An Overlay Network for Monitoring Activities of Computer Viruses

Li Ying、Cao Yiqun、Qiu Ben、Jiao Jian、Shan Xiuming、Ren Yong

中国工程科学 ›› 2008, Vol. 10 ›› Issue (1) : 52-58.

PDF(124 KB)
PDF(124 KB)
中国工程科学 ›› 2008, Vol. 10 ›› Issue (1) : 52-58.

An Overlay Network for Monitoring Activities of Computer Viruses

  • Li Ying、Cao Yiqun、Qiu Ben、Jiao Jian、Shan Xiuming、Ren Yong
作者信息 +

An Overlay Network for Monitoring Activities of Computer Viruses

  • Li Ying、Cao Yiqun、Qiu Ben、Jiao Jian、Shan Xiuming and Ren Yong
Author information +
History +

摘要

none

Abstract

To accurately track computer viruses, an overlay network that monitors the activities of viruses is constructed. Identifying and locating nodes infected by virus on network is achieved by a naming system in which a node in the network is mapped to a unique serial number of the hard drive. By carefully monitoring and recording sensitive communication between local system and remote nodes on the network, and suspicious operations on files that originate from remote nodes and entered via some form of file transfer, activities of viruses in both local and network level are recorded and ready for future analysis. These data can also be used in analysis of the mechanism of a computer virus as well as its spreading mode and pattern.

关键词

none /

Keywords

overlay network / virus / observation / DNS

引用本文

导出引用
Li Ying,Cao Yiqun,Qiu Ben,Jiao Jian,Shan Xiuming,Ren Yong. An Overlay Network for Monitoring Activities of Computer Viruses. 中国工程科学. 2008, 10(1): 52-58

参考文献

基金
国家重点基础研究发展计划(973计划)
PDF(124 KB)

Accesses

Citation

Detail

段落导航
相关文章

/