>
Fa   |   Ar   |   En
   detecting active bot networks based on dns traffic analysis  
   
نویسنده nafarieh zahra ,mahdipur ebrahim ,haj seyed javadi hamid
منبع journal of advances in computer engineering and technology - 2019 - دوره : 5 - شماره : 3 - صفحه:129 -142
چکیده    One of the serious threats to cyberspace is the bot networks or botnets. bots are malicious software that acts as a network and allows hackers to remotely manage and control infected computer victims. given the fact that dns is one of the most common protocols in the network and is essential for the proper functioning of the network, it is very useful for monitoring, detecting and reducing the activity of the botnets. dns queries are sent in the early stages of the life cycle of each botnet, so infected hosts are identified before any malicious activity is performed. because the exchange of information in the network environment and the volume of information is very high, storing and indexing this massive data requires a large database. by using the dns traffic analysis, we try to identify the botnets. we used the data generated from the network traffic and information of known botnets with the splunk platform to conduct data analysis to quickly identify attacks and predict potential dangers that could arise. the analysis results were used in tests conducted on real network environments to determine the types of attacks. visual ip mapping was then used to determine actions that could be taken. the proposed method is capable of recognizing known and unknown bots.
کلیدواژه bot networks ,dns traffic analysis ,fast flux ,intrusion detection ,network security ,security threats
آدرس islamic azad university, science and research branch, department of electrical and computer engineering, iran, islamic azad university, science and research branch, department of electrical and computer engineering, iran, shahed university, department of mathematics and computer science, iran
پست الکترونیکی h.s.javadi@shahed.ac.ir
 
     
   
Authors
  
 
 

Copyright 2023
Islamic World Science Citation Center
All Rights Reserved