Detecting Bots Based on Keylogging Activities

02/05/2010
by   Yousof Al-Hammadi, et al.
0

A bot is a piece of software that is usually installed on an infected machine without the user's knowledge. A bot is controlled remotely by the attacker under a Command and Control structure. Recent statistics show that bots represent one of the fastest growing threats to our network by performing malicious activities such as email spamming or keylogging. However, few bot detection techniques have been developed to date. In this paper, we investigate a behavioural algorithm to detect a single bot that uses keylogging activity. Our approach involves the use of function calls analysis for the detection of the bot with a keylogging component. Correlation of the frequency of a specified time-window is performed to enhance he detection scheme. We perform a range of experiments with the spybot. Our results show that there is a high correlation between some function calls executed by this bot which indicates abnormal activity in our system.

READ FULL TEXT
POST COMMENT

Comments

There are no comments yet.

Authors

04/22/2010

Performance Evaluation of DCA and SRC on a Single Bot Detection

Malicious users try to compromise systems using new techniques. One of t...
01/15/2010

Detecting Botnets Through Log Correlation

Botnets, which consist of thousands of compromised machines, can cause s...
04/16/2010

Behavioural Correlation for Detecting P2P Bots

In the past few years, IRC bots, malicious programs which are remotely c...
01/13/2010

DCA for Bot Detection

Ensuring the security of computers is a non-trivial task, with many tech...
06/13/2006

On the Efficiency of Strategies for Subdividing Polynomial Triangular Surface Patches

In this paper, we investigate the efficiency of various strategies for s...
07/01/2011

Unstructured Human Activity Detection from RGBD Images

Being able to detect and recognize human activities is essential for sev...
12/03/2017

Always Lurking: Understanding and Mitigating Bias in Online Human Trafficking Detection

Web-based human trafficking activity has increased in recent years but i...
This week in AI

Get the week's most popular data science and artificial intelligence research sent straight to your inbox every Saturday.