Loading...
2019
Automated Link Tracing for Classification of Malicious Websites in Malware Distribution Networks
Automated Link Tracing for Classification of Malicious Websites in Malware Distribution Networks
한국정보처리학회
김용민, 임창균
논문정보
- Publisher
- JIPS(Journal of Information Processing Systems)
- Issue Date
- 2019-02-28
- Keywords
- -
- Citation
- -
- Source
- -
- Journal Title
- -
- Volume
- 15
- Number
- 1
- Start Page
- 100
- End Page
- 115
- DOI
- ISSN
- 1976913X
Abstract
Malicious code distribution on the Internet is one of the most critical Internet-based threats and distributiontechnology has evolved to bypass detection systems. As a new defense against the detection bypass technologyof malicious attackers, this study proposes the automated tracing of malicious websites in a malwaredistribution network (MDN). The proposed technology extracts automated links and classifies websites intomalicious and normal websites based on link structure. Even if attackers use a new distribution technology,website classification is possible as long as the connections are established through automated links. The use ofa real web-browser and proxy server enables an adequate response to attackers’ perception of analysisenvironments and evasion technology and prevents analysis environments from being infected by maliciouscode. The validity and accuracy of the proposed method for classification are verified using 20,000 links, 10,000each from normal and malicious websites.
- 전남대학교
- KCI
- JIPS(Journal of Information Processing Systems)
저자 정보
| 이름 | 소속 |
|---|---|
| 김용민 | 문화콘텐츠학부 |
| 임창균 | 전기컴퓨터공학부 |