Detection of encrypted executable files based on entropy analysis to determine the randomness measure of byte sequences
- Autores: Alekseev I.V.1, Platonov V.V.1
-
Afiliações:
- Peter the Great St. Petersburg Polytechnic University
- Edição: Volume 51, Nº 8 (2017)
- Páginas: 915-920
- Seção: Article
- URL: https://journals.rcsi.science/0146-4116/article/view/175069
- DOI: https://doi.org/10.3103/S0146411617080041
- ID: 175069
Citar
Resumo
A method has been proposed for identifying malicious programs that use encryption as a disguise. In this paper, a modification of the statistical spectral test based on entropy analysis has been described.
Palavras-chave
Sobre autores
I. Alekseev
Peter the Great St. Petersburg Polytechnic University
Autor responsável pela correspondência
Email: ialexeev@ibks.spbstu.ru
Rússia, St. Petersburg
V. Platonov
Peter the Great St. Petersburg Polytechnic University
Email: ialexeev@ibks.spbstu.ru
Rússia, St. Petersburg
Arquivos suplementares
