Journal article Open Access

Costly Freeware: A Systematic Analysis of Abuse in Download Portals

Richard Rivera; Platon Kotzias; Avinash Sudhodanan; Juan Caballero


DCAT Export

<?xml version='1.0' encoding='utf-8'?>
<rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:adms="http://www.w3.org/ns/adms#" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:dct="http://purl.org/dc/terms/" xmlns:dctype="http://purl.org/dc/dcmitype/" xmlns:dcat="http://www.w3.org/ns/dcat#" xmlns:duv="http://www.w3.org/ns/duv#" xmlns:foaf="http://xmlns.com/foaf/0.1/" xmlns:frapo="http://purl.org/cerif/frapo/" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:gsp="http://www.opengis.net/ont/geosparql#" xmlns:locn="http://www.w3.org/ns/locn#" xmlns:org="http://www.w3.org/ns/org#" xmlns:owl="http://www.w3.org/2002/07/owl#" xmlns:prov="http://www.w3.org/ns/prov#" xmlns:rdfs="http://www.w3.org/2000/01/rdf-schema#" xmlns:schema="http://schema.org/" xmlns:skos="http://www.w3.org/2004/02/skos/core#" xmlns:vcard="http://www.w3.org/2006/vcard/ns#" xmlns:wdrs="http://www.w3.org/2007/05/powder-s#">
  <rdf:Description rdf:about="https://zenodo.org/record/1295566">
    <dct:identifier rdf:datatype="http://www.w3.org/2001/XMLSchema#anyURI">https://zenodo.org/record/1295566</dct:identifier>
    <foaf:page rdf:resource="https://zenodo.org/record/1295566"/>
    <dct:creator>
      <rdf:Description>
        <rdf:type rdf:resource="http://xmlns.com/foaf/0.1/Agent"/>
        <foaf:name>Richard Rivera</foaf:name>
        <org:memberOf>
          <foaf:Organization>
            <foaf:name>IMDEA Software Institute</foaf:name>
          </foaf:Organization>
        </org:memberOf>
      </rdf:Description>
    </dct:creator>
    <dct:creator>
      <rdf:Description>
        <rdf:type rdf:resource="http://xmlns.com/foaf/0.1/Agent"/>
        <foaf:name>Platon Kotzias</foaf:name>
        <org:memberOf>
          <foaf:Organization>
            <foaf:name>IMDEA Software Institute</foaf:name>
          </foaf:Organization>
        </org:memberOf>
      </rdf:Description>
    </dct:creator>
    <dct:creator>
      <rdf:Description>
        <rdf:type rdf:resource="http://xmlns.com/foaf/0.1/Agent"/>
        <foaf:name>Avinash Sudhodanan</foaf:name>
        <org:memberOf>
          <foaf:Organization>
            <foaf:name>IMDEA Software Institute</foaf:name>
          </foaf:Organization>
        </org:memberOf>
      </rdf:Description>
    </dct:creator>
    <dct:creator>
      <rdf:Description>
        <rdf:type rdf:resource="http://xmlns.com/foaf/0.1/Agent"/>
        <foaf:name>Juan Caballero</foaf:name>
        <org:memberOf>
          <foaf:Organization>
            <foaf:name>IMDEA Software Institute</foaf:name>
          </foaf:Organization>
        </org:memberOf>
      </rdf:Description>
    </dct:creator>
    <dct:title>Costly Freeware: A Systematic Analysis of Abuse in Download Portals</dct:title>
    <dct:publisher>
      <foaf:Agent>
        <foaf:name>Zenodo</foaf:name>
      </foaf:Agent>
    </dct:publisher>
    <dct:issued rdf:datatype="http://www.w3.org/2001/XMLSchema#gYear">2018</dct:issued>
    <frapo:isFundedBy rdf:resource="info:eu-repo/grantAgreement/EC/H2020/731535/"/>
    <schema:funder>
      <foaf:Organization>
        <dct:identifier rdf:datatype="http://www.w3.org/2001/XMLSchema#string">10.13039/100010661</dct:identifier>
        <foaf:name>European Commission</foaf:name>
      </foaf:Organization>
    </schema:funder>
    <dct:issued rdf:datatype="http://www.w3.org/2001/XMLSchema#date">2018-06-06</dct:issued>
    <dct:language rdf:resource="http://publications.europa.eu/resource/authority/language/ENG"/>
    <owl:sameAs rdf:resource="https://zenodo.org/record/1295566"/>
    <adms:identifier>
      <adms:Identifier>
        <skos:notation rdf:datatype="http://www.w3.org/2001/XMLSchema#anyURI">https://zenodo.org/record/1295566</skos:notation>
        <adms:schemeAgency>url</adms:schemeAgency>
      </adms:Identifier>
    </adms:identifier>
    <owl:sameAs rdf:resource="https://doi.org/10.1049/iet-ifs.2017.0585"/>
    <dct:isPartOf rdf:resource="https://zenodo.org/communities/elastest"/>
    <dct:description>&lt;p&gt;Freeware is proprietary software that can be used free of charge. A popular vector for distributing freeware are download&lt;br&gt; portals, i.e., websites that index, categorize, and host programs. Download portals can be abused to distribute potentially unwanted&lt;br&gt; programs (PUP) and malware. The abuse can be due to PUP and malware authors uploading their ware, by benign freeware&lt;br&gt; authors joining as affiliate publishers of PPI services and other affiliate programs, or by malicious download portal owners. In this&lt;br&gt; work, we perform a systematic study of abuse in download portals. We build a platform to crawl download portals and apply it to&lt;br&gt; download 191K Windows freeware installers from 20 download portals. We analyze the collected installers and execute them in a&lt;br&gt; sandbox to monitor their installation. We measure an overall ratio of PUP and malware between 8% (conservative estimate) and&lt;br&gt; 26% (lax estimate). In 18 of the 20 download portals examined the amount of PUP and malware is below 9%. But, we also find&lt;br&gt; two download portals exclusively used to distribute PPI downloaders. Finally, we detail different abusive behaviors that authors of&lt;br&gt; undesirable programs use to distribute their programs through download portals.&lt;/p&gt;</dct:description>
    <dct:accessRights rdf:resource="http://publications.europa.eu/resource/authority/access-right/PUBLIC"/>
    <dct:accessRights>
      <dct:RightsStatement rdf:about="info:eu-repo/semantics/openAccess">
        <rdfs:label>Open Access</rdfs:label>
      </dct:RightsStatement>
    </dct:accessRights>
    <dct:license rdf:resource="https://creativecommons.org/licenses/by/4.0/legalcode"/>
    <dcat:distribution>
      <dcat:Distribution>
        <dcat:accessURL rdf:resource="https://doi.org/10.1049/iet-ifs.2017.0585"/>
        <dcat:byteSize>751987</dcat:byteSize>
        <dcat:downloadURL rdf:resource="https://zenodo.org/record/1295566/files/IET-IFS.2017.0585.pdf"/>
        <dcat:mediaType>application/pdf</dcat:mediaType>
      </dcat:Distribution>
    </dcat:distribution>
  </rdf:Description>
  <foaf:Project rdf:about="info:eu-repo/grantAgreement/EC/H2020/731535/">
    <dct:identifier rdf:datatype="http://www.w3.org/2001/XMLSchema#string">731535</dct:identifier>
    <dct:title>ElasTest: an elastic platform for testing complex distributed large software systems</dct:title>
    <frapo:isAwardedBy>
      <foaf:Organization>
        <dct:identifier rdf:datatype="http://www.w3.org/2001/XMLSchema#string">10.13039/100010661</dct:identifier>
        <foaf:name>European Commission</foaf:name>
      </foaf:Organization>
    </frapo:isAwardedBy>
  </foaf:Project>
</rdf:RDF>
164
136
views
downloads
Views 164
Downloads 136
Data volume 102.3 MB
Unique views 160
Unique downloads 135

Share

Cite as