Ured za Posebne Poslove Sigurnosti virus (removal instructions)

This is the article explaining removal of the Ured za Posebne Poslove Sigurnosti ransomware belonging to Urausy malware family. Use the tips reviewed below as recommendation to successfully unlock your computer blocked by fake Ministarstvo unutarnjih poslova Republike Hrvatske (Ured za Posebne Poslove Sigurnosti) warning.

Ured za Posebne Poslove Sigurnosti ransomware

As a member of the European Union since July 1, 2013, Croatia has to share the portion of malware developed by hackers in order to attacks various European countries. This particular malware is classified by many security blogs as ransomware, i.e. the locker that completely disables the desktop of the attacked PC and tells users to pay the ransom amount as a solution to unlock it. This fake Ured za Posebne Poslove Sigurnosti warning is a typical scam, a malicious tool in the hands of cyber frauds to earn money through unfair methods.

The fact that your PC got locked by the Ured za Posebne Poslove Sigurnosti ransomware doesn’t mean that you’ve done something illegal (in spite of the fake accusations of this scary warning). This means that the security level of your computer is extremely weak and requires certain powerful anti-malware tool to prevent security threats on more professional level.

The text of fake Ured za Posebne Poslove Sigurnosti alerts lists the following violations of the legislation of this country:

Ministarstvo unutarnjih poslova Republike Hrvatske
Ured za Posebne Poslove Sigurnosti
Zapovjednistvo specijalne policije
PAZNJA! Vas kompjuter je blokiran zbog barem jednoga od razioga navedenog u nastavku.
Tu su krsenja «autorskom pravu i srodnim pravima u podrucju prava» (video, glazba, softver) i protuzakonito koristenje ili distribuiranje sadrzaja zasticenih autorskim pravima, cime se krsi clanak 128. Krivicnog Zakona Republike Hrvatske.
Clanak 128. Krivicnog Zakona predvida novcane kazne od 200 do 500 minimalnih mjesecnih plaça ili oduzimanjem slobode od 2 do 8 godina.
Gledanje ili distribuiranje pornografskog sadrzaja je zabranjeno (Djecja pornografija/Zoofilija i tako slicno). Tako se krsi clanak 202 Krivicnog Zakona Republike Hrvatske.
Clanak 202. Krivicnog Zakona predvida oduzimanje slobode od 4 do 12 godina.
Ilegalni pristup kompjuterskih podataka je pokrenut sa kompjutera ili ste pokrenuli…
Clanak 208. Krivicnog Zakona predvida novcanu kaznu do HRK 100.000 ili oduzimanjem slobode od 4 do 9 godina.
Ilegalni pristup je pokrenut sa kompjutera bez vaseg znanja ili pristanka, vas kompjuter moze biti zarazen zlonamjeran softverom, tako da se krsi Zakon o nemarnom koristenju osobnog kompjutera.
Clanak 210. Krivicnog zakona predvida novcane kazne od HRK 2.000 do HRK 8.000.
Spam ili drugo sirenje ilegalne reklame bilo je ucinjeno sa vaseg kompjutera sa ciljem dobitka ili bez vaseg znanja, vas kompjuter moze biti zarazen stetnim programima.
Clanak 212. Krivicnog Zakona predvida novcanu kaznu do HRK 250.000 i oduzimanje slobode do 6 godina. U slucaju da je ova aktivnost izvrsena bez vaseg znanja, sto potpada pod spomenutom clankom 210. Krivicnog Zakona Republike Hrvatske.
Vasa osobnost i adresa trenutno identificirani, kaznjeni postupak ce se pokrenuti protiv vas od jedan ili vise navedenih gore clanaka u narednih 72 sati.
Temeljem izmjena i dopuna Krivicnog Zakona Republike Hrvatske od 04. veljace 2013 je krsenje zakona (ako se ne ponovi- prvi put) moze se smatrati uvjetno u slucaju ako se plati novcana kazna drzavi.
Kazne mogu biti placent u roku od 72 sati nakon povrede. Cim 72 sati protekne, mogucnost platiti kaznu istekne, a kazneni postupak protiv vas automatski se pokrece u narednih 72 sati.
Iznos novcane kazne je HRK 500 ili €100.
Mozete platiti kaznu preko PaySafeCard ili Ukash.
Kada ce te platiti kaznu vas kompjuter ce biti otkljucan od 1 do 72 sati nakon primitka sredstava nametnutih na drzavni racun.

If your system got locked by Ured za Posebne Poslove Sigurnosti and you cannot do anything to get rid of this scary warning that occupied the entire area of your screen, please don’t panic. You shouldn’t be afraid to be punished for those things you’ve never committed. Furthermore, as we’ve mentioned already, this locker has nothing to do with Ured za Posebne Poslove Sigurnosti, Ministarstvo unutarnjih poslova Republike Hrvatske or Zapovjednistvo specijalne policije (the law enforcement agencies in Croatia). This scam is a product of online fraudsters who simply want to get funds from you. If you ever pay this fine of EUR 100 you’ve simply wasted your money and time. There’s no guarantee from hackers that they will unlock your system, and surely they will never give your money back to you. Instead of paying this fake fine through Ukash or Paysafecard payment system you’d rather follow the ransomware removal instructions set forth below.

Recommended ransomware removal solution:

  1. Restart your computer into Safe Mode with Networking. To do it, keep hitting F8 key repeatedly, before Windows OS starts booting.
  2. Select your operating system and the account that got locked with ransomware.
  3. When Windows launches in Safe Mode with Networking, use “Win + R” hotkey combination to open Windows Explorer.
  4. In the address line insert the text “https://www.system-tips.net/download.php
  5. Click “OK”.
  6. Download, install, update and run Plumbytes Anti-Malware.
  7. Malware removal tool
  8. Scan your computer with Anti-Malware and remove all detected threats.
  9. Restart your computer.
  10. Share this information with your friends on Facebook and other social networks.

Similar removal video at YouTube:

So, we do recommend you to try the above method initially. Then, if it does not work, try these other guides below. It is probable that these other methods will be effective solutions to fix your problem. If this information has been helpful to you please share it with other friends of yours.

Alternative removal guides to remove ransomware from your computer:

  1. Ransomware removal in Safe Mode with Networking – https://www.system-tips.net/ransomware-removal-in-safe-mode-with-networking/
  2. Removal of ransomware that modifies “Shell” registry entry – https://www.system-tips.net/remove-ransomware-that-modifies-shell-registry-entry/
  3. Removal of ransomware that replaces explorer.exe file – https://www.system-tips.net/ransomware-that-replaces-explorer-exe-file-guide-to-unlock/

Optional ransomware removal through System Restore:


Optional similar virus removal video guide (through System Restore method):

Important! If the above-mentioned guidelines didn’t help you unlock your PC, use this guide as a final solution – http://www.bleepingcomputer.com/virus-removal/remove-your-computer-has-been-locked-ransomware