Trojan

Trojan.Win32.Copak.kzsd information

Malware Removal

The Trojan.Win32.Copak.kzsd is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.kzsd virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Win32.Copak.kzsd?


File Info:

name: 87275D6B0890AD031955.mlw
path: /opt/CAPEv2/storage/binaries/75db5527c4bb419d0aa1432536b17b72b9f758008190d08703c2b7e32fff2260
crc32: CB3D060F
md5: 87275d6b0890ad0319553702a10db8a9
sha1: eb139b1c63fb51d4bbfcb094dce1e256e1fe8c09
sha256: 75db5527c4bb419d0aa1432536b17b72b9f758008190d08703c2b7e32fff2260
sha512: ebf73fab7f992948d14af596822788fd2075f5790a141e757e79de98977f36f8d5cc19d925be2efd6ab0f0990a78dd50fbd1fe05505a529be712a46d8842214c
ssdeep: 24576:2GhiKq2uALoEe/0XrEL0YEdG2wJBjEe/0XrEFwdujEe/0XrEL0YEdG2wJBjEe/0T:rhih2PL0HmrwJHF6uhHmrwJHI
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T14975126788617335C8235774242180F4FA3E0AE2BCCDEDE79A8C72571EAD15A68FC8D5
sha3_384: d2bc85cc0d169b350a6e1ea6d47c490c1f93d6d120ddc52c3b50da16f2bf26c43e27ad0eff099aafbf0e00cfbbbba779
ep_bytes: bf43cd8ad709d168d885400009d183ec
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.kzsd also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Siggen14.7487
MicroWorld-eScanGen:Variant.Razy.870640
FireEyeGeneric.mg.87275d6b0890ad03
McAfeeGenericRXGJ-XZ!69B87B8D8A14
CylanceUnsafe
K7AntiVirusTrojan ( 00577ea11 )
K7GWTrojan ( 00577ea11 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaGen:NN.ZexaF.34114.KvZ@aOhSZ5
CyrenW32/Zbot.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DZQA
ClamAVWin.Malware.Razy-9916465-0
KasperskyTrojan.Win32.Copak.kzsd
BitDefenderGen:Variant.Razy.870640
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
AvastWin32:Trojan-gen
TencentMalware.Win32.Gencirc.10ce838c
Ad-AwareGen:Variant.Razy.870640
EmsisoftGen:Variant.Razy.870640 (B)
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
SophosTroj/Agent-BGOS
GDataGen:Variant.Razy.870640
JiangminTrojan.Copak.bisq
eGambitUnsafe.AI_Score_99%
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASMalwS.333100F
MicrosoftTrojan:Win32/Glupteba.DB!MTB
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R293305
Acronissuspicious
VBA32BScope.Trojan.Wacatac
ALYacGen:Variant.Razy.870640
MAXmalware (ai score=83)
MalwarebytesTrojan.Injector
APEXMalicious
RisingTrojan.Injector!1.CD26 (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/GenKryptik.CTNW!tr
AVGWin32:Trojan-gen
Cybereasonmalicious.b0890a

How to remove Trojan.Win32.Copak.kzsd?

Trojan.Win32.Copak.kzsd removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment