Safe Browsing / Blacklists
Query: http://www.google.com/safebrowsing/diagnostic?site=totalpict.com
Result: This site is not currently listed as suspicious.
Result: This site is not currently listed as suspicious.
Query: http://yandex.com/infected?l10n=en&url=http://totalpict.com/
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Result: The website is marked by Yandex as suspicious. - visiting this web site may harm your computer.
Details are available here.
Malicious Redirects
First query (normal visit):
GET / HTTP/1.1
Host: totalpict.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 01 Oct 2014 06:30:41 GMT
Server: Apache/2.2.15 (CentOS)
Content-Length: 2123
Content-Type: text/html; charset=utf-8
X-Powered-By: PHP/5.3.3
...2123 bytes of data.
GET / HTTP/1.1
Host: totalpict.com
Result:
HTTP/1.1 200 OK
Connection: close
Date: Wed, 01 Oct 2014 06:30:41 GMT
Server: Apache/2.2.15 (CentOS)
Content-Length: 2123
Content-Type: text/html; charset=utf-8
X-Powered-By: PHP/5.3.3
...2123 bytes of data.
Second query (visit from search engine):
GET / HTTP/1.1
Host: totalpict.com
Referer: http://www.google.com/search?q=totalpict.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
GET / HTTP/1.1
Host: totalpict.com
Referer: http://www.google.com/search?q=totalpict.com
Result:
The result is similar to the first query. There are no suspicious redirects found.
Scanned pages/files
Request | Server response | Status |
http://totalpict.com/ | 200 OK Content-Length: 2123 Content-Type: text/html | clean |
http://totalpict.com/steve%20jobs | 200 OK Content-Length: 15523 Content-Type: text/html | clean |
http://t.adonly.com/core/tag.js?SI=5549&TYPE=banner&SIZE=5 | 200 OK Content-Length: 950 Content-Type: application/x-javascript | clean |
http://t.adonly.com/core/tag.js?SI=5549&TYPE=banner&SIZE=3 | 200 OK Content-Length: 950 Content-Type: application/x-javascript | clean |
https://apis.google.com/js/plusone.js | 200 OK Content-Length: 12497 Content-Type: application/javascript | clean |
http://totalpict.com/b/steve jobs/1/186159 | 200 OK Content-Length: 3163 Content-Type: text/html | clean |
http://t.adonly.com/core/tag.js?SI=5549&TYPE=banner&SIZE=1 | 200 OK Content-Length: 950 Content-Type: application/x-javascript | clean |
http://t.adonly.com/core/tag.js?SI=5549&TYPE=slider&SIZE=5&POSITION=bottom | 200 OK Content-Length: 950 Content-Type: application/x-javascript | clean |
http://totalpict.com/steve jobs | 200 OK Content-Length: 15400 Content-Type: text/html | clean |
http://totalpict.com/b/steve jobs/2/186159 | 200 OK Content-Length: 3083 Content-Type: text/html | clean |
http://totalpict.com/test404page.js | 404 Not Found Content-Length: 2734 Content-Type: text/html | clean |
http://t.adonly.com/core/tag.js?SI=5549&TYPE=interstitial&SIZE=6&poptimes=2&tw=1 | 200 OK Content-Length: 950 Content-Type: application/x-javascript | clean |
http://totalpict.com/dosage lipitor medication | 200 OK Content-Length: 16741 Content-Type: text/html | clean |
http://totalpict.com/b/dosage lipitor medication/1/115577 | 200 OK Content-Length: 3373 Content-Type: text/html | clean |
http://totalpict.com/b/dosage lipitor medication/2/115577 | 200 OK Content-Length: 3482 Content-Type: text/html | clean |