상세 보기
Feature set reduction for the detection of packed executables
- Burgess, Colin;
- Sezer, Sakir;
- McLaughlin, Kieran;
- Im, Eul Gyu
Citations
SCOPUS
1초록
Emerging sophisticated malware utilises obfuscation to circumvent detection. This is achieved by using packers to disguise their malicious intent. In this paper a novel malware detection method for detecting packed executable files using entropy analysis is proposed. It utilises a reduced feature set of variables to calculate an entropy score from which classification can be performed. Competitive analysis with state-of-the-art reveals an increase in classification accuracy.
키워드
Malware; Obfuscation; Packing; Security; Entropy; Packing
- 제목
- Feature set reduction for the detection of packed executables
- 저자
- Burgess, Colin; Sezer, Sakir; McLaughlin, Kieran; Im, Eul Gyu
- 발행일
- 2014-06
- 유형
- Proceeding
- 저널명
- IET Irish Signals and Systems Conference
- 권
- 2014
- 호
- CP639
- 페이지
- 263 ~ 268