A Comprehensive Study on Efficient and Accurate Machine Learning-Based Malicious PE Detection

被引:1
|
作者
Barut, Onur [1 ]
Zhang, Tong [1 ]
Luo, Yan [2 ]
Li, Peilong [3 ]
机构
[1] Intel Corp, Network & Edge Grp, Santa Clara, CA 95054 USA
[2] Univ Massachusetts Lowell, Dept Elect & Comp Eng, Lowell, MA USA
[3] Elizabethtown Coll, Dept Comp Sci, Elizabethtown, PA USA
关键词
Malware Analysis; Ransomware Detection; Machine Learning; Feature Engineering;
D O I
10.1109/CCNC51644.2023.10060214
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
For safe and trustworthy digital services, fast and accurate malware detection is critical. Because of the financial rewards, ransomware assaults are one of the most commonly employed malware variants by cyber criminals. Because of the dynamic environment in which new malware variants arise on a regular basis, it is critical to maintain databases up-to-date in order to protect the digital world from ransomware threats. In this study, we curated the Ransomary dataset containing 2871 ransomware and 4208 benign PE files to allow researchers to use their own algorithms to accomplish fast and precise detection. We examined the Ransomary dataset and compared feature extraction and raw data techniques of static malware analysis. In the EMBER, DeepDetectNet, and Ransomary datasets, we found that effective feature selection with the LightGBM model can yield more than 0.99 AUC. Finally, we demonstrate that using raw data from the first 1KB of PE files may result in an accurate and extremely rapid response time. We intend to continuously expand Ransomary dataset and encourage more researchers to use static, dynamic, or hybrid analysis to identify ransomware more quickly and accurately.
引用
收藏
页数:4
相关论文
共 50 条
  • [1] Machine Learning-Based Malicious Application Detection of Android
    Wei, Linfeng
    Luo, Weiqi
    Weng, Jian
    Zhong, Yanjun
    zhang, Xiaoqian
    Yan, Zheng
    [J]. IEEE ACCESS, 2017, 5 : 25591 - 25601
  • [2] Machine Learning-Based Detection and Categorization of Malicious Accounts on Social Media
    Bhattacharyya, Ajay
    Kulkarni, Adita
    [J]. SOCIAL COMPUTING AND SOCIAL MEDIA, PT I, SCSM 2024, 2024, 14703 : 328 - 337
  • [3] Machine Learning-Based Malicious X.509 Certificates' Detection
    Li, Jiaxin
    Zhang, Zhaoxin
    Guo, Changyong
    [J]. APPLIED SCIENCES-BASEL, 2021, 11 (05): : 1 - 24
  • [4] Analysis of Permission Selection Techniques in Machine Learning-based Malicious App Detection
    Park, Jihyeon
    Kang, Munyeong
    Cho, Seong-je
    Han, Hyoil
    Suh, Kyoungwon
    [J]. 2020 IEEE THIRD INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE AND KNOWLEDGE ENGINEERING (AIKE 2020), 2020, : 92 - 99
  • [5] Machine Learning-Based Anomaly Detection in NFV: A Comprehensive Survey
    Zehra, Sehar
    Faseeha, Ummay
    Syed, Hassan Jamil
    Samad, Fahad
    Ibrahim, Ashraf Osman
    Abulfaraj, Anas W.
    Nagmeldin, Wamda
    [J]. SENSORS, 2023, 23 (11)
  • [6] A Comprehensive Study on Learning-Based PE Malware Family Classification Methods
    Ma, Yixuan
    Liu, Shuang
    Jiang, Jiajun
    Chen, Guanhong
    Li, Keqiu
    [J]. PROCEEDINGS OF THE 29TH ACM JOINT MEETING ON EUROPEAN SOFTWARE ENGINEERING CONFERENCE AND SYMPOSIUM ON THE FOUNDATIONS OF SOFTWARE ENGINEERING (ESEC/FSE '21), 2021, : 1314 - 1325
  • [7] Evaluating the Possibility of Evasion Attacks to Machine Learning-Based Models for Malicious PowerShell Detection
    Mezawa, Yuki
    Mimura, Mamoru
    [J]. INFORMATION SECURITY PRACTICE AND EXPERIENCE, ISPEC 2022, 2022, 13620 : 252 - 267
  • [8] Malicious URL Detection based on Machine Learning
    Cho Do Xuan
    Hoa Dinh Nguyen
    Nikolaevich, Tisenko Victor
    [J]. INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2020, 11 (01) : 148 - 153
  • [9] Machine Learning-Based Analysis of Program Binaries: A Comprehensive Study
    Xue, Hongfa
    Sun, Shaowen
    Venkataramani, Guru
    Lan, Tian
    [J]. IEEE ACCESS, 2019, 7 : 65889 - 65912
  • [10] Machine Learning-Based System for Detecting Unseen Malicious Software
    Bisio, Federica
    Gastaldo, Paolo
    Meda, Claudia
    Nasta, Stefano
    Zunino, Rodolfo
    [J]. APPLICATIONS IN ELECTRONICS PERVADING INDUSTRY, ENVIRONMENT AND SOCIETY, APPLEPIES 2014, 2016, 351 : 9 - 15