Skip to main content
Skip to main content
Microsoft Security Intelligence
Published Mar 18, 2010 | Updated Sep 15, 2017

Trojan:Win32/Oficla.M

Detected by Microsoft Defender Antivirus

Aliases: W32/Bredolab.DV (Command) Trojan.Inject.XK (BitDefender) Win32/Koobface.LX (CA) Trojan.Win32.Bredolab (Ikarus) Bredolab.gen.c (McAfee) Trj/Sinowal.WXX (Panda) Mal/FakeAV-BW (Sophos) Trojan.Bredolab (Symantec) TROJ_FAKEAV.NAD (Trend Micro)

Summary

Trojan:Win32/Oficla.M is a trojan that attempts to inject code into a running process to download a rogue security program identified as TrojanDownloader:Win32/FakeScanti. It may arrive as a spammed e-mail attachment to a message pretending to be a Facebook password reset.
Manual removal is not recommended for this threat. To detect and remove this threat and other malicious software that may have been installed, run a full-system scan with an up-to-date antivirus product such as Microsoft Security Essentials, or the Microsoft Safety Scanner. For more information about using antivirus software, see http://www.microsoft.com/security/antivirus/av.aspx.
Follow us