Creating check for Windows FileServer to see if a cryptotrojaner is running

You might would like to check typeperf at windows [ typeperf -q to get a full list ]

Example: typeperf “Logischer Datenträger(*)\Mittlere Bytes/Übertragung”

"12/19/2019 14:38:57.069","0.000000","7021.714286","0.000000","7021.714286"
"12/19/2019 14:38:58.081","0.000000","0.000000","0.000000","0.000000"
"12/19/2019 14:38:59.090","0.000000","28672.000000","0.000000","28672.000000"
"12/19/2019 14:39:00.094","0.000000","87040.000000","0.000000","87040.000000"
"12/19/2019 14:39:01.103","0.000000","23210.666667","0.000000","23210.666667"
"12/19/2019 14:39:02.113","0.000000","0.000000","0.000000","0.000000"
"12/19/2019 14:39:03.123","0.000000","10053.818182","0.000000","10053.818182"