3,697 indexed

SOFTWARESoftware & malware

3,697 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.

Showing 151–200 of 3,697 · page 4 of 74

IDTitleSummary
ARVINCLUBArvinclubArvin Club is a popular Ransomware group with a widespread Telegram presence, which includes personal group chats, and official channels. The group recently la…
ASN1-ENCODER-RANSOMWAREASN1 Encoder RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
ASPROXAsproxThe Asprox botnet (discovered around 2008), also known by its aliases Badsrc and Aseljo, is a botnet mostly involved in phishing scams and performing SQL injec…
ASSASSINAssassin
ASSEMBLYAssemblyRansomware
ASTRALOCKERastralockerAstraLocker first appeared in 2021, likely as a fork of Babuk ransomware using leaked source code. It follows a single-extortion, smash-and-grab approach: dist…
ASTRO-LOCKERAstro LockerRansomware
ASYNCRATAsyncRATOpen-Source Remote Administration Tool For Windows C# (RAT)
ATAWAREAtawareRansomware
ATCHBOAtchboRansomware
ATELIER-WEB-REMOTE-COMMANDERAtelier Web Remote Commander
ATLASATLASRansomware
ATLASAGENTAtlasAgentAtlasAgent used in this attack activity is Trojan horse program developed by AtlasCross. The main functions of the Trojan are to obtain host information, proce…
ATOMSILOAtomsiloAtomSilo is a new Ransomware recently seen in September 2021 during one of their attacks by exploiting a recently revealed vulnerability (CVE-2021-26084) in At…
AUDIT-TEAMaudit team
AUGUSTAugustAugust contains stealing functionality targeting credentials and sensitive documents from the infected computer.
AUMLIBAumlib
AURIGAAURIGAThe AURIGA malware family shares a large amount of functionality with the BANGAT backdoor. The malware family contains functionality for keystroke logging, cr…
AURORAaurora
AURORA-RANSOMWAREAurora RansomwareTypical ransom software, Aurora virus plays the role of blackmailing PC operators. It encrypts files and the encryption cipher it uses is pretty strong. After …
AUSTRALIAN-AESAustralian-AESRansomware
AUTOCHK-ROOTKITAutochk RootkitThis rootkit is a very simple. The name of the driver is “autochk.sys” - that’s why we’ll call it the autochk rootkit. The rootkit implements 2 functionalities…
AUTOENCRYPTORAutoEncryptorRansomware
AUTOLOCKYAutoLockyRansomware
AUTOWANNACRYV2AutoWannaCryV2Ransomware
AUUAHK-OUUOHKAuuahk-OuuohkRansomware
AVADDONAvaddonAvaddon is a ransomware malware targeting Windows systems often spread via malicious spam. The first known attack where Avaddon ransomware was distributed was …
AVALANCHEAvalancheAvalanche refers to a large global network hosting infrastructure used by cyber criminals to conduct phishing and malware distribution campaigns and money mule…
AVASTVIRUSINFO-RANSOMWAREAvastVirusinfo RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
AVCRYPTAVCryptRansomware
AVOSAvos
AVOSLOCKERAvosLockerIn March 2022, the FBI and the U.S. Treasury Financial Crimes Enforcement Network released a joint advisory addressing AvosLocker and their activity targeting …
AW3S0M3SC0T7Aw3s0m3Sc0t7Ransomware
AWAREaware
AXCRYPTERAxCrypterRansomware
AXXESaxxesAxxes ransomware emerged as a rebranded version of the previously known Midas ransomware group, with roots also tracing back through Haron and Avaddon lineage.…
AZAZELaZaZeLRansomware
AZTROTEAMAztroteam
B0-GROUPb0 group
B2DR-RANSOMWAREB2DR Ransomwareuses the .reycarnasi1983@protonmail.com.gw3w amd a ransom note named ScrewYou.txt
BABARBabar
BABAXBabaxransomware
BABAYAGABabaYagaThe group behind BabaYaga —believed to be Russian-speaking hackers— uses this malware to inject sites with special keyboards to drive SEO traffic to hidden pag…
BABUK-BJORKAbabuk-bjorkaOn January 26th, Babuk's dedicated leak site (DLS) was "relaunched". Bjorka (Telegram: @bjorkanesiaaaa) is the current administrator. Upon launch, the DLS was …
BABUK-LOCKERBabuk-LockerBabuk‑Locker emerged in early 2021 as a Ransomware‑as‑a‑Service (RaaS) gang targeting high‑value “big game” enterprises across sectors like healthcare, telecom…
BABUK-RANSOMSWAREBabuk RansomswareSince this is the first detection of this malware in the wild, it’s not surprising that Babuk is not obsfuscated at all. Overall, it’s a pretty standard ransom…
BABYDUCKBabyduck
BABYLOCKERKZbabylockerkzBabyLockerKZ is a variant of MedusaLocker ransomware, first observed in late 2023. It operates under a double‑extortion model, combining file encryption with d…
BABYLONBabylonBabylon is a highly advanced remote administration tool with no dependencies. The server is developed in C++ which is an ideal language for high performance an…
BABYSHARKBabySharkBabyShark is a relatively new malware. The earliest sample we found from open source repositories and our internal data sets was seen in November 2018. The mal…
Sourced from MITRE ATT&CK Software and allied malware catalogues. Curated by Adam Lundqvist, Founder at SQUR.