期刊文献+
共找到2篇文章
< 1 >
每页显示 20 50 100
Interpretable Detection of Malicious Behavior in Windows Portable Executables Using Multi-Head 2D Transformers
1
作者 Sohail Khan Mohammad Nauman 《Big Data Mining and Analytics》 EI CSCD 2024年第2期485-499,共15页
Windows malware is becoming an increasingly pressing problem as the amount of malware continues to grow and more sensitive information is stored on systems.One of the major challenges in tackling this problem is the c... Windows malware is becoming an increasingly pressing problem as the amount of malware continues to grow and more sensitive information is stored on systems.One of the major challenges in tackling this problem is the complexity of malware analysis,which requires expertise from human analysts.Recent developments in machine learning have led to the creation of deep models for malware detection.However,these models often lack transparency,making it difficult to understand the reasoning behind the model’s decisions,otherwise known as the black-box problem.To address these limitations,this paper presents a novel model for malware detection,utilizing vision transformers to analyze the Operation Code(OpCode)sequences of more than 350000 Windows portable executable malware samples from real-world datasets.The model achieves a high accuracy of 0.9864,not only surpassing the previous results but also providing valuable insights into the reasoning behind the classification.Our model is able to pinpoint specific instructions that lead to malicious behavior in malware samples,aiding human experts in their analysis and driving further advancements in the field.We report our findings and show how causality can be established between malicious code and actual classification by a deep learning model,thus opening up this black-box problem for deeper analysis. 展开更多
关键词 machine learning MALWARE vision transformers windows Protable Executable(pe)
原文传递
基于联想一键恢复技术的一种多系统引导方案 被引量:1
2
作者 刘挺 周亚媛 《电脑知识与技术》 2010年第7X期5824-5826,共3页
计算机系统的备份与还原技术是保护计算机系统的重要方法。文章结合联想品牌机上使用的一键恢复系统的原理,重点介绍了一键恢复技术的实现方法,深入剖析系统的引导过程,给出一种更易用的多系统引导方案,并用Windows PE+Ghost方式来替换... 计算机系统的备份与还原技术是保护计算机系统的重要方法。文章结合联想品牌机上使用的一键恢复系统的原理,重点介绍了一键恢复技术的实现方法,深入剖析系统的引导过程,给出一种更易用的多系统引导方案,并用Windows PE+Ghost方式来替换联想的一键恢复系统,从而提高系统备份和还原的效率。 展开更多
关键词 一键恢复系统 多系统引导 系统备份 windows pe LEOS
下载PDF
上一页 1 下一页 到第
使用帮助 返回顶部