Title :
Program Behavior Fusion to Identify Malware
Author :
Jianmin Pang ; Yichi Zhang ; Zhen Shan ; Chao You
Author_Institution :
Nat. Digital Switching Syst. Eng. & Technol. Res. Center, Zhengzhou, China
Abstract :
Due to the underground economy stimulation, malware creators are writing malicious codes at an alarming rate. at the same time, novel resistance techniques are commonly available, leading to a huge number of variants. Behavior-based detection techniques are a promising solution to this serious problem. in this paper we propose fuse program behaviors to identify malware. This approach uses Bayesian training to get the malicious degree of program behavior, adopt D-S synthesize rule to fuse program behaviors to detect virus. Our experimental evaluation shows that our prototype system effective on detecting malicious codes and their variants.
Keywords :
belief networks; invasive software; Bayesian training; D-S synthesize rule; behavior-based detection techniques; fuse program behaviors; malicious codes; malware creators; malware identification; program behavior fusion; underground economy stimulation; Bayesian methods; Fuses; Malware; Prototypes; Software; Training; Viruses (medical); Bayesian; D-S theroy; information fusion; program behavior;
Conference_Titel :
Computational Intelligence and Design (ISCID), 2012 Fifth International Symposium on
Conference_Location :
Hangzhou
Print_ISBN :
978-1-4673-2646-9
DOI :
10.1109/ISCID.2012.30