Title :
Real-time malicious fast-flux detection using DNS and bot related features
Author :
Martinez-Bea, Sergi ; Castillo-Perez, Sergio ; Garcia-Alfaro, Joaquin
Author_Institution :
Artificial Intell. Res. Inst., Bellaterra, Spain
Abstract :
Fast-flux is a protection technique used by botnets to protect their communication servers. We present a detection method for the real-time discovery of fast-flux services. We implemented our approach and conducted experiments that verify the superiority of our approach to previous efforts.
Keywords :
Internet; computer network security; DNS; botnets; communication server; domain name system; fast-flux services; real-time discovery; real-time malicious fast-flux detection; Delays; Feature extraction; IP networks; Proposals; Security; Servers; Support vector machines; Botnets; Domain Name System; Fast-Flux; Malware; Network Security;
Conference_Titel :
Privacy, Security and Trust (PST), 2013 Eleventh Annual International Conference on
Conference_Location :
Tarragona
DOI :
10.1109/PST.2013.6596093