tLab: A System Enabling Malware Clustering Based on Suspicious Activity Trees
Autor: | Dina Satybaldina, Nurlan Tashatov, Anton Kopeikin, Arnur G. Tokhtabayev |
---|---|
Rok vydání: | 2017 |
Předmět: |
021110 strategic
defence & security studies Software_OPERATINGSYSTEMS Computer science 0211 other engineering and technologies 02 engineering and technology Semantics computer.software_genre Domain (software engineering) World Wide Web ComputingMethodologies_PATTERNRECOGNITION 0202 electrical engineering electronic engineering information engineering Malware 020201 artificial intelligence & image processing Data mining Cluster analysis computer |
Zdroj: | Lecture Notes in Computer Science ISBN: 9783319651262 MMM-ACNS |
Popis: | We present a new approach for malware clustering in the domain of their behavior. To this end, we use a system called tLab that offers analysis and detection of modern complex malware including user-oriented and targeted attacks. Due to technologies used, tLab identifies and describes malware behavior at various levels of semantics, which makes it very instrumental in cluster analysis. |
Databáze: | OpenAIRE |
Externí odkaz: |