Publicação:
Malware distributed collection and pre-classification system using honeypot technology

dc.contributor.authorGrégio, André R. A.
dc.contributor.authorOliveira, Isabela L. [UNESP]
dc.contributor.authorSantos, Rafael D. C.
dc.contributor.authorCansian, Adriano M. [UNESP]
dc.contributor.authorDeGeus, Paulo L.
dc.contributor.institutionUniversidade Estadual de Campinas (UNICAMP)
dc.contributor.institutionUniversidade Estadual Paulista (Unesp)
dc.contributor.institutionSão José dos Campos
dc.date.accessioned2014-05-27T11:23:55Z
dc.date.available2014-05-27T11:23:55Z
dc.date.issued2009-06-15
dc.description.abstractMalware has become a major threat in the last years due to the ease of spread through the Internet. Malware detection has become difficult with the use of compression, polymorphic methods and techniques to detect and disable security software. Those and other obfuscation techniques pose a problem for detection and classification schemes that analyze malware behavior. In this paper we propose a distributed architecture to improve malware collection using different honeypot technologies to increase the variety of malware collected. We also present a daemon tool developed to grab malware distributed through spam and a pre-classification technique that uses antivirus technology to separate malware in generic classes. © 2009 SPIE.en
dc.description.affiliationInstitute of Computing University of Campinas (UNICAMP), Campinas, SP
dc.description.affiliationUNESP - Universidade Estadual Paulista Sao Paulo State University Sao Jose do Rio Preto Campus
dc.description.affiliationComputing and Applied Mathematics Lab. National Institute for Space Research (INPE) São José dos Campos, SP
dc.description.affiliationUnespUNESP - Universidade Estadual Paulista Sao Paulo State University Sao Jose do Rio Preto Campus
dc.identifierhttp://dx.doi.org/10.1117/12.818310
dc.identifier.citationProceedings of SPIE - The International Society for Optical Engineering, v. 7344.
dc.identifier.doi10.1117/12.818310
dc.identifier.issn0277-786X
dc.identifier.lattes0095921943345974
dc.identifier.orcid0000-0003-4494-1454
dc.identifier.scopus2-s2.0-66749173635
dc.identifier.urihttp://hdl.handle.net/11449/71036
dc.language.isoeng
dc.relation.ispartofProceedings of SPIE - The International Society for Optical Engineering
dc.rights.accessRightsAcesso aberto
dc.sourceScopus
dc.subjectHoneyclients
dc.subjectHoneypots
dc.subjectInformation systems security
dc.subjectMalicious software
dc.subjectMalware collection
dc.subjectComputer software
dc.subjectInformation management
dc.subjectInformation systems
dc.subjectInternet
dc.subjectIntrusion detection
dc.subjectMining
dc.subjectComputer crime
dc.titleMalware distributed collection and pre-classification system using honeypot technologyen
dc.typeTrabalho apresentado em evento
dcterms.licensehttp://proceedings.spiedigitallibrary.org/ss/TermsOfUse.aspx
dspace.entity.typePublication
unesp.author.lattes0095921943345974[4]
unesp.author.orcid0000-0003-4494-1454[4]

Arquivos

Coleções