{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,13]],"date-time":"2026-01-13T22:15:12Z","timestamp":1768342512326,"version":"3.49.0"},"publisher-location":"Cham","reference-count":28,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783030440374","type":"print"},{"value":"9783030440381","type":"electronic"}],"license":[{"start":{"date-parts":[[2020,1,1]],"date-time":"2020-01-01T00:00:00Z","timestamp":1577836800000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2020]]},"DOI":"10.1007\/978-3-030-44038-1_77","type":"book-chapter","created":{"date-parts":[[2020,3,30]],"date-time":"2020-03-30T09:04:07Z","timestamp":1585559047000},"page":"847-856","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":13,"title":["Comparing API Call Sequence Algorithms for Malware Detection"],"prefix":"10.1007","author":[{"given":"Massimo","family":"Ficco","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2020,3,31]]},"reference":[{"key":"77_CR1","unstructured":"Hosmer, C.: Polymorphic & Metamorphic Malware. https:\/\/www.blackhat.com\/presentations\/bh-usa-08\/Hosmer\/BH_US_08_Hosmer_Polymorphic_Malware.pdf. Accessed July 2019"},{"key":"77_CR2","doi-asserted-by":"crossref","unstructured":"Ficco, M., Venticinque, S., Rak, M.: Malware detection for secure microgrids: CoSSMic case study. In: Proceedings of the IEEE International Conference on iThings\/GreenCom\/CPSCom\/SmartData 2017, pp. 336\u2013341 (2017)","DOI":"10.1109\/iThings-GreenCom-CPSCom-SmartData.2017.56"},{"key":"77_CR3","doi-asserted-by":"crossref","unstructured":"Zhang, N., Yuan, K., Naveed, M., Zhou, X., Wang, X.: Leave me alone: app-level protection against runtime information gathering on Android. In: IEEE Symposium on Security and Privacy, pp. 915\u2013930, May 2015","DOI":"10.1109\/SP.2015.61"},{"key":"77_CR4","doi-asserted-by":"crossref","unstructured":"Aafer, Y., Du, W., Yin, H.: DroidAPIMiner: mining API-level features for robust malware detection in Android. In: Proceedings of the 9th International ICST Conference on Security and Privacy in Communication Networks, pp. 86\u2013103 (2013)","DOI":"10.1007\/978-3-319-04283-1_6"},{"key":"77_CR5","doi-asserted-by":"publisher","first-page":"26","DOI":"10.1016\/j.jpdc.2019.11.001","volume":"137","author":"G D\u2019Angelo","year":"2020","unstructured":"D\u2019Angelo, G., Ficco, M., Palmieri, F.: Malware detection in mobile environments based on autoencoders and API-images. J. Parallel Distrib. Comput. 137, 26\u201333 (2020)","journal-title":"J. Parallel Distrib. Comput."},{"key":"77_CR6","doi-asserted-by":"crossref","unstructured":"Chuang, H.Y., Wang, S.-D.: Machine learning based hybrid behavior models for Android malware analysis. In: Proceedings of the 9th IEEE International Conference Software Quality, Reliability and Security, pp. 201\u2013206, August 2015","DOI":"10.1109\/QRS.2015.37"},{"key":"77_CR7","doi-asserted-by":"crossref","unstructured":"Feng, Y., Anand, S., Dillig, I., Aiken, A.: Apposcopy: semantics based detection of Android malware through static analysis. In: Proceedings of the 22nd ACM SIGSOFT International Symposium on Foundations of Software Engineering, pp. 576\u2013587, November 2014","DOI":"10.1145\/2635868.2635869"},{"key":"77_CR8","doi-asserted-by":"crossref","unstructured":"Ficco, M.: Detecting IoT malware by Markov chain behavioral models. In: Proceedings of the IEEE International Conference on Cloud Engineering (IC2E), pp. 229\u2013234 (2019)","DOI":"10.1109\/IC2E.2019.00037"},{"key":"77_CR9","doi-asserted-by":"publisher","first-page":"121","DOI":"10.1016\/j.engappai.2018.06.006","volume":"74","author":"A Mart\u00edn","year":"2018","unstructured":"Mart\u00edn, A., Rodr\u00edguez-Fern\u00e1ndez, V., Camacho, D.: CANDYMAN: classifying Android malware families by modelling dynamic traces with Markov chains. Eng. Appl. Artif. Intell. 74, 121\u2013133 (2018)","journal-title":"Eng. Appl. Artif. Intell."},{"key":"77_CR10","doi-asserted-by":"crossref","unstructured":"Natani, P., Vidyarthi, D.: Malware detection using API function frequency with ensemble based classifier. In: Proceedings of the 1st Security in Computing and Communications (SSCC 2013). LNCS, vol. 377, pp. 378\u2013388, August 2013","DOI":"10.1007\/978-3-642-40576-1_37"},{"key":"77_CR11","unstructured":"Wu, L., Ping, R., Ke, L., Hai-xin, D.: Behavior-based malware analysis and detection. In: Proceedings of the 1st International Workshop on Complexity and Data Mining (IWCDM 2011), pp. 39\u201342, September 2011"},{"key":"77_CR12","first-page":"103","volume":"4","author":"IK Cho","year":"2014","unstructured":"Cho, I.K., Kim, T., Shim, Y.J., Park, H., Choi, B., Im, E.G.: Malware similarity analysis using API sequence alignments. J. Internet Serv. Inf. Secur. 4, 103\u2013114 (2014)","journal-title":"J. Internet Serv. Inf. Secur."},{"key":"77_CR13","unstructured":"Kim, H., Khoo, W., Li, P.: Polymorphic attacks against sequence-based software birthmarks. In: Proceedings of the 2nd ACM SIGPLAN Workshop on Software Security and Protection, pp. 1\u20138 (2012)"},{"issue":"5","key":"77_CR14","first-page":"29","volume":"7","author":"A Elhadi","year":"2013","unstructured":"Elhadi, A., Maarof, M., Barry, B.: Improving the detection of malware behavior using simplified data dependent API call graph. Int. J. Secur. Appl. 7(5), 29\u201342 (2013)","journal-title":"Int. J. Secur. Appl."},{"key":"77_CR15","doi-asserted-by":"crossref","unstructured":"Mariconti, E., Onwuzurike, L., Andriotis, P., De Cristofaro, E., Ross, G., Stringhini, G.: MaMaDroid: detecting Android malware by building Markov chains of behavioral models. In: Proceedings of the 24th Network and Distributed System Security Symposium (NDSS 2017), pp. 1\u201322, November 2017","DOI":"10.14722\/ndss.2017.23353"},{"key":"77_CR16","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1016\/j.cose.2016.04.009","volume":"61","author":"G Canfora","year":"2016","unstructured":"Canfora, G., Mercaldo, F., Visaggio, C.A.: An HMM and structural entropy based detector for Android malware: an empirical study. Comput. Secur. 61, 1\u201318 (2016)","journal-title":"Comput. Secur."},{"issue":"3","key":"77_CR17","doi-asserted-by":"publisher","first-page":"443","DOI":"10.1016\/0022-2836(70)90057-4","volume":"48","author":"SB Needleman","year":"1970","unstructured":"Needleman, S.B., Wunsch, C.D.: A general method applicable to the search for similarities in the amino acid sequence of two proteins. J. Mol. Biol. 48(3), 443\u2013453 (1970)","journal-title":"J. Mol. Biol."},{"issue":"1","key":"77_CR18","doi-asserted-by":"publisher","first-page":"195","DOI":"10.1016\/0022-2836(81)90087-5","volume":"147","author":"TF Smith","year":"1981","unstructured":"Smith, T.F., Waterman, M.S.: Identification of common molecular subsequences. J. Mol. Biol. 147(1), 195\u2013197 (1981)","journal-title":"J. Mol. Biol."},{"key":"77_CR19","unstructured":"Multiple Sequence Alignment (MSA). http:\/\/www.ebi.ac.uk\/Tools\/msa\/. Accessed Feb 2019"},{"key":"77_CR20","unstructured":"ClustalX, Clustal: Multiple Sequence Alignment. http:\/\/www.clustal.org\/. Accessed Jan 2019"},{"key":"77_CR21","doi-asserted-by":"publisher","first-page":"921","DOI":"10.1007\/s10586-017-1110-2","volume":"22","author":"H Kim","year":"2019","unstructured":"Kim, H., Kim, J., Kim, Y., Kim, I., Kim, K.J., Kim, H.: Improvement of malware detection and classification using API call sequence alignment and visualization. Cluster Comput. J. 22, 921\u2013929 (2019)","journal-title":"Cluster Comput. J."},{"issue":"6","key":"77_CR22","doi-asserted-by":"publisher","first-page":"1485","DOI":"10.1109\/TIP.2010.2103949","volume":"20","author":"R He","year":"2011","unstructured":"He, R., Hu, B.-G., Zheng, W.-S., Kong, X.-W.: Robust principal component analysis based on maximum correntropy criterion. IEEE Trans. Image Process. 20(6), 1485\u20131494 (2011)","journal-title":"IEEE Trans. Image Process."},{"key":"77_CR23","unstructured":"TEKDEFENSE malware dataset. http:\/\/www.tekdefense.com\/downloads\/malware-samples\/. Accessed Jan 2019"},{"key":"77_CR24","unstructured":"Malware dataset for security researchers, data scientists. https:\/\/github.com\/ocatak\/malware_api_class. Accessed Jan 2019"},{"key":"77_CR25","unstructured":"Cuckoo Sandbox. https:\/\/cuckoosandbox.org\/. Accessed Feb 2019"},{"key":"77_CR26","unstructured":"Weka, Open Source Machine Learning Software in Java. https:\/\/www.cs.waikato.ac.nz\/~ml\/weka\/. Accessed Feb 2018"},{"issue":"11","key":"77_CR27","doi-asserted-by":"publisher","first-page":"98","DOI":"10.1109\/MCOM.2017.1700328","volume":"55","author":"M Ficco","year":"2017","unstructured":"Ficco, M., Esposito, C., Xiang, Y., Palmieri, F.: Pseudo-dynamic testing of realistic edge-fog cloud ecosystems. IEEE Commun. Mag. 55(11), 98\u2013104 (2017)","journal-title":"IEEE Commun. Mag."},{"key":"77_CR28","doi-asserted-by":"publisher","first-page":"31","DOI":"10.1016\/j.ins.2019.02.015","volume":"486","author":"G D\u2019Angelo","year":"2019","unstructured":"D\u2019Angelo, G., Palmieri, F., Rampone, S.: Detecting unfair recommendations in trust-based pervasive environments. Inf. Sci. 486, 31\u201351 (2019)","journal-title":"Inf. Sci."}],"container-title":["Advances in Intelligent Systems and Computing","Web, Artificial Intelligence and Network Applications"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-44038-1_77","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,11,24]],"date-time":"2022-11-24T20:24:36Z","timestamp":1669321476000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-030-44038-1_77"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020]]},"ISBN":["9783030440374","9783030440381"],"references-count":28,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-44038-1_77","relation":{},"ISSN":["2194-5357","2194-5365"],"issn-type":[{"value":"2194-5357","type":"print"},{"value":"2194-5365","type":"electronic"}],"subject":[],"published":{"date-parts":[[2020]]},"assertion":[{"value":"31 March 2020","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"WAINA","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Workshops of  the International Conference on Advanced Information Networking and Applications","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Caserta","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Italy","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2020","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"15 April 2020","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"17 April 2020","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"waina0a","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}