3,719 indexed

SOFTWARESoftware & malware

3,719 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.

Showing 751–800 of 3,719 · page 16 of 75

IDTitleSummary
DARKGATEDarkGateFirst documented in 2018, DarkGate is a commodity loader with features that include the ability to download and execute files to memory, a Hidden Virtual Netwo…
DARKHAV0Cdarkhav0c
DARKKOMETDarkKometRansomware
DARKLOCKERDarkLockerRansomware
DARKMOONDarkMoon
DARKNET-RATDarknet RAT
DARKODERCRYPTORDarkoderCryptorRansomware
DARKPULSARDarkPulsarDarkPulsar is a very interesting administrative module for controlling a passive backdoor named ‘sipauth32.tsp’ that provides remote control.
DARKRACEdarkraceDarkRace is a moderately destructive ransomware strain observed since 2024. It encrypts files and appends a randomized extension (e.g., .1352FF327) that varies…
DARKRATDarkRatIn March 2017, Fujitsu Cyber Threat Intelligence uncovered a newly developed remote access tool referred to by its developer as ‘Dark RAT’ – a tool used to ste…
DARKRYPTdarkrypt
DARKSIDEDarksideDarkside, the latest ransomware operation to emerge has been attacking organizations beginning earlier this month. Darkside’s customized attacks on companies h…
DARKTRACKDarkTrack
DARKVAULTdarkvault
DARKWATCHMANDarkWatchmanIn late November, Prevailion’s Adversarial Counterintelligence Team (PACT) identified what appeared to be a malicious javascript-based Remote Access Trojan (RA…
DARKWAVEdarkwaveWritten in python
DARKYLOCKdarkylockDarky Lock is a commodity-style ransomware strain first identified in July 2022, derived from publicly available Babuk source code. Victim systems undergo file…
DARTHMINERDarthMiner
DATACARRYdatacarry
DATACLOUDDatacloudransomware
DATAF-LOCKERdataf lockerDataF Locker is a ransomware variant first observed in 2024, closely tied to the Babuk ransomware lineage. It operates under a double-extortion model, encrypti…
DATAKEEPERDataKeeperRansomware
DATALEAKDataleak
DATEBATUTDatebatutRansomware
DAVESHELLDAVESHELLDAVESHELL is shellcode that functions as an in-memory dropper. Its embedded payload is mapped into memory and executed.
DBGER-RANSOMWAREDBGer RansomwareThe authors of the Satan ransomware have rebranded their "product" and they now go by the name of DBGer ransomware, according to security researcher MalwareHun…
DCRTRDCRTRRansomware
DCRTR-WDMDCRTR-WDMRansomware
DCRYDCryRansomware
DDEDDERansomware
DDGDDGFirst activity observed in October 2017. DDG is a botnet with P2P capability that is targeting crypto currency mining (Monero).
DDKONGDDKONGThe malware in question is configured with the following three exported functions: ServiceMain,Rundll32Call, DllEntryPoint. The ServiceMain exported function i…
DEADBYDAWNdeadbydawn
DEADLOCKdeadlock
DEADLY-RANSOMWAREDeadly RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
DEADSEC-CRYPTODeadSec-CryptoRansomware
DEARCRYDearCryransomware
DEATHdeath
DEATH-BITCHESDeath BitchesRansomware
DEATHGRIPdeathgripDeathGrip is a Ransomware-as-a-Service (RaaS) that emerged around June 2024, offering malware payloads built with leaked LockBit 3.0 and Yashma/Chaos builders.…
DEATHHIDDENTEAR-LARGE-SMALL-HTDeathHiddenTear (Large&Small HT) > Ransomware
DEATHNOTEDeathNoteRansomware
DEATHOFSHADOWDeathOfShadowransomware
DEATHRANSOMDeathRansomRansomware
DECOVID19DEcovid19ransomware
DECRYPT-PROTECTDeCrypt ProtectRansomware
DECRYPTFOX-RANSOMWAREDecryptFox RansomwareMichael Gillespie found a new ransomware uploaded to ID Ransomware that appends the .encr extension and drops a ransom note named readmy.txt.
DECRYPTIOMEGADecryptIomegaRansomware
DECRYPTION-ASSISTANTDecryption AssistantRansomware
DECSERVICEDecServiceRansomware
Sourced from MITRE ATT&CK Software and allied malware catalogues. Curated by Adam Lundqvist, Founder at SQUR.