1.1. http://amch.questionmarket.com/adsc/d851369/20/40646337/decide.php [ES cookie]
1.2. http://amch.questionmarket.com/adscgen/st.php [code parameter]
1.3. http://amch.questionmarket.com/adscgen/st.php [site parameter]
1.4. http://bs.serving-sys.com/BurstingPipe/adServer.bs [bwVal parameter]
1.5. http://bs.serving-sys.com/BurstingPipe/adServer.bs [eyeblaster cookie]
1.6. http://bs.serving-sys.com/BurstingPipe/adServer.bs [flv parameter]
1.7. http://bs.serving-sys.com/BurstingPipe/adServer.bs [res parameter]
1.8. http://bs.serving-sys.com/BurstingPipe/adServer.bs [wmpv parameter]
1.9. http://tacoda.at.atwola.com/rtx/r.js [N cookie]
1.10. http://tacoda.at.atwola.com/rtx/r.js [si parameter]
2. Cross-site scripting (reflected)
2.1. http://ad.yieldmanager.com/st [name of an arbitrarily supplied request parameter]
2.2. http://api.facebook.com/restserver.php [method parameter]
2.3. http://api.facebook.com/restserver.php [urls parameter]
2.4. http://api.viglink.com/api/ping [key parameter]
2.5. http://b.scorecardresearch.com/beacon.js [c1 parameter]
2.6. http://b.scorecardresearch.com/beacon.js [c15 parameter]
2.7. http://b.scorecardresearch.com/beacon.js [c2 parameter]
2.8. http://b.scorecardresearch.com/beacon.js [c3 parameter]
2.9. http://b.scorecardresearch.com/beacon.js [c4 parameter]
2.10. http://b.scorecardresearch.com/beacon.js [c5 parameter]
2.11. http://b.scorecardresearch.com/beacon.js [c6 parameter]
2.12. http://copypasta.credibl.es/stylesheets/compiled/copypasta.css [REST URL parameter 2]
2.13. http://copypasta.credibl.es/stylesheets/compiled/copypasta.css [REST URL parameter 3]
2.14. http://digg.com/remote-submit [REST URL parameter 1]
2.15. http://digg.com/submit [REST URL parameter 1]
2.16. http://hubpages.com/ [name of an arbitrarily supplied request parameter]
2.17. http://hubpages.com/about/advertise [REST URL parameter 1]
2.18. http://hubpages.com/about/advertise [name of an arbitrarily supplied request parameter]
2.19. http://hubpages.com/hubs/hot/ [REST URL parameter 1]
2.20. http://hubpages.com/hubs/hot/ [name of an arbitrarily supplied request parameter]
2.21. http://hubpages.com/my/hubs/stats [REST URL parameter 1]
2.22. http://hubpages.com/my/hubs/stats [REST URL parameter 2]
2.23. http://hubpages.com/my/hubs/stats [REST URL parameter 3]
2.24. http://hubpages.com/signin/ [REST URL parameter 1]
2.25. http://hubpages.com/topics/ [REST URL parameter 1]
2.26. http://hubpages.com/topics/ [name of an arbitrarily supplied request parameter]
2.27. http://hubpages.com/tour/affiliate [REST URL parameter 1]
2.28. http://hubpages.com/tour/affiliate [REST URL parameter 2]
2.29. http://hubpages.com/tour/affiliate [name of an arbitrarily supplied request parameter]
2.30. http://hubpages.com/user/new/ [REST URL parameter 1]
2.31. http://hubpages.com/user/new/ [REST URL parameter 2]
2.32. http://hubpages.com/user/new/ [name of an arbitrarily supplied request parameter]
2.33. https://hubpages.com/signin/ [REST URL parameter 1]
2.34. https://hubpages.com/signin/ [REST URL parameter 1]
2.35. https://hubpages.com/signin/ [explain parameter]
2.36. https://hubpages.com/signin/ [explain parameter]
2.37. https://hubpages.com/signin/ [name of an arbitrarily supplied request parameter]
2.38. https://hubpages.com/signin/ [s parameter]
2.39. https://hubpages.com/signin/ [s parameter]
2.40. https://hubpages.com/signin/ [url parameter]
2.41. https://hubpages.com/signin/ [url parameter]
2.42. https://hubpages.com/signin/reset/ [REST URL parameter 1]
2.43. https://hubpages.com/signin/reset/ [REST URL parameter 1]
2.44. https://hubpages.com/signin/reset/ [REST URL parameter 2]
2.45. https://hubpages.com/signin/reset/ [REST URL parameter 2]
2.46. https://hubpages.com/signin/reset/ [name of an arbitrarily supplied request parameter]
2.47. http://otakubooty.com/Default.asp [login parameter]
2.48. http://otakubooty.com/Default.asp [login parameter]
2.49. http://otakubooty.com/Default.asp [name of an arbitrarily supplied request parameter]
2.50. http://otakubooty.com/oa.asp [name of an arbitrarily supplied request parameter]
2.51. http://otakubooty.com/of.asp [name of an arbitrarily supplied request parameter]
2.52. http://otakubooty.com/otaku_help.asp [name of an arbitrarily supplied request parameter]
2.53. http://otakubooty.com/otaku_help.asp [tab parameter]
2.54. http://otakubooty.com/otaku_news.asp [name of an arbitrarily supplied request parameter]
2.55. http://otakubooty.com/otaku_search.asp [name of an arbitrarily supplied request parameter]
2.56. http://otakubooty.com/otaku_signup.asp [name of an arbitrarily supplied request parameter]
2.57. http://products.proflowers.com/flowers/18-Red-Roses-30050119 [ref parameter]
2.58. http://products.proflowers.com/flowers/18-Red-Roses-30050119 [trackingpgroup parameter]
2.59. http://products.proflowers.com/flowers/18-Red-Roses-30050119 [viewpos parameter]
2.60. http://products.proflowers.com/flowers/20-Sweetheart-Tulips-30007357 [Ref parameter]
2.62. http://products.proflowers.com/flowers/20-Sweetheart-Tulips-30007357 [viewpos parameter]
2.63. http://rover.ebay.com/idmap/0 [footer&cb parameter]
2.64. http://tags.bluekai.com/site/50 [phint parameter]
2.65. http://widgets.digg.com/buttons/count [url parameter]
2.66. http://wine.com/ScriptResource.axd [Lo0P parameter]
2.67. http://wine.com/i-js.js [Lo0P parameter]
2.68. http://wine.com/includes/analytics/s_remote_code.js [Lo0P parameter]
2.69. http://www.floristexpress.net/ [refcode parameter]
2.70. http://www.pageflakes.com/subscribe.aspx [REST URL parameter 1]
2.71. http://www.pageflakes.com/subscribe.aspx [name of an arbitrarily supplied request parameter]
2.72. http://www.wine.com/favicon.ico [REST URL parameter 1]
2.73. http://www.wine.com/includes/analytics/s_remote_code.js [REST URL parameter 1]
2.74. http://www.wine.com/includes/analytics/s_remote_code.js [REST URL parameter 2]
2.75. http://www.wine.com/includes/analytics/s_remote_code.js [REST URL parameter 3]
2.76. http://www.wine.com/includes/css/defaultsix.css [REST URL parameter 1]
2.77. http://www.wine.com/includes/css/defaultsix.css [REST URL parameter 2]
2.78. http://www.wine.com/includes/css/defaultsix.css [REST URL parameter 3]
2.79. http://www.wine.com/includes/js/stateSelect.js [REST URL parameter 1]
2.80. http://www.wine.com/includes/js/stateSelect.js [REST URL parameter 2]
2.81. http://www.wine.com/includes/js/stateSelect.js [REST URL parameter 3]
2.82. http://www.wine.com/includes/js/winedotcom.js [REST URL parameter 1]
2.83. http://www.wine.com/includes/js/winedotcom.js [REST URL parameter 2]
2.84. http://www.wine.com/includes/js/winedotcom.js [REST URL parameter 3]
2.85. http://www.wine.com/v6/giftcenter/Red-Envelope-Wine-Gifts-Product.aspx [REST URL parameter 3]
2.86. http://www.wine.com/v6/giftcenter/proflowersproduct.aspx [REST URL parameter 3]
2.88. http://products.proflowers.com/flowers/A-Valentines-Romance-30046586 [Referer HTTP header]
2.90. http://products.proflowers.com/flowers/Valentines-Day-Bouquet-30045703 [Referer HTTP header]
2.92. http://products.proflowers.com/tulips/20-Rainbow-Valentines-Tulips-426 [Referer HTTP header]
2.93. http://products.proflowers.com/tulips/20-Sweetheart-Tulips-2744 [Referer HTTP header]
2.94. http://tags.bluekai.com/site/50 [Referer HTTP header]
2.95. http://ar.voicefive.com/bmx3/broker.pli [BMX_3PC cookie]
2.96. http://ar.voicefive.com/bmx3/broker.pli [BMX_BR cookie]
2.97. http://ar.voicefive.com/bmx3/broker.pli [BMX_G cookie]
2.98. http://ar.voicefive.com/bmx3/broker.pli [UID cookie]
2.99. http://ar.voicefive.com/bmx3/broker.pli [ar_da39f516a098b3de) ar_p68511049 cookie]
2.100. http://ar.voicefive.com/bmx3/broker.pli [ar_p45555483 cookie]
2.101. http://ar.voicefive.com/bmx3/broker.pli [ar_p67161473 cookie]
2.102. http://ar.voicefive.com/bmx3/broker.pli [ar_p83612734 cookie]
2.103. http://ar.voicefive.com/bmx3/broker.pli [ar_p84053757 cookie]
2.104. http://ar.voicefive.com/bmx3/broker.pli [ar_p84068139 cookie]
2.105. http://ar.voicefive.com/bmx3/broker.pli [ar_p84532700 cookie]
2.106. http://ar.voicefive.com/bmx3/broker.pli [ar_p85001580 cookie]
2.107. http://ar.voicefive.com/bmx3/broker.pli [ar_p86183782 cookie]
2.108. http://ar.voicefive.com/bmx3/broker.pli [ar_s_p84053757 cookie]
2.109. http://ar.voicefive.com/bmx3/node_hulu.pli [UID cookie]
2.110. http://ar.voicefive.com/bmx3/node_hulu.pli [ar_da39f516a098b3de) ar_p68511049 cookie]
2.111. http://ar.voicefive.com/bmx3/node_hulu.pli [ar_p45555483 cookie]
2.112. http://ar.voicefive.com/bmx3/node_hulu.pli [ar_p67161473 cookie]
2.113. http://ar.voicefive.com/bmx3/node_hulu.pli [ar_p83612734 cookie]
2.114. http://ar.voicefive.com/bmx3/node_hulu.pli [ar_p85001580 cookie]
2.116. http://products.proflowers.com/flowers/18-Red-Roses-30050119 [PFC_BrowserId cookie]
2.117. http://products.proflowers.com/flowers/20-Sweetheart-Tulips-30007357 [PFC_BrowserId cookie]
2.118. http://products.proflowers.com/flowers/A-Valentines-Romance-30046586 [PFC_BrowserId cookie]
2.120. http://products.proflowers.com/flowers/Valentines-Day-Bouquet-30045703 [PFC_BrowserId cookie]
2.122. http://products.proflowers.com/tulips/20-Rainbow-Valentines-Tulips-426 [PFC_BrowserId cookie]
2.123. http://products.proflowers.com/tulips/20-Sweetheart-Tulips-2744 [PFC_BrowserId cookie]
2.124. http://www.floristexpress.net/ [ref_code cookie]
2.125. http://www.floristexpress.net/ [ref_code cookie]
2.126. http://www.floristexpress.net/comeback.htm [ref_code cookie]
2.127. http://www.floristexpress.net/comeback.htm [ref_code cookie]
2.128. http://www.floristexpress.net/products/tulip_rainbow.htm [ref_code cookie]
2.129. http://www.floristexpress.net/search.htm [ref_code cookie]
2.130. http://www.floristexpress.net/search.htm [ref_code cookie]
Severity: | High |
Confidence: | Certain |
Host: | http://amch.question |
Path: | /adsc/d851369/20/40646337 |
GET /adsc/d851369/20/40646337 Host: amch.questionmarket.com Proxy-Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: LP=1297439616; CS1=823529-1-2_39959898 |
HTTP/1.1 200 OK Date: Sun, 13 Feb 2011 14:29:56 GMT Server: Apache-AdvancedExtra X-Powered-By: PHP/4.3.8 Expires: Mon, 26 Jul 1997 05:00:00 GMT Cache-Control: no-store, no-cache, must-revalidate, max-age=0 Pragma: no-cache P3P: CP="ALL DSP COR PSAa PSDa OUR IND COM NAV INT LOC OTC", policyref="http://ch DL_S: a208.dl Set-Cookie: CS1=deleted; expires=Sat, 13-Feb-2010 14:29:55 GMT; path=/; domain=.questionmarket Set-Cookie: CS1=823529-1-2_39959898 Set-Cookie: ES=385e1 1ad6393d34c_851369-l8luM-0; expires=Thu, 05-Apr-2012 06:29:56 GMT; path=/; domain=.questionmarket Cache-Control: post-check=0, pre-check=0 Content-Length: 43 Content-Type: image/gif GIF89a.............!..... |
Severity: | High |
Confidence: | Certain |
Host: | http://amch.question |
Path: | /adscgen/st.php |
GET /adscgen/st.php?survey Host: amch.questionmarket.com Proxy-Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: LP=1297439616; CS1=823529-1-2_39959898 |
HTTP/1.1 302 Found Date: Sun, 13 Feb 2011 14:29:29 GMT Server: Apache-AdvancedExtra X-Powered-By: PHP/4.3.8 DL_S: a229.dl Set-Cookie: CS1=deleted; expires=Sat, 13-Feb-2010 14:29:28 GMT; path=/; domain=.questionmarket Set-Cookie: CS1=823529-1-2_39959898 Set-Cookie: ES=823529-ie.pM-MG_844890 Expires: Mon, 26 Jul 1997 05:00:00 GMT Cache-Control: no-store, no-cache, must-revalidate, max-age=0 Cache-Control: post-check=0, pre-check=0 Pragma: no-cache P3P: CP="ALL DSP COR PSAa PSDa OUR IND COM NAV INT LOC OTC", policyref="http://ch Location: http://a.dlqm.net/adscgen 7b6ce45e099 Content-Length: 0 Content-Type: text/html |
Severity: | High |
Confidence: | Certain |
Host: | http://amch.question |
Path: | /adscgen/st.php |
GET /adscgen/st.php?survey Host: amch.questionmarket.com Proxy-Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: LP=1297439616; CS1=823529-1-2_39959898 |
HTTP/1.1 302 Found Date: Sun, 13 Feb 2011 14:29:25 GMT Server: Apache-AdvancedExtra X-Powered-By: PHP/4.3.8 DL_S: a227.dl Set-Cookie: CS1=deleted; expires=Sat, 13-Feb-2010 14:29:24 GMT; path=/; domain=.questionmarket Set-Cookie: CS1=823529-1-2_39959898 Set-Cookie: ES=823529-ie.pM-MG_844890 Expires: Mon, 26 Jul 1997 05:00:00 GMT Cache-Control: no-store, no-cache, must-revalidate, max-age=0 Cache-Control: post-check=0, pre-check=0 Pragma: no-cache P3P: CP="ALL DSP COR PSAa PSDa OUR IND COM NAV INT LOC OTC", policyref="http://ch Location: http://a.dlqm.net/adscgen 230f90016ee-&code=40646325 Content-Length: 0 Content-Type: text/html |
Severity: | High |
Confidence: | Certain |
Host: | http://bs.serving-sys.com |
Path: | /BurstingPipe/adServer.bs |
GET /BurstingPipe/adServer.bs Host: bs.serving-sys.com Proxy-Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: u3=1; C4=; ActivityInfo=000p81bCx%5f |
HTTP/1.1 200 OK Cache-Control: no-cache, no-store Pragma: no-cache Content-Type: text/html Expires: Sun, 05-Jun-2005 22:00:00 GMT Vary: Accept-Encoding Set-Cookie: u2=1b39b065-3668-4ab4 Set-Cookie: eyeblaster=BWVal=22625 1191c28caf6&BWDate=40587.404919 P3P: CP="NOI DEVa OUR BUS UNI" Date: Sun, 13 Feb 2011 14:43:05 GMT Connection: close Content-Length: 0 |
Severity: | High |
Confidence: | Certain |
Host: | http://bs.serving-sys.com |
Path: | /BurstingPipe/adServer.bs |
GET /BurstingPipe/adServer.bs Host: bs.serving-sys.com Proxy-Connection: keep-alive Referer: http://ad.yieldmanager Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: u3=1; C4=; ActivityInfo=000p81bCx%5f |
HTTP/1.1 200 OK Cache-Control: no-cache, no-store Pragma: no-cache Content-Type: text/html Expires: Sun, 05-Jun-2005 22:00:00 GMT Vary: Accept-Encoding Set-Cookie: eyeblaster=BWVal=2657 e7ec5e7748f; expires=Thu, 12-May-2011 13: 16:39 GMT; domain=bs.serving-sys.com Set-Cookie: A3=gSdsafy50aSU00003 Set-Cookie: B3=8bvZ0000000001t68 Set-Cookie: u2=1b39b065-3668-4ab4 P3P: CP="NOI DEVa OUR BUS UNI" Date: Fri, 11 Feb 2011 18:16:39 GMT Connection: close Content-Length: 2219 var ebPtcl="http://";var ebBigS="ds.serving-sys ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://bs.serving-sys.com |
Path: | /BurstingPipe/adServer.bs |
GET /BurstingPipe/adServer.bs Host: bs.serving-sys.com Proxy-Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: u3=1; C4=; ActivityInfo=000p81bCx%5f |
HTTP/1.1 200 OK Cache-Control: no-cache, no-store Pragma: no-cache Content-Type: text/html Expires: Sun, 05-Jun-2005 22:00:00 GMT Vary: Accept-Encoding Set-Cookie: u2=1b39b065-3668-4ab4 Set-Cookie: eyeblaster=BWVal=1948 f938777aeaa&RES=128&WMPV=0; expires=Sat, 14-May-2011 09: 43:05 GMT; domain=bs.serving-sys.com P3P: CP="NOI DEVa OUR BUS UNI" Date: Sun, 13 Feb 2011 14:43:05 GMT Connection: close Content-Length: 0 |
Severity: | High |
Confidence: | Certain |
Host: | http://bs.serving-sys.com |
Path: | /BurstingPipe/adServer.bs |
GET /BurstingPipe/adServer.bs Host: bs.serving-sys.com Proxy-Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: u3=1; C4=; ActivityInfo=000p81bCx%5f |
HTTP/1.1 200 OK Cache-Control: no-cache, no-store Pragma: no-cache Content-Type: text/html Expires: Sun, 05-Jun-2005 22:00:00 GMT Vary: Accept-Encoding Set-Cookie: u2=1b39b065-3668-4ab4 Set-Cookie: eyeblaster=BWVal=1948 ac97bd0a503&WMPV=0; expires=Sat, 14-May-2011 09: 43:05 GMT; domain=bs.serving-sys.com P3P: CP="NOI DEVa OUR BUS UNI" Date: Sun, 13 Feb 2011 14:43:05 GMT Connection: close Content-Length: 0 |
Severity: | High |
Confidence: | Certain |
Host: | http://bs.serving-sys.com |
Path: | /BurstingPipe/adServer.bs |
GET /BurstingPipe/adServer.bs Host: bs.serving-sys.com Proxy-Connection: keep-alive Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.98 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: u3=1; C4=; ActivityInfo=000p81bCx%5f |
HTTP/1.1 200 OK Cache-Control: no-cache, no-store Pragma: no-cache Content-Type: text/html Expires: Sun, 05-Jun-2005 22:00:00 GMT Vary: Accept-Encoding Set-Cookie: u2=1b39b065-3668-4ab4 Set-Cookie: eyeblaster=BWVal=1948 0ecd66392fc; expires=Sat, 14-May-2011 09: 43:05 GMT; domain=bs.serving-sys.com P3P: CP="NOI DEVa OUR BUS UNI" Date: Sun, 13 Feb 2011 14:43:05 GMT Connection: close Content-Length: 0 |
Severity: | High |
Confidence: | Certain |
Host: | http://tacoda.at.atwola |
Path: | /rtx/r.js |
GET /rtx/r.js?cmd=APE&si Host: tacoda.at.atwola.com Proxy-Connection: keep-alive Referer: http://tags.bluekai.com Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ATTACID=a3Z0aWQ9MTZp |
HTTP/1.1 200 OK Date: Sun, 13 Feb 2011 14:22:42 GMT Server: Apache/1.3.37 (Unix) mod_perl/1.29 P3P: policyref="http://www P3P: policyref="http://www Cache-Control: max-age=900 Expires: Sun, 13 Feb 2011 14:37:42 GMT Set-Cookie: ANRTT=50213^1^1297712974 Set-Cookie: Tsid=0^1297606962 Set-Cookie: TData=99999|^|50160|50412 Set-Cookie: Anxd=x; expires=Sun, 13-Feb-11 20:22:42 GMT; path=/; domain=tacoda.at.atwola Set-Cookie: N=2:3e9134c20f00f3af 2c97e4afc64,3e9134c20f00f3af730 Set-Cookie: ATTAC=a3ZzZWc9OTk5OT Cteonnt-Length: 312 Content-Type: application/x-javascript Content-Length: 312 var ANUT=1; var ANOO=0; var ANSR=1; var ANTID='16if17a0kq0bgd'; var ANSL='99999|^|50160|50412 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://tacoda.at.atwola |
Path: | /rtx/r.js |
GET /rtx/r.js?cmd=APE&si=84bf8%0d%0a588720eedd1&pi=M&xs=3&pu=http%253A/ Host: tacoda.at.atwola.com Proxy-Connection: keep-alive Referer: http://tags.bluekai.com Accept: */* User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ATTACID=a3Z0aWQ9MTZp |
HTTP/1.1 200 OK Date: Sun, 13 Feb 2011 14:20:10 GMT Server: Apache/1.3.37 (Unix) mod_perl/1.29 P3P: policyref="http://www P3P: policyref="http://www Cache-Control: max-age=900 Expires: Sun, 13 Feb 2011 14:35:10 GMT Set-Cookie: ANRTT=50213^1^1297712974 Set-Cookie: Tsid=0^1297606810 588720eedd1^1297606810^1297608610; path=/; expires=Sun, 13-Feb-11 14:50:10 GMT; domain=tacoda.at.atwola Set-Cookie: TData=99999|^|50160|50412 Set-Cookie: Anxd=x; expires=Sun, 13-Feb-11 20:20:10 GMT; path=/; domain=tacoda.at.atwola Set-Cookie: N=2:3e9134c20f00f3af Set-Cookie: ATTAC=a3ZzZWc9OTk5OT ntCoent-Length: 312 Content-Type: application/x-javascript Content-Length: 312 var ANUT=1; var ANOO=0; var ANSR=1; var ANTID='16if17a0kq0bgd'; var ANSL='99999|^|50160|50412 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://us.ebayobjects.com |
Path: | /1ai/ebay.ebayus.58058 |
GET /83fcc%0d%0ac9d46bf1ef4/ebay.ebayus.58058 Host: us.ebayobjects.com Proxy-Connection: keep-alive Referer: http://computers.shop Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.0 302 Moved Temporarily Content-Type: text/html Content-Length: 36 Location: http://static.2mdn.net/83fcc c9d46bf1ef4/ebay.ebayus.58058 <h1>Error 302 Moved Temporarily</h1> |
Severity: | High |
Confidence: | Certain |
Host: | http://ad.yieldmanager |
Path: | /st |
GET /st?ad_type=iframe&ad Host: ad.yieldmanager.com Proxy-Connection: keep-alive Referer: http://hubpages.com/hubs Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.13 (KHTML, like Gecko) Chrome/9.0.597.94 Safari/534.13 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: pc1="b!!!!#!#49P!!!*Z!# |