首頁 歷史 偵測軟體 例子:ZEUS 參考來源

有哪些偵測軟體


Defense Against the Botnet

Because initial servent bots are the weak points at beginning, shut down a botnet before the first peer-list updating procedure
Honeypot based defense:Clone a large set of “servent” bots, but it can survive with only 20% servent bots left.
Obtain peer lists in incoming infections
Forensic analysis of botmaster’s sensor...
~Challenge~: Log of unknown port service and IP beforehand