Research Article

Real-Time Malware Process Detection and Automated Process Killing

Table 10

Summary of process killing models, validation, and test set score metrics [Table 3 of 3].

ValTest

SVMModel_pro mean process tree67.259.2496.6457.5513.3493.33
SVMModel_pro process tree min alerts: 166.475.8896.6456.217.2893.88
SVMModel_pro process tree min alerts: 266.475.8896.6456.217.2893.88
SVMModel_pro process tree min alerts: 366.475.8896.6456.217.2893.88
SVMModel_pro process tree min alerts: 466.475.8896.6456.217.2893.88
SVMModel_pro rolling mean window: 266.8715.9792.4458.6022.0290.30
SVMModel_pro rolling mean window: 367.3024.3789.0858.8224.4289.27
SVMModel_pro rolling mean window: 467.9931.9386.5557.9828.9784.66
SVMModel_pro sum alerts min: 267.9628.5788.2459.5227.6188.73
SVMModel_pro sum alerts min: 368.9035.2986.5559.0633.3584.12
SVMModel_pro sum alerts min: 468.7541.1883.1956.6838.8776.10
SVMModel_pro_tree65.739.0998.3261.799.8893.19
Dqn51.7172.2744.5427.7455.5026.94
random_search_glo_pro_RNN87.6977.3195.8071.8359.6390.24
random_search_glo_pro_RNN mean process tree88.0378.1595.8072.5061.6789.81
random_search_glo_pro_RNN_Regression85.7172.2795.8072.4461.7889.59
random_search_pro_RNN91.2085.7195.8072.6359.6391.82
random_search_pro_RNN mean process tree91.2085.7195.8073.0360.9291.49
random_search_pro_RNN_Regression88.3778.9995.8072.7160.7091.06
random_search_pro_RNN_tree88.1980.6794.1273.7265.7988.56