透過您的圖書館登入
IP:3.17.141.114
  • 會議論文
  • OpenAccess

設計與實作基於埠號監控的殭屍網路惡意程式偵測框架

摘要


隨著電腦技術的成長與網路的快速發展,駭客攻擊的手法也越來越多樣化,而其中殭屍網路結合電腦病毒、蠕蟲與木馬程式的技術與特性,堪稱為惡意程式的集大成之作。本研究嘗試從不同的角度切入,透過以觀察主機埠號的變化作為觸發,並以時間關聯性驅動所提出之追蹤模組、行為分析模組與NetFlow模組,提出一個基於埠號監控之複合型惡意程式偵測框架,並能夠於感染初期就快速有效的判斷並採取相對應的防禦措施。

並列摘要


With the rapid development of computer technology and the growth of the Internet, methods of hacking attack are increasingly diverse. Of which botnet combined of technology and characteristics of computer viruses, worms and Trojan horses. It can be said that a masterpiece of malware This study attempts to use a different point of view, through the host port state changes observed as a trigger, and the relevance of time to drive the tracing module, behavior analysis module and NetFlow event module. Proposed a hybrid botnet malware detection framework based on port monitor, which is able to quickly and effectively diagnose and take corresponding defensive measures in the initial infection.

被引用紀錄


洪堃銓(2014)。仿蜂鳥懸停機構套件之設計與製造〔碩士論文,淡江大學〕。華藝線上圖書館。https://doi.org/10.6846/TKU.2014.01134
黃心綸(2014)。二維準定常拍翼流場及其泡膜顯像〔碩士論文,淡江大學〕。華藝線上圖書館。https://doi.org/10.6846/TKU.2014.00346
劉家誠(2013)。可撓拍翼之二維準定常流場分析〔碩士論文,淡江大學〕。華藝線上圖書館。https://doi.org/10.6846/TKU.2013.00734
鄭杰明(2013)。仿蜂鳥懸停機構之初探〔碩士論文,淡江大學〕。華藝線上圖書館。https://doi.org/10.6846/TKU.2013.00558
鄭迪升(2013)。彈性拍翼機構的動態偏振成像量測技術〔碩士論文,淡江大學〕。華藝線上圖書館。https://doi.org/10.6846/TKU.2013.00285

延伸閱讀