Discovered: March 27, 2007
Updated: May 9, 2007 10:58:41 AM
Also Known As: LinkOptimizer [F-Secure]
Type: Trojan
Infection Length: 6,144 bytes
Systems Affected: Windows 98, Windows 95, Windows XP, Windows Me, Windows NT, Windows Server 2003, Windows 2000
Trojan.Linkoptimizer.B is a generic detection for a family of Trojan horse programs that download dialer components, display pop-up advertisements and attempt to prevent removal by blocking security-related applications.
It has been reported that variants of Trojan.Linkoptimizer.B may be installed by visiting several different malicious Web sites while making legitimate searches on some popular search engines.
The initial domains returned by search engines may redirect users to other .com domains with random names which host different browser exploits.
For further information, please check the following blog posts:
Protection
-
Initial Rapid Release version March 28, 2007
-
Latest Rapid Release version February 3, 2010 revision 050
-
Initial Daily Certified version March 28, 2007
-
Latest Daily Certified version February 3, 2010 revision 048
-
Initial Weekly Certified release date March 28, 2007
Click for a more detailed description of Rapid Release and Daily Certified virus definitions.
Threat Assessment
Wild
-
Wild Level: Low
-
Number of Infections: 0 - 49
-
Number of Sites: 0 - 2
-
Geographical Distribution: Low
-
Threat Containment: Easy
-
Removal: Easy
Damage
-
Damage Level: Low
-
Compromises Security Settings: Prevents removal by blocking some security-related programs.
Distribution
Writeup By: Elia Florio