[CentOS] C5 : Firefox 38 bug

Sun Jun 14 09:52:49 UTC 2015
James B. Byrne <byrnejb at harte-lyne.ca>

On Fri, June 12, 2015 15:41, John R Pierce wrote:

>
>
> here's what I got from that URL for reference:
>
>
>     Safe Browsing
>
>
>       /Diagnostic page for/googleusercontent.com
>
> *What is the current listing status for googleusercontent.com?*
>
>     This site is not currently listed as suspicious.
>
>     Part of this site was listed for suspicious activity 370 time(s)
>     over the past 90 days.
>
> *What happened when Google visited this site?*
>
>     Of the 4006663 pages we tested on the site over the past 90 days,
>     3446 page(s) resulted in malicious software being downloaded and
>     installed without user consent. The last time Google visited this
>     site was on 2015-06-12, and the last time suspicious content was
>     found on this site was on 2015-06-12.
>
>     Malicious software includes 18440 exploit(s), 12470 trojan(s),
> 2399
>     scripting exploit(s).
>
>     Malicious software is hosted on 13 domain(s),
>     includingpowerade.com.ar/
>     <http://www.google.com/safebrowsing/diagnostic?site=powerade.com.ar/>,douglas.de/
>     <http://www.google.com/safebrowsing/diagnostic?site=douglas.de/>,maxtraffic.com/
>     <http://www.google.com/safebrowsing/diagnostic?site=maxtraffic.com/>.
>
>     This site was hosted on 1 network(s) includingAS15169 (GOOGLE)
>     <http://www.google.com/safebrowsing/diagnostic?site=AS:15169>.
>
> *Has this site acted as an intermediary resulting in further
> distribution of malware?*
>
>     Over the past 90 days, googleusercontent.com appeared to function
> as
>     an intermediary for the infection of 9 site(s)
>     includingstartbusinesscoaching.com.au/
>     <http://www.google.com/safebrowsing/diagnostic?site=startbusinesscoaching.com.au/>,crpcoutreach.blogspot.com/
>     <http://www.google.com/safebrowsing/diagnostic?site=crpcoutreach.blogspot.com/>,businesscoachinstitute.com.au/
>     <http://www.google.com/safebrowsing/diagnostic?site=businesscoachinstitute.com.au/>.
>
> *Has this site hosted malware?*
>
>     Yes, this site has hosted malicious software over the past 90
> days.
>     It infected 1206 domain(s), includingv4download.com/
>     <http://www.google.com/safebrowsing/diagnostic?site=v4download.com/>,vfastdownload.com/
>     <http://www.google.com/safebrowsing/diagnostic?site=vfastdownload.com/>,downloadmee.com/
>     <http://www.google.com/safebrowsing/diagnostic?site=downloadmee.com/>.
>
> *Next steps:*
>
>   * Return to the previous page.
>     <http://www.google.com/safebrowsing/diagnostic?site=googleusercontent.com#>
>   * If you are the owner of this web site, you can request a review of
>     your site using GoogleWebmaster Tools
>     <http://www.google.com/webmasters/tools/>. More information about
>     the review process is available in Google'sWebmaster Help Center
>     <http://www.google.com/support/webmasters/bin/answer.py?answer=45432>.
>
>

Which raises the question: Just how bad does a site have to get BEFORE
it gets listed as suspicious by Google?

-- 
***          e-Mail is NOT a SECURE channel          ***
        Do NOT transmit sensitive data via e-Mail
James B. Byrne                mailto:ByrneJB at Harte-Lyne.ca
Harte & Lyne Limited          http://www.harte-lyne.ca
9 Brockley Drive              vox: +1 905 561 1241
Hamilton, Ontario             fax: +1 905 561 0757
Canada  L8E 3C3