Godsomware (God Crypt v1.0) ransomware - How to remove

Just a few days ago on October 6th, 2018, MalwareHunterTeam, as usual, reported on their Twitter about a new joke ransomware called God Crypt v1.0 or Godsomware. This cryptovirus seems to be not as malicious as everyone would expect and does not even encrypt the files, but what it can sure do is annoy and scare the victims. With an appearance like WannaCry, mixed with multiple pop-ups of memes with troll faces, Nyan cat, and system errors, God Crypt makes a strange and slightly perturbing combination, which you want to remove immediately.

Luckily, thanks to the same MalwareHunterTeam, the unlock code was cracked which works on all compromised computers. If that is your first ransomware encounter, don’t rush to do whatever it says and pay crooks the $100 ransom, because your PC is not in that much of danger. In order to learn more about Godsomware virus, continue reading this 2-viruses.com team prepared article, or if you want to get the decryption code right away and stop all the irritating nuisance, the skip straight to the removal part.

What does Godsomware virus do

Unlike the typical ransomware viruses, such as BGTX, .NEWRAR, Qinynore, Godsomware does not lock personal files, it does not add an extension or block your screen. All it does, once it gets into your Windows OS, it changes the desktop wallpaper into the one from WannaCry and opens a ransom demanding screen, with tons of Memes in the background, which requests $100 in Bitcoin (0,015 BTC).

godsomware ransomware virus

But before that screen is flooded with an excessive amount of pop-ups with system errors, like System32.dll error, taskmgr.dll no found, regedit.dll error, microsoft.dll not found, dll.dll error, which indicates that the ransomware developers did not perform some of the commands, that are responsible for the full functioning of the ransomware. (You can see God Crypt v1.0 virus full visuals on Guido Not CISSP Twitter).

As this is a joke application meant to annoy victims, the most malicious features of cryptovirus, were purposely not included. Despite that VirusTotal.com report shows that Godransomware is still well recognized as a threat by 25 out of 68 AVs.

Here is the message that your background is changed into:

Ooops, your important files are encrypted.

If you see this text, but don’t see the “Wanna Decrypt0r” window,
then your antivirus removed the decrypt software or you deleted
it from your computer.
If you need your files you have to run the decrypt software.
Please find an application file named “@[email protected]” in
any folder or restore from the antivirus quarantine.

Run and follow the instructions!

Although from the exterior God Crypt cryptovirus may look like a dangerous species of malware, Dont rush to pay, because, fortunately, this ransomware infection is one of the easiest to fix. Scroll down and learn how to best deal with Godsomware virus.

How did you end up with God Crypt v1.0 ransomware

God Crypt ransomware possibly sneaked into your system through a bogus email attachment of .docx file or direct link with malware. This is an easy distribution for the virus Since Macros are still at the top of the line as a number one cyber threat spreading methods nowadays. Basically, crooks just make up an email that is believable, asking to open the attachment for more information or to fill something up, and once the victim opens it and enables macros since the file requests, Windows gets infected with Godsomware. In only a few moments all the necessary processes are started in the background and no later than a minute you are overwhelmed with errors, memes, and WannaCry ransom notes.

How to remove Godsomware ransomware and clean the system

Apart from the Nyan cat and memes, there is another positive thing about Godsomware ransomware – it’s the universal decryption key, that has been already cracked. Just enter 29b579fb811f05c3c334a2bd2646a27a code into the ‘Decrypt’ section and another pop-up will tell you how by stopping a certain process in the Task manager your computer should be freed from the God Crypt v1.0 ransomware. Even though this does stop the pop-ups and virus from showing up, but you should still look into which vulnerabilities allowed this threat in and run an antivirus scan on your Windows, to make sure if all malicious files are gone and Godsomware was truly a joke.

God decrypt v1.0 ransomware unlock code

The best anti-malware tools, that we can recommend for this situation are SpyHunter and Malwarebytes. They will be really useful when scanning the PC after Godsomware removal because all other possibly malicious files will be detected and removed in a matter of seconds, without you having to do anything. There are a few other security products that we have tested which perform well with ransomware infections, which you can see in our Reviews page. As for the manual cleansing, we cannot recommend anything effective, except for the restore from the backups, yet this may result in lost files or complete wipeout if you do not have recent copies of your data.

Automatic Malware removal tools

Download Spyhunter for Malware detection
(Win)

Note: Spyhunter trial provides detection of parasites and assists in their removal for free. limited trial available, Terms of use, Privacy Policy, Uninstall Instructions,

Download Combo Cleaner for Malware detection
(Mac)

Note: Combo Cleaner trial provides detection of parasites and assists in their removal for free. limited trial available, Terms of use, Privacy Policy, Uninstall Instructions, Refund Policy ,

Leave a Reply

Your email address will not be published. Required fields are marked *