Trojan

Trojan.Win32.Copak.lpws removal

Malware Removal

The Trojan.Win32.Copak.lpws is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.lpws virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Win32.Copak.lpws?


File Info:

name: A0D0454833B1E2F746B6.mlw
path: /opt/CAPEv2/storage/binaries/5029f885ca2b0a17cd516910feb21ae5a86cb5973c06bb51d3435e63b007d998
crc32: 349FF0C6
md5: a0d0454833b1e2f746b6cd22ef6ae000
sha1: ed99aeafb5a6f0470e8adbb33fbfd896df773e08
sha256: 5029f885ca2b0a17cd516910feb21ae5a86cb5973c06bb51d3435e63b007d998
sha512: a99fe0f756ef8077a902cb93cbd4bb99668854eea087fd8599e432c4bada9b18ce21ae4a0386862a7b4c45b2a4859e3fbb716e88dd163ebb54d047a2b3a010d6
ssdeep: 3072:e4qcNE4sX/WAkZU6CC8jbJ0a/+kVFadFfk6eoak//X1SsY0oY1U5TQS72alePK:fqcNE4soZMLZ+k6dNVd/Pcx0PU5Tv7px
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T17214011821F15772DD0B61B68AF697C63F5B4EC32996CEB971D25A3C01B84B7C0910BE
sha3_384: 7ceff72b2a9a1c5c83fe210db2f73e05175fb135e2c19b0e1b7128b2055eb9eeaf07d71b6f999c983bdfb5ca53cea127
ep_bytes: bbbe66107068d8854000680010400083
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.lpws also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Copak.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Heur.muW@IPhSZ5
FireEyeGeneric.mg.a0d0454833b1e2f7
ALYacGen:Trojan.Heur.muW@IPhSZ5
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderGen:Trojan.Heur.muW@IPhSZ5
K7GWTrojan ( 00577ea11 )
K7AntiVirusTrojan ( 00577ea11 )
CyrenW32/Zbot.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DZQA
APEXMalicious
KasperskyTrojan.Win32.Copak.lpws
AlibabaTrojan:Win32/Copak.29b88b28
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
RisingTrojan.Injector!1.CD26 (CLOUD)
Ad-AwareGen:Trojan.Heur.muW@IPhSZ5
SophosML/PE-A + Troj/Agent-BGOS
DrWebTrojan.Siggen14.7487
TrendMicroTROJ_GEN.R002C0DB222
McAfee-GW-EditionBehavesLike.Win32.Glupteba.dc
EmsisoftGen:Trojan.Heur.muW@IPhSZ5 (B)
IkarusTrojan.Win32.Injector
GDataGen:Trojan.Heur.muW@IPhSZ5
Antiy-AVLTrojan/Generic.ASMalwS.3509BD0
ArcabitTrojan.Heur.ED862E
ZoneAlarmTrojan.Win32.Copak.lpws
MicrosoftTrojan:Win32/Glupteba.DB!MTB
AhnLab-V3Malware/Win32.RL_Generic.R293305
Acronissuspicious
McAfeeGlupteba-FTSD!A0D0454833B1
MAXmalware (ai score=80)
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.Downloader
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002C0DB222
TencentWin32.Trojan.Copak.Lmke
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.CTNW!tr
BitDefenderThetaAI:Packer.5309F06F1A
AVGWin32:Trojan-gen
Cybereasonmalicious.833b1e
AvastWin32:Trojan-gen

How to remove Trojan.Win32.Copak.lpws?

Trojan.Win32.Copak.lpws removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment