DNS-based anti-evasion technique for botnets detection

Sergii Lysenko, Oksana Pomorova, Олег Савенко, Andrii Kryshchuk, Kira Bobrovnikova · 2015

A new DNS-based anti-evasion technique for botnets detection is proposed. It is based on a cluster analysis of the features obtained from the payload of DNS-messages. The method uses a semi-supervised fuzzy c-means clustering. Usage of the developed method makes it possible to detect botnets that use the DNS-based evasion techniques with high efficiency.

Read the paper · More papers on PaperTik