Description: Botnets have been recognized as one of the most
important threats to the Internet security. They are engaged in
DDOS attacks, email spamming and other malicious activities
likewise. Traditional botnets usually organized themselves in a
hierarchy architecture, which offers professionals
opportunities to detect or defend the botnets in their servers.
However, newly-appeared P2P botnet such as Storm botnet,
are revealing a decentralized feature, which brought
difficulties in detection and mitigation. We believe that it is the
very trend of future botnet development—adopting more
sophisticated methods from being detected. Thus, in this paper,
we analyze the basic principles and mechanism of this
decentralized P2P botnet, and present a novel detecting
method using Multi-chart CUSUM. Platform: |
Size: 319488 |
Author:saksss |
Hits:
Description: botnet 检测程序,包括数据处理,最后形成pcap文件(botnet detection procedures, including data processing, and finally the formation of pcap file) Platform: |
Size: 11677696 |
Author:妍妍yyjq |
Hits: