Trojan

Trojan.Win32.Copak.lkgx information

Malware Removal

The Trojan.Win32.Copak.lkgx is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.lkgx virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Deletes its original binary from disk
  • Created a process from a suspicious location
  • Creates a copy of itself

How to determine Trojan.Win32.Copak.lkgx?


File Info:

name: A4CFC81CD37CA150B25D.mlw
path: /opt/CAPEv2/storage/binaries/9fa32a7295d9c93196ec1c4fbe15cd16b901a243a8eaab4f46128ea71aaf7d66
crc32: 56967439
md5: a4cfc81cd37ca150b25dee2a0c95b90c
sha1: d00c35af647655928f0ab15f7f860289f068bdd9
sha256: 9fa32a7295d9c93196ec1c4fbe15cd16b901a243a8eaab4f46128ea71aaf7d66
sha512: 9f9331414c4494aa9732b602111e8e19a2544fefe49c656c4d16a0dc9dd2828ee221aa7b524379df2bd45e1cf51c67a7d654e681933553891c6fd166723e020f
ssdeep: 3072:5s5LhpkDoDqmrvSlmUns75T6n5WhHzGL9J6b/9piRNdu4BfGHBUwHsXhl:shpk8bvSYUST6n5WhHze9J673ituIX7
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T177F3DF2A0D1EEC6FD81C45F6DF94D89A6BFCF652308A16CFE2F008C67B9AA513150857
sha3_384: 5d9a9941679e090c74ec9ff3f0c6d3f28db22e09fd5947e53e1cc7eee909ae99d5b3e6e64ebeaea942a066c1a7f54516
ep_bytes: 83ec04c704249b461bec8b342483c404
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.lkgx also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.900994
FireEyeGeneric.mg.a4cfc81cd37ca150
McAfeeGenericRXGJ-XZ!BA76E32BD986
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 00577ea11 )
K7GWTrojan ( 00577ea11 )
Cybereasonmalicious.cd37ca
CyrenW32/Zbot.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DZQA
APEXMalicious
KasperskyTrojan.Win32.Copak.lkgx
BitDefenderGen:Variant.Razy.900994
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
AvastWin32:Trojan-gen
TencentTrojan.Win32.Copak.wa
Ad-AwareGen:Variant.Razy.900994
SophosML/PE-A + Troj/Agent-BGOS
DrWebTrojan.Siggen14.7487
McAfee-GW-EditionBehavesLike.Win32.Glupteba.cc
EmsisoftGen:Variant.Razy.900994 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Razy.900994
JiangminTrojan.Copak.bnrk
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.Injector
ArcabitTrojan.Razy.DDBF82
MicrosoftTrojan:Win32/Glupteba.DB!MTB
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R293305
BitDefenderThetaGen:NN.ZexaF.34114.kuZ@aeSC5Sd
MAXmalware (ai score=84)
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.Crypt
RisingTrojan.Injector!1.CD26 (RDMK:cmRtazo91XiA4vrGKxe39Y6oSZ/7)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Copak.AGMG!tr
AVGWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan.Win32.Copak.lkgx?

Trojan.Win32.Copak.lkgx removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment