{"id":3031,"date":"2012-04-18T19:13:02","date_gmt":"2012-04-18T19:13:02","guid":{"rendered":"http:\/\/malwaretips.com\/blogs\/?p=3031"},"modified":"2012-07-18T14:23:03","modified_gmt":"2012-07-18T14:23:03","slug":"remove-gendarmerie-ransomware","status":"publish","type":"post","link":"https:\/\/malwaretips.com\/blogs\/remove-gendarmerie-ransomware\/","title":{"rendered":"Remove Gendarmerie Ransomware"},"content":{"rendered":"<p>The <strong>Votre ordinateur est bloqu\u00e9 <\/strong> lockdown \u00a0is a ransomware alert that is locking your computer, and posing as an official notice from the French Gendarmerie, claims that the your PC has been determined to have visited illegal websites.In reality, none of what the Votre ordinateur est bloqu\u00e9 screen is reporting is real, and the alert is only used to scare you into paying for a non-existing fine and stealing your personal financial information.<br \/>\nIf you&#8217;ve got a <strong>Gendarmerie<\/strong> ransomware infection , you&#8217;ll be seeing this screens :<br \/>\n<img decoding=\"async\" title=\"Gendarmerie ransomware\" src=\"\/\/malwaretips.com\/blogs\/wp-content\/uploads\/2012\/04\/Gendarmerie.png\" alt=\" [Image: Gendarmerie.png]\" width=\"806\" height=\"601\" \/><br \/>\nHere is what the fake screen from the bloqu\u00e9 French Gendarmerie says:<br \/>\n<code>Attention<br \/>\nVotre ordinateur est bloqu\u00e9 en raison de la loi de la France.<br \/>\nOn r\u00e9v\u00e9lait les violations suivantes:<br \/>\nLe fait d\u2019une prise de vues de film. L\u2019inscription ou la transmission des documents de contenu pornographique avec la participation des mineurs, la pornographie mettant en sc\u00e8ne des enfants, de la sodomie et des actions violentes en ce qui concerne les enfants. La punition est pr\u00e9vue par l\u2019article (art.227-23) du Code P\u00e9nal de la France. Cela est puni par une r\u00e9clusion pendant 2 \u00e0 5ans. L\u2019exploitation du logiciel avec la violation des droits de l\u2019auteur. La punition est pr\u00e9vu par l\u2019article (art 323-3) du Code P\u00e9nal de la France. Cela est puni par une r\u00e9clusion pendant de 1 \u00e0 3ans.<br \/>\n( Ils ont \u00e9crient 2fois la m\u00eame chose!!!!! )<br \/>\nPour d\u00e9bloquer l\u2019ordinateur, il vous faut payer l\u2019amende conform\u00e9ment par la l\u00e9gislation fran\u00e7aise dans la mesure de 100euros aux 3jours \u00e0 venir. La punition est forme de l\u2019amende est possible seulement \u00e0 la premi\u00e8re violation. A la violation r\u00e9it\u00e9r\u00e9e suivra la responsabilit\u00e9 p\u00e9nale. Si vous ne payer pas l\u2019amende au d\u00e9lai exactement indiqu\u00e9, votre ordinateur sera confisqu\u00e9 et votre affaire sera d\u00e9f\u00e9r\u00e9 au tribunal.<br \/>\nVous pouvez payer l\u2019amende \u00e0 notre partenaire avec l\u2019aide des vouchers Ukash ou Paysafecard. Acqu\u00e9rez ces vouchers Ukash ou Paysafecard sur la somme de 100euros, puis remplissez une forme avec les codes et les sommes des vouchers. Appuyez sur un bouton &lt;&gt;<br \/>\nVotre ordinateur sera d\u00e9bloqu\u00e9 \u00e0 la fois apr\u00e8s un contr\u00f4le de l\u2019autrhensit\u00e9 Ukash\/Paysafecard du voucher. D\u2019habitude 1-4heures.<br \/>\nTrouver un point de vente plus proche<br \/>\nCommandez Ukash\/Paysafecard : 100euros\/<br \/>\nRecevez un code Uskash (de 19chiffres) ou un code Paysafecard (de 16 chiffres).<\/code><\/p><div id=\"mwtad2409332373\" class=\"gas_fallback-ad_309684--placement_360520\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"3957935887\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<p><strong>We strongly advise you to follow our <\/strong><strong>Gendarmerie<\/strong> ransomware removal guide and ignore any alerts that this malicious software might generate.Under no circumstance should you send any any money to this cyber criminals as this could lead to identity theft.<\/p>\n<div id=\"mwtad692425777\" class=\"gas_fallback-ad_309746-ad_309691-placement_360521\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"4456629336\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div><h2>Removal Instructions for French <strong>Gendarmerie<\/strong> ransomware<\/h2>\n<ol>\n<li><strong>Download the latest official version of HitmanPro from the below link<\/strong>.<br \/>\n<a href=\"http:\/\/malwaretips.com\/download-hitmanpro\" rel=\"nofollow\" target=\"_blank\"> <strong>HITMANPRO DOWNLOAD LINK<\/strong><\/a> <em>(This link will open a download page in a new window from where you can download HitmanPro)<\/em><\/li>\n<li>After you have downloaded HitmanPro,you&#8217;ll need to copy the file on a USB stick\/CD and follow the instructions from the below video:<br \/>\n<iframe loading=\"lazy\" src=\"\/\/www.youtube.com\/embed\/TVbMv8AwrQc?rel=0\" frameborder=\"0\" width=\"640\" height=\"480\"><\/iframe><\/li>\n<\/ol>\n<h3>STEP 2:\u00a0Download and scan with Malwarebytes Anti-Malware FREE to remove any left over malicious files from your computer.<\/h3>\n<ol>\n<li>Download and run Malwarebytes Anti-Malware FREE<br \/>\n<a href=\"http:\/\/malwaretips.com\/download-malwarebytes\" rel=\"nofollow\" target=\"_blank\"><strong>MALWAREBYTES ANTI-MALWARE DOWNLOAD LINK<\/strong><\/a><\/li>\n<li><strong>Install Mawlarebytes Anti-Malware by following the prompts<\/strong>. Do not make any changes to the default installation settings and do not restart your computer if asked so.<br \/>\n<img decoding=\"async\" title=\"Install Malwarebytes Anti-Malware\" src=\"\/\/malwaretips.com\/images\/removalguide\/mbam2.png\" alt=\"[Image: install-malwarebytes.png]\" width=\"516\" height=\"398\" border=\"0\" \/><\/li>\n<li>On the\u00a0<strong>Scanner<\/strong>\u00a0tab,please select\u00a0<strong>Perform full scan<\/strong>\u00a0and then click on the\u00a0<strong>Scan<\/strong>\u00a0button to start scanning your computer for any possible infections.<br \/>\n<img decoding=\"async\" title=\"Perform a Full System Scan\" src=\"\/\/malwaretips.com\/images\/removalguide\/mbam4.png\" alt=\"[Image: malwarebytes-full-system-scan.png]\" width=\"538\" height=\"387\" border=\"0\" \/><\/li>\n<li>When the scan is finished click the &#8216;<strong>OK<\/strong>&#8216; button and then you will be presented with a screen showing you the malware infections that Malwarebytes&#8217; Anti-Malware has detected.<br \/>\nMake sure that <strong>everything is\u00a0Checked\u00a0(ticked)<\/strong> and click on\u00a0<strong>Remove Selected<\/strong>\u00a0button.<br \/>\n<img decoding=\"async\" title=\"Scan results\" src=\"\/\/malwaretips.com\/images\/removalguide\/mbam6.png\" alt=\"[Image: malwarebytes-scan-results.png]\" width=\"541\" height=\"387\" border=\"0\" \/><\/li>\n<li>Malwarebytes&#8217; Anti-Malware will now start removing the malicious files.If during the removal process Malwarebytes will display a message stating that it needs to<strong> reboot, please allow<\/strong> this request.<\/li>\n<\/ol>\n<p><strong>If you are still experiencing problems while trying to remove Polisen Enheten for databrott alert from your machine, please start a new thread in our <a href=\"http:\/\/malwaretips.com\/Forum-Malware-Removal-Assistance-and-Help\" rel=\"nofollow\" target=\"_blank\">Malware Removal Assistance<\/a> forum.<\/strong><\/p><div id=\"mwtad2447030829\" class=\"gas_fallback-ad_381396-ad_309691-placement_360566\" style=\"margin-top: 30px;margin-bottom: 30px;\"><script async src=\"\/\/pagead2.googlesyndication.com\/pagead\/js\/adsbygoogle.js?client=ca-pub-7750719144850257\" crossorigin=\"anonymous\"><\/script><ins class=\"adsbygoogle\" style=\"display:block;\" data-ad-client=\"ca-pub-7750719144850257\" \ndata-ad-slot=\"1471373341\" \ndata-ad-format=\"auto\" data-full-width-responsive=\"true\"><\/ins>\n<script> \n(adsbygoogle = window.adsbygoogle || []).push({}); \n<\/script>\n<\/div>\n<p><strong>What&#8217;s next? Join our amazing <a title=\"PC Security forums\" href=\"http:\/\/malwaretips.com\/\">community<\/a> and <a title=\"Build up your malware defenses\" href=\"http:\/\/malwaretips.com\/Forum-Security-Configuration-Wizard\">build up your malware defenses <\/a>!<\/strong><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Votre ordinateur est bloqu\u00e9 lockdown \u00a0is a ransomware alert that is locking your computer, and posing as an official notice from the French Gendarmerie, claims that the your PC has been determined to have &#8230; <\/p>\n<p class=\"read-more-container\"><a title=\"Remove Gendarmerie Ransomware\" class=\"read-more button\" href=\"https:\/\/malwaretips.com\/blogs\/remove-gendarmerie-ransomware\/#more-3031\" aria-label=\"Read more about Remove Gendarmerie Ransomware\">Read more<\/a><\/p>\n","protected":false},"author":1,"featured_media":3032,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[49],"tags":[],"class_list":["post-3031","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-scam-reports","masonry-post","generate-columns","tablet-grid-50","mobile-grid-100","grid-parent","grid-50","resize-featured-image"],"_links":{"self":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/3031","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/comments?post=3031"}],"version-history":[{"count":0,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/posts\/3031\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/media\/3032"}],"wp:attachment":[{"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/media?parent=3031"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/categories?post=3031"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/malwaretips.com\/blogs\/wp-json\/wp\/v2\/tags?post=3031"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}