Visible to the public Forensic Malware Identification Using Naive Bayes Method

TitleForensic Malware Identification Using Naive Bayes Method
Publication TypeConference Paper
Year of Publication2020
AuthorsRamadhan, Beno, Purwanto, Yudha, Ruriawan, Muhammad Faris
Conference Name2020 International Conference on Information Technology Systems and Innovation (ICITSI)
Date Publishedoct
KeywordsAPI Call Sequence, Containers, dynamic analysis, feature extraction, Human Behavior, machine learning, Malware, malware analysis, naive Bayes, Operating systems, Portable Executable, Predictive Metrics, privacy, pubcrawl, Resiliency, static analysis, Tools
AbstractMalware is a kind of software that, if installed on a malware victim's device, might carry malicious actions. The malicious actions might be data theft, system failure, or denial of service. Malware analysis is a process to identify whether a piece of software is a malware or not. However, with the advancement of malware technologies, there are several evasion techniques that could be implemented by malware developers to prevent analysis, such as polymorphic and oligomorphic. Therefore, this research proposes an automatic malware detection system. In the system, the malware characteristics data were obtained through both static and dynamic analysis processes. Data from the analysis process were classified using Naive Bayes algorithm to identify whether the software is a malware or not. The process of identifying malware and benign files using the Naive Bayes machine learning method has an accuracy value of 93 percent for the detection process using static characteristics and 85 percent for detection through dynamic characteristics.
DOI10.1109/ICITSI50517.2020.9264959
Citation Keyramadhan_forensic_2020