ETDA ThaiCERT
Report
Search
Home > List all tools

Threat Group Cards: A Threat Actor Encyclopedia

All tools

ChangedName

Tools

 3102 RAT
 3PARA RAT
 3Rat Client
 404-Input-shell web shell
 4H RAT
 7Logger
 7-Zip
 888 RAT
 8.t Dropper, 8.t RTF exploit builder, 8t_dropper, RoyalRoad
 9002 RAT, McRAT, Hydraq, HOMEUNIX, Aurora, Roarur
 AbaddonPOS
 AceHash
 ActionSpy
 Acunetix Web Vulnerability Scanner
 adbupd
 AdFind
 AdobeARM
 ADORE.XSEC
 AdvisorsBot
 Adzok, Invisible Remote Administrator
 Agent.BTZ, Chinch, Sun rootkit
 Agent.DNE
 Agent Tesla, AgentTesla, Origin Logger
 Aggah
 AIRBREAK, Orz
 Alice, AliceATM, PrAlice, Project Alice
 AlienSpy
 Alina POS, Track, alina_eagle, alina_spark, aline_joker, katrina
 Alma Communicator
 ALPC Local PrivEsc
 Amadey
 AMTsol
 Anchor
 Andaratm
 AndoServer
 Android RAT
 Andromeda, Gamarue, B106-Gamarue, B67-SS-Gamarue, b66
 AndroMut, Gelup
 AndroRAT
 Anel, UpperCut
 Antak
 Antd, GreedyAntd
 Anubis, BankBot, Go_P00t
 AnubisSpy
 ApacheStealer
 Apocalipto
 AppleJeus
 APT3 Keylogger
 AresRAT, Ares
 Aria-body, AR
 Aria-body loader
 ARTFULPIE
 ArtraDownloader
 Aryan
 Asacub
 ASPXSpy
 Asruex
 Astra
 AsyncRAT
 ATI-Agent
 ATMDtrack
 ATMii
 ATMitch
 Atmos
 Atmosphere
 ATMRipper, Ripper, Ripper ATM
 ATMSpitter
 AtNow
 AuditCred, ROptimizer
 August Stealer
 AUMLIB, yayih, bbsinfo, mswab, Graftor
 Auriga, Riodrv
 AutoIt backdoor
 Avalanche
 Ave Maria, AVE_MARIA, AveMariaRAT, Warzone RAT, avemaria
 Aversome infector
 AZORult, PuffStealer, Rultazo
 Babar, SNOWBALL
 BABYMETAL
 BabyShark
 BackBend
 BackConfig
 Backdoor Batel, Batel
 Backoff
 Backspace, Lecna
 Backswap
 BADCALL
 BADFLICK
 BadHatch
 BADNEWS
 BadPatch
 BadRabbit
 Bahamut
 Baka
 Banatrix
 Bandook
 bangat
 Banjori, BankPatch, BackPatcher, MultiBanker 2
 Bankshot
 BanSwift
XBARBWIRE
 Barlaiy, POISONPLUG
 Bart
 Bateleur
 BazarBackdoor
 BBSRAT
 BeEF
 beendoor
 BELLHOP
 Bemstour
 Benghazi.exe
 BernhardPOS
 BetaBot, Neurevt
 Bezigate
 BIFROST
 Bioazih
 BIOLOAD
 BISCUIT, zxdosml
 Bisonal, Korlia
 BISTROMATH
 BitPaymer, FriedEx, IEncrypt
 Bitsran, SHADYCAT
 BitterRAT
 BlackCoffee
 BlackEnergy
 Black Lambert
 BlackMould
 BlackPOS, FrameworkPOS, Kaptoxa, POSWDS, Reedum
 BlackRAT
 BlackRock
 BLINDINGCAN
 BlindToad
 Blogspot
 BloodHound
XBLUESTEAL
 Blue Lambert
 Bluether
 BokBot, IcedID, IceID
 BONDUPDATER, Poison Frog, Glimpse
 Bookcode
 Bookworm
 Boostwrite
 BootWreck, MBRkiller
 Bouncer
 Bourbon
 Bozok, Bozok RAT
 Brambul, SierraBravo, SORRYBRUTE
 Brave Prince
 BreachRAT
 Briba
 BrowsingHistoryView
 BrutishCommand
 BrutPOS
 BS2005
 BUBBLEWRAP
 BUFFETLINE
 Buhtrap, Ratopak
 Buran
 Byeby
 Bypass-UAC
 C0d0so0
 Cachedump
 CACTUSTORCH
 Cadelspy, Cadelle, WinSpy
 Cahnadr, NDriver
 Cain & Abel
 CALENDAR
 Calfbot
 callCam
 CallMe
 Calypso RAT
 CamCapture Plugin
 CamuBot
 Cannon
 CapturaTela
 Carbanak, Anunak, Sekur
 CarbonSteal
 Cardinal RAT
 Careto, Mask, Appetite
 CARROTBALL
 CARROTBAT
 Casper
 Castov
 Catchamas
 Catelites Bot
 CDorked, CDorked.A
 CenterPOS, Cerebrus
XCerberus
 certutil
 CHAINSHOT
 ChChes, HAYMAKER, Ham Backdoor, Scorpion
 CheeseTray, CROWDEDFLOUNDER
 Cherry Picker, Cherry Picker POS, cherry_picker
 ChewBacca
 China Chopper, SinoChopper
 Chocopop
 ChromeCookiesView
 ChromePass
 chrome-passwords
 Chthonic, AndroKINS
 Citadel
 CLAMBLING
 Clayslide
 Cleaner
 CleanToad
 ClientTraficForwarder
 Clop
 CloudDuke, MiniDionis, CloudLook
 CLOUDSTATS
 CmdSQL
 Cmstar, meciv
XCobalt Strike, BEACON
 CobInt, COOLPANTS
 Cobra Carbon System, Carbon, Pfinet
 COLDJAVA
 Combos
 Comfoo, Comfoo RAT
 Commix
 Comnie
 COMpfun, Reductor RAT
 Computrace, LoJack
 ComRAT
 Concealment Troy
 Confucius
 Conti
 Contopee, WHITEOUT
 CookieBag, TROJAN.COOKIES
 COPPERHEDGE
 CORALDECK
 CoreBot
 Corentry, Fluxwire
 CORESHELL, SOURFACE, Sofacy
 Corkow
 CosmicDuke, TinyBaron, BotgenStudios, NemesisGemina
 Cotx RAT
 CozyDuke, CozyCar, CozyBear, Cozer, EuroAPT
 CrackMapExec
 Crackshot
 Creamsicle
 CredRaptor
 CREDRIVER
 Cridex, Bugat, Feodo
 Crimson RAT, SEEDOOR, Scarimson, MSIL
 CronBot
 CrossRAT, Trupto
 CrossWalk
 Cryptcat
 CrypticConvo
 CryptoLocker
 CryptoMix, CryptFile2, Zeta, CryptoShield
 CryptoWall
 CsExt
 Cutlet Maker
 Cutwail, Pushdo
 CWoolger, Woolger, WoolenLogger
 Cyan Lambert
 CyberGate RAT, Rebhip
 Cyst Downloader
 Dacls RAT
 DADJOKE
 Dadstache
 Dagger Three
 Dairy
 DanaBot
 DanBot
 DanDrop
 DarkComet, DarkKomet, Fynloski, FYNLOS, klovbot, Krademok
 DarkHotel
 DarkPulsar
 Dark Tequila
 DarkVNC
 DarthPusher
 Daserf, Muirim, Nioupale
 Datper
 DbxDump Utility
 DCSync
 DDG
 DDKONG
 DEADEYE
 DealersChoice
 DebugView
 Decebal
 Decrypt-RDCMan.ps1
 DELPHSTATS
 DeltaCharlie
 Dendroid
 Denis
 Depriz
 DeputyDog, Fexel
 Derusbi, PHOTO, Atros2.CKPN
XDesert Scorpion
 Destover, Sierras
 Dexbia
 Dexter, LusyPOS, StarDust
 dfrgntfs5.sqt
 DILLJUICE
 DILLWEED
 Dino
 Dirsearch
 DIRTCLEANER, CCleaner Backdoor
 Distribute.exe
 DistTrack, Shamoon
 DKMC
 DmaUp3.exe
 DMSniff
 dmsSpy
 DNSExfitrator
 DNSMessenger, TEXTMATE
 DNSpionage, Agent Drable, Webmask
 DNSRat, DNSbot
 DOGCALL
 DoppelPaymer
 Dorshel
 DoubleAgent
 DOUBLEFANTASY
 DoublePulsar
 DoubleT
 Downdelph, Delphacy
 Downeks
 DownPaper
 Dozer, Mytob
 DreamBot
 Dridex, Bugat
 DRIFTPIN, Toshliph, Spy.Agent.ORM
 DRIGO
 DroidJack, SandroRAT
 DroidPlugin
 Dropbox
 Drovorub
 Drupalgeddon
 Dtrack
 Dudear
 Dudell
 Duqu, Tilded
 Dustman
 DustySky, NeD Worm
 Duuzer
 DvDupdate.dll
 DyePack, swift
 Dyre, Dyreza, Dyzap, Dyranges
 EarthWorm
 EasyNight
 Ebury
 ECCENTRICBANDWAGON
 EHDevel
 EKANS, Snake
 ELECTRICFISH, Alreay
 Elirks
 Elise, BKDR_ESILE
 ELMER, Elmost
 EmailStealer
XEMASTEAL
 Emdivi, Newsripper
 Emissary
XEmotet, Geodo, Heodo
 EmpireDNSAgent, EDA
 EmpireProject, Empire, EmPyre, PowerShell Empire
 Enfal, Lurid
 Eomobi
 Epic, Epic Turla, Tavdig, Wipbot, WorldCupSec, TadjMakhal
 EQUATIONDRUG, EQUESTRE
 EQUATIONLASER
 Erebus
 EternalBlue
 EternalRomance
 ETUMBOT, RIPTIDE, HIGHTIDE, Exploz, Specfix
 EvilBunny
 EvilGnome
 EvilGrab RAT, EvilGrab, Vidgrab, Wmonder, BKDR_HGDER, BKDR_EVILOGE, BKDR_NVICM
 Evilnum, Marvel
 Exaramel
 Excalibur, Sabresac, Saber
 ExDudell
 ExileRAT
 ExoBot
 Explosive
 EYE
 EYService
 FakeFish
 FakeHighFive
 FakeM, FakeM RAT, Terminator RAT
 FakeTC
 FALLCHILL, FallChill RAT
 FANNY
 Farse
 Farseer
 FASTCash
 FastPOS
 FatDuke
 Felismus
 Felixroot, GreyEnergy mini
 FighterPOS
 Filerase
 Fimlis
 Final1stSpy
 FindPOS, PoSeidon
XFinFisher, FinFisher RAT, FinSpy
 fingerprintjs2
 FireMalv
 FireMaster
 Flame, Flamer, sKyWIper, Skywiper
 Flapjack
 Flashflood
 FlawedAmmyy, AmmyyRAT
 FlawedGrace, GraceWire
 FLIPSIDE
 FlokiBot
 FlowCloud
XFLOWERPIPE
 FlowerPippi
 FlyingDutchman
 Fobber
 Foozer
XFORKBEARD
 Formbook
 FormerFirstRAT, FF-RAT, ffrat
 Fox Panel
 FRAUDROP
 Freenki Loader
 FrozenCell
 FRP, Fast Reverse Proxy
 FruityC2
 FullThrottle
 GamaPOS
 Gamaredon
 GameOver Zeus, Peer-to-Peer Zeus, P2P Zeus, GOZ
 GandCrab, GrandCrab
 Gazer, WhiteBear
 Gcat
 GCMAN
 GDOCUPLOAD
 GearShift
 GELCAPSULE
 Gelup
 Gemcutter
 GeminiDuke
 Get2, FRIENDSPEAK, GetandGo
 Get-LAPSP.ps1
 get-logon-history.ps1
 GetMail
 GetMyPass
 Gh0stnet, Ghostnet, Remosh
 Gh0st RAT, Ghost RAT, AngryRebel, Farfli, PCRat, Moudour, Mydoor
 Ghambar
 Ghole, Gholee, Core Impact (modified)
 GlanceLove, WinkChat
 GLASSES
 GlitchPOS
 GlobeImposter, Fake Globe
 GLOOXMAIL, Trojan.GTALK
 glue30.dll
 GnatSpy
 Godlua
 Godzilla, Godzilla Loader
 GOGGLES, TROJAN.FOXY
 Gold Dragon
 GoldenEagle
 GoldenRAT
 GollumApp
 Gon
 Goodor, Fuerboos
 GoogleDrive RAT
 Goopy
 Gootkit, Xswkit, talalpek
 Gophe
 Gorynych, Diamond Fox
 Gozi, CRM, Gozi CRM, Papras, Ursnif, Snifula
 Gozi ISFB, ISFB, Pandemyia
 Gozi v2, Gozi Prinimalka, Prinimalka-Gozi
 GozNym
 gpresult, Group Policy Results Tool
 GpUpdates.exe
 Grandoreiro
 Grateful POS, TRINITY
 GRAYFISH
 Gray Lambert
 Grease
 GREENCAT
 GreenDispenser
 Green Lambert
 GreezeBackdoor
 GreyEnergy
 Griffon
 GRILLMARK
 GROK
 gsecdump
 GuLoader
 GUP Proxy Tool
 H1N1 Loader, H1N1
 Hackfase
 HALFBAKED, VB Flash
 HammerDuke, HAMMERTOSS, NetDuke
 Hannotog
 HAPPYWORK
 HARDRAIN
 Harpoon, Garpun
 Harpy
 Havex RAT, Oldrea, Fertger, PEACEPIPE
 Havij
 Hawup, Hawup RAT
 hcdLoader
 HDoor
 HDRoot, HDD Rootkit
 Helauto
 Hello EK, LightsOut 2.0
 Helminth
 HenBox
 Heriplor
 Hermes
 HesperBot
 HiddenLotus
 HIDEDRV
 HighNoon
 HighNote, ChyNode
 HiKit
 Hisoka
 HKDOOR
 HomamDownloader
 HOMEFRY
 HOPLIGHT, HANGMAN
 HOTCROISSANT
 HotelAlfa
 Hotwax
 HtDnDownLoader
 HTML5 Encoding
 HTran, HUC Packet Transmit Tool
 HTTPBrowser, HttpBrowser RAT, TokenControl
 httpclient
 Http Dr0pper
 HTTP Troy
 HTTPTunnel
 HummingBad
 HummingWhale
 Hunter
 Hupigon, Hupigon RAT, BKDR_HUPIGON, MFC Huner
 Hurix
 Hussar
 H-Worm, H-Worm RAT, Houdini RAT, Iniduoh, Jenxcus, Kognito, WSHRAT
 HyperBro
 IAP
 IceCube
 IcedCoffee
 Icefog, Fucobha
 Ice IX
 IconDown
XIE PassView
 IGT supertool, Information Gathering Tool
 IHEATE
 Imecab
 Imminent Monitor RAT, Imminent Monitor
 Impacket
 Inception
 Industroyer, Crash, CrashOverride
 Infostealer, stereoversioncontrol
 Infy, Foudre
 INSOMNIA
 Inveigh
 InvisiMole
 Invoke-SMBAutoBrute
 Invoke the Hash
 IRONHALO
 IronPython
 IRONSQUIRREL
 ISMAgent
 ISMDoor
 ISMInjector, Agent Injector
 IsSpace, NfLog RAT
 Ivoke
 IXESHE
XJackOfHearts
 JackPOS
 JadeRAT
 Jaff
 Janicab
 Jason
 Jasus
 Javafog
XJESTBOT
 JhoneRAT
 JHUHUGIT, Seduploader, JKEYSKW, Sednit, Downrage, GAMEFISH, carberplike, SofacyCarberp, Carberp
 Joanap, SierraJuliett-MikeOne, SierraJuliett-MikeTwo
 Jokra, KillMBR, Dembr
 JPIN
 JripBot, Jiripbot
 JS Flash
 JsonCookies
 jsp File browser
 JSPSPY
 JuicyPotato
 Jumpall
 KAgent
 KARAE
 Karagany, Karagny
 Karba, Trojan.Win32.Karba.e
 Karius
 Karkoff, MailDropper, DropperBackdoor
 KasperAgent
 Kazuar
 KeeThief
 Kegotip
 Kelihos, Waledac, Hlux
 Kerberoast
 Kerberods
 KerrDown
 Ketrican
 Ketrum
 KevDroid
 KeyBoy, TSSL
 KEYMARBLE
 KHRAT
 Kikothac
 KillDisk
 Killua
 KimJongRAT
 Kimsuky
XKingOfHearts
 KINS, Zeus.Maple, Kasper Internet Non-Security
 Kitkiot
 KIVARS
 kl.ps1
 KLRD
 Koadic
 Komplex
 KOMPROGO, Splinter RAT
 Konni
 KopiLuwak
 Koredos
 Korkerds
 KPortScan
 KRBanker, Blackmoon
 Kronos, Osiris
 KSL0T
 Kurton
 Kwampirs
 Lambert, Plexor
 Lastacloud
 LATELUNCH
 LaZagne
 Lazarus, HIDDEN COBRA RAT/Worm
 LazyCat
 Leash
 Leo RAT
 LEOUNCIA, shoco
 Licat, Murofet
 liderc
 LIFEBOAT
 LIGHTBOLT
 LIGHTDART
 LightNeuron, NETTRANS, XTRANS
 LightsOut EK
 lightSpy
 Lilith RAT, Lilith
 LimeRAT
 Linfo
 Listrix
 LiteDuke
 lite_more_eggs
 Little Pig
 Living off the Land, LOLBins, LOLBAS
 LockerGoga
 LockPOS
 Locky
 Logger Module
 logon.dll
 LogPOS
 logsupport.dll
 LoJax
XLokiBot, Loki, LokiPWS, ForeIT
 LONGRUN
 LONGWATCH
 LOWBALL
 Lowkey, PortReuse
 LSD
 Lslsass
 Lucky Cat
 Luminosity RAT, LuminosityLink
 LUNCHMONEY
 Lurk
 LZ77
 Machete, El Machete
 Madi
 Madness PRO DDoS
 Magecart
 Magenta Lambert
 MailPassView
 Maintools.js
 MajikPOS
 MalumPOS
 ManItsMe
 MAPIget
 Marcher
 MATA
 Matiex
 Matrix Banker, RediModiUpd
 Matryoshka RAT
XMaze, ChaCha
 MBR Eraser
 MBS BTC Stealer
 MechaFlounder
 Mechanical
 meek
 Mekotio
 MessageTap
 METALJACK
 Metasploit
 Metasploit Stager
 Metel
 Meterpreter
 MFC Keyloggers
 MiamiBeach
 Microolap Packet Sniffer, TCPDUMP for Windows
 Micropsia
 Microcin, Mikroceen
 MILKDROP
 Milkmaid
 Milum
 Mimikatz
 MINEBRIDGE
XMINEDOOR
 MiniASP
 MiniDuke
 Minzen, XXMM, Wali, ShadowWali, ShadowWalker
 MirageFox
 Misdat
 MiS-Type
 Mivast
XMIXLABEL
 MKL Pro Keylogger
 MobileOrder
 ModPOS
 Molerat Loader
 MoneyTaker
 Mongall
 MOONSHINE
 MoonWind RAT, MoonWind
 More_eggs, SpicyOmelette, Terra Loader, SKID
 Mosquito
 Moudoor, SCAR
 MOVEit Freely
 MPKBot, MPK
 MS Exchange Tool
 msieckc.exe
 MSFvenom
 MSUpdater
 msvcrt58.sqt
 Mudwater
 Multigrain, Multigrain POS
 MURKYTOP
 MY24
 MyDogs
 Mydoom, Novarg, Mimail
 MysteryBot
 MZCookiesView
 N1stAgent
 NachoCheese
 Naid, Trojan.Naid, Mdmbot.E, AGENT.GUNZ, AGENT.AQUP.DROPPER, AGENT.BMZA, MCRAT.A, AGENT.ABQMR
 Naikon, XsFunction
XNAILGUN
 NanHaiShu
 NanoCore RAT, NanoCore, Nancrat, Zurten, Atros2.CKPN
 Nautilus
 NavRAT
 Nbot, TFC
 nbtscan
 nbtstat
 NcFTPPut
 NDiskMonitor
 Necurs, nucurs
 Nemim, Nemain
 NeoPocket
 Neptun
 Nerex
 NestEgg
 netcat
 Net Crawler, NetC
 NetEagle, ScoutEagle, scout, norton
 Netero
 NetExec
 NetFlash
 NetHelp Infostealer, NetHelp Striker
 NetPwdDump
 NetTraveler, TravNet, Netfile
 NetUseEngine
 NetWire RC, NetWire RAT, NetWired RC, NetWire, Recam
 NETWoolger
 Network Password Recovery
 Neuron
 Neutrino, Neutrino Bot, Neutrino Exploit Kit, Kasidet
 Neutrino POS, Jimmy
 NewCore RAT
 NewCT, CT
 NewCT2
 NewPass
 NewPosThings
 NewsReels
 NFlog
 Ngrok
 Nibatad
 Nidiran
 Nimcy
 NineBlog
 Nishang
 Niteris EK, CottonCastle
 NitlovePOS
 njRAT, Bladabindi, Jorik
 nmap
 Nokki
 Non-sucking Service Manager, NSSM
 NotPetya, EternalPetya, ExPetr, Pnyetya, Petna, Nyetya, NonPetya, nPetya, Petrwrap, Diskcoder.C, GoldenEye
 NSIS, Nullsoft Scriptable Install System
 NTDSDump
 NukeSped
 Nymaim, nymain
 ObliqueRAT
 OceanLotus, OSX_OCEANLOTUS.D
 Oceansalt
 Octopus
 OddJob
 Odinaff
 OilRig
 Okrum
 OLDBAIT, Sasfis
 Olympic Destroyer, SOURGRAPE
 OnionDuke
 OopsIE
 OpBlockBuster
 OpenDoc
XOperaPassView
 OpGhoul
 Orangeade
 Orcus RAT, Orcus, Schnorchel
 Orz
 OS_Check_445
 OSInfo
 Outlook Backdoor, FACADE
 OwaAuth, luckyowa
 PACMAN
 Paladin RAT, Paladin
 Pallas
 P.A.S., Fobushell
 Pasam
 PassKillDisk
 Pass-The-Hash Toolkit
XPasswordFox
 Patao
 pcaudit.bat
 PCClient
 PCShare
 PEBBLEDASH
 Pegasus, Chrysaor, JigglyPuff
 Penquin Turla
 Peppy RAT, Peppy Trojan
 pgift, ReRol
 PhanDoor
 PhantomLance, Android.Backdoor.736.origin
 Philadelphia
 Phishery, Trojan.Phisherly
 PHOREAL, Rizzo
 PHPMailer
 PhpSpy
 PICKPOCKET
 Pierogi
 PiggyBack
 PinchDuke
 PinkKite
 Pink Lambert
 Pioneer, Virus.Win32.Pioneer.dx, igfxext.exe
 PipeMon
 Pirpi, SHOTPUT, CookieCutter, Badey, EXL
 Pisloader
 Pitty, PittyTiger RAT
 PLAINTEE
 PLEAD, TSCookie
 Plink, PuTTY Link
 Ploutus, Plotus
 PluginPhantom
 PlugX, Destroy RAT, Korplug, Sogu, Kaba, Xamtrav, Agent.dhwf
 pngdowner
 PocoDown, Blitz
 PoisonCarp
 Poison Ivy, pivy, poisonivy, Gen:Trojan.Heur.PT, Darkmoon, Chymine, Breut
 Poldat, Zlib, KABOB
 PolyglotDuke
XPony, Pony Loader, Siplog, Fareit
 PoohMilk Loader, PoohMilk
 POORAIM, Backdoor.APT.POORAIM
XPOPFLASH
 Port.exe
 PortScan
 PosCardStealer
 PoshAdvisor
 PoshC2
 POSHSPY
 PoSlurp, PUNCHTRACK, PSVC
 POTROAST
 POWBAT
 PowerBand
 PowerBrace
 PowerDuke
 PowerDump
 Powerkatz
 Powermud
 POWERPIPE
 PowerRatankba, QUICKRIDE.POWER
 PowerShell RAT
 PowerShellRunner-based RPC backdoor
 PowerShower
 Powersing
 POWERSOURCE
 PowerSploit
 PowerSpritz
 PowerStallion
 POWERSTATS, Powermud, Valyria
 PowerTask
 POWERTON
 PowerTrick
 PowerView
XPowGoop
 POWRUNER
 POWSSHNET
 PRB-Backdoor
 Prikormka
 Prilex
 ProcDump
 ProduKey
 Pro POS
XProtected Storage PassView
 Protux
 ProxyBot
 Proxysvc
 PsExec
 psinstrc.ps1
 PsiXBot
 PsList
 PSLogger
 Psylo
 Pteranodon, Pterodo
 PunchBuggy, ShellTea, Powersniff
 Punkey, PunkeyPOS
 PupyRAT, Pupy
 PuTTY
 PVZ-In
 PVZ-Out
 pwdump
 PwnPOS
XPyark
 PyFlash
 Pylot, Travle
 PythocyDbg
 PyVil RAT
 Qadars
XQakBot, Qbot, PinkSlip
 QCRat
 QUADAGENT
 Quant Loader
 QuarkBandit
 Quarks PwDump
 QuasarRAT, Quasar RAT, CinaRAT, Yggdrasil, xRAT
XQueenOfClubs, SlothfulMedia
XQueenOfHearts
 Quickcafe
 RaidBase
 Rambo, brebsd
 Ramnit, Nimnul
 Ramsay
 Ranbyus
 RapidStealer
 rarstar
 RARSTONE
 Ratankba, Ratabanka, QUICKRIDE
 RatankbaPOS, RatabankaPOS
 RatSnif
 RawDisk
 RawPOS, FIENDCRY, DUEBREW, DRIFTWOOD
 RCS Galileo
 RC SHELL
 Rdasrv
 RDAT
 RDFSNIFFER
 RDP, Remote Desktop Protocol
 Recon
 ReconModule
 Red Alert, Red Alert 2.0
 RedAlpha
 RedLeaves, BUGJUICE
 RedPepper, Adupib
 RedSalt, Dipsind
 RedShawl
 RegDuke
 reGeorg
 Regin, Prax, WarriorPride
 Remcom
 RemcosRAT, Remcos
 Remexi, CACHEMONEY
 remote-access-c3
 RemoteCMD
 Remote CMD/PowerShell terminal
 Remote Control System, RCS, Crisis
 Remote Desktop PassView
 Remsec
 RemShell
 RemShell Downloader
 Remy, Remy RAT
 Resetter
 Responder
 Retefe, Dok, Tsukuba, Werdlod
 Retefe (Android)
 Retro
 RevengeRAT, Revenge, Revetrat
 ReZer0
 RGDoor
 RICECURRY, Exploit.APT.RICECURRY
 Rifdoor
 Rikamanu
 Rising Sun
 RMS, Remote Manipulator System
 Roaming Mantis, MoqHao, XLoader
 RoboSki
 ROCK, yellowalbatross
 ROCKBOOT
 RocketMan
 RockLoader
 RogueRobin, RogueRobinNET
 RokRAT
 Roland, Roland RAT
 Romeos, RomeoCore, Romeo-CoreOne, R-C1
 RomeoAlfa, AlphaNC
 RomeoBravo, BravoNC
 RomeoCharlie
 RomeoDelta, DeltaNC
 RomeoEcho
 RomeoFoxtrot
 RomeoGolf
 RomeoHotel
 RomeoMike
 RomeoNovember
 RomeoWhiskey, Winsec
 RoyalCli
 RoyalDNS
 RTM, RTM Banker, Redaman
 RtPOS
 Rubeus
 RUHAPPY
 Ruler
 RunningRAT, Running RAT
XRyuk
 Safe
 SAGEHIRE
 Sagerunex
 Sakabota
 Sakula RAT, Sakurel
 Salgorea, BadCake
 Sality, Sector, Kuku, SalLoad, Kookoo, SaliCode, Kukacka
XSALTLICK
 SamSam, Samas
 SandroRAT
 Sasfis, Oficla
 Satellite Turla
 scanbox
 ScanPOS
 ScarCruft
 Scieron
 Scotch
 Scote
XSCRAPMINT
 Screenshotter
 sctrls
 SDBbot
 SDelete
 SeaDuke, SeaDaddy, SeaDask
 Seasalt
 SEAWEED
 SecHack
 SecreetsDump
 Secure FTP Client
 Secure Socket Funneling, SSF
 Sedkit
 SeDLL
 Sedreco, AZZY, EVILTOSS, ADVSTORESHELL, NETUI
 Separ
 Sepulcher
 Serveo
 ServHelper
 SessionGopher
 ShadowHammer, DAYJOB
 ShadowNet
 ShadowPad Winnti, POISONPLUG.SHADOW, XShellGhost
 ShadyRAT
 SHAPESHIFT
 shareip, remotecmd
 SharpHound
 SHARPKNOT, Bitrep
 SharpSploit
 SHARPSTATS
 SheepRAT
 Shifu
 ShimRAT
 Shipshape
 Shootback
XSHORTBENCH
 SHUTTERSPEED
 Shylock, Caphaw
 SierraAlfa
 SierraCharlie
 Silence, TrueBot
 SilentCMD
 Silent Night
 SilkBean
 SilverHawk
 Silver Lambert
 Sima
 Sinowal, Anserin, Mebroot, Quarian, Theola, Torpig
 sip_telephone
 Sisfader, Sisfader RAT
 Sisron
 SkeletonKeyInjector
 SkiBoot
 Skimer
 Skip-2.0
 Skipper
 sLoad, StarsLord
 SLICKSHOES
 Slingshot
 SLOWDRIFT
XSLOWROLL
 SLRat
 SMBExec
 Smbmap
 smbscan
 SMBTouch
 SMBTrap
 Smoke Loader, SmokeLoader, Smoke, Dofoil, Sharik
 Snatch
 Sneepy, ByeByeShell
 SniffPass
 SNUGRIDE
 SocksBot, BIRDDOG, Nadrac
 Sodinokibi, Sodin, REvil
 SodomMain, SodomMain RAT
 SodomNormal
 SoftEther VPN
 SoftPerfect Network Scanner
 Sojax
 SoreFang
 Sorgu
 Soraya
 SOUNDBITE
 SOUNDWAVE
 Spaceship
 Spark
 Speculoos
 Spedear
 Spindest, Backdoor.Apocalipto
XSPOONBEARD
 spwebmember
 SpyEye
 SpyNote RAT
 SpyWaller
 sqllauncher.dll
 sqlmap
 SQLRAT
 SScan
 SSHMinion
 SslMM
 SSLove RAT
 StarLoader
 StarsyPound
 Stealer
 StealthFalcon
 Stealth Mango
 StickyFingers, QUICKBALL
 StoneDrill, DROPSHOT
 StreamEx
 StrongPity
 StrongPity2
 StrongPity3
 STSRCheck
 Stuxnet
 S-Type
 Subbrute
 Sublist3r
 SubtractThis
 SUCEFUL
 SVCMONDR
 SWEETCANDLE
 swissknife2
 Sword
 Sykipot, Getkys, Wkysol
 SymonLoader
 SynFlooder
 Sys10
 Syscon, Sanny
 SysGet, HelloBridge
 SysInternals
 SysKit, IvizTech, MANGOPUNCH
 Sysmain
 SysUpdate
 TabMsgSQL, LETSGO
 Tafacalou
 Taidoor, simbot
 TAINTEDSCRIBE
 Tapaoux
 Tarsip
 Taurus Loader, Taurus Builder, Taurus Builder Kit
 TCP Port Scanner
 tDiscoverer
 Tdrop
 Tdrop2
 TDTESS
 TeamSpy, TVSpy, TVRAT, SpY-Agent
 TeamViewer
 TeleBot
 TeleDoor
 Tempting Cedar Spyware
 TERA
 Termite
 Terracotta VPN
 TerraCrypt, PureLocker
 TerraPreter
 TerraRecon, Taurus Loader Reconnaissance Module
 TerraStealer, Taurus Loader Stealer Module, StealerOne, SONE
 TerraTV, Taurus Loader TeamViewer Module
 TerraWiper
 THC Hydra
 ThreatKit
 THREEBYTE
 ThreeDollars
 TidePool
 TIDYELF
 Tinba, Tiny Banker, Tina, Illi, Zusy
XTinyCryptor
 TinyLoader
 TinyMet, TiniMet
XTinyNode
 TinyNuke, NukeBot, Nuclear Bot, MicroBankingTrojan, Xbot
 TinyPOS
XTinyPosh
 TINYTYPHON
 TinyZBot
 Titan
 Titanium
 Tofu Backdoor
 TOM-Skype
 TONEDEAF
 TONEDEAF 2.0
 Topinambour
 Torn RAT
 TreasureHunter, TREASUREHUNT, huntpos
XTrickBot, Trickster, The Trick, Totbrick, TrickLoader, TSPY_TRICKLOAD
 TrickMo
 TRIPLEFANTASY
 Triton, Trisis, HatMan
 Trochilus RAT
 Troy
 Truvasys
 TTCalc
 Tunnus
 TURNEDUP
 TwoFace, Minion, HighShell, HyperShell, SEASHARPEE
 TypeConfig, SafeDisk
 TYPEFRAME
 Tyupkin, Padpin
 UDPoS
 UltraVNC
 UNITEDRAKE
 Unknown Logger
 Upatre
 updater.mod
 UPDATESEE
 UpDocX
 UPXShell
 URLZone, Bebloh, Shiotob
 Uroburos, Urouros, Turla, Snake
 USBCulprit
 UsbDoc
 UsbExe
 USBferry
 USBStealer
 USBWorm
 VALUEVAULT
 VAMP, android.micropsia
 Vasport
 Vawtrak, Catch, grabnew, NeverQuest, Snifula
 VBShower
 Vcrodat
 Veil
 VenomKit
 VenomLNK
 VHD
 ViceLeaker, Triout
XVIDAR
 Violet Lambert
 ViperRAT
 VIVACIOUSGIFT
XVizom
 Vminst
 VNC, Virtual Network Computing
 Voice Massege.apk
 Volgmer, Manuscrypt
 VPNFilter
 vSkimmer
 w32times
 Wadhrama
 WannaCry, WannaCryptor, Wcry, Wana Decrypt0r
 WARP
XWastedLocker
 WaterSpout
 WbBot
 WebBrowserPassView
 WebC2, WebC2-AdSpace, WebC2-Ausov, WebC2-Bolid, WebC2-Cson, WebC2-DIV, WebC2-GreenCat, WebC2-Head, WebC2-Kt3, WebC2-Qbp, WebC2-Rave, WebC2-Table, WebC2-UGX, WebC2-Yahoo
 Webmask
 WellMail
 WellMess
 Whisky
 WhiteAtlas
 White Lambert
 Wiarp
 WIDETONE
 Wii
 Windows Credentials Editor, WCE
 WINDSHIELD, Cuegoe
 WindTail
 WINERACK
 Winexe
 Wingbird
 WinIDS
 WinMM
 Winnti, BleDoor, RbDoor, RibDoor
 WinPot
 WinRAR
 WinSCP
 Winsloader
 WINTERLOVE
 WITCHCOVEN
 WMI Ghost, Wimmie, Syndicasec
 WndTest
 WolfRAT, W1_RAT
 Wormhole
 Wpscan
 WSCSPL
 WSO, Webshell by Orb
 X-Agent, Popr-d30, SPLM, CHOPSTICK, fysbis, Backdoor.SofacyX, webhp
 Xbash
 XBOT-POS
 XBOW
XXDDown
XxDll
 XDOOR, X-Door
XXDList
XXDLoc
XXDMonitor
XXDPass
XXDRecon
XXDUpload
 xfs-disp.exe
 XMRig
 XServer
 XSLCmd
 xsPlus, xsControl, nokian
 XtremeRAT, ExtRat
 X-Tunnel, Shunnael, XAPS
 Yahoyah, W32/Seeav
 Yispecter
 Yort
 yty
 Zebrocy, Zekapab
 ZeGhost, BackDoor-FBZT!52D84425CDF2, Trojan.Win32.Staser.ytq, Win32/Zegost.BW
 ZeroCleare
 ZeroT
 Zeus, ZeuS, Zbot, Trojan.Zbot, Wsnpoem, Gorhax, Kneber
 Zeus OpenSSL, Zeus Sphinx, XSphinx
 Zeus Panda, PandaBanker
 ZeusPOS
 ZeusVM, VMzeus, Zberp
 zhCat
 zhMimikatz
 ZitMo, ZeuS-in-the-Mobile
 zl4vq.sqt
 ZLoader, Terdot, DELoader
 ZooPark
 ZoxPNG, gresim
 ZoxRPC
 XPCTRA, Expectra
 ZPP
 Z*Stealer
 ZUMKONG
 Zupdax
 zwShell
 ZXPortMap
 ZXShell, Sensocode

1390 tools listed

Last database change: 20 October 2020

Download the entire tool database in JSON or MISP format

Thailand Computer Emergency Response Team (ThaiCERT)
Electronic Transactions Development Agency

Follow us on

Facebook Twitter

Report incidents

Telephone +66 (0)2-123-1234
E-mail report@thaicert.or.th
PGP Download PGP key