Related Experiment Video
Updated: Aug 25, 2025

Eye Movement Monitoring of Memory
Published on: August 15, 2010
Memory Visualization-Based Malware Detection Technique
Syed Shakir Hameed Shah1, Norziana Jamil1, Atta Ur Rehman Khan2
1Institute of Energy Infrastructure, College of Computing and Informatics, Universiti Tenaga Nasional, Kajang 43000, Malaysia.
This study introduces a novel data engineering approach for detecting polymorphic malware by denoising and re-dimensioning memory images. The new method significantly improves machine learning model performance and reduces computational costs.
Area of Science:
- Cybersecurity
- Machine Learning
- Data Engineering
Background:
- Advanced Persistent Threats (APTs) pose significant risks, especially when combined with polymorphic malware that evades detection.
- Existing malware detection methods using memory visualization lack effective preprocessing, leading to overfitting and poor generalization.
- Polymorphic malware's ability to generate variants and reside in main memory makes it particularly challenging to identify.
Purpose of the Study:
- To develop a new data engineering approach for enhancing malware detection.
- To address the overfitting and generalization issues in memory-based malware visualization techniques.
- To improve the accuracy and efficiency of detecting polymorphic malware within Advanced Persistent Threats.
Main Methods:
- Introduced a two-stage data engineering approach: Denoising and Re-Dimensioning.
- Denoising stage: Reduced noise in memory dump-based malware images.
- Re-Dimensioning stage: Compressed cleaned images to reduce dimensionality, mitigating overfitting and computational overhead.
Main Results:
- Achieved high performance metrics: 97.82% accuracy, 97.66% precision, 97.25% recall, and 97.57% F1-score.
- Outperformed existing solutions by 0.83% in accuracy, 0.30% in precision, 1.67% in recall, and 1.25% in F1-score.
- Significantly reduced computational time and memory usage compared to prior methods.
Conclusions:
- The proposed data engineering approach effectively enhances machine learning models for malware detection.
- The Denoising and Re-Dimensioning stages are crucial for overcoming limitations in current memory-based visualization techniques.
- This method offers a more accurate, efficient, and generalizable solution for identifying polymorphic malware in APTs.
More Related Videos
08:53Using a Classroom-Based Deese Roediger McDermott Paradigm to Assess the Effects of Imagery on False Memories
Published on: November 14, 2018
07:26The Deese-Roediger-McDermott DRM Task: A Simple Cognitive Paradigm to Investigate False Memories in the Laboratory
Published on: January 31, 2017
Related Concept Videos
Understanding Memory
System of Memory
Mnemonic Devices
Acronyms
Acronyms are created by using the initial letters of a series of words to form a new word or phrase. This approach condenses complex information into a single, memorable entity. For example,...
Mass Analyzers: Overview