首页> 外文会议>2010 IEEE International Conference on Service-Oriented Computing and Applications >Life-cycle monitoring scheme of malware download sites for websites
【24h】

Life-cycle monitoring scheme of malware download sites for websites

机译:网站恶意软件下载站点的生命周期监控方案

获取原文
获取外文期刊封面目录资料

摘要

To protect many websites on cloud computing environments, we propose a scheme for monitoring the life cycles of malware download sites for websites and report the actual life cycles as monitored by web honeypots carrying vulnerable web applications. Recently, attackers have been using a large number of websites as hopping sites to attack other websites and user terminals. To create hopping sites, many attackers use vulnerabilities in web applications to force victims to download malware. To protect websites from these attacks, technologies for filtering access from websites to malware download sites, which are set by attackers, are effective. However, to update the filtering configuration, it is necessary to periodically identify malware since malware may be changed or removed from malware download sites. We propose a scheme for automatically updating the filtering configuration. It is based on dynamic malware analysis using attack re-creation by coupling the attack collection function (i.e., a web honeypot), attack analysis function (i.e., web attack analyzer), and filter management function (i.e., site monitoring system). Our investigations revealed that some malware files on malware download sites are replaced with other types of malware. In addition, they revealed that the life cycles of malware download sites are similar to those of normal web pages.
机译:为了保护云计算环境上的许多网站,我们提出了一种方案,用于监视网站的恶意软件下载站点的生命周期,并报告由携带易受攻击的Web应用程序的网络蜜罐所监视的实际生命周期。近来,攻击者已经使用大量网站作为跳跃站点来攻击其他网站和用户终端。为了创建跳跃站点,许多攻击者使用Web应用程序中的漏洞来迫使受害者下载恶意软件。为了保护网站免受这些攻击,攻击者设置的用于过滤网站对恶意软件下载网站的访问的技术是有效的。但是,由于可能会更改恶意软件或从恶意软件下载站点中删除恶意软件,因此必须定期识别恶意软件,以更新过滤配置。我们提出了一种自动更新过滤配置的方案。它基于动态恶意软件分析,通过结合攻击收集功能(即Web蜜罐),攻击分析功能(即Web攻击分析器)和过滤器管理功能(即站点监视系统)来利用攻击重新创建。我们的调查显示,恶意软件下载站点上的某些恶意软件文件已替换为其他类型的恶意软件。此外,他们还发现,恶意软件下载站点的生命周期与普通网页的生命周期相似。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号