Presentation | 2007-12-19 A Classification and Feature Extraction based on the Static Analysis on the Computer Virus Codes Kazuki IWAMOTO, Katsumi WASAKI, |
---|---|
PDF Download Page | PDF download Page Link |
Abstract(in Japanese) | (See Japanese page) |
Abstract(in English) | About the variant judgment of the computer virus, we consider the method of classification and feature extraction based on the static analysis on the computer virus codes. Concretely, we disassemble the executable code (Win32) that we captured. We make the call graph from the API which is assumed to have characteristic and to effect as the malware does. Comparing with analyzed computer viruses, we can be able to define it is new or existing variant. And we try the feature extraction of the variants by making common subgraphs of some variants' feature. |
Keyword(in Japanese) | (See Japanese page) |
Keyword(in English) | Computer virus / Malware / Static analysis / Common subgraph / Feature extraction / Variant |
Paper # | ISEC2007-127 |
Date of Issue |
Conference Information | |
Committee | ISEC |
---|---|
Conference Date | 2007/12/12(1days) |
Place (in Japanese) | (See Japanese page) |
Place (in English) | |
Topics (in Japanese) | (See Japanese page) |
Topics (in English) | |
Chair | |
Vice Chair | |
Secretary | |
Assistant |
Paper Information | |
Registration To | Information Security (ISEC) |
---|---|
Language | JPN |
Title (in Japanese) | (See Japanese page) |
Sub Title (in Japanese) | (See Japanese page) |
Title (in English) | A Classification and Feature Extraction based on the Static Analysis on the Computer Virus Codes |
Sub Title (in English) | |
Keyword(1) | Computer virus |
Keyword(2) | Malware |
Keyword(3) | Static analysis |
Keyword(4) | Common subgraph |
Keyword(5) | Feature extraction |
Keyword(6) | Variant |
1st Author's Name | Kazuki IWAMOTO |
1st Author's Affiliation | Japan Computer Security Research Center() |
2nd Author's Name | Katsumi WASAKI |
2nd Author's Affiliation | Graduate School of Science and Technology, Shinshu University |
Date | 2007-12-19 |
Paper # | ISEC2007-127 |
Volume (vol) | vol.107 |
Number (no) | 397 |
Page | pp.pp.- |
#Pages | 7 |
Date of Issue |