Hidden Markov models for malware classification

被引:56
|
作者
Annachhatre, Chinmayee [1 ]
Austin, Thomas H. [1 ]
Stamp, Mark [1 ]
机构
[1] San Jose State Univ, Dept Comp Sci, San Jose, CA 95192 USA
关键词
D O I
10.1007/s11416-014-0215-x
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Previous research has shown that hidden Markov model (HMM) analysis is useful for detecting certain challenging classes of malware. In this research, we consider the related problem of malware classification based on HMMs. We train multiple HMMs on a variety of compilers and malware generators. More than 8,000 malware samples are then scored against these models and separated into clusters based on the resulting scores. We observe that the clustering results could be used to classify the malware samples into their appropriate families with good accuracy. Since none of the malware families in the test set were used to generate the HMMs, these results indicate that our approach can effective classify previously unknown malware, at least in some cases. Thus, such a clustering strategy could serve as a useful tool in malware analysis and classification.
引用
收藏
页码:59 / 73
页数:15
相关论文
共 50 条
  • [21] Hidden Gauss-Markov models for signal classification
    Ainsleigh, PL
    Kehtarnavaz, N
    Streit, RL
    IEEE TRANSACTIONS ON SIGNAL PROCESSING, 2002, 50 (06) : 1355 - 1367
  • [22] Time Series Classification by Imprecise Hidden Markov Models
    Antonucci, Alessandro
    De Rosa, Rocco
    NEURAL NETS WIRN11, 2011, 234 : 195 - +
  • [23] On the use of hidden Markov models in infants' cry classification
    Lederman, D
    Cohen, A
    Zmora, E
    Wermke, K
    Hauschildt, S
    Stellzig-Eisenhauer, A
    22ND CONVENTION OF ELECTRICAL AND ELECTRONICS ENGINEERS IN ISRAEL, PROCEEDINGS, 2002, : 350 - 352
  • [24] Hidden Markov models for the analysis and classification of ultrasound data
    Moldenhauer, J
    Beth, T
    Mende, U
    CARS 2004: COMPUTER ASSISTED RADIOLOGY AND SURGERY, PROCEEDINGS, 2004, 1268 : 231 - 236
  • [25] MMOG player classification using Hidden Markov Models
    Matsumoto, Y
    Thawonmas, R
    ENTERTAINMENT COMPUTING - ICEC 2004, 2004, 3166 : 429 - 434
  • [26] Cyclic linear hidden Markov models for shape classification
    Palazon, Vicente
    Marzal, Andres
    Vilar, Juan Miguel
    ADVANCES IN IMAGE AND VIDEO TECHNOLOGY, PROCEEDINGS, 2007, 4872 : 152 - 165
  • [27] Classification of aerial missions using hidden Markov models
    Anderson, M
    SYMBOLIC AND QUANTITATIVE APPROACHES TO REASONING WITH UNCERTAINTY, PROCEEDING, 2003, 2711 : 125 - 136
  • [28] Automatic Classification of Disordered Voices with Hidden Markov Models
    Benhammoud, Redouane
    Kacha, Abdellah
    2018 INTERNATIONAL CONFERENCE ON SIGNAL, IMAGE, VISION AND THEIR APPLICATIONS (SIVA), 2018,
  • [29] Folk music classification using hidden Markov models
    Chai, W
    Vercoe, B
    IC-AI'2001: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE, VOLS I-III, 2001, : 216 - 221
  • [30] Maximum margin hidden Markov models for sequence classification
    Mutsam, Nikolaus
    Pernkopf, Franz
    PATTERN RECOGNITION LETTERS, 2016, 77 : 14 - 20