Trojan

Trojan.Win32.Copak.qyyu information

Malware Removal

The Trojan.Win32.Copak.qyyu is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.qyyu virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Deletes executed files from disk

How to determine Trojan.Win32.Copak.qyyu?


File Info:

name: E99BE74FEA7F2C94079C.mlw
path: /opt/CAPEv2/storage/binaries/7ddd695f2421f652144c2bf0b3aa095b80429e1f11e12051f35dbb269c2fe9ef
crc32: B903A9A7
md5: e99be74fea7f2c94079c1d5fdc224b07
sha1: f5ad3956155bcca58b1fe8ca749f5827d3f5458b
sha256: 7ddd695f2421f652144c2bf0b3aa095b80429e1f11e12051f35dbb269c2fe9ef
sha512: a9320224051871e5d3337835d369f68d17c8bdf8260164be33106a1cfa9d95462685715082189ac60b85616e515057741691935aacf03b332c61510debd93c79
ssdeep: 1536:FK3Xuh8EFbzk/rDnCers7bpuu3iCaRXOHDKzQxEohMw5gXeCr1GAHNG0wrRTx:YuGEFE//nunou3iCa9OZxEo6+qZJGoNU
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T149930191D6E31D59E9402EBCC77CD9D250F9D487B6D2B88ECB048DC329F848C24DBA96
sha3_384: a71a5e3db7d541bafd03a97c2a174688c5e4e7f14b8f02b0733b144bd7d0596dca3036c48ab618e37623015ac3262525
ep_bytes: 68000000005983ec04893c2421db5e42
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.qyyu also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Convagent.4!c
DrWebTrojan.Siggen17.57193
MicroWorld-eScanTrojan.GenericKD.50627255
FireEyeGeneric.mg.e99be74fea7f2c94
ALYacTrojan.GenericKD.50627255
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.3812791
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0058c5ff1 )
AlibabaTrojan:Win32/Copak.cdda469d
K7GWTrojan ( 005435201 )
Cybereasonmalicious.6155bc
BitDefenderThetaGen:NN.ZexaF.34592.fuY@aejYyMk
CyrenW32/Kryptik.ECM.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.XVS
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Packed.Razy-9937243-0
KasperskyTrojan.Win32.Copak.qyyu
BitDefenderTrojan.GenericKD.50627255
NANO-AntivirusVirus.Win32.Gen.ccmw
AvastWin32:Trojan-gen
TencentTrojan.Win32.Copak.pa
Ad-AwareTrojan.GenericKD.50627255
EmsisoftTrojan.GenericKD.50627255 (B)
ComodoMalware@#20oq7ozal60tf
VIPRETrojan.GenericKD.50627255
TrendMicroTROJ_GEN.R002C0PFS22
McAfee-GW-EditionBehavesLike.Win32.Glupteba.nc
Trapminemalicious.high.ml.score
SophosMal/Generic-R + Troj/Agent-BGOS
SentinelOneStatic AI – Malicious PE
GDataTrojan.GenericKD.50627255
JiangminTrojan.Copak.ceri
GoogleDetected
AviraTR/Dropper.Gen
MAXmalware (ai score=88)
Antiy-AVLTrojan/Generic.ASMalwS.5123
ViRobotTrojan.Win32.Z.Razy.94900.ASM
MicrosoftTrojan:Win32/IRCBot.MS!MTB
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R434145
Acronissuspicious
McAfeeGlupteba-FUBP!E99BE74FEA7F
TACHYONTrojan/W32.Convagent.94900.C
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.Dropper
TrendMicro-HouseCallTROJ_GEN.R002C0PFS22
RisingTrojan.Kryptik!1.D12D (CLASSIC)
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.ECM!tr
AVGWin32:Trojan-gen
PandaTrj/Chgt.AB
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Win32.Copak.qyyu?

Trojan.Win32.Copak.qyyu removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment