Trojan

Trojan.Win32.Copak.rafq information

Malware Removal

The Trojan.Win32.Copak.rafq is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.rafq virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Deletes executed files from disk

How to determine Trojan.Win32.Copak.rafq?


File Info:

name: 00C8FB55BEDD039879B6.mlw
path: /opt/CAPEv2/storage/binaries/0d97399d656680f4d532ec5756b0a1c495d01ecd67740419092d36ab3221e3d8
crc32: 595B13C1
md5: 00c8fb55bedd039879b65f792f46c65e
sha1: 914953fee25c0475bf09060d7eb5406fbcdd7746
sha256: 0d97399d656680f4d532ec5756b0a1c495d01ecd67740419092d36ab3221e3d8
sha512: 74330d5602eff6cb7faceff8b9ce1ee9d0559af7f0b1d6586cc38f02e2b71b2e7a0e6e49e9887eda33e621f0a9864ea0c9edde1f6174b97c69934b988b60628b
ssdeep: 3072:18RdlB1JmQoj/IomaxhXT2aoajzQ2zEHcgachUiCCP4D:1831I9/Tmax/zJzchUix4D
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T165F312EA023DB98ED7517934595B0C672FBC1D5FE939203DC558828B44CAFE8262E8C7
sha3_384: e2b2963eee9594017a6e259b7c11cb5a826eed683f557664ac2f9d2c43b4566290bf4dce46fa56457507fdb59fa85202
ep_bytes: b9000000005381c734afa97081c76b1b
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.rafq also known as:

BkavW32.AIDetect.malware1
LionicHeuristic.File.Generic.00×1!p
MicroWorld-eScanGen:Variant.Razy.865537
FireEyeGeneric.mg.00c8fb55bedd0398
McAfeeGlupteba-FUBP!00C8FB55BEDD
CylanceUnsafe
VIPREGen:Variant.Razy.865537
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0033dd381 )
AlibabaTrojan:Win32/Copak.a9fdaedd
K7GWTrojan ( 0033dd381 )
Cybereasonmalicious.ee25c0
CyrenW32/Kryptik.ECM.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.XVS
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Malware.Razy-9944970-0
KasperskyTrojan.Win32.Copak.rafq
BitDefenderGen:Variant.Razy.865537
NANO-AntivirusVirus.Win32.Gen.ccmw
AvastWin32:Trojan-gen
TencentTrojan.Win32.Copak.pa
Ad-AwareGen:Variant.Razy.865537
SophosMal/Generic-R + Troj/Agent-BGOS
DrWebTrojan.Siggen18.17172
ZillyaTrojan.Kryptik.Win32.3827216
TrendMicroTROJ_GEN.R002C0PG422
McAfee-GW-EditionBehavesLike.Win32.RAHack.cc
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Razy.865537 (B)
IkarusTrojan.Win32.Injector
GDataGen:Variant.Razy.865537
JiangminTrojan.Copak.ccsi
GoogleDetected
AviraTR/Dropper.Gen
MAXmalware (ai score=84)
ViRobotTrojan.Win32.Z.Razy.171703.VQ
MicrosoftBehavior:Win32/QbotMod.A!MTB
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.FUBP.R487408
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34606.kuZ@aejYyMk
ALYacGen:Variant.Razy.865537
TACHYONTrojan/W32.Copak.171703.RA
VBA32BScope.Trojan.Wacatac
MalwarebytesMalware.AI.4185249204
TrendMicro-HouseCallTROJ_GEN.R002C0PG422
RisingTrojan.Kryptik!1.D12D (CLASSIC)
SentinelOneStatic AI – Malicious PE
FortinetW32/Kryptik.ECM!tr
AVGWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Win32.Copak.rafq?

Trojan.Win32.Copak.rafq removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment