A Malware Detection Method of Code Texture Visualization Based on an Improved Faster RCNN Combining Transfer Learning

被引:26
|
作者
Zhao, Yuntao [1 ]
Cui, Wenjie [1 ]
Geng, Shengnan [2 ]
Bo, Bo [1 ]
Feng, Yongxin [3 ]
Zhang, Wenbo [3 ]
机构
[1] Shenyang Ligong Univ, Sch Informat Sci & Engn, Shenyang 110159, Peoples R China
[2] Beijing Inst Astronaut Syst Engn, Beijing 100000, Peoples R China
[3] Shenyang Ligong Univ, Grad Sch, Shenyang 110159, Peoples R China
来源
IEEE ACCESS | 2020年 / 8卷 / 08期
基金
中国博士后科学基金;
关键词
Malware; Feature extraction; Machine learning; Data mining; Cyberspace; Acceleration; Convergence; Cyberspace security; faster RCNN; malware detection; code classification; transfer model;
D O I
10.1109/ACCESS.2020.3022722
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Today, with the continuous promotion and development of IoT and 5G technology, Cyberspace has become an important pillar of economic and social development, and also a foundational domain of national security. Cyberspace security is attracting more and more attention. Therefore, detecting malware and its variants is of great significance to Cyberspace. However, the increasing sophistication of malicious variants, such as encryption, polymorphism and obfuscation, makes it more difficult to identified malware effectively. In this article, a malware detection method of code texture visualization based on an improved Faster RCNN (Region-Convolutional Neural Networks) combining transfer learning is proposed. We utilize visualization technology to map malicious code into corresponding images with typical texture features, and realize the classification of malware. Firstly, in order to quickly acquire and locate the representative texture of malware, we adopt CNN to extract the global and deeper features of malicious code images. Then with RPN (Region Proposal Network) we generate the target image frame, which is used to locate the core texture of malware file (.text file), to realize the accurate positioning of malicious features. Secondly, we preprocess and train Faster RCNN model with ImageNet set, and then transfer the model to the malware classification model to accelerate the convergence of the first model and promote generation performance. Thirdly, we construct an improved objective function in which a novel multi-label of classification proportion is added to solve the problem that the texture change of ".text" section and other sections in malicious code image is not obvious after transfer learning. We collect code samples of six malware families from Kaggle platform, and compared the experimental results before and after transfer. The results show that the novel method can accelerate the convergence of loss function, and obtain higher accuracy (92.8%), lower FPR (6.8%) and better P-R (precision-recall) curve.
引用
收藏
页码:166630 / 166641
页数:12
相关论文
共 50 条
  • [1] Underwater Object Detection Method Based on Improved Faster RCNN
    Wang, Hao
    Xiao, Nanfeng
    APPLIED SCIENCES-BASEL, 2023, 13 (04):
  • [2] Mug Defect Detection Method Based on Improved Faster RCNN
    Li Dongjie
    Li Ruohao
    LASER & OPTOELECTRONICS PROGRESS, 2020, 57 (04)
  • [3] Pedestrian detection based on improved Faster RCNN algorithm
    Yu, Xiaoqian
    Si, Yujuan
    Li, Liangliang
    2019 IEEE/CIC INTERNATIONAL CONFERENCE ON COMMUNICATIONS IN CHINA (ICCC), 2019,
  • [4] Aluminum product surface defect detection method based on improved Faster RCNN
    基于改进Faster RCNN的铝材表面缺陷检测方法
    Li, Songsong (lisongsong@dlou.edu.cn), 1600, Science Press (42): : 191 - 198
  • [5] Birds Detection in Natural Scenes Based on Improved Faster RCNN
    Xiang, Wenbin
    Song, Ziying
    Zhang, Guoxin
    Wu, Xuncheng
    APPLIED SCIENCES-BASEL, 2022, 12 (12):
  • [6] An improved faster RCNN-based weld ultrasonic atlas defect detection method
    Chen, Changhong
    Wang, Shaofeng
    Huang, Shunzhou
    MEASUREMENT & CONTROL, 2023, 56 (3-4): : 832 - 843
  • [7] A small object detection algorithm based on improved Faster RCNN
    Tang, Liling
    Li, Fang
    Lan, Rushi
    Luo, Xiaonan
    INTERNATIONAL SYMPOSIUM ON ARTIFICIAL INTELLIGENCE AND ROBOTICS 2021, 2021, 11884
  • [8] Detection of Electric Component Based on Improved Faster-RCNN
    Xiao, Chengling
    Zhang, Dongdong
    Sun, Chengyu
    2023 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS, IJCNN, 2023,
  • [9] A Method based on Faster RCNN Network for Object Detection
    Cao D.
    Yang S.
    Recent Advances in Computer Science and Communications, 2022, 15 (09) : 1239 - 1244
  • [10] Face detection using deep learning: An improved faster RCNN approach
    Sun, Xudong
    Wu, Pengcheng
    Hoi, Steven C. H.
    NEUROCOMPUTING, 2018, 299 : 42 - 50