Morphological Detection of Malware - Inria - Institut national de recherche en sciences et technologies du numérique Accéder directement au contenu
Communication Dans Un Congrès Année : 2008

Morphological Detection of Malware

Résumé

In the field of malware detection, method based on syntactical consideration are usually efficient. However, they are strongly vulnerable to obfuscation techniques. This study proposes an efficient construction of a morphological malware detector based on a syntactic and a semantic analysis, technically on control flow graphs of programs (CFG). Our construction employs tree automata techniques to provide an efficient representation of the CFG database. Next, we deal with classic obfuscation of programs by mutation using a generic graph rewriting engine. Finally, we carry out experiments to evaluate the false-positive ratio of the proposed methods.
Fichier principal
Vignette du fichier
flowgraph.pdf (313.96 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)
Loading...

Dates et versions

inria-00330021 , version 1 (13-10-2008)

Identifiants

  • HAL Id : inria-00330021 , version 1

Citer

Guillaume Bonfante, Matthieu Kaczmarek, Jean-Yves Marion. Morphological Detection of Malware. International Conference on Malicious and Unwanted Software, Fernando C. Colon Osorio, Oct 2008, Alexendria VA, United States. ⟨inria-00330021⟩
165 Consultations
411 Téléchargements

Partager

Gmail Facebook X LinkedIn More