<!DOCTYPE html>
<html class="client-nojs vector-feature-night-mode-disabled vector-feature-language-in-header-enabled vector-feature-language-in-main-page-header-disabled vector-feature-page-tools-pinned-disabled vector-feature-toc-pinned-clientpref-1 vector-feature-main-menu-pinned-disabled vector-feature-limited-width-clientpref-1 vector-feature-limited-width-content-enabled vector-feature-custom-font-size-clientpref-1 vector-feature-appearance-pinned-clientpref-1 vector-sticky-header-enabled" lang="en" dir="ltr"><head>
<meta charset="UTF-8">
<title>Potentially unwanted program</title>
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<link rel="canonical" href="https://en.wikipedia.org/wiki/Potentially_unwanted_program"> <link href="./mw/ext.cite.styles.css" rel="stylesheet" type="text/css">
<link href="./mw/skins.vector.icons.css" rel="stylesheet" type="text/css">
<link href="./mw/skins.vector.search.codex.styles.css" rel="stylesheet" type="text/css">
<link href="./mw/skins.vector.styles.css" rel="stylesheet" type="text/css">
<link href="./mw/user.styles.css" rel="stylesheet" type="text/css">
<meta name="ResourceLoaderDynamicStyles" content="">
<link rel="stylesheet" type="text/css" href="./mw/site.styles.css">
<link rel="stylesheet" type="text/css" href="./mw/noscript.css">
<link rel="stylesheet" type="text/css" href="./footer.css">
<link rel="stylesheet" type="text/css" href="./vector-2022.css">
</head>
<body class="skin--responsive skin-vector skin-vector-search-vue mediawiki ltr sitedir-ltr mw-hide-empty-elt ns-0 ns-subject page-Potentially_unwanted_program rootpage-Potentially_unwanted_program skin-vector-2022 action-view">
<div class="mw-page-container">
<div class="mw-page-container-inner">
<div class="mw-content-container">
<main id="content" class="mw-body">
<header class="mw-body-header vector-page-titlebar">
<h1 id="firstHeading" class="firstHeading mw-first-heading">
<span id="openzim-page-title" class="mw-page-title-main"><span class="mw-page-title-main">Potentially unwanted program</span></span>
</h1>
</header>
<a id="top"></a>
<div id="bodyContent" class="vector-body ve-init-mw-desktopArticleTarget-targetContainer" aria-labelledby="firstHeading" data-mw-ve-target-container="">
<div id="mw-content-text" class="mw-body-content mw-content-ltr" lang="en" dir="ltr"><div class="mw-content-ltr mw-parser-output" lang="en" dir="ltr">
<p>A <b>potentially unwanted program</b> (<b>PUP</b>) or <b>potentially unwanted application</b> (<b>PUA</b>) is software that a user may perceive as unwanted or unnecessary. It is used as a subjective tagging criterion by security and parental control products. Such software may use an implementation that can compromise privacy or weaken the computer's security. Companies often bundle a wanted program download with a wrapper application and may offer to install an unwanted application, and in some cases without providing a clear opt-out method. Antivirus companies define the software bundled as potentially unwanted programs<sup id="cite_ref-PUP_Criteria_1-0" class="reference"><a href="#cite_note-PUP_Criteria-1"><span class="cite-bracket">[</span>1<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-2" class="reference"><a href="#cite_note-2"><span class="cite-bracket">[</span>2<span class="cite-bracket">]</span></a></sup> which can include software that displays <a href="Adware" title="Adware">intrusive advertising</a> (adware), or tracks the user's Internet usage to sell information to advertisers (<a href="Spyware" title="Spyware">spyware</a>), injects its own advertising into web pages that a user looks at, or uses premium SMS services to rack up charges for the user.<sup id="cite_ref-3" class="reference"><a href="#cite_note-3"><span class="cite-bracket">[</span>3<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-PUP_Criteria_1-1" class="reference"><a href="#cite_note-PUP_Criteria-1"><span class="cite-bracket">[</span>1<span class="cite-bracket">]</span></a></sup> A growing number of open-source software projects have expressed dismay at third-party websites wrapping their downloads with unwanted bundles, without the project's knowledge or consent. Nearly every third-party free download site bundles their downloads with potentially unwanted software.<sup id="cite_ref-emisoft1_4-0" class="reference"><a href="#cite_note-emisoft1-4"><span class="cite-bracket">[</span>4<span class="cite-bracket">]</span></a></sup> The practice is widely considered unethical because it violates the security interests of users without their informed consent. Some unwanted software bundles install a <a href="Root_certificate" title="Root certificate">root certificate</a> on a user's device, which allows hackers to intercept private data such as banking details, without a browser giving security warnings. The <a href="United_States_Department_of_Homeland_Security" title="United States Department of Homeland Security">United States Department of Homeland Security</a> has advised removing an insecure root certificate, because they make computers vulnerable to serious <a href="Cyberattack" title="Cyberattack">cyberattacks</a>.<sup id="cite_ref-reutersdhs_5-0" class="reference"><a href="#cite_note-reutersdhs-5"><span class="cite-bracket">[</span>5<span class="cite-bracket">]</span></a></sup> Software developers and security experts recommend that people always download the latest version from the official project website, or a trusted package manager or app store.
</p>
<meta property="mw:PageProp/toc">
<div class="mw-heading mw-heading2"><h2 id="Origins">Origins</h2></div>
<p>Historically, the first big companies working with potentially unwanted programs for creating revenue came up in the US in the mid-2000s, such as <a href="Zango_(company)" title="Zango (company)">Zango</a>. These activities declined after the companies were investigated, and in some cases indicted, by authorities for invasive and harmful installs.<sup id="cite_ref-6" class="reference"><a href="#cite_note-6"><span class="cite-bracket">[</span>6<span class="cite-bracket">]</span></a></sup>
</p>
<div class="mw-heading mw-heading3"><h3 id="Download_Valley">Download Valley</h3></div>
<p>A major industry, dedicated to creating revenue by foisting potentially unwanted programs, has grown among the Israeli software industry and is frequently referred to as <a href="Download_Valley" title="Download Valley">Download Valley</a>. These companies are responsible for a large part of the download and install tools,<sup id="cite_ref-7" class="reference"><a href="#cite_note-7"><span class="cite-bracket">[</span>7<span class="cite-bracket">]</span></a></sup> which place unwanted, additional software on users' systems.<sup id="cite_ref-8" class="reference"><a href="#cite_note-8"><span class="cite-bracket">[</span>8<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-9" class="reference"><a href="#cite_note-9"><span class="cite-bracket">[</span>9<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-10" class="reference"><a href="#cite_note-10"><span class="cite-bracket">[</span>10<span class="cite-bracket">]</span></a></sup>
</p>
<div class="mw-heading mw-heading2"><h2 id="Unwanted_programs">Unwanted programs</h2></div>
<p>Unwanted programs have increased in recent years, and one study in 2014 classified unwanted programs as comprising 24.77% of total <a href="Malware" title="Malware">malware</a> infections.<sup id="cite_ref-11" class="reference"><a href="#cite_note-11"><span class="cite-bracket">[</span>11<span class="cite-bracket">]</span></a></sup> This malware includes adware according to <a href="Google" title="Google">Google</a>.<sup id="cite_ref-12" class="reference"><a href="#cite_note-12"><span class="cite-bracket">[</span>12<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-13" class="reference"><a href="#cite_note-13"><span class="cite-bracket">[</span>13<span class="cite-bracket">]</span></a></sup>
Many programs include unwanted browser add-ons that track which websites a user goes to in order to sell this information to advertisers, or add advertising into web pages.<sup id="cite_ref-malwarebytes_14-0" class="reference"><a href="#cite_note-malwarebytes-14"><span class="cite-bracket">[</span>14<span class="cite-bracket">]</span></a></sup> Five percent of computer browser visits to Google-owned websites are altered by computer programs that inject their own ads into pages.<sup id="cite_ref-15" class="reference"><a href="#cite_note-15"><span class="cite-bracket">[</span>15<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-16" class="reference"><a href="#cite_note-16"><span class="cite-bracket">[</span>16<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-17" class="reference"><a href="#cite_note-17"><span class="cite-bracket">[</span>17<span class="cite-bracket">]</span></a></sup> Researchers have identified 50,870 Google Chrome extensions and 34,407 programs that inject ads. Thirty-eight percent of extensions and 17 percent of programs were catalogued as <a href="Malware" title="Malware">malicious software</a>, the rest being potentially unwanted <a href="Adware" title="Adware">adware</a>-type applications. Some Google Chrome extension developers have sold extensions they made to third-party companies who silently push unwanted updates that incorporate previously non-existent adware into the extensions.<sup id="cite_ref-ars-adwareacquire_18-0" class="reference"><a href="#cite_note-ars-adwareacquire-18"><span class="cite-bracket">[</span>18<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-wsj-chromeads_19-0" class="reference"><a href="#cite_note-wsj-chromeads-19"><span class="cite-bracket">[</span>19<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-20" class="reference"><a href="#cite_note-20"><span class="cite-bracket">[</span>20<span class="cite-bracket">]</span></a></sup>
</p>
<div class="mw-heading mw-heading3"><h3 id="Local_proxies">Local proxies</h3></div>
<p><a href="Spyware" title="Spyware">Spyware</a> programs install a <a href="Proxy_server" title="Proxy server">proxy server</a> on a person's computer that monitors all web traffic passing through it, tracking user interests to build up a profile and sell that profile to advertisers.
</p>
<div class="mw-heading mw-heading4"><h4 id="Superfish">Superfish</h4></div>
<p><a href="Superfish" title="Superfish">Superfish</a> is an advertising injector that creates its own <a href="Root_certificate" title="Root certificate">root certificate</a> in a computer operating system, allowing the tool to inject advertising into encrypted Google search pages and track the history of a user's search queries.
</p><p>In February 2015, the <a href="United_States_Department_of_Homeland_Security" title="United States Department of Homeland Security">United States Department of Homeland Security</a> advised uninstalling Superfish and its associated <a href="Root_certificate" title="Root certificate">root certificate</a> from <a href="Lenovo" title="Lenovo">Lenovo</a> computers, because they make computers vulnerable to serious cyberattacks, including interception of passwords and sensitive data being transmitted through browsers.<sup id="cite_ref-reutersdhs_5-1" class="reference"><a href="#cite_note-reutersdhs-5"><span class="cite-bracket">[</span>5<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-:0_21-0" class="reference"><a href="#cite_note-:0-21"><span class="cite-bracket">[</span>21<span class="cite-bracket">]</span></a></sup> <a href="Heinz_Heise" class="mw-redirect" title="Heinz Heise"><i>Heise Security</i></a> revealed that the Superfish certificate is included in bundled downloads with a number of applications from companies including <a href="SAY_Media" title="SAY Media">SAY Media</a> and <a href="Lavasoft" title="Lavasoft">Lavasoft</a>'s <a href="Ad-Aware" class="mw-redirect" title="Ad-Aware">Ad-Aware Web Companion</a>.<sup id="cite_ref-22" class="reference"><a href="#cite_note-22"><span class="cite-bracket">[</span>22<span class="cite-bracket">]</span></a></sup>
</p>
<div class="mw-heading mw-heading3"><h3 id="Browser_hijacking">Browser hijacking</h3></div>
<p>Many companies use <a href="Browser_hijacking" title="Browser hijacking">browser hijacking</a> to modify a user's home page and search page, to force Internet hits to a particular website and make money from advertisers. Some companies steal the cookies in a user's browser, <a href="Session_hijacking" title="Session hijacking">hijacking</a> their connections to websites they are logged into, and performing actions using their account, without the user's knowledge or consent (like installing Android apps).
</p>
<div class="mw-heading mw-heading3"><h3 id="Fraudulent_dialer">Fraudulent dialer</h3></div>
<p>Users with <a href="Dial-up_Internet_access" title="Dial-up Internet access">dial-up Internet access</a> use modems in their computer to connect to the Internet, and these have been targeted by fraudulent applications that used <a href="Software_security_vulnerability" class="mw-redirect" title="Software security vulnerability">security holes</a> in the <a href="Operating_system" title="Operating system">operating system</a> to dial premium numbers.
</p><p>Many <a href="Android_(operating_system)" title="Android (operating system)">Android</a> devices are targeted by malware that use <a href="Premium_SMS" class="mw-redirect" title="Premium SMS">premium SMS</a> services to rack up charges for users.<sup id="cite_ref-23" class="reference"><a href="#cite_note-23"><span class="cite-bracket">[</span>23<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-24" class="reference"><a href="#cite_note-24"><span class="cite-bracket">[</span>24<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-25" class="reference"><a href="#cite_note-25"><span class="cite-bracket">[</span>25<span class="cite-bracket">]</span></a></sup>
</p>
<div class="mw-heading mw-heading3"><h3 id="Unwanted_not_by_the_user">Unwanted not by the user</h3></div>
<p>A few classes of software are usually installed knowingly by the user and do not show any automated abusive behavior. However, the Enterprise controlling the computer or the antivirus vendor may consider the program unwanted due to the activities they allow.
</p><p><a href="Peer-to-peer_file_sharing" title="Peer-to-peer file sharing">Peer-to-peer file sharing</a> programs are sometimes labelled as PUA and deleted due to their alleged links to piracy. In March 2021, Windows Defender started removing <a href="UTorrent" class="mw-redirect" title="UTorrent">uTorrent</a> and <a href="QBittorrent" title="QBittorrent">qBittorrent</a>, causing widespread user confusion. Microsoft has since updated the PUA database to flag torrent clients on enterprise installations only.<sup id="cite_ref-26" class="reference"><a href="#cite_note-26"><span class="cite-bracket">[</span>26<span class="cite-bracket">]</span></a></sup>
</p><p><a href="Keygens" class="mw-redirect" title="Keygens">Keygens</a> not tainted by actual malware are also commonly tagged as PUA due to piracy.<sup id="cite_ref-msir13_27-0" class="reference"><a href="#cite_note-msir13-27"><span class="cite-bracket">[</span>27<span class="cite-bracket">]</span></a></sup>
</p>
<div class="mw-heading mw-heading2"><h2 id="Third_party_websites">Third party websites</h2></div>
<p>In 2015, research by <a href="Emsisoft_Ltd." class="mw-redirect" title="Emsisoft Ltd.">Emsisoft</a> suggested that all free download providers bundled their downloads with potentially unwanted software, and that Download.com was the worst offender.<sup id="cite_ref-emisoft1_4-1" class="reference"><a href="#cite_note-emisoft1-4"><span class="cite-bracket">[</span>4<span class="cite-bracket">]</span></a></sup> Lowell Heddings expressed dismay that "Sadly, even on Google all the top results for most open source and freeware are just ads for really terrible sites that are bundling crapware, <a href="Adware" title="Adware">adware</a>, and <a href="Malware" title="Malware">malware</a> on top of the installer."<sup id="cite_ref-howtogeek_28-0" class="reference"><a href="#cite_note-howtogeek-28"><span class="cite-bracket">[</span>28<span class="cite-bracket">]</span></a></sup>
</p>
<div class="mw-heading mw-heading3"><h3 id="Download.com">Download.com</h3></div>
<p>In December 2011 <a href="Gordon_Lyon" title="Gordon Lyon">Gordon Lyon</a> published his strong dislike of the way <a href="Download.com" class="mw-redirect" title="Download.com">Download.com</a> had started bundling <a href="Malware#Grayware" title="Malware">grayware</a> with their installation managers and concerns over the bundled software, causing many people to spread the post on social networks, and a few dozen media reports. The main problem is the confusion between Download.com-offered content<sup id="cite_ref-29" class="reference"><a href="#cite_note-29"><span class="cite-bracket">[</span>29<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-insecure_30-0" class="reference"><a href="#cite_note-insecure-30"><span class="cite-bracket">[</span>30<span class="cite-bracket">]</span></a></sup> and software offered by original authors; the accusations included deception as well as copyright and trademark violation.<sup id="cite_ref-insecure_30-1" class="reference"><a href="#cite_note-insecure-30"><span class="cite-bracket">[</span>30<span class="cite-bracket">]</span></a></sup>
</p><p>In 2014, <a href="The_Register" title="The Register">The Register</a> and <a href="US-CERT" class="mw-redirect" title="US-CERT">US-CERT</a> warned that via Download.com's "<a href="Bloatware" class="mw-redirect" title="Bloatware">foistware</a>", an "attacker may be able to download and execute arbitrary code".<sup id="cite_ref-31" class="reference"><a href="#cite_note-31"><span class="cite-bracket">[</span>31<span class="cite-bracket">]</span></a></sup>
</p>
<div class="mw-heading mw-heading3"><h3 id="Sourceforge">Sourceforge</h3></div>
<p>Many <a href="Open-source_software" title="Open-source software">open-source software</a> developers have expressed frustration and dismay that their work is being packaged by companies that profit from their work by using <a href="Search_advertising" title="Search advertising">search advertising</a> to occupy the first result on a search page. Increasingly, these pages are offering bundled installers that include unwanted software, and confuse users by presenting the bundled software as an official download page endorsed by the open source project.
</p><p>As of early 2016 this is no longer the case.<sup id="cite_ref-32" class="reference"><a href="#cite_note-32"><span class="cite-bracket">[</span>32<span class="cite-bracket">]</span></a></sup> Ownership of SourceForge transferred to SourceForge Media, LLC, a subsidiary of BIZX, LLC (BIZX).<sup id="cite_ref-33" class="reference"><a href="#cite_note-33"><span class="cite-bracket">[</span>33<span class="cite-bracket">]</span></a></sup> After the sale they removed the DevShare program, which means bundled installers are no longer available.
</p>
<div class="mw-heading mw-heading4"><h4 id="GIMP">GIMP</h4></div>
<p>In November 2013, <a href="GIMP" title="GIMP">GIMP</a>, a free image manipulation program, removed its download from <a href="SourceForge" title="SourceForge">SourceForge</a>, citing misleading download buttons that can potentially confuse customers, as well as SourceForge's own <a href="Windows_Installer" title="Windows Installer">Windows installer</a>, which bundles third-party offers. In a statement, GIMP called SourceForge a once "useful and trustworthy place to develop and host FLOSS applications" that now faces "a problem with the ads they allow on their sites ..."<sup id="cite_ref-Register:_Gimp_departs_SourceForge_34-0" class="reference"><a href="#cite_note-Register:_Gimp_departs_SourceForge-34"><span class="cite-bracket">[</span>34<span class="cite-bracket">]</span></a></sup> In May 2015, the GIMP for Windows SourceForge project was transferred to the ownership of the "SourceForge Editorial Staff" account and adware downloads were re-enabled.<sup id="cite_ref-ars-gimpwindowssf_35-0" class="reference"><a href="#cite_note-ars-gimpwindowssf-35"><span class="cite-bracket">[</span>35<span class="cite-bracket">]</span></a></sup> The same happened to the developers of <a href="Nmap" title="Nmap">nmap</a>.<sup id="cite_ref-auto_36-0" class="reference"><a href="#cite_note-auto-36"><span class="cite-bracket">[</span>36<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-auto1_37-0" class="reference"><a href="#cite_note-auto1-37"><span class="cite-bracket">[</span>37<span class="cite-bracket">]</span></a></sup>
</p><p>In May 2015 SourceForge took control of projects which had migrated to other hosting sites and replaced the project downloads with adware-laden downloads.<sup id="cite_ref-38" class="reference"><a href="#cite_note-38"><span class="cite-bracket">[</span>38<span class="cite-bracket">]</span></a></sup>
</p>
<div class="mw-heading mw-heading4"><h4 id="Nmap">Nmap</h4></div>
<p><a href="Gordon_Lyon" title="Gordon Lyon">Gordon Lyon</a> has lost control of the <a href="Nmap" title="Nmap">Nmap</a> <a href="SourceForge" title="SourceForge">SourceForge</a> page, with SourceForge taking over the project's page. Lyon stated "So far they seem to be providing just the official Nmap files (as long as
you don't click on the fake download buttons) and we haven't caught them
trojaning Nmap the way they did with GIMP. But we certainly don't trust
them one bit! Sourceforge is pulling the same scheme that CNet
Download.com tried back when they started circling the drain".<sup id="cite_ref-auto_36-1" class="reference"><a href="#cite_note-auto-36"><span class="cite-bracket">[</span>36<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-auto1_37-1" class="reference"><a href="#cite_note-auto1-37"><span class="cite-bracket">[</span>37<span class="cite-bracket">]</span></a></sup>
</p>
<div class="mw-heading mw-heading4"><h4 id="VLC_media_player">VLC media player</h4></div>
<p><a href="VideoLAN" title="VideoLAN">VideoLAN</a> has expressed dismay that users searching for their product see search advertising from websites that offer "bundled" downloads that include <a href="Malware#Grayware" title="Malware">unwanted programs</a>, while VideoLAN lacks resources to sue the many companies abusing their trademarks.<sup id="cite_ref-howtogeek_28-1" class="reference"><a href="#cite_note-howtogeek-28"><span class="cite-bracket">[</span>28<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-39" class="reference"><a href="#cite_note-39"><span class="cite-bracket">[</span>39<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-40" class="reference"><a href="#cite_note-40"><span class="cite-bracket">[</span>40<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-41" class="reference"><a href="#cite_note-41"><span class="cite-bracket">[</span>41<span class="cite-bracket">]</span></a></sup><sup id="cite_ref-42" class="reference"><a href="#cite_note-42"><span class="cite-bracket">[</span>42<span class="cite-bracket">]</span></a></sup>
</p>
<div class="mw-heading mw-heading2"><h2 id="See_also">See also</h2></div>
<ul><li><a href="Conduit_toolbar" title="Conduit toolbar">Conduit toolbar</a></li>
<li><a href="Pre-installed_software" title="Pre-installed software">Pre-installed software</a></li>
<li><a href="Shovelware" title="Shovelware">Shovelware</a></li></ul>
<div class="mw-heading mw-heading2"><h2 id="References">References</h2></div>
<style data-mw-deduplicate="TemplateStyles:r1239543626">
/* start https://en.wikipedia.org/ */
.mw-parser-output .reflist{margin-bottom:0.5em;list-style-type:decimal}@media screen{.mw-parser-output .reflist{font-size:90%}}.mw-parser-output .reflist .references{font-size:100%;margin-bottom:0;list-style-type:inherit}.mw-parser-output .reflist-columns-2{column-width:30em}.mw-parser-output .reflist-columns-3{column-width:25em}.mw-parser-output .reflist-columns{margin-top:0.3em}.mw-parser-output .reflist-columns ol{margin-top:0}.mw-parser-output .reflist-columns li{page-break-inside:avoid;break-inside:avoid-column}.mw-parser-output .reflist-upper-alpha{list-style-type:upper-alpha}.mw-parser-output .reflist-upper-roman{list-style-type:upper-roman}.mw-parser-output .reflist-lower-alpha{list-style-type:lower-alpha}.mw-parser-output .reflist-lower-greek{list-style-type:lower-greek}.mw-parser-output .reflist-lower-roman{list-style-type:lower-roman}
/* end https://en.wikipedia.org/ */
</style><div class="reflist reflist-columns references-column-width" style="column-width: 30em;">
<ol class="references">
<li id="cite_note-PUP_Criteria-1"><span class="mw-cite-backlink">^ <a href="#cite_ref-PUP_Criteria_1-0"><sup><i><b>a</b></i></sup></a> <a href="#cite_ref-PUP_Criteria_1-1"><sup><i><b>b</b></i></sup></a></span> <span class="reference-text"><style data-mw-deduplicate="TemplateStyles:r1238218222">
/* start https://en.wikipedia.org/ */
.mw-parser-output cite.citation{font-style:inherit;word-wrap:break-word}.mw-parser-output .citation q{quotes:"\"""\"""'""'"}.mw-parser-output .citation:target{background-color:rgba(0,127,255,0.133)}.mw-parser-output .id-lock-free.id-lock-free a{background:url("./mw/Lock-green.svg")right 0.1em center/9px no-repeat}.mw-parser-output .id-lock-limited.id-lock-limited a,.mw-parser-output .id-lock-registration.id-lock-registration a{background:url("./mw/Lock-gray-alt-2.svg")right 0.1em center/9px no-repeat}.mw-parser-output .id-lock-subscription.id-lock-subscription a{background:url("./mw/Lock-red-alt-2.svg")right 0.1em center/9px no-repeat}.mw-parser-output .cs1-ws-icon a{background:url("./mw/Wikisource-logo.svg")right 0.1em center/12px no-repeat}body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-free a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-limited a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-registration a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-subscription a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .cs1-ws-icon a{background-size:contain;padding:0 1em 0 0}.mw-parser-output .cs1-code{color:inherit;background:inherit;border:none;padding:inherit}.mw-parser-output .cs1-hidden-error{display:none;color:var(--color-error,#d33)}.mw-parser-output .cs1-visible-error{color:var(--color-error,#d33)}.mw-parser-output .cs1-maint{display:none;color:#085;margin-left:0.3em}.mw-parser-output .cs1-kern-left{padding-left:0.2em}.mw-parser-output .cs1-kern-right{padding-right:0.2em}.mw-parser-output .citation .mw-selflink{font-weight:inherit}@media screen{.mw-parser-output .cs1-format{font-size:95%}html.skin-theme-clientpref-night .mw-parser-output .cs1-maint{color:#18911f}}@media screen and (prefers-color-scheme:dark){html.skin-theme-clientpref-os .mw-parser-output .cs1-maint{color:#18911f}}
/* end https://en.wikipedia.org/ */
</style><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://www.malwarebytes.org/pup/">"PUP Criteria"</a>. Malwarebytes<span class="reference-accessdate">. Retrieved <span class="nowrap">13 February</span> 2015</span>.</cite></span>
</li>
<li id="cite_note-2"><span class="mw-cite-backlink"><b><a href="#cite_ref-2">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://arstechnica.com/security/2009/12/av-comparatives-picks-eight-antipua-winners/">"Rating the best anti-malware solutions"</a>. Arstechnica. 15 December 2009<span class="reference-accessdate">. Retrieved <span class="nowrap">28 January</span> 2014</span>.</cite></span>
</li>
<li id="cite_note-3"><span class="mw-cite-backlink"><b><a href="#cite_ref-3">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://about-threats.trendmicro.com/us/archive/grayware/GENERIC_GRAYWARE">"Threat Encyclopedia – Generic Grayware"</a>. Trend Micro<span class="reference-accessdate">. Retrieved <span class="nowrap">27 November</span> 2012</span>.</cite></span>
</li>
<li id="cite_note-emisoft1-4"><span class="mw-cite-backlink">^ <a href="#cite_ref-emisoft1_4-0"><sup><i><b>a</b></i></sup></a> <a href="#cite_ref-emisoft1_4-1"><sup><i><b>b</b></i></sup></a></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://blog.emsisoft.com/2015/03/11/mind-the-pup-top-download-portals-to-avoid/">"Mind the PUP: Top download portals to avoid"</a>. EMSISOFT. March 11, 2015<span class="reference-accessdate">. Retrieved <span class="nowrap">May 4,</span> 2015</span>.</cite></span>
</li>
<li id="cite_note-reutersdhs-5"><span class="mw-cite-backlink">^ <a href="#cite_ref-reutersdhs_5-0"><sup><i><b>a</b></i></sup></a> <a href="#cite_ref-reutersdhs_5-1"><sup><i><b>b</b></i></sup></a></span> <span class="reference-text"><cite class="citation news cs1"><a rel="nofollow" class="external text" href="https://www.reuters.com/article/us-lenovo-cybersecurity-dhs-idUSKBN0LO21U20150220">"U.S. government urges Lenovo customers to remove Superfish software"</a>. Reuters. February 20, 2015. <a rel="nofollow" class="external text" href="https://web.archive.org/web/20150220205408/http://www.reuters.com/article/2015/02/20/us-lenovo-cybersecurity-dhs-idUSKBN0LO21U20150220">Archived</a> from the original on February 20, 2015<span class="reference-accessdate">. Retrieved <span class="nowrap">February 20,</span> 2015</span>.</cite></span>
</li>
<li id="cite_note-6"><span class="mw-cite-backlink"><b><a href="#cite_ref-6">^</a></b></span> <span class="reference-text"><a rel="nofollow" class="external text" href="http://archive.omgn.com/nexus/?p=637">CDT Files Complaints Against Major Adware Distributor (archived)</a> January 27, 2006</span>
</li>
<li id="cite_note-7"><span class="mw-cite-backlink"><b><a href="#cite_ref-7">^</a></b></span> <span class="reference-text"><a rel="nofollow" class="external text" href="http://www.calcalist.co.il/internet/articles/0,7340,L-3600064,00.html">3. IronSource, Downloads Ltd</a> Calcalist, Assaf Gilad. April 15, 2013</span>
</li>
<li id="cite_note-8"><span class="mw-cite-backlink"><b><a href="#cite_ref-8">^</a></b></span> <span class="reference-text"><cite id="CITEREFAppelberg2014" class="citation news cs1">Appelberg, Shelly (8 August 2014). <a rel="nofollow" class="external text" href="http://www.haaretz.com/israel-news/business/.premium-1.609256">"Israel's Download Valley Companies See Hard Times Ahead"</a>. <i>Haaretz</i>.</cite></span>
</li>
<li id="cite_note-9"><span class="mw-cite-backlink"><b><a href="#cite_ref-9">^</a></b></span> <span class="reference-text"><cite id="CITEREFHirschauge2014" class="citation news cs1">Hirschauge, Orr (15 May 2014). <a rel="nofollow" class="external text" href="https://www.wsj.com/articles/SB10001424052702304547704579563281761548844">"Conduit Diversifies Away From 'Download Valley'"</a>. <i>Wall Street Journal</i>.</cite></span>
</li>
<li id="cite_note-10"><span class="mw-cite-backlink"><b><a href="#cite_ref-10">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://www.geektime.com/2015/01/18/meet-israels-low-profile-unicorn-ironsource/">"Meet Israel's low-profile unicorn: ironSource"</a>. 18 January 2015.</cite></span>
</li>
<li id="cite_note-11"><span class="mw-cite-backlink"><b><a href="#cite_ref-11">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://blog.emsisoft.com/2015/02/26/62-of-the-top-50-download-com-applications-bundle-toolbars-and-other-pups/">"62% of the Top 50 Download.com applications bundle toolbars and other PUPs"</a>. <i>EMSISOFT blog</i>. 26 Feb 2015.</cite></span>
</li>
<li id="cite_note-12"><span class="mw-cite-backlink"><b><a href="#cite_ref-12">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://adage.com/article/digital/google-ad-injection-affecting-millions/305321/">"Google Investigation: Ad Injection Is Infesting Millions of Devices"</a>. adage.com. 4 August 2016.</cite></span>
</li>
<li id="cite_note-13"><span class="mw-cite-backlink"><b><a href="#cite_ref-13">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://research.google.com/pubs/pub43346.html">"Google Research"</a>. 2015.</cite></span>
</li>
<li id="cite_note-malwarebytes-14"><span class="mw-cite-backlink"><b><a href="#cite_ref-malwarebytes_14-0">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://www.malwarebytes.org/pup/">"Malwarebytes Potentially Unwanted Program Criteria"</a>. <a href="Malwarebytes" title="Malwarebytes">Malwarebytes</a>.</cite></span>
</li>
<li id="cite_note-15"><span class="mw-cite-backlink"><b><a href="#cite_ref-15">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://web.archive.org/web/20150605041757/https://static.googleusercontent.com/media/research.google.com/en//pubs/archive/43346.pdf">"Ad Injection at Scale: Assessing Deceptive Advertisement Modifications"</a> <span class="cs1-format">(PDF)</span>. Archived from <a rel="nofollow" class="external text" href="https://static.googleusercontent.com/media/research.google.com/en//pubs/archive/43346.pdf">the original</a> <span class="cs1-format">(PDF)</span> on 2015-06-05<span class="reference-accessdate">. Retrieved <span class="nowrap">2015-06-03</span></span>.</cite></span>
</li>
<li id="cite_note-16"><span class="mw-cite-backlink"><b><a href="#cite_ref-16">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://www.pcworld.com/article/2920012/superfish-injects-ads-in-one-in-25-google-page-views.html">"Superfish injects ads into 5 percent of all Google page views"</a>. PCWorld. 2015-05-07<span class="reference-accessdate">. Retrieved <span class="nowrap">2016-07-04</span></span>.</cite></span>
</li>
<li id="cite_note-17"><span class="mw-cite-backlink"><b><a href="#cite_ref-17">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://www.cio.com.au/article/574450/superfish-injects-ads-one-25-google-page-views/">"Superfish injects ads in one in 25 Google page views"</a>. CIO. 2015-05-07<span class="reference-accessdate">. Retrieved <span class="nowrap">2016-07-04</span></span>.</cite></span>
</li>
<li id="cite_note-ars-adwareacquire-18"><span class="mw-cite-backlink"><b><a href="#cite_ref-ars-adwareacquire_18-0">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://arstechnica.com/security/2014/01/malware-vendors-buy-chrome-extensions-to-send-adware-filled-updates/">"Adware vendors buy Chrome Extensions to send ad- and malware-filled updates"</a>. <i>Ars Technica</i>. 17 January 2014<span class="reference-accessdate">. Retrieved <span class="nowrap">20 January</span> 2014</span>.</cite></span>
</li>
<li id="cite_note-wsj-chromeads-19"><span class="mw-cite-backlink"><b><a href="#cite_ref-wsj-chromeads_19-0">^</a></b></span> <span class="reference-text"><cite id="CITEREFWinkler2014" class="citation news cs1">Winkler, Rolfe (19 January 2014). <a rel="nofollow" class="external text" href="https://blogs.wsj.com/digits/2014/01/19/google-removes-two-chrome-extensions-amid-ad-uproar/">"Google Removes Two Chrome Extensions Amid Ad Uproar"</a>. <i>Wall Street Journal</i><span class="reference-accessdate">. Retrieved <span class="nowrap">20 January</span> 2014</span>.</cite></span>
</li>
<li id="cite_note-20"><span class="mw-cite-backlink"><b><a href="#cite_ref-20">^</a></b></span> <span class="reference-text"><cite id="CITEREFBruce_Schneier2014" class="citation web cs1">Bruce Schneier (21 Jan 2014). <a rel="nofollow" class="external text" href="https://www.schneier.com/blog/archives/2014/01/adware_vendors.html">"Adware Vendors Buy and Abuse Chrome Extensions"</a>.</cite></span>
</li>
<li id="cite_note-:0-21"><span class="mw-cite-backlink"><b><a href="#cite_ref-:0_21-0">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://www.us-cert.gov/ncas/alerts/TA15-051A">"Alert: Lenovo "Superfish" Adware Vulnerable to HTTPS Spoofing"</a>. United States Computer Emergency Readiness Team. February 20, 2015<span class="reference-accessdate">. Retrieved <span class="nowrap">February 20,</span> 2015</span>.</cite></span>
</li>
<li id="cite_note-22"><span class="mw-cite-backlink"><b><a href="#cite_ref-22">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://heise.de/-2557619">"Gefährliche Adware: Mehr als ein Dutzend Anwendungen verbreiten Superfish-Zertifikat"</a> [Dangerous Aware: More than a Dozen Applications spreading Superfish Certificate]. <i><a href="Heinz_Heise" class="mw-redirect" title="Heinz Heise">Heise Security</a></i>. February 24, 2015<span class="reference-accessdate">. Retrieved <span class="nowrap">May 5,</span> 2015</span>.</cite></span>
</li>
<li id="cite_note-23"><span class="mw-cite-backlink"><b><a href="#cite_ref-23">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://www.scmagazine.com/android-trojan-sends-premium-sms-messages-targets-us-users-for-first-time/article/343953/">"Android trojan sends premium SMS messages, targets U.S. users for first time"</a>. <i>SC Magazine</i>.</cite></span>
</li>
<li id="cite_note-24"><span class="mw-cite-backlink"><b><a href="#cite_ref-24">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://www.pandasecurity.com/mediacenter/malware/new-malware-attack-through-google-play/">"New malware attack through Google Play"</a>. <i>MediaCenter Panda Security</i>. 13 February 2014.</cite></span>
</li>
<li id="cite_note-25"><span class="mw-cite-backlink"><b><a href="#cite_ref-25">^</a></b></span> <span class="reference-text"><cite id="CITEREFSwati_Khandelwal2014" class="citation web cs1">Swati Khandelwal (15 February 2014). <a rel="nofollow" class="external text" href="http://thehackernews.com/2014/02/android-Malware-subscription-premium-SMS-Services.html">"300000 Android Devices infected by Premium SMS-Sending Malware"</a>. <i>The Hacker News - Biggest Information Security Channel</i>.</cite></span>
</li>
<li id="cite_note-26"><span class="mw-cite-backlink"><b><a href="#cite_ref-26">^</a></b></span> <span class="reference-text"><cite id="CITEREFVan_der_Sar2021" class="citation web cs1">Van der Sar, Ernesto (March 18, 2021). <a rel="nofollow" class="external text" href="https://archive.today/20210728145339/https://torrentfreak.com/utorrent-continues-to-be-flagged-as-severe-threat-and-its-not-alone-210318/">"uTorrent Continues to be Flagged as 'Severe Threat' and It's Not alone"</a>. <i>TorrentFreak</i>. Archived from <a rel="nofollow" class="external text" href="https://torrentfreak.com/utorrent-continues-to-be-flagged-as-severe-threat-and-its-not-alone-210318/">the original</a> on 2021-07-28<span class="reference-accessdate">. Retrieved <span class="nowrap">1 August</span> 2021</span>.</cite></span>
</li>
<li id="cite_note-msir13-27"><span class="mw-cite-backlink"><b><a href="#cite_ref-msir13_27-0">^</a></b></span> <span class="reference-text"><a rel="nofollow" class="external text" href="http://download.microsoft.com/download/C/1/F/C1F6A2B2-F45F-45F7-B788-32D2CCA48D29/Microsoft_Security_Intelligence_Report_Volume_13_English.pdf">Microsoft Security Intelligence Report Volume 13, p14</a></span>
</li>
<li id="cite_note-howtogeek-28"><span class="mw-cite-backlink">^ <a href="#cite_ref-howtogeek_28-0"><sup><i><b>a</b></i></sup></a> <a href="#cite_ref-howtogeek_28-1"><sup><i><b>b</b></i></sup></a></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://www.howtogeek.com/207692/yes-every-freeware-download-site-is-serving-crapware-heres-the-proof/">"Yes, Every Freeware Download Site is Serving Crapware (Here's the Proof)"</a>. <i>HowToGeek.com</i>. 21 Jan 2015. <q>Sadly, even on Google all the top results for most open source and freeware are just ads for really terrible sites that are bundling crapware, adware, and malware on top of the installer. Most geeks will know that they shouldn't click on the ads, but obviously enough people are clicking those ads for them to be able to afford to pay the high per-click prices for Google AdWords.</q></cite></span>
</li>
<li id="cite_note-29"><span class="mw-cite-backlink"><b><a href="#cite_ref-29">^</a></b></span> <span class="reference-text"><cite id="CITEREFBrian_Krebs2011" class="citation web cs1"><a href="Brian_Krebs" title="Brian Krebs">Brian Krebs</a> (2011-12-06). <a rel="nofollow" class="external text" href="http://krebsonsecurity.com/2011/12/download-com-bundling-toolbars-trojans/">"Download.com Bundling Toolbars, Trojans?"</a>. <i>Krebs on security</i><span class="reference-accessdate">. Retrieved <span class="nowrap">2015-05-04</span></span>.</cite></span>
</li>
<li id="cite_note-insecure-30"><span class="mw-cite-backlink">^ <a href="#cite_ref-insecure_30-0"><sup><i><b>a</b></i></sup></a> <a href="#cite_ref-insecure_30-1"><sup><i><b>b</b></i></sup></a></span> <span class="reference-text"><cite id="CITEREFGordon_Lyon2012" class="citation web cs1"><a href="Gordon_Lyon" title="Gordon Lyon">Gordon Lyon</a> (2012-06-27). <a rel="nofollow" class="external text" href="http://insecure.org/news/download-com-fiasco.html#exec">"Download.com Caught Adding Malware to Nmap & Other Software"</a><span class="reference-accessdate">. Retrieved <span class="nowrap">2015-05-04</span></span>. <q>we suggest avoiding CNET Download.com entirely</q></cite></span>
</li>
<li id="cite_note-31"><span class="mw-cite-backlink"><b><a href="#cite_ref-31">^</a></b></span> <span class="reference-text"><cite id="CITEREFDarren_Pauli2014" class="citation web cs1">Darren Pauli (2014-07-08). <a rel="nofollow" class="external text" href="https://www.theregister.co.uk/2014/07/08/download_wrappers_spruiked_vulnerable_avg_tool_cert_us_warns/">"Insecure AVG search tool shoved down users' throats, says US CERT"</a>. The Register<span class="reference-accessdate">. Retrieved <span class="nowrap">2015-05-04</span></span>. <q>Sneaky 'foistware' downloads install things you never asked for</q></cite></span>
</li>
<li id="cite_note-32"><span class="mw-cite-backlink"><b><a href="#cite_ref-32">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://sourceforge.net/blog/sourceforge-acquisition-and-future-plans/">"SourceForge Acquisition and Future Plans | SourceForge Community Blog"</a>. <i>sourceforge.net</i>. 10 February 2016<span class="reference-accessdate">. Retrieved <span class="nowrap">2016-07-29</span></span>.</cite></span>
</li>
<li id="cite_note-33"><span class="mw-cite-backlink"><b><a href="#cite_ref-33">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://fossforce.com/2016/01/sourceforge-and-slashdot-have-been-sold/">"SourceForge and Slashdot Have Been Sold | FOSS Force"</a>. 2016-01-29<span class="reference-accessdate">. Retrieved <span class="nowrap">2016-07-29</span></span>.</cite></span>
</li>
<li id="cite_note-Register:_Gimp_departs_SourceForge-34"><span class="mw-cite-backlink"><b><a href="#cite_ref-Register:_Gimp_departs_SourceForge_34-0">^</a></b></span> <span class="reference-text"><cite id="CITEREFSharwood2013" class="citation news cs1">Sharwood, Simon (November 8, 2013). <a rel="nofollow" class="external text" href="https://www.theregister.co.uk/2013/11/08/gimp_dumps_sourceforge_over_dodgy_ads_and_installer/">"GIMP flees SourceForge over dodgy ads and installer"</a>. <i>The Register</i><span class="reference-accessdate">. Retrieved <span class="nowrap">November 21,</span> 2013</span>.</cite></span>
</li>
<li id="cite_note-ars-gimpwindowssf-35"><span class="mw-cite-backlink"><b><a href="#cite_ref-ars-gimpwindowssf_35-0">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://arstechnica.com/information-technology/2015/06/sourceforge-locked-in-projects-of-fleeing-users-cashed-in-on-malvertising/">"SourceForge locked in projects of fleeing users, cashed in on malvertising"</a>. <i>Ars Technica</i><span class="reference-accessdate">. Retrieved <span class="nowrap">2 June</span> 2015</span>.</cite></span>
</li>
<li id="cite_note-auto-36"><span class="mw-cite-backlink">^ <a href="#cite_ref-auto_36-0"><sup><i><b>a</b></i></sup></a> <a href="#cite_ref-auto_36-1"><sup><i><b>b</b></i></sup></a></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://seclists.org/nmap-dev/2015/q2/194">"Sourceforge Hijacks the Nmap Sourceforge Account"</a>. <i>Seclists.org</i>. 3 June 2015.</cite></span>
</li>
<li id="cite_note-auto1-37"><span class="mw-cite-backlink">^ <a href="#cite_ref-auto1_37-0"><sup><i><b>a</b></i></sup></a> <a href="#cite_ref-auto1_37-1"><sup><i><b>b</b></i></sup></a></span> <span class="reference-text"><cite id="CITEREFSean_Gallagher2015" class="citation web cs1">Sean Gallagher (4 June 2015). <a rel="nofollow" class="external text" href="https://arstechnica.com/information-technology/2015/06/black-mirror-sourceforge-has-now-siezed-nmap-audit-tool-project/">"Black "mirror": SourceForge has now seized Nmap audit tool project"</a>. <i>Ars Technica</i>.</cite></span>
</li>
<li id="cite_note-38"><span class="mw-cite-backlink"><b><a href="#cite_ref-38">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://arstechnica.com/information-technology/2015/05/sourceforge-grabs-gimp-for-windows-account-wraps-installer-in-bundle-pushing-adware/">"SourceForge grabs GIMP for Windows' account, wraps installer in bundle-pushing adware [Updated]"</a><span class="reference-accessdate">. Retrieved <span class="nowrap">2015-05-30</span></span>.</cite></span>
</li>
<li id="cite_note-39"><span class="mw-cite-backlink"><b><a href="#cite_ref-39">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://blog.l0cal.com/2011/07/07/these-companies-that-mislead-our-users/">"These companies that mislead our users"</a>. 7 Jul 2011.</cite></span>
</li>
<li id="cite_note-40"><span class="mw-cite-backlink"><b><a href="#cite_ref-40">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://web.archive.org/web/20170323152644/http://www.geek.com/news/vlc-media-player-suffering-in-face-of-crapware-and-uncaring-google-1400411/">"VLC media player suffering in face of crapware and uncaring Google"</a>. <i>Geek.com</i>. 7 Jul 2011. Archived from <a rel="nofollow" class="external text" href="http://www.geek.com/news/vlc-media-player-suffering-in-face-of-crapware-and-uncaring-google-1400411/">the original</a> on 23 March 2017<span class="reference-accessdate">. Retrieved <span class="nowrap">3 June</span> 2015</span>.</cite></span>
</li>
<li id="cite_note-41"><span class="mw-cite-backlink"><b><a href="#cite_ref-41">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://news.softpedia.com/news/VideoLAN-Calls-Out-for-Help-to-Protect-Users-from-VLC-Scams-211896.shtml">"VideoLAN Calls Out for Help to Protect Users from VLC Scams"</a>. 16 Jul 2011.</cite></span>
</li>
<li id="cite_note-42"><span class="mw-cite-backlink"><b><a href="#cite_ref-42">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://forum.videolan.org/viewtopic.php?f=14&t=86774">"Adware in new installer"</a>. <i>The VideoLAN forums</i>.</cite></span>
</li>
</ol></div>
<div class="navbox-styles"><style data-mw-deduplicate="TemplateStyles:r1129693374">
/* start https://en.wikipedia.org/ */
.mw-parser-output .hlist dl,.mw-parser-output .hlist ol,.mw-parser-output .hlist ul{margin:0;padding:0}.mw-parser-output .hlist dd,.mw-parser-output .hlist dt,.mw-parser-output .hlist li{margin:0;display:inline}.mw-parser-output .hlist.inline,.mw-parser-output .hlist.inline dl,.mw-parser-output .hlist.inline ol,.mw-parser-output .hlist.inline ul,.mw-parser-output .hlist dl dl,.mw-parser-output .hlist dl ol,.mw-parser-output .hlist dl ul,.mw-parser-output .hlist ol dl,.mw-parser-output .hlist ol ol,.mw-parser-output .hlist ol ul,.mw-parser-output .hlist ul dl,.mw-parser-output .hlist ul ol,.mw-parser-output .hlist ul ul{display:inline}.mw-parser-output .hlist .mw-empty-li{display:none}.mw-parser-output .hlist dt::after{content:": "}.mw-parser-output .hlist dd::after,.mw-parser-output .hlist li::after{content:" · ";font-weight:bold}.mw-parser-output .hlist dd:last-child::after,.mw-parser-output .hlist dt:last-child::after,.mw-parser-output .hlist li:last-child::after{content:none}.mw-parser-output .hlist dd dd:first-child::before,.mw-parser-output .hlist dd dt:first-child::before,.mw-parser-output .hlist dd li:first-child::before,.mw-parser-output .hlist dt dd:first-child::before,.mw-parser-output .hlist dt dt:first-child::before,.mw-parser-output .hlist dt li:first-child::before,.mw-parser-output .hlist li dd:first-child::before,.mw-parser-output .hlist li dt:first-child::before,.mw-parser-output .hlist li li:first-child::before{content:" (";font-weight:normal}.mw-parser-output .hlist dd dd:last-child::after,.mw-parser-output .hlist dd dt:last-child::after,.mw-parser-output .hlist dd li:last-child::after,.mw-parser-output .hlist dt dd:last-child::after,.mw-parser-output .hlist dt dt:last-child::after,.mw-parser-output .hlist dt li:last-child::after,.mw-parser-output .hlist li dd:last-child::after,.mw-parser-output .hlist li dt:last-child::after,.mw-parser-output .hlist li li:last-child::after{content:")";font-weight:normal}.mw-parser-output .hlist ol{counter-reset:listitem}.mw-parser-output .hlist ol>li{counter-increment:listitem}.mw-parser-output .hlist ol>li::before{content:" "counter(listitem)"\a0 "}.mw-parser-output .hlist dd ol>li:first-child::before,.mw-parser-output .hlist dt ol>li:first-child::before,.mw-parser-output .hlist li ol>li:first-child::before{content:" ("counter(listitem)"\a0 "}
/* end https://en.wikipedia.org/ */
</style><style data-mw-deduplicate="TemplateStyles:r1236075235">
/* start https://en.wikipedia.org/ */
.mw-parser-output .navbox{box-sizing:border-box;border:1px solid #a2a9b1;width:100%;clear:both;font-size:88%;text-align:center;padding:1px;margin:1em auto 0}.mw-parser-output .navbox .navbox{margin-top:0}.mw-parser-output .navbox+.navbox,.mw-parser-output .navbox+.navbox-styles+.navbox{margin-top:-1px}.mw-parser-output .navbox-inner,.mw-parser-output .navbox-subgroup{width:100%}.mw-parser-output .navbox-group,.mw-parser-output .navbox-title,.mw-parser-output .navbox-abovebelow{padding:0.25em 1em;line-height:1.5em;text-align:center}.mw-parser-output .navbox-group{white-space:nowrap;text-align:right}.mw-parser-output .navbox,.mw-parser-output .navbox-subgroup{background-color:#fdfdfd}.mw-parser-output .navbox-list{line-height:1.5em;border-color:#fdfdfd}.mw-parser-output .navbox-list-with-group{text-align:left;border-left-width:2px;border-left-style:solid}.mw-parser-output tr+tr>.navbox-abovebelow,.mw-parser-output tr+tr>.navbox-group,.mw-parser-output tr+tr>.navbox-image,.mw-parser-output tr+tr>.navbox-list{border-top:2px solid #fdfdfd}.mw-parser-output .navbox-title{background-color:#ccf}.mw-parser-output .navbox-abovebelow,.mw-parser-output .navbox-group,.mw-parser-output .navbox-subgroup .navbox-title{background-color:#ddf}.mw-parser-output .navbox-subgroup .navbox-group,.mw-parser-output .navbox-subgroup .navbox-abovebelow{background-color:#e6e6ff}.mw-parser-output .navbox-even{background-color:#f7f7f7}.mw-parser-output .navbox-odd{background-color:transparent}.mw-parser-output .navbox .hlist td dl,.mw-parser-output .navbox .hlist td ol,.mw-parser-output .navbox .hlist td ul,.mw-parser-output .navbox td.hlist dl,.mw-parser-output .navbox td.hlist ol,.mw-parser-output .navbox td.hlist ul{padding:0.125em 0}.mw-parser-output .navbox .navbar{display:block;font-size:100%}.mw-parser-output .navbox-title .navbar{float:left;text-align:left;margin-right:0.5em}body.skin--responsive .mw-parser-output .navbox-image img{max-width:none!important}@media print{body.ns-0 .mw-parser-output .navbox{display:none!important}}
/* end https://en.wikipedia.org/ */
</style></div><div role="navigation" class="navbox" aria-labelledby="Software_distribution163" style="padding:3px"><table class="nowraplinks mw-collapsible autocollapse navbox-inner" style="border-spacing:0;background:transparent;color:inherit"><tbody><tr><th scope="col" class="navbox-title" colspan="2"><style data-mw-deduplicate="TemplateStyles:r1239400231">
/* start https://en.wikipedia.org/ */
.mw-parser-output .navbar{display:inline;font-size:88%;font-weight:normal}.mw-parser-output .navbar-collapse{float:left;text-align:left}.mw-parser-output .navbar-boxtext{word-spacing:0}.mw-parser-output .navbar ul{display:inline-block;white-space:nowrap;line-height:inherit}.mw-parser-output .navbar-brackets::before{margin-right:-0.125em;content:"[ "}.mw-parser-output .navbar-brackets::after{margin-left:-0.125em;content:" ]"}.mw-parser-output .navbar li{word-spacing:-0.125em}.mw-parser-output .navbar a>span,.mw-parser-output .navbar a>abbr{text-decoration:inherit}.mw-parser-output .navbar-mini abbr{font-variant:small-caps;border-bottom:none;text-decoration:none;cursor:inherit}.mw-parser-output .navbar-ct-full{font-size:114%;margin:0 7em}.mw-parser-output .navbar-ct-mini{font-size:114%;margin:0 4em}html.skin-theme-clientpref-night .mw-parser-output .navbar li a abbr{color:var(--color-base)!important}@media(prefers-color-scheme:dark){html.skin-theme-clientpref-os .mw-parser-output .navbar li a abbr{color:var(--color-base)!important}}@media print{.mw-parser-output .navbar{display:none!important}}
/* end https://en.wikipedia.org/ */
</style><div id="Software_distribution163" style="font-size:114%;margin:0 4em"><a href="Software_distribution" title="Software distribution">Software distribution</a></div></th></tr><tr><th scope="row" class="navbox-group" style="width:1%"><a href="Software_license" title="Software license">Licenses</a></th><td class="navbox-list-with-group navbox-list navbox-odd hlist" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Beerware" title="Beerware">Beerware</a></li>
<li><a href="Floating_licensing" title="Floating licensing">Floating licensing</a></li>
<li><a href="Free_and_open-source_software" title="Free and open-source software">Free and open-source</a>
<ul><li><a href="Free_software" title="Free software">Free</a></li>
<li><a href="Open-source_software" title="Open-source software">Open source</a></li></ul></li>
<li><a href="Freely_redistributable_software" title="Freely redistributable software">Freely redistributable</a></li>
<li><a href="License-free_software" title="License-free software">License-free</a></li>
<li><a href="Proprietary_software" title="Proprietary software">Proprietary</a></li>
<li><a href="Public-domain_software" title="Public-domain software">Public domain</a></li>
<li><a href="Source-available_software" title="Source-available software">Source-available</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Compensation models</th><td class="navbox-list-with-group navbox-list navbox-even hlist" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Adware" title="Adware">Adware</a></li>
<li><a href="Commercial_software" title="Commercial software">Commercial software</a>
<ul><li><a href="Retail_software" title="Retail software">Retail software</a></li></ul></li>
<li><a href="Crippleware" title="Crippleware">Crippleware</a></li>
<li><a href="Crowdfunding" title="Crowdfunding">Crowdfunding</a></li>
<li><a href="Freemium" title="Freemium">Freemium</a></li>
<li><a href="Freeware" title="Freeware">Freeware</a></li>
<li><a href="Pay_what_you_want" title="Pay what you want">Pay what you want</a>
<ul><li><a href="Careware" title="Careware">Careware</a></li>
<li><a href="Donationware" title="Donationware">Donationware</a></li></ul></li>
<li><a href="Open-core_model" title="Open-core model">Open-core model</a></li>
<li><a href="Postcardware" class="mw-redirect" title="Postcardware">Postcardware</a></li>
<li><a href="Shareware" title="Shareware">Shareware</a>
<ul><li><a href="Nagware" class="mw-redirect" title="Nagware">Nagware</a></li></ul></li>
<li><a href="Trialware" class="mw-redirect" title="Trialware">Trialware</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Delivery methods</th><td class="navbox-list-with-group navbox-list navbox-odd hlist" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Digital_distribution" title="Digital distribution">Digital distribution</a></li>
<li><a href="File_sharing" title="File sharing">File sharing</a></li>
<li><a href="On-premises_software" title="On-premises software">On-premises</a></li>
<li><a href="Pre-installed_software" title="Pre-installed software">Pre-installed</a></li>
<li><a href="Product_bundling" title="Product bundling">Product bundling</a></li>
<li><a href="Retail_software" title="Retail software">Retail software</a></li>
<li><a href="Sneakernet" title="Sneakernet">Sneakernet</a></li>
<li><a href="Software_as_a_service" title="Software as a service">Software as a service</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Deceptive and/or illicit</th><td class="navbox-list-with-group navbox-list navbox-even hlist" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Unwanted_software_bundling" class="mw-redirect" title="Unwanted software bundling">Unwanted software bundling</a></li>
<li><a href="Malware" title="Malware">Malware</a>
<ul><li><a href="Infostealer" title="Infostealer">Infostealer</a></li>
<li><a href="Ransomware" title="Ransomware">Ransomware</a></li>
<li><a href="Spyware" title="Spyware">Spyware</a></li>
<li><a href="Trojan_horse_(computing)" title="Trojan horse (computing)">Trojan horse</a></li>
<li><a href="Computer_worm" title="Computer worm">Worm</a></li></ul></li>
<li><a href="Scareware" title="Scareware">Scareware</a></li>
<li><a href="Shovelware" title="Shovelware">Shovelware</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%"><a href="Software_release_life_cycle" title="Software release life cycle">Software release life cycle</a></th><td class="navbox-list-with-group navbox-list navbox-odd hlist" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Abandonware" title="Abandonware">Abandonware</a></li>
<li><a href="Long-term_support" title="Long-term support">Long-term support</a></li>
<li><a href="Software_maintenance" title="Software maintenance">Software maintenance</a></li>
<li><a href="Software_maintainer" title="Software maintainer">Software maintainer</a></li>
<li><a href="Software_publisher" title="Software publisher">Software publisher</a></li>
<li><a href="Vaporware" title="Vaporware">Vaporware</a>
<ul><li><a href="List_of_vaporware" title="List of vaporware">list</a></li></ul></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%"><a href="Copy_protection" title="Copy protection">Copy protection</a></th><td class="navbox-list-with-group navbox-list navbox-even hlist" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Digital_rights_management" title="Digital rights management">Digital rights management</a></li>
<li><a href="Software_protection_dongle" title="Software protection dongle">Software protection dongle</a></li>
<li><a href="License_manager" class="mw-redirect" title="License manager">License manager</a></li>
<li><a href="Product_activation" title="Product activation">Product activation</a></li>
<li><a href="Product_key" title="Product key">Product key</a></li>
<li><a href="Software_copyright" title="Software copyright">Software copyright</a></li>
<li><a href="Software_license_server" title="Software license server">Software license server</a></li>
<li><a href="Software_patent" title="Software patent">Software patent</a></li>
<li><a href="Torrent_poisoning" title="Torrent poisoning">Torrent poisoning</a></li></ul>
</div></td></tr></tbody></table></div>
<div class="navbox-styles"></div><div role="navigation" class="navbox" aria-labelledby="Malware_topics109" style="padding:3px"><table class="nowraplinks mw-collapsible autocollapse navbox-inner" style="border-spacing:0;background:transparent;color:inherit"><tbody><tr><th scope="col" class="navbox-title" colspan="2"><div id="Malware_topics109" style="font-size:114%;margin:0 4em"><a href="Malware" title="Malware">Malware</a> topics</div></th></tr><tr><th scope="row" class="navbox-group" style="width:1%">Infectious malware</th><td class="navbox-list-with-group navbox-list navbox-odd hlist" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Comparison_of_computer_viruses" title="Comparison of computer viruses">Comparison of computer viruses</a></li>
<li><a href="Computer_virus" title="Computer virus">Computer virus</a></li>
<li><a href="Computer_worm" title="Computer worm">Computer worm</a></li>
<li><a href="List_of_computer_worms" title="List of computer worms">List of computer worms</a></li>
<li><a href="Timeline_of_computer_viruses_and_worms" title="Timeline of computer viruses and worms">Timeline of computer viruses and worms</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Concealment</th><td class="navbox-list-with-group navbox-list navbox-even hlist" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Backdoor_(computing)" title="Backdoor (computing)">Backdoor</a></li>
<li><a href="Clickjacking" title="Clickjacking">Clickjacking</a></li>
<li><a href="Man-in-the-browser" title="Man-in-the-browser">Man-in-the-browser</a></li>
<li><a href="Man-in-the-middle_attack" title="Man-in-the-middle attack">Man-in-the-middle</a></li>
<li><a href="Rootkit" title="Rootkit">Rootkit</a></li>
<li><a href="Trojan_horse_(computing)" title="Trojan horse (computing)">Trojan horse</a></li>
<li><a href="Zombie_(computing)" title="Zombie (computing)">Zombie computer</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Malware for profit</th><td class="navbox-list-with-group navbox-list navbox-odd hlist" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Adware" title="Adware">Adware</a></li>
<li><a href="Botnet" title="Botnet">Botnet</a></li>
<li><a href="Crimeware" title="Crimeware">Crimeware</a></li>
<li><a href="Fleeceware" title="Fleeceware">Fleeceware</a></li>
<li><a href="Form_grabbing" title="Form grabbing">Form grabbing</a></li>
<li><a href="Dialer#Fraudulent_dialer" title="Dialer">Fraudulent dialer</a></li>
<li><a href="Infostealer" title="Infostealer">Infostealer</a></li>
<li><a href="Keystroke_logging" title="Keystroke logging">Keystroke logging</a></li>
<li><a href="Internet_bot#Malicious_purposes" title="Internet bot">Malbot</a></li>
<li><a href="Privacy-invasive_software" class="mw-redirect" title="Privacy-invasive software">Privacy-invasive software</a></li>
<li><a href="Ransomware" title="Ransomware">Ransomware</a></li>
<li><a href="Rogue_security_software" title="Rogue security software">Rogue security software</a></li>
<li><a href="Scareware" title="Scareware">Scareware</a></li>
<li><a href="Spyware" title="Spyware">Spyware</a></li>
<li><a href="Web_threat" title="Web threat">Web threats</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">By operating system</th><td class="navbox-list-with-group navbox-list navbox-even hlist" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li>Android malware</li>
<li>Classic Mac OS viruses</li>
<li>iOS malware</li>
<li><a href="Linux_malware" title="Linux malware">Linux malware</a></li>
<li>MacOS malware</li>
<li><a href="Macro_virus" title="Macro virus">Macro virus</a></li>
<li><a href="Mobile_malware" title="Mobile malware">Mobile malware</a></li>
<li><a href="Palm_OS_viruses" title="Palm OS viruses">Palm OS viruses</a></li>
<li><a href="HyperCard_viruses" class="mw-redirect" title="HyperCard viruses">HyperCard viruses</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Protection</th><td class="navbox-list-with-group navbox-list navbox-odd hlist" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Anti-keylogger" title="Anti-keylogger">Anti-keylogger</a></li>
<li><a href="Antivirus_software" title="Antivirus software">Antivirus software</a></li>
<li><a href="Browser_security" title="Browser security">Browser security</a></li>
<li><a href="Data_loss_prevention_software" title="Data loss prevention software">Data loss prevention software</a></li>
<li><a href="Defensive_computing" title="Defensive computing">Defensive computing</a></li>
<li><a href="Firewall_(computing)" title="Firewall (computing)">Firewall</a></li>
<li><a href="Internet_security" title="Internet security">Internet security</a></li>
<li><a href="Intrusion_detection_system" title="Intrusion detection system">Intrusion detection system</a></li>
<li><a href="Mobile_security" title="Mobile security">Mobile security</a></li>
<li><a href="Network_security" title="Network security">Network security</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Countermeasures</th><td class="navbox-list-with-group navbox-list navbox-even hlist" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Computer_and_network_surveillance" title="Computer and network surveillance">Computer and network surveillance</a></li>
<li><a href="Honeypot_(computing)" title="Honeypot (computing)">Honeypot</a></li>
<li><a href="Operation%3A_Bot_Roast" title="Operation: Bot Roast">Operation: Bot Roast</a></li></ul>
</div></td></tr></tbody></table></div></div><!--htdig_noindex--><div><div class="zim-footer">
This article is issued from <a class="external text" title="Last edited on 2025-08-06" href="https://en.wikipedia.org/wiki/?title=Potentially_unwanted_program&oldid=1304523325">Wikipedia</a>. The text is available under <a class="external text" href="https://creativecommons.org/licenses/by-sa/4.0/deed.en">Creative Commons Attribution-Share Alike 4.0</a> unless otherwise noted. Additional terms may apply for the media files.
</div>
</div><!--/htdig_noindex--></div>
</div>
</main>
</div>
</div>
</div>
</body></html>