Cybercrime: The Case of Obfuscated Malware

Cybercrime: The Case of Obfuscated Malware
复制标题

网络犯罪:混淆恶意软件案例

DOI:
--
复制
发表时间:
2011
期刊:
ICGS3/e-Democracy
影响因子:
--
通讯作者:
Ammar Alazab
Ammar Alazab
中科院分区:
--
文献类型:
--
作者:
M. Alazab;S. Venkatraman;P. Watters;M. Alazab;Ammar Alazab

文献摘要

被引文献

相似文献

近年来,网络犯罪迅速发展,恶意软件是计算机的主要安全威胁之一,从很早的时候就存在。人们缺乏对此类恶意软件威胁的理解,也不知道在实现安全防护和检测威胁时可以使用哪些机制。本文的主要贡献是通过调查混淆恶意软件所采用的不同技术来解决这个问题,因为它们越来越普遍,并且越来越复杂,具有零日漏洞。特别是,通过采用某些有效的检测方法,我们的调查显示了网络罪犯如何利用文件系统漏洞将隐藏的恶意软件注入系统。本文还介绍了Zeus僵尸网络的最新发展趋势,以及异常检测在解决新一代Zeus恶意软件中的重要性。
Cybercrime has rapidly developed in recent years and malware is one of the major security threats in computer which have been in existence from the very early days. There is a lack of understanding of such malware threats and what mechanisms can be used in implementing security prevention as well as to detect the threat. The main contribution of this paper is a step towards addressing this by investigating the different techniques adopted by obfuscated malware as they are growingly widespread and increasingly sophisticated with zero-day exploits. In particular, by adopting certain effective detection methods our investigations show how cybercriminals make use of file system vulnerabilities to inject hidden malware into the system. The paper also describes the recent trends of Zeus botnets and the importance of anomaly detection to be employed in addressing the new Zeus generation of malware.