no donkey in this race but how sure this is not you and your circumstances rather than the site itself? Living in certain countries my ISP used to inject all sort of nonsense into every unencrypted site they could.
Anyone not using tls these days is intentionally exposing their readers to harm, which you seem to be experiencing.
Personally I won't view such sites on principle and block them with https-everywhere, though guessing many others do allow it, due to being the default setting worldwide.