How powerful is the valorant bypass ransom. Analysis New variant wannacry x Valorant Bypass Ransom

NatSec
3 min readMay 10, 2020

Overveiw

At dawn on Sunday we discovered a new ransomware called Valorant-Bypass, a new major threat emerging in the midst of the pandemic crisis. We decided to do a thorough analysis, comparing his behavior with that of his predecessor wannacry known for the damage caused in the industry.

Analysis:

first let’s start with the processes.

Valorant-Bypass

New WannaCry

At first, the number of processes created by wannacry is slightly higher.

In the next step we will compare the behavior of both in the system

Behavior graph

Valorant-Bypass

New WannaCry

The new variant of wannacry compared to the valorant-bypass has a much more aggressive behavior than the new threat.
Is the new variant of wannacry really more powerful than the new threat?

Lets check now the:

Registry activity

Valorant-Bypass

New WannaCry

Despite the aggressive behavior shown in the chart, in practice the new Valorant-bypass threat proved to be much more aggressive after being run on the system with thousands of changes to the windows registry

Now Let’s check the:

Files activity

Valorant-Bypass

New WannaCry

In the number of files created or modified, wannacry has a larger number of suspicious files.
However, Valorant-Bypass injected many more text files than its predecessor.
We don’t know how serious this injection of files is made.
Now let’s compare the

Network activity

Valorant-Bypass

New WannaCry

the new variant of wannacry did much more suspicious activity on the network than valorant-bypass however.

abstract

We have two major new threats to contain.
The valorant-bypass proves to be quite powerful even more than the wannacry and its new variane.
So we have to be very aware of how this new threat will behave in the coming months.
We still don’t know the origin of it. However, this new ransomware is an imminent threat.

With the greater number of processes and files created and modified, the extent and damage done to a single system can be much greater.

Reference: https://otx.alienvault.com/pulse/5eb8620c3ef8da2a40f905c6

--

--