@article{ART001382265},
author={최병하 and Kyungsan CHO},
title={An Improved Detecting Scheme of Malicious Codes using HTTP Outbound Traffic},
journal={Journal of The Korea Society of Computer and Information},
issn={1598-849X},
year={2009},
volume={14},
number={9},
pages={47-54}
TY - JOUR
AU - 최병하
AU - Kyungsan CHO
TI - An Improved Detecting Scheme of Malicious Codes using HTTP Outbound Traffic
JO - Journal of The Korea Society of Computer and Information
PY - 2009
VL - 14
IS - 9
PB - The Korean Society Of Computer And Information
SP - 47
EP - 54
SN - 1598-849X
AB - Malicious codes, which are spread through WWW, are now evolved with various hacking technologies. However, detecting technologies for them are seemingly not able to keep up with the improvement of hacking and newly generated malicious codes. In this paper, we define the requirements of detecting systems based on the analysis of malicious codes and their spreading characteristics, and propose an improved detection scheme which monitors HTTP Outbound traffic and detects spreading malicious codes in real time. Our proposed scheme sets up signatures in IDS with confirmed HTML tags and Java scripts which spread malicious codes. Through the verification analysis under the real-attacked environment, we show that our scheme is superior to the existing schemes in satisfying the defined requirements and has a higher detection rate for malicious codes.
KW - 악성코드(malicious code);Outbound Traffic;탐지(detection);시그너쳐(signature);HTML 태그(HTML tag)
DO -
UR -
ER -
최병하 and Kyungsan CHO. (2009). An Improved Detecting Scheme of Malicious Codes using HTTP Outbound Traffic. Journal of The Korea Society of Computer and Information, 14(9), 47-54.
최병하 and Kyungsan CHO. 2009, "An Improved Detecting Scheme of Malicious Codes using HTTP Outbound Traffic", Journal of The Korea Society of Computer and Information, vol.14, no.9 pp.47-54.
최병하, Kyungsan CHO "An Improved Detecting Scheme of Malicious Codes using HTTP Outbound Traffic" Journal of The Korea Society of Computer and Information 14.9 pp.47-54 (2009) : 47.
최병하, Kyungsan CHO. An Improved Detecting Scheme of Malicious Codes using HTTP Outbound Traffic. 2009; 14(9), 47-54.
최병하 and Kyungsan CHO. "An Improved Detecting Scheme of Malicious Codes using HTTP Outbound Traffic" Journal of The Korea Society of Computer and Information 14, no.9 (2009) : 47-54.
최병하; Kyungsan CHO. An Improved Detecting Scheme of Malicious Codes using HTTP Outbound Traffic. Journal of The Korea Society of Computer and Information, 14(9), 47-54.
최병하; Kyungsan CHO. An Improved Detecting Scheme of Malicious Codes using HTTP Outbound Traffic. Journal of The Korea Society of Computer and Information. 2009; 14(9) 47-54.
최병하, Kyungsan CHO. An Improved Detecting Scheme of Malicious Codes using HTTP Outbound Traffic. 2009; 14(9), 47-54.
최병하 and Kyungsan CHO. "An Improved Detecting Scheme of Malicious Codes using HTTP Outbound Traffic" Journal of The Korea Society of Computer and Information 14, no.9 (2009) : 47-54.