Is it possible to detect ransomware before it causes damage? Good to say we have all backups. However, this does result in about an hours worth of work while the backups are being restored.
So my question is, how do I go about detecting ransomware before it starts encrypting files?
You want to detect an alert system or a way to test a file?
You may try with FileAudit.