Signature generation and detection of malware families

被引:0
|
作者
Sathyanarayan, V. Sai [1 ]
Kohli, Pankaj [1 ]
Bruhadeshwar, Bezawada [1 ]
机构
[1] Int Inst Informat Technol, C STAR, Hyderabad 500032, Andhra Pradesh, India
来源
INFORMATION SECURITY AND PRIVACY | 2008年 / 5107卷
关键词
malware detection; signature generation; static analysis;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Malware detection and prevention is critical for the protection of computing systems across the Internet. The problem in detecting malware is that they evolve over a period of time and hence, traditional signature-based malware detectors fail to detect obfuscated and previously unseen malware executables. However, as malware evolves, some semantics of the original malware are preserved as these semantics are necessary for the effectiveness of the malware. Using this observation, we present a novel method for detection of malware using the correlation between the semantics of the malware and its API calls. We construct a base signature for an entire malware class rather than for a single specimen of malware. Such a signature is capable of detecting even unknown and advanced variants that belong to that class. We demonstrate our approach on some well known malware classes and show that any advanced variant of the malware class is detected from the base signature.
引用
收藏
页码:336 / 349
页数:14
相关论文
共 50 条
  • [2] On the Feasibility of Automatic Malware Family Signature Generation
    Zhang, Xiao
    Xu, Zhi
    PROCEEDINGS OF THE FIRST WORKSHOP ON RADICAL AND EXPERIENTIAL SECURITY (RESEC'18), 2018, : 69 - 72
  • [3] Optimal Position Searching for Automated Malware Signature Generation
    Choi, Yangseo
    Oh, Jintae
    Lee, Jeonggun
    Ryou, Jaecheol
    ISCE: 2009 IEEE 13TH INTERNATIONAL SYMPOSIUM ON CONSUMER ELECTRONICS, VOLS 1 AND 2, 2009, : 305 - +
  • [4] BluePrint: Automatic Malware Signature Generation for Internet Scanning
    Stevens, Kevin
    Erdemir, Mert
    Zhang, Hang
    Kim, Taesoo
    Pearce, Paul
    PROCEEDINGS OF 27TH INTERNATIONAL SYMPOSIUM ON RESEARCH IN ATTACKS, INTRUSIONS AND DEFENSES, RAID 2024, 2024, : 197 - 214
  • [5] RETRACTED: Analysis of Malware Detection and Signature Generation Using a Novel Hybrid Approach (Retracted Article)
    Dugyala, Raman
    Reddy, N. Hanuman
    Maheswari, V. Uma
    Mohammad, Gouse Baig
    Alenezi, Fayadh
    Polat, Kemal
    MATHEMATICAL PROBLEMS IN ENGINEERING, 2022, 2022
  • [6] Detection of Prevalent Malware Families with Deep Learning
    Stokes, Jack W.
    Seifert, Christian
    Li, Jerry
    Hejazi, Nizar
    MILCOM 2019 - 2019 IEEE MILITARY COMMUNICATIONS CONFERENCE (MILCOM), 2019,
  • [7] Blockchain Malware Detection Tool Based on Signature Technique
    Rahman, Siti Husna Abdul
    Gabriel, Chastan Nevin
    Haw, Su-Cheng
    Zainuddin, Ahmad Anwar
    ADVANCES IN ARTIFICIAL INTELLIGENCE AND MACHINE LEARNING, 2023, 3 (04): : 1654 - 1670
  • [8] A Study on The behavior-based Malware Detection Signature
    Oh, Sungtaek
    Go, Woong
    Lee, Taejin
    ADVANCES ON BROAD-BAND WIRELESS COMPUTING, COMMUNICATION AND APPLICATIONS, 2017, 2 : 663 - 670
  • [9] Efficient signature based malware detection on mobile devices
    Venugopal, Deepak
    Hu, Guoning
    MOBILE INFORMATION SYSTEMS, 2008, 4 (01) : 33 - 49
  • [10] Signature based Malware Detection for Unstructured Data in Hadoop
    Sahoo, Abhaya Kumar
    Sahoo, Kshira Sagar
    Tiwary, Mayank
    2014 INTERNATIONAL CONFERENCE ON ADVANCES IN ELECTRONICS, COMPUTERS AND COMMUNICATIONS (ICAECC), 2014,