Accurate Detection of Peer-to-Peer Botnet using Multi-Stream Fused Scheme
|
Title | Accurate Detection of Peer-to-Peer Botnet using Multi-Stream Fused Scheme |
Authors | |
Abstract | Nowadays decentralized botnets pose a great threat to Internet. They evolve new features such as P2P Command and Control(C&C), which makes traditional detection methods no longer effective for indicating the existence of the bots. In this paper, based on several of the new P2P botnet characteristic properties, we propose a novel real-time detecting model – MSFM (Multi-Stream Fused Model). MSFM considers multiple types of packets’ unique characteristics and handle them with corresponding strategies. Extensive experiment results show that our model can accurately detect peer-to-peer botnet with relatively low false-positive and false-negative rates. |
Publisher | ACADEMY PUBLISHER |
Date | 2011-05-04 |
Source | Journal of Networks Vol 6, No 5 (2011): Special Issue: Nomadic Services and Applications |
Rights | Copyright © ACADEMY PUBLISHER - All Rights Reserved.To request permission, please check out URL: http://www.academypublisher.com/copyrightpermission.html. |