{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,9,4]],"date-time":"2024-09-04T20:06:38Z","timestamp":1725480398976},"reference-count":30,"publisher":"IEEE","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2012,12]]},"DOI":"10.1109\/wifs.2012.6412631","type":"proceedings-article","created":{"date-parts":[[2013,1,25]],"date-time":"2013-01-25T19:44:59Z","timestamp":1359143099000},"page":"91-96","source":"Crossref","is-referenced-by-count":1,"title":["Semantic based DNS forensics"],"prefix":"10.1109","author":[{"given":"Samuel","family":"Marchai","sequence":"first","affiliation":[]},{"given":"Jerome","family":"Francois","sequence":"additional","affiliation":[]},{"given":"Radu","family":"State","sequence":"additional","affiliation":[]},{"given":"Thomas","family":"Engel","sequence":"additional","affiliation":[]}],"member":"263","reference":[{"key":"19","article-title":"Building a dynamic reputation system for dns","author":"antonakakis","year":"2010","journal-title":"Usenix Security"},{"key":"17","doi-asserted-by":"publisher","DOI":"10.1145\/2068816.2068842"},{"key":"18","article-title":"On the potential of proactive domain blacklisting","author":"felegyhazi","year":"2010","journal-title":"Conference on Large-scale Exploits and Emergent Threats Botnets Spyware Worms and More"},{"key":"15","doi-asserted-by":"publisher","DOI":"10.1016\/j.diin.2004.10.001"},{"key":"16","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-15512-3_2"},{"key":"13","doi-asserted-by":"publisher","DOI":"10.1145\/1452520.1452547"},{"journal-title":"Beautiful Data The Stories behind Elegant Data Solutions","year":"2009","author":"segaran","key":"14"},{"key":"11","article-title":"DISCO: A Multilingual Database of Distributionally Similar Words","author":"kolb","year":"2008","journal-title":"KONVENS 2008 - Erga?nzungsband Textressourcen und Lexikalisches Wissen"},{"key":"12","doi-asserted-by":"publisher","DOI":"10.1109\/TNET.2011.2157699"},{"key":"21","first-page":"27","article-title":"Detecting malware domains at the upper dns hierarchy","author":"antonakakis","year":"2011","journal-title":"SEC'11"},{"key":"20","article-title":"EXPOSURE: Finding Malicious Domains Using Passive DNS Analysis","author":"bilge","year":"2011","journal-title":"NDSS 2011"},{"key":"22","article-title":"Detecting dns tunnels using character frequency analysis","author":"born","year":"2010","journal-title":"CoRR"},{"key":"23","doi-asserted-by":"publisher","DOI":"10.1145\/1879141.1879148"},{"key":"24","doi-asserted-by":"publisher","DOI":"10.1109\/NOMS.2012.6212021"},{"key":"25","doi-asserted-by":"publisher","DOI":"10.1145\/2030376.2030397"},{"key":"26","doi-asserted-by":"publisher","DOI":"10.1109\/INFCOM.2011.5934995"},{"key":"27","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-30045-5_28"},{"key":"28","doi-asserted-by":"crossref","DOI":"10.1007\/978-3-642-33338-5_10","article-title":"Proactive discovery of phishing related domain names","author":"marchal","year":"2012","journal-title":"Lecture Notes in Computer Science"},{"key":"29","first-page":"107","article-title":"Highly predictive blacklisting","author":"zhang","year":"2008","journal-title":"Proceedings of The 17th Conference on Security Symposium"},{"key":"3","doi-asserted-by":"publisher","DOI":"10.1145\/1410234.1410238"},{"key":"2","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2011.96"},{"journal-title":"RFC 1035 Domain names - implementation and specification","year":"0","author":"mockapetris","key":"10"},{"journal-title":"Worldwide Infrastructure Security Report (2011 Report)","year":"2012","key":"1"},{"key":"30","doi-asserted-by":"publisher","DOI":"10.1109\/INFCOM.2010.5462216"},{"key":"7","doi-asserted-by":"publisher","DOI":"10.1145\/1644893.1644915"},{"journal-title":"Passive DNS Replication","year":"2005","author":"weimer","key":"6"},{"key":"5","doi-asserted-by":"publisher","DOI":"10.1145\/1368506.1368520"},{"key":"4","doi-asserted-by":"publisher","DOI":"10.1109\/MIC.2002.1067738"},{"journal-title":"Phishing Activity Trends Report - 1H2011","year":"2011","key":"9"},{"key":"8","doi-asserted-by":"publisher","DOI":"10.1145\/1941487.1941508"}],"event":{"name":"2012 IEEE International Workshop on Information Forensics and Security (WIFS)","start":{"date-parts":[[2012,12,2]]},"location":"Costa Adeje - Tenerife, Spain","end":{"date-parts":[[2012,12,5]]}},"container-title":["2012 IEEE International Workshop on Information Forensics and Security (WIFS)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx5\/6395850\/6412607\/06412631.pdf?arnumber=6412631","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2017,6,21]],"date-time":"2017-06-21T06:24:45Z","timestamp":1498026285000},"score":1,"resource":{"primary":{"URL":"http:\/\/ieeexplore.ieee.org\/document\/6412631\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2012,12]]},"references-count":30,"URL":"https:\/\/doi.org\/10.1109\/wifs.2012.6412631","relation":{},"subject":[],"published":{"date-parts":[[2012,12]]}}}