Trojan

Trojan.Win32.Copak.ldut removal guide

Malware Removal

The Trojan.Win32.Copak.ldut is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.ldut virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Win32.Copak.ldut?


File Info:

name: 4D43CF2B4413432B0862.mlw
path: /opt/CAPEv2/storage/binaries/a73b4ac07ac15ed1e4c8e152d82feaa0d59b323bfe9622c0ee8e37039163e6b3
crc32: 625CB5DC
md5: 4d43cf2b4413432b0862986bc53f140c
sha1: fa710a8cd6c654cd89db8cdd1d0ab4fe7fe68afa
sha256: a73b4ac07ac15ed1e4c8e152d82feaa0d59b323bfe9622c0ee8e37039163e6b3
sha512: 6c726ad1da2f94f2b98ecc388624040c48a6f16e0021e42c45a8fe20590a1f96ee376575515a006a9dd9adb538115db6c796b712e17d3da603280a208c42fd49
ssdeep: 24576:3OJORIfNswMeUD459cSjtm9piRfNswMeP:3od3Uk59VsER3P
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T151050112A987326BED1241F203696DC0457FBE0BE4B31EAEB25FC38119424E9DFB525C
sha3_384: b2c70f76257c57930b40f7cb7e9cb56df28dada8b76b83a9ac6bfc3ba6662c3ff471e12c38068415307efccfc049afd7
ep_bytes: b97fd1590468d885400081e8f9e7052b
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.ldut also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Copak.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.870640
FireEyeGeneric.mg.4d43cf2b4413432b
ALYacGen:Variant.Razy.870640
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 00577ea11 )
BitDefenderGen:Variant.Razy.870640
K7GWTrojan ( 00577ea11 )
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderThetaGen:NN.ZexaF.34114.YuZ@aSwc1te
CyrenW32/Zbot.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DZQA
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan.Win32.Copak.ldut
AlibabaTrojan:Win32/Copak.4bd5200a
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
RisingTrojan.Kryptik!1.D284 (RDMK:cmRtazpBMoqk0aXsRDScGrLH06Aj)
Ad-AwareGen:Variant.Razy.870640
SophosMal/Generic-R + Troj/Agent-BGOS
DrWebTrojan.Siggen14.7487
TrendMicroTROJ_GEN.R002C0DA622
McAfee-GW-EditionBehavesLike.Win32.Glupteba.cc
EmsisoftGen:Variant.Razy.870640 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Copak.bnhg
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASMalwS.33786C3
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftTrojan:Win32/Glupteba.DB!MTB
GDataGen:Variant.Razy.870640
AhnLab-V3Malware/Win32.RL_Generic.R293305
Acronissuspicious
McAfeeGlupteba-FTSD!4D43CF2B4413
MAXmalware (ai score=84)
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.Injector
TrendMicro-HouseCallTROJ_GEN.R002C0DA622
TencentMalware.Win32.Gencirc.10cfae7e
eGambitUnsafe.AI_Score_99%
FortinetW32/GenKryptik.CTNW!tr
AVGWin32:Evo-gen [Susp]
Cybereasonmalicious.b44134
AvastWin32:Evo-gen [Susp]
MaxSecureTrojan.Malware.121218.susgen

How to remove Trojan.Win32.Copak.ldut?

Trojan.Win32.Copak.ldut removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment