NetFlow based botnet network detection system and detection method
A botnet and detection method technology, applied in the NetFlow-based botnet detection system and detection field, can solve the problems that it is difficult to ensure accuracy and speed, and cannot quickly and accurately detect botnets
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment Construction
[0068] Such as figure 1 Shown, the botnet detection system based on NetFlow of an embodiment of the present invention comprises:
[0069] The data collection module is set on the key router node of the target network, and is used to collect the NetFlow data flow of the node;
[0070] A preprocessing module, configured to preprocess the NetFlow data stream collected by the data collection module;
[0071] Node evaluation module for analyzing the function F by bot (v i ) to get the suspected botnet probability Pbot corresponding to the data stream i i ;
[0072] The topology discovery module is used to analyze the preprocessed NetFlow data flow, obtain the data flow vector, and draw a data flow communication diagram composed of all data flow vectors;
[0073] Correlation analysis module for drawing and analyzing the probability of suspected botnet Pbot i is the weighted data flow communication graph, and calculates the probability that the target network is a botnet;
[0...
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic, Popular Technical Reports.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap|About US| Contact US: help@patsnap.com