3,719 indexed
SOFTWARESoftware & malware
3,719 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.
Showing 2,301–2,350 of 3,719 · page 47 of 75
| ID | Title | Summary |
|---|---|---|
| RESIDENTBAT | ResidentBat | A new spyware family used by Belarusian KGB. ResidentBat is bundled as a regular Android app in APK format. |
| RESTOLOCKER | RestoLocker | ransomware |
| RESURRECTION | Resurrection | ransomware |
| RETADUP | Retadup | Retadup is a worm affecting Windows machines primarily throughout Latin America. Its objective is to achieve persistence on its victims’ computers, to spread i… |
| RETIS | Retis | ransomware |
| RETMYDATA | RetMyData | ransomware |
| REVCLIENT | RevClient | Malware |
| REVCODE | RevCode | |
| REVENGE-RANSOMWARE | Revenge Ransomware | This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac… |
| REVENGE-RAT | Revenge-RAT | Revenge v0.1 was a simple tool, according to a researcher known as Rui, who says the malware’s author didn’t bother obfuscating the RAT’s source code. This rai… |
| REVETON-RANSOMWARE | Reveton ransomware | A ransomware family that targets users from certain countries or regions. It locks the computer and displays a location-specific webpage that covers the deskto… |
| REVOLUTION | Revolution | ransomware |
| REYNOLDS | reynolds | |
| REYPTSON | Reyptson | ransomware |
| RHINO | Rhino | ransomware |
| RHYSIDA | rhysida | Rhysida is a ransomware-as-a-service (RAAS) group that emerged in May 2023. The group utilizes a namesake ransomware through phishing attacks and Cobalt Strike… |
| RICECURRY | RICECURRY | RICECURRY is a Javascript based profiler used to fingerprint a victim's web browser and deliver malicious code in return. Browser, operating system, and Adobe … |
| RIJNDAEL | Rijndael | ransomware |
| RINCRYPT | Rincrypt | |
| RIP-PHOENIX-RANSOMWARE | RIP (Phoenix) Ransomware | It’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp… |
| RIPPRBOT | Ripprbot | Botnet |
| RISEN | risen | Risen, which is a fully optimized and high-speed program, is the result of our years of experience in the field of malware writing. Risen is written in C langu… |
| RNS | RNS | ransomware |
| ROBBING-HOOD | robbing hood | |
| ROBINHOOD | RobinHood | Detected in April 2019. Known for paralyzing the cities of Baltimore and Greenville. Probably also exfiltrate data |
| ROGA | Roga | It’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp… |
| ROGUE-HT | Rogue HT | ransomware |
| ROKKU | Rokku | Ransomware possibly related with Chimera |
| ROKRAT | rokrat | ROKRAT is a remote access trojan (RAT) that leverages a malicious Hangual Word Processor (HWP) document sent in spearphishing emails to infect hosts. The HWP d… |
| ROMULUSLOADER | RomulusLoader | According to Proofpoint, RomulusLoader is a C-based loader whose purpose is to download and execute further payloads from a C2. It includes a custom PE loader,… |
| RONTOK | Rontok | ransomware |
| ROOK | Rook | Ransomware |
| ROOT | root | |
| ROOTROT | ROOTROT | ROOTROT is a web shell written in Perl embedded into a legitimate Connect Secure .ttc file located at /data/runtime/tmp/tt/setcookie.thtml.ttc by exploiting CV… |
| ROOTSTV | RootSTV | RootSTV is a trojan and downloader for Android devices, mainly SmartTVs. RootSTV downloads additional malicious programs from a server and executes them withou… |
| ROSHALOCK | RoshaLock | Ransomware Stores your files in a password protected RAR file |
| ROTEXY | Rotexy | A mobile spyware that turned into a banking trojan with ransomware capabilities managed to launch over 70,000 attacks in the course of just three months. |
| ROTINOM | Rotinom | W32.Rotinom is a worm that spreads by copying itself to removable drives. |
| ROTORCRYPT-ROTOCRYPT-TAR-RANSOMWARE | RotorCrypt(RotoCrypt, Tar) Ransomware | This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac… |
| ROTTIE3 | Rottie3 | |
| ROVNIX | Rovnix | Rovnix is a data-stealing trojan that spreads by email and infects Windows PCs. Initial versions of the malware featured the extraction of data from compromise… |
| ROYAL | Royal | |
| ROYALCLI | RoyalCli | The RoyalCli backdoor appears to be an evolution of BS2005 and uses familiar encryption and encoding routines. The name RoyalCli was chosen by us due to a debu… |
| ROYALDNS | RoyalDNS | |
| ROZALOCKER-RANSOMWARE | RozaLocker Ransomware | This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac… |
| ROZLOK | Rozlok | ransomware |
| RPCOUTCH | RPCOUTCH | get info about windows via RPC |
| RRANSOM | Rransom | |
| RSA-NI | RSA-NI | ransomware |
| RSA2048PRO | RSA2048Pro | ransomware |