3,697 indexed

SOFTWARESoftware & malware

3,697 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.

Showing 101–150 of 3,697 · page 3 of 74

IDTitleSummary
ANDROMEDAAndromedaAndromeda botnet, also known as Gamarue or Wauchos, was first introduced to the public in 2011. During this time it was used to distribute large quantities of …
ANDRORATAndroratAndrorat is a client/server application developed in Java Android for the client side and in Java/Swing for the Server.
ANELANELBackdoor
ANGELA-MERKEL-RANSOMWAREAngela Merkel RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
ANGLEWAREAngleWareRansomware
ANGRYDUCK-RANSOMWAREAngryDuck RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
ANGRYKITEAngryKiteRansomware
ANIMUSLOCKERAnimusLockerRansomware
ANKank
ANNABELLEAnnabelleRansomware
ANNABELLE-2-1Annabelle 2.1Ransomware
ANONCRACKAnonCrackRansomware
ANONPOPAnonPopRansomware
ANONYAnonyRansomware Based on HiddenTear
ANTEFRIGUSAnteFrigusRansomware
ANTI-DDOSAnti-DDosRansomware
ANTIBROK3RSantibrok3rsAntibrok3rs emerged as an access broker (not a ransomware operator itself) linked to the aftermath of the 2023 MOVEit supply-chain exploitation. From November …
ANTIHACKER2017Antihacker2017Ransomware
ANTIHACKER2017-RANSOMWAREAntihacker2017 RansomwareIt’s directed to Russian speaking users, there fore is able to infect mosty the old USSR countries. It is spread using email spam, fake updates, attachments a…
ANTIX-RANSOMWAREAntix RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
ANUBI-NOTBTCWAREAnubi NotBTCWareRansomware
ANUBISanubis
ANUBIS-RANSOMWAREAnubis RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
ANYDESKAnyDeskAnyDesk is a remote desktop program that you can run portably or install like a regular program.
APOCALYPSEApocalypse
APOCALYPSE-MISSINGApocalypse-MissingRansomware
APOCALYPSEVMApocalypseVMRansomware Apocalypse ransomware version which uses VMprotect
APOLLOLOCKERApolloLockerRansomware
APOSapos
APT-RANSOMWARE-V-2APT Ransomware v.2This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
APTLOCKaptlockAptlock surfaced in early 2025 and is characterized by a single-extortion model combined with threats of data leakage. The ransomware encrypts files on Windows…
ARABIAN-ATTACKER-RATArabian-Attacker RAT
ARACHNA-LEAKarachna leak
ARCANEarcaneArcane first emerged in mid-2021 under the UNC2190 cluster and later rebranded as Sabbath, continuing its operations against critical infrastructure like hospi…
ARCEUSArceusA set of DDoS botnet.
ARCHELAUS-BETAArchelaus Beta
ARCOMArcomThe malware is a Remote Access Trojan (RAT), known as Arcom RAT, and it is sold on underground forums for $2000.00.
ARCRYPTERarcrypterArcRypt (also known as ARCrypter or ChileLocker) was first identified in August 2022, originally targeting government entities in Latin America and subsequentl…
ARCTIC-R-A-TArctic R.A.T.
ARCUS-MEDIAarcus media
ARGONAUTS-GROUPargonauts group
ARGUSArgusRansomware
ARIS-LOCKERAris Lockerransomware
ARKANA-SECURITYarkana security
ARMAGEArmageRansomware
ARMAGEDDONArmageddonRansomware
ARMALOCKYArmaLockyRansomware
ARRKIISDKArrkiiSDKArrkiiSDK is potentially unwanted application (PUA) for Android devices. Its functions include unauthorised user tracking, ad fraud and the silent installation…
ARS-VBS-LOADERARS VBS LoaderARS VBS Loader not only downloads and executes malicious code, but also includes a command and control application written in PHP that allows a botmaster to is…
ARSIUMArsiumRansomware
Sourced from MITRE ATT&CK Software and allied malware catalogues. Curated by Adam Lundqvist, Founder at SQUR.