Matches in SemOpenAlex for { <https://semopenalex.org/work/W2912891582> ?p ?o ?g. }
Showing items 1 to 75 of
75
with 100 items per page.
- W2912891582 endingPage "121" @default.
- W2912891582 startingPage "110" @default.
- W2912891582 abstract "Malware growth was exponential in the last years, therefore it is a tedious work to manually analyze them in order to observe when a new strain appears. In this article we present a dynamic analysis system which clusters suspicious executable files in different malware families, based on the behavioral similarities their running processes exhibit thus reducing the workload of malware analysts. We identified similarities between our approach and the problem of text clustering based on topic, achieving similar results to text clustering without semantic analysis involved. We modeled the behavior of a process by extracting sequences of Windows API functions called by that process during its execution. We separated the registered API calls on three levels, based on their impact on the system, and dealt with them as text-like terms. More complex terms were constructed with N-grams and the features were represented with TF-IDF scores. We clustered the processes with variants of the k-means algorithm and derived a method for analyzing cluster characteristics in order to determine the best number of clusters to be considered. Finally, we identified the API level and N-gram lengths required to obtain relevant clusters." @default.
- W2912891582 created "2019-02-21" @default.
- W2912891582 creator A5031907703 @default.
- W2912891582 creator A5060431360 @default.
- W2912891582 date "2019-01-01" @default.
- W2912891582 modified "2023-10-18" @default.
- W2912891582 title "Malware Clustering Based on Called API During Runtime" @default.
- W2912891582 cites W1591082683 @default.
- W2912891582 cites W1851403712 @default.
- W2912891582 cites W1966917005 @default.
- W2912891582 cites W1987971958 @default.
- W2912891582 cites W2051224630 @default.
- W2912891582 cites W2057079516 @default.
- W2912891582 cites W2085487226 @default.
- W2912891582 cites W2111038628 @default.
- W2912891582 cites W2142838865 @default.
- W2912891582 cites W2154529672 @default.
- W2912891582 cites W2165612380 @default.
- W2912891582 cites W2530551364 @default.
- W2912891582 cites W4251830183 @default.
- W2912891582 doi "https://doi.org/10.1007/978-3-030-12085-6_10" @default.
- W2912891582 hasPublicationYear "2019" @default.
- W2912891582 type Work @default.
- W2912891582 sameAs 2912891582 @default.
- W2912891582 citedByCount "2" @default.
- W2912891582 countsByYear W29128915822019 @default.
- W2912891582 countsByYear W29128915822021 @default.
- W2912891582 crossrefType "book-chapter" @default.
- W2912891582 hasAuthorship W2912891582A5031907703 @default.
- W2912891582 hasAuthorship W2912891582A5060431360 @default.
- W2912891582 hasConcept C111919701 @default.
- W2912891582 hasConcept C124101348 @default.
- W2912891582 hasConcept C154945302 @default.
- W2912891582 hasConcept C160145156 @default.
- W2912891582 hasConcept C164866538 @default.
- W2912891582 hasConcept C199360897 @default.
- W2912891582 hasConcept C2778476105 @default.
- W2912891582 hasConcept C2778579508 @default.
- W2912891582 hasConcept C2779395397 @default.
- W2912891582 hasConcept C41008148 @default.
- W2912891582 hasConcept C541664917 @default.
- W2912891582 hasConcept C73555534 @default.
- W2912891582 hasConcept C98045186 @default.
- W2912891582 hasConceptScore W2912891582C111919701 @default.
- W2912891582 hasConceptScore W2912891582C124101348 @default.
- W2912891582 hasConceptScore W2912891582C154945302 @default.
- W2912891582 hasConceptScore W2912891582C160145156 @default.
- W2912891582 hasConceptScore W2912891582C164866538 @default.
- W2912891582 hasConceptScore W2912891582C199360897 @default.
- W2912891582 hasConceptScore W2912891582C2778476105 @default.
- W2912891582 hasConceptScore W2912891582C2778579508 @default.
- W2912891582 hasConceptScore W2912891582C2779395397 @default.
- W2912891582 hasConceptScore W2912891582C41008148 @default.
- W2912891582 hasConceptScore W2912891582C541664917 @default.
- W2912891582 hasConceptScore W2912891582C73555534 @default.
- W2912891582 hasConceptScore W2912891582C98045186 @default.
- W2912891582 hasLocation W29128915821 @default.
- W2912891582 hasOpenAccess W2912891582 @default.
- W2912891582 hasPrimaryLocation W29128915821 @default.
- W2912891582 hasRelatedWork W1561877636 @default.
- W2912891582 hasRelatedWork W1855034413 @default.
- W2912891582 hasRelatedWork W1876478908 @default.
- W2912891582 hasRelatedWork W193849731 @default.
- W2912891582 hasRelatedWork W1970984476 @default.
- W2912891582 hasRelatedWork W201444914 @default.
- W2912891582 hasRelatedWork W2338372573 @default.
- W2912891582 hasRelatedWork W3042673639 @default.
- W2912891582 hasRelatedWork W3178528869 @default.
- W2912891582 hasRelatedWork W4287280928 @default.
- W2912891582 isParatext "false" @default.
- W2912891582 isRetracted "false" @default.
- W2912891582 magId "2912891582" @default.
- W2912891582 workType "book-chapter" @default.