Association Canadienne des Policiers virus is a ransomware infection, which belongs to Ukash group of viruses. Differently from rogue antispywares, rasomwares lock computer's system and display a large notification that seems to be the official one. Just like previous version Canadian Security Intelligence service virus, Association Canadienne des Policiers virus presents itself as a warning from Canadian Police, which has supposedly detected a user viewing copyrighted content, visiting pornographic videos and doing other illegal activities. Be sure that Association Canadienne des Policiers virus, or Canadian Police virus, has nothing to do with the governmental institution of Canada. This threat is used only to swindle the money. It does that by asking its victim to pay the fine for his/hers illegal activities. Besides, it promises to unlock the system after getting this ransom paid. However, Association Canadienne des Policiers virus just feeds you with a big portion of brainwashing and never unlocks the system. You should remove Association Canadienne des Policiers virus once it appears on your computer.
HOW CAN I GET INFECTED WITH Association Canadienne des Policiers virus?
As a rule, Association Canadienne des Policiers virus gets inside the system via a Trojan horse, which hides inside freeware, shareware and other software. Besides, there have been several claims that this virus can hide in spam emails and their attachments. Once it gets on to a system, such this ransomware quickly gets its malicious code adjusted to the new Operating System and starts doing its business as soon as PC is rebooted. As a result, Canadian Police virus locks computer and displays it salert, which claims:
Canadian Police Association
Association canadienne de policiers
Your computer is locked!
This could be due to one of the following reasons:
1. Your computer has been used to view banned Web sites
2. Your computer has been used to view Web sites containing child pornography.
3. Your computer has been used to illegal information, software.
4. Your computer has been used for storing / viewing pirated content.
What should I do? According to “Information Security and Control Act 2012″, you are required to pay a fine of 100 Canadian dollars. For the convenience of paying the fine we provide a payment gateway for Ukash or PaySafeCard vouchers. You need to buy voucher for sum of 100 Canadian dollars and enter the 19 or 16 digit code written on the voucher the secure payment form, then press “OK” button to send the code.
Please, never believe Association Canadienne des Policiers virus because it belongs to virus creators and seeks only to rip you off. Of course, the main problem is that you will not be able to use any of your programs or connect to the Internet. You may think that your system will be unlocked after paying the fine. However, after our analysis we have revealed that this doesn’t help to fix the problem. You have to remove Canadian Police Association virus in order to unlock the PC.
HOW CAN I REMOVE Association Canadienne des Policiers virus?
Inorder to unlock the system, follow these steps:
* Flash drive method:
1. Take another machine and use it to download Reimage, Malwarebytes MalwarebytesCombo Cleaner or other reputable anti-malware program.
2. Update the program and put into the USB drive or simple CD.
3. In the meanwhile, reboot your infected machine to Safe Mode with command prompt and stick USB drive in it.
4. Reboot computer infected with Ukash virus once more and run a full system scan.
* Users infected with Ukash viruses are allowed to access other accounts on their Windows systems. If one of such accounts has administrator rights, you should be capable to launch anti-malware program.
* Try to deny the Flash to make your ransomware stop function as intended. In order to disable the Flash, go to Macromedia support and select 'Deny': http://www.macromedia.com/support/documentation/en/flashplayer/help/help09.html. After doing that, run a full system scan with anti-malware program.
* Manual Ukash virus removal (special skills needed!):
- Reboot you infected PC to 'Safe mode with command prompt' to disable Ukash virus (this should be working with all versions of this threat)
- Run Regedit
- Search for WinLogon Entries and write down all the files that are not explorer.exe or blank. Replace them with explorer.exe.
- Search the registry for these files you have written down and delete the registry keys referencing the files.
- Reboot and run a full system scan with updated Reimage to remove remaining virus files.