Image-based malware classification hybrid framework based on space-filling curves
نویسندگان
چکیده
There exists a never-ending “arms race” between malware analysts and adversarial malicious code developers as malevolent programs evolve countermeasures are developed to detect eradicate them. Malware has become more complex in its intent capabilities over time, which prompted the need for constant improvement detection defence methods. Of particular concern anti-analysis obfuscation techniques, such packing encryption, that employed by evade thwart analysis process. In cases, is generally impervious basic methods so must use invasive techniques extract signatures classification, inevitably not scalable due their complexity. this article, we present hybrid framework classification designed overcome challenges incurred current approaches. The incorporates novel static dynamic methods, where executables process memory dumps converted images mapped through space-filling curves, from visual features extracted classification. less than traditional there no reverse engineering required, nor does it suffer limitations of analysis. On dataset 13,599 obfuscated non-obfuscated samples 23 families, outperformed both standalone with precision, recall accuracy scores 97.6%, 97.6% respectively.
منابع مشابه
Context-based Space Filling Curves
A context-based scanning technique for images is presented. An image is scanned along a context-based space filling curve that is computed so as to exploit inherent coherence in the image. The resulting one-dimensional representation of the image has improved autocorrelation compared with universal scans such as the PeanoHilbert space filling curve. An efficient algorithm for computing context-...
متن کاملNeighbor-finding based on space-filling curves
Nearest neighbor-finding is one of the most important spatial operations in the field of spatial data structures concerned with proximity. Because the goal of the space-filling curves is to preserve the spatial proximity, the nearest neighbor queries can be handled by these space-filling curves. When data is ordered by the Peano curve, we can directly compute the sequence numbers of the neighbo...
متن کاملOn the Quality of Partitions Based on Space-Filling Curves
This paper presents bounds on the quality of partitions induced by space-filling curves. We compare the surface that surrounds an arbitrary index range with the optimal partition in the grid, i. e. the square. It is shown that partitions induced by Lebesgue and Hilbert curves behave about 1.85 times worse with respect to the length of the surface. The Lebesgue indexing gives better results than...
متن کاملImage Encryption with Space - filling Curves
Conventional encryption techniques are usually applicable for text data and often unsuited for encrypting multimedia objects for two reasons. Firstly, the huge sizes associated with multimedia objects make conventional encryption computationally costly. Secondly, multimedia objects come with massive redundancies which are useful in avoiding encryption of the objects in their entirety. Hence a c...
متن کاملA classical morphological approach to color image filtering based on space filling curves
In the last decade, nonlinear image processing algorithms have been developed for noise removing. With respect to linear methods, they present the advantage of minimizing distortions of informative characteristics. Morphological filters are a class of nonlinear techniques that have been successfully applied in filtering monochromatic images, but their extension to vectorial -valued images encou...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
ژورنال
عنوان ژورنال: Computers & Security
سال: 2022
ISSN: ['0167-4048', '1872-6208']
DOI: https://doi.org/10.1016/j.cose.2022.102660