1. Cross-site scripting (reflected)
2. Cleartext submission of password
3. Cookie without HttpOnly flag set
3.1. http://dating.msn.com/cp.aspx
3.2. http://dating.msn.com/en-us/partner/msn/38028.html
3.3. http://dating.msn.com/index.aspx
3.4. http://dating.msn.com/profile/showprofiledl.aspx
3.5. http://dating.msn.com/qsearch/qsearchdl.aspx
3.6. http://dating.msn.com/search/index.aspx
3.8. http://dating.msn.com/msn/article/articleindex.aspx
3.9. http://dating.msn.com/search/searchSubmit.aspx
4. Password field with autocomplete enabled
5. Cross-domain Referer leakage
5.1. http://dating.msn.com/cp.aspx
5.2. http://dating.msn.com/en-us/partner/msn/38028.html
5.3. http://dating.msn.com/index.aspx
5.4. http://dating.msn.com/profile/showprofiledl.aspx
5.5. http://dating.msn.com/search/index.aspx
5.6. http://dating.msn.com/search/searchSubmit.aspx
6. Cross-domain script include
6.2. http://dating.msn.com/cp.aspx
6.3. http://dating.msn.com/en-us/partner/msn/38028.html
6.4. http://dating.msn.com/index.aspx
6.5. http://dating.msn.com/msn/article/articleindex.aspx
6.6. http://dating.msn.com/profile/showprofiledl.aspx
6.7. http://dating.msn.com/search/index.aspx
6.8. http://dating.msn.com/search/searchSubmit.aspx
Severity: | High |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | /qsearch/qsearchdl.aspx |
GET /qsearch/qsearchdl.aspx?8f518"><script>alert(1)< Host: dating.msn.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Sat, 12 Feb 2011 02:07:28 GMT Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: Match=CCount=1&CDate=2/11 Set-Cookie: dMatch=CCount=1&CDate=2 Set-Cookie: MatchSession=CDTF=2/11 Set-Cookie: SECU=TID=516068&ESID Set-Cookie: msnc=1; expires=Thu, 17-Feb-2011 02:07:28 GMT; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 87845 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns:fb="http://www <head><meta http-equiv= ...[SNIP]... <a href="/search/search.aspx ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | /search/searchSubmit.aspx |
GET /search/searchSubmit.aspx Host: dating.msn.com Proxy-Connection: keep-alive Referer: http://burp/show/5 Cache-Control: max-age=0 Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: mh=MSFT; CC=US; CULTURE=EN-US; __qca=P0-161320755 |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: msnc=2; expires=Thu, 17-Feb-2011 02:09:46 GMT; path=/ Set-Cookie: MatchSearch=SC08=75207 Date: Sat, 12 Feb 2011 02:09:47 GMT Content-Length: 174766 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns:fb="http://www <head><meta http-equiv= ...[SNIP]... <div id="bodyWrapper" class="clearfix"> <form name="aspnetForm" method="post" action="searchSubmit.aspx <div> ...[SNIP]... </label> <input name="password" id="password" type="password" maxlength="16" /> <div class=" error_password fieldError "> ...[SNIP]... </label> <input name="password" id="password" type="password" maxlength="16" /> <div class=" error_password fieldError "> ...[SNIP]... <dd><input name="password" id="password" maxlength="16" type="password" /></dd> ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://dating.msn.com |
Path: | /cp.aspx |
GET /cp.aspx HTTP/1.1 Host: dating.msn.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 302 Found Connection: close Date: Sat, 12 Feb 2011 02:07:02 GMT Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Location: /errors/ErrorPage.aspx Set-Cookie: Match=CCount=1&CDate=2/11 Set-Cookie: dMatch=CCount=1&CDate=2 Set-Cookie: MatchSession=CDTF=2/11 Set-Cookie: SECU=TID=516068; path=/ Cache-Control: private Content-Type: text/html <html><head><title>Object moved</title></head><body <h2>Object moved to <a href="%2ferrors </body></html> |
Severity: | Low |
Confidence: | Firm |
Host: | http://dating.msn.com |
Path: | /en-us/partner/msn/38028 |
GET /en-us/partner/msn/38028 Host: dating.msn.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Sat, 12 Feb 2011 02:07:02 GMT Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: Match=CCount=1&CDate=2/11 Set-Cookie: dMatch=CCount=1&CDate=2 Set-Cookie: MatchSession=CDTF=2/11 Set-Cookie: SECU=TID=516068&ESID Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 52321 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN" > <html> <head><meta http-equiv="X-UA ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://dating.msn.com |
Path: | /index.aspx |
GET /index.aspx HTTP/1.1 Host: dating.msn.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Sat, 12 Feb 2011 02:06:57 GMT Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: Match=CCount=1&CDate=2/11 Set-Cookie: dMatch=CCount=1&CDate=2 Set-Cookie: MatchSession=CDTF=2/11 Set-Cookie: SECU=TID=516068&ESID Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44048 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN" > <html> <head><meta http-equiv="X-UA ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://dating.msn.com |
Path: | /profile/showprofiledl |
GET /profile/showprofiledl Host: dating.msn.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 302 Found Connection: close Date: Sat, 12 Feb 2011 02:07:00 GMT Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Location: /errors/ErrorPage.aspx Set-Cookie: Match=CCount=1&CDate=2/11 Set-Cookie: dMatch=CCount=1&CDate=2 Set-Cookie: MatchSession=CDTF=2/11 Set-Cookie: SECU=TID=516068&ESID Cache-Control: private Content-Type: text/html <html><head><title>Object moved</title></head><body <h2>Object moved to <a href="%2ferrors </body></html> |
Severity: | Low |
Confidence: | Firm |
Host: | http://dating.msn.com |
Path: | /qsearch/qsearchdl.aspx |
GET /qsearch/qsearchdl.aspx HTTP/1.1 Host: dating.msn.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 302 Found Connection: close Date: Sat, 12 Feb 2011 02:07:08 GMT Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Location: /search/searchSubmit.aspx Set-Cookie: Match=CCount=1&CDate=2/11 Set-Cookie: dMatch=CCount=1&CDate=2 Set-Cookie: MatchSession=CDTF=2/11 Set-Cookie: SECU=TID=516068&ESID Set-Cookie: OLN=OLNVAL=0; expires=Mon, 14-Mar-2011 01:07:08 GMT; path=/ Set-Cookie: MatchSearchROF=ROF01= Set-Cookie: dMatchSearchROF=ROF01= Set-Cookie: msnc=1; expires=Thu, 17-Feb-2011 02:07:08 GMT; path=/ Set-Cookie: MatchSearch=SC08=75207 Set-Cookie: dMatchSearch=SC01=2&SC02 Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 238 <html><head><title>Object moved</title></head><body <h2>Object moved to <a href="%2fsearch ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://dating.msn.com |
Path: | /search/index.aspx |
GET /search/index.aspx HTTP/1.1 Host: dating.msn.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Sat, 12 Feb 2011 02:07:01 GMT Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: Match=CCount=1&CDate=2/11 Set-Cookie: dMatch=CCount=1&CDate=2 Set-Cookie: MatchSession=CDTF=2/11 Set-Cookie: SECU=TID=516068&ESID Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 83966 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns:fb="http://www <head><meta http-equiv= ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | / |
GET / HTTP/1.1 Host: dating.msn.com Proxy-Connection: keep-alive Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: mh=MSFT; CC=US; CULTURE=EN-US; __qca=P0-161320755 |
HTTP/1.1 200 OK Date: Sat, 12 Feb 2011 02:14:58 GMT Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: MatchSearch=SC08=75207 Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44069 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN" > <html> <head><meta http-equiv="X-UA ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | /msn/article/articleindex |
GET /msn/article/articleindex Host: dating.msn.com Proxy-Connection: keep-alive Referer: http://dating.msn.com/ Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: mh=MSFT; CC=US; CULTURE=EN-US; __qca=P0-161320755 |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: MatchSearch=SC08=75207 Date: Sat, 12 Feb 2011 02:15:14 GMT Content-Length: 34474 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN" > <html> <head><meta http-equiv="X-UA ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | /search/searchSubmit.aspx |
GET /search/searchSubmit.aspx Host: dating.msn.com Proxy-Connection: keep-alive Referer: http://burp/show/5 Cache-Control: max-age=0 Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: mh=MSFT; CC=US; CULTURE=EN-US; __qca=P0-161320755 |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: msnc=2; expires=Thu, 17-Feb-2011 02:09:46 GMT; path=/ Set-Cookie: MatchSearch=SC08=75207 Date: Sat, 12 Feb 2011 02:09:47 GMT Content-Length: 174766 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns:fb="http://www <head><meta http-equiv= ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | /search/searchSubmit.aspx |
GET /search/searchSubmit.aspx Host: dating.msn.com Proxy-Connection: keep-alive Referer: http://burp/show/5 Cache-Control: max-age=0 Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: mh=MSFT; CC=US; CULTURE=EN-US; __qca=P0-161320755 |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: msnc=2; expires=Thu, 17-Feb-2011 02:09:46 GMT; path=/ Set-Cookie: MatchSearch=SC08=75207 Date: Sat, 12 Feb 2011 02:09:47 GMT Content-Length: 174766 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns:fb="http://www <head><meta http-equiv= ...[SNIP]... <div id="bodyWrapper" class="clearfix"> <form name="aspnetForm" method="post" action="searchSubmit.aspx <div> ...[SNIP]... </label> <input name="password" id="password" type="password" maxlength="16" /> <div class=" error_password fieldError "> ...[SNIP]... </label> <input name="password" id="password" type="password" maxlength="16" /> <div class=" error_password fieldError "> ...[SNIP]... <dd><input name="password" id="password" maxlength="16" type="password" /></dd> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | /cp.aspx |
GET /cp.aspx?cpp=/en-us Host: dating.msn.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Sat, 12 Feb 2011 02:07:06 GMT Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: Match=CCount=1&CDate=2/11 Set-Cookie: dMatch=CCount=1&CDate=2 Set-Cookie: MatchSession=CDTF=2/11 Set-Cookie: SECU=TID=526133&ESID Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 52355 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN" > <html> <head><meta http-equiv="X-UA ...[SNIP]... </script> <script type="text/javascript" src="http://cp.match.com <script language="javascript" type="text/javascript" src="http://cp.match.com ...[SNIP]... </style> <link href="http://cp.match.com <title> ...[SNIP]... <!--[if !IE]>--><script type="text/javascript" src="http://cp.match.com <script type="text/javascript" src="http://cp.match.com ...[SNIP]... </script> <link href="http://cp.match.com <!-- BEGIN OMNITURE REPORTING --> ...[SNIP]... <div><img src="http://msnporta ...[SNIP]... <li class="c3"><a href="http://msn ...[SNIP]... <li class="first"><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://www.delish ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="http://www.delish ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="https://secure ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <span class="blogo"><a href="http://www.bing.com ...[SNIP]... <li id="msg"><a href="http://download ...[SNIP]... <li class="last"><a href="http://passport ...[SNIP]... <div id="optlinks" class="link"><img class="logo" src="http://images.match ...[SNIP]... </strong><a id="hplink" href="http://www ...[SNIP]... <div id="pnlButton"><img src="http://cp.match.com <input type="hidden" name="po" value="1" id="po" /> ...[SNIP]... <div id="pnlButton"><img src="http://cp.match.com <input type="hidden" name="po" value="1" id="po" /> ...[SNIP]... <a href="/en-us/partner/msn ...[SNIP]... <input id="lookingForZip" type="text" name="zip" maxlength="10"/> <img src="http://cp.match.com ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <a href="/qsearch/qsearchdl ...[SNIP]... <div id="pnlBtm"><img src="http://cp.match.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | /en-us/partner/msn/38028 |
GET /en-us/partner/msn/38028 Host: dating.msn.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Sat, 12 Feb 2011 02:07:02 GMT Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: Match=CCount=1&CDate=2/11 Set-Cookie: dMatch=CCount=1&CDate=2 Set-Cookie: MatchSession=CDTF=2/11 Set-Cookie: SECU=TID=526133&ESID Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 51850 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN" > <html> <head><meta http-equiv="X-UA ...[SNIP]... </script> <script type="text/javascript" src="http://cp.match.com <script language="javascript" type="text/javascript" src="http://cp.match.com ...[SNIP]... </style> <link href="http://cp.match.com <title> ...[SNIP]... <!--[if !IE]>--><script type="text/javascript" src="http://cp.match.com <script type="text/javascript" src="http://cp.match.com ...[SNIP]... </script> <link href="http://cp.match.com <!-- BEGIN OMNITURE REPORTING --> ...[SNIP]... <div><img src="http://msnporta ...[SNIP]... <li class="c3"><a href="http://msn ...[SNIP]... <li class="first"><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://www.delish ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="http://www.delish ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="https://secure ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <span class="blogo"><a href="http://www.bing.com ...[SNIP]... <li id="msg"><a href="http://download ...[SNIP]... <li class="last"><a href="http://passport ...[SNIP]... <div id="optlinks" class="link"><img class="logo" src="http://images.match ...[SNIP]... </strong><a id="hplink" href="http://www ...[SNIP]... <div id="pnlButton"><img src="http://cp.match.com <input type="hidden" name="po" value="1" id="po" /> ...[SNIP]... <div id="pnlButton"><img src="http://cp.match.com <input type="hidden" name="po" value="1" id="po" /> ...[SNIP]... <a href="/en-us/partner/msn ...[SNIP]... <input id="lookingForZip" type="text" name="zip" maxlength="10"/> <img src="http://cp.match.com ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <div class="thm"><img src="http://sthumbnails ...[SNIP]... <a href="/profile/showp ...[SNIP]... <a href="/qsearch/qsearchdl ...[SNIP]... <div id="pnlBtm"><img src="http://cp.match.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | /index.aspx |
GET /index.aspx?TrackingID Host: dating.msn.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Sat, 12 Feb 2011 02:06:58 GMT Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: Match=CCount=1&CDate=2/11 Set-Cookie: dMatch=CCount=1&CDate=2 Set-Cookie: MatchSession=CDTF=2/11 Set-Cookie: SECU=TID=516163&ESID Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44047 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN" > <html> <head><meta http-equiv="X-UA ...[SNIP]... <meta name="description" content="MSN Dating & Personals with Match.com is a leading online dating site for singles to search through over 15 million users." /> <script type="text/javascript" src="http://cp.match.com <script type="text/javascript" src="http://cp.match.com ...[SNIP]... </script> <link href="http://cp.match.com <style> ...[SNIP]... <noscript><img src="http://msnporta height="1" width="1" border="0" alt="" /> ...[SNIP]... <!--[if !IE]>--><script type="text/javascript" src="http://cp.match.com <script type="text/javascript" src="http://cp.match.com ...[SNIP]... </script> <link href="http://cp.match.com <!-- BEGIN OMNITURE REPORTING --> ...[SNIP]... <div><img src="http://msnporta ...[SNIP]... <li class="c3"><a href="http://msn ...[SNIP]... <li class="first"><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://www.delish ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="http://www.delish ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="https://secure ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <span class="blogo"><a href="http://www.bing.com ...[SNIP]... <li id="msg"><a href="http://download ...[SNIP]... <li class="last"><a href="http://passport ...[SNIP]... <div id="optlinks" class="link"><img class="logo" src="http://images.match ...[SNIP]... </strong><a id="hplink" href="http://www ...[SNIP]... <li id="navChemistry"><a href="http://msn ...[SNIP]... <div id="pnlButton"> <img src="http://cp.match.com <input type="hidden" name="po" value="1" id="po"/> ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <a href="" class="sptLink"><img src="http://images.match ...[SNIP]... <p><a href="http://msn ...[SNIP]... <div id="arr"><img src="http://cp.match.com ...[SNIP]... <div id="opts"><a href="http://msn ...[SNIP]... <div id="pnlAd"><a href="http://msn ...[SNIP]... <li><a href="http://www.delish ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li class="first"><a href="http://go.microsoft ...[SNIP]... <li class="last"> Follow MSN on <a href="http://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | /profile/showprofiledl |
GET /profile/showprofiledl Host: dating.msn.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Sat, 12 Feb 2011 02:07:00 GMT Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: Match=CCount=1&CDate=2/11 Set-Cookie: dMatch=CCount=1&CDate=2 Set-Cookie: MatchSession=CDTF=2/11 Set-Cookie: SECU=TID=525877&ESID Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 73568 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns:fb="http://www <head><meta http-equiv= ...[SNIP]... <!--[if !IE]>--><script type="text/javascript" src="http://cp.match.com <script type="text/javascript" src="http://cp.match.com ...[SNIP]... </script> <link href="http://cp.match.com <!-- BEGIN OMNITURE REPORTING --> ...[SNIP]... <div><img src="http://msnporta ...[SNIP]... <li class="c3"><a href="http://msn ...[SNIP]... <li class="first"><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://www.delish ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="http://www.delish ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="https://secure ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <span class="blogo"><a href="http://www.bing.com ...[SNIP]... <li id="msg"><a href="http://download ...[SNIP]... <li class="last"><a href="http://passport ...[SNIP]... <div id="optlinks" class="link"><img class="logo" src="http://images.match ...[SNIP]... </strong><a id="hplink" href="http://www ...[SNIP]... <a href="http://dating.msn ...[SNIP]... <div class="close modal_dismiss"> <img id="ctl00_matchHeader </div> ...[SNIP]... <a id="ctl00_matchHeader <!-- Start //WI: 9402: blue "Subscribe Today" banner 100% on the sharkin : SM -09/11 --> ...[SNIP]... <a id="ctl00_matchHeader ...[SNIP]... <a href="/howitworks/index ...[SNIP]... <div id="pnlButton"> <img src="http://images.match <input type="hidden" name="cl" value="1" id="cl" /> ...[SNIP]... <td align="left" valign="top" rowspan="11" bgcolor="#333333"><img src="http://images.match <td align="left" valign="top" bgcolor="#333333"><img src="http://images.match <td align="left" valign="top" bgcolor="#333333"><img src="http://images.match <td align="left" valign="top" bgcolor="#333333"><img src="http://images.match <td align="left" valign="top" rowspan="11" bgcolor="#333333"><img src="http://images.match <td align="left" valign="top" rowspan="11" bgcolor="#CCD0D5"><img src="http://images.match ...[SNIP]... <a id="ctl00_workarea_ctl00 ...[SNIP]... <td align="left" valign="top" bgcolor="#333333" colspan="3"><img src="http://images.match ...[SNIP]... <td align="center" valign="top" bgcolor="#333333" colspan="3"><img src="http://images.match ...[SNIP]... <td align="center" valign="top" bgcolor="#333333" colspan="3"><img id="proPhotoLine" src="http://images.match ...[SNIP]... <td align="center" valign="top" bgcolor="#333333" colspan="3"><img src="http://images.match ...[SNIP]... <td align="left" valign="top" bgcolor="#333333"><img src="http://images.match ...[SNIP]... n('/taf/sendtofriend ...[SNIP]... <td align="center" valign="top" bgcolor="#333333" colspan="3"><img src="http://images.match ...[SNIP]... <td align="left" valign="top" bgcolor="#333333"><img src="http://images.match ...[SNIP]... <a href='/matchbook/addEntry ...[SNIP]... <td align="left" valign="top" colspan="6"><img id="imgPhotoBgBtm" src="http://images.match ...[SNIP]... " id="lnkProOther" onmouseover="ImageSwap ...[SNIP]... nmouseover="ImageSwap ...[SNIP]... bar=0,scrollbars=0');" onmouseover="ImageSwap ...[SNIP]... <td align="left" valign="top" rowspan="20"><img src="http://images.match <td align="left" valign="top"><img src="http://images.match <td align="left" valign="top"><img src="http://images.match ...[SNIP]... <td align="left" valign="top" colspan="3"><img src="http://images.match ...[SNIP]... <td align="left" valign="top" colspan="2"><img src="http://images.match ...[SNIP]... <td align="left" valign="top" colspan="2"><img src="http://images.match ...[SNIP]... <td align="left" valign="top" colspan="2"><img src="http://images.match ...[SNIP]... <td align="left" valign="top" colspan="2"><img src="http://images.match ...[SNIP]... <td align="left" valign="top" colspan="2"><img src="http://images.match ...[SNIP]... <td align="left" valign="top" colspan="2"><img src="http://images.match ...[SNIP]... <td align="left" valign="top" colspan="2"><img src="http://images.match ...[SNIP]... <td align="left" valign="top" colspan="2"><img src="http://images.match ...[SNIP]... <div id="pro_deepSpacer1" class="pro_deepSpacer"><IMG alt="" src="http://images.match ...[SNIP]... <div id="pro_deepSpacer2" class="pro_deepSpacer"><img src="http://images.match ...[SNIP]... <li><a href="http://match ...[SNIP]... <li><a href="http://success ...[SNIP]... <a id="ctl00_matchFooter <a id="ctl00_matchFooter <a id="ctl00_matchFooter ...[SNIP]... <li><a href="http://www.domania ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.getsmart ...[SNIP]... <li><a href="http://www.hotels ...[SNIP]... <li><a href="http://www.hotwire ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li class="plLast"><a href="http://www.match ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | /search/index.aspx |
GET /search/index.aspx Host: dating.msn.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Sat, 12 Feb 2011 02:07:00 GMT Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: Match=CCount=1&CDate=2/11 Set-Cookie: dMatch=CCount=1&CDate=2 Set-Cookie: MatchSession=CDTF=2/11 Set-Cookie: SECU=TID=516163&ESID Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 84395 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns:fb="http://www <head><meta http-equiv= ...[SNIP]... <!--[if !IE]>--><script type="text/javascript" src="http://cp.match.com <script type="text/javascript" src="http://cp.match.com ...[SNIP]... </script> <link href="http://cp.match.com <!-- BEGIN OMNITURE REPORTING --> ...[SNIP]... <div><img src="http://msnporta ...[SNIP]... <li class="c3"><a href="http://msn ...[SNIP]... <li class="first"><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://www.delish ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="http://www.delish ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="https://secure ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <span class="blogo"><a href="http://www.bing.com ...[SNIP]... <li id="msg"><a href="http://download ...[SNIP]... <li class="last"><a href="http://passport ...[SNIP]... <div id="optlinks" class="link"><img class="logo" src="http://images.match ...[SNIP]... </strong><a id="hplink" href="http://www ...[SNIP]... <a href="http://dating.msn ...[SNIP]... <div class="close modal_dismiss"> <img id="ctl00_matchHeader </div> ...[SNIP]... <a id="ctl00_matchHeader <!-- Start //WI: 9402: blue "Subscribe Today" banner 100% on the sharkin : SM -09/11 --> ...[SNIP]... <a id="ctl00_matchHeader ...[SNIP]... </div> <img alt="Search Now" border="0" class="btnQuickSearch" src="http://images.match <input type="hidden" name="cl" value="1" id="cl" /> ...[SNIP]... <a id="ctl00_workarea ...[SNIP]... <a id="ctl00_workarea ...[SNIP]... <a id="ctl00_workarea ...[SNIP]... <a id="ctl00_workarea ...[SNIP]... ="ctl00_workarea ...[SNIP]... <a id="ctl00_workarea ...[SNIP]... d="ctl00_workarea ...[SNIP]... ="ctl00_workarea ...[SNIP]... a id="ctl00_workarea ...[SNIP]... id="ctl00_workarea ...[SNIP]... "ctl00_workarea ...[SNIP]... ctl00_workarea_mySea ...[SNIP]... <a id="ctl00_workarea ...[SNIP]... <a id="ctl00_workarea ...[SNIP]... <a id="ctl00_workarea ...[SNIP]... <a id="ctl00_workarea ...[SNIP]... tl00_workarea_mySear ...[SNIP]... <a id="ctl00_workarea ...[SNIP]... <a id="ctl00_workarea ...[SNIP]... "ctl00_workarea ...[SNIP]... <a id="ctl00_workarea ...[SNIP]... tl00_workarea_mySear ...[SNIP]... id="ctl00_workarea ...[SNIP]... l00_workarea_mySearc ...[SNIP]... l00$userName$ctl00 <img id="ctl00_workarea </div> ...[SNIP]... <li><a href="http://match ...[SNIP]... <li><a href="http://success ...[SNIP]... <a id="ctl00_matchFooter <a id="ctl00_matchFooter <a id="ctl00_matchFooter ...[SNIP]... <li><a href="http://www.domania ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.getsmart ...[SNIP]... <li><a href="http://www.hotels ...[SNIP]... <li><a href="http://www.hotwire ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li class="plLast"><a href="http://www.match ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | /search/searchSubmit.aspx |
GET /search/searchSubmit.aspx Host: dating.msn.com Proxy-Connection: keep-alive Referer: http://burp/show/5 Cache-Control: max-age=0 Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: mh=MSFT; CC=US; CULTURE=EN-US; __qca=P0-161320755 |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: msnc=2; expires=Thu, 17-Feb-2011 02:09:46 GMT; path=/ Set-Cookie: MatchSearch=SC08=75207 Date: Sat, 12 Feb 2011 02:09:47 GMT Content-Length: 174766 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns:fb="http://www <head><meta http-equiv= ...[SNIP]... <!--[if !IE]>--><script type="text/javascript" src="http://cp.match.com <script type="text/javascript" src="http://cp.match.com ...[SNIP]... </script> <link href="http://cp.match.com <!-- BEGIN OMNITURE REPORTING --> ...[SNIP]... <div><img src="http://msnporta ...[SNIP]... <li class="c3"><a href="http://msn ...[SNIP]... <li class="first"><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://www.delish ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="http://www.delish ...[SNIP]... <li><a href="http://msn ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="https://secure ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <li><a href="http://www.bing.com ...[SNIP]... <span class="blogo"><a href="http://www.bing.com ...[SNIP]... <li id="msg"><a href="http://download ...[SNIP]... <li class="last"><a href="http://passport ...[SNIP]... <div id="optlinks" class="link"><img class="logo" src="http://images.match ...[SNIP]... </strong><a id="hplink" href="http://www ...[SNIP]... <a href="http://dating.msn ...[SNIP]... <div class="close modal_dismiss"> <img id="ctl00_matchHeader </div> ...[SNIP]... <a id="ctl00_matchHeader <!-- Start //WI: 9402: blue "Subscribe Today" banner 100% on the sharkin : SM -09/11 --> ...[SNIP]... <a id="ctl00_matchHeader ...[SNIP]... </script> <script language="javascript" src="http://cp.match.com <script language="javascript" src="http://cp.match.com <script language="javascript" src="http://cp.match.com ...[SNIP]... </script> <link href="http://cp.match.com <div id="overlay" class="modal_overlay"> ...[SNIP]... <div class="arrow"><img src="http://cp.match.com ...[SNIP]... <div id="pnlButton"> <img src="http://cp.match.com <img src="http://cp.match.com <input name="countryCode" type="hidden" id="countryCode" value="1" /> ...[SNIP]... <div id="pnlButton"> <img src="http://cp.match.com <p id="forgotPassword"> ...[SNIP]... <div id="facebook-modal" style="position:absolute" class="facebook-container facebook-populate sys-template" behavior="MatchCore.UI <link href="http://cp.match.com <div class="hd"> ...[SNIP]... <div id="pnlButton"><img src="http://cp.match.com ...[SNIP]... <div id="pnlButton"><img src="http://cp.match.com ...[SNIP]... <noscript> <a href="http://ad <img src="http://ad.doubl </a> ...[SNIP]... </span> <img id="ctl00_workarea_ctl00 <input type="image" name="ctl00$workarea ...[SNIP]... <a href="/profile/showP ...[SNIP]... <a href="/profile/showP ...[SNIP]... <a href="/profile/showP ...[SNIP]... <a href="/profile/showP ...[SNIP]... <a href="/profile/showP ...[SNIP]... <a href="/profile/showP ...[SNIP]... <a href="/profile/showP ...[SNIP]... <a href="/profile/showP ...[SNIP]... <a href="/profile/showP ...[SNIP]... <a href="/profile/showP ...[SNIP]... <a href="/profile/showP ...[SNIP]... <a href="/profile/showP ...[SNIP]... <a href="/profile/showP ...[SNIP]... <a href="/profile/showP ...[SNIP]... <a href="/profile/showP ...[SNIP]... <a href="/profile/showP ...[SNIP]... <a href="/profile/showP ...[SNIP]... <a href="/profile/showP ...[SNIP]... </textarea> <a href="http://www.match ...[SNIP]... <li><a href="http://match ...[SNIP]... <li><a href="http://success ...[SNIP]... <a id="ctl00_matchFooter <a id="ctl00_matchFooter <a id="ctl00_matchFooter ...[SNIP]... <li><a href="http://www.domania ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.getsmart ...[SNIP]... <li><a href="http://www.hotels ...[SNIP]... <li><a href="http://www.hotwire ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li class="plLast"><a href="http://www.match ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | / |
GET / HTTP/1.1 Host: dating.msn.com Proxy-Connection: keep-alive Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: mh=MSFT; CC=US; CULTURE=EN-US; __qca=P0-161320755 |
HTTP/1.1 200 OK Date: Sat, 12 Feb 2011 02:14:58 GMT Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: MatchSearch=SC08=75207 Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44069 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN" > <html> <head><meta http-equiv="X-UA ...[SNIP]... <meta name="description" content="MSN Dating & Personals with Match.com is a leading online dating site for singles to search through over 15 million users." /> <script type="text/javascript" src="http://cp.match.com <script type="text/javascript" src="http://cp.match.com ...[SNIP]... <!--[if !IE]>--><script type="text/javascript" src="http://cp.match.com <script type="text/javascript" src="http://cp.match.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | /cp.aspx |
GET /cp.aspx?cpp=/en-us Host: dating.msn.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Sat, 12 Feb 2011 02:07:06 GMT Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: Match=CCount=1&CDate=2/11 Set-Cookie: dMatch=CCount=1&CDate=2 Set-Cookie: MatchSession=CDTF=2/11 Set-Cookie: SECU=TID=526133&ESID Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 52355 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN" > <html> <head><meta http-equiv="X-UA ...[SNIP]... </script> <script type="text/javascript" src="http://cp.match.com <script language="javascript" type="text/javascript" src="http://cp.match.com ...[SNIP]... <!--[if !IE]>--><script type="text/javascript" src="http://cp.match.com <script type="text/javascript" src="http://cp.match.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | /en-us/partner/msn/38028 |
GET /en-us/partner/msn/38028 Host: dating.msn.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Sat, 12 Feb 2011 02:07:02 GMT Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: Match=CCount=1&CDate=2/11 Set-Cookie: dMatch=CCount=1&CDate=2 Set-Cookie: MatchSession=CDTF=2/11 Set-Cookie: SECU=TID=516068&ESID Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 52321 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN" > <html> <head><meta http-equiv="X-UA ...[SNIP]... </script> <script type="text/javascript" src="http://cp.match.com <script language="javascript" type="text/javascript" src="http://cp.match.com ...[SNIP]... <!--[if !IE]>--><script type="text/javascript" src="http://cp.match.com <script type="text/javascript" src="http://cp.match.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | /index.aspx |
GET /index.aspx HTTP/1.1 Host: dating.msn.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Sat, 12 Feb 2011 02:06:57 GMT Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: Match=CCount=1&CDate=2/11 Set-Cookie: dMatch=CCount=1&CDate=2 Set-Cookie: MatchSession=CDTF=2/11 Set-Cookie: SECU=TID=516068&ESID Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 44048 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN" > <html> <head><meta http-equiv="X-UA ...[SNIP]... <meta name="description" content="MSN Dating & Personals with Match.com is a leading online dating site for singles to search through over 15 million users." /> <script type="text/javascript" src="http://cp.match.com <script type="text/javascript" src="http://cp.match.com ...[SNIP]... <!--[if !IE]>--><script type="text/javascript" src="http://cp.match.com <script type="text/javascript" src="http://cp.match.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | /msn/article/articleindex |
GET /msn/article/articleindex Host: dating.msn.com Proxy-Connection: keep-alive Referer: http://dating.msn.com/ Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: mh=MSFT; CC=US; CULTURE=EN-US; __qca=P0-161320755 |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: MatchSearch=SC08=75207 Date: Sat, 12 Feb 2011 02:15:14 GMT Content-Length: 34474 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN" > <html> <head><meta http-equiv="X-UA ...[SNIP]... <meta name="description" content="MSN Dating & Personals with Match.com is a leading online dating site for singles to search through over 15 million users." /> <script type="text/javascript" src="http://cp.match.com <script language="javascript" src="http://cp.match.com ...[SNIP]... <!--[if !IE]>--><script type="text/javascript" src="http://cp.match.com <script type="text/javascript" src="http://cp.match.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | /profile/showprofiledl |
GET /profile/showprofiledl Host: dating.msn.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Sat, 12 Feb 2011 02:07:00 GMT Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: Match=CCount=1&CDate=2/11 Set-Cookie: dMatch=CCount=1&CDate=2 Set-Cookie: MatchSession=CDTF=2/11 Set-Cookie: SECU=TID=525877&ESID Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 73568 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns:fb="http://www <head><meta http-equiv= ...[SNIP]... <!--[if !IE]>--><script type="text/javascript" src="http://cp.match.com <script type="text/javascript" src="http://cp.match.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | /search/index.aspx |
GET /search/index.aspx HTTP/1.1 Host: dating.msn.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Connection: close Date: Sat, 12 Feb 2011 02:07:01 GMT Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: Match=CCount=1&CDate=2/11 Set-Cookie: dMatch=CCount=1&CDate=2 Set-Cookie: MatchSession=CDTF=2/11 Set-Cookie: SECU=TID=516068&ESID Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 83966 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns:fb="http://www <head><meta http-equiv= ...[SNIP]... <!--[if !IE]>--><script type="text/javascript" src="http://cp.match.com <script type="text/javascript" src="http://cp.match.com ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://dating.msn.com |
Path: | /search/searchSubmit.aspx |
GET /search/searchSubmit.aspx Host: dating.msn.com Proxy-Connection: keep-alive Referer: http://burp/show/5 Cache-Control: max-age=0 Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: mh=MSFT; CC=US; CULTURE=EN-US; __qca=P0-161320755 |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 P3p: CP="NOI DSP COR NID CUR OUR NOR" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 X-Powered-By: UrlRewriter.NET 2.0.0 Set-Cookie: msnc=2; expires=Thu, 17-Feb-2011 02:09:46 GMT; path=/ Set-Cookie: MatchSearch=SC08=75207 Date: Sat, 12 Feb 2011 02:09:47 GMT Content-Length: 174766 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns:fb="http://www <head><meta http-equiv= ...[SNIP]... <!--[if !IE]>--><script type="text/javascript" src="http://cp.match.com <script type="text/javascript" src="http://cp.match.com ...[SNIP]... </script> <script language="javascript" src="http://cp.match.com <script language="javascript" src="http://cp.match.com <script language="javascript" src="http://cp.match.com ...[SNIP]... |