{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,9,6]],"date-time":"2024-09-06T11:00:59Z","timestamp":1725620459773},"publisher-location":"Berlin, Heidelberg","reference-count":31,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783642248603"},{"type":"electronic","value":"9783642248610"}],"license":[{"start":{"date-parts":[[2011,1,1]],"date-time":"2011-01-01T00:00:00Z","timestamp":1293840000000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2011]]},"DOI":"10.1007\/978-3-642-24861-0_10","type":"book-chapter","created":{"date-parts":[[2011,10,12]],"date-time":"2011-10-12T01:18:10Z","timestamp":1318382290000},"page":"135-151","source":"Crossref","is-referenced-by-count":9,"title":["RatBot: Anti-enumeration Peer-to-Peer Botnets"],"prefix":"10.1007","author":[{"given":"Guanhua","family":"Yan","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Songqing","family":"Chen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Stephan","family":"Eidenbenz","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"10_CR1","unstructured":"http:\/\/www.ip2location.com\/"},{"key":"10_CR2","unstructured":"http:\/\/www.amule.org"},{"key":"10_CR3","unstructured":"http:\/\/asert.arbornetworks.com\/2010\/12\/the-internet-goes-to-war\/"},{"key":"10_CR4","series-title":"Advances in Information Security","doi-asserted-by":"publisher","DOI":"10.1007\/978-0-387-44599-1_8","volume-title":"Malware Detection","author":"P. Barford","year":"2007","unstructured":"Barford, P., Yegneswaran, V.: An Inside Look at Botnets. In: Malware Detection. Advances in Information Security, vol.\u00a027. Springer, US (2007)"},{"key":"10_CR5","doi-asserted-by":"crossref","unstructured":"Beverly, R., Berger, A., Hyun, Y., Claffy, K.: Understanding the efficacy of deployed Internet source address validation filtering. In: Proceedings of ACM IMC 2009 (2009)","DOI":"10.1145\/1644893.1644936"},{"key":"10_CR6","unstructured":"http:\/\/isisblogs.poly.edu\/2008\/05\/19\/storm-worm-ip-list-and-country-distribution-statistics"},{"key":"10_CR7","unstructured":"http:\/\/www.net-security.org\/secworld.php?id=8858"},{"key":"10_CR8","unstructured":"Dagon, D., Zou, C.C., Lee, W.: Modeling botnet propagation using time zones. In: Proceedings of NDSS 2006 (2006)"},{"key":"10_CR9","unstructured":"Goebel, J., Holz, T.: Rishi: identify bot contaminated hosts by IRC nickname evaluation. In: Proceedings of HotBots 2007 (2007)"},{"key":"10_CR10","unstructured":"Gu, G., Perdisci, R., Zhang, J., Lee, W.: BotMiner: Clustering analysis of network traffic for protocol- and structure-independent botnet detection. In: Proceedings of USENIX Security 2008 (2008)"},{"key":"10_CR11","unstructured":"Gu, G., Porras, P., Yegneswaran, V., Fong, M., Lee, W.: BotHunter: Detecting malware infection through ids-driven dialog correlation. In: USENIX Security 2007 (2007)"},{"key":"10_CR12","unstructured":"Holz, T., Steiner, M., Dahl, F., Biersack, E., Freiling, F.: Measurements and mitigation of peer-to-peer-based botnets: a case study on storm worm. In: LEET 2008 (2008)"},{"key":"10_CR13","doi-asserted-by":"crossref","unstructured":"Kang, B.B., Chan-Tin, E., Lee, C.P., Tyra, J., Kang, H.J., Nunnery, C., Wadler, Z., Sinclair, G., Hopper, N., Dagon, D., Kim, Y.: Towards complete node enumeration in a peer-to-peer botnet. In: Proceedings of ACM ASIACCS 2009 (2009)","DOI":"10.1145\/1533057.1533064"},{"key":"10_CR14","unstructured":"Karasaridis, A., Rexroad, B., Hoeflin, D.: Wide-scale botnet detection and characterization. In: Proceedings of HotBots 2007 (2007)"},{"key":"10_CR15","doi-asserted-by":"crossref","unstructured":"Maymounkov, P., Mazi\u00e8res, D.: Kademlia: A peer-to-peer information system based on the XOR metric. In: Proceedings of IPTPS 2001 (2001)","DOI":"10.1007\/3-540-45748-8_5"},{"key":"10_CR16","unstructured":"Pietrzyk, M., Urvoy-Keller, G., Costeux, J.-L.: Digging into kad users\u2019 shared folders. In: Posters of ACM SIGCOMM 2008 (2008)"},{"key":"10_CR17","unstructured":"Porras, P., Saidi, H., Yegneswaran, V.: Conficker C P2P protocol and implementation (September 2009), http:\/\/mtc.sri.com\/Conficker\/P2P\/"},{"key":"10_CR18","unstructured":"Rajab, M.A., Zarfoss, J., Monrose, F., Terzis, A.: My botnet is bigger than yours (maybe, better than yours): why size estimates remain challenging. In: HotBots 2007 (2007)"},{"key":"10_CR19","unstructured":"Ramachandran, A., Feamster, N., Dagon, D.: Revealing botnet membership using dnsbl counter-intelligence. In: Proceedings of SRUTI 2006 (2006)"},{"key":"10_CR20","doi-asserted-by":"crossref","unstructured":"Starnberger, G., Kruegel, C., Kirda, E.: Overbot: a botnet protocol based on kademlia. In: Proceedings of SecureComm 2008 (2008)","DOI":"10.1145\/1460877.1460894"},{"key":"10_CR21","doi-asserted-by":"crossref","unstructured":"Steiner, M., En-Najjary, T., Biersack, E.W.: A global view of kad. In: IMC 2007 (2007)","DOI":"10.1145\/1298306.1298323"},{"key":"10_CR22","unstructured":"Steiner, M., En-Najjary, T., Biersack, E.W.: Analyzing peer behavior in kad. Technical Report EURECOM+2358, Institut Eurecom, France (October 2007)"},{"key":"10_CR23","doi-asserted-by":"crossref","unstructured":"Stock, B., Gobel, J., Engelberth, M., Freiling, F.C., Holz, T.: Walowdac - analysis of a peer-to-peer botnet. In: Proceedings of the 2009 European Conference on Computer Network Defense (2009)","DOI":"10.1109\/EC2ND.2009.10"},{"key":"10_CR24","doi-asserted-by":"crossref","unstructured":"Stone-Gross, B., Cova, M., Cavallaro, L., Gilbert, B., Szydlowski, M., Kemmerer, R., Kruegel, C., Vigna, G.: Your botnet is my botnet: Analysis of a botnet takeover. In: Proceedings of the ACM CCS 2009 (2009)","DOI":"10.1145\/1653662.1653738"},{"key":"10_CR25","unstructured":"http:\/\/www.neoseeker.com\/news\/7103-worm-storm-gathers-strength\/"},{"key":"10_CR26","doi-asserted-by":"crossref","unstructured":"Stover, S., Dittrich, D., Hernandez, J., Dietrich, S.: Analysis of the storm and nugache trojans: P2p is here. Login\u00a032(6) (December 2007)","DOI":"10.1016\/S0262-4079(07)61440-7"},{"key":"10_CR27","unstructured":"Vogt, R., Aycock, J., Jacobson, M.J.: Army of botnets. In: NDSS 2007 (2007)"},{"key":"10_CR28","unstructured":"Wang, P., Sparks, S., Zou, C.C.: An advanced hybrid peer-to-peer botnet. In: Proceedings of HotBots 2007 (2007)"},{"key":"10_CR29","doi-asserted-by":"crossref","unstructured":"Xie, Y., Yu, F., Achan, K., Gillum, E., Goldszmidt, M., Wobber, T.: How dynamic are ip addresses? In: Proceedings of ACM SIGCOMM 2007 (2007)","DOI":"10.1145\/1282380.1282415"},{"key":"10_CR30","doi-asserted-by":"crossref","unstructured":"Yan, G., Ha, D.T., Eidenbenz, S.: AntBot: Anti-pollution peer-to-peer botnets. Computer Networks\u00a055(8) (June 2011)","DOI":"10.1016\/j.comnet.2011.02.006"},{"key":"10_CR31","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"207","DOI":"10.1007\/978-3-540-70542-0_11","volume-title":"Detection of Intrusions and Malware, and Vulnerability Assessment","author":"T.-F. Yen","year":"2008","unstructured":"Yen, T.-F., Reiter, M.K.: Traffic aggregation for malware detection. In: Zamboni, D. (ed.) DIMVA 2008. LNCS, vol.\u00a05137, pp. 207\u2013227. Springer, Heidelberg (2008)"}],"container-title":["Lecture Notes in Computer Science","Information Security"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-24861-0_10","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,6,17]],"date-time":"2019-06-17T10:07:14Z","timestamp":1560766034000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-24861-0_10"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2011]]},"ISBN":["9783642248603","9783642248610"],"references-count":31,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-24861-0_10","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2011]]}}}