Community
    • Login

    Fighting Malicious Ads on Download Pages

    Scheduled Pinned Locked Moved Security
    44 Posts 15 Posters 33.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • donhoD
      donho @Mark Olson
      last edited by donho

      @Mark-Olson
      Thank you.
      The 6 URLs have been blocked on their root level.

      1 Reply Last reply Reply Quote 1
      • ?
        A Former User
        last edited by

        Install uBlock Origin as a browser extension.

        PeterJonesP 1 Reply Last reply Reply Quote 0
        • PeterJonesP
          PeterJones @A Former User
          last edited by

          @Fast said in Fighting Malicious Ads on Download Pages:

          Install uBlock Origin as a browser extension.

          @Mark-Olson had already suggested uBlock Origin, and @Lycan-Thrope had already suggested AdBlock Plus.

          And that suggestion won’t help anyone who doesn’t read this Topic before visiting Notepad++‘s official Downloads page: pointing out the offending advertisers’ URLs to Don is the only way we have right now to protect random users who are downloading the application (we cannot make everyone who wants to install Notepad++ first go add adblock to their browser).

          Lycan ThropeL donhoD 2 Replies Last reply Reply Quote 3
          • Lycan ThropeL
            Lycan Thrope @PeterJones
            last edited by

            @PeterJones ,
            Personally, I can’t see why everyone does NOT already having it installed in their browsers. Ads are the most aggravating thing on the Internet now. They keep pushing crap into our faces when we’re the ones paying for the connections, offering the knowledge, applications and help.

            It’s like when cable started airing ads. I couldn’t wait to get a Roku so I could cut the cable (cable tv that is, not the internet feed). If there’s going to be ads, it’s going to be because I get free shows, I’ll not pay to be shown advertising.

            PeterJonesP 1 Reply Last reply Reply Quote 0
            • PeterJonesP
              PeterJones @Lycan Thrope
              last edited by

              @Lycan-Thrope ,

              Whether or not ad blockers should be used is an argument with more than one side, and is not something that needs to be argued here. The fact is, since not everyone is using them, it’s not unreasonable to be glad that Don does put effort into trying to stop bad ads from being served on his end.

              I didn’t object to ad blockers being recommended. I objected to the pointless “me too” that ignored the fact that it was a “me too”.

              1 Reply Last reply Reply Quote 2
              • donhoD
                donho @PeterJones
                last edited by

                @PeterJones said in Fighting Malicious Ads on Download Pages:

                And that suggestion won’t help anyone who doesn’t read this Topic before visiting Notepad++‘s official Downloads page: pointing out the offending advertisers’ URLs to Don is the only way we have right now to protect random users who are downloading the application (we cannot make everyone who wants to install Notepad++ first go add adblock to their browser).

                Once again, you’ve made a great point! A link to this post for reporting malicious ads has been placed below the download image (so far only for v8.8.1):

                592ef689-1ca9-4478-9713-dc31e62d7a67-image.png

                Let’s see if all the efforts are efficient for taking down the malicious ads.

                CoisesC 2 Replies Last reply Reply Quote 1
                • CoisesC
                  Coises @donho
                  last edited by donho

                  @donho said in Fighting Malicious Ads on Download Pages:

                  A link to this post for reporting malicious ads has been placed below the download image (so far only for v8.8.1):

                  Great idea! And, immediately on checking it out:

                  Malicious link removed

                  (too long… continued below)

                  1 Reply Last reply Reply Quote 0
                  • CoisesC
                    Coises @donho
                    last edited by donho

                    Malicious links removed

                    looks like:
                    7dc0a849-c71c-4f36-be16-8cb471baaf64-image.png

                    donhoD 1 Reply Last reply Reply Quote 0
                    • donhoD
                      donho @Coises
                      last edited by donho

                      @Coises
                      Thank you!
                      These 2 websites (8 links) have been blocked.

                      1 Reply Last reply Reply Quote 1
                      • A
                        alexkoster
                        last edited by donho

                        Thanks Don for providing a great piece of software, service to our community and for reminding us to open our hearts to those who are suffering (Hong Kong people, Taiwan independence, the Uyghur people and the Ukranian people to name a few)!

                        Here are the ads I am seeing when browsing using Mozilla Firefox from the USA. Both the top horizontal banner ad and the square ads on the right side appear malicious.

                        Screenshot 2025-06-07 at 22-16-55 Download Notepad v8.8.1 We are with Ukraine (stable auto-update triggered) Notepad.png

                        Top horizontal banner link:

                        Malicious link removed

                        Screenshot 2025-06-07 at 22-23-44 Metric Unit Converter & Search.png

                        Side square links (each seem to link to the same URL):

                        Malicious link removed

                        Screenshot 2025-06-07 at 22-23-48 Site Search.png

                        donhoD 1 Reply Last reply Reply Quote 0
                        • PeterJonesP
                          PeterJones
                          last edited by

                          @donho,

                          I don’t know how much you can customize your stylesheets, or add <style> tags to individual pages. But if I use my browser’s “Inspect” tool, and add the following <style> to either the <head> or near the top of the <body>:

                          <style>
                              ins { 
                                  background: linear-gradient(to bottom right, white, white 48%, red 48%, red 52%, white 52%, white); 
                                  border: 3px solid red;
                              }
                          </style>
                          

                          Then I can make the page render like this:
                          e66eb613-8b60-4486-a325-47d37e620a94-image.png

                          <style>
                              ins { 
                          
                                    /* Set a transparent border to allow the background gradient to show through */
                            border: 4px solid transparent; 
                            /* Apply your gradient as the background */
                            background: linear-gradient(white, #f77) padding-box, 
                                        linear-gradient(to right, #f00, #3020ff) border-box; /* The gradient for the border */
                            /* Ensure the background covers the border area */
                            background-origin: border-box; 
                            /* Clip the background to the padding box and border box to create the effect */
                            background-clip: content-box, border-box; 
                            /* Apply border-radius for rounded corners */
                            border-radius: 30px; 
                              }
                              </style>
                          

                          5c1bb69e-b311-4c06-a689-69f59d737a7e-image.png

                          with an ins::before, you could even add an “AD:” prefix to any advertising content:

                          <style>
                              ins::before {
                                  content: "AD:";
                                  /* You can add other styling properties here */
                                  font-weight: bold;
                              }
                              ins { 
                          
                                    /* Set a transparent border to allow the background gradient to show through */
                            border: 4px solid transparent; 
                            /* Apply your gradient as the background */
                            background: linear-gradient(white, #f77) padding-box, 
                                        linear-gradient(to right, #f00, #3020ff) border-box; /* The gradient for the border */
                            /* Ensure the background covers the border area */
                            background-origin: border-box; 
                            /* Clip the background to the padding box and border box to create the effect */
                            background-clip: content-box, border-box; 
                            /* Apply border-radius for rounded corners */
                            border-radius: 30px; 
                              }
                              </style>
                          

                          e99e1142-27f4-466f-9dea-ec3d42f467da-image.png

                          I don’t know if doing any of these would violate the terms of service for your hosting… But if not, and if you can insert your own style to change borders and background of the ins tag using something similar to one of the examples I’ve done (even if not exactly what I’ve done), then you could at least make it more obvious to users that those are ad links rather than real download links.

                          donhoD 2 Replies Last reply Reply Quote 2
                          • donhoD
                            donho @alexkoster
                            last edited by donho

                            @alexkoster said in Fighting Malicious Ads on Download Pages:

                            scamSite://ff.sitesearchweb.com

                            shithttps://ff.sitesearchweb.com was already blocked. So I think you won’t see it anymore. If you still see them, it could be a redirection.
                            In this case, could you provide me the link via right click context menu: “Copy link” command?

                            1 Reply Last reply Reply Quote 0
                            • CoisesC
                              Coises
                              last edited by donho

                              Presumably different specifics, but looks about the same:

                              Malicious links removed

                              donhoD 1 Reply Last reply Reply Quote 0
                              • donhoD
                                donho @Coises
                                last edited by donho

                                @Coises

                                Above 4 links are 2 websites (add sh*t before to not have the clickable links): “shithttps://ff.mysafe-search.net/” & “shithttps://ff.sitesearchweb.com/” - Both were already blocked - do you still see them?

                                Edit: OK, I see they’re the same websites - it means Adsense block website system not working. I will contact Google Adsense for this issue.

                                1 Reply Last reply Reply Quote 0
                                • donhoD
                                  donho @PeterJones
                                  last edited by donho

                                  @PeterJones

                                  I didn’t try your method, because not only does it take the focus from the download image, but (I suppose) it will be also applied to the non-malicious ads.
                                  However, it gave me an idea: Why don’t we label all the ads?

                                  So here’s the result:
                                  4a8f7d75-1594-4603-a66f-dd4df4a42a49-image.png

                                  1 Reply Last reply Reply Quote 2
                                  • donhoD
                                    donho @PeterJones
                                    last edited by

                                    @PeterJones
                                    Finally I have tried your method - way much better: the “Advertising” label is much closer to ads.

                                    It’s been applied to v8.8.1:
                                    https://notepad-plus-plus.org/downloads/v8.8.1/

                                    Let’s wait & see…

                                    Mark OlsonM 1 Reply Last reply Reply Quote 4
                                    • Mark OlsonM
                                      Mark Olson @donho
                                      last edited by

                                      @donho
                                      v8.8.1 looks good to me!

                                      b4ca5135-c6fa-4b98-9223-374ae6b5204a-image.png

                                      donhoD 1 Reply Last reply Reply Quote 3
                                      • donhoD
                                        donho @Mark Olson
                                        last edited by

                                        @Mark-Olson

                                        v8.8.1 looks good to me!

                                        But still, you can pass me the malicious ad’s link.

                                        1 Reply Last reply Reply Quote 1
                                        • K
                                          krystian3w
                                          last edited by donho

                                          In Poland, one ad loaded with the slogan “download” the driver update programme (Eset blocks opening as PUA).

                                          The other two ads look like clickbait/are of poor quality.

                                          Screenshot 2025-07-01.png

                                          • Malicious links removed

                                          As I don’t want some kind of DDoS attack, I’ve cut the doubleclick.net parameters.

                                          donhoD 1 Reply Last reply Reply Quote 0
                                          • donhoD
                                            donho @krystian3w
                                            last edited by

                                            @krystian3w
                                            I cannot reach to destination domain (to be banned) without full link.
                                            Could you send them to me via my email “don.h@free.fr” ?

                                            1 Reply Last reply Reply Quote 2
                                            • First post
                                              Last post
                                            The Community of users of the Notepad++ text editor.
                                            Powered by NodeBB | Contributors