Skip to main content

Internet Forensic platform for tracking the money flow of financially-motivated malware

Objective

The Internet has become a key piece of any business activity. Criminal activity is not an exception. Some crimes previous to the Internet, such as thefts and scams, have found in the Internet the perfect tool for developing their activities. The Internet allows criminals hiding their real identity and the possibility to purchase specific tools for stealing sensitive data with a very low investment.

The overall objective of RAMSES is to design and develop a holistic, intelligent, scalable and modular platform for Law Enforcement Agencies (LEAs) to facilitate digital Forensic Investigations. The system will extract, analyse, link and interpret information extracted from Internet related with financially-motivated malware.

Customers, developers and malware victims will be included in order to obtain a better understanding of how and where malware is spread and to get to the source of the threat. To achieve these ambitious objectives, this project will rely on disruptive Big Data technologies to firstly extract and storage, and secondly look for patterns of fraudulent behaviour in enormous amounts of unstructured and structured data. We will focus on 2 case studies: ransomware and banking Trojans.

In order to this, RAMSES brings together the latest technologies to develop an intelligent software platform, combining scraping of public and deep web, detecting manipulation and steganalysis for images and videos, tracking malware payments, extraction and analysis of malware samples and Big Data analysis and visualizations tools.

Validation pilots will take place in three different EU countries (Portugal, Belgium and Spain) being the first a mono-LEA pilot in each site and the second a collaborative investigation pilot between several LEAs.

Commercial potential will be validated during the project supported by a feasibility study to assess determinants for the adoption of the platform and appropriate business models.

Field of science

  • /natural sciences/computer and information sciences/software/malicious software
  • /natural sciences/computer and information sciences/data science/data analysis
  • /natural sciences/computer and information sciences/computer security/data protection
  • /natural sciences/computer and information sciences/internet
  • /natural sciences/computer and information sciences/data science/big data
  • /social sciences/law/law enforcement agencies

Call for proposal

H2020-FCT-2015
See other projects for this call

Funding Scheme

IA - Innovation action

Coordinator

TREELOGIC TELEMATICA Y LOGICA RACIONAL PARA LA EMPRESA EUROPEA SL
Address
Parque Tecnologico De Asturias
33428 Llanera Asturias
Spain
Activity type
Private for-profit entities (excluding Higher or Secondary Education Establishments)
EU contribution
€ 386 312,50

Participants (10)

Ministério da Justiça
Portugal
EU contribution
€ 207 843,75
Address
Praça Do Comércio S/n
1149-019 Lisboa
Activity type
Public bodies (excluding Research Organisations and Secondary or Higher Education Establishments)
UNIVERSITY OF KENT
United Kingdom
EU contribution
€ 471 487,50
Address
The Registry Canterbury
CT2 7NZ Canterbury, Kent
Activity type
Higher or Secondary Education Establishments
RISSC - CENTRO RICERCHE E STUDI SUSICUREZZA E CRIMINALITA ASSOCIAZIONE
Italy
EU contribution
€ 233 781,25
Address
Via Gioberti 40
10128 Torino
Activity type
Research Organisations
UNIVERSIDAD COMPLUTENSE DE MADRID
Spain
EU contribution
€ 627 125
Address
Avenida De Seneca 2
28040 Madrid
Activity type
Higher or Secondary Education Establishments
HOCHSCHULE FUR DEN OFFENTLICHEN DIENST IN BAYERN
Germany
EU contribution
€ 367 225
Address
Wagmullerstrasse 20
80539 Munchen
Activity type
Higher or Secondary Education Establishments
TRILATERAL RESEARCH LTD
United Kingdom
EU contribution
€ 246 225
Address
One Knightsbridge Green Office 5.12, 5Th Floor
SW1X 7QA London
Activity type
Private for-profit entities (excluding Higher or Secondary Education Establishments)
POLITECNICO DI MILANO
Italy
EU contribution
€ 270 500
Address
Piazza Leonardo Da Vinci 32
20133 Milano
Activity type
Higher or Secondary Education Establishments
SERVICE PUBLIC FEDERAL INTERIEUR
Belgium
EU contribution
€ 281 906,25
Address
Rue De Louvain 1
1000 Brussels
Activity type
Public bodies (excluding Research Organisations and Secondary or Higher Education Establishments)
UNIVERSITAT DES SAARLANDES
Germany
EU contribution
€ 301 593,75
Address
Campus
66123 Saarbrucken
Activity type
Higher or Secondary Education Establishments
MINISTERIO DEL INTERIOR
Spain
EU contribution
€ 138 000
Address
Calle Amador De Los Rios 7
28071 Madrid
Activity type
Public bodies (excluding Research Organisations and Secondary or Higher Education Establishments)