講演抄録/キーワード |
講演名 |
2008-05-09 12:10
DNS based Entropy and Forensic Analysis on the PCs for Learners in a University Dennis A. Ludena R.・Shinichiro Kubota・Kenichi Sugitani・○Yasuo Musashi(Kumamoto Univ.) ICM2008-19 |
抄録 |
(和) |
(まだ登録されていません) |
(英) |
We performed an entropy study on the DNS query traffic from the outside of a university campus network to the top domain DNS server when querying about reverse resolution on the PCs for learners through January 1st, 2007 to February 29th, 2008. The following interesting results are given: (1) The total DNS query traffic changes in a mild manner until January 16th, 2008, however it drastically changes after January 17th, 2008. (2) In January 17th, 2008, the DNS query traffic is mainly dominated by several specific IP addresses as their query keywords. (3) We carried out forensic analysis on the PCs for learners in which IP addresses are found in the several specific keywords and it is concluded that the PCs become spam bots when inserting USB based key disk storage. |
キーワード |
(和) |
/ / / / / / / |
(英) |
DNS based Detection / Spam Bots / Entropy / DNS traffic / / / / |
文献情報 |
信学技報, vol. 108, no. 24, ICM2008-19, pp. 103-108, 2008年5月. |
資料番号 |
ICM2008-19 |
発行日 |
2008-05-01 (ICM) |
ISSN |
Print edition: ISSN 0913-5685 Online edition: ISSN 2432-6380 |
著作権に ついて |
技術研究報告に掲載された論文の著作権は電子情報通信学会に帰属します.(許諾番号:10GA0019/12GB0052/13GB0056/17GB0034/18GB0034) |
PDFダウンロード |
ICM2008-19 |
|