A Post-Mortem Empirical Investigation of the Popularity and Distribution of Malware Files in the Contemporary Web-Facing Internet

dc.contributor.authorJukka Ruohonen
dc.contributor.authorSanja
dc.contributor.authorScepanovic
dc.contributor.authorSami Hyrynsalmi
dc.contributor.authorIgor Mishkovski
dc.contributor.authorTuomas Aura
dc.contributor.authorVille Leppänen
dc.contributor.organizationfi=ohjelmistotekniikka|en=Software Engineering|
dc.contributor.organization-code1.2.246.10.2458963.20.71310837563
dc.contributor.organization-code2610302
dc.converis.publication-id18229563
dc.converis.urlhttps://research.utu.fi/converis/portal/Publication/18229563
dc.date.accessioned2022-10-28T12:35:45Z
dc.date.available2022-10-28T12:35:45Z
dc.description.abstract<p>This short empirical paper investigates a snapshot<br />of about two million files from a continuously updated big<br />data collection maintained by F-Secure for security intelligence<br />purposes. By further augmenting the snapshot with open data<br />covering about a half of a million files, the paper examines two<br />questions: (a) what is the shape of a probability distribution<br />characterizing the relative share of malware files to all files<br />distributed from web-facing Internet domains; and (b) what is the<br />distribution shaping the popularity of malware files? A bimodal<br />distribution is proposed as an answer to the former question,<br />while a graph theoretical definition for the popularity concept<br />indicates a long-tailed, extreme value distribution. With these two<br />questions – and the answers thereto, the paper contributes to the<br />attempts to understand large-scale characteristics of malware at<br />the grand population level – at the level of the whole Internet.<br /></p>
dc.format.pagerange144
dc.format.pagerange147
dc.identifier.isbn978-1-5090-2857-3
dc.identifier.issn2572-3723
dc.identifier.olddbid177562
dc.identifier.oldhandle10024/160656
dc.identifier.urihttps://www.utupub.fi/handle/11111/33780
dc.identifier.urlhttp://www.csis.pace.edu/~ctappert/papers/proceedings/2016EISIC/data/2857a144.pdf
dc.identifier.urnURN:NBN:fi-fe2021042716220
dc.language.isoen
dc.okm.affiliatedauthorRuohonen, Jukka
dc.okm.affiliatedauthorHyrynsalmi, Sami
dc.okm.affiliatedauthorLeppänen, Ville
dc.okm.discipline113 Computer and information sciencesen_GB
dc.okm.discipline113 Tietojenkäsittely ja informaatiotieteetfi_FI
dc.okm.internationalcopublicationinternational co-publication
dc.okm.internationalityInternational publication
dc.okm.typeA4 Conference Article
dc.relation.conferenceEuropean Intelligence and Security Informatics Conference
dc.relation.doi10.1109/EISIC.2016.30
dc.source.identifierhttps://www.utupub.fi/handle/10024/160656
dc.titleA Post-Mortem Empirical Investigation of the Popularity and Distribution of Malware Files in the Contemporary Web-Facing Internet
dc.title.bookProceedings of 2016 European Intelligence and Security Informatics Conference (EISIC)
dc.year.issued2016

Tiedostot

Näytetään 1 - 1 / 1
Ladataan...
Name:
malfilenet.pdf
Size:
344.11 KB
Format:
Adobe Portable Document Format
Description:
Final draft