Matches in SemOpenAlex for { <https://semopenalex.org/work/W1570974058> ?p ?o ?g. }
Showing items 1 to 76 of
76
with 100 items per page.
- W1570974058 endingPage "100" @default.
- W1570974058 startingPage "81" @default.
- W1570974058 abstract "Most behavioral detectors of malware remain specific to a given language and platform, mostly executables for Windows. The objective of this paper is to define a generic approach for behavioral detection based on two layers respectively responsible for abstraction and detection. The abstraction layer is specific to a platform and a language. It interprets the collected instructions, API calls and arguments and classifies these operations, as well as the objects involved, according to their purpose in the malware lifecycle. The detection layer remains generic and interoperable with different abstraction components. It relies on parallel automata parsing attribute-grammars where semantic rules are used for object typing (object classification) and object binding (data-flow). Theoretical results are first given with respect to the grammatical constraints weighting on the signature construction as well as to the resulting complexity of the detection. For experimentation purposes, two abstraction components have then been developed: one processing system call traces and the other processing the VBScript interpreted language. Experimentations have provided promising detection rates, in particular for scripts (89%), with almost no false positives. In the case of process traces, the detection rate remains significant (51%) but could be increased by sophisticated collection tools." @default.
- W1570974058 created "2016-06-24" @default.
- W1570974058 creator A5023297980 @default.
- W1570974058 creator A5038047052 @default.
- W1570974058 creator A5089725479 @default.
- W1570974058 date "2009-01-01" @default.
- W1570974058 modified "2023-10-16" @default.
- W1570974058 title "Malware Behavioral Detection by Attribute-Automata Using Abstraction from Platform and Language" @default.
- W1570974058 cites W1832277845 @default.
- W1570974058 cites W2118528519 @default.
- W1570974058 cites W2156569770 @default.
- W1570974058 cites W2165979005 @default.
- W1570974058 cites W2167671111 @default.
- W1570974058 cites W2168519318 @default.
- W1570974058 cites W2172030059 @default.
- W1570974058 cites W2172051533 @default.
- W1570974058 doi "https://doi.org/10.1007/978-3-642-04342-0_5" @default.
- W1570974058 hasPublicationYear "2009" @default.
- W1570974058 type Work @default.
- W1570974058 sameAs 1570974058 @default.
- W1570974058 citedByCount "28" @default.
- W1570974058 countsByYear W15709740582012 @default.
- W1570974058 countsByYear W15709740582013 @default.
- W1570974058 countsByYear W15709740582014 @default.
- W1570974058 countsByYear W15709740582015 @default.
- W1570974058 countsByYear W15709740582017 @default.
- W1570974058 countsByYear W15709740582018 @default.
- W1570974058 countsByYear W15709740582019 @default.
- W1570974058 countsByYear W15709740582020 @default.
- W1570974058 crossrefType "book-chapter" @default.
- W1570974058 hasAuthorship W1570974058A5023297980 @default.
- W1570974058 hasAuthorship W1570974058A5038047052 @default.
- W1570974058 hasAuthorship W1570974058A5089725479 @default.
- W1570974058 hasConcept C111472728 @default.
- W1570974058 hasConcept C111919701 @default.
- W1570974058 hasConcept C124304363 @default.
- W1570974058 hasConcept C138885662 @default.
- W1570974058 hasConcept C154945302 @default.
- W1570974058 hasConcept C160145156 @default.
- W1570974058 hasConcept C199360897 @default.
- W1570974058 hasConcept C204321447 @default.
- W1570974058 hasConcept C41008148 @default.
- W1570974058 hasConcept C541664917 @default.
- W1570974058 hasConcept C61423126 @default.
- W1570974058 hasConcept C80444323 @default.
- W1570974058 hasConceptScore W1570974058C111472728 @default.
- W1570974058 hasConceptScore W1570974058C111919701 @default.
- W1570974058 hasConceptScore W1570974058C124304363 @default.
- W1570974058 hasConceptScore W1570974058C138885662 @default.
- W1570974058 hasConceptScore W1570974058C154945302 @default.
- W1570974058 hasConceptScore W1570974058C160145156 @default.
- W1570974058 hasConceptScore W1570974058C199360897 @default.
- W1570974058 hasConceptScore W1570974058C204321447 @default.
- W1570974058 hasConceptScore W1570974058C41008148 @default.
- W1570974058 hasConceptScore W1570974058C541664917 @default.
- W1570974058 hasConceptScore W1570974058C61423126 @default.
- W1570974058 hasConceptScore W1570974058C80444323 @default.
- W1570974058 hasLocation W15709740581 @default.
- W1570974058 hasOpenAccess W1570974058 @default.
- W1570974058 hasPrimaryLocation W15709740581 @default.
- W1570974058 hasRelatedWork W1967499492 @default.
- W1570974058 hasRelatedWork W2086733238 @default.
- W1570974058 hasRelatedWork W2140846949 @default.
- W1570974058 hasRelatedWork W2259219744 @default.
- W1570974058 hasRelatedWork W2529681551 @default.
- W1570974058 hasRelatedWork W2748872428 @default.
- W1570974058 hasRelatedWork W2999589555 @default.
- W1570974058 hasRelatedWork W3080622597 @default.
- W1570974058 hasRelatedWork W3107474891 @default.
- W1570974058 hasRelatedWork W4313142237 @default.
- W1570974058 isParatext "false" @default.
- W1570974058 isRetracted "false" @default.
- W1570974058 magId "1570974058" @default.
- W1570974058 workType "book-chapter" @default.