ABSTRACT

Botnets pose an increasing threat to network operators, enterprises, and end users. Over the years, researchers have developed various ways of detecting botnets by analyzing different aspects of their operations. In this paper, we present an overview of existing botnet detection techniques. We classify the techniques based on their properties and specifics of botnet activity they focus on. In the end, we give recommendations for implementation of various detection approaches and propose a detection mechanism suitable for enterprises.