Por favor, use este identificador para citar o enlazar este ítem: http://redi.ufasta.edu.ar:8082/jspui/handle/123456789/1597
Título : Windows malware: traces in the host
metadata.dc.creator: Ruiz de Angeli, Gonzalo
Alberdi, Juan Ignacio
Constanzo, Bruno
Curti, Hugo
Di Iorio, Ana Haydée
Palabras clave : Host-based signatures
Malware
Informática forense
DFIR
Windows registry
DLLs
Portable executable
metadata.dc.date: 2017
Editorial : IX Congreso Iberoamericano de Seguridad Informática. CIBSI 2017
Descripción : In the present world of information and interconnection, malware is a latent threat. Just speaking of “ill-intended software” gives a too broad definition: malware has evolved and taken different forms through the years. It is necessary to know and understand the traces that remain in a computer system after an infection. For years the information security community has focused on live analysis and response against these threats, so there is a huge opportunity to adapt and make post-mortem, host-based signatures. In this work, some features that may work as malware signatures for digital forensics experts are proposed.
Fil: Ruiz de Angeli, Gonzalo. Universidad FASTA; Argentina.
Fil: Alberdi, Juan Ignacio. Universidad FASTA; Argentina.
Fil: Constanzo, Bruno. Universidad FASTA; Argentina.
Fil: Curti, Hugo. Universidad FASTA; Argentina.
Fil: Di Iorio, Ana Haydée. Universidad FASTA; Argentina.
URI : http://redi.ufasta.edu.ar:8082/jspui/handle/123456789/1597
Aparece en las colecciones: Facultad de Ingeniería - G.I - Sistemas Operativos - Informática Forense

Ficheros en este ítem:
Fichero Descripción Tamaño Formato  
CIBSI-TIBETS-17_paper.pdf815,42 kBAdobe PDFVisualizar/Abrir


Los ítems de DSpace están protegidos por copyright, con todos los derechos reservados, a menos que se indique lo contrario.