3,773 indexed

SOFTWARESoftware & malware

3,773 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.

Showing 701–750 of 3,773 · page 15 of 76

IDTitleSummary
CTBLOCKERctblockeraka Critroni <br/>CTB‑Locker emerged in mid‑2014, introducing a new era of ransomware by leveraging elliptic curve cryptography (ECC), Tor-based C&C communicat…
CTFCTFRansomware
CTOSCTOS
CTRATCTRat
CUBACubaThe Cuba Ransomware, also known as Colddraw Ransomware, was first identified in the threat landscape in 2019 and built a relatively small but selected list of …
CURATORCuratorransomware
CURUMIMCurumimRansomware
CUTEKITTYCutekittyransomware
CUTERANSOMWARECuteRansomwareRansomware Based on my-Little-Ransomware
CUTLET-MAKERCUTLET MAKERCutlet Maker is an ATM malware designed to empty the machine of all its banknotes. Interestingly, while its authors have been advertising its sale, their compe…
CUTWAILCutwailThe Cutwail botnet, founded around 2007, is a botnet mostly involved in sending spam e-mails. The bot is typically installed on infected machines by a Trojan c…
CVLOCKERCVLockerRansomware
CWOOLGERCWoolger
CYBER-DRILL-EXERCISECyber Drill Exercise It’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
CYBER-EYE-RATCyber Eye RAT
CYBER-POLICE-HTCyber Police HTRansomware
CYBER-SPLITTER-VBSCyber SpLiTTer VbsRansomware Based on HiddenTear
CYBERDRILL2CyberDrill2Ransomware
CYBEREXcyberex
CYBERGATEcybergateRemote Access Trojan
CYBERLEEKcyberleek
CYBERRESEARCHERCyberResearcherRansomware
CYBERSCCPCyberSCCPRansomware
CYBERSOLDIERCyberSoldierRansomware
CYBORG-RANSOMWARECyborg RansomwareRansomware delivered using fake Windows Update spam
CYCLONECycloneRansomware
CYCLOPScyclopsCyclops ransomware was rebranded as Knight around mid‑2023, emerging initially in early 2023. It operates as a Ransomware-as-a-Service (RaaS), targeting multip…
CYCLOPS-BLINKCyclops BlinkAdvanced modular botnet that is reportedly linked to the Sandworm or Voodoo Bear advanced persistent threat (APT) group.
CYLANCEcylance
CYPHERPYCypherPyRansomware
CYR-LOCKER-RANSOMWARE-FAKECYR-Locker Ransomware (FAKE)This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
CYRATCyratransomware
CYRONCyronclaims it detected "Children Pornsites" in your browser history
CYSPTCysptRansomware
CZECHCzechRansomware
D00MEDD00mEdRansomware
D0GLUNd0glunD0glun is a crypto-ransomware strain first observed in January 2025, believed to be derived from Babuk via an intermediary variant known as Cheng Xilun. It use…
D1Rd1r
D2-DD2+DRansomware
D4RK4RMYd4rk4rmy
DA-VINCI-RCSda Vinci RCSHacking Team’s "DaVinci" Remote Control System is able, the company says, to break encryption and allow law enforcement agencies to monitor encrypted files and…
DABLIO-RANSOMWAREDablio Ransomware
DAIRYDAIRYMembers of this malware family are backdoors that provide file downloading, process listing, process killing, and reverse shell capabilities. This malware may…
DAIXINDaixinDaixin Team is a ransomware and data extortion group active since at least June 2022, known for targeting the healthcare sector, including hospitals, clinics, …
DALE-RANSOMWAREDale RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
DAMAGE-RANSOMWAREDamage RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
DAMEWARE-MINI-REMOTE-CONTROLDameWare Mini Remote ControlAffordable remote control software for all your customer support and help desk needs.
DAN0Ndan0ndAn0n is a data-extortion actor that first appeared in April 2024. Operating primarily in a leak-focused extortion model, they publish stolen data on a Tor-hos…
DANDERSPRITZDanderSpritzDanderSpritz consists entirely of plugins to gather intelligence, use exploits and examine already controlled machines. It is written in Java and provides a gr…
DANGERADSDangerAdsThis is a loader Trojan used by AtlasCross in this activity. Its main function is to detect the host environment and execute a built-in shellcode in its own pr…
Sourced from MITRE ATT&CK Software and allied malware catalogues. Curated by Adam Lundqvist, Founder at SQUR.