Obfuscated VBA Macro Detection Using Machine Learning

被引:31
|
作者
Kim, Sangwoo [1 ]
Hong, Seokmyung [1 ]
Oh, Jaesang [1 ]
Lee, Heejo [1 ]
机构
[1] Korea Univ, Seoul, South Korea
关键词
!text type='JAVA']JAVA[!/text]SCRIPT;
D O I
10.1109/DSN.2018.00057
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Malware using document files as an attack vector has continued to increase and now constitutes a large portion of phishing attacks. To avoid anti-virus detection, malware writers usually implement obfuscation techniques in their source code. Although obfuscation is related to malicious code detection, little research has been conducted on obfuscation with regards to Visual Basic for Applications (VBA) macros. In this paper, we summarize the obfuscation techniques and propose an obfuscated macro code detection method using five machine learning classifiers. To train these classifiers, our proposed method uses 15 discriminant static features, taking into account the characteristics of the VBA macros. We evaluated our approach using a real-world dataset of obfuscated and non-obfuscated VBA macros extracted from Microsoft Office document files. The experimental results demonstrate that our detection approach achieved a F-2 score improvement of greater than 23% compared to those of related studies.
引用
收藏
页码:490 / 501
页数:12
相关论文
共 50 条
  • [41] Detection of Facebook Addiction Using Machine Learning
    Islam, Md Zahirul
    Jannat, Ziniatul
    Habib, Md. Tarek
    Rahman, Md. Sadekur
    Islam, Gazi Zahirul
    THIRD INTERNATIONAL CONFERENCE ON IMAGE PROCESSING AND CAPSULE NETWORKS (ICIPCN 2022), 2022, 514 : 625 - 638
  • [42] Image Forgery Detection Using Machine Learning
    Janokar, Sagar
    Kulkarni, Tejas
    Kulkarni, Yash
    Kulkarni, Varad
    Kullarkar, Harshal
    Kumare, Rahul
    Kumawat, Jay
    SMART TRENDS IN COMPUTING AND COMMUNICATIONS, VOL 5, SMARTCOM 2024, 2024, 949 : 169 - 181
  • [43] Brain Tumor Detection Using Machine Learning
    Bonny, Talal
    Al Jaziri, Maryam
    Al-Shabi, Mohammad
    OPTICS, PHOTONICS, AND DIGITAL TECHNOLOGIES FOR IMAGING APPLICATIONS VIII, 2024, 12998
  • [44] Review Spam Detection using Machine Learning
    Radovanovic, Drasko
    Krstajic, Boza
    2018 23RD INTERNATIONAL SCIENTIFIC-PROFESSIONAL CONFERENCE ON INFORMATION TECHNOLOGY (IT), 2018,
  • [45] Semantic Clone Detection Using Machine Learning
    Sheneamer, Abdullah
    Kalita, Jugal
    2016 15TH IEEE INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND APPLICATIONS (ICMLA 2016), 2016, : 1024 - 1028
  • [46] Fraud Detection in Blockchains using Machine Learning
    Kilic, Baran
    Sen, Alper
    Ozturan, Can
    2022 FOURTH INTERNATIONAL CONFERENCE ON BLOCKCHAIN COMPUTING AND APPLICATIONS (BCCA), 2022, : 214 - 218
  • [47] Breast Cancer Detection Using Machine Learning
    Sivasangari, A.
    Ajitha, P.
    Bevishjenila
    Vimali, J. S.
    Jose, Jithina
    Gowri, S.
    MOBILE COMPUTING AND SUSTAINABLE INFORMATICS, 2022, 68 : 693 - 702
  • [48] Depression Detection using Extreme Learning Machine
    Dutta, Prajna
    Gupta, Deepak
    Mauiya, Jyoti
    2024 4TH INTERNATIONAL CONFERENCE ON PERVASIVE COMPUTING AND SOCIAL NETWORKING, ICPCSN 2024, 2024, : 42 - 47
  • [49] Detection of phishing websites using machine learning
    Razaque, Abdul
    Frej, Mohamed Ben Haj
    Sabyrov, Dauren
    Shaikhyn, Aidana
    Amsaad, Fathi
    Oun, Ahmed
    Proceedings - 2020 IEEE Cloud Summit, Cloud Summit 2020, 2020, : 103 - 107
  • [50] Detection of Adulteration in Fruits Using Machine Learning
    Brighty, S. Prince Sahaya
    Harini, G. Shri
    Vishal, N.
    2021 SIXTH INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS, SIGNAL PROCESSING AND NETWORKING (WISPNET), 2021, : 37 - 40