{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T04:24:11Z","timestamp":1750220651594,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":45,"publisher":"ACM","license":[{"start":{"date-parts":[[2021,3,22]],"date-time":"2021-03-22T00:00:00Z","timestamp":1616371200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2021,3,22]]},"DOI":"10.1145\/3412841.3441919","type":"proceedings-article","created":{"date-parts":[[2021,4,23]],"date-time":"2021-04-23T05:10:24Z","timestamp":1619154624000},"page":"374-383","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":9,"title":["Unsupervised behavioural mining and clustering for malware family identification"],"prefix":"10.1145","author":[{"given":"Khanh Huu The","family":"Dam","sequence":"first","affiliation":[{"name":"Universit\u00e9 Catholique de Louvain, Belgium"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Thomas","family":"Given-Wilson","sequence":"additional","affiliation":[{"name":"Universit\u00e9 Catholique de Louvain, Belgium"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Axel","family":"Legay","sequence":"additional","affiliation":[{"name":"Universit\u00e9 Catholique de Louvain, Belgium"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2021,4,22]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1145\/304181.304187"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.patcog.2012.07.021"},{"key":"e_1_3_2_1_3_1","volume-title":"Proceedings of the 2011 International Conference on Unsupervised and Transfer Learning Workshop -","volume":"27","author":"Baldi Pierre","year":"2011","unstructured":"Pierre Baldi. 2011. Autoencoders, Unsupervised Learning and Deep Architectures. In Proceedings of the 2011 International Conference on Unsupervised and Transfer Learning Workshop - Volume 27 (UTLW'11). JMLR.org, 37--50."},{"key":"e_1_3_2_1_4_1","volume-title":"Code Obfuscation Against Symbolic Execution Attacks. In ACSAC '16","author":"Banescu Sebastian","year":"2016","unstructured":"Sebastian Banescu, Christian Collberg, Vijay Ganesh, Zack Newsham, and Alexander Pretschner. 2016. Code Obfuscation Against Symbolic Execution Attacks. In ACSAC '16."},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1145\/3097983.3097997"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","unstructured":"Fabrizio Biondi Thomas Given-Wilson Axel Legay Cassius Puodzius and Jean Quilbeuf. 2018. Tutorial: An Overview of Malware Detection and Evasion Techniques. In Leveraging Applications of Formal Methods Verification and Validation. Modeling - 8th International Symposium ISoLA (Lecture Notes in Computer Science) Tiziana Margaria and Bernhard Steffen (Eds.) Vol. 11244. Springer 565--586. 10.1007\/978-3-030-03418-4_34","DOI":"10.1007\/978-3-030-03418-4_34"},{"key":"e_1_3_2_1_7_1","volume-title":"Enriching Word Vectors with Subword Information. arXiv preprint arXiv:1607.04606","author":"Bojanowski Piotr","year":"2016","unstructured":"Piotr Bojanowski, Edouard Grave, Armand Joulin, and Tomas Mikolov. 2016. Enriching Word Vectors with Subword Information. arXiv preprint arXiv:1607.04606 (2016)."},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/3150376.3150378"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"crossref","unstructured":"Davide Canali Andrea Lanzi Davide Balzarotti Christopher Kruegel Mihai Christodorescu and Engin Kirda. 2012. A Quantitative Study of Accuracy in System Call-based Malware Detection. In ISSTA.","DOI":"10.1145\/2338965.2336768"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1145\/3230833.3230840"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1109\/COMPSAC.2018.00036"},{"key":"e_1_3_2_1_12_1","unstructured":"K. H. T. Dam and T. Touili. 2016. Automatic extraction of malicious behaviors. In MALWARE."},{"key":"e_1_3_2_1_13_1","volume-title":"Proceedings of the 14th ARES, Canterbury, August 26--29","author":"The Dam Khanh Huu","year":"2019","unstructured":"Khanh Huu The Dam and Tayssir Touili. 2019. STAMAD: a STAtic MAlware Detector.. In Proceedings of the 14th ARES, Canterbury, August 26--29, 2019."},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.ins.2015.06.039"},{"key":"e_1_3_2_1_15_1","volume-title":"Evaluation of Android Malware Detection Based on System Calls. In IWSPA '16","author":"Dimja\u0161evi\u0107 Marko","year":"2016","unstructured":"Marko Dimja\u0161evi\u0107, Simone Atzeni, Ivo Ugrina, and Zvonimir Rakamaric. 2016. Evaluation of Android Malware Detection Based on System Calls. In IWSPA '16."},{"key":"e_1_3_2_1_16_1","volume-title":"Article 6 (March","author":"Egele Manuel","year":"2008","unstructured":"Manuel Egele, Theodoor Scholte, Engin Kirda, and Christopher Kruegel. 2008. A Survey on Automated Dynamic Malware-analysis Techniques and Tools. ACM Comput. Surv. 44, 2, Article 6 (March 2008), 6:1--6:42 pages."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.5555\/3001460.3001507"},{"key":"e_1_3_2_1_18_1","volume-title":"Frequent Subgraph Based Familial Classification of Android Malware. In ISSRE","author":"Fan M.","year":"2016","unstructured":"M. Fan, J. Liu, X. Luo, K. Chen, T. Chen, Z. Tian, X. Zhang, Q. Zheng, and T. Liu. 2016. Frequent Subgraph Based Familial Classification of Android Malware. In ISSRE 2016. 24--35."},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","unstructured":"F. A. Gers J. Schmidhuber and F. Cummins. 1999. Learning to forget: continual prediction with LSTM. In 1999 Ninth ICANN 99. (Conf. Publ. No. 470) Vol. 2. 850--855 vol.2. 10.1049\/cp:19991218","DOI":"10.1049\/cp:19991218"},{"key":"e_1_3_2_1_20_1","unstructured":"Thomas Given-Wilson. 2019. quickSpan. https:\/\/project.inria.fr\/quickspan\/"},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1109\/TNNLS.2016.2582924"},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1162\/neco.1997.9.8.1735"},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICMLA.2018.00168"},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1007\/s11416-011-0151-y"},{"key":"e_1_3_2_1_25_1","volume-title":"On the Concept of Software Obfuscation in Computer Security. In ISC","author":"Kuzurin Nikolay","year":"2007","unstructured":"Nikolay Kuzurin, Alexander Shokurov, Nikolay Varnovsky, and Vladimir Zakharov. 2007. On the Concept of Software Obfuscation in Computer Security. In ISC 2007."},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICC.2012.6364928"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-40203-6_29"},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1145\/1852666.1852716"},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.5555\/1953048.2078195"},{"volume-title":"Detection of Intrusions and Malware","author":"Rieck Konrad","key":"e_1_3_2_1_30_1","unstructured":"Konrad Rieck, Thorsten Holz, Carsten Willems, Patrick D\u00fcssel, and Pavel Laskov. 2008. Learning and Classification of Malware Behavior. In Detection of Intrusions and Malware, and Vulnerability Assessment, Diego Zamboni (Ed.). Springer Berlin Heidelberg, 108--125."},{"key":"e_1_3_2_1_31_1","volume-title":"Proceedings of the 2007 joint conference on empirical methods in natural language processing and computational natural language learning (EMNLP-CoNLL). 410--420","author":"Rosenberg Andrew","year":"2007","unstructured":"Andrew Rosenberg and Julia Hirschberg. 2007. V-measure: A conditional entropy-based external cluster evaluation measure. In Proceedings of the 2007 joint conference on empirical methods in natural language processing and computational natural language learning (EMNLP-CoNLL). 410--420."},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1016\/0377-0427(87)90125-7"},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1109\/ISSRE.2018.00032"},{"volume-title":"Research in Attacks, Intrusions, and Defenses, Fabian Monrose, Marc Dacier, Gregory Blanc, and Joaquin Garcia-Alfaro (Eds.)","author":"Sebasti\u00e1n Marcos","key":"e_1_3_2_1_34_1","unstructured":"Marcos Sebasti\u00e1n, Richard Rivera, Platon Kotzias, and Juan Caballero. 2016. AV-class: A Tool for Massive Malware Labeling. In Research in Attacks, Intrusions, and Defenses, Fabian Monrose, Marc Dacier, Gregory Blanc, and Joaquin Garcia-Alfaro (Eds.). Springer International Publishing, Cham, 230--253."},{"key":"e_1_3_2_1_35_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2020.101775"},{"key":"e_1_3_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-23808-6_17"},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-15939-8_14"},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1145\/2554850.2555063"},{"key":"e_1_3_2_1_39_1","volume-title":"Pushdown Model Checking for Malware Detection. In TACAS","author":"Song Fu","year":"2012","unstructured":"Fu Song and Tayssir Touili. 2012. Pushdown Model Checking for Malware Detection. In TACAS 2012."},{"key":"e_1_3_2_1_40_1","unstructured":"Nitish Srivastava Elman Mansimov and Ruslan Salakhutdinov. 2015. Unsupervised Learning of Video Representations using LSTMs. arXiv:cs.LG\/1502.04681"},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.1007\/s00357-005-0012-9"},{"key":"e_1_3_2_1_42_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-23822-2_12"},{"key":"e_1_3_2_1_43_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2007.45"},{"key":"e_1_3_2_1_44_1","unstructured":"Yonghui Wu Mike Schuster Zhifeng Chen Quoc V Le Mohammad Norouzi Wolfgang Macherey Maxim Krikun Yuan Cao Qin Gao Klaus Macherey et al. 2016. Google's neural machine translation system: Bridging the gap between human and machine translation. arXiv preprint arXiv:1609.08144 (2016)."},{"key":"e_1_3_2_1_45_1","volume-title":"International conference on machine learning. 478--487","author":"Xie Junyuan","year":"2016","unstructured":"Junyuan Xie, Ross Girshick, and Ali Farhadi. 2016. Unsupervised deep embedding for clustering analysis. In International conference on machine learning. 478--487."}],"event":{"name":"SAC '21: The 36th ACM\/SIGAPP Symposium on Applied Computing","sponsor":["SIGAPP ACM Special Interest Group on Applied Computing"],"location":"Virtual Event Republic of Korea","acronym":"SAC '21"},"container-title":["Proceedings of the 36th Annual ACM Symposium on Applied Computing"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3412841.3441919","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3412841.3441919","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T22:02:23Z","timestamp":1750197743000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3412841.3441919"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,3,22]]},"references-count":45,"alternative-id":["10.1145\/3412841.3441919","10.1145\/3412841"],"URL":"https:\/\/doi.org\/10.1145\/3412841.3441919","relation":{},"subject":[],"published":{"date-parts":[[2021,3,22]]},"assertion":[{"value":"2021-04-22","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}