Official Guide
Complete documentation for installing, configuring, and using AnomalyDetector Pro v2.1.
1. System Requirements
To ensure optimal performance of the real-time detection engine, we recommend the following configuration:
- OS: Windows 10 (Build 19041+) or Windows 11.
- Processor: Intel Core i3 / AMD Ryzen 3 or higher (x64).
- RAM: 4 GB minimum (8 GB recommended for extensive logging).
- Network: Ethernet or Wi-Fi adapter with promiscuous mode support (supported by most modern cards).
- Permissions: Administrator privileges (for installation and Firewall management).
2. Step-by-Step Installation
Step 1: Download & Start
Download the official installer Setup_AnomalyDetectorPro.exe from our homepage. Double-click to start.
Step 2: Npcap Component (Critical)
During installation, the wizard will check if you have Npcap installed. This is the packet capture engine (the "ears" of the program).
- If the installer launches the Npcap wizard, follow the instructions.
- IMPORTANT: Make sure to check the box:
[x] Install Npcap in WinPcap API-compatible Mode.
Step 3: Completion
Once completed, you will find the "AnomalyDetector" icon on your desktop and start menu.
3. First Steps
When opening the application for the first time, you will see the Dashboard.
Interface Selection
The application will attempt to automatically detect your active network card (Wi-Fi or Ethernet). You will see the interface name in the top bar (e.g., Intel(R) Wi-Fi 6 AX200).
If no traffic is detected: restart the application or verify that Npcap was installed correctly.
Traffic Graph
The central graph shows real-time data volume (Packets/second). Sudden spikes may indicate heavy downloads or DoS attacks.
4. Key Features
Threat Map (Geo-Fence)
In the "Map" tab, each red dot represents an external connection. We trace IPs (GeoIP) to show you physically where the servers communicating with your PC are located.
Tactical Use: If you see connections to unusual countries while not browsing, it could be malware sending data ("Phone Home").
Active Defense (Firewall)
The system analyzes patterns. If it detects a Port Scan (someone looking for vulnerabilities in your network), the system can automatically block that IP using the native Windows Firewall.
This feature requires PRO License.
5. Activate PRO Version
The Community version is great for monitoring, but the PRO version takes active measures.
- Go to the side menu and click on Settings (⚙).
- Click the "Activate PRO" button.
- Copy and paste the license key you received upon purchase (format
ANOMALY-PRO-XXXX).
Immediate Benefits:
- ✅ Automatic attacker blocking.
- ✅ Background mode (System Tray).
- ✅ Unlimited historical logs.
6. Common Troubleshooting
Error: "No interfaces found" / "DLL load failed"
Cause: Npcap is not installed or the service is not running.
Solution: Reinstall AnomalyDetector and ensure you accept the Npcap installation. If it persists, open a terminal (CMD) as Admin and run net start npcap.
Application opens and closes immediately
Cause: Permission conflict when writing logs.
Solution: Always run the program as Administrator (Right click -> Run as administrator). Error logs are saved in %APPDATA%/DetectorAnomalias/error.log.
Map looks gray or doesn't load
Cause: No internet connection or blocked by Firewall.
Solution: The map requires internet to download tiles. Check your connection.