کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
456434 695716 2014 10 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
Control flow-based opcode behavior analysis for Malware detection
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر شبکه های کامپیوتری و ارتباطات
پیش نمایش صفحه اول مقاله
Control flow-based opcode behavior analysis for Malware detection
چکیده انگلیسی

Opcode sequences from decompiled executables have been employed to detect malware. Currently, opcode sequences are extracted using text-based methods, and the limitation of this method is that the extracted opcode sequences cannot represent the true behaviors of an executable. To solve this issue, we present a control flow-based method to extract executable opcode behaviors. The behaviors extracted by this method can fully represent the behavior characteristics of an executable. To verify the efficiency of control flow-based behaviors, we perform a comparative study of the two types of opcode behavior analysis methods. The experimental results indicate that the proposed control flow-based method has a higher overall accuracy and a lower false positive rate.

ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: Computers & Security - Volume 44, July 2014, Pages 65–74
نویسندگان
, , , ,