Behavioral Malware Detection by Data Mining

Lieferzeit: Lieferbar innerhalb 14 Tagen

54,90 

ISBN: 6139923069
ISBN 13: 9786139923069
Autor: Ninyesiga, Allan/Ngubiri, John
Verlag: LAP LAMBERT Academic Publishing
Umfang: 96 S.
Erscheinungsdatum: 02.11.2018
Auflage: 1/2018
Format: 0.6 x 22 x 15
Gewicht: 161 g
Produktform: Kartoniert
Einband: Kartoniert
Artikelnummer: 5889001 Kategorie:

Beschreibung

Malware cases are increasing both in numbers and fatality. Hackers design malware to compromise systems security mostly confidentiality, integrity, and availability. Malware elimination techniques exist but the malware must be detected first. Malware detection techniques still have weaknesses of high false positive/negatives rates. The emergency of polymorphic malware has made the situation worse. Recent studies have shown data mining to be promising in identifying malware by analyzing API calls. However, in this approach, a file is detected as malicious or not. It is not classified on to which malware class it belongs. This makes its elimination harder as elimination schemes are mostly class based. Classification as a post detection process is important if the malware is to be eliminated from the system. We experiment on the use of data mining approach to classify malware using 4-gram API system calls. We use Windows Portable Executables (PE) with their corresponding API calls. Using the Cuckoo sandbox. Relevant 4-gram API call features are extracted using Term Frequency-Inverse Document Frequency(TF-IDF). Machine Learning algorithms are then applied to classify the malware.

Autorenporträt

Allan Ninyesiga has obtained a Masters Degree in Computing with a Computer Security Specialization form Uganda Technology an Management University in 2017. Due to the broad increase in the use of ICT Systems, Allan has taken a taken a path to challenge those(the malware) that compromise security of systems by this research.

Herstellerkennzeichnung:


BoD - Books on Demand
In de Tarpen 42
22848 Norderstedt
DE

E-Mail: info@bod.de

Das könnte Ihnen auch gefallen …