Skip to main content
Skip to main content
Microsoft Security Intelligence
83 entries found. Displaying page 1 of 5.
Updated on Apr 11, 2011
Trojan:Win32/Oficla.M is a trojan that attempts to inject code into a running process to download a rogue security program identified as TrojanDownloader:Win32/FakeScanti. It may arrive as a spammed e-mail attachment to a message pretending to be a Facebook password reset.
Alert level: severe
Updated on Apr 11, 2011
Win32/Oficla is a familiy of trojans that attempts to inject code into running processes in order to download and execute arbitrary files. In the wild, we have observed variants of this family downloading and installing several different malware families, including Win32/FakeScanti and Win32/Cutwail.
Alert level: severe
Updated on Apr 11, 2011
TrojanDropper:Win32/Oficla.H is a detection for a trojan that installs and executes Trojan:Win32/Oficla.M. This Win32/Oflicla variant attempts to connect with a remote host and download a configuration data file that instructs the trojan to retrieve other malware from additional download locations.
Alert level: severe
Updated on Apr 11, 2011
TrojanDropper:Win32/Oficla.D is a detection for a trojan that installs and executes Trojan:Win32/Oficla.M. This Win32/Oflicla variant attempts to connect with a remote host and download a configuration data file that instructs the trojan to retrieve other malware from additional download locations.
Alert level: severe
Updated on Apr 11, 2011
TrojanDropper:Win32/Oficla.G is a detection for a trojan that installs and executes Trojan:Win32/Oficla.M. This Win32/Oflicla variant attempts to connect with a remote host and download a configuration data file that instructs the trojan to retrieve other malware from additional download locations.
Alert level: severe
Updated on Apr 11, 2011
TrojanDropper:Win32/Oficla.J is a detection for a trojan that installs and executes Trojan:Win32/Oficla.M, a trojan that attempts to inject code into a running process to download a rogue security program identified as TrojanDownloader:Win32/FakeScanti.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Oficla.E is a trojan that attempts to inject code into a running process to download a rogue security program identified as TrojanDownloader:Win32/FakeScanti.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Oficla.G is a trojan that installs and runs Trojan:Win32/Oficla.E. Trojan:Win32/Oficla.E may download a rogue security program identified as TrojanDownloader:Win32/FakeScanti.
Alert level: severe
Updated on Apr 11, 2011
TrojanDropper:Win32/Oficla.A is a detection for a trojan that installs and executes Trojan:Win32/Oficla.E. This Win32/Oflicla variant attempts to download TrojanDownloader:Win32/FakeScanti from a remote Web site.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Oficla.H!dll is a trojan that attempts to inject code into a running process to download a rogue security program identified as TrojanDownloader:Win32/FakeScanti.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Oficla.K is a trojan that attempts to inject code into a running process to download a rogue security program, such as TrojanDownloader:Win32/FakeScanti.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Oficla.H is a trojan that attempts to inject code into a running process to download a rogue security program, such as TrojanDownloader:Win32/FakeScanti.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Oficla.R is a malicious program that is unable to spread of its own accord. It may perform a number of actions of an attacker's choice on an affected machine.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Oficla.V is a malicious program that is unable to spread of its own accord. It may perform a number of actions of an attacker's choice on an affected machine.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Oficla.X is a detection for malware that executes commands from a remote server, which may lead it to download additional malware.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Oficla.T is a malicious program that is unable to spread of its own accord. It may perform a number of actions of an attacker's choice on an affected computer.
Alert level: severe
Updated on Apr 11, 2011
TrojanDropper:Win32/Oficla.T is a detection for malware that drops and loads payload components of Win32/Oficla.
Alert level: severe
Updated on Apr 11, 2011
TrojanDropper:Win32/Oficla.V is a detection for malware that drops and loads payload components of Win32/Oficla.
Alert level: severe
Updated on Apr 11, 2011
Trojan:Win32/Oficla.AC is a trojan that attempts to contact a remote server to download and execute arbitrary files. In the wild, it has been observed downloading TrojanDropper:Win32/Bamital.C, which in turn infects the compromised system with Virus:Win32/Bamital.C.
Alert level: severe
Updated on Nov 22, 2010
This detection covers some variants of malware that is also detected as Backdoor:Qakbot.gen!A. See that description for more information.
Alert level: severe