Communication Security |
Foundation of Computer Science USA |
COMNETCS - Number 1 |
March 2012 |
Authors: Rakesh Kumar Sehgal, D. S. Bhilare, Saurabh Chamotra |
16b380f3-201f-4d99-b2d6-ff64008b8db1 |
Rakesh Kumar Sehgal, D. S. Bhilare, Saurabh Chamotra . An Integrated Framework for Malware Collection and Analysis for Botnet Tracking. Communication Security. COMNETCS, 1 (March 2012), 50-55.
The paper presents the design of an integrated malware collection and analysis framework for botnet tracking. In proposed framework we have used Honypots as malware capturing tool. The proposed system design is unique in the sense that the information regarding the configuration of honeypot on which malware sample has been captured is saved with malware sample in the malware data-base. This system configuration information saved with the malware sample is used at the time of dynamic malware analysis for creating malware execution environment. As an execution environment thus created is analogous to environment in which malware was captured therefore it generates true expected execution behavior leading to capturing of accurate execution traces. Further we have demonstrated the effectiveness of the proposed solution with the help of a prototype system.