Windows 作業系統之本機異常程式連線偵測
Local Host Anomaly Program Connection Detection for Windows
Date Issued
2007
Date
2007
Author(s)
Tang, Jen-Wei
DOI
zh-TW
Abstract
For a long time, malware is major threat to personal computer. Even though user can against threat by installing anti-virus software or other protection solutions. But problem always exist. In this research, we propose a scheme that can be used for detect anomaly program connections in Windows. The scheme are ease of use and efficient.
In this paper, we first discuss the kind of today’s malware. And then we analysis fewer case, that was populated. After that we modeling today malware’s characters, the characters of today’s malware are including ability to connect to network, can be confused with O.S. Component or malware will pretend it was O.S. Component, and doesn’t interactive with user, finally malware can be auto startup. According to characters above, we propose a scheme that can be used for detect anomaly program connections, and we produce scheme to a tool, that can be used for detect anomaly program connections.
Subjects
惡意程式
防毒軟體
異常程式連線
作業系統
自動啟動
malware
anti-virus software
anomaly program connections
operating system
auto startup
Type
thesis
File(s)![Thumbnail Image]()
Loading...
Name
ntu-96-P94921010-1.pdf
Size
23.31 KB
Format
Adobe PDF
Checksum
(MD5):84d811a47f7a70adce129e59a37f4ac8
