HoneyBow:an automated malware collection tool based on the high-interaction honeypot principle

Malware has become one of the severest threats to the public Internet.To deal with the malware breakout ef-fectively as early as possible,an automated malware collection solution must be implemented as a precondition.An automated malware collection tool was presented based on the high-interaction ho...

Full description

Saved in:
Bibliographic Details
Main Authors: ZHUGE Jian-wei1, HAN Xin-hui1, ZHOU Yong-lin2, SONG Cheng-yu1, GUO Jin-peng1, ZOU Wei1
Format: Article
Language:zho
Published: Editorial Department of Journal on Communications 2007-01-01
Series:Tongxin xuebao
Subjects:
Online Access:http://www.joconline.com.cn/zh/article/74655143/
Tags: Add Tag
No Tags, Be the first to tag this record!
Description
Summary:Malware has become one of the severest threats to the public Internet.To deal with the malware breakout ef-fectively as early as possible,an automated malware collection solution must be implemented as a precondition.An automated malware collection tool was presented based on the high-interaction honeypot principle called HoneyBow.Comparing with the Nepenthes platform based on the low-interaction honeypot principle,HoneyBow has its advantages on wilder range of captured malware samples and the capability of collecting unknown malware samples,which are vali-dated by the experiment results from wild malware collection and the case of Mocbot dealment.
ISSN:1000-436X