Saturday, August 2, 2025
  • Hype
  • Murai
  • Lipstiq
  • Miss Murai
  • Varnam
  • Moviedash
  • Autofreaks
Lowyat.NET
  • News
    • Lifestyle
    • Computing
    • Hardware
    • Internet
    • Rumours & Leaks
    • Software
  • Forums
    • Kopitiam
    • Tradezone
    • Property Talk
    • Finance & Business
    • Fast and Furious
  • Gaming
    • PC Gaming
    • Console
    • Esports
  • Mobile
    • Apps
    • OS
    • Tablets
    • Phones
    • Telco
      • Celcom
      • DiGi
      • Maxis
      • Tune Talk
      • U Mobile
      • Buzzme
  • Pricelists
    • Compu-zoneUpdated
    • ViewnetUpdated
    • Sri ComputersUpdated
    • StartecUpdated
  • More
    • Automotive Tech
    • Drone
    • Enterprise
    • Entertainment
    • Fashion
    • E-Hailing
    • Wearables
No Result
View All Result
Lowyat.NET
  • News
    • Lifestyle
    • Computing
    • Hardware
    • Internet
    • Rumours & Leaks
    • Software
  • Forums
    • Kopitiam
    • Tradezone
    • Property Talk
    • Finance & Business
    • Fast and Furious
  • Gaming
    • PC Gaming
    • Console
    • Esports
  • Mobile
    • Apps
    • OS
    • Tablets
    • Phones
    • Telco
      • Celcom
      • DiGi
      • Maxis
      • Tune Talk
      • U Mobile
      • Buzzme
  • Pricelists
    • Compu-zoneUpdated
    • ViewnetUpdated
    • Sri ComputersUpdated
    • StartecUpdated
  • More
    • Automotive Tech
    • Drone
    • Enterprise
    • Entertainment
    • Fashion
    • E-Hailing
    • Wearables
No Result
View All Result
Lowyat.NET
No Result
View All Result
Home ISP

TM Redirects Users To Advertisement Page When They Visit Non-Existent Websites

by Chief Chapree
September 13, 2018
Menara TM
1k
SHARES
Share on FacebookShare on Twitter

It has come to our attention that users that are browsing the Internet through TM’s network could be directed to a TM hosted page when they try to visit a non-existent website. While we were only notified about it earlier today, it has apparently been in place for the past few years.

In general, what happens is that users would be presented with a customized 404 not found page if they visited a website that doesn’t have a valid DNS entry. This particular website which apparently belongs to Yellow Pages Malaysia, itself a subsidiary of TM, would notify users that their web page could not be found alongside an advertisement banner.

The web page also contains a search box that links directly to Yellow Pages Malaysia’s website. Here is the difference between the rerouted page and standard error message for unresolved web address (also known as NXDOMAIN response) on Chrome:

Based on our experiment via unifi’s network, the rerouting will be triggered if users are using TM’s DNS settings. Once we switched to Google DNS (both IPv4 and IPV6), we would then receive the standard NXDOMAIN error message on Chrome instead of ending up on the advertisement webpage.

As mentioned earilier, this is nothing new and has been going on for the past few years. Local tech and security expert, Keith Rozario has actually mentioned this on his blog back in 2014 and has also pointed out several posts on Lowyat.NET Forums that mentioned similar cases in 2013.

Additionally, we have also noticed a blog that was created in 2016 which focused on advertisers that appear through TM. However, it seemed that the blog author only tracked them for two months.

ALSO READ:  Unifi TV x Max: Unlock the Full “The Last of Us” Season 2 Experience
The advertisement page sure looked rather different back in 2013.

While the means to do this isn’t exactly new, there is a pressing need to question the necessity of this feature, as well as its potential for abuse. For example, the link in the screenshot above is pointing to http://test.lowyat.net, but its actually being served from a TM controlled server. This could easily be http://xyz.maybank2u.com.my or some other site which will still resolve to TM’s advertisement page.

From a more commercial standpoint, it is rather disappointing to see TM has decided to implement this as if the monthly Internet fee that consumers in Malaysia have to pay is not enough for the company that it sees a need to serve advertisements via unresolved DNS entries to its customers. Not to mention, it is being done without the users’ knowledge for such a long time.

A little more digging

After posting up this article, we decided to dig further into the technical details as well as the security implications of these ads appearing on almost every TM connected device.

The entire system itself doesn’t seem to belong to Telekom Malaysia or any of its subsidiaries. It belongs to a little known company by the name of Nervesis Sdn Bhd. The platform is called Midas, and from the description available on the website, seems to be a very specific system designed to run on TM’s network.

The page itself doubles up as an advertising page for potential clients, claiming to sell clicks as low as RM0.42 with the potential to reach ‘millions of Telekom Malaysia Subscribers’. It is safe to assume that the advertising via the Midas platform is controlled not by Telekom Malaysia, but by Nervesis Sdn Bhd.

ALSO READ:  Unifi Offers Free Access To Vidio Streaming Service Until 23 April

The next obvious question we have to ask is, are TM customers aware of this arrangement, and was proper consent provided by TM customers to be directed to a 3rd party controlled site whenever a wrong or non-existent url is keyed into a browser.

Consent aside, security is the next key issue that we need to look at. From our checks, users are directed to a page, that is hosted on a server which we strongly believe is not hosted or controlled by Telekom Malaysia. This particular server, which also resolves domains like gaban.tk, 005tc.com and  002tc.com, we believe is a local nginx proxy which then pulls out an iframe, from Nervesis’ own CDN servers which are hosted in the United States. This iframe then pulls out another script from another 3rd party website at smartadserver.com. None of these servers provide any kind of encryption for the communications between them.

Now here comes the kicker. The page that is being served to a user when they accidentally type in a wrong url clocks in at over 500KB. The default chrome NXDOMAIN page will display a not found error without consuming any data.

How many times have you seen the TM 404 page not found today?

(Additional insights by Vijandren Ramadass. Thank you to Andrey Korenkov for the tips!)

Filed Under streamyxtelekom malaysiaTMunifi
Updated 5:17 pm, Fri, 14 September 18
http://lowy.at/mA4PR
Share404Tweet252SendShare

Follow us on Instagram, Facebook, Twitter or Telegram for more updates and breaking news. 

No Result
View All Result

TRENDING THIS WEEK

  1. 1
    Action Cameras

    AKASO 360 Lands In Malaysia; Starts From RM899

  2. 2
    News

    Intel To Consolidate Chip Assembly And Test Operations In Malaysia

  3. 3
    How-To's

    RM100 SARA: How To Redeem, And Everything Else You Need To Know

  4. 4
    Hardware

    Hypershell Exoskeleton Now Available In Malaysia From RM4,999

  5. 5
    Random As It Gets

    Someone Patented This Controller Design

NETWORK

  • Hype
  • Murai
  • Lipstiq
  • Miss Murai
  • Varnam
  • Moviedash
  • Autofreaks

ABOUT

  • Advertise
  • Careers
  • Privacy Statement
  • Contact Us
  • Editorial Policy
  • Terms & Conditions

©2025 VIJANDREN RAMADASS. ALL RIGHTS RESERVED.

No Result
View All Result
  • News
    • Lifestyle
    • Computing
    • Hardware
    • Internet
    • Rumours & Leaks
    • Software
  • Forums
    • Kopitiam
    • Tradezone
    • Property Talk
    • Finance & Business
    • Fast and Furious
  • Gaming
    • PC Gaming
    • Console
    • Esports
  • Mobile
    • Apps
    • OS
    • Tablets
    • Phones
    • Telco
      • Celcom
      • DiGi
      • Maxis
      • Tune Talk
      • U Mobile
      • Buzzme
  • Pricelists
    • Compu-zone
    • Viewnet
    • Sri Computers
    • Startec
  • More
    • Automotive Tech
    • Drone
    • Enterprise
    • Entertainment
    • Fashion
    • E-Hailing
    • Wearables

©2025 VIJANDREN RAMADASS. ALL RIGHTS RESERVED.

No Result
View All Result
  • News
    • Lifestyle
    • Computing
    • Hardware
    • Internet
    • Rumours & Leaks
    • Software
  • Forums
    • Kopitiam
    • Tradezone
    • Property Talk
    • Finance & Business
    • Fast and Furious
  • Gaming
    • PC Gaming
    • Console
    • Esports
  • Mobile
    • Apps
    • OS
    • Tablets
    • Phones
    • Telco
      • Celcom
      • DiGi
      • Maxis
      • Tune Talk
      • U Mobile
      • Buzzme
  • Pricelists
    • Compu-zone
    • Viewnet
    • Sri Computers
    • Startec
  • More
    • Automotive Tech
    • Drone
    • Enterprise
    • Entertainment
    • Fashion
    • E-Hailing
    • Wearables

©2025 VIJANDREN RAMADASS. ALL RIGHTS RESERVED.