FBI PayPal Virus

By Domesticus in Ransomware

Threat Scorecard

Threat Level: 20 % (Normal)
Infected Computers: 2
First Seen: May 6, 2013
Last Seen: March 26, 2022
OS(es) Affected: Windows

FBI PayPal Virus Image

Despite its name, the FBI PayPal Virus is not actually a virus. This threat is better classified as a Trojan because the FBI PayPal Virus usually does not spread on its own but requires a computer user to download and install the FBI PayPal Virus. The FBI PayPal Virus usually accomplishes this by disguising itself as something different, for example, a popular file on a file sharing website, or as an email attachment (much in the same way as its namesake, the Trojan horse was used to let soldiers into Troy by disguising this weapon of war as a gift to the Troy people). The FBI PayPal Virus belongs to a specific category of Trojans known as Police Ransomware Winlockers. These are Trojans that block access to the infected computer, taking it hostage, and then demanding a ransom from the victim. The FBI PayPal Virus and its many variants impersonate police agencies, in this case the FBI, as part of their scam.

How the FBI PayPal Virus Tries to Steal Your Money

There are dozens of variants of the FBI PayPal Virus which attack computer users in North America, and particularly in the United States. While previous versions of the FBI PayPal Virus demanded payment through MoneyPak, the FBI PayPal Virus is one of the first variants that demand payment of the ransom through PayPal. The FBI PayPal Virus modus operandi is not complicated to understand. First of all, the FBI PayPal Virus gains access to the infected computer through social engineering. Once the FBI PayPal Virus has been installed, the FBI PayPal Virus blocks access to the infected computer and forces it to display a fake message from the FBI on start-up. This message accuses the victim of copyright and pornography-related violations and uses a scary language to imply that the PC user may be arrested or have to spend a considerable sum in fines. The FBI PayPal Virus then claims that it is possible to circumvent these sanctions with a one-time payment through PayPal within the next 72 hours.

You Should Remove the FBI PayPal Virus Immediately After Its Discovery

Paying the FBI PayPal Virus ransom will not remove this threat from the infected computer or unblock the affected computer. Since the FBI PayPal Virus has no real connection with the FBI, security researchers advise ignoring its threatening message completely. Instead, a real security program that is fully up-to-date should be used to remove the FBI PayPal Virus infection.Screenshot

URLs

FBI PayPal Virus may call the following URLs:

https://forlumineontor.com/afu.php?zoneid=

Messages

The following messages associated with FBI PayPal Virus were found:

FBI
Federal Bureau of Investigation
ATTENTION!
Your PC is blocked due at least one of the reasons specified below.
You have been violating Copyright and Related Rights Law. (Video, Music, Software) and illegally using or distributing copyrighted content, thus infringing Article 1, Section 2, Clause 8, also known as the Copyright of the Criminal Code of United States of America.
Article 1, Section 2, Clause 8 of the Criminal Code provides for a fine of 200 to 500 minimal wages or a deprivation of liberty for 2 to 8 years.
You have been viewing or distributing prohibited Pornographic content (Child Porn/Zoophilia and etc). Thus violating Article 2, Section 1, Clause 2 of the Criminal Code of United States of America.
(...)

5 Comments

Kenneth G Bennett Reply

My problem is my android A3 already has the paypal virus and the is not usable. What can I do?

my galaxy has ben Infected cant use internet what do I do??

Last night while using safari the "You have been viewing" (etc.) popped up and asked for PayPal or credit card payment within the next 24 hours posing as the FBI and saying if I failed to pay my Apple ID would be confiscated and my data on my phone would be swiped, what do I do? I wiped my browsing history and the pop up went away is that all or is there more I need to do?

This popped up on my phone. While I was online through my android phone. How do I get it off or do I need to get a new phone?

I was using an iPod touch and I cleared my history, Is that enough? I'm glad it didn't happen on my phone!

Trending

Most Viewed

Loading...