3,773 indexed
SOFTWARESoftware & malware
3,773 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.
Showing 901–950 of 3,773 · page 19 of 76
| ID | Title | Summary |
|---|---|---|
| DRIVESILKRAT | DriveSilkRAT | DriveSilkRAT is a remote access trojan used by the SilkParasite activity cluster, observed by Bitdefender in Central Asia. Two lineages exist: an original .NET… |
| DROIDJACK | DroidJack | DroidJack is a RAT (Remote Access Trojan/Remote Administration Tool) nature of remote accessing, monitoring and managing tool (Java based) for Android mobile O… |
| DROVORUB | Drovorub | Drovorub is a Linux malware toolset consisting of an implant coupled with a kernel module rootkit, a file transfer and port forwarding tool, and a Command and … |
| DUALSHOT | DualShot | ransomware |
| DUMB-RANSOMWARE | DUMB Ransomware | It’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp… |
| DUMMYENCRYPTER-RANSOMWARE | DummyEncrypter Ransomware | This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac… |
| DUMMYLOCKER | DummyLocker | Ransomware |
| DUNGHILL | dunghill | Dunghill Leak is the publicly branded data leak site (DLS) operated by the Dark Angels ransomware group, established circa January 2023. Rather than a standalo… |
| DUQU | Duqu | |
| DUSK | Dusk | ransomware |
| DUSTMAN | Dustman | At the heart of the recent Bapco attack is a new strain of malware named Dustman. According to an analysis by Saudi Arabia's cyber-security agency, Dustman is … |
| DVIIDE | Dviide | Ransomware |
| DXXD | DXXD | Ransomware |
| DYNA-CRYPT-RANSOMWARE | DynA-Crypt Ransomware | It’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp… |
| DYSPHOR1A | dysphor1a | |
| EAGERLEVER | EAGERLEVER | NBT/SMB exploit for Windows NT4.0, 2000, XP SP1 & SP2, 2003 SP1 & Base Release |
| EARLYSHOVEL | EARLYSHOVEL | RedHat 7.0 - 7.1 Sendmail 8.11.x exploit |
| EASYBEE | EASYBEE | appears to be an MDaemon email server vulnerability |
| EASYFUN | EASYFUN | EasyFun 2.2.0 Exploit for WDaemon / IIS MDaemon/WorldClient pre 9.5.6 WordClient / IIS6.0 exploit |
| EASYPI | EASYPI | an IBM Lotus Notes exploit that gets detected as Stuxnet |
| EBAYWALL | eBayWall | Ransomware |
| EBBISLAND-EBBSHAVE | EBBISLAND (EBBSHAVE) | root RCE via RPC XDR overflow in Solaris 6, 7, 8, 9 & 10 (possibly newer) both SPARC and x86 |
| EBOLARNSMWR | EbolaRnsmwr | Ransomware |
| ECH0RAIX | eCh0raix | Anomali researchers have observed a new ransomware family, dubbed eCh0raix, targeting QNAP Network Attached Storage (NAS) devices. QNAP devices are created by … |
| ECHOWRECKER | ECHOWRECKER | remote Samba 3.0.x Linux exploit |
| ECLIPSE | eclipse | |
| ECLIPSEDWING | ECLIPSEDWING | RCE exploit for the Server service in Windows Server 2008 and later (MS08-067) |
| ECLR | ECLR | Ransomware |
| EDGELOCKER | EdgeLocker | It’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp… |
| EDUCATEDSCHOLAR | EDUCATEDSCHOLAR | a SMB exploit (MS09-050) |
| EDUCRYPT | EduCrypt | Ransomware Based on Hidden Tear |
| EDURANSOM | EduRansom | ransomware |
| EGALYTY | Egalyty | ransomware |
| EGGHATCH | EGGHATCH | EGGHATCH is a C/C++ Windows downloader. It uses mshta.exe to download and execute a script. Availability: Non-public |
| EGGLOCKER | EggLocker | Ransomware |
| EGREGOR | Egregor | The threat group behind this malware seems to operate by hacking into companies, stealing sensitive data, and then running Egregor to encrypt all the files. Ac… |
| EITEST | EiTest | Ransomware |
| EKATI-DEMO-TOOL | Ekati demo tool | Ransomware |
| EL-DORADO | el dorado | This group is believed to be connected to Lost Trust. El Dorado rebranded to BlackLock in September 2024. |
| EL-POLOCKER | El-Polocker | Ransomware Has a GUI |
| ELCOMETA | elcometa | |
| ELF-IMEIJ | ELF_IMEIJ | Linux Arm malware spread via RFIs in cgi-bin scripts. This backdoor executes commands from a remote malicious user, effectively compromising the affected syst… |
| ELIRKS | Elirks | |
| ELISE-BACKDOOR | Elise Backdoor | Trojan (RAT) linked to current targeted attacks and others dating back to at least early 2009 |
| ELKNOT | Elknot | DDoS Botnet |
| ELONMUSKNOW | elonmusknow | |
| ELPACO | elpaco | Elpaco is a variant of Mimic ransomware that emerged around August 2023. Designed with significant customization and stealth in mind, it targets Windows system… |
| EMBARGO | embargo | |
| EMBRAGO | embrago | |
| EMDIVI | Emdivi |