Hidden Markov models for malware classification

被引:56
|
作者
Annachhatre, Chinmayee [1 ]
Austin, Thomas H. [1 ]
Stamp, Mark [1 ]
机构
[1] San Jose State Univ, Dept Comp Sci, San Jose, CA 95192 USA
关键词
D O I
10.1007/s11416-014-0215-x
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Previous research has shown that hidden Markov model (HMM) analysis is useful for detecting certain challenging classes of malware. In this research, we consider the related problem of malware classification based on HMMs. We train multiple HMMs on a variety of compilers and malware generators. More than 8,000 malware samples are then scored against these models and separated into clusters based on the resulting scores. We observe that the clustering results could be used to classify the malware samples into their appropriate families with good accuracy. Since none of the malware families in the test set were used to generate the HMMs, these results indicate that our approach can effective classify previously unknown malware, at least in some cases. Thus, such a clustering strategy could serve as a useful tool in malware analysis and classification.
引用
收藏
页码:59 / 73
页数:15
相关论文
共 50 条
  • [31] Helicopter detection and classification using hidden Markov models
    Kuklinski, WS
    O'Neil, SD
    Tromp, LD
    SIGNAL PROCESSING, SENSOR FUSION, AND TARGET RECOGNITION VIII, 1999, 3720 : 130 - 139
  • [32] Hidden tree Markov models for document image classification
    Diligenti, M
    Frasconi, P
    Gori, M
    IEEE TRANSACTIONS ON PATTERN ANALYSIS AND MACHINE INTELLIGENCE, 2003, 25 (04) : 519 - 523
  • [33] Pedestrian Gait Classification Based on Hidden Markov Models
    Wang, Weihua
    Liu, Zhijing
    ARTIFICIAL INTELLIGENCE AND COMPUTATIONAL INTELLIGENCE, PT I, 2010, 6319 : 479 - 487
  • [34] Fuzzy Hidden Markov Models for Indonesian Speech Classification
    Yulita, Intan Nurma
    The, Houw Liong
    Adiwijaya
    JOURNAL OF ADVANCED COMPUTATIONAL INTELLIGENCE AND INTELLIGENT INFORMATICS, 2012, 16 (03) : 381 - 387
  • [35] HIDDEN MARKOV MODELS APPLIED ONTO GAIT CLASSIFICATION
    Bonnet, Stephane
    Jallon, Pierre
    18TH EUROPEAN SIGNAL PROCESSING CONFERENCE (EUSIPCO-2010), 2010, : 929 - 933
  • [36] Chromosome classification using continuous Hidden Markov Models
    Martínez, C
    García, H
    Juan, A
    Casacuberta, F
    PATTERN RECOGNITION AND IMAGE ANALYSIS, PROCEEDINGS, 2003, 2652 : 494 - 501
  • [37] QUESTION CLASSIFICATION USING PROFILE HIDDEN MARKOV MODELS
    Pan, Yan
    Tang, Yong
    Luo, Ye-Min
    Lin, Lu-Xian
    Wu, Gui-Bin
    INTERNATIONAL JOURNAL ON ARTIFICIAL INTELLIGENCE TOOLS, 2010, 19 (01) : 121 - 131
  • [38] Markov models - hidden Markov models
    Grewal, Jasleen K.
    Krzywinski, Martin
    Altman, Naomi
    NATURE METHODS, 2019, 16 (09) : 795 - 796
  • [39] Markov models — hidden Markov models
    Jasleen K. Grewal
    Martin Krzywinski
    Naomi Altman
    Nature Methods, 2019, 16 : 795 - 796
  • [40] Dynamic IoT Malware Detection in Android Systems Using Profile Hidden Markov Models
    Abanmi, Norah
    Kurdi, Heba
    Alzamel, Mai
    APPLIED SCIENCES-BASEL, 2023, 13 (01):