Research Article

A Hybrid Association Rule-Based Method to Detect and Classify Botnets

Table 1

Botnet type, number, and name.

TypeAmountBotnet name

Normal33Normal (ISCX + ISOT)
IRC botnet24Neris, Rbot, Menti, Murlo, Tbot, IRC ISCX
HTTP botnets7Virut, Sogou
P2P botnets12NSIS.ay, SMTP Spam, Zeus (C & C), UDP Storm, Zeus, Zero access, Weasel
PS botnets3Zeus
Fast-flux botnets3Waledac