...
首页> 外文期刊>Computer networks >Maximizing accuracy in multi-scanner malware detection systems
【24h】

Maximizing accuracy in multi-scanner malware detection systems

机译:最大化多扫描器恶意软件检测系统的准确性

获取原文
获取原文并翻译 | 示例
           

摘要

A variety of anti-malware scanners have been developed for malware detection. Previous research has indicated that combining multiple different scanners can achieve better result compared to any single scanner. However, given the diversity in detection rates and accuracy of different anti-malware scanners, how to determine the best possible outcome of multi-scanner systems in terms of accuracy and how to achieve this best outcome remain formidable tasks. In this paper, we propose three models to capture the combined output of different combinations of anti-malware scanners based on the limited amount of historical information available. These models enable us to predict the accuracy level of each combination, which helps us to determine the optimal configuration of the multi-scanner detection system to achieve maximum accuracy. We also introduce two methods to identify a near-optimal subset of scanners that can help reduce scanning cost while under time constraint. From simulations over randomly generated hypothetical datasets and experiments conducted with real world malware and goodware datasets and anti-virus scanners, we found that our models perform well in predicting the optimal configuration and can achieve an accuracy as high as within 1% of true maximum. (C) 2019 Elsevier B.V. All rights reserved.
机译:已经开发了多种用于检测恶意软件的反恶意软件扫描程序。先前的研究表明,与任何单个扫描仪相比,组合多个不同的扫描仪可以获得更好的结果。但是,鉴于不同反恶意软件扫描器的检测率和准确性存在差异,如何在准确性方面确定多扫描器系统的最佳可能结果以及如何实现最佳结果仍然是艰巨的任务。在本文中,我们基于可用的有限历史信息量,提出了三种模型来捕获不同恶意软件扫描程序组合的组合输出。这些模型使我们能够预测每种组合的准确性水平,这有助于我们确定多扫描仪检测系统的最佳配置以实现最大准确性。我们还介绍了两种方法来识别近乎最佳的扫描仪子集,这些方法可以帮助在时间限制下降低扫描成本。通过对随机生成的假设数据集的仿真以及对现实世界中的恶意软件和好软件数据集以及防病毒扫描程序进行的实验,我们发现我们的模型在预测最佳配置方面表现良好,并且可以达到高达真实最大值1%的精度。 (C)2019 Elsevier B.V.保留所有权利。

著录项

  • 来源
    《Computer networks》 |2020年第14期|107027.1-107027.16|共16页
  • 作者

  • 作者单位

    Univ South Carolina Dept Comp Sci & Engn Columbia SC 29208 USA;

    Natl Chiao Tung Univ Dept Comp Sci Hsinchu 30010 Taiwan;

  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    Multi-scanner; Modeling; Malware detection; Accuracy;

    机译:多功能扫描仪造型;恶意软件检测;准确性;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号