• DocumentCode
    3644405
  • Title

    Detecting network attacks using behavioural models

  • Author

    Jiří Schäfer;Michal Drozd

  • Author_Institution
    Brno University of Technology, Bož
  • Volume
    2
  • fYear
    2011
  • Firstpage
    753
  • Lastpage
    758
  • Abstract
    In this paper we´re dealing with the problem of detecting malware using behaviour model. For better malware description we have divided this model into two parts - malware spreading model and malware statistical behavioural model. Spreading models are typical epidemiological models like SI model, advanced SIR and SEIR models and empiric file spreading model. In statistical behavioural model we´re describing characteristics of malware trojan communication and communication characteristics of a typical user, we´re describing basic detection for both models (behavioural statistic and spreading), we´re proposing some standard and specific countermeasures based on these models as same as possibility of detection of malware communication, attacks like DoS and Network scanning detection and detection of Malware propagation.
  • Keywords
    "Biological system modeling","Computer crime","Trojan horses","Computational modeling","Mathematical model","Computers"
  • Publisher
    ieee
  • Conference_Titel
    Intelligent Data Acquisition and Advanced Computing Systems (IDAACS), 2011 IEEE 6th International Conference on
  • Print_ISBN
    978-1-4577-1426-9
  • Type

    conf

  • DOI
    10.1109/IDAACS.2011.6072871
  • Filename
    6072871