3,697 indexed

SOFTWARESoftware & malware

3,697 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.

Showing 201–250 of 3,697 · page 5 of 74

IDTitleSummary
BACK-ORIFICEBack OrificeBack Orifice (often shortened to BO) is a computer program designed for remote system administration. It enables a user to control a computer running the Micro…
BACK-ORIFICE-2000Back Orifice 2000Back Orifice 2000 (often shortened to BO2k) is a computer program designed for remote system administration. It enables a user to control a computer running th…
BACKDOOR-DRIPIONBackdoor.DripionBackdoor.Dripion was custom developed, deployed in a highly targeted fashion, and used command and control servers disguised as antivirus company websites.
BACKDOOR-TINYBARONBackdoor.Tinybaron
BACKMYDATAbackmydataBackMyData is a variant of the Phobos ransomware family, first observed in early 2024. It follows a double‑extortion model: encrypting files and threatening da…
BACKSPACEBackspaceBackspace is a Backdoor that targets the Windows platform. This malware is reportedly associated with targeted attacks against Association of Southeast Asian N…
BAD-RABBITBad RabbitOn October 24, 2017, Cisco Talos was alerted to a widescale ransomware campaign affecting organizations across eastern Europe and Russia. As was the case in pr…
BADBEETEAMBadbeeteamransomware
BADBLOCKBadBlockRansomware
BADBOXBadBoxAccording to BitSight, BADBOX is a large-scale cybercriminal operation selling off-brand Android TV boxes, smartphones, and other Android electronics with prei…
BADENCRIPTBadEncriptRansomware
BADENCRIPT-RANSOMWAREBadEncript RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
BADNEWSBadnews
BADPOTATOBadPotatoBadPotato leaks a system token handle through the MS RPN API, which can be used to get NT AUTHORITY\SYSTEM access.
BAGLEBagleBagle (also known as Beagle) was a mass-mailing computer worm affecting Microsoft Windows. The first strain, Bagle.A, did not propagate widely. A second varian…
BAKSOCRYPTBaksoCryptRansomware Based on my-Little-Ransomware
BALBAZBalbazRansomware
BALILUWAREBaliluwareRansomware
BALLETSPISTOLballetspistol
BALLISTABallista
BAMBam!Ransomware
BAMITALBamital
BANANACRYPTBananaCryptRansomware
BANCOCRYPT-HTBancoCrypt HTRansomware
BANDARCHORBandarchorRansomware Files might be partially encrypted
BANDOOK-RATBandook RATBandook is a FWB#++ reverse connection rat (Remote Administration Tool), with a small size server when packed 30 KB, and a long list of amazing features
BANGATBANGATThe BANGAT malware family shares a large amount of functionality with the AURIGA backdoor. The malware family contains functionality for keylogging, creating …
BANKS1Banks1ransomware
BANKSHOTBankshotimplant used in Operation GhostSecret
BANLOADBanload Banload has been around since the last decade. This malware generally arrives on a victim’s system through a spam email containing an archived file or bundled…
BANSOMQARE-MANNA-RANSOMWAREBansomQare Manna Ransomware
BARACK-OBAMA-S-EBBVBarack Obama's EBBVRansomware
BARACK-OBAMA-S-EVERLASTING-BLUE-BLACKMAIL-VIRUS-RANSOMWAREBarack Obama's Everlasting Blue Blackmail Virus RansomwareA new ransomware that only encrypts .EXE files on a computer. It then displays a screen with a picture of President Obama that asks for a "tip" to decrypt the …
BARRAX-RANSOMWAREBarRax RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
BARTBartRansomware Possible affiliations with RockLoader, Locky and Dridex
BART-RANSOMWAREBart ransomwareBart ransomware is distributed by the same Russian Cyber Mafia behind Dridex 220 and Locky. Bart doesn't communicate with a command and control (C&C) server, …
BASHLITEBASHLITE
BASILISQUE-LOCKERBasilisque LockerRansomware
BASS-FESBASS-FESRansomware
BATCH-NETBatch NET
BATELEURBateleurBateleur deployments began not long after JS Flash and were also written in JavaScript. Deployments were more infrequent and testing was not observed. It is li…
BAYROBBayrobBayrob evolved from a backdoor trojan used for fraud into a cryptocurrency miner. Symantec discovered multiple versions of Bayrob malware, and witnessed Bayrob…
BBBBRansomware
BBS-RATBBS RAT
BD-Y3K-RATBD Y3K RAT
BEAMYOURSCREENBeamYourScreenAnother free and portable remote access program is BeamYourScreen. This program works like some of the others in this list, where the presenter is given an ID …
BEASTbeast
BEAST-TROJANBeast TrojanBeast is a Windows-based backdoor trojan horse, more commonly known in the hacking community as a Remote Administration Tool or a "RAT". It is capable of infec…
BEDEPBedepBedep has been mostly observed in ad-fraud campaigns, although it can also generally load modules for different tasks. It was dropped by the Angler Exploit Kit.
BEDS-PROTECTORBeds ProtectorBeds Protector is a common .NET packer/protector. It is a mod of ConfuserEx, which is another common .NET packer/protector. It is commonly used to obfuscate .N…
Sourced from MITRE ATT&CK Software and allied malware catalogues. Curated by Adam Lundqvist, Founder at SQUR.