This post is by a banned member (albarmahad) - Unhide
09 November, 2022 - 12:07 AM
Reply
This post is by a banned member (CHAOS369) - Unhide
09 November, 2022 - 01:28 AM
Reply
(05 June, 2021 - 10:37 AM)Redm00n Wrote: Show MoreThis is a proof of concept of how a ransomware works, and some techniques that we usually use to hijack our files. This project is written in C# using the net-core application framework 3.1.The main idea of the code is to make it as readable as possible so that people have an idea of how this type of malware acts and works.
Baphomet features
AES algorithm for file encryption.
RSA encryption to encrypt key.
Automatic propagation via USB.
Hybrid encryption technique.
Enumeration of processes to kill those selected.
Internet connection test.
victim information submissions (Public IP, Domainname, Country, OS.version, City, Machine name, etc).
Program to decrypt the encryption key.
Program to decrypt encrypted data.
Hostname list to send the victim's data (redundancy).
Doesn't detected to antivirus programs (Date: 11/30/2020 12:25pm).
Hardcode image in base64 to change wallpaper (Baphomet image).
GIVE LIKES DON'T LEECH
tyyy
This post is by a banned member (hasi912) - Unhide
17 November, 2022 - 03:17 AM
Reply
This post is by a banned member (Pzer0man) - Unhide
25 November, 2022 - 05:44 PM
Reply
This post is by a banned member (uPqxMnkN0) - Unhide
25 November, 2022 - 06:33 PM
Reply
(05 June, 2021 - 10:37 AM)Redm00n Wrote: Show MoreThis is a proof of concept of how a ransomware works, and some techniques that we usually use to hijack our files. This project is written in C# using the net-core application framework 3.1.The main idea of the code is to make it as readable as possible so that people have an idea of how this type of malware acts and works.
Baphomet features
AES algorithm for file encryption.
RSA encryption to encrypt key.
Automatic propagation via USB.
Hybrid encryption technique.
Enumeration of processes to kill those selected.
Internet connection test.
victim information submissions (Public IP, Domainname, Country, OS.version, City, Machine name, etc).
Program to decrypt the encryption key.
Program to decrypt encrypted data.
Hostname list to send the victim's data (redundancy).
Doesn't detected to antivirus programs (Date: 11/30/2020 12:25pm).
Hardcode image in base64 to change wallpaper (Baphomet image).
GIVE LIKES DON'T LEECH
Let's have a look
This post is by a banned member (ZedShare) - Unhide
25 November, 2022 - 07:34 PM
Reply
This post is by a banned member (repeat000) - Unhide
18 May, 2023 - 01:49 PM
Reply
This post is by a banned member (defaultsrb) - Unhide
21 June, 2023 - 02:33 PM
Reply
|