AstraLocker 2.0 is closely related to Babuk Ransomware. It encrypts user data and ask $50 USD in XMR (monero) coin. It is distributes via phishing campaigns as Microsoft Office Word documents attachments.
DarkAngels Ransomware is yet another derivative of Babuk Ransomware. It is very similar to HelloXD Ransomware in term of functionalities. Reports on Dark Angels suggest that each ransomware sample is targeted specifically for a given organization.
This ransomware encrypts user data and then requires them to visit the ransomware website to learn how to pay a ransom and get their files back.
HelloXD is a relatively a new Ransomware operation that is drives form Babuk Ransomware. It is still in early developmental stages and adding functionality continuously.
Bumblebee Loader is a replacement for BazarLoader, which is used by Conti group to deliver ransomware. The Bumblebee infection starts through spam email. This email contains a link to further download an ISO file.