发明名称 METHOD, APPARATUS AND SYSTEM FOR DETECTING BOTNET
摘要 A method, an apparatus, and a system for detecting Botnet are disclosed. The method for detecting Botnet includes: obtaining an address information about a control host in a Bot sample by using an auto breakout environment; sending a query request message to a traffic analysis device to obtain an address information of a Bot host connected with the control host, in which the query request message carries the address information about the control host; and receiving a query response message returned by the traffic analysis device, in which the query response message carries the address information of the Bot host connected with the control host. The method for detecting Botnet can obtain the Botnet information in real time and construct a topology of the Botnet.
申请公布号 US2012204264(A1) 申请公布日期 2012.08.09
申请号 US201213452214 申请日期 2012.04.20
申请人 JIANG WU;CHENGDU HUAWEI SYMANTEC TECHNOLOGIES CO., LTD. 发明人 JIANG WU
分类号 G06F21/00 主分类号 G06F21/00
代理机构 代理人
主权项
地址