Trojan

How to remove “Trojan.Win32.Copak.lszv”?

Malware Removal

The Trojan.Win32.Copak.lszv is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.lszv virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Win32.Copak.lszv?


File Info:

name: A6479DD94AF0B43C14A2.mlw
path: /opt/CAPEv2/storage/binaries/33d9cd31ab3076961841dae486022412d1171215bb8c26dab95014a3bcb5510f
crc32: C4AA70E5
md5: a6479dd94af0b43c14a2e75af6261991
sha1: 52e6a58cfc05d2fdb53fa83977d1edd908a33392
sha256: 33d9cd31ab3076961841dae486022412d1171215bb8c26dab95014a3bcb5510f
sha512: eb5b14376097d9068847bc932b92425b8e83e63f4c5fd34f9f88a7164dfee2737bc83a9bd2185ac2b125e993bc9357dcb961848b6df5dc55164bfc6fe18755fa
ssdeep: 24576:3xQ74Zb5FeDmCvEugwnnYhwmTN3hCvEugwk:BwDmZ/UKzpRZ/L
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T15A050119DAEB7789E010D03BC3FA85B60684EE7BE21C72DAB9D12EC7247F5D80547864
sha3_384: c74e8540b04742a0db987fd5e6a947e3a158df753fc894fdde19997a7c5c7edb4366404f10bbbe085adba73d60704fce
ep_bytes: b87744addf68d885400081eaf89596f8
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.lszv also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.870640
FireEyeGeneric.mg.a6479dd94af0b43c
ALYacGen:Variant.Razy.870640
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 00577ea11 )
K7GWTrojan ( 00577ea11 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaGen:NN.ZexaF.34114.YuZ@aOhSZ5
CyrenW32/Zbot.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DZQA
APEXMalicious
KasperskyTrojan.Win32.Copak.lszv
BitDefenderGen:Variant.Razy.870640
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
AvastWin32:Evo-gen [Susp]
TencentMalware.Win32.Gencirc.11df0ef0
Ad-AwareGen:Variant.Razy.870640
EmsisoftGen:Variant.Razy.870640 (B)
DrWebTrojan.Siggen14.7487
McAfee-GW-EditionBehavesLike.Win32.Glupteba.cc
SophosML/PE-A + Troj/Agent-BGOS
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Razy.870640
eGambitUnsafe.AI_Score_99%
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=89)
Antiy-AVLTrojan/Generic.ASMalwS.33770D0
ArcabitTrojan.Razy.DD48F0
MicrosoftTrojan:Win32/Glupteba.DB!MTB
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R293305
Acronissuspicious
McAfeeGenericRXGJ-XZ!E7D0466D9AC2
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.Injector
RisingTrojan.Kryptik!1.BF57 (RDMK:cmRtazqCGFftsTAP1iz0clE6yERj)
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/GenKryptik.CTNW!tr
AVGWin32:Evo-gen [Susp]
Cybereasonmalicious.94af0b

How to remove Trojan.Win32.Copak.lszv?

Trojan.Win32.Copak.lszv removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment