Malicious Code Detection Using Opcode Running Tree Representation
Published in 2014 Ninth International Conference on P2P, Parallel, Grid, Cloud and Internet Computing • Nov 1, 2014
NobleIDNI8P64W34R20S15
Authors:,,
Yuxin Ding
Wei Dai
Yibin Zhang
Abstract
An opcode behavior based method is proposed to detect malware. Opcode behaviors are represented as opcode sequences from a decompiled executable. To accurately describe the malware behaviors, we construct the opcode running tree to simulate the dynamic execution of a program, and opcode n-grams are ...
Finding related papers...
Discussions
(0)No comments yet
Be the first to share your thoughts!