Hidden_iframe in pixel.adsafeprotected.com

On 2018-07-09T16:14:57.722434+00:00 we found suspicious pattern Hidden_iframe, type: Suspicious, (Detect JavaScript injecting IFRAME injection using various HTML and CSS attributes to hide it.) in the page https://pixel.adsafeprotected.com/jload… referenced from http://cnn.com/ .

The suspicious code sample:

document.write( … document.write( … <iframe … display:none

This feature is experimental so please feel free to contact us if you feel any of the reported issues is a false positive or you want to suggest a pattern that should be detected (we are using Yara standard).

