Paper Abstract and Keywords |
Presentation |
2009-11-13 16:45
A classification method for packet generation logic of darknet traffic based on characteristics of packet header Junji Nakazato (NICT), Jumpei Shimamura (ForSchooner), Masashi Eto, Daisuke Inoue, Koji Nakao (NICT) ICSS2009-61 |
Abstract |
(in Japanese) |
(See Japanese page) |
(in English) |
A large-scae darknet monitoring is an effective approach to grasp a global trend of malicious activities such as the pread of malwares. In order to drill down the global trend to root causes, it is necessary to develop classification methods ant the darknet traffic. Although existing traffic classification methods often take advantage of the source and destination port numbers, they have become ineffective against recent malwares that have a P2P capability, because the rendezvous packets of P2P often use randomized port numbers. Therefore,in this paper, we provide a traffic classificationn method that does not depend on the port numbers, and apply our method to some actual darknet traffic. |
Keyword |
(in Japanese) |
(See Japanese page) |
(in English) |
Incident analysis / Malware / Network scan / / / / / |
Reference Info. |
IEICE Tech. Rep., vol. 109, no. 285, ICSS2009-61, pp. 43-48, Nov. 2009. |
Paper # |
ICSS2009-61 |
Date of Issue |
2009-11-06 (ICSS) |
ISSN |
Print edition: ISSN 0913-5685 Online edition: ISSN 2432-6380 |
Copyright and reproduction |
All rights are reserved and no part of this publication may be reproduced or transmitted in any form or by any means, electronic or mechanical, including photocopy, recording, or any information storage and retrieval system, without permission in writing from the publisher. Notwithstanding, instructors are permitted to photocopy isolated articles for noncommercial classroom use without fee. (License No.: 10GA0019/12GB0052/13GB0056/17GB0034/18GB0034) |
Download PDF |
ICSS2009-61 |
Conference Information |
Committee |
ICSS |
Conference Date |
2009-11-13 - 2009-11-13 |
Place (in Japanese) |
(See Japanese page) |
Place (in English) |
University of Miyazaki |
Topics (in Japanese) |
(See Japanese page) |
Topics (in English) |
General |
Paper Information |
Registration To |
ICSS |
Conference Code |
2009-11-ICSS |
Language |
Japanese |
Title (in Japanese) |
(See Japanese page) |
Sub Title (in Japanese) |
(See Japanese page) |
Title (in English) |
A classification method for packet generation logic of darknet traffic based on characteristics of packet header |
Sub Title (in English) |
|
Keyword(1) |
Incident analysis |
Keyword(2) |
Malware |
Keyword(3) |
Network scan |
Keyword(4) |
|
Keyword(5) |
|
Keyword(6) |
|
Keyword(7) |
|
Keyword(8) |
|
1st Author's Name |
Junji Nakazato |
1st Author's Affiliation |
Institute of Information and communications technorogy (NICT) |
2nd Author's Name |
Jumpei Shimamura |
2nd Author's Affiliation |
ForSchooner Inc. (ForSchooner) |
3rd Author's Name |
Masashi Eto |
3rd Author's Affiliation |
Institute of Information and communications technorogy (NICT) |
4th Author's Name |
Daisuke Inoue |
4th Author's Affiliation |
Institute of Information and communications technorogy (NICT) |
5th Author's Name |
Koji Nakao |
5th Author's Affiliation |
Institute of Information and communications technorogy (NICT) |
6th Author's Name |
|
6th Author's Affiliation |
() |
7th Author's Name |
|
7th Author's Affiliation |
() |
8th Author's Name |
|
8th Author's Affiliation |
() |
9th Author's Name |
|
9th Author's Affiliation |
() |
10th Author's Name |
|
10th Author's Affiliation |
() |
11th Author's Name |
|
11th Author's Affiliation |
() |
12th Author's Name |
|
12th Author's Affiliation |
() |
13th Author's Name |
|
13th Author's Affiliation |
() |
14th Author's Name |
|
14th Author's Affiliation |
() |
15th Author's Name |
|
15th Author's Affiliation |
() |
16th Author's Name |
|
16th Author's Affiliation |
() |
17th Author's Name |
|
17th Author's Affiliation |
() |
18th Author's Name |
|
18th Author's Affiliation |
() |
19th Author's Name |
|
19th Author's Affiliation |
() |
20th Author's Name |
|
20th Author's Affiliation |
() |
Speaker |
Author-1 |
Date Time |
2009-11-13 16:45:00 |
Presentation Time |
25 minutes |
Registration for |
ICSS |
Paper # |
ICSS2009-61 |
Volume (vol) |
vol.109 |
Number (no) |
no.285 |
Page |
pp.43-48 |
#Pages |
6 |
Date of Issue |
2009-11-06 (ICSS) |
|