3,697 indexed

SOFTWARESoftware & malware

3,697 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.

Showing 851–900 of 3,697 · page 18 of 74

IDTitleSummary
DONBOTDonbot
DONEDoneRansomware
DONEXdonexThe ransomware group known as DoNex was first identified in mid-March 2024. According to the data collected, the samples used by the group were compiled in mid…
DONOTCHANGEDoNotChangeRansomware
DONT-WORRYDont_WorryRansomware
DONUTDonutS!Ri found a new ransomware called Donut that appends the .donut extension and uses the email donutmmm@tutanota.com.
DONUTLEAKSDonutleaksTOX: D3404141459BC7206CC4AFEC16A3403F262C0937A732C12644E7CA97F0615201A519F7EAB2E2
DOPPELPAYMERDoppelPaymerWe have dubbed this new ransomware DoppelPaymer because it shares most of its code with the BitPaymer ransomware operated by INDRIK SPIDER. However, there are …
DOPUDOPUused to connect to machines exploited by ETERNALCHAMPIONS
DORRADORRAA new ransomware variant has been identified, named DORRA. It is worth mentioning in advance that this variant is derived from the Makop ransomware family. Th…
DOTNODATADotNoDataRansomware
DOTRANSOMWAREDotRansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
DOTZEROCMDDotZeroCMDRansomware
DOUBLEFANTASYDoubleFantasy
DOWNDELPHDowndelphDowndelph is a lightweight downloader developed in the Delphi programming language. As we already mentioned in our white paper, its period of activity was from…
DOWNLOADER-FGODownloader-FGODownloader-FGO is a trojan that comes hidden in malicious programs. Once you install the source (carrier) program, this trojan attempts to gain "root" access (…
DOWNRAGEDownRage
DOWNRANGEDownRange
DR-FUCKERDr. FuckerRansomware
DR-JIMBODr. JimboRansomware
DRAGONCYBERDragoncyberransomware
DRAKOSDrakosRansomware
DRATdratA distributed, parallelized (Map Reduce) wrapper around Apache™ RAT to allow it to complete on large code repositories of multiple file types where Apache™ RAT…
DRIDEXDridexDridex is a strain of banking malware that leverages macros in Microsoft Office to infect systems. Once a computer has been infected, Dridex attackers can stea…
DRIEDSISTERDriedSisterRansomware
DRIFTERdrifterIndependent DDoS botnet on ADB attack surface, CCTV-themed C2 domains
DRIVEDOWNDRIVEDOWNDRIVEDOWN is a C/C++ Windows downloader capable of executing embedded scripts and downloading stages from OneDrive. Availability: Non-public
DROIDJACKDroidJackDroidJack is a RAT (Remote Access Trojan/Remote Administration Tool) nature of remote accessing, monitoring and managing tool (Java based) for Android mobile O…
DROVORUBDrovorubDrovorub is a Linux malware toolset consisting of an implant coupled with a kernel module rootkit, a file transfer and port forwarding tool, and a Command and …
DUALSHOTDualShotransomware
DUMB-RANSOMWAREDUMB RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
DUMMYENCRYPTER-RANSOMWAREDummyEncrypter RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
DUMMYLOCKERDummyLockerRansomware
DUNGHILLdunghillDunghill Leak is the publicly branded data leak site (DLS) operated by the Dark Angels ransomware group, established circa January 2023. Rather than a standalo…
DUQUDuqu
DUSKDuskransomware
DUSTMANDustmanAt the heart of the recent Bapco attack is a new strain of malware named Dustman. According to an analysis by Saudi Arabia's cyber-security agency, Dustman is …
DVIIDEDviideRansomware
DXXDDXXDRansomware
DYNA-CRYPT-RANSOMWAREDynA-Crypt RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
EAGERLEVEREAGERLEVERNBT/SMB exploit for Windows NT4.0, 2000, XP SP1 & SP2, 2003 SP1 & Base Release
EARLYSHOVELEARLYSHOVELRedHat 7.0 - 7.1 Sendmail 8.11.x exploit
EASYBEEEASYBEEappears to be an MDaemon email server vulnerability
EASYFUNEASYFUNEasyFun 2.2.0 Exploit for WDaemon / IIS MDaemon/WorldClient pre 9.5.6 WordClient / IIS6.0 exploit
EASYPIEASYPIan IBM Lotus Notes exploit that gets detected as Stuxnet
EBAYWALLeBayWallRansomware
EBBISLAND-EBBSHAVEEBBISLAND (EBBSHAVE)root RCE via RPC XDR overflow in Solaris 6, 7, 8, 9 & 10 (possibly newer) both SPARC and x86
EBOLARNSMWREbolaRnsmwrRansomware
ECH0RAIXeCh0raixAnomali researchers have observed a new ransomware family, dubbed eCh0raix, targeting QNAP Network Attached Storage (NAS) devices. QNAP devices are created by …
ECHOWRECKERECHOWRECKERremote Samba 3.0.x Linux exploit
Sourced from MITRE ATT&CK Software and allied malware catalogues. Curated by Adam Lundqvist, Founder at SQUR.