• DocumentCode
    2999075
  • Title

    An Investigation Towards Worms Detection Approaches over Network

  • Author

    Anbar, Mohammed ; Manasrah, Ahmed

  • Author_Institution
    Nat. Adv. IPv6 Centre of Excellence (NAV6), Univ. Sains Malaysia, Minden, Malaysia
  • fYear
    2011
  • fDate
    March 30 2011-April 1 2011
  • Firstpage
    266
  • Lastpage
    269
  • Abstract
    Nowadays, worms and other outside threats in the network recognized to be a serious and unexpected behavior. The main issue was addressed based on the behavioral patterns of worms that reflect application communications typical of worms. This representation of worm´s behavior differs from those used in contemporary enterprise postures, which reliance on a particular type of signature-based intrusion detection and the behavioral detection approach contrasts from this form of signature-based detection. Thus, this paper introduced the traditional worm´s detection approaches. Meanwhile, the paper suggested a worm detection approach based on worm behaviors that consist on network scanning detection approach, network worm´s correlation approach, and signature correlation approach.
  • Keywords
    computer network security; invasive software; network scanning detection; network worm correlation; signature correlation; worm behavior; worms detection; Accuracy; Algorithm design and analysis; Artificial neural networks; Computers; Correlation; Grippers; Internet; IDS; Signature detection; Worm´s detection approach; correlation approach;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computer Modelling and Simulation (UKSim), 2011 UkSim 13th International Conference on
  • Conference_Location
    Cambridge
  • Print_ISBN
    978-1-61284-705-4
  • Electronic_ISBN
    978-0-7695-4376-5
  • Type

    conf

  • DOI
    10.1109/UKSIM.2011.57
  • Filename
    5754246