K-Means Clustering Analysis Based On Adaptive Weights For Malicious Code Detection

Sun Haoliang,Wang Dawei,Zhang Ying
DOI: https://doi.org/10.1109/iccsn.2019.8905286
2019-01-01
Abstract:Nowadays, a major challenge to network security is malicious codes. However, manual extraction of features is one of the characteristics of traditional detection techniques, which is inefficient. On the other hand, the features of the content and behavior of the malicious codes are easy to change, resulting in more inefficiency of the traditional techniques. In this paper, a K-Means Clustering Analysis is proposed based on Adaptive Weights (AW-MMKM). Identifying malicious codes in the proposed method is based on four types of network behavior that can be extracted from network traffic, including active, fault, network scanning, and page behaviors. The experimental results indicate that the AW-MMKM can detect malicious codes efficiently with higher accuracy.
What problem does this paper attempt to address?