Publication | Closed Access
Visual analysis of malware behavior using treemaps and thread graphs
98
Citations
7
References
2009
Year
Unknown Venue
Security VisualizationEngineeringData ScienceVisualization TechniquesProgram AnalysisEvasion TechniqueSoftware TestingNew Malware SampleAnti-virus TechniqueNetwork VisualizationSoftware EngineeringMalicious SoftwareComputer ScienceSoftware VisualizationSoftware AnalysisMalware AnalysisMalware Behavior
We study techniques to visualize the behavior of malicious software (malware). Our aim is to help human analysts to quickly assess and classify the nature of a new malware sample. Our techniques are based on a parametrized abstraction of detailed behavioral reports automatically generated by sandbox environments. We then explore two visualization techniques: treemaps and thread graphs. We argue that both techniques can effectively support a human analyst (a) in detecting maliciousness of software, and (b) in classifying malicious behavior.
| Year | Citations | |
|---|---|---|
Page 1
Page 1