Official Guide

Complete documentation for installing, configuring, and using AnomalyDetector Pro v2.1.

1. System Requirements

To ensure optimal performance of the real-time detection engine, we recommend the following configuration:

  • OS: Windows 10 (Build 19041+) or Windows 11.
  • Processor: Intel Core i3 / AMD Ryzen 3 or higher (x64).
  • RAM: 4 GB minimum (8 GB recommended for extensive logging).
  • Network: Ethernet or Wi-Fi adapter with promiscuous mode support (supported by most modern cards).
  • Permissions: Administrator privileges (for installation and Firewall management).

2. Step-by-Step Installation

Step 1: Download & Start

Download the official installer Setup_AnomalyDetectorPro.exe from our homepage. Double-click to start.

Security Note: If Windows shows a blue screen saying "Windows protected your PC", click More info and then Run anyway. This is normal for new security software.

Step 2: Npcap Component (Critical)

During installation, the wizard will check if you have Npcap installed. This is the packet capture engine (the "ears" of the program).

  • If the installer launches the Npcap wizard, follow the instructions.
  • IMPORTANT: Make sure to check the box:
    [x] Install Npcap in WinPcap API-compatible Mode.

Step 3: Completion

Once completed, you will find the "AnomalyDetector" icon on your desktop and start menu.

3. First Steps

When opening the application for the first time, you will see the Dashboard.

Interface Selection

The application will attempt to automatically detect your active network card (Wi-Fi or Ethernet). You will see the interface name in the top bar (e.g., Intel(R) Wi-Fi 6 AX200).

If no traffic is detected: restart the application or verify that Npcap was installed correctly.

Traffic Graph

The central graph shows real-time data volume (Packets/second). Sudden spikes may indicate heavy downloads or DoS attacks.

4. Key Features

Threat Map (Geo-Fence)

In the "Map" tab, each red dot represents an external connection. We trace IPs (GeoIP) to show you physically where the servers communicating with your PC are located.

Tactical Use: If you see connections to unusual countries while not browsing, it could be malware sending data ("Phone Home").

Active Defense (Firewall)

The system analyzes patterns. If it detects a Port Scan (someone looking for vulnerabilities in your network), the system can automatically block that IP using the native Windows Firewall.

This feature requires PRO License.

5. Activate PRO Version

The Community version is great for monitoring, but the PRO version takes active measures.

  1. Go to the side menu and click on Settings (⚙).
  2. Click the "Activate PRO" button.
  3. Copy and paste the license key you received upon purchase (format ANOMALY-PRO-XXXX).

Immediate Benefits:

  • ✅ Automatic attacker blocking.
  • ✅ Background mode (System Tray).
  • ✅ Unlimited historical logs.

6. Common Troubleshooting

Error: "No interfaces found" / "DLL load failed"

Cause: Npcap is not installed or the service is not running.

Solution: Reinstall AnomalyDetector and ensure you accept the Npcap installation. If it persists, open a terminal (CMD) as Admin and run net start npcap.

Application opens and closes immediately

Cause: Permission conflict when writing logs.

Solution: Always run the program as Administrator (Right click -> Run as administrator). Error logs are saved in %APPDATA%/DetectorAnomalias/error.log.

Map looks gray or doesn't load

Cause: No internet connection or blocked by Firewall.

Solution: The map requires internet to download tiles. Check your connection.