Ransom

What is “Generic.Ransom.GlobeImposter.CDFD5D6F”?

Malware Removal

The Generic.Ransom.GlobeImposter.CDFD5D6F is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.GlobeImposter.CDFD5D6F virus can do?

  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself

How to determine Generic.Ransom.GlobeImposter.CDFD5D6F?


File Info:

crc32: 88AD84E5
md5: 002fcec17f66e2c57e6a37a258ead2af
name: 002FCEC17F66E2C57E6A37A258EAD2AF.mlw
sha1: 361ef4e11172c8c39d8cae638b130e2382e6deb3
sha256: e8483bbfd0764ddb569f9833f4d58bef607780960365f63e43ba720df2ca345a
sha512: b2b64e16fe9dc16ad365f6db4e3439b49ebfa3b8bc3f98d992733ae23332ffd33f6aec8ef0fec16b5d25a6c96094a21e3f3b8b5f703796d4f299c99cfc0a59b7
ssdeep: 768:nTHN9cvuye1kVtGBk6P/v7nWlHznbkVwrEKD9yDwxVSHrowNI2tG6o/t84B5sQR:50eytM3alnawrRIwxVSHMweio3QQy
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.GlobeImposter.CDFD5D6F also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00502c261 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacGeneric.Ransom.GlobeImposter.CDFD5D6F
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 00502c261 )
Cybereasonmalicious.17f66e
CyrenW32/S-0a10191d!Eldorado
ESET-NOD32a variant of Win32/Filecoder.FV
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
ClamAVWin.Ransomware.Globeimposter-6991673-1
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.Ransom.GlobeImposter.CDFD5D6F
NANO-AntivirusTrojan.Win32.Encoder.faecqn
ViRobotTrojan.Win32.Ransom.75776.B
SUPERAntiSpywareRansom.FileCoder/Variant
MicroWorld-eScanGeneric.Ransom.GlobeImposter.CDFD5D6F
TencentMalware.Win32.Gencirc.10ce3cdf
Ad-AwareGeneric.Ransom.GlobeImposter.CDFD5D6F
SophosML/PE-A + Troj/Ransom-EVE
ComodoTrojWare.Win32.Necne.AB@7l2s58
F-SecureHeuristic.HEUR/AGEN.1117723
BitDefenderThetaAI:Packer.3E3590DD1E
TrendMicroRansom_FAKEGLOBE.SMB
McAfee-GW-EditionBehavesLike.Win32.Generic.qm
FireEyeGeneric.mg.002fcec17f66e2c5
EmsisoftGeneric.Ransom.GlobeImposter.CDFD5D6F (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.cblhx
AviraHEUR/AGEN.1117723
Antiy-AVLTrojan[Ransom]/Win32.GlobeImposter
MicrosoftRansom:Win32/Filecoder.RB!MSR
ArcabitGeneric.Ransom.GlobeImposter.CDFD5D6F
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGeneric.Ransom.GlobeImposter.CDFD5D6F
AhnLab-V3Trojan/Win32.FileCoder.R228072
Acronissuspicious
McAfeeGlobelmposter!002FCEC17F66
MAXmalware (ai score=83)
VBA32BScope.Trojan.Encoder
MalwarebytesRansom.GlobeImposter
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_FAKEGLOBE.SMB
RisingMalware.Heuristic!ET#100% (RDMK:cmRtazp/VvOQ1Uu8t36bCOIZBTcU)
YandexTrojan.GenAsa!5gkkdOe61ic
IkarusTrojan-Ransom.GlobeImposter
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/Filecoder.FV!tr
AVGWin32:RansomX-gen [Ransom]

How to remove Generic.Ransom.GlobeImposter.CDFD5D6F?

Generic.Ransom.GlobeImposter.CDFD5D6F removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment