Automated polymorphic worm signature generation approach based on seed-extending

Autor: Jie WANG, Xiao-xian HE
Jazyk: čínština
Rok vydání: 2014
Předmět:
Zdroj: Tongxin xuebao, Vol 35, Pp 12-19 (2014)
Druh dokumentu: article
ISSN: 1000-436X
DOI: 10.3969/j.issn.1000-436x.2014.09.002
Popis: A polymorphic worm signature generation approach based on seed-extending,SESG,was proposed.Firstly,algorithm SESG puts all sequences into a queue based on their weight.Seed sequence in the queue is extended,and all kinds of worm sequences and noise sequences are classified.Finally,worm signature is generated from classified worm sequences.Experiments are run to test SESG and compared with other approaches.Experiment results show that SESG can classify worm sequences and noise sequences from suspicious flow pool over other existed approaches,which can generate effective worm signature more easily.
Databáze: Directory of Open Access Journals