Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

A kind of dga domain name detection method and device

A domain name detection and domain name technology, applied in the field of network security, can solve problems such as inability to accurately detect DGA domain names, and achieve the effect of preventing malicious manipulation

Active Publication Date: 2022-05-17
BEIJING TOPSEC NETWORK SECURITY TECH +2
View PDF0 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003] The purpose of the embodiments of the present invention is to provide a DGA domain name detection method and device for solving the problem that the DGA domain name cannot be accurately detected in the prior art

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • A kind of dga domain name detection method and device
  • A kind of dga domain name detection method and device
  • A kind of dga domain name detection method and device

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0046] Various aspects and features of the present application are described herein with reference to the accompanying drawings.

[0047] It should be understood that various modifications may be made to the embodiments applied for herein. Accordingly, the above description should not be viewed as limiting, but only as exemplifications of embodiments. Those skilled in the art will envision other modifications within the scope and spirit of the application.

[0048] The accompanying drawings, which are incorporated in and constitute a part of this specification, illustrate embodiments of the application and, together with the general description of the application given above and the detailed description of the embodiments given below, serve to explain the embodiments of the application. principle.

[0049] These and other characteristics of the present application will become apparent from the following description of preferred forms of embodiment given as non-limiting examp...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a method and device for detecting a DGA domain name, wherein the method includes: obtaining a domain name to be detected; using a preset first detection model for detecting a DGA domain name in the form of a random character string and a first detection model for detecting a DGA domain name in a dictionary form The DGA word dictionary respectively detects the domain names to be detected, and obtains detection results of the domain names to be detected. The present invention obtains the first detection model for detecting DGA domain names in the form of random character strings and the DGA word dictionary for detecting DGA domain names in the form of dictionaries through training, uses the domain name detection model and the DGA word dictionary to detect the domain names to be detected respectively, and then obtains the comprehensive detection results The final domain name detection result can more quickly and accurately determine whether the domain name to be detected is a DGA domain name, so that when the domain name is a DGA domain name, a timely warning can be given to prevent the device from being maliciously manipulated.

Description

technical field [0001] The invention relates to the technical field of network security, in particular to a DGA domain name detection method and device. Background technique [0002] With the continuous development of Internet technology, network security has become particularly important. In the field of network security, attackers often use domain names to connect malicious programs to remote command and control servers, thereby achieving the purpose of manipulating the victim's machine. Attackers use the Domain Generation Algorithm ("DGA" for short) to generate a large number of pseudo-random or seemingly regular domain names. These domain names are usually encoded in malware, compared to hard-coded domain names. , the DGA domain name can effectively avoid the detection of the blacklist, so the existing domain name detection method cannot accurately detect the DGA domain name, so it cannot accurately give an early warning. Contents of the invention [0003] The purpos...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): H04L9/40H04L61/4511G06K9/62
CPCH04L63/1416H04L61/4511G06F18/2193
Inventor 张新
Owner BEIJING TOPSEC NETWORK SECURITY TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products