Trojan

Trojan.Win32.Copak.kwop malicious file

Malware Removal

The Trojan.Win32.Copak.kwop is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.kwop virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Deletes its original binary from disk
  • Creates a copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Win32.Copak.kwop?


File Info:

crc32: DACD9BA4
md5: 3ca1a37f0eed30f040f4b75ef83dc47d
name: 3CA1A37F0EED30F040F4B75EF83DC47D.mlw
sha1: d3406466eb86730a686a9f5423c56ef62c2707a2
sha256: c6fec36eecf2894c157ea17918b8b178c326e63b3a21ef94f38413ac6b468e56
sha512: 73099ce709bf670445244f7c649dac97450b5243e072a83e8a7d7a988cc8729675367965e1720e613714e346dc0bb20b50aafdfbb87e095f4bb1dd8c705b87c1
ssdeep: 24576:1xCoTDQnVjjOqEhEoQVM5yfGm2hCsZGC2Mo1QJ7idgBNoICWb8/BS5uL/rGAQ5e:qofQsEop5xgsZGCY1Yjo7Wb8pUD35
type: PE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows, UPX compressed

Version Info:

0: [No Data]

Trojan.Win32.Copak.kwop also known as:

K7AntiVirusTrojan ( 0057ffc71 )
Elasticmalicious (high confidence)
DrWebTrojan.Packed2.43250
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.38018497
CylanceUnsafe
ZillyaTool.BitCoinMiner.Win32.40482
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojan:Win32/Copak.20772666
K7GWTrojan ( 0057ffc71 )
Cybereasonmalicious.6eb867
CyrenW32/CoinMiner.CQ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HITO
APEXMalicious
AvastWin32:CoinminerX-gen [Trj]
KasperskyTrojan.Win32.Copak.kwop
BitDefenderTrojan.GenericKD.38018497
ViRobotTrojan.Win32.Z.Kryptik.1606656.AEO
MicroWorld-eScanTrojan.GenericKD.38018497
TencentTrojan.Win32.Coinminer.yi
Ad-AwareTrojan.GenericKD.38018497
SophosGeneric ML PUA (PUA)
ComodoPacked.Win32.MUPX.Gen@24tbus
BitDefenderThetaGen:NN.ZexaF.34266.InZ@aW59qJb
TrendMicroTROJ_GEN.R03BC0DKA21
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeTrojan.GenericKD.38018497
EmsisoftTrojan.GenericKD.38018497 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Crypt.ULPM.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASBOL.C68B
MicrosoftTrojan:Win32/Injector.RAQ!MTB
GDataWin32.Application.Coinminer.CE2F7G
McAfeeGenericRXAA-AA!3CA1A37F0EED
MAXmalware (ai score=87)
VBA32Trojan.Packed
MalwarebytesTrojan.Crypt
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R03BC0DKA21
RisingTrojan.Kryptik!1.D238 (CLASSIC)
YandexTrojan.Kryptik!Fji0IkjL1lg
IkarusTrojan.Win32.Injector
FortinetW32/Kryptik.EAHK!tr
AVGWin32:CoinminerX-gen [Trj]
Paloaltogeneric.ml

How to remove Trojan.Win32.Copak.kwop?

Trojan.Win32.Copak.kwop removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment