Hybrid analysis approach for classification of malware collected by nepenthes and Dionaea Honeypot

dc.contributor.advisorSamantaray, S.D.
dc.contributor.authorMehta, Shivam
dc.date.accessioned2018-07-11T07:13:28Z
dc.date.available2018-07-11T07:13:28Z
dc.date.issued2016-08
dc.description.abstractLarge scale networks face daily thousands of network attacks. No matter the strength of the existing security defending mechanisms, these networks remain vulnerable, as new tools and techniques are being constantly developed by hackers. A new promising technology that lures the attackers in order to monitor their malicious activities and divulge their intentions is emerging with Virtual Honeypots. In the present study, a hybrid analysis approach has been presented that used to classify the malware collected by nepenthes and dionaea honeypots deployed in our university. The malicious data captured has been thoroughly analyzed with in an isolated environment that has been setup for the hybrid analysis of each malicious executable files. The data extracted from the hybrid analysis process, provides information about the behaviour and different activities carried out by the malware on its being active. Based on these activities and behavioural patterns of malicious executables the malware was classified using the k-nearest neighbour classification algorithm. This helps in identifying the malwares, providng advisories to safeguard from malware attacks and also in predicting the new malwares. The dataset used is the binary files captured by the honeypots which is of 242MB size captured during the period of three months. The results have been classified in 11 classes of malware. In this study seven malware have been illustrated highlighting the result outcomes of hybrid analysis consisting of static and dynamic analysis along with salient observations in each case and finally summarizing the overall findings.en_US
dc.identifier.urihttp://krishikosh.egranth.ac.in/handle/1/5810058974
dc.keywordshacking, malware, Dionaea Honeypoten_US
dc.language.isoenen_US
dc.pages105en_US
dc.publisherG.B. Pant University of Agriculture and Technology, Pantnagar - 263145 (Uttarakhand)en_US
dc.research.problemMalwareen_US
dc.subComputer Engineeringen_US
dc.themeHackingen_US
dc.these.typeM.Techen_US
dc.titleHybrid analysis approach for classification of malware collected by nepenthes and Dionaea Honeypoten_US
dc.typeThesisen_US
Files
Original bundle
Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
Shivam.pdf
Size:
4.82 MB
Format:
Adobe Portable Document Format
Description:
License bundle
Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
1.71 KB
Format:
Item-specific license agreed upon to submission
Description:
Collections