{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,16]],"date-time":"2025-10-16T10:05:17Z","timestamp":1760609117037,"version":"3.28.0"},"reference-count":56,"publisher":"IEEE","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2018,11]]},"DOI":"10.1109\/nca.2018.8548325","type":"proceedings-article","created":{"date-parts":[[2018,11,29]],"date-time":"2018-11-29T23:47:51Z","timestamp":1543535271000},"page":"1-9","source":"Crossref","is-referenced-by-count":6,"title":["The Effect on Network Flows-Based Features and Training Set Size on Malware Detection"],"prefix":"10.1109","author":[{"given":"Jarilyn M.","family":"Hernandez Jimenez","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Katerina","family":"Goseva-Popstojanova","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"journal-title":"Locky","year":"2016","key":"ref39"},{"journal-title":"Warning from FBI If you have &#x2018;Alureon&#x2019; virus on your PC you WILL get kicked off Internet on Monday","year":"2012","author":"wrenn","key":"ref38"},{"journal-title":"Payload-Security","year":"2016","key":"ref33"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/MALWARE.2010.5665796"},{"journal-title":"Clonezilla","year":"2016","key":"ref31"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1016\/j.diin.2007.06.003"},{"journal-title":"What is GREENCAT-2?","year":"2016","key":"ref37"},{"journal-title":"Tofsee malware distribution switched from exploit kit to spam","year":"2016","author":"kovacs","key":"ref36"},{"journal-title":"Win32\/gamarue","year":"2016","key":"ref35"},{"journal-title":"Dexter malware infects point-of-sale systems worldwide researchers say","year":"2016","author":"constantin","key":"ref34"},{"journal-title":"Clocksynchro","year":"2017","key":"ref28"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/HPCA.2015.7056070"},{"journal-title":"Wireshark","year":"2016","key":"ref29"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.4304\/jnw.6.4.638-645"},{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2011.98"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/JSYST.2014.2364743"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1186\/s13673-018-0125-x"},{"key":"ref21","article-title":"A survey of malware detection techniques","volume":"48","author":"idika","year":"2007","journal-title":"Purdue University"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/CyberSA.2015.7166128"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/SERE-C.2014.19"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1145\/3077286.3077295"},{"key":"ref25","first-page":"119","article-title":"System call-based detection of malicious processes","author":"canzanese","year":"2015","journal-title":"The Second International Conference on Availability Reliability and Security"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.17487\/rfc3954"},{"journal-title":"C4 5 Programs for Machine Learning","year":"1993","author":"quinlan","key":"ref51"},{"key":"ref56","doi-asserted-by":"publisher","DOI":"10.1093\/biomet\/70.1.163"},{"key":"ref55","doi-asserted-by":"publisher","DOI":"10.1145\/1656274.1656278"},{"key":"ref54","first-page":"144","article-title":"Generating accurate rule sets without global optimization","author":"frank","year":"1998","journal-title":"15th International Conference on Machine Learning"},{"key":"ref53","first-page":"338","article-title":"Estimating continuous distributions in bayesian classifiers","author":"john","year":"1995","journal-title":"Conference on Uncertainty in Artificial Intelligence (UAI)"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1023\/A:1010933404324"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/IEMCON.2017.8117179"},{"key":"ref11","first-page":"87","article-title":"Peer to peer botnet detection based on flow intervals","author":"zhao","year":"2012","journal-title":"IFIP International Information Security Conference (SEC)"},{"journal-title":"Welcome to Chromium","year":"2016","key":"ref40"},{"key":"ref12","first-page":"66","article-title":"Malware detection using network traffic analysis in Android based mobile devices","author":"arora","year":"2014","journal-title":"8th IEEE Conference on Next Generation Mobile Applications Security and Technologies (NGMAST)"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2017.2771228"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/WETICE.2005.40"},{"key":"ref15","first-page":"1","article-title":"Flow-based worm detection using correlated honeypot logs","author":"dressler","year":"2007","journal-title":"ITG-GI Conference in Communication in Distributed Systems"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/CNS.2015.7346821"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/ICOIN.2018.8343255"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/ICDFMA.2008.4784437"},{"key":"ref19","doi-asserted-by":"crossref","first-page":"121","DOI":"10.1007\/978-3-319-17533-1_9","article-title":"On the effectiveness of different botnet detection approaches","author":"haddadi","year":"2015","journal-title":"Information Security Practice and Experience Conference (ISPEC"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1145\/2746266.2746279"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.4304\/jcp.8.10.2469-2477"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/PRDC.2017.28"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1016\/S1361-3723(13)70072-1"},{"journal-title":"Machine learning for cybersecurity Network-based botnet detection using time-limited flows","year":"2017","author":"ding","key":"ref8"},{"key":"ref7","first-page":"27","article-title":"Ma-chine learning for HTTP botnet detection using classifier algorithms","volume":"10","author":"dollah","year":"2018","journal-title":"Journal of Telecommunication Electronic and Computer Engineering"},{"journal-title":"TRANALYZER2","year":"2018","key":"ref49"},{"key":"ref9","first-page":"3","article-title":"Salting public traces with attack traffic to test flow classifiers","author":"celik","year":"2011","journal-title":"4th Workshop on Cyber Security Experimentation and Test (CSET"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2017.11.016"},{"journal-title":"XtremeMark","year":"2017","key":"ref45"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.4236\/jis.2014.52006"},{"journal-title":"User space","year":"2018","key":"ref47"},{"journal-title":"Windows Media Player","year":"2017","key":"ref42"},{"journal-title":"VLC Media Player","year":"2017","key":"ref41"},{"journal-title":"Heavyload","year":"2017","key":"ref44"},{"journal-title":"IntelBurnTest","year":"2017","key":"ref43"}],"event":{"name":"2018 IEEE 17th International Symposium on Network Computing and Applications (NCA)","start":{"date-parts":[[2018,11,1]]},"location":"Cambridge, MA","end":{"date-parts":[[2018,11,3]]}},"container-title":["2018 IEEE 17th International Symposium on Network Computing and Applications (NCA)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/8533540\/8548052\/08548325.pdf?arnumber=8548325","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,1,27]],"date-time":"2022-01-27T16:51:20Z","timestamp":1643302280000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/8548325\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,11]]},"references-count":56,"URL":"https:\/\/doi.org\/10.1109\/nca.2018.8548325","relation":{},"subject":[],"published":{"date-parts":[[2018,11]]}}}