Skip to content

S12cybersecurity/RansomwareS12

Folders and files

NameName
Last commit message
Last commit date

Latest commit

Β 

History

15 Commits
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 
Β 

Repository files navigation

RansomwareS12

Simple Ransoware to attack Windows πŸŒŸβ€Š

This is the first and most simple version of this malware, in the next's versions you can see:

  • Strong File Encryption with AES or RC4
  • Persistence
  • Server C2 to generate keys
  • Server C2 to steal data

Usage

Let's execute and try it, first of all the malware encrypt all the files in ALL users files in users directories, and then encrypting it:

And i create a file in Public User directory with this content:

image

And now i execute the ransomware:

image

It's encrypting files, this step can take a long time, depends the number of users and files in users directories. When all the files are encrypted and user press one key the program show this message:

image

The previous file:

image

Now the user pays and receive they key, when the user put it in the cmd prompt and it's incorrect he see this:

image

But when is correct… All the files are decrypted

About

Simple Ransoware to attack Windows πŸŒŸβ€Š

Resources

Stars

Watchers

Forks

Packages

No packages published

Languages