Malware Detection Using Dynamic Birthmarks

01/06/2019
by   Swapna Vemparala, et al.
0

In this paper, we explore the effectiveness of dynamic analysis techniques for identifying malware, using Hidden Markov Models (HMMs) and Profile Hidden Markov Models (PHMMs), both trained on sequences of API calls. We contrast our results to static analysis using HMMs trained on sequences of opcodes, and show that dynamic analysis achieves significantly stronger results in many cases. Furthermore, in contrasting our two dynamic analysis techniques, we find that using PHMMs consistently outperforms our analysis based on HMMs.

READ FULL TEXT
research
03/13/2022

A Comparison of Static, Dynamic, and Hybrid Analysis for Malware Detection

In this research, we compare malware detection techniques based on stati...
research
04/17/2023

IMCDCF: An Incremental Malware Detection Approach Using Hidden Markov Models

The popularity of dynamic malware analysis has grown significantly, as i...
research
03/03/2021

Malware Classification with GMM-HMM Models

Discrete hidden Markov models (HMM) are often applied to malware detecti...
research
04/04/2022

Reliable Editions from Unreliable Components: Estimating Ebooks from Print Editions Using Profile Hidden Markov Models

A profile hidden Markov model, a popular model in biological sequence an...
research
07/17/2023

Hidden Markov Models with Random Restarts vs Boosting for Malware Detection

Effective and efficient malware detection is at the forefront of researc...
research
12/12/2012

Reduction of Maximum Entropy Models to Hidden Markov Models

We show that maximum entropy (maxent) models can be modeled with certain...
research
06/08/2022

Hidden Markov Models with Momentum

Momentum is a popular technique for improving convergence rates during g...

Please sign up or login with your details

Forgot password? Click here to reset