Skip to content

Reactive Anti-Ransomware with I/O File Monitor, Entropy, BitByte, Trap, MagicByte and more...

Notifications You must be signed in to change notification settings

wcsf-rd/anti-ransomware

Repository files navigation

Reactive Anti-Ransomware

AdrenalineRX is designed to detect and intervene when a ransomware, which has managed to evade traditional security measures, begins to encrypt the hard disk. This approach allows AdrenalineRX to offer an additional level of protection against ransomware.

This software utilizes concepts ( and much more 🚀🚀 ) described in this research

💾Unlimited Free for Personal Use Only💾

Download Latest Release

AdrenalineRX_3.5.0200.3.zip

Features

  • 💡 Lightweight
  • 🛠️ Configurable
  • 🖥️ IO_MONITOR Mode for fine-tuning
  • 📝 Log Files
  • 🔄 Filesystem IO Activity Rates per Second and Minute
  • 🧮 File Entropy and BitByte Analysis
  • 🧾 Magic Byte and Extension Verification
  • 🐤 Canary Trap
  • 🛑 Path exclusion
  • 🔊 Receive Immediate Notifications via Sound Alarms
  • 🚀 Shutdown upon Detection of Encryption Start
  • 💻 Written in C++

Latest Update

3.5.200.3 buxfix in BitByte profile loader
3.5.200.2 added BitByte Entropy profile
3.5.200.1 bitMagic anti-bypass

Adrenaline RX

image

Test with my ransomware simulator:

encryptTest.exe aes128|aes256 folder
example: encryptTest.exe aes256 c:\users\username\ransomware\test

Test with Nextron ransomware simulator:

https://github.com/NextronSystems/ransomware-simulator/releases
🔻In the video, AdrenalineRX loads an MP3 sound alarm when files begin to be encrypted by ransomware that was not blocked by the MS AV.

2024-07-02.13-44-24.mp4

Automatic Shutdown

When AdrenalineRX detects harmful activity, it can automatically initiate the system shutdown function to prevent further damage and safeguard data integrity. This automatic shutdown feature is designed to promptly intervene in critical situations, protecting the system and data from the expansion of damage caused by malicious activities.

To-Do List

🐧 Craft the Linux Version 🐧

Contact

LinkedIn

About

Reactive Anti-Ransomware with I/O File Monitor, Entropy, BitByte, Trap, MagicByte and more...

Topics

Resources

Stars

Watchers

Forks