Vendetta Ransomware encrypts user data with AES, and then requires a ransom in BTC to return files. .vendetta .VENDETTA and .vendetta2 extensions are added to the encrypted files.
SymmyWare ransomware encrypts user files with AES-256 bit encryption and does not demand a ransom. Encrypted files are appended with .SYMMYWARE extension.
Octopus Trojan is allegedly by the threat actor group DustSquad. They target diplomatic facilities in central Asia. Octopus Malware is written in Delphi.
MuddyWater is a relatively new APT that surfaced in 2017. It has focused mainly on governmental targets in Iraq and Saudi Arabia, according to past telemetry. However, the group behind MuddyWater has been known to target other countries in the Middle East, Europe and the US.
GarrantyDecrypt Ransomware encrypt user files and ask for ransome in BTC. Encrypted files have .garrantydecrypt extension added to them.