Skip to content

Quick Reference: Malware Types at a Glance

#Malware TypePrimary GoalSelf-Replicates?Risk LevelKey Trait
1Computer VirusDamage / Replicate✅ Host-attached🟠 HighAttaches to host files
2Computer WormMass Propagation✅ Standalone🔴 CriticalNetwork self-propagation
3Trojan HorseBackdoor / Theft❌ No🟠 HighSocial engineering
4SpywareSurveillance❌ No🟠 HighCovert data collection
5AdwareAd Revenue❌ No🟡 MediumBrowser hijacking
6RansomwareExtortion⚠️ Some variants🔴 CriticalEncryption + double extortion
7RootkitPersistence❌ No🔴 CriticalKernel-level hiding
8KeyloggerCredential Theft❌ No🟠 HighKeystroke capture
9BackdoorPersistent Access❌ No🔴 CriticalRemote access / C2
10Botnet / BotCoordinated Attacks✅ Yes🔴 CriticalC2-controlled army
11APT MalwareEspionage❌ No🔴 CriticalNation-state, custom
12Fileless MalwareEvasion / Access❌ No🔴 CriticalMemory-only, LOLBins
13CryptominerRevenue⚠️ Some variants🟡 MediumResource hijacking
14Wiper MalwareDestruction❌ No🔴 CriticalNo recovery possible
15Mobile MalwareData Theft⚠️ Some variants🟠 HighAndroid/iOS specific
16Web ShellServer Control❌ No🟠 HighBrowser-based C2
17AI-Powered MalwareAdaptive Attack🔬 Hypothetical🔴 CriticalML-driven adaptation
18Post-Quantum MalwareCrypto Breaking🔬 Hypothetical🟠 HighHNDL + Shor’s algorithm
19UEFI / FirmwareDeep Persistence❌ No🔴 CriticalHardware-level
20Supply-ChainMass Infection❌ No🔴 CriticalTrusted vendor compromise
21OT/ICS MalwarePhysical Damage⚠️ Some variants🔴 CriticalPhysical consequences
22Polymorphic / MetamorphicDetection Evasion✅ Yes🟠 HighCode mutation

BadgeMeaning
🔴 CriticalNation-state grade; widespread impact; physical/irreversible damage
🟠 HighSignificant damage; data theft; persistence; requires advanced defence
🟡 MediumNuisance; revenue-focused; lower direct damage
🔬 HypotheticalTheoretical / emerging; not widely observed in wild

SymbolMeaning
✅ YesAutonomous or host-attached replication
❌ NoNo self-replication (requires delivery)
⚠️ Some variantsSome families have worm-like components
🔬 HypotheticalTheoretical capability

CategoryMalware Types
DestructionWiper, OT/ICS, some Ransomware
ExtortionRansomware (double extortion)
EspionageAPT, Spyware, Keylogger, Mobile Spyware
Financial CrimeBanking Trojan, Ransomware, Cryptominer, Adware, Botnet
Persistence/AccessRootkit, Backdoor, UEFI/Firmware, Web Shell, Botnet
PropagationVirus, Worm, Botnet, Polymorphic
EvasionFileless, Polymorphic/Metamorphic, Rootkit, AI-Powered
SurveillanceSpyware, Keylogger, Mobile Spyware
Resource TheftCryptominer, Botnet (proxy), Adware

RiskImmediate Actions
🔴 CriticalPatch immediately, isolate, EDR, offline backups, IR plan
🟠 HighPatch within 72h, EDR, network segmentation, MFA
🟡 MediumPatch cycle, AV, user awareness, monitoring
🔬 HypotheticalTrack research, prepare migration (PQC), threat model

CategoryLink
ClassicVirus · Worm · Trojan · Spyware · Adware · Ransomware · Rootkit · Keylogger · Backdoor
AdvancedBotnet · APT · Fileless · Cryptominer · Wiper
Mobile/WebMobile · Web Shell
EmergingAI-Powered · Post-Quantum · UEFI · Supply-Chain · OT/ICS · Polymorphic
DefenceEconomy · ATT&CK · Universal Defence

Last updated: {{ git_revision_date_localized }}