Towards a Methodical Evaluation of Antivirus Scans and Labels "If You're Not Confused, You're Not Paying Attention"

被引:4
|
作者
Mohaisen, Aziz [1 ]
Alrawi, Omar [2 ]
Larson, Matt [3 ]
McPherson, Danny [1 ]
机构
[1] Verisign Labs, Reston, VA 20190 USA
[2] Qatar Fdn, Cambridge, MA USA
[3] Dyn, Manchester, NH USA
关键词
Malware; Labeling; Automatic analysis; Evaluation; CLASSIFICATION;
D O I
10.1007/978-3-319-05149-9_15
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In recent years, researchers have relied heavily on labels provided by antivirus companies in establishing ground truth for applications and algorithms of malware detection, classification, and clustering. Furthermore, companies use those labels for guiding their mitigation and disinfection efforts. However, ironically, there is no prior systematic work that validates the performance of antivirus vendors, the reliability of those labels (or even detections), or how they affect the said applications. Equipped with malware samples of several malware families that are manually inspected and labeled, we pose the following questions: How do different antivirus scans perform relatively? How correct are the labels given by those scans? How consistent are AV scans among each other? Our answers to these questions reveal alarming results about the correctness, completeness, coverage, and consistency of the labels utilized by much existing research. We invite the research community to challenge the assumption of relying on antivirus scans and labels as a ground truth for evaluating malware analysis and classification techniques.
引用
收藏
页码:231 / 241
页数:11
相关论文
共 46 条
  • [1] If You're Not Confused, You're Not Paying Attention: Ochrobactrum Is Not Brucella
    Moreno, Edgardo
    Middlebrook, Earl A.
    Altamirano-Silva, Pamela
    Al Dahouk, Sascha
    Araj, George F.
    Arce-Gorvel, Vilma
    Arenas-Gamboa, Angela
    Ariza, Javier
    Barquero-Calvo, Elias
    Battelli, Giorgio
    Bertu, Wilson J.
    Blasco, Jose Maria
    Bosilkovski, Mile
    Cadmus, Simeon
    Caswell, Clayton C.
    Celli, Jean
    Chacon-Diaz, Carlos
    Chaves-Olarte, Esteban
    Comerci, Diego J.
    Conde-Alvarez, Raquel
    Cook, Elizabeth
    Cravero, Silvio
    Dadar, Maryam
    De Boelle, Xavier
    De Massis, Fabrizio
    Diaz, Ramon
    Escobar, Gabriela I.
    Fernandez-Lago, Luis
    Ficht, Thomas A.
    Foster, Jeffrey T.
    Garin-Bastuji, Bruno
    Godfroid, Jacques
    Gorvel, Jean-Pierre
    Gueler, Leyla
    Erdenlig-Guerbilek, Sevil
    Gusi, Amayel M.
    Guzman-Verri, Caterina
    Hai, Jiang
    Hernandez-Mora, Gabriela
    Iriarte, Maite
    Jacob, Nestor R.
    Keriel, Anne
    Khames, Maamar
    Kohler, Stephan
    Letesson, Jean-Jacques
    Loperena-Barber, Maite
    Lopez-Goni, Ignacio
    McGiven, John
    Melzer, Falk
    Mora-Cartin, Ricardo
    [J]. JOURNAL OF CLINICAL MICROBIOLOGY, 2023, 61 (08)
  • [2] If You're Not Outraged, You're Not Paying Attention
    Cuellar, Norma G.
    [J]. JOURNAL OF TRANSCULTURAL NURSING, 2017, 28 (06) : 529 - 529
  • [3] TICI: If You Are Not Confused, Then You Are Not Paying Attention
    Kallmes, D. F.
    [J]. AMERICAN JOURNAL OF NEURORADIOLOGY, 2012, 33 (05) : 975 - 976
  • [4] 'Are you sure you're paying attention?' - 'Uh-huh' Communicating understanding as a marker of attentiveness
    Buschmeier, Hendrik
    Malisz, Zofia
    Wlodarczak, Marcin
    Kopp, Stefan
    Wagner, Petra
    [J]. 12TH ANNUAL CONFERENCE OF THE INTERNATIONAL SPEECH COMMUNICATION ASSOCIATION 2011 (INTERSPEECH 2011), VOLS 1-5, 2011, : 2068 - 2071
  • [5] Pay attention to what you're printing
    Barrass, P
    [J]. ELECTRONIC DESIGN, 2000, 48 (08) : 56 - 56
  • [6] If You′re Not Scared, You Haven′t Been Paying Attention: Trump, the Radical- ization of the GOP, and the Future of US Democracy after the Midterms 2022
    Stengel, Frank A.
    [J]. AUSTRIAN JOURNAL OF POLITICAL SCIENCE, 2023, 52 (01): : 32 - 58
  • [7] You're Hired! Changing Students' Attitudes Towards Engineering
    Brevik, Kristin M.
    Bowen, Bradley
    Bowman, Frank M.
    Jean, Kristi
    [J]. 2014 ASEE ANNUAL CONFERENCE, 2014,
  • [8] A Little Bit Attention Is All You Need for Person Re-Identification
    Eisenbach, Markus
    Luebberstedt, Jannik
    Aganian, Dustin
    Gross, Horst-Michael
    [J]. 2023 IEEE INTERNATIONAL CONFERENCE ON ROBOTICS AND AUTOMATION (ICRA 2023), 2023, : 7598 - 7605
  • [9] No one scans you and says 'you're alright now': the experience of embodied risk for young women living with a history of breast cancer
    Rees, Sophie
    [J]. HEALTH RISK & SOCIETY, 2018, 20 (7-8) : 312 - 324
  • [10] Male and Female Parole Decisions: Is Paying Your Dues or Saying You're Sorry More Important?
    Estrada-Reynolds, Victoria C.
    Schweitzer, Kimberly A.
    Nunez, Narina
    Culhane, Scott
    [J]. PSYCHIATRY PSYCHOLOGY AND LAW, 2016, 23 (06) : 893 - 907