• 综合
  • 标题
  • 关键词
  • 摘要
  • 学者
  • 期刊-刊名
  • 期刊-ISSN
  • 会议名称
搜索

作者:

Wang, Xiao (Wang, Xiao.) | Zhang, Jianbiao (Zhang, Jianbiao.) (学者:张建标) | Zhang, Ai (Zhang, Ai.)

收录:

EI Scopus

摘要:

With the rapid development of cloud computing, cloud security is increasingly an important issue. Virtual machine (VM) is the main form to provide cloud service. To protect VMs against malware attack, a cloud needs to have the ability to react not only to known malware, but also to the new emerged ones. Virtual Machine Introspection (VMI) is a good solution for VM monitoring, which can obtain the raw memory state of the VM at Virtual Machine Monitor (VMM) level. Through analyzing the memory dumps, the significant features of malware can be obtained. In our research, we propose a novel static analysis method for unknown malware detection based on the feature of opcode n-gram of the executable files. Different feature sizes ranging from 2-gram to 4-gram are implemented with the feature length of 100, 200, 300 respectively. The feature selection criterion of Term Frequency (TF)-Inverse Document Frequency (IDF) and Information Gain (IG) are leveraged to extract the top features for classifier training. Different classifiers are trained with the preprocessed dataset. The experimental results show that the weighted integrated classifier with opcode 4-gram of 300 features has the optimal accuracy of 98.2%. © 2018, Springer Nature Switzerland AG.

关键词:

Brain Classification (of information) Cloud computing Cognitive systems E-learning Feature extraction Learning systems Machine learning Malware Network security Static analysis Text processing Virtual machine

作者机构:

  • [ 1 ] [Wang, Xiao]Faculty of Information, Beijing University of Technology, Beijing, China
  • [ 2 ] [Wang, Xiao]Beijing Key Laboratory of Trusted Computing, Beijing, China
  • [ 3 ] [Zhang, Jianbiao]Faculty of Information, Beijing University of Technology, Beijing, China
  • [ 4 ] [Zhang, Jianbiao]Beijing Key Laboratory of Trusted Computing, Beijing, China
  • [ 5 ] [Zhang, Ai]Beijing-Dublin International College, Beijing University of Technology, Beijing, China

通讯作者信息:

  • 张建标

    [zhang, jianbiao]beijing key laboratory of trusted computing, beijing, china;;[zhang, jianbiao]faculty of information, beijing university of technology, beijing, china

电子邮件地址:

查看成果更多字段

相关关键词:

相关文章:

来源 :

ISSN: 0302-9743

年份: 2018

卷: 10989 LNAI

页码: 717-726

语种: 英文

被引次数:

WoS核心集被引频次: 0

SCOPUS被引频次: 2

ESI高被引论文在榜: 0 展开所有

万方被引频次:

中文被引频次:

近30日浏览量: 2

在线人数/总访问数:253/2890699
地址:北京工业大学图书馆(北京市朝阳区平乐园100号 邮编:100124) 联系我们:010-67392185
版权所有:北京工业大学图书馆 站点建设与维护:北京爱琴海乐之技术有限公司