Title :
A Study on Analysis of Malicious Codes Similarity Using N-Gram and Vector Space Model
Author :
Lee, Donghwi ; Park, Won Hyung ; Kim, Kuinam J.
Author_Institution :
Dept. of Ind. Security, Kyonggi Univ., Suwon, South Korea
Abstract :
The development of Information and Communication gives a lot of convenience in our lives, but on the other hand, the new cyber threat like viruses, computer intrusions and so on also increases. Especially, malicious codes such as viruses over the internet are distributed in large quantities. Several studies using reverse engineering or virtual machine have been carried out to analyze malicious codes, but studies on the analysis of the implications or the similarities between malicious codes have not been carried out in variety. Therefore, we suggest the analysis of similarity using N-Gram and Vector Space Model in this paper. The results shows that we can distinguish malicious codes from others using this method.
Keywords :
codes; computer viruses; virtual machines; N-Gram model; computer intrusions; malicious code analysis; vector space model; virtual machine; Computers; Indexes; Information services; Internet; Spyware;
Conference_Titel :
Information Science and Applications (ICISA), 2011 International Conference on
Conference_Location :
Jeju Island
Print_ISBN :
978-1-4244-9222-0
Electronic_ISBN :
978-1-4244-9223-7
DOI :
10.1109/ICISA.2011.5772331