Redirigiendo al acceso original de articulo en 22 segundos...
Inicio  /  Applied Sciences  /  Vol: 9 Par: 11 (2019)  /  Artículo
ARTÍCULO
TITULO

An Adaptive Multi-Layer Botnet Detection Technique Using Machine Learning Classifiers

Riaz Ullah Khan    
Xiaosong Zhang    
Rajesh Kumar    
Abubakar Sharif    
Noorbakhsh Amiri Golilarz and Mamoun Alazab    

Resumen

In recent years, the botnets have been the most common threats to network security since it exploits multiple malicious codes like a worm, Trojans, Rootkit, etc. The botnets have been used to carry phishing links, to perform attacks and provide malicious services on the internet. It is challenging to identify Peer-to-peer (P2P) botnets as compared to Internet Relay Chat (IRC), Hypertext Transfer Protocol (HTTP) and other types of botnets because P2P traffic has typical features of the centralization and distribution. To resolve the issues of P2P botnet identification, we propose an effective multi-layer traffic classification method by applying machine learning classifiers on features of network traffic. Our work presents a framework based on decision trees which effectively detects P2P botnets. A decision tree algorithm is applied for feature selection to extract the most relevant features and ignore the irrelevant features. At the first layer, we filter non-P2P packets to reduce the amount of network traffic through well-known ports, Domain Name System (DNS). query, and flow counting. The second layer further characterized the captured network traffic into non-P2P and P2P. At the third layer of our model, we reduced the features which may marginally affect the classification. At the final layer, we successfully detected P2P botnets using decision tree Classifier by extracting network communication features. Furthermore, our experimental evaluations show the significance of the proposed method in P2P botnets detection and demonstrate an average accuracy of 98.7%.

 Artículos similares

       
 
Wenxiang Zhou, Sangwei Lu, Jinquan Huang, Muxuan Pan and Zhongguang Chen    
Accurate component maps, which can significantly affect the efficiency, reliability and availability of aero-engines, play a critical role in aero-engine performance simulation. Unfortunately, the information of component maps is insufficient, leading to... ver más
Revista: Aerospace

 
Xiaoju Hou, Yanshen Liu and Zhifei Li    
Knowledge bases (KBs) have become an integral element in digitalization strategies for intelligent engineering and manufacturing. Existing KBs consist of entities and relations and deal with issues of newly added knowledge and completeness. To predict mi... ver más
Revista: Applied Sciences

 
Bahram Choubin,Arash Malekian,Mohammad Gloshan     Pág. 121 - 128
Climate modeling and prediction is important in water resources management, especially in arid and semi-arid regions that frequently suffer further from water shortages. The Maharlu-Bakhtegan basin, with an area of 31?000 km2 is a semi-arid and arid regi... ver más
Revista: Atmósfera