Paper Abstract and Keywords |
Presentation |
2015-09-15 15:00
Proposal of selection of training data using misdetected goodware for preventing misdetection of a static detector of malware Yasushi Okano, Atsutoshi Kumagai, Masaki Tanikawa, Yoshihito Oshima (NTT), Kenji Aiko, Kazumi Umehashi, Junichi Murakami (FFRI) PRMU2015-90 IBISML2015-50 |
Abstract |
(in Japanese) |
(See Japanese page) |
(in English) |
A lot of variant and new malware is produced day by day, it is therefore the urgent need to countermeasure such as "unknown" malware. The static detector of malware using machine learning is expected to detect unknown malware, but it has a problem of misdetection. We propose the selection of training data using misdetected goodware for preventing misdetection of the detector. It is the proposal for preventing misdetection that misdetected goodware is additionally learned and malware similar to misdetected goodware is removed from training data. We applied the proposal to the static detection of malware in MS-Windows 64bit applications. As a result, the misdetection ratio more than 0.5% was reduced, and the detection ratio was kept high without misdetection in several months. |
Keyword |
(in Japanese) |
(See Japanese page) |
(in English) |
malware / online machine learning / selection of training data / / / / / |
Reference Info. |
IEICE Tech. Rep., vol. 115, no. 225, IBISML2015-50, pp. 163-170, Sept. 2015. |
Paper # |
IBISML2015-50 |
Date of Issue |
2015-09-07 (PRMU, IBISML) |
ISSN |
Print edition: ISSN 0913-5685 Online edition: ISSN 2432-6380 |
Copyright and reproduction |
All rights are reserved and no part of this publication may be reproduced or transmitted in any form or by any means, electronic or mechanical, including photocopy, recording, or any information storage and retrieval system, without permission in writing from the publisher. Notwithstanding, instructors are permitted to photocopy isolated articles for noncommercial classroom use without fee. (License No.: 10GA0019/12GB0052/13GB0056/17GB0034/18GB0034) |
Download PDF |
PRMU2015-90 IBISML2015-50 |
Conference Information |
Committee |
PRMU IBISML IPSJ-CVIM |
Conference Date |
2015-09-14 - 2015-09-15 |
Place (in Japanese) |
(See Japanese page) |
Place (in English) |
|
Topics (in Japanese) |
(See Japanese page) |
Topics (in English) |
|
Paper Information |
Registration To |
IBISML |
Conference Code |
2015-09-PRMU-IBISML-CVIM |
Language |
Japanese |
Title (in Japanese) |
(See Japanese page) |
Sub Title (in Japanese) |
(See Japanese page) |
Title (in English) |
Proposal of selection of training data using misdetected goodware for preventing misdetection of a static detector of malware |
Sub Title (in English) |
|
Keyword(1) |
malware |
Keyword(2) |
online machine learning |
Keyword(3) |
selection of training data |
Keyword(4) |
|
Keyword(5) |
|
Keyword(6) |
|
Keyword(7) |
|
Keyword(8) |
|
1st Author's Name |
Yasushi Okano |
1st Author's Affiliation |
Nippon Telegraph and Telephone Corporation (NTT) |
2nd Author's Name |
Atsutoshi Kumagai |
2nd Author's Affiliation |
Nippon Telegraph and Telephone Corporation (NTT) |
3rd Author's Name |
Masaki Tanikawa |
3rd Author's Affiliation |
Nippon Telegraph and Telephone Corporation (NTT) |
4th Author's Name |
Yoshihito Oshima |
4th Author's Affiliation |
Nippon Telegraph and Telephone Corporation (NTT) |
5th Author's Name |
Kenji Aiko |
5th Author's Affiliation |
FFRI, Inc. (FFRI) |
6th Author's Name |
Kazumi Umehashi |
6th Author's Affiliation |
FFRI, Inc. (FFRI) |
7th Author's Name |
Junichi Murakami |
7th Author's Affiliation |
FFRI, Inc. (FFRI) |
8th Author's Name |
|
8th Author's Affiliation |
() |
9th Author's Name |
|
9th Author's Affiliation |
() |
10th Author's Name |
|
10th Author's Affiliation |
() |
11th Author's Name |
|
11th Author's Affiliation |
() |
12th Author's Name |
|
12th Author's Affiliation |
() |
13th Author's Name |
|
13th Author's Affiliation |
() |
14th Author's Name |
|
14th Author's Affiliation |
() |
15th Author's Name |
|
15th Author's Affiliation |
() |
16th Author's Name |
|
16th Author's Affiliation |
() |
17th Author's Name |
|
17th Author's Affiliation |
() |
18th Author's Name |
|
18th Author's Affiliation |
() |
19th Author's Name |
|
19th Author's Affiliation |
() |
20th Author's Name |
|
20th Author's Affiliation |
() |
Speaker |
Author-1 |
Date Time |
2015-09-15 15:00:00 |
Presentation Time |
30 minutes |
Registration for |
IBISML |
Paper # |
PRMU2015-90, IBISML2015-50 |
Volume (vol) |
vol.115 |
Number (no) |
no.224(PRMU), no.225(IBISML) |
Page |
pp.163-170 |
#Pages |
8 |
Date of Issue |
2015-09-07 (PRMU, IBISML) |
|