3,773 indexed
SOFTWARESoftware & malware
3,773 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.
Showing 2,351–2,400 of 3,773 · page 48 of 76
| ID | Title | Summary |
|---|---|---|
| REVENGE-RAT | Revenge-RAT | Revenge v0.1 was a simple tool, according to a researcher known as Rui, who says the malware’s author didn’t bother obfuscating the RAT’s source code. This rai… |
| REVETON-RANSOMWARE | Reveton ransomware | A ransomware family that targets users from certain countries or regions. It locks the computer and displays a location-specific webpage that covers the deskto… |
| REVOLUTION | Revolution | ransomware |
| REYNOLDS | reynolds | |
| REYPTSON | Reyptson | ransomware |
| RHINO | Rhino | ransomware |
| RHYSIDA | rhysida | Rhysida is a ransomware-as-a-service (RAAS) group that emerged in May 2023. The group utilizes a namesake ransomware through phishing attacks and Cobalt Strike… |
| RICECURRY | RICECURRY | RICECURRY is a Javascript based profiler used to fingerprint a victim's web browser and deliver malicious code in return. Browser, operating system, and Adobe … |
| RIJNDAEL | Rijndael | ransomware |
| RINCRYPT | Rincrypt | |
| RIP-PHOENIX-RANSOMWARE | RIP (Phoenix) Ransomware | It’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp… |
| RIPPRBOT | Ripprbot | Botnet |
| RISEN | risen | Risen, which is a fully optimized and high-speed program, is the result of our years of experience in the field of malware writing. Risen is written in C langu… |
| RNS | RNS | ransomware |
| ROBBING-HOOD | robbing hood | |
| ROBINHOOD | RobinHood | Detected in April 2019. Known for paralyzing the cities of Baltimore and Greenville. Probably also exfiltrate data |
| ROGA | Roga | It’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp… |
| ROGUE-HT | Rogue HT | ransomware |
| ROKKU | Rokku | Ransomware possibly related with Chimera |
| ROKRAT | rokrat | ROKRAT is a remote access trojan (RAT) that leverages a malicious Hangual Word Processor (HWP) document sent in spearphishing emails to infect hosts. The HWP d… |
| ROMULUSLOADER | RomulusLoader | According to Proofpoint, RomulusLoader is a C-based loader whose purpose is to download and execute further payloads from a C2. It includes a custom PE loader,… |
| RONTOK | Rontok | ransomware |
| ROOK | Rook | Ransomware |
| ROOT | root | |
| ROOTROT | ROOTROT | ROOTROT is a web shell written in Perl embedded into a legitimate Connect Secure .ttc file located at /data/runtime/tmp/tt/setcookie.thtml.ttc by exploiting CV… |
| ROOTSTV | RootSTV | RootSTV is a trojan and downloader for Android devices, mainly SmartTVs. RootSTV downloads additional malicious programs from a server and executes them withou… |
| ROSHALOCK | RoshaLock | Ransomware Stores your files in a password protected RAR file |
| ROTEXY | Rotexy | A mobile spyware that turned into a banking trojan with ransomware capabilities managed to launch over 70,000 attacks in the course of just three months. |
| ROTINOM | Rotinom | W32.Rotinom is a worm that spreads by copying itself to removable drives. |
| ROTORCRYPT-ROTOCRYPT-TAR-RANSOMWARE | RotorCrypt(RotoCrypt, Tar) Ransomware | This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac… |
| ROTTIE3 | Rottie3 | |
| ROVNIX | Rovnix | We recently found that the malware family ROVNIX is capable of being distributed via macro downloader. This malware technique was previously seen in the DRIDEX… |
| ROYAL | Royal | |
| ROYALCLI | RoyalCli | The RoyalCli backdoor appears to be an evolution of BS2005 and uses familiar encryption and encoding routines. The name RoyalCli was chosen by us due to a debu… |
| ROYALDNS | RoyalDNS | |
| ROZALOCKER-RANSOMWARE | RozaLocker Ransomware | This is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac… |
| ROZLOK | Rozlok | ransomware |
| RPCOUTCH | RPCOUTCH | get info about windows via RPC |
| RRANSOM | Rransom | |
| RSA-NI | RSA-NI | ransomware |
| RSA2048PRO | RSA2048Pro | ransomware |
| RSAUTIL | RSAUtil | RSAUtil is distributed by the developer hacking into remote desktop services and uploading a package of files. This package contains a variety of tools, a conf… |
| RTM-LOCKER | rtm locker | |
| RUBELLA-MACRO-BUILDER | Rubella Macro Builder | A crimeware kit dubbed the Rubella Macro Builder has recently been gaining popularity among members of a top-tier Russian hacking forum. Despite being relative… |
| RUBY | Ruby | ransomware |
| RUCKGUV | Ruckguv | |
| RUHAPPY | RUHAPPY | RUHAPPY is a destructive wiper tool seen on systems targeted by DOGCALL. It attempts to overwrite the MBR, causing the system not to boot. When victims' system… |
| RUN-SOME-WARES | run some wares | |
| RUNEXEMEMORY | RunExeMemory | ransomware |
| RUNSOMEWERE | Runsomewere | Ransomware Based on HT/EDA2 Utilizes the Jigsaw Ransomware background |