Ransom

What is “Generic.Ransom.GlobeImposter.1200B87B”?

Malware Removal

The Generic.Ransom.GlobeImposter.1200B87B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.GlobeImposter.1200B87B virus can do?

  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Likely virus infection of existing system binary
  • Creates a copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.GlobeImposter.1200B87B?


File Info:

crc32: 38F757B2
md5: 7ea79a82411ec8bf6a7f803edb56877c
name: 7EA79A82411EC8BF6A7F803EDB56877C.mlw
sha1: 714348d025953d8502218c83b372b2b9f9f9e8cc
sha256: bd9460906213078d5a022f400192160afd7ef1c5a8bd009c68f24fc3fa4078aa
sha512: abdee4abc90d345f57b3cb6a055aae2054f17d124ef7cb2da7c152e240bd82011af0c9c2237915e6ea476728af2559b624cb13867fc027903af2f8f9ec375320
ssdeep: 1536:ANjkfV+KJolntwrbDSTWvTwhQMhmpdL6juTV:y4fIKJolntGDT5qm3Lr
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.GlobeImposter.1200B87B also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00502c261 )
LionicTrojan.Win32.Purgen.tpXr
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.11539
CynetMalicious (score: 100)
CAT-QuickHealTjnRansom.Globe.S2161599
ALYacTrojan.Ransom.Globeimposter
CylanceUnsafe
ZillyaTrojan.Purgen.Win32.177
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaRansom:Win32/Genasom.ali1000102
K7GWTrojan ( 00502c261 )
Cybereasonmalicious.2411ec
CyrenW32/S-f6b6bab7!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.FV
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
KasperskyTrojan-Ransom.Win32.Purgen.ahp
BitDefenderGeneric.Ransom.GlobeImposter.1200B87B
NANO-AntivirusTrojan.Win32.Encoder.eybimv
ViRobotTrojan.Win32.Z.Ransom.56832.T
MicroWorld-eScanGeneric.Ransom.GlobeImposter.1200B87B
TencentWin32.Trojan.Raas.Auto
Ad-AwareGeneric.Ransom.GlobeImposter.1200B87B
SophosML/PE-A + Troj/Ransom-EVE
ComodoTrojWare.Win32.Necne.AB@7l2s58
BitDefenderThetaAI:Packer.D35D5BCA1E
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_FAKEGLOBE.SMB
McAfee-GW-EditionBehavesLike.Win32.Generic.qh
FireEyeGeneric.mg.7ea79a82411ec8bf
EmsisoftGeneric.Ransom.GlobeImposter.1200B87B (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.bzhft
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASMalwS.27FDCF1
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftRansom:Win32/Necne
SUPERAntiSpywareRansom.Filecoder/Variant
GDataGeneric.Ransom.GlobeImposter.1200B87B
TACHYONRansom/W32.GlobeImposter.56832.D
AhnLab-V3Trojan/Win32.Generic.C2376089
Acronissuspicious
McAfeeGenericRXEB-UN!7EA79A82411E
MAXmalware (ai score=100)
VBA32BScope.Trojan.Encoder
MalwarebytesRansom.FileCryptor
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_FAKEGLOBE.SMB
RisingRansom.GlobeImposter!1.A538 (CLASSIC)
YandexTrojan.GenAsa!zWp8ygiHWug
IkarusTrojan-Ransom.FileCrypter
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Filecoder.FV!tr
AVGWin32:RansomX-gen [Ransom]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Necne.HxMBEpsA

How to remove Generic.Ransom.GlobeImposter.1200B87B?

Generic.Ransom.GlobeImposter.1200B87B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment