Research Article

PBDT: Python Backdoor Detection Model Based on Combined Features

Table 2

Feature summary.

Feature setOld featuresNew features and improvements

Call featuresMalicious module feature
Malicious function feature
Line opcode feature

Text statistical featuresInformation entropy
The longest string
Index of coincidence
Compression ratio
IP/URL information
Dangerous keywords

Opcode featuresAll opcode features
TF-IDF feature5-gram
FastText feature5-gram