Malware Detection on Static Analysis Windows Portable Executable (PE) Using Support Vector Machine and Decision Tree

Authors

  • Mohammad Mirza Qusyairi a:1:{s:5:"en_US";s:5:"Mirza";}
  • Rio Guntur Utomo
  • Rahmat Yasirandi

DOI:

https://doi.org/10.22303/csrid-.15.2.2023.93-102

Keywords:

malware, machine learning, support vector machine, decision tree

Abstract

Malware has become a major issue for computer system security today. Due to its ability to spread rapidly and negatively impact system performance, malware detection becomes crucial. One of the methods for malware detection is performing classification using Machine Learning, which learns the variable values of an application without executing it. In this study, the author evaluates the method of malware detection in the static analysis of Windows Portable Executable (PE) using Support Vector Machine (SVM) and Decision Tree. The author uses a dataset of PE files related to malware and safe applications from malware Using SVM and Decision Tree algorithms to classify the PE files as malware or not, determining the best machine learning algorithm for malware detection in PE files.

References

W. Bhaya and M. Ali, "Review on Malware and Malware Detection Using Data Mining Techniques," Journal of University of Babylon, vol. 25, pp. 1585-1601, 2017.

K. Ajit, K. K.S. and A. G., "A learning model to detect maliciousness of portable executable using integrated feature set," Journal of King Saud University - Computer and Information Sciences, vol. 2, pp. 252-265, 2019.

M. a. H. D. a. V. N. Salman, "Static Analysis Method on Portable Executable Files for REMNUX based Malware Identification," in 2019 IEEE 10th International Conference on Awareness Science and Technology (iCAST), 2019.

N. G. Baltas, P. Mazidi, J. Ma, F. de Asis Fernandez and P. Rodriguez, "A Comparative Analysis of Decision Trees, Support Vector Machines and Artificial Neural Networks for On-line Transient Stability Assessment," in 2018 International Conference on Smart Energy Systems and Technologies (SEST), 2018.

M. Ijaz, M. H. Durad and M. Ismail, "Static and Dynamic Malware Analysis Using Machine Learning," in 2019 16th International Bhurban Conference on Applied Sciences and Technology (IBCAST), 2019.

T.-Y. Wang, C.-H. Wu and C.-C. Hsieh, "Detecting Unknown Malicious Executables Using Portable Executable Headers," in 2009 Fifth International Joint Conference on INC, IMS and IDC, 2009.

I. M. Mubaroq and E. B. Setiawan, "The Effect of Information Gain Feature Selection for Hoax Identification in Twitter Using Classification Method Support Vector Machine," Indonesia Journal on Computing (Indo-JC), vol. 5, pp. 107-118, 2020.

D. Maulina and R. Sagara, "Klasifikasi artikel hoax menggunakan support vector machine linear dengan pembobotan term frequency--Inverse document frequency," Jurnal Mantik Penusa, vol. 2, p. 1, 2018.

A. J. Myles, R. N. Feudale, Y. Liu, N. A. Woody and S. D. Brown, "An introduction to decision tree modeling," Journal of Chemometrics: A Journal of the Chemometrics Society, vol. 18, pp. 275-285, 2004.

S. Visa, B. Ramsay, A. L. Ralescu and E. Van Der Knaap, "Confusion matrix-based feature selection," Maics, vol. 710, pp. 120-127, 2011.

Downloads

Published

2023-09-05

Issue

Section

Articles

How to Cite

Malware Detection on Static Analysis Windows Portable Executable (PE) Using Support Vector Machine and Decision Tree. (2023). CSRID (Computer Science Research and Its Development Journal), 15(2), 93-102. https://doi.org/10.22303/csrid-.15.2.2023.93-102

Similar Articles

11-20 of 55

You may also start an advanced similarity search for this article.