官术网_书友最值得收藏!

Running the application

With the addition of feature extraction in our pipeline, we first need to perform feature extraction on the files:

  1. Assuming the folder of files called temp_data exists, execute the following command:
PS chapter03-logistic-regression\bin\Debug\netcoreapp3.0> .\chapter03-logistic-regression.exe extract temp_data                                                
Extracted 8 to sampledata.csv

The output shows the count of extracted files and the output sample file.

  1. To train the model using either the included sampledata.csv or one you trained yourself, execute the following command:
PS chapter03-logistic-regression\bin\Debug\netcoreapp3.0> .\chapter03-logistic-regression.exe train ..\..\..\Data\sampledata.csv

The chapter3.mdl model file should exist in the folder executed in once complete.

  1. To run the newly trained model against an existing file such as the compiled chapter3 executable, run the following command:
PS chapter03-logistic-regression\bin\Debug\netcoreapp3.0> .\chapter03-logistic-regression.exe predict .\chapter03-logistic-regression.exe                      
Based on the file (.\chapter03-logistic-regression.exe) the file is classified as benign at a confidence level of 8%
If you are looking for sample files, the c:\Windows and c:\Windows\System32 folders contain numerous Windows Executables and DLLs. In addition, if you are looking to create malicious-looking files that are actually clean, you can create files on the fly on http://cwg.io in various file formats. This is a helpful tool in the cyber-security space where testing new functionality on a development machine is much safer than detonating real zero-day threats on!
主站蜘蛛池模板: 桃园市| 济阳县| 禄劝| 九江市| 新巴尔虎左旗| 棋牌| 丹凤县| 黔南| 永善县| 梧州市| 郎溪县| 紫云| 衡南县| 囊谦县| 浦城县| 湾仔区| 宁都县| 水富县| 巴彦县| 安义县| 永顺县| 沈阳市| 兴业县| 股票| 荆门市| 华坪县| 朝阳县| 屏东市| 吉安市| 聂拉木县| 定边县| 公主岭市| 余江县| 招远市| 石泉县| 达孜县| 丰宁| 青海省| 景洪市| 余庆县| 广安市|