Function length as a tool for malware classification


Autoria(s): Tian, R.; Batten, L. M.; Versteeg, S. C.
Contribuinte(s)

[Unknown]

Data(s)

01/01/2008

Resumo

The proliferation of malware is a serious threat to computer and information systems throughout the world. Antimalware companies are continually challenged to identify and counter new malware as it is released into the wild. In attempts to speed up this identification and response, many researchers have examined ways to efficiently automate classification of malware as it appears in the environment. In this paper, we present a fast, simple and scalable method of classifying Trojans based only on the lengths of their functions. Our results indicate that function length may play a significant role in classifying malware, and, combined with other features, may result in a fast, inexpensive and scalable method of malware classification.<br />

Identificador

http://hdl.handle.net/10536/DRO/DU:30018116

Idioma(s)

eng

Publicador

IEEE

Relação

http://dro.deakin.edu.au/eserv/DU:30018116/batten-functionlengthasatool-2008.pdf

http://dx.doi.org/10.1109/MALWARE.2008.4690860

Direitos

2008, IEEE

Palavras-Chave #Trojans #function length #malware classification #malware proliferation #invasive software
Tipo

Conference Paper