Gator 'spyware' investigated by Harvard

Daily Newsletters

Sign up to ZDNet UK's daily newsletter.

NEWS
A Harvard University researcher has completed an investigation of the Gator advertising utility, offering a glimpse into the workings of one of the Web's most controversial pop-up networks. Gator is a utility, sometimes derided as "spyware", that monitors a user's Web browsing activity and displays relevant advertisements. Until this week, the service promised advertisers that it could slap promotions onto a computer screen when a reader visited a competitor's Web site. According to the Harvard report, pop-up advertisements for Sun Microsystems' powerful V880 server, boasting "See how Sun beats IBM", are aimed at Gator users who visit IBM.com. In the cutthroat travel business, Orbitz, Travelocity.com, Priceline.com, and Cheap Tickets have purchased pop-ups that Gator users visiting arch rival Expedia will see, the study found. Expedia, in turn, uses Gator to aim its own "bargain fares" ads at all four of its competitors' sites. The report "provides some data as to how much advertising Gator is showing and to whom it is targeted", said author Ben Edelman, who has testified as an expert witness against Gator in at least one legal challenge to its service. "For Web site operators, and to be sure, their legal staff, it's important to know whether Gator is targeting them or not, and if so, how much". Scott Eagle, Gator's senior vice president for marketing, said the company was examining the report for possible errors, but he did not contest specific findings as of late on Wednesday. Nevertheless, Eagle raised general doubts about the study's methodology, observing that the report relied on information gleaned from Gator's client software without taking into account actions performed on Gator's servers. "Eighty percent of the magic is what he'll never see," Eagle said of Edelman and his findings in a phone interview. "He's only touching a part of the elephant." Gator's advertisers are no secret to millions of Web surfers who have installed its software. Still, the company has been guarded about its customers and practices due in part to the stigma of pop-up ads and to ongoing litigation. Gator is one of the most aggressive companies peddling pop-ups -- an Internet marketing technique that opens a browser window loaded with advertising over the top of, or underneath, an ordinary Web page. Early versions of Gator's service placed pop-ups directly over the top of advertisements embedded in Web pages, but the company has since ceased the practice. More recently, it has incorporated delays so that ads may be triggered only after visitors leave a Web site. Pop-ups have been credited with higher-than-average customer response rates, making them popular among advertisers. But consumers have rebelled against them, and countermeasures that block the ads from appearing have gained in popularity. Popping up in court
Gator has run afoul not only of Web surfers, who generally dislike pop-ups, but also of publishers who rely on advertising revenues. The privately held company, which says it charges advertisers fees starting at $25,000, has attracted a slew of lawsuits challenging its business practices and the legality of luring advertisers away from Web sites that must pay to produce content. The company in February settled a case brought by The Washington Post, The New York Times, Dow Jones and other media companies. Other lawsuits brought against Gator by catalogue retailer L.L. Bean, hotel chain Extended Stay America, and online loan marketplace LendingTree.com are pending. Gator says its practices are legal because consumers agree to receive the ads when they download and install its software: an e-wallet and authentication application that makes it easier for people to register with Web sites and make online purchases. Gator is included with popular ad-supported software such as Divx and NetSonic, which help the company distribute its product to a claimed 35 million current users. Edelman, who is a student fellow at Harvard law school's Berkman Center for Internet and Society -- which sponsored the report -- has authored many similar studies in the past about topics such as Google's Web filtering, false Whois data, and registration of domain names with typographical errors. Although it would be possible for someone to install the Gator client and record its behaviour, this approach is problematic. For instance, Gator delays serving ads from minutes to hours after a visitor leaves a Web site, making it difficult to trace what triggered the pop-ups. Edelman automated the process by using a packet sniffer to ask Gator for its ad lists for thousands of different sites. He found that Gator targets specific host names, such as support.microsoft.com, and sometimes targets identical ads at dozens or hundreds of Web sites. The University of Phoenix, for instance, pays for ads aimed at scores of other university sites, such as the University of California at Berkeley, Carnegie Mellon University and Stanford University. Wednesday's report shows that Gator is very specific in monitoring Web browsing. For example, it carefully watches what people type into the Google search engine, hunting for phrases like "preventing pregnancy", "high cholesterol" and "Toro lawn mower part", the study says. Edelman's research shows that even federal government Web sites are fair game. Gator users looking for information from the Centres for Disease Control and Prevention may see an ad for "thinner thighs in four weeks", and Gator watches for users visiting areas of the Food and Drug Administration's site relating to Viagra, breast implants and weight loss, the study found. Advertisers identified as Gator customers in Edelman's study, including Sun, did not immediately respond to requests for comment. How Gator works
According to Edelman, a Gator server sends a list of ads to the Gator client, based on the domain name of the site visited. In his research, the lists consisted of a series of hyperlinks to Zip files, such as http://bg.gator.com/Banners/13811.1/13811.gbd2zip. The Gator client downloads and displays only the ads that jibe with the user's prior actions, Edelman found, which might mean not showing the same ad twice in a row. Gator's ad server appears to ignore other variables sent by the client utility, including locale, ZIP code, user ID and machine ID, and frequently displays ads after users leave a targeted Web site instead of while they're still viewing it. Gator's Eagle would not discuss details, calling it a "proprietary" algorithm. "Why am I going to put my intelligence where people like Ben or my competitors may be drilling down?" he said. Eagle contends that advertisers are only permitted to target groups of sites, not individual Web sites. But on Tuesday, after being alerted to the existence of the Berkman study, Gator deleted marketing materials from its Web site that suggested otherwise. The deleted Web page, which had existed since at least February 2002, had promised: "Gator can pop up your advertising or promotional message anywhere -- even at a competitor's site." Gator said on Wednesday that the deletion was part of a new marketing campaign that had been planned for months. Even faced with the daunting threats of fierce legal battles and the dubious honour of marketing the most complained-about piece of "spyware," Gator says it's unbowed. "Companies like Google, Overture and Gator are shining examples of success," Eagle said. "Our consumers save billions of dollars per year on software that they'd have to spend $20 to $30 on if they weren't ad supported. Yes, I am sorry that many Web sites don't have a valid business model, but don't blame Gator on their failure. They crashed and burned long before we came on the scene."
For everything Internet-related, from the latest legal and policy-related news, to domain name updates, see ZDNet UK's Internet News Section. Let the editors know what you think in the Mailroom.

Talkback

Going after gator is fine, but there are litterally THOUSANDS of other smaller companies doing this, on a much more destructive scale, Gator should be dealth with, but these other companies need to be shutdown!

via Facebook 20 April, 2004 00:54
Reply

I was very impressed with your article on "gator" Spyware, I just spent the day removing it from my system.
I decided to look online to see what "Gator" was when I came across your article.
I personaly feel that "Gator is an invasion of my privacy!" I didn't ask for it, nor do I want my web sites shown to other people just to hound me, similer to Telemarketers do with a phone.
I will check this site more often, but I will be on guard every time I visit any website.
Kate Wray

via Facebook 15 June, 2004 04:39
Reply

Post your comment

In order to post a comment you need to be registered and logged in.

You can also log in with Facebook. Log in or create your ZDNet UK account below

  • Login

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy. Questions about membership? Find the answers in the Community FAQ

Get ZDNet UK's daily newsletter

Enter your email address to sign up

ZDNet UK Live

BrownieBoy

@Jack, > Works really well for thieves.... Nice attempt to deflect the argument by tossing in a point that's totally irrelevant, even it were...

1 hour ago by BrownieBoy on AMD Ultrathins to challenge Intel Ultrabooks
bootlegger

Make that 13 people now - I got refused today at Manchester airport. I thought I was up to date on this legislation - I knew of the EU ruling from...

4 hours ago by bootlegger on UK airport body scans will not be opt out
tinycg

Don't forget to check out apps like GoodReader or SlideShark either, they're indispensible for people on the go in presentation situations. Best...

7 hours ago by tinycg on Four top iPad apps for people on the move
TerryRK

Well it seems there is something a number of us agree on. Why is the Ubuntu Unity launcher so ugly? I thought perhaps it was something to do with...

12 hours ago by TerryRK on A tale of two distros: Ubuntu and Linux Mint
Freebies202

Duplicate comments are not made intentionally. Its very good to know that now you are keeping check on this problem because sometimes a commenter...

21 hours ago by Freebies202 on Microsoft fixes blog comments, speeds up blogs with open source
kevinmchapman

"the very significant number of users" and "many (most) of us" - you have no evidence for these statements. It is a fact that most users are saying...

1 day ago by kevinmchapman on A tale of two distros: Ubuntu and Linux Mint
Marg Menzies Harrison

Another grammar faux pas is the improper use of "you". When sitting down down in a restaurant, for example, I get cringe when the waitress...

1 day ago by Marg Menzies Harrison via Facebook on 10 flagrant grammar mistakes that make you look stupid
zdnetukuser

And NOW, folks, for Canonical's next trick... Kubuntu is late. Here's a pencil. Draw your own conclusions. cf.:...

1 day ago by zdnetukuser on Linux Minterface
Moley

@kevinmchapman. The discussion here reflects the very significant number of users who really do like the traditional menu system and who wish to...

1 day ago by Moley on A tale of two distros: Ubuntu and Linux Mint
kevinmchapman

Er, no... It is an efficient means of finding the application/file/setting you need in one place. The icons are a simply a fallback for when you...

1 day ago by kevinmchapman on A tale of two distros: Ubuntu and Linux Mint
TerryRK

Isn't the provision of a text based search an admission by the developers that the mass of icons approach does not work? I don't need to use a...

1 day ago by TerryRK on A tale of two distros: Ubuntu and Linux Mint
kevinmchapman

"Unity and GNOME 3 both abandon the old text-based cascading menus in favour of a graphical icon-driven system." Point truly missed. Both use a...

2 days ago by kevinmchapman on A tale of two distros: Ubuntu and Linux Mint
TerryRK

whs001 - Thank you, I'm glad you liked the article. I absolutely agree with you on your first point. I should perhaps have made it clearer that...

2 days ago by TerryRK on A tale of two distros: Ubuntu and Linux Mint
Dennis Nilsson

If we allow corporate interest to dictate the way our government circumvents due process against foreign entities then we should accept the same...

2 days ago by Dennis Nilsson via Facebook on ACTA stumbles in Germany
GHar123

I totally dislike pirating of works, I fear that artists will be deterred from creating works if they think that they are going to get ripped off....

2 days ago by GHar123 on ACTA stumbles in Germany
JCB33

How dare film makers, artists or anybody that invests in creativity stop us pirating their works for free. I want to be able to walk into my local...

2 days ago by JCB33 on ACTA stumbles in Germany
Moley

@GrueMaster. I prefer horses for courses rather than one size fits all. I, and I suspect most other computer users, do not really wish to have...

2 days ago by Moley on A tale of two distros: Ubuntu and Linux Mint
greycynic

The product that scares me every time I have to use it is the Office 2007 version of Excel. The first bug that I found was applying the median...

2 days ago by greycynic on Ten flawed products that derail productivity
GrueMaster

Nice review and very informative. One thing I'd like to add (in reply to whs001's 1st question), the main reason to have the same interface from...

2 days ago by GrueMaster on A tale of two distros: Ubuntu and Linux Mint
Frederick Wrigley

I'be been using Mint 12 since the RC came out, and I am far more happy with the Cinnamon, the Mate, and, yes (with extensions), theGnome 3...

2 days ago by Frederick Wrigley via Facebook on A tale of two distros: Ubuntu and Linux Mint