Analysis of Malware Behavior: Type Classification using Machine Learning

被引:0
|
作者
Pirscoveanu, Radu S. [1 ]
Hansen, Steven S. [1 ]
Larsen, Thor M. T. [1 ]
Stevanovic, Matija [1 ]
Pedersen, Jens Myrup [1 ]
Czech, Alexandre [2 ]
机构
[1] Aalborg Univ, Aalborg, Denmark
[2] Ecole Cent Elect, Paris, France
关键词
Malware; type-classification; dynamic analysis; scalability; Cuckoo sandbox; Random Forests; API call; feature selection; supervised machine learning;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Malicious software has become a major threat to modern society, not only due to the increased complexity of the malware itself but also due to the exponential increase of new malware each day. This study tackles the problem of analyzing and classifying a high amount of malware in a scalable and automatized manner. We have developed a distributed malware testing environment by extending Cuckoo Sandbox that was used to test an extensive number of malware samples and trace their behavioral data. The extracted data was used for the development of a novel type classification approach based on supervised machine learning. The proposed classification approach employs a novel combination of features that achieves a high classification rate with a weighted average AUC value of 0.98 using Random Forests classifier. The approach has been extensively tested on a total of 42,000 malware samples. Based on the above results it is believed that the developed system can be used to pre-filter novel from known malware in a future malware analysis system.
引用
收藏
页数:7
相关论文
共 50 条
  • [41] Malware Detection Using Machine Learning
    Kumar, Ajay
    Abhishek, Kumar
    Shah, Kunjal
    Patel, Divy
    Jain, Yash
    Chheda, Harsh
    Nerurka, Pranav
    [J]. KNOWLEDGE GRAPHS AND SEMANTIC WEB, KGSWC 2020, 2020, 1232 : 61 - 71
  • [42] FEATURE SELECTION AND MACHINE LEARNING CLASSIFICATION FOR MALWARE DETECTION
    Khammas, Ban Mohammed
    Monemi, Alireza
    Bassi, Joseph Stephen
    Ismail, Ismahani
    Nor, Sulaiman Mohd
    Marsono, Muhammad Nadzir
    [J]. JURNAL TEKNOLOGI, 2015, 77 (01):
  • [43] A Novel and Dedicated Machine Learning Model for Malware Classification
    Li, Miles Q.
    Fung, Benjamin C. M.
    Charland, Philippe
    Ding, Steven H. H.
    [J]. PROCEEDINGS OF THE 16TH INTERNATIONAL CONFERENCE ON SOFTWARE TECHNOLOGIES (ICSOFT), 2021, : 617 - 628
  • [44] Using Federated Learning on Malware Classification
    Lin, Kuang-Yao
    Huang, Wei-Ren
    [J]. 2020 22ND INTERNATIONAL CONFERENCE ON ADVANCED COMMUNICATION TECHNOLOGY (ICACT): DIGITAL SECURITY GLOBAL AGENDA FOR SAFE SOCIETY!, 2020, : 585 - 589
  • [45] Support Vector Machine for malware analysis and classification
    Kruczkowski, Michal
    Niewiadomska-Szynkiewicz, Ewa
    [J]. 2014 IEEE/WIC/ACM INTERNATIONAL JOINT CONFERENCES ON WEB INTELLIGENCE (WI) AND INTELLIGENT AGENT TECHNOLOGIES (IAT), VOL 2, 2014, : 415 - 420
  • [46] An inception V3 approach for malware classification using machine learning and transfer learning
    Ahmed, Mumtaz
    Afreen, Neda
    Ahmed, Muneeb
    Sameer, Mustafa
    Ahamed, Jameel
    [J]. International Journal of Intelligent Networks, 2023, 4 : 11 - 18
  • [47] Exploring Malware Behavior of Webpages Using Machine Learning Technique: An Empirical Study
    Alwaghid, Alhanoof Faiz
    Sarkar, Nurul, I
    [J]. ELECTRONICS, 2020, 9 (06) : 1 - 20
  • [48] Driving behavior analysis and classification by vehicle OBD data using machine learning
    Kumar, Raman
    Jain, Anuj
    [J]. JOURNAL OF SUPERCOMPUTING, 2023, 79 (16): : 18800 - 18819
  • [49] Driving behavior analysis and classification by vehicle OBD data using machine learning
    Raman kumar
    Anuj Jain
    [J]. The Journal of Supercomputing, 2023, 79 : 18800 - 18819
  • [50] An Android Behavior-Based Malware Detection Method using Machine Learning
    Chang, Wei-Ling
    Sun, Hung-Min
    Wu, Wei
    [J]. 2016 IEEE INTERNATIONAL CONFERENCE ON SIGNAL PROCESSING, COMMUNICATIONS AND COMPUTING (ICSPCC), 2016,