Abnormal Scan Behavior Monitoring System Based on Numerical Analysis
Author:
  • Article
  • | |
  • Metrics
  • |
  • Reference [5]
  • |
  • Related [20]
  • | | |
  • Comments
    Abstract:

    This paper introduces an abnormal scan behavior monitoring methods based on numerical analysis. It designs and develops a monitoring system with Netflow network management data, to achieve real-time monitoring for abnormal behaviors such as network worms, IRC Trojan zombie outbreak and spreading of malicious scan by hackers, etc. The system shows significant implement results, and increase network security support service capabilities of ISP.

    Reference
    1 CNNIC.第31次“中国互联网络发展状况统计报告”.http:// www.cnnic.cn,2013,5.
    2 CNCERT.“2012年我国互联网网络安全态势综述”.http:// www.cert.org.cn,2013:2-9.
    3 李军,曹文君,李扬.FB-NBAS:一种基于流的网络行为分析模型.计算机工程,2008,34(3):165-167.
    4 牛国林,管晓宏,龙毅,秦涛.多源流量特征分析方法及其在异常检测中的应用.解放军理工大学学报(自然科学版), 2009,10(4):350-355.
    5 杨奇.基于异常行为特征的僵尸网络检测方法研究[学位论文].西安:陕西师范大学,2010.
    Cited by
    Comments
    Comments
    分享到微博
    Submit
Get Citation

荆涛,李俊.基于数值分析的异常扫描行为监测系统.计算机系统应用,2014,23(1):49-52

Copy
Share
Article Metrics
  • Abstract:1440
  • PDF: 2770
  • HTML: 0
  • Cited by: 0
History
  • Received:June 09,2013
  • Revised:July 04,2013
  • Online: January 26,2014
Article QR Code
You are the first1095111Visitors
Copyright: Institute of Software, Chinese Academy of Sciences Beijing ICP No. 05046678-3
Address:4# South Fourth Street, Zhongguancun,Haidian, Beijing,Postal Code:100190
Phone:010-62661041 Fax: Email:csa (a) iscas.ac.cn
Technical Support:Beijing Qinyun Technology Development Co., Ltd.

Beijing Public Network Security No. 11040202500063