Detailed Information

Cited 15 time in webofscience Cited 15 time in scopus
Metadata Downloads

Analysis of Feature Importance and Interpretation for Malware Classification

Full metadata record
DC Field Value Language
dc.contributor.authorKim, Dong-Wook-
dc.contributor.authorShin, Gun-Yoon-
dc.contributor.authorHan, Myung-Mook-
dc.date.available2020-10-20T00:59:36Z-
dc.date.created2020-10-12-
dc.date.issued2020-09-
dc.identifier.issn1546-2218-
dc.identifier.urihttps://scholarworks.bwise.kr/gachon/handle/2020.sw.gachon/78328-
dc.description.abstractThis study was conducted to enable prompt classification of malware, which was becoming increasingly sophisticated. To do this, we analyzed the important features of malware and the relative importance of selected features according to a learning model to assess how those important features were identified. Initially, the analysis features were extracted using Cuckoo Sandbox, an open-source malware analysis tool, then the features were divided into five categories using the extracted information. The 804 extracted features were reduced by 70% after selecting only the most suitable ones for malware classification using a learning model-based feature selection method called the recursive feature elimination. Next, these important features were analyzed. The level of contribution from each one was assessed by the Random Forest classifier method. The results showed that System call features were mostly allocated. At the end, it was possible to accurately identify the malware type using only 36 to 76 features for each of the four types of malware with the most analysis samples available. These were the Trojan, Adware, Downloader, and Backdoor malware.-
dc.language영어-
dc.language.isoen-
dc.publisherTECH SCIENCE PRESS-
dc.relation.isPartOfCMC-COMPUTERS MATERIALS & CONTINUA-
dc.titleAnalysis of Feature Importance and Interpretation for Malware Classification-
dc.typeArticle-
dc.type.rimsART-
dc.description.journalClass1-
dc.identifier.wosid000572868100002-
dc.identifier.doi10.32604/cmc.2020.010933-
dc.identifier.bibliographicCitationCMC-COMPUTERS MATERIALS & CONTINUA, v.65, no.3, pp.1891 - 1904-
dc.identifier.scopusid2-s2.0-85091876854-
dc.citation.endPage1904-
dc.citation.startPage1891-
dc.citation.titleCMC-COMPUTERS MATERIALS & CONTINUA-
dc.citation.volume65-
dc.citation.number3-
dc.contributor.affiliatedAuthorKim, Dong-Wook-
dc.contributor.affiliatedAuthorShin, Gun-Yoon-
dc.contributor.affiliatedAuthorHan, Myung-Mook-
dc.type.docTypeArticle-
dc.subject.keywordAuthorRecursive feature elimination-
dc.subject.keywordAuthormodel interpretability-
dc.subject.keywordAuthorfeature importance-
dc.subject.keywordAuthormalware classification-
dc.subject.keywordPlusFEATURE-SELECTION-
dc.subject.keywordPlusINFORMATION-
dc.relation.journalResearchAreaComputer Science-
dc.relation.journalResearchAreaMaterials Science-
dc.relation.journalWebOfScienceCategoryComputer Science, Information Systems-
dc.relation.journalWebOfScienceCategoryMaterials Science, Multidisciplinary-
dc.description.journalRegisteredClassscie-
dc.description.journalRegisteredClassscopus-
Files in This Item
There are no files associated with this item.
Appears in
Collections
IT융합대학 > 소프트웨어학과 > 1. Journal Articles

qrcode

Items in ScholarWorks are protected by copyright, with all rights reserved, unless otherwise indicated.

Related Researcher

Researcher Han, Myung Mook photo

Han, Myung Mook
IT (Department of Software)
Read more

Altmetrics

Total Views & Downloads

BROWSE