{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,25]],"date-time":"2026-03-25T18:56:52Z","timestamp":1774465012981,"version":"3.50.1"},"reference-count":9,"publisher":"IEEE","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2015,6]]},"DOI":"10.1109\/icc.2015.7249229","type":"proceedings-article","created":{"date-parts":[[2015,9,11]],"date-time":"2015-09-11T04:40:36Z","timestamp":1441946436000},"page":"5691-5696","source":"Crossref","is-referenced-by-count":27,"title":["Detective: Automatically identify and analyze malware processes in forensic scenarios via DLLs"],"prefix":"10.1109","author":[{"given":"Yiheng","family":"Duan","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xiao","family":"Fu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bin","family":"Luo","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ziqi","family":"Wang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jin","family":"Shi","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xiaojiang","family":"Du","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2005.20"},{"key":"ref3","doi-asserted-by":"crossref","DOI":"10.1007\/978-3-642-04342-0_7","article-title":"PE-Miner: mining structural information to detect malicious executables in realtime","author":"shafiq","year":"2009","journal-title":"Proc of the 12th International Symposium on Recent Advances in Intrusion Detection"},{"key":"ref6","article-title":"Panorama: capturing system-wide information flow for malware detection and analysis","author":"yin","year":"2007","journal-title":"Proc of the 14th ACM conference on Computer and communications security"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1145\/1654988.1655003"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1145\/1653662.1653730"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1016\/j.diin.2006.06.010"},{"key":"ref2","author":"szor","year":"2005","journal-title":"The Art of Computer Virus Research and Defense"},{"key":"ref9","year":"2014"},{"key":"ref1","year":"2014","journal-title":"The Volatility Framework"}],"event":{"name":"2015 IEEE International Conference on Signal Processing for Communications (ICC)","location":"London","start":{"date-parts":[[2015,6,8]]},"end":{"date-parts":[[2015,6,12]]}},"container-title":["2015 IEEE International Conference on Communications (ICC)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/7225357\/7248285\/07249229.pdf?arnumber=7249229","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,8,30]],"date-time":"2019-08-30T10:28:25Z","timestamp":1567160905000},"score":1,"resource":{"primary":{"URL":"http:\/\/ieeexplore.ieee.org\/document\/7249229\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2015,6]]},"references-count":9,"URL":"https:\/\/doi.org\/10.1109\/icc.2015.7249229","relation":{},"subject":[],"published":{"date-parts":[[2015,6]]}}}