{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,22]],"date-time":"2025-10-22T05:22:45Z","timestamp":1761110565970,"version":"3.28.0"},"reference-count":50,"publisher":"IEEE","license":[{"start":{"date-parts":[[2020,10,20]],"date-time":"2020-10-20T00:00:00Z","timestamp":1603152000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2020,10,20]],"date-time":"2020-10-20T00:00:00Z","timestamp":1603152000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2020,10,20]],"date-time":"2020-10-20T00:00:00Z","timestamp":1603152000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2020,10,20]]},"DOI":"10.1109\/isncc49221.2020.9297307","type":"proceedings-article","created":{"date-parts":[[2020,12,25]],"date-time":"2020-12-25T22:06:21Z","timestamp":1608933981000},"page":"1-6","source":"Crossref","is-referenced-by-count":8,"title":["Botnets and their detection techniques"],"prefix":"10.1109","author":[{"given":"Ahmed","family":"Shafee","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/eCRS.2013.6805783"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1007\/978-0-387-68768-1_7"},{"key":"ref33","article-title":"Rishi: Identify Bot Contaminated Hosts by IRC Nickname Evaluation","author":"goebel","year":"2007","journal-title":"Proceedings of the First Workshop on Hot Topics in Understanding Botnets"},{"key":"ref32","article-title":"An Algorithm for Anomaly-based Botnet Detection","author":"binkley","year":"2006","journal-title":"Proc of the 2Nd Conference on Steps to Reducing Unwanted Traffic on the Internet (SRUTI&#x2019;06)"},{"key":"ref31","article-title":"Automatically generating models for botnet detection","author":"wurzinger","year":"2009","journal-title":"Proc European Symp Research in Computer Security (ESORICS)"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/ICCNC.2014.6785439"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.48"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1109\/ICITST.2015.7412113"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/ICCAIE.2011.6162198"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1007\/978-0-387-68768-1_1"},{"key":"ref28","article-title":"BotHunter: Detecting Malware Infection Through IDS-Driven Dialog Correlation","author":"gu","year":"2007","journal-title":"Proc of the 16th USENIX Security Symposium (USENIX SECURITY-07)"},{"key":"ref27","article-title":"Snort - Lightweight Intrusion Detection for Networks","author":"roesch","year":"1999","journal-title":"Proc of the 13th USENIX Conference on System Administration"},{"key":"ref29","article-title":"BotSniffer: Detecting Botnet Command and Control Channels in Network Traffic","author":"gu","year":"2008","journal-title":"Proc of the 16th Annual Network & Distributed System Security Symposium Proceedings"},{"year":"0","key":"ref2","article-title":"Itu"},{"key":"ref1","first-page":"117","article-title":"Botnets and Proactive System Defense","volume":"36","author":"bambenek","year":"2007","journal-title":"Information Security Springer"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/PST.2010.5593240"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/ICACT.2014.6779162"},{"key":"ref21","article-title":"Analysis of HTTP2P botnet: case study waledac","author":"jang","year":"2009","journal-title":"Proc of the 9th IEEE Malaysia International Conference on Communications (MICC)"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/TIME-E.2013.6611973"},{"key":"ref23","first-page":"1947","article-title":"Botnet detection by monitoring similar communication patterns","volume":"7","author":"zeidanloo","year":"2010","journal-title":"International Journal of Information and Computer Security"},{"journal-title":"Snort IDS web page","year":"0","key":"ref26"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/ICCSIT.2010.5563555"},{"key":"ref50","article-title":"A first look at the crypto-mining malware ecosystem: A decade of unrestricted wealth","author":"eskandari","year":"2018","journal-title":"Proc of the IEEE European Symposium on Security and Privacy Workshops (EuroS PW)"},{"key":"ref10","article-title":"A first look at the crypto-mining malware ecosystem: A decade of unrestricted wealth","author":"sergio","year":"2019","journal-title":"Proc of Internet Measurement Conference (IMC)"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/ICCCNT.2012.6395940"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1109\/MALWARE.2008.4690854"},{"key":"ref12","article-title":"Detection of botnets using combined host- and network-level information","author":"zeng","year":"2010","journal-title":"Proc of IEEE\/IFIP International Conference on Dependable Systems & Networks (DSN)"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1002\/sec.800"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/AINA.2015.257"},{"key":"ref15","article-title":"BotMiner: Clustering Analysis of Network Traffic for Protocol- and Structure-independent Botnet Detection","author":"gu","year":"2008","journal-title":"Proc of the 17th conference on Security symposium"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/IJCNN.2009.5178592"},{"key":"ref17","first-page":"25","article-title":"Springer us, botnet detection: Countering the largest security threat","volume":"36","author":"li","year":"2008","journal-title":"Honeynet-based Botnet Scan Traffic Analysis"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/CCECE.2012.6334871"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1007\/978-0-387-68768-1_8"},{"journal-title":"Operating Systems Internals and Design Principles","year":"2008","author":"stallings","key":"ref4"},{"key":"ref3","article-title":"MEPIDS: Multi-Expression Programming for Intrusion Detection System","author":"gro?an","year":"2005","journal-title":"Proc of the International Workconference on the Interplay between Natural and Artificial Computation (IWINAC&#x2019;05)"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1007\/s11859-013-0944-6"},{"year":"0","key":"ref5"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243858"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/ANCS.2017.27"},{"year":"0","key":"ref49","article-title":"Alexa"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2936094"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1109\/AsiaJCIS.2016.17"},{"key":"ref45","first-page":"icdf2c","article-title":"A Host-Based Approach to BotNet Investigation?","author":"law","year":"2009","journal-title":"Proc of Digital Forensics and Cyber Crime First International ICST Conference"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1109\/FTC.2016.7821774"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1145\/3041008.3041014"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-73614-1_6"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1109\/CEC.2013.6557886"},{"key":"ref44","article-title":"BINDER: An Extrusion-based Break-in Detector for Personal Computers","author":"cui","year":"2005","journal-title":"Proc of the Annual Conference on USENIX Annual Technical Conference (ATEC &#x2019;05)"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1007\/978-0-387-68768-1_4"}],"event":{"name":"2020 International Symposium on Networks, Computers and Communications (ISNCC)","start":{"date-parts":[[2020,10,20]]},"location":"Montreal, QC, Canada","end":{"date-parts":[[2020,10,22]]}},"container-title":["2020 International Symposium on Networks, Computers and Communications (ISNCC)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/9297148\/9297168\/09297307.pdf?arnumber=9297307","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,6,28]],"date-time":"2022-06-28T21:55:03Z","timestamp":1656453303000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9297307\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,10,20]]},"references-count":50,"URL":"https:\/\/doi.org\/10.1109\/isncc49221.2020.9297307","relation":{},"subject":[],"published":{"date-parts":[[2020,10,20]]}}}