Trojan

Trojan.Win32.Copak.ourv removal tips

Malware Removal

The Trojan.Win32.Copak.ourv is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.ourv virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Deletes its original binary from disk
  • Created a process from a suspicious location

How to determine Trojan.Win32.Copak.ourv?


File Info:

name: A5B62E40F357D1443809.mlw
path: /opt/CAPEv2/storage/binaries/cb26b9aee0a9a1fad881337ae017732391f1fef19016a52dfef61c63b469334f
crc32: D43998F9
md5: a5b62e40f357d1443809b684c46b44b3
sha1: 14640a78bddf70fd2ebff07e20e2e3d4ce0d7561
sha256: cb26b9aee0a9a1fad881337ae017732391f1fef19016a52dfef61c63b469334f
sha512: cfb7806522ceac2b981f4bb976a454e0c0dbee48bd66dc43da5f2dced066603a287fe70e9b878fd805cdda2b187e99730c2831beb8c29bb8cd74e86d36170b73
ssdeep: 6144:5WuSerPwF4sj3v5jSYPd/JaVcfYb490Br6s3v5jSYPd/JaVO:5WbCPtsbpSohaVcfYb49/GpSohaVO
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1C364CE3911163A6EEC0BBBF1E6B3834169E73BDB28D03BE67F3844411E401984767AB5
sha3_384: 113d9c88a3dc62f50ec2e9f6da048e288025a125039f9a4f8dc4b8fb6aea15e0828daa3677c8fb0f158bcc24e253c50c
ep_bytes: b98ecb21ea83ec04c70424d885400009
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.ourv also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Razy.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen14.7487
MicroWorld-eScanGen:Variant.Razy.900994
FireEyeGeneric.mg.a5b62e40f357d144
ALYacGen:Variant.Razy.900994
CylanceUnsafe
ZillyaTrojan.Injector.Win32.1480396
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 00577ea11 )
AlibabaTrojan:Win32/Glupteba.d9e68cd6
K7GWTrojan ( 00577ea11 )
Cybereasonmalicious.0f357d
BitDefenderThetaGen:NN.ZexaF.34212.uuZ@aeSC5Sd
CyrenW32/Zbot.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DZQA
TrendMicro-HouseCallTROJ_GEN.R002C0DAI22
ClamAVWin.Packed.Razy-9935179-0
KasperskyTrojan.Win32.Copak.ourv
BitDefenderGen:Variant.Razy.900994
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
AvastWin32:Evo-gen [Susp]
TencentTrojan.Win32.Copak.wd
Ad-AwareGen:Variant.Razy.900994
SophosML/PE-A + Troj/Agent-BGOS
TrendMicroTROJ_GEN.R002C0DAI22
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
SentinelOneStatic AI – Malicious PE
EmsisoftGen:Variant.Razy.900994 (B)
JiangminTrojan.Copak.bkvk
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.Injector
MicrosoftTrojan:Win32/Glupteba.DB!MTB
ZoneAlarmTrojan.Win32.Copak.ourv
GDataGen:Variant.Razy.900994
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R293305
McAfeeGlupteba-FTSD!A5B62E40F357
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.Crypt
APEXMalicious
RisingTrojan.Kryptik!1.D284 (CLOUD)
YandexTrojan.Copak!poEZpWVnn7Q
MAXmalware (ai score=82)
FortinetW32/Copak.AGMG!tr
AVGWin32:Evo-gen [Susp]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Win32.Copak.ourv?

Trojan.Win32.Copak.ourv removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment