Microsoft Says It Has Resolved an Issue With Bing Which Was Causing It To Push Malware When Users Searched for Chrome (howtogeek.com)
Chris Hoffman, writing for How To Geek: You launch Edge on your new PC, search for "download Chrome," and click the first result headed to "google.com" on Bing. You're now on a phishing website pushing malware, disguised to look like the Chrome download page. That's the story Gabriel Landau tells on Twitter. We were able to reproduce this problem, although it doesn't happen every time. Usually, you'll end up seeing an ad for "https://www.google.com". That goes to the real Chrome download page, and everything is fine. But, sometimes, you'll see an ad for "google.com". Guess what -- that doesn't actually go to Google.com. This ad was created by a scammer and goes elsewhere. Microsoft is apparently not verifying the web address the advertisement actually goes to. Bing is letting this advertisement to lie to people. Microsoft says it has resolved the issue.
Now if they would FIRST fix the issue where it gives you chrome while searching for malware.
Once upon a time they would have called that a 'feature'
Reading the title, my first thought was "fix the issue.. sure!". But it's actually not unlikely that Bing, being much less involved in Chrome than Google..., might render search results not in a way the user expects. Morale of the story: don't always click the first result - or at least check it!
Slashdot, fix the reply notifications... You won't get away with it...
As the best web browser to use to download a better web browser.
good
Microsoft Says It Has Resolved an Issue With Bing Which Was Causing It To Push Malware When Users Searched for Chrome (emphasis added)
Glad to see MS finally admitting the true nature of Edge.
You know, after all, that the first step on the road to recovery is admitting you have a problem.
What is a Bing?
Sure Microsoft is in competition with Google for both its Search Engine and its browser. But having Bing go to a Malware site, which infects your Windows PC. Makes Windows, Edge, and Bing all look bad, as well as Microsoft for trying to be underhanded.
With all the attention to prevent Google Chrome from taking more Edge share away I would expect Bings relationship with searching for a Google Product should be tightly controlled and managed, and mostly in a way to insure fairness and get good sets of data. I would expect the #1 result would be from Microsoft Telling you why Edge is So much better then chrome. But as #2 it should be googles download.
If something is so important that you feel the need to post it on the internet... It probably isn't that important.
(facepalm)
File under 'M' for 'Manic ranting'
With all the crap it sends back to Google, Chrome almost qualifies as malware.
---
DRM is like antifreeze, to the MPAA/RIAA it's sweet, to the consumers it's poison.
It now directs you to the google chrome download page
Trump. Will. Kill. Us. All.
And he's done it every week for the past two years!
(yeah, this is probably over the head of any TDS-addled "progressive"...)
I find it amazing how much something like that minor typo derails your natural reading flow. Your brain just stops with a "wut?" and you have to skip back and re-do
Hey, it just sends your browsing history to totalitarian governments.
Even Microsoft at their worst "embrace, extend, extinguish" Ballmer-in-a-gorilla-suit-with-an-American-Tourister worst never sold out to actually aid a totalitarian government with the blood of literally millions on their hands:
According to government statistics, there were 15 million excess deaths in this period. Unofficial estimates vary, but scholars have estimated the number of famine victims to be between 20 and 43 million.
Go for that evil, Google.
I never thought it would be possible for a company to make me cheer for Microsoft. But damn if Google didn't become evil enough.
#badtransitiveverbs
(facepalm)
...or maybe it's just bad punctuation: "Bing is letting this advertisement lie, people!
... is downloading Chrome. Oh, wait...
Makes sense.
Most ACs are not even worth the keystrokes to insult them. Be generically insulted by this and ignored otherwise.
and the MS voting system just move DEM votes to GOP votes as well.
Let's add up Korea, Vietnam, Iraq (twice). Oops we're already at six millions dead at the hand of the US government. Things get more interesting if we're allowed to add every little thing like the Iran-Iraq war or high estimates for any crap that went on.
I wonder what actually allows the ad to claim to be www.google.com? Does Google have an open redirect URL somewhere? Is not specifying the final host a legitimate usage for an ad?
Visiting slashdot.org on my phone resulted in Chrome blocking 7 popups. One got through when I clicked on the story. Companies simply don't police their ads. It is shameful.
Your software is just fine - well written, functional... I'm going to continue using the Host File Engine by mmell February 17, 2017
Your premise that hostfiles are a good way to deal with advertising and malvertising is quite valid - by JazzLad April 20, 2016
his hosts program is actually pretty good by xenotransplant August 10 2015
his hosts tool is actually useful for those cases in which one does indeed want to locally block stuff outright while consuming minimum system resources by alexgieg September 25 2015
I like your host file system by Karmashock September 09 2015
that APK guy, I use his host file by rogoshen1 Tuesday March 03, 2015
I personally use a HOSTS file blocker produced from a genius called APK by 110010001000 October 27 2017
* For the Win32/64 model...
APK
P.S.=> Linux model's faster/more efficient/better MERGE feature too - More coming... apk
It's 2018. This crap has been going on for almost 8 years now. And it's not just Bing. Just about every search engine with ads has or has had this problem.
If it's a popular app, and your search engine has ads. Guaranteed there's a Virus Inc. buying adwords for it.
1) If someone is buying Adwords for any app, and it's NOT the company or group that maintains the software, ban it.
2) If you can't verify #1, don't allow it until you can.
3) It if sounds or feels shady in any way, don't allow it.
4) If it's going to a aggregate site not directly affiliated to the company, ban it.
5) If ANYONE auto redirects from the Adword link in any way. Legit or not. even after a minute. ban it.
6) Every dropper malware I see only drops a payload once. If you see one drop. Ban it. In fact ban every ad with that domain for at least a month or more. Preferably for life.
7) Since you're monitoring every click anyway, browse the link when it's clicked every time and make sure they are getting a clean page. If at any time, you're being redirected because it sees the traffic coming from you or the script is actually stupid enough to drop malware to your IP, ban it.
8) Better yet, enforce and serve the complete ad site yourself and pull it cloudflare style. Check any links or files clicked or downloaded from the site. Guaranteed your IP's / crawlers are blacklisted so that a malware payload won't drop if you pull it. Best case is that it never drops a payload cause you're pulling it and sending it to the user. Worse case is it drops malware on your pull request, at that point, show the user the "Site has a problem" page and ban it.
In Soviet Russia, Trojan exploits YOU!
One one hand it’s a paying advertiser, on the other hand it it doesn’t install Chrome.
and don't tell me you prefer Google's genuine spyware, that just makes you look like an idiot.
Let's add up Korea, Vietnam, Iraq (twice). Oops we're already at six millions dead at the hand of the US government. Things get more interesting if we're allowed to add every little thing like the Iran-Iraq war or high estimates for any crap that went on.
Your effort at deflection from Google actually aiding a totalitarian government AT BEING TOTALITARIAN is lame.
How lame?
About as lame as a Thalidomide dachshund.
You pathetic piece of shit.
c6gunner's name on this post as submitter yet signed "APK" https://linux.slashdot.org/com... & he ran from a fair challenge I put to him https://linux.slashdot.org/com... after insulting me.
* QUESTION: Why are you harassing me & IMPERSONATING me TWISTING /.ers words when I'm on topic, YOU'RE NOT & this helps vs. this threat?
(See subject: GROW UP!)
APK
P.S.=> I'd like an answer to that QUESTION above... apk
Microsoft wants to kill Chrome just as much as Netscape, I woudnkt be surprised if some of Bing’s employees were in on the scam, in order to bypass security checks for ads.
So this means that scammers can just pay Microsoft to put their scam and viruses in their search results? So anybody using Bing can just stop using it right now and forever because this is just unacceptable.
Competition is such a strong word to describe this "relationship". Perhaps, bing flounders uselessly before Google search? I mean bing isn't even worthy of being typed with a capitol letter, the very word is beneath other proper nouns. If bing where a hard drive, you would have to put the jumper on the drive to configure it in slav......., sorry in post 2018 vanacular, secondary mode! Dodged a bullet their, was gunna have Duckduckgo pissed at me. Tho Altavista wouldn't have minded.
And Google bought Google Earth from the CIA. I'm sure there is nothing wrong. Also, see Total Information Awareness and Full Spectrum Dominance.
0.0.0.0 googleonline2018.com
(That'll STOP the redirect to bogus Chrome - no "1st" really: Lookup EFast (bogus chrome doppleganger malware - the PRICE of opening your code up to others was this which IS why I don't do mine that way (after threats from /. trolls they'd do that to my hosts program)).
* SOURCE: https://www.howtogeek.com/fyi/...
APK
P.S.=> "It's working: Neville... it's working!" See subject & results from the past month https://it.slashdot.org/commen... https://it.slashdot.org/commen... & https://it.slashdot.org/commen... + https://it.slashdot.org/commen... + https://it.slashdot.org/commen... https://it.slashdot.org/commen... & https://search.slashdot.org/co... that's only recently while I've been on Linux (few months now only) & 100's of times vs. MANY other botnets/malwares etc. in the past circa 2006-early 2018 while I was on Windows: CONCRETE VISIBLE UNDENIABLE REALITY (see those links as proof & only PARTIAL (what /. reported - there were FAR more in that timeframe))... apk
See subject: Via APK Hosts File Engine 2.0++ 64-bit for Linux/BSD h t t p : / / a p k . i t - m a t e . c o . u k / A P K H o s t s F i l e E n g i n e F o r L i n u x . z i p
Yields more security/speed/reliability/anonymity vs. any 1 solution (99% of threats use hostnames vs. IP address most firewalls use) more efficiently/FASTER + NATIVELY 4 less!
Vs. "Bolt on 'MoAr' illogic-logic" slowing you hosts speed u up 2 ways: Adblocks + Hardcode fav. sites u spend most time @ vs. competition loaded w/ security bugs (DNS/AntiVir) + overheads slowing u (messagepass 'souled-out' to advertisers easily detected & blocked addons + firewall filtering drivers) & their complexity leads to exploitation!
* ONLY 1 of its kind in GUI 4 Linux/BSD.
(Better vs. Windows model in speed/efficiency/merge)
APK
P.S.=> Protects vs. script trackers/ads/DNS request tracking + redirect poisoned or downed DNS/botnets/malware downloads/malcript/email malicious payloads... apk
Is the scammer who setup the fake website still alive ? If yes, then no, Microsoft has not resolved the issue.
The just facilitated a link to the REAL virus.
Like 5 years ago, using Internet Explorer, I searched for Power Shell using Bing and clicked the first link. That took me to a malware site. Since then I almost never use Bing (How was possible they were unable to sanitize even that?)
See subject: It's still a NEW threat & dangerous until it's blocked (hosts is the way) OR sinkholed by ICANN etc. (usually @ DNS level).
* So, that "all said & aside"? The job's NOT DONE YET until you block it from being a threat + making yourself UNABLE TO ACCESS that NOW known bad site!
APK
P.S.=> Lastly - sorry to disappoint you but I am NOT a homosexual either... apk
Had a user just do it.
Maybe now Google can fix its problem with ad results for fake tech support scams when you type in [literally anything] + "support"
Attacking the free press and encouraging and justifying violence is hilarious!
If you are typing an informal quick message to a friend, go ahead and make all the mistakes you want, but if you are blogging or creating headlines intended to be seen by thousands of people, take a little time and make it correct, intelligible, and readable. Some people do actually expect to see proper structure and spelling as a sign that the writer has some basic education and is not a slobbering idiot.
Neither Microsoft nor How-To Geek claimed that the underlying issue was resolved. Microsoft only said that they removed the offending ad.
What is your source for this headline?
SPH
"You realize Dr. Angelo my intelligence has surpassed yours. I can't allow your fear of what you don't understand to get in the way of this work" https://search.slashdot.org/co...
* FROM the film "The Lawnmower Man" (JOB).
APK
P.S.=> "It's NOT new - I realize nothing that I've been doing is new: I haven't been tapping into new areas of the brain. I've just been awakening the MOST ANCIENT. This technology is simply a route to powers that conjurers & alchemists used CENTURIES ago. Human race lost that knowledge & now I'm reclaiming it thru https://search.slashdot.org/co... ... apk
Dear UNIDENTIFIABLE anonymous STALKER of me: Get on topic & GROW UP - my facts on hosts are inviolate vs. your bs apparently!
* FACT is like that - get used to it...
APK
P.S.=> Fact's ALL I NEED to dispose of "your kind" (lowest of the LOW online)... apk