مرکز اطلاعات علمی Scientific Information Database (SID) - Trusted Source for Research and Academic Resources

Persian Verion

Scientific Information Database (SID) - Trusted Source for Research and Academic Resources

video

Scientific Information Database (SID) - Trusted Source for Research and Academic Resources

sound

Scientific Information Database (SID) - Trusted Source for Research and Academic Resources

Persian Version

Scientific Information Database (SID) - Trusted Source for Research and Academic Resources

View:

530
Scientific Information Database (SID) - Trusted Source for Research and Academic Resources

Download:

0
Scientific Information Database (SID) - Trusted Source for Research and Academic Resources

Cites:

Information Journal Paper

Title

Comparison of Supervised Machine Learning Algorithms in Detection of Botnets Domain Generation Algorithms

Pages

  17-29

Keywords

Domain Generation Algorithms (DGAs)Q1

Abstract

 Domain generation algorithms (DGAs) are used in Botnets as rendezvous points to their command and control (C&C) servers, and can continuously provide a large number of domains which can evade detection by traditional methods such as Blacklist. Internet security vendors often use Blacklists to detect Botnets and malwares, but the DGA can continuously update the domain to evade Blacklist detection. In this paper, first, using features engineering; the three types of structural, statistical and linguistic features are extracted for the detection of DGAs, and then a new dataset is produced by using a dataset with normal DGAs and two datasets with malicious DGAs. Using supervised Machine Learning Algorithms, the classification of DGAs has been performed and the results have been compared to determine a DGA detection model with a higher accuracy and a lower error rate. The results obtained in this paper show that the random forest algorithm offers accuracy rate, detection rate and receiver operating characteristic (ROC) equal to 89. 32%, 91. 67% and 0. 889, respectively. Also, compared to the results of the other investigated algorithms, the random forest algorithm presents a lower false positive rate (FPR) equal to 0. 373.

Cites

  • No record.
  • References

  • No record.
  • Cite

    APA: Copy

    ASADI, M., JABRAEIL JAMALI, M.A., PARSA, S., & MAJIDNEZHAD, V.. (2021). Comparison of Supervised Machine Learning Algorithms in Detection of Botnets Domain Generation Algorithms. JOURNAL OF ELECTRONIC AND CYBER DEFENCE, 8(4 (32) ), 17-29. SID. https://sid.ir/paper/389527/en

    Vancouver: Copy

    ASADI M., JABRAEIL JAMALI M.A., PARSA S., MAJIDNEZHAD V.. Comparison of Supervised Machine Learning Algorithms in Detection of Botnets Domain Generation Algorithms. JOURNAL OF ELECTRONIC AND CYBER DEFENCE[Internet]. 2021;8(4 (32) ):17-29. Available from: https://sid.ir/paper/389527/en

    IEEE: Copy

    M. ASADI, M.A. JABRAEIL JAMALI, S. PARSA, and V. MAJIDNEZHAD, “Comparison of Supervised Machine Learning Algorithms in Detection of Botnets Domain Generation Algorithms,” JOURNAL OF ELECTRONIC AND CYBER DEFENCE, vol. 8, no. 4 (32) , pp. 17–29, 2021, [Online]. Available: https://sid.ir/paper/389527/en

    Related Journal Papers

  • No record.
  • Related Seminar Papers

  • No record.
  • Related Plans

  • No record.
  • Recommended Workshops






    Move to top