Trojan

About “Trojan.Win32.Copak.aajiw” infection

Malware Removal

The Trojan.Win32.Copak.aajiw is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.aajiw virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Creates a copy of itself
  • Deletes executed files from disk
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Win32.Copak.aajiw?


File Info:

name: 1D9CA989EC3AB409A712.mlw
path: /opt/CAPEv2/storage/binaries/a3945f2602387c3f0494f118a949a5102ae18abc6c8ced22ff1c3b8c0998ddeb
crc32: AFE920BB
md5: 1d9ca989ec3ab409a712b19918b37b93
sha1: 4aba067c34e1fa9a95a0b9850c3d322cc5121633
sha256: a3945f2602387c3f0494f118a949a5102ae18abc6c8ced22ff1c3b8c0998ddeb
sha512: 7dd0c29c71a30e2a3f0f28b662fb926bfb674e20524143d78e31a404e71c732b31751b429859dc5a03208de06f1dbdb6512dd8ae29f780d570bcd907e623ad47
ssdeep: 24576:FrTvez1GePHuJhjSJi1fEgYLA0hnnya/ZSTeF+77LX:lvIEaOrS/gY81gqeF+bX
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T16B25BE5C936A2C57CD1F6DBDEC9FCAAB4202183D7663E2B23149B28BF161BD04B15724
sha3_384: 57b53129cf2448ac44b2f4b11e4dc82096a21dd8166a1ad20d2142314b7400ce3ed1c1af07a45589fa52bc1d9b6df9a7
ep_bytes: 30e30235608a86b2656b8f23e721e799
timestamp: 1975-06-24 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.aajiw also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Copak.4!c
AVGWin32:Evo-gen [Trj]
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Lazy.317678
FireEyeGeneric.mg.1d9ca989ec3ab409
McAfeePacked-FJB!1D9CA989EC3A
MalwarebytesCrypt.Trojan.MSIL.DDS
VIPREGen:Variant.Lazy.317678
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a45ef1 )
AlibabaTrojan:Win32/Glupteba.2b55ab97
K7GWTrojan ( 005a45ef1 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/Copak.E.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik_AGen.BGV
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Packed.Razy-9836307-0
KasperskyTrojan.Win32.Copak.aajiw
BitDefenderGen:Variant.Lazy.317678
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.Selfmod.ka
EmsisoftGen:Variant.Lazy.317678 (B)
F-SecureTrojan.TR/Kryptik.ktcjy
ZillyaTrojan.Generic.Win32.341202
TrendMicroTROJ_GEN.R002C0DF223
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
SophosTroj/Agent-BFEY
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.11YPVZ
JiangminTrojan.Generic.clnpr
AviraTR/Kryptik.ktcjy
MAXmalware (ai score=84)
Antiy-AVLTrojan/Win32.Kryptik.GIFY
XcitiumTrojWare.Win32.FraudPack.P@2ysxyk
ArcabitTrojan.Lazy.D4D8EE
ViRobotTrojan.Win.Z.Lazy.983041.HNI
ZoneAlarmTrojan.Win32.Copak.aajiw
MicrosoftTrojan:Win32/Glupteba.MT!MTB
GoogleDetected
AhnLab-V3Packed/Win.Generic.R565453
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.36250.88Z@aSJ4gId
ALYacGen:Variant.Lazy.317678
TACHYONTrojan/W32.Selfmod
VBA32Trojan.Copak
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DF223
RisingTrojan.Kryptik!1.B34D (CLASSIC)
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GIFQ!tr
Cybereasonmalicious.9ec3ab
DeepInstinctMALICIOUS

How to remove Trojan.Win32.Copak.aajiw?

Trojan.Win32.Copak.aajiw removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment