An implementation of morphological malware detection - INRIA - Institut National de Recherche en Informatique et en Automatique Accéder directement au contenu
Communication Dans Un Congrès Année : 2008

An implementation of morphological malware detection

Résumé

This study proposes an efficient construction of a morphological malware detector that is a detector which associates syntactic and semantic analysis. The detection strategy is based on control flow graphs of programs (CFG). Our construction employs tree automata techniques; this provides an efficient representation of the CFG database. Next, we deal with classic mutations using a generic graph rewriting engine. Finally, we carry out experiments to evaluate the false-positive ratio of the proposed methods.
Fichier non déposé

Dates et versions

inria-00335590 , version 1 (30-10-2008)

Identifiants

  • HAL Id : inria-00335590 , version 1

Citer

Guillaume Bonfante, Matthieu Kaczmarek, Jean-Yves Marion. An implementation of morphological malware detection. EICAR, May 2008, Laval, France. pp.49--62. ⟨inria-00335590⟩
136 Consultations
0 Téléchargements

Partager

Gmail Facebook X LinkedIn More