Behavior-Based Malware Analysis and Detection

Wu Liu,Ping Ren,Ke Liu,Hai-xin Duan
DOI: https://doi.org/10.1109/IWCDM.2011.17
2011-01-01
Abstract:Malware, such as Trojan Horse, Worms and Spy ware severely threatens Internet. We observed that although malware and its variants may vary a lot from content signatures, they share some behavior features at a higher level which are more precise in revealing the real intent of malware. This paper investigates the technique of malware behavior extraction, presents the formal Malware Behavior Feature (MBF) extraction method, and proposes the malicious behavior feature based malware detection algorithm. Finally we designed and implemented the MBF based malware detection system, and the experimental results show that it can detect newly appeared unknown malwares.
What problem does this paper attempt to address?