3,773 indexed

SOFTWARESoftware & malware

3,773 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.

Showing 2,351–2,400 of 3,773 · page 48 of 76

IDTitleSummary
REVENGE-RATRevenge-RATRevenge v0.1 was a simple tool, according to a researcher known as Rui, who says the malware’s author didn’t bother obfuscating the RAT’s source code. This rai…
REVETON-RANSOMWAREReveton ransomwareA ransomware family that targets users from certain countries or regions. It locks the computer and displays a location-specific webpage that covers the deskto…
REVOLUTIONRevolutionransomware
REYNOLDSreynolds
REYPTSONReyptsonransomware
RHINORhinoransomware
RHYSIDArhysidaRhysida is a ransomware-as-a-service (RAAS) group that emerged in May 2023. The group utilizes a namesake ransomware through phishing attacks and Cobalt Strike…
RICECURRYRICECURRYRICECURRY is a Javascript based profiler used to fingerprint a victim's web browser and deliver malicious code in return. Browser, operating system, and Adobe …
RIJNDAELRijndaelransomware
RINCRYPTRincrypt
RIP-PHOENIX-RANSOMWARERIP (Phoenix) RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
RIPPRBOTRipprbotBotnet
RISENrisenRisen, which is a fully optimized and high-speed program, is the result of our years of experience in the field of malware writing. Risen is written in C langu…
RNSRNSransomware
ROBBING-HOODrobbing hood
ROBINHOODRobinHoodDetected in April 2019. Known for paralyzing the cities of Baltimore and Greenville. Probably also exfiltrate data
ROGARogaIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
ROGUE-HTRogue HTransomware
ROKKURokkuRansomware possibly related with Chimera
ROKRATrokratROKRAT is a remote access trojan (RAT) that leverages a malicious Hangual Word Processor (HWP) document sent in spearphishing emails to infect hosts. The HWP d…
ROMULUSLOADERRomulusLoaderAccording to Proofpoint, RomulusLoader is a C-based loader whose purpose is to download and execute further payloads from a C2. It includes a custom PE loader,…
RONTOKRontokransomware
ROOKRookRansomware
ROOTroot
ROOTROTROOTROTROOTROT is a web shell written in Perl embedded into a legitimate Connect Secure .ttc file located at /data/runtime/tmp/tt/setcookie.thtml.ttc by exploiting CV…
ROOTSTVRootSTVRootSTV is a trojan and downloader for Android devices, mainly SmartTVs. RootSTV downloads additional malicious programs from a server and executes them withou…
ROSHALOCKRoshaLockRansomware Stores your files in a password protected RAR file
ROTEXYRotexyA mobile spyware that turned into a banking trojan with ransomware capabilities managed to launch over 70,000 attacks in the course of just three months.
ROTINOMRotinomW32.Rotinom is a worm that spreads by copying itself to removable drives.
ROTORCRYPT-ROTOCRYPT-TAR-RANSOMWARERotorCrypt(RotoCrypt, Tar) RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
ROTTIE3Rottie3
ROVNIXRovnixWe recently found that the malware family ROVNIX is capable of being distributed via macro downloader. This malware technique was previously seen in the DRIDEX…
ROYALRoyal
ROYALCLIRoyalCliThe RoyalCli backdoor appears to be an evolution of BS2005 and uses familiar encryption and encoding routines. The name RoyalCli was chosen by us due to a debu…
ROYALDNSRoyalDNS
ROZALOCKER-RANSOMWARERozaLocker RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
ROZLOKRozlokransomware
RPCOUTCHRPCOUTCHget info about windows via RPC
RRANSOMRransom
RSA-NIRSA-NIransomware
RSA2048PRORSA2048Proransomware
RSAUTILRSAUtilRSAUtil is distributed by the developer hacking into remote desktop services and uploading a package of files. This package contains a variety of tools, a conf…
RTM-LOCKERrtm locker
RUBELLA-MACRO-BUILDERRubella Macro BuilderA crimeware kit dubbed the Rubella Macro Builder has recently been gaining popularity among members of a top-tier Russian hacking forum. Despite being relative…
RUBYRubyransomware
RUCKGUVRuckguv
RUHAPPYRUHAPPYRUHAPPY is a destructive wiper tool seen on systems targeted by DOGCALL. It attempts to overwrite the MBR, causing the system not to boot. When victims' system…
RUN-SOME-WARESrun some wares
RUNEXEMEMORYRunExeMemoryransomware
RUNSOMEWERERunsomewereRansomware Based on HT/EDA2 Utilizes the Jigsaw Ransomware background
Sourced from MITRE ATT&CK Software and allied malware catalogues. Curated by Adam Lundqvist, Founder at SQUR.