An Empirical Analysis of ZeuS C&C Lifetime

作者: Carlos Gañán , Orcun Cetin , Michel van Eeten

DOI: 10.1145/2714576.2714579

关键词:

摘要: Botnets continue to pose a significant threat network-based applications and communications over the Internet. A key mitigation strategy has been take down command control infrastructure of botnets. The efficiency those methods not extensively studied. In this paper we investigate several observable characteristics botnet controls (C&C) estimate variability in survival rate these C&Cs factors that are related such variability. Furthermore, show different type efforts have impact. Kaplan-Meier analysis is performed evaluate C&C ratios particular case ZeuS botnet. Using lasso penalized Cox regression model, identify influence lifetime C&C. Location, malware family type, registrar, hosting popularity fundamental explain Our results location two affect more significantly lifetime. Thus, certain regions Asia prone stay online longer located Europe.

参考文章(36)
Neil Daswani, Michael Stoppelman, The anatomy of Clickbot.A conference on workshop on hot topics in understanding botnets. pp. 11- 11 ,(2007)
S.T. Tajalizadehkhoob, Hadi Asghari, C. Ganan, Michel van Eeten, Why them? Extracting intelligence about target selection from Zeus financial malware workshop on the economics of information security. ,(2014)
Hadi Asghari, Shirin Tabatabaie, David Rand, Johannes M. Bauer, Michel van Eeten, The Role of Internet Service Providers in Botnet Mitigation an Empirical Analysis Based on Spam Data Social Science Research Network. ,(2010)
Rhiannon Weaver, A probabilistic population study of the Conficker-C botnet passive and active network measurement. ,vol. 6032, pp. 181- 190 ,(2010) , 10.1007/978-3-642-12334-4_19
Roberto Perdisci, David Dagon, Yacin Nadji, Manos Antonakakis, Nikolaos Vasiloglou, Wenke Lee, Saeed Abu-Nimeh, From throw-away traffic to bots: detecting the rise of DGA-based malware usenix security symposium. pp. 24- 24 ,(2012)
David R. Cox, Regression Models and Life-Tables Springer Series in Statistics. ,vol. 34, pp. 527- 541 ,(1992) , 10.1007/978-1-4612-4380-9_37
Abedelaziz Mohaisen, Omar Alrawi, Unveiling Zeus: automated classification of malware samples the web conference. pp. 829- 832 ,(2013) , 10.1145/2487788.2488056
PATRICIA M. GRAMBSCH, TERRY M. THERNEAU, Proportional hazards tests and diagnostics based on weighted residuals Biometrika. ,vol. 81, pp. 515- 526 ,(1994) , 10.1093/BIOMET/81.3.515
C. Rossow, D. Andriesse, T. Werner, B. Stone-Gross, D. Plohmann, C. J. Dietrich, H. Bos, SoK: P2PWNED - Modeling and Evaluating the Resilience of Peer-to-Peer Botnets ieee symposium on security and privacy. pp. 97- 111 ,(2013) , 10.1109/SP.2013.17