Seems that Pernaman already warned against this. Seems that we can confirm his fears.
Here we should also consider that a lot of sub-sites at tumblr dot com are smut sites or sites with explicit content,
and whould therefore be shunned.
See tested: http://test.watchscript.com/ → Sprawdzany adres www: -http://losmakemanus.tumblr.com
See: https://www.virustotal.com/nl/domain/losmakemanus.tumblr.com/information/
Various external links could be blocked for ad-tracking: https://urlquery.net/report.php?id=1448904269397
but are not flagged at urlquery…
iFramecheck: Suspicious
-http://assets.tumblr.com/assets/html/like_iframe.html?_v=7e54d4bd89ee867096df32769aefa90c#name=losma’
-http://assets.tumblr.com/assets/html/like_iframe.html?_v=7e54d4bd89ee867096df32769aefa90c#name=losma’
-http://assets.tumblr.com/assets/html/like_iframe.html?_v=7e54d4bd89ee867096df32769aefa90c#name=losma’
’
-https://secure.assets.tumblr.com/assets/html/iframe/o.html?_v=321e518cb9b2cf082d604d6757c75da1#src=h’
-http://assets.tumblr.com/assets/html/iframe/teaser.html?_v=45631c19c03dbcf0e4dc673313d6c70d#src=http’
Google browser difference: Not identical
Google: 60663 bytes Firefox: 60544 bytes
Diff: 119 bytes
First difference:
tics.html?2c21d514373b9221f5a5041b0dfb079f#" + “-http://losmakemanus.tumblr.com”; function postgamessage() { if (analytics_ifr…
tumblelog.js is not being flagged by VT. → http://www.domxssscanner.com/scan?url=http%3A%2F%2Fassets.tumblr.com%2Fassets%2Fscripts%2Ftumblelog.js%3F_v%3D454fc1618d865ba96c0749de3c9277c9
See advice: http://stylebot.me/styles/9350 gif not being blocked by ABP!
a try out of it locally
: https://github.com/vikki/fatmanonfilm/blob/master/example_files/iframe.html
and consider: http://codepen.io/mooshlam/pen/jKCxp.html
our pen example → http://codepen.io/anon/pen/zvgayN
polonus (volunteer website security analyst and website error-hunter)