Trojan

Should I remove “Trojan.Win32.Copak.lxfp”?

Malware Removal

The Trojan.Win32.Copak.lxfp is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.lxfp virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Win32.Copak.lxfp?


File Info:

name: 51C530848197026AC97A.mlw
path: /opt/CAPEv2/storage/binaries/330b79f42058546255812eeb1cc3bef893d58050e478eed13768ba5ce43e565f
crc32: 24598698
md5: 51c530848197026ac97a2bbe4939892f
sha1: 4602fd1aabafa8e087cee7592fb89dc8ed930d0d
sha256: 330b79f42058546255812eeb1cc3bef893d58050e478eed13768ba5ce43e565f
sha512: 9e9d76c2f6443b5b87f9a665634b8c3148f29dede3d5e16c4df2136c410d07bcd8959a5b2d9fadc003e4f1e27354c74e55284ba5732841110328b2db4632f0d0
ssdeep: 12288:PfLNkQvRjJtdyIFItdgLUBYMVTuWVrFoOD0nkRVBq4Ht1CpZjHofuWYMVTuWVrFS:rKcNAP7TBY09F7zR7q+tkb6Y09F7zi
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1CC0501209A4E6D63D16FCCF77969C4F4C8FDE352206A616ECBB60B482F6D632500B4B1
sha3_384: ab821a4d0a911416bada6e83111da5114caab5c3cd0daa88e75804f53ec42ccc5fba46e2cceb58e2dab2ff214931358f
ep_bytes: bb9d0225f329f868d885400009c16800
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.lxfp also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.870640
FireEyeGeneric.mg.51c530848197026a
McAfeeGlupteba-FTSD!51C530848197
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 00577ea11 )
K7GWTrojan ( 00577ea11 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaGen:NN.ZexaF.34160.YuZ@aSwc1te
CyrenW32/Zbot.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DZQA
APEXMalicious
KasperskyTrojan.Win32.Copak.lxfp
BitDefenderGen:Variant.Razy.870640
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
AvastWin32:Evo-gen [Susp]
TencentMalware.Win32.Gencirc.10cfad32
Ad-AwareGen:Variant.Razy.870640
EmsisoftGen:Variant.Razy.870640 (B)
DrWebTrojan.Siggen14.7487
McAfee-GW-EditionBehavesLike.Win32.Glupteba.cc
SophosTroj/Agent-BGOS
GDataGen:Variant.Razy.870640
JiangminTrojan.Copak.bpqp
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=89)
Antiy-AVLTrojan/Generic.ASMalwS.336B893
MicrosoftTrojan:Win32/Glupteba.DB!MTB
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R293305
Acronissuspicious
VBA32BScope.Trojan.Wacatac
ALYacGen:Variant.Razy.870640
MalwarebytesTrojan.Injector
RisingTrojan.Kryptik!1.BF57 (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/GenKryptik.CTNW!tr
AVGWin32:Evo-gen [Susp]
Cybereasonmalicious.481970

How to remove Trojan.Win32.Copak.lxfp?

Trojan.Win32.Copak.lxfp removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment