PH page hijacked and redirecting to malware

PH page hijacked and redirecting to malware

Author
Discussion

Funk

Original Poster:

26,277 posts

209 months

Thursday 24th December 2015
quotequote all
So in a somewhat ironic situation, I browsed to the 'Do you use adblock on PH?' thread on the only device I don't use adblocking on only to be promptly redirected to a malicious site:



This then redirected me to here:



and finally it hijacked the vibrate function and would not allow me to exit. The only way out was to crash the phone to restart. You can see the sequence of PH pages I browsed here:



yeah.youmadethedeal.com, play.leadzu.com and specs.appmobi.com are nothing I've browsed to myself. Thinking back it's not the first time I've had this happen when browsing PH but I brushed it off and it wasn't as malicious as this event.

This is on Android 5.0.1 on an unrooted HTC One M8. I'm running Lookout Premium along with Belarc Security Advisor. There are no apps on the phone which were not downloaded from the Play Store.

This 100% came as a browser hijack from PH within seconds of loading the page. I'd suggest you guys sort this st out pronto, it makes you look like amateur hour and is NOT the sort of experience I expect from a site the size of PH.

I shouldn't have to root my device and install Adblock to avoid this kind of crap.

Edited by Funk on Friday 25th December 00:14

Funk

Original Poster:

26,277 posts

209 months

Monday 28th December 2015
quotequote all
Glad to see it's not just me...

No doubt the PH response will be to point the finger at the '...company that supplies the ads..' and it '...being outside the remit of what PH allow...' and that '...they'll ensure it doesn't happen again.'

PH - if you can't trust the company you currently employ to handle your ads, you need to SACK them and find a way of monetising the site which doesn't redirect your users to sodding malware.

Funk

Original Poster:

26,277 posts

209 months

Tuesday 5th January 2016
quotequote all

Funk

Original Poster:

26,277 posts

209 months

Tuesday 5th January 2016
quotequote all
pc.iow said:
So, err, what's that 'undress me' game like then?
I have no idea, didn't click anything and binned the page off after getting a screenshot.

Funk

Original Poster:

26,277 posts

209 months

Sunday 10th January 2016
quotequote all
So, any news a week down the line?

Funk

Original Poster:

26,277 posts

209 months

Wednesday 20th January 2016
quotequote all
It's going to st mate. They'll pump the golden goose harder for eggs until it croaks.

To be frank, it's probably not the fault of the devs - there are some management wkers somewhere that need hauling over the coals for presiding over such a clusterfk.

I've just replaced my One M8 with a Nexus 6P and debating whether to root it or not specifically so I can install ad-blocking.

Funk

Original Poster:

26,277 posts

209 months

Friday 22nd January 2016
quotequote all
Ollie_M said:
Dom is one of our developers so he his better to respond to this than I.. I'll ask him to jump on line again and see where we are with this.

Ollie
I admire your attempts Ollie and I can imagine you guys are as frustrated at things as we are. Keep kicking this up the line until someone takes note and actually does something about it.

It's not good enough for a site the size of PH to be serving up 'malvertising' and then going all slopey-shouldered and saying it's not PH's fault, it's down to 3rd parties - if that's the case, fk the 3rd parties off and boot them out.

The changes that have happened with PH over the last couple of years are like death by a thousand cuts. As has been mentioned before that the forums aren't considered 'important' to Haymarket as part of the PH brand, perhaps hive it off and let people quietly enjoy it without all the bullst that seems to happen as a result of the relentless pursuit of monetising the site as a whole.

Funk

Original Poster:

26,277 posts

209 months

Tuesday 26th January 2016
quotequote all
Charlie Michael said:
hornetrider said:
Charlie Michael said:
When will they realise that this is having nothing but a negative effect on the user base.
They don't care.
I know, but when this forum dies an un-dignified death, they'll be looking around at the stinking pile they created and wonder where exactly they went wrong.
Can't blame PetrolTed for cashing out when the Haymarket money came knocking but you can see the difference between a site because a guy loved it and a site where suits talk of ad revenue, branding, user base and engagement all in the name of recouping the money spent buying it.

PH isn't PH any more no matter how much we want it to be and even if it's a familiar name over the door. I don't attend Sunday Services or local meets any more, and not because I've changed.

It's not me, PH, it's you.

Funk

Original Poster:

26,277 posts

209 months

Monday 8th February 2016
quotequote all
So how did the meeting go then Ollie?

Funk

Original Poster:

26,277 posts

209 months

Saturday 27th February 2016
quotequote all
....aaaaaaaaand ignored again another month down the line.

Quelle surprise, not sure why I expected any different tbh.

Funk

Original Poster:

26,277 posts

209 months

Wednesday 23rd March 2016
quotequote all
I try not to browse on my phone because I have no idea what it may get infected with if I do. I stick mostly to my rooted tablet, PC and laptop all of which have adblocking enabled.

James, it's not good enough. You categorically cannot be serving up malware to your users and taking money for it. If you can't control it, CUT IT OFF UNTIL YOU CAN FIX IT.

Funk

Original Poster:

26,277 posts

209 months

Friday 25th March 2016
quotequote all
And this is how websites die.