Signature based Malware Detection for Unstructured Data in Hadoop

被引:0
作者
Sahoo, Abhaya Kumar [1 ]
Sahoo, Kshira Sagar [1 ]
Tiwary, Mayank [1 ]
机构
[1] CV Raman Coll Engn, Dept Informat Technol, Bhubaneswar, Orissa, India
来源
2014 INTERNATIONAL CONFERENCE ON ADVANCES IN ELECTRONICS, COMPUTERS AND COMMUNICATIONS (ICAECC) | 2014年
关键词
Malwares; Map-reduce; Hadoop; Cluster; Pattern Matching; Signatures;
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Hadoop is a very efficient distributed processing framework. It's based on map-reduce approach where the application is divided into small fragments of work, each of which may be executed on any node in the cluster. Hadoop is very efficient tool in storing and processing unstructured, semi-structured and structured data. Unstructured data usually refers to the data stored in files not in traditional row and column way. Examples of unstructured data is e-mail messages, videos, audio files, photos, web-pages, and many other kinds of business documents. Our work primarily focuses on detecting malware for unstructured data stored in Hadoop distributed file system environment. Here we use calm AV's updated free virus signature database. We also propose a fast string search algorithm based on map-reduce approach.
引用
收藏
页数:6
相关论文
共 10 条
[1]   EFFICIENT STRING MATCHING - AID TO BIBLIOGRAPHIC SEARCH [J].
AHO, AV ;
CORASICK, MJ .
COMMUNICATIONS OF THE ACM, 1975, 18 (06) :333-340
[2]  
[Anonymous], 2007, P 14 ACM C COMP COMM
[3]  
Boyer R. S., 1977, COMMUNICATIONS ACM, V20
[4]  
Brumley D, 2008, ADV INFORM SECUR, V36, P65
[5]   Semantics-aware malware detection [J].
Christodorescu, M ;
Jha, S ;
Seshia, SA ;
Song, D ;
Bryant, RE .
2005 IEEE SYMPOSIUM ON SECURITY AND PRIVACY, PROCEEDINGS, 2005, :32-46
[6]   MAPMon: A host-based malware detection tool [J].
Dai, Shih-Yao ;
Kuo, Sy-Yen .
13TH PACIFIC RIM INTERNATIONAL SYMPOSIUM ON DEPENDABLE COMPUTING, PROCEEDINGS, 2007, :349-356
[7]  
Egele M., 2007, P 2007 USENIX ANN TE
[8]  
Erdogan O., 2007, P INT C SYST NETW CO
[9]  
Fisk M., CS20010670 U CAL
[10]  
XU B, 2006, P 4 INT C APPL CRYPT