Journal on Communications ›› 2017, Vol. 38 ›› Issue (Z2): 30-36.doi: 10.11959/j.issn.1000-436x.2017271

• Papers • Previous Articles     Next Articles

Android malware detection method based on SimHash

Bo CHEN,Yong-tao PAN,Tie-ming CHEN   

  1. College of Computer,Zhejiang University of Technology,Hangzhou 310023,China
  • Online:2017-11-01 Published:2018-06-07
  • Supported by:
    The National Natural Science Foundation of China(U1509214);The National Natural Science Foundation of China(6177202);The Natural Science Foundation of Zhejiang Province(LY16F020035)

Abstract:

A new similarity detection scheme based on hierarchical SimHash algorithm was proposed.The scheme extractd contents from different aspects to represent the APK file,then used the improved SimHash to respectively represent the file.The scheme analyzed the APK file by extracting the AndroidManifest.xml file in it,the sum of the Smali code from the decompilation of dex file,instructions extracted in Smali files,Java code set,and instructions extracted in Java code files.Through the study of Voted Perceptron voting algorithm,the scheme used trust weight method,by valuating a trust weight in every layer,then combined all the result with weight in every layer as a resule of scheme,the result can be more reasonable and more convincing.

Key words: Android, malware detection, SimHash, Voted Perceptron

CLC Number: 

No Suggested Reading articles found!