La policia ESPA脩OLA virus is yet another ransomware-type application, typically the same as Metropolitan Police scary warning. All these malwares act the same and have nothing to do with the real police departments of various countries of the world. They are used for the only purpose of robbing users, forcing them to pay certain amount in order to unlock their computers and get rid of these scary notifications. Well, La policia ESPA脩OLA virus was primarily designed for Spanish-speaking countries, mostly for Spain. This alert would indicate that the user have been noticed watching extremely illegal content, thus having violated the laws of Spain. The point is that such bogus warning may come up just out of the blue, and even the people who have never watched such illegal content may receive this scary notice. As we said, this is the virus that aims to get more and more of your money. It completely locks and disables your PC, without giving you ability to do anything with it. You would see nothing except for this scary warning supposedly originated by Spanish Police. Rebooting your PC would not be helpful. Upon restart the same picture would come up, without giving you a chance to use your PC in the normal manner. Do not disclose any information to the crooks and frauds that developed this virus. In order to unlock your system please follow our manual ransomware removal instructions on how to get rid of it manually. Several methods to delete this virus are considered in the rest of the article below. If one solution didn鈥檛 work please try another way of getting rid of La policia ESPA脩OLA ransomware (see the link with alternative solution in the very bottom of this article).
La polic铆a ESPA脩OLA
Atenci贸n!!! Ha sido detectada actividad ilegal! Su sistema operativo ha sido bloqueado debido a una infracci贸n de la legislaci贸n alemana!
Han sido detectadas las siguientes infracciones: Su direcci贸n IP ha sido registrada en las webs ilegales con contenido pornogr谩fico orientadas a la difusi贸n de la pornograf铆a infantil, zoofilia e im谩genes de violencia contra menores! En su ordenador han sido detectados los archivos de video de contenido pornogr谩fico con elementos de violencia y pornograf铆a infantil! Adem谩s, desde su ordenador se realiza un envi贸 ilegal (SPAM) de orientaci贸n pro terrorista. El presente bloqueo ha sido realizado para prevenir la posibilidad de difusi贸n de dichos materiales desde su ordenador en Internet.
Para desbloquear su ordenador, usted ha de pagar una multa de 100 euros! La multa ha de ser pagada antes de 24 horas desde el momento del bloqueo de su ordenador! En el caso de impago, todos los datos de su ordenador ser谩n eliminados!
Usted tiene dos formas de pagar la multa:
1) Usted puede adquirir un cup贸n Ukash por el importe de 100 euros. El n煤mero de ese cup贸n Ukash. usted ha de introducir en el campo del pago y apretar el bot贸n 鈥淥K鈥. Si el sistema no confirma el pago realizado con 茅xito, usted ha de enviar el n煤mero de su voucher por e-mail.
2) Usted puede pagar la multa mediante paysafecard. Usted ha de pagar paysafecard por el importe de 100 euros. Usted ha de introducir el c贸digo PIN del cheque en el campo del pago y apretar el bot贸n 鈥淥K鈥. Si el sistema no confirma el pago realizado con 茅xito, usted ha de enviar el c贸digo PIN por e-mail.
Envi茅 los datos por e-mail: info.lapoIiciaespa@Dolagyahoo.com
La policia ESPA脩OLA virus removal sequence of steps:
- Restart your system into Safe Mode with Command Prompt. While your PC is booting hit “F8 key” on your keyboard repeatedly. This will lead you to “Windows Advanced Options Menu” as depicted below. Apply your arrow keys to go to Safe Mode with Command Prompt and then hit Enter key. Important! You need to login as the same user you were previously logged in with in the normal Windows mode. Please find more detailed information on rebooting into safe mode in this guide.
- While Windows boots the Windows command prompt will appear as depicted in the screenshot below. In the command prompt you need to type “regedit” (without quotation marks) and hit Enter. The Registry Editor window comes up.
- Find the following registry entry:
- Once Windows OS boots you will not see any desktop icons. Do not panic, this problem will be resolved soon. First of all, use the key combination “Ctrl+Alt+Del” or “Ctrl+Shift+Esc” (recommended) and launch Task Manager. Click File 鈫 New Task (Run…)
- This would open Internet Explorer broswer. Now you must download clean explorer.exe file and over-write the existing one which is infected. Please make sure you download the correct file for your version of Windows OS:
- Open up Task Manager once again. For this purpose click File 鈫 New Task (Run…) as you made in previous steps.
- Type in regedit and click OK to open Registry Editor.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\
In the righthand panel select the registry key named Shell. Right click on this registry key and select Modify.
The default value is Explorer.exe.
Now you must amend the value data to iexplore.exe. Click OK to save your changes and now quit (shut down) the Registry editor.
Now return to “Normal Mode“. In order to reboot your PC, at the command prompt, type “shutdown /r /t 0” (without quotation marks) and hit Enter.
Type in iexplore and hit OK or click Enter keyboard button.
Click on the link to download the file. Select Save. Then go to C:\Windows folder and select available explorer.exe file. Click Save to overwrite the malicious explorer.exe file.
Find the same registry entry referred to in the step 3 of this tutorial.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\
In the righthand panel choose the registry entry with the name Shell. Right click on this registry entry and select Modify. Delete iexplore.exe and type in Explorer.exe as it was initially. Click OK to save performed amendments.
Shut down Registry Editor and reboot your PC now. This should reslove your problem. The last but not the least – make sure to scan your PC with reliable and powerful anti-virus software.
Important! If this ransomware removal solution did not help you please consider another similar guide available here.









