Journal article Open Access

Costly Freeware: A Systematic Analysis of Abuse in Download Portals

Richard Rivera; Platon Kotzias; Avinash Sudhodanan; Juan Caballero


JSON Export

{
  "files": [
    {
      "links": {
        "self": "https://zenodo.org/api/files/34cbdd2a-c653-4304-bee2-9139b61a4f12/IET-IFS.2017.0585.pdf"
      }, 
      "checksum": "md5:e20cfd9a6fa307cf3306293aa644b5a5", 
      "bucket": "34cbdd2a-c653-4304-bee2-9139b61a4f12", 
      "key": "IET-IFS.2017.0585.pdf", 
      "type": "pdf", 
      "size": 751987
    }
  ], 
  "owners": [
    48346
  ], 
  "doi": "10.1049/iet-ifs.2017.0585", 
  "stats": {
    "version_unique_downloads": 135.0, 
    "unique_views": 160.0, 
    "views": 164.0, 
    "version_views": 163.0, 
    "unique_downloads": 135.0, 
    "version_unique_views": 159.0, 
    "volume": 102270232.0, 
    "version_downloads": 136.0, 
    "downloads": 136.0, 
    "version_volume": 102270232.0
  }, 
  "links": {
    "doi": "https://doi.org/10.1049/iet-ifs.2017.0585", 
    "latest_html": "https://zenodo.org/record/1295566", 
    "bucket": "https://zenodo.org/api/files/34cbdd2a-c653-4304-bee2-9139b61a4f12", 
    "badge": "https://zenodo.org/badge/doi/10.1049/iet-ifs.2017.0585.svg", 
    "html": "https://zenodo.org/record/1295566", 
    "latest": "https://zenodo.org/api/records/1295566"
  }, 
  "created": "2018-06-21T14:03:23.236013+00:00", 
  "updated": "2020-01-20T16:05:04.854192+00:00", 
  "conceptrecid": "1295565", 
  "revision": 6, 
  "id": 1295566, 
  "metadata": {
    "access_right_category": "success", 
    "doi": "10.1049/iet-ifs.2017.0585", 
    "description": "<p>Freeware is proprietary software that can be used free of charge. A popular vector for distributing freeware are download<br>\nportals, i.e., websites that index, categorize, and host programs. Download portals can be abused to distribute potentially unwanted<br>\nprograms (PUP) and malware. The abuse can be due to PUP and malware authors uploading their ware, by benign freeware<br>\nauthors joining as affiliate publishers of PPI services and other affiliate programs, or by malicious download portal owners. In this<br>\nwork, we perform a systematic study of abuse in download portals. We build a platform to crawl download portals and apply it to<br>\ndownload 191K Windows freeware installers from 20 download portals. We analyze the collected installers and execute them in a<br>\nsandbox to monitor their installation. We measure an overall ratio of PUP and malware between 8% (conservative estimate) and<br>\n26% (lax estimate). In 18 of the 20 download portals examined the amount of PUP and malware is below 9%. But, we also find<br>\ntwo download portals exclusively used to distribute PPI downloaders. Finally, we detail different abusive behaviors that authors of<br>\nundesirable programs use to distribute their programs through download portals.</p>", 
    "language": "eng", 
    "title": "Costly Freeware: A Systematic Analysis of Abuse in Download Portals", 
    "license": {
      "id": "CC-BY-4.0"
    }, 
    "relations": {
      "version": [
        {
          "count": 1, 
          "index": 0, 
          "parent": {
            "pid_type": "recid", 
            "pid_value": "1295565"
          }, 
          "is_last": true, 
          "last_child": {
            "pid_type": "recid", 
            "pid_value": "1295566"
          }
        }
      ]
    }, 
    "grants": [
      {
        "code": "731535", 
        "links": {
          "self": "https://zenodo.org/api/grants/10.13039/501100000780::731535"
        }, 
        "title": "ElasTest: an elastic platform for testing complex distributed large software systems", 
        "acronym": "ELASTEST", 
        "program": "H2020", 
        "funder": {
          "doi": "10.13039/501100000780", 
          "acronyms": [], 
          "name": "European Commission", 
          "links": {
            "self": "https://zenodo.org/api/funders/10.13039/501100000780"
          }
        }
      }
    ], 
    "communities": [
      {
        "id": "elastest"
      }
    ], 
    "publication_date": "2018-06-06", 
    "creators": [
      {
        "affiliation": "IMDEA Software Institute", 
        "name": "Richard Rivera"
      }, 
      {
        "affiliation": "IMDEA Software Institute", 
        "name": "Platon Kotzias"
      }, 
      {
        "affiliation": "IMDEA Software Institute", 
        "name": "Avinash Sudhodanan"
      }, 
      {
        "affiliation": "IMDEA Software Institute", 
        "name": "Juan Caballero"
      }
    ], 
    "access_right": "open", 
    "resource_type": {
      "subtype": "article", 
      "type": "publication", 
      "title": "Journal article"
    }
  }
}
164
136
views
downloads
Views 164
Downloads 136
Data volume 102.3 MB
Unique views 160
Unique downloads 135

Share

Cite as