• Home
  • Search
  • Mining specifications of malicious behavior
  • Open Access IconOpen Access
  • Cite Icon307
  • https://doi.org/10.1145/1287624.1287628Copy DOI Icon

Mining specifications of malicious behavior

  • Sep 7, 2007
  • Mihai Christodorescu +2 more
Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

Malware detectors require a specification of malicious behavior. Typically, these specifications are manually constructed by investigating known malware. We present an automatic technique to overcome this laborious manual process. Our technique derives such a specification by comparing the execution behavior of a known malware against the execution behaviors of a set of benign programs. In other words, we mine the malicious behavior present in a known malware that is not present in a set of benign programs. The output of our algorithm can be used by malware detectors to detect malware variants. Since our algorithm provides a succinct description of malicious behavior present in a malware, it can also be used by security analysts for understanding the malware. We have implemented a prototype based on our algorithm and tested it on several malware programs. Experimental results obtained from our prototype indicate that our algorithm is effective in extracting malicious behaviors that can be used to detect malware variants.

Similar Papers
  • Research Article
  • Citations24

MalRadar

  • May 26, 2022
  • Proceedings of the ACM on Measurement and Analysis of Computing Systems
  • Liu Wang +6
  • Research Article

Suicidal behavior among Iranian psychiatric patients

  • Jan 01, 2020
  • International Journal of Computing and Artificial Intelligence
  • Sundupalli Rajesh
  • Conference Article
  • Citations14

Extracting Sent Message Formats from Executables Using Backward Slicing

  • Sep 01, 2013
  • Min Liu +3
  • Research Article
  • Citations25

Malware detection with dynamic evolving graph convolutional networks

  • Mar 29, 2022
  • International Journal of Intelligent Systems
  • Zikai Zhang +4
  • Research Article
  • Citations13

Detection of malware applications from centrality measures of syscall graph

  • Jan 20, 2022
  • Concurrency and Computation: Practice and Experience
  • Roopak Surendran +1
  • Conference Article
  • Citations111

Identifying Dormant Functionality in Malware Programs

  • Jan 01, 2010
  • Paolo Milani Comparetti +5
  • Research Article

Intelligent robust malware detection by implementing deep learning

  • Jun 27, 2022
  • International journal of health sciences
  • K Nagi Reddy +4
  • Conference Article
  • Citations18

ARIGUMA Code Analyzer: Efficient Variant Detection by Identifying Common Instruction Sequences in Malware Families

  • Jul 01, 2013
  • Yang Zhong +3
  • Conference Article
  • Citations5

Malware Detection Using System Logs

  • Jun 08, 2020
  • Nhu T Nguyen +6
  • Book Chapter
  • Citations41

Pushdown Model Checking for Malware Detection

  • Jan 01, 2012
  • Fu Song +1
  • Book Chapter
  • Citations28

Using Verification Technology to Specify and Detect Malware

  • Jan 01, 2007
  • Andreas Holzer +2
  • Conference Article
  • Citations11

The Robust Malware Detection Challenge and Greedy Random Accelerated Multi-Bit Search

  • Nov 09, 2020
  • Sicco Verwer +5
  • Research Article
  • Citations43

MeMalDet: A memory analysis-based malware detection framework using deep autoencoders and stacked ensemble under temporal evaluations

  • Apr 24, 2024
  • Computers & Security
  • Pascal Maniriho +2
  • Conference Article
  • Citations1

A Survey on Malware Detection Approaches Using EULA Analysis with Text Mining

  • Sep 01, 2018
  • Satya Narayan Tripathy +4
  • Conference Article
  • Citations201

Adversary Resistant Deep Neural Networks with an Application to Malware Detection

  • Aug 13, 2017
  • Qinglong Wang +6
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.