A Fuzzy-based Process Mining Approach for Dynamic Malware Detection

被引:0
|
作者
Bernardi, Mario Luca [1 ]
Cimitile, Marta [2 ]
Martinelli, Fabio [3 ]
Mercaldo, Francesco [3 ]
机构
[1] Giustino Fortunato Univ, Benevento, Italy
[2] Unitelma Sapienza Univ, Rome, Italy
[3] CNR, Natl Res Council Italy, Inst Informat & Telemat, Pisa, Italy
关键词
RULE;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Mobile systems have become essential for communication and productivity but are also becoming target of continuous malware attacks. New malware are often obtained as variants of existing malicious code. This work describes an approach for dynamic malware detection based on the combination of Process Mining (PM) and Fuzzy Logic (FL) techniques. The firsts are used to characterize the behavior of an application identifying some recurring execution expressed as a set of declarative constraints between the system calls. Fuzzy logic is used to classify the analyzed malware applications and verify their relations with the existing malware variants. The combination of the two techniques allows to obtain a fingerprint of an application that is used to verify its maliciousness/trustfulness, establish if it belongs from a known malware family and identify the differences between the detected malware behavior and the other variants of the some malware family. The approach is applied on a dataset of 3000 trusted and malicious applications across twelve malware families and has shown a very good discrimination ability that can be exploited for malware detection and family identification.
引用
收藏
页数:8
相关论文
共 50 条
  • [41] A Novel Fuzzy-Based Smoke Detection System Using Dynamic and Static Smoke Features
    Deldjoo, Yashar
    Nazary, Fatemeh
    Fotouhi, Ali M.
    2015 23RD IRANIAN CONFERENCE ON ELECTRICAL ENGINEERING (ICEE), 2015, : 729 - 733
  • [42] A fuzzy-based approach for microgrids islanded operation
    Oliveira, D. Q.
    Zambroni de Souza, A. C.
    Santos, M. V.
    Almeida, A. B.
    Lopes, B. I. L.
    Saavedra, O. R.
    ELECTRIC POWER SYSTEMS RESEARCH, 2017, 149 : 178 - 189
  • [43] Fast fuzzy-based approach for recognizing objects
    Wen, Gongjian
    Wang, Runsheng
    Moshi Shibie yu Rengong Zhineng/Pattern Recognition and Artificial Intelligence, 10 (02): : 106 - 111
  • [44] In-execution dynamic malware analysis and detection by mining information in process control blocks of Linux OS
    Shahzad, Farrukh
    Shahzad, M.
    Farooq, Muddassar
    INFORMATION SCIENCES, 2013, 231 : 45 - 63
  • [45] A Fuzzy Deep Learning Network for Dynamic Mobile Malware Detection
    Mercaldo, Francesco
    Martinelli, Fabio
    Santone, Antonella
    2023 IEEE INTERNATIONAL CONFERENCE ON FUZZY SYSTEMS, FUZZ, 2023,
  • [46] Fuzzy-based dynamic soil erosion model (FuDSEM): Modelling approach and preliminary evaluation
    Cohen, Sagy
    Svoray, Tal
    Laronne, Jonathan B.
    Alexandrov, Yulia
    JOURNAL OF HYDROLOGY, 2008, 356 (1-2) : 185 - 198
  • [47] Takagi-Sugeno fuzzy-based approach for modeling and control of an activated sludge process
    Arifi, Ali
    Bouallegue, Soufiene
    INTERNATIONAL JOURNAL OF DYNAMICS AND CONTROL, 2024, 12 (08) : 3123 - 3138
  • [48] A dynamic fuzzy-based crossover method for genetic algorithms
    Amraii, S. Amirpour
    Ajallooeian, M.
    Lucas, C.
    19TH IEEE INTERNATIONAL CONFERENCE ON TOOLS WITH ARTIFICIAL INTELLIGENCE, VOL I, PROCEEDINGS, 2007, : 465 - 471
  • [49] A Malware Detection Scheme Based on Mining Format Information
    Bai, Jinrong
    Wang, Junfeng
    Zou, Guozhong
    SCIENTIFIC WORLD JOURNAL, 2014,
  • [50] Fuzzy-Based Goal Representation Adaptive Dynamic Programming
    Tang, Yufei
    He, Haibo
    Ni, Zhen
    Zhong, Xiangnan
    Zhao, Dongbin
    Xu, Xin
    IEEE TRANSACTIONS ON FUZZY SYSTEMS, 2016, 24 (05) : 1159 - 1175