DNS-based method for botnets detection

Authors

  • Oleh Stanislavovych Savenko Khmelnitsky national university
  • Serhii Mykolaiovych Lysenko Khmelnitsky national university
  • Kira Yuliivna Bobrovnikova Khmelnitsky national university

Keywords:

synchronous coordinated activity in DNS traffic, botnet, bot

Abstract

The DNS-based method for botnets detection, that is based on the property of the synchronouscoordinated activity of infected hosts in DNS traffic and considers atypical for a normal user behaviors, that are inherent of many types of botnets, was proposed.

synchronous coordinated activity in DNS traffic, botnet, bot

Author Biographies

Oleh Stanislavovych Savenko, Khmelnitsky national university

dean of the faculty of programming and computer and telecommunications systems, candidate of science, associate professor

Serhii Mykolaiovych Lysenko, Khmelnitsky national university

candidate of science, associate professor

Kira Yuliivna Bobrovnikova, Khmelnitsky national university

post-graduate student

Downloads

Abstract views: 342

How to Cite

[1]
O. S. Savenko, S. M. Lysenko, and K. Y. Bobrovnikova, “DNS-based method for botnets detection”, ІТКІ, vol. 31, no. 3, Feb. 2015.

Issue

Section

Information technology and coding theory

Metrics

Downloads

Download data is not yet available.