{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,14]],"date-time":"2026-01-14T21:27:07Z","timestamp":1768426027591,"version":"3.49.0"},"reference-count":30,"publisher":"Springer Science and Business Media LLC","issue":"4","license":[{"start":{"date-parts":[[2012,6,17]],"date-time":"2012-06-17T00:00:00Z","timestamp":1339891200000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Peer-to-Peer Netw. Appl."],"published-print":{"date-parts":[[2014,12]]},"DOI":"10.1007\/s12083-012-0150-x","type":"journal-article","created":{"date-parts":[[2012,6,18]],"date-time":"2012-06-18T11:43:01Z","timestamp":1340019781000},"page":"320-331","source":"Crossref","is-referenced-by-count":14,"title":["Detecting P2P botnets by discovering flow dependency in C&amp;C traffic"],"prefix":"10.1007","volume":"7","author":[{"given":"Hongling","family":"Jiang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xiuli","family":"Shao","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2012,6,17]]},"reference":[{"key":"150_CR1","unstructured":"Barford P, Yegneswaran V (2006) An inside look at botnets. Special Workshop on Malware Detection, Advances in Information Security, Springer Verlag, Part III 27: 171\u2013191"},{"issue":"3","key":"150_CR2","doi-asserted-by":"crossref","first-page":"502","DOI":"10.1016\/j.comcom.2010.04.007","volume":"34","author":"W Lu","year":"2011","unstructured":"Lu W, Rammidi G, Ghorbani A (2011) Clustering botnet communication traffic based on n-gram feature selection. Comput Commun 34(3):502\u2013514","journal-title":"Comput Commun"},{"key":"150_CR3","doi-asserted-by":"crossref","first-page":"219","DOI":"10.1007\/s12083-011-0112-8","volume":"5","author":"D Erdil","year":"2011","unstructured":"Erdil D (2011) Simulating peer-to-peer cloud resource scheduling. Peer-to-Peer Netw Appl 5:219\u2013230","journal-title":"Peer-to-Peer Netw Appl"},{"key":"150_CR4","unstructured":"Clark K, Warnier M, Brazier F (2011) BotClouds: the future of cloud-based Botnets. In Proceedings of the 1st International Conference on Cloud Computing and Services Science"},{"key":"150_CR5","unstructured":"Zeng Y, Hu X, Shin K (2008) Detection of botnets using combined host- and network-level information. In Proceedings of International Conference on Dependable Systems & Networks"},{"issue":"1\/2","key":"150_CR6","doi-asserted-by":"crossref","first-page":"44","DOI":"10.1504\/IJIPT.2010.032614","volume":"5","author":"Z Huang","year":"2010","unstructured":"Huang Z, Zeng X, Liu Y (2010) Detecting and blocking P2P botnets through contact tracing chains. Int J Internet Protoc Technol 5(1\/2):44\u201354","journal-title":"Int J Internet Protoc Technol"},{"key":"150_CR7","unstructured":"Grizzard J, Sharma V, Nunnery C, Kang B, Dagon D (2007) Peer-to-peer botnets: overview and case study. In Proceedings of the 1st USENIX Workshop on Hot Topics in Understanding Botnets (HotBots\u201907)"},{"key":"150_CR8","doi-asserted-by":"crossref","unstructured":"Wang P, Wu L, Aslam B, Zou C (2009) A systematic study on peer-to-peer botnets. In Proceedings of the 18th International Conference on Computer Communications and Networks","DOI":"10.1109\/ICCCN.2009.5235360"},{"key":"150_CR9","doi-asserted-by":"crossref","unstructured":"Jacobs T, Pandurangan G (2012) Stochastic analysis of a churn-tolerant structured peer-to-peer scheme. Peer-to-Peer Netw Appl, in press","DOI":"10.1007\/s12083-012-0124-z"},{"issue":"6","key":"150_CR10","first-page":"18","volume":"32","author":"S Stover","year":"2007","unstructured":"Stover S, Dittrich D, Hernandez J, Dietrich S (2007) Analysis of the Storm and Nugache Trojans: P2P is here. USENIX Mag 32(6):18\u201327","journal-title":"USENIX Mag"},{"key":"150_CR11","unstructured":"Porras P, Saidi H, Yegneswaran V (2007) A multi-perspective analysis of the storm (Peacomm) worm. Computer Science Laboratory, SRI International, Tech Rep"},{"key":"150_CR12","unstructured":"Holz T, Steiner M, Dahl F, Biersack E, Freiling F (2008) Measurements and mitigation of peer-to-peer-based botnets: a case study on Storm worm. In USENIX Wksh. Large-Scale Exploits and Emergent Threats"},{"key":"150_CR13","doi-asserted-by":"crossref","unstructured":"Dittrich D, Dietrich S (2008) P2P as botnet command and control: a deeper insight. In Proceedings of 3rd International Conference on Malicious and Unwanted Software, MALWARE","DOI":"10.1109\/MALWARE.2008.4690856"},{"key":"150_CR14","doi-asserted-by":"crossref","unstructured":"Jang D, Kim M, Jung H, Noh B (2009) Analysis of HTTP2P botnet: case study Waledac. In Proceedings of the 2009 IEEE 9th Malaysia International Conference on Communications","DOI":"10.1109\/MICC.2009.5431541"},{"key":"150_CR15","doi-asserted-by":"crossref","unstructured":"Stock B, Gobel J, Engelberth M, Freiling F, Holz T (2009) Walowdac\u2014analysis of a peer-to-peer botnet. In Proceedings of European Conference on Computer Network Defense","DOI":"10.1109\/EC2ND.2009.10"},{"key":"150_CR16","doi-asserted-by":"crossref","unstructured":"Sinclair G, Nunnery C, Kang B (2009) The Waledac protocol: the how and why. In Proceedings of the 4th International Conference on Malicious and Unwanted Software, MALWARE","DOI":"10.1109\/MALWARE.2009.5403015"},{"key":"150_CR17","unstructured":"Prasad K, Reddy A, Karthik M (2011) Flooding attacks to internet threat monitors (ITM): modeling and counter measures using botnet and honeypots. In Proceedings of International Journal of Computer Science & Information Technology"},{"key":"150_CR18","unstructured":"Udhayan J, Anitha R, Hamsapriya T (2010) Lightweight C&C based botnet detection using Aho-Corasick NFA. In Proceedings of International Journal of Network Security & Its Applications"},{"key":"150_CR19","doi-asserted-by":"crossref","first-page":"87","DOI":"10.1007\/s12083-008-0022-6","volume":"2","author":"B Raahemi","year":"2009","unstructured":"Raahemi B, Zhong W, Liu J (2009) Exploiting unlabeled data to improve peer-to-peer traffic classification using incremental tri-training method. Peer-to-Peer Netw Appl 2:87\u201397","journal-title":"Peer-to-Peer Netw Appl"},{"key":"150_CR20","unstructured":"Gu G, Porras P, Yegneswaran V, Fong M, Lee W (2007) BotHunter: detecting malware infection through IDSdriven dialog correlation. In USENIX Secur Symp"},{"key":"150_CR21","unstructured":"Gu G, Perdisci R, Zhang J, Lee W (2008) BotMiner: clustering analysis of network traffic for protocol- and structure-independent botnet detection. In Proceedings of the 17th conference on Security Symposium"},{"key":"150_CR22","unstructured":"Nagaraja S, Mittal P, Hong C, Caesar M, Borisov N (2010) BotGrep: finding P2P bots with structured graph analysis. In Proceedings of the 19th USENIX Conference on Security"},{"key":"150_CR23","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1007\/978-3-642-20757-0_1","volume":"6640","author":"J Francois","year":"2011","unstructured":"Francois J, Wang S, State R, Engel T (2011) BotTrack: tracking botnets using NetFlow and PageRank. Lect Note Comput Sci, Part I LNCS 6640:1\u201314","journal-title":"Lect Note Comput Sci, Part I. LNCS"},{"key":"150_CR24","doi-asserted-by":"crossref","unstructured":"Coskun B, Dietrich S, Memon N (2010) Friends of an enemy: identifying local members of peer-to-peer botnets using mutual contacts. In Proceedings of Annual Computer Security Applications Conference","DOI":"10.1145\/1920261.1920283"},{"key":"150_CR25","doi-asserted-by":"crossref","unstructured":"Zhang J, Perdisci R, Lee W, Sarfraz U, Luo X (2011) Detecting stealthy P2P botnets using statistical traffic fingerprints. In Proceedings of IEEE\/IFIP 41st International Conference on Dependable Systems and Networks","DOI":"10.1109\/DSN.2011.5958212"},{"key":"150_CR26","doi-asserted-by":"crossref","first-page":"165","DOI":"10.1007\/s12083-010-0073-3","volume":"4","author":"D Kato","year":"2010","unstructured":"Kato D, Elkhiyaoui K, Kunieda K, Yamada K, Michiardi P (2010) A scalable interest-oriented peer-to-peer pub\/sub network. Peer-to-Peer Netw Appl 4:165\u2013177","journal-title":"Peer-to-Peer Netw Appl"},{"key":"150_CR27","volume-title":"Detecting stealthy malware using behavioral features in network traffic","author":"T Yen","year":"2011","unstructured":"Yen T (2011) Detecting stealthy malware using behavioral features in network traffic. Carnegie Mellon University, Dissertation"},{"key":"150_CR28","unstructured":"Jain A, Dubes R (1998) Algorithms for clustering data. Prentice-Hall"},{"issue":"3","key":"150_CR29","doi-asserted-by":"crossref","first-page":"264","DOI":"10.1145\/331499.331504","volume":"31","author":"A Jain","year":"1999","unstructured":"Jain A, Murty M, Flynn P (1999) Data clustering: a review. ACM Comput Surv 31(3):264\u2013323","journal-title":"ACM Comput Surv"},{"issue":"1","key":"150_CR30","doi-asserted-by":"crossref","first-page":"36","DOI":"10.1007\/s12083-009-0046-6","volume":"3","author":"X Sun","year":"2010","unstructured":"Sun X, Torres R, Rao S (2010) On the feasibility of exploiting P2P systems to launch DDoS attacks. Peer-to-Peer Netw Appl 3(1):36\u201351","journal-title":"Peer-to-Peer Netw Appl"}],"container-title":["Peer-to-Peer Networking and Applications"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s12083-012-0150-x.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/article\/10.1007\/s12083-012-0150-x\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s12083-012-0150-x","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,6,30]],"date-time":"2019-06-30T02:31:39Z","timestamp":1561861899000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/s12083-012-0150-x"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2012,6,17]]},"references-count":30,"journal-issue":{"issue":"4","published-print":{"date-parts":[[2014,12]]}},"alternative-id":["150"],"URL":"https:\/\/doi.org\/10.1007\/s12083-012-0150-x","relation":{},"ISSN":["1936-6442","1936-6450"],"issn-type":[{"value":"1936-6442","type":"print"},{"value":"1936-6450","type":"electronic"}],"subject":[],"published":{"date-parts":[[2012,6,17]]}}}