Ransom

Generic.Ransom.GlobeImposter.DA9F0D2C removal

Malware Removal

The Generic.Ransom.GlobeImposter.DA9F0D2C is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.GlobeImposter.DA9F0D2C virus can do?

  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Writes a potential ransom message to disk
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Likely virus infection of existing system binary
  • Creates a copy of itself
  • Appends a known encryptJJS ransomware file extension to files that have been encrypted

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.GlobeImposter.DA9F0D2C?


File Info:

crc32: 674446E2
md5: c3aa8463eb752430593ac2afb67afecd
name: C3AA8463EB752430593AC2AFB67AFECD.mlw
sha1: 2bf66912f871e631631ea3491d6e57c596893643
sha256: d731b9c7568d50b705877846eea91e295ff2d8c221138cca12dc5130783a29ab
sha512: ad95687b882f55daad7742ce5ce4229f3ce9a9794f6c54cde6b5f781da5c1a85f88cb998afa6c3b72bb105051be8d3a2017a6a1785e5c7a7418eb2f8d36f1c4b
ssdeep: 768:AG2vuye1kVtGBk6P/v7nWlHznbkVwrEKD9yDwxVSHrowNI2tG6o/t84B5peNF:JseytM3alnawrRIwxVSHMweio3vC
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.GlobeImposter.DA9F0D2C also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.11539
ClamAVWin.Ransomware.Globeimposter-6991673-1
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacTrojan.Ransom.GlobeImposter
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/GlobeImposter.ali1020004
K7GWTrojan ( 00502c261 )
K7AntiVirusTrojan ( 00502c261 )
CyrenW32/S-0a10191d!Eldorado
SymantecRansom.CryptXXX
ESET-NOD32a variant of Win32/Filecoder.FV
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.Ransom.GlobeImposter.DA9F0D2C
NANO-AntivirusTrojan.Win32.Encoder.faecqn
ViRobotTrojan.Win32.Ransom.75776.B
MicroWorld-eScanGeneric.Ransom.GlobeImposter.DA9F0D2C
TencentWin32.Trojan.Raas.Auto
Ad-AwareGeneric.Ransom.GlobeImposter.DA9F0D2C
SophosML/PE-A + Troj/Ransom-EVE
ComodoTrojWare.Win32.Necne.AB@7l2s58
BitDefenderThetaAI:Packer.6996D0521E
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_FAKEGLOBE.SMB
McAfee-GW-EditionBehavesLike.Win32.Generic.qh
FireEyeGeneric.mg.c3aa8463eb752430
EmsisoftGeneric.Ransom.GlobeImposter.DA9F0D2C (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.cblhx
AviraHEUR/AGEN.1117723
Antiy-AVLTrojan/Generic.ASCommon.127
MicrosoftRansom:Win32/Filecoder.RB!MSR
SUPERAntiSpywareRansom.FileCoder/Variant
GDataGeneric.Ransom.GlobeImposter.DA9F0D2C
AhnLab-V3Trojan/Win32.FileCoder.R228072
Acronissuspicious
McAfeeGlobelmposter!C3AA8463EB75
MAXmalware (ai score=100)
VBA32BScope.Trojan.Encoder
MalwarebytesRansom.GlobeImposter
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_FAKEGLOBE.SMB
RisingRansom.GlobeImposter!1.A538 (CLASSIC)
YandexTrojan.GenAsa!5gkkdOe61ic
IkarusTrojan-Ransom.GlobeImposter
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Filecoder.FV!tr
AVGWin32:RansomX-gen [Ransom]
Paloaltogeneric.ml

How to remove Generic.Ransom.GlobeImposter.DA9F0D2C?

Generic.Ransom.GlobeImposter.DA9F0D2C removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment