{"id":"https://openalex.org/W2105063115","doi":"https://doi.org/10.1109/dsn.2010.5544291","title":"Exploiting diverse observation perspectives to get insights on the malware landscape","display_name":"Exploiting diverse observation perspectives to get insights on the malware landscape","publication_year":2010,"publication_date":"2010-06-01","ids":{"openalex":"https://openalex.org/W2105063115","doi":"https://doi.org/10.1109/dsn.2010.5544291","mag":"2105063115"},"language":"en","primary_location":{"is_oa":false,"landing_page_url":"https://doi.org/10.1109/dsn.2010.5544291","pdf_url":null,"source":null,"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false},"type":"article","type_crossref":"proceedings-article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5109064815","display_name":"Corrado Leita","orcid":null},"institutions":[],"countries":["FR"],"is_corresponding":false,"raw_author_name":"Corrado Leita","raw_affiliation_strings":["Symantec Research Labs, Sophia-Antipolis, France"],"affiliations":[{"raw_affiliation_string":"Symantec Research Labs, Sophia-Antipolis, France","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5049919649","display_name":"Ulrich Bayer","orcid":null},"institutions":[{"id":"https://openalex.org/I121760703","display_name":"University of Applied Sciences Technikum Wien","ror":"https://ror.org/04jsx0x49","country_code":"AT","type":"education","lineage":["https://openalex.org/I121760703"]}],"countries":["AT"],"is_corresponding":false,"raw_author_name":"Ulrich Bayer","raw_affiliation_strings":["Technical University Vienna, Austria"],"affiliations":[{"raw_affiliation_string":"Technical University Vienna, Austria","institution_ids":["https://openalex.org/I121760703"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5077875821","display_name":"Engin Kirda","orcid":"https://orcid.org/0000-0001-9988-6873"},"institutions":[{"id":"https://openalex.org/I1902872","display_name":"EURECOM","ror":"https://ror.org/00sse7z02","country_code":"FR","type":"education","lineage":["https://openalex.org/I1902872"]}],"countries":["FR"],"is_corresponding":false,"raw_author_name":"Engin Kirda","raw_affiliation_strings":["[Institute Eurecom, Sophia Antipolis, France]"],"affiliations":[{"raw_affiliation_string":"[Institute Eurecom, Sophia Antipolis, France]","institution_ids":["https://openalex.org/I1902872"]}]}],"institution_assertions":[],"countries_distinct_count":2,"institutions_distinct_count":2,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":2.061,"has_fulltext":true,"fulltext_origin":"ngrams","cited_by_count":16,"citation_normalized_percentile":{"value":0.792154,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":87,"max":88},"biblio":{"volume":null,"issue":null,"first_page":"393","last_page":"402"},"is_retracted":false,"is_paratext":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9967,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10743","display_name":"Software Testing and Debugging Techniques","score":0.9679,"subfield":{"id":"https://openalex.org/subfields/1712","display_name":"Software"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[],"concepts":[{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.82476246},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.70068},{"id":"https://openalex.org/C2522767166","wikidata":"https://www.wikidata.org/wiki/Q2374463","display_name":"Data science","level":1,"score":0.45633098},{"id":"https://openalex.org/C107457646","wikidata":"https://www.wikidata.org/wiki/Q207434","display_name":"Human\u2013computer interaction","level":1,"score":0.36181456},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.23321605}],"mesh":[],"locations_count":1,"locations":[{"is_oa":false,"landing_page_url":"https://doi.org/10.1109/dsn.2010.5544291","pdf_url":null,"source":null,"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false}],"best_oa_location":null,"sustainable_development_goals":[],"grants":[],"datasets":[],"versions":[],"referenced_works_count":22,"referenced_works":["https://openalex.org/W103946897","https://openalex.org/W123019559","https://openalex.org/W146660932","https://openalex.org/W1503224444","https://openalex.org/W152854583","https://openalex.org/W1581009051","https://openalex.org/W1853552390","https://openalex.org/W1873122431","https://openalex.org/W1910686388","https://openalex.org/W1921075642","https://openalex.org/W2100198871","https://openalex.org/W2117887253","https://openalex.org/W2119029342","https://openalex.org/W2121749752","https://openalex.org/W2132874238","https://openalex.org/W2133217855","https://openalex.org/W2138644293","https://openalex.org/W2161830378","https://openalex.org/W2164253698","https://openalex.org/W2166462894","https://openalex.org/W4245435048","https://openalex.org/W4285719527"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W4284893819","https://openalex.org/W2772446090","https://openalex.org/W2753240997","https://openalex.org/W2748952813","https://openalex.org/W2740895074","https://openalex.org/W2537959205","https://openalex.org/W2249809453","https://openalex.org/W2097492617","https://openalex.org/W1764168690"],"abstract_inverted_index":{"We":[0,115],"are":[1],"witnessing":[2],"an":[3,63],"increasing":[4],"complexity":[5],"in":[6,54,77,111],"the":[7,26,44,67,71,102,119,123,139,153,156,159],"malware":[8,32,39,52,79,145],"analysis":[9,58],"scenario.":[10],"The":[11],"usage":[12],"of":[13,28,35,46,69,73,101,122,141,152,158],"polymorphic":[14,31],"techniques":[15,94],"generates":[16],"a":[17,29,36,87,149],"new":[18],"challenge:":[19],"it":[20],"is":[21],"often":[22],"difficult":[23],"to":[24,42,56,129],"discern":[25],"instance":[27],"known":[30],"from":[33],"that":[34],"newly":[37],"encountered":[38],"family,":[40],"and":[41,48,98,104,155],"evaluate":[43],"impact":[45],"patching":[47],"code":[49,134],"sharing":[50],"among":[51,132],"writers":[53],"order":[55],"prioritize":[57],"efforts.":[59],"This":[60],"paper":[61],"offers":[62],"empirical":[64],"study":[65],"on":[66,96,144],"value":[68],"exploiting":[70],"complementarity":[72],"different":[74,120,133,160],"information":[75,143],"sources":[76],"studying":[78],"relationships.":[80],"By":[81],"leveraging":[82],"real-world":[83],"data":[84],"generated":[85],"by":[86],"distributed":[88],"honeypot":[89],"deployment,":[90],"we":[91,105,137],"combine":[92],"clustering":[93,113],"based":[95],"static":[97],"behavioral":[99],"characteristics":[100,121],"samples,":[103],"show":[106,117],"how":[107,118],"this":[108],"combination":[109],"helps":[110],"detecting":[112],"anomalies.":[114],"also":[116],"approaches":[124],"can":[125],"help,":[126],"once":[127],"combined,":[128],"underline":[130],"relationships":[131],"variants.":[135],"Finally,":[136],"highlight":[138],"importance":[140],"contextual":[142],"propagation":[146],"for":[147],"getting":[148],"deeper":[150],"understanding":[151],"evolution":[154],"\"economy\"":[157],"threats.":[161]},"cited_by_api_url":"https://api.openalex.org/works?filter=cites:W2105063115","counts_by_year":[{"year":2017,"cited_by_count":3},{"year":2016,"cited_by_count":1},{"year":2015,"cited_by_count":1},{"year":2014,"cited_by_count":4},{"year":2013,"cited_by_count":1},{"year":2012,"cited_by_count":3}],"updated_date":"2024-12-10T13:36:47.993562","created_date":"2016-06-24"}