An Improvement For Fast-Flux Service Networks Detection Based On Data Mining Techniques

Ziniu Chen,Jian Wang,Yujian Zhou,Chunping Li
DOI: https://doi.org/10.1007/978-3-642-21881-1_47
2011-01-01
Abstract:Fast-flux is a kind of DNS technique used by botnets to hide the actual location of malicious servers. It is considered as an emerging threat for information security. In this paper, we propose an approach to detect the fast-flux service network ( FFSN) using data mining techniques. Furthermore, we use the resampling technique to solve imbalanced classification problem with respect to FFSNs detection. Experiment results in the real datasets show that our approach improves the detective precision and effectiveness compared with existing researches.
What problem does this paper attempt to address?