%0 Conference Proceedings %T Malware Behavior Modeling with Colored Petri Nets %+ Military Communication Institute [Zegrze] (MCI) %+ AGH University of Science and Technology [Krakow, PL] (AGH UST) %A Jasiul, Bartosz %A Szpyrka, Marcin %A Śliwa, Joanna %Z Part 9: Various Aspects of Computer Security %< avec comité de lecture %( Lecture Notes in Computer Science %B 13th IFIP International Conference on Computer Information Systems and Industrial Management (CISIM) %C Ho Chi Minh City, Vietnam %Y Khalid Saeed %Y Václav Snášel %I Springer %3 Computer Information Systems and Industrial Management %V LNCS-8838 %P 667-679 %8 2014-11-05 %D 2014 %R 10.1007/978-3-662-45237-0_60 %K malware %K cyber attack %K Colored Petri net %K malware detection %K behavioral analysis %Z Computer Science [cs] %Z Humanities and Social Sciences/Library and information sciencesConference papers %X We propose a solution which provides a system operator with a mechanism that enables tracking and tracing of malware behavior which – in consequence – leads to its detection and neutralization. The detection is performed in two steps. Firstly single malicious activities are identified and filtered out. As they come from the identification module, they are compared with malware models constructed in the form of Colored Petri nets. In this article we present our approach to malware modeling. Proposed method was implemented and practically verified in laboratory environment with emulated malicious activity at the hosts level. %G English %Z TC 8 %2 https://inria.hal.science/hal-01405661/document %2 https://inria.hal.science/hal-01405661/file/978-3-662-45237-0_60_Chapter.pdf %L hal-01405661 %U https://inria.hal.science/hal-01405661 %~ SHS %~ IFIP-LNCS %~ IFIP %~ IFIP-TC %~ IFIP-TC8 %~ IFIP-LNCS-8838 %~ IFIP-CISIM