3,696 indexed

SOFTWARESoftware & malware

3,696 tools and malware families — MITRE ATT&CK Software plus the wider cs-graph malware corpus. Use /search for keyword + ID lookup. Authored by Adam Lundqvist.

Showing 3,351–3,400 of 3,696 · page 68 of 74

IDTitleSummary
TORLOCKERTorLockerransomware
TORN-RATTorn RAT
TORPIGTorpigTorpig, also known as Anserin or Sinowal is a type of botnet spread through systems compromised by the Mebroot rootkit by a variety of trojan horses for the pu…
TORRENTLOCKERTorrentLockerRansomware Newer variants not decryptable. Only first 2 MB are encrypted
TORTOISETortoiseransomware
TOTALWIPEOUTTotalWipeOutransomware
TOUFANtoufan
TOWERWEBTowerWebRansomware
TOXCRYPTToxcryptRansomware
TOXICtoxic
TPS1-0TPS1.0ransomware
TRAVLETravleThe Travle sample found during our investigation was a DLL with a single exported function (MSOProtect). The malware name Travle was chosen given a string foun…
TRIADATriadaTriada is a trojan for Android devices. Triada's primary function is to record text messages. For example, it intercepts in-app purchases via text message and …
TRICK-BOTTrick BotMany links indicate, that this bot is another product of the people previously involved in Dyreza. It seems to be rewritten from scratch – however, it contains…
TRICK-OR-TREATTrick-Or-Treatransomware
TRIGONAtrigona
TRIK-SPAM-BOTNETTrik Spam Botnet
TRINITYtrinity
TRINOOTrinooTrinoo is a set of computer programs to conduct a DDoS attack. It is believed that trinoo networks have been set up on thousands of systems on the Internet tha…
TRIPLEFANTASYTripleFantasy
TRIPOLITripoliransomware
TRISECtrisec
TRISISTRISIS(Dragos Inc.) The team identifies this malware as TRISIS because it targets Schneider Electric’s Triconex safety instrumented system (SIS) enabling the replace…
TROCHILUSTrochilusTrochilus is a remote access trojan (RAT) first identified in October 2015 when attackers used it to infect visitors of a Myanmar website. It was then used in …
TROJANTrojanRansomware
TROJAN-DZTrojan DzCyberSplitter variant
TROJAN-LAZIOKTrojan.LaziokA new information stealer, Trojan.Laziok, acts as a reconnaissance tool allowing attackers to gather information and tailor their attack methods for each compr…
TROJAN-NAIDTrojan.Naid
TROJAN-SEADUKETrojan.SeadukeTrojan.Seaduke is a Trojan horse that opens a back door on the compromised computer. It may also download potentially malicious files.
TROJAN-SYRIATrojan-Syriaransomware
TROLDESH-ORSHADE-XTBLTroldesh orShade, XTBLRansomware May download additional malware after encryption
TRON-RANSOMWARETron ransomware
TROYTroy
TRUEBOTTruebotThis threat takes multiple screenshots of your desktop. It saves all screenshots in a .dat file that becomes a collection of bitmap images. According to Group-…
TRUECRYPTERTrueCrypterRansomware
TRUMPHEADTrumpHeadransomware
TRUMPLOCKER-RANSOMWARETrumpLocker RansomwareThis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hac…
TRY2CRYTry2Cryransomware
TSCOOKIETSCookieTSCookie itself only serves as a downloader. It expands functionality by downloading modules from C&C servers. The sample that was examined downloaded a DLL fi…
TSCOOKIERATTSCookieRATTSCookie provides parameters such as C&C server information when loading TSCookieRAT. Upon the execution, information of the infected host is sent with HTTP PO…
TSSXX25tssxx25
TUBORGtuborg
TURKISHTurkishRansomware
TURKISH-CRYPTERturkish crypter
TURKISH-FILEENCRYPTOR-RANSOMWARETurkish FileEncryptor Ransomwarehis is most likely to affect English speaking users, since the note is written in English. English is understood worldwide, thus anyone can be harmed. The hack…
TURKISH-RANSOMTurkish RansomRansomware
TURKOJANTurkojanTurkojan is a remote administration and spying tool for Microsoft Windows operating systems.
TURKSTATIKTurkStatikransomware
TVSPYTVSPYhacker going by the handle Mr. Burns. He also created something similar called RMS, which behaves very much like the TVSPY builder. “RMS/TVSPY continues to be …
TWOFACETwoFaceWhile investigating a recent security incident, Unit 42 found a webshell that we believe was used by the threat actor to remotely access the network of a targe…
Sourced from MITRE ATT&CK Software and allied malware catalogues. Curated by Adam Lundqvist, Founder at SQUR.