  1. 熱門:
首頁 臺灣期刊   法律   公行政治   醫事相關   財經   社會學   教育   其他 大陸期刊   核心   重要期刊 DOI文章
電子商務學報 本站僅提供期刊文獻檢索。

Automatic malware classification based on incremental clustering algorithm
作者 陳嘉玫賴谷鑫
In recent years, cybercriminals have developed new malware or variants in order to effectively evade inspection from security mechanisms. Most prior works focused on analyzing malware which contain only single binary file. However, most honeypot captured malware contain several binary and source files. Therefore, existing malware analysis approaches do not suitable for honeypot captured malware. In this research, a novel malware classification approach which analyzes features extracted from malware’s file structure, source code and binary files and file name is proposed. An incremental clustering algorithm is developed to replace traditional hierarchical clustering algorithm for improving efficiency. By means of proposed system, when a honeypot captures a new malware, IT security staff could know whether the new malware belongs to any existing clusters or not. To evaluate the performance of proposed system, the proposed approach is compared with Virustotal- a popular platform for malware detection and classification. The experiment result shows that the proposed approach outperforms Virustotal.
起訖頁 225-247
關鍵詞 誘捕系統惡意程式分類靜態分析漸增式分群HoneypotClassification of MalwareStatic analysisIncremental clustering
刊名 電子商務學報  
期數 201612 (18:2期)
出版單位 中華企業資源規劃學會
該期刊-上一篇 科技接受或轉換?科技轉換模式的初探與驗證
該期刊-下一篇 傳播隱私管理觀點探討臉書使用者之社群平台轉換意圖




讀者服務專線:+886-2-23756688 傳真:+886-2-23318496
地址:臺北市館前路28 號 7 樓 客服信箱
Copyright © 元照出版 All rights reserved. 版權所有,禁止轉貼節錄