Trojan

How to remove “Trojan.Win32.Copak.lnsg”?

Malware Removal

The Trojan.Win32.Copak.lnsg is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.lnsg virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Win32.Copak.lnsg?


File Info:

name: 041F4221CA3F2A05D0A4.mlw
path: /opt/CAPEv2/storage/binaries/56737acf51c9cc397f25f3e5b5a378da735194766cb74e56851228eac943586b
crc32: DA78AEDD
md5: 041f4221ca3f2a05d0a42746169c63e7
sha1: 98584bdd1a1634bd075b1783e1be1501f4cd72bb
sha256: 56737acf51c9cc397f25f3e5b5a378da735194766cb74e56851228eac943586b
sha512: a47732b05d74c01286595be7bc327054f99534e3c170fcb159581e4036295100a48542682a070cc311e5ea7cd14341914fa0b340e70bb87486ea2bd41bc39cd4
ssdeep: 24576:VBdZPNvHD/waz7DpQfWUNEFuDV/waz7DpQfV:VB3PpD9zmfWUOwDV9zmfV
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1770501BE4F8B60A3C83324BDC223AB14097B5B066957446F6BC9D186F4955BA34F3E34
sha3_384: d9f062fb0ba7884224a656ef76dd6453ee2d37ca35bca0f847e4dd6bc7df9c1bd52ac13f333d46b38ec2617d65dbdab7
ep_bytes: b9cb299a3383ec04c70424d885400081
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.lnsg also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Siggen14.7487
MicroWorld-eScanGen:Variant.Razy.870640
FireEyeGeneric.mg.041f4221ca3f2a05
CAT-QuickHealTrojan.Glupteba
ALYacGen:Variant.Razy.870640
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 00577ea11 )
K7GWTrojan ( 00577ea11 )
Cybereasonmalicious.1ca3f2
BitDefenderThetaGen:NN.ZexaF.34160.YuZ@aSwc1te
CyrenW32/Zbot.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DZQA
AvastWin32:Trojan-gen
KasperskyTrojan.Win32.Copak.lnsg
BitDefenderGen:Variant.Razy.870640
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
TencentMalware.Win32.Gencirc.10cfc98c
Ad-AwareGen:Variant.Razy.870640
EmsisoftGen:Variant.Razy.870640 (B)
McAfee-GW-EditionBehavesLike.Win32.Glupteba.cc
SophosML/PE-A + Troj/Agent-BGOS
GDataGen:Variant.Razy.870640
JiangminTrojan.Copak.bnki
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.Injector
ArcabitTrojan.Razy.DD48F0
MicrosoftTrojan:Win32/Glupteba.DB!MTB
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R293305
Acronissuspicious
McAfeeGlupteba-FTSD!041F4221CA3F
MAXmalware (ai score=88)
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.Injector
APEXMalicious
RisingTrojan.Injector!1.CD26 (CLASSIC)
YandexTrojan.Copak!rOg8pdicuwg
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/GenKryptik.CTNW!tr
AVGWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_100% (D)
MaxSecureTrojan.Malware.121218.susgen

How to remove Trojan.Win32.Copak.lnsg?

Trojan.Win32.Copak.lnsg removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment