{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,25]],"date-time":"2026-07-25T04:05:45Z","timestamp":1784952345126,"version":"3.55.0"},"reference-count":29,"publisher":"Springer Science and Business Media LLC","issue":"3","license":[{"start":{"date-parts":[[2021,8,24]],"date-time":"2021-08-24T00:00:00Z","timestamp":1629763200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2021,8,24]],"date-time":"2021-08-24T00:00:00Z","timestamp":1629763200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["J Supercomput"],"published-print":{"date-parts":[[2022,2]]},"DOI":"10.1007\/s11227-021-04020-y","type":"journal-article","created":{"date-parts":[[2021,8,24]],"date-time":"2021-08-24T13:06:01Z","timestamp":1629810361000},"page":"4182-4198","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":68,"title":["Intelligent malware detection based on graph convolutional network"],"prefix":"10.1007","volume":"78","author":[{"given":"Shanxi","family":"Li","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-8054-5446","authenticated-orcid":false,"given":"Qingguo","family":"Zhou","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Rui","family":"Zhou","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Qingquan","family":"Lv","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2021,8,24]]},"reference":[{"key":"4020_CR1","doi-asserted-by":"publisher","first-page":"25","DOI":"10.5120\/11480-7108","volume":"67","author":"IA Saeed","year":"2013","unstructured":"Saeed IA, Selamat A, Abuagoub AMA (2013) A survey on malware and malware detection systems. Int J Comput Appl 67:25\u201331. https:\/\/doi.org\/10.5120\/11480-7108","journal-title":"Int J Comput Appl"},{"key":"4020_CR2","doi-asserted-by":"publisher","unstructured":"Bazrafshan Z, Hashemi H, Fard SMH, Hamzeh A (2013) A survey on heuristic malware detection techniques. In: The 5th Conference on Information and Knowledge Technology, IEEE, shiraz, Iran, pp 113\u2013120. https:\/\/doi.org\/10.1109\/IKT.2013.6620049","DOI":"10.1109\/IKT.2013.6620049"},{"key":"4020_CR3","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3073559","volume":"50","author":"Y Ye","year":"2017","unstructured":"Ye Y, Li T, Adjeroh D, Iyengar SS (2017) A survey on malware detection using data mining techniques. ACM Comput Surv 50:1\u201340. https:\/\/doi.org\/10.1145\/3073559","journal-title":"ACM Comput Surv"},{"key":"4020_CR4","unstructured":"Von Neumann J (1966) Theory and organization of complicated automata"},{"key":"4020_CR5","doi-asserted-by":"publisher","first-page":"22","DOI":"10.1016\/0167-4048(87)90122-2","volume":"6","author":"F Cohen","year":"1984","unstructured":"Cohen F (1984) Computer viruses: theory and experiments. Comput Secur 6:22\u201335","journal-title":"Comput Secur"},{"key":"4020_CR6","doi-asserted-by":"crossref","unstructured":"Christodorescu M, Jha S, Seshia SA, et al (2005) Semantics-aware malware detection. In: 2005 IEEE Symposium on Security and Privacy (S & P\u201905), IEEE, pp 32\u201346","DOI":"10.1109\/SP.2005.20"},{"key":"4020_CR7","unstructured":"Vasudevan A, Yerraballi R (2006) Spike: engineering malware analysis tools using unobtrusive binary-instrumentation. In: Proceedings of the 29th Australasian Computer Science Conference\u2014Vol 48. Australian Computer Society, Inc., AUS, p 311320"},{"key":"4020_CR8","doi-asserted-by":"crossref","unstructured":"Sundarkumar GG, Ravi V, Nwogu I et al (2015) Malware detection via API calls, topic models and machine learning","DOI":"10.1109\/CoASE.2015.7294263"},{"key":"4020_CR9","doi-asserted-by":"publisher","first-page":"17","DOI":"10.1016\/j.infsof.2016.03.004","volume":"75","author":"S Wu","year":"2016","unstructured":"Wu S, Wang P, Li X et al (2016) Effective detection of android malware based on the usage of data flow APIs and machine learning. Inf Softw Technol 75:17\u201325","journal-title":"Inf Softw Technol"},{"key":"4020_CR10","doi-asserted-by":"publisher","first-page":"254","DOI":"10.1016\/j.comcom.2020.10.012","volume":"166","author":"X Deng","year":"2021","unstructured":"Deng X, Liu Y, Zhu C, Zhang H (2021) Air-ground surveillance sensor network based on edge computing for target tracking. Comput Commun 166:254\u2013261","journal-title":"Comput Commun"},{"key":"4020_CR11","unstructured":"Schultz MG, Eskin E, Zadok F, et al (2002) Data mining methods for detection of new malicious executables. In: IEEE Symposium on Security & Privacy"},{"key":"4020_CR12","doi-asserted-by":"publisher","first-page":"295","DOI":"10.1007\/s11416-009-0122-8","volume":"5","author":"R Moskovitch","year":"2009","unstructured":"Moskovitch R, Stopel D, Feher C et al (2009) Unknown malcode detection and the imbalance problem. J Comput Virol 5:295\u2013308","journal-title":"J Comput Virol"},{"key":"4020_CR13","doi-asserted-by":"crossref","unstructured":"Moskovitch R, Feher C, Tzachar N, et al (2008) Unknown malcode detection using opcode representation. In: Intelligence & Security Informatics, First European Conference, Euroisi, Esbjerg, Denmark, December","DOI":"10.1007\/978-3-540-89900-6_21"},{"key":"4020_CR14","doi-asserted-by":"publisher","unstructured":"Santos I, Nieves J, Bringas PG (2011) Semi-supervised learning for unknown malware detection. In: International symposium on distributed computing & artificial intelligence. PCA techniques, 2016 international conference on advanced communication systems and information security (ACOSIS). IEEE, Marrakesh, Morocco, pp 1\u20137. https:\/\/doi.org\/10.1109\/ACOSIS.2016.7843930","DOI":"10.1109\/ACOSIS.2016.7843930"},{"key":"4020_CR15","doi-asserted-by":"crossref","unstructured":"Firdausi I, Lim C, Erwin A, et al (2010) Analysis of machine learning techniques used in behavior-based malware detection. IEEE Computer Society","DOI":"10.1109\/ACT.2010.33"},{"key":"4020_CR16","doi-asserted-by":"publisher","first-page":"639","DOI":"10.3233\/JCS-2010-0410","volume":"19","author":"K Rieck","year":"2011","unstructured":"Rieck K, Trinius P, Willems C et al (2011) Automatic analysis of malware behavior using machine learning. J Comput Secur 19:639\u2013668","journal-title":"J Comput Secur"},{"key":"4020_CR17","unstructured":"Anderson HS, Roth P (2018) Ember: an open dataset for training static pe malware machine learning models"},{"key":"4020_CR18","doi-asserted-by":"crossref","unstructured":"Sharma S, Krishna CR, Sahay SK (2019) Detection of advanced malware by machine learning techniques. Cryptogr Secur 333\u2013342","DOI":"10.1007\/978-981-13-0589-4_31"},{"issue":"12","key":"4020_CR19","doi-asserted-by":"publisher","first-page":"2591","DOI":"10.1109\/TIFS.2015.2469253","volume":"10","author":"S Naval","year":"2015","unstructured":"Naval S, Laxmi V, Rajarajan M et al (2015) Employing program semantics for malware dectection. IEEE Trans Inf For Secur 10(12):2591\u20132604","journal-title":"IEEE Trans Inf For Secur"},{"issue":"4","key":"4020_CR20","doi-asserted-by":"publisher","first-page":"367","DOI":"10.1049\/iet-ifs.2018.5268","volume":"13","author":"M Tang","year":"2018","unstructured":"Tang M, Qian Q (2018) Dynamic api call sequence visualisation for malware classification. IET Inf Secur 13(4):367\u2013377","journal-title":"IET Inf Secur"},{"key":"4020_CR21","unstructured":"Raff E, Barker J, Sylvester J et al (2017) Malware detection by eating a whole exe. Machine Learning"},{"key":"4020_CR22","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2019.101663","volume":"89","author":"MK Alzaylaee","year":"2020","unstructured":"Alzaylaee MK, Yerima SY, Sezer S (2020) DL-Droid: deep learning based android malware detection using real devices. Comput Secur 89:101663","journal-title":"Comput Secur"},{"key":"4020_CR23","unstructured":"Xu K, Hu W, Leskovec J, Jegelka S (2018) How powerful are graph neural networks? arXiv:1810.00826"},{"key":"4020_CR24","unstructured":"Spirtes PL (2013) Directed Cyclic Graphical Representations of Feedback Models. arXiv:1302.4982"},{"key":"4020_CR25","doi-asserted-by":"publisher","DOI":"10.1016\/j.sysarc.2020.101778","volume":"110","author":"X Deng","year":"2020","unstructured":"Deng X, Li J, Liu E, Zhang H (2020) Task allocation algorithm and optimization model on edge collaboration. J Syst Arch 110:101778","journal-title":"J Syst Arch"},{"key":"4020_CR26","doi-asserted-by":"publisher","first-page":"8","DOI":"10.1049\/iet-ifs.2015.0211","volume":"11","author":"X Xiao","year":"2017","unstructured":"Xiao X, Wang Z, Li Q, Xia S, Jiang Y (2017) Back-propagation neural network on Markov chains from system call sequences: a new approach for detecting Android malware with system call sequences. IET Inf Secur 11:8\u201315. https:\/\/doi.org\/10.1049\/iet-ifs.2015.0211","journal-title":"IET Inf Secur"},{"key":"4020_CR27","doi-asserted-by":"crossref","unstructured":"Zang D, Liu J,Wang H (2018) Markov chain-based feature extraction for anomaly detection in time series and its industrial application. In: 2018 Chinese Control And Decision Conference (CCDC), IEEE","DOI":"10.1109\/CCDC.2018.8407286"},{"key":"4020_CR28","unstructured":"Kipf TN , Welling M (2016) Semi-supervised classification with graph convolutional networks"},{"issue":"7","key":"4020_CR29","doi-asserted-by":"publisher","first-page":"3216","DOI":"10.1109\/TII.2017.2789219","volume":"14","author":"J Li","year":"2018","unstructured":"Li J, Sun L, Yan Q et al (2018) Significant permission identification for machine-learning based andriod malware detection. IEEE Trans Ind Inform 14(7):3216\u20133225","journal-title":"IEEE Trans Ind Inform"}],"container-title":["The Journal of Supercomputing"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11227-021-04020-y.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s11227-021-04020-y\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11227-021-04020-y.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,4,9]],"date-time":"2025-04-09T09:28:41Z","timestamp":1744190921000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s11227-021-04020-y"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,8,24]]},"references-count":29,"journal-issue":{"issue":"3","published-print":{"date-parts":[[2022,2]]}},"alternative-id":["4020"],"URL":"https:\/\/doi.org\/10.1007\/s11227-021-04020-y","relation":{},"ISSN":["0920-8542","1573-0484"],"issn-type":[{"value":"0920-8542","type":"print"},{"value":"1573-0484","type":"electronic"}],"subject":[],"published":{"date-parts":[[2021,8,24]]},"assertion":[{"value":"9 July 2021","order":1,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"24 August 2021","order":2,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}}]}}