We received a notice from our SEO crawling service (Raven Tools) that Google Analytics was not appearing on all pages of our site. Upon investigation we saw that the pages where the Sharethis module script is running, the Google Analytics code is not running.

On the pages that Sharethis was on, we have a whole bunch of other scripts which we didn't necessarily ask for, from the following domains:

  • vindicosuite.com
  • scorecardresearch.com
  • adadvisor.net
  • agkn.com
  • dps.bing.com
  • idsync.rlcdn.com
  • adsymptotic.com
  • rfihub.com
  • gwallet.com
  • tapestry.tapad.com
  • track2.securedvisit.com
  • etc - always a little different.

What i've found online regarding this issue only referred to SiteMeter adding this code - but we don't use SiteMeter, and the code goes away when ShareThis module is disabled, so it appears to be this module. See here:

http://dave-lucas.blogspot.co.za/2015/03/what-is-xvindicosuitecom.html

I've done a diff on the module i have installed, and one downloaded from drupal.org a moment ago, and there's no malicious code in our copy of the module - both are identical.

For now, i've disabled ShareThis on our client's sites until we can get to the bottom of this, but i've re-enabled the ShareThis Module on the staging site - see here:

http://www.altgenlive.getsbenchmarked.co.za/mission

What's interesting is that after disabling and re-enabling ShareThis, Google Analytics code is now loading, but so are these other dodgy-sounding scripts - so i have a feeling that GA stopped itself from tracking those pages when it noticed the other code on there - i don't know, that's a wild-stab-gut-feel with nothing to back it up by way of evidence.

Comments

onepartscissors created an issue. See original summary.

onepartscissors’s picture

Category: Support request » Bug report
Priority: Major » Critical
apaderno’s picture

Version: 7.x-2.12 » 7.x-2.x-dev
Issue summary: View changes
Issue tags: -google analytics, -vindicosuite.com, -scorecardresearch.com, -adadvisor.net, -agkn.com, -dps.bing.com, -idsync.rlcdn.com, -adsymptotic.com, -rfihub.com, -gwallet.com, -tapestry.tapad.com, -track2.securedvisit.com