DETEKSI MALWARE DALAM JARINGAN MENGGUNAKAN DIONAEA
DOI:
https://doi.org/10.30595/techno.v14i2.96Abstract
Jaringan komputer yang terhubung ke Internet akan memperbesar kemungkinan terjadinya ancaman terhadap keamanan sistem. Malware dalam bentuk virus, worm, dan trojan horses merupakan ancaman utama bagi keamanan sistem jaringan komputer. Penelitian ini bertujuan untuk mendeteksi dan mengidentifikasi serangan malware di dalam jaringan lokal Universitas Muhammadiyah Purwokerto menggunakan Dionaea. Instalasi Dionaea diletakkan pada segmen jaringan internal. Dari penelitian ini didapatkan sejumlah serangan kepada Dionaea yang berasal dari sejumlah host dengan alamat IP private dari dalam jaringan internal. Dionaea berhasil mengunduh salinan malware sebanyak 76 kali yang terdiri dari satu jenis malware saja yaitu Win32.Worm.Downadup.Gen. Dengan diketahuinya jenis dan lokasi malware, maka tindakan yang tepat dapat segera dilakukan. Key-words: Malware, Honeypot, DionaeaReferences
Anonymous, microsoft website, [Online], Available: http://www.microsoft.com/ security/portal/Threat/Encyclopedia/Entry.aspx?name=Worm%3aWin32%2fConficker.C, diakses pada tanggal 10 November 2011.
Kumar, S; Pant, D, (2019). Detection and Prevention of New and Unknown Malware using Honeypots, International Journal on Computer Science and Engineering Vol.1(2).
Lopez, M. H. Y. dan Resendez, C.F.L. (2008) Honeypots: Basic Concepts, Classification and Educational Use as Resources in Information Security Education and Courses, Proceedings of the Informing Science & IT Education Conference (InSITE).
Spitzner, L. (2002) Honeypots Tracking Hacker, Addison Wesley.
Suzuki, H. (2011) Internet Infrastucture Review, Internet Initiative Japan, Vol 11.
Downloads
Published
Issue
Section
License
Authors who publish with this journal agree to the following terms:
Authors retain copyright and grant the journal right of first publication with the work simultaneously licensed under a Creative Commons Attribution License that allows others to share the work with an acknowledgement of the work's authorship and initial publication in this journal.
Authors are able to enter into separate, additional contractual arrangements for the non-exclusive distribution of the journal's published version of the work (e.g., post it to an institutional repository or publish it in a book), with an acknowledgement of its initial publication in this journal.
Authors are permitted and encouraged to post their work online (e.g., in institutional repositories or on their website) prior to and during the submission process, as it can lead to productive exchanges, as well as earlier and greater citation of published work (See The Effect of Open Access).
Techno (Jurnal Fakultas Teknik, Universitas Muhammadiyah Purwokerto) is licensed under a Creative Commons Attribution 4.0 International License.