Trojan

Trojan.Win32.Copak.mkxk information

Malware Removal

The Trojan.Win32.Copak.mkxk is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.mkxk virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Deletes its original binary from disk
  • Created a process from a suspicious location

How to determine Trojan.Win32.Copak.mkxk?


File Info:

name: E7231051FCFA507D3FFF.mlw
path: /opt/CAPEv2/storage/binaries/b950e4b66b8ce8c6d5bb4ee9a8d1214150602885eebc73390e84c8382c11ad01
crc32: 771F147D
md5: e7231051fcfa507d3fff7869f9bb5070
sha1: 575c279d4e5eaf3f3e2695fcfd9436d0091f3d33
sha256: b950e4b66b8ce8c6d5bb4ee9a8d1214150602885eebc73390e84c8382c11ad01
sha512: 0ddf664a91406bef32dee329edfc2f8e4efb092e8a8b93dde5b3f44d066da2926ca11e1e492d7ba32f6888d115559486dc185130b185976193af101ee02c5ce2
ssdeep: 3072:Q0DRDsNID/PJiI2pdFo39CcYykEUJUkkFJLDErctJ5eQAXv5zl9VEm8n332:rVwuBX2pdS30DJUR1ArjfX5l9umkH2
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T11014021CB9721903EB32FC7FBB971708C9E4D5A692FC4D729A3A15306A0A438C3757A5
sha3_384: e4d270e82a52e4fc8aaf9bea7c34e25e98972f25f3aa3ca3f5dfd49ff2ae0f8c20cedf671638d56f8dc16184a86bd134
ep_bytes: baf9b9b55468d8854000680010400083
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.mkxk also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Copak.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.e7231051fcfa507d
McAfeeGlupteba-FTSD!E7231051FCFA
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 00577ea11 )
K7AntiVirusTrojan ( 00577ea11 )
CyrenW32/Zbot.W.gen!Eldorado
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan.Win32.Copak.mkxk
AlibabaTrojan:Win32/Copak.899a81f3
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanGen:Trojan.Heur.muX@ITwc1te
AvastWin32:Trojan-gen
TencentTrojan.Win32.Copak.wc
Ad-AwareGen:Trojan.Heur.muX@ITwc1te
EmsisoftGen:Trojan.Heur.muX@ITwc1te (B)
DrWebTrojan.Siggen14.7487
TrendMicroTROJ_GEN.R002C0DA822
McAfee-GW-EditionBehavesLike.Win32.Glupteba.dc
SophosML/PE-A + Troj/Agent-BGOS
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Copak.bsnk
eGambitUnsafe.AI_Score_93%
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=88)
GridinsoftRansom.Win32.Wacatac.sa
ArcabitTrojan.Heur.E9F5A1
MicrosoftTrojan:Win32/Glupteba.DB!MTB
AhnLab-V3Malware/Win32.RL_Generic.R293305
ALYacGen:Trojan.Heur.muX@ITwc1te
MalwarebytesTrojan.Injector
TrendMicro-HouseCallTROJ_GEN.R002C0DA822
RisingTrojan.Injector!1.CD26 (CLOUD)
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.CTNW!tr
AVGWin32:Trojan-gen

How to remove Trojan.Win32.Copak.mkxk?

Trojan.Win32.Copak.mkxk removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment