| Item type |
Symposium(1) |
| 公開日 |
2015-10-14 |
| タイトル |
|
|
タイトル |
未知マルウェア検知に向けたマルウェア通信の実態調査 |
| タイトル |
|
|
言語 |
en |
|
タイトル |
Characterizing Network Behavior of Malware: Toward Detecting New Malware Families with Network Monitoring |
| 言語 |
|
|
言語 |
jpn |
| キーワード |
|
|
主題Scheme |
Other |
|
主題 |
MWS,Malware,Network Behavior,D3M |
| 資源タイプ |
|
|
資源タイプ識別子 |
http://purl.org/coar/resource_type/c_5794 |
|
資源タイプ |
conference paper |
| 著者所属 |
|
|
|
早稲田大学基幹理工学研究科/NTTコミュニケーションズ株式会社 |
| 著者所属 |
|
|
|
早稲田大学基幹理工学研究科 |
| 著者所属(英) |
|
|
|
en |
|
|
Graduate School of Fundamental Science and Engineering, Waseda University / NTT Communications Corporation |
| 著者所属(英) |
|
|
|
en |
|
|
Graduate School of Fundamental Science and Engineering, Waseda University |
| 著者名 |
畑田, 充弘
森, 達哉
|
| 著者名(英) |
Mitsuhiro, Hatada
Tatsuya, Mori
|
| 論文抄録 |
|
|
内容記述タイプ |
Other |
|
内容記述 |
膨大な数のマルウェアが多種多様な攻撃に利用され,効率的な解析のために動的解析システムが利用されている.その中でも危険性の高い新種のマルウェアへの対応を早期に行うために,既知マルウェアの自動分類や未知マルウェアの識別といった研究が行われている.本稿では,マルウェア通信に着目し,未知マルウェアの検知に向けた実態調査として,2014 年 12 月からの 6 ヶ月間において待受型及び巡回型ハニーポットで収集したマルウェア数万ファイルの動的解析時の通信データの解析結果を報告する. |
| 論文抄録(英) |
|
|
内容記述タイプ |
Other |
|
内容記述 |
Dynamic analysis system are widely used to efficiently analyze massive malware. In order to handle new threat on a preferential basis, researches on automated classification of known malware and detection of unknown malware have been conducted respectively. Several tens of thousands of malware were collected by server type honeypot and web crawler type honeypot from December 2014 to May 2015. In this paper, we report the statistics and distinctive trend of recent malware communication captured in our dynamic analysis environment. |
| 書誌情報 |
コンピュータセキュリティシンポジウム2015論文集
巻 2015,
号 3,
p. 520-527,
発行日 2015-10-14
|
| 出版者 |
|
|
言語 |
ja |
|
出版者 |
情報処理学会 |