{"id":"https://openalex.org/W2230191228","doi":"https://doi.org/10.1007/978-3-642-33167-1_45","title":"Scalable Telemetry Classification for Automated Malware Detection","display_name":"Scalable Telemetry Classification for Automated Malware Detection","publication_year":2012,"publication_date":"2012-01-01","ids":{"openalex":"https://openalex.org/W2230191228","doi":"https://doi.org/10.1007/978-3-642-33167-1_45","mag":"2230191228"},"language":"en","primary_location":{"id":"doi:10.1007/978-3-642-33167-1_45","is_oa":false,"landing_page_url":"https://doi.org/10.1007/978-3-642-33167-1_45","pdf_url":null,"source":{"id":"https://openalex.org/S106296714","display_name":"Lecture notes in computer science","issn_l":"0302-9743","issn":["0302-9743","1611-3349"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"book series"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Lecture Notes in Computer Science","raw_type":"book-chapter"},"type":"book-chapter","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5059859993","display_name":"Jack W. Stokes","orcid":null},"institutions":[{"id":"https://openalex.org/I1290206253","display_name":"Microsoft (United States)","ror":"https://ror.org/00d0nc645","country_code":"US","type":"company","lineage":["https://openalex.org/I1290206253"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Jack W. Stokes","raw_affiliation_strings":["Microsoft Research, Redmond, WA, 98052, USA"],"affiliations":[{"raw_affiliation_string":"Microsoft Research, Redmond, WA, 98052, USA","institution_ids":["https://openalex.org/I1290206253"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5073032636","display_name":"John Platt","orcid":"https://orcid.org/0000-0002-5652-5303"},"institutions":[{"id":"https://openalex.org/I1290206253","display_name":"Microsoft (United States)","ror":"https://ror.org/00d0nc645","country_code":"US","type":"company","lineage":["https://openalex.org/I1290206253"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"John C. Platt","raw_affiliation_strings":["Microsoft Research, Redmond, WA, 98052, USA"],"affiliations":[{"raw_affiliation_string":"Microsoft Research, Redmond, WA, 98052, USA","institution_ids":["https://openalex.org/I1290206253"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5072397167","display_name":"Helen J. Wang","orcid":"https://orcid.org/0000-0003-1237-9831"},"institutions":[{"id":"https://openalex.org/I1290206253","display_name":"Microsoft (United States)","ror":"https://ror.org/00d0nc645","country_code":"US","type":"company","lineage":["https://openalex.org/I1290206253"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Helen J. Wang","raw_affiliation_strings":["Microsoft Research, Redmond, WA, 98052, USA"],"affiliations":[{"raw_affiliation_string":"Microsoft Research, Redmond, WA, 98052, USA","institution_ids":["https://openalex.org/I1290206253"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5056987686","display_name":"Joe Faulhaber","orcid":null},"institutions":[{"id":"https://openalex.org/I1290206253","display_name":"Microsoft (United States)","ror":"https://ror.org/00d0nc645","country_code":"US","type":"company","lineage":["https://openalex.org/I1290206253"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Joe Faulhaber","raw_affiliation_strings":["Microsoft Corp., Redmond, WA, 98052, USA"],"affiliations":[{"raw_affiliation_string":"Microsoft Corp., Redmond, WA, 98052, USA","institution_ids":["https://openalex.org/I1290206253"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5041498573","display_name":"Jonathan Keller","orcid":"https://orcid.org/0000-0001-7724-3885"},"institutions":[{"id":"https://openalex.org/I1290206253","display_name":"Microsoft (United States)","ror":"https://ror.org/00d0nc645","country_code":"US","type":"company","lineage":["https://openalex.org/I1290206253"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Jonathan Keller","raw_affiliation_strings":["Microsoft Corp., Redmond, WA, 98052, USA"],"affiliations":[{"raw_affiliation_string":"Microsoft Corp., Redmond, WA, 98052, USA","institution_ids":["https://openalex.org/I1290206253"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5029654238","display_name":"Mady Marinescu","orcid":null},"institutions":[{"id":"https://openalex.org/I1290206253","display_name":"Microsoft (United States)","ror":"https://ror.org/00d0nc645","country_code":"US","type":"company","lineage":["https://openalex.org/I1290206253"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Mady Marinescu","raw_affiliation_strings":["Microsoft Corp., Redmond, WA, 98052, USA"],"affiliations":[{"raw_affiliation_string":"Microsoft Corp., Redmond, WA, 98052, USA","institution_ids":["https://openalex.org/I1290206253"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5019478468","display_name":"Anil Thomas","orcid":"https://orcid.org/0000-0002-0774-2512"},"institutions":[{"id":"https://openalex.org/I1290206253","display_name":"Microsoft (United States)","ror":"https://ror.org/00d0nc645","country_code":"US","type":"company","lineage":["https://openalex.org/I1290206253"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Anil Thomas","raw_affiliation_strings":["Microsoft Corp., Redmond, WA, 98052, USA"],"affiliations":[{"raw_affiliation_string":"Microsoft Corp., Redmond, WA, 98052, USA","institution_ids":["https://openalex.org/I1290206253"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5069669278","display_name":"Marius Gheorghescu","orcid":null},"institutions":[{"id":"https://openalex.org/I1290206253","display_name":"Microsoft (United States)","ror":"https://ror.org/00d0nc645","country_code":"US","type":"company","lineage":["https://openalex.org/I1290206253"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Marius Gheorghescu","raw_affiliation_strings":["Microsoft Corp., Redmond, WA, 98052, USA"],"affiliations":[{"raw_affiliation_string":"Microsoft Corp., Redmond, WA, 98052, USA","institution_ids":["https://openalex.org/I1290206253"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":8,"corresponding_author_ids":["https://openalex.org/A5059859993"],"corresponding_institution_ids":["https://openalex.org/I1290206253"],"apc_list":{"value":5000,"currency":"EUR","value_usd":5392},"apc_paid":null,"fwci":0.4262,"has_fulltext":false,"cited_by_count":9,"citation_normalized_percentile":{"value":0.62336449,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":97},"biblio":{"volume":null,"issue":null,"first_page":"788","last_page":"805"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9977999925613403,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11644","display_name":"Spam and Phishing Detection","score":0.9889000058174133,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/malware","display_name":"Malware","score":0.9420733451843262},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7767950892448425},{"id":"https://openalex.org/keywords/telemetry","display_name":"Telemetry","score":0.7534845471382141},{"id":"https://openalex.org/keywords/classifier","display_name":"Classifier (UML)","score":0.6678732633590698},{"id":"https://openalex.org/keywords/system-call","display_name":"System call","score":0.4636686146259308},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4177989065647125},{"id":"https://openalex.org/keywords/scalability","display_name":"Scalability","score":0.41175633668899536},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.38044196367263794},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.3568175733089447},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.27056604623794556},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.22754189372062683},{"id":"https://openalex.org/keywords/telecommunications","display_name":"Telecommunications","score":0.061268001794815063}],"concepts":[{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.9420733451843262},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7767950892448425},{"id":"https://openalex.org/C183121708","wikidata":"https://www.wikidata.org/wiki/Q209867","display_name":"Telemetry","level":2,"score":0.7534845471382141},{"id":"https://openalex.org/C95623464","wikidata":"https://www.wikidata.org/wiki/Q1096149","display_name":"Classifier (UML)","level":2,"score":0.6678732633590698},{"id":"https://openalex.org/C2778579508","wikidata":"https://www.wikidata.org/wiki/Q722192","display_name":"System call","level":2,"score":0.4636686146259308},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4177989065647125},{"id":"https://openalex.org/C48044578","wikidata":"https://www.wikidata.org/wiki/Q727490","display_name":"Scalability","level":2,"score":0.41175633668899536},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.38044196367263794},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3568175733089447},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.27056604623794556},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.22754189372062683},{"id":"https://openalex.org/C76155785","wikidata":"https://www.wikidata.org/wiki/Q418","display_name":"Telecommunications","level":1,"score":0.061268001794815063}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1007/978-3-642-33167-1_45","is_oa":false,"landing_page_url":"https://doi.org/10.1007/978-3-642-33167-1_45","pdf_url":null,"source":{"id":"https://openalex.org/S106296714","display_name":"Lecture notes in computer science","issn_l":"0302-9743","issn":["0302-9743","1611-3349"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"book series"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Lecture Notes in Computer Science","raw_type":"book-chapter"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.44999998807907104,"display_name":"Industry, innovation and infrastructure","id":"https://metadata.un.org/sdg/9"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":35,"referenced_works":["https://openalex.org/W17195072","https://openalex.org/W97539848","https://openalex.org/W142212369","https://openalex.org/W152854583","https://openalex.org/W200681053","https://openalex.org/W1497883910","https://openalex.org/W1503224444","https://openalex.org/W1532325895","https://openalex.org/W1552906779","https://openalex.org/W1559833478","https://openalex.org/W1663973292","https://openalex.org/W1678356000","https://openalex.org/W1910686388","https://openalex.org/W1979711143","https://openalex.org/W1983599491","https://openalex.org/W1985936489","https://openalex.org/W1994020507","https://openalex.org/W2018175892","https://openalex.org/W2065339563","https://openalex.org/W2112731379","https://openalex.org/W2119251836","https://openalex.org/W2121749752","https://openalex.org/W2132874238","https://openalex.org/W2140214528","https://openalex.org/W2142623206","https://openalex.org/W2144112223","https://openalex.org/W2165357553","https://openalex.org/W2167671111","https://openalex.org/W2203388234","https://openalex.org/W2404432305","https://openalex.org/W2482374127","https://openalex.org/W2912192668","https://openalex.org/W4213009331","https://openalex.org/W4238295473","https://openalex.org/W4249572517"],"related_works":["https://openalex.org/W2439951656","https://openalex.org/W1573526548","https://openalex.org/W1998188341","https://openalex.org/W4360982091","https://openalex.org/W3176864451","https://openalex.org/W2053632570","https://openalex.org/W3211525895","https://openalex.org/W2187910102","https://openalex.org/W2128507946","https://openalex.org/W4254552916"],"abstract_inverted_index":null,"counts_by_year":[{"year":2023,"cited_by_count":1},{"year":2021,"cited_by_count":3},{"year":2020,"cited_by_count":2},{"year":2019,"cited_by_count":1},{"year":2018,"cited_by_count":1},{"year":2015,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
