Malicious Code Detection Using Penalized Splines on OPcode Frequency

作者: Mamoun Alazab , Mohammad Al Kadiri , Sitalakshmi Venkatraman , Ameer Al-Nemrat

DOI: 10.1109/CTC.2012.15

关键词:

摘要: Recently, malicious software are gaining exponential growth due to the innumerable obfuscations of extended x86 IA-32 (OPcodes) that being employed evade from traditional detection methods. In this paper, we design a novel distinguisher separate malware benign combines Multivariate Logistic Regression model using kernel HS in Penalized Splines along with OPcode frequency feature selection technique for efficiently detecting obfuscated malware. The main advantage our penalized splines based is its performance capability achieved through efficient filtering and identification most important OPcodes used obfuscation This demonstrated successful implementation experimental results proposed on large datasets. presented approach effective at identifying previously examined non-malware assist reverse engineering.

参考文章(43)
Mamoun Alazab, Sitalakshmi Venkatraman, Paul Watters, Moutaz Alazab, Information Security Governance IT Security Governance Innovations. pp. 293- 315 ,(2013) , 10.4018/978-1-4666-2083-4.CH011
Mamoun Alazab, Sitalakshmi Venkatraman, Paul A Watters, Moutaz Alazab, None, Zero-day malware detection based on supervised learning algorithms of API call signatures australasian data mining conference. pp. 171- 182 ,(2011)
Monirul Sharif, Vinod Yegneswaran, Hassen Saidi, Phillip Porras, Wenke Lee, Eureka: A Framework for Enabling Static Malware Analysis european symposium on research in computer security. pp. 481- 500 ,(2008) , 10.1007/978-3-540-88313-5_31
Igor Santos, Yoseba K Penya, Jaime Devesa, Pablo G Bringas, None, N-GRAMS-BASED FILE SIGNATURES FOR MALWARE DETECTION Proceedings of the 11th International Conference on Enterprise Information. pp. 317- 320 ,(2009) , 10.5220/0001863603170320
A.H. Sung, J. Xu, P. Chavez, S. Mukkamala, Static analyzer of vicious executables (SAVE) annual computer security applications conference. pp. 326- 334 ,(2004) , 10.1109/CSAC.2004.37
Robert Moskovitch, Clint Feher, Nir Tzachar, Eugene Berger, Marina Gitelman, Shlomi Dolev, Yuval Elovici, Unknown Malcode Detection Using OPCODE Representation european conference on intelligence and security informatics. pp. 204- 215 ,(2008) , 10.1007/978-3-540-89900-6_21
Babak Bashari Rad, Maslin Masrom, Metamorphic virus variants classification using opcode frequency histogram annual conference on computers. pp. 147- 155 ,(2010)
Paul Watters, Robert Layton, Sitalakshmi Venkataraman, Manoun Alazab, Malware Detection Based on Structural and Behavioural Features of API Calls cyber resilience conference. pp. 1- 10 ,(2010)
Paul Watters, Josef Pieprzyk, Stephen McCombie, Cybercrime Attribution: An Eastern European Case Study Science & Engineering Faculty. pp. 41- 51 ,(2009) , 10.4225/75/57B2880840CCF