Matches in SemOpenAlex for { <https://semopenalex.org/work/W4214898199> ?p ?o ?g. }
Showing items 1 to 94 of
94
with 100 items per page.
- W4214898199 abstract "Malware detection and analysis can be a burdensome task for incident responders. As such, research has turned to machine learning to automate malware detection and malware family classification. Existing work extracts and engineers static and dynamic features from the malware sample to train classifiers. Despite promising results, such techniques assume that the analyst has access to the malware executable file. Self-deleting malware invalidates this assumption and requires analysts to find forensic evidence of malware execution for further analysis. In this paper, we present and evaluate an approach to detecting malware that executed on a Windows target and further classify the malware into its associated family to provide semantic insight. Specifically, we engineer features from the Windows prefetch file, a file system forensic artifact that archives process information. Results show that it is possible to detect the malicious artifact with 99% accuracy; furthermore, classifying the malware into a fine-grained family has comparable performance to techniques that require access to the original executable. We also provide a thorough security discussion of the proposed approach against adversarial diversity." @default.
- W4214898199 created "2022-03-05" @default.
- W4214898199 creator A5043309284 @default.
- W4214898199 creator A5055170166 @default.
- W4214898199 creator A5072959708 @default.
- W4214898199 creator A5075793938 @default.
- W4214898199 date "2022-01-26" @default.
- W4214898199 modified "2023-09-24" @default.
- W4214898199 title "Detecting and Classifying Self-Deleting Windows Malware Using Prefetch Files" @default.
- W4214898199 cites W1544697441 @default.
- W4214898199 cites W1545528966 @default.
- W4214898199 cites W1549130775 @default.
- W4214898199 cites W1558357780 @default.
- W4214898199 cites W1985328160 @default.
- W4214898199 cites W2021183772 @default.
- W4214898199 cites W2021963610 @default.
- W4214898199 cites W2168154523 @default.
- W4214898199 cites W2292109572 @default.
- W4214898199 cites W2527619560 @default.
- W4214898199 cites W2529285936 @default.
- W4214898199 cites W2586677434 @default.
- W4214898199 cites W2600031682 @default.
- W4214898199 cites W2616933536 @default.
- W4214898199 cites W2621204675 @default.
- W4214898199 cites W2751661638 @default.
- W4214898199 cites W2786476294 @default.
- W4214898199 cites W2790484531 @default.
- W4214898199 cites W2792211467 @default.
- W4214898199 cites W2795435272 @default.
- W4214898199 cites W2900633536 @default.
- W4214898199 cites W2947447457 @default.
- W4214898199 cites W2963563709 @default.
- W4214898199 cites W2963650941 @default.
- W4214898199 cites W2963961561 @default.
- W4214898199 cites W2990954041 @default.
- W4214898199 cites W2996791554 @default.
- W4214898199 cites W3007070494 @default.
- W4214898199 cites W3008603700 @default.
- W4214898199 cites W3015481738 @default.
- W4214898199 cites W3169281546 @default.
- W4214898199 cites W3193668405 @default.
- W4214898199 cites W4211194511 @default.
- W4214898199 doi "https://doi.org/10.1109/ccwc54503.2022.9720874" @default.
- W4214898199 hasPublicationYear "2022" @default.
- W4214898199 type Work @default.
- W4214898199 citedByCount "3" @default.
- W4214898199 countsByYear W42148981992022 @default.
- W4214898199 countsByYear W42148981992023 @default.
- W4214898199 crossrefType "proceedings-article" @default.
- W4214898199 hasAuthorship W4214898199A5043309284 @default.
- W4214898199 hasAuthorship W4214898199A5055170166 @default.
- W4214898199 hasAuthorship W4214898199A5072959708 @default.
- W4214898199 hasAuthorship W4214898199A5075793938 @default.
- W4214898199 hasConcept C111919701 @default.
- W4214898199 hasConcept C115537543 @default.
- W4214898199 hasConcept C133588205 @default.
- W4214898199 hasConcept C154945302 @default.
- W4214898199 hasConcept C160145156 @default.
- W4214898199 hasConcept C199360897 @default.
- W4214898199 hasConcept C2779395397 @default.
- W4214898199 hasConcept C41008148 @default.
- W4214898199 hasConcept C541664917 @default.
- W4214898199 hasConcept C84525096 @default.
- W4214898199 hasConcept C97686452 @default.
- W4214898199 hasConcept C98045186 @default.
- W4214898199 hasConceptScore W4214898199C111919701 @default.
- W4214898199 hasConceptScore W4214898199C115537543 @default.
- W4214898199 hasConceptScore W4214898199C133588205 @default.
- W4214898199 hasConceptScore W4214898199C154945302 @default.
- W4214898199 hasConceptScore W4214898199C160145156 @default.
- W4214898199 hasConceptScore W4214898199C199360897 @default.
- W4214898199 hasConceptScore W4214898199C2779395397 @default.
- W4214898199 hasConceptScore W4214898199C41008148 @default.
- W4214898199 hasConceptScore W4214898199C541664917 @default.
- W4214898199 hasConceptScore W4214898199C84525096 @default.
- W4214898199 hasConceptScore W4214898199C97686452 @default.
- W4214898199 hasConceptScore W4214898199C98045186 @default.
- W4214898199 hasFunder F4320306076 @default.
- W4214898199 hasLocation W42148981991 @default.
- W4214898199 hasOpenAccess W4214898199 @default.
- W4214898199 hasPrimaryLocation W42148981991 @default.
- W4214898199 hasRelatedWork W1503224444 @default.
- W4214898199 hasRelatedWork W1965138165 @default.
- W4214898199 hasRelatedWork W1981326734 @default.
- W4214898199 hasRelatedWork W2148542813 @default.
- W4214898199 hasRelatedWork W2610659201 @default.
- W4214898199 hasRelatedWork W2805262980 @default.
- W4214898199 hasRelatedWork W3025424853 @default.
- W4214898199 hasRelatedWork W4213012150 @default.
- W4214898199 hasRelatedWork W4214898199 @default.
- W4214898199 hasRelatedWork W4234891089 @default.
- W4214898199 isParatext "false" @default.
- W4214898199 isRetracted "false" @default.
- W4214898199 workType "article" @default.