3,719 indexed

SOFTWARESoftware & malware

3,719 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.

Showing 2,301–2,350 of 3,719 · page 47 of 75

IDTitleSummary
RESIDENTBATResidentBatA new spyware family used by Belarusian KGB. ResidentBat is bundled as a regular Android app in APK format.
RESTOLOCKERRestoLockerransomware
RESURRECTIONResurrectionransomware
RETADUPRetadupRetadup is a worm affecting Windows machines primarily throughout Latin America. Its objective is to achieve persistence on its victims’ computers, to spread i…
RETISRetisransomware
RETMYDATARetMyDataransomware
REVCLIENTRevClientMalware
REVCODERevCode
REVENGE-RANSOMWARERevenge RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
REVENGE-RATRevenge-RATRevenge v0.1 was a simple tool, according to a researcher known as Rui, who says the malware’s author didn’t bother obfuscating the RAT’s source code. This rai…
REVETON-RANSOMWAREReveton ransomwareA ransomware family that targets users from certain countries or regions. It locks the computer and displays a location-specific webpage that covers the deskto…
REVOLUTIONRevolutionransomware
REYNOLDSreynolds
REYPTSONReyptsonransomware
RHINORhinoransomware
RHYSIDArhysidaRhysida is a ransomware-as-a-service (RAAS) group that emerged in May 2023. The group utilizes a namesake ransomware through phishing attacks and Cobalt Strike…
RICECURRYRICECURRYRICECURRY is a Javascript based profiler used to fingerprint a victim's web browser and deliver malicious code in return. Browser, operating system, and Adobe …
RIJNDAELRijndaelransomware
RINCRYPTRincrypt
RIP-PHOENIX-RANSOMWARERIP (Phoenix) RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
RIPPRBOTRipprbotBotnet
RISENrisenRisen, which is a fully optimized and high-speed program, is the result of our years of experience in the field of malware writing. Risen is written in C langu…
RNSRNSransomware
ROBBING-HOODrobbing hood
ROBINHOODRobinHoodDetected in April 2019. Known for paralyzing the cities of Baltimore and Greenville. Probably also exfiltrate data
ROGARogaIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
ROGUE-HTRogue HTransomware
ROKKURokkuRansomware possibly related with Chimera
ROKRATrokratROKRAT is a remote access trojan (RAT) that leverages a malicious Hangual Word Processor (HWP) document sent in spearphishing emails to infect hosts. The HWP d…
ROMULUSLOADERRomulusLoaderAccording to Proofpoint, RomulusLoader is a C-based loader whose purpose is to download and execute further payloads from a C2. It includes a custom PE loader,…
RONTOKRontokransomware
ROOKRookRansomware
ROOTroot
ROOTROTROOTROTROOTROT is a web shell written in Perl embedded into a legitimate Connect Secure .ttc file located at /data/runtime/tmp/tt/setcookie.thtml.ttc by exploiting CV…
ROOTSTVRootSTVRootSTV is a trojan and downloader for Android devices, mainly SmartTVs. RootSTV downloads additional malicious programs from a server and executes them withou…
ROSHALOCKRoshaLockRansomware Stores your files in a password protected RAR file
ROTEXYRotexyA mobile spyware that turned into a banking trojan with ransomware capabilities managed to launch over 70,000 attacks in the course of just three months.
ROTINOMRotinomW32.Rotinom is a worm that spreads by copying itself to removable drives.
ROTORCRYPT-ROTOCRYPT-TAR-RANSOMWARERotorCrypt(RotoCrypt, Tar) RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
ROTTIE3Rottie3
ROVNIXRovnixRovnix is a data-stealing trojan that spreads by email and infects Windows PCs. Initial versions of the malware featured the extraction of data from compromise…
ROYALRoyal
ROYALCLIRoyalCliThe RoyalCli backdoor appears to be an evolution of BS2005 and uses familiar encryption and encoding routines. The name RoyalCli was chosen by us due to a debu…
ROYALDNSRoyalDNS
ROZALOCKER-RANSOMWARERozaLocker RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
ROZLOKRozlokransomware
RPCOUTCHRPCOUTCHget info about windows via RPC
RRANSOMRransom
RSA-NIRSA-NIransomware
RSA2048PRORSA2048Proransomware
Sourced from MITRE ATT&CK Software and allied malware catalogues. Curated by Adam Lundqvist, Founder at SQUR.
Software & malware — full index | SQUR Knowledge Base