Trojan

Trojan.Win32.Copak.zrir information

Malware Removal

The Trojan.Win32.Copak.zrir is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Copak.zrir virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Deletes executed files from disk

How to determine Trojan.Win32.Copak.zrir?


File Info:

name: 34EEA174E6DCB960C68C.mlw
path: /opt/CAPEv2/storage/binaries/c75cedd664749868b91f061baddd388502b399a5d9fb944290909eee1a476bfe
crc32: E0B91F2F
md5: 34eea174e6dcb960c68c04415e35418c
sha1: 65d7d52e080eb375318d64173ef3c85ae63c2584
sha256: c75cedd664749868b91f061baddd388502b399a5d9fb944290909eee1a476bfe
sha512: f24ac0aab612d0bcb5db5b8652de11a1fc8cbe795ae00b76e252dc90276fc45a5126adf8a0587ddb60ae91af69524cfce9eac38a70caf33e58aa1155fd4e6f9e
ssdeep: 3072:xmN8bHSzORvDeazRMsGB4Hvq/7zit1sJ94IHj2B:xSEyzORvDe4R3MsS/7asT4IM
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1C6A3F11FABC40F72D6C917703B2B4B92B696B474A7A7C1A3A04CC1582227F7467BD64C
sha3_384: 264e368b5c5c5ae00e559180d155902c66c4562699de2ab523308969a2aa6ac85c98b81a7ce77f98b1d8da88344cea5c
ep_bytes: 68000000008b3c2483c40451be3cbd3f
timestamp: 1975-06-24 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.Copak.zrir also known as:

MicroWorld-eScanGen:Variant.Zusy.452861
McAfeeGlupteba-FUBP!34EEA174E6DC
MalwarebytesGeneric.Malware.AI.DDS
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005304e81 )
AlibabaTrojan:Win32/Copak.ee905341
K7GWTrojan ( 005304e81 )
Cybereasonmalicious.e080eb
CyrenW32/Injector.BKX.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Injector.DZQA
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Copak.zrir
BitDefenderGen:Variant.Zusy.452861
AvastWin32:Evo-gen [Trj]
TencentWin32.Trojan.Crypt.Bzlw
EmsisoftGen:Variant.Zusy.452861 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen2
DrWebTrojan.Siggen20.56331
VIPREGen:Variant.Zusy.452861
TrendMicroTROJ_GEN.R002C0PEQ23
McAfee-GW-EditionBehavesLike.Win32.Generic.nc
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.34eea174e6dcb960
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Zusy.452861
AviraTR/Crypt.XPACK.Gen2
MAXmalware (ai score=89)
Antiy-AVLTrojan/Win32.Injector
ArcabitTrojan.Zusy.D6E8FD
ZoneAlarmUDS:Trojan.Win32.Copak.zrir
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
BitDefenderThetaGen:NN.ZexaCO.36196.g8W@ampUwR
ALYacGen:Variant.Zusy.452861
VBA32BScope.Trojan.Wacatac
Cylanceunsafe
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R002C0PEQ23
RisingTrojan.Kryptik!8.8 (TFE:5:cEgvQc1NEsF)
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Injector.DZQA!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Win32.Copak.zrir?

Trojan.Win32.Copak.zrir removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment