malware detection and classification

6
Exterminator The World without Malware

Upload: suzhigang

Post on 17-Feb-2017

582 views

Category:

Technology


1 download

TRANSCRIPT

Slide 1

ExterminatorThe World without Malware

Opportunity!Malware damage costs businesses worldwide over $13.3 billion annually. An analyst needs 20 to 30 minutes to manually inspect a new malware sample. The current approach is clearly not keeping up with the increase in malware counts.

Weaknesses of Commercial Tools

DetectionClassificationSignature Extraction Requires human analysts Brittle and easy to circumvent by code obfuscation

Exterminator automates the entire process, and is robust in the presence of code obfuscation.

Exterminator

Exterminator:Automatic malware detection and classification

malwareAnswers to two questions:Is it malware?What type of malware?

goodware

Research Prototype ResultsAchieves 80% accuracy on detecting polymorphic malwareVery crude preliminary research prototypeCurrent refinement work will push accuracy much furtherClassifies previously unseen malware samples into families with high certainty

Malware Classification