3,773 indexed

SOFTWARESoftware & malware

3,773 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.

Showing 1,251–1,300 of 3,773 · page 26 of 76

IDTitleSummary
GRAPHICBOOTINGGraphicBooting
GRATEFULPOSGratefulPOSGratefulPOS has the following functions 1. Access arbitrary processes on the target POS system 2. Scrape track 1 and 2 payment card data from the process(es) 3…
GRAVITYRATGravityRATGravityRAT has been under ongoing development for at least 18 months, during which the developer has implemented new features. We've seen file exfiltration, re…
GRAYFISHGrayFish
GREAMEgreameRemote Access Trojan
GREAT-CANNONGreat CannonThe Great Cannon of China is an Internet attack tool that is used by the Chinese government to launch distributed denial-of-service attacks on websites by perf…
GREEK-HACKERS-RATGreek Hackers RAT
GREENCATGREENCATMembers of this family are full featured backdoors that communicates with a Web-based Command & Control (C2) server over SSL. Features include interactive shel…
GREMIT-RANSOMWAREGremit RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
GREPgrep
GREYSTARSGreystarsransomware
GRIEFGriefcaptcha prevents indexing
GRINCHgrinch
GRODEXCRYPTGrodexCryptransomware
GROOVEGrooveGroove was a short-lived ransomware group and cybercrime gang that emerged in August 2021 and became notable for its aggressive, publicity-driven tactics. Unli…
GRUJARSORIUMGrujaRSoriumransomware
GRUMGrumThe Grum botnet, also known by its alias Tedroo and Reddyb, was a botnet mostly involved in sending pharmaceutical spam e-mails. Once the world's largest botne…
GRUXERGruxerransomware
GUILDMAGuildmaThe campaign spreads via phishing emails posing as invoices, tax reports, invitations and similar types of messages containing a ZIP archive attachment with a …
GUMBLARGumblarGumblar is a malicious JavaScript trojan horse file that redirects a user's Google searches, and then installs rogue security software. Also known as Troj/JSRe…
GUNRAgunra
GUSCRYPTERGusCrypterransomware
GUSTER-RANSOMWAREGuster RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
GWISINgwisinGwisin is a targeted ransomware group first publicly reported in July 2022, believed to operate primarily within South Korea. The group’s name means “ghost” in…
GWISINLOCKERGwisinLockerRansomware
GX40GX40ransomware
H-W0RMH-w0rm
H-WORMH-wormH-worm is a VBS (Visual Basic Script) based RAT written by an individual going by the name Houdini. We believe the author is based in Algeria and has connectio…
H34RTBL33DH34rtBl33dransomware
HACKDOORCRYPT3RHackdoorCrypt3rransomware
HACKEDHackedRansomware Jigsaw Ransomware variant
HACKEDLOCKER-RANSOMWAREHackedLocker RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
HACKFASEHACKFASE This family of malware is a backdoor that provides reverse shell, process creation, system statistics collection, process enumeration, and process termination…
HACKSHITHackshitNetskope Threat Research Labs recently discovered a Phishing-as-a-Service (PhaaS) platform named Hackshit, that records the credentials of the phished bait vic…
HADESHadesransomware
HAIL-MARY-CLOUDHail Mary CloudThe Hail Mary Cloud was, or is, a password guessing botnet, which used a statistical equivalent to brute force password guessing. The botnet ran from possibly …
HAJIMEHajimeHajime (meaning ‘beginning’ in Japanese) is an IoT worm that was first mentioned on 16 October 2016 in a public report by RapidityNetworks. One month later we …
HAKBITHakbitransomware
HALFRIGHALFRIGUsed for the first time in February 2023. This tool is distinguished from the others by the embedded code that runs the COBALT STRIKE tool. HALFRIG is a stage…
HALLAJ-PRO-RATHallaj PRO RATRAT
HALLOWAREHallowareA malware author by the name of Luc1F3R is peddling a new ransomware strain called Halloware for the lowly price of $40. Based on evidence gathered by Bleeping…
HANCITORHancitor
HAPPYCRYPTERHappyCrypterransomware
HAPPYDAYZZHappyDayzzRansomware
HAPPYWORKHAPPYWORKHAPPYWORK is a malicious downloader that can download and execute a second-stage payload, collect system information, and beacon it to the command and control …
HARASOMHarasomRansomware
HARONHaronlogin page, no posts
HAV-RATHav-RATWritten in Delphi
HAVEX-RATHavex RAT
HAVOCHavocIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, infected attachments and so on. I…
Sourced from MITRE ATT&CK Software and allied malware catalogues. Curated by Adam Lundqvist, Founder at SQUR.