Gomasom - How To Remove?

 

Gomasom also known as Google Mail ransom is a new ransomware. The name Google Mail ransom is related to the encrypted files names – they all have gmail email addresses on them.

Gomasom ransomware is not so similar to all other ransomware of this type. That’s because Gomasom can encrypt not only your files, but executables as well, so you won’t be able to use your applications.

It’s not known how this ransomware is distributed, so you should stick to the main rules of save web browsing in order to avoid it.

Once inside of your computer Gomasom will encrypt your files and change their names. They will be changed to xxx.xxx!___prosschiff@gmail.com_.crypt (or any other email address). Cyber criminals expect users to contact that certain email address in order to get instructions how to pay the ransom and retrieve encrypted files.

Important: Do not contact cyber criminals and do not pay the ransom. You don’t need to do that because decryption tool for Gomasom is already developed. You can download it from here. Description how to use this decryption tool can be found there as well.

If you want to protect your computer and avoid ransomware or other viruses like this next time, we suggest to keep your computer secured with reliable anti-malware application all the time. You can use Reimage, SpyHunter or Malwarebytes for this task – both of these applications should fully protect your system.

In case decryption tool can’t solve your problems, there is another way to get back your files. You can restore them from your back up. However, you must have an actual active backup in order to do that. More information on system backup can be found here: how to do system restore.

If you have some questions regarding this topic, feel free to ask them in the comments section below and we will do our best to provide you with needed assistance.

Update: the decrypter is now available at here: link. You can download it for free and successfully decrypt your files.

Manual removal

 

Important Note: Although it is possible to manually remove Gomasom, such activity can permanently damage your system if any mistakes are made in the process, as advanced spyware parasites are able to automatically repair themselves if not completely removed. Thus, manual spyware removal is recommended for experienced users only, such as IT specialists or highly qualified system administrators. For other users, we recommend using Reimage or other tools found on 2-viruses.com.

Processes:
Extensions:
External decryptor:
       
 

About the author

 - Main Editor
I have started 2-viruses.com in 2007 after wanting to be more or less independent from single security program maker. Since then, we kept working on this site to make internet better and safer place to use.
 
January 12, 2016 09:18, March 14, 2017 05:45
 
   
 

Leave a Reply

Your email address will not be published. Required fields are marked *