3,719 indexed

SOFTWARESoftware & malware

3,719 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.

Showing 851–900 of 3,719 · page 18 of 75

IDTitleSummary
DNRANSOMWAREDNRansomwareRansomware Code to decrypt: 83KYG9NW-3K39V-2T3HJ-93F3Q-GT
DNSMESSENGERDNSMessengerTalos recently analyzed an interesting malware sample that made use of DNS TXT record queries and responses to create a bidirectional Command and Control (C2) …
DODGERDodgerRansomware
DOGCALLDOGCALLDOGCALL is a backdoor commonly distributed as an encoded binary file downloaded and decrypted by shellcode following the exploitation of weaponized documents. …
DOGECRYPTDogeCryptransomware
DOLPHINTEARDolphinTearRansomware
DOMINODominoRansomware Based on Hidden Tear
DONALD-TRUMPDonald TrumpRansomware
DONALD-TRUMP-2-RANSOMWAREDonald Trump 2 RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
DONATION1Donation1Ransomware
DONBOTDonbot
DONEDoneRansomware
DONEXdonexThe ransomware group known as DoNex was first identified in mid-March 2024. According to the data collected, the samples used by the group were compiled in mid…
DONOTCHANGEDoNotChangeRansomware
DONT-WORRYDont_WorryRansomware
DONUTDonutS!Ri found a new ransomware called Donut that appends the .donut extension and uses the email donutmmm@tutanota.com.
DONUTLEAKSDonutleaksTOX: D3404141459BC7206CC4AFEC16A3403F262C0937A732C12644E7CA97F0615201A519F7EAB2E2
DOOMMAGEDDONdoommageddon
DOPPELPAYMERDoppelPaymerWe have dubbed this new ransomware DoppelPaymer because it shares most of its code with the BitPaymer ransomware operated by INDRIK SPIDER. However, there are …
DOPUDOPUused to connect to machines exploited by ETERNALCHAMPIONS
DORRADORRAA new ransomware variant has been identified, named DORRA. It is worth mentioning in advance that this variant is derived from the Makop ransomware family. Th…
DOTNODATADotNoDataRansomware
DOTRANSOMWAREDotRansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
DOTZEROCMDDotZeroCMDRansomware
DOUBLEFANTASYDoubleFantasy
DOWNDELPHDowndelphDowndelph is a lightweight downloader developed in the Delphi programming language. As we already mentioned in our white paper, its period of activity was from…
DOWNLOADER-FGODownloader-FGODownloader-FGO is a trojan that comes hidden in malicious programs. Once you install the source (carrier) program, this trojan attempts to gain "root" access (…
DOWNRAGEDownRage
DOWNRANGEDownRange
DR-FUCKERDr. FuckerRansomware
DR-JIMBODr. JimboRansomware
DRAGONCYBERDragoncyberransomware
DRAKOSDrakosRansomware
DRATdratA distributed, parallelized (Map Reduce) wrapper around Apache™ RAT to allow it to complete on large code repositories of multiple file types where Apache™ RAT…
DRIDEXDridexDridex is a strain of banking malware that leverages macros in Microsoft Office to infect systems. Once a computer has been infected, Dridex attackers can stea…
DRIEDSISTERDriedSisterRansomware
DRIFTERdrifterIndependent DDoS botnet on ADB attack surface, CCTV-themed C2 domains
DRIVEDOWNDRIVEDOWNDRIVEDOWN is a C/C++ Windows downloader capable of executing embedded scripts and downloading stages from OneDrive. Availability: Non-public
DROIDJACKDroidJackDroidJack is a RAT (Remote Access Trojan/Remote Administration Tool) nature of remote accessing, monitoring and managing tool (Java based) for Android mobile O…
DROVORUBDrovorubDrovorub is a Linux malware toolset consisting of an implant coupled with a kernel module rootkit, a file transfer and port forwarding tool, and a Command and …
DUALSHOTDualShotransomware
DUMB-RANSOMWAREDUMB RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
DUMMYENCRYPTER-RANSOMWAREDummyEncrypter RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
DUMMYLOCKERDummyLockerRansomware
DUNGHILLdunghillDunghill Leak is the publicly branded data leak site (DLS) operated by the Dark Angels ransomware group, established circa January 2023. Rather than a standalo…
DUQUDuqu
DUSKDuskransomware
DUSTMANDustmanAt the heart of the recent Bapco attack is a new strain of malware named Dustman. According to an analysis by Saudi Arabia's cyber-security agency, Dustman is …
DVIIDEDviideRansomware
DXXDDXXDRansomware
Sourced from MITRE ATT&CK Software and allied malware catalogues. Curated by Adam Lundqvist, Founder at SQUR.