Proof of concept Ransomware written in CSharp (.NET 4.8)
- GPU & BIOS AntiVM (Works against Anyrun, Triage)
- Simple Base64 + Reverse String encoding
- Fake c2 Server (POST) with JSON body Of UID, Key and IV
- Parallel File Encryption with AES
Without AntiVM:
https://app.any.run/tasks/a36b808c-6ed8-41b8-b22c-fb0c299649bd
AntiVM:
https://tip.neiki.dev/file/2684b9fd7758d0350c7ae95ccaabcd9b04d4dc71c947732e277b7b0dc046ce41 https://app.any.run/tasks/eeab4fcf-30de-42df-9225-8ffbd89489c2