All

What are you looking for?

All
Projects
Results
Organizations

Quick search

  • Projects supported by TA ČR
  • Excellent projects
  • Projects with the highest public support
  • Current projects

Smart search

  • That is how I find a specific +word
  • That is how I leave the -word out of the results
  • “That is how I can find the whole phrase”

Identifying and Modeling Botnet C&C Behaviors

The result's identifiers

  • Result code in IS VaVaI

    <a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F68407700%3A21230%2F14%3A00226436" target="_blank" >RIV/68407700:21230/14:00226436 - isvavai.cz</a>

  • Result on the web

    <a href="http://dl.acm.org/citation.cfm?id=2602949" target="_blank" >http://dl.acm.org/citation.cfm?id=2602949</a>

  • DOI - Digital Object Identifier

    <a href="http://dx.doi.org/10.1145/2602945.2602949" target="_blank" >10.1145/2602945.2602949</a>

Alternative languages

  • Result language

    angličtina

  • Original language name

    Identifying and Modeling Botnet C&C Behaviors

  • Original language description

    Through the analysis of a long-term botnet capture, we identified and modeled the behaviors of its C&C channels. They were found and characterized by periodicity analyses and statistical representations. The relationships found between the behaviors of the UDP, TCP and HTTP C&C channels allowed us to unify them in a general model of the botnet behavior. Our behavioral analysis of the C&C channels gives a new perspective on the modeling of malware behavior, helping to better understand botnets.

  • Czech name

  • Czech description

Classification

  • Type

    D - Article in proceedings

  • CEP classification

    JC - Computer hardware and software

  • OECD FORD branch

Result continuities

  • Project

    <a href="/en/project/VG20122014079" target="_blank" >VG20122014079: Behavioral Detection of Advanced Persistent Threats in Computer Networks</a><br>

  • Continuities

    P - Projekt vyzkumu a vyvoje financovany z verejnych zdroju (s odkazem do CEP)

Others

  • Publication year

    2014

  • Confidentiality

    S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů

Data specific for result type

  • Article name in the collection

    Proceedings of the 1st International Workshop on Agents and CyberSecurity

  • ISBN

    978-1-4503-2728-2

  • ISSN

  • e-ISSN

  • Number of pages

    8

  • Pages from-to

  • Publisher name

    ACM

  • Place of publication

    New York

  • Event location

    Paris

  • Event date

    May 5, 2014

  • Type of event by nationality

    WRD - Celosvětová akce

  • UT code for WoS article