3,719 indexed
SOFTWARESoftware & malware
3,719 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.
Showing 751–800 of 3,719 · page 16 of 75
| ID | Title | Summary |
|---|---|---|
| DARKGATE | DarkGate | First documented in 2018, DarkGate is a commodity loader with features that include the ability to download and execute files to memory, a Hidden Virtual Netwo… |
| DARKHAV0C | darkhav0c | |
| DARKKOMET | DarkKomet | Ransomware |
| DARKLOCKER | DarkLocker | Ransomware |
| DARKMOON | DarkMoon | |
| DARKNET-RAT | Darknet RAT | |
| DARKODERCRYPTOR | DarkoderCryptor | Ransomware |
| DARKPULSAR | DarkPulsar | DarkPulsar is a very interesting administrative module for controlling a passive backdoor named ‘sipauth32.tsp’ that provides remote control. |
| DARKRACE | darkrace | DarkRace is a moderately destructive ransomware strain observed since 2024. It encrypts files and appends a randomized extension (e.g., .1352FF327) that varies… |
| DARKRAT | DarkRat | In March 2017, Fujitsu Cyber Threat Intelligence uncovered a newly developed remote access tool referred to by its developer as ‘Dark RAT’ – a tool used to ste… |
| DARKRYPT | darkrypt | |
| DARKSIDE | Darkside | Darkside, the latest ransomware operation to emerge has been attacking organizations beginning earlier this month. Darkside’s customized attacks on companies h… |
| DARKTRACK | DarkTrack | |
| DARKVAULT | darkvault | |
| DARKWATCHMAN | DarkWatchman | In late November, Prevailion’s Adversarial Counterintelligence Team (PACT) identified what appeared to be a malicious javascript-based Remote Access Trojan (RA… |
| DARKWAVE | darkwave | Written in python |
| DARKYLOCK | darkylock | Darky Lock is a commodity-style ransomware strain first identified in July 2022, derived from publicly available Babuk source code. Victim systems undergo file… |
| DARTHMINER | DarthMiner | |
| DATACARRY | datacarry | |
| DATACLOUD | Datacloud | ransomware |
| DATAF-LOCKER | dataf locker | DataF Locker is a ransomware variant first observed in 2024, closely tied to the Babuk ransomware lineage. It operates under a double-extortion model, encrypti… |
| DATAKEEPER | DataKeeper | Ransomware |
| DATALEAK | Dataleak | |
| DATEBATUT | Datebatut | Ransomware |
| DAVESHELL | DAVESHELL | DAVESHELL is shellcode that functions as an in-memory dropper. Its embedded payload is mapped into memory and executed. |
| DBGER-RANSOMWARE | DBGer Ransomware | The authors of the Satan ransomware have rebranded their "product" and they now go by the name of DBGer ransomware, according to security researcher MalwareHun… |
| DCRTR | DCRTR | Ransomware |
| DCRTR-WDM | DCRTR-WDM | Ransomware |
| DCRY | DCry | Ransomware |
| DDE | DDE | Ransomware |
| DDG | DDG | First activity observed in October 2017. DDG is a botnet with P2P capability that is targeting crypto currency mining (Monero). |
| DDKONG | DDKONG | The malware in question is configured with the following three exported functions: ServiceMain,Rundll32Call, DllEntryPoint. The ServiceMain exported function i… |
| DEADBYDAWN | deadbydawn | |
| DEADLOCK | deadlock | |
| DEADLY-RANSOMWARE | Deadly Ransomware | This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac… |
| DEADSEC-CRYPTO | DeadSec-Crypto | Ransomware |
| DEARCRY | DearCry | ransomware |
| DEATH | death | |
| DEATH-BITCHES | Death Bitches | Ransomware |
| DEATHGRIP | deathgrip | DeathGrip is a Ransomware-as-a-Service (RaaS) that emerged around June 2024, offering malware payloads built with leaked LockBit 3.0 and Yashma/Chaos builders.… |
| DEATHHIDDENTEAR-LARGE-SMALL-HT | DeathHiddenTear (Large&Small HT) > | Ransomware |
| DEATHNOTE | DeathNote | Ransomware |
| DEATHOFSHADOW | DeathOfShadow | ransomware |
| DEATHRANSOM | DeathRansom | Ransomware |
| DECOVID19 | DEcovid19 | ransomware |
| DECRYPT-PROTECT | DeCrypt Protect | Ransomware |
| DECRYPTFOX-RANSOMWARE | DecryptFox Ransomware | Michael Gillespie found a new ransomware uploaded to ID Ransomware that appends the .encr extension and drops a ransom note named readmy.txt. |
| DECRYPTIOMEGA | DecryptIomega | Ransomware |
| DECRYPTION-ASSISTANT | Decryption Assistant | Ransomware |
| DECSERVICE | DecService | Ransomware |