{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,19]],"date-time":"2026-06-19T17:05:21Z","timestamp":1781888721061,"version":"3.54.5"},"publisher-location":"Berlin, Heidelberg","reference-count":40,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"value":"9783642368820","type":"print"},{"value":"9783642368837","type":"electronic"}],"license":[{"start":{"date-parts":[[2013,1,1]],"date-time":"2013-01-01T00:00:00Z","timestamp":1356998400000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2013]]},"DOI":"10.1007\/978-3-642-36883-7_10","type":"book-chapter","created":{"date-parts":[[2013,2,12]],"date-time":"2013-02-12T19:45:18Z","timestamp":1360698318000},"page":"149-166","source":"Crossref","is-referenced-by-count":43,"title":["BINSPECT: Holistic Analysis and Detection of Malicious Web Pages"],"prefix":"10.1007","author":[{"given":"Birhanu","family":"Eshete","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Adolfo","family":"Villafiorita","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Komminist","family":"Weldemariam","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","reference":[{"key":"10_CR1","unstructured":"Symantec: Symantec report on attack kits and malicious websites (July 2011), \n                  \n                    http:\/\/symantec.com\/content\/en\/us\/enterprise\/other_resources\/b-symantec_report_on_attack_kits_and_malicious_websites_21169171_WP.en-us.pdf"},{"key":"10_CR2","unstructured":"Symantec: Symantec web based attack prevalence report (July 2011), \n                  \n                    http:\/\/www.symantec.com\/business\/threatreport\/topic.jsp?id=threat_activity_trends&aid=web_based_attack_prevalence"},{"key":"10_CR3","unstructured":"WebSense: Websense 2010 threat report (July 2011), \n                  \n                    http:\/\/www.websense.com\/content\/threat-report-2010-highlights.aspx\/"},{"key":"10_CR4","unstructured":"Symantec: Internet security threat report 2011 trends (April 2012), \n                  \n                    http:\/\/www.symantec.com\/content\/en\/us\/enterprise\/other_resources\/b-istr_main_report_2011_21239364.en-us.pdf"},{"key":"10_CR5","doi-asserted-by":"crossref","unstructured":"Canali, D., Cova, M., Vigna, G., Kruegel, C.: Prophiler:a fast filter for the large-scale detection of malicious web pages. In: Proceedings of WWW, pp. 197\u2013206 (2011)","DOI":"10.1145\/1963405.1963436"},{"key":"10_CR6","doi-asserted-by":"crossref","unstructured":"Stone-Gross, B., Cova, M., Cavallaro, L., Gilbert, B., Szydlowski, M., Kemmerer, R., Kruegel, C., Vigna, G.: Your botnet is my botnet: analysis of a botnet takeover. In: Proceedings of the 16th ACM CCS, pp. 635\u2013647 (2009)","DOI":"10.1145\/1653662.1653738"},{"key":"10_CR7","doi-asserted-by":"crossref","unstructured":"Eshete, B., Villafiorita, A., Weldemariam, K.: Malicious website detection: Effectiveness and efficiency issues. In: Proceedings of SysSec Workshop, pp. 123\u2013126 (2011)","DOI":"10.1109\/SysSec.2011.9"},{"key":"10_CR8","unstructured":"Ma, J.: Learning to Detect Malicious URLs. PhD thesis, University of California, San Diego (2010)"},{"key":"10_CR9","doi-asserted-by":"crossref","unstructured":"Ma, J., Saul, L.K., Savage, S., Voelker, G.M.: Identifying suspicious urls: an application of large-scale online learning. In: Proceedings of ICML, pp. 681\u2013688 (2009)","DOI":"10.1145\/1553374.1553462"},{"key":"10_CR10","doi-asserted-by":"crossref","unstructured":"Ma, J., Saul, L.K., Savage, S., Voelker, G.M.: Beyond blacklists: learning to detect malicious web sites from suspicious urls. In: Proceedings of KDDM (2009)","DOI":"10.1145\/1557019.1557153"},{"key":"10_CR11","doi-asserted-by":"crossref","unstructured":"Thomas, K., Grier, C., Ma, J., Paxson, V., Song, D.: Design and Evaluation of a Real-Time URL Spam Filtering Service. In: Proceedings of the IEEE Symposium on Security and Privacy (2011)","DOI":"10.1109\/SP.2011.25"},{"key":"10_CR12","unstructured":"Choi, H., Zhu, B.B., Lee, H.: Detecting malicious web links and identifying their attack types. In: Proceedings of the 2nd USENIX Conference on Web Application Development, pp. 11\u201311 (2011)"},{"key":"10_CR13","doi-asserted-by":"crossref","unstructured":"Seifert, C., Welch, I., Komisarczuk, P., Aval, C.U., Endicott-Popovsky, B.: Identification of malicious web pages through analysis of underlying dns and web server relationships. In: 33rd IEEE Conference on Local Computer Networks (2008)","DOI":"10.1109\/LCN.2008.4664306"},{"issue":"1","key":"10_CR14","doi-asserted-by":"publisher","first-page":"55","DOI":"10.1016\/j.eswa.2009.05.023","volume":"37","author":"H. Yung-Tsung","year":"2010","unstructured":"Yung-Tsung, H., Yimeng, C., Tsuhan, C., Chi-Sung, L., Chia-Mei, C.: Malicious web content detection by machine learning. Expert Syst. Appl.\u00a037(1), 55\u201360 (2010)","journal-title":"Expert Syst. Appl."},{"key":"10_CR15","doi-asserted-by":"crossref","unstructured":"Seifert, C., Welch, I., Komisarczuk, P.: Identification of malicious web pages with static heuristics. In: Proceedings of the Australasian Telecommunication Networks and Applications Conference (2008)","DOI":"10.1109\/ATNAC.2008.4783302"},{"key":"10_CR16","doi-asserted-by":"crossref","unstructured":"Likarish, P., Jung, E., Jo, I.: Obfuscated malicious javascript detection using classification techniques. In: Proceedings of International Conference on Malicious and Unwanted Software (MALWARE), pp. 47\u201354 (October 2009)","DOI":"10.1109\/MALWARE.2009.5403020"},{"key":"10_CR17","doi-asserted-by":"crossref","unstructured":"Qassrawi, M., Zhang, H.: Detecting malicious web servers with honeyclients. Journal of Networks\u00a06(1) (2011)","DOI":"10.4304\/jnw.6.1.145-152"},{"key":"10_CR18","doi-asserted-by":"crossref","unstructured":"Dewald, A., Holz, T., Freiling, F.C.: Adsandbox: sandboxing javascript to fight malicious websites. In: ACM Symposium on Applied Computing, pp. 1859\u20131864 (2010)","DOI":"10.1145\/1774088.1774482"},{"key":"10_CR19","unstructured":"Marco, C., Christopher, K., Giovanni, V.: Detection and analysis of drive-by-download attacks and malicious javascript code. In: Proceedings of WWW, pp. 281\u2013290 (2010)"},{"key":"10_CR20","unstructured":"Alexander, M., Tanya, B., Damien, D., Gribble, S.D., Levy, H.M.: Spyproxy: execution-based detection of malicious web content. In: Proceedings of 16th USENIX Security Symposium, pp. 3:1\u20133:16 (2007)"},{"key":"10_CR21","doi-asserted-by":"crossref","unstructured":"Ford, S., Cova, M., Kruegel, C., Vigna, G.: Analyzing and detecting malicious flash advertisements. In: Proceedings of ACSAC (2009)","DOI":"10.1109\/ACSAC.2009.41"},{"key":"10_CR22","unstructured":"Ikinci, A., Holz, T., Freiling, F.: Monkey-spider: Detecting malicious websites with low-interaction honeyclients. In: Proceedings of Sicherheit, Schutz und Zuverlssigkeit, pp. 407\u2013421 (2008)"},{"key":"10_CR23","unstructured":"Byung-Ik, K., Chae-Tae, I., Hyun-Chul, J.: Suspicious malicious web site detection with strength analysis of a javascript obfuscation. International Journal of Advanced Science and Technology, 19\u201332 (2011)"},{"key":"10_CR24","doi-asserted-by":"crossref","unstructured":"Rieck, K., Krueger, T., Dewald, A.: Cujo: efficient detection and prevention of drive-by-download attacks. In: Proceedings ACSAC, pp. 31\u201339 (2010)","DOI":"10.1145\/1920261.1920267"},{"key":"10_CR25","doi-asserted-by":"crossref","unstructured":"Kolbitsch, C., Livshits, B., Zorn, B., Seifer, C.: Rozzle: De-cloaking internet malware. Technical report, Microsoft (2011)","DOI":"10.1109\/SP.2012.48"},{"key":"10_CR26","unstructured":"Google: Google safe browsing api (August 2011), \n                  \n                    http:\/\/code.google.com\/apis\/safebrowsing\/"},{"key":"10_CR27","unstructured":"McAfee: Mcafee site advisor (July 2011), \n                  \n                    http:\/\/www.siteadvisor.com"},{"key":"10_CR28","unstructured":"Armorize.: mysql.com hacked:infecting visitors with malware (September 2011), \n                  \n                    http:\/\/blog.armorize.com\/2011\/09\/mysqlcom-hacked-infecting-visitors-with.html"},{"key":"10_CR29","doi-asserted-by":"crossref","unstructured":"Egele, M., Kirda, E., Kruegel, C.: Mitigating drive-by download attacks: Challenges and open problems (2009)","DOI":"10.1007\/978-3-642-05437-2_5"},{"key":"10_CR30","unstructured":"Seo, D.: Facebook and twitter\u2019s influence on google\u2019s search rankings (May 2012), \n                  \n                    http:\/\/www.seomoz.org\/blog\/facebook-twitters-influence-google-search-rankings"},{"key":"10_CR31","unstructured":"HtmlUnit: Htmlunit (March 2012), \n                  \n                    http:\/\/htmlunit.sourceforge.net\/"},{"key":"10_CR32","unstructured":"Facebook: Facebook graph api (March 2012), \n                  \n                    https:\/\/developers.facebook.com\/docs\/reference\/api\/"},{"key":"10_CR33","unstructured":"Twitter: Twitter url api (March 2012), \n                  \n                    http:\/\/urls.api.twitter.com\/1\/urls\/"},{"key":"10_CR34","unstructured":"PhishTank: Phishtank developer information (September 2011), \n                  \n                    http:\/\/www.phishtank.com\/developer_info.php"},{"key":"10_CR35","unstructured":"MalwareURL: Malware urls (September 2011), \n                  \n                    http:\/\/www.malwareurl.com\/"},{"key":"10_CR36","unstructured":"Alexa: Alexa top 500 global websites (July 2011), \n                  \n                    http:\/\/www.alexa.com\/topsites"},{"key":"10_CR37","unstructured":"Yahoo: Yahoo random url generator (October 2011), \n                  \n                    http:\/\/random.yahoo.com\/bin\/yrl\/"},{"key":"10_CR38","unstructured":"DMOZ: Open directory project (September 2011), \n                  \n                    http:\/\/www.dmoz.org\/"},{"key":"10_CR39","doi-asserted-by":"crossref","unstructured":"Hall, M., Frank, E., Holmes, G., Pfahringer, B., Reutemann, P., Witten, I.H.: The weka data mining software: An update. SIGKDD Explorations\u00a011 (2009)","DOI":"10.1145\/1656274.1656278"},{"key":"10_CR40","unstructured":"UCSB: Wepawet (July 2011), \n                  \n                    http:\/\/wepawet.cs.ucsb.edu"}],"container-title":["Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","Security and Privacy in Communication Networks"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-36883-7_10","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,5,11]],"date-time":"2019-05-11T02:06:06Z","timestamp":1557540366000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-36883-7_10"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2013]]},"ISBN":["9783642368820","9783642368837"],"references-count":40,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-36883-7_10","relation":{},"ISSN":["1867-8211","1867-822X"],"issn-type":[{"value":"1867-8211","type":"print"},{"value":"1867-822X","type":"electronic"}],"subject":[],"published":{"date-parts":[[2013]]}}}