Trojan

Trojan.Win32.Copak.lrji information

Malware Removal

The Trojan.Win32.Copak.lrji is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.lrji virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Win32.Copak.lrji?


File Info:

name: F6CBC3E967E19BF86F25.mlw
path: /opt/CAPEv2/storage/binaries/99b51837b1bcc1e419f50fb90fa10eb241275f76283b8b4e9a08aa5522cd3174
crc32: BCB6108A
md5: f6cbc3e967e19bf86f25813fb0bc2787
sha1: 573956352434985631e1d4a7899415462ec6ace3
sha256: 99b51837b1bcc1e419f50fb90fa10eb241275f76283b8b4e9a08aa5522cd3174
sha512: 7cffdf627ac8f08f25c782c1fbce8dc9f1e8d0e66c36a1603bdce05b011964cbb4bfd73168dd9411d47b1aefddc2b35faa5c51e5853e62cdb861aae9c4a76a1b
ssdeep: 24576:iUgGVxX+p1rDTwP6QFVbrDTwP63HOcrDTwP6QFVbrDTwP6z:RRS/X6FVnX9jX6FVnX1
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1C575121AEA652335FC7084B48F80C4708DF8187B64A99C1AB2471653D978BDA37F6F1E
sha3_384: a1fd168378efa4001c7339b15610e69035353e15134aeb543e7d3c6fa1de969962479ff9436cfe266f409ed6b2426618
ep_bytes: bfc8aac0d681e90100000083ec04c704
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.lrji also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.870640
FireEyeGeneric.mg.f6cbc3e967e19bf8
ALYacGen:Variant.Razy.870640
CylanceUnsafe
ZillyaTrojan.Injector.Win32.1307052
K7AntiVirusTrojan ( 00577ea11 )
K7GWTrojan ( 00577ea11 )
Cybereasonmalicious.967e19
CyrenW32/Zbot.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DZQA
APEXMalicious
ClamAVWin.Malware.Razy-9919360-0
KasperskyTrojan.Win32.Copak.lrji
BitDefenderGen:Variant.Razy.870640
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
AvastWin32:Evo-gen [Susp]
TencentMalware.Win32.Gencirc.10cfb63c
Ad-AwareGen:Variant.Razy.870640
SophosML/PE-A + Troj/Agent-BGOS
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.Siggen14.7487
McAfee-GW-EditionBehavesLike.Win32.Glupteba.tc
EmsisoftGen:Variant.Razy.870640 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Razy.870640
JiangminTrojan.Copak.boau
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.Injector
ArcabitTrojan.Razy.DD48F0
MicrosoftTrojan:Win32/Glupteba.DB!MTB
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R293305
McAfeeGenericRXAA-AA!F6CBC3E967E1
MAXmalware (ai score=85)
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.Injector
RisingTrojan.Kryptik!1.D284 (CLASSIC)
YandexTrojan.Copak!I4PfBrUV1d4
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/GenKryptik.CTNW!tr
BitDefenderThetaGen:NN.ZexaF.34114.KvZ@aSwc1te
AVGWin32:Evo-gen [Susp]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan.Win32.Copak.lrji?

Trojan.Win32.Copak.lrji removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment