Entropy-Based Deep Learning Framework for Classifying Ransomware Families in Windows Environment
- Authors
-
-
Joseph A. OJENIYI
Department of Cyber Security, Federal University of Technology, Minna, Nigeria
Author
-
Zainab L. BELLO
Department of Cyber Security, Federal University of Technology, Minna, Nigeria
Author
-
Ismail IDRIS
Department of Cyber Security, Federal University of Technology, Minna, Nigeria
Author
-
Noel M. DOGONYARO
Department of Cyber Security, Federal University of Technology, Minna, Nigeria
Author
-
Suleiman AHMAD
Department of Cyber Security, Federal University of Technology, Minna, Nigeria
Author
-
Sikiru O. SUBAIRU
Department of Cyber Security, Federal University of Technology, Minna, Nigeria
Author
-
- Keywords:
- Cybersecurity, cryptography, entropy, multi-layer perceptron, ransomware.
- Abstract
-
Ransomware poses a critical cybersecurity challenge, exploiting strong encryption to deny access to data and evade traditional detection methods. Conventional techniques such as signature and heuristic-based detection often fail against modern variants due to polymorphism, obfuscation, and ransomware-as-a-service (RaaS) models. This study proposes an entropy-based deep learning framework for classifying Windows ransomware families, leveraging entropy’s ability to quantify the randomness introduced by encryption. Encrypted files exhibit higher entropy values (>7.5) compared to benign files (4.5–6.0), making entropy a reliable feature for ransomware detection. In this work, ransomware samples from 18 families were executed in a controlled virtual box windows 10 environment to generate encrypted datasets across multiple file types. Shannon, Rényi, and sample entropy measures, alongside statistical descriptors, were extracted and transformed into normalized feature vectors for classification using a multi-layer perceptron (MLP) model. Experimental results revealed distinct entropy patterns across ransomware families, with the proposed framework achieving efficient training convergence and robust generalization. The model achieved accuracy 94.7%, 94.3% precision, 93.8% recall and FI-score of 94.0%. The findings confirm entropy’s effectiveness as a scalable and resilient feature, supporting accurate ransomware family classification and enhancing real-time detection and forensic analysis.
- References
- Downloads
- Published
- 22-12-2025
- Section
- Articles
- License
-
Copyright (c) 2025 FUDMA Journal of Engineering and Technology

This work is licensed under a Creative Commons Attribution-NonCommercial 4.0 International License.
How to Cite
Similar Articles
- Oluwaseun S. OGUNGBEMI, Geophysical Approach to Groundwater Resource Appraisal in Afe Babalola University, Ado-Ekiti, Southwestern Nigeria , FUDMA Journal of Engineering and Technology: Vol. 1 No. 2 (2025): December 2025
- Nafisa A. ABDULHAMID, Danladi D. USMAN, Kabiru I. JAHUN, Rotkangmwa J. SATI, Yahaya U. JAURO, Abdulmajid M. HASHIR, Yusuf G. SHIMBURA, Development of a Solar Dryer with Multi-Products and a Residual Moisture Control System , FUDMA Journal of Engineering and Technology: Vol. 2 No. 1 (2026): June 2026
- Isiaq O. ALABI, Hassan T. ABDULAZEEZ, Sulaiman AHMAD, Yahaya M. SANI, Scalability Versus Accuracy Trade-offs in Distributed Big Data Processing Frameworks: A Comparative Evaluation of Apache Spark, Flink, and Dask Using Benchmark Datasets , FUDMA Journal of Engineering and Technology: Vol. 2 No. 1 (2026): June 2026
- Umar A. IBRAHIM, Abdulra’uf G. SHARIFAI, Hybrid CNN Feature Fusion with Optimization for Precision Potato Leaf Disease Classification , FUDMA Journal of Engineering and Technology: Vol. 1 No. 2 (2025): December 2025
- Hillary T. OGBODO, Bilkisu L. MUHAMMAD-BELLO, Joshua ABAH, Saleh E.-Y. ABDULLAHI, Quantum Computing Applications in Software Engineering: A Scoping Review , FUDMA Journal of Engineering and Technology: Vol. 2 No. 1 (2026): June 2026
- Munir A. ADEWOYE, Ahmed ALIYU, Usman A. ALI, Abdulrasheed JIMOH, Blockchain-Based Food Supply Chain Traceability: A Systematic Review of Privacy Preserving and Scalability , FUDMA Journal of Engineering and Technology: Vol. 2 No. 1 (2026): June 2026
- Titilope A. BANJOKO, Bilkisu L. MUHAMMAD-BELLO, Predicting Requirement Change Using Bayesian Networks on Historical Traceability Data , FUDMA Journal of Engineering and Technology: Vol. 2 No. 1 (2026): June 2026
- Victor A. NSABA, Sabiu B. YUSUF, Kafayat A. IBRAHIM, Consumer Perceptions of Artificial Intelligence (AI)-Driven Smart Grids and Energy Efficiency in Northwest Nigeria’s Power Distribution Sector: A Multi-State Case Study of Sokoto, Kebbi, and Zamfara , FUDMA Journal of Engineering and Technology: Vol. 2 No. 1 (2026): June 2026
You may also start an advanced similarity search for this article.
Most read articles by the same author(s)
- Jennifer BALA, Sikiru O. SUBAIRU, Noel M. DOGONYARO, Joseph A. OJENIYI, Suleiman AHMAD, Development of an Optimized Hybrid XGBoost–GRU Model for Detection of Ponzi Schemes in Ethereum Transaction Networks , FUDMA Journal of Engineering and Technology: Vol. 1 No. 2 (2025): December 2025
- Zainab B. LAPAI, Joseph A. OJENIYI, Ismail IDRIS, Abdulkadir O. ABDULBAKI, Jennifer BALA, Entropy-Guided Neural Architecture for Family-Level Classification of Windows Ransomware , FUDMA Journal of Engineering and Technology: Vol. 1 No. 2 (2025): December 2025
- Abubakar L. IBRAHEEM, John K. ALHASSAN, Noel D. MOSES, Suleiman AHMAD, Development of Ensemble SVM–LSTM Model for Phishing Website Detection , FUDMA Journal of Engineering and Technology: Vol. 2 No. 1 (2026): June 2026
- Lukman MOHAMMED, Victor O. WAZIRI, Ismaila IDRIS, Suleiman AHMAD, Performance Assessment of Android Antimalware Applications: An Experimental Approach , FUDMA Journal of Engineering and Technology: Vol. 1 No. 2 (2025): December 2025
