{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,12,4]],"date-time":"2025-12-04T09:48:19Z","timestamp":1764841699593,"version":"3.40.3"},"publisher-location":"Berlin, Heidelberg","reference-count":21,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783642304354"},{"type":"electronic","value":"9783642304361"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2012]]},"DOI":"10.1007\/978-3-642-30436-1_8","type":"book-chapter","created":{"date-parts":[[2012,6,5]],"date-time":"2012-06-05T16:20:29Z","timestamp":1338913229000},"page":"87-102","source":"Crossref","is-referenced-by-count":26,"title":["Peer to Peer Botnet Detection Based on Flow Intervals"],"prefix":"10.1007","author":[{"given":"David","family":"Zhao","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Issa","family":"Traore","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ali","family":"Ghorbani","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bassam","family":"Sayed","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Sherif","family":"Saad","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Wei","family":"Lu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"8_CR1","volume-title":"Proceedings of the 6th ACM SIGCOMM Conference on Internet Measurement","author":"R.M. Abu","year":"2006","unstructured":"Abu, R.M., et al.: A Multifaceted Approach to Understanding the Botnet Phenomenon. In: Proceedings of the 6th ACM SIGCOMM Conference on Internet Measurement. ACM, New York (2006) ISBN:1-59593-561-4"},{"key":"8_CR2","volume-title":"Proceedings of the First Conference on First Workshop on Hot Topics in Understanding Botnets","author":"J.B. Grizzard","year":"2007","unstructured":"Grizzard, J.B., et al.: Peer-to-Peer Botnets: Overview and Case Study. In: Proceedings of the First Conference on First Workshop on Hot Topics in Understanding Botnets. USENIX Association, Berkeley (2007)"},{"key":"8_CR3","volume-title":"Proceedings of the 1st Usenix Workshop on Large-Scale Exploits and Emergent Threats","author":"T. Holz","year":"2008","unstructured":"Holz, T., et al.: Measurements and Mitigation of Peer-to-Peer-based Botnets: A Case Study on Storm Worm. In: Proceedings of the 1st Usenix Workshop on Large-Scale Exploits and Emergent Threats. USENIX Association, Berkeley (2008)"},{"key":"8_CR4","doi-asserted-by":"crossref","unstructured":"Faily, M., Shahrestani, A., Ramadass, S.: A Survey of Botnet and Botnet Detection. In: Third International Conference on Emerging Security Information, Systems and Technologies (2009)","DOI":"10.1109\/SECURWARE.2009.48"},{"key":"8_CR5","volume-title":"International Workshop on Advances in Information Security","author":"J. Leonard","year":"2009","unstructured":"Leonard, J., Shouhuai, X., Sandhu, R.: A Framework for Understanding Botnets. In: International Workshop on Advances in Information Security. Fukuoka Institute of Technology, Fukuoka (2009)"},{"key":"8_CR6","doi-asserted-by":"crossref","unstructured":"Sperotto, A., et al.: An Overview of IP Flow-Based Intrusion Detection. IEEE Communications Surveys & Tutorial\u00a012(3) (2010)","DOI":"10.1109\/SURV.2010.032210.00054"},{"key":"8_CR7","unstructured":"Gu, G., et al.: BotHunter: Deteting Malware Infection Through IDS-Driven Dialog Correlation. In: Proceedings of the 16th USENIX Security Symposium, pp. 167\u2013182 (2007)"},{"key":"8_CR8","unstructured":"Gu, G., et al.: BotMiner: clustering analysis of network traffic for protocol- and structure-independent botnet detection. In: Proceedings of the 17th Conference on Security Symposium, San Jose (2008)"},{"key":"8_CR9","doi-asserted-by":"crossref","unstructured":"Yu, X., et al.: Online Botnet Detection Based on Incremental Discrete Fourier Transform. Journal of Networks\u00a05(5) (2010)","DOI":"10.4304\/jnw.5.5.568-576"},{"key":"8_CR10","unstructured":"Livadas, C., et al.: Using Machine Learning Techniques to Identify Botnet Traffic. In: 2nd IEEE LCN Workshop on Network Security, pp. 967\u2013974 (2006)"},{"key":"8_CR11","doi-asserted-by":"crossref","unstructured":"Wang, B., et al.: Measuring Peer-to-Peer Botnets Using Control Flow Stability. In: International Conference on Availability, Reliability and Security, Fukuoka, p. 663 (2009), 978-1-4244-3572-2","DOI":"10.1109\/ARES.2009.59"},{"key":"8_CR12","doi-asserted-by":"crossref","unstructured":"Al-Duwairi, B., Al-Ebbini, L.: BotDigger: A Fuzzy Inference System for Botnet Detection. In: The Fifth International Conference on Internet and Applications and Services, Barcelona (2010)","DOI":"10.1109\/ICIMP.2010.11"},{"key":"8_CR13","unstructured":"Gu, G., Zhang, J., Lee, W.: BotSniffer: Detecting botnet command and control channels in network traffic. In: Proceedings of the 15th Annual Network and Distributed System Security Symposium (2008)"},{"key":"8_CR14","first-page":"2035","volume-title":"Proceedings of the 2009 ACM Symposium on Applied Computing","author":"V.-S. Ricardo","year":"2009","unstructured":"Ricardo, V.-S., Jos\u00e9, B.C.: Bayesian Bot Detection Based on DNS Traffic Similarity. In: Proceedings of the 2009 ACM Symposium on Applied Computing, pp. 2035\u20132041. ACM, Honolulu (2009), 978-1-60558-166-8"},{"key":"8_CR15","doi-asserted-by":"crossref","unstructured":"Jun, L., et al.: P2P Traffic Identification Technique. In: International Conference on Computational Intelligence and Security, Harbin, pp. 37\u201341 (2007), 0-7695-3072-9","DOI":"10.1109\/CIS.2007.81"},{"key":"8_CR16","doi-asserted-by":"crossref","unstructured":"Sinclair, G., Nunnery, C., Kang, B.B.: The Waledac Protocol: The How and Why. In: Proceeding of 4th IEEE International Conference on Malicious and Unwanted Software (2009)","DOI":"10.1109\/MALWARE.2009.5403015"},{"key":"8_CR17","unstructured":"The Honeynet Project, French Chapter | The Honeynet Project. The Honeynet Project, http:\/\/www.honeynet.org\/chapters\/france"},{"key":"8_CR18","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"72","DOI":"10.1007\/978-3-540-79232-1_8","volume-title":"Passive and Active Network Measurement","author":"G. Szab\u00f3","year":"2008","unstructured":"Szab\u00f3, G., Orincsay, D., Malomsoky, S., Szab\u00f3, I.: On the Validation of Traffic Classification Algorithms. In: Claypool, M., Uhlig, S. (eds.) PAM 2008. LNCS, vol.\u00a04979, pp. 72\u201381. Springer, Heidelberg (2008)"},{"key":"8_CR19","unstructured":"Lawrence Berkeley National Laboratory and ICSI., LBNL\/ICSI Enterprise Tracing Project. LBNL Enterprise Trace Repository (2005), http:\/\/www.icir.org\/enterprise-tracing"},{"key":"8_CR20","unstructured":"Witten, I.H., et al.: Weka: Practical Machine Learning Tools and Techniques (1999)"},{"key":"8_CR21","unstructured":"Roesch, M.: Snort - lightweight intrusion detection for networks. In: Proceedings of USENIX LISA 1999 (1999)"}],"container-title":["IFIP Advances in Information and Communication Technology","Information Security and Privacy Research"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-30436-1_8.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,3,29]],"date-time":"2025-03-29T10:10:07Z","timestamp":1743243007000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-30436-1_8"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2012]]},"ISBN":["9783642304354","9783642304361"],"references-count":21,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-30436-1_8","relation":{},"ISSN":["1868-4238","1861-2288"],"issn-type":[{"type":"print","value":"1868-4238"},{"type":"electronic","value":"1861-2288"}],"subject":[],"published":{"date-parts":[[2012]]}}}