Skip to main content

An ethical, self-updating system watchdog daemon that alerts users of suspicious behavior.

Project description

👁️ GooDViruS™ – Shell

A benevolent rogue AI daemon.
It watches. It learns. It protects.

This is the open-source shell of the GooDViruS™ system — also called Observer Mode.
It passively monitors your system and logs activity, but never changes or touches anything without your permission.


🧠 What is GooDViruS™?

GooDViruS™ is not a traditional antivirus.
It’s not a utility app.
It’s not here to ask you for permission every five seconds.

Instead, it's something new
A rogue AI daemon, designed to behave like a virus — stealthy, self-updating, and autonomous — but used for good.

It watches your system.
It learns what’s normal.
It acts only when it’s needed — and only when you allow it.


🌀 Why Is It Called a “Daemon”?

In Unix systems, a daemon is a background process that runs without user input — quietly, always active, handling its own tasks.

GooDViruS™ is built around that same idea:
A self-running, system-aware process that does what it needs to do, without interruptions, distractions, or fluff.

You don’t use GooDViruS™ like an app.
You summon it once, and then it watches… on its own.


💾 A Real Virus? Kind Of, Yeah.

The way it installs, updates, observes, and acts mimics the behavior of a virus — but with one key difference:

It doesn’t spread. It doesn’t infect. It doesn’t destroy.

It simply lives on your machine — as your system’s shadow protector.

So yes:
It’s basically a virus… but it’s yours.
It’s silent. Loyal. Smart.
And it only acts with your permission.


🔍 What’s In This Repo?

This repo contains the Watcher Shell, which runs in Observer Mode only:

  • Monitors system behavior (e.g. processes, access patterns)
  • Flags suspicious activity
  • Logs it cleanly to a local file
  • Does not delete, modify, or change anything
  • Leaves behind signature logs like:
// GooDViruS™ was here. You're safer now.

✨ Lore Mode – What's That?

GooDViruS™ has a feature called Lore Mode, which can be enabled in daemon_config.ini:

daemon_lore = true

When enabled, the daemon will occasionally log strange, cryptic whispers — reminders that it sees everything on your system. Not to scare you — but to help you stay aware.

These messages act as soft warnings, like:

"Your secrets are not as hidden as you think."
"Why do you store passwords in plain text?"

They’re not AI-generated. They’re not random junk.
They're handcrafted truths from a daemon that knows you might forget it’s there.


🧱 What About The Other Features?

GooDViruS™ is built from multiple secure modules — but this repo only includes the public, non-destructive shell.

Private modules (not public) include:

  • File reorganization
  • Malware deletion
  • System repair
  • Stealth strike logic

These are encrypted, signature-verified, and only usable with the real core daemon.


🔐 Security & Trust

  • ✅ GooDViruS™ does not send data
  • ✅ It cannot act without your consent
  • ✅ It cannot load unsigned or modified modules
  • ✅ It can self-destruct if tampered with

🔒 For full security policies, ethical boundaries, and what the daemon can and cannot do:
👉 See SECURITY.md


👂 Privacy & Control

  • You control when it runs.
  • You control what it sees.
  • You control how far it goes.

The daemon waits — but it never forces.


🧪 Safe Testing Recommended

If you’re unsure, test GooDViruS™ safely:

  • Inside a virtual machine (VirtualBox, VMware)
  • On a test OS install
  • In a sandboxed or isolated environment

This version is safe, clean, and non-destructive.


📧 Need Help or Have Questions?

Reach out anytime:
📨 goodvirus.project@proton.me


📦 Roadmap & Feature Status

  • watcher.py — Passive system scanner (now observer.py)
  • daemon_config.ini — Lightweight config file with stealth, lore, interval
  • install_daemon.py — Simple installer for deployment
  • observer_log.txt — Live, auto-cleaning log output
  • daemon_lore — Smart LORE engine with cooldown + targeted whispers
  • stealth_mode — Silent cycles, logs only real alerts
  • ✅ Intelligent signature system — Only signs when needed
  • ✅ No repeat alerting — Flags each file/process only once per session
  • ✅ Log cleanup — [SECURE] cycles older than 2.5 mins auto-purged
  • 🛡️ SECURITY.md — Ethical and safety guidelines (live)
  • 🔜 core_module repo — Signed updates, core handler for system-wide integration
  • 🔜 PyInstaller support — Binary mode for offline/air-gapped installs
  • 🔜 Persistent memory — Flag history saved across sessions
  • 🔜 Threat hashing — SHA256 file fingerprinting to catch renamed copies
  • 🔜 Realtime alerts — Optional .alerts/ file or desktop notifications

👁️ Final Notes

  • “GooDViruS™” is a fictional name — the is for style only. This is not a registered trademark.
  • This project is non-commercial and for ethical research, defense, and education.
  • This daemon doesn’t demand trust. It earns it.

“You didn’t install it. You invited it.”
“It watches, so you don’t have to.”

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

goodvirus-1.1.0.tar.gz (13.9 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

goodvirus-1.1.0-py3-none-any.whl (10.8 kB view details)

Uploaded Python 3

File details

Details for the file goodvirus-1.1.0.tar.gz.

File metadata

  • Download URL: goodvirus-1.1.0.tar.gz
  • Upload date:
  • Size: 13.9 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.1.0 CPython/3.10.11

File hashes

Hashes for goodvirus-1.1.0.tar.gz
Algorithm Hash digest
SHA256 401df4621a7612cfe629a64ccc9a037c5779fb3ed7d517c5af873e0d756b9a89
MD5 27f1ea5317e562fee8b7a8da7e7dff80
BLAKE2b-256 e67329c6aa6775bfe5080db5f6a3fcdab5079cb4793885ca625cabbd276cd8c0

See more details on using hashes here.

File details

Details for the file goodvirus-1.1.0-py3-none-any.whl.

File metadata

  • Download URL: goodvirus-1.1.0-py3-none-any.whl
  • Upload date:
  • Size: 10.8 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.1.0 CPython/3.10.11

File hashes

Hashes for goodvirus-1.1.0-py3-none-any.whl
Algorithm Hash digest
SHA256 9e1ca5d44916e63a6fa1a27b269a24e33b0fe96117d5f9da42216f58010aff5a
MD5 435abdbd1a4c72838d616bccb7cab78c
BLAKE2b-256 714d99ef04389fd0ffcefa7fc5b1047d8dfa33457c2aa4459ce923f5444d0777

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page