TY - JOUR
T1 - Malware analysis based on smart agents and image classification
AU - Romero-Herrera, Rodolfo
AU - García, Juan Antonio Jiménez
AU - García, Victor Manuel Silva
N1 - Publisher Copyright:
© 2005 – ongoing JATIT & LLS.
PY - 2020/10
Y1 - 2020/10
N2 - Windows-based systems and operating systems in general are significantly damaged, affecting infrastructures. At present, Malware analysis is performed in laboratories that use high costs and resources; so there are few methods of classification of Malware, based on artificial intelligence that consumes few resources. This article provides a system that was developed for the dynamic analysis of malware in Windows and classified using SIFT, SURF, and Bayesian networks. This involves the transformation of infected files into image files that allows the identification and classification of Malware. The samples of malicious software that allows generating a contingency plan were identified. The system was developed using intelligent agents. The analysis of Postal worm malware is presented as an example. When comparing with other malware detection and classification systems, it is observed that the multi-agent-based system is competitive.
AB - Windows-based systems and operating systems in general are significantly damaged, affecting infrastructures. At present, Malware analysis is performed in laboratories that use high costs and resources; so there are few methods of classification of Malware, based on artificial intelligence that consumes few resources. This article provides a system that was developed for the dynamic analysis of malware in Windows and classified using SIFT, SURF, and Bayesian networks. This involves the transformation of infected files into image files that allows the identification and classification of Malware. The samples of malicious software that allows generating a contingency plan were identified. The system was developed using intelligent agents. The analysis of Postal worm malware is presented as an example. When comparing with other malware detection and classification systems, it is observed that the multi-agent-based system is competitive.
KW - Analysis
KW - Classifier
KW - Malware
KW - SIFT
KW - SURF
KW - Smart agent
UR - http://www.scopus.com/inward/record.url?scp=85092667887&partnerID=8YFLogxK
M3 - Artículo
AN - SCOPUS:85092667887
SN - 1992-8645
VL - 8
SP - 3116
EP - 3127
JO - Journal of Theoretical and Applied Information Technology
JF - Journal of Theoretical and Applied Information Technology
IS - 10
ER -