Abstract:
Since the lack of sufficient security mechanism, domain system has become the main operational infrastructure for hackers to launch cyber attacks. Therefore, how to discover and block the potential malicious domain and the corresponding IP address quickly and precisely have become an important measure and a hot research direction in preventing unknown cyber attacks area. Based on deep investigation of the achievements in malicious domain detection fields, combining three different malicious domain detecting methods, a novel malicious domain detection framework (MDDF) was proposed. According to the experimental results, MDDF can improve the detection efficiency and provide a preferable completeness.