A comparison of static, dynamic, and hybrid analysis for malware detection

被引:203
|
作者
Damodaran A. [1 ]
Troia F.D. [2 ]
Visaggio C.A. [2 ]
Austin T.H. [1 ]
Stamp M. [1 ]
机构
[1] Department of Computer Science, San Jose State University, San Jose
[2] Department of Engineering, Università degli Studi del Sannio, Benevento
关键词
Receiver Operating Characteristic Curve; Hide Markov Model; Control Flow Graph; Precision Recall Curve; Signature Base Detection;
D O I
10.1007/s11416-015-0261-z
中图分类号
学科分类号
摘要
In this research, we compare malware detection techniques based on static, dynamic, and hybrid analysis. Specifically, we train Hidden Markov Models (HMMs) on both static and dynamic feature sets and compare the resulting detection rates over a substantial number of malware families. We also consider hybrid cases, where dynamic analysis is used in the training phase, with static techniques used in the detection phase, and vice versa. In our experiments, a fully dynamic approach generally yields the best detection rates. We discuss the implications of this research for malware detection based on hybrid techniques. © 2015, Springer-Verlag France.
引用
收藏
页码:1 / 12
页数:11
相关论文
共 50 条
  • [21] A Study on Variant Malware Detection Techniques Using Static and Dynamic Features
    Kang, Jinsu
    Won, Yoojae
    JOURNAL OF INFORMATION PROCESSING SYSTEMS, 2020, 16 (04): : 882 - 895
  • [22] Binary code analysis for malware with expansive static analysis and dynamic emulation
    Izumida, Tomonori
    Mori, Akira
    Futatsugi, Kokichi
    Computer Software, 2012, 29 (04) : 199 - 218
  • [23] Integrating Static and Dynamic Malware Analysis Using Machine Learning
    Mangialardo, R. J.
    Duarte, J. C.
    IEEE LATIN AMERICA TRANSACTIONS, 2015, 13 (09) : 3080 - 3087
  • [24] Malware Detection in Android based on Dynamic Analysis
    Bhatia, Taniya
    Kaushal, Rishabh
    2017 INTERNATIONAL CONFERENCE ON CYBER SECURITY AND PROTECTION OF DIGITAL SERVICES (CYBER SECURITY), 2017,
  • [25] AmandaSystem: A new framework for static and dynamic Android malware analysis
    Tang, Jianfei
    Zhao, Hui
    JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2022, 43 (05) : 6575 - 6589
  • [26] Comprehensive Android Malware Detection: Leveraging Machine Learning and Sandboxing Techniques through Static and Dynamic Analysis
    Bhooshan, Prashant
    Darshan, Shiva S. L.
    Sonkar, Nidhi
    2024 IEEE 21ST INTERNATIONAL CONFERENCE ON MOBILE AD-HOC AND SMART SYSTEMS, MASS 2024, 2024, : 580 - 585
  • [27] A Family of Droids-Android Malware Detection via Behavioral Modeling: Static vs Dynamic Analysis
    Onwuzurike, Lucky
    Almeida, Mario
    Mariconti, Enrico
    Blackburn, Jeremy
    Stringhini, Gianluca
    De Cristofaro, Emiliano
    2018 16TH ANNUAL CONFERENCE ON PRIVACY, SECURITY AND TRUST (PST), 2018, : 163 - 172
  • [28] I Find Your Behavior Disturbing: Static and Dynamic App Behavioral Analysis for Detection of Android Malware
    Martinelli, Fabio
    Mercaldo, Francesco
    Saracino, Andrea
    Visaggio, Corrado Aaron
    2016 14TH ANNUAL CONFERENCE ON PRIVACY, SECURITY AND TRUST (PST), 2016,
  • [29] Windows malware detection based on static analysis with multiple features
    Yousuf M.I.
    Anwer I.
    Riasat A.
    Zia K.T.
    Kim S.
    PeerJ Computer Science, 2023, 9
  • [30] Static Analysis of Android Malware Detection using Deep Learning
    Sandeep, H. R.
    PROCEEDINGS OF THE 2019 INTERNATIONAL CONFERENCE ON INTELLIGENT COMPUTING AND CONTROL SYSTEMS (ICCS), 2019, : 841 - 845