3,719 indexed
SOFTWARESoftware & malware
3,719 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.
Showing 801–850 of 3,719 · page 17 of 75
| ID | Title | Summary |
|---|---|---|
| DECYOURDATA | DecYourData | Ransomware |
| DEDCRYPTOR | DEDCryptor | Ransomware Based on EDA2 |
| DEEPER-RAT | Deeper RAT | |
| DEFENDER | Defender | Ransomware |
| DEFRAY-GLUSHKOV | Defray (Glushkov) | Ransomware |
| DELPHIMORIX | DeLpHiMoRix | |
| DELTA | delta | |
| DEMO | Demo | Ransomware only encrypts .jpg files |
| DENDROID | Dendroid | Dendroid is malware that affects Android OS and targets the mobile platform. It was first discovered in early of 2014 by Symantec and appeared in the undergrou… |
| DENESRAT | DenesRAT | DenesRAT is a private Trojan horse of the "Sea Lotus" organization, which can perform corresponding functions according to the instructions issued by the C2 se… |
| DEOS | Deos | Ransomware |
| DEPRIMON | DePriMon | DePriMon is a malicious downloader, with several stages and using many non-traditional techniques. To achieve persistence, the malware registers a new local po… |
| DERIALOCK-RANSOMWARE | DeriaLock Ransomware | It’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp… |
| DEROHE | DeroHE | ransomware |
| DERUSBI | Derusbi | |
| DESKTOP | Desktop | Ransomware |
| DESKTOPNOW | DesktopNow | DesktopNow is a free remote access program from NCH Software. After optionally forwarding the proper port number in your router, and signing up for a free acco… |
| DESOLATED | desolated | |
| DESOLATOR | desolator | |
| DESYNC | Desync | This crypto ransomware encrypts enterprise LAN data with AES (ECB mode), and then requires a ransom in # BTC to return the files. |
| DETOXCRYPTO | DetoxCrypto | Ransomware - Based on Detox: Calipso, We are all Pokemons, Nullbyte |
| DEVMAN | devman | |
| DEVMAN2 | devman2 | |
| DEVOS | Devos | ransomware |
| DHARMA | dharma | Dharma is a prolific ransomware family active since at least 2016, evolving from the earlier CrySiS ransomware. It operates under a Ransomware-as-a-Service (Ra… |
| DHARMA-RANSOMWARE | Dharma Ransomware | It’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp… |
| DHS2015 | DHS2015 | |
| DIAMOND | Diamond | Ransomware |
| DIAVOL | Diavol | A ransomware with potential ties to Wizard Spider. |
| DIGISOM | Digisom | Ransomware |
| DIGMINE | Digmine | Digmine is coded in AutoIt, and sent to would-be victims posing as a video file but is actually an AutoIt executable script. If the user’s Facebook account is … |
| DILMALOCKER | DilmaLocker | Ransomware |
| DIMNIE | Dimnie | Dimnie, the commonly agreed upon name for the binary dropped by the PowerShell script above, has been around for several years. Palo Alto Networks has observed… |
| DINOLAB | DINOLAB | DINOLAB is a C/C++ builder. It is used to encrypt and decrypt files, obfuscate VBSscripts, and infect files. Availability: Non-public |
| DIRCRYPT | DirCrypt | |
| DIREWOLF | direwolf | |
| DIRTYDECRYPT | DirtyDecrypt | Ransomware |
| DISGUFA | Disgufa | |
| DISHWASHER | Dishwasher | Ransomware |
| DISKDOCTOR | DiskDoctor | new Scarab Ransomware variant called DiskDoctor that appends the .DiskDoctor extension and drops a ransom note named HOW TO RECOVER ENCRYPTED FILES.TXT |
| DISPOSSESSOR | dispossessor | |
| DISTRICT | District | Ransomware |
| DJANGO | Django | ransomware |
| DJVU | Djvu | |
| DMA-LOCKER-1-0-2-0-3-0 | DMA Locker 1.0-2.0-3.0 | Ransomware |
| DMA-LOCKER-4-0 | DMA Locker 4.0 | Ransomware |
| DMALOCKER | DMALocker | Ransomware no extension change Encrypted files have prefix: Version 1: ABCXYZ11 - Version 2: !DMALOCK - Version 3: !DMALOCK3.0 - Version 4: !DMALOCK4.0 |
| DMALOCKER-3-0 | DMALocker 3.0 | Ransomware |
| DMALOCKER-IMPOSTER | DMALocker Imposter | Ransomware |
| DN | DN | It’s directed to English speaking users, therefore is able to infect worldwide. Uses the name “Chrome Update” to confuse its victims. Then imitates the chrome… |