Trojan

Should I remove “Trojan.Win32.Copak.cgbpp”?

Malware Removal

The Trojan.Win32.Copak.cgbpp is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.cgbpp virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Trojan.Win32.Copak.cgbpp?


File Info:

name: D0264730045DD17AB8FC.mlw
path: /opt/CAPEv2/storage/binaries/60aa67db965f2cc6b34a0360d1e71f3a8095b2d55c100b5db6af463ea68f0700
crc32: 229B24E9
md5: d0264730045dd17ab8fc60d76acb1bff
sha1: 39c6b8b6dc850736829ba2e832d62a7221f101ea
sha256: 60aa67db965f2cc6b34a0360d1e71f3a8095b2d55c100b5db6af463ea68f0700
sha512: 9117c9029d792c10543c0cda70bf3e6660dd7264b4928a539db8c17a519fa8ba864f5907f4acac8c664df2af680020b5f5e38893f25786bb5f0ea40e6536d54e
ssdeep: 24576:hCvN4kiRFHLVQbtaDJ+lSoB0NOL8a/ZSbH77Lh:FkiRZypAoB0NOL8g4Hbh
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T19E25CF5C1AA21DD3C56E72F45C1CCA2798C1A83BB783D62630627D5BB5772A3E1D2338
sha3_384: 78716aac92e19866882d2e6fe37961dee8dc2af91b9124087ac830d5ac49abea29901f9b5a3cc53c6cef7be64072a080
ep_bytes: 643d84133454009431b50905b3ff61bf
timestamp: 1976-11-05 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.cgbpp also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.GenericKDZ.104110
FireEyeGeneric.mg.d0264730045dd17a
SkyhighBehavesLike.Win32.Generic.dc
McAfeeTrojan-FVOQ!D0264730045D
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.KryptikAGen.Win32.100419
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a45ef1 )
K7GWTrojan ( 005a45ef1 )
Cybereasonmalicious.0045dd
BitDefenderThetaGen:NN.ZexaF.36802.88Z@aS26mDk
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik_AGen.BFL
APEXMalicious
AvastWin32:Evo-gen [Trj]
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Copak.cgbpp
BitDefenderTrojan.GenericKDZ.104110
NANO-AntivirusTrojan.Win32.Selfmod.jzjgww
TencentTrojan.Win32.Selfmod.ka
SophosTroj/Agent-BFEY
F-SecureHeuristic.HEUR/AGEN.1368582
DrWebTrojan.Siggen12.42976
VIPRETrojan.GenericKDZ.104110
Trapminemalicious.high.ml.score
EmsisoftTrojan.GenericKDZ.104110 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Copak.cwua
VaristW32/Trojan.MJSE-7842
AviraHEUR/AGEN.1368582
MAXmalware (ai score=83)
Antiy-AVLTrojan/Win32.Kryptik.gify
Kingsoftmalware.kb.a.981
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
ArcabitTrojan.Generic.D196AE
GDataWin32.Trojan.PSE.11XGYE9
GoogleDetected
AhnLab-V3Trojan/Win.OB.C5394211
Acronissuspicious
VBA32Trojan.Copak
ALYacTrojan.GenericKDZ.104110
TACHYONTrojan/W32.Selfmod
Cylanceunsafe
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.B34D (CLASSIC)
IkarusTrojan-Downloader.Win32.FakeAlert
FortinetW32/Kryptik.GIFQ!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)
alibabacloudVirTool:Win/Obfuscate.FakeEp.DYN(dyn)

How to remove Trojan.Win32.Copak.cgbpp?

Trojan.Win32.Copak.cgbpp removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment