{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,9,6]],"date-time":"2024-09-06T15:52:11Z","timestamp":1725637931435},"publisher-location":"Berlin, Heidelberg","reference-count":13,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783642271885"},{"type":"electronic","value":"9783642271892"}],"license":[{"start":{"date-parts":[[2011,1,1]],"date-time":"2011-01-01T00:00:00Z","timestamp":1293840000000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2011]]},"DOI":"10.1007\/978-3-642-27189-2_23","type":"book-chapter","created":{"date-parts":[[2011,12,2]],"date-time":"2011-12-02T14:52:18Z","timestamp":1322837538000},"page":"215-227","source":"Crossref","is-referenced-by-count":0,"title":["A Lightweight Access Log Filter of Windows OS Using Simple Debug Register Manipulation"],"prefix":"10.1007","author":[{"given":"Ruo","family":"Ando","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Kuniyasu","family":"Suzaki","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"23_CR1","unstructured":"Garfinkel, T., Rosenblu, M.: A Virtual Machine Introspection Based Architecture for Intrusion Detection. In: The Internet Society\u2019s 2003 Symposium on Network and Distributed System Security (NDSS), pp. 191\u2013206 (February 2003)"},{"issue":"5","key":"23_CR2","doi-asserted-by":"publisher","first-page":"32","DOI":"10.1109\/MSP.2008.134","volume":"6","author":"K. Nance","year":"2008","unstructured":"Nance, K., Bishop, M., Hay, B.: Virtual Machine Introspection: Observation or Interference? IEEE Security and Privacy\u00a06(5), 32\u201337 (2008)","journal-title":"IEEE Security and Privacy"},{"key":"23_CR3","doi-asserted-by":"crossref","unstructured":"Barham, P., Dragovic, B., Fraser, K., Hand, S., Harris, T., Ho, A., Neugebauer, R., Pratt, I., Wareld, A.: Xen and the Art of Virtualization. In: Proceedings of the 19th ACM SOSP, pp. 164\u2013177 (October 2003)","DOI":"10.1145\/945445.945462"},{"key":"23_CR4","doi-asserted-by":"crossref","unstructured":"Waldspurger, C.A.: Memory resource management in VMware ESX server. In: Proceedings of the 5th Symposium on Operating Systems Design and Implementation, pp. 181\u2013194 (December 2002)","DOI":"10.1145\/1060289.1060307"},{"key":"23_CR5","unstructured":"Kernal Virtual Machine, \n                  \n                    http:\/\/sourceforge.net\/projects\/kvm"},{"key":"23_CR6","doi-asserted-by":"crossref","unstructured":"Dunlap, G.W., King, S.T., Cinar, S., Basrai, M., Chen, P.M.: ReVirt: Enabling intrusion analysis through virtual-machine logging and replay. In: Proceedings of the 2002 Symposium on Operating Systems Design and Implementation (OSDI 2002), Boston, MA (December 2002)","DOI":"10.1145\/1060289.1060309"},{"key":"23_CR7","unstructured":"King, S., Dunlap, G., Chen, P.: Debugging Operating Systems with Time-Traveling Virtual Machines. In: Proc. Annual Usenix Tech. Conf., Usenix Assoc. (2005), \n                  \n                    www.usenix.org\/events\/usenix05\/tech\/general\/king\/king.pdf"},{"key":"23_CR8","unstructured":"Whitaker, A., et al.: Constructing Services with Interposable Virtual Hardware. In: Proc. 1st Symp. Networked Systems Design and Implementation (NSDI 2004) (March 2004)"},{"key":"23_CR9","doi-asserted-by":"crossref","unstructured":"Payne, B., et al.: Lares: An Architecture for Secure Active Monitoring Using Virtualization. In: Proc. IEEE Symp. Security and Privacy, pp. 233\u2013247. IEEE CS Press (2008)","DOI":"10.1109\/SP.2008.24"},{"key":"23_CR10","doi-asserted-by":"crossref","unstructured":"Jones, S., Arpaci-Dusseau, A., Arpaci-Dusseau, R.: VMM-based Hidden Process Detection and Identification Using Lycosid. In: Proc. ACM Int. Conf. Virtual Execution Environments (VEE 2008), pp. 91\u2013100. ACM Press (2008)","DOI":"10.1145\/1346256.1346269"},{"key":"23_CR11","unstructured":"Jones, S., Arpaci-Dusseau, A., Arpaci-Dusseau, R.: AntFarm: Tracking Processes in a Virtual Machine Environment. In: Proc. Annual Usenix Tech. Conf., Usenix Assoc., pp. 1\u201314 (2008)"},{"key":"23_CR12","unstructured":"Litty, L., Lagar-Cavilla, H.A.: Hypervisor Support for Identifying Covertly Executing Binaries. In: The 17th USENIX Security Symposium, Usenix 2008 (July - August 2008)"},{"key":"23_CR13","unstructured":"XenAccess, \n                  \n                    http:\/\/doc.xenaccess.org\/"}],"container-title":["Communications in Computer and Information Science","Security Technology"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-27189-2_23","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,4,20]],"date-time":"2019-04-20T03:20:24Z","timestamp":1555730424000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-27189-2_23"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2011]]},"ISBN":["9783642271885","9783642271892"],"references-count":13,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-27189-2_23","relation":{},"ISSN":["1865-0929","1865-0937"],"issn-type":[{"type":"print","value":"1865-0929"},{"type":"electronic","value":"1865-0937"}],"subject":[],"published":{"date-parts":[[2011]]}}}