• 中国期刊全文数据库
  • 中国学术期刊综合评价数据库
  • 中国科技论文与引文数据库
  • 中华核心期刊(遴选)数据库
GAO Yipeng, HUANG Yongzhong. A malware code detection method based on Ontology[J]. Journal of Guilin University of Electronic Technology, 2023, 43(3): 246-251.
Citation: GAO Yipeng, HUANG Yongzhong. A malware code detection method based on Ontology[J]. Journal of Guilin University of Electronic Technology, 2023, 43(3): 246-251.

A malware code detection method based on Ontology

  • Malware brings a major security risks to the Internet today,followed by much research has concentrated on detecting malware. Nowadays, many malware detection methods are difficult to effectively detect new malware samples. These detection methods can effectively identify the known malware samples but not new variants. Therefore, a malware detection method based on Ontology and family graph was proposed. First, extract the malicious sample behavior information by configuring the cuckoo sandbox, and then do data cleaning on the generated report and construct the malware behavior description graph. Finally, the family behavior description graph was constructed by graph clustering of the known malware family behavior. And all the information in the obtained behavior description graph was used to construct the malware domain ontology according to the ontology construction rules. The behavior ontology of individual malware samples and the behavior ontology of family after graph clustering were described respectively. In this way, the malware was detected and classified. The experimentalt results show that this approach is effective with more accurate compared to other existing approaches.proaches.
  • loading

Catalog

    Turn off MathJax
    Article Contents

    /

    DownLoad:  Full-Size Img  PowerPoint
    Return
    Return