3,719 indexed

SOFTWARESoftware & malware

3,719 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.

Showing 151–200 of 3,719 · page 4 of 75

IDTitleSummary
ARSIUMArsiumRansomware
ARVINCLUBArvinclubArvin Club is a popular Ransomware group with a widespread Telegram presence, which includes personal group chats, and official channels. The group recently la…
ARYSTINGERAryStingerThe AryStinger botnet is mainly built on compromised D‑Link DIR‑850L and DIR‑818LW routers. Although these devices are long past end‑of‑life, they are still wi…
ASN1-ENCODER-RANSOMWAREASN1 Encoder RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
ASPROXAsproxThe Asprox botnet (discovered around 2008), also known by its aliases Badsrc and Aseljo, is a botnet mostly involved in phishing scams and performing SQL injec…
ASSASSINAssassin
ASSEMBLYAssemblyRansomware
ASTRALOCKERastralockerAstraLocker first appeared in 2021, likely as a fork of Babuk ransomware using leaked source code. It follows a single-extortion, smash-and-grab approach: dist…
ASTRO-LOCKERAstro LockerRansomware
ASYNCRATAsyncRATOpen-Source Remote Administration Tool For Windows C# (RAT)
ATAWAREAtawareRansomware
ATCHBOAtchboRansomware
ATELIER-WEB-REMOTE-COMMANDERAtelier Web Remote Commander
ATLASATLASRansomware
ATLAS-RATAtlas RATAccording to Proofpoint, Atlas RAT is a modular backdoor used by the TA4922 actor, delivered in multiple stages with a core module and optional plugins. It can…
ATLASAGENTAtlasAgentAtlasAgent used in this attack activity is Trojan horse program developed by AtlasCross. The main functions of the Trojan are to obtain host information, proce…
ATOMSILOAtomsiloAtomSilo is a new Ransomware recently seen in September 2021 during one of their attacks by exploiting a recently revealed vulnerability (CVE-2021-26084) in At…
AUDIT-TEAMaudit team
AUGUSTAugustAugust contains stealing functionality targeting credentials and sensitive documents from the infected computer.
AUMLIBAumlib
AURIGAAURIGAThe AURIGA malware family shares a large amount of functionality with the BANGAT backdoor. The malware family contains functionality for keystroke logging, cr…
AURORAaurora
AURORA-RANSOMWAREAurora RansomwareTypical ransom software, Aurora virus plays the role of blackmailing PC operators. It encrypts files and the encryption cipher it uses is pretty strong. After …
AUSTRALIAN-AESAustralian-AESRansomware
AUTOCHK-ROOTKITAutochk RootkitThis rootkit is a very simple. The name of the driver is “autochk.sys” - that’s why we’ll call it the autochk rootkit. The rootkit implements 2 functionalities…
AUTOENCRYPTORAutoEncryptorRansomware
AUTOLOCKYAutoLockyRansomware
AUTOWANNACRYV2AutoWannaCryV2Ransomware
AUUAHK-OUUOHKAuuahk-OuuohkRansomware
AVADDONAvaddonAvaddon is a ransomware malware targeting Windows systems often spread via malicious spam. The first known attack where Avaddon ransomware was distributed was …
AVALANCHEAvalancheAvalanche refers to a large global network hosting infrastructure used by cyber criminals to conduct phishing and malware distribution campaigns and money mule…
AVASTVIRUSINFO-RANSOMWAREAvastVirusinfo RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
AVCRYPTAVCryptRansomware
AVOSAvos
AVOSLOCKERAvosLockerIn March 2022, the FBI and the U.S. Treasury Financial Crimes Enforcement Network released a joint advisory addressing AvosLocker and their activity targeting …
AW3S0M3SC0T7Aw3s0m3Sc0t7Ransomware
AWAREaware
AXCRYPTERAxCrypterRansomware
AXXESaxxesAxxes ransomware emerged as a rebranded version of the previously known Midas ransomware group, with roots also tracing back through Haron and Avaddon lineage.…
AZAZELaZaZeLRansomware
AZTROTEAMAztroteam
B0-GROUPb0 group
B2DR-RANSOMWAREB2DR Ransomwareuses the .reycarnasi1983@protonmail.com.gw3w amd a ransom note named ScrewYou.txt
BABARBabar
BABAXBabaxransomware
BABAYAGABabaYagaThe group behind BabaYaga —believed to be Russian-speaking hackers— uses this malware to inject sites with special keyboards to drive SEO traffic to hidden pag…
BABUK-BJORKAbabuk-bjorkaOn January 26th, Babuk's dedicated leak site (DLS) was "relaunched". Bjorka (Telegram: @bjorkanesiaaaa) is the current administrator. Upon launch, the DLS was …
BABUK-LOCKERBabuk-LockerBabuk‑Locker emerged in early 2021 as a Ransomware‑as‑a‑Service (RaaS) gang targeting high‑value “big game” enterprises across sectors like healthcare, telecom…
BABUK-RANSOMSWAREBabuk RansomswareSince this is the first detection of this malware in the wild, it’s not surprising that Babuk is not obsfuscated at all. Overall, it’s a pretty standard ransom…
BABYDUCKBabyduck
Sourced from MITRE ATT&CK Software and allied malware catalogues. Curated by Adam Lundqvist, Founder at SQUR.