1.1. http://ad.doubleclick.net/adi/N815.cnnmoney/B5064924.32 [AdID parameter]
1.2. http://ad.doubleclick.net/adi/N815.cnnmoney/B5064924.32 [TargetID parameter]
1.3. http://core.insightexpressai.com/adServer/GetInvite2.aspx [esi parameter]
1.5. http://core.insightexpressai.com/adServer/GetInvite2.aspx [referer parameter]
1.8. http://publisher.mediapass.com/Affiliate/SignUpStep2.aspx [ASP.NET_SessionId cookie]
1.12. http://publisher.mediapass.com/Affiliate/SignUpStep3.aspx [ASP.NET_SessionId cookie]
1.13. http://publisher.mediapass.com/Affiliate/login.aspx [LoginName parameter]
1.14. http://publisher.mediapass.com/Affiliate/login.aspx [LoginPassword parameter]
1.15. http://publisher.mediapass.com/aw.aspx [A parameter]
1.16. http://redcated/APM/iview/147641056/direct [MUID cookie]
Severity: | High |
Confidence: | Tentative |
Host: | http://ad.doubleclick.net |
Path: | /adi/N815.cnnmoney |
GET /adi/N815.cnnmoney Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ads.cnn.com/html User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __gads=ID=46b610ae08 |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Date: Wed, 23 Mar 2011 19:45:33 GMT Expires: Wed, 23 Mar 2011 19:45:33 GMT Vary: Accept-Encoding Cache-Control: private, x-gzip-ok="" Content-Length: 7698 <html><head><title <!-- Code auto-generated on Mon Dec 20 16:08:39 EST 2010 --> <script src="http://s0.2mdn.net <SCRIPT LANGUAGE="JavaScript"> <!-- function DCFlash(id,pVM){ var swf = "http://s0.2mdn.net var gif = "http://s0.2mdn.net var minV = 9; var FWH = ' width="728" height="90" '; var url = escape("http://ad var fscUrl = url; var fscUrlClickTagFound = false; var wmode = "opaque"; var bg = ""; var dcallowscriptaccess = "never"; var openWindow = "false"; var winW = 0; var winH = 0; var winL = 0; var winT = 0; var moviePath=swf.substring(0 var sm=new Array(); var defaultCtVal = escape("http://ad ...[SNIP]... |
GET /adi/N815.cnnmoney Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ads.cnn.com/html User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __gads=ID=46b610ae08 |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Date: Wed, 23 Mar 2011 19:45:34 GMT Expires: Wed, 23 Mar 2011 19:45:34 GMT Vary: Accept-Encoding Cache-Control: private, x-gzip-ok="" Content-Length: 7682 <html><head><title <!-- Code auto-generated on Tue Mar 08 09:18:11 EST 2011 --> <script src="http://s0.2mdn.net <SCRIPT LANGUAGE="JavaScript"> <!-- function DCFlash(id,pVM){ var swf = "http://s0.2mdn.net var gif = "http://s0.2mdn.net var minV = 9; var FWH = ' width="728" height="90" '; var url = escape("http://ad var fscUrl = url; var fscUrlClickTagFound = false; var wmode = "opaque"; var bg = ""; var dcallowscriptaccess = "never"; var openWindow = "false"; var winW = 0; var winH = 0; var winL = 0; var winT = 0; var moviePath=swf.substring(0 var sm=new Array(); var defaultCtVal = escape("http://ad ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://ad.doubleclick.net |
Path: | /adi/N815.cnnmoney |
GET /adi/N815.cnnmoney Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ads.cnn.com/html User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __gads=ID=46b610ae08 |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Date: Wed, 23 Mar 2011 19:46:07 GMT Expires: Wed, 23 Mar 2011 19:46:07 GMT Vary: Accept-Encoding Cache-Control: private, x-gzip-ok="" Content-Length: 7700 <html><head><title <!-- Code auto-generated on Mon Dec 20 16:08:37 EST 2010 --> <script src="http://s0.2mdn.net <SCRIPT LANGUAGE="JavaScript"> <!-- function DCFlash(id,pVM){ var swf = "http://s0.2mdn.net var gif = "http://s0.2mdn.net var minV = 9; var FWH = ' width="728" height="90" '; var url = escape("http://ad var fscUrl = url; var fscUrlClickTagFound = false; var wmode = "opaque"; var bg = ""; var dcallowscriptaccess = "never"; var openWindow = "false"; var winW = 0; var winH = 0; var winL = 0; var winT = 0; var moviePath=swf.substring(0 var sm=new Array(); var defaultCtVal = escape("http://ad ...[SNIP]... |
GET /adi/N815.cnnmoney Host: ad.doubleclick.net Proxy-Connection: keep-alive Referer: http://ads.cnn.com/html User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __gads=ID=46b610ae08 |
HTTP/1.1 200 OK Server: DCLK-AdSvr Content-Type: text/html Date: Wed, 23 Mar 2011 19:46:08 GMT Expires: Wed, 23 Mar 2011 19:46:08 GMT Vary: Accept-Encoding Cache-Control: private, x-gzip-ok="" Content-Length: 7583 <html><head><title <!-- Code auto-generated on Tue Mar 08 11:18:03 EST 2011 --> <script src="http://s0.2mdn.net <SCRIPT LANGUAGE="JavaScript"> <!-- function DCFlash(id,pVM){ var swf = "http://s0.2mdn.net var gif = "http://s0.2mdn.net var minV = 9; var FWH = ' width="728" height="90" '; var url = escape("http://ad var fscUrl = url; var fscUrlClickTagFound = false; var wmode = "opaque"; var bg = ""; var dcallowscriptaccess = "never"; var openWindow = "false"; var winW = 0; var winH = 0; var winL = 0; var winT = 0; var moviePath=swf.substring(0 var sm=new Array(); var defaultCtVal = escape("http://ad ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://core.insighte |
Path: | /adServer/GetInvite2.aspx |
GET /adServer/GetInvite2.aspx Host: core.insightexpressai.com Proxy-Connection: keep-alive Referer: http://ads.cnn.com/html User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: DW=216a3151297859685; IXAIBannerCounter174466=1 |
HTTP/1.1 500 Internal Server Error Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/7.0 P3P: CP="OTI DSP COR CUR ADMi DEVi TAI PSA PSD IVD CONi TELi OUR BUS STA" Content-Length: 3034 Vary: Accept-Encoding Date: Wed, 23 Mar 2011 19:41:03 GMT Connection: close Cache-Control: no-store <html> <head> <title>Runtime Error</title> <style> body {font-family:"Verdana" p {font-family:"Verdana" ...[SNIP]... |
GET /adServer/GetInvite2.aspx Host: core.insightexpressai.com Proxy-Connection: keep-alive Referer: http://ads.cnn.com/html User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: DW=216a3151297859685; IXAIBannerCounter174466=1 |
HTTP/1.1 200 OK Content-Type: text/javascript; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 P3P: CP="OTI DSP COR CUR ADMi DEVi TAI PSA PSD IVD CONi TELi OUR BUS STA" Date: Wed, 23 Mar 2011 19:41:03 GMT Connection: close Cache-Control: no-store Content-Length: 21928 var InsightExpress={} ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://core.insighte |
Path: | /adServer/GetInvite2.aspx |
GET /adServer/GetInvite2.aspx Host: core.insightexpressai.com Proxy-Connection: keep-alive Referer: http://ads.cnn.com/html User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: DW=216a3151297859685; IXAIBannerCounter174466=1 |
HTTP/1.1 500 Internal Server Error Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/7.0 P3P: CP="OTI DSP COR CUR ADMi DEVi TAI PSA PSD IVD CONi TELi OUR BUS STA" Content-Length: 3034 Vary: Accept-Encoding Date: Wed, 23 Mar 2011 19:41:14 GMT Connection: close Cache-Control: no-store <html> <head> <title>Runtime Error</title> <style> body {font-family:"Verdana" p {font-family:"Verdana" ...[SNIP]... |
GET /adServer/GetInvite2.aspx Host: core.insightexpressai.com Proxy-Connection: keep-alive Referer: http://ads.cnn.com/html User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: DW=216a3151297859685; IXAIBannerCounter174466=1 |
HTTP/1.1 200 OK Content-Type: text/javascript; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 P3P: CP="OTI DSP COR CUR ADMi DEVi TAI PSA PSD IVD CONi TELi OUR BUS STA" Date: Wed, 23 Mar 2011 19:41:15 GMT Connection: close Cache-Control: no-store Content-Length: 21944 var InsightExpress={} ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://core.insighte |
Path: | /adServer/GetInvite2.aspx |
GET /adServer/GetInvite2.aspx Host: core.insightexpressai.com Proxy-Connection: keep-alive Referer: http://ads.cnn.com/html User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: DW=216a3151297859685; IXAIBannerCounter174466=1 |
HTTP/1.1 500 Internal Server Error Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/7.0 P3P: CP="OTI DSP COR CUR ADMi DEVi TAI PSA PSD IVD CONi TELi OUR BUS STA" Content-Length: 3034 Vary: Accept-Encoding Date: Wed, 23 Mar 2011 19:41:07 GMT Connection: close Cache-Control: no-store <html> <head> <title>Runtime Error</title> <style> body {font-family:"Verdana" p {font-family:"Verdana" ...[SNIP]... |
GET /adServer/GetInvite2.aspx Host: core.insightexpressai.com Proxy-Connection: keep-alive Referer: http://ads.cnn.com/html User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: DW=216a3151297859685; IXAIBannerCounter174466=1 |
HTTP/1.1 200 OK Content-Type: text/javascript; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 P3P: CP="OTI DSP COR CUR ADMi DEVi TAI PSA PSD IVD CONi TELi OUR BUS STA" Date: Wed, 23 Mar 2011 19:41:07 GMT Connection: close Cache-Control: no-store Content-Length: 21930 var InsightExpress={} ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://publisher |
Path: | /Affiliate/SignUpStep1 |
POST /Affiliate/SignUpStep1 Host: publisher.mediapass.com Proxy-Connection: keep-alive Referer: http://publisher Cache-Control: max-age=0 Origin: http://publisher User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=152699238 Content-Length: 1058 __VIEWSTATE=%2FwEPDw ...[SNIP]... ktICPCwKBobKNBALkzL2 ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: private Content-Length: 6489 Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 P3P: CP="NOI DSP COR NID ADMa OPTa OUR NOR" X-Powered-By: ASP.NET Date: Wed, 23 Mar 2011 19:38:02 GMT Incorrect syntax near 'h02332@gmail'. <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
POST /Affiliate/SignUpStep1 Host: publisher.mediapass.com Proxy-Connection: keep-alive Referer: http://publisher Cache-Control: max-age=0 Origin: http://publisher User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=152699238 Content-Length: 1058 __VIEWSTATE=%2FwEPDw ...[SNIP]... ktICPCwKBobKNBALkzL2 ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: private Content-Length: 10337 Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 P3P: CP="NOI DSP COR NID ADMa OPTa OUR NOR" X-Powered-By: ASP.NET Date: Wed, 23 Mar 2011 19:38:06 GMT <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head><title> Step 2: C ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://publisher |
Path: | /Affiliate/SignUpStep1 |
POST /Affiliate/SignUpStep1 Host: publisher.mediapass.com Proxy-Connection: keep-alive Referer: http://publisher Cache-Control: max-age=0 Origin: http://publisher User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=152699238 Content-Length: 1058 __VIEWSTATE=%2FwEPDw ...[SNIP]... ktICPCwKBobKNBALkzL2 ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: private Content-Length: 390 Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 P3P: CP="NOI DSP COR NID ADMa OPTa OUR NOR" X-Powered-By: ASP.NET Date: Wed, 23 Mar 2011 20:38:08 GMT Incorrect syntax near 'h02332@gmail.com'. Unclosed quotation mark after the character string 'h02332@gmail.com'.<p ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://publisher |
Path: | /Affiliate/SignUpStep2 |
POST /Affiliate/SignUpStep2 Host: publisher.mediapass.com Proxy-Connection: keep-alive Referer: http://publisher Cache-Control: max-age=0 Origin: http://publisher User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Content-Type: multipart/form-data; boundary=----WebKitF Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=152699238 Content-Length: 125009 ------WebKitFormBoun Content-Disposition: form-data; name="__VIEWSTATE" /wEPDwUJNjg4NzczOTA2 ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: private Content-Length: 10700 Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 P3P: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Set-Cookie: ASP.NET_SessionId X-Powered-By: ASP.NET Date: Wed, 23 Mar 2011 19:45:42 GMT Incorrect syntax near '='. <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://publisher |
Path: | /Affiliate/SignUpStep2 |
POST /Affiliate/SignUpStep2 Host: publisher.mediapass.com Proxy-Connection: keep-alive Referer: http://publisher Cache-Control: max-age=0 Origin: http://publisher User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Content-Type: multipart/form-data; boundary=----WebKitF Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=152699238 Content-Length: 2670 ------WebKitFormBoun Content-Disposition: form-data; name="__VIEWSTATE" /wEPDwUJNjg4NzczOTA2 ...[SNIP]... ntentPlaceHolder2 10 ------WebKitFormBoun Content-Disposition: form-data; name="_ctl0:ContentP 2238' ------WebKitFormBoun Content-Disposition: form-data; name="_ctl0:ContentP 3_2592000 ------WebKitFormBoun ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: private Content-Length: 10916 Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 P3P: CP="NOI DSP COR NID ADMa OPTa OUR NOR" X-Powered-By: ASP.NET Date: Wed, 23 Mar 2011 19:41:52 GMT Unclosed quotation mark after the character string ''. <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://publisher |
Path: | /Affiliate/SignUpStep2 |
POST /Affiliate/SignUpStep2 Host: publisher.mediapass.com Proxy-Connection: keep-alive Referer: http://publisher Cache-Control: max-age=0 Origin: http://publisher User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Content-Type: multipart/form-data; boundary=----WebKitF Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=152699238 Content-Length: 2670 ------WebKitFormBoun Content-Disposition: form-data; name="__VIEWSTATE" /wEPDwUJNjg4NzczOTA2 ...[SNIP]... ontentPlaceHolder2 9 ------WebKitFormBoun Content-Disposition: form-data; name="_ctl0:ContentP 2239' ------WebKitFormBoun Content-Disposition: form-data; name="_ctl0:ContentP 6_2592000 ------WebKitFormBoun ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: private Content-Length: 10916 Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 P3P: CP="NOI DSP COR NID ADMa OPTa OUR NOR" X-Powered-By: ASP.NET Date: Wed, 23 Mar 2011 19:44:46 GMT Unclosed quotation mark after the character string ''. <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://publisher |
Path: | /Affiliate/SignUpStep2 |
POST /Affiliate/SignUpStep2 Host: publisher.mediapass.com Proxy-Connection: keep-alive Referer: http://publisher Cache-Control: max-age=0 Origin: http://publisher User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Content-Type: multipart/form-data; boundary=----WebKitF Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=152699238 Content-Length: 2670 ------WebKitFormBoun Content-Disposition: form-data; name="__VIEWSTATE" /wEPDwUJNjg4NzczOTA2 ...[SNIP]... ontentPlaceHolder2 8 ------WebKitFormBoun Content-Disposition: form-data; name="_ctl0:ContentP 2240' ------WebKitFormBoun Content-Disposition: form-data; name="_ctl0:ContentP Update Prices and Subscription Periods ------WebKitFormBoun ...[SNIP]... |
HTTP/1.1 200 OK Cache-Control: private Content-Length: 10916 Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 P3P: CP="NOI DSP COR NID ADMa OPTa OUR NOR" X-Powered-By: ASP.NET Date: Wed, 23 Mar 2011 19:46:18 GMT Unclosed quotation mark after the character string ''. <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://publisher |
Path: | /Affiliate/SignUpStep3 |
GET /Affiliate/SignUpStep3 Host: publisher.mediapass.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: optiontabs=0; __utmz=152699238 |
HTTP/1.1 200 OK Cache-Control: private Content-Length: 222 Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 P3P: CP="NOI DSP COR NID ADMa OPTa OUR NOR" Set-Cookie: ASP.NET_SessionId X-Powered-By: ASP.NET Date: Wed, 23 Mar 2011 20:32:46 GMT Connection: close Procedure or function 'spafw_GetAssetInfoByAwId ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://publisher |
Path: | /Affiliate/login.aspx |
POST /Affiliate/login.aspx HTTP/1.1 Host: publisher.mediapass.com Proxy-Connection: keep-alive Referer: http://publisher Cache-Control: max-age=0 Origin: http://publisher User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=152699238 Content-Length: 401 __EVENTTARGET=&_ |
HTTP/1.1 200 OK Cache-Control: private Content-Length: 452 Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 P3P: CP="NOI DSP COR NID ADMa OPTa OUR NOR" X-Powered-By: ASP.NET Date: Wed, 23 Mar 2011 20:41:18 GMT Incorrect syntax near 'h02332@gmail.com'. Unclosed quotation mark after the character string 'h02332@gmail.com'.<p ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://publisher |
Path: | /Affiliate/login.aspx |
POST /Affiliate/login.aspx HTTP/1.1 Host: publisher.mediapass.com Proxy-Connection: keep-alive Referer: http://publisher Cache-Control: max-age=0 Origin: http://publisher User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: __utmz=152699238 Content-Length: 401 __EVENTTARGET=&_ |
HTTP/1.1 200 OK Cache-Control: private Content-Length: 432 Content-Type: text/html; charset=utf-8 Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 P3P: CP="NOI DSP COR NID ADMa OPTa OUR NOR" X-Powered-By: ASP.NET Date: Wed, 23 Mar 2011 20:41:26 GMT Incorrect syntax near 'LL123456!'. Unclosed quotation mark after the character string 'LL123456!'.<p>SELECT AffiliateID From tblaff_Affiliates (NOLOCK) Where (LoginName=N'h02332@gmail ...[SNIP]... |
Severity: | High |
Confidence: | Tentative |
Host: | http://publisher |
Path: | /aw.aspx |
GET /aw.aspx?B=1&A=641'&Task=Get&Advanced=True HTTP/1.1 Host: publisher.mediapass.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: optiontabs=0; __utmz=152699238 |
HTTP/1.1 302 Found Cache-Control: private Content-Length: 171 Content-Type: text/html; charset=utf-8 Location: /Affiliate/Error.aspx?aspxerrorpath=/aw Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 P3P: CP="NOI DSP COR NID ADMa OPTa OUR NOR" X-Powered-By: ASP.NET Date: Wed, 23 Mar 2011 20:30:54 GMT Connection: close <html><head><title>Object moved</title></head><body <h2>Object moved to <a href="%2fAffiliate </body></html> |
GET /aw.aspx?B=1&A=641''&Task=Get&Advanced=True HTTP/1.1 Host: publisher.mediapass.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: optiontabs=0; __utmz=152699238 |
HTTP/1.1 302 Found Cache-Control: private Content-Length: 129 Content-Type: text/html; charset=utf-8 Location: /blank.gif Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 P3P: CP="NOI DSP COR NID ADMa OPTa OUR NOR" X-Powered-By: ASP.NET Date: Wed, 23 Mar 2011 20:30:56 GMT Connection: close <html><head><title>Object moved</title></head><body <h2>Object moved to <a href="%2fblank.gif">here< </body></html> |
Severity: | High |
Confidence: | Tentative |
Host: | http://redcated |
Path: | /APM/iview/147641056 |
GET /APM/iview/147641056 Host: redcated Proxy-Connection: keep-alive Referer: http://cdn-bpx.a9.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: AA002=1297806090-11017856 |
HTTP/1.1 200 OK Cache-Control: no-store Content-Type: text/html Expires: 0 Vary: Accept-Encoding X-Powered-By: ASP.NET Date: Wed, 23 Mar 2011 19:05:22 GMT Connection: close Content-Length: 4866 <!--#WIDTH=728 #HEIGHT=90 #CREATIVETYPEID=4 #DELIVERYMETHODID=2--> <html> <head> <title>PA_DCW_CleanBeach <meta HTTP-EQUIV="expires" CONTENT="0"></meta> <meta HTTP-EQUI ...[SNIP]... <SCR' + 'IPT LANGUAGE=VBScript\>'); document.writeln('on error resume next'); document.writeln('Set oFlashPlayer = CreateObject("Shockw document.writeln('If IsObject(oFlashPlayer) Then'); document.writeln('bIsRig ...[SNIP]... |
GET /APM/iview/147641056 Host: redcated Proxy-Connection: keep-alive Referer: http://cdn-bpx.a9.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: AA002=1297806090-11017856 |
HTTP/1.1 200 OK Cache-Control: no-store Content-Type: text/html Expires: 0 Vary: Accept-Encoding X-Powered-By: ASP.NET Date: Wed, 23 Mar 2011 19:05:23 GMT Connection: close Content-Length: 1621 <SCRIPT Language="Javascript"> var DCcode="N5398.msn var DCwidth="728"; var DCheight="90"; var randNum = Math.floor(Math.random() * 100000000) + 100000000; var i ...[SNIP]... |