IEICE Transactions on Information and Systems
Online ISSN : 1745-1361
Print ISSN : 0916-8532
Special Section on the Architectures, Protocols, and Applications for the Future Internet
An Approach for Identifying Malicious Domain Names Generated by Dictionary-Based DGA Bots
Akihiro SATOHYutaka NAKAMURAYutaka FUKUDADaiki NOBAYASHITakeshi IKENAGA
著者情報
ジャーナル フリー

2021 年 E104.D 巻 5 号 p. 669-672

詳細
抄録

Computer networks are facing serious threats from the emergence of sophisticated new DGA bots. These DGA bots have their own dictionary, from which they concatenate words to dynamically generate domain names that are difficult to distinguish from human-generated domain names. In this letter, we propose an approach for identifying the callback communications of DGA bots based on relations among the words that constitute the character string of each domain name. Our evaluation indicates high performance, with a recall of 0.9977 and a precision of 0.9869.

著者関連情報
© 2021 The Institute of Electronics, Information and Communication Engineers
前の記事 次の記事
feedback
Top