Trojan

Trojan.Win32.Copak.ladv removal guide

Malware Removal

The Trojan.Win32.Copak.ladv is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.ladv virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Win32.Copak.ladv?


File Info:

name: 4783D4BD83953E6B65BA.mlw
path: /opt/CAPEv2/storage/binaries/338e1e3793e0d47a95ea68cdcf92f84eb8c4be06ea8592fd735ad8613d5aabf9
crc32: 8B8AB31E
md5: 4783d4bd83953e6b65bad505ee370d26
sha1: 4d9b4cb811dc10a10b3b57254d46bcd95cdf2227
sha256: 338e1e3793e0d47a95ea68cdcf92f84eb8c4be06ea8592fd735ad8613d5aabf9
sha512: be70834918d46ef5e46bd87e19f6f650524de7d4ee68bc3cdb33ed419666fda6422522c372ce9597b87e520081a5301ff1a56b1de482ebf6d13558b1f10e8ec8
ssdeep: 24576:MH4x4GJXZzDatJ4eJdJ1e/6p5exbgVsqPIeatJ4eJdJ1e/K:MYxxM2C0/6ylgWqo2C0/K
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T19A0501267F7205B3EED0583F3DE41D83ADF3815221F39A571B03E161AF45C92D8A29A6
sha3_384: 90339fb79feb7291f7c8811109f35cb499a5469814523a26efa9ebb2a578b4e3a3b5391957f9a9746dde410f2b3bd58c
ep_bytes: be69490f7e83ec04c70424d885400029
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.ladv also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.870640
FireEyeGeneric.mg.4783d4bd83953e6b
CAT-QuickHealTrojan.Copak
ALYacGen:Variant.Razy.870640
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 00577ea11 )
K7GWTrojan ( 00577ea11 )
Cybereasonmalicious.d83953
CyrenW32/Zbot.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DZQA
APEXMalicious
ClamAVWin.Malware.Razy-9917606-0
KasperskyTrojan.Win32.Copak.ladv
BitDefenderGen:Variant.Razy.870640
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
AvastWin32:Trojan-gen
TencentMalware.Win32.Gencirc.10cfae18
Ad-AwareGen:Variant.Razy.870640
EmsisoftGen:Variant.Razy.870640 (B)
DrWebTrojan.Siggen14.7487
McAfee-GW-EditionBehavesLike.Win32.Glupteba.cc
SophosML/PE-A + Troj/Agent-BGOS
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Razy.870640
JiangminTrojan.Copak.bnju
eGambitUnsafe.AI_Score_99%
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.Injector
ArcabitTrojan.Razy.DD48F0
MicrosoftTrojan:Win32/Glupteba.DB!MTB
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R293305
BitDefenderThetaGen:NN.ZexaF.34114.YuZ@aSwc1te
MAXmalware (ai score=88)
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.Injector
RisingTrojan.Injector!1.CD26 (CLASSIC)
FortinetW32/GenKryptik.CTNW!tr
AVGWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan.Win32.Copak.ladv?

Trojan.Win32.Copak.ladv removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment