×

System and method for fast flux detection

  • US 8,539,577 B1
  • Filed: 02/26/2009
  • Issued: 09/17/2013
  • Est. Priority Date: 06/20/2008
  • Status: Active Grant
First Claim
Patent Images

1. A method comprising:

  • querying, over a period of time, a domain name system (DNS) for DNS records associated with a domain name;

    receiving, from the DNS over the period of time, the DNS records associated with the domain name;

    determining a number of unique parameters that are contained within the DNS records received from the DNS over the period of time;

    determining that the domain name is part of a fast flux network of computers based on the number of unique parameters; and

    identifying, based on the number of unique parameters, the fast flux network as one or more of;

    a single flux network, a double flux network, a top-tier flux network, and a lower-tier flux network.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×