Unknown malicious codes detection based on rough set theory and support vector machine

被引:0
作者
Zhang, Boyun [1 ]
Yin, Jianping [2 ]
Tang, Wensheng [2 ]
Hao, Jinbo [2 ]
Zhang, Dingxing [2 ]
机构
[1] Hunan Publ Secur Coll, Dept Comp Sci, Changsha 410138, Peoples R China
[2] Natl Univ Def Technol, Sch Comp Sci, Changsha 410073, Hunan, Peoples R China
来源
2006 IEEE INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORK PROCEEDINGS, VOLS 1-10 | 2006年
基金
中国国家自然科学基金;
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
For detecting malicious codes, a classification method of support vector machine (SVM) based on rough set theory(RST) is proposed. The original sample data is preprocessed with the knowledge reduction algorithm of RST, and the redundant features and conflicting samples are eliminated from the working sample dataset to reduce space dimension of sample data. Then the preprocessed sample data is used as training sample data of SVM. By utilizing SVM, the generalizing ability of detection system is still good even the sample dataset size is small. Experiment results show that the proposed detection system needs few priori knowledge and can improve the training speed and precision of classification.
引用
收藏
页码:2583 / +
页数:2
相关论文
共 7 条
[1]   Computer immunology [J].
Forrest, S ;
Hofmeyr, SA ;
Somayaji, A .
COMMUNICATIONS OF THE ACM, 1997, 40 (10) :88-96
[2]   MCF - A MALICIOUS CODE FILTER [J].
LO, RW ;
LEVITT, KN ;
OLSSON, RA .
COMPUTERS & SECURITY, 1995, 14 (06) :541-566
[3]  
Pawlak Z., 1991, Rough sets: Theoretical aspects of reasoning about data, DOI DOI 10.1007/978-94-011-3534-4
[4]   Data mining methods for detection of new malicious executables [J].
Schultz, MG ;
Eskin, E ;
Zadok, E ;
Stolfo, SJ .
2001 IEEE SYMPOSIUM ON SECURITY AND PRIVACY, PROCEEDINGS, 2001, :38-49
[5]  
SZAPPANOS G, 2002, P 12 INT VIR B C
[6]   Neural networks for computer virus recognition [J].
Tesauro, GJ ;
Kephart, JO ;
Sorkin, GB .
IEEE EXPERT-INTELLIGENT SYSTEMS & THEIR APPLICATIONS, 1996, 11 (04) :5-6
[7]  
2003, SYMANTEC MANUAL