loading
Papers Papers/2022 Papers Papers/2022

Research.Publish.Connect.

Paper

Paper Unlock

Authors: Jaime Devesa ; Igor Santos ; Xabier Cantero ; Yoseba K. Penya and Pablo G. Bringas

Affiliation: Deusto Technological Foundation, Spain

Keyword(s): Security, Malware detection, Machine learning, Data-mining.

Related Ontology Subjects/Areas/Topics: Applications of Expert Systems ; Artificial Intelligence ; Artificial Intelligence and Decision Support Systems ; Biomedical Engineering ; Business Analytics ; Data Engineering ; Data Mining ; Databases and Information Systems Integration ; Datamining ; Enterprise Information Systems ; Formal Methods ; Health Information Systems ; Industrial Applications of Artificial Intelligence ; Information Systems Analysis and Specification ; Methodologies and Technologies ; Operational Research ; Security ; Sensor Networks ; Signal Processing ; Simulation and Modeling ; Soft Computing

Abstract: Malware is any kind of program explicitly designed to harm, such as viruses, trojan horses or worms. Since the amount of malware is growing exponentially, it already poses a serious security threat. Therefore, every incoming code must be analysed in order to classify it as malware or benign software. These tests commonly combine static and dynamic analysis techniques in order to extract the major amount of information from distrustful files. Moreover, the increment of the number of attacks hinders manually testing the thousands of suspicious archives that every day reach antivirus laboratories. Against this background, we address here an automatised system for malware behaviour analysis based on emulation and simulation techniques. Hence, creating a secure and reliable sandbox environment allows us to test the suspicious code retrieved without risk. In this way, we can also generate evidences and classify the samples with several machine-learning algorithms. We have developed the pro posed solution, testing it with real malware. Finally, we have evaluated it in terms of reliability and time performance, two of the main aspects for such a system to work. (More)

CC BY-NC-ND 4.0

Sign In Guest: Register as new SciTePress user now for free.

Sign In SciTePress user: please login.

PDF ImageMy Papers

You are not signed in, therefore limits apply to your IP address 18.118.254.94

In the current month:
Recent papers: 100 available of 100 total
2+ years older papers: 200 available of 200 total

Paper citation in several formats:
Devesa, J.; Santos, I.; Cantero, X.; K. Penya, Y. and G. Bringas, P. (2010). AUTOMATIC BEHAVIOUR-BASED ANALYSIS AND CLASSIFICATION SYSTEM FOR MALWARE DETECTION. In Proceedings of the 12th International Conference on Enterprise Information Systems - Volume 5: ICEIS; ISBN 978-989-8425-05-8; ISSN 2184-4992, SciTePress, pages 395-399. DOI: 10.5220/0002895203950399

@conference{iceis10,
author={Jaime Devesa. and Igor Santos. and Xabier Cantero. and Yoseba {K. Penya}. and Pablo {G. Bringas}.},
title={AUTOMATIC BEHAVIOUR-BASED ANALYSIS AND CLASSIFICATION SYSTEM FOR MALWARE DETECTION},
booktitle={Proceedings of the 12th International Conference on Enterprise Information Systems - Volume 5: ICEIS},
year={2010},
pages={395-399},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0002895203950399},
isbn={978-989-8425-05-8},
issn={2184-4992},
}

TY - CONF

JO - Proceedings of the 12th International Conference on Enterprise Information Systems - Volume 5: ICEIS
TI - AUTOMATIC BEHAVIOUR-BASED ANALYSIS AND CLASSIFICATION SYSTEM FOR MALWARE DETECTION
SN - 978-989-8425-05-8
IS - 2184-4992
AU - Devesa, J.
AU - Santos, I.
AU - Cantero, X.
AU - K. Penya, Y.
AU - G. Bringas, P.
PY - 2010
SP - 395
EP - 399
DO - 10.5220/0002895203950399
PB - SciTePress