<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>MoneyPak Virus &#8211; techspeeder</title>
	<atom:link href="https://techspeeder.com/tag/moneypak-virus/feed/" rel="self" type="application/rss+xml" />
	<link>https://techspeeder.com</link>
	<description>Troubleshooting Helps and Tips for the Geek</description>
	<lastBuildDate>Sat, 20 Jul 2013 00:08:06 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>
<site xmlns="com-wordpress:feed-additions:1">54126538</site>	<item>
		<title>Removal Guide for the Ransomware MoneyPak Virus,Trojan:Win32/Urausy.C</title>
		<link>https://techspeeder.com/2013/07/08/removal-guide-for-the-ransomware-moneypak-virustrojanwin32urausy-c/</link>
					<comments>https://techspeeder.com/2013/07/08/removal-guide-for-the-ransomware-moneypak-virustrojanwin32urausy-c/#respond</comments>
		
		<dc:creator><![CDATA[Merlin Halteman]]></dc:creator>
		<pubDate>Mon, 08 Jul 2013 22:02:29 +0000</pubDate>
				<category><![CDATA[Troubleshooting]]></category>
		<category><![CDATA[MoneyPak Virus]]></category>
		<category><![CDATA[Virus]]></category>
		<category><![CDATA[Virus Removal]]></category>
		<category><![CDATA[Win32/Urausy.C]]></category>
		<guid isPermaLink="false">http://techspeeder.com/?p=254</guid>

					<description><![CDATA[Many people panic when they see this virus. This virus pops up with a dialogue box saying that your computer has been locked because you were viewing adult material that potentially breaches the Obscene Publications Act in the U.S., your computer contains images of child abuse, and so on. This virus holds your computer ransom [&#8230;]]]></description>
										<content:encoded><![CDATA[<p>Many people panic when they see this virus.</p>
<div id="attachment_251" style="width: 605px" class="wp-caption alignnone"><a href="https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/Pay-Money.jpg"><img data-recalc-dims="1" fetchpriority="high" decoding="async" aria-describedby="caption-attachment-251" class=" wp-image-251 " alt="Trojan:Win32/Urausy.C" src="https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/Pay-Money.jpg?resize=595%2C432" width="595" height="432" srcset="https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/Pay-Money.jpg?w=991&amp;ssl=1 991w, https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/Pay-Money.jpg?resize=300%2C217&amp;ssl=1 300w, https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/Pay-Money.jpg?resize=624%2C453&amp;ssl=1 624w" sizes="(max-width: 595px) 100vw, 595px" /></a><p id="caption-attachment-251" class="wp-caption-text">Trojan:Win32/Urausy.C</p></div>
<p>This virus pops up with a dialogue box saying that your computer has been locked because you were viewing adult material that potentially breaches the Obscene Publications Act in the U.S., your computer contains images of child abuse, and so on. This virus holds your computer ransom till you send them money through MoneyPak. (When they get the money they won&#8217;t unlock it!) Here are the <strong>REAL</strong> instructions for removing this nasty virus.</p>
<p><span id="more-254"></span></p>
<p><strong>Step One</strong>: Tap the <strong>F8</strong> key on your keyboard to boot into<strong> Safe Mode with Command Prompt</strong>.</p>
<div id="attachment_252" style="width: 615px" class="wp-caption alignnone"><a href="https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/Safemode-with-commandprompt.jpg"><img data-recalc-dims="1" decoding="async" aria-describedby="caption-attachment-252" class=" wp-image-252 " alt="Safe mode with Command Prompt " src="https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/Safemode-with-commandprompt.jpg?resize=605%2C458" width="605" height="458" srcset="https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/Safemode-with-commandprompt.jpg?w=1009&amp;ssl=1 1009w, https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/Safemode-with-commandprompt.jpg?resize=300%2C227&amp;ssl=1 300w, https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/Safemode-with-commandprompt.jpg?resize=624%2C472&amp;ssl=1 624w" sizes="(max-width: 605px) 100vw, 605px" /></a><p id="caption-attachment-252" class="wp-caption-text">Safe mode with Command Prompt</p></div>
<p><strong>Step Two:</strong> In command prompt type <strong>explorer .</strong></p>
<div id="attachment_250" style="width: 544px" class="wp-caption alignnone"><a href="https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/command-prompt-explorer.jpg"><img data-recalc-dims="1" decoding="async" aria-describedby="caption-attachment-250" class=" wp-image-250  " alt="Type Explorer" src="https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/command-prompt-explorer.jpg?resize=534%2C270" width="534" height="270" srcset="https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/command-prompt-explorer.jpg?w=667&amp;ssl=1 667w, https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/command-prompt-explorer.jpg?resize=300%2C152&amp;ssl=1 300w, https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/command-prompt-explorer.jpg?resize=624%2C316&amp;ssl=1 624w" sizes="(max-width: 534px) 100vw, 534px" /></a><p id="caption-attachment-250" class="wp-caption-text">Type Explorer</p></div>
<p><strong>Step Three:</strong> Browse to drive<strong> C:\Users\&lt;YourUsername&gt;\AppData\Roaming</strong>. Once in the Roaming folder you will find a file named<strong> skype.dat</strong> and <strong>skype</strong>. These files are the viruses that start when your computer boots up. Select those two files and delete them permanently.(Make sure to remove them from your recycle bin). (Revision) 7/19/2013 You may also find a windows update and/or a defender file. Remove them also. Reboot.</p>
<div id="attachment_253" style="width: 614px" class="wp-caption alignnone"><a href="https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/skype-marked-.jpg"><img data-recalc-dims="1" loading="lazy" decoding="async" aria-describedby="caption-attachment-253" class=" wp-image-253   " alt="Virus Spotted " src="https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/skype-marked-.jpg?resize=604%2C457" width="604" height="457" srcset="https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/skype-marked-.jpg?w=799&amp;ssl=1 799w, https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/skype-marked-.jpg?resize=300%2C226&amp;ssl=1 300w, https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/skype-marked-.jpg?resize=624%2C471&amp;ssl=1 624w" sizes="auto, (max-width: 604px) 100vw, 604px" /></a><p id="caption-attachment-253" class="wp-caption-text">Virus Spotted</p></div>
<p><strong>Step Four:</strong> Boot into Windows normally and run a scan for viruses with <a href="http://www.malwarebytes.org/">Malwarebytes</a>,<a href="http://www.microsoft.com/en-us/download/details.aspx?id=5201"> Microsoft Security Essentials</a> and<a href="http://www.superantispyware.com/"> SuperAntiSpyware</a>. Run these scans till they return clean. After they return clean you will be virus-free and back in business!</p>
<div id="attachment_258" style="width: 643px" class="wp-caption alignnone"><a href="https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/virus.jpg"><img data-recalc-dims="1" loading="lazy" decoding="async" aria-describedby="caption-attachment-258" class=" wp-image-258 " alt="Trojan:Win32/Urausy.C" src="https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/virus.jpg?resize=625%2C420" width="625" height="420" srcset="https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/virus.jpg?w=791&amp;ssl=1 791w, https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/virus.jpg?resize=300%2C201&amp;ssl=1 300w, https://i0.wp.com/techspeeder.com/wp-content/uploads/2013/07/virus.jpg?resize=624%2C418&amp;ssl=1 624w" sizes="auto, (max-width: 625px) 100vw, 625px" /></a><p id="caption-attachment-258" class="wp-caption-text">Trojan:Win32/Urausy.C</p></div>
<p>Thank you for reading this post. If this helped you please leave a comment.</p>
<p>&nbsp;</p>
]]></content:encoded>
					
					<wfw:commentRss>https://techspeeder.com/2013/07/08/removal-guide-for-the-ransomware-moneypak-virustrojanwin32urausy-c/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">254</post-id>	</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/?utm_source=w3tc&utm_medium=footer_comment&utm_campaign=free_plugin

Page Caching using Disk: Enhanced 

Served from: techspeeder.com @ 2026-06-24 14:05:56 by W3 Total Cache
-->