Guilt by association: large scale malware detection by mining file-relation graphs

作者: Acar Tamersoy , Kevin Roundy , Duen Horng Chau , None

DOI: 10.1145/2623330.2623342

关键词: ExecutableLocality-sensitive hashingComputer securityComputer scienceHash functionMalwareFalse positive rate

摘要: … Bipartite File-Bucket Graph. Due to this reason, Aesop … filebucket graph, which we also refer to as a file-relation graph. In this graph, there is an edge connecting a file node to a bucket …

参考文章(24)
Nikos Karampatziakis, Jack W. Stokes, Anil Thomas, Mady Marinescu, Using file relationships in malware classification international conference on detection of intrusions and malware and vulnerability assessment. pp. 1- 20 ,(2012) , 10.1007/978-3-642-37300-8_1
Roberto Perdisci, David Dagon, Manos Antonakakis, Nick Feamster, Wenke Lee, Building a dynamic reputation system for DNS usenix security symposium. pp. 18- 18 ,(2010)
Piotr Indyk, Aristides Gionis, Rajeev Motwani, Similarity Search in High Dimensions via Hashing very large data bases. pp. 518- 529 ,(1999)
Sandeep Bhatkar, Kang G. Shin, Kent Griffin, Xin Hu, MutantX-S: scalable malware clustering based on static features usenix annual technical conference. pp. 187- 198 ,(2013)
Geoffrey M. Voelker, Chris Fleizach, Stefan Savage, David S. Anderson, Spamscatter: characterizing internet scam hosting infrastructure usenix security symposium. pp. 10- ,(2007)
Anand Rajaraman, Jeffrey D Ullman, Mining of Massive Datasets ,(2011)
Leyla Bilge, Engin Kirda, Christopher Kruegel, Marco Balduzzi, EXPOSURE : Finding malicious domains using passive DNS analysis network and distributed system security symposium. ,(2011)
Moses S. Charikar, Similarity estimation techniques from rounding algorithms symposium on the theory of computing. pp. 380- 388 ,(2002) , 10.1145/509907.509965
Jonathan S. Yedidia, Yair Weiss, William T. Freeman, Understanding belief propagation and its generalizations Exploring artificial intelligence in the new millennium. pp. 239- 269 ,(2003)
Yanfang Ye, Tao Li, Shenghuo Zhu, Weiwei Zhuang, Egemen Tas, Umesh Gupta, Melih Abdulhayoglu, Combining file content and file relations for cloud based malware detection Proceedings of the 17th ACM SIGKDD international conference on Knowledge discovery and data mining - KDD '11. pp. 222- 230 ,(2011) , 10.1145/2020408.2020448