Telecommunications Science ›› 2016, Vol. 32 ›› Issue (10): 15-21.doi: 10.11959/j.issn.1000-0801.2016253

• Topic: terminal security based on Android system • Previous Articles     Next Articles

Android malware detection method based on combined algorithm

Hao CHEN1,Sihan QING1,2,3   

  1. 1 School of Software and Microelectronics, Peking University, Beijing 102600, China
    2 Institute of Software, Chinese Academy of Sciences, Beijing 100190, China
    3 State Key Laboratory of Information Security, Institute of Information Engineering, Chinese Academy of Sciences, Beijing 100093, China
  • Online:2016-10-15 Published:2017-04-27
  • Supported by:
    The National Natural Science Foundation of China

Abstract:

In order to solve the problems in applicability and usability of today's static malware detection method, a detection system was implemented by using the optimal classifier selected by a combined algorithm as the core. Firstly, the reverse engineering was used to extract the software feature, then the preliminary results of the classifier was got by multi-stage screening. A classifier evaluation was presented based on minimum risk Bayes. Using the new one as the core, the optimal classifier results was got by assignment. Finally, an Android malware detection system prototype was realized using the optimal results as the core. Experimental results show that the analysis accuracy of the proposed detection system was 86.4%, and does not depend on characteristics of the malicious code.

Key words: malware detection, feature selection, combined algorithm, minimum risk Bayes evaluation, dangerous permission combination

No Suggested Reading articles found!