Ransomware encrypts files to extort payment. Huorong monitors encryption behavior through decoy folders and blocks any process that starts rewriting files in bulk.
Decoy engine
Decoy files are placed in key folders. Any unauthorized access triggers an immediate alert and block.
- Real-time decoy file monitoring
- Instant block of bulk rewrite behavior
- Automatic isolation of ransomware processes
Protected folders
Add documents, design assets or databases to the protected list so unauthorized programs cannot write to them.
- Custom protected folders
- Read and write permissions per program
- Complete log of blocked attempts
FAQ
My files are already encrypted. What now?
Disconnect from the network and stop writing to disk, then contact support. Huorong keeps blocking logs for analysis.
Will it block my office software?
When an unknown program runs for the first time you get a prompt, and your allow decision is remembered.