{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,24]],"date-time":"2026-07-24T15:07:39Z","timestamp":1784905659216,"version":"3.55.0"},"reference-count":32,"publisher":"IEEE","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2013,11]]},"DOI":"10.1109\/ase.2013.6693090","type":"proceedings-article","created":{"date-parts":[[2014,1,6]],"date-time":"2014-01-06T17:07:25Z","timestamp":1389028045000},"page":"312-322","source":"Crossref","is-referenced-by-count":28,"title":["A scalable approach for malware detection through bounded feature space behavior modeling"],"prefix":"10.1109","author":[{"given":"Mahinthan","family":"Chandramohan","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Hee Beng Kuan","family":"Tan","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Lionel C.","family":"Briand","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Lwin Khin","family":"Shar","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Bindu Madhavi","family":"Padmanabhuni","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"263","reference":[{"key":"19","doi-asserted-by":"publisher","DOI":"10.1145\/1866307.1866353"},{"key":"17","doi-asserted-by":"publisher","DOI":"10.1145\/1656274.1656278"},{"key":"18","volume":"106","author":"menard","year":"2001","journal-title":"Applied Logistic Regression Analysis"},{"key":"15","doi-asserted-by":"crossref","first-page":"78","DOI":"10.1007\/978-3-540-87403-4_5","article-title":"A layered architecture for detecting malicious behaviors","author":"martignoni","year":"2008","journal-title":"Recent Advances in Intrusion Detection (RAID)"},{"key":"16","doi-asserted-by":"crossref","first-page":"89","DOI":"10.1007\/978-3-540-73614-1_6","article-title":"Characterizing bots' remote control behavior","author":"stinson","year":"2007","journal-title":"Detection of Intrusions and Malware and Vulnerability Assessment (DIMVA)"},{"key":"13","doi-asserted-by":"publisher","DOI":"10.1145\/1287624.1287628"},{"key":"14","article-title":"Dynamic spyware analysis","author":"egele","year":"2007","journal-title":"USENIX Annual Technical Conference"},{"key":"11","doi-asserted-by":"crossref","first-page":"639","DOI":"10.3233\/JCS-2010-0410","article-title":"Automatic analysis of malware behavior using machine learning","volume":"19","author":"rieck","year":"2011","journal-title":"Journal of Computer Security"},{"key":"12","year":"0"},{"key":"21","article-title":"Behavior-based spyware detection","volume":"15","author":"kirda","year":"2006","journal-title":"USENIX Security Symposium"},{"key":"20","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2010.11"},{"key":"22","doi-asserted-by":"publisher","DOI":"10.1109\/ACSAC.2007.21"},{"key":"23","author":"steinwart","year":"2008","journal-title":"Support Vector Machines"},{"key":"24","doi-asserted-by":"publisher","DOI":"10.1007\/s10844-010-0148-x"},{"key":"25","year":"0","journal-title":"Symantec Internet Security Threat Report"},{"key":"26","doi-asserted-by":"publisher","DOI":"10.1145\/2046707.2046742"},{"key":"27","year":"0","journal-title":"Process and Threads"},{"key":"28","author":"nebbett","year":"2000","journal-title":"Windows NT\/2000 Native API Reference"},{"key":"29","year":"0","journal-title":"RegistryProt"},{"key":"3","article-title":"Scalable, behavior-based malware clustering","author":"bayer","year":"2009","journal-title":"Network and Distributed System Security Symposium (NDSS)"},{"key":"2","article-title":"TTAnalyze: A tool for analyzing malware","author":"bayer","year":"2006","journal-title":"15th Annual Conference of the European Institute for Computer Antivirus Research (EICAR)"},{"key":"10","article-title":"Microsoft windows internals, 4th Edition","author":"russinovich","year":"2004","journal-title":"Microsoft Windows Server TM 2003 Windows XP and Windows 2000 (Pro-Developer)"},{"key":"1","doi-asserted-by":"crossref","first-page":"32","DOI":"10.1109\/MSP.2007.45","article-title":"Toward automated dynamic malware analysis using CWSandbox","volume":"5","author":"willems","year":"2007","journal-title":"IEEE Security and Privacy"},{"key":"30","first-page":"7","article-title":"Automated structural classification of malware","author":"carrera","year":"2008","journal-title":"Proceedings of the RSA Conference"},{"key":"7","doi-asserted-by":"publisher","DOI":"10.1109\/ICDM.2011.104"},{"key":"6","doi-asserted-by":"publisher","DOI":"10.1109\/BWCCA.2010.85"},{"key":"32","year":"0","journal-title":"Section Objects and Views"},{"key":"5","doi-asserted-by":"publisher","DOI":"10.1145\/2338965.2336768"},{"key":"31","year":"0","journal-title":"Synchronization"},{"key":"4","doi-asserted-by":"publisher","DOI":"10.1145\/1007512.1007518"},{"key":"9","doi-asserted-by":"publisher","DOI":"10.1145\/2393596.2393627"},{"key":"8","first-page":"351","article-title":"Effective and efficient malware detection at the end host","author":"kolbitsch","year":"2009","journal-title":"Proceedings of the 18th Conference on USENIX Security Symposium"}],"event":{"name":"2013 IEEE\/ACM 28th International Conference on Automated Software Engineering (ASE)","location":"Silicon Valley, CA, USA","start":{"date-parts":[[2013,11,11]]},"end":{"date-parts":[[2013,11,15]]}},"container-title":["2013 28th IEEE\/ACM International Conference on Automated Software Engineering (ASE)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/6684409\/6693054\/06693090.pdf?arnumber=6693090","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,8,5]],"date-time":"2019-08-05T22:22:04Z","timestamp":1565043724000},"score":1,"resource":{"primary":{"URL":"http:\/\/ieeexplore.ieee.org\/document\/6693090\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2013,11]]},"references-count":32,"URL":"https:\/\/doi.org\/10.1109\/ase.2013.6693090","relation":{},"subject":[],"published":{"date-parts":[[2013,11]]}}}