{"id":"https://openalex.org/W2436787372","doi":"https://doi.org/10.1109/chinacom.2015.7497952","title":"Mal-EVE: Static detection model for evasive malware","display_name":"Mal-EVE: Static detection model for evasive malware","publication_year":2015,"publication_date":"2015-08-01","ids":{"openalex":"https://openalex.org/W2436787372","doi":"https://doi.org/10.1109/chinacom.2015.7497952","mag":"2436787372"},"language":"en","primary_location":{"id":"doi:10.1109/chinacom.2015.7497952","is_oa":false,"landing_page_url":"https://doi.org/10.1109/chinacom.2015.7497952","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2015 10th International Conference on Communications and Networking in China (ChinaCom)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101588651","display_name":"Charles Lim","orcid":null},"institutions":[{"id":"https://openalex.org/I100406981","display_name":"Swiss German University","ror":"https://ror.org/047rtk203","country_code":"ID","type":"education","lineage":["https://openalex.org/I100406981"]}],"countries":["ID"],"is_corresponding":true,"raw_author_name":"Charles Lim","raw_affiliation_strings":["Department of Information Technology, Swiss German University, Tangerang, Indonesia"],"affiliations":[{"raw_affiliation_string":"Department of Information Technology, Swiss German University, Tangerang, Indonesia","institution_ids":["https://openalex.org/I100406981"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5097318464","display_name":"Nicsen","orcid":null},"institutions":[{"id":"https://openalex.org/I100406981","display_name":"Swiss German University","ror":"https://ror.org/047rtk203","country_code":"ID","type":"education","lineage":["https://openalex.org/I100406981"]}],"countries":["ID"],"is_corresponding":false,"raw_author_name":"Nicsen","raw_affiliation_strings":["Department of Information Technology, Swiss German University, Tangerang, Indonesia"],"affiliations":[{"raw_affiliation_string":"Department of Information Technology, Swiss German University, Tangerang, Indonesia","institution_ids":["https://openalex.org/I100406981"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5101588651"],"corresponding_institution_ids":["https://openalex.org/I100406981"],"apc_list":null,"apc_paid":null,"fwci":0.5743,"has_fulltext":false,"cited_by_count":6,"citation_normalized_percentile":{"value":0.70870503,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":96},"biblio":{"volume":null,"issue":null,"first_page":"283","last_page":"288"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.996999979019165,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12034","display_name":"Digital and Cyber Forensics","score":0.9937999844551086,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/malware","display_name":"Malware","score":0.9160373210906982},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7992053627967834},{"id":"https://openalex.org/keywords/debugging","display_name":"Debugging","score":0.6801705360412598},{"id":"https://openalex.org/keywords/evasion","display_name":"Evasion (ethics)","score":0.6674745678901672},{"id":"https://openalex.org/keywords/static-analysis","display_name":"Static analysis","score":0.5052595734596252},{"id":"https://openalex.org/keywords/set","display_name":"Set (abstract data type)","score":0.47075632214546204},{"id":"https://openalex.org/keywords/heuristic","display_name":"Heuristic","score":0.42758089303970337},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.3409419357776642},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3361486494541168},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.32773488759994507},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.3143242597579956},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.11173415184020996}],"concepts":[{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.9160373210906982},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7992053627967834},{"id":"https://openalex.org/C168065819","wikidata":"https://www.wikidata.org/wiki/Q845566","display_name":"Debugging","level":2,"score":0.6801705360412598},{"id":"https://openalex.org/C2781251061","wikidata":"https://www.wikidata.org/wiki/Q5416089","display_name":"Evasion (ethics)","level":3,"score":0.6674745678901672},{"id":"https://openalex.org/C97686452","wikidata":"https://www.wikidata.org/wiki/Q7604153","display_name":"Static analysis","level":2,"score":0.5052595734596252},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.47075632214546204},{"id":"https://openalex.org/C173801870","wikidata":"https://www.wikidata.org/wiki/Q201413","display_name":"Heuristic","level":2,"score":0.42758089303970337},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.3409419357776642},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3361486494541168},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.32773488759994507},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.3143242597579956},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.11173415184020996},{"id":"https://openalex.org/C203014093","wikidata":"https://www.wikidata.org/wiki/Q101929","display_name":"Immunology","level":1,"score":0.0},{"id":"https://openalex.org/C8891405","wikidata":"https://www.wikidata.org/wiki/Q1059","display_name":"Immune system","level":2,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/chinacom.2015.7497952","is_oa":false,"landing_page_url":"https://doi.org/10.1109/chinacom.2015.7497952","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2015 10th International Conference on Communications and Networking in China (ChinaCom)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16","score":0.41999998688697815}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":26,"referenced_works":["https://openalex.org/W23711711","https://openalex.org/W78162143","https://openalex.org/W172558989","https://openalex.org/W1508225132","https://openalex.org/W1528560962","https://openalex.org/W1864102666","https://openalex.org/W1973072591","https://openalex.org/W1981033991","https://openalex.org/W1984233424","https://openalex.org/W2020647468","https://openalex.org/W2033071293","https://openalex.org/W2045950984","https://openalex.org/W2084944235","https://openalex.org/W2115175195","https://openalex.org/W2124659400","https://openalex.org/W2150423842","https://openalex.org/W2151300580","https://openalex.org/W2155320991","https://openalex.org/W2176386715","https://openalex.org/W2183680341","https://openalex.org/W2232832583","https://openalex.org/W2313158754","https://openalex.org/W2333730164","https://openalex.org/W6601006388","https://openalex.org/W6631416803","https://openalex.org/W6639059507"],"related_works":["https://openalex.org/W2783112941","https://openalex.org/W4387298227","https://openalex.org/W2526398307","https://openalex.org/W2470029541","https://openalex.org/W4387065217","https://openalex.org/W4368275542","https://openalex.org/W2610659201","https://openalex.org/W65788704","https://openalex.org/W4285357721","https://openalex.org/W2470502009"],"abstract_inverted_index":{"The":[0,149,172],"rapid":[1],"growth":[2],"of":[3,92,105,109,157,169],"malware":[4,17,93,118,163],"requires":[5],"effective,":[6,54],"automated,":[7,55],"and":[8,13,56,85,96,103,127,135],"accurate":[9,57],"ways":[10],"in":[11,160],"analyzing":[12,46],"detecting":[14,89,124],"it.":[15],"Nowadays,":[16],"not":[18],"only":[19],"have":[20],"offensive":[21],"characteristic,":[22],"but":[23],"also":[24],"defensive":[25],"ability":[26],"to":[27,30,59,67,114,153],"obfuscate":[28],"itself":[29],"be":[31,43],"analyzed":[32],"or":[33,121],"detected.":[34],"It":[35],"is":[36,65,112,119,151,185],"more":[37],"effective":[38],"if":[39],"these":[40],"techniques":[41,78],"can":[42],"identified":[44],"before":[45],"them.":[47],"This":[48,71],"research":[49],"focuses":[50],"on":[51,99],"designing":[52],"an":[53,155],"model":[58,145,150],"detect":[60],"evasive":[61,147],"malware.":[62,148],"A":[63],"prototype":[64,72],"made":[66],"test":[68],"the":[69,74,100,110,117],"design.":[70],"contains":[73],"most":[75],"frequently":[76],"evasion":[77],"used":[79],"by":[80],"malware:":[81],"packer,":[82,90],"anti":[83,86,125,128],"debugging,":[84],"virtualization.":[87],"In":[88],"features":[91],"are":[94,133,139],"extracted":[95],"scored":[97],"based":[98],"predefined":[101],"risk":[102],"weight":[104],"each":[106],"feature.":[107],"Threshold":[108],"score":[111],"set":[113],"determine":[115],"whether":[116],"packed":[120,162],"not.":[122],"For":[123],"debugging":[126],"virtualization,":[129],"several":[130],"heuristic":[131],"patterns":[132],"gathered":[134],"utilized.":[136],"These":[137],"capabilities":[138],"integrated":[140],"into":[141],"our":[142],"static":[143],"detection":[144],"for":[146,175],"able":[152],"provide":[154],"accuracy":[156],"98.16":[158],"percent":[159],"determining":[161],"with":[164],"a":[165,177],"false":[166],"positive":[167],"rate":[168],"1.45":[170],"percent.":[171],"average":[173],"time":[174],"processing":[176],"file":[178],"that":[179],"has":[180],"size":[181],"below":[182],"100":[183],"kilobyte":[184],"3.2":[186],"second.":[187]},"counts_by_year":[{"year":2025,"cited_by_count":1},{"year":2024,"cited_by_count":1},{"year":2019,"cited_by_count":2},{"year":2018,"cited_by_count":1},{"year":2016,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
