Do not rush to pay fines for allegedly performed cyber crimes if the accusations are presented through a screen-locking notification, because Uw Computer is Vergrendeld Virus might have invaded your PC. Do you see Buma Stemra and Politie logos attached to the suspicious alert? If you do, there is no doubt that the malicious ransomware has hijacked the operating Windows system. Have no doubt that your computer has been locked illegally and that authentic Police departments have nothing to do with the seemingly reliable fine payment demands. Note that authentic Police credentials have been applied to other malicious ransomware infections, including Politie Nederland Virus, Dutch Police Virus and Buma Stemra Virus. All of these malignant programs should be deleted from your computer; however, now you should focus on Uw Computer is Vergrendeld Virus removal.
If you pay attention to the bogus security notification, which seemingly has hijacked your desktop and removed administrative privileges to run the PC, you may start believing that your need to pay an allegedly legal fine via Paysafecard. The entire interface is fictional and no information presented through it should be regarded as legitimate. Below are a few excerpts from the screen-locking notification which you should ignore.
Illegaal gedownloade muziek stukken (“door piraterij verkregen”) zijn gelegen op de computer.
Om uw computer te ontgrendelen en naar andere juridische gevolgen te voorkomen, bent u verplicht om een release vergoeding van € 100,- te betalen.
Do you need to pay the 100 Euro fine? If you do, your money will be gone and your PC will most likely remain locked. What is more, it is unlikely that even the Dutch Police will be able to help you retrieve this sum. Needless to say, you should remove Uw Computer is Vergrendeld Virus from the system if you want the PC unlocked and your virtual security shielded. Please follow the instructions below to unlock the computer and install automatic malware removal tool which will delete the ransomware and the Gimemo Trojan which runs alongside.
Note: if you live outside of Netherlands, you should beware of such clandestine ransomware infections as Cheshire Police Authority Virus, Policía Nacional del Ecuador Virus or Ured Za Posebne Poslove Sigurnosti Virus. Have you noticed any of them running? Immediately delete them from the PC.

| # | File Name | File Size (Bytes) | File Hash |
|---|---|---|---|
| 1 | TimeDateMUICallback.exe | 87552 bytes | MD5: 2d108d8f3d914658f74768a8eb120dde |
| 2 | VSD3DRefDebug.exe | 124416 bytes | MD5: 0cc8134e81ff99e54ea1844888ec8f56 |
| 3 | autoosk.dll | 60928 bytes | MD5: a64e4dfb484bebb96f1bbf91c813200a |
| 4 | yaiiwockc.dll | 483328 bytes | MD5: 9460de1c3485d5f3cc9f5fa1d4a09708 |
| 5 | puozlkmyj.dll | 356352 bytes | MD5: a36b0b1c2a6c4ad06418ab137b62ee6c |
| 6 | questscan.dll | 1019904 bytes | MD5: 0965f3611e919838ad794fcf11db43cf |
| 7 | JfCqQ5JC.exe | 270336 bytes | MD5: 023829e50c93205ac81dd27009762620 |
| 8 | sqlncli.exe | 75264 bytes | MD5: 1b8b3b51d8b52bed7a7bc0b05bdafbcb |
| 9 | secproc_isv.exe | 108544 bytes | MD5: 25595c5104cafc7c667c73d1e2c74447 |
| 10 | win32_lyposit_847F6AED44_023B1000_00018000.27FB5BC7_level2.dat | 51232 bytes | MD5: b5c22c79cd9148be71232b954f1c4cec |
| 11 | MWSBAR.DLL | 376901 bytes | MD5: 8d23a39be47954dc43fcbb0114ce2a55 |
| 12 | bhoclass.dll | 400896 bytes | MD5: 00f4e6542235cc34958a1778a93d2bfb |
| 13 | yybiwwhj.exe | 86016 bytes | MD5: 3ec42e48033e3543bb0dc85b880363c1 |
| 14 | %WINDIR%\Temp | ||
| 15 | mplayer2.exe | 403456 bytes | MD5: a01f673216f9a83cb352028319809f2f |
| 16 | opera.dll | 192232 bytes | MD5: 02f0e5b598be8c2ceabb17a965e6e67c |
| 17 | ACEIEAddOn.dll | 204800 bytes | MD5: f42778c8d316a0e2f45844f8051242ff |
| 18 | uenovfiu.exe | 100864 bytes | MD5: 47ebbd7f529d71b8eac53b7ca0f7eeaa |
| 19 | taskhost.exe.exe | 15872 bytes | MD5: 8cdc3a6a50af07cbdc4a1193e45f8721 |
| 20 | wpbt0.dll | 225280 bytes | MD5: 3dfd93b751a0f9168739a7e668d14023 |
| 21 | pYunY8m4VL3qLc.exe | 286822 bytes | MD5: 3415bcb9153afa1e0c1400b2f7fa1335 |
| 22 | %CommonProgramFiles% | ||
| 23 | msn.exe | 675840 bytes | MD5: a403f9d53ad6a07073c9236842dd865e |
| 24 | acuvzomo.exe | 61440 bytes | MD5: 64d6b4385310293e6ca81631c1652d59 |
| 25 | 2084473.dll | 92672 bytes | MD5: 4b53eef2de438858d7cc1360feb3c6c2 |
| 26 | videotwisterSA.exe | 746496 bytes | MD5: a72b74832ff54293504f3c1b441db398 |
| 27 | |||
| 28 | NTServiceManager.exe | 666624 bytes | MD5: 8e931cb28a92d7ee1a7f146b7f6c4664 |
| 29 | Americana Dreams.exe | 179712 bytes | MD5: e909c36e06e0c978655389e89e6f1e76 |
| 30 | msuyqa.cmd | 64512 bytes | MD5: 55b337b9741df50dbdbec29aba6bae91 |
| 31 | ssntvs.exe | 103415 bytes | MD5: 863c2d694dc3cf82711420aa089e16e4 |
| 32 | Piranha.exe | 449161 bytes | MD5: eb0f419c0a98b065271effae67c4920f |
| 33 | ieudator.dll | 55808 bytes | MD5: bfe953f0f96438290914369a7797cf84 |
| 34 | wlsidten.dll | 155648 bytes | MD5: 26ca88d3fc9175797365a8553eb6948d |
| 35 | 1SKKKKKKK.exe | 247574 bytes | MD5: 06e9ac14027ce9226a448625dbada9b1 |
| 36 | idiokbbrv.exe | 98448 bytes | MD5: 3cd07724cf408fc515a711042d4a0524 |
| 37 | wahneaqa.exe | 102912 bytes | MD5: dfd58427f8741b480eae4d9535a1e5f3 |
| 38 | gcrwcoak.exe | 108544 bytes | MD5: 095507587859038b638fe1c0d6c0c74c |
| 39 | msqjrothu.pif | 35800 bytes | MD5: 414a57fdd1a951035df9c09614ee8623 |
| 40 | brenasa.exe | 45056 bytes | MD5: a626c9a877af7d078e67be021a5baf28 |
| 41 | xmlfilter.exe | 115200 bytes | MD5: 0ecf7e220a38e4fd86a5d67e8ce7c88a |
| 42 | SyncHostps.exe | 94208 bytes | MD5: 286f4c7e06c1c467e58426b916985567 |
| 43 | skype.dat | 65024 bytes | MD5: 13985f6b7ca5c771b28dbf42aef80984 |
| 44 | Firewallservice.exe | 423424 bytes | MD5: 8f4305c63693259f648f33c59370978c |
| 45 | obvwo.exe | 129024 bytes | MD5: e5893ac27c4ee6817f380e3607a3664c |
| 46 | MusicCollector.exe | 6901936 bytes | MD5: 42d5f1c904eae88de63cabeaa6a4bf50 |
| 47 | %UserProfile% | ||
| 48 | %ALLUSERSPROFILE%\Application Data | ||
| 49 | ex3b.dll | 1792000 bytes | MD5: 992d5e68d52b908e744f0ea1db1deb89 |
| 50 | Q3d38543.exe | 33280 bytes | MD5: 67f05820f38cf6ce319d92b55bae0956 |
| 51 | Updating.exe | 1517520 bytes | MD5: e5d532e96f42229d89993da562fbb5b4 |
| 52 | iner.exe | 674816 bytes | MD5: 6b485eb86c32deca15b26e47e66a94e7 |
| 53 | msnmsgrr.exe | 1427968 bytes | MD5: 49300637db06b13f0bc0ee3b742e6399 |
| 54 | jucheck.dll | 212992 bytes | MD5: afd39fda07129ea22b7963b77c58ff53 |
| 55 | WinSyncMetastore.exe | 83456 bytes | MD5: b7614742cc2adf0264a038267d35a78a |
| 56 | svchost.exe | 417792 bytes | MD5: 805c3831ce41e9f7123398409d6b5c40 |
| 57 | msshell.exe | 18432 bytes | MD5: 0e9e0b2092e1c643f103d93f4a04b82a |
| 58 | flashplayer.dll | 186456 bytes | MD5: c92c7c8c57363a2996d0ceb731cef6ba |
| 59 | 50E1.exe | 340992 bytes | MD5: 0e337ac9e0242482503a3c31559ed661 |
| 60 | %SystemDrive%\???????????? | ||
| 61 | oygqyunapnp.exe | 78336 bytes | MD5: acdd61209ba5a132915c565f669b0d81 |
| 62 | rvcbcyks.exe | 103424 bytes | MD5: e63bdd7e5eb894ca59900f155ad62158 |
| 63 | setex.exe | 38759 bytes | MD5: 01da942199a8e606a09889a23f7d27b5 |
| 64 | install_0_msi.exe | 118272 bytes | MD5: 68f337adbfbdaad81faa7ea3ec22da0b |
| 65 | n. | 46592 bytes | MD5: 61a29236fee6568908a9bc629b8ada22 |
| 66 | bvhylsviw.exe | 98560 bytes | MD5: 4b1c6c2aabc0314f7558151834b63717 |
| 67 | unoejlwj.erm | 55808 bytes | MD5: c40b751e51d85b0c103caa3d55974ce8 |
| 68 | aPr0hY9.exe | 45558 bytes | MD5: 100b8f04f2bff5c49052173dc231eea1 |
| 69 | najeoxtt.exe | 105984 bytes | MD5: d0761e37cdef392ee249e24c84f0a66c |
| 70 | msdtmsrd.exe | 224256 bytes | MD5: acf3959bb985b616f9b221ae15d252eb |
| 71 | VaultSysUi.exe | 62464 bytes | MD5: e6922b3d1e2a74fa8620c4e004224a71 |
| 72 | OmaSG21e.exe | 107520 bytes | MD5: 27baf21f123fe80b8e0bf2a3d0a9c91e |
| 73 | 3511172082012Build.exe | 297984 bytes | MD5: 835c431d44e546ac46f899466acff0e1 |
| 74 | C87C.exe | 79360 bytes | MD5: efe25f747cdc17ebebc22604c4cdd209 |
| 75 | 00b5d693.exe | 282112 bytes | MD5: 4dd835b5b72613c8f7fa71aed486b6c7 |
| 76 | wgsdgsdgdsgsd.exe | 144896 bytes | MD5: 3a8e4b69add412fd66d11c7ace416421 |
| 77 | xlqbteeb.exe | 64512 bytes | MD5: 5f2861537c90cd2d3ec9620e67b91de7 |
| 78 | %APPDATA%\Task Scheduler | ||
| 79 | m2PythonLoader.exe | 135680 bytes | MD5: d8dab211e0db20f00118f25ad64be90c |
| 80 | DLL321.dll | 191712 bytes | MD5: bd6c2627b0f2e007d371f71edc0762a4 |
| 81 | win32_lyposit_[Drp]_847F6AED44_02D03000_0002A000.379A8D52_level1a.mem.dat | 167424 bytes | MD5: 37fb38abacf8ba8c96485898c7d76db2 |
| 82 | 锿³•桌é¢ç¬¬ä¸‰æ–¹ä¸»é¢˜ç ´è§£è¡¥ä¸V1.1.exe | 188416 bytes | MD5: 5252ca014813b18c517ff44951628329 |
| 83 | pmstcdjwz.exe | 97344 bytes | MD5: dc30b025294d0ed58a16141e64942ff7 |
| 84 | dyjdl.exe | 194560 bytes | MD5: 5b94a572fd15f5416c4a88d02f406189 |
| 85 | UpdatePriv.exe | 65536 bytes | MD5: a29c0d8665033ec58739bebd1693727e |
| 86 | dtkmujvo.exe | 87040 bytes | MD5: b8d2f2fb25bc89994c96079e6079a3ec |
| 87 | %LOCALAPPDATA%\lollipop | ||
| 88 | ifgxpers.exe | 331648 bytes | MD5: 4765da2ba43a0ce9206d29c4c7aa76b6 |
| 89 | Task Scheduler.exe | 122368 bytes | MD5: b923b9094635464cb81a245716d2d932 |
| 90 | crack.exe | 306176 bytes | MD5: ab5af9b01941bff73068abf9c7def3bd |
| 91 | Nbt.exe | 643072 bytes | MD5: 90f72d0a2cc6956c07c46b47f6a3d40e |
| 92 | zqmkrehUkpoKfsafsaZg.exe | 33012 bytes | MD5: 461caa595d898e273656853c337d81c4 |
| 93 | 96dddda4.dll | 3303936 bytes | MD5: 522cb91f694f6866568b91b7a11f5802 |
| 94 | comeo.exe | 3581440 bytes | MD5: 17b063d029da62b8afc715880c0ae047 |
| 95 | 00qbipeq.exe | 108032 bytes | MD5: b46bec93ed0cbf470b7a4e5421c30655 |
| 96 | systemcpl.exe | 100352 bytes | MD5: de7c781205d31f58a04d5acd13ff977d |
| 97 | DA0B.exe | 61440 bytes | MD5: 15279561b4232d0600f4cede0d7de174 |
| 98 | csrsss.exe | 83928 bytes | MD5: c41898f24d84a4ada9fe9b71e94ccd64 |
| 99 | %LOCALAPPDATA%\Temp | ||
| 100 | UpgradeHelper.exe | 289792 bytes | MD5: 70f2dfab3a93558fec4dbc2d4b9d8a31 |
| 101 | scvhost.exe | 231936 bytes | MD5: 2dc8b92985e96aabc9ab0937f1018ff7 |
| 102 | wlsidten.exe | 111616 bytes | MD5: 1f2052c6529cd8a76a20ce858f080e68 |
| 103 | rool0_pk.exe | 134144 bytes | MD5: a363c25160f5bb09bdaee0e03d85278c |
| 104 | administration.exe | 5242880 bytes | MD5: f3e4e59a27b1ed11ebf0330b02b408f7 |
| 105 | %APPDATA%\updates |
| # | Process Name | Process Filename | Main module size |
|---|---|---|---|
| 1 | TimeDateMUICallback.exe | TimeDateMUICallback.exe | 87552 bytes |
| 2 | VSD3DRefDebug.exe | VSD3DRefDebug.exe | 124416 bytes |
| 3 | JfCqQ5JC.exe | JfCqQ5JC.exe | 270336 bytes |
| 4 | sqlncli.exe | sqlncli.exe | 75264 bytes |
| 5 | secproc_isv.exe | secproc_isv.exe | 108544 bytes |
| 6 | yybiwwhj.exe | yybiwwhj.exe | 86016 bytes |
| 7 | mplayer2.exe | mplayer2.exe | 403456 bytes |
| 8 | uenovfiu.exe | uenovfiu.exe | 100864 bytes |
| 9 | taskhost.exe.exe | taskhost.exe.exe | 15872 bytes |
| 10 | pYunY8m4VL3qLc.exe | pYunY8m4VL3qLc.exe | 286822 bytes |
| 11 | msn.exe | msn.exe | 675840 bytes |
| 12 | acuvzomo.exe | acuvzomo.exe | 61440 bytes |
| 13 | videotwisterSA.exe | videotwisterSA.exe | 746496 bytes |
| 14 | NTServiceManager.exe | NTServiceManager.exe | 666624 bytes |
| 15 | Americana Dreams.exe | Americana Dreams.exe | 179712 bytes |
| 16 | ssntvs.exe | ssntvs.exe | 103415 bytes |
| 17 | Piranha.exe | Piranha.exe | 449161 bytes |
| 18 | 1SKKKKKKK.exe | 1SKKKKKKK.exe | 247574 bytes |
| 19 | idiokbbrv.exe | idiokbbrv.exe | 98448 bytes |
| 20 | wahneaqa.exe | wahneaqa.exe | 102912 bytes |
| 21 | gcrwcoak.exe | gcrwcoak.exe | 108544 bytes |
| 22 | brenasa.exe | brenasa.exe | 45056 bytes |
| 23 | xmlfilter.exe | xmlfilter.exe | 115200 bytes |
| 24 | SyncHostps.exe | SyncHostps.exe | 94208 bytes |
| 25 | Firewallservice.exe | Firewallservice.exe | 423424 bytes |
| 26 | obvwo.exe | obvwo.exe | 129024 bytes |
| 27 | MusicCollector.exe | MusicCollector.exe | 6901936 bytes |
| 28 | Q3d38543.exe | Q3d38543.exe | 33280 bytes |
| 29 | Updating.exe | Updating.exe | 1517520 bytes |
| 30 | iner.exe | iner.exe | 674816 bytes |
| 31 | msnmsgrr.exe | msnmsgrr.exe | 1427968 bytes |
| 32 | WinSyncMetastore.exe | WinSyncMetastore.exe | 83456 bytes |
| 33 | svchost.exe | svchost.exe | 417792 bytes |
| 34 | msshell.exe | msshell.exe | 18432 bytes |
| 35 | 50E1.exe | 50E1.exe | 340992 bytes |
| 36 | oygqyunapnp.exe | oygqyunapnp.exe | 78336 bytes |
| 37 | rvcbcyks.exe | rvcbcyks.exe | 103424 bytes |
| 38 | setex.exe | setex.exe | 38759 bytes |
| 39 | install_0_msi.exe | install_0_msi.exe | 118272 bytes |
| 40 | bvhylsviw.exe | bvhylsviw.exe | 98560 bytes |
| 41 | aPr0hY9.exe | aPr0hY9.exe | 45558 bytes |
| 42 | najeoxtt.exe | najeoxtt.exe | 105984 bytes |
| 43 | msdtmsrd.exe | msdtmsrd.exe | 224256 bytes |
| 44 | VaultSysUi.exe | VaultSysUi.exe | 62464 bytes |
| 45 | OmaSG21e.exe | OmaSG21e.exe | 107520 bytes |
| 46 | 3511172082012Build.exe | 3511172082012Build.exe | 297984 bytes |
| 47 | C87C.exe | C87C.exe | 79360 bytes |
| 48 | 00b5d693.exe | 00b5d693.exe | 282112 bytes |
| 49 | wgsdgsdgdsgsd.exe | wgsdgsdgdsgsd.exe | 144896 bytes |
| 50 | xlqbteeb.exe | xlqbteeb.exe | 64512 bytes |
| 51 | m2PythonLoader.exe | m2PythonLoader.exe | 135680 bytes |
| 52 | 锿³•桌é¢ç¬¬ä¸‰æ–¹ä¸»é¢˜ç ´è§£è¡¥ä¸V1.1.exe | 锿³•桌é¢ç¬¬ä¸‰æ–¹ä¸»é¢˜ç ´è§£è¡¥ä¸V1.1.exe | 188416 bytes |
| 53 | pmstcdjwz.exe | pmstcdjwz.exe | 97344 bytes |
| 54 | dyjdl.exe | dyjdl.exe | 194560 bytes |
| 55 | UpdatePriv.exe | UpdatePriv.exe | 65536 bytes |
| 56 | dtkmujvo.exe | dtkmujvo.exe | 87040 bytes |
| 57 | ifgxpers.exe | ifgxpers.exe | 331648 bytes |
| 58 | Task Scheduler.exe | Task Scheduler.exe | 122368 bytes |
| 59 | crack.exe | crack.exe | 306176 bytes |
| 60 | Nbt.exe | Nbt.exe | 643072 bytes |
| 61 | zqmkrehUkpoKfsafsaZg.exe | zqmkrehUkpoKfsafsaZg.exe | 33012 bytes |
| 62 | comeo.exe | comeo.exe | 3581440 bytes |
| 63 | 00qbipeq.exe | 00qbipeq.exe | 108032 bytes |
| 64 | systemcpl.exe | systemcpl.exe | 100352 bytes |
| 65 | DA0B.exe | DA0B.exe | 61440 bytes |
| 66 | csrsss.exe | csrsss.exe | 83928 bytes |
| 67 | UpgradeHelper.exe | UpgradeHelper.exe | 289792 bytes |
| 68 | scvhost.exe | scvhost.exe | 231936 bytes |
| 69 | wlsidten.exe | wlsidten.exe | 111616 bytes |
| 70 | rool0_pk.exe | rool0_pk.exe | 134144 bytes |
| 71 | administration.exe | administration.exe | 5242880 bytes |