3,773 indexed
SOFTWARESoftware & malware
3,773 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.
Showing 1,251–1,300 of 3,773 · page 26 of 76
| ID | Title | Summary |
|---|---|---|
| GRAPHICBOOTING | GraphicBooting | |
| GRATEFULPOS | GratefulPOS | GratefulPOS has the following functions 1. Access arbitrary processes on the target POS system 2. Scrape track 1 and 2 payment card data from the process(es) 3… |
| GRAVITYRAT | GravityRAT | GravityRAT has been under ongoing development for at least 18 months, during which the developer has implemented new features. We've seen file exfiltration, re… |
| GRAYFISH | GrayFish | |
| GREAME | greame | Remote Access Trojan |
| GREAT-CANNON | Great Cannon | The Great Cannon of China is an Internet attack tool that is used by the Chinese government to launch distributed denial-of-service attacks on websites by perf… |
| GREEK-HACKERS-RAT | Greek Hackers RAT | |
| GREENCAT | GREENCAT | Members of this family are full featured backdoors that communicates with a Web-based Command & Control (C2) server over SSL. Features include interactive shel… |
| GREMIT-RANSOMWARE | Gremit Ransomware | This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac… |
| GREP | grep | |
| GREYSTARS | Greystars | ransomware |
| GRIEF | Grief | captcha prevents indexing |
| GRINCH | grinch | |
| GRODEXCRYPT | GrodexCrypt | ransomware |
| GROOVE | Groove | Groove was a short-lived ransomware group and cybercrime gang that emerged in August 2021 and became notable for its aggressive, publicity-driven tactics. Unli… |
| GRUJARSORIUM | GrujaRSorium | ransomware |
| GRUM | Grum | The Grum botnet, also known by its alias Tedroo and Reddyb, was a botnet mostly involved in sending pharmaceutical spam e-mails. Once the world's largest botne… |
| GRUXER | Gruxer | ransomware |
| GUILDMA | Guildma | The campaign spreads via phishing emails posing as invoices, tax reports, invitations and similar types of messages containing a ZIP archive attachment with a … |
| GUMBLAR | Gumblar | Gumblar is a malicious JavaScript trojan horse file that redirects a user's Google searches, and then installs rogue security software. Also known as Troj/JSRe… |
| GUNRA | gunra | |
| GUSCRYPTER | GusCrypter | ransomware |
| GUSTER-RANSOMWARE | Guster Ransomware | It’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp… |
| GWISIN | gwisin | Gwisin is a targeted ransomware group first publicly reported in July 2022, believed to operate primarily within South Korea. The group’s name means “ghost” in… |
| GWISINLOCKER | GwisinLocker | Ransomware |
| GX40 | GX40 | ransomware |
| H-W0RM | H-w0rm | |
| H-WORM | H-worm | H-worm is a VBS (Visual Basic Script) based RAT written by an individual going by the name Houdini. We believe the author is based in Algeria and has connectio… |
| H34RTBL33D | H34rtBl33d | ransomware |
| HACKDOORCRYPT3R | HackdoorCrypt3r | ransomware |
| HACKED | Hacked | Ransomware Jigsaw Ransomware variant |
| HACKEDLOCKER-RANSOMWARE | HackedLocker Ransomware | It’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp… |
| HACKFASE | HACKFASE | This family of malware is a backdoor that provides reverse shell, process creation, system statistics collection, process enumeration, and process termination… |
| HACKSHIT | Hackshit | Netskope Threat Research Labs recently discovered a Phishing-as-a-Service (PhaaS) platform named Hackshit, that records the credentials of the phished bait vic… |
| HADES | Hades | ransomware |
| HAIL-MARY-CLOUD | Hail Mary Cloud | The Hail Mary Cloud was, or is, a password guessing botnet, which used a statistical equivalent to brute force password guessing. The botnet ran from possibly … |
| HAJIME | Hajime | Hajime (meaning ‘beginning’ in Japanese) is an IoT worm that was first mentioned on 16 October 2016 in a public report by RapidityNetworks. One month later we … |
| HAKBIT | Hakbit | ransomware |
| HALFRIG | HALFRIG | Used for the first time in February 2023. This tool is distinguished from the others by the embedded code that runs the COBALT STRIKE tool. HALFRIG is a stage… |
| HALLAJ-PRO-RAT | Hallaj PRO RAT | RAT |
| HALLOWARE | Halloware | A malware author by the name of Luc1F3R is peddling a new ransomware strain called Halloware for the lowly price of $40. Based on evidence gathered by Bleeping… |
| HANCITOR | Hancitor | |
| HAPPYCRYPTER | HappyCrypter | ransomware |
| HAPPYDAYZZ | HappyDayzz | Ransomware |
| HAPPYWORK | HAPPYWORK | HAPPYWORK is a malicious downloader that can download and execute a second-stage payload, collect system information, and beacon it to the command and control … |
| HARASOM | Harasom | Ransomware |
| HARON | Haron | login page, no posts |
| HAV-RAT | Hav-RAT | Written in Delphi |
| HAVEX-RAT | Havex RAT | |
| HAVOC | Havoc | It’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, infected attachments and so on. I… |