Trojan

Trojan.Win32.Copak.pztg removal tips

Malware Removal

The Trojan.Win32.Copak.pztg is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.pztg virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Win32.Copak.pztg?


File Info:

name: CF05BD074F8556F0430D.mlw
path: /opt/CAPEv2/storage/binaries/d873355bbe23ca560ca1c77f9a5802d4b44e2f2d44382d1434a73018a0280b3d
crc32: 46B39A7B
md5: cf05bd074f8556f0430ddd39e130f2fd
sha1: 0dbdefe57dad7695a966fc963d51c94e6469f16f
sha256: d873355bbe23ca560ca1c77f9a5802d4b44e2f2d44382d1434a73018a0280b3d
sha512: 2443a0b8d872da7fed5bd754f6ed8ec6e58d1f6f33b823801761e93cf58a616abeb51c87c31af60117d9a2222d328354a46d13eff90f7fb0a14cefdb5e535c7f
ssdeep: 6144:wiEc+ts3+f6BqaEN5mklJHopnLSRaForHvIDtU0nBz8WU/BYKi:dOPJJHopLSYSPQ8pKKi
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1545401761191AEE0ED49907ED9F2D2879529C007E83312D2258D3E7EF1EE7E9C79128C
sha3_384: 7e088c505174fecc23d49942e3a9fe1c8806121d3d4bd46d099d602509a942295813d8e85d8ce66749c01f15fa210626
ep_bytes: bbd5529a9f474a68d885400068001040
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.pztg also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Copak.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen14.7487
MicroWorld-eScanGen:Variant.Razy.870640
FireEyeGeneric.mg.cf05bd074f8556f0
ALYacGen:Variant.Razy.870640
CylanceUnsafe
ZillyaTrojan.Injector.Win32.1322638
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Copak.ad97b509
K7GWTrojan ( 00577ea11 )
K7AntiVirusTrojan ( 00577ea11 )
BitDefenderThetaGen:NN.ZexaF.34232.suZ@aOhSZ5
CyrenW32/Zbot.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DZQA
TrendMicro-HouseCallTROJ_GEN.R03BC0DB322
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Copak.pztg
BitDefenderGen:Variant.Razy.870640
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
AvastWin32:Trojan-gen
TencentMalware.Win32.Gencirc.10cff1da
Ad-AwareGen:Variant.Razy.870640
EmsisoftGen:Variant.Razy.870640 (B)
TrendMicroTROJ_GEN.R03BC0DB322
McAfee-GW-EditionBehavesLike.Win32.Glupteba.dc
SophosMal/Generic-R + Troj/Agent-BGOS
IkarusTrojan.Win32.Glupteba
GDataGen:Variant.Razy.870640
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.34F3E24
GridinsoftRansom.Win32.Wacatac.sa
ArcabitTrojan.Razy.DD48F0
ZoneAlarmTrojan.Win32.Copak.pztg
MicrosoftTrojan:Win32/Glupteba.DB!MTB
SentinelOneStatic AI – Malicious PE
AhnLab-V3Malware/Win32.RL_Generic.R293305
Acronissuspicious
McAfeeGlupteba-FTSD!CF05BD074F85
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.Downloader
APEXMalicious
RisingTrojan.Kryptik!1.D284 (CLOUD)
YandexTrojan.Copak!SKl5qXOkys8
MAXmalware (ai score=81)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.CTNW!tr
AVGWin32:Trojan-gen
Cybereasonmalicious.74f855
PandaTrj/CI.A

How to remove Trojan.Win32.Copak.pztg?

Trojan.Win32.Copak.pztg removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment