Trojan

Trojan.Win32.Copak.lees information

Malware Removal

The Trojan.Win32.Copak.lees is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.lees virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Deletes its original binary from disk
  • Created a process from a suspicious location

How to determine Trojan.Win32.Copak.lees?


File Info:

name: 257E8BE8A0A7E83DA85F.mlw
path: /opt/CAPEv2/storage/binaries/38574a99b42ffcb256edfad3be2154ab4d0097cfc9e6beb796993297179b1763
crc32: 554FB692
md5: 257e8be8a0a7e83da85f6a8277b79541
sha1: ae37863be5194b6c8d9fff6832be03464ebaf337
sha256: 38574a99b42ffcb256edfad3be2154ab4d0097cfc9e6beb796993297179b1763
sha512: be9c93492fa2fbc0fb96595503828edebad863b2598fe2818ef72c67ae2304313b41e5e4db6de70c7fa2cc06643d9a3e871f97f35605e87f6ea0759c68a16fe4
ssdeep: 3072:mqM3I+FIYGRWC+bGixbXx4tnww/K5gJbqOflQqBXUowBLyWqEeHUGrdlnPZU:/qI+uYGRWC+HXkwfDOHi4WqPrd9ZU
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T118F3D0D8A08A45AED47C273E8396107D08B6954E15C39B2A1D5F9102BE6CF3BC6F6DF0
sha3_384: 8b2cde92ebf9cf499e19b87939346d442d5a6f9acf8e0a2d77c7f85c80ee2f16e1a27ccbb93c9ebe955e1cced27866e1
ep_bytes: 689d0bfbeb5983ec04c70424d8854000
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.lees also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Copak.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.900994
FireEyeGeneric.mg.257e8be8a0a7e83d
McAfeeArtemis!257E8BE8A0A7
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 00577ea11 )
BitDefenderGen:Variant.Razy.900994
K7GWTrojan ( 00577ea11 )
Cybereasonmalicious.8a0a7e
CyrenW32/Zbot.W.gen!Eldorado
ESET-NOD32a variant of Win32/Injector.DZQA
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan.Win32.Copak.lees
AlibabaTrojan:Win32/Copak.9725a27c
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
ViRobotTrojan.Win32.Z.Razy.165889.GZS
AvastWin32:Evo-gen [Susp]
RisingTrojan.Injector!1.CD26 (RDMK:cmRtazrhBi7ajqw1/A42Ed/xeXz/)
Ad-AwareGen:Variant.Razy.900994
EmsisoftGen:Variant.Razy.900994 (B)
DrWebTrojan.Siggen14.7487
TrendMicroTROJ_GEN.R002C0DA622
McAfee-GW-EditionBehavesLike.Win32.Glupteba.cc
SophosMal/Generic-R + Troj/Agent-BGOS
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Razy.900994
JiangminTrojan.Copak.bmke
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=82)
Antiy-AVLTrojan/Generic.ASMalwS.33603B6
GridinsoftRansom.Win32.Wacatac.sa
ArcabitTrojan.Razy.DDBF82
MicrosoftTrojan:Win32/Glupteba.DB!MTB
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R293305
ALYacGen:Variant.Razy.900994
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.Crypt
TrendMicro-HouseCallTROJ_GEN.R002C0DA622
TencentTrojan.Win32.Copak.wa
eGambitUnsafe.AI_Score_99%
FortinetW32/Copak.AGMG!tr
BitDefenderThetaGen:NN.ZexaF.34160.kuZ@aeSC5Sd
AVGWin32:Evo-gen [Susp]
CrowdStrikewin/malicious_confidence_100% (W)
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan.Win32.Copak.lees?

Trojan.Win32.Copak.lees removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment