Artículos de revistas
Toward A Taxonomy Of Malware Behaviors
Registro en:
Toward A Taxonomy Of Malware Behaviors. Oxford Univ Press, v. 58, p. 2758-2777 OCT-2015.
0010-4620
WOS:000362959000039
10.1093/comjnl/bxv047
Autor
Abed Gregio
Andre Ricardo; Afonso
Vitor Monte; Fernandes Filho
Dario Simoes; de Geus
Paulo Licio; Jino
Mario
Institución
Resumen
Malicious code attacks pose a serious threat to the security of information systems, as malware evolved from innocuous conceptual software to advanced and destructive cyber weapons. However, there is still the lack of a comprehensive and useful taxonomy to classify malware according to their behavior, since commonly used names are obsolete and unable to handle the complex and multipurpose currently observed samples. In this article, we present a brief survey on available malware taxonomies, discuss about issues on existing naming schemes and introduce an extensible taxonomy consisting of an initial set of behaviors usually exhibited by malware during an infection. The main goal of our proposed taxonomy is to address the menace of potentially malicious programs based on their observed behaviors, thus aiding in incident response procedures. Finally, we present a case study to evaluate our behavior-centric taxonomy, in which we apply identification patterns extracted from the proposed taxonomy to over 12 thousand known malware samples. The leveraged results show that it is possible to screen malicious programs that exhibit suspicious behaviors, even when they remain undetected by antivirus tools. 58 10
2758 2777