TY - JOUR
T1 - Method for constructing multi-dimensional feature map of malicious code
AU - Ma, Haocong
AU - Zhang, Ji
AU - Zhou, Junhua
AU - Zhai, Xiang
AU - Xue, Junjie
AU - Ji, Hang
N1 - Publisher Copyright:
© Published under licence by IOP Publishing Ltd.
PY - 2021/1/27
Y1 - 2021/1/27
N2 - Malicious code is characterized by a large number of types, rapid increase in number, continuous update of transmission routes, and continuous enhancement of back analysis and back detection methods. Therefore, how to effectively detect and analyze malicious code has been a problem of great concern. This paper studies the features of binary file and disassembly file of malicious code, introduces the concept of information gain, and proposes a method to construct the multi-dimensional characteristic graph of malicious code. Finally, the convolutional neural network is used to classify the multi-dimensional feature graph of malicious code, which provides a new idea for the feature extraction of malicious code.
AB - Malicious code is characterized by a large number of types, rapid increase in number, continuous update of transmission routes, and continuous enhancement of back analysis and back detection methods. Therefore, how to effectively detect and analyze malicious code has been a problem of great concern. This paper studies the features of binary file and disassembly file of malicious code, introduces the concept of information gain, and proposes a method to construct the multi-dimensional characteristic graph of malicious code. Finally, the convolutional neural network is used to classify the multi-dimensional feature graph of malicious code, which provides a new idea for the feature extraction of malicious code.
UR - http://www.scopus.com/inward/record.url?scp=85102347138&partnerID=8YFLogxK
U2 - 10.1088/1742-6596/1748/4/042055
DO - 10.1088/1742-6596/1748/4/042055
M3 - Conference article
AN - SCOPUS:85102347138
SN - 1742-6588
VL - 1748
JO - Journal of Physics: Conference Series
JF - Journal of Physics: Conference Series
IS - 4
M1 - 42055
T2 - 2020 5th International Seminar on Computer Technology, Mechanical and Electrical Engineering, ISCME 2020
Y2 - 30 October 2020 through 1 November 2020
ER -