HabitableZone

Geek Speak » in reply to failed HTML

Don't touch it, it's evil!

Before I said yes, I took a look at one of the files at those links. Don't try this at home, kids--I use a linux program that downloads the HTML without running it. It's safely dead by the time I look at it.

The page overall was copied from a wikileaks article on the topic of the keyword. Might have been fetched based on the keyword in the URL.

But the file is altered in several ways. It loads a JavaScript file from another site. This may be malware, though at first glance it looks innocuous. The page is altered to add a blurb and links to a product, in the case of the "cookbook", the result was links to a cookbook for sale in a wikileak article on dog cookbooks.

The script is from http://www.taofengen.com/f/getbetterhealthway.js.

It might just be seriously aggressive spam. But it might drop malware, and there's no reason to think those sites might not be built for both missions.

I wouldn't encourage people to go to these sites by publishing the links. There are way fewer sites than links, so it might be feasible to google the site names for intelligence.

Log in or register to post.

The whole thread (16 posts)

Related discussions