Fighting Malicious Ads on Download Pages
- 
 @Coises 
 Thank you!
 These 2 websites (8 links) have been blocked.
- 
 Thanks Don for providing a great piece of software, service to our community and for reminding us to open our hearts to those who are suffering (Hong Kong people, Taiwan independence, the Uyghur people and the Ukranian people to name a few)! Here are the ads I am seeing when browsing using Mozilla Firefox from the USA. Both the top horizontal banner ad and the square ads on the right side appear malicious.  Top horizontal banner link: Malicious link removed Side square links (each seem to link to the same URL): Malicious link removed 
- 
 I don’t know how much you can customize your stylesheets, or add <style>tags to individual pages. But if I use my browser’s “Inspect” tool, and add the following<style>to either the<head>or near the top of the<body>:<style> ins { background: linear-gradient(to bottom right, white, white 48%, red 48%, red 52%, white 52%, white); border: 3px solid red; } </style>Then I can make the page render like this: 
  <style> ins { /* Set a transparent border to allow the background gradient to show through */ border: 4px solid transparent; /* Apply your gradient as the background */ background: linear-gradient(white, #f77) padding-box, linear-gradient(to right, #f00, #3020ff) border-box; /* The gradient for the border */ /* Ensure the background covers the border area */ background-origin: border-box; /* Clip the background to the padding box and border box to create the effect */ background-clip: content-box, border-box; /* Apply border-radius for rounded corners */ border-radius: 30px; } </style> with an ins::before, you could even add an “AD:” prefix to any advertising content:<style> ins::before { content: "AD:"; /* You can add other styling properties here */ font-weight: bold; } ins { /* Set a transparent border to allow the background gradient to show through */ border: 4px solid transparent; /* Apply your gradient as the background */ background: linear-gradient(white, #f77) padding-box, linear-gradient(to right, #f00, #3020ff) border-box; /* The gradient for the border */ /* Ensure the background covers the border area */ background-origin: border-box; /* Clip the background to the padding box and border box to create the effect */ background-clip: content-box, border-box; /* Apply border-radius for rounded corners */ border-radius: 30px; } </style> I don’t know if doing any of these would violate the terms of service for your hosting… But if not, and if you can insert your own style to change borders and background of the instag using something similar to one of the examples I’ve done (even if not exactly what I’ve done), then you could at least make it more obvious to users that those are ad links rather than real download links.
- 
 @alexkoster said in Fighting Malicious Ads on Download Pages: scamSite://ff.sitesearchweb.com shithttps://ff.sitesearchweb.com was already blocked. So I think you won’t see it anymore. If you still see them, it could be a redirection. 
 In this case, could you provide me the link via right click context menu: “Copy link” command?
- 
 Presumably different specifics, but looks about the same: Malicious links removed
- 
 Above 4 links are 2 websites (add sh*t before to not have the clickable links): “shithttps://ff.mysafe-search.net/” & “shithttps://ff.sitesearchweb.com/” - Both were already blocked - do you still see them? Edit: OK, I see they’re the same websites - it means Adsense block website system not working. I will contact Google Adsense for this issue. 
- 
 I didn’t try your method, because not only does it take the focus from the download image, but (I suppose) it will be also applied to the non-malicious ads. 
 However, it gave me an idea: Why don’t we label all the ads?So here’s the result: 
  
- 
 @PeterJones 
 Finally I have tried your method - way much better: the “Advertising” label is much closer to ads.It’s been applied to v8.8.1: 
 https://notepad-plus-plus.org/downloads/v8.8.1/Let’s wait & see… 
- 
 @donho 
 v8.8.1 looks good to me! 
- 
 
- 
 In Poland, one ad loaded with the slogan “download” the driver update programme (Eset blocks opening as PUA). The other two ads look like clickbait/are of poor quality. - Malicious links removed
 As I don’t want some kind of DDoS attack, I’ve cut the doubleclick.netparameters.
- 
 @krystian3w 
 I cannot reach to destination domain (to be banned) without full link.
 Could you send them to me via my email “don.h@free.fr” ?
- 
 I have yet to visit a Notepad++ download page (with ad blocker off) that doesn’t show malicious ads. I don’t think the attempt to block them is working. Apparently there is an endless supply of them. Malicious link removedBy the way, since the introduction of the “Advertising” label, what I see is this:  (page down)  and the real download link after the second page down. (If I make my browser window wide enough, the normal configuration returns, but this is how I normally have it, and it’s comfortable on most web sites.) 
- 
 @Coises said in Fighting Malicious Ads on Download Pages: I have yet to visit a Notepad++ download page (with ad blocker off) that doesn’t show malicious ads. I don’t think the attempt to block them is working. Apparently there is an endless supply of them. Sorry I don’t have the time yet to contact adsense for this issue. The following ads domaine has been blocked: 
 https://ff.sitesearchweb.com/I don’t think the block list does not work. 
 Additionally I just block the 2 following:
 https://ff.sitesearchweb.com/offer
 https://www.sitesearchweb.com/Could you try again by removing all cache to see if it work? and the real download link after the second page down. (If I make my browser window wide enough, the normal configuration returns, but this is how I normally have it, and it’s comfortable on most web sites.) It’s due to the theme used is conformed to responsive criteria - for that I can do nothing. 
- 
 @donho said in Fighting Malicious Ads on Download Pages: Could you try again by removing all cache to see if it work? Sure. Now it looks like this (scale shrunk to fit):  Malicious link removedI don’t think the block list does not work. I have no reason to think that it doesn’t block what you enter. What I meant was that it’s not accomplishing much, since it seems like no matter how many bad ads you block, there are always more to take their place. It seems like this is making a lot of work for you, but the whole nature of the advertising system is just undermining your efforts. (No complaint or criticism towards you, just disgust for the whole ad-supported nightmare that is the modern web.) It’s due to the theme used is conformed to responsive criteria - for that I can do nothing. Understood. I probably use a bit narrower browser window than most people. 
- 
 Sure. Now it looks like this (scale shrunk to fit): Cool ! it seems the blocking is working - thanks to block https://ff.sitesearchweb.com/offer.
 It’s tricky. Typinghttps://ff.sitesearchweb.com/will redirect tohttps://www.sitesearchweb.com/so I realizehttps://ff.sitesearchweb.com/is not a real domain. And the main part of the link you provide ishttps://ff.sitesearchweb.com/offer(after stripping the parameters) so blocking it make work.I will remove https://ff.sitesearchweb.com/from the list because 349 blocages restants (limite de 500) - please let me know if these ads returns back, then I’ll add it again into the list.The 3 domains that you provided has been blocked: scamSite: get.wavebrowserpro.com scamSite: productivityboost.net scamSite: photoeditor.netPlease let me know if you see others. 
- 
 I have no reason to think that it doesn’t block what you enter. What I meant was that it’s not accomplishing much, since it seems like no matter how many bad ads you block, there are always more to take their place. It seems like this is making a lot of work for you, but the whole nature of the advertising system is just undermining your efforts. (No complaint or criticism towards you, just disgust for the whole ad-supported nightmare that is the modern web.) I do what I can do. Though a lot of them are missleading, not all of ad destinations are “malicious” - here’s an example:  The link of “Download the White Paper” is: https://more.suse.com/Security_controls_for_the_OWASP_Kubernetes_Top_10.html?utm_source=google&utm_medium=display&utm_campaign=5_0004280_OA_Google_NeuVector_OWASP_Whitepaper_mp_2024737_en&utm_term=NeuVector_Prime&qgad=749273370457&gad_source=5&gad_campaignid=22495509070&gclid=EAIaIQobChMIq7mXqOCgjgMV3Yd_BB0V5DQqEAEYASAAEgJecfD_BwEwhich leads to https://more.suse.com/- a section ofsuse.comwebsite.
 It’s not the first time I’ve seen this - I have also blocked Microsoft & Google chrome.I don’t think these prestigious companies are aware that they are running the misleading ads. The real issue, I suspect, is that the marketing departments within these companies work with ad agences that view the traffic as an efficient way to boost superficial performance metrics and revenues. OTOH, back to 2013, in Oracle Java download from their website, it contained even the crapeware: 
 https://www.facebook.com/Notepad.plus.plus/photos/pb.100057220819766.-2207520000/569194946466175/?type=3
 And Adobe did the same thing:
 https://www.facebook.com/Notepad.plus.plus/photos/pb.100057220819766.-2207520000/948957855156547/?type=3The both cases above, it’s really too huge that I don’t see how they can be innoncent. 
- 
 - Malicious link removed
- Malicious link removed
 
- 
 @Fitsneezy 
 Bothconvertfile.ai&gamesuniverse.coare blocked.
 Thank you.
- 
 Still showing misleading download links: Malicious link removedvia Malicious link removed
