Presentation 2007-12-19
A Classification and Feature Extraction based on the Static Analysis on the Computer Virus Codes
Kazuki IWAMOTO, Katsumi WASAKI,
PDF Download Page PDF download Page Link
Abstract(in Japanese) (See Japanese page)
Abstract(in English) About the variant judgment of the computer virus, we consider the method of classification and feature extraction based on the static analysis on the computer virus codes. Concretely, we disassemble the executable code (Win32) that we captured. We make the call graph from the API which is assumed to have characteristic and to effect as the malware does. Comparing with analyzed computer viruses, we can be able to define it is new or existing variant. And we try the feature extraction of the variants by making common subgraphs of some variants' feature.
Keyword(in Japanese) (See Japanese page)
Keyword(in English) Computer virus / Malware / Static analysis / Common subgraph / Feature extraction / Variant
Paper # ISEC2007-127
Date of Issue

Conference Information
Committee ISEC
Conference Date 2007/12/12(1days)
Place (in Japanese) (See Japanese page)
Place (in English)
Topics (in Japanese) (See Japanese page)
Topics (in English)
Chair
Vice Chair
Secretary
Assistant

Paper Information
Registration To Information Security (ISEC)
Language JPN
Title (in Japanese) (See Japanese page)
Sub Title (in Japanese) (See Japanese page)
Title (in English) A Classification and Feature Extraction based on the Static Analysis on the Computer Virus Codes
Sub Title (in English)
Keyword(1) Computer virus
Keyword(2) Malware
Keyword(3) Static analysis
Keyword(4) Common subgraph
Keyword(5) Feature extraction
Keyword(6) Variant
1st Author's Name Kazuki IWAMOTO
1st Author's Affiliation Japan Computer Security Research Center()
2nd Author's Name Katsumi WASAKI
2nd Author's Affiliation Graduate School of Science and Technology, Shinshu University
Date 2007-12-19
Paper # ISEC2007-127
Volume (vol) vol.107
Number (no) 397
Page pp.pp.-
#Pages 7
Date of Issue