{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,9,26]],"date-time":"2025-09-26T00:11:48Z","timestamp":1758845508790},"reference-count":19,"publisher":"IEEE","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2009,10]]},"DOI":"10.1109\/malware.2009.5403014","type":"proceedings-article","created":{"date-parts":[[2010,2,12]],"date-time":"2010-02-12T14:31:47Z","timestamp":1265985107000},"page":"98-103","source":"Crossref","is-referenced-by-count":7,"title":["Analyzing DNS activities of bot processes"],"prefix":"10.1109","author":[{"given":"Jose Andre","family":"Morales","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Areej","family":"Al-Bataineh","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"family":"Shouhuai Xu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ravi","family":"Sandhu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"year":"0","key":"ref10"},{"key":"ref11","first-page":"24","article-title":"As the net churns: Fast-flux bot-net observations","author":"nazario","year":"0"},{"year":"0","key":"ref12"},{"year":"0","key":"ref13"},{"key":"ref14","doi-asserted-by":"crossref","first-page":"89","DOI":"10.1007\/978-3-540-73614-1_6","article-title":"Characterizing bots' remote control behavior","author":"stinson","year":"2007","journal-title":"Proceedings of the 4th International Conference on Detection of Intrusions and Malware and Vulnerability Assessment"},{"year":"0","key":"ref15"},{"year":"0","key":"ref16"},{"year":"0","key":"ref17"},{"year":"0","key":"ref18"},{"year":"0","key":"ref19"},{"key":"ref4","article-title":"BotMiner: Clustering analysis of network traffic for protocol- and structure-independent botnet detection","author":"gu","year":"2008","journal-title":"Proceedings of the 17th USENIX Security Symposium (Security'08)"},{"key":"ref3","first-page":"1","article-title":"Peer-to-peer botnets: overview and case study","author":"grizzard","year":"2007","journal-title":"HotBots '07 Proceedings of the first conference on First Workshop on Hot Topics in Understanding Botnets"},{"key":"ref6","article-title":"Measuring and detecting fast-flux service networks","author":"holz","year":"2008","journal-title":"Proc Network and Distributed System Security Symp (NDSS)"},{"key":"ref5","article-title":"BotHunter: Detecting malware infection through ids-driven dialog correlation","author":"gu","year":"2007","journal-title":"Proceedings of the 16th USENIX Security Symposium (Security'07)"},{"article-title":"Rb-seeker: Auto-detection of redirection botnets","year":"0","author":"hu","key":"ref8"},{"key":"ref7","first-page":"1","article-title":"Measurements and mitigation of peer-to-peer-based botnets: a case study on storm worm","author":"holz","year":"2008","journal-title":"LEET'08 Proceedings of the 1st Usenix Workshop on Large-Scale Exploits and Emergent Threats"},{"key":"ref2","first-page":"8","article-title":"Rishi: identify bot contaminated hosts by irc nickname evaluation","author":"goebel","year":"2007","journal-title":"HotBots '07 Proceedings of the first conference on First Workshop on Hot Topics in Understanding Botnets"},{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/ACSAC.2007.44"},{"key":"ref9","first-page":"7","article-title":"Wide-scale botnet detection and characterization","author":"karasaridis","year":"2007","journal-title":"HotBots 07 -Proceedings-of-the-first-conference-on- First- Workshop- on- Hot- Topics- in- Understanding-Botnets"}],"event":{"name":"2009 4th International Conference on Malicious and Unwanted Software (MALWARE)","start":{"date-parts":[[2009,10,13]]},"location":"Montreal, Quebec, Canada","end":{"date-parts":[[2009,10,14]]}},"container-title":["2009 4th International Conference on Malicious and Unwanted Software (MALWARE)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx5\/5392747\/5403012\/05403014.pdf?arnumber=5403014","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2017,6,19]],"date-time":"2017-06-19T04:43:04Z","timestamp":1497847384000},"score":1,"resource":{"primary":{"URL":"http:\/\/ieeexplore.ieee.org\/document\/5403014\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2009,10]]},"references-count":19,"URL":"https:\/\/doi.org\/10.1109\/malware.2009.5403014","relation":{},"subject":[],"published":{"date-parts":[[2009,10]]}}}