Feature set reduction for the detection of packed executables

  • Burgess, Colin
  • Sezer, Sakir
  • McLaughlin, Kieran
  • Im, Eul Gyu
Citations

SCOPUS

1

초록

Emerging sophisticated malware utilises obfuscation to circumvent detection. This is achieved by using packers to disguise their malicious intent. In this paper a novel malware detection method for detecting packed executable files using entropy analysis is proposed. It utilises a reduced feature set of variables to calculate an entropy score from which classification can be performed. Competitive analysis with state-of-the-art reveals an increase in classification accuracy.

키워드

MalwareObfuscationPackingSecurityEntropyPacking
제목
Feature set reduction for the detection of packed executables
저자
Burgess, ColinSezer, SakirMcLaughlin, KieranIm, Eul Gyu
발행일
2014-06
유형
Proceeding
저널명
IET Irish Signals and Systems Conference
2014
CP639
페이지
263 ~ 268