We provide more counterfactual samples generated based on ConvNext or ViT.

* Each counterfactual image is paired with the original image, denoted by "attacked" or "original" in the last term of the title. 

* For the counterfactual image, we record its original label in the second term and predicted label in the third term. 
  * For example, "0\_'altar',\_'bubble',\_attacked\_attacked.png" means that the original label is "altar" while the predicted label is "bubble".