Trojan

What is “Trojan.Win32.Copak.qasp”?

Malware Removal

The Trojan.Win32.Copak.qasp is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.qasp virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Win32.Copak.qasp?


File Info:

name: 3388A5750D1ACD78126E.mlw
path: /opt/CAPEv2/storage/binaries/0a33799e83fa8f3c583a6fa6e7dafb7401d841d1ccc80ef0af7c2e66730f416a
crc32: C350A60E
md5: 3388a5750d1acd78126e53c5048c5c21
sha1: 8857fc597e8ae691b400face91f35d9a857f1f68
sha256: 0a33799e83fa8f3c583a6fa6e7dafb7401d841d1ccc80ef0af7c2e66730f416a
sha512: da9a77d6d5a531095d115867d7a2be40e28d6b7b1c306249fa23b70a79c103e807de1392e37e302851f71add27f917bdeb85c4af22a82764259a1df4d88cf346
ssdeep: 24576:+E9KrcE0aZya2oJUJ9ZpUZdNYoaZya2oJUJ0:+bAhaGo+JmTNYoaGo+J0
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T19905F13B5211CDB2ED82C6BBC7E7754E9FE6860140B853B96B2862CF04C3965ECB51B4
sha3_384: 0e09baa4bec7fd2e094f417798ff309798cac528b6ba27b0d0a3e94e375366843aaf0885cc696471c9c53fa445354aba
ep_bytes: bafc41637001cf83ec04c70424d88540
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.qasp also known as:

BkavW32.AIDetect.malware1
DrWebTrojan.Siggen14.7487
MicroWorld-eScanGen:Variant.Razy.870640
FireEyeGeneric.mg.3388a5750d1acd78
ALYacGen:Variant.Razy.870640
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 00577ea11 )
AlibabaTrojan:Win32/Copak.fd49b781
K7GWTrojan ( 00577ea11 )
Cybereasonmalicious.50d1ac
BitDefenderThetaGen:NN.ZexaF.34212.YuZ@aSwc1te
CyrenW32/Zbot.W.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DZQA
TrendMicro-HouseCallTROJ_GEN.R002C0DB422
AvastWin32:Evo-gen [Susp]
KasperskyTrojan.Win32.Copak.qasp
BitDefenderGen:Variant.Razy.870640
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
TencentTrojan.Win32.Copak.wb
Ad-AwareGen:Variant.Razy.870640
SophosMal/Generic-R + Troj/Agent-BGOS
TrendMicroTROJ_GEN.R002C0DB422
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
EmsisoftGen:Variant.Razy.870640 (B)
Paloaltogeneric.ml
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.Injector
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftTrojan:Win32/Glupteba.DB!MTB
ZoneAlarmHEUR:Trojan.Win32.Copak.pef
GDataGen:Variant.Razy.870640
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R293305
McAfeeGlupteba-FTSD!3388A5750D1A
MAXmalware (ai score=84)
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.Injector
APEXMalicious
RisingTrojan.Kryptik!1.D284 (CLOUD)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/GenKryptik.CTNW!tr
AVGWin32:Evo-gen [Susp]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan.Win32.Copak.qasp?

Trojan.Win32.Copak.qasp removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment