Trojan

Trojan:Win32/Occamy.CB2 removal guide

Malware Removal

The Trojan:Win32/Occamy.CB2 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Occamy.CB2 virus can do?

  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan:Win32/Occamy.CB2?


File Info:

crc32: 0A0C850D
md5: 451062d47c5c3e82a81a36611cf964fc
name: 451062D47C5C3E82A81A36611CF964FC.mlw
sha1: 3106d95a910f9e08c6acb984936d3e85d2ca279e
sha256: b2230606adc0e398eb6fdc447dbfe5fbcdd32453ebfebbf59e8f74f090dd3997
sha512: ef250f24b7b495d3f662b1ea100a095cf40a35e711d7eac7c9620c2c167963997d1a0947c9cb75d9f17d318e25d313cba51ea00c6f94bf6277f8b19142bed277
ssdeep: 6144:njhb+7RBq1B7K1W2PG+XcGhzBWuurkLQ15Me7nx038X1I/:JKqT7KI2PGtGhzBWu27We7nS38O/
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xc2xa9DocuSign.
Assembly Version: 1.8.5.4
InternalName: Mandatory Persnalized
FileVersion: 1.8.5.4
CompanyName: DocuSign
PrivateBuild: 1.8.5.4
LegalTrademarks: Copyright xc2xa9DocuSign.
Comments: Hop Toolboxes Href Attendants At&t Disbelief
ProductName: Mandatory Persnalized
Languages: English
ProductVersion: 1.8.5.4
FileDescription: Hop Toolboxes Href Attendants At&t Disbelief
OriginalFilename: Mandatory Persnalized
Translation: 0x0409 0x04b0

Trojan:Win32/Occamy.CB2 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 00538f3f1 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Ursu.259022
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.40112
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Blocker.7e3027f3
K7GWTrojan ( 00538f3f1 )
Cybereasonmalicious.47c5c3
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.CGHR
APEXMalicious
AvastWin32:Trojan-gen
KasperskyTrojan-Ransom.Win32.Blocker.lcza
BitDefenderGen:Variant.Ursu.259022
NANO-AntivirusTrojan.Win32.Blocker.fjqbna
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
MicroWorld-eScanGen:Variant.Ursu.259022
TencentWin32.Trojan.Blocker.Pabo
Ad-AwareGen:Variant.Ursu.259022
SophosMal/Generic-S
ComodoMalware@#1mvvfat1kbq4b
BitDefenderThetaGen:NN.ZexaF.34770.yK0@amJck2ii
McAfee-GW-EditionBehavesLike.Win32.QJWMonkey.fh
FireEyeGeneric.mg.451062d47c5c3e82
EmsisoftGen:Variant.Ursu.259022 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Blocker.ivb
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1137793
MicrosoftTrojan:Win32/Occamy.CB2
ArcabitTrojan.Ursu.D3F3CE
AegisLabTrojan.Win32.Blocker.j!c
ZoneAlarmTrojan-Ransom.Win32.Blocker.lcza
GDataGen:Variant.Ursu.259022
AhnLab-V3Malware/Win32.Generic.C2635432
Acronissuspicious
McAfeeArtemis!451062D47C5C
MAXmalware (ai score=100)
VBA32TrojanRansom.Blocker
PandaTrj/GdSda.A
YandexTrojan.Blocker!IKRmTq77Ons
IkarusTrojan.Win32.Krypt
FortinetW32/Blocker.CGHR!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Blocker.HwoCEpsA

How to remove Trojan:Win32/Occamy.CB2?

Trojan:Win32/Occamy.CB2 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment