3,697 indexed

SOFTWARESoftware & malware

3,697 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.

Showing 2,051–2,100 of 3,697 · page 42 of 74

IDTitleSummary
PIZHONPizhonransomware
PIZZACRYPTSPizzaCryptsRansomware
PLPLransomware
PLAINTEEPLAINTEEThis sample is configured with three exported functions: Add, Sub, DllEntryPoint. The DLL expects the export named ‘Add’ to be used when initially loaded. When…
PLANETARYPlanetaryFirst discovered by malware security analyst, Lawrence Abrams, PLANETARY is an updated variant of another high-risk ransomware called HC7.
PLASMA-RATPlasma RATPlasma RAT’s stub is fairly advanced, having many robust features. Some of the features include botkilling, Cryptocurrencies Mining (CPU and GPU), persistence,…
PLAYplayInitially observed in June 2022, the Play ransomware (a.k.a PlayCrypt) operates through double extortion, targeting numerous organizations in Latin America. It…
PLAY-RANSOMWAREPLAY RansomwareRansomware
PLAYBOYplayboy
PLEADPLEADPLEAD has two kinds – RAT (Remote Access Tool) and downloader. The RAT operates based on commands that are provided from C&C servers. On the other hand, PLEAD …
PLEAD-DOWNLOADERPLEAD DownloaderPLEAD is referred to both as a name of malware including TSCookie and its attack campaign. PLEAD has two kinds – RAT (Remote Access Tool) and downloader. The R…
PLEASEREAD-RANSOMWAREPleaseRead RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
PLEXORPlexor
PLUGXPlugXPLUGX is a remote access tool (RAT) used in targeted attacks aimed toward government-related institutions and key industries. It was utilized the same way as P…
PNG-DROPPERPNG DropperThe PNG_dropper family primarily uses a modified version of the publicly available tool JPEGView.exe (version 1.0.32.1 – both x86 and x64 bit versions). Carbo…
POCKET-RATPocket RAT
POISON-IVYPoison IvyPoison Ivy is a RAT which was freely available and first released in 2005.
POISONFANGPoisonFangransomware
POISONIVYPoisonIvyPoison Ivy is a RAT which was freely available and first released in 2005.
POJIEPojieransomware
POKEMONGOPokemonGORansomware Based on Hidden Tear
POLSKI-RANSOMWAREPolski RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
POLYGLOTPolyglotRansomware Immitates CTB-Locker
POLYVICEpolyvice
PONTOEBPontoebThe bot gathers information from the infected system through WMI queries (SerialNumber, SystemDrive, operating system, processor architecture), which it then s…
PONYFINALPonyFinalransomware
POOLEZOORPooleZoorransomware
POORAIMPOORAIMPOORAIM malware is designed with basic backdoor functionality and leverages AOL Instant Messenger for command and control communications. POORAIM includes the …
POPCORN-TIME-RANSOMWAREPopCorn Time RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
POPCORNTIMEPopCornTimeransomware
PORNBLACKMAILERPornBlackmailerA new infection is being distributed by porn sites that tries to blackmail a victim into paying a ransom by stating they will tell law enforcement that the vic…
POTATO-RANSOMWAREPotato RansomwareWants a ransom to get the victim’s files back . Originated in English. Spread worldwide.
POVISOMWAREPovisomwareransomware
POWERGHOSTPowerGhostPowerGhost is capable of stealthily establishing itself in a system and spreading across large corporate networks infecting both workstations and servers. This…
POWERHENTAIPowerHentairansomware
POWERLOCKYPowerLockyransomware
POWERRATPowerRAT
POWERRATANKBAPowerRatankbaPowerRatankba is used for the same purpose as Ratankba: as a first stage reconnaissance tool and for the deployment of further stage implants on targets that a…
POWERSHELL-LOCKER-2013PowerShell Locker 2013ransomware
POWERSHELL-LOCKER-2015PowerShell Locker 2015ransomware
POWERSPRITZPowerSpritzPowerSpritz is a Windows executable that hides both its legitimate payload and malicious PowerShell command using a non-standard implementation of the already …
POWERWAREPowerWareRansomware Open-sourced PowerShell
POWERWORMPowerWormRansomware no decryption possible, throws key away, destroys the files
PPDDDPPPDDDPransomware
PR0TECTORPr0tectorransomware
PREDATORPredatorransomware
PREDATOR-PAINPredator PainUnlike Zeus, Predator Pain and Limitless are relatively simple keyloggers. They indiscriminately steal web credentials and mail client credentials, as well as …
PREDATORPAINpredatorpainRemote Access Trojan
PREPENDING-ENC-RANSOMWARE-NOT-AN-OFFICIAL-NAME"prepending (enc) ransomware" (Not an official name)
PRESHINPreshin
Sourced from MITRE ATT&CK Software and allied malware catalogues. Curated by Adam Lundqvist, Founder at SQUR.