Mapping the Malicious Web

Remote control: FireShark discovered that some content on the site howtofindmyIP.com comes from dubious sites hosted in the Ukraine. Credit: Websense

From a Technology Review survey of clustering algorithms for detection of the servers responsible for malware:

(…) FireShark delves deeper than SiteAdvisor by decoding the HTML, Javascript, and other code embedded in each Web page it parses, looking for the ultimate source of content, even if it’s redirected multiple times. “FireShark gives a more in-depth view of what is going on,” Chenette says.

Advertisement


Follow

Get every new post delivered to your Inbox.

Join 60 other followers