Trojan

Trojan.Win32.Copak.moxe information

Malware Removal

The Trojan.Win32.Copak.moxe is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.moxe virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Deletes its original binary from disk
  • Created a process from a suspicious location
  • Creates a copy of itself

How to determine Trojan.Win32.Copak.moxe?


File Info:

name: 3532F9EC812CA6F1ED08.mlw
path: /opt/CAPEv2/storage/binaries/8219501dc08e52a4ca1d915ade72afc0f8ea1fc5bfb5b16fd52e6d96819accb5
crc32: C553E710
md5: 3532f9ec812ca6f1ed08ced0cf5d5d1a
sha1: 775c0dff6bc10e76df99a58418b751ba2efd3722
sha256: 8219501dc08e52a4ca1d915ade72afc0f8ea1fc5bfb5b16fd52e6d96819accb5
sha512: 8ee172b37d6a0cba1fe0e71e906f122000a004e791e4ef7b0034247c8b5db9965b70a289d74f012be1cc7ca18e5b0ab7629f783955e4942c00fbd645398743f9
ssdeep: 3072:byFAA9Phn3/iPswRmfopw0CYrAoY1ar5OMGEZcUITp7Np5f1ruR8gR:byFAk56ksmQpUoATarQgyUI1pdrs8q
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T113F3CE8B4DF65466EAC9E83CFD888F976D6E81C2B7575E834E7123489E730C4162E8D0
sha3_384: b9dc90d23bb94ea1fe74679ba93c565e4f9963628bfa9d5150a52de9c8662959afebb52b65ffd0531093fed7c2b3655b
ep_bytes: b9a237f2c268d8854000680010400068
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.moxe also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Copak.4!c
Elasticmalicious (high confidence)
FireEyeGeneric.mg.3532f9ec812ca6f1
McAfeeArtemis!3532F9EC812C
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 00577ea11 )
AlibabaTrojan:Win32/Copak.95dc5cea
K7GWTrojan ( 00577ea11 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/Zbot.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DZQA
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Copak.moxe
BitDefenderGen:Variant.Razy.865537
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
MicroWorld-eScanGen:Variant.Razy.865537
AvastWin32:Trojan-gen
TencentTrojan.Win32.Copak.wa
Ad-AwareGen:Variant.Razy.865537
SophosML/PE-A + Troj/Agent-BGOS
DrWebTrojan.Siggen14.7487
TrendMicroTROJ_GEN.R002C0DA922
McAfee-GW-EditionBehavesLike.Win32.Glupteba.cc
EmsisoftGen:Variant.Razy.865537 (B)
GDataGen:Variant.Razy.865537
JiangminTrojan.Copak.bltw
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASMalwS.334CAD2
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftTrojan:Win32/Glupteba.DB!MTB
AhnLab-V3Malware/Win32.RL_Generic.R293305
VBA32BScope.Trojan.Wacatac
ALYacGen:Variant.Razy.865537
MAXmalware (ai score=89)
MalwarebytesTrojan.Crypt
TrendMicro-HouseCallTROJ_GEN.R002C0DA922
RisingTrojan.Injector!1.CD26 (CLOUD)
YandexTrojan.Copak!Z4+QFSNfuKk
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Copak.AGMG!tr
BitDefenderThetaGen:NN.ZexaF.34114.kuZ@aeSC5Sd
AVGWin32:Trojan-gen
Cybereasonmalicious.c812ca
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan.Win32.Copak.moxe?

Trojan.Win32.Copak.moxe removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment