

摘要 通过对基于P2P协议的僵尸主机的运行机制的研究,将其生存周期划分为三个特征阶段,综合每个阶段P2P僵尸主机所表现出的不同特征行为,提出综合特征行为的P2P僵尸网络的检测算法。通过对捕获的网络出口流量采取离线检测与在线检测相结合的方法,逐层分步对P2P僵尸主机进行筛检并定位,能够有效降低误报率,并将处于攻击阶段的P2P僵尸主机进行及时隔离,降低P2P僵尸网络的危害。
作者 樊郁徽 徐宁
机构地区 淮南师范学院
出处 《淮南师范学院学报》 2012年第3期33-35,共3页 Journal of Huainan Normal University
基金 安徽省高校自然科学基金资助项目(KJ2012Z363) 淮南师范学院自然科学项目(2010LK17)
  • 相关文献



  • 1李江涛,姜永玲.P2P流量识别与管理技术[J].电信科学,2005,21(3):57-61. 被引量:43
  • 2C Livadas,R Walsh, D Lapsley, W T Strayer. Using machine learning techniques to identify hornet traffic[ A] .Proceedings of the 2nd IEEE LCN Workshop on Network Security[C ]. Tampa: IEEE Computer Society,2006.967- 974.
  • 3W T Strayer, R Walsh, C Livadas, D Lapsley. Detecting botnets with tight command and control[ A ]. Proceedings of the 31st IEEE Conference on Local Computer Networks ( LCN' D6)C]. Tampa: IEEE Computer Society. 195 - 202.
  • 4R Lemos. Bot software looks to improve peerage[ EB/OL]. Http://www. securityfocus. com/news/11390,2006.
  • 5Guofei Gu, Roberto Perdisci, Junjie Zhang, Wenke Lee. Bot- Miner:Clustering analysis of network Waffle for protocol- and structure-independent hornet detection[ A ]. Proceedings of the 17th USENIX Security Symposium (Security' 08) [C]. Berkeley: USENIX Association,2008. 139- 154.
  • 6Sang-Kyun Noh, Joo-Hyung Oh, Jae-Seo Lee, Bong-Nam Noh, Hyun-Cheol Jeong. Detecting p2p bothers using a multiphased flow model[ A] .3rd International Conference on Digital Society[C]. Cancun: Computer Society,2009.247 - 253.
  • 7Jian Kang,Jun-Yao Zhang, Qiang I.,i,Zhuo li.Detecling new p2p bomet with multi-chart CUSUM[ A ]. Internalional Conference on Networks Security, Wireless Communications and Trusted Computing[C]. Wuhan: Computer Society, 2009. 688 -691.
  • 8Mohammad M Masud, Jing Gao, Latifur Khan, Jiawei Han, Bhavani Thuraisingham. A multi-partition multi-chunk ensemble technique to classify concept-drifting data streams [ A ]. Proceedings of The 13th Pacific-Asia Conference on Knowledge Discovery and Data Mining ( PAKDD' 09 ) [ C ]. Bangkok, Thailand: Springer Vedag,2009. 363 - 375.
  • 9Ping Wang,Lei Wu.A systematic study on Peer-to-Peer Botnets[ A ]. Computer Communications and Networks [ C ]. San Francisco: Institute of Electrical and Electronics Engineers Inc,2009. 121 - 128.
  • 10Shafer J,Agrawal R, Mehta M. SPRINT: A scalable parallel classifier for data mining[ A]. Proceedings of the 1996 International Conference on Very Large Data Bases. Bombay[ C]. San Francisco: Morgan Kaufmann Publishers Inc, 1996. 544 - 555.









使用帮助 返回顶部