3,773 indexed
SOFTWARESoftware & malware
3,773 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.
Showing 751–800 of 3,773 · page 16 of 76
| ID | Title | Summary |
|---|---|---|
| DANGEROUS-RANSOMWARE | Dangerous Ransomware | This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac… |
| DARK-COMET | Dark Comet | RAT initialy identified in 2011 and still actively used. |
| DARK-DDOSER | Dark DDoSeR | |
| DARK-IOT | Dark.IoT | This malware is characterized by alternative DNS connections and connects to several *.lib domains using custom DNS servers. |
| DARK-POWER | Dark Power | Dark Power is a ransomware group first observed in January 2023, known for targeting small to mid-sized organizations across education, healthcare, manufacturi… |
| DARK-PROJECT | dark project | |
| DARK-SHINIGAMI | dark shinigami | |
| DARKANGEL | Darkangel | Dark Angels is a highly targeted ransomware and data-extortion group that emerged in spring 2022. Rather than using an affiliate-driven model, it orchestrates … |
| DARKBIT01 | Darkbit01 | TOX: AB33BC51AFAC64D98226826E70B483593C81CB22E6A3B504F7A75348C38C862F00042F5245AC |
| DARKCOMET | darkcomet | Remote Access Trojan |
| DARKDDOSER | darkddoser | Remote Access Trojan |
| DARKGATE | DarkGate | First documented in 2018, DarkGate is a commodity loader with features that include the ability to download and execute files to memory, a Hidden Virtual Netwo… |
| DARKHAV0C | darkhav0c | |
| DARKKOMET | DarkKomet | Ransomware |
| DARKLOCKER | DarkLocker | Ransomware |
| DARKMATTER | darkmatter | |
| DARKMOON | DarkMoon | |
| DARKNET-RAT | Darknet RAT | |
| DARKODERCRYPTOR | DarkoderCryptor | Ransomware |
| DARKPULSAR | DarkPulsar | DarkPulsar is a very interesting administrative module for controlling a passive backdoor named ‘sipauth32.tsp’ that provides remote control. |
| DARKRACE | darkrace | DarkRace is a moderately destructive ransomware strain observed since 2024. It encrypts files and appends a randomized extension (e.g., .1352FF327) that varies… |
| DARKRAT | darkrat | Remote Access Trojan |
| DARKRYPT | darkrypt | |
| DARKSIDE | Darkside | Darkside, the latest ransomware operation to emerge has been attacking organizations beginning earlier this month. Darkside’s customized attacks on companies h… |
| DARKTRACK | DarkTrack | |
| DARKVAULT | darkvault | |
| DARKWATCHMAN | DarkWatchman | In late November, Prevailion’s Adversarial Counterintelligence Team (PACT) identified what appeared to be a malicious javascript-based Remote Access Trojan (RA… |
| DARKWAVE | darkwave | Written in python |
| DARKYLOCK | darkylock | Darky Lock is a commodity-style ransomware strain first identified in July 2022, derived from publicly available Babuk source code. Victim systems undergo file… |
| DARTHMINER | DarthMiner | |
| DATACARRY | datacarry | |
| DATACLOUD | Datacloud | ransomware |
| DATAF-LOCKER | dataf locker | DataF Locker is a ransomware variant first observed in 2024, closely tied to the Babuk ransomware lineage. It operates under a double-extortion model, encrypti… |
| DATAKEEPER | DataKeeper | Ransomware |
| DATALEAK | Dataleak | |
| DATEBATUT | Datebatut | Ransomware |
| DAVESHELL | DAVESHELL | DAVESHELL is shellcode that functions as an in-memory dropper. Its embedded payload is mapped into memory and executed. |
| DBGER-RANSOMWARE | DBGer Ransomware | The authors of the Satan ransomware have rebranded their "product" and they now go by the name of DBGer ransomware, according to security researcher MalwareHun… |
| DCRTR | DCRTR | Ransomware |
| DCRTR-WDM | DCRTR-WDM | Ransomware |
| DCRY | DCry | Ransomware |
| DDE | DDE | Ransomware |
| DDG | DDG | First activity observed in October 2017. DDG is a botnet with P2P capability that is targeting crypto currency mining (Monero). |
| DDKONG | DDKONG | The malware in question is configured with the following three exported functions: ServiceMain,Rundll32Call, DllEntryPoint. The ServiceMain exported function i… |
| DEADBYDAWN | deadbydawn | |
| DEADLOCK | deadlock | |
| DEADLY-RANSOMWARE | Deadly Ransomware | This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac… |
| DEADSEC-CRYPTO | DeadSec-Crypto | Ransomware |
| DEARCRY | DearCry | ransomware |
| DEATH | death |