Presentation 2009-05-15
Notes on Malware Detection System Based on Process Monitoring
Yuko OZASA, Kengo KUNIYOSHI, Akira MORIKAWA, Masakatu MORII,
PDF Download Page PDF download Page Link
Abstract(in Japanese) (See Japanese page)
Abstract(in English) Due to the increase of malwares and its variants, such as bots, worms, spywares and adwares, both personal and business computing are encounted by the threats. One of the urgent issues is the speed of bot network which is spanned by infected computers connected on the Internet. In this paper, we propose an automated malware detection system based on process monitoring to tackle the problem of automated detection of break-ins caused by unknown malware. In order to avoid a false positive detection, our system analyzes multi process, considering the characteristics and its behavior of malwares. The required memory to store the set of process transitions is efficiently compressed by excluding normal ones from the memory.
Keyword(in Japanese) (See Japanese page)
Keyword(in English) malware / bots / anomal detection / process monitoring / packet monitoring
Paper # ICSS2009-3
Date of Issue

Conference Information
Committee ICSS
Conference Date 2009/5/8(1days)
Place (in Japanese) (See Japanese page)
Place (in English)
Topics (in Japanese) (See Japanese page)
Topics (in English)
Chair
Vice Chair
Secretary
Assistant

Paper Information
Registration To Information and Communication System Security (ICSS)
Language ENG
Title (in Japanese) (See Japanese page)
Sub Title (in Japanese) (See Japanese page)
Title (in English) Notes on Malware Detection System Based on Process Monitoring
Sub Title (in English)
Keyword(1) malware
Keyword(2) bots
Keyword(3) anomal detection
Keyword(4) process monitoring
Keyword(5) packet monitoring
1st Author's Name Yuko OZASA
1st Author's Affiliation Graduate School of Engineering, Kobe University()
2nd Author's Name Kengo KUNIYOSHI
2nd Author's Affiliation Graduate School of Engineering, Kobe University
3rd Author's Name Akira MORIKAWA
3rd Author's Affiliation Graduate School of Engineering, Kobe University
4th Author's Name Masakatu MORII
4th Author's Affiliation Graduate School of Engineering, Kobe University
Date 2009-05-15
Paper # ICSS2009-3
Volume (vol) vol.109
Number (no) 33
Page pp.pp.-
#Pages 6
Date of Issue