Danger level 9
Type: Malware
Common infection symptoms:
  • Block exe files from running
  • Installs itself without permissions
  • Connects to the internet without permission
  • System crashes
  • Annoying Pop-up's
  • Slow Computer

L’accès à votre ordinateur a été fermé Virus

L’accès à votre ordinateur a été fermé Virus is a ransomware program that can infect operating Windows systems located in France. The program has been researched to lock down a computer, remove all administrative privileges and ask money under the false pretense of a fictitious GEMA investigation. The infection is presented via a notification that appears on the screen when the computer is locked. The bogus alert will be used to convince you that you have been noticed to break cyber security laws which have led up to your system’s lock-down and fine payment demands. Even though your PC’s paralysis is highly irritating, you should not think that this is the most that cyber criminals could do. In fact, if you do not remove L’accès à votre ordinateur a été fermé Virus from the operating system now, soon enough schemers could open backdoors for much more dangerous malware that are capable of digital theft.

The information that is attached to the bogus screen-locking warning looks like this:

Sur votre ordinateur il y avait des chansons qui ont ete telechargees illegalement (“piratage”).
Lorsque vous avez fait un téléchargement des chansons qui ont été polycopies, cela est egalement une infraction penale conformément au §106 de la loi Droit d’auteur.
L’accès à votre ordinateur a été fermé! […]
Pour débloquer et pour d’autres actes, qui ont été le résultat d’une violation de la loi, vous devez à payer une amende – 100 €.

Windows users living outside of France could recognize the misleading accusations, because they have been repeated in a number of different Ukash viruses. Such malicious ransomware infections as Attention! L'ordinateur a été verrouillé!, Votre Ordinateur Est Bloqué Virus, Gendarmerie Nationale Virus and Office Central de Lutte contre la Criminalité virus are French variations of the Ukash (or Paysafecard) virus. This notable umbrella name has been attached to the faction because cyber criminals have used Ukash and Paysafecard money transfer systems in all of their scams. To say the least, this is not a factor determining the legitimacy of the accusations or supposed GEMA investigation. As a matter of fact, the national authorities have nothing to do with the illicit processes executed within your computer, and getting L’accès à votre ordinateur a été fermé Virus removed is extremely important.

All operating Windows systems need to be protected by reliable, effective, automatic threat removal and system protection tools, like SpyHunter. Follow the instructions that will help you delete L’accès à votre ordinateur a été fermé Virus, scan the computer for potentially running Trojans and protect Windows against further attacks.

Windows Vista and Windows 7:

1. Restart the computer using the power button.
2. Immediately after the information about Windows (BIOS screen) disappears, keep tapping the F8 button found on your keyboard.
3. Once Advanced Boot Options menu appears, select Safe Mode with Networking using the arrow keys on the keyboard. Hit Enter.
4. When the system loads up, launch a browser, go to http://www.pcthreat.com/download-sph and download SpyHunter.
5. Install the application to have malware removed.

Windows XP:

1. Restart the computer. Use the power button if you cannot execute the task from the desktop.
2. After the BIOS screen disappears, continuously hit F8 on your keyboard. This will help you access Windows Advanced Options Menu.
3. Using arrow keys on the keyboard select Safe Mode with Networking.
4. Hit Enter on the keyboard to boot the system.
5. Click on the Start menu.
6. Launch RUN.
7. Type in “msconfig” and click OK. This will launch System Configuration Utility.
8. Click on the Startup tab and then the Disable All button. Apply the changes and exit the program.
9. Download SpyHunter using the link provided in previous instructions.
10. Restart the computer normally.
11. Install SpyHunter and have the virus deleted immediately.

Download Spyware Removal Tool to Remove* L’accès à votre ordinateur a été fermé Virus
  • Quick & tested solution for L’accès à votre ordinateur a été fermé Virus removal.
  • 100% Free Scan for Windows
disclaimer

How to manually remove L’accès à votre ordinateur a été fermé Virus

Files associated with L’accès à votre ordinateur a été fermé Virus infection:

taskhost.exe.exe
securitywindrv.exe
ifgxpers.exe
install_0_msi.exe
Updating.exe
rvcbcyks.exe
msshell.exe
NTServiceManager.exe
mplayer2.exe
{097444e7-2d87-ba3c-2efe-9f54812d824a}.exe
msdtmsrd.exe
TimeDateMUICallback.exe
pYunY8m4VL3qLc.exe
2084473.dll
Task Scheduler.exe
idiokbbrv.exe
msn.exe
WINDED6.exe
xctqakcqbeo.dll
%SystemDrive%\????????????
%AppData%
Other.res
魔法桌面第三方主题破解补丁V1.1.exe
systemcpl.exe
SyncHostps.exe
pmstcdjwz.exe
cf6640a77ed4926a4c6be661ab93def9d13408753dd07e8d02836996a2f247b6.exe
%WINDIR%\Temp
crack.exe
ctfmon.exe
m2PythonLoader.exe
gcrwcoak.exe
scvhost.exe
msnmsgrr.exe
najeoxtt.exe
%UserProfile%
setex.exe
WinSyncMetastore.exe
ex3b.dll
UpdatePriv.exe
skype.dat
wlsidten.exe
wgsdgsdgdsgsd.exe
50E1.exe
%LOCALAPPDATA%\lollipop
svchost.exe
aPr0hY9.exe
iner.exe
%ALLUSERSPROFILE%
wahneaqa.exe
3511172082012Build.exe
yaiiwockc.dll
MusicCollector.exe
brenasa.exe
wpbt0.dll
%APPDATA%\system
n.
ACEIEAddOn.dll
csrsss.exe
OmaSG21e.exe
C87C.exe
UpgradeHelper.exe
puozlkmyj.dll
bvhylsviw.exe
%LOCALAPPDATA%\Temp
ieudator.dll
administration.exe
Nbt.exe
dyjdl.exe
00qbipeq.exe
oygqyunapnp.exe
wjthvwjb.dss
dtkmujvo.exe
b34btbztdb0vavaw.exe
msavfit.exe
videotwisterSA.exe
Firewallservice.exe
secproc_isv.exe
acuvzomo.exe
DA0B.exe
sqlncli.exe
rool0_pk.exe
DLL321.dll
Piranha.exe
96dddda4.dll
%APPDATA%\Task Scheduler
87b2cb3916261d5c807bf44262755cb0.exe
%TEMP%
hwj3ba6j.dss
dqnbdq7.dss
bzsbkotiu.exe
jsdhlexdqkllnbcxgai.bfg
p1.exe
audipbrd.exe
JfCqQ5JC.exe
xaZYOVJW.exe
ssntvs.exe
bf8h8d02hf.exe
wlsidten.dll
ubvhynpxh.exe
obvwo.exe
xmlfilter.exe
comeo.exe
%ALLUSERSPROFILE%\Application Data
VaultSysUi.exe
%APPDATA%\updates
Q3d38543.exe
questscan.dll
xlqbteeb.exe
zqmkrehUkpoKfsafsaZg.exe
uenovfiu.exe
%WINDIR%\system32
%CommonProgramFiles%
00b5d693.exe

L’accès à votre ordinateur a été fermé Virus DLL's to remove:

yaiiwockc.dll
wlsidten.dll
xctqakcqbeo.dll
ACEIEAddOn.dll
puozlkmyj.dll
wpbt0.dll
ex3b.dll
96dddda4.dll
ieudator.dll
DLL321.dll
2084473.dll
questscan.dll

L’accès à votre ordinateur a été fermé Virus processes to kill:

p1.exe
comeo.exe
魔法桌面第三方主题破解补丁V1.1.exe
UpdatePriv.exe
VaultSysUi.exe
taskhost.exe.exe
najeoxtt.exe
TimeDateMUICallback.exe
UpgradeHelper.exe
msavfit.exe
87b2cb3916261d5c807bf44262755cb0.exe
bf8h8d02hf.exe
rool0_pk.exe
SyncHostps.exe
Piranha.exe
bzsbkotiu.exe
Q3d38543.exe
WinSyncMetastore.exe
aPr0hY9.exe
pmstcdjwz.exe
ssntvs.exe
uenovfiu.exe
zqmkrehUkpoKfsafsaZg.exe
dtkmujvo.exe
OmaSG21e.exe
setex.exe
securitywindrv.exe
install_0_msi.exe
Task Scheduler.exe
wlsidten.exe
WINDED6.exe
wahneaqa.exe
50E1.exe
wgsdgsdgdsgsd.exe
C87C.exe
m2PythonLoader.exe
dyjdl.exe
xmlfilter.exe
csrsss.exe
videotwisterSA.exe
Updating.exe
bvhylsviw.exe
ifgxpers.exe
ctfmon.exe
xaZYOVJW.exe
00qbipeq.exe
DA0B.exe
svchost.exe
mplayer2.exe
Nbt.exe
xlqbteeb.exe
iner.exe
b34btbztdb0vavaw.exe
systemcpl.exe
secproc_isv.exe
sqlncli.exe
msn.exe
gcrwcoak.exe
3511172082012Build.exe
administration.exe
scvhost.exe
idiokbbrv.exe
00b5d693.exe
{097444e7-2d87-ba3c-2efe-9f54812d824a}.exe
acuvzomo.exe
oygqyunapnp.exe
crack.exe
obvwo.exe
ubvhynpxh.exe
MusicCollector.exe
msshell.exe
msnmsgrr.exe
pYunY8m4VL3qLc.exe
JfCqQ5JC.exe
msdtmsrd.exe
Firewallservice.exe
NTServiceManager.exe
cf6640a77ed4926a4c6be661ab93def9d13408753dd07e8d02836996a2f247b6.exe
audipbrd.exe
rvcbcyks.exe
brenasa.exe
Disclaimer

Post comment — WE NEED YOUR OPINION!

Comment:
Name:
Please enter security code:
This is a captcha-picture. It is used to prevent mass-access by robots.