BlueSky ransomware is an emerging malware it encrypts user data using use ChaCha20 algorithm for file encryption, along with Curve25519 for key generation. It demands 0.1-0.2 BTC for decryptor. Its primarily targets Windows hosts and utilizes multi threading to encrypt files on the host for faster encryption. It borrowed code from
Conti and
Babuk Ransomware.
BlueSky Ransomware Downloader Signatures
Family: Trojan:PowerShell/Vigorf.A
MD5: 88ce0fab767eb1fdf51d53f2931cf069
SHA256: 08f491d46a9d05f1aebc83d724ca32c8063a2613250d50ce5b7e8ba469680605
BlueSky Ransomware Downloader Download
BlueSky Ransomware Signatures
Family: Ransom:Win32/Conti.AD!MTB
MD5: 01d66a03a0de2ee2eacacaa3ac98f0aa
SHA256: 2280898cb29faf1785e782596d8029cb471537ec38352e5c17cc263f1f52b8ef
BlueSky Ransomware Download