• Home
  • Search
  • Efficient Dynamic Malware Analysis for Collecting HTTP Requests using Deep Learning
  • Cite Icon4
  • https://doi.org/10.1587/transinf.2018dap0001Copy DOI Icon

Efficient Dynamic Malware Analysis for Collecting HTTP Requests using Deep Learning

Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

Malware-infected hosts have typically been detected using network-based Intrusion Detection Systems on the basis of characteristic patterns of HTTP requests collected with dynamic malware analysis. Since attackers continuously modify malicious HTTP requests to evade detection, novel HTTP requests sent from new malware samples need to be exhaustively collected in order to maintain a high detection rate. However, analyzing all new malware samples for a long period is infeasible in a limited amount of time. Therefore, we propose a system for efficiently collecting HTTP requests with dynamic malware analysis. Specifically, our system analyzes a malware sample for a short period and then determines whether the analysis should be continued or suspended. Our system identifies malware samples whose analyses should be continued on the basis of the network behavior in their short-period analyses. To make an accurate determination, we focus on the fact that malware communications resemble natural language from the viewpoint of data structure. We apply the recursive neural network, which has recently exhibited high classification performance in the field of natural language processing, to our proposed system. In the evaluation with 42,856 malware samples, our proposed system collected 94% of novel HTTP requests and reduced analysis time by 82% in comparison with the system that continues all analyses.

Similar Papers
  • Conference Article
  • Citations1

A Comparative Study of Android Malware Behavior in Different Contexts

  • Jan 01, 2016
  • Catherine Boileau +4
  • Conference Article
  • Citations92

Efficient Dynamic Malware Analysis Based on Network Behavior Using Deep Learning

  • Dec 01, 2016
  • Toshiki Shibahara +4
  • Conference Article
  • Citations182

Scalability, fidelity and stealth in the DRAKVUF dynamic malware analysis system

  • Dec 08, 2014
  • Tamas K Lengyel +5
  • Conference Article
  • Citations62

Generative Deep Learning for Internet of Things Network Traffic Generation

  • Dec 01, 2020
  • Mustafizur R Shahid +4
  • Conference Article
  • Citations7

Blueprints of a lightweight automated experimentation system

  • Apr 10, 2011
  • Frédéric Massicotte +1
  • Conference Article
  • Citations23

A First Look at Android Malware Traffic in First Few Minutes

  • Aug 01, 2015
  • Zhenxiang Chen +6
  • PDF
  • Research Article
  • Citations45

A Hybrid Approach for Android Malware Detection and Family Classification.

  • Jun 01, 2021
  • International Journal of Interactive Multimedia and Artificial Intelligence
  • Meghna Dhalaria +1
  • Conference Article
  • Citations1

Dynamic Malware Analysis: Contrast between Physical and Virtual Environment

  • Mar 03, 2021
  • Betsy Nazareno +2
  • Conference Article
  • Citations111

Identifying Dormant Functionality in Malware Programs

  • Jan 01, 2010
  • Paolo Milani Comparetti +5
  • Research Article
  • Citations92

LIO-IDS: Handling class imbalance using LSTM and improved one-vs-one technique in intrusion detection system

  • Apr 07, 2021
  • Computer Networks
  • Neha Gupta +2
  • Conference Article
  • Citations2

Simurg

  • Dec 08, 2016
  • Pashutan Modaresi +1
  • Single Report
  • Citations2

Making Network Intrusion Detection Work With IPsec

  • May 11, 2007
  • C D Mclain +2
  • Conference Article
  • Citations8

Improving Signature Testing through Dynamic Data Flow Analysis

  • Dec 01, 2007
  • Christopher Kruegel +3
  • Research Article

Multiclass cyber-attack classification approach based on the Krill Herd Optimized Deep Neural Network (KH-DNN) model for WSN

  • Apr 21, 2022
  • International Journal of Modeling, Simulation, and Scientific Computing
  • Samleti Sandeep Dwarkanath +1
  • PDF
  • Research Article

Towards an information-theoretic framework of intrusion detection for composed systems and robustness analyses

  • Feb 02, 2022
  • Computers & Security
  • Tobias Mages +2
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.