Trojan

Should I remove “UDS:Trojan.Win32.Copak.axppv”?

Malware Removal

The UDS:Trojan.Win32.Copak.axppv is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:Trojan.Win32.Copak.axppv virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Deletes executed files from disk
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine UDS:Trojan.Win32.Copak.axppv?


File Info:

name: 01E6E13BF69C34468348.mlw
path: /opt/CAPEv2/storage/binaries/b81cda16531582b2169ed4ea3ba697040a01b891fdbdbdbbe9d7a0b1c43b6df8
crc32: A2525B57
md5: 01e6e13bf69c344683488ff179d29721
sha1: c574ae9f4cf2139427a6af05693674ddb457095e
sha256: b81cda16531582b2169ed4ea3ba697040a01b891fdbdbdbbe9d7a0b1c43b6df8
sha512: 2b90c671c9ac0685e23ac765ea879c3e569139b6b6928696c3fb1381055f78bc61350940f3ff310966a9330547cac1206033b096c4d1baa875560a6c243c4f4f
ssdeep: 49152:jpry1Nc6fMCyqUujk8g4HbExL5ISJSK6naPsD0gKQhYhgQbExp:j6NcgMCVUujkYHQQSJSKPF7WSQz
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1CAC5E08937562483D037B936DE0DC93B9026543CAAB3D377344178EAB8A6FE84617F61
sha3_384: 43a97022db56d145caaa62e468ce2b50e5b00b338872014edef400d8d6d51f962098bc3fb4d06b98d9b4c05d9bf287f8
ep_bytes: 372a7f516743fbd662a2f247e0e89afd
timestamp: 1976-11-05 00:00:00

Version Info:

0: [No Data]

UDS:Trojan.Win32.Copak.axppv also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
DrWebTrojan.Siggen23.14920
MicroWorld-eScanTrojan.GenericKDZ.104110
ClamAVWin.Packed.Malwarex-9792170-0
SkyhighBehavesLike.Win32.Worm.vc
McAfeeTrojan-FVOQ!01E6E13BF69C
MalwarebytesGeneric.Malware.AI.DDS
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a45ef1 )
K7GWTrojan ( 005a45ef1 )
CrowdStrikewin/malicious_confidence_100% (D)
ArcabitTrojan.Generic.D196AE
BitDefenderThetaGen:NN.ZexaF.36680.K!Z@aS26mDk
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik_AGen.BFL
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:Trojan.Win32.Copak.axppv
BitDefenderTrojan.GenericKDZ.104110
AvastWin32:RATX-gen [Trj]
RisingTrojan.Kryptik!1.BF57 (CLASSIC)
EmsisoftTrojan.GenericKDZ.104110 (B)
F-SecureTrojan.TR/Kryptik.zjwco
VIPRETrojan.GenericKDZ.104110
SophosTroj/Agent-BFEY
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Copak.cwua
GoogleDetected
AviraTR/Kryptik.zjwco
Antiy-AVLTrojan/Win32.Kryptik.gify
Kingsoftmalware.kb.a.993
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
MicrosoftTrojan:Win32/Glupteba.MT!MTB
ZoneAlarmUDS:Trojan.Win32.Copak.axppv
GDataWin32.Trojan.PSE.11XGYE9
VaristW32/Trojan.MJSE-7842
AhnLab-V3Trojan/Win.OB.C5394211
Acronissuspicious
VBA32Trojan.Copak
TACHYONTrojan/W32.Selfmod
Cylanceunsafe
PandaTrj/Genetic.gen
TencentTrojan.Win32.Selfmod.ka
IkarusTrojan-Downloader.Win32.FakeAlert
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GIFQ!tr
AVGWin32:RATX-gen [Trj]
Cybereasonmalicious.f4cf21
DeepInstinctMALICIOUS

How to remove UDS:Trojan.Win32.Copak.axppv?

UDS:Trojan.Win32.Copak.axppv removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment