MAPMon: A Host-Based Malware Detection Tool

@article{Dai2007MAPMonAH,
  title={MAPMon: A Host-Based Malware Detection Tool},
  author={Shih-Yao Dai and Sy-Yen Kuo},
  journal={13th Pacific Rim International Symposium on Dependable Computing (PRDC 2007)},
  year={2007},
  pages={349-356}
}
In order for financial-motivated malware programs such as spyware, virus and worm to survive after system rebooted, they have to modify entries in auto start extensibility points (ASEPs), system calls or system files on a comprised system. We call these system resources which a malware program could attack once it intrudes a host as malware attacking points (MAPs). Based on this observation, we design and implement MAPMon, a monitoring mechanism to detect any suspicious change of malware… CONTINUE READING
6 Citations
8 References
Similar Papers

Similar Papers

Loading similar papers…