Title
Monitoring Malware Activity on the LAN Network.
Abstract
Many security related organizations periodically publish current network and systems security information, with the lists of top malware programs. These lists raises the question how these threats spreads out, if the worms (the only threat with own communication abilities) are low or missing on these lists. The paper discuss the research on malware network activity, aimed to deliver the answer to the question, what is the main infection channel of modern malware, done with the usage of virtual honeypot systems on dedicated, unprotected network. Systems setup, network and systems monitoring solutions, results of over three months of network traffic and malware monitoring are presented, along with the proposed answer to our research question.
Year
DOI
Venue
2010
10.1007/978-3-642-13861-4_26
Communications in Computer and Information Science
Keywords
Field
DocType
network threats monitoring,malware detection,virtual honeypot systems
Publication,Honeypot,Research question,Computer science,Computer security,Network security,Computer network,Communication channel,Local area network,Network Access Control,Malware
Conference
Volume
ISSN
Citations 
79
1865-0929
3
PageRank 
References 
Authors
0.60
1
1
Name
Order
Citations
PageRank
Mirosław Skrzewski1204.22