Computer blocked by the national gendarmerie
Solved
Anonymous user
-
Seboul -
Seboul -
Hello,
I was looking for a streaming movie on my laptop when a window popped up saying "WARNING! Your computer has been blocked for violating French law." I checked some forums, and they said to turn off and restart the PC, which I've been doing for a good 20 minutes now, but it doesn't change anything; the whole page is blocked, and there are no icons left. I can't use it at all.
Configuration: Windows 7 / Firefox 3.6.24
I was looking for a streaming movie on my laptop when a window popped up saying "WARNING! Your computer has been blocked for violating French law." I checked some forums, and they said to turn off and restart the PC, which I've been doing for a good 20 minutes now, but it doesn't change anything; the whole page is blocked, and there are no icons left. I can't use it at all.
Configuration: Windows 7 / Firefox 3.6.24
50 réponses
- 1
- 2
- 3
Suivant
Good evening
Is safe mode with network support working?
See you later
--
---------Security Contributor---------
We have all been a beginner at something at one point.
But knowledge is the reward of diligence.
Is safe mode with network support working?
See you later
--
---------Security Contributor---------
We have all been a beginner at something at one point.
But knowledge is the reward of diligence.
loulou
thank you thank you thank you thank you thank you it worked but in the message from the national gendarmerie there were lots of mistakes was it a joke?
Master Flex
Posted messages
450
Status
Membre
36
they're stubborn here lol
Hello Alextorria
I don't know if you found the solution. As for me, I used a method that may seem simple for those who have used DOS, which is now the COMMAND mode.
The virus, because it's a virus, simply replaces the "explorer.exe" program with another program that displays the fake "Gendarmerie" alert window.
For me, even safe mode was no longer working.
So I booted in "safe mode command" (using the F8 key as jacques.gache mentioned).
When you get to command mode, you have a long line like this:
C:\document in setting\....
Type:
CD \WINDOWS\Servicepackfiles\I386
Type:
COPY explorer.exe c:\WINDOWS
Answer Y for yes to the question "replace the file"
Be careful to type the command respecting the spaces...
COPY-space-explorer.exe-space-c:\Windows
Normally, you just have to reboot
Indeed, hackers don't think of everything (thankfully) there are at least two "explorer.exe" programs on the disk.
I don't know if you found the solution. As for me, I used a method that may seem simple for those who have used DOS, which is now the COMMAND mode.
The virus, because it's a virus, simply replaces the "explorer.exe" program with another program that displays the fake "Gendarmerie" alert window.
For me, even safe mode was no longer working.
So I booted in "safe mode command" (using the F8 key as jacques.gache mentioned).
When you get to command mode, you have a long line like this:
C:\document in setting\....
Type:
CD \WINDOWS\Servicepackfiles\I386
Type:
COPY explorer.exe c:\WINDOWS
Answer Y for yes to the question "replace the file"
Be careful to type the command respecting the spaces...
COPY-space-explorer.exe-space-c:\Windows
Normally, you just have to reboot
Indeed, hackers don't think of everything (thankfully) there are at least two "explorer.exe" programs on the disk.
http://lci.tf1.fr/high-tech/streaming-your-computer-blocked-by-the-gendarmerie-it's-false-6881986.html
here's a link, it's a scam, beware, do not pay anything at all.
here's a link, it's a scam, beware, do not pay anything at all.
hello
last variant online
system restore removed
shell key created for user
userinit key created for user
shell key modified for machine
userinit key modified for machine
safe mode removed
Alternate Shell key hijacked
an IFEO that redirects to the file or to svchost.exe
and sometimes even an ActiveX that redirects to the file
last variant online
system restore removed
shell key created for user
userinit key created for user
shell key modified for machine
userinit key modified for machine
safe mode removed
Alternate Shell key hijacked
an IFEO that redirects to the file or to svchost.exe
and sometimes even an ActiveX that redirects to the file
Thank you all for your valuable advice!!!
Thanks Askela, Ltnc, and everyone else!
I didn't follow the DOS method, I found the answer on other forums.
I booted my PC (Running Vista) in safe mode with networking (Pressing F8 continuously during startup).
I then downloaded a FREE software called Malwarebytes Anti Malware that I used...the scan lasted about 1 hour and 30 minutes, and upon my return, 26 files were infected (Trojan, horse, and other garbage...). I deleted everything and restarted my PC in normal mode. EVERYTHING WORKS like before!!!!
Here is the link to download the software that will hunt down all your malware:
http://www.malekal.com/2010/11/12/tutorial-malwarebyte-anti-malware/
Good luck to you if you have this issue, but don't worry, your data and files are safe, definitely do NOT PAY the €200...
Thanks Askela, Ltnc, and everyone else!
I didn't follow the DOS method, I found the answer on other forums.
I booted my PC (Running Vista) in safe mode with networking (Pressing F8 continuously during startup).
I then downloaded a FREE software called Malwarebytes Anti Malware that I used...the scan lasted about 1 hour and 30 minutes, and upon my return, 26 files were infected (Trojan, horse, and other garbage...). I deleted everything and restarted my PC in normal mode. EVERYTHING WORKS like before!!!!
Here is the link to download the software that will hunt down all your malware:
http://www.malekal.com/2010/11/12/tutorial-malwarebyte-anti-malware/
Good luck to you if you have this issue, but don't worry, your data and files are safe, definitely do NOT PAY the €200...
Maybe... I'm really not good at computers. That said, does a computer without any infected files really exist? It's a bit like any human being who has cancer cells in them... after that, they either develop or they don’t...
Do you know a way to "get rid of" these infected files?
You're welcome Kapan, and I'm glad you were able to manage!!! Merry Christmas to you too!!! ^^
Do you know a way to "get rid of" these infected files?
You're welcome Kapan, and I'm glad you were able to manage!!! Merry Christmas to you too!!! ^^
Hello, I have the same issue as you all, but I can't perform the DOS command.
It displays C:\Windows\system32>
And then when I follow the method explained above, I get the message: "the specified path cannot be found".
What should I do?
Thank you in advance for your help!!!
It displays C:\Windows\system32>
And then when I follow the method explained above, I get the message: "the specified path cannot be found".
What should I do?
Thank you in advance for your help!!!
Hello, I had this problem a week ago, and I managed to fix it in 5 minutes: turn off your computer completely, even the button at the back of the tower, restart and boot into safe mode, click on the start logo, programs, go to backup and restore center, then back up the files. In principle, your PC should work again, and remember to update, Ad aware, antivirus...
Hello
I am happy to find other internet users experiencing the same problem and finding solutions.
As for my case, after reading and trying everything that was proposed in this discussion, I still have the same issue because when I press F8, no matter which solution I choose:
- mode in failure
- safe mode with network support
- command prompt in safe mode
- .....
the damn page of the "gendarmerie" "hadopi" virus shows up, I don’t have time to do anything
if the page does not appear, it means the PC is stuck on the session choice page.
I already have Malwarebyte and Spybot on the PC but I don't have the possibility to access them.
If someone could help me on this Christmas Eve!!! I have an Eee PC running XP.
Thank you
I am happy to find other internet users experiencing the same problem and finding solutions.
As for my case, after reading and trying everything that was proposed in this discussion, I still have the same issue because when I press F8, no matter which solution I choose:
- mode in failure
- safe mode with network support
- command prompt in safe mode
- .....
the damn page of the "gendarmerie" "hadopi" virus shows up, I don’t have time to do anything
if the page does not appear, it means the PC is stuck on the session choice page.
I already have Malwarebyte and Spybot on the PC but I don't have the possibility to access them.
If someone could help me on this Christmas Eve!!! I have an Eee PC running XP.
Thank you
come on, here's another one who thinks he's a genius
--
¤¤¤¤¤¤¤¤¤¤_g3n-h@ckm@n_Development_¤¤¤¤¤¤¤¤¤¤
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤_Pre_Scan_¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
--
¤¤¤¤¤¤¤¤¤¤_g3n-h@ckm@n_Development_¤¤¤¤¤¤¤¤¤¤
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤_Pre_Scan_¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
Hello, start a new topic, thank you
--
¤¤¤¤¤¤¤¤¤¤_g3n-h@ckm@n_Development_¤¤¤¤¤¤¤¤¤¤
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤_Pre_Scan_¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
--
¤¤¤¤¤¤¤¤¤¤_g3n-h@ckm@n_Development_¤¤¤¤¤¤¤¤¤¤
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤_Pre_Scan_¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
I'm sorry, I'm really bad at computers, but how about a new topic? I can't do anything because I made a big mistake and turned off my PC and turned it back on, so the gendarmerie's page is completely blank, and I can't see anything at all! Please reply to me as soon as possible (I'm crying because I'm so stressed). I have a Samsung laptop, 64-bit Windows 7, thank you. Oh, and I only have one user; I don't have an administrator, so...
Look at this:
https://www.commentcamarche.net/informatique/windows/113-demarrer-windows-10-en-mode-sans-echec/
See you later.
https://www.commentcamarche.net/informatique/windows/113-demarrer-windows-10-en-mode-sans-echec/
See you later.
Hello Guillaume, I hope you don't mind this intrusion just passing by!!
alextoria1997 hello, to start in safe mode with networking do this and if your PC boots in that mode, come back here and Guillaume can guide you to clean it up
. Press the button to start the PC and as soon as it starts
. Press the F8 or F5 key depending on the PC brand without stopping "1 press per second" as soon as a text screen appears and then disappears
. Use the arrow keys to select safe mode
. Then press ENTER
. You will need to choose your usual session, not the "Administrator" account or another
. Once it starts, don’t worry if the colors and icons are not like usual
and come back here to let us know, thanks
sorry Guillaume, I couldn't resist!! lol!!
alextoria1997 hello, to start in safe mode with networking do this and if your PC boots in that mode, come back here and Guillaume can guide you to clean it up
. Press the button to start the PC and as soon as it starts
. Press the F8 or F5 key depending on the PC brand without stopping "1 press per second" as soon as a text screen appears and then disappears
. Use the arrow keys to select safe mode
. Then press ENTER
. You will need to choose your usual session, not the "Administrator" account or another
. Once it starts, don’t worry if the colors and icons are not like usual
and come back here to let us know, thanks
sorry Guillaume, I couldn't resist!! lol!!
I had the same problem, but I was able to start in safe mode (without network support) and I took the opportunity to do a system restore (I had made my backup three days before). Since then, I haven't had any problems yet, I dare to hope that my issue is resolved.
With a bit of luck, this is another solution to this problem!
With a bit of luck, this is another solution to this problem!
by clicking here:
http://cjoint.com/12ma/BChouKzppdi.htm
--
¤¤¤¤¤¤¤¤¤¤_g3n-h@ckm@n_Development_¤¤¤¤¤¤¤¤¤¤
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤_Pre_Scan_¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
http://cjoint.com/12ma/BChouKzppdi.htm
--
¤¤¤¤¤¤¤¤¤¤_g3n-h@ckm@n_Development_¤¤¤¤¤¤¤¤¤¤
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤_Pre_Scan_¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
Good evening,
Well, my poor g3n, they really won't let you disinfect the help, it seems =D.
For those who want to be helped: https://forums.commentcamarche.net/forum/virus-securite-7/new
You won't get any help if you behave like that on a topic that doesn't belong to you.
Have a good evening.
Well, my poor g3n, they really won't let you disinfect the help, it seems =D.
For those who want to be helped: https://forums.commentcamarche.net/forum/virus-securite-7/new
You won't get any help if you behave like that on a topic that doesn't belong to you.
Have a good evening.
Hello
the exact same thing happened to my daughter. Unfortunately, it's a scam; type "computer blocked by the police" on Google, and it explains what to do, but first, notify the police, which is what I'm going to do tomorrow.
My daughter can still use her computer because a neighbor created another account for her by pressing: ctrl alt delete (at the same time)
and created a new account.
the exact same thing happened to my daughter. Unfortunately, it's a scam; type "computer blocked by the police" on Google, and it explains what to do, but first, notify the police, which is what I'm going to do tomorrow.
My daughter can still use her computer because a neighbor created another account for her by pressing: ctrl alt delete (at the same time)
and created a new account.
nonsense!!!
--
¤¤¤¤¤¤¤¤¤¤_g3n-h@ckm@n_Development_¤¤¤¤¤¤¤¤¤¤
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤_Pre_Scan_¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
--
¤¤¤¤¤¤¤¤¤¤_g3n-h@ckm@n_Development_¤¤¤¤¤¤¤¤¤¤
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤_Pre_Scan_¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
http://shp13.free.fr/divers/humour/malpolitus.swf
--
¤¤¤¤¤¤¤¤¤¤_g3n-h@ckm@n_Development_¤¤¤¤¤¤¤¤¤¤
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤_Pre_Scan_¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
following the variant it doesn't work, it eats the resto ^^
following the variant it doesn't work the resto is disabled
following the variant it doesn't work because you have a big rootkit with
following the variant it doesn't work, how do you search for malwarebytes in safe mode without explorer.exe?
¤¤¤¤¤¤¤¤¤¤_g3n-h@ckm@n_Development_¤¤¤¤¤¤¤¤¤¤
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤_Pre_Scan_¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
following the variant it doesn't work the resto is disabled
following the variant it doesn't work because you have a big rootkit with
following the variant it doesn't work, how do you search for malwarebytes in safe mode without explorer.exe?
¤¤¤¤¤¤¤¤¤¤_g3n-h@ckm@n_Development_¤¤¤¤¤¤¤¤¤¤
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤_Pre_Scan_¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
- 1
- 2
- 3
Suivant