{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,10]],"date-time":"2026-04-10T14:21:44Z","timestamp":1775830904454,"version":"3.50.1"},"reference-count":44,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2022,1,1]],"date-time":"2022-01-01T00:00:00Z","timestamp":1640995200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/legalcode"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Access"],"published-print":{"date-parts":[[2022]]},"DOI":"10.1109\/access.2022.3207757","type":"journal-article","created":{"date-parts":[[2022,9,19]],"date-time":"2022-09-19T20:02:31Z","timestamp":1663617751000},"page":"100178-100193","source":"Crossref","is-referenced-by-count":45,"title":["An Analysis of Conti Ransomware Leaked Source Codes"],"prefix":"10.1109","volume":"10","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-8380-2487","authenticated-orcid":false,"given":"Saleh","family":"Alzahrani","sequence":"first","affiliation":[{"name":"Department of Computer Science, The University of Alabama, Tuscaloosa, AL, USA"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-8549-6794","authenticated-orcid":false,"given":"Yang","family":"Xiao","sequence":"additional","affiliation":[{"name":"Department of Computer Science, The University of Alabama, Tuscaloosa, AL, USA"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-4075-0597","authenticated-orcid":false,"given":"Wei","family":"Sun","sequence":"additional","affiliation":[{"name":"School of Electrical Engineering and Automation, Hefei University of Technology, Hefei, China"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1504\/IJSNET.2021.117233"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/ICDCS.2016.46"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/ISCISC.2016.7736455"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1504\/IJSNET.2021.115440"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/DeSE54285.2021.9719456"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1504\/IJSNET.2022.120270"},{"key":"ref7","volume-title":"Conti Ransomware","year":"2021"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/MC.2021.3126529"},{"issue":"3","key":"ref9","article-title":"The conti ransomware attack on healthcare in ireland,: Exploring the impacts of a cybersecurity breach from a nursing perspective","volume":"16","author":"Margaret","year":"2021","journal-title":"Canadian J. Nursing Informat."},{"key":"ref10","volume-title":"FBI Warns of Conti Ransomware Attacks Targeting U.S. Healthcare Networks","year":"2021"},{"key":"ref11","volume-title":"A Ransomware Group Paid the Price for Backing Russia","year":"2022"},{"key":"ref12","volume-title":"Contilocker","author":"Leaks","year":"2022"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2021.102388"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/FiCloud49777.2021.00016"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1504\/IJSNET.2022.123604"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1504\/IJSNET.2022.123597"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/ICDABI53623.2021.9655866"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1049\/ise2.12004"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2021.3109260"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1007\/s11277-020-07166-9"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.14421\/ijid.2021.2423"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/MEC.2013.6885402"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/ICISA.2010.5480359"},{"key":"ref24","first-page":"74","article-title":"Camouflage in malware: From encryption to metamorphism","volume":"12","author":"Bashari Rad","year":"2012","journal-title":"Int. J. Comput. Sci. Netw. Secur."},{"key":"ref25","volume-title":"Smhasher\/murmurhash2","year":"2022"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.14722\/bar.2018.23011"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-78621-2_6"},{"key":"ref28","first-page":"1","article-title":"Virmon: A virtualization-based automated dynamic malware analysis system","volume-title":"Proc. 6th Int. Inf. Secur. Cryptol. Conf.","author":"Tirli"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/CIS.2008.199"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2014.2305658"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1016\/j.istr.2006.10.003"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/ARES.2013.93"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/I4CT.2015.7219584"},{"key":"ref34","first-page":"690","volume-title":"Windows 95 System Programming Secrets","author":"Pietrek","year":"1995"},{"key":"ref35","volume-title":"API Spying Techniques for Windows 9X, NT and 2000","author":"Kaplan","year":"2000"},{"key":"ref36","first-page":"1","article-title":"Detours: Binary interception of Win32 functions","volume-title":"Proc. Windows NT 3rd Symp.","author":"Brubacher"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1007\/s41635-017-0013-2"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1145\/2664243.2664245"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/ICCSE.2013.6554041"},{"key":"ref40","volume-title":"Chacha, a variant of Salsa20","author":"Bernstein","year":"2008"},{"key":"ref41","volume-title":"Bazarloader to Conti Ransomware in 32 Hours","year":"2021"},{"key":"ref42","volume-title":"CVE-2021\u201334527\u2014Security Update Guide\u2014Microsoft\u2014Windows Print Spooler Remote Code Execution Vulnerability","year":"2021"},{"key":"ref43","volume-title":"CVE-2020\u20131472\u2014Security Update Guide\u2014Microsoft\u2014Netlogon Elevation of Privilege Vulnerability","year":"2020"},{"key":"ref44","volume-title":"Update Regarding CVE-2018\u201313379 | FortiNet","year":"2020"}],"container-title":["IEEE Access"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/6287639\/9668973\/09895237.pdf?arnumber=9895237","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,1,22]],"date-time":"2024-01-22T21:06:39Z","timestamp":1705957599000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9895237\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022]]},"references-count":44,"URL":"https:\/\/doi.org\/10.1109\/access.2022.3207757","relation":{},"ISSN":["2169-3536"],"issn-type":[{"value":"2169-3536","type":"electronic"}],"subject":[],"published":{"date-parts":[[2022]]}}}