BlueSky Ransomware

BlueSky ransomware is an emerging malware it encrypts user data using use ChaCha20 algorithm for file encryption, along with Curve25519 for key generation. It demands 0.1-0.2 BTC for decryptor. Its primarily targets Windows hosts and utilizes multi threading to encrypt files on the host for faster encryption. It borrowed code from Conti and Babuk Ransomware.

BlueSky Ransomware Downloader Signatures

Family: Trojan:PowerShell/Vigorf.A
MD5: 88ce0fab767eb1fdf51d53f2931cf069
SHA256: 08f491d46a9d05f1aebc83d724ca32c8063a2613250d50ce5b7e8ba469680605

BlueSky Ransomware Downloader Download

Download BlueSky Ransomware Downloader Sample

BlueSky Ransomware Signatures

Family: Ransom:Win32/Conti.AD!MTB
MD5: 01d66a03a0de2ee2eacacaa3ac98f0aa
SHA256: 2280898cb29faf1785e782596d8029cb471537ec38352e5c17cc263f1f52b8ef

BlueSky Ransomware Download

Download BlueSky Ransomware Sample