by 28 Octobre 2016 Gif sur Yvette
• • • • • •
• • •
• • •
❏ ❏
Disassemble Analyse
• • •
Traitement 1 Traitement 2 Disassemble ... Traitement 1: ● Extraction sections delimited by blocks of zero. Traitement 2: Analyse ● Eliminate low entropy section using Shannon’s Entropy
● ■
● ■ ■ ■ ●
• – • – • – • – •
• • • • • •
• – • •
❏ ❏ ❏ ❏
Training Instances Learning Algorithm Trained for task (T) Evaluation (P) ● ● ● ● Ask
Type: • •
Good feature selection Bad feature selection
Split data into k samples Training Data feffff <= 0 Learn model on every sample ARM 4e5e4e<= 0 000001 <= 0 IA64 SPARC Model 2 Model 3 Model 1 Test Data Final predictions voting Combine predictions using votes
Model building Feature extraction Learning Engine Feature generate extraction
Binary Generate .text + .data .text Section Section
• •
• • • • •
• • • • • •
• • •
Recommend
More recommend