Signal Processing: An International Journal | |
Integrated Feature Extraction Approach Towards Detection of Polymorphic Malware In Executable Files | |
EmmanuelMasabo, Kyanda Swaib Kaawaase, Julianne Sansa-Otim, Damien Hanyurwimfura1  | |
关键词: Malware Detection; Static Analysis; Dynamic Analysis; Polymorphic Malware; Machine Learning.; | |
DOI : | |
学科分类:物理(综合) | |
来源: Computer Science Journals | |
【 摘 要 】
Some malware are sophisticated with polymorphic techniques such as self-mutation and emulation based analysis evasion. Most anti-malware techniques are overwhelmed by the polymorphic malware threats that self-mutate with different variants at every attack. This research aims to contribute to the detection of malicious codes, especially polymorphic malware by utilizing advanced static and advanced dynamic analyses for extraction of more informative key features of a malware through code analysis, memory analysis and behavioral analysis. Correlation based feature selection algorithm will be used to transform features; i.e. filtering and selecting optimal and relevant features. A machine learning technique called K-Nearest Neighbor (K-NN) will be used for classification and detection of polymorphic malware. Evaluation of results will be based on the following measurement metrics-True Positive Rate (TPR), False Positive Rate (FPR) and the overall detection accuracy of experiments.
【 授权许可】
CC BY
【 预 览 】
Files | Size | Format | View |
---|---|---|---|
RO201902024684616ZK.pdf | 394KB | download |