Title
Flow Based Algorithm for Malware Traffic Detection.
Abstract
Detection of malware operation on user's system was always a difficult task. With modern trends in stealth malware design (meta- and polymorphism modified code, multiple short series) monitoring of network traffic becomes one of the surest ways of malware operation detection. The paper presents the concept of outbound net flows analysis for malware traffic exposure to facilitate its operation detection. System network activity monitoring, algorithm for user's flows detection in recorded net flows traffic and some results of it operation on clean and malware infected test systems are described.
Year
DOI
Venue
2011
10.1007/978-3-642-21771-5_29
Communications in Computer and Information Science
Keywords
Field
DocType
malware detection,network flow monitoring,outbound web-flows
Computer science,Flow (psychology),Computer network,Algorithm,Real-time computing,Malware,Network activity
Conference
Volume
ISSN
Citations 
160
1865-0929
2
PageRank 
References 
Authors
0.38
6
1
Name
Order
Citations
PageRank
Mirosław Skrzewski1204.22