Multi-Perspective Analysis Integrating API and DLL Features for Malware Detection


연구 분야: Safety



학회: 2025 10th International Conference on Intelligent Computing and Signal Processing (ICSP)


초록

API has become one of the important means for malware detection due to its numerous features that are beneficial for such detection. Besides API sequences, the DLL called during software runtime can also serve as a means to assist in malware detection. Therefore, this paper proposes a multi-angle analysis method that combines API and DLL. 1. By constructing a graph of DLL to determine the correlation of referenced DLL, it can be used to prove the existence of malware. 2. Using clustering and multi-order transition probability matrices to describe the features in API sequence fragments and judge the malicious behavior of API sequence fragments. By using CNN to learn features and integrating API features with DLL features for detection. Finally, we compare multiple research methods to verify the effectiveness of the method proposed in this paper.


Author Profile
Anyang Yin

College of Computer Science And Technology Shanghai University of Electric Power Shanghai China

Andorra
Author Profile
Hongjiao Li

College of Computer Science And Technology Shanghai University of Electric Power Shanghai China

Andorra
Author Profile
Min Jin

College of Computer Science And Technology Shanghai University of Electric Power Shanghai China

Andorra

📄 논문 정보

발행 연도 2025년
인용수 11
출판 국가 Andorra
사이트 IEEE
좋아요 수 0

연관 논문 목록 (333건)