期刊文献+
共找到1篇文章
< 1 >
每页显示 20 50 100
An Enhanced Automated Signature Generation Algorithm for Polymorphic Malware Detection
1
作者 ke tang ming-tian zhou zhi-hong zuo 《Journal of Electronic Science and Technology》 CAS 2010年第2期114-121,共8页
Polymorphic malware is a secure menace for application of computer network systems because hacker can evade detection and launch stealthy attacks. In this paper, a novel enhanced automated signature generation (EASG... Polymorphic malware is a secure menace for application of computer network systems because hacker can evade detection and launch stealthy attacks. In this paper, a novel enhanced automated signature generation (EASG) algorithm to detect polymorphic malware is proposed. The EASG algorithm is composed of enhanced-expectation maximum algorithm and enhanced K-means clustering algorithm. In EASG algorithm, the fixed threshold value is replaced by the decision threshold of interval area. The false positive ratio can be controlled at low level, and the iterative operations and the execution time are effectively reduced. Moreover, the centroid updating is realized by application of similarity metric of Mahalanobis distance and incremental learning. Different malware group families are partitioned by the centroid updating. 展开更多
关键词 Index Terms -Entropy false positive ratio Mahalanobis distance polymorphie malware signature generation.
下载PDF
上一页 1 下一页 到第
使用帮助 返回顶部