Trojan

UDS:Trojan.Win32.Copak.bfftv malicious file

Malware Removal

The UDS:Trojan.Win32.Copak.bfftv is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:Trojan.Win32.Copak.bfftv virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Deletes executed files from disk
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine UDS:Trojan.Win32.Copak.bfftv?


File Info:

name: CCB05903FC065FF5B2D7.mlw
path: /opt/CAPEv2/storage/binaries/7f82e74449ca163300aaf4265e4c702636ad5a5f098a71982251501a9d663a20
crc32: 731BA427
md5: ccb05903fc065ff5b2d7e92d11c08af3
sha1: e1904c56c750537be83b77b3866e3910ea4828d4
sha256: 7f82e74449ca163300aaf4265e4c702636ad5a5f098a71982251501a9d663a20
sha512: 940c59c46e3c29ad6e9bd24094397c81ab93f425d09c877aa0861ac24cda75be0e161fe1f869cc0c44f2a6537c75ec92ba6a516f236a7b465ec5c2d57c1ee162
ssdeep: 6144:giDI+g+wFk9V5d6v0Pu2fUbthrbc67dAN5:gyI+g+wm5dI0PibthrbcoU
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T16D44BE67F2CCBE10C2ED4F71263975A32B40F96D363BF29578511476A3B600CB9D86A8
sha3_384: f42ee0508f1efb96e6672e56f88134d801687b6d049550d526a0c1b9ca5e823712afa8a2b972293cd54390c5219595d7
ep_bytes: 5d238e270d4a0aa008ab03311ae96b8b
timestamp: 1974-02-09 00:00:00

Version Info:

0: [No Data]

UDS:Trojan.Win32.Copak.bfftv also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
FireEyeGeneric.mg.ccb05903fc065ff5
SkyhighBehavesLike.Win32.Generic.dc
McAfeeTrojan-FVOQ!CCB05903FC06
MalwarebytesGeneric.Malware.AI.DDS
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a45ef1 )
K7GWTrojan ( 005766931 )
CrowdStrikewin/malicious_confidence_100% (D)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik_AGen.BGU
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:Trojan.Win32.Copak.bfftv
AvastWin32:Evo-gen [Trj]
TACHYONTrojan/W32.Selfmod
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.Siggen24.39887
SophosMal/Inject-GJ
IkarusTrojan-Downloader.Win32.FakeAlert
JiangminTrojan.Selfmod.bbhb
GoogleDetected
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.Kryptik.girh
Kingsoftmalware.kb.a.999
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
MicrosoftTrojan:Win32/Glupteba.MT!MTB
ZoneAlarmUDS:Trojan.Win32.Copak.bfftv
GDataWin32.Trojan.PSE.11XGYE9
VaristW32/Trojan.NJGF-3047
AhnLab-V3Packed/Win.FJB.R620290
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.36680.q4Z@aiNtz3j
VBA32Trojan.Khalesi
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R03BC0DAP24
RisingTrojan.Kryptik!1.B34D (CLASSIC)
YandexTrojan.Kryptik_AGen!kzE6T05rAlQ
SentinelOneStatic AI – Malicious PE
FortinetW32/Kryptik.GIFQ!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.6c7505
DeepInstinctMALICIOUS

How to remove UDS:Trojan.Win32.Copak.bfftv?

UDS:Trojan.Win32.Copak.bfftv removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment