Ransom

Generic.Ransom.GlobeImposter.FBA99AF5 removal instruction

Malware Removal

The Generic.Ransom.GlobeImposter.FBA99AF5 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Ransom.GlobeImposter.FBA99AF5 virus can do?

  • A process created a hidden window
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.Ransom.GlobeImposter.FBA99AF5?


File Info:

crc32: EEC84CB0
md5: f191cec3e5b88c82e95915eba4458689
name: F191CEC3E5B88C82E95915EBA4458689.mlw
sha1: 0a21e393fa24c428d2c9f987fe3d9e6b0eddea5b
sha256: 4b2dba3f93addfb060c92789b8d3230ecaaa5d559e942a876c82dd384588cca5
sha512: 568b5cc2de28b0c2639a5d2ea5ac6052d743f65281ae6bbf02108d4e7226c54533a1b2ce9ab3cf7357356314cb3ac5bd5ea28c5fca9e10f3d56829e9382f436a
ssdeep: 1536:UPMbgutzZi79QlgTHf4tq6KhxXwr3+Z8/:Uktz479QlOWWXKy8
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.Ransom.GlobeImposter.FBA99AF5 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00551b351 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.11539
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacTrojan.Ransom.GlobeImposter
MalwarebytesMalware.AI.2532551311
ZillyaTrojan.Filecoder.Win32.7424
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 005031101 )
Cybereasonmalicious.3e5b88
CyrenW32/Ransom.HL.gen!Eldorado
SymantecDownloader
ESET-NOD32a variant of Win32/Filecoder.FV
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Ransomware.GlobeImposter-6468324-0
KasperskyTrojan-Ransom.Win32.Purgen.aho
BitDefenderGeneric.Ransom.GlobeImposter.FBA99AF5
NANO-AntivirusTrojan.Win32.Purgen.euymdd
ViRobotTrojan.Win32.GlobeImposter.56320
SUPERAntiSpywareRansom.GlobeImposter/Variant
MicroWorld-eScanGeneric.Ransom.GlobeImposter.FBA99AF5
TencentWin32.Trojan.Purgen.Ebzt
Ad-AwareGeneric.Ransom.GlobeImposter.FBA99AF5
SophosMal/Generic-R + Troj/Ransom-EVE
ComodoTrojWare.Win32.Necne.AB@7l2s58
BitDefenderThetaGen:NN.ZexaF.34690.deW@aWVnFFb
VIPRETrojan.Win32.Generic!BT
TrendMicroMal_FakeGlobe
McAfee-GW-EditionBehavesLike.Win32.Generic.qh
FireEyeGeneric.mg.f191cec3e5b88c82
EmsisoftGeneric.Ransom.GlobeImposter.FBA99AF5 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Purgen.ct
AviraTR/Crypt.XPACK.Gen
MicrosoftRansom:Win32/Ergop.A
AegisLabTrojan.Win32.Purgen.tqIp
ZoneAlarmTrojan-Ransom.Win32.Purgen.aho
GDataWin32.Trojan-Ransom.GlobeImposter.H
AhnLab-V3Trojan/Win32.RL_Globeimposter.R370421
Acronissuspicious
McAfeeGenericRXDE-MK!F191CEC3E5B8
MAXmalware (ai score=100)
VBA32Trojan-Ransom.Purgen
PandaTrj/Genetic.gen
TrendMicro-HouseCallMal_FakeGlobe
RisingRansom.Purgen!1.AC62 (CLOUD)
YandexTrojan.GenAsa!eIa3SkRNfYc
IkarusTrojan-Ransom.Ergop
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Encoder.3DBB!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Generic.Ransom.GlobeImposter.FBA99AF5?

Generic.Ransom.GlobeImposter.FBA99AF5 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment