Title :
A NetFlow based internet-worm detecting system in large network
Author :
Chan, Yi-Tung F. ; Shoniregun, Charles A. ; Akmayeva, Galyna A.
Author_Institution :
Univ. of Wales, Cardiff
Abstract :
The Internet worm infects the computer system, network packet, communication performance, and the traditional method of managing network using SNMP to monitor abnormal network traffic. To monitor suspicious Internet activity and to recognise the Internet worm categories, we proposed FloWorM system that can reduce the misjudgment and detection rate based on NetFlow which analyse the source data from the router. Our experiment and data testing are based on two companies.
Keywords :
Internet; invasive software; FloWorM system; NetFlow based Internet-worm detecting system; abnormal network traffic; communication performance; computer system; large network; network packet; Computer worms; Computerized monitoring; IP networks; Internet; Intrusion detection; Network servers; Surveillance; Taxonomy; Telecommunication traffic; Web server;
Conference_Titel :
Digital Information Management, 2008. ICDIM 2008. Third International Conference on
Conference_Location :
London
Print_ISBN :
978-1-4244-2916-5
Electronic_ISBN :
978-1-4244-2917-2
DOI :
10.1109/ICDIM.2008.4746789