Non-signature based virus detection Towards establishing a unknown virus detection technique using SOM
نویسندگان
چکیده
A non-signature-based virus detection approach using Self-Organizing Maps (SOMs) is presented in this paper. Unlike classical virus detection techniques using virus signatures, this SOM-based approach can detect virus-infected files without any prior knowledge of virus signatures. Exploiting the fact that virus code is inserted into a complete file which was built using a certain compiler, an untrained SOM can be trained in one go with a single virus-infected file and will then present an area of high density data, identifying the virus code through SOM projection. The virus detection approach presented in this paper has been tested on 790 different virus-infected files, including polymorphic and encrypted viruses. It detects viruses without any prior knowledge – e.g. without knowledge of virus signatures or similar features – and is therefore assumed to be highly applicable to the detection of new, unknown viruses. This non-signature-based virus detection approach was capable of detecting 84% of the virus-infected files in the sample set which included, as already mentioned, polymorphic and encrypted viruses. The false positive rate was 30%. The combination of the classical virus detection technique for knownviruses and this SOM-based technique for unknown viruses can help systems be even more secure. I. S. Yoo (B) · U. Ultes-Nitsche Department of Computer Science, University of Fribourg, Fribourg, Switzerland e-mail: [email protected] U. Ultes-Nitsche e-mail: [email protected]
منابع مشابه
Differentiation of Virulent and Non-Virulent Newcastle Disease Virus Isolates Using RT-PCR
Newcastle disease is one of the main concerns of poultry farmers. Detection of virulent strains of Newcastle disease virus (NDV) has a great impact on control measures against the disease. In this study RT-PCR was optimized in high sensitivity in order to differentiate the virulent from non-virulent NDV isolates directly in tissue homogenates. The vaccinal NDV strain and known field isolates we...
متن کاملLoop-Mediated Isothermal Amplification (LAMP) for the Rapid Diagnosis of Herpes Simplex Virus Type 1 (HSV-1)
Background and Aims: considering difficulties in usual laboratory methods in detection of viral infections, improved DNA-based diagnostic techniques are more reliable. Loop mediated isothermal amplification method (LAMP) is a nucleic acid amplification method that amplifies DNA using six primers which has been developed to diagnose viruses as a rapid and high efficiency test. In this study, the...
متن کاملDetection of Bovine Viral Diarrhea Virus Using a Nested RT-PCR Assay in Bulk Milk Samples of Dairy Cattle Herds in Suburb of Mashhad-Iran
Bovine viral diarrhoea virus (BVDV) is an important pathogen of dairy cattle. In this study, bulk milk samples representing a total of 4105 milking cows, from 18 dairy cattle herds in the suburb of Mashhad- Iran, were tested for presence of BVDV by the use of a nested reverse transcription polymerase chain reaction (Nested RT- PCR) assay. Non of the cows in the herds had been vaccinated against...
متن کاملDevelopment of SYBR Green I Based Real-Time RT-PCR Assay for Specific Detection of Watermelon silver mottle Virus
Background: Watermelon silver mottle virus (WSMoV), which belongs to the genus Tospovirus, causes significant loss in Cucurbitaceae plants. Objectives: Development of a highly sensitive and reliable detection method for WSMoV. Materials and Methods: Recombinant plasmids for targeting the sequence of nucleocapsid protein gene of WSMoV were constructed. SYBR Green I real-time PCR was established...
متن کاملDetection of Infectious Bronchitis Virus in Allantioc Fluid by Rapid Hemagglutination Test.
To detect the presence of infectious bronchitis virus (IBV) in infected allantoic fluid (AF) of SPF embryonated eggs rapid hemagglutination (HA) activity after treatment with neuraminidase enzyme was used. Twenty IBV suspected materials were inoculated in SPF embryonated eggs via chorioallantoic cavity. Harvested AFs were treated with neuraminidase enzyme and the presence of IBV was detected by...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2006