Trojan

What is “Trojan:Win32/Occamy.CDE”?

Malware Removal

The Trojan:Win32/Occamy.CDE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Occamy.CDE virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan:Win32/Occamy.CDE?


File Info:

crc32: 5DFE4C9E
md5: 8fe40fc4823fd5a85b750f59105b80cc
name: 8FE40FC4823FD5A85B750F59105B80CC.mlw
sha1: c564ec2d4867c4ca536f30744ad5ff3c730084df
sha256: de5570fa886e33ad0a763d1244612973a38bc0f1575363e8bb86bdf89ac9c614
sha512: e152300d8867a67d4a28c6947eb4f1f61a614a906816549a1d2611aae906422b4861c3ea92790325aa09b2d6c0a1ab9b53bad6c5d964dc382a99d5d39abe90dd
ssdeep: 6144:ko4U6Q3RLSfy83qGQ/+aHUED6MSSxEVocICBF:iQhLQLDQ/+M7DhnlyBF
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: ColdCreekProd. All rights reserved.
InternalName: ColdCreekInstaller
FileVersion: 3.1.0.1
CompanyName: ColdCreekProd
Comments: Files installer
ProductName: Free files installer
ProductVersion: 3.1.0.1
FileDescription: Free files installer
Translation: 0x0409 0x04b0

Trojan:Win32/Occamy.CDE also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanDropped:Trojan.GenericKD.12473781
CAT-QuickHealTrojandownloader.Tovkater
McAfeeArtemis!8FE40FC4823F
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan-Downloader ( 00518e881 )
BitDefenderDropped:Trojan.GenericKD.12473781
K7GWTrojan-Downloader ( 00518e881 )
Cybereasonmalicious.4823fd
CyrenW32/Tovkater.S.gen!Eldorado
SymantecTrojan.Gen.MBT
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Tovkater-6651874-0
KasperskyTrojan-Downloader.Win32.Tovkater.a
AlibabaTrojanDownloader:Win32/Tovkater.54e07a58
NANO-AntivirusTrojan.Win32.Tovkater.etoaeb
AegisLabTrojan.Win32.Tovkater.a!c
Ad-AwareDropped:Trojan.GenericKD.12473781
SophosMal/Generic-S
ComodoApplication.Win32.InstallMonster.DX@7e9j3l
F-SecureTrojan.TR/Tovkater.faqrh
DrWebTrojan.InstallMonster.2399
TrendMicroTROJ_GEN.R011C0PJC20
McAfee-GW-EditionBehavesLike.Win32.ICLoader.dc
FireEyeGeneric.mg.8fe40fc4823fd5a8
EmsisoftApplication.Downloader (A)
IkarusTrojan-Downloader.Win32.Tovkater
AviraHEUR/AGEN.1117983
Antiy-AVLTrojan[Downloader]/Win32.Tovkater
MicrosoftTrojan:Win32/Occamy.CDE
ArcabitTrojan.Generic.DBE55B5
SUPERAntiSpywareAdware.InstallMonster/Variant
ZoneAlarmHEUR:Trojan-Downloader.Win32.Tovkater.gen
GDataDropped:Trojan.GenericKD.12473781
CynetMalicious (score: 100)
AhnLab-V3PUP/Win32.BundleInstaller.R209982
Acronissuspicious
VBA32TrojanDownloader.Tovkater
ALYacDropped:Trojan.GenericKD.12473781
MAXmalware (ai score=100)
MalwarebytesGeneric.Trojan.Malicious.DDS
PandaTrj/Genetic.gen
ESET-NOD32Win32/TrojanDownloader.Tovkater.EX
TrendMicro-HouseCallTROJ_GEN.R011C0PJC20
YandexTrojan.DL.Tovkater!KcYoe/d37Tk
SentinelOneStatic AI – Malicious PE – Downloader
FortinetW32/Tovkater.A!tr.dldr
BitDefenderThetaGen:NN.ZexaF.34804.hyW@a4jhNWfi
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360Win32/Trojan.Downloader.1cc

How to remove Trojan:Win32/Occamy.CDE?

Trojan:Win32/Occamy.CDE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment