×

System and method for bot detection

  • US 10,587,636 B1
  • Filed: 04/17/2017
  • Issued: 03/10/2020
  • Est. Priority Date: 04/01/2004
  • Status: Active Grant
First Claim
Patent Images

1. A method for detecting a communication channel of a bot in a network, comprising:

  • analyzing a portion of network data being transmitted over the network;

    configuring a module within a controller to determine a communication protocol being used in a transmission of the network data over a communication channel;

    responsive to detecting the communication channel using the communication protocol, processing at least the portion of the network data within a first virtual machine to determine whether a bot communication exists by at least determining whether the portion of the network data includes a plurality of commands in a particular sequence that, according to the determined communication protocol, tend to be associated with the bot communication; and

    performing a recovery process when the bot communication is detected, the recovery process including, determining one or more network devices that participated in communications using the communication channel operating as a command and control communication channel.

View all claims
  • 7 Assignments
Timeline View
Assignment View
    ×
    ×