湖北省自然科学基金(the Natural Science Foundation of Hubei Province of China under Grant No.2008CDB349)
教育部科学技术研究重点项目(No.108166)
武汉大学软件工程国家重点实验室开放基金(No.SKLSE3008-07-05).
This paper proposes a new approach to detect the unknown viruses under the Windows platform.The main aim of the method is to achieve the detection of unknown viruses by analyzing the Win32API sequences of the PE files,using SVM to classify the k-length API sequences,and analyzing the risk level of API functions to improve the accuracy of SVM.The experimental results show that proposed method is mor...