Title :
WSProxy: Detecting and Fighting Malicious Websites
Author :
Kai, Feng ; Sun Jianhua ; Hao, Chen
Author_Institution :
Coll. of Inf. Sci. & Eng., Hunan Univ., Changsha, China
Abstract :
In this paper we present WS Proxy, an analysis system for malicious websites that focuses on detecting attacks through behavior of web programs. The system uses Web kit which is an open script engine to execute page scripts. We detect malicious codes from web pages using static analysis and dynamic analysis technology. In contrast to previous work, this approach combines generality with usability, since the system is executed directly in the web browser before the web page is displayed. We show that we can achieve false positive rates below 5% and false negative rates below 10% with a performance overhead of only a few seconds, which affords a great potential for future versions of our tool.
Keywords :
Web sites; invasive software; WSProxy; Web kit; Web program behavior; dynamic analysis technology; malicious Websites detection; malicious Websites fighting; static analysis; Browsers; Engines; Internet; Malware; Reactive power; Web pages; Drive-by downloads; dynamic analysis; malicious software; static analysis;
Conference_Titel :
Business Computing and Global Informatization (BCGIN), 2011 International Conference on
Conference_Location :
Shanghai
Print_ISBN :
978-1-4577-0788-9
Electronic_ISBN :
978-0-7695-4464-9
DOI :
10.1109/BCGIn.2011.182