BiTCN-TAEfficientNet Malware Classification Approach Based on Sequence and RGB Fusion

Bona Xuan,Jin Li,Yafei Song
DOI: https://doi.org/10.1016/j.cose.2024.103734
IF: 5.105
2024-01-28
Computers & Security
Abstract:This paper proposes a bi-directional temporal convolutional networks transfer learning atrous spatial pyramid pooling EfficientNet (BiTCN-TAEfficientNet) malware classification approach based on multi-feature fusion. This approach utilizes the assembly data and API sequences of malware as features. It enhances the classification accuracy of the algorithm by introducing bi-directional temporal convolutional networks to mine bi-directional timing features. In addition, an RGB image-based malware feature representation method is proposed. The method focuses on the similarity relationship between malware variants and raw binary, Opcode operands, and API calls to create images with rich textures representing deeper dependent features. Using the atrous spatial pyramid pooling to enhance the transfer learning-based EfficientNet model to resolve the data loss and redundancy issue caused by image size normalization, thus improving its accuracy. The proposed algorithm refines the above two algorithms by utilizing a fusion classifier and a quantum particle swarm optimization algorithm to optimize BiTCN-TAEfficientNet. This approach not only addresses sequences susceptible to confusion interference but circumvents the adverse effects of adversarial techniques by visualizing methods to show the similarity of malicious families. The results show that the classification accuracy of this method for Kaggle and DataCon datasets reaches 99.461% and 97.92%, which are 0.38% and 0.87% higher than other methods, respectively.
computer science, information systems
What problem does this paper attempt to address?