Behavioral Malware Classification using Convolutional Recurrent Neural Networks

被引:0
|
作者
Alsulami, Bander [1 ]
Mancoridis, Spiros [1 ]
机构
[1] Drexel Univ, Philadelphia, PA 19104 USA
关键词
D O I
暂无
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Behavioral malware detection aims to improve on the performance of static signature-based techniques used by anti-virus systems, which are less effective against modern polymorphic and metamorphic malware. Behavioral malware classification aims to go beyond the detection of malware by also identifying a malware's family according to a naming scheme such as the ones used by anti-virus vendors. Behavioral malware classification techniques use run-time features, such as file system or network activities, to capture the behavioral characteristic of running processes. The increasing volume of malware samples, diversity of malware families, and the variety of naming schemes given to malware samples by anti-virus vendors present challenges to behavioral malware classifiers. We describe a behavioral classifier that uses a Convolutional Recurrent Neural Network and data from Microsoft Windows Prefetch files. We demonstrate the model's improvement on the state-of-the-art using a large dataset of malware families and four major anti-virus vendor naming schemes. The model is effective in classifying malware samples that belong to common and rare malware families and can incrementally accommodate the introduction of new malware samples and families.
引用
收藏
页码:103 / 111
页数:9
相关论文
共 50 条
  • [1] Benchmarking Convolutional and Recurrent Neural Networks for Malware Classification
    Safa, Haidar
    Nassar, Mohamed
    Al Orabi, Wael Al Rahal
    [J]. 2019 15TH INTERNATIONAL WIRELESS COMMUNICATIONS & MOBILE COMPUTING CONFERENCE (IWCMC), 2019, : 561 - 566
  • [2] Malware Classification using Deep Convolutional Neural Networks
    Kornish, David
    Geary, Justin
    Sansing, Victor
    Ezekiel, Soundararajan
    Pearlstein, Larry
    Njilla, Laurent
    [J]. 2018 IEEE APPLIED IMAGERY PATTERN RECOGNITION WORKSHOP (AIPR), 2018,
  • [3] Adversarial Attacks with Defense Mechanisms on Convolutional Neural Networks and Recurrent Neural Networks for Malware Classification
    Alzaidy, Sharoug
    Binsalleeh, Hamad
    [J]. APPLIED SCIENCES-BASEL, 2024, 14 (04):
  • [4] Malware Binary Image Classification Using Convolutional Neural Networks
    Kiger, John
    Ho, Shen-Shyang
    Heydari, Vahid
    [J]. PROCEEDINGS OF THE 17TH INTERNATIONAL CONFERENCE ON CYBER WARFARE AND SECURITY (ICCWS 2022), 2022, : 469 - 478
  • [5] Using convolutional neural networks for classification of malware represented as images
    Daniel Gibert
    Carles Mateu
    Jordi Planes
    Ramon Vicens
    [J]. Journal of Computer Virology and Hacking Techniques, 2019, 15 : 15 - 28
  • [6] Classification of Malware by Using Structural Entropy on Convolutional Neural Networks
    Gibert, Daniel
    Mateu, Carles
    Planes, Jordi
    Vicens, Ramon
    [J]. THIRTY-SECOND AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE / THIRTIETH INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE CONFERENCE / EIGHTH AAAI SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2018, : 7759 - 7764
  • [7] Using convolutional neural networks for classification of malware represented as images
    Gibert, Daniel
    Mateu, Carles
    Planes, Jordi
    Vicens, Ramon
    [J]. JOURNAL OF COMPUTER VIROLOGY AND HACKING TECHNIQUES, 2019, 15 (01) : 15 - 28
  • [8] Malware Classification with Deep Convolutional Neural Networks
    Kalash, Mahmoud
    Rochan, Mrigank
    Mohammed, Noman
    Bruce, Neil D. B.
    Wang, Yang
    Iqbal, Farkhund
    [J]. 2018 9TH IFIP INTERNATIONAL CONFERENCE ON NEW TECHNOLOGIES, MOBILITY AND SECURITY (NTMS), 2018,
  • [9] Convolutional Neural Networks for Classification of Malware Assembly Code
    Gibert, Daniel
    Bejar, Javier
    Mateu, Carles
    Planes, Jordi
    Solis, Daniel
    Vicens, Ramon
    [J]. RECENT ADVANCES IN ARTIFICIAL INTELLIGENCE RESEARCH AND DEVELOPMENT, 2017, 300 : 221 - 226
  • [10] A Novel Approach for Android Malware Detection and Classification using Convolutional Neural Networks
    Lekssays, Ahmed
    Falah, Bouchaib
    Abufardeh, Sameer
    [J]. ICSOFT: PROCEEDINGS OF THE 15TH INTERNATIONAL CONFERENCE ON SOFTWARE TECHNOLOGIES, 2020, : 606 - 614