DSpace Repository

Detection of Algorithmically Generated Domain Names in Botnets

Show simple item record

dc.contributor.author Bhatia, Ashutosh
dc.date.accessioned 2024-10-15T10:37:38Z
dc.date.available 2024-10-15T10:37:38Z
dc.date.issued 2019-03
dc.identifier.uri https://link.springer.com/chapter/10.1007/978-3-030-15032-7_107
dc.identifier.uri http://dspace.bits-pilani.ac.in:8080/jspui/handle/123456789/16100
dc.description.abstract Botnets pose a major threat to the information security of organizations and individuals. The bots (malware infected hosts) receive commands and updates from the Command and Control (C&C) servers, and hence, contacting and communicating with these servers is an essential requirement of bots. However, once a malware is identified in the infected host, it is easy to find its C&C server and block it, if the domain names of the servers are hard-coded in the malware. To counter such detection, many malwares families use probabilistic algorithms known as domain generation algorithms (DGAs) to generate domain names for the C&C servers. This makes it difficult to track down the C&C servers of the Botnet even after the malware is identified. In this paper, we propose a probabilistic approach for the identification of domain names which are likely to be generated by a malware using DGA. The proposed solution is based on the hypothesis that human generated domain names are usually inspired by the words from a particular language (say English), whereas DGA generated domain names should contain random sub-strings in it. Results show that the percentage of false negatives in the detection of DGA generated domain names using the proposed method is less than 29% across 30 DGA families considered by us in our experimentation. en_US
dc.language.iso en en_US
dc.publisher Springer en_US
dc.subject Computer Science en_US
dc.subject Botnets en_US
dc.subject Domain generation algorithms (DGAs) en_US
dc.title Detection of Algorithmically Generated Domain Names in Botnets en_US
dc.type Article en_US


Files in this item

Files Size Format View

There are no files associated with this item.

This item appears in the following Collection(s)

Show simple item record

Search DSpace


Advanced Search

Browse

My Account