• Share
  • Email
  • Embed
  • Like
  • Save
  • Private Content
Malware Detection and Classification
 

Malware Detection and Classification

on

  • 470 views

Pitch for automatic malware detection and classification

Pitch for automatic malware detection and classification

Statistics

Views

Total Views
470
Views on SlideShare
470
Embed Views
0

Actions

Likes
0
Downloads
5
Comments
0

0 Embeds 0

No embeds

Accessibility

Categories

Upload Details

Uploaded via as Microsoft PowerPoint

Usage Rights

© All Rights Reserved

Report content

Flagged as inappropriate Flag as inappropriate
Flag as inappropriate

Select your reason for flagging this presentation as inappropriate.

Cancel
  • Full Name Full Name Comment goes here.
    Are you sure you want to
    Your message goes here
    Processing…
Post Comment
Edit your comment

    Malware Detection and Classification Malware Detection and Classification Presentation Transcript

    • ExterminatorThe World without Malware
    • Opportunity!
      Malware damage costs businesses worldwide over $13.3 billion annually. An analyst needs 20 to 30 minutes to manually inspect anew malware sample. The current approach is clearly not keeping up with the increase in malware counts.
    • Weaknesses of Commercial Tools
      • Requires human analysts
      Detection
      Classification
      Signature Extraction
      • Brittle and easy to circumvent by code obfuscation
      Exterminator automates the entire process, and is robust in the presence of code obfuscation.
    • Exterminator
      malware
      Answers to two questions:
      Is it malware?
      What type of malware?
      Exterminator:
      Automatic malware detection and classification
      goodware
    • Research Prototype Results
      Achieves 80% accuracy on detecting polymorphic malware
      Very crude preliminary research prototype
      Current refinement work will push accuracy much further
      Classifies previously unseen malware samples into families with high certainty
    • Malware Classification