{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,23]],"date-time":"2026-01-23T00:22:24Z","timestamp":1769127744700,"version":"3.49.0"},"reference-count":21,"publisher":"IEEE","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2015,4]]},"DOI":"10.1109\/infocom.2015.7218396","type":"proceedings-article","created":{"date-parts":[[2015,8,24]],"date-time":"2015-08-24T17:33:36Z","timestamp":1440437616000},"page":"316-324","source":"Crossref","is-referenced-by-count":18,"title":["PeerClean: Unveiling peer-to-peer botnets through dynamic group behavior analysis"],"prefix":"10.1109","author":[{"given":"Qiben","family":"Yan","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yao","family":"Zheng","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Tingting","family":"Jiang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Wenjing","family":"Lou","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Y. Thomas","family":"Hou","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref10","doi-asserted-by":"crossref","DOI":"10.1007\/978-3-642-28641-4_14","article-title":"Revisiting botnet models and their implications for takedown strategies","author":"yen","year":"2012","journal-title":"Proceedings of the First international conference on Principles of Security and Trust"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/1177080.1177105"},{"key":"ref12","doi-asserted-by":"crossref","first-page":"972","DOI":"10.1126\/science.1136800","article-title":"Clustering by passing messages between data points","volume":"315","author":"frey","year":"2007","journal-title":"Science"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1145\/1080091.1080112"},{"key":"ref14","author":"bishop","year":"2006","journal-title":"Pattern Recognition and Machine Learning"},{"key":"ref15","article-title":"Autoit script","year":"0"},{"key":"ref16","article-title":"Botsniffer: Detecting botnet command and control channels in network traffic","author":"gu","year":"2008"},{"key":"ref17","article-title":"Traffic aggregation for malware detection","author":"yen","year":"2008","journal-title":"Proceedings of DIMVA'08"},{"key":"ref18","first-page":"232","article-title":"Automatically generating models for botnet detection","author":"wurzinger","year":"2009","journal-title":"Proc of ESORICS'09"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1145\/1920261.1920283"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1145\/2382196.2382257"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/DSN.2011.5958212"},{"key":"ref6","article-title":"Bothunter: Detecting malware infection through IDS-driven dialog correlation","author":"gu","year":"2007","journal-title":"Proc USENIX Security07"},{"key":"ref5","article-title":"Effective and efficient malware detection at the end host","author":"kolbitsch","year":"2009","journal-title":"Proc USENIX Security07"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1145\/1966913.1966930"},{"key":"ref7","article-title":"Botminer: Clustering analysis of network traffic for protocol- and structure-independent botnet detection","author":"gu","year":"2008","journal-title":"Proc USENIX Security07"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/ICDCS.2010.76"},{"key":"ref1","article-title":"Botgrep: Finding p2p bots with structured graph analysis","author":"nagaraja","year":"2010","journal-title":"Proc USENIX Security07"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1145\/2420950.2420969"},{"key":"ref20","article-title":"Towards automated detection of peer-to-peer botnets: on the limits of local approaches","author":"jelasity","year":"2009","journal-title":"Proc of LEET'09"},{"key":"ref21","first-page":"167","article-title":"Gangs of the internet: Towards automatic discovery of peer-to-peer communities in the internet","author":"li","year":"2013","journal-title":"Proc CNSR"}],"event":{"name":"IEEE INFOCOM 2015 - IEEE Conference on Computer Communications","location":"Kowloon, Hong Kong","start":{"date-parts":[[2015,4,26]]},"end":{"date-parts":[[2015,5,1]]}},"container-title":["2015 IEEE Conference on Computer Communications (INFOCOM)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/7172813\/7218353\/07218396.pdf?arnumber=7218396","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2017,6,23]],"date-time":"2017-06-23T14:12:47Z","timestamp":1498227167000},"score":1,"resource":{"primary":{"URL":"http:\/\/ieeexplore.ieee.org\/document\/7218396\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2015,4]]},"references-count":21,"URL":"https:\/\/doi.org\/10.1109\/infocom.2015.7218396","relation":{},"subject":[],"published":{"date-parts":[[2015,4]]}}}