Ransom

Generic.Ransom.GlobeImposter.ED18BB17 information

Malware Removal

The Generic.Ransom.GlobeImposter.ED18BB17 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.GlobeImposter.ED18BB17 virus can do?

  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.GlobeImposter.ED18BB17?


File Info:

crc32: B323ED1D
md5: 7ba9734b62015d9aab0764b39c971994
name: 7BA9734B62015D9AAB0764B39C971994.mlw
sha1: e05e2c319d073989d80658fad50b230d288b3b48
sha256: b5533756c7630974d56d936e2bcfa87df7c466d10fbc2d8254639f47b40a3468
sha512: 08db2c7492153ba7e3ab7e22f8837b040503ef92d2f163f26be30b1def949df821ee6f05a8792688a3b006967c1b21b5e12c18586c91c685c5f97cadf650a941
ssdeep: 1536:ehPKs+Na3IGeKJolntwr7DSTWvTwhQ8YioZmCZDQ:ehPKs+Na3IrKJolntGDT5XtZmyDQ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.GlobeImposter.ED18BB17 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00502c261 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.24408
CynetMalicious (score: 100)
CAT-QuickHealTrojan.MauvaiseRI.S5252438
ALYacGeneric.Ransom.GlobeImposter.ED18BB17
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.7015
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/GlobeImposter.ali1020004
K7GWTrojan ( 00502c261 )
Cybereasonmalicious.b62015
CyrenW32/S-71156494!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.FV
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.Ransom.GlobeImposter.ED18BB17
NANO-AntivirusTrojan.Win32.Filecoder.eximhz
ViRobotTrojan.Win32.Ransom.56832.J
MicroWorld-eScanGeneric.Ransom.GlobeImposter.ED18BB17
TencentWin32.Trojan.Globeimposter.Akpl
Ad-AwareGeneric.Ransom.GlobeImposter.ED18BB17
SophosMal/Generic-R + Troj/Ransom-EVE
ComodoTrojWare.Win32.Necne.AB@7l2s58
BitDefenderThetaAI:Packer.BA62EFDD1E
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_FAKEGLOBE.SMB
McAfee-GW-EditionBehavesLike.Win32.Generic.qh
FireEyeGeneric.mg.7ba9734b62015d9a
EmsisoftGeneric.Ransom.GlobeImposter.ED18BB17 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.bykfe
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1117723
MicrosoftRansom:Win32/Necne
SUPERAntiSpywareRansom.Filecoder/Variant
GDataGeneric.Ransom.GlobeImposter.ED18BB17
AhnLab-V3Trojan/Win32.Generic.C2376089
Acronissuspicious
McAfeeGenericRXDX-LS!7BA9734B6201
MAXmalware (ai score=97)
VBA32TrojanRansom.Necne
MalwarebytesRansom.FileCryptor
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_FAKEGLOBE.SMB
RisingRansom.GlobeImposter!1.A538 (CLASSIC)
YandexTrojan.GenAsa!zWp8ygiHWug
IkarusTrojan-Ransom.FileCrypter
FortinetW32/Filecoder.FV!tr
AVGWin32:RansomX-gen [Ransom]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Necne.HxMBEpsA

How to remove Generic.Ransom.GlobeImposter.ED18BB17?

Generic.Ransom.GlobeImposter.ED18BB17 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment