Trojan

Should I remove “Trojan.Win32.Copak.wgfo”?

Malware Removal

The Trojan.Win32.Copak.wgfo is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.wgfo virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Win32.Copak.wgfo?


File Info:

name: C66450364F40EC76B6B0.mlw
path: /opt/CAPEv2/storage/binaries/8a6ba49899ac5afd5e7f55762eea19321ffefee7fea1cc0fd34723a13309ada1
crc32: 5AC81E60
md5: c66450364f40ec76b6b05ad68ff75d24
sha1: d60719dfacac3259a00274a5f3e9cd80a1699cc7
sha256: 8a6ba49899ac5afd5e7f55762eea19321ffefee7fea1cc0fd34723a13309ada1
sha512: c80465a2de6acb4fed2e92e9eb8c4e7f1099038798f9ce01234990cc4a4cb9805be69bb5588de199a331a67e060b5ebb701d0fafc82be0c59abc63f185d45846
ssdeep: 12288:FrELdaPq7RjeyRMC4moimPa9ajVDa/ZS4fDr:JyRaOMC4Ni0Ioa/ZS4fDr
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T16A15495CA6671087CC5A323EA91ECAE08501ED786A56C3623C47F3963E6D7A0F44FD39
sha3_384: f139e0537f25fd093c1c00603bbc7c0d5fa08be9184f3082791b89a71558861773a6f9959fd8e328a07173026da3b59d
ep_bytes: 2f21ec977f4868107aa96181f8e3093b
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.wgfo also known as:

LionicTrojan.Win32.Khalesi.4!c
MicroWorld-eScanTrojan.GenericKDZ.98348
FireEyeGeneric.mg.c66450364f40ec76
ALYacTrojan.GenericKDZ.98348
MalwarebytesCrypt.Trojan.Malicious.DDS
ZillyaTrojan.Kryptik.Win32.2956155
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a45ef1 )
AlibabaTrojan:Win32/Copak.825aa251
K7GWTrojan ( 005a14d51 )
BitDefenderThetaGen:NN.ZexaF.36196.48W@ai!cyWb
CyrenW32/Zusy.EM.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.GIFY
APEXMalicious
ClamAVWin.Packed.Dridex-9860931-1
KasperskyTrojan.Win32.Copak.wgfo
BitDefenderTrojan.GenericKDZ.98348
NANO-AntivirusVirus.Win32.Gen.ccmw
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.Kryptik.gifya
TACHYONTrojan/W32.Selfmod
EmsisoftTrojan.GenericKDZ.98348 (B)
F-SecureTrojan.TR/Crypt.Agent.rxydt
VIPRETrojan.GenericKDZ.98348
TrendMicroTROJ_GEN.R002C0DE823
McAfee-GW-EditionBehavesLike.Win32.Generic.dm
Trapminesuspicious.low.ml.score
SophosMal/Inject-GJ
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.11YPVZ
GoogleDetected
AviraTR/Crypt.Agent.rxydt
Antiy-AVLTrojan/Win32.Kryptik.GIFY
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
ArcabitTrojan.Generic.D1802C
ViRobotTrojan.Win.Z.Kryptik.925696.BR
ZoneAlarmTrojan.Win32.Copak.wgfo
MicrosoftTrojan:Win32/Glupteba.MT!MTB
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Generic.C5394145
McAfeePacked-FJB!C66450364F40
MAXmalware (ai score=84)
VBA32Trojan.Copak
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DE823
RisingTrojan.Kryptik!1.BF57 (CLASSIC)
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GIFQ!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Win32.Copak.wgfo?

Trojan.Win32.Copak.wgfo removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment