A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #23814  by EP_X0FF
 Mon Sep 08, 2014 8:17 am
Below is list of Linux system oriented malware families.
  1. AES.DDoS
  2. Bangsyn
  3. BillGates
  4. BoSSaBoT
  5. Cdorked
  6. ChinaZ
  7. Darkleech
  8. DDOSTF
  9. DES.Downloader
  10. Dklkt
  11. dtool
  12. Ellipsis
  13. Elknot
  14. Ekoms(Mokes)
  15. EvilGnome
  16. FileCoder (Linux.Encoder)
  17. Fokirtor
  18. GoARM.Bot
  19. Hanthie
  20. IptabLex|s
  21. KBeast
  22. KDefend
  23. KillFile (alias Slexec)
  24. Kluh (ChinaZ)
  25. LightTaidra (mod Zendran)
  26. Mayhem
  27. Mirai
  28. Moose
  29. Mumblehard
  30. PNScan
  31. Pscan+SSHscan
  32. Rekoobe
  33. ShellReverseTcp (used by Shellshock)
  34. Shellshock (Bash0day, Bashdoor)
  35. Snakso
  36. SSHV (SSH bruter worm)
  37. TheMoon
  38. Torte (spooler) ELF
  39. Tsunami
  40. Turla
  41. Xor.DDoS
  42. Yangji
  43. other
  44. Linux Kernel 2.6.27 x86/x64 exploit
If you have more Linux based malware not listed here, and you want to share them - please create separate topic, link to it will be added here.

Link to this topic added to pinned thread Interesting malware.

Samples credits to: unixfreaxjp, rkhunter, K_Mikhail, Xylitol and some others.