Matches in SemOpenAlex for { <https://semopenalex.org/work/W2955924269> ?p ?o ?g. }
- W2955924269 abstract "Abstract-Email cyber-attacks based on malicious documents have become the popular techniques in today's sophisticated attacks. In the past, persistent efforts have been made to detect such attacks. But there are still some common defects in the existing methods including unable to capture unknown attacks, high overhead of resource and time, and just can be used to detect specific formats of documents. In this study, a new Framework named ESRMD (Entropy signal Reflects the Malicious document) is proposed, which can detect malicious document based on the entropy distribution of the file. In essence, ESRMD is a machine learning classifier. What makes it distinctive is that it extracts global and structural entropy features from the entropy of the malicious documents rather than the structural data or metadata of the file, enduing it the ability to deal with various document formats and against the parser-confusion and obfuscated attacks. In order to assess the validity of the model, we conducted extensive experiments on a collected dataset with 10381 samples in it, which contains malware (51.47%) and benign (48.53%) samples. The results show that our model can achieve a good performance on the true positive rate, precision and ROC with the value of 96.00%, 96.69% and 99.2% respectively. We also compared ESRMD with some leading antivirus engines and prevalent tools. The results showed that our framework can achieve a better performance compared with these engines and tools." @default.
- W2955924269 created "2019-07-12" @default.
- W2955924269 creator A5003554962 @default.
- W2955924269 creator A5003561140 @default.
- W2955924269 creator A5025931880 @default.
- W2955924269 creator A5029742741 @default.
- W2955924269 creator A5049566203 @default.
- W2955924269 creator A5068806771 @default.
- W2955924269 date "2019-03-25" @default.
- W2955924269 modified "2023-10-18" @default.
- W2955924269 title "Capturing the symptoms of malicious code in electronic documents by file's entropy signal combined with Machine learning" @default.
- W2955924269 cites W1515539475 @default.
- W2955924269 cites W1519407765 @default.
- W2955924269 cites W1823377586 @default.
- W2955924269 cites W1968002620 @default.
- W2955924269 cites W1981982281 @default.
- W2955924269 cites W2014466911 @default.
- W2955924269 cites W2038296020 @default.
- W2955924269 cites W2057274600 @default.
- W2955924269 cites W2060276266 @default.
- W2955924269 cites W2082190528 @default.
- W2955924269 cites W2100198871 @default.
- W2955924269 cites W2102970979 @default.
- W2955924269 cites W2107034620 @default.
- W2955924269 cites W2108104525 @default.
- W2955924269 cites W2111216264 @default.
- W2955924269 cites W2119799051 @default.
- W2955924269 cites W2151103935 @default.
- W2955924269 cites W2158169396 @default.
- W2955924269 cites W2294515590 @default.
- W2955924269 cites W2346169715 @default.
- W2955924269 cites W2347019181 @default.
- W2955924269 cites W2396643843 @default.
- W2955924269 cites W2471456063 @default.
- W2955924269 cites W2525598640 @default.
- W2955924269 cites W2557716486 @default.
- W2955924269 cites W2574797807 @default.
- W2955924269 cites W2590294838 @default.
- W2955924269 cites W2597604324 @default.
- W2955924269 cites W2613209986 @default.
- W2955924269 cites W2752907035 @default.
- W2955924269 cites W2766144962 @default.
- W2955924269 cites W2779064420 @default.
- W2955924269 cites W2782847791 @default.
- W2955924269 cites W2964264057 @default.
- W2955924269 cites W93261043 @default.
- W2955924269 doi "https://doi.org/10.48550/arxiv.1903.10208" @default.
- W2955924269 hasPublicationYear "2019" @default.
- W2955924269 type Work @default.
- W2955924269 sameAs 2955924269 @default.
- W2955924269 citedByCount "0" @default.
- W2955924269 crossrefType "posted-content" @default.
- W2955924269 hasAuthorship W2955924269A5003554962 @default.
- W2955924269 hasAuthorship W2955924269A5003561140 @default.
- W2955924269 hasAuthorship W2955924269A5025931880 @default.
- W2955924269 hasAuthorship W2955924269A5029742741 @default.
- W2955924269 hasAuthorship W2955924269A5049566203 @default.
- W2955924269 hasAuthorship W2955924269A5068806771 @default.
- W2955924269 hasBestOaLocation W29559242691 @default.
- W2955924269 hasConcept C106301342 @default.
- W2955924269 hasConcept C11171543 @default.
- W2955924269 hasConcept C119857082 @default.
- W2955924269 hasConcept C121332964 @default.
- W2955924269 hasConcept C124101348 @default.
- W2955924269 hasConcept C136764020 @default.
- W2955924269 hasConcept C154945302 @default.
- W2955924269 hasConcept C15744967 @default.
- W2955924269 hasConcept C186644900 @default.
- W2955924269 hasConcept C2781140086 @default.
- W2955924269 hasConcept C38652104 @default.
- W2955924269 hasConcept C41008148 @default.
- W2955924269 hasConcept C541664917 @default.
- W2955924269 hasConcept C62520636 @default.
- W2955924269 hasConcept C93518851 @default.
- W2955924269 hasConcept C9679016 @default.
- W2955924269 hasConceptScore W2955924269C106301342 @default.
- W2955924269 hasConceptScore W2955924269C11171543 @default.
- W2955924269 hasConceptScore W2955924269C119857082 @default.
- W2955924269 hasConceptScore W2955924269C121332964 @default.
- W2955924269 hasConceptScore W2955924269C124101348 @default.
- W2955924269 hasConceptScore W2955924269C136764020 @default.
- W2955924269 hasConceptScore W2955924269C154945302 @default.
- W2955924269 hasConceptScore W2955924269C15744967 @default.
- W2955924269 hasConceptScore W2955924269C186644900 @default.
- W2955924269 hasConceptScore W2955924269C2781140086 @default.
- W2955924269 hasConceptScore W2955924269C38652104 @default.
- W2955924269 hasConceptScore W2955924269C41008148 @default.
- W2955924269 hasConceptScore W2955924269C541664917 @default.
- W2955924269 hasConceptScore W2955924269C62520636 @default.
- W2955924269 hasConceptScore W2955924269C93518851 @default.
- W2955924269 hasConceptScore W2955924269C9679016 @default.
- W2955924269 hasLocation W29559242691 @default.
- W2955924269 hasOpenAccess W2955924269 @default.
- W2955924269 hasPrimaryLocation W29559242691 @default.
- W2955924269 hasRelatedWork W1603620849 @default.
- W2955924269 hasRelatedWork W1968255631 @default.
- W2955924269 hasRelatedWork W2063358860 @default.
- W2955924269 hasRelatedWork W2350005755 @default.
- W2955924269 hasRelatedWork W2549013010 @default.
- W2955924269 hasRelatedWork W2968586400 @default.