New GlobeImposter version – 726 malware – arrives in a spam mail

726 virus defines new crypto-malware[1], specifically, a version of Globe Imposter. Though its modus operandi does not differ from other threats nor it contains any peculiar elements, however, its distribution method indeed raises suspicion.
It targets victims via spam email[2] which is supposedly sent from Redactive Media Group.
It is a legitimate company located in the UK. Therefore, tt triggers assumptions that the malware is targeted at the users[3] of this country. Needless to say, the message is not sent from this legal person but, instead, it poses as a counterfeited message created by 726 malware developers.
In the beginning of the message, an additional message suggests downloading Acrobat Reader. Though the link leads to the official site, however, the real menace lies in a [random numbers].zip folder. The folder contains a covert VBS script which then downloads the main payload of the malware. Within minutes, the infection encodes files and appends .726 file extension.
It also leaves a Recover-Files-726.html in the Documents or another C folder location. In exchange to the files, the perpetrator demands 0.37 bitcoins which at the moment amounts to $1615.
Though it is a more developed version of the malware family, make use of the free GlobeImposter Decrypter before considering the payment. Even if it does not help, do not nurture hopes of recovering the files, but instead focus on 726 removal. FortectIntego or MalwarebytesMalwarebytes will help you do that faster.
GlobeImposter family keeps expanding at the lighting rate
If you follow the news in the cyber space, you might notice that the title of the malware is often mentioned by ransomware researchers. There have been a series of new versions appearing on the cyber space.
Some versions, such as .granny file extension virus, not only cause a headache for the victims but amusement for IT researchers. Such versions also do not differ much from each other except the extension.
However, 726 malware is a different case. The malspam shows that the cyber criminals intend to spread the malware much more. They also set 48-hour time limit. There is a myriad of GlobeImposter versions but there are few official reports about recovered files. Thus, make a rush to remove 726 virus.
Distribution methods
Currently, the malware is mainly spread via spam emails. Thus, there is a bigger chance that you will cease 726 hijack on time. Note that disguising under the name of an official institution is a common technique. Pay attention to the spam email. Certain Anti-malware utilities also come in handy reducing the number of incoming spam emails.
In addition, such utilities will lower the risk of encountering the trojan of this malware. Thus, now let us proceed to the crucial section.
Eliminate 726 malware
You can get rid of this threat with the assistance of malware elimination utility. However, it is not surprising if the virus prevents you from launching. If you cannot launch it and remove 726 virus, take a look at the below instructions.
If you launch the computer in Safe Mode. It will help you get access to the program and complete 726 removal. Below you will find additional suggestions how to decrypt data. However, we highly advise you not to purchase the one offered by the developers of the malware since it may only complicate the situation more.
Was this guide helpful?
Be the first to comment