{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,10,22]],"date-time":"2024-10-22T19:42:37Z","timestamp":1729626157425,"version":"3.28.0"},"reference-count":26,"publisher":"IEEE","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2017,10]]},"DOI":"10.1109\/ccst.2017.8167802","type":"proceedings-article","created":{"date-parts":[[2017,12,7]],"date-time":"2017-12-07T18:28:21Z","timestamp":1512671301000},"page":"1-6","source":"Crossref","is-referenced-by-count":22,"title":["Malware family identification with BIRCH clustering"],"prefix":"10.1109","author":[{"given":"Gregorio","family":"Pitolli","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Leonardo","family":"Aniello","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Giuseppe","family":"Laurenza","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Leonardo","family":"Querzoni","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Roberto","family":"Baldoni","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"journal-title":"Amal High-fidelity Behavior-based Automated Malware Analysis and Classification","year":"0","author":"mohaisen","key":"ref10"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/2046707.2046742"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/MALWARE.2015.7413682"},{"key":"ref13","first-page":"8","article-title":"pehash: A novel approach to fast malware clustering","volume":"9","author":"wicherski","year":"2009","journal-title":"LEET"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-74320-0_10"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-08509-8_7"},{"key":"ref16","article-title":"The game of the name malware naming, shape shifters and sympathetic magic","author":"harley","year":"0","journal-title":"CEET 3rd Intl Conf on Cybercrime Forensics Education & Training"},{"key":"ref17","volume":"20","author":"rousseeuw","year":"0","journal-title":"Silhouettes a graphical aid to the interpretation and validation of cluster analysis"},{"key":"ref18","first-page":"2279","volume":"41","author":"kozak","year":"0","journal-title":"A dendrite method for cluster analysis by cali?ski and harabasz A classical work that is far too often incorrectly cited"},{"key":"ref19","doi-asserted-by":"crossref","first-page":"229","DOI":"10.22436\/jmcs.05.03.11","article-title":"A survey of hierarchical clustering algorithms","volume":"5","author":"rafsanjani","year":"2012","journal-title":"Mathematics in Computer Science"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-45719-2_11"},{"key":"ref3","first-page":"8","article-title":"Scalable, behavior-based malware clustering","volume":"9","author":"bayer","year":"0","journal-title":"NDSS"},{"journal-title":"Trendmicro - variant definition","year":"0","key":"ref6"},{"journal-title":"Encyclopedia of Cryptography and Security","year":"2014","author":"van tilborg","key":"ref5"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1145\/233269.233324"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2015.02.003"},{"key":"ref2","first-page":"639","volume":"19","author":"rieck","year":"0","journal-title":"Automatic Analysis of Malware Behavior Using Machine Learning"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1145\/2016904.2016908"},{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/DSN-W.2016.40"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-40667-1_8"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1007\/b107408"},{"key":"ref21","first-page":"226","article-title":"A density-based algorithm for discovering clusters in large spatial databases with noise","volume":"96","author":"ester","year":"1996","journal-title":"KDD"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1145\/1772690.1772862"},{"key":"ref23","first-page":"281","article-title":"Some methods for classification and analysis of multivariate observations","volume":"1","author":"macqueen","year":"1967","journal-title":"Proceedings of the Fifth Berkeley Symposium on Mathematical Statistics and Probability"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1145\/276304.276312"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1038\/nbt1406"}],"event":{"name":"2017 International Carnahan Conference on Security Technology (ICCST)","start":{"date-parts":[[2017,10,23]]},"location":"Madrid","end":{"date-parts":[[2017,10,26]]}},"container-title":["2017 International Carnahan Conference on Security Technology (ICCST)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/8122075\/8167784\/08167802.pdf?arnumber=8167802","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,10,7]],"date-time":"2019-10-07T13:37:54Z","timestamp":1570455474000},"score":1,"resource":{"primary":{"URL":"http:\/\/ieeexplore.ieee.org\/document\/8167802\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2017,10]]},"references-count":26,"URL":"https:\/\/doi.org\/10.1109\/ccst.2017.8167802","relation":{},"subject":[],"published":{"date-parts":[[2017,10]]}}}