Malware

Should I remove “Exploit:Win32/Occamy.C”?

Malware Removal

The Exploit:Win32/Occamy.C is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Exploit:Win32/Occamy.C virus can do?

  • Executable code extraction
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Exploit:Win32/Occamy.C?


File Info:

crc32: 84E6E9FF
md5: 5bb48cc1e5f1b219cafb908f1fc1a7e3
name: 5BB48CC1E5F1B219CAFB908F1FC1A7E3.mlw
sha1: a1bb832c43784529ecfbee502069c51b173ece32
sha256: 249cc74e33a67bafabcb7a4218b4fcf7c31775aaa5f1e688973331d67fefebc5
sha512: d24de15df7bf6c433b5afbef601f0259f4b7b48fc769128281603602d29f54d01fd9af05cd53f6084701cbb259c85579badbb7058f11b5c3e9ad41d2324b9aae
ssdeep: 98304:/qHQcsibw8SPLeTtSQo5Z8DERxrfExYzuaIqtB6YNWKljZA7:SwcXMHLKy6txPaTtYYNe
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

0: [No Data]

Exploit:Win32/Occamy.C also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Heur.Veil.7
CylanceUnsafe
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaExploit:Win32/Leivion.a9be856c
Cybereasonmalicious.1e5f1b
CyrenW32/S-4ca97ae3!Eldorado
SymantecHacktool.Veil
ESET-NOD32Python/Rozena.AE
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Malware.Generic-6651517-0
KasperskyUDS:Trojan.Win32.Generic
BitDefenderGen:Heur.Veil.7
NANO-AntivirusTrojan.Win32.Swrort.fjtpob
MicroWorld-eScanGen:Heur.Veil.7
TencentWin32.Trojan.Rozena.Szbw
Ad-AwareGen:Heur.Veil.7
SophosML/PE-A + ATK/Veil-AZ
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.TrojanVeil.rc
FireEyeGeneric.mg.5bb48cc1e5f1b219
EmsisoftGen:Heur.Veil.7 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Swrort.Gen7
MicrosoftExploit:Win32/Occamy.C
GDataGen:Heur.Veil.7
McAfeeArtemis!5BB48CC1E5F1
MAXmalware (ai score=100)
MalwarebytesMalware.AI.280771065
MaxSecureTrojan.Malware.121218.susgen
FortinetPython/Veil.7!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Exploit:Win32/Occamy.C?

Exploit:Win32/Occamy.C removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment