Trojan

Should I remove “Trojan.Win32.Copak.vcuz”?

Malware Removal

The Trojan.Win32.Copak.vcuz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.vcuz virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Deletes executed files from disk
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Win32.Copak.vcuz?


File Info:

name: B268397DF28FD49C3CE3.mlw
path: /opt/CAPEv2/storage/binaries/1eaaf83d6a04c2fc2f46834267b1f73bbdbcc1a84011f0d4f239fbfc97d6e22e
crc32: 33DF3863
md5: b268397df28fd49c3ce3634cf5649014
sha1: c9bb5ada57aeae6993b16c6380a5a3b4014e06aa
sha256: 1eaaf83d6a04c2fc2f46834267b1f73bbdbcc1a84011f0d4f239fbfc97d6e22e
sha512: 00d9be6ca97b0ad00cb61d07c55b1efdf41cbdde9c7e38cb0843cb98c6c6e61f4e91d73fd6d6adc4356d1fe1bbd9b066fa4b5fdd3bbe23d22d39d2ea86fdade7
ssdeep: 12288:9MS/y6kSXnkuqXj+jVDa/ZS4fD7HnhvMCtjW:9RlXeAa/ZS4fDDueC
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1F535AF1A1E5239B3CC0DD1BE791EED524510DE2B2E12BAE13B80A57F3EE53C19B16721
sha3_384: 8141e3fdeafdf7956ff37a4d8a28f15b8c840b39da4d480a4b4a9057cb7d3e8be0c6ce4d83d8a0a3e58cbcc2f1ee35ae
ep_bytes: be6c44dfee05c058ebe4c9c969aea173
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.vcuz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Injuke.16!c
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.GenericKDZ.98348
ClamAVWin.Packed.Dridex-9860931-1
McAfeePacked-FJB!B268397DF28F
MalwarebytesCrypt.Trojan.MSIL.DDS
ZillyaTrojan.Kryptik.Win32.2374676
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a45ef1 )
AlibabaTrojan:Win32/Copak.14621b06
K7GWTrojan ( 005a45ef1 )
Cybereasonmalicious.a57aea
BitDefenderThetaGen:NN.ZexaF.36250.e9Z@ai!cyWb
CyrenW32/Zusy.EM.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.GIFY
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Copak.vcuz
BitDefenderTrojan.GenericKDZ.98348
NANO-AntivirusTrojan.Win32.Selfmod.jpmqzf
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.Selfmod.ka
TACHYONTrojan/W32.Selfmod
EmsisoftTrojan.GenericKDZ.98348 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen2
DrWebTrojan.Siggen12.42976
VIPRETrojan.GenericKDZ.98348
TrendMicroTROJ_GEN.R002C0DDS23
McAfee-GW-EditionBehavesLike.Win32.Picsys.th
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.b268397df28fd49c
SophosMal/Inject-GJ
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.11YPVZ
JiangminTrojan.Selfmod.auxh
AviraTR/Crypt.XPACK.Gen2
Antiy-AVLTrojan/Win32.Kryptik.GIFY
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
ArcabitTrojan.Generic.D1802C
ZoneAlarmTrojan.Win32.Copak.vcuz
MicrosoftTrojan:Win32/Glupteba.MT!MTB
GoogleDetected
AhnLab-V3Malware/Win.Generic.C5394145
VBA32Trojan.Copak
ALYacTrojan.GenericKDZ.98348
MAXmalware (ai score=80)
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DDS23
RisingTrojan.Kryptik!1.BF57 (CLASSIC)
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GIFQ!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Win32.Copak.vcuz?

Trojan.Win32.Copak.vcuz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment