It's not the same telemetry as Defender. What my team is looking at is to see the actual creative IDs that were served prior to the auto-redirect that happens. This comes from MSN owned telemetry, but digesting the historical browsed data in anonymous fashion is very expensive which is why I've been asking for some clues from users in the forms of new feedback entries.
I’m seeing Trojan:JS/Flafisi.D detections and Tech Support Scams on the Edge browser Start page
Update: A member of Microsoft's MSN Engineering Team (RodrigoLode(MSFT) has responded to acknowledge the malvertising issues associated with MSN portal. They have also requested ***" If anyone is still experiencing this, please reply here."***For more specifics on information requested please refer to the reply from Rodrigo at the following link:
In addition to reporting the fake pop-ups themselves I would advise that you take note if there is a significant loss of performance on computer after encountering, in particular, the fake Adobe Flash Player update. If things seem sluggish you may have been subject to one of the more prevalent malicious activities known as crypto-mining/coin mining.
Invisible resource thieves: The increasing threat of cryptocurrency miners
Especially important to report these occurrences or any other odd behaviors after using MSN website.
Moderator Edit: Provided update.
Just reading the “Comey trolls Trump” article on the Edge Start page and this pops up:
This one was easy to handle because it was just the old-fashioned dialog loop based scam:
– but what’s coming next Microsoft?
GreginMich
[Original Title: Surprised again]
Windows for home | Windows 10 | Security and privacy
Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.
386 answers
Sort by: Most helpful
-
Anonymous
2018-05-02T16:54:13+00:00 -
Anonymous
2018-05-02T04:17:03+00:00 we understand your frustration as we are having to "control alt delete" to stop our pc's from screaming "YOUR PC IS INFECTED! Alert, Call this number, this site is stealing your info"... I know its not infecting the PC but it locks up Edge.
You shouldn't be trying to hunt down these sites, the Edge team should be fixing this and it should be a #1 priority so it can't happen like with Chrome/Firefox... You should be banging on the door of the Edge team going FIX THIS NOW.
This is why hundreds of thousands of people leave Edge and get firefox/Chrome everyday.
If MS doesn't care about Edge then seriously cancel it and bundle Windows with Chrome.
It doesn't even look like MS uses Edge... its sad really.
-
Anonymous
2018-05-01T17:22:47+00:00 Greg,
We were both looking on the wrong direction here, focusing on the current malvertising symptom while the deeper issue was occurring inside Microsoft itself.
After Thursday's announcement and it's obvious side effects, I did a quick search today regarding layoffs and found the second article below.
Windows boss Terry Myerson leaving Microsoft amid huge reorganization - Business Insider
Microsoft Layoffs in 2018 Impact Windows and Device Group
"Although the most severely impacted part of the business is the Windows and Devices Group, several other divisions faced job cuts as well. Employees were shed from product groups like “Bing”—the company’s oft-maligned search engine answer to “Google.”"
Since the MSN moniker is really just a legacy label that's likely now nothing more than a logo, I'd guess that most of the remaining portions of this advertising were driven by the Bing group mentioned in the previous excerpt. If that group was already being reduced earlier this year before the announcement last Thursday, then I'd bet there's no plan to retain these legacy components for the long term, since as I mentioned these were nothing more than a reformatted set of 3rd-party news blogs anyway.
So I think that assuming Microsoft truly cares what happens to these pages is the mistake here, while it's the larger issues of where Windows itself is really headed and what form it takes in the future of Microsoft itself that's truly of concern at the moment.
"Terry Myerson, the executive vice president of Windows who has long been a leader at Microsoft, will leave the company "in the coming months" as part of a big reshuffling of executive leadership announced on Thursday. "
So if I'd taken the time to research deeper at the beginning, I'd have realized this entire discussion was pointless from the start, except as a warning that Windows users should assume that ad blocking is now the only effective method to protect yourself from malvertising on the legacy Windows platform.
Rob
here
-
Anonymous
2018-04-29T12:13:52+00:00 I have followed the suggestion and installed uBlock, it is too early to tell if it is working and will block the Flash problem but thus far this morning it has not popped up. I will reply again after a week as the occurrence of the bad popup was sporadic. The blocking extension is not slowing down my use of edge and is not taking up a lot of resources.
-
Anonymous
2018-04-28T14:23:17+00:00 This Mar 28th 2018....
I'm having this same pest problem!
On and off for a couple months now. Can't understand why
Windows virus says it does not detect when I have just been
hit again with that JS/Flasisi:D Could it be that it hides in my
backup drive? which is connected via which is separate from my
C which is my everyday drive. It seems that maybe that is why
the second virus has been identified as Win32/Occamy:C ?