Trojan

Trojan.Win32.Copak.aicvf (file analysis)

Malware Removal

The Trojan.Win32.Copak.aicvf is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.aicvf virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Deletes executed files from disk
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Win32.Copak.aicvf?


File Info:

name: 57DF7EBF131859D1302B.mlw
path: /opt/CAPEv2/storage/binaries/d8c3879a2c0e75f07ad28be78194a01edeeb3773980936268b6d89237f3fb75d
crc32: FBA9B1A7
md5: 57df7ebf131859d1302bd503108b4d45
sha1: 331645a23dad577c04a4bb24f329891e6c3056f8
sha256: d8c3879a2c0e75f07ad28be78194a01edeeb3773980936268b6d89237f3fb75d
sha512: 7ac98c237f041cf735fae88ca488b5f713fbbe23ee79df19856c71ae61dfdef15bb2e38b0eb1b8a739aaa3afd7f625fb57d5277be4c645d4828b0bddf6b0204a
ssdeep: 12288:c1XKtZNmOmPAaZ+1TfQPDSjVDa/ZS4fD7HnhvMCtjW:C84PN+oDQa/ZS4fDDueC
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T18A35380A1F5998B3CC0A167DAD2EDFEE54216C7C7612F661338BF8367E6D6C0450662C
sha3_384: 884c1d209993c9a78c52ccf6f80395feb852c1d62724ea25636f2bb27a4ae166f2048c6ceecda2e6a9445d714b4773e3
ep_bytes: 3f0d75656f64f1e26a85f873e8cf90c9
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.aicvf also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Copak.4!c
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.GenericKDZ.98348
SkyhighBehavesLike.Win32.Corrupt.th
McAfeeTrojan-FVOQ!57DF7EBF1318
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.Generic.Win32.217001
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a45ef1 )
BitDefenderTrojan.GenericKDZ.98348
K7GWTrojan ( 005a45ef1 )
Cybereasonmalicious.23dad5
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.GIFY
APEXMalicious
ClamAVWin.Packed.Dridex-9860931-1
KasperskyTrojan.Win32.Copak.aicvf
NANO-AntivirusTrojan.Win32.Kryptik.fivnhq
SophosMal/Inject-GJ
F-SecureTrojan.TR/Crypt.XPACK.Gen2
VIPRETrojan.GenericKDZ.98348
TrendMicroTROJ_GEN.R002C0DK723
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.57df7ebf131859d1
EmsisoftTrojan.GenericKDZ.98348 (B)
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=81)
JiangminTrojan.Generic.ctxms
GoogleDetected
AviraTR/Crypt.XPACK.Gen2
VaristW32/Zusy.EM.gen!Eldorado
Antiy-AVLTrojan/Win32.Kryptik.GIFY
MicrosoftTrojan:Win32/Glupteba.MT!MTB
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
ArcabitTrojan.Generic.D1802C
ZoneAlarmTrojan.Win32.Copak.aicvf
GDataWin32.Trojan.PSE.11YPVZ
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Generic.C5394145
Acronissuspicious
VBA32Trojan.Copak
ALYacTrojan.GenericKDZ.98348
TACHYONTrojan/W32.Selfmod
DeepInstinctMALICIOUS
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DK723
RisingTrojan.Kryptik!1.B34D (CLASSIC)
IkarusTrojan-Downloader.Win32.FakeAlert
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GIFQ!tr
BitDefenderThetaGen:NN.ZexaF.36792.e9Z@ai!cyWb
AVGWin32:Evo-gen [Trj]
AvastWin32:Evo-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Win32.Copak.aicvf?

Trojan.Win32.Copak.aicvf removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment