• DocumentCode
    3667432
  • Title

    Android malware analytic method based on improved multi-level signature matching

  • Author

    Zhiyuan Wang;Fubao Wu

  • Author_Institution
    Information Science and Engineering Department, University of Southeast, Nanjing, CO 210000 China
  • fYear
    2015
  • fDate
    4/1/2015 12:00:00 AM
  • Firstpage
    93
  • Lastpage
    98
  • Abstract
    The rapid development of smartphones bring not only convenience but also a great number malwares to people´s daily life. And the open source of Android operating system worsens the current situation. This paper proposed an Android malware analytic method based on improved multi-level signature matching algorithm. For signature generation we combined multi-level signature generation method with MD5 hash function, achieving the unique identification of API calls, method, class, and the whole application. With the signature obtained, the same mal-signatures of one kind malicious behavior in the malware database can be extracted successfully. Then the confirmed information of mal-signature can be used to check other applications, so that all the suspected applications containing same mal code as the malware database can be found. Finally locating and analyzing the main mal code of those suspected applications is necessary to determine whether they are malwares. Experiments indicated that our system can find malwares based on the malware database.
  • Keywords
    "Smart phones","Cryptography","Computers"
  • Publisher
    ieee
  • Conference_Titel
    Information Science and Technology (ICIST), 2015 5th International Conference on
  • Type

    conf

  • DOI
    10.1109/ICIST.2015.7288947
  • Filename
    7288947