{"id":1828,"date":"2011-05-13T14:22:42","date_gmt":"2011-05-13T18:22:42","guid":{"rendered":"http:\/\/thundercloud.net\/infoave\/new\/?p=1828"},"modified":"2011-05-13T14:22:42","modified_gmt":"2011-05-13T18:22:42","slug":"ie9s-smartscreen-filter-not-so-smart","status":"publish","type":"post","link":"https:\/\/www.thundercloud.net\/infoave\/new\/ie9s-smartscreen-filter-not-so-smart\/","title":{"rendered":"IE9&#8217;s SmartScreen Filter &#8211; Not so smart"},"content":{"rendered":"<p>Ever since the release of Internet Explorer 9, we (and other smaller sites) have been plagued by visitors who, when they attempt to download our stationery files, see a strong warning in Internet Explorer 9 about downloading and installing our files. This is worrisome. Even visitors who have been downloading our stationery for over a decade are writing and expressing their concern about the safety of our files.<\/p>\n<p>We&#8217;ve changed nothing as far as the way our files are created. The problem lies with Microsoft and Internet Explorer 9&#8217;s obviously misnamed, SmartScreen filter. The SmartScreen filter is turned on by default. And there&#8217;s no doubt that Microsoft has been plagued for years by bad publicity resulting from a myriad of security flaws and vulnerabilities. These flaws and vulnerabilities not only affected (and affect) its Internet Explorer browser, but Windows itself. Microsoft&#8217;s carelessness and rush to market, as well as its popularity, has led to the infection and compromising of millions of computers.<\/p>\n<p>Microsoft&#8217;s solution to these vulnerabilities and flaws (besides issuing endless patches and fixes) has been to use the approach that everything is dangerous unless it&#8217;s proven to be safe. While Apple Mac users are never confronted with UAC warnings on their desktops, Windows Vista, and to a slightly lesser degree, Windows 7 users, are confronted with annoying UAC warnings even when running programs they&#8217;ve been using for years.<\/p>\n<p>It seems that Microsoft like the UAC idea so much (again showing its disregard for its users), it decided to use the same approach for its current version of Internet Explorer. And sites, like ours, who don&#8217;t have enough money to purchase so-called &#8220;security certificates&#8221; or digital signatures, are going to be hurt by the ignorance of SmartScreen.<\/p>\n<p>Digital signatures prove nothing except the company that claims to have created the file actually created it. It does not, in any way, guarantee that the file is safe or is not spyware or adware or a rogue security program. Some of you may remember that one of the worst spyware programs ever unleashed on the Web &#8211; one that infected tens of millions of computers, &#8220;Hotbar&#8221; not only had a digital signature &#8211; but was a Microsoft Certified Partner.<\/p>\n<p>Microsoft is not out to protect you &#8211; it&#8217;s out to protect its reputation and to contain negative publicity. If it were really interested in protecting you it would not rush products to market before they are fully tested and vetted. Google&#8217;s Chrome browser is generally regarded as the safest browser. Yet it&#8217;s also the newest browser. Its warnings are few but reliable. Google pays hackers to try to hack its products before these products are ever released to the public. Microsoft could do the same with its operating systems, its browsers and its other products &#8211; but its so secretive of its code that it wouldn&#8217;t ever make it available to hackers so they could exploit the vulnerabilities and weaknesses before products were released to the public. Microsoft&#8217;s solutions to problems are simplistic and painted with too broad a brush.<\/p>\n<p>Here&#8217;s an example of Microsoft&#8217;s SmartScreen. In the example below you will see it tells users that a perfectly safe file, is &#8220;dangerous&#8221;. We know it&#8217;s a perfectly safe file because we created it.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/thundercloud.net\/infoave\/images\/2011\/smartscreen-1.jpg\" border=\"0\" alt=\"Cloudeight InfoAve Premium\" width=\"448\" height=\"360\" \/><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/thundercloud.net\/infoave\/images\/2011\/smartscreen-2.jpg\" border=\"0\" alt=\"Cloudeight InfoAve Premium\" width=\"448\" height=\"363\" \/><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/thundercloud.net\/infoave\/images\/2011\/smartscreen-3a.jpg\" border=\"0\" alt=\"Cloudeight InfoAve Premium\" width=\"650\" height=\"30\" \/><\/p>\n<p>The file which Microsoft&#8217;s SmartScreen filter identifies as &#8220;Dangerous&#8221; contains two files &#8211; 9 HTML files (Web page) and 9 JPG files (images). The HTML files and the images make the stationery files. There&#8217;s nothing in it but those files.<\/p>\n<p>When users who know us and have trusted us for years write us expressing their concern, what do you think users who have just discovered our site are going to do? You&#8217;re right: They&#8217;re going to leave and never come back. There is nothing we can do about it &#8211; Microsoft doesn&#8217;t care about the damage this kind of thing causes to small, niche sites like ours. They&#8217;re concerned about Microsoft and protecting what&#8217;s left of its reputation. If it were really concerned about the security and safety of its users, there wouldn&#8217;t be dozens of patches and fixes to close security holes in its operating system and other products. Most of the fixes and patches released are for vulnerabilities and weaknesses that should have been ferreted out before the product or product was released.<\/p>\n<p>We understand that Microsoft Windows is installed on 90% of the world&#8217;s computers and they make a big target. But if the only solution they can find to the problems they themselves create by rushing products to market before they&#8217;re ready, is UAC and SmartScreen &#8211; then Microsoft has bigger problems than they know. You can already see more and more people moving to Apple. Internet Explorer&#8217;s share of the browser market has gone from 95% in 2006 to 54% in 2011 &#8211; and it continues to decline.<\/p>\n<p>Chrome, Firefox, and Apple Safari all have filters for malicious content &#8211; yet none of them issue any warning when downloading our files. If you&#8217;re using Internet Explorer maybe you should consider switching to a browser that can actually tell the difference between a malicious file and a safe one. Maybe those of you who still use Internet Explorer are starting to see why Internet Explorer is losing users so quickly.<\/p>\n<p>Tens of thousands of small sites like ours are being hurt by Microsoft&#8217;s SmartScreen filter. And when you factor in the number of users who rely on community-based Website-rating programs, which are growing more ubiquitous by the day, you&#8217;ll begin to see what there isn&#8217;t much chance for new sites or smaller sites like ours to survive.<\/p>\n<p>We&#8217;ve called on our readers to use common sense above all &#8211; and to use software, such as antivirus and antispyware, as secondary backups to common sense. While Microsoft&#8217;s Internet Explorer&#8217;s SmartScreen tries to scare you from our safe files, it has no problem with allowing you to download the adware\/spyware\/hijacker &#8220;Facemoods&#8221;. Do we need to say anymore?<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/thundercloud.net\/infoave\/images\/2011\/smartscreen-4.png\" border=\"0\" alt=\"Cloudeight InfoAve Premium\" width=\"640\" height=\"75\" \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Ever since the release of Internet Explorer 9, we (and other smaller sites) have been plagued by visitors who, when they attempt to download our stationery files, see a strong warning in Internet Explorer 9 about downloading and installing our files. This is worrisome. Even visitors who have been downloading our stationery for over a decade are writing\u2026 <span class=\"read-more\"><a href=\"https:\/\/www.thundercloud.net\/infoave\/new\/ie9s-smartscreen-filter-not-so-smart\/\">Read More &raquo;<\/a><\/span><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[10],"tags":[981,102,138,14,1163,42],"_links":{"self":[{"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/posts\/1828"}],"collection":[{"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/comments?post=1828"}],"version-history":[{"count":2,"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/posts\/1828\/revisions"}],"predecessor-version":[{"id":1830,"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/posts\/1828\/revisions\/1830"}],"wp:attachment":[{"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/media?parent=1828"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/categories?post=1828"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.thundercloud.net\/infoave\/new\/wp-json\/wp\/v2\/tags?post=1828"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}