Skip to main content
Skip to main content
Microsoft Security Intelligence
10 entries found.
Updated on Sep 08, 2009
Win32/Bredolab is a downloader which is able to download and execute arbitrary files from a remote host.
Alert level: severe
Updated on May 28, 2009
TrojanDownloader:Win32/Bredolab.G is a detection of malware that connects to a remote server to download and execute files.
Alert level: severe
Updated on Jul 15, 2009
PWS:Win32/Daurso.gen!A is a generic detection for a group of trojans that attempt to steal FTP credentials.
Alert level: severe
Updated on Jun 25, 2010
Worm:Win32/Prolaco.gen!E is a generic detection of a worm that spreads via e-mail message attachments, removable drives and shared folders of P2P applications. This worm also lowers security settings and disables certain security software and services.
Alert level: severe
Updated on Apr 13, 2010
TrojanDropper:Win32/Oficla.J is a detection for a trojan that installs and executes Trojan:Win32/Oficla.M, a trojan that attempts to inject code into a running process to download a rogue security program identified as TrojanDownloader:Win32/FakeScanti.
Alert level: severe
Updated on Oct 14, 2010

Trojan:Win32/Mooplids.A is a detection for a trojan that downloads additional malware.

Alert level: severe
Updated on Mar 30, 2011
Trojan:Win32/Oficla.AI is a trojan that attempts to download and execute arbitrary files.
Alert level: severe
Updated on Apr 27, 2011

TrojanDownloader:Win32/Dofoil.D is a trojan that may arrive as a spammed email attachment. It downloads arbitrary files from a remote server.

On March 6, 2018, behavior monitoring and machine learning technologies in Microsoft Defender Antivirus stopped a Dofoil variant (also known as Smoke Loader) that tried to infect more than 400,000 computers. The massive campaign aimed to install a cryptocurrency miner that uses victim computers' resources for coin mining purposes. Learn how artificial intelligence stopped the attack within minutes:

Behavior monitoring combined with machine learning spoils a massive Dofoil coin mining campaign

Alert level: severe
Updated on Dec 31, 2009
TrojanDownloader:Win32/Bredolab is a detection for malware that connects to a remote server to download and execute other files.
Alert level: severe
Updated on Oct 07, 2010
TrojanDropper:Win32/Bredolab is a trojan that injects another malware code into its process. The other malware may be detected as TrojanDownloader:Win32/Bredolab.X.
Alert level: severe