Ransom

Should I remove “Generic.Ransom.GlobeImposter.3742E428”?

Malware Removal

The Generic.Ransom.GlobeImposter.3742E428 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.GlobeImposter.3742E428 virus can do?

  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Appends a known multi-family ransomware file extension to files that have been encrypted

How to determine Generic.Ransom.GlobeImposter.3742E428?


File Info:

crc32: 89684567
md5: b96381117cea8ee6895d4a031caafcf0
name: B96381117CEA8EE6895D4A031CAAFCF0.mlw
sha1: 681bc73d9f33749073f76972e9685aed6d1314d5
sha256: 650b0898324c631fc5205fbd85c9ecf578110ee726bedf34b01f702c58b23005
sha512: ed278f670f8bfc0a8e7b79d1b8c9e3cad62217de7d98271bb5e5d385fdb08a64cb43f227effd1528c5de56fade44b10006fa56da8e94d93013e59ec68cf14b03
ssdeep: 768:sITvuye1kVtGBk6P/v7nWlHznbkVwrEKD9yDwxVSHrowNI2tG6o/t84B5YNK:s4eytM3alnawrRIwxVSHMweio3+
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.GlobeImposter.3742E428 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
ClamAVWin.Ransomware.Globeimposter-6991673-1
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacGeneric.Ransom.GlobeImposter.3742E428
CylanceUnsafe
SangforRansom.Win32.Globeimposter_1.se2
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 00502c261 )
K7AntiVirusTrojan ( 00502c261 )
CyrenW32/S-0a10191d!Eldorado
SymantecRansom.Cryptolocker
ESET-NOD32a variant of Win32/Filecoder.FV
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.Ransom.GlobeImposter.3742E428
NANO-AntivirusTrojan.Win32.Encoder.faecqn
ViRobotTrojan.Win32.Ransom.75776.B
MicroWorld-eScanGeneric.Ransom.GlobeImposter.3742E428
TencentMalware.Win32.Gencirc.10cf278b
Ad-AwareGeneric.Ransom.GlobeImposter.3742E428
SophosML/PE-A + Troj/Ransom-EVE
ComodoTrojWare.Win32.Necne.AB@7l2s58
BitDefenderThetaAI:Packer.0055ED0D1E
TrendMicroRansom_FAKEGLOBE.SMB
McAfee-GW-EditionBehavesLike.Win32.VTFlooder.qm
FireEyeGeneric.mg.b96381117cea8ee6
EmsisoftGeneric.Ransom.GlobeImposter.3742E428 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.cblhx
AviraHEUR/AGEN.1117723
Antiy-AVLTrojan/Generic.ASCommon.127
MicrosoftRansom:Win32/Filecoder.RB!MSR
ArcabitGeneric.Ransom.GlobeImposter.3742E428
SUPERAntiSpywareRansom.FileCoder/Variant
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGeneric.Ransom.GlobeImposter.3742E428
AhnLab-V3Trojan/Win32.FileCoder.R228072
Acronissuspicious
McAfeeGlobelmposter!B96381117CEA
MAXmalware (ai score=80)
VBA32BScope.Trojan.Encoder
MalwarebytesRansom.GlobeImposter
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_FAKEGLOBE.SMB
RisingRansom.GlobeImposter!1.A538 (CLASSIC)
YandexTrojan.GenAsa!5gkkdOe61ic
IkarusTrojan-Ransom.GlobeImposter
FortinetW32/Filecoder.FV!tr
AVGWin32:RansomX-gen [Ransom]

How to remove Generic.Ransom.GlobeImposter.3742E428?

Generic.Ransom.GlobeImposter.3742E428 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment