Trojan

Should I remove “Trojan:Win32/Occamy.C07”?

Malware Removal

The Trojan:Win32/Occamy.C07 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Occamy.C07 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan:Win32/Occamy.C07?


File Info:

crc32: 6FD38DD3
md5: 03b47131c6a809c9222de2f97e03b49e
name: 03B47131C6A809C9222DE2F97E03B49E.mlw
sha1: 7831520ec9797f8d776a191b2ac30bea4b9c28c0
sha256: 07ba533a694e1733f8ef1c18ac191867382f4ca7a51244cda6ef5ec119fbfe53
sha512: 54cc49085e2e9cadeebe4462e6906782fae221325baf2039886fe562bb2c485382453f85e1617577fd0117ab08ff718a23913db0bccdfdcfdbce854cd9a52176
ssdeep: 6144:gMO1jIO0u8krJilHXIdAXEZvGLw+nmYciNXyEuxIKvqoPFZLRbUqF5jQaBlQAhb:ROhIOR/0lHXQAlL7aIKTvl
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2015
Assembly Version: 1.0.0.1
InternalName: CamSnap.exe
FileVersion: 1.0.0.1
ProductName: Putty
ProductVersion: 1.0.0.1
FileDescription: Putty
OriginalFilename: CamSnap.exe

Trojan:Win32/Occamy.C07 also known as:

MicroWorld-eScanGen:Variant.MSILPerseus.136591
FireEyeGeneric.mg.03b47131c6a809c9
Qihoo-360Win32/Ransom.Generic.HwMALOcA
McAfeeArtemis!03B47131C6A8
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Generic.4!c
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 004b89791 )
BitDefenderGen:Variant.MSILPerseus.136591
K7GWTrojan ( 004b89791 )
Cybereasonmalicious.1c6a80
SymantecInfostealer.Limitail
APEXMalicious
KasperskyTrojan-Ransom.MSIL.Agent.gjt
AlibabaRansom:MSIL/Filecoder.6749377b
NANO-AntivirusTrojan.Win32.Ransom.eocbml
TencentMsil.Trojan.Agent.Fia
Ad-AwareGen:Variant.MSILPerseus.136591
EmsisoftGen:Variant.MSILPerseus.136591 (B)
ComodoMalware@#ns8akppchxut
F-SecureTrojan.TR/Confuser.cjsev
TrendMicroRansom_HiddenTearFHT.A
McAfee-GW-EditionBehavesLike.Win32.Generic.hh
SophosMal/Generic-R + Mal/Cryptear-A
AviraTR/Confuser.cjsev
MAXmalware (ai score=99)
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Occamy.C07
ArcabitTrojan.MSILPerseus.D2158F
ZoneAlarmHEUR:Trojan-Spy.MSIL.Orcus.gen
GDataGen:Variant.MSILPerseus.136591
CynetMalicious (score: 85)
BitDefenderThetaGen:NN.ZemsilF.34590.Km0@aepIcBe
ALYacTrojan.Ransom.FileCryptor
MalwarebytesMachineLearning/Anomalous.95%
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/Filecoder.AK
TrendMicro-HouseCallRansom_HiddenTearFHT.A
RisingRansom.Agent!8.6B7 (CLOUD)
YandexRiskware.Confuser!6QUXjCNWrZg
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_100%
FortinetW32/Agent.GJT!tr
AVGWin32:Malware-gen
AvastWin32:Malware-gen
CrowdStrikewin/malicious_confidence_60% (D)

How to remove Trojan:Win32/Occamy.C07?

Trojan:Win32/Occamy.C07 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment