Trojan

How to remove “Trojan:Win32/Occamy.C5C”?

Malware Removal

The Trojan:Win32/Occamy.C5C is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Occamy.C5C virus can do?

  • Performs some HTTP requests
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config

Related domains:

ortalrustytyo.com
redirector.gvt1.com
r4—sn-4g5e6nzz.gvt1.com

How to determine Trojan:Win32/Occamy.C5C?


File Info:

crc32: 0ED3677E
md5: e65e327797507f079dc04aac0192cb2c
name: screenrecorder.exe
sha1: 5fb2897f69fe1a2d10d47c089a100c2e4e93df38
sha256: 5cf0731bb43fd34ab5ad2e691ffecc1eafd93d998cd21f87d0a8a392e495965e
sha512: 0f531266f242bf687b2dffc5f34458916835eeca942478a26fb6c48c3f31915497b443419525fb1be955789d02e759fdbf9e7e10415a4f730a53163ea147ebf4
ssdeep: 24576:8AsyApZNMIWM/HqZWnEY3SJCYIaYUOY3fCjmOmEG:8ej4RaNIaHOY3Kqbj
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
InternalName:
FileVersion: 1.1.27.07
ProductName:
ProductVersion: 1.1.27.07
FileDescription:
OriginalFilename:
Translation: 0x0409 0x04b0

Trojan:Win32/Occamy.C5C also known as:

DrWebTrojan.DownLoad4.13447
MicroWorld-eScanTrojan.GenericKD.32675972
Qihoo-360Win32/Trojan.Dropper.704
ALYacTrojan.GenericKD.32675972
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan-Downloader ( 0053b9821 )
BitDefenderTrojan.GenericKD.32675972
K7GWTrojan-Downloader ( 0053b9821 )
Cybereasonmalicious.f69fe1
F-ProtW32/Autohk.K
SymantecML.Attribute.HighConfidence
APEXMalicious
GDataTrojan.GenericKD.32675972
KasperskyTrojan-Dropper.Win32.Dapato.pzne
AlibabaTrojanDropper:Win32/Dapato.6717465a
NANO-AntivirusTrojan.Win32.Dapato.gfqmld
AegisLabTrojan.Win32.Dapato.b!c
RisingTrojan.Generic@ML.95 (RDMK:Q5gMwkJecWJZ/+iNBBGBtw)
Ad-AwareTrojan.GenericKD.32675972
SophosMal/Generic-S
ComodoMalware@#j0w73lqq51qv
F-SecureTrojan.TR/Dldr.AutoHK.gnhpi
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
FireEyeGeneric.mg.e65e327797507f07
EmsisoftTrojan.GenericKD.32675972 (B)
IkarusTrojan-Downloader.Win32.Autohk
CyrenW32/Trojan.ILVM-4297
JiangminRiskTool.BitMiner.udv
AviraTR/Dldr.AutoHK.gnhpi
Antiy-AVLTrojan[Dropper]/Win32.Agent
ArcabitTrojan.Generic.D1F29884
ZoneAlarmTrojan-Dropper.Win32.Dapato.pzne
MicrosoftTrojan:Win32/Occamy.C5C
CynetMalicious (score: 85)
AhnLab-V3Malware/Win32.Generic.C3539723
McAfeeRDN/Generic Dropper
MAXmalware (ai score=87)
VBA32TrojanDropper.Dapato
MalwarebytesTrojan.Downloader
PandaTrj/CI.A
ZonerTrojan.Win32.86678
ESET-NOD32Win32/TrojanDownloader.AutoHK.IE
TencentWin32.Trojan-dropper.Dapato.Ajlm
FortinetW32/Dapato.IE!tr
AVGFileRepMalware
CrowdStrikewin/malicious_confidence_60% (W)
MaxSecureTrojan.Malware.74669650.susgen

How to remove Trojan:Win32/Occamy.C5C?

Trojan:Win32/Occamy.C5C removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment