• KSII Transactions on Internet and Information Systems
    Monthly Online Journal (eISSN: 1976-7277)

ANNs on Co-occurrence Matrices for Mobile Malware Detection


Abstract

Android dominates the mobile operating system market, which stimulates the rapid spread of mobile malware. It is quite challenging to detect mobile malware. System call sequence analysis is widely used to identify malware. However, the malware detection accuracy of existing approaches is not satisfactory since they do not consider correlation of system calls in the sequence. In this paper, we propose a new scheme called Artificial Neural Networks (ANNs) on Co-occurrence Matrices Droid (ANNCMDroid), using co-occurrence matrices to mine correlation of system calls. Our key observation is that correlation of system calls is significantly different between malware and benign software, which can be accurately expressed by co-occurrence matrices, and ANNs can effectively identify anomaly in the co-occurrence matrices. Thus at first we calculate co-occurrence matrices from the system call sequences and then convert them into vectors. Finally, these vectors are fed into ANN to detect malware. We demonstrate the effectiveness of ANNCMDroid by real experiments. Experimental results show that only 4 applications among 594 evaluated benign applications are falsely detected as malware, and only 18 applications among 614 evaluated malicious applications are not detected. As a result, ANNCMDroid achieved an F-Score of 0.981878, which is much higher than other methods.


Statistics

Show / Hide Statistics

Statistics (Cumulative Counts from December 1st, 2015)
Multiple requests among the same browser session are counted as one view.
If you mouse over a chart, the values of data points will be shown.


Cite this article

[IEEE Style]
X. Xiao, Z. Wang, Q. Li, Q. Li, Y. Jiang, "ANNs on Co-occurrence Matrices for Mobile Malware Detection," KSII Transactions on Internet and Information Systems, vol. 9, no. 7, pp. 2736-2754, 2015. DOI: 10.3837/tiis.2015.07.023.

[ACM Style]
Xi Xiao, Zhenlong Wang, Qi Li, Qing Li, and Yong Jiang. 2015. ANNs on Co-occurrence Matrices for Mobile Malware Detection. KSII Transactions on Internet and Information Systems, 9, 7, (2015), 2736-2754. DOI: 10.3837/tiis.2015.07.023.

[BibTeX Style]
@article{tiis:20846, title="ANNs on Co-occurrence Matrices for Mobile Malware Detection", author="Xi Xiao and Zhenlong Wang and Qi Li and Qing Li and Yong Jiang and ", journal="KSII Transactions on Internet and Information Systems", DOI={10.3837/tiis.2015.07.023}, volume={9}, number={7}, year="2015", month={July}, pages={2736-2754}}