feature extract - paper

静态 根据规则

1.< malware detection based on deep learning algorithm> -Ding yuxin Zhu siyi
2.< Generative Malware outbreak Detection>
反汇编后 按照基本块的流程图绘制操作码运行树,从根到叶代表了执行路径,将路径整合链接为一个流,按流顺序提取OPcode
3.< A hybrid deep learning image-based analysis for effective malware detection>-Sitalakshmal Venkatraman, Mamoun Alazab ,R.Vinayakumar
1.反汇编提取API函数调用
2.提取二进制编码组成grayscale
4.< Dynamic data fusion using multi-input models for malware classification>
反汇编后提取 hex与Text// OPcode与元数据
5.< An improved Method for Packed malware Detection using PE Header and Section Table information>
反汇编后提取PE header与 Section Table Information
6.< A mobile malware detection method using beharior features in network traffic>
由pcap包转化为csv文件,从中提取HTTP标头,与 TCP Flow

动态 沙盒

1.< Analysis and Evaluation of Dynamic Feature-Based Malware Detection Mehod>
system-library sequency; operation counts; API-call Frequency ; API-call Sequences
API-calls 根据 核心功能的不同被分入6个不同的类 : network management ; memory management ; registry operation; file I/O ; processor and threads ;
socket .
2.< Improvement of malware detection and classification using API call sequence alignment and visualizaiton>
API hooking library 来挂取 API call sequences

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值