Trojan

What is “Trojan.Win32.Copak.cfjm”?

Malware Removal

The Trojan.Win32.Copak.cfjm is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.cfjm virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Deletes executed files from disk

How to determine Trojan.Win32.Copak.cfjm?


File Info:

name: CAE630BA8BEED29E31BB.mlw
path: /opt/CAPEv2/storage/binaries/38d393bf5418daa698d9d30682d7c03c32848e69e98122cf1c9cbd0147ea7f6b
crc32: AA8DAF54
md5: cae630ba8beed29e31bbf631c1e24764
sha1: bf20ca385684c2b464d9483431f4315e8200e745
sha256: 38d393bf5418daa698d9d30682d7c03c32848e69e98122cf1c9cbd0147ea7f6b
sha512: 22338c4ee5b2ec1d4b1e4018eebba9c5622489c415b584bd37290f49b8b985c82f57503a84322bd63238e7acff79f53686b80a1076141ba494a30cf6deffae52
ssdeep: 3072:HIgj6ZgK39/FcUeawWaHFubgTkLxYy8cFzlAiD2k:SZg+9/FcUnwdHFjSxYncxlVD/
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T188C302454008E4FFC8CA3AF6911EE1D77A5DCB16C61446B9364E26CD94BBDCA882873E
sha3_384: 4d9099888dbe60b3cd7ebb88406ab99a937df848d75fd1e602579f3767439f585e0479f6710ac009190198c9faad5f9b
ep_bytes: b90000000083ec0489142421c609c601
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.cfjm also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Convagent.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.46614930
McAfeeGenericRXAA-FA!CAE630BA8BEE
CylanceUnsafe
VIPRETrojan.GenericKD.46614930
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0058c5ff1 )
AlibabaTrojan:Win32/Copak.351d0dc0
K7GWTrojan ( 0058c5ff1 )
CrowdStrikewin/malicious_confidence_100% (D)
CyrenW32/Kryptik.DYV.gen!Eldorado
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Injector.EAHK
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Copak.cfjm
BitDefenderTrojan.GenericKD.46614930
AvastWin32:Evo-gen [Trj]
TencentWin32.Trojan.Copak.Gdhl
Ad-AwareTrojan.GenericKD.46614930
SophosML/PE-A + Mal/HckPk-A
ComodoMalCrypt.Indus!@1qrzi1
DrWebTrojan.Packed2.43250
ZillyaTrojan.Injector.Win32.1022210
McAfee-GW-EditionBehavesLike.Win32.Generic.cm
FireEyeGeneric.mg.cae630ba8beed29e
EmsisoftTrojan.GenericKD.46614930 (B)
SentinelOneStatic AI – Malicious PE
GDataTrojan.GenericKD.46614930
AviraHEUR/AGEN.1200606
MAXmalware (ai score=100)
Antiy-AVLTrojan/Generic.ASBOL.C687
KingsoftWin32.Troj.Undef.(kcloud)
ArcabitTrojan.Generic.D2C74992
MicrosoftTrojan:Win32/Injector.RAQ!MTB
GoogleDetected
AhnLab-V3Trojan/Win.Generic.R415400
Acronissuspicious
VBA32BScope.Trojan.Wacatac
ALYacTrojan.GenericKD.46614930
MalwarebytesTrojan.MalPack.UPX
RisingTrojan.Injector!1.C865 (CLASSIC)
YandexTrojan.Copak!TMbcXiKgAlI
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.EAHK!tr
BitDefenderThetaGen:NN.ZexaF.34754.hmW@a40agRl
AVGWin32:Evo-gen [Trj]
PandaTrj/Genetic.gen

How to remove Trojan.Win32.Copak.cfjm?

Trojan.Win32.Copak.cfjm removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment