Polymorphic malware detection based on dynamic analysis and supervised machine learning / Nur Syuhada Selamat

Selamat, Nur Syuhada (2021) Polymorphic malware detection based on dynamic analysis and supervised machine learning / Nur Syuhada Selamat. Masters thesis, Universiti Teknologi MARA.

Abstract

Currently, the size of malware grows faster each year and poses a thoughtful global security threat. The number of malware developed is increasing as computers became interconnected, at an alarming rate in the 1990s. This scenario caused a rising number of malware. It also caused many protections are developed to fight the malware. The most common method of detecting malware relies on signature-based detection. Unfortunately, this method is no longer effective to handle more advanced malware such as polymorphic malware that poses a thoughtful threat to the modern computing. Malware authors have created them to be more challenging to be evaded from antivirus scanner. Extracting the behaviour of polymorphic malware is one of the major issues that affect the detection result.The main idea in this work is focus the behaviour(dynamic) of polymorphic malware infect in computer system and to extract
feature selection and evaluate a limited set of dataset in order to improve detection of polymorphic malware.This study used dynamic analysis and machine learning to improve malware detection.This research demonstrated improved polymorphic malware detection can be achieved with machine learning.This research used four types of machine algorithm which are K-Nearest Neighbours, Decision Tree, Logistic Regression, and Random Forest. As with most studies,careful attention was paid to false positive and false negative rates which reduce their overall detection accuracy and effectiveness.The result showed that the Random Forest algorithm is the best detection accuracy compares to others classifier with 99 % on a relatively small dataset. The benefit of this work indicated that the implementation of a feature selection technique plays an important role in machine learning algorithms to increase the performance of detection.

Metadata

Item Type: Thesis (Masters)
Creators:
Creators
Email / ID Num.
Selamat, Nur Syuhada
2014663648
Contributors:
Contribution
Name
Email / ID Num.
Thesis advisor
Mohd Ali, Fakariah Hani (Dr.)
UNSPECIFIED
Thesis advisor
Abu Othman, Noor Ashitah
UNSPECIFIED
Subjects: Q Science > QA Mathematics > Instruments and machines > Electronic Computers. Computer Science
Divisions: Universiti Teknologi MARA, Shah Alam > Faculty of Computer and Mathematical Sciences
Programme: Master of Science (Computer Science)
Keywords: Polymorphic malware detection; dynamic analysis; supervised machine learning
Date: February 2021
URI: https://ir.uitm.edu.my/id/eprint/59811
Edit Item
Edit Item

Download

[thumbnail of 59811.pdf] Text
59811.pdf

Download (492kB)

Digital Copy

Digital (fulltext) is available at:

Physical Copy

Physical status and holdings:
Item Status:

ID Number

59811

Indexing

Statistic

Statistic details