{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,25]],"date-time":"2025-03-25T18:57:24Z","timestamp":1742929044014,"version":"3.40.3"},"publisher-location":"Cham","reference-count":28,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783030298586"},{"type":"electronic","value":"9783030298593"}],"license":[{"start":{"date-parts":[[2019,1,1]],"date-time":"2019-01-01T00:00:00Z","timestamp":1546300800000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2019]]},"DOI":"10.1007\/978-3-030-29859-3_38","type":"book-chapter","created":{"date-parts":[[2019,8,26]],"date-time":"2019-08-26T16:03:53Z","timestamp":1566835433000},"page":"444-455","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":6,"title":["Botnet Detection on TCP Traffic Using Supervised Machine Learning"],"prefix":"10.1007","author":[{"given":"Javier","family":"Velasco-Mata","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Eduardo","family":"Fidalgo","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"V\u00edctor","family":"Gonz\u00e1lez-Castro","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Enrique","family":"Alegre","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Pablo","family":"Blanco-Medina","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2019,8,26]]},"reference":[{"unstructured":"Mart\u00ednez, J., Iglesias, C., Garc\u00eda-Nieto, P.: Machine learning techniques applied to cybersecurity. Int. J. Mach. Learn. Cybern. 1\u201314 (2019)","key":"38_CR1"},{"issue":"2","key":"38_CR2","doi-asserted-by":"publisher","first-page":"378","DOI":"10.1016\/j.comnet.2012.07.021","volume":"57","author":"SS Silva","year":"2013","unstructured":"Silva, S.S., Silva, R.M., Pinto, R.C., Salles, R.M.: Botnets: a survey. Comput. Netw. 57(2), 378\u2013403 (2013)","journal-title":"Comput. Netw."},{"issue":"2","key":"38_CR3","doi-asserted-by":"publisher","first-page":"556","DOI":"10.1016\/j.comnet.2012.06.006","volume":"57","author":"Y Boshmaf","year":"2013","unstructured":"Boshmaf, Y., Muslukhov, I., Beznosov, K., Ripeanu, M.: Design and analysis of a social botnet. Comput. Netw. 57(2), 556\u2013578 (2013)","journal-title":"Comput. Netw."},{"key":"38_CR4","doi-asserted-by":"publisher","first-page":"75","DOI":"10.1016\/j.comnet.2014.11.001","volume":"76","author":"T Bujlow","year":"2015","unstructured":"Bujlow, T., Carela-Espa\u00f1ol, V., Barlet-Ros, P.: Independent comparison of popular DPI tools for traffic classification. Comput. Netw. 76, 75\u201389 (2015)","journal-title":"Comput. Netw."},{"key":"38_CR5","doi-asserted-by":"publisher","first-page":"91","DOI":"10.1016\/j.compeleceng.2016.01.012","volume":"50","author":"G Kirubavathi","year":"2016","unstructured":"Kirubavathi, G., Anitha, R.: Botnet detection via mining of traffic flow characteristics. Comput. Electr. Eng. 50, 91\u2013101 (2016)","journal-title":"Comput. Electr. Eng."},{"key":"38_CR6","doi-asserted-by":"publisher","first-page":"609","DOI":"10.1007\/978-3-642-42054-2_76","volume-title":"Neural Information Processing","author":"HeeSeok Kim","year":"2013","unstructured":"Kim, H., Choi, S.S., Song, J.: A methodology for multipurpose DNS Sinkhole analyzing double bounce emails. In: International Conference on Neural Information Processing, pp. 609\u2013616 (2013)"},{"unstructured":"Fetzer, C., Felber, P., Rivi\u00e8re, \u00c9., Schiavoni, V., Sutra, P.: UniCrawl: a practical geographically distributed web crawler. In: International Conference on Cloud Computing, pp. 389\u2013396 (2015)","key":"38_CR7"},{"issue":"18","key":"38_CR8","doi-asserted-by":"publisher","first-page":"2227","DOI":"10.1016\/j.comcom.2011.07.001","volume":"34","author":"P Sangkatsanee","year":"2011","unstructured":"Sangkatsanee, P., Wattanapongsakorn, N., Charnsripinyo, C.: Practical real-time intrusion detection using machine learning approaches. Comput. Commun. 34(18), 2227\u20132235 (2011)","journal-title":"Comput. Commun."},{"doi-asserted-by":"crossref","unstructured":"Kim, H., Claffy, K.C., Fomenkov, M., Barman, D., Faloutsos, M., Lee, K.: Internet traffic classification demystified: myths, caveats, and the best practices. In: Proceedings of the 2008 ACM CoNEXT Conference, pp. 11:1\u201311:12 (2008)","key":"38_CR9","DOI":"10.1145\/1544012.1544023"},{"doi-asserted-by":"crossref","unstructured":"Doshi, R., Apthorpe, N., Feamster, N.: Machine learning DDoS detection for consumer internet of things devices. In: IEEE Security and Privacy Workshops, pp. 29\u201335 (2018)","key":"38_CR10","DOI":"10.1109\/SPW.2018.00013"},{"key":"38_CR11","doi-asserted-by":"publisher","first-page":"100","DOI":"10.1016\/j.cose.2014.05.011","volume":"45","author":"S Garc\u00eda","year":"2014","unstructured":"Garc\u00eda, S., Grill, M., Stiborek, J., Zunino, A.: An empirical comparison of botnet detection methods. Comput. Secur. 45, 100\u2013123 (2014)","journal-title":"Comput. Secur."},{"doi-asserted-by":"crossref","unstructured":"Saad, S., et al.: Detecting P2P botnets through network behavior analysis and machine learning. In: 2011 Ninth Annual International Conference on Privacy, Security and Trust, pp. 174\u2013180 (2011)","key":"38_CR12","DOI":"10.1109\/PST.2011.5971980"},{"key":"38_CR13","doi-asserted-by":"publisher","first-page":"2","DOI":"10.1016\/j.cose.2013.04.007","volume":"39","author":"D Zhao","year":"2013","unstructured":"Zhao, D., et al.: Botnet detection based on traffic behavior analysis and flow intervals. Comput. Secur. 39, 2\u201316 (2013)","journal-title":"Comput. Secur."},{"key":"38_CR14","first-page":"75","volume":"8","author":"W Buntine","year":"1992","unstructured":"Buntine, W., Niblett, T.: A further comparison of splitting rules for decision-tree induction. Mach. Learn. 8, 75\u201385 (1992)","journal-title":"Mach. Learn."},{"unstructured":"Friedman, J.H.: Lazy decision trees. In: Proceedings of the Thirteenth National Conference on Artificial Intelligence, vol. 1, pp. 717\u2013724 (1996)","key":"38_CR15"},{"doi-asserted-by":"crossref","unstructured":"Dong, W., Moses, C., Li, K.: Efficient K-nearest neighbor graph construction for generic similarity measures. In: Proceedings of the 20th International Conference on World Wide Web, pp. 577\u2013586 (2011)","key":"38_CR16","DOI":"10.1145\/1963405.1963487"},{"issue":"1","key":"38_CR17","doi-asserted-by":"publisher","first-page":"113","DOI":"10.1016\/S0893-6080(03)00169-2","volume":"17","author":"V Cherkassky","year":"2004","unstructured":"Cherkassky, V., Ma, Y.: Practical selection of SVM parameters and noise estimation for SVM regression. Neural Netw. 17(1), 113\u2013126 (2004)","journal-title":"Neural Netw."},{"doi-asserted-by":"crossref","unstructured":"Al Nabki, M.W., Fidalgo, E., Alegre, E., de Paz, I.: Classifying illegal activities on TOR network based on web textual contents. In: Proceedings of the 15th Conference of the European Chapter of the Association for Computational Linguistics, vol. 1, pp. 35\u201343 (2017)","key":"38_CR18","DOI":"10.18653\/v1\/E17-1004"},{"key":"38_CR19","doi-asserted-by":"publisher","first-page":"119","DOI":"10.1016\/j.neucom.2016.02.045","volume":"197","author":"E Fidalgo","year":"2016","unstructured":"Fidalgo, E., Alegre, E., Gonz\u00e1lez-Castro, V., Fern\u00e1ndez-Robles, L.: Compass radius estimation for improved image classification using Edge-SIFT. Neurocomputing 197, 119\u2013135 (2016)","journal-title":"Neurocomputing"},{"key":"38_CR20","series-title":"Advances in Intelligent Systems and Computing","doi-asserted-by":"publisher","first-page":"600","DOI":"10.1007\/978-3-319-67180-2_58","volume-title":"International Joint Conference , Spain, September 6\u20138, 2017, Proceeding","author":"E Fidalgo","year":"2018","unstructured":"Fidalgo, E., Alegre, E., Gonz\u00e1lez-Castro, V., Fern\u00e1ndez-Robles, L.: Illegal activity categorisation in darknet based on image classification using CREIC method. In: P\u00e9rez Garc\u00eda, H., Alfonso-Cend\u00f3n, J., S\u00e1nchez Gonz\u00e1lez, L., Quinti\u00e1n, H., Corchado, E. (eds.) SOCO\/CISIS\/ICEUTE -2017. AISC, vol. 649, pp. 600\u2013609. Springer, Cham (2018). https:\/\/doi.org\/10.1007\/978-3-319-67180-2_58"},{"key":"38_CR21","doi-asserted-by":"publisher","first-page":"176","DOI":"10.1016\/j.patrec.2018.06.033","volume":"112","author":"E Fidalgo","year":"2018","unstructured":"Fidalgo, E., Alegre, E., Gonz\u00e1lez-Castro, V., Fern\u00e1ndez-Robles, L.: Boosting image classification through semantic attention filtering strategies. Pattern Recogn. Lett. 112, 176\u2013183 (2018)","journal-title":"Pattern Recogn. Lett."},{"doi-asserted-by":"crossref","unstructured":"Schneider, K.: A comparison of event models for Naive Bayes Anti-spam e-Mail Filtering. In: Proceedings of the Tenth Conference on European Chapter of the Association for Computational Linguistics, vol. 1, pp. 307\u2013314 (2003)","key":"38_CR22","DOI":"10.3115\/1067807.1067848"},{"issue":"1","key":"38_CR23","doi-asserted-by":"publisher","first-page":"48","DOI":"10.1177\/0165551516677946","volume":"44","author":"S Xu","year":"2018","unstructured":"Xu, S.: Bayesian Na\u00efve Bayes classifiers to text classification. J. Inf. Sci. 44(1), 48\u201359 (2018)","journal-title":"J. Inf. Sci."},{"doi-asserted-by":"crossref","unstructured":"Ren, J., Lee, S.D., Chen, X., Kao B., Cheng, R., Cheung, D.: Naive Bayes classification of uncertain data. In: 2009 Ninth IEEE International Conference on Data Mining, pp. 944\u2013949 (2009)","key":"38_CR24","DOI":"10.1109\/ICDM.2009.90"},{"issue":"5","key":"38_CR25","first-page":"1","volume":"1","author":"Y Sasaki","year":"2007","unstructured":"Sasaki, Y.: The truth of the F-measure. Teach Tutor mater 1(5), 1\u20135 (2007)","journal-title":"Teach Tutor mater"},{"issue":"8","key":"38_CR26","doi-asserted-by":"publisher","first-page":"861","DOI":"10.1016\/j.patrec.2005.10.010","volume":"27","author":"T Fawcett","year":"2006","unstructured":"Fawcett, T.: An introduction to ROC analysis. Pattern Recogn. Lett. 27(8), 861\u2013874 (2006)","journal-title":"Pattern Recogn. Lett."},{"key":"38_CR27","first-page":"1871","volume":"9","author":"RE Fan","year":"2008","unstructured":"Fan, R.E., Chang, K.W., Hsieh, C.J., Wang, X.R., Lin, C.J.: LIBLINEAR: a library for large linear classification. J. Mach. Learn. Res. 9, 1871\u20131874 (2008)","journal-title":"J. Mach. Learn. Res."},{"doi-asserted-by":"crossref","unstructured":"van Roosmalen, J., Vranken, H., van Eekelen, M.: Applying deep learning on packet flows for botnet detection. In: Proceedings of the 33rd Annual ACM Symposium on Applied Computing, pp. 1629\u20131636 (2018)","key":"38_CR28","DOI":"10.1145\/3167132.3167306"}],"container-title":["Lecture Notes in Computer Science","Hybrid Artificial Intelligent Systems"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-29859-3_38","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,3,12]],"date-time":"2024-03-12T18:29:10Z","timestamp":1710268150000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-030-29859-3_38"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019]]},"ISBN":["9783030298586","9783030298593"],"references-count":28,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-29859-3_38","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2019]]},"assertion":[{"value":"26 August 2019","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"HAIS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Hybrid Artificial Intelligence Systems","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Le\u00f3n","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Spain","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2019","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"4 September 2019","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"6 September 2019","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"14","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"hais2019","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"http:\/\/2019.haisconference.eu\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Single-blind","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"easychair","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"134","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"64","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"0","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"48% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"4","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"No","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}}]}}