Pruned Feature Space for Metamorphic Malware Detection using Markov Blanket

被引:0
|
作者
Raphel, Jithu [1 ]
Vinod, P. [1 ]
机构
[1] SCMS Sch Engn & Technol, Dept Comp Sci, Ernakulam, Kerala, India
关键词
Metamorphic malware; code obfuscation; classifiers; non-signature; statistical; Markov Blanket;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The proposed non-signature based system creates a meta feature space for the detection of metamorphic malware samples where three sets of features are extracted from the files: (a) branch opcodes (b) unigrams (c) bigrams. The feature space is initially pruned using Naive Bayes method. After the rare feature elimination process, the relevant opcodes that are highly contributing towards the target class are selected, thereby forming a relevant feature set. Next phase is to remove the redundant features that are present in the relevant feature set using the Markov Blanket approach. Prominent features extracted are used for generating the training models and unseen instances are tested using the optimal models. Proposed system is capable of detecting the NGVCK viruses and MWORM with an accuracy of 100% using the meta opcode space of 25 features. A promising F1-score of 1.0 was gained and the results demonstrate the efficiency of the proposed metamorphic malware detector.
引用
收藏
页码:377 / 382
页数:6
相关论文
共 50 条
  • [1] Malware Detection Using Hidden Markov Model based on Markov Blanket Feature Selection Method
    Pechaz, Bassir
    Jahan, Majid Vafaie
    Jalali, Mehrdad
    [J]. SECOND INTERNATIONAL CONGRESS ON TECHNOLOGY, COMMUNICATION AND KNOWLEDGE (ICTCK 2015), 2015, : 558 - 563
  • [2] Malware Detection Using Markov Blanket Based on Opcode Sequences
    Divandari, Hamid
    Pechaz, Bassir
    Jahan, Majid Vafaie
    [J]. SECOND INTERNATIONAL CONGRESS ON TECHNOLOGY, COMMUNICATION AND KNOWLEDGE (ICTCK 2015), 2015, : 564 - 569
  • [3] A Novel Android Malware Detection Method Based on Markov Blanket
    Zhang, Xiaotian
    Hu, Donghui
    Fan, Yuqi
    Yu, Kui
    [J]. 2016 IEEE FIRST INTERNATIONAL CONFERENCE ON DATA SCIENCE IN CYBERSPACE (DSC 2016), 2016, : 347 - 352
  • [4] Heterogeneous Opcode Space for Metamorphic Malware Detection
    Jithu Raphel
    P. Vinod
    [J]. Arabian Journal for Science and Engineering, 2017, 42 : 537 - 558
  • [5] Heterogeneous Opcode Space for Metamorphic Malware Detection
    Raphel, Jithu
    Vinod, P.
    [J]. ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2017, 42 (02) : 537 - 558
  • [6] A Survey on Metamorphic Malware Detection based on Hidden Markov Model
    Sasidharan, Satheesh Kumar
    Thomas, Ciza
    [J]. 2018 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATIONS AND INFORMATICS (ICACCI), 2018, : 357 - 362
  • [7] Classification Using Markov Blanket for Feature Selection
    Zeng, Yifeng
    Luo, Jian
    Lin, Shuyuan
    [J]. 2009 IEEE INTERNATIONAL CONFERENCE ON GRANULAR COMPUTING ( GRC 2009), 2009, : 743 - +
  • [8] Metamorphic malware detection using base malware identification approach
    Mahawer, Devendra Kumar
    Nagaraju, A.
    [J]. SECURITY AND COMMUNICATION NETWORKS, 2014, 7 (11) : 1719 - 1733
  • [9] Metamorphic malware detection using structural features and nonnegative matrix factorization with hidden markov model
    Ling, Yeong Tyng
    Sani, Nor Fazlida Mohd
    Abdullah, Mohd Taufik
    Hamid, Nor Asilah Wati Abdul
    [J]. JOURNAL OF COMPUTER VIROLOGY AND HACKING TECHNIQUES, 2022, 18 (03) : 183 - 203
  • [10] Metamorphic malware detection using structural features and nonnegative matrix factorization with hidden markov model
    Yeong Tyng Ling
    Nor Fazlida Mohd Sani
    Mohd Taufik Abdullah
    Nor Asilah Wati Abdul Hamid
    [J]. Journal of Computer Virology and Hacking Techniques, 2022, 18 : 183 - 203