Efficient Malware Packer Identification Using Support Vector Machines with Spectrum Kernel

被引:7
|
作者
Ban, Tao [1 ]
Isawa, Ryoichi [1 ]
Guo, Shanqing [2 ]
Inoue, Daisuke [1 ]
Nakao, Koji [1 ]
机构
[1] Natl Inst Informat & Commun Technol, 4-2-1 Nukuikitamachi, Koganei, Tokyo 1848795, Japan
[2] Shandong Univ, Jinan, Peoples R China
关键词
CLASSIFICATION; EXECUTABLES;
D O I
10.1109/ASIAJCIS.2013.18
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Packing is among the most popular obfuscation techniques to impede anti-virus scanners from successfully detecting malware. Efficient and automatic packer identification is an essential step to perform attack on ever increasing malware databases. In this paper we present a p-spectrum induced linear Support Vector Machine to implement an automated packer identification with good accuracy and scalability. The efficacy and efficiency of the method is evaluated on a dataset composed of 3228 packed files created by 25 packers with near-perfect identification results reported. This method can help to improve the scanning efficiency of anti-virus products and ease efficient back-end malware research.
引用
收藏
页码:69 / 76
页数:8
相关论文
共 50 条
  • [1] Application of String Kernel based Support Vector Machine for Malware Packer Identification
    Ban, Tao
    Isawa, Ryoichi
    Guo, Shanqing
    Inoue, Daisuke
    Nakao, Koji
    2013 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN), 2013,
  • [2] Classification using intersection kernel support vector machines is efficient
    Maji, Subhransu
    Berg, Alexander C.
    Malik, Jitendra
    2008 IEEE CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION, VOLS 1-12, 2008, : 2245 - +
  • [3] Malware Detection Using Perceptrons and Support Vector Machines
    Gavrilut, Dragos
    Cimpoesu, Mihai
    Anton, Dan
    Ciortuz, Liviu
    2009 COMPUTATION WORLD: FUTURE COMPUTING, SERVICE COMPUTATION, COGNITIVE, ADAPTIVE, CONTENT, PATTERNS, 2009, : 283 - 288
  • [4] Detecting malware evolution using support vector machines
    Wadkar, Mayuri
    Di Troia, Fabio
    Stamp, Mark
    EXPERT SYSTEMS WITH APPLICATIONS, 2020, 143
  • [5] Support vector machines and malware detection
    Singh, Tanuvir
    Di Troia, Fabio
    Corrado, Visaggio Aaron
    Austin, Thomas H.
    Stamp, Mark
    JOURNAL OF COMPUTER VIROLOGY AND HACKING TECHNIQUES, 2016, 12 (04): : 203 - 212
  • [6] Efficient Feature Scaling for Support Vector Machines with a Quadratic Kernel
    Zhizheng Liang
    Ning Liu
    Neural Processing Letters, 2014, 39 : 235 - 246
  • [7] Efficient Feature Scaling for Support Vector Machines with a Quadratic Kernel
    Liang, Zhizheng
    Liu, Ning
    NEURAL PROCESSING LETTERS, 2014, 39 (03) : 235 - 246
  • [8] Support vector machines for nonlinear kernel ARMA system identification
    Martinez-Ramon, Martel
    Rojo-Alvarez, Jose Luis
    Camps-Valls, Gustavo
    Munoz-Mari, Jordi
    Navia-Vazquez, Angel
    Soria-Olivas, Emilio
    Figueiras-Vidal, Anibal R.
    IEEE TRANSACTIONS ON NEURAL NETWORKS, 2006, 17 (06): : 1617 - 1622
  • [9] An Accurate Packer Identification Method Using Support Vector Machine
    Isawa, Ryoichi
    Ban, Tao
    Guo, Shanqing
    Inoue, Daisuke
    Nakao, Koji
    IEICE TRANSACTIONS ON FUNDAMENTALS OF ELECTRONICS COMMUNICATIONS AND COMPUTER SCIENCES, 2014, E97A (01) : 253 - 263
  • [10] Speaker identification and verification using support vector machines and sparse kernel logistic regression
    Katz, Marcel
    Krueger, Sven E.
    Schaffoener, Martin
    Andelic, Edin
    Wendemuth, Andreas
    ADVANCES IN MACHINE VISION, IMAGE PROCESSING, AND PATTERN ANALYSIS, 2006, 4153 : 176 - 184