Skip to content

A little windows ransomware simulator based on CashCat that will rename .TXT files to .BlueAngel to simulate ransomware behavior for testing various monitoring tool. The intention is to enhance capabilities by adding recursive searching, network search et al.

Notifications You must be signed in to change notification settings

Fruxlabs/BlueAngel

 
 

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

52 Commits
 
 
 
 
 
 
 
 
 
 

Repository files navigation

BlueAngel : The improved "Ransomware" Simulator

Based on cashcat, this is an improvement over it and intends to make it a bit more sophisticated.

VERY IMPORTANT NOTE

THIS IS NOT A REAL RANSOMWARE! IT LITERALLY DOES NOT MATCH ANY REAL DEFINITION OF RANSOMWARE! ALL IT DOES IS RENAME files with the extension of .TXT to .LOCKY to test file activity monitoring tools. Nothing gets Encrypted!

Requirements

  • Tested on Windows 7, 10, Server 2012R2, 2016+
  • Requires at least .NET 4.6.1

TO DO

  • Add network discovery capabilities
  • Network propagation

About

A little windows ransomware simulator based on CashCat that will rename .TXT files to .BlueAngel to simulate ransomware behavior for testing various monitoring tool. The intention is to enhance capabilities by adding recursive searching, network search et al.

Resources

Stars

Watchers

Forks

Packages

No packages published

Languages

  • C# 100.0%