基于dns的大學(xué)防垃圾郵件程序檢測(cè)[外文翻譯].rar
基于dns的大學(xué)防垃圾郵件程序檢測(cè)[外文翻譯],基于dns的大學(xué)防垃圾郵件程序檢測(cè)[外文翻譯]包含中文翻譯和英文原文,內(nèi)容詳細(xì)完整,建議下載參考!中文: 5200 字英文: 14900字符摘要:從2007年4月1日到2008年4月30日,我們?cè)赿ns查詢流量問(wèn)題上進(jìn)行了一個(gè)熵的研究,研究是通過(guò)一個(gè)大學(xué)校園網(wǎng)絡(luò)外面到頂端的域名解析服務(wù)器,在其pc房終端上查詢反向解析。...
該文檔為壓縮文件,包含的文件列表如下:
內(nèi)容介紹
原文檔由會(huì)員 xiaowei 發(fā)布
基于DNS的大學(xué)防垃圾郵件程序檢測(cè)[外文翻譯]
包含中文翻譯和英文原文,內(nèi)容詳細(xì)完整,建議下載參考!
中文: 5200 字
英文: 14900字符
摘要:從2007年4月1日到2008年4月30日,我們?cè)贒NS查詢流量問(wèn)題上進(jìn)行了一個(gè)熵的研究,研究是通過(guò)一個(gè)大學(xué)校園網(wǎng)絡(luò)外面到頂端的域名解析服務(wù)器,在其pc房終端上查詢反向解析。下面是有意思的發(fā)現(xiàn):(1)在2008年1月17日,DNS查詢流量主要是被幾個(gè)特殊的IP地址以他們的查詢關(guān)鍵字支配(2)我們?cè)赑C房的在幾個(gè)特殊關(guān)鍵字上,IP地址被發(fā)現(xiàn)的終端上進(jìn)行了辯證式的分析,進(jìn)而推斷出一個(gè)結(jié)論,在插入基于關(guān)鍵磁盤存儲(chǔ)的USB時(shí),PCs變成垃圾郵件僵尸機(jī)。
1.引言
最近,我們報(bào)道說(shuō),在校園網(wǎng)內(nèi),當(dāng)獨(dú)特的源IP地址的垃圾郵件程序增加時(shí)基于DNS查詢的DNS查詢數(shù)據(jù)包流量熵在校園網(wǎng)外的關(guān)鍵字大大減少。
在這份論文中,我們?cè)赑TR記錄資源上進(jìn)行了熵分析,它是基于校園網(wǎng)絡(luò)外部的DNS查詢包流量 ......
Abstract
We carried out an entropy study on the DNS query traffic from the outside of a university campus network to the top domain DNS server when querying about reverse resolution on the PC room terminals through April 1st, 2007 to April 30th, 2008. The following interesting results are given: (1) In January 17th, 2008, the DNS query traffic is mainly dominated by several specific IP addresses as their query keywords. (2) We carried out forensic analysis on the PC room terminals in which IP addresses are found in the several specific keywords and it is concluded that the PCs become spam bots when inserting USB based key disk storage.
1. Introduction
Recently, we reported that the DNS query keywords based entropy in the DNS query packet traffic from the outside of the campus network decreases considerably while the unique source IP addresses based entropy increases when the spam bots activity is high in the campus network [1].
In this paper, we carried out entropy analysis on the PTR resource record (RR)-based DNS query packets traffic from the outside of the campus network ......
包含中文翻譯和英文原文,內(nèi)容詳細(xì)完整,建議下載參考!
中文: 5200 字
英文: 14900字符
摘要:從2007年4月1日到2008年4月30日,我們?cè)贒NS查詢流量問(wèn)題上進(jìn)行了一個(gè)熵的研究,研究是通過(guò)一個(gè)大學(xué)校園網(wǎng)絡(luò)外面到頂端的域名解析服務(wù)器,在其pc房終端上查詢反向解析。下面是有意思的發(fā)現(xiàn):(1)在2008年1月17日,DNS查詢流量主要是被幾個(gè)特殊的IP地址以他們的查詢關(guān)鍵字支配(2)我們?cè)赑C房的在幾個(gè)特殊關(guān)鍵字上,IP地址被發(fā)現(xiàn)的終端上進(jìn)行了辯證式的分析,進(jìn)而推斷出一個(gè)結(jié)論,在插入基于關(guān)鍵磁盤存儲(chǔ)的USB時(shí),PCs變成垃圾郵件僵尸機(jī)。
1.引言
最近,我們報(bào)道說(shuō),在校園網(wǎng)內(nèi),當(dāng)獨(dú)特的源IP地址的垃圾郵件程序增加時(shí)基于DNS查詢的DNS查詢數(shù)據(jù)包流量熵在校園網(wǎng)外的關(guān)鍵字大大減少。
在這份論文中,我們?cè)赑TR記錄資源上進(jìn)行了熵分析,它是基于校園網(wǎng)絡(luò)外部的DNS查詢包流量 ......
Abstract
We carried out an entropy study on the DNS query traffic from the outside of a university campus network to the top domain DNS server when querying about reverse resolution on the PC room terminals through April 1st, 2007 to April 30th, 2008. The following interesting results are given: (1) In January 17th, 2008, the DNS query traffic is mainly dominated by several specific IP addresses as their query keywords. (2) We carried out forensic analysis on the PC room terminals in which IP addresses are found in the several specific keywords and it is concluded that the PCs become spam bots when inserting USB based key disk storage.
1. Introduction
Recently, we reported that the DNS query keywords based entropy in the DNS query packet traffic from the outside of the campus network decreases considerably while the unique source IP addresses based entropy increases when the spam bots activity is high in the campus network [1].
In this paper, we carried out entropy analysis on the PTR resource record (RR)-based DNS query packets traffic from the outside of the campus network ......