How powerful is the valorant bypass ransom. Analysis New variant wannacry x Valorant Bypass Ransom
Overveiw
At dawn on Sunday we discovered a new ransomware called Valorant-Bypass, a new major threat emerging in the midst of the pandemic crisis. We decided to do a thorough analysis, comparing his behavior with that of his predecessor wannacry known for the damage caused in the industry.
Analysis:
first let’s start with the processes.
Valorant-Bypass
New WannaCry
At first, the number of processes created by wannacry is slightly higher.
In the next step we will compare the behavior of both in the system
Behavior graph
Valorant-Bypass
New WannaCry
The new variant of wannacry compared to the valorant-bypass has a much more aggressive behavior than the new threat.
Is the new variant of wannacry really more powerful than the new threat?
Lets check now the:
Registry activity
Valorant-Bypass
New WannaCry
Despite the aggressive behavior shown in the chart, in practice the new Valorant-bypass threat proved to be much more aggressive after being run on the system with thousands of changes to the windows registry
Now Let’s check the:
Files activity
Valorant-Bypass
New WannaCry
In the number of files created or modified, wannacry has a larger number of suspicious files.
However, Valorant-Bypass injected many more text files than its predecessor.
We don’t know how serious this injection of files is made.
Now let’s compare the
Network activity
Valorant-Bypass
New WannaCry
the new variant of wannacry did much more suspicious activity on the network than valorant-bypass however.
abstract
We have two major new threats to contain.
The valorant-bypass proves to be quite powerful even more than the wannacry and its new variane.
So we have to be very aware of how this new threat will behave in the coming months.
We still don’t know the origin of it. However, this new ransomware is an imminent threat.
With the greater number of processes and files created and modified, the extent and damage done to a single system can be much greater.
Reference: https://otx.alienvault.com/pulse/5eb8620c3ef8da2a40f905c6