{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,2]],"date-time":"2026-05-02T06:50:51Z","timestamp":1777704651935,"version":"3.51.4"},"reference-count":31,"publisher":"SAGE Publications","issue":"6","license":[{"start":{"date-parts":[[2020,5,22]],"date-time":"2020-05-22T00:00:00Z","timestamp":1590105600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/journals.sagepub.com\/page\/policies\/text-and-data-mining-license"}],"content-domain":{"domain":["journals.sagepub.com"],"crossmark-restriction":true},"short-container-title":["Journal of Intelligent &amp; Fuzzy Systems"],"published-print":{"date-parts":[[2020,6,25]]},"abstract":"<jats:p>When the malicious code is detected by the current method, the features of the malicious code cannot be classified in detail. A static detection method of malicious code based on behavior information gain is proposed. The method uses the feature selection method of behavior information gain to get the average mutual information between different code types, and gives different types of feature libraries. On this basis, the character sets are fused and the sample characteristics of the malicious code are extracted. The dispersion degree of the sequence distribution of malicious code samples is measured, the distance vector of the plurality of eigenvectors is obtained, and the weighted matching of the features is performed. The malicious code is detected statically based on the matching result. The results demonstrated that the proposed method tends to be more accurate and provides a scientific basis for ensuring the security and stability of the Android operating system.<\/jats:p>","DOI":"10.3233\/jifs-179838","type":"journal-article","created":{"date-parts":[[2020,5,22]],"date-time":"2020-05-22T11:28:31Z","timestamp":1590146911000},"page":"7683-7692","update-policy":"https:\/\/doi.org\/10.1177\/sage-journals-update-policy","source":"Crossref","is-referenced-by-count":1,"title":["Simulation on static detection of malicious code based on behavior information gain"],"prefix":"10.1177","volume":"38","author":[{"given":"Pengcheng","family":"Wei","sequence":"first","affiliation":[{"name":"School of Mathematics and Information Engineering, Chongqing University of Education, Chongqing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Chengxiang","family":"Shi","sequence":"additional","affiliation":[{"name":"School of Mathematics and Information Engineering, Chongqing University of Education, Chongqing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Fangcheng","family":"He","sequence":"additional","affiliation":[{"name":"School of Foreign Languages and Literatures, Chongqing University of Education, Chongqing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"179","published-online":{"date-parts":[[2020,5,22]]},"reference":[{"key":"e_1_3_2_2_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2014.02.009"},{"key":"e_1_3_2_3_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2018.2868951"},{"key":"e_1_3_2_4_2","doi-asserted-by":"crossref","unstructured":"BahnsenA.C. AouadaD. and OtterstenB. Example-dependent cost-sensitive decision trees Expert Systems with Applications 42 (19) (2015) 6609\u20136619.","DOI":"10.1016\/j.eswa.2015.04.042"},{"issue":"6","key":"e_1_3_2_5_2","first-page":"333","article-title":"A new static detection method of malicious document based on wavelet package analysis international conference on intelligent information hiding and multimedia signal processing","volume":"42","author":"Gu Y.","year":"2015","unstructured":"GuY., FangP., JiaL.L. and ZhangL., A new static detection method of malicious document based on wavelet package analysis international conference on intelligent information hiding and multimedia signal processing, IEEE42(6) (2015), 333\u2013336.","journal-title":"IEEE"},{"key":"e_1_3_2_6_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.ipl.2016.06.014"},{"key":"e_1_3_2_7_2","doi-asserted-by":"publisher","DOI":"10.1109\/TCAD.2015.2488495"},{"key":"e_1_3_2_8_2","doi-asserted-by":"publisher","DOI":"10.1109\/TMC.2014.2343627"},{"issue":"13","key":"e_1_3_2_9_2","first-page":"949","article-title":"Mal-ID: automatic malware detection using common segment analysis and meta-features","volume":"13","author":"Tahan L.R.","year":"2014","unstructured":"TahanL.R. and ShaharY., Mal-ID: automatic malware detection using common segment analysis and meta-features, Journal of Machine Learning Research13(13) (2014), 949\u2013979.","journal-title":"Journal of Machine Learning Research"},{"key":"e_1_3_2_10_2","doi-asserted-by":"publisher","DOI":"10.1007\/s12083-015-0369-4"},{"key":"e_1_3_2_11_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.apm.2014.12.038"},{"key":"e_1_3_2_12_2","doi-asserted-by":"publisher","DOI":"10.1109\/JSYST.2013.2296197"},{"key":"e_1_3_2_13_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.adhoc.2011.09.006"},{"key":"e_1_3_2_14_2","unstructured":"SunM. LiX. LuiJ.C.S. MaR.T.B. and LiangZ. Monet: a user-oriented behavior-based malware variants detection system for android IEEE Transactions on Information Forensics and Security (99) (2016) 1-1."},{"key":"e_1_3_2_15_2","doi-asserted-by":"publisher","DOI":"10.1007\/s10458-014-9279-8"},{"key":"e_1_3_2_16_2","unstructured":"NissimN. CohenA. and EloviciY. ALDOCX: detection of unknown malicious microsoft office documents using designated active learning methods based on new structural feature extractionmethodology IEEE Transactions on Information Forensics and Security (99) (2016) 1-1."},{"issue":"3","key":"e_1_3_2_17_2","first-page":"449","article-title":"Research of malicious code attack effect based on synthetic entropy method","volume":"22","author":"Li P.","year":"2013","unstructured":"LiP. and WangR.C., Research of malicious code attack effect based on synthetic entropy method, Chinese Journal of Electronics22(3) (2013), 449\u2013454.","journal-title":"Chinese Journal of Electronics"},{"key":"e_1_3_2_18_2","doi-asserted-by":"publisher","DOI":"10.1049\/cje.2015.01.030"},{"issue":"3","key":"e_1_3_2_19_2","first-page":"183","article-title":"A Detection of Malicious Code Based on Minimum Distance Classifier","volume":"27","author":"Zhang Q.","year":"2015","unstructured":"ZhangQ., ShaoK. and LiuL., A Detection of Malicious Code Based on Minimum Distance Classifier, Journal of Guangxi Normal University (Natural Science Edition)27(3) (2015), 183\u2013187.","journal-title":"Journal of Guangxi Normal University (Natural Science Edition)"},{"key":"e_1_3_2_20_2","doi-asserted-by":"publisher","DOI":"10.1287\/moor.15.2.191"},{"key":"e_1_3_2_21_2","doi-asserted-by":"publisher","DOI":"10.1109\/TPWRS.2014.2359977"},{"key":"e_1_3_2_22_2","doi-asserted-by":"publisher","DOI":"10.1109\/TSC.2015.2491281"},{"issue":"2","key":"e_1_3_2_23_2","first-page":"959","article-title":"Distance learning techniques for ontology similarity measuring and ontology mapping","volume":"20","author":"Gao W.","year":"2017","unstructured":"GaoW., FarahaniM.R., AslamA. and HosamaniS., Distance learning techniques for ontology similarity measuring and ontology mapping, Cluster Computing-the Journal of Networks Software Tools and Applications20(2SI) (2017), 959\u2013968.","journal-title":"Cluster Computing-the Journal of Networks Software Tools and Applications"},{"key":"e_1_3_2_24_2","doi-asserted-by":"publisher","DOI":"10.1109\/TC.2013.2295802"},{"key":"e_1_3_2_25_2","doi-asserted-by":"publisher","DOI":"10.1002\/sec.1248"},{"issue":"5","key":"e_1_3_2_26_2","first-page":"205","article-title":"A hybrid malicious code detection method based on deep learning","volume":"9","author":"Li Y.","year":"2015","unstructured":"LiY., MaR. and JiaoR., A hybrid malicious code detection method based on deep learning, International Journal of Software Engineering & Its Applications9(5) (2015), 205\u2013216.","journal-title":"International Journal of Software Engineering & Its Applications"},{"issue":"11","key":"e_1_3_2_27_2","first-page":"107","article-title":"Malware detection method based on covering sensitive points","volume":"32","author":"Qin Y.","year":"2015","unstructured":"QinY., WangQ., ZengY. and XiQ., Malware detection method based on covering sensitive points, Application Research of Computers32(11) (2015), 107\u2013113.","journal-title":"Application Research of Computers"},{"key":"e_1_3_2_28_2","doi-asserted-by":"publisher","DOI":"10.21042\/AMNS.2018.1.00009"},{"key":"e_1_3_2_29_2","doi-asserted-by":"publisher","DOI":"10.2478\/AMNS.2019.2.00034"},{"key":"e_1_3_2_30_2","doi-asserted-by":"publisher","DOI":"10.2197\/ipsjjip.23.476"},{"key":"e_1_3_2_31_2","doi-asserted-by":"publisher","DOI":"10.1109\/MIM.2018.8278808"},{"key":"e_1_3_2_32_2","doi-asserted-by":"publisher","DOI":"10.1007\/s11042-018-7081-3"}],"container-title":["Journal of Intelligent &amp; Fuzzy Systems"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/journals.sagepub.com\/doi\/pdf\/10.3233\/JIFS-179838","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/journals.sagepub.com\/doi\/full-xml\/10.3233\/JIFS-179838","content-type":"application\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/journals.sagepub.com\/doi\/pdf\/10.3233\/JIFS-179838","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,4,29]],"date-time":"2026-04-29T09:41:42Z","timestamp":1777455702000},"score":1,"resource":{"primary":{"URL":"https:\/\/journals.sagepub.com\/doi\/10.3233\/JIFS-179838"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,5,22]]},"references-count":31,"journal-issue":{"issue":"6","published-print":{"date-parts":[[2020,6,25]]}},"alternative-id":["10.3233\/JIFS-179838"],"URL":"https:\/\/doi.org\/10.3233\/jifs-179838","relation":{},"ISSN":["1064-1246","1875-8967"],"issn-type":[{"value":"1064-1246","type":"print"},{"value":"1875-8967","type":"electronic"}],"subject":[],"published":{"date-parts":[[2020,5,22]]}}}