Skip to main content

Internet Forensic platform for tracking the money flow of financially-motivated malware

Objective

The Internet has become a key piece of any business activity. Criminal activity is not an exception. Some crimes previous to the Internet, such as thefts and scams, have found in the Internet the perfect tool for developing their activities. The Internet allows criminals hiding their real identity and the possibility to purchase specific tools for stealing sensitive data with a very low investment.

The overall objective of RAMSES is to design and develop a holistic, intelligent, scalable and modular platform for Law Enforcement Agencies (LEAs) to facilitate digital Forensic Investigations. The system will extract, analyse, link and interpret information extracted from Internet related with financially-motivated malware.

Customers, developers and malware victims will be included in order to obtain a better understanding of how and where malware is spread and to get to the source of the threat. To achieve these ambitious objectives, this project will rely on disruptive Big Data technologies to firstly extract and storage, and secondly look for patterns of fraudulent behaviour in enormous amounts of unstructured and structured data. We will focus on 2 case studies: ransomware and banking Trojans.

In order to this, RAMSES brings together the latest technologies to develop an intelligent software platform, combining scraping of public and deep web, detecting manipulation and steganalysis for images and videos, tracking malware payments, extraction and analysis of malware samples and Big Data analysis and visualizations tools.

Validation pilots will take place in three different EU countries (Portugal, Belgium and Spain) being the first a mono-LEA pilot in each site and the second a collaborative investigation pilot between several LEAs.

Commercial potential will be validated during the project supported by a feasibility study to assess determinants for the adoption of the platform and appropriate business models.

Call for proposal

H2020-FCT-2014-2015

See other projects for this call

Sub call

H2020-FCT-2015

Coordinator

POLITECNICO DI MILANO
Net EU contribution
€ 276 529,82
Address
Piazza Leonardo Da Vinci 32
20133 Milano
Italy

See on map

Region
Nord-Ovest Lombardia Milano
Activity type
Higher or Secondary Education Establishments
Non-EU contribution
€ 0,00

Participants (13)

Third-party

Legal entity other than a subcontractor which is affiliated or legally linked to a participant. The entity carries out work under the conditions laid down in the Grant Agreement, supplies goods or provides services for the action, but did not sign the Grant Agreement. A third party abides by the rules applicable to its related participant under the Grant Agreement with regard to eligibility of costs and control of expenditure.

FONDAZIONE POLITECNICO DI MILANO
Italy
Net EU contribution
€ 34 000,00
Address
Piazza Leonardo Da Vinci 32
20133 Milano

See on map

Region
Nord-Ovest Lombardia Milano
Activity type
Research Organisations
Non-EU contribution
€ 0,00
Ministério da Justiça
Portugal
Net EU contribution
€ 207 843,75
Address
Praça Do Comércio S/n
1149-019 Lisboa

See on map

Region
Continente Área Metropolitana de Lisboa Área Metropolitana de Lisboa
Activity type
Public bodies (excluding Research Organisations and Secondary or Higher Education Establishments)
Non-EU contribution
€ 0,00
UNIVERSITY OF KENT
United Kingdom
Net EU contribution
€ 471 487,50
Address
The Registry Canterbury
CT2 7NZ Canterbury, Kent

See on map

Region
South East (England) Kent East Kent
Activity type
Higher or Secondary Education Establishments
Non-EU contribution
€ 0,00
RISSC - CENTRO RICERCHE E STUDI SUSICUREZZA E CRIMINALITA ASSOCIAZIONE
Italy
Net EU contribution
€ 233 781,25
Address
Via Gioberti 40
10128 Torino

See on map

Region
Nord-Ovest Piemonte Torino
Activity type
Research Organisations
Non-EU contribution
€ 0,00
UNIVERSIDAD COMPLUTENSE DE MADRID
Spain
Net EU contribution
€ 627 125,00
Address
Avenida De Seneca 2
28040 Madrid

See on map

Region
Comunidad de Madrid Comunidad de Madrid Madrid
Activity type
Higher or Secondary Education Establishments
Non-EU contribution
€ 0,00
HOCHSCHULE FUR DEN OFFENTLICHEN DIENST IN BAYERN
Germany
Net EU contribution
€ 367 225,00
Address
Wagmullerstrasse 20
80539 Munchen

See on map

Region
Bayern Oberbayern München, Kreisfreie Stadt
Activity type
Higher or Secondary Education Establishments
Non-EU contribution
€ 0,00
TRILATERAL RESEARCH LTD
United Kingdom
Net EU contribution
€ 246 225,00
Address
One Knightsbridge Green Office 5.12, 5th Floor
SW1X 7QA London

See on map

SME

The organization defined itself as SME (small and medium-sized enterprise) at the time the Grant Agreement was signed.

Yes
Region
London Inner London — West Westminster
Activity type
Private for-profit entities (excluding Higher or Secondary Education Establishments)
Non-EU contribution
€ 105 525,00
TREELOGIC TELEMATICA Y LOGICA RACIONAL PARA LA EMPRESA EUROPEA SL

Participation ended

Spain
Net EU contribution
€ 289 845,18
Address
Parque Tecnologico De Asturias Parcela 30
33428 Llanera Asturias

See on map

SME

The organization defined itself as SME (small and medium-sized enterprise) at the time the Grant Agreement was signed.

Yes
Region
Principado de Asturias Asturias
Activity type
Private for-profit entities (excluding Higher or Secondary Education Establishments)
Non-EU contribution
€ 124 219,36
SERVICE PUBLIC FEDERAL INTERIEUR
Belgium
Net EU contribution
€ 281 906,25
Address
Rue De Louvain 1
1000 Brussels

See on map

Region
Région de Bruxelles-Capitale/Brussels Hoofdstedelijk Gewest Région de Bruxelles-Capitale/ Brussels Hoofdstedelijk Gewest Arr. de Bruxelles-Capitale/Arr. Brussel-Hoofdstad
Activity type
Public bodies (excluding Research Organisations and Secondary or Higher Education Establishments)
Non-EU contribution
€ 0,00
UNIVERSITAT DES SAARLANDES
Germany
Net EU contribution
€ 166 343,75
Address
Campus
66123 Saarbrucken

See on map

Region
Saarland Saarland Regionalverband Saarbrücken
Activity type
Higher or Secondary Education Establishments
Non-EU contribution
€ 0,00
Third-party

Legal entity other than a subcontractor which is affiliated or legally linked to a participant. The entity carries out work under the conditions laid down in the Grant Agreement, supplies goods or provides services for the action, but did not sign the Grant Agreement. A third party abides by the rules applicable to its related participant under the Grant Agreement with regard to eligibility of costs and control of expenditure.

CISPA - HELMHOLTZ-ZENTRUM FUR INFORMATIONSSICHERHEIT GGMBH
Germany
Net EU contribution
€ 135 250,00
Address
Stuhlsatzenhaus 5
66123 Saarbrucken

See on map

Region
Saarland Saarland Regionalverband Saarbrücken
Activity type
Research Organisations
Non-EU contribution
€ 0,00
MINISTERIO DEL INTERIOR
Spain
Net EU contribution
€ 138 000,00
Address
Calle Amador De Los Rios 7
28071 Madrid

See on map

Region
Comunidad de Madrid Comunidad de Madrid Madrid
Activity type
Public bodies (excluding Research Organisations and Secondary or Higher Education Establishments)
Non-EU contribution
€ 0,00
TREE TECHNOLOGY SA
Spain
Net EU contribution
€ 56 437,50
Address
De La Pomarada 76
33429 Siero

See on map

SME

The organization defined itself as SME (small and medium-sized enterprise) at the time the Grant Agreement was signed.

Yes
Region
Principado de Asturias Asturias
Activity type
Private for-profit entities (excluding Higher or Secondary Education Establishments)
Non-EU contribution
€ 24 187,50