3,697 indexed

SOFTWARESoftware & malware

3,697 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.

Showing 2,301–2,350 of 3,697 · page 47 of 74

IDTitleSummary
REYPTSONReyptsonransomware
RHINORhinoransomware
RHYSIDArhysidaRhysida is a ransomware-as-a-service (RAAS) group that emerged in May 2023. The group utilizes a namesake ransomware through phishing attacks and Cobalt Strike…
RICECURRYRICECURRYRICECURRY is a Javascript based profiler used to fingerprint a victim's web browser and deliver malicious code in return. Browser, operating system, and Adobe …
RIJNDAELRijndaelransomware
RINCRYPTRincrypt
RIP-PHOENIX-RANSOMWARERIP (Phoenix) RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
RIPPRBOTRipprbotBotnet
RISENrisenRisen, which is a fully optimized and high-speed program, is the result of our years of experience in the field of malware writing. Risen is written in C langu…
RNSRNSransomware
ROBBING-HOODrobbing hood
ROBINHOODRobinHoodDetected in April 2019. Known for paralyzing the cities of Baltimore and Greenville. Probably also exfiltrate data
ROGARogaIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
ROGUE-HTRogue HTransomware
ROKKURokkuRansomware possibly related with Chimera
ROKRATrokratROKRAT is a remote access trojan (RAT) that leverages a malicious Hangual Word Processor (HWP) document sent in spearphishing emails to infect hosts. The HWP d…
RONTOKRontokransomware
ROOKRookRansomware
ROOTroot
ROOTROTROOTROTROOTROT is a web shell written in Perl embedded into a legitimate Connect Secure .ttc file located at /data/runtime/tmp/tt/setcookie.thtml.ttc by exploiting CV…
ROOTSTVRootSTVRootSTV is a trojan and downloader for Android devices, mainly SmartTVs. RootSTV downloads additional malicious programs from a server and executes them withou…
ROSHALOCKRoshaLockRansomware Stores your files in a password protected RAR file
ROTEXYRotexyA mobile spyware that turned into a banking trojan with ransomware capabilities managed to launch over 70,000 attacks in the course of just three months.
ROTINOMRotinomW32.Rotinom is a worm that spreads by copying itself to removable drives.
ROTORCRYPT-ROTOCRYPT-TAR-RANSOMWARERotorCrypt(RotoCrypt, Tar) RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
ROTTIE3Rottie3
ROVNIXRovnixRovnix is a data-stealing trojan that spreads by email and infects Windows PCs. Initial versions of the malware featured the extraction of data from compromise…
ROYALRoyal
ROYALCLIRoyalCliThe RoyalCli backdoor appears to be an evolution of BS2005 and uses familiar encryption and encoding routines. The name RoyalCli was chosen by us due to a debu…
ROYALDNSRoyalDNS
ROZALOCKER-RANSOMWARERozaLocker RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
ROZLOKRozlokransomware
RPCOUTCHRPCOUTCHget info about windows via RPC
RRANSOMRransom
RSA-NIRSA-NIransomware
RSA2048PRORSA2048Proransomware
RSAUTILRSAUtilRSAUtil is distributed by the developer hacking into remote desktop services and uploading a package of files. This package contains a variety of tools, a conf…
RTM-LOCKERrtm locker
RUBELLA-MACRO-BUILDERRubella Macro BuilderA crimeware kit dubbed the Rubella Macro Builder has recently been gaining popularity among members of a top-tier Russian hacking forum. Despite being relative…
RUBYRubyransomware
RUCKGUVRuckguv
RUHAPPYRUHAPPYRUHAPPY is a destructive wiper tool seen on systems targeted by DOGCALL. It attempts to overwrite the MBR, causing the system not to boot. When victims' system…
RUN-SOME-WARESrun some wares
RUNEXEMEMORYRunExeMemoryransomware
RUNSOMEWERERunsomewereRansomware Based on HT/EDA2 Utilizes the Jigsaw Ransomware background
RURKTARRurktarDubbed Rurktar, the tool hasn’t had all of its functionality implemented yet, but G DATA says “it is relatively safe to say [it] is intended for use in targete…
RUSHRushransomware
RUSSENGERRussengerransomware
RUSSIAN-EDA2Russian EDA2ransomware
RUSSIAN-GLOBE-RANSOMWARERussian Globe RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
Sourced from MITRE ATT&CK Software and allied malware catalogues. Curated by Adam Lundqvist, Founder at SQUR.