1. Cross-site scripting (reflected)
2. Cleartext submission of password
2.1. http://www.upi.com/upi_comments/form
2.2. http://www.upi.com/upi_comments/form
3. Password field submitted using GET method
3.1. http://www.upi.com/upi_comments/form
3.2. http://www.upi.com/upi_comments/form
4. Password field with autocomplete enabled
5. Cookie scoped to parent domain
6. Cross-domain Referer leakage
6.3. http://www.upi.com/Top_News/US/2011/06/02/Joplin-tornado-death-toll-at-138/UPI-44341307053669/
7. Cross-domain script include
7.3. http://www.upi.com/Top_News/US/2011/06/02/Joplin-tornado-death-toll-at-138/UPI-44341307053669/
7.6. http://www.upi.com/interclick.htm
8. Cookie without HttpOnly flag set
9. Credit card numbers disclosed
10. HTML does not specify charset
10.1. http://www.upi.com/interclick.htm
10.2. http://www.upi.com/ss/em/more/News/
10.3. http://www.upi.com/ss/em/more/Photos_of_the_Day/
10.4. http://www.upi.com/upi_comments/form
10.5. http://www.upi.com/upi_comments/io
11. Content type incorrectly stated
11.1. http://www.upi.com/img/graphics/zoomin.cur
11.2. http://www.upi.com/upi_comments/io
Severity: | High |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /Business_News/2011/06/02 |
GET /Business_News/2011/06/02 Host: www.upi.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Server: Apache/2.2.17 (Unix) PHP/5.3.5 X-Powered-By: PHP/5.3.5 Pragma: public Cache-Control: maxage=180 Expires: Fri, 03 Jun 2011 01:30:27 GMT Content-Type: text/html X-Pad: avoid browser bug Content-Length: 63003 Date: Fri, 03 Jun 2011 01:27:27 GMT X-Varnish: 1334566028 Age: 0 Via: 1.1 varnish Connection: close <!DOCTYPE html> <html lang="en"> <head> <title>For Goldman, a subpoena, business as usual - UPI.com</title> <meta name="robots" content="all" /> <meta name="description" content="Financial giant G ...[SNIP]... <script type="text/javascript"> var _gaq = _gaq || []; _gaq.push(['_setAccount', 'UA-1342607-1']); _gaq.push(['_setCustomVar (function() { var ga = document.createElement( ga.src = ('https:' == document.location ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /Business_News/2011/06/02 |
GET /Business_News/2011/06/02 Host: www.upi.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Server: Apache/2.2.15 (Unix) PHP/5.3.3 X-Powered-By: PHP/5.3.3 Pragma: public Cache-Control: maxage=180 Expires: Fri, 03 Jun 2011 01:30:26 GMT Content-Type: text/html X-Pad: avoid browser bug Content-Length: 63003 Date: Fri, 03 Jun 2011 01:27:26 GMT X-Varnish: 1334566004 Age: 0 Via: 1.1 varnish Connection: close <!DOCTYPE html> <html lang="en"> <head> <title>For Goldman, a subpoena, business as usual - UPI.com</title> <meta name="robots" content="all" /> <meta name="description" content="Financial giant G ...[SNIP]... <script type="text/javascript"> var _gaq = _gaq || []; _gaq.push(['_setAccount', 'UA-1342607-1']); _gaq.push(['_setCustomVar (function() { var ga = document.createElement( ga.src = ('https:' == document.location.protoco ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /Top_News/US/2011/06/02 |
GET /Top_News/US/2011/06/02 Host: www.upi.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Server: Apache/2.2.15 (Unix) PHP/5.3.2 X-Powered-By: PHP/5.3.2 Pragma: public Cache-Control: maxage=180 Expires: Fri, 03 Jun 2011 01:30:30 GMT Content-Type: text/html X-Pad: avoid browser bug Content-Length: 62545 Date: Fri, 03 Jun 2011 01:27:30 GMT X-Varnish: 1334566135 Age: 1 Via: 1.1 varnish Connection: close <!DOCTYPE html> <html lang="en"> <head> <title>Joplin tornado death toll at 138 - UPI.com</title> <meta name="robots" content="all" /> <meta name="description" content="With all citizens accounted ...[SNIP]... <script type="text/javascript"> var _gaq = _gaq || []; _gaq.push(['_setAccount', 'UA-1342607-1']); _gaq.push(['_setCustomVar (function() { var ga = document.createElement( ga.src = ('https:' == document.location ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /Top_News/US/2011/06/02 |
GET /Top_News/US/2011/06/02 Host: www.upi.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Server: Apache/2.2.17 (Unix) PHP/5.3.6 X-Powered-By: PHP/5.3.6 Pragma: public Cache-Control: maxage=180 Expires: Fri, 03 Jun 2011 01:30:29 GMT Content-Type: text/html X-Pad: avoid browser bug Content-Length: 62545 Date: Fri, 03 Jun 2011 01:27:29 GMT X-Varnish: 1334566105 Age: 0 Via: 1.1 varnish Connection: close <!DOCTYPE html> <html lang="en"> <head> <title>Joplin tornado death toll at 138 - UPI.com</title> <meta name="robots" content="all" /> <meta name="description" content="With all citizens accounted ...[SNIP]... <script type="text/javascript"> var _gaq = _gaq || []; _gaq.push(['_setAccount', 'UA-1342607-1']); _gaq.push(['_setCustomVar (function() { var ga = document.createElement( ga.src = ('https:' == document.location.protoco ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /Top_News/US/2011/06/02 |
GET /Top_News/US/2011/06/02 Host: www.upi.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Fri, 03 Jun 2011 01:27:29 GMT Server: Apache/2.2.17 (Unix) PHP/5.3.5 X-Powered-By: PHP/5.3.5 Pragma: public Cache-Control: maxage=180 Expires: Fri, 03 Jun 2011 01:30:29 GMT Connection: close Content-Type: text/html Content-Length: 64288 <!DOCTYPE html> <html lang="en"> <head> <title>Obama: Cut deficit, preserve Medicare - UPI.com</title> <meta name="robots" content="all" /> <meta name="description" content="U.S. President Barack ...[SNIP]... <script type="text/javascript"> var _gaq = _gaq || []; _gaq.push(['_setAccount', 'UA-1342607-1']); _gaq.push(['_setCustomVar (function() { var ga = document.createElement( ga.src = ('https:' == document.location ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /Top_News/US/2011/06/02 |
GET /Top_News/US/2011/06/02 Host: www.upi.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Date: Fri, 03 Jun 2011 01:27:28 GMT Server: Apache/2.2.17 (Unix) PHP/5.3.5 X-Powered-By: PHP/5.3.5 Pragma: public Cache-Control: maxage=180 Expires: Fri, 03 Jun 2011 01:30:28 GMT Connection: close Content-Type: text/html Content-Length: 64288 <!DOCTYPE html> <html lang="en"> <head> <title>Obama: Cut deficit, preserve Medicare - UPI.com</title> <meta name="robots" content="all" /> <meta name="description" content="U.S. President Barack ...[SNIP]... <script type="text/javascript"> var _gaq = _gaq || []; _gaq.push(['_setAccount', 'UA-1342607-1']); _gaq.push(['_setCustomVar (function() { var ga = document.createElement( ga.src = ('https:' == document.location.protoco ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /upi_comments/form |
POST /upi_comments/form HTTP/1.1 Host: www.upi.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html, */*; q=0.01 Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Content-Type: application/x-www-form X-Requested-With: XMLHttpRequest Referer: http://www.upi.com Content-Length: 3 Cookie: __gads=ID=4668bd5b9a Pragma: no-cache Cache-Control: no-cache ns& |
HTTP/1.1 200 OK Server: Apache/2.2.15 (Unix) PHP/5.3.3 X-Powered-By: PHP/5.3.3 Content-Type: text/html Content-Length: 4752 Date: Fri, 03 Jun 2011 01:30:23 GMT X-Varnish: 1334573043 Age: 0 Via: 1.1 varnish Connection: keep-alive <div style="color: #333333; margin-bottom: 11px; float: right;"> <table cellpadding="0" cellspacing="0" border="0"> <tr> <td> <div class="user_tools ut_btn" id="u ...[SNIP]... <div class="user_tools_box" id="upi_login_box"> <form onsubmit="upi_comments <div class="label"> ...[SNIP]... </div> <input type="password" name="passwd" class="rnded uc_l_in uc_upi_l uc_grey" value="password" onfocus="upi_comments <br> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /upi_comments/form |
POST /upi_comments/form HTTP/1.1 Host: www.upi.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html, */*; q=0.01 Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Content-Type: application/x-www-form X-Requested-With: XMLHttpRequest Referer: http://www.upi.com Content-Length: 3 Cookie: __gads=ID=4668bd5b9a Pragma: no-cache Cache-Control: no-cache ns& |
HTTP/1.1 200 OK Server: Apache/2.2.15 (Unix) PHP/5.3.3 X-Powered-By: PHP/5.3.3 Content-Type: text/html Content-Length: 4752 Date: Fri, 03 Jun 2011 01:30:23 GMT X-Varnish: 1334573043 Age: 0 Via: 1.1 varnish Connection: keep-alive <div style="color: #333333; margin-bottom: 11px; float: right;"> <table cellpadding="0" cellspacing="0" border="0"> <tr> <td> <div class="user_tools ut_btn" id="u ...[SNIP]... <div class="user_tools_box" id="upi_reg_box" style="width: 387px;"> <form onsubmit="upi_comments <div style="float: left; margin-right: 11px;"> ...[SNIP]... </div> <input type="password" autocomplete="off" name="passwd" class="rnded uc_l_in uc_upi_reg"> <div class="label"> ...[SNIP]... </div> <input type="password" autocomplete="off" name="passwdb" class="rnded uc_l_in uc_upi_reg"> </div> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /upi_comments/form |
POST /upi_comments/form HTTP/1.1 Host: www.upi.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html, */*; q=0.01 Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Content-Type: application/x-www-form X-Requested-With: XMLHttpRequest Referer: http://www.upi.com Content-Length: 3 Cookie: __gads=ID=4668bd5b9a Pragma: no-cache Cache-Control: no-cache ns& |
HTTP/1.1 200 OK Server: Apache/2.2.15 (Unix) PHP/5.3.3 X-Powered-By: PHP/5.3.3 Content-Type: text/html Content-Length: 4752 Date: Fri, 03 Jun 2011 01:30:23 GMT X-Varnish: 1334573043 Age: 0 Via: 1.1 varnish Connection: keep-alive <div style="color: #333333; margin-bottom: 11px; float: right;"> <table cellpadding="0" cellspacing="0" border="0"> <tr> <td> <div class="user_tools ut_btn" id="u ...[SNIP]... <div class="user_tools_box" id="upi_login_box"> <form onsubmit="upi_comments <div class="label"> ...[SNIP]... </div> <input type="password" name="passwd" class="rnded uc_l_in uc_upi_l uc_grey" value="password" onfocus="upi_comments <br> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /upi_comments/form |
POST /upi_comments/form HTTP/1.1 Host: www.upi.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html, */*; q=0.01 Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Content-Type: application/x-www-form X-Requested-With: XMLHttpRequest Referer: http://www.upi.com Content-Length: 3 Cookie: __gads=ID=4668bd5b9a Pragma: no-cache Cache-Control: no-cache ns& |
HTTP/1.1 200 OK Server: Apache/2.2.15 (Unix) PHP/5.3.3 X-Powered-By: PHP/5.3.3 Content-Type: text/html Content-Length: 4752 Date: Fri, 03 Jun 2011 01:30:23 GMT X-Varnish: 1334573043 Age: 0 Via: 1.1 varnish Connection: keep-alive <div style="color: #333333; margin-bottom: 11px; float: right;"> <table cellpadding="0" cellspacing="0" border="0"> <tr> <td> <div class="user_tools ut_btn" id="u ...[SNIP]... <div class="user_tools_box" id="upi_reg_box" style="width: 387px;"> <form onsubmit="upi_comments <div style="float: left; margin-right: 11px;"> ...[SNIP]... </div> <input type="password" autocomplete="off" name="passwd" class="rnded uc_l_in uc_upi_reg"> <div class="label"> ...[SNIP]... </div> <input type="password" autocomplete="off" name="passwdb" class="rnded uc_l_in uc_upi_reg"> </div> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /upi_comments/form |
POST /upi_comments/form HTTP/1.1 Host: www.upi.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html, */*; q=0.01 Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Content-Type: application/x-www-form X-Requested-With: XMLHttpRequest Referer: http://www.upi.com Content-Length: 3 Cookie: __gads=ID=4668bd5b9a Pragma: no-cache Cache-Control: no-cache ns& |
HTTP/1.1 200 OK Server: Apache/2.2.15 (Unix) PHP/5.3.3 X-Powered-By: PHP/5.3.3 Content-Type: text/html Content-Length: 4752 Date: Fri, 03 Jun 2011 01:30:23 GMT X-Varnish: 1334573043 Age: 0 Via: 1.1 varnish Connection: keep-alive <div style="color: #333333; margin-bottom: 11px; float: right;"> <table cellpadding="0" cellspacing="0" border="0"> <tr> <td> <div class="user_tools ut_btn" id="u ...[SNIP]... <div class="user_tools_box" id="upi_login_box"> <form onsubmit="upi_comments <div class="label"> ...[SNIP]... </div> <input type="password" name="passwd" class="rnded uc_l_in uc_upi_l uc_grey" value="password" onfocus="upi_comments <br> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /img/acn.gif |
GET /img/acn.gif?acn=accounts Host: www.upi.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: image/png,image/*;q=0.8,* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.upi.com Cookie: __gads=ID=4668bd5b9a |
HTTP/1.1 200 OK Date: Fri, 03 Jun 2011 01:30:26 GMT Server: Apache/2.2.15 (Unix) PHP/5.3.3 X-Powered-By: PHP/5.3.3 Expires: Tues, 26 Apr 2011 05:00:00 GMT Last-Modified: Fri, 03 Jun 2011 01:30:26 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: upi_acn[accounts]=521460; path=/; domain=.upi.com Content-Length: 542 Content-Type: image/gif GIF87ap............DBD.. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /Business_News/2011/06/02 |
GET /Business_News/2011/06/02 Host: www.upi.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Server: Apache/2.2.15 (Unix) PHP/5.3.2 X-Powered-By: PHP/5.3.2 Pragma: public Cache-Control: maxage=180 Expires: Fri, 03 Jun 2011 01:30:16 GMT Content-Type: text/html X-Pad: avoid browser bug Content-Length: 62975 Date: Fri, 03 Jun 2011 01:27:16 GMT X-Varnish: 1334565641 1334565631 Age: 0 Via: 1.1 varnish Connection: close <!DOCTYPE html> <html lang="en"> <head> <title>For Goldman, a subpoena, business as usual - UPI.com</title> <meta name="robots" content="all" /> <meta name="description" content="Financial giant G ...[SNIP]... </script> <script type="text/javascript" src="https://ajax ...[SNIP]... </script> <script type="text/javascript" src="http://partner ...[SNIP]... </a> | <a href="http://www.upiu.com ...[SNIP]... <li><a href="http://upi.dealon ...[SNIP]... 07044985%2F&t=For+Goldman <a href="http://twitter.com ...[SNIP]... </script> <script type="text/javascript" src="http://pagead2 ...[SNIP]... </a> <a href="http://itunes.apple <a href="http://www.facebook <a href="http://twitter.com ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <div class="sponsored_links" <a rel="nofollow" target="_blank" href="http://www <a target="_blank" href="http://www <a target="_blank" href="http://www ...[SNIP]... <div style="display:none;"> <img src="//pixel.quantserve </div> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /Health_News/2011/06/02 |
GET /Health_News/2011/06/02 Host: www.upi.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Server: Apache/2.2.15 (Unix) PHP/5.3.2 X-Powered-By: PHP/5.3.2 Pragma: public Cache-Control: maxage=180 Expires: Fri, 03 Jun 2011 01:30:21 GMT Content-Type: text/html X-Pad: avoid browser bug Content-Length: 59259 Date: Fri, 03 Jun 2011 01:27:21 GMT X-Varnish: 794782908 Age: 0 Via: 1.1 varnish Connection: close <!DOCTYPE html> <html lang="en"> <head> <title>Food Pyramid out, half-plate of produce in - UPI.com</title> <meta name="robots" content="all" /> <meta name="description" content="The U.S. governme ...[SNIP]... </script> <script type="text/javascript" src="https://ajax ...[SNIP]... </script> <script type="text/javascript" src="http://partner ...[SNIP]... </a> | <a href="http://www.upiu.com ...[SNIP]... <li><a href="http://upi.dealon ...[SNIP]... 1307052474%2F&t=Food <a href="http://twitter.com ...[SNIP]... </a> <a href="http://itunes.apple <a href="http://www.facebook <a href="http://twitter.com ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <div class="sponsored_links" <a target="_blank" href="http://www <a target="_blank" href="http://www ...[SNIP]... <div style="display:none;"> <img src="//pixel.quantserve </div> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /Top_News/US/2011/06/02 |
GET /Top_News/US/2011/06/02 Host: www.upi.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Server: Apache/2.2.17 (Unix) PHP/5.3.6 X-Powered-By: PHP/5.3.6 Pragma: public Cache-Control: maxage=180 Expires: Fri, 03 Jun 2011 01:29:17 GMT Content-Type: text/html X-Pad: avoid browser bug Content-Length: 62517 Date: Fri, 03 Jun 2011 01:27:18 GMT X-Varnish: 1334565713 1334563718 Age: 61 Via: 1.1 varnish Connection: close <!DOCTYPE html> <html lang="en"> <head> <title>Joplin tornado death toll at 138 - UPI.com</title> <meta name="robots" content="all" /> <meta name="description" content="With all citizens accounted ...[SNIP]... </script> <script type="text/javascript" src="https://ajax ...[SNIP]... </script> <script type="text/javascript" src="http://partner ...[SNIP]... </a> | <a href="http://www.upiu.com ...[SNIP]... <li><a href="http://upi.dealon ...[SNIP]... 8%2FUPI-44341307053669%2F <a href="http://twitter.com ...[SNIP]... </script> <script type="text/javascript" src="http://pagead2 ...[SNIP]... </a> <a href="http://itunes.apple <a href="http://www.facebook <a href="http://twitter.com ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <div class="sponsored_links" <a target="_blank" href="http://www <a target="_blank" href="http://www.portland <a target="_blank" href="http://www ...[SNIP]... <div style="display:none;"> <img src="//pixel.quantserve </div> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /Top_News/US/2011/06/02 |
GET /Top_News/US/2011/06/02 Host: www.upi.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Server: Apache/2.2.17 (Unix) PHP/5.3.5 X-Powered-By: PHP/5.3.5 Pragma: public Cache-Control: maxage=180 Expires: Fri, 03 Jun 2011 01:30:17 GMT Content-Type: text/html X-Pad: avoid browser bug Content-Length: 64260 Date: Fri, 03 Jun 2011 01:27:17 GMT X-Varnish: 1334565683 1334565655 Age: 1 Via: 1.1 varnish Connection: close <!DOCTYPE html> <html lang="en"> <head> <title>Obama: Cut deficit, preserve Medicare - UPI.com</title> <meta name="robots" content="all" /> <meta name="description" content="U.S. President Barack ...[SNIP]... </script> <script type="text/javascript" src="https://ajax ...[SNIP]... </script> <script type="text/javascript" src="http://partner ...[SNIP]... </a> | <a href="http://www.upiu.com ...[SNIP]... <li><a href="http://upi.dealon ...[SNIP]... 6591307058766%2F&t=Obama <a href="http://twitter.com ...[SNIP]... </script> <script type="text/javascript" src="http://pagead2 ...[SNIP]... </a> <a href="http://itunes.apple <a href="http://www.facebook <a href="http://twitter.com ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <strong><a target="_blank" href="http://fk.cm ...[SNIP]... <div class="sponsored_links" <a target="_blank" href="http://www <a target="_blank" href="http://www.portland <a target="_blank" href="http://www ...[SNIP]... <div style="display:none;"> <img src="//pixel.quantserve </div> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /Business_News/2011/06/02 |
GET /Business_News/2011/06/02 Host: www.upi.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Server: Apache/2.2.15 (Unix) PHP/5.3.2 X-Powered-By: PHP/5.3.2 Pragma: public Cache-Control: maxage=180 Expires: Fri, 03 Jun 2011 01:30:16 GMT Content-Type: text/html X-Pad: avoid browser bug Content-Length: 62975 Date: Fri, 03 Jun 2011 01:27:16 GMT X-Varnish: 1334565641 1334565631 Age: 0 Via: 1.1 varnish Connection: close <!DOCTYPE html> <html lang="en"> <head> <title>For Goldman, a subpoena, business as usual - UPI.com</title> <meta name="robots" content="all" /> <meta name="description" content="Financial giant G ...[SNIP]... </script> <script type="text/javascript" src="https://ajax ...[SNIP]... </script> <script type="text/javascript" src="http://partner ...[SNIP]... </a><script type="text/javascript" src="http://platform ...[SNIP]... </script> <script type="text/javascript" src="http://pagead2 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /Health_News/2011/06/02 |
GET /Health_News/2011/06/02 Host: www.upi.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Server: Apache/2.2.15 (Unix) PHP/5.3.2 X-Powered-By: PHP/5.3.2 Pragma: public Cache-Control: maxage=180 Expires: Fri, 03 Jun 2011 01:28:04 GMT Content-Type: text/html X-Pad: avoid browser bug Content-Length: 59259 Date: Fri, 03 Jun 2011 01:27:21 GMT X-Varnish: 794782890 794778188 Age: 137 Via: 1.1 varnish Connection: close <!DOCTYPE html> <html lang="en"> <head> <title>Food Pyramid out, half-plate of produce in - UPI.com</title> <meta name="robots" content="all" /> <meta name="description" content="The U.S. governme ...[SNIP]... </script> <script type="text/javascript" src="https://ajax ...[SNIP]... </script> <script type="text/javascript" src="http://partner ...[SNIP]... </a><script type="text/javascript" src="http://platform ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /Top_News/US/2011/06/02 |
GET /Top_News/US/2011/06/02 Host: www.upi.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Server: Apache/2.2.17 (Unix) PHP/5.3.6 X-Powered-By: PHP/5.3.6 Pragma: public Cache-Control: maxage=180 Expires: Fri, 03 Jun 2011 01:29:17 GMT Content-Type: text/html X-Pad: avoid browser bug Content-Length: 62517 Date: Fri, 03 Jun 2011 01:27:18 GMT X-Varnish: 1334565713 1334563718 Age: 61 Via: 1.1 varnish Connection: close <!DOCTYPE html> <html lang="en"> <head> <title>Joplin tornado death toll at 138 - UPI.com</title> <meta name="robots" content="all" /> <meta name="description" content="With all citizens accounted ...[SNIP]... </script> <script type="text/javascript" src="https://ajax ...[SNIP]... </script> <script type="text/javascript" src="http://partner ...[SNIP]... </a><script type="text/javascript" src="http://platform ...[SNIP]... </script> <script type="text/javascript" src="http://pagead2 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /Top_News/US/2011/06/02 |
GET /Top_News/US/2011/06/02 Host: www.upi.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Server: Apache/2.2.17 (Unix) PHP/5.3.5 X-Powered-By: PHP/5.3.5 Pragma: public Cache-Control: maxage=180 Expires: Fri, 03 Jun 2011 01:30:17 GMT Content-Type: text/html X-Pad: avoid browser bug Content-Length: 64260 Date: Fri, 03 Jun 2011 01:27:17 GMT X-Varnish: 1334565683 1334565655 Age: 1 Via: 1.1 varnish Connection: close <!DOCTYPE html> <html lang="en"> <head> <title>Obama: Cut deficit, preserve Medicare - UPI.com</title> <meta name="robots" content="all" /> <meta name="description" content="U.S. President Barack ...[SNIP]... </script> <script type="text/javascript" src="https://ajax ...[SNIP]... </script> <script type="text/javascript" src="http://partner ...[SNIP]... </a><script type="text/javascript" src="http://platform ...[SNIP]... </script> <script type="text/javascript" src="http://pagead2 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /Top_News/US/2011/06/02 |
GET /Top_News/US/2011/06/02 Host: www.upi.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Server: Apache/2.2.17 (Unix) PHP/5.3.6 X-Powered-By: PHP/5.3.6 Pragma: public Cache-Control: maxage=180 Expires: Fri, 03 Jun 2011 01:29:57 GMT Content-Type: text/html X-Pad: avoid browser bug Content-Length: 60523 Date: Fri, 03 Jun 2011 01:27:19 GMT X-Varnish: 1334565737 1334565018 Age: 22 Via: 1.1 varnish Connection: close <!DOCTYPE html> <html lang="en"> <head> <title>'Octomom' doctor has license revoked - UPI.com</title> <meta name="robots" content="all" /> <meta name="description" content="The California Medical ...[SNIP]... </script> <script type="text/javascript" src="https://ajax ...[SNIP]... </script> <script type="text/javascript" src="http://partner ...[SNIP]... </a><script type="text/javascript" src="http://platform ...[SNIP]... </script> <script type="text/javascript" src="http://pagead2 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /interclick.htm |
GET /interclick.htm HTTP/1.1 Host: www.upi.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://pubads.g Cookie: __gads=ID=4668bd5b9a |
HTTP/1.1 200 OK Server: Apache/2.2.17 (Unix) PHP/5.3.6 Last-Modified: Thu, 24 Mar 2011 19:17:34 GMT ETag: "3ff1f84-24b-49f3f54 Content-Type: text/html Content-Length: 587 Date: Fri, 03 Jun 2011 01:30:48 GMT X-Varnish: 794790680 794789603 Age: 26 Via: 1.1 varnish Connection: keep-alive <!-- Start of interCLICK (C) In-Page Code --> <!-- Publisher Name: United Press International --> <!-- Ad Format: Medium Rectangle --> <!-- Site: http://www.upi.com --> <!-- Section: http://www.upi.com --> <script src="http://a1.interclick ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /img/acn.gif |
GET /img/acn.gif?acn=accounts Host: www.upi.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: image/png,image/*;q=0.8,* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.upi.com Cookie: __gads=ID=4668bd5b9a |
HTTP/1.1 200 OK Date: Fri, 03 Jun 2011 01:30:26 GMT Server: Apache/2.2.15 (Unix) PHP/5.3.3 X-Powered-By: PHP/5.3.3 Expires: Tues, 26 Apr 2011 05:00:00 GMT Last-Modified: Fri, 03 Jun 2011 01:30:26 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: upi_acn[accounts]=521460; path=/; domain=.upi.com Content-Length: 542 Content-Type: image/gif GIF87ap............DBD.. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /Business_News/2011/06/02 |
GET /Business_News/2011/06/02 Host: www.upi.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Server: Apache/2.2.15 (Unix) PHP/5.3.2 X-Powered-By: PHP/5.3.2 Pragma: public Cache-Control: maxage=180 Expires: Fri, 03 Jun 2011 01:30:16 GMT Content-Type: text/html X-Pad: avoid browser bug Content-Length: 62975 Date: Fri, 03 Jun 2011 01:27:16 GMT X-Varnish: 1334565641 1334565631 Age: 0 Via: 1.1 varnish Connection: close <!DOCTYPE html> <html lang="en"> <head> <title>For Goldman, a subpoena, business as usual - UPI.com</title> <meta name="robots" content="all" /> <meta name="description" content="Financial giant G ...[SNIP]... <a href="http://www.upi.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /interclick.htm |
GET /interclick.htm HTTP/1.1 Host: www.upi.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://pubads.g Cookie: __gads=ID=4668bd5b9a |
HTTP/1.1 200 OK Server: Apache/2.2.17 (Unix) PHP/5.3.6 Last-Modified: Thu, 24 Mar 2011 19:17:34 GMT ETag: "3ff1f84-24b-49f3f54 Content-Type: text/html Content-Length: 587 Date: Fri, 03 Jun 2011 01:30:48 GMT X-Varnish: 794790680 794789603 Age: 26 Via: 1.1 varnish Connection: keep-alive <!-- Start of interCLICK (C) In-Page Code --> <!-- Publisher Name: United Press International --> <!-- Ad Format: Medium Rectangle --> <!-- Site: http://www.upi.com --> <!-- Section: http://www. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /ss/em/more/News/ |
GET /ss/em/more/News/?_ Host: www.upi.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html, */*; q=0.01 Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive X-Requested-With: XMLHttpRequest Referer: http://www.upi.com/Top Cookie: __gads=ID=4668bd5b9a |
HTTP/1.1 200 OK Server: Apache/2.2.15 (Unix) PHP/5.3.2 X-Powered-By: PHP/5.3.2 Content-Type: text/html Content-Length: 7024 Date: Fri, 03 Jun 2011 01:32:28 GMT X-Varnish: 794794503 Age: 0 Via: 1.1 varnish Connection: keep-alive <div class="pad4"> <div class="scroll_d"> < <div style="float: left; width: 517px;"> <div class="item"> <div class="thumbnail"><div class="content"><div id="Mitt-Romney- ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /ss/em/more/Photos_of_the |
GET /ss/em/more/Photos_of_the Host: www.upi.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html, */*; q=0.01 Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive X-Requested-With: XMLHttpRequest Referer: http://www.upi.com Cookie: __gads=ID=4668bd5b9a |
HTTP/1.1 200 OK Date: Fri, 03 Jun 2011 01:30:23 GMT Server: Apache/2.2.17 (Unix) PHP/5.3.5 X-Powered-By: PHP/5.3.5 Content-Length: 6400 Content-Type: text/html <div class="pad4"> <div class="scroll_d"> < <div style="float: left; width: 517px;"> <div class="item"> <div class="thumbnail"><div class="content"><div id="May-29-2011" ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /upi_comments/form |
POST /upi_comments/form HTTP/1.1 Host: www.upi.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html, */*; q=0.01 Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Content-Type: application/x-www-form X-Requested-With: XMLHttpRequest Referer: http://www.upi.com Content-Length: 3 Cookie: __gads=ID=4668bd5b9a Pragma: no-cache Cache-Control: no-cache ns& |
HTTP/1.1 200 OK Server: Apache/2.2.15 (Unix) PHP/5.3.3 X-Powered-By: PHP/5.3.3 Content-Type: text/html Content-Length: 4752 Date: Fri, 03 Jun 2011 01:30:23 GMT X-Varnish: 1334573043 Age: 0 Via: 1.1 varnish Connection: keep-alive <div style="color: #333333; margin-bottom: 11px; float: right;"> <table cellpadding="0" cellspacing="0" border="0"> <tr> <td> <div class="user_tools ut_btn" id="u ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.upi.com |
Path: | /upi_comments/io |
POST /upi_comments/io HTTP/1.1 Host: www.upi.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: application/json, text/javascript, */*; q=0.01 Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Content-Type: application/x-www-form X-Requested-With: XMLHttpRequest Referer: http://www.upi.com Content-Length: 58 Cookie: __gads=ID=4668bd5b9a Pragma: no-cache Cache-Control: no-cache uc_list=1&page_id |
HTTP/1.1 200 OK Server: Apache/2.2.15 (Unix) PHP/5.3.2 X-Powered-By: PHP/5.3.2 Content-Type: text/html Content-Length: 82 Date: Fri, 03 Jun 2011 01:30:23 GMT X-Varnish: 794789633 Age: 0 Via: 1.1 varnish Connection: keep-alive {"cmt_total":"0","cmt |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.upi.com |
Path: | /img/graphics/zoomin.cur |
GET /img/graphics/zoomin.cur HTTP/1.1 Host: www.upi.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: image/png,image/*;q=0.8,* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.upi.com Cookie: __gads=ID=4668bd5b9a |
HTTP/1.1 200 OK Server: Apache/2.2.15 (Unix) PHP/5.3.3 Last-Modified: Mon, 15 Sep 2008 20:15:24 GMT ETag: "1f681c1-146-456f4e5 Content-Type: text/plain Content-Length: 326 Date: Fri, 03 Jun 2011 01:30:14 GMT X-Varnish: 794789259 794785182 Age: 108 Via: 1.1 varnish Connection: keep-alive ...... ......0.......(... ...@..................... ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.upi.com |
Path: | /upi_comments/io |
POST /upi_comments/io HTTP/1.1 Host: www.upi.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: application/json, text/javascript, */*; q=0.01 Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Content-Type: application/x-www-form X-Requested-With: XMLHttpRequest Referer: http://www.upi.com Content-Length: 58 Cookie: __gads=ID=4668bd5b9a Pragma: no-cache Cache-Control: no-cache uc_list=1&page_id |
HTTP/1.1 200 OK Server: Apache/2.2.15 (Unix) PHP/5.3.2 X-Powered-By: PHP/5.3.2 Content-Type: text/html Content-Length: 82 Date: Fri, 03 Jun 2011 01:30:23 GMT X-Varnish: 794789633 Age: 0 Via: 1.1 varnish Connection: keep-alive {"cmt_total":"0","cmt |