Software:Internet Optimizer: Difference between revisions

From HandWiki
(import)
 
No edit summary
 
Line 1: Line 1:
{{Short description|Computer spyware}}
{{Short description|Computer spyware}}
<!-- Please do not remove or change this AfD message until the discussion has been closed. -->
 
{{Article for deletion/dated|page=Internet Optimizer|timestamp=20240427155938|year=2024|month=April|day=27|substed=yes}}
<!-- Once discussion is closed, please place on talk page: {{Old AfD multi|page=Internet Optimizer|date=27 April 2024|result='''keep'''}} -->
<!-- End of AfD message, feel free to edit beyond this point -->
'''Internet Optimizer''', also known as '''DyFuCA''' is an [[Adware|adware]] and a [[Spyware|spyware]] program, which first appeared in 2003.<ref name="panda">{{cite web |url= https://www.pandasecurity.com/homeusers/security-info/41123/information/Dyfuca |title= Dyfuca |publisher= [[Company:Panda Security|Panda Security]] }}</ref> It typically redirects [[Software:Internet Explorer|Internet Explorer]] error pages to advertising pages. It may be installed as a drive-by download via an [[Software:ActiveX|ActiveX]] component, usually via nuisance affiliate porn webpage popups. Users suspicions are lulled by its installer title as ''Internet Optimizer'' under the guise of the name of the otherwise unrelated Moneytree, while the [[Botnet#Domains|C&C]] domains accessed were usually named with the prefix "''mtree''".<ref name="pest">{{cite web |url= http://www.pestpatrol.com/pestinfo/m/moneytree.asp |title= MoneyTree |publisher= Pest Patrol |url-status= dead |archive-date= October 26, 2003 |archive-url= https://web.archive.org/web/20031026083219/http://www.pestpatrol.com/pestinfo/m/moneytree.asp |access-date= October 12, 2018 }}</ref><ref>{{cite web |url= https://www.f-secure.com/v-descs/dyfuca.shtml |title= DyFuCa |publisher= [[Company:F-Secure|F-Secure]] }}</ref>
'''Internet Optimizer''', also known as '''DyFuCA''' is an [[Adware|adware]] and a [[Spyware|spyware]] program, which first appeared in 2003.<ref name="panda">{{cite web |url= https://www.pandasecurity.com/homeusers/security-info/41123/information/Dyfuca |title= Dyfuca |publisher= [[Company:Panda Security|Panda Security]] }}</ref> It typically redirects [[Software:Internet Explorer|Internet Explorer]] error pages to advertising pages. It may be installed as a drive-by download via an [[Software:ActiveX|ActiveX]] component, usually via nuisance affiliate porn webpage popups. Users suspicions are lulled by its installer title as ''Internet Optimizer'' under the guise of the name of the otherwise unrelated Moneytree, while the [[Botnet#Domains|C&C]] domains accessed were usually named with the prefix "''mtree''".<ref name="pest">{{cite web |url= http://www.pestpatrol.com/pestinfo/m/moneytree.asp |title= MoneyTree |publisher= Pest Patrol |url-status= dead |archive-date= October 26, 2003 |archive-url= https://web.archive.org/web/20031026083219/http://www.pestpatrol.com/pestinfo/m/moneytree.asp |access-date= October 12, 2018 }}</ref><ref>{{cite web |url= https://www.f-secure.com/v-descs/dyfuca.shtml |title= DyFuCa |publisher= [[Company:F-Secure|F-Secure]] }}</ref>



Latest revision as of 16:26, 1 May 2024

Short description: Computer spyware


Internet Optimizer, also known as DyFuCA is an adware and a spyware program, which first appeared in 2003.[1] It typically redirects Internet Explorer error pages to advertising pages. It may be installed as a drive-by download via an ActiveX component, usually via nuisance affiliate porn webpage popups. Users suspicions are lulled by its installer title as Internet Optimizer under the guise of the name of the otherwise unrelated Moneytree, while the C&C domains accessed were usually named with the prefix "mtree".[2][3]

When users follow a broken link or enter an erroneous URL, instead of the browser's internal default error status page, they see an internet page of advertisements. Password-protected Web sites or pages will prompt for a missing or required user name and password via a pop-up request, this HTTP Basic authentication uses the same mechanism as HTTP errors, thus Internet Optimizer inadvertently interferes and makes it impossible for the user to access password-protected sites or pages.

It uses the "Browser Helper Object" or BHO interface, and as such, it loads whenever MS Internet Explorer starts and may be ignored by firewalls or not flagged by anti-virus software, as it is seen as a legitimate part of the browser application.

It is also classified as a "downloader" which can download, install and run malevolent software on the victim's computer without their knowledge or permission.[2][1]

References

External links