Empirical Analysis of Learning-based Malware Detection Methods using Image Visualization

被引:1
|
作者
Sheneamer, Abdullah [1 ]
Alhazmi, Essa [1 ]
Henrydoss, James [2 ]
机构
[1] Jazan Univ, Dept Comp Sci, Jazan, Saudi Arabia
[2] Univ Colorado, Vis & Secur Technol Lab, Colorado Springs, CO 80907 USA
关键词
Malware detection; malware analysis; deep learning; machine learning; malware features;
D O I
10.14569/IJACSA.2022.01304106
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Malware, a short name for malicious software is an emerging cyber threat. Various researchers have proposed ways to build advanced malware detectors that can mitigate threat actors and enable effective cybersecurity decisions in the past. Recent research implements malware detectors based on visualized images of malware executable files. In this framework, a malware binary is converted into an image, and by extracting image features and applying machine learning methods, the malware is identified based on image similarity. In this research work, we implement the Image visualization-based malware detection method and conduct an empirical analysis of vari-ous learners for selecting a candidate learning classifier that can provide better prediction performance. We evaluate our framework using the following malware datasets, Search And RetrieVAl of Malware (SARVAM), Xue-dataset, and Canadian Institutes for Cyber Security (CIC) datasets. Our experiments include the following learning algorithms, Linear Regression, Random Forest, K-Nearest Neighbor (KNN), Classification and Decision Tree (CART), Support Vector Machine (SVM), Multi-Layer Perceptron (MLP), and deep learning-based Convolutional Neural Network (CNN). This image-visualization-based method proves to be effective in terms of prediction accuracy. Some conclusions emerge from our initial study and find that a Con-volutional Neural Network (CNN) algorithm provides relatively better performance when used against SARvAM and various malware datasets. The CNN model achieved a high performance of F1-score and accuracy in the binary classification task reaching 95.70% and 99.50%, consecutively. The model in the multi-classification task achieved of 95.96% and 99.30% (F1-score and accuracy) for detecting malware types. We find that the KNN model outperforms other traditional classifiers.
引用
收藏
页码:925 / 936
页数:12
相关论文
共 50 条
  • [31] Android Malware Detection Using Deep Learning Methods
    Lukas, Robert
    Kolaczek, Grzegorz
    2021 IEEE 30TH INTERNATIONAL CONFERENCE ON ENABLING TECHNOLOGIES: INFRASTRUCTURE FOR COLLABORATIVE ENTERPRISES (WETICE 2021), 2021, : 119 - 124
  • [32] Review of Federated Learning and Machine Learning-Based Methods for Medical Image Analysis
    Hernandez-Cruz, Netzahualcoyotl
    Saha, Pramit
    Sarker, Md Mostafa Kamal
    Noble, J. Alison
    BIG DATA AND COGNITIVE COMPUTING, 2024, 8 (09)
  • [33] An Adversarial Reinforcement Learning Framework for Robust Machine Learning-based Malware Detection
    Ebrahimi, Mohammadreza
    Li, Weifeng
    Chai, Yidong
    Pacheco, Jason
    Chen, Hsinchun
    2022 IEEE INTERNATIONAL CONFERENCE ON DATA MINING WORKSHOPS, ICDMW, 2022, : 567 - 576
  • [34] Malware visualization and detection using DenseNets
    Anandhi V.
    Vinod P.
    Menon V.G.
    Personal and Ubiquitous Computing, 2024, 28 (01) : 153 - 169
  • [35] A Comprehensive Study on Learning-Based PE Malware Family Classification Methods
    Ma, Yixuan
    Liu, Shuang
    Jiang, Jiajun
    Chen, Guanhong
    Li, Keqiu
    PROCEEDINGS OF THE 29TH ACM JOINT MEETING ON EUROPEAN SOFTWARE ENGINEERING CONFERENCE AND SYMPOSIUM ON THE FOUNDATIONS OF SOFTWARE ENGINEERING (ESEC/FSE '21), 2021, : 1314 - 1325
  • [36] An Android mutation malware detection based on deep learning using visualization of importance from codes
    Yen, Yao-Saint
    Sun, Hung-Min
    MICROELECTRONICS RELIABILITY, 2019, 93 : 109 - 114
  • [37] Malware Visualization Based on Deep Learning
    Ren, Zhuojun
    Bai, Ting
    2021 14TH INTERNATIONAL CONGRESS ON IMAGE AND SIGNAL PROCESSING, BIOMEDICAL ENGINEERING AND INFORMATICS (CISP-BMEI 2021), 2021,
  • [38] A Novel Malware Detection System Based On Machine Learning and Binary Visualization
    Baptista, Irina
    Shiaeles, Stavros
    Kolokotronis, Nicholas
    2019 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS WORKSHOPS (ICC WORKSHOPS), 2019,
  • [39] Malware Detection Method Based on Visualization
    Xie, Nannan
    Liang, Haoxiang
    Mu, Linyang
    Zhang, Chuanxue
    ALGORITHMS AND ARCHITECTURES FOR PARALLEL PROCESSING, ICA3PP 2023, PT VI, 2024, 14492 : 252 - 264
  • [40] ACAMA: Deep Learning-Based Detection and Classification of Android Malware Using API-Based Features
    Ko, Eunbyeol
    Kim, Jinsung
    Ban, Younghoon
    Cho, Haehyun
    Yi, Jeong Hyun
    SECURITY AND COMMUNICATION NETWORKS, 2021, 2021