Depending on its configuration, the Ransomguard Engine can automatically block any malicious behavior linked to a ransomware attack.
Ransomware Detection Engine Ransomguard
An engine dedicated to ransomware identification based on behavioral analysis.
Detecting malicious behavior
Automated ransomware blocking
The Ransomguard Engine protects against ransomware attacks by combining complementary detection methods:
- Deposit of Canary files and detection of their modification or deletion, and possibility to automatically block any suspicious process;
- OS activity heuristics to identifiy ransomware-related behavior (e.g., abnormal file read, write, or delete speeds, or suspicious file extensions).
Find out more
EDR CSPN Certified by ANSSI
Perks of Sigma and YARA rules in an EDR
Sigma and YARA are rule formats for detecting threats – malicious behaviors and files (or binaries) respectively. What are the…
EDR with AI Detection Engine – Ashley
EDR with DLL Sideloading Detection Engine – Sidewatch
EDR with Signatures Detection Engine – YARA Rules
EDR with Behavioral Detection Engine – Sigma Rules