Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=img1.picbar.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://img1.picbar.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Scanned pages/files
Request | Server response | Status |
http://img1.picbar.com/ | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 19 Sep 2014 20:36:28 GMT Location: http://www.picbar.com/ Server: Apache/2.2.16 (Debian) Content-Length: 311 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.picbar.com/ | 200 OK Content-Length: 173907 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.andtube.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en"> <head> <meta name="viewport" content="width = device-width"> <meta name="viewport" content="user-scalable = yes"> <meta name="viewport" content="maximum-scale = 3.0"> <meta http-equiv="Content-Type" cont ...[4185 bytes skipped]... | ||
http://s7.addthis.com/js/152/addthis_widget.js | 200 OK Content-Length: 7921 Content-Type: text/javascript | clean |
http://www.lasporn.com/adv_manager_pbr.js | 200 OK Content-Length: 6992 Content-Type: application/javascript | suspicious |
Page code contains blacklisted domain: picbar.com if (navigator.cookieEnabled) { var pop_under = null; var pop_cookie_name = "adv_manager_set"; var pop_timeout = 3; var pop_rand = 2; function pop_cookie_enabled() { var is_enabled = false; if (!window.opera && !navigator.cookieEnabled) return is_enabled; if (typeof document.cookie == 'string') { if (document.cookie.length == 0) { document.cookie = "test"; ...[4026 bytes skipped]... | ||
http://img1.picbar.com/index.php?page=rss | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 19 Sep 2014 20:36:30 GMT Location: http://www.picbar.com/index.php?page=rss Server: Apache/2.2.16 (Debian) Content-Length: 329 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.picbar.com/index.php?page=rss | 200 OK Content-Length: 49439 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.andtube.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en"> <head> <meta name="viewport" content="width = device-width"> <meta name="viewport" content="user-scalable = yes"> <meta name="viewport" content="maximum-scale = 3.0"> <meta http-equiv="Content-Type" cont ...[4178 bytes skipped]... | ||
http://s7.addthis.com/js/250/addthis_widget.js | 200 OK Content-Length: 6875 Content-Type: text/javascript | clean |
http://pu.plugrush.com/n3m.js | 200 OK Content-Length: 3542 Content-Type: text/javascript | clean |
http://img1.picbar.com/index.php?page=ptb | HTTP/1.1 301 Moved Permanently Connection: close Date: Fri, 19 Sep 2014 20:36:31 GMT Location: http://www.picbar.com/index.php?page=ptb Server: Apache/2.2.16 (Debian) Content-Length: 329 Content-Type: text/html; charset=iso-8859-1 | clean |
http://www.picbar.com/index.php?page=ptb | 200 OK Content-Length: 129882 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.andtube.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en"> <head> <meta name="viewport" content="width = device-width"> <meta name="viewport" content="user-scalable = yes"> <meta name="viewport" content="maximum-scale = 3.0"> <meta http-equiv="Content-Type" cont ...[4178 bytes skipped]... | ||
http://www.picbar.com/index.php?page=vic | 200 OK Content-Length: 90691 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.andtube.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en"> <head> <meta name="viewport" content="width = device-width"> <meta name="viewport" content="user-scalable = yes"> <meta name="viewport" content="maximum-scale = 3.0"> <meta http-equiv="Content-Type" cont ...[4178 bytes skipped]... | ||
http://www.picbar.com/index.php?page=gal | 200 OK Content-Length: 59715 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.andtube.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en"> <head> <meta name="viewport" content="width = device-width"> <meta name="viewport" content="user-scalable = yes"> <meta name="viewport" content="maximum-scale = 3.0"> <meta http-equiv="Content-Type" cont ...[4178 bytes skipped]... | ||
http://www.picbar.com/index.php?page=tgp | 200 OK Content-Length: 75707 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.andtube.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en"> <head> <meta name="viewport" content="width = device-width"> <meta name="viewport" content="user-scalable = yes"> <meta name="viewport" content="maximum-scale = 3.0"> <meta http-equiv="Content-Type" cont ...[4178 bytes skipped]... | ||
http://www.picbar.com/index.php?page=rec | 200 OK Content-Length: 67183 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.andtube.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en"> <head> <meta name="viewport" content="width = device-width"> <meta name="viewport" content="user-scalable = yes"> <meta name="viewport" content="maximum-scale = 3.0"> <meta http-equiv="Content-Type" cont ...[4168 bytes skipped]... | ||
http://www.picbar.com/index.php?page=gam | 200 OK Content-Length: 38043 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.andtube.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en"> <head> <meta name="viewport" content="width = device-width"> <meta name="viewport" content="user-scalable = yes"> <meta name="viewport" content="maximum-scale = 3.0"> <meta http-equiv="Content-Type" cont ...[4178 bytes skipped]... | ||
http://www.picbar.com/index.php?page=pon | 200 OK Content-Length: 59020 Content-Type: text/html | suspicious |
Page code contains blacklisted domain: www.andtube.com <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en"> <head> <meta name="viewport" content="width = device-width"> <meta name="viewport" content="user-scalable = yes"> <meta name="viewport" content="maximum-scale = 3.0"> <meta http-equiv="Content-Type" cont ...[4178 bytes skipped]... | ||
http://www.picbar.com/index.php?page=sit | 200 OK Content-Length: 300980 Content-Type: text/html | clean |
http://www.picbar.com/goto.php?http://www.sweetpartychicks.com/t1/revs=lasporn/videos_recent.php | HTTP/1.1 302 Found Connection: close Date: Fri, 19 Sep 2014 20:36:41 GMT Location: http://www.sweetpartychicks.com/t1/revs=lasporn/videos_recent.php Server: Apache/2.2.16 (Debian) Content-Length: 0 Content-Type: text/html X-Powered-By: PHP/5.3.3-7+squeeze19 | clean |
http://www.sweetpartychicks.com/t1/revs=lasporn/videos_recent.php | HTTP/1.1 302 Found Connection: close Date: Fri, 19 Sep 2014 20:36:43 GMT Location: http://join.sweetpartychicks.com/track/lasporn:revshare:spc/ Server: Apache Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html | clean |
http://join.sweetpartychicks.com/track/lasporn:revshare:spc/ | HTTP/1.1 302 Found Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Connection: close Date: Fri, 19 Sep 2014 20:36:43 GMT Pragma: no-cache Location: http://www.sweetpartychicks.com/t2/?nats=lasporn.1.15.15.0.0.0.0.0 Server: Apache/2.2.22 (Ubuntu) Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html Expires: Thu, 19 Nov 1981 08:52:00 GMT Set-Cookie: PHPSESSID=f2kttjmrsv4lk1gnj6qk7ir842; path=/ Set-Cookie: nats=lasporn.1.15.15.0.0.0.0.0; expires=Sun, 19-Oct-2014 20:36:44 GMT; path=/; domain=sweetpartychicks.com Set-Cookie: nats_cookie=No%2BReferring%2BURL; expires=Sun, 19-Oct-2014 20:36:44 GMT; path=/; domain=sweetpartychicks.com Set-Cookie: nats_unique=lasporn.1.15.15.0.0.0.0.0; expires=Sat, 20-Sep-2014 20:36:44 GMT; path=/; domain=sweetpartychicks.com Set-Cookie: nats_sess=eb92816217364a4b07fa7bf43171887a; expires=Sun, 28-Dec-2014 20:36:44 GMT; path=/; domain=sweetpartychicks.com X-Powered-By: PHP/5.3.10-1ubuntu3.14 | clean |
http://www.sweetpartychicks.com/t2/?nats=lasporn.1.15.15.0.0.0.0.0 | 200 OK Content-Length: 124032 Content-Type: text/html | clean |
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: img1.picbar.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Fri, 19 Sep 2014 20:36:28 GMT
Location: http://www.picbar.com/
Server: Apache/2.2.16 (Debian)
Content-Length: 311
Content-Type: text/html; charset=iso-8859-1
...311 bytes of data.
GET / HTTP/1.1
Host: img1.picbar.com
Result:
HTTP/1.1 301 Moved Permanently
Connection: close
Date: Fri, 19 Sep 2014 20:36:28 GMT
Location: http://www.picbar.com/
Server: Apache/2.2.16 (Debian)
Content-Length: 311
Content-Type: text/html; charset=iso-8859-1
...311 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: img1.picbar.com
Referer: http://www.google.com/search?q=img1.picbar.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: img1.picbar.com
Referer: http://www.google.com/search?q=img1.picbar.com
Result:
The result is similar to the first query. There are no suspicious redirects found.