Malware Behavior Classification Approach Based on Naive Bayes

نویسندگان

  • Zhu Kenan
  • Yin Baolin
چکیده

Because of the interference of obfuscation and polymorphism on malware analysis and detection, the dynamic analysis of malware binaries during run-time is becoming a research hotspot in intrusion detection field. Malware classification is a key problem in the research of dynamic malware behavior analysis. On the basis of the malware behavior monitoring result reports, after discussing of malware behavior characteristics, operation similarity of behavior and the effect of random factors on behavior pattern, this paper proposed a framework for automatic malware behavior classification using Naive Bayes machine learning model. The framework improves the accuracy and efficiency of classification by introducing the Naive Bayes. Then we designed and implemented automatic malware behavior classifier prototype called MalwareClassifier. In case study, we evaluated the prototype using behavior sequence reports which were generated through true malware. The experiment results show that our approach is effective, and the performance of training and classification is improved through the introduction of Naive Bayes model.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Malware Detection using Classification of Variable-Length Sequences

In this paper, a novel method based on the graph is proposed to classify the sequence of variable length as feature extraction. The proposed method overcomes the problems of the traditional graph with variable length of data, without fixing length of sequences, by determining the most frequent instructions and insertion the rest of instructions on the set of “other”, save speed and memory. Acco...

متن کامل

A New Approach for Text Documents Classification with Invasive Weed Optimization and Naive Bayes Classifier

With the fast increase of the documents, using Text Document Classification (TDC) methods has become a crucial matter. This paper presented a hybrid model of Invasive Weed Optimization (IWO) and Naive Bayes (NB) classifier (IWO-NB) for Feature Selection (FS) in order to reduce the big size of features space in TDC. TDC includes different actions such as text processing, feature extraction, form...

متن کامل

Improved Naive Bayes Classifier for Android Malware Classification

According to a recent F-secure report, 97% of mobile malware is designed for the Android platform which has a growing number of consumers. In order to protect consumers from downloading malicious applications, there should be an effective system of malware classification, that can detect previously unseen viruses. In this paper, we present a scalable and highly accurate method for malware class...

متن کامل

Behavior Classification based Self-learning Mobile Malware Detection

More and more mobile malware appears on mobile internet and pose great threat to mobile users. It is difficult for traditional signature-based anti-malware system to detect the polymorphic and metamorphic mobile malware. A mobile malware behavior analysis method based on behavior classification and self-learning data mining is proposed to detect the malicious network behavior of the unknown or ...

متن کامل

Detection of Malware to Enhance the Network Accuracy using Ensemble based Classifier

Detection of malware is a complex process. Many developers face problem in detecting the malware. The Malware is program or software that damages the computer system. Malicious Software is “any code added, changed, or removed from a software system to intentionally cause harm or subvert the system’s intended function”. Malware is a type of intrusion in the computer network. Excellent technology...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2012