Trojan

Trojan.Win32.Copak.kyao removal guide

Malware Removal

The Trojan.Win32.Copak.kyao is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.kyao virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Win32.Copak.kyao?


File Info:

name: 112B829FB8C031790FC1.mlw
path: /opt/CAPEv2/storage/binaries/04565b120ba3a86c68eddc880f27710e4411d9a1215ab855e0d6568ea0a85f62
crc32: 9181C7F3
md5: 112b829fb8c031790fc148774711d178
sha1: e17ba8643f01389476cd262c07132f6a1f758b3a
sha256: 04565b120ba3a86c68eddc880f27710e4411d9a1215ab855e0d6568ea0a85f62
sha512: 2c4e40cae545f84e97e84d709c2d0e956c9eb2eee7346e6528f492b13528466d4ffd22e7809cdd127de33af3e74c3d23a63c87098dc5fe208e0cb41e386531c1
ssdeep: 12288:MiM7/G04n17dZ5QYv//UGWEic04n17dZ5QYv//BnMlCdwVGm04n17dZ5QYv//UGu:Mj/g7dNvUNu7dNvBMlCdwVGA7dNvUNuY
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1B5E4BE4CC8969A3FE0A548F88AFDC11DE5FB656B50A22077BDD7100E4A4DB7C42FA6D0
sha3_384: da200ca81982b04694fad33f81ce1c6a78ae94382ac56bc57a203e180677ac1a320ab46b2d63edf5a014f7fab2bc7823
ep_bytes: 6800000000585181c23a2238405f6890
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.kyao also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.866116
FireEyeGeneric.mg.112b829fb8c03179
McAfeeGlupteba-FTSD!112B829FB8C0
MalwarebytesTrojan.Agent.Generic
K7AntiVirusTrojan ( 00577ea11 )
K7GWTrojan ( 00577ea11 )
Cybereasonmalicious.fb8c03
BitDefenderThetaGen:NN.ZexaF.34062.PuZ@aGo3wXi
CyrenW32/Kryptik.ECM.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.CTNW
KasperskyTrojan.Win32.Copak.kyao
BitDefenderGen:Variant.Razy.866116
NANO-AntivirusVirus.Win32.Gen.ccmw
AvastWin32:Evo-gen [Susp]
Ad-AwareGen:Variant.Razy.866116
EmsisoftGen:Variant.Razy.866116 (B)
McAfee-GW-EditionBehavesLike.Win32.Generic.jc
SophosML/PE-A + Troj/Agent-BGOS
APEXMalicious
GDataGen:Variant.Razy.866116
JiangminTrojan.Copak.bfzm
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASMalwS.34E14E7
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R293305
Acronissuspicious
ALYacGen:Variant.Razy.866116
MAXmalware (ai score=86)
VBA32BScope.Trojan.Wacatac
RisingTrojan.Injector!1.CD26 (CLASSIC)
YandexTrojan.Copak!wZeRVRP+UDs
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Kryptik.ECM!tr
AVGWin32:Evo-gen [Susp]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan.Win32.Copak.kyao?

Trojan.Win32.Copak.kyao removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment