63% users fail to spot fake pop-ups


Recommended Posts

Now I might be the exception here, but I honestly haven't even seen a pop-up like the ones posted here on my machines in _years_.

With that said, I always keep my anti-virus up to date, use FireFox with the adblock plus extension, and never use pirated software. I think the last part of that equation is the most significant as many "hacks or cracks" have been found to include some sort of malware, whether a trojan or spyware.

Many types of malware are spread via peer to peer sharing methods, and since I am not a user of any, it seems that I don't have these problems.

It is pretty simple to keep a machine clean:

1. Always keep your Java and Adobe Flash/Shockwave up to date.

2. Keep your anti-virus software up to date, but more importantly, free solutions are free for a reason. They are not nearly as comprehensive as a good paid solution, no matter which solution you choose to use.

3. Don't use pirated software. The use of "cracks and hacks" are just asking for trouble. You don't know how things were cracked, or what might have been piggy backed on to an exe file.

Simply following those three tips, and you can be fairly certain that you are safe from malware.

well in my opinion if you have a 'quality' popup blocker (i.e. AD-Muncher, www.admuncher.com ) then it's fairly rare if you will get any popups and it even removes a fairly high percentage of adverts on websites to and it's light on resources to AND works with all browsers etc.

only problem is ad-muncher aint free but it's well worth the money... it block's just about everything... but if you cant afford that just get a free add-on for Firefox browser called 'adblock plus' which will probably remove alot of random popups to.

in general between adblock plus and ad-muncher i pretty much get close to ZERO popup's... and even adverts (advertisments etc) are kept to a minimum.

Now I might be the exception here, but I honestly haven't even seen a pop-up like the ones posted here on my machines in _years_.

Simply following those three tips, and you can be fairly certain that you are safe from malware.

the problem is, for the general user, "it just works". if it's not broken, don't fix it.

they think their computer is perfectly fine and safe. even if they wanted to update, they wouldn't know how. what needs to happen is for things like windows (at least the "home" version) and browsers to automatically update themselves without user interaction

BUT, then the tech community starts complaining about it "phoning home" and unwanted updates being installed without consent.

my view is, we are tech savy. we can easily disable those automatic update features. there are WAY more home users than tech people, so we need to go for the greater good in this case and just have everything automatically update while we take 30 seconds to disable the feature

not only does it make it safer for them but ALSO safer for us; as hackers many less zombie pc's to launch attacks from. and since we are the people who deal with those zombie pc's, it's a win win :)

the problem is, for the general user, "it just works". if it's not broken, don't fix it.

they think their computer is perfectly fine and safe. even if they wanted to update, they wouldn't know how. what needs to happen is for things like windows (at least the "home" version) and browsers to automatically update themselves without user interaction

BUT, then the tech community starts complaining about it "phoning home" and unwanted updates being installed without consent.

my view is, we are tech savy. we can easily disable those automatic update features. there are WAY more home users than tech people, so we need to go for the greater good in this case and just have everything automatically update while we take 30 seconds to disable the feature

not only does it make it safer for them but ALSO safer for us; as hackers many less zombie pc's to launch attacks from. and since we are the people who deal with those zombie pc's, it's a win win :)

I think truly automatic updates would be great. Not how it is now where users still have to do some sort of clicking. Although, that goes back to my point: users need to READ. Countless times I have witnessed users ignorantly close a window asking them to update because they "don't have the time" or "don't know what it means". It's a freakin update! Install it! This attitude needs to change. Everyone is capable of having a stable system if they follow simple logical rules. Update your system, don't go to BS sites, and pay attention. This day in age there aren't many pop-ups as there were in previous years. The pop-ups most people see are caused by Spyware installed on their system and they are generated from their PC.

OK, you still aren't making sense to me :p

I know it's promoting a product (FoxyTunes), but it's also providing a useful feature, so I don't get what you're on about.

----------------

Now playing on iTunes: The Killers - Human

via FoxyTunes

usefull in what way? like we care what you are listening to while browsing a forum non music related

the problem is, for the general user, "it just works". if it's not broken, don't fix it.

they think their computer is perfectly fine and safe. even if they wanted to update, they wouldn't know how. what needs to happen is for things like windows (at least the "home" version) and browsers to automatically update themselves without user interaction

BUT, then the tech community starts complaining about it "phoning home" and unwanted updates being installed without consent.

my view is, we are tech savy. we can easily disable those automatic update features. there are WAY more home users than tech people, so we need to go for the greater good in this case and just have everything automatically update while we take 30 seconds to disable the feature

not only does it make it safer for them but ALSO safer for us; as hackers many less zombie pc's to launch attacks from. and since we are the people who deal with those zombie pc's, it's a win win :)

That is one nice thing about firefox. How it automatically updates itself and the extensions you are using.

Why are we arguing about two lines of text in this dudes sig? I've seen tons of similar ones on neowin, grow up and stay on topic.

BTW, I love the irony in your sig :

My movie forum (dutch)

My website

It in his posts, which means it gets copied when you quote.

I have sigs off for a reason. I don't want to see them. I don't begrudge those who want to see them (and, in fact, provide one of my own for others to read, if they like the sig thing). Attaching a sig in the post defeats the purpose of sigs.

----------------

Now playing on iTunes: Ubuntu Rhapsody - Canonical

via My spam link

It in his posts, which means it gets copied when you quote.

I have sigs off for a reason. I don't want to see them. I don't begrudge those who want to see them (and, in fact, provide one of my own for others to read, if they like the sig thing). Attaching a sig in the post defeats the purpose of sigs.

----------------

Now playing on iTunes: Ubuntu Rhapsody - Canonical

via My spam link

ah didn't realize it was attached to the posts :blush:

Look on the bright side... it keeps a lot of us here on Neowin making money to remove that crap! Thank God for inept users.

Yep.

However, its putting the stress on us technicians because we (or atleast I) am seeing those more and more everyday - and I'm tired of it!

Yep.

However, its putting the stress on us technicians because we (or atleast I) am seeing those more and more everyday - and I'm tired of it!

I know where you are coming from. yes I make money from it, but i'm also getting burned out.

Some might say "Well thats because you're formatting over every malware infection".

If I had to do a 3 hour malware removal for each malware infested computer I wouldn't be burned out, i'd be POSTAL!.

I know where you are coming from. yes I make money from it, but i'm also getting burned out.

Some might say "Well thats because you're formatting over every malware infection".

If I had to do a 3 hour malware removal for each malware infested computer I wouldn't be burned out, i'd be POSTAL!.

Yeah removing all that malware takes more time than a format most of the time, especially with an.d infections. sadly most users are dumb and never make any backups so it's not always an option.

Yeah removing all that malware takes more time than a format most of the time, especially with an.d infections. sadly most users are dumb and never make any backups so it's not always an option.

I carry an external hard drive with me, so I back up all that they want backed up before I format. so that isn't much of a problem. The only problem I forsee is that most people are to stupid to know the definition of a format. They are to stupid after pounding on them on the concept that when you get down there will be nothing left. So much so that they ask, ok but willl "Such and such still be there?" At that point you just want to slap your forehead!.

In the end I usually grab a peice of paper that has some kind of print on it. I say see this paper??. This is your computer now!. then I flip it over. I then say this is what your computer will look like when im done!. Of course now the blank side of paper is up!.

I will agree with you that 99.9999999999999999999999999999999999999999999999999999999999999999999999999999999999999999% of my customers have no backup of anything!

Edited by warwagon
Let me clarify that statement a bit. "to use a Windows computer".

Until such a time that Apple takes a significant enough share to warrant these spoofed popup assaults on naivete, it is a relatively safe computing platform for those who tend to be inexperienced (I prefer that over the term "ignorant" ) with computers in general.

If the up-front cost of buying an Apple computer is daunting or prohibitive, a knowledgeable family member can set up their inexperienced relative or friend with a handy limited user account, and withhold the admin password. This, obviously, has to be done with the computer user's permission (one does not have the right to essentially take over someone else's PC without their permission and understanding).

But those are examples of the types of steps needed to protect people from themselves.

Don't talk crap! Just because someone is on an Apple machine does not mean they're are immune from clicking on a dialogue box that tells them they have won $15,000 or have 15,000 viruses. A stupid user is a stupid user regardless of the Operating System and if you think that the platform is at all safe because it only has a handful of viruses and wont get targeted as it's user base increases then you are severely wrong.

Simply moving users onto whatever platform is least targeted is not a solution to the problem its a temporary measure. Educating users or forcing them to actually read a dialogue / more effective warnings such as "This prompt has been triggered by the website" are more effective starts.

whoever clicks on those ads are complete idots.
just because someone is a doctor doesn't mean they are smart. what you know has nothing to do with your "smartness". it's your ability to comprehend new ideas that defines your intelligence (IQ)

i know a lawyer and it's sad to say but, she's not smart. she memorizes laws extremely well (things anyone can learn from a book), but she can't solve puzzles worth crap. i frequently buy physical puzzles (ie two horseshoes chained together end to end with a ring around the middle. how do you get the ring off) and she always fails miserably at them and gives up. she can't think for herself, she can only regurgitate what she's read.

back on topic, if the average homeowner updates their computer to the most recent or 2nd most recent OS (vista and xp, or OS X v10) and updates their browser to the latest (whether it be IE, firefox, opera, etc.) then i think this number would drop by 30%. there's just too many people running outdated software like windows 98. they don't switch because "it just works" but they don't realize that not only do they get screwed, but they screw other people by becoming a zombie PC and a platform for some hacker to launch new trojans remotely

Agree on both. I can't comprehend how people actually fall for these.

Don't talk crap! Just because someone is on an Apple machine does not mean they're are immune from clicking on a dialogue box that tells them they have won $15,000 or have 15,000 viruses. A stupid user is a stupid user regardless of the Operating System and if you think that the platform is at all safe because it only has a handful of viruses and wont get targeted as it's user base increases then you are severely wrong.

Simply moving users onto whatever platform is least targeted is not a solution to the problem its a temporary measure. Educating users or forcing them to actually read a dialogue / more effective warnings such as "This prompt has been triggered by the website" are more effective starts.

Yo. Unplugged. Read my post.

You will find it pretty much says what you just re-stated.

Apple is currently a platform that is not targetted, so bad users are relatively safe from malware. No crap. Just a fact. And, someday, Apple may become a more common target. It just hasn't happened yet.

I don't agree that education is the most effective method of malware control. It would be securing the system and having users (especially ones prone to just clicking boxes) run only as users - no admin privileges.

"talking crap", indeed! :laugh:

Crazy percentage. And yet I can believe it.

I watched my boss at my last place of work try to close a flashing AD BANNER (not pop up) that was modeled to look like an XP dialogue box. He clicked the X and then closed the following pop up ad, and then he clicked the X again, and closed the pop up again, and then he did it a third time before I took the friggin mouse from him!

  • 1 year later...

those people most likely using outdated program

both IE and Firefox block popups by default since some time ago

Crazy percentage. And yet I can believe it.

I watched my boss at my last place of work try to close a flashing AD BANNER (not pop up) that was modeled to look like an XP dialogue box. He clicked the X and then closed the following pop up ad, and then he clicked the X again, and closed the pop up again, and then he did it a third time before I took the friggin mouse from him!

:rofl:

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • On the topic of being locked out of a service. Recently two different friends of mine got locked out of their Google accounts. Both were hack attempts and one of them is waiting 30 days before he can get back in. He had backup codes and MFA but not a passkey. It was a browser token hack. Anyhow he has to wait 30 days for the dispute or whatever to end. The other person only had a password and is screwed losing all of the email, docs and years of photos. Google won’t help her at all. Her fault because she had no backup/recovery setup. Enable passkeys if possible. Also do NOT use browser based password managers. If using a cloud service make sure it is one you can fully sync to one of your devices so you can back it up. Like a PC or Mac with some backup drive plugged into it. Google is the worst to use IMHO. You can’t sync your photos at all. You have to use the “Take Out” service which is manual and takes days. That service strips the meta data from your photos. Also Google Docs synced to a device are useless without a Google accounts. MS Office/Libre Office is not going to open a link to a Google doc to a dead account.
    • Why you need to take back control of your synced passwords and how to go about doing that by Paul Hill Credit: Pixabay Last month, when Google decided to introduce daily and weekly caps for Gemini, it reignited an anxiety of mine, that you can’t really depend on service providers to maintain features forever, and it got me looking into free software (as in freedom) in other areas too. One app I quickly came across was KeePassXC on desktop and KeePassDX on Android as an alternative to password manager lock-in within the Chrome or Firefox ecosystems. I personally like to switch around with browsers, and using either password manager is inconvenient, so something like KeePassXC was interesting to me. The main issue with it now is syncing; I was not sure how to do that. After a bit of research, I came across Syncthing, a tool I was vaguely familiar with but had never used because it seemed complicated. However, I was completely wrong, and honestly, I think everyone should use it if they use multiple devices. It essentially lets you share folders peer to peer across all of your devices, no cloud services that you don’t control necessary! And it was fairly simple to set up, if not a bit clunky. Since setting it up, I’ve also started using Syncthing to back up other apps too, so don’t think it’s limited to just saving password databases. You can use it for pretty much anything you use Dropbox or Google Drive for. Before continuing to talk about those apps a bit more, let’s walk back a bit and talk about browser sync. Ever since the late 2000s and early 2010s, really, since we have been using smartphones, browser sync has been a necessity of life. I don’t know about you, but I have hundreds of passwords saved. For the most part, they’re all unique, so I don’t remember them and rely on software to manage them for me. Until recently, I’ve relied on password managers in Chrome and Firefox, but what I always found annoying was that it can be hard to transfer them between browsers. Sure, on Windows it is simple enough, but on Linux, exporting bookmarks has been temperamental. It works OK nowadays, but not too long ago, Chrome required you to enable exporting passwords in chrome://flags. The situation is even worse on mobile; there is no exporting or importing of passwords of any kind. You literally have to do it on a desktop, which is incredibly annoying in our mobile-first world. Sync also lets us take out bookmarks, history, tabs, and autofill data easily. To enable sync, it’s just a matter of signing into the browser once, and it handles the rest. It’s nice and easy. Obviously, all this has some issues, including those I’ve outlined above about it being hard to transfer data between browsers, but also things such as account suspension, lost account passwords, and other lock-in mechanisms, such as passkeys, being tied to a specific browser. On a sidenote, I have just removed all of my passkeys because they can make it harder to move browsers. I think the biggest threat to your synced passwords, especially if doing this with Google, is having your account suspended. I don’t ever expect mine to be suspended, but you do hear horror stories on Reddit where people lose access to their Google accounts. Imagine if you have hundreds of passwords, then suddenly lose access to them because Google froze your account, what would you do? So yes, it can be nice to use these syncing services for their convenience, but they also have risks. You may have seen me going on about free software quite a bit in my editorials. It’s essentially a concept championed by the Free Software Foundation. It’s software under particular licenses that grant you four freedoms: run the program for any purpose (0), study and change the source code (1), redistribute copies to others (2), and the freedom to distribute modified copies to others (3). For example, if there is an app I use and one day it gets abandoned by the developer, I can keep running it or even clone the software and continue developing it. Look at the myriad of cool services Google has run over the years before killing them. You can’t take the source code for those because they are proprietary, for the most part. Both KeePassXC and Syncthing are free software, so I get the freedoms listed above. In my use case where I’m syncing a database full of my passwords, I also get proper ownership over my data, there is no losing access to the database due to a frozen account, I can access the code of the tools I’m using, and I can get support from real people online if I run into issues, rather than having to consult a vague help page from an opaque company. With the KeePassXC password manager, you create a .kdbx file, which is what will be synced between devices. KeePassXC has cross-platform apps and also has browser extensions so that the browser can fetch passwords from the database once it is unlocked. Meanwhile, Syncthing is a peer-to-peer file sync tool where you can select folders to sync between your devices. Just pop files in the folders you choose, and then they will be available across your other devices whenever they come online. Syncthing is resilient as it works over both LAN and the internet and only ever sends content between your devices, never to a third-party server somewhere else. By combining these two pieces of software, you can essentially replicate the browser sync functionality. I have had a weird, conflicting issue where a new file is appearing, but it doesn’t seem to be impacting my main password database, which is updating between devices just fine. If you want to get a setup similar to what I have, you will need to go here to download KeePassXC for your computer. Once you have that, you will need to download your passwords from your web browser to a CSV file. In Chrome, you can type chrome://password-manager/settings into the URL bar, and you should see an option to download your passwords under Export Passwords. This will give you the CSV file you need for importing into KeePassXC. If you use a different browser, just use a search engine and type “browser-name export passwords” and muddle along. In KeePassXC, you’ll want to press Import File from the home screen, select the CSV file, and create a new database from it. On one of the screens of the wizard, there will be a Title field with a drop-down selected to none. Change this to Title and continue. You’ll select a name for the database, the encryption level (the defaults are fine), and then you will pick a password. I would choose four unrelated words that are easy for you to remember, as you’ll be typing them fairly often to access your passwords. When you have all your passwords in your new database, you will want to set up the browser extension so that your browser can fetch passwords from KeePassXC. Rather than explain how to do that here, refer to KeePassXC’s guide on how to set it up properly. Once you’ve got that set up, you want to install KeePassDX on Android. You can grab it on the F-Droid store and the Google Play Store. For iPhone users, there are other .kdbx-supporting apps, but I haven’t tried any of them, so have a look around and use what suits you. Once you have that done, you will want to install Syncthing on your computer and find a third-party app for your mobile device. On Android, I use an app called BasicSync; there are also options for iOS, but again, I’ve not tried these. Once you’ve got SyncThing, you’ll want to set it up and connect all of your devices together and share a folder between your gadgets. PCWorld has a good tutorial on setting up a synchronized file between your devices using SyncThing. Once you’ve set it up, congrats, you’ll never have to touch that stuff again except for adding or removing devices. I’ll be honest, I didn’t particularly like setting up Syncthing. It didn’t take me a massive amount of time, but I think I had to check online because I found it a bit confusing. That said, I’ve had it running for several weeks now and never need to touch the Syncthing settings, so that’s very nice. I also mentioned a conflicting file. I’m not sure why this is appearing, but the main .kdbx file seems to be updating and syncing just fine. What’s nice is that both KeePassXC and Syncthing are free software, so they won’t just vanish one day; you can take the code and fork the project or use a range of alternative implementations that others have made. It’s also nice that it works over LAN, so even if your ISP is having problems, your passwords will still sync. One area where you will want to be a bit more careful with this setup is if you only have one device. I am OK because I have a computer and two phones, all synced up. If you just have one device, you will probably want to store a backup of your .kdbx file somewhere else. Obviously, you’ll also want to remember your password really well, too. If you get locked out, it's game over. Overall, if you want to take back control of your computing from big tech, taking control of your passwords is an important part of this. You don’t need to immediately clear out your browser’s password manager; try running KeePassXC and the password manager concurrently for a while to see if you run into any problems. If you do try this out, let us know some other creative ways to use Syncthing. I haven’t really come up with a solution about what to do with my bookmarks, for example.
    • If the price was a dollar, someone would complain "Why isn't it free?" If it was free, someone would complain they weren't being paid to play it.
    • That lens of history will burn if you hold it at the right angle... Warn users too late: Shame, Microsoft! That extremely minor update to an obscure Control Panel widget required 2 years of warning. Warn users too early: Shame, Microsoft! We've got better things to do. Pipeline and process be damned, we'll just always be disappointed, eh?
    • Microsoft Paint used to be my favorite Windows app as a kid, and it's still pretty good by Usama Jawad I have been using Windows since the early 2000s, when I was around 10 years old or so. I vaguely remember playing around with Windows 98 and Windows 2000, but that may have been on school PCs which had old operating systems installed. My main OS on the home PC, and the one I recall spending most time with, was Windows XP. At that time, I used the home PC to create Word and PowerPoint documents for school, but a lot of the time, I simply used it to play games. My dad would bring game discs which we would try and install on the PC, sometimes unsuccessfully, and sometimes, we would rely on flash games in the browser, like Bubble Trouble on Miniclip. However, the problem with the latter approach was the internet speed. On a good day, our dial-up internet would offer us speeds of 56 kbps, but on most days, it was closer to 33 kbps. This did not facilitate online gaming as I would often have to wait minutes for a game to load or "draw" on the screen, and trying to download pirated games wasn't simple either. I remember getting tired of waiting for online games to load and just downloading simulator games from the Big Fish Games website instead, only to be disappointed after finding out that I was just being given access to trial versions of the title, and I needed to fork out money to pay for the full version. All of this is to say that it wasn't very easy to find entertainment options on the home PC when I was a kid, due to a number of reasons, mostly outside of my control. This situation pushed me towards a rather unconventional ally: Microsoft Paint. Whenever the internet wasn't working as good as I expected, I would simply spin up Paint and draw complete rubbish on the canvas. Of course, that wasn't always the intention, but it usually happened when I messed up drawing a straight line or something, and then I would give up on that particular piece and simply draw a random collection of objects. Microsoft Paint was extremely accessible and easy to use. Even if you weren't an artist, you could quickly understand the tools at your disposal and how to leverage them on a canvas. The absolute breadth on offer ensured that each painting was truly unique, as you could utilize various combinations of tools like the pencil, paint, spray paint, and more to truly personalize your creation. Since I wasn't particularly good at drawing both on digital screen or a physical screen, I remember that my main style of art would be to insert a bunch of randomly intersecting lines and then fill them with random colors through the paint can. I have trying to replicate that art style in the latest version of Paint below, and as you can see, it's truly Pablo Picasso-esque. The human imagination truly knows no bounds Microsoft Paint kept me occupied for hours and was my best friend when video games on the home PC were inaccessible for one reason or the other. There was no academic or professional reason for which I would need to use Paint, but I still loved using it in my personal time, even if what I created wasn't worth being shown to anyone. It was simply fun. Fast-forward to today, and the situation is mostly the same. Now that I am almost 29 years old, and I still have no reason to use Microsoft Paint in a professional capacity. In fact, I don't even use it in a personal capacity, except to dabble with it from time to time, just to see if core functionalities are still intact. And I'm happy to say that I think Microsoft Paint still offers the same accessibility and inviting experience that it did to me a couple of decades ago, even though its UX has been refreshed and it's been integrated with Copilot features. Interestingly, things could have been a lot different, had Microsoft had its way. Microsoft Paint was marked for deprecation with the Windows 10 Fall Creators Update in 2017, and even began displaying a product retirement alert, urging customers to shift to Paint 3D instead. Fortunately, after consumer backlash, Microsoft reversed course on this decision, and Paint continues to be a native app inside Windows installations that can also be updated quite frequently through the Microsoft Store. Instead, Paint 3D ended up on the chopping block, which is for the better, I think. I have intermittently played around with Microsoft's refreshed Paint experience in the past few years, and I do think it has received worthwhile upgrades. the UI and the UX has been modernized while retaining core functionality, and the app is still fairly easy to use. It doesn't meet any of my use-cases, but I've never really had any use-cases ever, as described previously. Of course, the elephant in the room is the Copilot integration. Personally, I believe that this is one place where Copilot does make sense, environmental concerns aside. I know that a lot of creatives use AI to generate images, and while some may be using professional alternatives, Paint still offers a decent casual experience, with the power of Copilot. Of course, you do need to have a valid Microsoft 365 Copilot license and available credits to use it, but even if you don't, you still get the big Copilot button in the toolbar, unfortunately. All in all, I am glad that Microsoft Paint continues to be a native feature in Windows 11, and a piece of software that has evolved to meet modern needs without cutting off its own roots. It's just an iconic piece of Windows history that was an essential part of my childhood, and while I don't use it anymore, I'm just glad it is still there.
  • Recent Achievements

    • Week One Done
      Supreme Spray LV earned a badge
      Week One Done
    • One Month Later
      Genuinetonerink- Dubai earned a badge
      One Month Later
    • Week One Done
      Genuinetonerink- Dubai earned a badge
      Week One Done
    • One Year In
      hhgygy earned a badge
      One Year In
    • Week One Done
      AMV earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      513
    2. 2
      +Edouard
      163
    3. 3
      PsYcHoKiLLa
      88
    4. 4
      Steven P.
      74
    5. 5
      Michael Scrip
      73
  • Tell a friend

    Love Neowin? Tell a friend!