Malware Behavior Classification Approach Based on Naive Bayes
نویسندگان
چکیده
Because of the interference of obfuscation and polymorphism on malware analysis and detection, the dynamic analysis of malware binaries during run-time is becoming a research hotspot in intrusion detection field. Malware classification is a key problem in the research of dynamic malware behavior analysis. On the basis of the malware behavior monitoring result reports, after discussing of malware behavior characteristics, operation similarity of behavior and the effect of random factors on behavior pattern, this paper proposed a framework for automatic malware behavior classification using Naive Bayes machine learning model. The framework improves the accuracy and efficiency of classification by introducing the Naive Bayes. Then we designed and implemented automatic malware behavior classifier prototype called MalwareClassifier. In case study, we evaluated the prototype using behavior sequence reports which were generated through true malware. The experiment results show that our approach is effective, and the performance of training and classification is improved through the introduction of Naive Bayes model.
منابع مشابه
Malware Detection using Classification of Variable-Length Sequences
In this paper, a novel method based on the graph is proposed to classify the sequence of variable length as feature extraction. The proposed method overcomes the problems of the traditional graph with variable length of data, without fixing length of sequences, by determining the most frequent instructions and insertion the rest of instructions on the set of “other”, save speed and memory. Acco...
متن کاملA New Approach for Text Documents Classification with Invasive Weed Optimization and Naive Bayes Classifier
With the fast increase of the documents, using Text Document Classification (TDC) methods has become a crucial matter. This paper presented a hybrid model of Invasive Weed Optimization (IWO) and Naive Bayes (NB) classifier (IWO-NB) for Feature Selection (FS) in order to reduce the big size of features space in TDC. TDC includes different actions such as text processing, feature extraction, form...
متن کاملImproved Naive Bayes Classifier for Android Malware Classification
According to a recent F-secure report, 97% of mobile malware is designed for the Android platform which has a growing number of consumers. In order to protect consumers from downloading malicious applications, there should be an effective system of malware classification, that can detect previously unseen viruses. In this paper, we present a scalable and highly accurate method for malware class...
متن کاملBehavior Classification based Self-learning Mobile Malware Detection
More and more mobile malware appears on mobile internet and pose great threat to mobile users. It is difficult for traditional signature-based anti-malware system to detect the polymorphic and metamorphic mobile malware. A mobile malware behavior analysis method based on behavior classification and self-learning data mining is proposed to detect the malicious network behavior of the unknown or ...
متن کاملDetection of Malware to Enhance the Network Accuracy using Ensemble based Classifier
Detection of malware is a complex process. Many developers face problem in detecting the malware. The Malware is program or software that damages the computer system. Malicious Software is “any code added, changed, or removed from a software system to intentionally cause harm or subvert the system’s intended function”. Malware is a type of intrusion in the computer network. Excellent technology...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2012