Simple Ransoware to attack Windows πβ
This is the first and most simple version of this malware, in the next's versions you can see:
- Strong File Encryption with AES or RC4
- Persistence
- Server C2 to generate keys
- Server C2 to steal data
Let's execute and try it, first of all the malware encrypt all the files in ALL users files in users directories, and then encrypting it:
And i create a file in Public User directory with this content:
And now i execute the ransomware:
It's encrypting files, this step can take a long time, depends the number of users and files in users directories. When all the files are encrypted and user press one key the program show this message:
The previous file:
Now the user pays and receive they key, when the user put it in the cmd prompt and it's incorrect he see this:
But when is correct⦠All the files are decrypted