Investigating Commercial Pay-Per-Install and the Distribution of Unwanted Software
نویسندگان
چکیده
In this work, we explore the ecosystem of commercial pay-per-install (PPI) and the role it plays in the proliferation of unwanted software. Commercial PPI enables companies to bundle their applications with more popular software in return for a fee, effectively commoditizing access to user devices. We develop an analysis pipeline to track the business relationships underpinning four of the largest commercial PPI networks and classify the software families bundled. In turn, we measure their impact on end users and enumerate the distribution techniques involved. We find that unwanted ad injectors, browser settings hijackers, and “cleanup” utilities dominate the software families buying installs. Developers of these families pay $0.10–$1.50 per install—upfront costs that they recuperate by monetizing users without their consent or by charging exorbitant subscription fees. Based on Google Safe Browsing telemetry, we estimate that PPI networks drive over 60 million download attempts every week—nearly three times that of malware. While anti-virus and browsers have rolled out defenses to protect users from unwanted software, we find evidence that PPI networks actively interfere with or evade detection. Our results illustrate the deceptive practices of some commercial PPI operators that persist today.
منابع مشابه
Measuring PUP Prevalence and PUP Distribution through Pay-Per-Install Services
Potentially unwanted programs (PUP) such as adware and rogueware, while not outright malicious, exhibit intrusive behavior that generates user complaints and makes security vendors flag them as undesirable. PUP has been little studied in the research literature despite recent indications that its prevalence may have surpassed that of malware. In this work we perform the first systematic study o...
متن کاملInvestigating the effect of knowledge management on career success with the mediating role of employee empowerment in Lorestan National Petroleum Products Distribution Company
One of the main activities in the organization is to pay attention to the career success of employees and the capabilities that they gain through knowledge. Therefore, the purpose of this study was to investigate the effect of knowledge management on career success mediated by employee empowerment. This research is applied in terms of purpose and was done by descriptive-correlation method. The ...
متن کاملInvestigating the Effect of Commercial and Operational Factors on Competitiveness Improvement
The present study was performed to investigate the effect of commercial and operational factors on competitiveness improvement of Shahid Beheshti Port (SBP) in Chabahar in attracting shipping lines. The research method is applied in terms of purpose. Initially, the researcher conducted the qualitative phase to identify important variables, create a typology, or make new theories. To reach the s...
متن کاملEncouraging household investors to install distribution level battery storage systems using incentive prices
In this paper a bi-level optimization approach is introduced to increase the participation of household investors to install battery storage systems in the distribution level. The incentive prices are used here to encourage the private investor. In the upper level the viewpoint of the government is modeled in which, the peak shaving is the goal while minimizing the cost due to the allocated sub...
متن کاملMeasuring Pay-per-Install: The Commoditization of Malware Distribution
Recent years have seen extensive diversification of the “underground economy” associated with malware and the subversion of Internet-connected systems. This trend towards specialization has compelling forces driving it: miscreants readily apprehend that tackling the entire value-chain from malware creation to monetization in the presence of ever-evolving countermeasures poses a daunting task re...
متن کامل