3,697 indexed
SOFTWARESoftware & malware
3,697 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.
Showing 151–200 of 3,697 · page 4 of 74
| ID | Title | Summary |
|---|---|---|
| ARVINCLUB | Arvinclub | Arvin Club is a popular Ransomware group with a widespread Telegram presence, which includes personal group chats, and official channels. The group recently la… |
| ASN1-ENCODER-RANSOMWARE | ASN1 Encoder Ransomware | This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac… |
| ASPROX | Asprox | The Asprox botnet (discovered around 2008), also known by its aliases Badsrc and Aseljo, is a botnet mostly involved in phishing scams and performing SQL injec… |
| ASSASSIN | Assassin | |
| ASSEMBLY | Assembly | Ransomware |
| ASTRALOCKER | astralocker | AstraLocker first appeared in 2021, likely as a fork of Babuk ransomware using leaked source code. It follows a single-extortion, smash-and-grab approach: dist… |
| ASTRO-LOCKER | Astro Locker | Ransomware |
| ASYNCRAT | AsyncRAT | Open-Source Remote Administration Tool For Windows C# (RAT) |
| ATAWARE | Ataware | Ransomware |
| ATCHBO | Atchbo | Ransomware |
| ATELIER-WEB-REMOTE-COMMANDER | Atelier Web Remote Commander | |
| ATLAS | ATLAS | Ransomware |
| ATLASAGENT | AtlasAgent | AtlasAgent used in this attack activity is Trojan horse program developed by AtlasCross. The main functions of the Trojan are to obtain host information, proce… |
| ATOMSILO | Atomsilo | AtomSilo is a new Ransomware recently seen in September 2021 during one of their attacks by exploiting a recently revealed vulnerability (CVE-2021-26084) in At… |
| AUDIT-TEAM | audit team | |
| AUGUST | August | August contains stealing functionality targeting credentials and sensitive documents from the infected computer. |
| AUMLIB | Aumlib | |
| AURIGA | AURIGA | The AURIGA malware family shares a large amount of functionality with the BANGAT backdoor. The malware family contains functionality for keystroke logging, cr… |
| AURORA | aurora | |
| AURORA-RANSOMWARE | Aurora Ransomware | Typical ransom software, Aurora virus plays the role of blackmailing PC operators. It encrypts files and the encryption cipher it uses is pretty strong. After … |
| AUSTRALIAN-AES | Australian-AES | Ransomware |
| AUTOCHK-ROOTKIT | Autochk Rootkit | This rootkit is a very simple. The name of the driver is “autochk.sys” - that’s why we’ll call it the autochk rootkit. The rootkit implements 2 functionalities… |
| AUTOENCRYPTOR | AutoEncryptor | Ransomware |
| AUTOLOCKY | AutoLocky | Ransomware |
| AUTOWANNACRYV2 | AutoWannaCryV2 | Ransomware |
| AUUAHK-OUUOHK | Auuahk-Ouuohk | Ransomware |
| AVADDON | Avaddon | Avaddon is a ransomware malware targeting Windows systems often spread via malicious spam. The first known attack where Avaddon ransomware was distributed was … |
| AVALANCHE | Avalanche | Avalanche refers to a large global network hosting infrastructure used by cyber criminals to conduct phishing and malware distribution campaigns and money mule… |
| AVASTVIRUSINFO-RANSOMWARE | AvastVirusinfo Ransomware | This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac… |
| AVCRYPT | AVCrypt | Ransomware |
| AVOS | Avos | |
| AVOSLOCKER | AvosLocker | In March 2022, the FBI and the U.S. Treasury Financial Crimes Enforcement Network released a joint advisory addressing AvosLocker and their activity targeting … |
| AW3S0M3SC0T7 | Aw3s0m3Sc0t7 | Ransomware |
| AWARE | aware | |
| AXCRYPTER | AxCrypter | Ransomware |
| AXXES | axxes | Axxes ransomware emerged as a rebranded version of the previously known Midas ransomware group, with roots also tracing back through Haron and Avaddon lineage.… |
| AZAZEL | aZaZeL | Ransomware |
| AZTROTEAM | Aztroteam | |
| B0-GROUP | b0 group | |
| B2DR-RANSOMWARE | B2DR Ransomware | uses the .reycarnasi1983@protonmail.com.gw3w amd a ransom note named ScrewYou.txt |
| BABAR | Babar | |
| BABAX | Babax | ransomware |
| BABAYAGA | BabaYaga | The group behind BabaYaga —believed to be Russian-speaking hackers— uses this malware to inject sites with special keyboards to drive SEO traffic to hidden pag… |
| BABUK-BJORKA | babuk-bjorka | On January 26th, Babuk's dedicated leak site (DLS) was "relaunched". Bjorka (Telegram: @bjorkanesiaaaa) is the current administrator. Upon launch, the DLS was … |
| BABUK-LOCKER | Babuk-Locker | Babuk‑Locker emerged in early 2021 as a Ransomware‑as‑a‑Service (RaaS) gang targeting high‑value “big game” enterprises across sectors like healthcare, telecom… |
| BABUK-RANSOMSWARE | Babuk Ransomsware | Since this is the first detection of this malware in the wild, it’s not surprising that Babuk is not obsfuscated at all. Overall, it’s a pretty standard ransom… |
| BABYDUCK | Babyduck | |
| BABYLOCKERKZ | babylockerkz | BabyLockerKZ is a variant of MedusaLocker ransomware, first observed in late 2023. It operates under a double‑extortion model, combining file encryption with d… |
| BABYLON | Babylon | Babylon is a highly advanced remote administration tool with no dependencies. The server is developed in C++ which is an ideal language for high performance an… |
| BABYSHARK | BabyShark | BabyShark is a relatively new malware. The earliest sample we found from open source repositories and our internal data sets was seen in November 2018. The mal… |