• Complex
  • Title
  • Keyword
  • Abstract
  • Scholars
  • Journal
  • ISSN
  • Conference
成果搜索

author:

Zhang, Yudong (Zhang, Yudong.) [1] | Chen, Yuzhong (Chen, Yuzhong.) [2] (Scholars:陈羽中) | Lin, Yangyang (Lin, Yangyang.) [3] | Zhang, Yankun (Zhang, Yankun.) [4]

Indexed by:

EI Scopus

Abstract:

Domain generation algorithms (DGA) provide methods that use specific parameters as random seeds to generate a large number of random domain names for preventing malicious domain name detection, which greatly increases the difficulty of detecting and defending botnets and malware. State-of-the-art models for detecting algorithmically generated domain names are generally based on the principle of analyzing the statistical characteristics of the domain name and building a classifier to locate the algorithmically generated ones. However, most current models have problems of requiring the manual construction of feature sets for classification, as they are sensitive to the imbalance of the sample distribution in the domain name dataset and are difficult to adapt to frequent changes of the domain-name algorithm. To address this issue, we propose a hybrid model that combines a convolutional neural network (CNN) and a bidirectional long-term memory network (BLSTM). First, to solve the problem of the number of domain names generated by DGAs being relatively small and the sample distribution being unbalanced, which consequently decreases detection accuracy, the borderline synthetic minority over-sampling technique is employed to optimize the sample balance of the domain name dataset. Second, a hybrid deep neural network that combines CNN and BLSTM is introduced to extract the semantic and context-dependency features from the domain names. The experimental results from different domain-name datasets demonstrate that the proposed model achieves significant improvement over state-of-the-art models with regard to precision and robustness. © 2019, Springer Nature Singapore Pte Ltd.

Keyword:

Classification (of information) Deep neural networks Interactive computer systems Long short-term memory Malware Random number generation Semantics

Community:

  • [ 1 ] [Zhang, Yudong]College of Mathematics and Computer Sciences, Fuzhou University, Fuzhou; 350116, China
  • [ 2 ] [Zhang, Yudong]Fujian Provincial Key Laboratory of Network Computing and Intelligent Information Processing, Fuzhou; 350116, China
  • [ 3 ] [Chen, Yuzhong]College of Mathematics and Computer Sciences, Fuzhou University, Fuzhou; 350116, China
  • [ 4 ] [Chen, Yuzhong]Fujian Provincial Key Laboratory of Network Computing and Intelligent Information Processing, Fuzhou; 350116, China
  • [ 5 ] [Lin, Yangyang]College of Mathematics and Computer Sciences, Fuzhou University, Fuzhou; 350116, China
  • [ 6 ] [Lin, Yangyang]Fujian Provincial Key Laboratory of Network Computing and Intelligent Information Processing, Fuzhou; 350116, China
  • [ 7 ] [Zhang, Yankun]College of Mathematics and Computer Sciences, Fuzhou University, Fuzhou; 350116, China
  • [ 8 ] [Zhang, Yankun]Fujian Provincial Key Laboratory of Network Computing and Intelligent Information Processing, Fuzhou; 350116, China

Reprint 's Address:

  • 陈羽中

    [chen, yuzhong]fujian provincial key laboratory of network computing and intelligent information processing, fuzhou; 350116, china;;[chen, yuzhong]college of mathematics and computer sciences, fuzhou university, fuzhou; 350116, china

Show more details

Version:

Related Keywords:

Related Article:

Source :

ISSN: 1865-0929

Year: 2019

Volume: 1042 CCIS

Page: 738-751

Language: English

Cited Count:

WoS CC Cited Count: 0

SCOPUS Cited Count:

ESI Highly Cited Papers on the List: 0 Unfold All

WanFang Cited Count:

Chinese Cited Count:

30 Days PV: 3

Online/Total:146/9858214
Address:FZU Library(No.2 Xuyuan Road, Fuzhou, Fujian, PRC Post Code:350116) Contact Us:0591-22865326
Copyright:FZU Library Technical Support:Beijing Aegean Software Co., Ltd. 闽ICP备05005463号-1