3,773 indexed

SOFTWARESoftware & malware

3,773 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.

Showing 851–900 of 3,773 · page 18 of 76

IDTitleSummary
DISHWASHERDishwasherRansomware
DISKDOCTORDiskDoctornew Scarab Ransomware variant called DiskDoctor that appends the .DiskDoctor extension and drops a ransom note named HOW TO RECOVER ENCRYPTED FILES.TXT
DISPOSSESSORdispossessor
DISTRICTDistrictRansomware
DJANGODjangoransomware
DJVUDjvu
DMA-LOCKER-1-0-2-0-3-0DMA Locker 1.0-2.0-3.0Ransomware
DMA-LOCKER-4-0DMA Locker 4.0Ransomware
DMALOCKERDMALockerRansomware no extension change Encrypted files have prefix: Version 1: ABCXYZ11 - Version 2: !DMALOCK - Version 3: !DMALOCK3.0 - Version 4: !DMALOCK4.0
DMALOCKER-3-0DMALocker 3.0Ransomware
DMALOCKER-IMPOSTERDMALocker ImposterRansomware
DNDNIt’s directed to English speaking users, therefore is able to infect worldwide. Uses the name “Chrome Update” to confuse its victims. Then imitates the chrome…
DNRANSOMWAREDNRansomwareRansomware Code to decrypt: 83KYG9NW-3K39V-2T3HJ-93F3Q-GT
DNSMESSENGERDNSMessengerTalos recently analyzed an interesting malware sample that made use of DNS TXT record queries and responses to create a bidirectional Command and Control (C2) …
DODGERDodgerRansomware
DOGCALLDOGCALLDOGCALL is a backdoor commonly distributed as an encoded binary file downloaded and decrypted by shellcode following the exploitation of weaponized documents. …
DOGECRYPTDogeCryptransomware
DOLPHINTEARDolphinTearRansomware
DOMINODominoRansomware Based on Hidden Tear
DONALD-TRUMPDonald TrumpRansomware
DONALD-TRUMP-2-RANSOMWAREDonald Trump 2 RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
DONATION1Donation1Ransomware
DONBOTDonbot
DONEDoneRansomware
DONEXdonexThe ransomware group known as DoNex was first identified in mid-March 2024. According to the data collected, the samples used by the group were compiled in mid…
DONOTCHANGEDoNotChangeRansomware
DONT-WORRYDont_WorryRansomware
DONUTDonutS!Ri found a new ransomware called Donut that appends the .donut extension and uses the email donutmmm@tutanota.com.
DONUTLEAKSDonutleaksTOX: D3404141459BC7206CC4AFEC16A3403F262C0937A732C12644E7CA97F0615201A519F7EAB2E2
DOOMMAGEDDONdoommageddon
DOPPELPAYMERDoppelPaymerWe have dubbed this new ransomware DoppelPaymer because it shares most of its code with the BitPaymer ransomware operated by INDRIK SPIDER. However, there are …
DOPUDOPUused to connect to machines exploited by ETERNALCHAMPIONS
DORRADORRAA new ransomware variant has been identified, named DORRA. It is worth mentioning in advance that this variant is derived from the Makop ransomware family. Th…
DOTNODATADotNoDataRansomware
DOTRANSOMWAREDotRansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
DOTZEROCMDDotZeroCMDRansomware
DOUBLEFANTASYDoubleFantasy
DOWNDELPHDowndelphDowndelph is a lightweight downloader developed in the Delphi programming language. As we already mentioned in our white paper, its period of activity was from…
DOWNLOADER-FGODownloader-FGODownloader-FGO is a trojan that comes hidden in malicious programs. Once you install the source (carrier) program, this trojan attempts to gain "root" access (…
DOWNRAGEDownRage
DOWNRANGEDownRange
DR-FUCKERDr. FuckerRansomware
DR-JIMBODr. JimboRansomware
DRAGONCYBERDragoncyberransomware
DRAKOSDrakosRansomware
DRATdratA distributed, parallelized (Map Reduce) wrapper around Apache™ RAT to allow it to complete on large code repositories of multiple file types where Apache™ RAT…
DRIDEXDridexDridex is a strain of banking malware that leverages macros in Microsoft Office to infect systems. Once a computer has been infected, Dridex attackers can stea…
DRIEDSISTERDriedSisterRansomware
DRIFTERdrifterIndependent DDoS botnet on ADB attack surface, CCTV-themed C2 domains
DRIVEDOWNDRIVEDOWNDRIVEDOWN is a C/C++ Windows downloader capable of executing embedded scripts and downloading stages from OneDrive. Availability: Non-public
Sourced from MITRE ATT&CK Software and allied malware catalogues. Curated by Adam Lundqvist, Founder at SQUR.