GlobeImposter
Description
(Malwarebytes) Ransom.GlobeImposter is a ransomware application that will encrypt files on a victim machine and demand payment to retrieve the information. Ransom.GlobeImposter is also known as Fake Globe due to how the software mimics the Globe ransomware family. Ransom.GlobeImposter may be distributed through a malicious spam campaign, recognizable only with their lack of message content and an attached ZIP file. This type of spam is called a “blank slate.” Ransom.GlobeImposter is also distributed via exploits and malicious advertising, fake updates, and repacked infected installers.
Names
Name |
---|
GlobeImposter |
Fake Globe |
Category
Malware
Type
- Ransomware
Information
- https://blog.malwarebytes.com/detections/ransom-globeimposter/
- https://www.bleepingcomputer.com/news/security/new-doc-globeimposter-ransomware-variant-malspam-campaign-underway/
- https://blog.fortinet.com/2017/08/05/analysis-of-new-globeimposter-ransomware-variant
- https://info.phishlabs.com/blog/globe-imposter-ransomware-makes-a-new-run
- https://isc.sans.edu/diary/23417
- https://blog.ensilo.com/globeimposter-ransomware-technical
- https://www.acronis.com/en-us/blog/posts/globeimposter-ransomware-holiday-gift-necurs-botnet
- https://asec.ahnlab.com/en/48940/
Malpedia
Alienvault Otx
Playbook
Other Information
Uuid
6b34667c-43b9-4922-b9ee-465414f601a5
Last Card Change
2023-04-25