The Morro Audit > Alerts > CONFIG page allows you to enable ransomware detection and configures that action upon such detection.

Enable the Ransomware Detection option to set up alerts when one of the thousands of ransomware file extensions is detected. Morro Data maintains a list of known ransomware file extensions which by no means is complete and may not be up-to-date. You can also set up Whitelist and Blacklist on top of the default lis. Other than receiving email alerts, the admin can optionally shut down the CacheDrive immediately upon detection of such file extensions or trigger the CahceDrive to Safe Mode.