A Foray into Conficker's Logic and Rendezvous Points

نویسندگان

  • Phillip A. Porras
  • Hassen Saïdi
چکیده

We present an in depth static analysis of the Conficker worm, primarily through the exploration of the client-side binary logic. In this paper, we summarize various aspects of the inner workings of binary variants A and B,1 which were the first in a chain of recent revisions aimed to keep this epidemic resistant to ongoing eradication attempts. These first two variants have combined to produce a multi-million node population of infected hosts, whose true main purpose has yet to be fully understood. We further validate aspects of our analysis through in-situ network analyses, and discuss some attribution links about its origins.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

A Method to Convert Concurrent EFSMs with Multi-Rendezvous into Synchronous Sequential Circuit

In this paper, we propose a technique to synthesize a hardware circuit from a protocol specification consisting of several concurrent EFSMs with multi-rendezvous specified among their subsets. In our class, each multi-rendezvous can be specified among more than two EFSMs, and several multi-rendezvous can be specified for different combinations of EFSMs. In the proposed technique, using the info...

متن کامل

Methodology for Prototyping Increased Levels of Automation for Spacecraft Rendezvous Functions

The Crew Exploration Vehicle necessitates higher levels of automation than previous NASA vehicles, due to program requirements for automation, including Automated Rendezvous and Docking. Studies of spacecraft development often point to the locus of decisionmaking authority between humans and computers (i.e. automation) as a prime driver for cost, safety, and mission success. Therefore, a critic...

متن کامل

Identification of Safe Assembly Points in Emergencies in a Gas Refinery of the South Pars Gas Complex Using Fuzzy Logic Model

  INTRODUCTION: Crisis management is of critical importance in the oil and gas industries due to the increasing occurrence of accidents in these areas. One of the most important issues regarding crisis management in such industries is the identification of safety assembly points where employees should gather in emergencies. This study aimed to identify the safe points in a refinery using geo...

متن کامل

Rendezvousing at Familiar and Unfamiliar Places

This paper reports a diary study of rendezvousing as performed by university students. The study compares students’ performance when meeting at familiar and unfamiliar rendezvous points. It reports various findings that help to set goals for the development of personal navigation and related services at appropriate levels. For example, when meeting at novel rendezvous points, students : (i) fai...

متن کامل

Scheduling globally asynchronous locally synchronous systems for guaranteed response times

This paper analyzes and schedules Globally Asynchronous Locally Synchronous (GALS) programs to bound response times to input events. The proposed approach is applicable to scheduling of GALS programs for different target architectures with single or multiple processors or cores. A Satisfiability Modulo Theoretical (SMT) formulation in the quantifier free linear real arithmetic (QF LRA) logic is...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2009