Pruned Feature Space for Metamorphic Malware Detection using Markov Blanket

被引:0
|
作者
Raphel, Jithu [1 ]
Vinod, P. [1 ]
机构
[1] SCMS Sch Engn & Technol, Dept Comp Sci, Ernakulam, Kerala, India
关键词
Metamorphic malware; code obfuscation; classifiers; non-signature; statistical; Markov Blanket;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The proposed non-signature based system creates a meta feature space for the detection of metamorphic malware samples where three sets of features are extracted from the files: (a) branch opcodes (b) unigrams (c) bigrams. The feature space is initially pruned using Naive Bayes method. After the rare feature elimination process, the relevant opcodes that are highly contributing towards the target class are selected, thereby forming a relevant feature set. Next phase is to remove the redundant features that are present in the relevant feature set using the Markov Blanket approach. Prominent features extracted are used for generating the training models and unseen instances are tested using the optimal models. Proposed system is capable of detecting the NGVCK viruses and MWORM with an accuracy of 100% using the meta opcode space of 25 features. A promising F1-score of 1.0 was gained and the results demonstrate the efficiency of the proposed metamorphic malware detector.
引用
收藏
页码:377 / 382
页数:6
相关论文
共 50 条
  • [21] DaCoMM: Detection and Classification of Metamorphic Malware
    Mehra, Vishakha
    Jain, Vinesh
    Uppal, Dolly
    [J]. 2015 FIFTH INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS AND NETWORK TECHNOLOGIES (CSNT2015), 2015, : 668 - 673
  • [22] A Novel Framework for Metamorphic Malware Detection
    Jha A.K.
    Vaish A.
    Patil S.
    [J]. SN Computer Science, 4 (1)
  • [23] Frequency Based Metamorphic Malware Detection
    Carkaci, Necmettin
    Sogukpmar, Ibrahim
    [J]. 2016 24TH SIGNAL PROCESSING AND COMMUNICATION APPLICATION CONFERENCE (SIU), 2016, : 421 - 424
  • [24] Discriminant Features for Metamorphic Malware Detection
    Kuriakose, Jikku
    Vinod, P.
    [J]. 2014 SEVENTH INTERNATIONAL CONFERENCE ON CONTEMPORARY COMPUTING (IC3), 2014, : 406 - 411
  • [25] Feature Selection by Efficient Learning of Markov Blanket
    Fu, Shunkai
    Desmarais, Michel
    [J]. WORLD CONGRESS ON ENGINEERING, WCE 2010, VOL I, 2010, : 302 - 308
  • [26] Approximate Markov blanket feature selection algorithm
    Cui, Zi-Feng
    Xu, Bao-Wen
    Zhang, Wei-Feng
    Xu, Jun-Ling
    [J]. Jisuanji Xuebao/Chinese Journal of Computers, 2007, 30 (12): : 2074 - 2081
  • [27] Detection of metamorphic and virtualization-based malware using algebraic specification
    Webster, Matt
    Malcolm, Grant
    [J]. JOURNAL OF COMPUTER VIROLOGY AND HACKING TECHNIQUES, 2009, 5 (03): : 221 - 245
  • [28] Metamorphic malware detection using opcode frequency rate and decision tree
    Fazlali, Mahmood
    Khodamoradi, Peyman
    Mardukhi, Farhad
    Nosrati, Masoud
    Dehshibi, Mohammad Mahdi
    [J]. INTERNATIONAL JOURNAL OF INFORMATION SECURITY AND PRIVACY, 2016, 10 (03) : 67 - 86
  • [29] Metamorphic Malware Detection Using Linear Discriminant Analysis and Graph Similarity
    Mirzazadeh, Reza
    Moattar, Mohammad Hossein
    Jahan, Majid Vafaei
    [J]. 2015 5TH INTERNATIONAL CONFERENCE ON COMPUTER AND KNOWLEDGE ENGINEERING (ICCKE), 2015, : 61 - 66
  • [30] Android Malware Detection Using Ensemble Feature Learning
    Rout, Siddhartha Suman
    Vashishtha, Lalit Kumar
    Chatterjee, Kakali
    Rout, Jitendra Kumar
    [J]. INFORMATION SYSTEMS AND MANAGEMENT SCIENCE, ISMS 2021, 2023, 521 : 531 - 539