Trojan

Trojan.Win32.Copak.kxst (file analysis)

Malware Removal

The Trojan.Win32.Copak.kxst is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.kxst virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Win32.Copak.kxst?


File Info:

name: A518DA5BC5115C14E652.mlw
path: /opt/CAPEv2/storage/binaries/d4fd35f6832fc81da60766091731c35894c0eb633fd7440137a62219e0146aa8
crc32: 68440504
md5: a518da5bc5115c14e6525a046b76fb88
sha1: b693f209aca3c31f7163d18a00ace0cb1414158f
sha256: d4fd35f6832fc81da60766091731c35894c0eb633fd7440137a62219e0146aa8
sha512: 073924afaddf7ecef573161643fe32adfb075c2e19fd8da39b6a2bb2aeb31903445faff7ab2ac9cdf8f53b95353c95694ee9d445ea41a11cada1f35ca0ef49e1
ssdeep: 1536:OJdvdy0Lj3DfuWu9zq0tgLrfY+Lhnyg9ujvGhSI5Np2j:Orv/j3LKzqNrjtnjATGhSI9M
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1C483D0BD6B025E38C6E6707F9B47D2879E0EA9D152D285EF52F7820E5830D1CCDB21A1
sha3_384: 9c091cf6b04d13d73b9e7a33be4d6f11193f008f3b67333b76daf8fd9a4334d42a6bca8e75d484e1716e048e1ab1e975
ep_bytes: 6800000000595081c7a28224338b1c24
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.kxst also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Copak.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Heur.fuW@IHo3wXi
McAfeeGlupteba-FTSD!A518DA5BC511
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 00577ea11 )
AlibabaTrojan:Win32/GenKryptik.4cffb905
K7GWTrojan ( 00577ea11 )
Cybereasonmalicious.bc5115
CyrenW32/Kryptik.ECM.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.CTNW
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan.Win32.Copak.kxst
BitDefenderGen:Trojan.Heur.fuW@IHo3wXi
NANO-AntivirusVirus.Win32.Gen.ccmw
AvastWin32:Trojan-gen
TencentMalware.Win32.Gencirc.10cea48e
Ad-AwareGen:Trojan.Heur.fuW@IHo3wXi
EmsisoftGen:Trojan.Heur.fuW@IHo3wXi (B)
DrWebTrojan.Siggen14.17465
TrendMicroTROJ_GEN.R002C0PKS21
McAfee-GW-EditionBehavesLike.Win32.RAHack.mc
FireEyeGeneric.mg.a518da5bc5115c14
SophosMal/Generic-R + Troj/Agent-BGOS
IkarusWin32.Outbreak
GDataGen:Trojan.Heur.fuW@IHo3wXi
MaxSecureTrojan.Malware.300983.susgen
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASMalwS.3320D0C
GridinsoftRansom.Win32.Sabsik.sa
ArcabitTrojan.Heur.E84C78
ViRobotTrojan.Win32.Z.Crypt.84480.SLM
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R293305
Acronissuspicious
BitDefenderThetaAI:Packer.4C54403D1B
ALYacGen:Trojan.Heur.fuW@IHo3wXi
MAXmalware (ai score=83)
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.Crypt
TrendMicro-HouseCallTROJ_GEN.R002C0PKS21
RisingTrojan.Injector!1.CD26 (CLASSIC)
YandexTrojan.GenKryptik!uFrwnpNndQw
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Kryptik.ECM!tr
AVGWin32:Trojan-gen
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_90% (W)

How to remove Trojan.Win32.Copak.kxst?

Trojan.Win32.Copak.kxst removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment