摘要
为了更好地探索研究新型P2P僵尸网络的跟踪、检测与反制方法,介绍了P2P僵尸网络的基本定义和演化历史,对P2P僵尸网络的分类和工作机制进行研究,分析P2P僵尸网络的拓扑结构及其逃避检测的方法,报告对P2P僵尸网络进行跟踪、检测与反制的研究现状,并对各种方法的性能进行了比较。最后对P2P僵尸网络的发展与进一步研究提出展望。
In order to search a profound method in tracking,detecting and countering P2P based botnets,the paper introduced the basic definition of P2P botnets and their evolutionary history,and then studied the classification and working mechanism of them. After analysing the topology of P2P botnets and their methods to evade detection,it reported the approaches of tracking, detecting and countering P2P botnets,and compared the performance of various methods. Finally gave the P2P botnet development and further research prospects.
出处
《计算机应用研究》
CSCD
北大核心
2010年第10期3628-3632,共5页
Application Research of Computers
基金
吉林省科技发展计划资助项目(20090111)
关键词
对等网络
恶意代码
僵尸网络
命令与控制机制
P2P( peer-to-peer)
malware
botnet
C&C( command and control) mechanism