{"id":"W3137539372","doi":"10.1007/s00521-021-05861-7","title":"Deep learning-aided runtime opcode-based Windows malware detection","year":2021,"lang":"en","type":"article","venue":"Neural Computing and Applications","topic":"Advanced Malware Detection Techniques","field":"Computer Science","cited_by":20,"is_retracted":false,"has_abstract":false,"ca_institutions":"University of Toronto; University of New Brunswick","funders":"","keywords":"Opcode; Malware; Computer science; Obfuscation; Artificial intelligence; Machine learning; Code (set theory); Deep learning; Data mining; Pattern recognition (psychology); Operating system; Computer security; Programming language","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.0002630329,0.0008616162,0.0005458304,0.000998205,0.0002779014,0.0005589001,0.000803943,0.000436261,0.00245475],"category_scores_gemma":[0.001181644,0.0002200933,0.0004149169,0.0004124931,0.0002366684,0.0007775156,0.0007918284,0.0009459538,0.00127568],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.0005796186,"about_ca_system_score_gemma":0.001131488,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.00545762,"about_ca_topic_score_gemma":0.01034856,"domain_scores_codex":[0.9996448,0.00002455076,0.00001262366,0.00008462613,0.0001264113,0.0001069749],"domain_scores_gemma":[0.9994461,0.0001480358,0.00007349141,0.0000761816,0.0002173194,0.00003886956],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"design_other","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.000627796,0.0004000465,0.008604825,0.0001378908,0.0000816512,0.0002873248,0.0001110505,0.06663008,0.1028916,0.002339029,0.01104681,0.8068418],"study_design_scores_gemma":[0.000008007382,0.00006144092,0.001383236,0.000009657698,0.00001409409,0.00007560383,0.00001967245,0.9645389,0.03164647,0.0009021826,0.001331322,0.000009478545],"study_design_candidate":"simulation_or_modeling","study_design_consensus":null,"genre_codex":"empirical","genre_gemma":"empirical","genre_scores_codex":[0.5154781,0.001218862,0.4426669,0.0005386638,0.0003702982,0.0001191143,0.001199828,0.0297195,0.008688686],"genre_scores_gemma":[0.8947793,0.0002323465,0.09604346,0.0001586558,0.00005031746,0.00005021315,0.001132221,0.0003705727,0.007182773],"genre_candidate":"empirical","genre_consensus":"empirical","teacher_disagreement_score":0.00545762,"threshold_uncertainty_score":0.01085168,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.009466369414443773,"score_gpt":0.2562602113030099,"score_spread":0.2467938418885661,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}