3,697 indexed

SOFTWARESoftware & malware

3,697 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.

Showing 3,001–3,050 of 3,697 · page 61 of 74

IDTitleSummary
S1086Snip3
Windows
[Snip3](https://attack.mitre.org/software/S1086) is a sophisticated crypter-as-a-service that has been used since at least 2021 to obfuscate and load numerous …
S1087AsyncRAT
Windows
[AsyncRAT](https://attack.mitre.org/software/S1087) is an open-source remote access tool originally available through the NYANxCAT Github repository that has b…
S1088Disco
Windows
[Disco](https://attack.mitre.org/software/S1088) is a custom implant that has been used by [MoustachedBouncer](https://attack.mitre.org/groups/G1019) since at …
S1089SharpDisco
Windows
[SharpDisco](https://attack.mitre.org/software/S1089) is a dropper developed in C# that has been used by [MoustachedBouncer](https://attack.mitre.org/groups/G1…
S1090NightClub
Windows
[NightClub](https://attack.mitre.org/software/S1090) is a modular implant written in C++ that has been used by [MoustachedBouncer](https://attack.mitre.org/gro…
S1091Pacu
IaaS
Pacu is an open-source AWS exploitation framework. The tool is written in Python and publicly available on GitHub.(Citation: GitHub Pacu) Documented platforms…
S9000Ngrok
Windows
Documented platforms: Windows. Catalogued in ATT&CK 14.1. 1 reference curated. Documented platforms: Windows. Catalogued in ATT&CK 14.1. 1 reference curated.
SABBATHSabbath
SADSADransomware
SADCOMPUTERSadComputerransomware
SADOGOSadogoransomware
SADSTORYSADStoryRansomware Variant of CryPy
SAFEPAYsafepaySafePay ransomware started in October 2024 as a new ransomware service, using some of the leaked LockBit source code. Soon after launching, the group made a bi…
SAGE-2-0-RANSOMWARESage 2.0 RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. This ransomware attacks your MS Office by offering a Micro to help with your pr…
SAGE-2-2Sage 2.2Ransomware Sage 2.2 deletes volume snapshots through vssadmin.exe, disables startup repair, uses process wscript.exe to execute a VBScript, and coordinates the…
SAGE-RANSOMWARESage RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encrypt…
SAKULASakulaThe RAT, which according to compile timestamps first surfaced in November 2012, has been used in targeted intrusions through 2015. Sakula enables an adversary …
SALITYSalitySality is the classification for a family of malicious software (malware), which infects files on Microsoft Windows systems. Sality was first discovered in 200…
SALSASalsaransomware
SAMAS-SAMSAMSamas-SamsamRansomware Targeted attacks -Jexboss -PSExec -Hyena
SANCTIONSanctionRansomware Based on HiddenTear, but heavily modified keygen
SANCTIONSSanctionsRansomware
SANDRO-RATSandro RAT
SANTA-ENCRYPTORSanta Encryptorransomware
SARAMATSaramatransomware
SARANSOMSARansomransomware
SARCOMAsarcomaSarcoma is a ransomware group that emerged in October 2024 and has been actively targeting various organizations. Sarcoma's attack methods include phishing cam…
SARDONINIRSardoninirRansomware
SATAN-CRYPTOR-2-0Satan Cryptor 2.0ransomware
SATAN-RANSOMWARESatan RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. Its original name is RAAS RANSOMWARE. It is spread using email spam, fake updat…
SATAN-S-DOOM-CRYPTERSatan's Doom Crypterransomware
SATAN666-RANSOMWARESatan666 RansomwareIt’s directed to English speaking users, therefore is able to infect worldwide. It is spread using email spam, fake updates, attachments and so on. It encryp…
SATANASatanaRansomware
SATANCDsatancd
SATANCRYPTOR-GOSatanCryptor Goransomware
SATANLOCKsatanlockConnected to GD Lockersec and Babuk-Bjorka. <br/> <br/>Group is aka SalanLock (from typo on victim pages).
SATHURBOTSathurbotThe trojan serves as a backdoor. It can be controlled remotely.
SATORISatoriAccording to a report Li shared with Bleeping Computer today, the Mirai Satori variant is quite different from all previous pure Mirai variants.Previous Mirai …
SATURNSaturnransomware
SATYRSatyrransomware
SAVEFILESSAVEfiles
SAVETHEQUEENSaveTheQueenransomware
SCAMMERLOCKER-HTScammerLocker HTransomware
SCAMMERLOCKER-PHScammerLocker Phransomware
SCATTERBRAINScatterbrainransomware
SCATTERED-LAPSUS-HUNTERSscattered lapsus$ hunters
SCHOOLBOYSschoolboys
SCHWARZE-SONNE-RATSchwarze-Sonne-RAT
SCHWERERSchwererransomware
SCIERONScieron
Sourced from MITRE ATT&CK Software and allied malware catalogues. Curated by Adam Lundqvist, Founder at SQUR.
Software & malware — full index | SQUR Knowledge Base