Ransom

About “Generic.Ransom.GlobeImposter.F933C173” infection

Malware Removal

The Generic.Ransom.GlobeImposter.F933C173 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.GlobeImposter.F933C173 virus can do?

  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.GlobeImposter.F933C173?


File Info:

crc32: ACE5ADA6
md5: 839b30a340e8a29a3c559b5edac0e1ed
name: 839B30A340E8A29A3C559B5EDAC0E1ED.mlw
sha1: 5189cf40248c1af99120e5650947929b7582ab4c
sha256: b90a7122ef145d6f5614e2abf23823021fd1d567180c33ff3498f0682f7eb3cb
sha512: 97b84b854ab96dfceeb11ac9eba0258e2a07358ebf506da7518a22f14e6b782b221029f77687d67147142867d3ae5189541da9cdd0834c2894c75429c8a93b19
ssdeep: 1536:DsjkfV+KJolntwrbDSTWvTwhQMhmpdLSL:A4fIKJolntGDT5qm3LS
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.GlobeImposter.F933C173 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00502c261 )
LionicTrojan.Win32.Purgen.tpXr
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.11539
CynetMalicious (score: 100)
CAT-QuickHealTjnRansom.Globe.S2161599
ALYacTrojan.Ransom.GlobeImposter
CylanceUnsafe
ZillyaTrojan.Filecoder.Win32.7444
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/GlobeImposter.ali1020004
K7GWTrojan ( 00502c261 )
Cybereasonmalicious.340e8a
CyrenW32/S-f6b6bab7!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Filecoder.FV
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
KasperskyTrojan-Ransom.Win32.Purgen.ahp
BitDefenderGeneric.Ransom.GlobeImposter.F933C173
NANO-AntivirusTrojan.Win32.Encoder.eybimv
ViRobotTrojan.Win32.Ransom.54784.E
MicroWorld-eScanGeneric.Ransom.GlobeImposter.F933C173
TencentWin32.Trojan.Raas.Auto
Ad-AwareGeneric.Ransom.GlobeImposter.F933C173
SophosMal/Generic-R + Troj/Ransom-EVE
ComodoTrojWare.Win32.Necne.AB@7l2s58
BitDefenderThetaAI:Packer.7B1C6FC91E
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_FAKEGLOBE.SMB
McAfee-GW-EditionBehavesLike.Win32.Generic.qh
FireEyeGeneric.mg.839b30a340e8a29a
EmsisoftGeneric.Ransom.GlobeImposter.F933C173 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.bzhft
AviraTR/Crypt.XPACK.Gen
MicrosoftRansom:Win32/Necne
SUPERAntiSpywareRansom.Filecoder/Variant
GDataGeneric.Ransom.GlobeImposter.F933C173
AhnLab-V3Trojan/Win32.Generic.C2376089
Acronissuspicious
McAfeeGenericRXEB-UN!839B30A340E8
MAXmalware (ai score=100)
VBA32BScope.Trojan.Encoder
MalwarebytesRansom.FileCryptor
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_FAKEGLOBE.SMB
RisingRansom.GlobeImposter!1.A538 (CLASSIC)
YandexTrojan.GenAsa!zWp8ygiHWug
IkarusTrojan-Ransom.FileCrypter
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Filecoder.FV!tr
AVGWin32:RansomX-gen [Ransom]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Necne.HxMBEpsA

How to remove Generic.Ransom.GlobeImposter.F933C173?

Generic.Ransom.GlobeImposter.F933C173 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment