{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2022,4,1]],"date-time":"2022-04-01T08:46:20Z","timestamp":1648802780640},"reference-count":20,"publisher":"Springer Science and Business Media LLC","issue":"2","license":[{"start":{"date-parts":[[2015,2,6]],"date-time":"2015-02-06T00:00:00Z","timestamp":1423180800000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Cluster Comput"],"published-print":{"date-parts":[[2015,6]]},"DOI":"10.1007\/s10586-015-0431-2","type":"journal-article","created":{"date-parts":[[2015,2,5]],"date-time":"2015-02-05T06:40:17Z","timestamp":1423118417000},"page":"979-988","update-policy":"http:\/\/dx.doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":3,"title":["A behavioral anomaly detection strategy based on time series process portraits for desktop virtualization systems"],"prefix":"10.1007","volume":"18","author":[{"given":"Yanbing","family":"Liu","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Zhong","family":"Yuan","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Congcong","family":"Xing","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bo","family":"Gong","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yunpeng","family":"Xiao","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hong","family":"Liu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2015,2,6]]},"reference":[{"key":"431_CR1","doi-asserted-by":"crossref","unstructured":"Forrest, S., Hofmeyr, S.A., Somayaji, A., Longstaff, T.A.: A sense of self for unix processes. In: Proceedings of the 1996 IEEE Symposium on Security and Privacy, 120\u2013128 (1996)","DOI":"10.1109\/SECPRI.1996.502675"},{"key":"431_CR2","doi-asserted-by":"crossref","unstructured":"Garfinkel, T., Pfaff, B., Chow, J., Rosenblum, M., Boneh, D.: Terra: a virtual machine-based platform for trusted computing. In: Proceedings of the 19th ACM Symposium on Operating Systems Principles, 193\u2013206 (2003)","DOI":"10.1145\/945445.945464"},{"issue":"2","key":"431_CR3","doi-asserted-by":"crossref","first-page":"877","DOI":"10.1016\/j.physa.2005.12.035","volume":"369","author":"R Hidalgo","year":"2006","unstructured":"Hidalgo, R., C\u00e9sar, A.: Conditions for the emergence of scaling in the inter-event time of uncorrelated and seasonal systems. Phys. A 369(2), 877\u2013883 (2006)","journal-title":"Phys. A"},{"key":"431_CR4","doi-asserted-by":"crossref","unstructured":"Jiang, X., Wang, X., and Xu, D.: Stealthy malware detection through vmm-based out-of-the-box semantic view reconstruction. In: Proceedings of the 14th ACM Conference on Computer and Communications Security, 128\u2013138 (2007)","DOI":"10.1145\/1315245.1315262"},{"key":"431_CR5","unstructured":"Jiang, X., and Xu, D.: Collapsar: a VM-based architecture for network attack detention center. In: Proceedings of the 2004 USENIX Security Symposium, 15\u201328 (2004)"},{"key":"431_CR6","doi-asserted-by":"crossref","unstructured":"King, S.T., Chen, P.M., Wang, Y.M., Verbowski, C., Wang, H.J., Lorch, J.R.: SubVirt: implementing malware with virtual machines. In: Proceedings of the 2006 IEEE Symposium on Security and Privacy, 314\u2013327 (2006)","DOI":"10.1109\/SP.2006.38"},{"key":"431_CR7","unstructured":"Liang, Z., Venkatakrishnan, V.N., and Sekar, R.: Isolated program execution: an application transparent approach for executing untrusted programs. In: Proceedings of the 19th Annual Computer Security Applications Conference, 182\u2013191 (2003)"},{"key":"431_CR8","doi-asserted-by":"crossref","unstructured":"Liu, Y., Jia, S., Xing, C.: A novel behavior-based virus detection method for smart mobile terminals. Discrete Dyn. Nat. Soc. (2012). doi: 10.1155\/2012\/262193","DOI":"10.1155\/2012\/262193"},{"issue":"1","key":"431_CR9","doi-asserted-by":"crossref","first-page":"70","DOI":"10.15837\/ijccc.2013.1.170","volume":"8","author":"AM Lonea","year":"2012","unstructured":"Lonea, A.M., Popescu, D.E., Tianfield, H.: Detecting DDoS attacks in cloud computing environment. Int. J. Comput. Commun. Control 8(1), 70\u201378 (2012)","journal-title":"Int. J. Comput. Commun. Control"},{"key":"431_CR10","unstructured":"Melbourne Clouds Lab.: CloudSim: a framework for modeling and simulation of cloud computing infrastructures and services (2014). http:\/\/www.cloudbus.org\/cloudsim\/"},{"key":"431_CR11","doi-asserted-by":"crossref","unstructured":"Nikolai, J., Wang, Y.: Hypervisor-based cloud intrusion detection system. In: Proceedings of the 2014 International Conference on Computing, Networking and Communications, 989\u2013993 (2014). Accessed 12 April 2007","DOI":"10.1109\/ICCNC.2014.6785472"},{"issue":"1","key":"431_CR12","first-page":"4","volume":"3","author":"L Rabiner","year":"1986","unstructured":"Rabiner, L., Juang, B.H.: An introduction to hidden Markov models. IEEE Acoustics Speech Signal Process. Mag. 3(1), 4\u201316 (1986)","journal-title":"IEEE Acoustics Speech Signal Process. Mag."},{"key":"431_CR13","doi-asserted-by":"crossref","unstructured":"Rhee, J., Riley, R., Xu, D., Jiang, X.: Defeating dynamic data kernel rootkit attacks via vmm-based guest-transparent monitoring. In: Proceedings of the 2009 International Conference on Availability, Reliability and Security, 74\u201381 (2009)","DOI":"10.1109\/ARES.2009.116"},{"key":"431_CR14","doi-asserted-by":"crossref","unstructured":"Riley, R., Jiang, X., Xu, D.: Guest-transparent prevention of kernel rootkits with vmm-based memory shadowing. In: Proceedings of the 11th International Symposium on Recent Advances in Intrusion Detection, 1\u201320 (2008)","DOI":"10.1007\/978-3-540-87403-4_1"},{"key":"431_CR15","doi-asserted-by":"crossref","unstructured":"Sailer, R., Jaeger, T., Valdez, E., Caceres, R., Perez, R., Berger, S., Linwood Griffin, J., van Doorn, L.: Building a MAC-based security architecture for the Xen open-source hypervisor. In: Proceedings of the 21st Annual Computer Security Applications Conference. 276\u2013285 (2005)","DOI":"10.1109\/CSAC.2005.13"},{"key":"431_CR16","unstructured":"Santos, N., Gummadi, K.P., Rodrigues, R.: Towards trusted cloud computing. In: Proceedings of the 2009 Conference on Hot Topics in Cloud Computing, 3\u20133 (2009)"},{"key":"431_CR17","doi-asserted-by":"crossref","unstructured":"Shinagawa, T., Eiraku, H., Tanimoto, K., Omote, K., Hasegawa, S., Horie, T., Kourai, K., Oyama, Y., Kawai, E., Kono K., Chiba, S., Shinjo, Y., Kato, K.: Bitvisor: a thin hypervisor for enforcing i\/o device security. In: Proceedings of the 2009 ACM SIGPLAN\/SIGOPS International Conference on Virtual Execution Environments, 121\u2013130 (2009)","DOI":"10.1145\/1508293.1508311"},{"key":"431_CR18","doi-asserted-by":"crossref","unstructured":"Wang, Z., Jiang, X.: Hypersafe: a lightweight approach to provide lifetime hypervisor control-flow integrity. In: Proceedings of the 2010 IEEE Symposium on Security and Privacy, 380\u2013395 (2010)","DOI":"10.1109\/SP.2010.30"},{"key":"431_CR19","doi-asserted-by":"crossref","unstructured":"Wang, Z., Jiang, X., Cui, W., Ning, P.: Countering kernel rootkits with lightweight hook protection. In: Proceedings of the 16th ACM Conference on Computer and Communications Security, 545\u2013554 (2009)","DOI":"10.1145\/1653662.1653728"},{"key":"431_CR20","doi-asserted-by":"crossref","unstructured":"Yu, Y., Guo, F., Nanda, S., Lam, L.C., Chiueh, T.C.: A feather-weight virtual machine for windows applications. In: Proceedings of the 2nd International Conference on Virtual Execution Environments, 24\u201334 (2006)","DOI":"10.1145\/1134760.1134766"}],"container-title":["Cluster Computing"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s10586-015-0431-2.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/article\/10.1007\/s10586-015-0431-2\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s10586-015-0431-2","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,5,30]],"date-time":"2019-05-30T18:40:22Z","timestamp":1559241622000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/s10586-015-0431-2"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2015,2,6]]},"references-count":20,"journal-issue":{"issue":"2","published-print":{"date-parts":[[2015,6]]}},"alternative-id":["431"],"URL":"https:\/\/doi.org\/10.1007\/s10586-015-0431-2","relation":{},"ISSN":["1386-7857","1573-7543"],"issn-type":[{"value":"1386-7857","type":"print"},{"value":"1573-7543","type":"electronic"}],"subject":[],"published":{"date-parts":[[2015,2,6]]}}}