DocumentCode
257161
Title
An effective online scheme for detecting Android malware
Author
Shuang Liang ; Xiaojiang Du ; Tan, Chiu C. ; Wei Yu
Author_Institution
Dept. of Comput. & Inf. Sci., Temple Univ., Philadelphia, PA, USA
fYear
2014
fDate
4-7 Aug. 2014
Firstpage
1
Lastpage
8
Abstract
The growing popularity of Android-based smart-phones have led to the rise of Android based malware. In particular, profit-motivated malware is becoming increasingly popular in Android malware distribution. These malware typically profit by sending premium-rate SMS messages and/or make premium-rate phone calls from infected devices without user consent. In this paper, we investigate the telephony framework of the Android operating system and propose a novel process user-identification (UID) based online detection scheme. Our scheme can effectively detect premium-rate and background SMS messages as well as premium-rate phone calls initiated by malware. We implemented our detection system on a Samsung Google Nexus 4 running Android Jelly Bean and tested the effectiveness of detecting real malware from Android markets. The experimental results show that our scheme is efficient and effective in detecting background messages and premium-rate messages and phone calls. Our scheme can detect and block all the background and premium-rate SMS messages and phone calls initiated by popular malware.
Keywords
Android (operating system); invasive software; Android Jelly Bean; Android malware distribution; Android markets; Android operating system; Android-based smart phones; Samsung Google Nexus 4; UID based online detection scheme; online scheme; premium rate SMS messages; premium-rate phone calls; process user identification; profit-motivated malware; telephony framework; Libraries; Linux; Malware; Mobile communication; Smart phones; Sockets; Telephony; Android; malware detection; security; smartphone;
fLanguage
English
Publisher
ieee
Conference_Titel
Computer Communication and Networks (ICCCN), 2014 23rd International Conference on
Conference_Location
Shanghai
Type
conf
DOI
10.1109/ICCCN.2014.6911740
Filename
6911740
Link To Document