Unknown malicious executables detection based on immune principles

Jinquan Zeng,Caiming Liu,Jianbin Hu,Yu Zhang
2012-01-01
Abstract:Detecting unknown malicious executables is a challenging task. Traditional anti-virus systems use signatures to detect malicious executables. However, the method cannot detect unseen instances or variants. Inspired by biological immune systems, an immune-based approach for detection of unknown malicious executables is proposed in this paper, which is referred to MEDMI. The approach can use the benign executables to be the training set for building the profile of the system and then generates detectors to detect malicious executables. The experiments comparing with different detection methods show that the approach provides an effective novel solution to detect malicious executables. © Maxwell Scientific Organization, 2012.
What problem does this paper attempt to address?