RUS  ENG
Full version
JOURNALS // Informatsionnye Tekhnologii i Vychslitel'nye Sistemy // Archive

Informatsionnye Tekhnologii i Vychslitel'nye Sistemy, 2012 Issue 2, Pages 76–92 (Mi itvs83)

DATA PROCESSING

Investigation of structural specificities of malicious documents by Data Mining

D. V. Komashinskiy, I. V. Kotenko

St. Petersburg Institute for Informatics and Automation of RAS

Abstract: The paper is devoted to a issue of detecting malicious documents with Data Mining methods. A static detection approach based on search for specific structural and content features is proposed. The approach’s evaluation is done by using Portable Document Format sample files. During the experiments we evaluate both particular classification methods and combined classification ways using separate feature spaces for learning of included classifiers.

Keywords: information security, malicious documents, Portable Document Format, classification, Data Mining.



© Steklov Math. Inst. of RAS, 2024