Ransom

Should I remove “Generic.Ransom.GlobeImposter.0C0DC288”?

Malware Removal

The Generic.Ransom.GlobeImposter.0C0DC288 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.GlobeImposter.0C0DC288 virus can do?

  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.GlobeImposter.0C0DC288?


File Info:

crc32: 39D737B7
md5: a8724c9befaefc36d530eb2c88e0d9e8
name: A8724C9BEFAEFC36D530EB2C88E0D9E8.mlw
sha1: 1ba9afdc991dbe635788dee9dd17ab06c38d46ad
sha256: 52d6be55018672659566144c676ca696ac0860760743f38f5229f58557429e6f
sha512: 8da13adc7e97349cf86938eeca23a51942e6935720731900dc0bfce6a96ace82b69eda391f599623dd10ae52d60d92002d2985787bdd5b901754dbd2eb605599
ssdeep: 768:nTHovuye1kVtGBk6P/v7nWlHznbkVwrEKD9yDwxVSHrowNI2tG6o/t84B5sQR+n:WeytM3alnawrRIwxVSHMweio3QQy
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.GlobeImposter.0C0DC288 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacGeneric.Ransom.GlobeImposter.0C0DC288
MalwarebytesRansom.GlobeImposter
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 00502c261 )
K7AntiVirusTrojan ( 00502c261 )
CyrenW32/S-0a10191d!Eldorado
SymantecRansom.Cryptolocker
ESET-NOD32a variant of Win32/Filecoder.FV
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.Ransom.GlobeImposter.0C0DC288
NANO-AntivirusTrojan.Win32.Encoder.faecqn
ViRobotTrojan.Win32.Ransom.75776.B
SUPERAntiSpywareRansom.FileCoder/Variant
MicroWorld-eScanGeneric.Ransom.GlobeImposter.0C0DC288
TencentMalware.Win32.Gencirc.10ce3cdf
Ad-AwareGeneric.Ransom.GlobeImposter.0C0DC288
SophosML/PE-A + Troj/Ransom-EVE
ComodoTrojWare.Win32.Necne.AB@7l2s58
BitDefenderThetaAI:Packer.3E3590DD1E
McAfee-GW-EditionBehavesLike.Win32.Generic.qm
FireEyeGeneric.mg.a8724c9befaefc36
EmsisoftGeneric.Ransom.GlobeImposter.0C0DC288 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.cblhx
WebrootW32.Ransom.Globeimposter
AviraHEUR/AGEN.1117723
GDataGeneric.Ransom.GlobeImposter.0C0DC288
AhnLab-V3Trojan/Win32.FileCoder.R228072
Acronissuspicious
MAXmalware (ai score=80)
VBA32BScope.Trojan.Encoder
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_FAKEGLOBE.SMB
RisingMalware.Heuristic!ET#100% (RDMK:cmRtazqR5fC9pAlaqibccgc0Xxpq)
YandexTrojan.GenAsa!5gkkdOe61ic
IkarusTrojan-Ransom.GlobeImposter
FortinetW32/Filecoder.FV!tr
AVGWin32:RansomX-gen [Ransom]

How to remove Generic.Ransom.GlobeImposter.0C0DC288?

Generic.Ransom.GlobeImposter.0C0DC288 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment