An approach for malware behavior identification and classification

Malware is one of the major security threats that can break computer operation. However, commercial anti-virus or anti-spyware that used signature-based matching to detects malware cannot solve that kind of threats. Nowadays malware writers try to avoid detection by using several techniques such as...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Veröffentlicht in:2011 3rd International Conference on Computer Research and Development Jg. 1; S. 191 - 194
Hauptverfasser: Zolkipli, Mohamad Fadli, Jantan, Aman
Format: Tagungsbericht
Sprache:Englisch
Veröffentlicht: IEEE 01.03.2011
Schlagworte:
ISBN:1612848397, 9781612848396
Online-Zugang:Volltext
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:Malware is one of the major security threats that can break computer operation. However, commercial anti-virus or anti-spyware that used signature-based matching to detects malware cannot solve that kind of threats. Nowadays malware writers try to avoid detection by using several techniques such as polymorphic, metamorphic and also hiding technique. In order to overcome that issue, we proposed a new framework for malware behavior identification and classification that apply dynamic approach. This framework consists of two major processes such as behavior identification and malware classification. These two major processes will integrate together as interrelated process in our proposed framework. Result from this study is a new framework that able to identify and classify malware based on it behaviors.
ISBN:1612848397
9781612848396
DOI:10.1109/ICCRD.2011.5764001