Reducing false notification in identifying malicious application programming interface (API)‎ to detect malwares using artificial neural network with discriminant analysis

Other Title(s)

تقليل التبليغات الكاذبة في تحديد واجهة برمجيات التطبيقات الضارة عند كشف البرمجيات الخبيثة باستعمال الشبكات العصبية مع التحليل المميز

Joint Authors

al-Bakri, Abbas Muhsin
Husayn, Husayn Laftah

Source

Ibn al-Haitham Journal for Pure and Applied Science

Issue

Vol. 27, Issue 3 (31 Dec. 2014), pp.556-565, 10 p.

Publisher

University of Baghdad College of Education for Pure Science / Ibn al-Haitham

Publication Date

2014-12-31

Country of Publication

Iraq

No. of Pages

10

Main Subjects

Mathematics

Abstract AR

يناقش هذا البحث دقة أنماط السلوك المعتمدة في أنظمة الكشف و التي يتم تحليلها و رصدها بواسطة واجهات برمجة التطبيقات (API).

هذا العمل يحدد المشكلات التي تؤثر في دقة نماذج الكشف.

تم استخراج 4744 (API) في هذا العمل عن طريق التحليل.

و تتضمن هذه الطريقة الجديدة زيادة الدقة في كشف (API) الخبيثة في البرمجيات الخبيثة تصل إلى 2.83 ٪ .

علما أن نتائج هذا العمل تم احتسابها و تقويمها باعتماد طبقة تحليل التمايز.

Abstract EN

This paper argues the accuracy of behavior based detection systems, in which the Application Programming Interfaces (API) calls are analyzed and monitored.

The work identifies the problems that affecting the accuracy of such detection models.

The work was extracted (4744) API call through analyzing.

The new approach provides an accurate discriminator and can reveal malicious API in PE malware up to 83.2 %.

Results of this work evaluated with Discriminant Analysis.

American Psychological Association (APA)

al-Bakri, Abbas Muhsin& Husayn, Husayn Laftah. 2014. Reducing false notification in identifying malicious application programming interface (API) to detect malwares using artificial neural network with discriminant analysis. Ibn al-Haitham Journal for Pure and Applied Science،Vol. 27, no. 3, pp.556-565.
https://search.emarefa.net/detail/BIM-546507

Modern Language Association (MLA)

al-Bakri, Abbas Muhsin& Husayn, Husayn Laftah. Reducing false notification in identifying malicious application programming interface (API) to detect malwares using artificial neural network with discriminant analysis. Ibn al-Haitham Journal for Pure and Applied Science Vol. 27, no. 3 (2014), pp.556-565.
https://search.emarefa.net/detail/BIM-546507

American Medical Association (AMA)

al-Bakri, Abbas Muhsin& Husayn, Husayn Laftah. Reducing false notification in identifying malicious application programming interface (API) to detect malwares using artificial neural network with discriminant analysis. Ibn al-Haitham Journal for Pure and Applied Science. 2014. Vol. 27, no. 3, pp.556-565.
https://search.emarefa.net/detail/BIM-546507

Data Type

Journal Articles

Language

English

Notes

Includes appendices : p. 562-564

Record ID

BIM-546507