{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,9,11]],"date-time":"2025-09-11T11:03:56Z","timestamp":1757588636659},"reference-count":53,"publisher":"Springer Science and Business Media LLC","issue":"3","license":[{"start":{"date-parts":[[2012,8,16]],"date-time":"2012-08-16T00:00:00Z","timestamp":1345075200000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["J Supercomput"],"published-print":{"date-parts":[[2012,12]]},"DOI":"10.1007\/s11227-012-0812-8","type":"journal-article","created":{"date-parts":[[2012,8,15]],"date-time":"2012-08-15T09:27:50Z","timestamp":1345022870000},"page":"1451-1479","source":"Crossref","is-referenced-by-count":6,"title":["Strategy of fast and light-load cloud-based proactive benign worm countermeasure technology to contain worm propagation"],"prefix":"10.1007","volume":"62","author":[{"given":"Xufei","family":"Zheng","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Tao","family":"Li","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yonghui","family":"Fang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2012,8,16]]},"reference":[{"key":"812_CR1","unstructured":"Eugene SH (1988) The Internet worm program: an analysis. Technical report, CSD-TR-823, pp\u00a01\u201329"},{"key":"812_CR2","first-page":"287","volume-title":"Proceedings of USENIX technical","author":"D Seeley","year":"1989","unstructured":"Seeley D (1989) A tour of the worm. In: Proceedings of USENIX technical. pp 287\u2013304"},{"key":"812_CR3","unstructured":"Porras P, Saidi H, Yegneswaran V (2011) An analysis of conficker\u2019s logic and rendezvous protocol. http:\/\/mtc.sri.com\/Conficker\/ . Accessed 16 March 2011"},{"key":"812_CR4","unstructured":"Williams A (2011) The largest cloud in the world is owned by a criminal. http:\/\/www.readwriteweb.com\/cloud\/2010\/04\/the-largest-cloud-in-the-world.php . Accessed 12 April 2011"},{"key":"812_CR5","unstructured":"Symantec (2010) Symantec global Internet security threat report trends for 2009. Technical report, XV"},{"key":"812_CR6","first-page":"149","volume-title":"Proceedings of the 11th USENIX security symposium","author":"S Staniford","year":"2002","unstructured":"Staniford S, Paxson V, Weaver N (2002) How to own the Internet in your spare time. In: Proceedings of the 11th USENIX security symposium, pp 149\u2013167"},{"key":"812_CR7","doi-asserted-by":"crossref","first-page":"83","DOI":"10.1145\/1029618.1029631","volume-title":"Proceedings of the 2004 ACM workshop on rapid malcode","author":"F Castaneda","year":"2004","unstructured":"Castaneda F, Can Sezer E, Xu J (2004) WORM vs WORM: preliminary study of an active counter-attack mechanism. In: Proceedings of the 2004 ACM workshop on rapid malcode, pp 83\u201393"},{"key":"812_CR8","doi-asserted-by":"crossref","first-page":"334","DOI":"10.1016\/j.cose.2004.10.001","volume":"24","author":"S Qing","year":"2005","unstructured":"Qing S, Wen W (2005) A survey and trends on Internet worms. Comput Secur 24:334\u2013346. doi: 10.1016\/j.cose.2004.10.001","journal-title":"Comput Secur"},{"issue":"1","key":"812_CR9","doi-asserted-by":"crossref","first-page":"22","DOI":"10.1016\/0167-4048(87)90122-2","volume":"6","author":"F Cohen","year":"1987","unstructured":"Cohen F (1987) Computer viruses: theory and experiments. Comput Secur 6(1):22\u201335. doi: 10.1016\/0167-4048(87)90122-2","journal-title":"Comput Secur"},{"key":"812_CR10","volume-title":"The mathematical theory of infectious diseases and its applications","author":"NTJ Bailey","year":"1975","unstructured":"Bailey NTJ (1975) The mathematical theory of infectious diseases and its applications. Hafner Press, New York"},{"key":"812_CR11","doi-asserted-by":"crossref","DOI":"10.1007\/978-3-642-67795-3","volume-title":"Mathematical modeling in epidemiology","author":"JC Frauenthal","year":"1980","unstructured":"Frauenthal JC (1980) Mathematical modeling in epidemiology. Springer, New York"},{"key":"812_CR12","doi-asserted-by":"crossref","DOI":"10.1093\/oso\/9780198545996.001.0001","volume-title":"Infectious diseases of humans: dynamics and control","author":"RM Anderson","year":"1991","unstructured":"Anderson RM, May RM (1991) Infectious diseases of humans: dynamics and control. Oxford University Press, London"},{"key":"812_CR13","first-page":"343","volume-title":"Proceedings of IEEE symposium on security and privacy","author":"JO Kephart","year":"1991","unstructured":"Kephart JO, White SR (1991) Directed-graph epidemiological models of computer viruses. In: Proceedings of IEEE symposium on security and privacy, pp 343\u2013359"},{"issue":"5","key":"812_CR14","doi-asserted-by":"crossref","first-page":"20","DOI":"10.1109\/6.275061","volume":"30","author":"JO Kephart","year":"1993","unstructured":"Kephart JO, Chess DM, White SR (1993) Computers and epidemiology. IEEE Spectr 30(5):20\u201326","journal-title":"IEEE Spectr"},{"key":"812_CR15","doi-asserted-by":"crossref","DOI":"10.1007\/978-1-4612-1158-7","volume-title":"Stochastic epidemic models and their statistical analysis","author":"H Andersson","year":"2000","unstructured":"Andersson H, Britton T (2000) Stochastic epidemic models and their statistical analysis. Springer, New York"},{"key":"812_CR16","doi-asserted-by":"crossref","first-page":"138","DOI":"10.1145\/586110.586130","volume-title":"Proceedings of the 9th ACM conference on computer and communications security","author":"CC Zou","year":"2002","unstructured":"Zou CC, Gong W, Towsley D (2002) Code red worm propagation modeling and analysis. In: Proceedings of the 9th ACM conference on computer and communications security, pp 138\u2013147"},{"key":"812_CR17","volume-title":"IEEE INFOCOM 2003","author":"Z Chen","year":"2003","unstructured":"Chen Z, Gao L, Kwiat K (2003) Modeling the spread of active worms. In: IEEE INFOCOM 2003"},{"issue":"1","key":"812_CR18","doi-asserted-by":"crossref","first-page":"31","DOI":"10.3844\/jcssp.2005.31.34","volume":"1","author":"JRC Piqueira","year":"2005","unstructured":"Piqueira JRC, Navarro BF, Monteiro LHA (2005) Epidemiological models applied to viruses in computer networks. J Comput Sci 1(1):31\u201334","journal-title":"J Comput Sci"},{"key":"812_CR19","doi-asserted-by":"crossref","first-page":"57","DOI":"10.1145\/1179542.1179555","volume-title":"Proceedings of the 4th ACM workshop on recurring malcode","author":"DM Nicol","year":"2006","unstructured":"Nicol DM (2006) The impact of stochastic variance on worm propagation and detection. In: Proceedings of the 4th ACM workshop on recurring malcode, pp 57\u201364. doi: 10.1145\/1179542.1179555"},{"issue":"7","key":"812_CR20","doi-asserted-by":"crossref","first-page":"700","DOI":"10.1016\/j.peva.2005.07.032","volume":"63","author":"CC Zou","year":"2006","unstructured":"Zou CC, Towsley D, Gong W (2006) On the performance of Internet worm scanning strategies. J\u00a0Perform Eval 63(7):700\u2013723. doi: 10.1016\/j.peva.2005.07.032","journal-title":"J\u00a0Perform Eval"},{"key":"812_CR21","first-page":"649","volume-title":"Proceedings of BROADNETS\u201907","author":"S Tanachaiwiwat","year":"2007","unstructured":"Tanachaiwiwat S, Helmy A (2007) Modeling and analysis of worm interactions (war of the worms). In: Proceedings of BROADNETS\u201907, pp 649\u2013658"},{"issue":"4","key":"812_CR22","doi-asserted-by":"crossref","first-page":"338","DOI":"10.1016\/j.cose.2006.12.002","volume":"26","author":"J Li","year":"2007","unstructured":"Li J, Knickerbocker P (2007) Functional similarities between computer worms and biological pathogens. Comput Secur 26(4):338\u2013347. doi: 10.1016\/j.cose.2006.12.002","journal-title":"Comput Secur"},{"key":"812_CR23","doi-asserted-by":"crossref","first-page":"357","DOI":"10.1016\/j.amc.2008.09.025","volume":"206(1)","author":"H Yuan","year":"2008","unstructured":"Yuan H, Chen G (2008) Network virus-epidemic model with the point-to-group information propagation. Appl Comput Math 206(1):357\u2013367. doi: 10.1016\/j.amc.2008.09.025","journal-title":"Appl Comput Math"},{"issue":"7\u20138","key":"812_CR24","doi-asserted-by":"crossref","first-page":"355","DOI":"10.1016\/j.cose.2008.07.006","volume":"27","author":"JRC Piqueira","year":"2008","unstructured":"Piqueira JRC, Vasconcelos AA, Gabriel CECJ, Araujo VO (2008) Dynamic models for computer viruses. Comput Secur 27(7\u20138):355\u2013359. doi: 10.1016\/j.cose.2008.07.006","journal-title":"Comput Secur"},{"issue":"4","key":"812_CR25","doi-asserted-by":"crossref","first-page":"63","DOI":"10.1016\/S1005-8885(09)60489-1","volume":"17","author":"F Su","year":"2010","unstructured":"Su F, Lin Z, Ma Y (2010) Modeling and analysis of Internet worm propagation. J China Univ Post Telecommun 17(4):63\u201368. doi: 10.1016\/S1005-8885(09)60489-1","journal-title":"J China Univ Post Telecommun"},{"issue":"11","key":"812_CR26","doi-asserted-by":"crossref","first-page":"1269","DOI":"10.1016\/j.comcom.2010.10.014","volume":"34","author":"W Yu","year":"2011","unstructured":"Yu W, Wang X, Champion A, Xuan D, Lee D (2011) On detecting active worms with varying scan rate. Comput Commun 34(11):1269\u20131282. doi: 10.1016\/j.comcom.2010.10.014","journal-title":"Comput Commun"},{"key":"812_CR27","unstructured":"Provos N (2010) A virtual honeypot framework. CITI technical report 03-1. http:\/\/www.citi.umich.edu\/techreports\/reports\/citi-tr-03-1.pdf . Accessed 28 July 2010"},{"key":"812_CR28","unstructured":"Oudot L (2010) Fighting worms with honeypots: honeyd vs msblast, honeypots mailinglist. http:\/\/lists.insecure.org\/lists\/honeypots\/2003\/Jul-Sep\/0071.htm . Accessed 11 September 2010"},{"key":"812_CR29","doi-asserted-by":"crossref","first-page":"92","DOI":"10.1117\/12.500849","volume":"2003","author":"VH Berk","year":"2003","unstructured":"Berk VH, Gray RS, Bakos G (2003) Using sensor networks and data fusion for early detection of active worms. Proc SPIE 2003:92\u2013104. doi: 10.1117\/12.500849","journal-title":"Proc SPIE"},{"issue":"4","key":"812_CR30","doi-asserted-by":"crossref","first-page":"33","DOI":"10.1109\/MSECP.2003.1219056","volume":"1","author":"D Moore","year":"2003","unstructured":"Moore D, Paxson V, Savage S, Shannon C, Staniford S, Weaver N (2003) Inside the slammer worm. IEEE Secur Priv 1(4):33\u201339. doi: 10.1109\/MSECP.2003.1219056","journal-title":"IEEE Secur Priv"},{"key":"812_CR31","doi-asserted-by":"crossref","first-page":"190","DOI":"10.1145\/948109.948136","volume-title":"Proceedings of the 10th ACM conference on computer and communications security","author":"CC Zou","year":"2003","unstructured":"Zou CC, Gao L, Gong W, Towsley D (2003) Monitoring and early warning for Internet worms. In: Proceedings of the 10th ACM conference on computer and communications security, pp 190\u2013199. doi: 10.1145\/948109.948136"},{"key":"812_CR32","unstructured":"Cheung S, Hoagland J, Levitt K, Rowe J, Staniford S et al (1999) The design of GrIDS: a graph-based intrusion detection system. Technical report, CSE-99-2. http:\/\/citeseer.nj.nec.com\/cheung99design.html . Accessed 15 September 2010"},{"key":"812_CR33","volume-title":"Proceedings of IEEE symposium on security and privacy","author":"J Jung","year":"2004","unstructured":"Jung J, Paxson V, Berger AW, Balakrishnan H (2004) Fast portscan detection using sequential hypothesis testing. In: Proceedings of IEEE symposium on security and privacy"},{"key":"812_CR34","first-page":"8","volume-title":"Proceedings of the 3rd conference on networked systems design & implementation","author":"E Cooke","year":"2006","unstructured":"Cooke E, Bailey M, Jahanian F, Mortier R (2006) The dark oracle: perspective-aware unused and unreachable address. In: Proceedings of the 3rd conference on networked systems design & implementation, vol 3, pp 8"},{"key":"812_CR35","volume-title":"Proceedings of the DETER community workshop on cyber security experimentation and test","author":"L Li","year":"2007","unstructured":"Li L, Jhi Y, Liu P, Kesidis G (2007) Evaluation of collaborative worm containment on the deter testbed. In: Proceedings of the DETER community workshop on cyber security experimentation and test"},{"key":"812_CR36","doi-asserted-by":"crossref","first-page":"104","DOI":"10.1016\/j.cose.2009.07.002","volume":"29","author":"Y Choi","year":"2010","unstructured":"Choi Y, Li L, Liu P, Kesidis G (2010) Worm virulence estimation for the containment of local worm outbreak. Comput Secur 29:104\u2013123. doi: 10.1016\/j.cose.2009.07.002","journal-title":"Comput Secur"},{"key":"812_CR37","doi-asserted-by":"crossref","first-page":"51","DOI":"10.1145\/948187.948197","volume-title":"Proceedings of the 2003 ACM workshop on rapid malcode","author":"CC Zou","year":"2003","unstructured":"Zou CC, Gong W, Towsley D (2003) Worm propagation modeling and analysis under dynamic quarantine defense. In: Proceedings of the 2003 ACM workshop on rapid malcode, pp 51\u201360. doi: 10.1145\/948187.948197"},{"key":"812_CR38","unstructured":"Staniford S (2004) Containment of scanning worm in an enterprise networks. Journal of Computer Security"},{"key":"812_CR39","doi-asserted-by":"crossref","first-page":"18","DOI":"10.1109\/QEST.2004.1348012","volume-title":"Proceedings of the quantitative evaluation of systems, first international conference","author":"M Liljenstam","year":"2004","unstructured":"Liljenstam M, Nicol DM (2004) Comparing passive and active worm defenses. In: Proceedings of the quantitative evaluation of systems, first international conference, pp 18\u201327. doi: 10.1109\/QEST.2004.12"},{"key":"812_CR40","first-page":"38","volume-title":"Proceedings of the third international conference on mathematical methods, models, and architectures for computer network security","author":"DM Nicol","year":"2005","unstructured":"Nicol DM, Liljenstam M (2005) Models and analysis of active worm defense. In: Proceedings of the third international conference on mathematical methods, models, and architectures for computer network security, pp 38\u201353. doi: 10.1007\/11560326_4"},{"issue":"8","key":"812_CR41","first-page":"841","volume":"34","author":"F Yang","year":"2004","unstructured":"Yang F, Duan H, Li X (2004) Modeling and analysis on the interaction between the Internet worm and anti-worm. J Sci China Ser E, Inf Sci 34(8):841\u2013856","journal-title":"J Sci China Ser E, Inf Sci"},{"issue":"1","key":"812_CR42","first-page":"28","volume":"28","author":"C Wang","year":"2007","unstructured":"Wang C, Qing S, He J (2007) Anti-worm based on hybrid confronting technology. J Commun 28(1):28\u201334","journal-title":"J Commun"},{"key":"812_CR43","volume-title":"Proceedings of the sixth international conference on networking","author":"H Zhou","year":"2007","unstructured":"Zhou H, Wen Y, Zhao H (2007) Modeling and analysis of active benign worms and hybrid benign worms containing the spread of worms. In: Proceedings of the sixth international conference on networking. doi: 10.1109\/ICN.2007.58"},{"issue":"1","key":"812_CR44","doi-asserted-by":"crossref","first-page":"96","DOI":"10.3837\/tiis.2009.01.005","volume":"3","author":"O Toutonji","year":"2009","unstructured":"Toutonji O, Yoo S-M (2009) Passive benign worm propagation modeling with dynamic quarantine defense. KSII Trans Internet Inf Syst 3(1):96\u2013107","journal-title":"KSII Trans Internet Inf Syst"},{"issue":"7","key":"812_CR45","first-page":"1110","volume":"46","author":"H Zhou","year":"2009","unstructured":"Zhou H, Zhao H, Wen Y (2009) Modeling and analysis of divide-and-rule-hybrid-benign worms. J\u00a0Comput Res Dev 46(7):1110\u20131116","journal-title":"J\u00a0Comput Res Dev"},{"key":"812_CR46","first-page":"1128","volume-title":"Proceedings of advanced information networking and applications","author":"F Xiang","year":"2010","unstructured":"Xiang F, Yang X (2010) Propagation modeling of peer-to-peer worms. In Proceedings of advanced information networking and applications, pp\u00a01128\u20131135"},{"key":"812_CR47","unstructured":"Barber B (2004) Cheese worm pros and cons of \u201cFriendly\u201d worm. http:\/\/www.sans.org\/rr\/whitepapers\/malicious\/31.php . Accessed 16 June 2004"},{"key":"812_CR48","unstructured":"Kem M (2003) CRClean. http:\/\/archives.neohapsis.com\/archives\/vuln-dev\/2001-q3\/0577.html . Accessed 23 March 2003"},{"key":"812_CR49","unstructured":"Hexxer H (2003) CodeGreen beta release. http:\/\/online.securityfocus.com\/archive\/ . 82\/211462. Accessed 8 May 2003"},{"key":"812_CR50","unstructured":"Leyden J (2004) Blaster variant offers \u2018fix\u2019 for pox-ridden pcs. http:\/\/www.theregister.com\/2003\/08\/19\/blaster_variant_offer_fix\/ . Accessed 12 April 2004"},{"issue":"4","key":"812_CR51","first-page":"1082","volume":"7","author":"X Zheng","year":"2011","unstructured":"Zheng X, Li T, Yang H (2011) A novel Cloud-based worm propagation model. J Comput Inf Syst 7(4):1082\u20131091","journal-title":"J Comput Inf Syst"},{"key":"812_CR52","unstructured":"Messmer E (2004) The myth of the good worm. http:\/\/www.wormblog.com\/2004\/11\/the_myth_of_the.html . Accessed 12 April 2004"},{"key":"812_CR53","first-page":"32","volume-title":"Proceedings of the international multi-conference on computing in the global information technology","author":"H Zhou","year":"2007","unstructured":"Zhou H, Wen Y, Zhao H (2007) Passive worm propagation modeling and analysis. In: Proceedings of the international multi-conference on computing in the global information technology, pp 32\u201342. doi: 10.1109\/ICCGI.2007.48"}],"container-title":["The Journal of Supercomputing"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s11227-012-0812-8.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/article\/10.1007\/s11227-012-0812-8\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s11227-012-0812-8","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,4,28]],"date-time":"2024-04-28T12:26:51Z","timestamp":1714307211000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/s11227-012-0812-8"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2012,8,16]]},"references-count":53,"journal-issue":{"issue":"3","published-print":{"date-parts":[[2012,12]]}},"alternative-id":["812"],"URL":"https:\/\/doi.org\/10.1007\/s11227-012-0812-8","relation":{},"ISSN":["0920-8542","1573-0484"],"issn-type":[{"value":"0920-8542","type":"print"},{"value":"1573-0484","type":"electronic"}],"subject":[],"published":{"date-parts":[[2012,8,16]]}}}