FANCI : Feature-based Automated NXDomain Classification and Intelligence

被引:0
|
作者
Schueppen, Samuel [1 ]
Teubert, Dominik [2 ]
Herrmann, Patrick [1 ]
Meyer, Ulrike [1 ]
机构
[1] Rhein Westfal TH Aachen, Aachen, Germany
[2] Siemens CERT, Munich, Germany
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
FANCI is a novel system for detecting infections with domain generation algorithm (DGA) based malware by monitoring non-existent domain (NXD) responses in DNS traffic. It relies on machine-learning based classification of NXDs (i.e., domain names included in negative DNS responses), into DGA-related and benign NXDs. The features for classification are extracted exclusively from the individual NXD that is to be classified. We evaluate the system on malicious data generated by 59 DGAs from the DGArchive, data recorded in a large university's campus network, and data recorded on the internal network of a large company. We show that the system yields a very high classification accuracy at a low false positive rate, generalizes very well, and is able to identify previously unknown DGAs.
引用
收藏
页码:1165 / 1181
页数:17
相关论文
共 50 条
  • [1] Fully automated artificial intelligence (AI) pipeline for feature-based segmentation and classification of diabetic retinopathy in fundus photographs
    Wu, Yue
    Wang, Fenghua
    Xiao, Sa
    Kihara, Yuka
    Spaide, Ted
    Lee, Cecilia S.
    Lee, Aaron Y.
    [J]. INVESTIGATIVE OPHTHALMOLOGY & VISUAL SCIENCE, 2019, 60 (09)
  • [2] A PROPOSAL FOR FEATURE CLASSIFICATION IN FEATURE-BASED DESIGN
    OVTCHAROVA, J
    PAHL, G
    RIX, J
    [J]. COMPUTERS & GRAPHICS, 1992, 16 (02) : 187 - 195
  • [3] Feature-Based Lung Nodule Classification
    Farag, Amal
    Ali, Asem
    Graham, James
    Elhabian, Shireen
    Farag, Aly
    Falk, Robert
    [J]. ADVANCES IN VISUAL COMPUTING, PT III, 2010, 6455 : 79 - +
  • [4] Feature-Based Dissimilarity Space Classification
    Duin, Robert P. W.
    Loog, Marco
    Pekalska, Elzbieta
    Tax, David M. J.
    [J]. RECOGNIZING PATTERNS IN SIGNALS, SPEECH, IMAGES, AND VIDEOS, 2010, 6388 : 46 - +
  • [5] STATISTICAL FEATURE-BASED CRAQUELURE CLASSIFICATION
    Crisologo, Irene
    Monterola, Christopher
    Soriano, Maricor
    [J]. INTERNATIONAL JOURNAL OF MODERN PHYSICS C, 2011, 22 (11): : 1191 - 1209
  • [6] Feature-Based Terrain Classification For LittleDog
    Filitchkin, Paul
    Byl, Katie
    [J]. 2012 IEEE/RSJ INTERNATIONAL CONFERENCE ON INTELLIGENT ROBOTS AND SYSTEMS (IROS), 2012, : 1387 - 1392
  • [7] EndNote: Feature-based classification of networks
    Barnett, Ian
    Malik, Nishant
    Kuijjer, Marieke L.
    Mucha, Peter J.
    Onnela, Jukka-Pekka
    [J]. NETWORK SCIENCE, 2019, 7 (03) : 438 - 444
  • [8] An automated, feature-based framework for seabed mosaics
    Leone, Alessandro
    Distante, Cosimo
    Mastrolia, Angela
    [J]. SEA TECHNOLOGY, 2007, 48 (12) : 15 - +
  • [9] An automated assembly environment in feature-based design
    You, CF
    Chiu, CC
    [J]. INTERNATIONAL JOURNAL OF ADVANCED MANUFACTURING TECHNOLOGY, 1996, 12 (04): : 280 - 287
  • [10] A FEATURE-BASED ULTRASONIC SYSTEM FOR IGSCC CLASSIFICATION
    ROSE, J
    AVIOLI, M
    LAPIDES, M
    [J]. MATERIALS EVALUATION, 1982, 40 (03) : A13 - A13