A Comparison of Static, Dynamic, and Hybrid Analysis for Malware Detection
arXiv:2203.09938 · doi:10.1007/s11416-015-0261-z
Abstract
In this research, we compare malware detection techniques based on static, dynamic, and hybrid analysis. Specifically, we train Hidden Markov Models (HMMs ) on both static and dynamic feature sets and compare the resulting detection rates over a substantial number of malware families. We also consider hybrid cases, where dynamic analysis is used in the training phase, with static techniques used in the detection phase, and vice versa. In our experiments, a fully dynamic approach generally yields the best detection rates. We discuss the implications of this research for malware detection based on hybrid techniques.
Cited by in corpus (10)
- Self-Supervised Vision Transformers for Malware Detection
- MalBERT: Using Transformers for Cybersecurity and Malicious Software Detection
- SourceFinder: Finding Malware Source-Code from Publicly Available Repositories
- Heterogeneous Graph Matching Networks
- Malware Detection at the Microarchitecture Level using Machine Learning Techniques
- Learning from Context: Exploiting and Interpreting File Path Information for Better Malware Detection
- A Comparative Analysis of Android Malware
- Malware Classification Using Deep Boosted Learning
- Comparative Review of Malware Analysis Methodologies
- Malicious Software Detection and Classification utilizing Temporal-Graphs of System-call Group Relations