Trojan

Trojan.Win32.Copak.ntag information

Malware Removal

The Trojan.Win32.Copak.ntag is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.ntag virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Deletes its original binary from disk
  • Created a process from a suspicious location
  • Creates a copy of itself

How to determine Trojan.Win32.Copak.ntag?


File Info:

name: 4ECE6854C44681BFF7D2.mlw
path: /opt/CAPEv2/storage/binaries/162773b9cf06ca50f97883cf8524fd0978e437748c34552a4a97f863fd322c95
crc32: FA0A4CC7
md5: 4ece6854c44681bff7d20ae5208b937e
sha1: c09d8c7d9aeebffdb18bb197c6ee47e5d69f4bd9
sha256: 162773b9cf06ca50f97883cf8524fd0978e437748c34552a4a97f863fd322c95
sha512: 03501079e6c5484b55a3798c8fa246b2c97792deb5d246e6c90b5c7e61ed96a922034ad291e4e0a5fd5f4fd7e4053ffb484f7b64aa8b02d01f4a74bd018ae0ea
ssdeep: 3072:9KxqPetDR+TO7/Q/BnhPsikl5IlJFzc4i8CyXGn/xGQoK4825I:94qk4TyI/BnNPkKJFQi1XGnAZ3+
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T127F3CF2E5BFFAC50C8FBC53AA8C394B00E6F1EBD266319D6CA241BD011985D10ACE75D
sha3_384: d27e968ccadf3162815091a2907e3d6645af1ff48f616c9f36589ceaa0c146fd44b5e6dc638892615004f8f2ed0566c2
ep_bytes: b9f4e35ae081c6748d03c468d8854000
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.ntag also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Copak.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen14.7487
CynetMalicious (score: 100)
FireEyeGeneric.mg.4ece6854c44681bf
ALYacGen:Variant.Razy.865537
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojan:Win32/Copak.8c756cff
K7GWTrojan ( 00577ea11 )
K7AntiVirusTrojan ( 00577ea11 )
BitDefenderThetaGen:NN.ZexaF.34160.kuZ@aeSC5Sd
CyrenW32/Zbot.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DZQA
TrendMicro-HouseCallTROJ_GEN.R002C0DAE22
Paloaltogeneric.ml
ClamAVWin.Packed.Razy-9935180-0
KasperskyTrojan.Win32.Copak.ntag
BitDefenderGen:Variant.Razy.865537
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
ViRobotTrojan.Win32.Z.Razy.165890.BDK
MicroWorld-eScanGen:Variant.Razy.865537
AvastWin32:Trojan-gen
TencentMalware.Win32.Gencirc.10ce7dc1
Ad-AwareGen:Variant.Razy.865537
EmsisoftGen:Variant.Razy.865537 (B)
TrendMicroTROJ_GEN.R002C0DAE22
McAfee-GW-EditionBehavesLike.Win32.Glupteba.cc
SophosML/PE-A + Troj/Agent-BGOS
GDataGen:Variant.Razy.865537
JiangminTrojan.Copak.bnda
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASMalwS.334CDCE
ArcabitTrojan.Razy.DD3501
MicrosoftTrojan:Win32/Glupteba.DB!MTB
SentinelOneStatic AI – Malicious PE
AhnLab-V3Malware/Win32.RL_Generic.R293305
McAfeeGlupteba-FTSD!4ECE6854C446
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.Crypt
APEXMalicious
RisingTrojan.Kryptik!1.D284 (CLOUD)
MAXmalware (ai score=84)
FortinetW32/Copak.AGMG!tr
AVGWin32:Trojan-gen
Cybereasonmalicious.4c4468
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan.Win32.Copak.ntag?

Trojan.Win32.Copak.ntag removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment