Hidden Markov models for malware classification

被引:56
|
作者
Annachhatre, Chinmayee [1 ]
Austin, Thomas H. [1 ]
Stamp, Mark [1 ]
机构
[1] San Jose State Univ, Dept Comp Sci, San Jose, CA 95192 USA
关键词
D O I
10.1007/s11416-014-0215-x
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Previous research has shown that hidden Markov model (HMM) analysis is useful for detecting certain challenging classes of malware. In this research, we consider the related problem of malware classification based on HMMs. We train multiple HMMs on a variety of compilers and malware generators. More than 8,000 malware samples are then scored against these models and separated into clusters based on the resulting scores. We observe that the clustering results could be used to classify the malware samples into their appropriate families with good accuracy. Since none of the malware families in the test set were used to generate the HMMs, these results indicate that our approach can effective classify previously unknown malware, at least in some cases. Thus, such a clustering strategy could serve as a useful tool in malware analysis and classification.
引用
下载
收藏
页码:59 / 73
页数:15
相关论文
共 50 条
  • [1] Profile Hidden Markov Model for Malware Classification - Usage of System call Sequence for Malware Classification
    Pranamulia, Ramandika
    Asnar, Yudistira
    Perdana, Riza Satria
    PROCEEDINGS OF 2017 INTERNATIONAL CONFERENCE ON DATA AND SOFTWARE ENGINEERING (ICODSE), 2017,
  • [2] Malware classification using dynamic features and Hidden Markov Model
    Imran, Mohammad
    Afzal, Muhammad Tanvir
    Qadir, Muhammad Abdul
    JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2016, 31 (02) : 837 - 847
  • [3] Hidden Markov Models for silhouette classification
    Abd-Almageed, W
    Smith, C
    MULTIMEDIA, IMAGE PROCESSING AND SOFT COMPUTING: TRENDS, PRINCIPLES AND APPLICATIONS, 2002, 13 : 395 - 402
  • [4] Bayesian classification of Hidden Markov Models
    Kehagias, A
    MATHEMATICAL AND COMPUTER MODELLING, 1996, 23 (05) : 25 - 43
  • [5] HEALTHCARE AUDIO EVENT CLASSIFICATION USING HIDDEN MARKOV MODELS AND HIERARCHICAL HIDDEN MARKOV MODELS
    Peng, Ya-Ti
    Lin, Ching-Yung
    Sun, Ming-Ting
    Tsai, Kun-Cheng
    ICME: 2009 IEEE INTERNATIONAL CONFERENCE ON MULTIMEDIA AND EXPO, VOLS 1-3, 2009, : 1218 - +
  • [6] Scanpath modeling and classification with hidden Markov models
    Coutrot, Antoine
    Hsiao, Janet H.
    Chan, Antoni B.
    BEHAVIOR RESEARCH METHODS, 2018, 50 (01) : 362 - 379
  • [7] Classification of images based on Hidden Markov Models
    Mouret, Marc
    Solnon, Christine
    Wolf, Christian
    CBMI: 2009 INTERNATIONAL WORKSHOP ON CONTENT-BASED MULTIMEDIA INDEXING, 2009, : 169 - 174
  • [8] Classification of chirps using Hidden Markov Models
    Balachandran, Nikhil
    Creusere, Charles
    2006 FORTIETH ASILOMAR CONFERENCE ON SIGNALS, SYSTEMS AND COMPUTERS, VOLS 1-5, 2006, : 545 - +
  • [9] UNIVERSAL CLASSIFICATION FOR HIDDEN MARKOV-MODELS
    MERHAV, N
    IEEE TRANSACTIONS ON INFORMATION THEORY, 1991, 37 (06) : 1586 - 1594
  • [10] Classification of melodies by composer with Hidden Markov Models
    Pollastri, E
    Simoncelli, G
    FIRST INTERNATIONAL CONFERENCE ON WEB DELIVERING OF MUSIC, PROCEEDINGS, 2001, : 88 - 95