{"id":"https://openalex.org/W2185177440","doi":"https://doi.org/10.1109/ic3.2015.7346710","title":"Pruned feature space for metamorphic malware detection using Markov Blanket","display_name":"Pruned feature space for metamorphic malware detection using Markov Blanket","publication_year":2015,"publication_date":"2015-08-01","ids":{"openalex":"https://openalex.org/W2185177440","doi":"https://doi.org/10.1109/ic3.2015.7346710","mag":"2185177440"},"language":"en","primary_location":{"id":"doi:10.1109/ic3.2015.7346710","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ic3.2015.7346710","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2015 Eighth International Conference on Contemporary Computing (IC3)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5077772970","display_name":"Jithu Raphel","orcid":null},"institutions":[],"countries":[],"is_corresponding":true,"raw_author_name":"Jithu Raphel","raw_affiliation_strings":["Department of Computer Science, SCMS School of Engineering & Technology, Ernakulam, Kerala, India"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, SCMS School of Engineering & Technology, Ernakulam, Kerala, India","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5103016944","display_name":"P. Vinod","orcid":"https://orcid.org/0000-0001-6078-2014"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Vinod P.","raw_affiliation_strings":["Department of Computer Science, SCMS School of Engineering & Technology, Ernakulam, Kerala, India"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, SCMS School of Engineering & Technology, Ernakulam, Kerala, India","institution_ids":[]}]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5077772970"],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":1.1488,"has_fulltext":false,"cited_by_count":5,"citation_normalized_percentile":{"value":0.79139459,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":97},"biblio":{"volume":"13","issue":null,"first_page":"377","last_page":"382"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9968000054359436,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/opcode","display_name":"Opcode","score":0.9741981029510498},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7632318735122681},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.6443455219268799},{"id":"https://openalex.org/keywords/feature","display_name":"Feature (linguistics)","score":0.6202795505523682},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.6111097931861877},{"id":"https://openalex.org/keywords/markov-blanket","display_name":"Markov blanket","score":0.5995712280273438},{"id":"https://openalex.org/keywords/feature-vector","display_name":"Feature vector","score":0.5840017199516296},{"id":"https://openalex.org/keywords/feature-extraction","display_name":"Feature extraction","score":0.5551156401634216},{"id":"https://openalex.org/keywords/naive-bayes-classifier","display_name":"Naive Bayes classifier","score":0.5442377328872681},{"id":"https://openalex.org/keywords/malware","display_name":"Malware","score":0.5166113972663879},{"id":"https://openalex.org/keywords/preprocessor","display_name":"Preprocessor","score":0.42936277389526367},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.34258830547332764},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.2789679169654846},{"id":"https://openalex.org/keywords/markov-chain","display_name":"Markov chain","score":0.27831023931503296},{"id":"https://openalex.org/keywords/markov-model","display_name":"Markov model","score":0.24463093280792236},{"id":"https://openalex.org/keywords/support-vector-machine","display_name":"Support vector machine","score":0.23975899815559387},{"id":"https://openalex.org/keywords/markov-property","display_name":"Markov property","score":0.09129393100738525}],"concepts":[{"id":"https://openalex.org/C52173422","wikidata":"https://www.wikidata.org/wiki/Q766483","display_name":"Opcode","level":2,"score":0.9741981029510498},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7632318735122681},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.6443455219268799},{"id":"https://openalex.org/C2776401178","wikidata":"https://www.wikidata.org/wiki/Q12050496","display_name":"Feature (linguistics)","level":2,"score":0.6202795505523682},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6111097931861877},{"id":"https://openalex.org/C123867240","wikidata":"https://www.wikidata.org/wiki/Q3001792","display_name":"Markov blanket","level":5,"score":0.5995712280273438},{"id":"https://openalex.org/C83665646","wikidata":"https://www.wikidata.org/wiki/Q42139305","display_name":"Feature vector","level":2,"score":0.5840017199516296},{"id":"https://openalex.org/C52622490","wikidata":"https://www.wikidata.org/wiki/Q1026626","display_name":"Feature extraction","level":2,"score":0.5551156401634216},{"id":"https://openalex.org/C52001869","wikidata":"https://www.wikidata.org/wiki/Q812530","display_name":"Naive Bayes classifier","level":3,"score":0.5442377328872681},{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.5166113972663879},{"id":"https://openalex.org/C34736171","wikidata":"https://www.wikidata.org/wiki/Q918333","display_name":"Preprocessor","level":2,"score":0.42936277389526367},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.34258830547332764},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.2789679169654846},{"id":"https://openalex.org/C98763669","wikidata":"https://www.wikidata.org/wiki/Q176645","display_name":"Markov chain","level":2,"score":0.27831023931503296},{"id":"https://openalex.org/C163836022","wikidata":"https://www.wikidata.org/wiki/Q6771326","display_name":"Markov model","level":3,"score":0.24463093280792236},{"id":"https://openalex.org/C12267149","wikidata":"https://www.wikidata.org/wiki/Q282453","display_name":"Support vector machine","level":2,"score":0.23975899815559387},{"id":"https://openalex.org/C189973286","wikidata":"https://www.wikidata.org/wiki/Q176695","display_name":"Markov property","level":4,"score":0.09129393100738525},{"id":"https://openalex.org/C9390403","wikidata":"https://www.wikidata.org/wiki/Q3966","display_name":"Computer hardware","level":1,"score":0.0},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/ic3.2015.7346710","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ic3.2015.7346710","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2015 Eighth International Conference on Contemporary Computing (IC3)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320316409","display_name":"San Jos\u00e9 State University","ror":"https://ror.org/04qyvz380"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":23,"referenced_works":["https://openalex.org/W62298501","https://openalex.org/W132470307","https://openalex.org/W1924689489","https://openalex.org/W1964406293","https://openalex.org/W1973211701","https://openalex.org/W1994001715","https://openalex.org/W2006985892","https://openalex.org/W2066833290","https://openalex.org/W2072698166","https://openalex.org/W2085187733","https://openalex.org/W2108104525","https://openalex.org/W2110978214","https://openalex.org/W2111574103","https://openalex.org/W2124151159","https://openalex.org/W2126753728","https://openalex.org/W2150757437","https://openalex.org/W2155535003","https://openalex.org/W2156571267","https://openalex.org/W2911964244","https://openalex.org/W4232619977","https://openalex.org/W4249258996","https://openalex.org/W6602539881","https://openalex.org/W6641406445"],"related_works":["https://openalex.org/W36091977","https://openalex.org/W2800331776","https://openalex.org/W4382794599","https://openalex.org/W2903602818","https://openalex.org/W2003791967","https://openalex.org/W4294976063","https://openalex.org/W4387382577","https://openalex.org/W3016048014","https://openalex.org/W2902612505","https://openalex.org/W2384735743"],"abstract_inverted_index":{"The":[0,34],"proposed":[1,148],"non-signature":[2],"based":[3],"system":[4,110],"creates":[5],"a":[6,65],"meta":[7,127],"feature":[8,35,47,67,83],"space":[9,36,129],"for":[10,95],"the":[11,25,45,50,58,74,81,86,97,106,115,126,141,144,147],"detection":[12],"of":[13,20,113,123,130,136,146],"metamorphic":[14,149],"malware":[15,150],"samples":[16],"where":[17],"three":[18],"sets":[19],"features":[21,76,91],"are":[22,54,61,78,93,103],"extracted":[23,92],"from":[24],"files:":[26],"(a)":[27],"branch":[28],"opcodes":[29,52],"(b)":[30],"unigrams":[31],"(c)":[32],"bigrams.":[33],"is":[37,71,111],"initially":[38],"pruned":[39],"using":[40,85,105,125],"Na\u00efve":[41],"Bayes":[42],"method.":[43],"After":[44],"rare":[46],"elimination":[48],"process,":[49],"relevant":[51,66,82],"that":[53,77],"highly":[55],"contributing":[56],"towards":[57],"target":[59],"class":[60],"selected,":[62],"thereby":[63],"forming":[64],"set.":[68],"Next":[69],"phase":[70],"to":[72],"remove":[73],"redundant":[75],"present":[79],"in":[80],"set":[84],"Markov":[87],"Blanket":[88],"approach.":[89],"Prominent":[90],"used":[94],"generating":[96],"training":[98],"models":[99],"and":[100,118,140],"unseen":[101],"instances":[102],"tested":[104],"optimal":[107],"models.":[108],"Proposed":[109],"capable":[112],"detecting":[114],"NGVCK":[116],"viruses":[117],"MWORM":[119],"with":[120],"an":[121],"accuracy":[122],"100%":[124],"opcode":[128],"25":[131],"features.":[132],"A":[133],"promising":[134],"F1-score":[135],"1.0":[137],"was":[138],"gained":[139],"results":[142],"demonstrate":[143],"efficiency":[145],"detector.":[151]},"counts_by_year":[{"year":2023,"cited_by_count":1},{"year":2018,"cited_by_count":3},{"year":2016,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
