3,719 indexed

SOFTWARESoftware & malware

3,719 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.

Showing 451–500 of 3,719 · page 10 of 75

IDTitleSummary
CHINA-CHOPPERChina ChopperChina Chopper is a publicly available, well-documented web shell, in widespread use since 2012.
CHINAYUNLONGChinaYunLongRansomware
CHIP-RANSOMWAREChip RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
CHISELChiselChisel is a fast TCP/UDP tunnel, transported over HTTP, secured via SSH. Single executable including both client and server. Written in Go (golang). Chisel is …
CHOPSTICKCHOPSTICKbackdoor used by apt28
CHORTchortChort is a relatively new data-extortion ransomware group that surfaced in late 2024, with confirmed activity beginning in October–November 2024. It operates u…
CHRISTMASChristmasRansomware
CHROME-REMOTE-DESKTOPChrome Remote DesktopChrome Remote Desktop is an extension for the Google Chrome web browser that lets you setup a computer for remote access from any other Chrome browser.
CHRYSAORChrysaorChrysaor is spyware believed to be created by NSO Group Technologies, specializing in the creation and sale of software and infrastructure for targeted attacks…
CIA-RATCIA RAT
CIA-SPECIAL-AGENT-767-RANSOMWARE-FAKECIA Special Agent 767 Ransomware (FAKE!!!)It’s directed to English speaking users, therefore is able to infect users all over the world. It is spread using email spam, fake updates, attachments and so…
CICADA3301cicada3301
CIPHBITciphbit
CIPHERFORCEcipherforceFor those out of the loop, you may already know us as TeamPCP or Shellforce, we have been active a while publishing data and writing malware, CipherForce is a …
CIPHERWOLFcipherwolf
CLAYClayransomware
CLEARWATERclearwater
CLICK-ME-RANSOMWAREClick Me RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
CLICOCRYPTERClicoCrypterRansomware
CLICOCRYPTER-2ClicoCrypter-2Ransomware
CLIENT-MAXIMUSClient MaximusThe purpose of the Client Maximus malware is financial fraud. As such, its code aspires to create the capabilities that most banking Trojans have, which allow …
CLIENTMESHClientMeshClientMesh is a Remote Administration Application yhich allows a user to control a number of client PCs from around the world.
CLIPBOARDWALLETHIJACKERClipboardWalletHijackerThe malware's purpose is to intercept content recorded in the Windows clipboard, look for strings resembling Bitcoin and Ethereum addresses, and replace them w…
CLOAKcloak
CLOAK-SUcloak.su
CLOCKClockRansomware Does not encrypt anything
CLOPClopObserved for the first time in Febuary 2019, variant from CryptoMix Family, itself a variation from CryptXXX and CryptoWall family
CLOP-TORRENTSclop torrents
CLOUDEDCloudedRansomware
CLOUDSWORD-RANSOMWARECloudSword RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. Uses the name “Window Update” to confuse its victims. Then imitates the window …
CMDCmdRansomware
CMD-ORGANIZATIONcmd organization
CMSTARCMStar
CNHCNHransomware
COALABOTCoalaBot
COATHANGERCOATHANGERChinese FortiGate RAT. The COATHANGER malware is a remote access trojan (RAT) designed specifically for Fortigate appliances. It is used as second-stage malwar…
COBALT-STRIKECobalt StrikeCobalt Strike is software for Adversary Simulations and Red Team Operations.
COBIAN-RATCobian RATThe Zscaler ThreatLabZ research team has been monitoring a new remote access Trojan (RAT) family called Cobian RAT since February 2017. The RAT builder for thi…
COBRALOCKERCobraLockerransomware
COCKBLOCKER-RANSOMWARECockBlocker RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
CODE-SHIKARACode ShikaraCode Shikara is a computer worm, related to the Dorkbot family, that attacks through social engineering and capable of spying on users' browsing activities, me…
CODE-VIRUS-RANSOMWARECode Virus Ransomware It’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
CODEMANAGERCodemanagerRansomware
CODERCRYPTCoderCryptransomware
COIN-LOCKERCoin LockerRansomware
COINMINERCoinMinerMonero-mining malware
COINTOSSCOINTOSSCOINTOSS is a C/C++ downloader. It uses the Windows Management Instrumentation command-line (WMIC) utility to download the payload over FTP. COINTOSS then crea…
COINVAULTCoinVaultRansomware CryptoGraphic Locker family. Has a GUI. Do not confuse with CrypVault!
COLDCATCOLDCATCOLDCAT is a complex downloader. COLDCAT generates unique host identifier information, and beacons it to a C2 that is specified in a separate file via POST req…
COLDROOTColdrootColdroot, a remote access trojan (RAT), is still undetectable by most antivirus engines, despite being uploaded and freely available on GitHub for almost two y…
Sourced from MITRE ATT&CK Software and allied malware catalogues. Curated by Adam Lundqvist, Founder at SQUR.