| 注册
首页|期刊导航|计算机应用研究|基于网络流量探测的加密矿池特征识别方法

基于网络流量探测的加密矿池特征识别方法

史博轩 毛洪亮 林绅文

计算机应用研究2025,Vol.42Issue(11):3251-3256,6.
计算机应用研究2025,Vol.42Issue(11):3251-3256,6.DOI:10.19734/j.issn.1001-3695.2025.04.0104

基于网络流量探测的加密矿池特征识别方法

Feature recognition method of encrypted ore pool based on network traffic detection

史博轩 1毛洪亮 1林绅文1

作者信息

  • 1. 国家计算机网络应急技术处理协调中心,北京 100029
  • 折叠

摘要

Abstract

In view of the fact that the current domestic hidden mining activities are mainly based on encrypted traffic,and it is impossible to directly discover the relevant characteristics of encrypted mining pools from message traffic analysis,this paper proposed a method for discovering encrypted mining pools or proxy nodes based on network traffic detection and analyzing their key characteristics.By simulating the actual mining traffic of encrypted miners,it injected a variety of specific traffic into the encrypted mining pool or proxy node.By integrating network security monitoring,blockchain data analysis and other technical means,it quickly discovered the encrypted mining pool or proxy node based on the mainstream mining pool protocol.In addi-tion,it established a currency feature recognition model for encrypted mining pools and feature recognition of encrypted mining pools to accurately extract and analyze the image features of encrypted mining pools,including the pool's certificate,currency,name,wallet address and other feature information.At the same time,combined with the encrypted mining pool information dis-covered by the above method,it used the IQR algorithm based on time series to identify the actual mining traffic in the known peer encrypted mining pool.Experimental results show that this technology can effectively identify different mining pool proto-cols and corresponding portrait features.The recognition accuracy of the currency features of the encrypted mining pool exceeds 97%.At the same time,it can more accurately identify the mining traffic of the known peer as the encrypted mining pool node,providing an efficient technical means to distinguish mining traffic in actual network monitoring.

关键词

区块链/虚拟货币/加密流量/主动探测/矿池协议

Key words

blockchain/virtual currency/encrypted traffic/active detection/mining pool protocol

分类

计算机与自动化

引用本文复制引用

史博轩,毛洪亮,林绅文..基于网络流量探测的加密矿池特征识别方法[J].计算机应用研究,2025,42(11):3251-3256,6.

基金项目

国家重点研发计划重点专项资助项目(2022YFC3320900,2021YFB2701104) (2022YFC3320900,2021YFB2701104)

计算机应用研究

OA北大核心

1001-3695

访问量1
|
下载量0
段落导航相关论文