3,697 indexed

SOFTWARESoftware & malware

3,697 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.

Showing 1,351–1,400 of 3,697 · page 28 of 74

IDTitleSummary
IMN-CREWimn crew
IMPACKETIMPACKETIMPACKET is a Python library that allows for interaction with various network protocols. It is particularly effective in environments that rely on Active Direc…
IMS00RYIms00ryransomware
IMSORRYImSorryransomware
INC-RANSOMinc ransom
INCANTOIncantoransomware
INCOGNITO-RATIncognito RAT
INDETECTABLES-RATIndetectables RAT
INDRIKIndrikransomware
INDUCVIRUSInducVirusransomware
INFINITYLOCKInfinityLockransomware
INFODOTInfoDotransomware
INNFIRATInnfiRATnew RAT called InnfiRAT, which is written in .NET and designed to perform specific tasks from an infected machine
INPIVXINPIVXransomware
INSANE-RANSOMWAREinsane ransomwareInsane is a relatively obscure ransomware family first reported in late 2021, with few confirmed incidents in public threat intelligence. It encrypts victim fi…
INSANECRYPTInsaneCryptransomware
INSOMNIAinsomnia
INSTALLPAYInstallPayransomware
INTERLOCKinterlock
INTERNATIONAL-POLICE-ASSOCIATIONInternational Police AssociationRansomware CryptoTorLocker2015 variant
INTRUDINGDIVISORIntrudingDivisorLike TwoFace, the IntrudingDivisor webshell requires the threat actor to authenticate before issuing commands. To authenticate, the actor must provide two piec…
INVADERXinvaderx
INVOKE-MIMIKATZInvoke-MimikatzInvoke-Mimikatz is PowerShell script that reflectively loads a Mimikatz credential-stealing DLL into memory. Availability: Public
IODINEIODINEIODINE is a network traffic tunneler that allows for tunneling of IPv4 traffic over DNS.
IOT-REAPERIoT_reaperIoT_reaper is fairly large now and is actively expanding. For example, there are multiple C2s we are tracking, the most recently data (October 19) from just on…
IPAIPAransomware
IPERIUS-REMOTEIperius RemoteIperius Remote is advertised with these features: Control remotely any computer with Iperius Remote Desktop Free. For remote support or presentations. Ideal fo…
IRANSOMiRansomRansomware
IRONIronIt is currently unknown if Iron is indeed a new variant by the same creators of Maktub, or if it was simply inspired by the latter, by copying the design for t…
IRON-BACKDOORIron BackdoorIron Backdoor uses a virtual machine detection code taken directly from HackingTeam’s Soldier implant leaked source code. Iron Backdoor is also using the Dynam…
IRONCATIroncatransomware
IRONCHAINironchain
IRONGATEIRONGATE
ISERIKIsErIkThe adware DealPly (sometimes also referred to as IsErIk) and malicious Chrome extension ManageX, for instance, can come bundled under the guise of a legitimat…
ISHTAR-RANSOMWAREIshtar RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
ISRABYEIsraBye
ISSPACEIsSpace
IT-BOOKSIT.Booksransomware
IZISizis
JJ-ransomware
J-GROUPj group
J-RANSOMWAREj ransomware
JABACRYPTERJabaCrypterransomware
JACKPOT-RANSOMWAREJackPot RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
JACKSKIDjackskidMirai variant sharing code lineage with Aisuru, DoH C2 via mbedTLS
JADERATJadeRATJadeRAT is just one example of numerous mobile surveillanceware families we've seen in recent months, indicating that actors are continuing to incorporate mobi…
JAFFJaffWe recently observed several large scale email campaigns that were attempting to distribute a new variant of ransomware that has been dubbed "Jaff". Interestin…
JAFFEJafferansomware
JAGERDECRYPTORJagerDecryptorRansomware Prepends filenames
JAMESJamesransomware
Sourced from MITRE ATT&CK Software and allied malware catalogues. Curated by Adam Lundqvist, Founder at SQUR.