Change Log.
--New third party backup solutions have been added to the list that will be disabled along with some antivirus services.
--Client now will not only self delete at end of encryption but also physically erase its own sectors in the hard drive to make forensics more difficult.
--A fast files permission changing feature procedure will help capture more files.
--Ransom note will now be copied earlier ate the very start of encryption both in windows logon screen as well as in a hidden location where it will be shown in every windows restart. These two measures will help to profit from partially encrypted targets (in case you haven't use persistence option to asure ransomware restarting after windows restart or computer turned off).
--New feature will allow to lock user access from his windows account.
--Bootlocker that will show the ransom note at boot level (not available in UEFI Secure Boot protected OS).
--Some images of the new features:
https://i.postimg.cc/T3kmtW58/Uof6de7.png (LogOn Ransom Note configuration)
https://i.postimg.cc/yxzSDmtR/QvCaTEz.png (LogOn Ransom Note shown)
https://i.postimg.cc/T1q5gyv4/tuT6DQ8.png (User account locked)
https://i.imgur.com/rsdjKE3.png (Boot Locked).