CNET Accused of Bundling Software Downloads with Trojans

Status
Not open for further replies.

Venustus

Level 59
Thread author
Verified
Honorary Member
Top Poster
Content Creator
Well-known
Dec 30, 2012
4,809
A software wrapper used by CNET supposedly tricks users into installing toolbars and Trojans instead of the actual hosted program.
Old article but still an important read!

Gordon "Fyodor" Lyon is the creator and maintainer of the widely-used network auditing and penetration-testing tool called Nmap. It's a handy tool for administrators that can spot services that shouldn't be running, locate rogue PCs and servers, identify firewalls on the network and more. You would think that having a download mirror like CNET would bring a significant load of traffic to Lyon's software.
Well it has, just not in a good way.
According to the developer, CNET's Download.com repository has bundled his free software with Trojans and shady toolbars without his consent. Security firm Sophos backs up the claims and explains that it's encased in a software wrapper -- aka the Download.com Installer which was introduced back in July -- that tricks the potential customer into installing the Babylon Toolbar. To do this, the wrapper pops up a dialog headlined "Nmap" with a bright green default "Accept" button. But accepting only means CNET visitors accept the "special offer" of the toolbar instead... accepting the installation of Nmap comes later.
 
Last edited:

phyniks

Level 7
Verified
Well-known
Nov 17, 2013
300
Neowin ,Filehippo and Softpedia are better choices and softwares are with their latest versions .

Look at the version of Avira Free on cnet:

http://download.cnet.com/Avira-Free-Antivirus/3000-2239_4-10322935.html

Capture.PNG
 

Dima007

Level 23
Verified
Well-known
Apr 24, 2013
1,200
Status
Not open for further replies.

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top