X Contents
5.2 Honeypots 275
5.3 Malicious Code Naming 281
5.3.1 Concluding Comments 285
5.4 Automated Malicious Code Analysis Systems 286
5.4.1 Passive Analysis 287
5.4.2 Active Analysis 290
5.4.3 Physical or Virtual Machines 291
5.5 Intrusion Detection Systems 294
References 301
6 c
h A p t e r ide f e N s e sp e c i A l fi l e iN v e s t i g A t i o N to o l s 305
i
N d e x 315