Ransom

How to remove “Generic.Ransom.GlobeImposter.B822E8E4”?

Malware Removal

The Generic.Ransom.GlobeImposter.B822E8E4 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.GlobeImposter.B822E8E4 virus can do?

  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Likely virus infection of existing system binary
  • Creates a copy of itself
  • Appends a known multi-family ransomware file extension to files that have been encrypted

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.GlobeImposter.B822E8E4?


File Info:

crc32: 866C409C
md5: 1cefbbda7530e8fe4ae2681d8127197b
name: 1CEFBBDA7530E8FE4AE2681D8127197B.mlw
sha1: 8844c96470792fb4d1c10767058acf7f2716b9a1
sha256: 95b69fcbeb2f1a3c435744bf32bc85dc269160ae4ae05c57ba5b80a6e809d7ce
sha512: 940a03a58547700ac4c52ac5ff2accc71eeee927566dfcbf55c185d341a9a0c841a3be29308ed4810208de77f085962f1d4d95ce6c322513b3569df632094031
ssdeep: 1536:YPKs+Na3IGeKJolntwr7DSTWvTwhQ8Yiocv:YPKs+Na3IrKJolntGDT5Xtcv
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.GlobeImposter.B822E8E4 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00502c261 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.11539
CynetMalicious (score: 100)
ALYacTrojan.Ransom.GlobeImposter
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/GlobeImposter.ali1020004
K7GWTrojan ( 00502c261 )
Cybereasonmalicious.a7530e
CyrenW32/S-71156494!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.FV
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.Ransom.GlobeImposter.B822E8E4
NANO-AntivirusTrojan.Win32.Filecoder.eximhz
ViRobotTrojan.Win32.Ransom.56832.J
SUPERAntiSpywareRansom.Filecoder/Variant
MicroWorld-eScanGeneric.Ransom.GlobeImposter.B822E8E4
TencentWin32.Trojan.Globeimposter.Ecvf
Ad-AwareGeneric.Ransom.GlobeImposter.B822E8E4
BitDefenderThetaAI:Packer.DCACFEDD1E
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_FAKEGLOBE.SMB
McAfee-GW-EditionBehavesLike.Win32.Generic.qm
FireEyeGeneric.mg.1cefbbda7530e8fe
EmsisoftGeneric.Ransom.GlobeImposter.B822E8E4 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.bykfe
AviraHEUR/AGEN.1117723
MicrosoftRansom:Win32/Necne
AegisLabTrojan.Win32.Generic.4!c
GDataGeneric.Ransom.GlobeImposter.B822E8E4
AhnLab-V3Trojan/Win32.Generic.C2376089
Acronissuspicious
McAfeeGenericRXDX-LS!1CEFBBDA7530
MAXmalware (ai score=99)
VBA32TrojanRansom.Necne
MalwarebytesRansom.FileCryptor
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_FAKEGLOBE.SMB
RisingRansom.FileCryptor!8.1A7 (CLOUD)
YandexTrojan.GenAsa!zWp8ygiHWug
IkarusTrojan-Ransom.FileCrypter
FortinetW32/Filecoder.FV!tr
AVGWin32:RansomX-gen [Ransom]
Paloaltogeneric.ml

How to remove Generic.Ransom.GlobeImposter.B822E8E4?

Generic.Ransom.GlobeImposter.B822E8E4 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment