|
|
|
@@ -11,9 +11,9 @@ Many of the types and descriptions were taken from the STIX 2.1 Malware Type ope
|
|
|
|
|
|**downloader**|A small trojan file programmed to download and execute other files, usually more complex malware. [[1]](#1)|Matanbuchus, YiSpecter|
|
|
|
|
|
|**dropper**|A type of trojan that deposits an enclosed payload (generally, other malware) onto the target computer. [[1]](#1)|CozyCar, UP007, TEARDROP|
|
|
|
|
|
|**exploit-kit**|A software toolkit to target common vulnerabilities.||
|
|
|
|
|
|**info-stealer / uploader**|Steals and exfiltrates information.|Redhip, Romberik, Snake|
|
|
|
|
|
|**information-stealer**|Malware that steals and exfiltrates information.|Redhip, Romberik, Snake|
|
|
|
|
|
|**keylogger**|A type of malware that surreptitiously monitors keystrokes and either records them for later retrieval or sends them back to a central collection point.[[1]](#1)|Dark Comet, Snake|
|
|
|
|
|
|**other**|The malware doesn't fall into another catagory.|BadUSB, DYEPACK|
|
|
|
|
|
|**other**|The malware doesn't fall into a defined type catagory.|BadUSB, DYEPACK|
|
|
|
|
|
|**ransomware**|A type of malware that encrypts files on a victim's system, demanding payment of ransom in return for the access codes required to unlock files.[[1]](#1)|Conti, CryptoLocker, CryptoWall, Locky Bart, Netwalker, SamSam, WannaCry|
|
|
|
|
|
|**remote-access-trojan**|A remote access trojan program (or RAT), is a trojan horse capable of controlling a machine through commands issued by a remote attacker. [[1]](#1)|Adwind jRAT, ElectroRAT, GravityRAT, Poison Ivy, Terminator|
|
|
|
|
|
|**resource-exploitation**|A type of malware that steals a system's resources (e.g., CPU cycles), such as a malicious bitcoin miner.[[1]](#1)|Clipminer, WebCobra|
|
|
|
|
|