Novel Feature Extraction, Selection and Fusion for Effective Malware Family Classification

11/13/2015
by   Mansour Ahmadi, et al.
0

Modern malware is designed with mutation characteristics, namely polymorphism and metamorphism, which causes an enormous growth in the number of variants of malware samples. Categorization of malware samples on the basis of their behaviors is essential for the computer security community, because they receive huge number of malware everyday, and the signature extraction process is usually based on malicious parts characterizing malware families. Microsoft released a malware classification challenge in 2015 with a huge dataset of near 0.5 terabytes of data, containing more than 20K malware samples. The analysis of this dataset inspired the development of a novel paradigm that is effective in categorizing malware variants into their actual family groups. This paradigm is presented and discussed in the present paper, where emphasis has been given to the phases related to the extraction, and selection of a set of novel features for the effective representation of malware samples. Features can be grouped according to different characteristics of malware behavior, and their fusion is performed according to a per-class weighting paradigm. The proposed method achieved a very high accuracy (≈ 0.998) on the Microsoft Malware Challenge dataset.

READ FULL TEXT
research
06/22/2019

Andro-Simnet: Android Malware Family Classification Using Social Network Analysis

While the rapid adaptation of mobile devices changes our daily life more...
research
10/18/2022

A Novel Feature Representation for Malware Classification

In this study we have presented a novel feature representation for malic...
research
08/04/2020

DAEMON: Dataset-Agnostic Explainable Malware Classification Using Multi-Stage Feature Mining

Numerous metamorphic and polymorphic malicious variants are generated au...
research
02/22/2018

Microsoft Malware Classification Challenge

The Microsoft Malware Classification Challenge was announced in 2015 alo...
research
11/21/2017

DeepSign: Deep Learning for Automatic Malware Signature Generation and Classification

This paper presents a novel deep learning based method for automatic mal...
research
12/27/2018

Malicious Software Detection and Classification utilizing Temporal-Graphs of System-call Group Relations

In this work we propose a graph-based model that, utilizing relations be...
research
01/29/2019

Throttling Malware Families in 2D

Malicious software are categorized into families based on their static a...

Please sign up or login with your details

Forgot password? Click here to reset