Trojan

VHO:Trojan.Win32.Copak.cpulx removal tips

Malware Removal

The VHO:Trojan.Win32.Copak.cpulx is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VHO:Trojan.Win32.Copak.cpulx virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • CAPE detected the embedded win api malware family
  • Creates a copy of itself
  • Deletes executed files from disk
  • Yara detections observed in process dumps, payloads or dropped files

How to determine VHO:Trojan.Win32.Copak.cpulx?


File Info:

name: 005F6C28A9DD59DF3D83.mlw
path: /opt/CAPEv2/storage/binaries/01cf2ad0675485e99b3e7c332bb1e4c9c59f12b72ca82e17d63b7d3d19a1bd0d
crc32: A843784F
md5: 005f6c28a9dd59df3d83fdb4cb7764b0
sha1: 7fb2ba540847b21e77d575d2b346793fcae11d98
sha256: 01cf2ad0675485e99b3e7c332bb1e4c9c59f12b72ca82e17d63b7d3d19a1bd0d
sha512: 7084cb4dd5bdcf431a8bfd44a782a6487b62f3d441683f7988d373c00a2f174ac60f39b714477507e4630cfcbb1f9a5801be05464f7a3dfe6caa88965ad928cb
ssdeep: 1536:prOwO2Dqfq8mT/wiUuKMdesX5iilVJwGeIuHDYbJkXvF4vt:5O4sq8+UuBBpii7lucJkXvOl
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1BA4302D1B0A5FF81CB53473A51344DE989A9607C6E436FD69EA0C70DBD21E0B831B58B
sha3_384: 665de516b7613ad03c91cd94ff7f39190b3de61ca7a3715be282bfd34a5cd82621920838ec21b741c202659bef9e39a9
ep_bytes: ba0000000083ec0489342421c981e866
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

VHO:Trojan.Win32.Copak.cpulx also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Copak.4!c
Elasticmalicious (high confidence)
FireEyeGeneric.mg.005f6c28a9dd59df
MalwarebytesTrojan.MalPack.UPX
SangforTrojan.Win32.Kryptik.V611
AlibabaTrojan:Win32/Injector.edb5d45f
K7GWTrojan ( 00004eab1 )
K7AntiVirusTrojan ( 0058c5ff1 )
BitDefenderThetaGen:NN.ZexaF.36804.dmW@aGY1VAn
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Kryptik.HITO
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyVHO:Trojan.Win32.Copak.cpulx
TencentTrojan.Win32.Copak.kj
SophosMal/HckPk-A
TrendMicroTrojan.Win32.COPAK.SMA.hp
AviraTR/Crypt.ULPM.Gen2
MicrosoftTrojan:Win32/Injector.RAQ!MTB
XcitiumPacked.Win32.MUPX.Gen@24tbus
ZoneAlarmVHO:Trojan.Win32.Bingoml.gen
GoogleDetected
AhnLab-V3Trojan/Win.Generic.R433979
VBA32BScope.Trojan.Wacatac
DeepInstinctMALICIOUS
Cylanceunsafe
RisingTrojan.Kryptik!1.D238 (CLASSIC)
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.EAHK!tr
PandaTrj/Genetic.gen
alibabacloudVirTool:Win/Packed.XorPacker.UpxSection(dyn)

How to remove VHO:Trojan.Win32.Copak.cpulx?

VHO:Trojan.Win32.Copak.cpulx removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment