UPDATED (20th September 2010, 11pm – GMT+8:00)
Innity has clarified their issues and took swift action is trying to solve the problem..As quoted from Innity’s Announcement Page as of 20th Sept 2010, 6.20pm (GMT+8) :
Google has now completed a review of our domain and certified that http://innity.net/ has now been re-activated and has passed all checks.
We at Innity though are still looking to enforce additional layers of checks and confirmations before reinstating all advertising scripts so please bear with us and we will notify you in the next 24 hours to put up our ad scripts again.
Furthermore, if your site is still currently blacklisted and you are having difficulty getting it reinstated, please drop us an email with your site details to firstname.lastname@example.org with a copy to email@example.com and we will complete this process for you as quickly as we can.
For further updates you can proceed to Innity : Announcement..
I bet many of you have heard of and also never heard of Innity Ads..
Unlike Nuffnang and Advertlets where both companies aiming at blog advertising, Innity Ads target more on corporate websites, or so I heard..
As quoted from Innity’s website..
Innity Ad Network is a South East Asia network of premium quality news, editorial and entertainment websites that reaches more than 200 million consumers regionally, with over 2.1 billion ad impressions monthly.
Innity Premium Network campaigns are designed to provide high profile brand exposure with no limits on specific placement sites or creative structure on selected premium content publisher sites.
It’s presumed at about Malaysian Time (GMT+8:00) 5pm, September 19th 2010, more than 500 sites contained Innity Ads have been labeled as harmful as it is listed as suspicious..
The time of attack can be confirmed by the Google Safe Browsing diagnostic page for rojaks.blogspot.com, where it’s updated 12 hours ago at the time this blog post is being written, 5am..
*Printscreen of the page at Malaysian Time 5am, 20th September 2010*
In that page it’s also clearly stated that malicious software is hosted on 1 domain(s), including innity.net..
Here’s a printscreen of rojaks.blogspot.com where you can’t view it on Mozilla Firefox or Google Chrome browsers but they are working fine on Internet Explorer and Safari..
*rojaks.blogspot.com on Mozilla Firefox*
Here’s a printscreen of rojaks.blogspot.com on Google Chrome..
*rojaks.blogspot.com on Google Chrome*
Using Internet Explorer is pretty fine, well I don’t know why as I’m not a tech guy but here’s a proof, visiting the blog at the same time..
*rojaks.blogspot.com bearing the Innity Ads banner*
So the question is what causes the “malware attack” that prevented those sites having Innity Ads from being visited?
After some research and discussion with Joshua, we found out that Innity is not at fault for causing the malware attack that paralyzed those blogs and websites..
If you visit Innity.com you will safely enter the site without any warning at all..But when we tried Innity.net, the warning page appeared and we found a better source of it..
Quoted from Google Safe Browsing diagnostic page for innity.net says..
Has this site acted as an intermediary resulting in further distribution of malware?
Over the past 90 days, innity.net appeared to function as an intermediary for the infection of 3 site(s) including yiela.com/, insurance.us/, lintasberita.com/.
Other than the 3 mentioned sites, we also know that The Star is actually running Innity Ads but they have solved it pretty fast and The Star is working fine now..
But when Joshua searched on the Google Safe Browsing diagnostic page for thestar.com.my, it says..
What happened when Google visited this site?
Of the 902 pages we tested on the site over the past 90 days, 75 page(s) resulted in malicious software being downloaded and installed without user consent. The last time Google visited this site was on 2010-09-19, and the last time suspicious content was found on this site was on 2010-09-19.Malicious software includes 63 scripting exploit(s).
Malicious software is hosted on 3 domain(s), including 2117966.net/, cnjug.com/, innity.net/.
3 domain(s) appear to be functioning as intermediaries for distributing malware to visitors of this site, including skyad.net/, doubleclick.net/, innity.com/.
This site was hosted on 3 network(s) including AS10204 (ARCNET), AS17547 (QALA), AS2042 (ERX).
*Printscreen of the page to support what I’ve quoted*
People started noticing this “attack” after some people tweeted bout it where you can search “innity” it on Twitter Search page..
Other than proofs from Google, DataKL Solutions also blogged about “Innity Ad Code Causing Reported Attack Page”..
Now don’t be surprised if you found out your blog/website appeared to be harmful
The solution is to temporarily remove the ad code in your blog/website by using Internet Explorer or Safari because these 2 browsers were not affected by the malware..
To date as of 6am, 20th September 2010, it’s reported that this malware has infected more than 644 domains including xaluan.com, cari.com.my, and gudanglagu.com..
Check out Joshua’s – Malware Attack on More than 600 Domains/Blogs/Sites With Innity Ad Code Affected..