Research Article

Combat Mobile Evasive Malware via Skip-Gram-Based Malware Detection

Table 7

Robustness of our model against evasion methods; this table shows malware families, their evasion capabilities, and their sample counts in test set. Final column shows our model detection performance of corresponding malware family.

Evasion methodsResults
Family nameRenamingString encryptionDynamic loadingNative payloadAntidynamic analysisTotal countAccuracy (%)

Airpush235395
Andup1492
BankBot19599
Bankun2190
Boqx6575
Boxer14100
Cova6100
Dowgin101591
DroidKungFu16498
FakeAngry366
FakeDoc7100
FakeInst651100
FakePlayer785
FakeUpdates20
Finspy3100
Fobus2100
Fusob383100
GingerMaster3997
GoPro1163
Gumen4488
Koler21100
Ksapp1190
Kuguo36098
Kyview5386
Leech39100
Lotoor9596
Minimob6188
Mseg7153
Mtk21100
Obad3100
Opfake366
Ogel2100
Roop15599
RuMMS121100
SlemBunk52100
Simplelocker48100
SmsKey5098
Stealer8100
Svpeng475
Tesbo2100
Triada6395
UpdtKiller8100
Utchi4100
Viking Horde333
Winge616
Youmi39097
Zitmo887
Ztorg6100
Total count64622856179643314326667
Accuracy (%)959694939295 (total)