewallservice.exe | 423424 bytes |
| 62 | 00b5d693.exe | 00b5d693.exe | 282112 bytes |
| 63 | Nbt.exe | Nbt.exe | 643072 bytes |
| 64 | MusicCollector.exe | MusicCollector.exe | 6901936 bytes |
| 65 | 锿³•桌é¢ç¬¬ä¸‰æ–¹ä¸»é¢˜ç ´è§£è¡¥ä¸V1.1.exe | 锿³•桌é¢ç¬¬ä¸‰æ–¹ä¸»é¢˜ç ´è§£è¡¥ä¸V1.1.exe | 188416 bytes |
| 66 | msshell.exe | msshell.exe | 18432 bytes |
| 67 | scvhost.exe | scvhost.exe | 231936 bytes |
| 68 | 3511172082012Build.exe | 3511172082012Build.exe | 297984 bytes |
| 69 | pmstcdjwz.exe | pmstcdjwz.exe | 97344 bytes |
| 70 | wgsdgsdgdsgsd.exe | wgsdgsdgdsgsd.exe | 144896 bytes |