3,697 indexed

SOFTWARESoftware & malware

3,697 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.

Showing 451–500 of 3,697 · page 10 of 74

IDTitleSummary
CHROME-REMOTE-DESKTOPChrome Remote DesktopChrome Remote Desktop is an extension for the Google Chrome web browser that lets you setup a computer for remote access from any other Chrome browser.
CHRYSAORChrysaorChrysaor is spyware believed to be created by NSO Group Technologies, specializing in the creation and sale of software and infrastructure for targeted attacks…
CIA-RATCIA RAT
CIA-SPECIAL-AGENT-767-RANSOMWARE-FAKECIA Special Agent 767 Ransomware (FAKE!!!)It’s directed to English speaking users, therefore is able to infect users all over the world. It is spread using email spam, fake updates, attachments and so…
CICADA3301cicada3301
CIPHBITciphbit
CIPHERFORCEcipherforceFor those out of the loop, you may already know us as TeamPCP or Shellforce, we have been active a while publishing data and writing malware, CipherForce is a …
CIPHERWOLFcipherwolf
CLAYClayransomware
CLEARWATERclearwater
CLICK-ME-RANSOMWAREClick Me RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
CLICOCRYPTERClicoCrypterRansomware
CLICOCRYPTER-2ClicoCrypter-2Ransomware
CLIENT-MAXIMUSClient MaximusThe purpose of the Client Maximus malware is financial fraud. As such, its code aspires to create the capabilities that most banking Trojans have, which allow …
CLIENTMESHClientMeshClientMesh is a Remote Administration Application yhich allows a user to control a number of client PCs from around the world.
CLIPBOARDWALLETHIJACKERClipboardWalletHijackerThe malware's purpose is to intercept content recorded in the Windows clipboard, look for strings resembling Bitcoin and Ethereum addresses, and replace them w…
CLOAKcloak
CLOAK-SUcloak.su
CLOCKClockRansomware Does not encrypt anything
CLOPClopObserved for the first time in Febuary 2019, variant from CryptoMix Family, itself a variation from CryptXXX and CryptoWall family
CLOP-TORRENTSclop torrents
CLOUDEDCloudedRansomware
CLOUDSWORD-RANSOMWARECloudSword RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. Uses the name “Window Update” to confuse its victims. Then imitates the window …
CMDCmdRansomware
CMSTARCMStar
CNHCNHransomware
COALABOTCoalaBot
COATHANGERCOATHANGERChinese FortiGate RAT. The COATHANGER malware is a remote access trojan (RAT) designed specifically for Fortigate appliances. It is used as second-stage malwar…
COBALT-STRIKECobalt StrikeCobalt Strike is software for Adversary Simulations and Red Team Operations.
COBIAN-RATCobian RATThe Zscaler ThreatLabZ research team has been monitoring a new remote access Trojan (RAT) family called Cobian RAT since February 2017. The RAT builder for thi…
COBRALOCKERCobraLockerransomware
COCKBLOCKER-RANSOMWARECockBlocker RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
CODE-SHIKARACode ShikaraCode Shikara is a computer worm, related to the Dorkbot family, that attacks through social engineering and capable of spying on users' browsing activities, me…
CODE-VIRUS-RANSOMWARECode Virus Ransomware It’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
CODEMANAGERCodemanagerRansomware
CODERCRYPTCoderCryptransomware
COIN-LOCKERCoin LockerRansomware
COINMINERCoinMinerMonero-mining malware
COINTOSSCOINTOSSCOINTOSS is a C/C++ downloader. It uses the Windows Management Instrumentation command-line (WMIC) utility to download the payload over FTP. COINTOSS then crea…
COINVAULTCoinVaultRansomware CryptoGraphic Locker family. Has a GUI. Do not confuse with CrypVault!
COLDCATCOLDCATCOLDCAT is a complex downloader. COLDCAT generates unique host identifier information, and beacons it to a C2 that is specified in a separate file via POST req…
COLDROOTColdrootColdroot, a remote access trojan (RAT), is still undetectable by most antivirus engines, despite being uploaded and freely available on GitHub for almost two y…
COLIBRI-LOADERColibri LoaderColibri Loader is a piece of malware that first appeared on underground forums in August 2021 and was advertised to “people who have large volumes of traffic a…
COLOSSUScolossusColossus ransomware was first observed in September 2021, when ZeroFox researchers uncovered the variant attacking a U.S.-based automotive group. It employs a …
COMBOSCOMBOSThe COMBOS malware family is an HTTP based backdoor. The backdoor is capable of file upload, file download, spawning a interactive reverse shell, and terminat…
COMMONRANSOMCommonRansomA new ransomware called CommonRansom was discovered that has a very bizarre request. In order to decrypt a computer after a payment is made, they require the v…
COMNIEComnieComnie is a RAT originally identified by Sophos. It has been using Github, Tumbler and Blogspot as covert channels for its C2 communications. Comnie has been o…
COMODO-UNITEComodo UniteComodo Unite is another free remote access program that creates a secure VPN between multiple computers. Once a VPN is established, you can remotely have acces…
COMPFUNCOMpfunThe COMpfun malware was initially documented by G-DATA in 2014. Although G-DATA didn’t identify which actor was using this malware, Kaspersky tentatively linke…
COMRADE-CIRCLE-RANSOMWAREComrade Circle RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
Sourced from MITRE ATT&CK Software and allied malware catalogues. Curated by Adam Lundqvist, Founder at SQUR.