Published February 1, 2022 | Version v1
Journal article Open

Comparative analysis of various machine learning algorithms for ransomware detection

  • 1. Department of Computer Networks Engineering, College of Information Engineering, Al-Nahrain University, Baghdad, Iraq

Description

Recently, the ransomware attack posed a serious threat that targets a wide range of organizations and individuals for financial gain. So, there is a real need to initiate more innovative methods that are capable of proactively detect and prevent this type of attack. Multiple approaches were innovated to detect attacks using different techniques. One of these techniques is machine learning techniques which provide reasonable results, in most attack detection systems. In the current article, different machine learning techniques are tested to analyze its ability in a detection ransomware attack. The top 1000 features extracted from raw byte with the use of gain ratio as a feature selection method. Three different classifiers (decision tree (J48), random forest, radial basis function (RBF) network) available in Waikato Environment for Knowledge Analysis (WEKA) based machine learning tool are evaluated to achieve significant detection accuracy of ransomware. The result shows that random forest gave the best detection accuracy almost around 98%.

Files

06 18812.pdf

Files (611.7 kB)

Name Size Download all
md5:69745a36477a7fd3c533c7a8a310cb15
611.7 kB Preview Download