Fuzzy reasoning model for analysis of program maliciousness

Boolean logic can not describe fuzzy concepts, such as similarity degree. However, the similarity degree of two programs is usually used to determine that whether one program of these two is a variant of the other. To detect malware, a model for analysis of program maliciousness was put forward base...

Full description

Saved in:
Bibliographic Details
Main Authors: FU Wen, WEI Bo, ZHAO Rong-cai, PANG Jian-min
Format: Article
Language:zho
Published: Editorial Department of Journal on Communications 2010-01-01
Series:Tongxin xuebao
Subjects:
Online Access:http://www.joconline.com.cn/zh/article/74650301/
Tags: Add Tag
No Tags, Be the first to tag this record!
Description
Summary:Boolean logic can not describe fuzzy concepts, such as similarity degree. However, the similarity degree of two programs is usually used to determine that whether one program of these two is a variant of the other. To detect malware, a model for analysis of program maliciousness was put forward based on fuzzy reasoning. In this model, malicious characteristics of a program were abstracted using fuzzy pattern recognition firstly. Then the maliciousness of this program was quantitatively analyzed by probability method. Finally, whether the program is malicious was determined approximately using a fuzzy reasoning algorithm. Experimental results show that the prototype based on this model is good at detecting unknown malicious programs and malware variants.
ISSN:1000-436X