]> 1786100524974190592 2097920 Cross-site scripting (reflected) http://choices.truste.com High Certain
The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
  • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
  • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
  • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
    f7604<script>alert(1)</script>310548b6298 was submitted in the h parameter. This input was echoed unmodified in the application's response.

    This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
    alert(1)310548b6298&ox=20&zi=10002&plc=tr&iplc=ctr HTTP/1.1 Host: choices.truste.com Proxy-Connection: keep-alive Referer: http://redcated/COM/iview/286738779/direct;wi.300;hi.250/01?click=http%3A%2F%2Fads%2Ebluelithium%2Ecom%2Fclk%3F2%2C13%253B7979b33d9e4bd6d0%253B12f652ef121%2C0%253B%253B%253B2538480843%2C5jBaAPSUGACV6HcAAAAAAE6rHgAAAAAAAgAAAAIAAAAAAP8AAAABEG8SHgAAAAAA%2DQEtAAAAAAB8bigAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAB6sAUAAAAAAAIAAwAAAAAAIfEuZS8BAAAAAAAAADhjNWNiMGI2LTY5MzItMTFlMC05NjA5LTAwMzA0OGQ2NjcyYQA4nyoAAAA%3D%2Chttp%253A%252F%252Fglobal%2Eard%2Eyahoo%2Ecom%252FSIG%253D15r2836hg%252FM%253D787833%2E14445075%2E14291840%2E13270877%252FD%253Dflickr%252FS%253D792600415%253ALREC%252FY%253DYAHOO%252FEXP%253D1303079863%252FL%253D1IHgjdG%5FaWaKRmeZTatPkQJwrcHW802rT5cAC%5F9Q%252FB%253DoVI1X0Je5ic%2D%252FJ%253D1303072663859267%252FK%253DsUGpy66vNZ9u8X6MUKcbSg%252FA%253D6261161%252FR%253D0%252F%252A%2524%2Chttp%253A%252F%252Fadjax%2Eflickr%2Eyahoo%2Ecom%252Fads%252F792600415%252Flrec%252F%2C%24http%3A%2F%2Ft.invitemedia.com%2Ftrack_click%3FauctionID%3D13030726651610996-80002%26campID%3D61369%26crID%3D80002%26pubICode%3D2949625%26pub%3D209944%26partnerID%3D64%26redirectURL%3D User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 ]]> \ \
    \ \
    \

    AT&T cares about your privacy. \ delivered this personalized ad based on your interests. \ This is a placeholder for custom text.\

    \ \
    \
    \

    Ad Choices by

    \
    \ \ \ '; var te_clr1_att02cont1_bi = {'baseName':'te-clr1-att02cont1','anchName':'te-clr1-att02cont1-anch','width':300,'height':250f7604310548b6298,'ox':20,'oy':0,'plc':'tr','iplc':'ctr','intDivName':'te-clr1-att02cont1-itl','iconSpanId':'te-clr1-att02cont1-icon','backgroundColor':'white','opacity':.8,'filterOpacity':80,'containerId':'att02cont1','noticeBaseUrl':'http://choices.truste.com/camsg?','interstitial':te_clr1_att02cont1_ib,'interstitialWidth':240,'interstitialHeight':220,'popTab':false,'showLink':'javascript:truste.ca.showpop(te_clr1_att02cont1_bi)','hideLink':'javascript:self.close()','icon':'http://choices.truste.com/assets/admarker.png','icon_cam':'http://choices.truste.com/assets/adicon.png','iconText':'','aid':'att02','pid':'mec01','zindex':'10002','cam':'2'}; var tecabaseurl = 'choices.truste.com'; truste.ca.addEvent(window, 'load', function() { if(!truste.defjsload) { var element = document.createElement('script'); element.src = 'http://' + tecabaseurl + '/js/tecaintjs.js'; document.body.appendChild(element); truste.defjsload = true; } truste.ca.addBinding(te_clr1_att02cont1_bi); }); ]]>
    false
    961300055603510272 8389632 Content type incorrectly stated http://ol5u8o2ka38be34j62ktnefji390jhro-a-fc-opensocial.googleusercontent.com Information Firm
    In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
  • Content-Type: application/json; charset=UTF-8
  • The response states that it contains JSON. However, it actually appears to contain plain text.]]>
    {"http://fcgadgets.appspot.com/s/f?n=0.884971016086638&pageurl=http://www.cloudscan.me/search/label/SQL%20Injection":{"body":"\u003c?xml version=\"1.0\" encoding=\"UTF-8\" ?\u003e\r\n\u003cshareit\u003e\r\n \u003cshares\u003e\r\n \r\n \u003c/shares\u003e\r\n\u003c/shareit\u003e","DataHash":"40k94t53koojkh66pro8klcjm4","rc":200}}]]> false
    3164460122989068288 8389120 HTML does not specify charset http://input.insights.gravity.com Information Certain
    In most cases, the absence of a charset directive does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
    charset=ISO-8859-1.]]> false
    5564126131557967872 6292224 Private IP addresses disclosed http://www.facebook.com Information Certain
    Discovering the private addresses used within an organisation can help an attacker in carrying out network-layer attacks aiming to penetrate the organisation's internal infrastructure.]]>
  • 10.42.115.53
  • ]]>
    Facebook
    FilesTube - Media Search Engine
    Confirm
    You like FilesTube - Media Search Engine. · Admin Page · Insights · ErrorYou like this.148,901 · Admin Page · Insights · Error
    ]]>
    false
    8480245016302292992 2097920 Cross-site scripting (reflected) http://b.scorecardresearch.com High Certain
    The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

    Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

    The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
  • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
  • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
  • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
    a71a9<script>alert(1)</script>6bd71df69a3 was submitted in the c3 parameter. This input was echoed unmodified in the application's response.

    This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
    alert(1)6bd71df69a3&c4=13345&c5=&c6=&c10=3202889&c15= HTTP/1.1 Host: b.scorecardresearch.com Proxy-Connection: keep-alive Referer: http://www.democracyforums.com/frontpage/index.php User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 ]]> 2080?a.substr(0,2075)+"&ct=1":a;if(!/BlackBerry.*?\/([1-3]\.|4\.[0-5])/.test(b.userAgent)){var c=new Image();c.onload=function(){};c.src=a}else{a=a.replace(/\/b\?/,"/p?");j.write("")}return a}catch(h){}};COMSCORE.purge=function(a){try{var c=[],f,b;a=a||_comscore;for(b=a.length-1;b>=0;b--){f=COMSCORE.beacon(a[b]);a.splice(b,1);if(f){c.push(f)}}return c}catch(d){}};COMSCORE.purge(); COMSCORE.beacon({c1:"8", c2:"6135404", c3:"25a71a96bd71df69a3", c4:"13345", c5:"", c6:"", c10:"3202889", c15:"", c16:"", r:""}); ]]> false
    6720149918710074368 5243904 Cross-domain Referer leakage http://googleads.g.doubleclick.net Information Certain
    If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

    You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

    Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

    Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
  • http://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-4063878933780912&output=html&h=90&slotname=2510184792&w=728&lmt=1302908819&flash=10.2.154&url=http%3A%2F%2Fxss.cx%2Fexamples%2Fdork%2Fcreditcard%2Fxss-dork-cross-site-scripting.secure.usaepay.com.html&dt=1303087689018&bpp=3&shv=r20110406&jsv=r20110415&correlator=1303087689743&frm=0&adk=1607234649&ga_vid=1334805164.1303087690&ga_sid=1303087690&ga_hid=645058808&ga_fc=0&u_tz=-300&u_his=4&u_java=1&u_h=1200&u_w=1920&u_ah=1156&u_aw=1920&u_cd=16&u_nplug=9&u_nmime=44&biw=1063&bih=1000&fu=0&ifi=1&dtd=841&xpc=P8j0o1l9jY&p=http%3A//xss.cx
  • The response contains the following links to other domains:
    • http://pagead2.googlesyndication.com/pagead/abglogo/abg-en-100c-000000.png
    • http://pagead2.googlesyndication.com/pagead/sma8.js
    • http://www.google.com/url?ct=abg&q=https://www.google.com/adsense/support/bin/request.py%3Fcontact%3Dabg_afc%26url%3Dhttp://xss.cx/examples/dork/creditcard/xss-dork-cross-site-scripting.secure.usaepay.com.html%26hl%3Den%26client%3Dca-pub-4063878933780912%26adU%3Dwww.info.com%26adT%3DOnline%2BCredit%2BCard%2BPayments%26adU%3DVendorSeek.com/CC_Processing%26adT%3DCredit%2BCard%2BProcessing%26adU%3Dwww.FreeCreditReport.com%26adT%3DFreeCreditReport.com%25C2%25AE%26gl%3DUS&usg=AFQjCNGS6gY5V5h7firc_SQLEDqe9OIhYQ
    ]]>
    Ads by Google
    ]]>
    false
    6043005929415294976 8389120 HTML does not specify charset http://www.longislanderotic.com Information Certain
    In most cases, the absence of a charset directive does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
    charset=ISO-8859-1.]]> Excessive bandwidth usage]]> false
    4392058535265896448 5244928 Password field with autocomplete enabled http://www1.xxxmatch.com Low Certain
    The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
    autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
  • http://www1.xxxmatch.com/login/svl:login_3
  • The form contains the following password field with autocomplete enabled:
    • password
    ]]>
    Free Sex, Free XXX, XXX Sex, Online Personals Site, Online Dating Site, Adult Personals, Adult Dating - XXXMATCH.COM

    Login to xxxmatch.com!

    To login to xxxmatch.com, please fill in your username and password in the form below and hit submit.
    If you are not a member of xxxmatch.com please Click here to create a new account.

    login
    ]]>
    false
    5291120285238288384 4195584 Cross-domain POST http://www.roofable.com Information Certain www.feedburner.com. The form contains the following fields:
    • email
    • url
    • title
    • loc
    ]]>
    Roofable » Page not found
    A rooftop view of Orlando’s real estate market, trends and neighborhoods
    ]]>
    false
    5393924166276947968 5244416 Cookie without HttpOnly flag set http://www.google.com Information Certain
    You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
  • PREF=ID=0772c9d5ef13aaaf:U=d212295d0f1573ee:FF=0:TM=1303071569:LM=1303071852:S=AYepXKyoLFAyEbmZ; expires=Tue, 16-Apr-2013 20:24:12 GMT; path=/; domain=.google.com
  • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
    false
    9197810201923178496 5243648 Cookie scoped to parent domain http://www.facebook.com Information Certain
  • datr=g02rTYpen2DDAD_QKapQOo9G; expires=Tue, 16-Apr-2013 20:28:51 GMT; path=/; domain=.facebook.com; httponly
  • lsd=W2foN; path=/; domain=.facebook.com
  • reg_fb_gate=http%3A%2F%2Fwww.facebook.com%2Fsharer.php; path=/; domain=.facebook.com
  • reg_fb_ref=http%3A%2F%2Fwww.facebook.com%2Fsharer.php; path=/; domain=.facebook.com
  • The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
    Login | Facebook
    ]]>
    false
    6795395708431466496 8389632 Content type incorrectly stated http://longislanderotic.com Information Firm
    In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
  • Content-Type: text/html
  • The response states that it contains HTML. However, it actually appears to contain XML.]]>
    Excessive bandwidth usage]]> false
    2256807178831903744 2097920 Cross-site scripting (reflected) http://choices.truste.com High Certain
    The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

    Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

    The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
  • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
  • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
  • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
    11820<script>alert(1)</script>c86769d99db was submitted in the plc parameter. This input was echoed unmodified in the application's response.

    This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
    alert(1)c86769d99db&iplc=ctr HTTP/1.1 Host: choices.truste.com Proxy-Connection: keep-alive Referer: http://redcated/COM/iview/286738779/direct;wi.300;hi.250/01?click=http%3A%2F%2Fads%2Ebluelithium%2Ecom%2Fclk%3F2%2C13%253B7979b33d9e4bd6d0%253B12f652ef121%2C0%253B%253B%253B2538480843%2C5jBaAPSUGACV6HcAAAAAAE6rHgAAAAAAAgAAAAIAAAAAAP8AAAABEG8SHgAAAAAA%2DQEtAAAAAAB8bigAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAB6sAUAAAAAAAIAAwAAAAAAIfEuZS8BAAAAAAAAADhjNWNiMGI2LTY5MzItMTFlMC05NjA5LTAwMzA0OGQ2NjcyYQA4nyoAAAA%3D%2Chttp%253A%252F%252Fglobal%2Eard%2Eyahoo%2Ecom%252FSIG%253D15r2836hg%252FM%253D787833%2E14445075%2E14291840%2E13270877%252FD%253Dflickr%252FS%253D792600415%253ALREC%252FY%253DYAHOO%252FEXP%253D1303079863%252FL%253D1IHgjdG%5FaWaKRmeZTatPkQJwrcHW802rT5cAC%5F9Q%252FB%253DoVI1X0Je5ic%2D%252FJ%253D1303072663859267%252FK%253DsUGpy66vNZ9u8X6MUKcbSg%252FA%253D6261161%252FR%253D0%252F%252A%2524%2Chttp%253A%252F%252Fadjax%2Eflickr%2Eyahoo%2Ecom%252Fads%252F792600415%252Flrec%252F%2C%24http%3A%2F%2Ft.invitemedia.com%2Ftrack_click%3FauctionID%3D13030726651610996-80002%26campID%3D61369%26crID%3D80002%26pubICode%3D2949625%26pub%3D209944%26partnerID%3D64%26redirectURL%3D User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 ]]> \ \
    \
    \ \

    \ This ad was delivered on behalf of AT&T. It was automatically matched to your computer\'s browsing activity. AT&T is commited to providing you with transparency and control over the types of advertising you see by us.\


    \ More information & opt-out options »

    \ Online Privacy Information »

    \ AT&T Privacy FAQ »\

    \
    \
    \
    \ Powered by \
    \ \ '; var te_clr1_att02cont1_bi = {'baseName':'te-clr1-att02cont1','anchName':'te-clr1-att02cont1-anch','width':300,'height':250,'ox':20,'oy':0,'plc':'tr11820c86769d99db','iplc':'ctr','intDivName':'te-clr1-att02cont1-itl','iconSpanId':'te-clr1-att02cont1-icon','backgroundColor':'white','opacity':.8,'filterOpacity':80,'containerId':'att02cont1','noticeBaseUrl':'http://choices.truste.com/camsg?','interstitial':te_clr1_att02cont1_ib,'interstitialWidth':300,'interstitialHeight':250,'popTab':false,'showLink':'javascript:truste.ca.showoverlay(te_clr1_att02cont1_bi)','hideLink':'javascript:truste.ca.hideoverlay(te_clr1_att02cont1_bi)','icon':'http://choices.truste.com/assets/admarker.png','icon_cam':'http://choices.truste.com/assets/adicon.png','iconText':'','aid':'att02','pid':'mec01','zindex':'10002','cam':'2'}; var tecabaseurl = 'choices.truste.com'; truste.ca.addEvent(window, 'load', function() { if(!truste.defjsload) { var element = document.createElement('script'); element.src = 'http://' + tecabaseurl + '/js/tecaintjs.js'; document.body.appendChild(element); truste.defjsload = true; } truste.ca.addBinding(te_clr1_att02cont1_bi); }); ]]>
    false
    5769019323935434752 5244416 Cookie without HttpOnly flag set http://d.adsverse.com Information Certain
    You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
  • OAID=574904589a3ae5378ce2de7809c7b231; expires=Mon, 16-Apr-2012 20:35:04 GMT; path=/
  • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
    false
    2753373814372638720 5244928 Password field with autocomplete enabled http://arrangementseekers.com Low Certain
    The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
    autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
  • https://arrangementseekers.com/users/login
  • The form contains the following password field with autocomplete enabled:
    • password
    ]]>
    Arrangement Seekers

    Intimacy with a Twi$t.

    & years old

    ]]>
    false
    5869716914294531072 5244416 Cookie without HttpOnly flag set http://t.invitemedia.com Information Certain
    You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
  • impressions="{\"405594\": [1303072814+ \"000ac1f2-abce-33b0-b495-cf13ae71d52f\"+ 22487+ 106641+ 227]}"; Domain=invitemedia.com; expires=Mon, 16-Apr-2012 20:40:14 GMT; Path=/
  • camp_freq_p1="eJzjkuHYeZ9ZgEli3YK1b1kUmDRmNax/y2LAZDFrPpAPAJtfCyU="; Domain=invitemedia.com; expires=Mon, 16-Apr-2012 20:40:14 GMT; Path=/
  • io_freq_p1="eJzjEufY6yLAJLFuwdq3LAoMGgwGTBaz5gPZAFkHB8o="; Domain=invitemedia.com; expires=Mon, 16-Apr-2012 20:40:14 GMT; Path=/
  • The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
    false
    3165751870589612032 5243648 Cookie scoped to parent domain http://safebrowsing.clients.google.com Information Certain
  • PREF=ID=0772c9d5ef13aaaf:TM=1303071569:LM=1303071569:S=CF1gWWQb9CMFLdDz; expires=Tue, 16-Apr-2013 20:19:29 GMT; path=/; domain=.google.com
  • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
    false
    5582869661403824128 5243648 Cookie scoped to parent domain http://www.google.com Information Certain
  • PREF=ID=0772c9d5ef13aaaf:U=d212295d0f1573ee:FF=0:TM=1303071569:LM=1303071852:S=AYepXKyoLFAyEbmZ; expires=Tue, 16-Apr-2013 20:24:12 GMT; path=/; domain=.google.com
  • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
    link:longislanderotic.com - Google Search Screen reader users, click here to turn off Google Instant.

    Your search - link:longislanderotic.com - did not match any documents.

    Suggestions:

    • Make sure all words are spelled correctly.
    • Try different keywords.
    • Try more general keywords.
    Preview image
    ]]>
    false
    3727540851882454016 3145984 Cleartext submission of password http://utopiaguide.com High Certain
  • http://utopiaguide.com/forums/login.php?do=login
  • The form contains the following password field:
    • vb_login_password
    ]]>
    UtopiaGuide



    Go Back   UtopiaGuide
    Register FAQ Members List CalendarvBookieToplist Today's Posts

    vBulletin Message
    You are not logged in or you do not have permission to access this page. This could be due to one of several reasons:
    1. You are not logged in. Fill in the form at the bottom of this page and try again.
    2. You may not have sufficient privileges to access this page. Are you trying to edit someone else's post, access administrative features or some other privileged system?
    3. If you are trying to post, the administrator may have disabled your account, or it may be awaiting activation.
    Log in
    User Name:
    Password:
    Forgotten Your Password?
    The administrator may have required you to register before you can view this page.

    Forum Jump

    All times are GMT -8. The time now is 12:32 PM.

    This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

    Powered by vBulletin® Version 3.6.8
    Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

    ]]>
    false
    8104324983663502336 6292992 Robots.txt file http://www.epicdreams.com Information Certain
    The presence of the robots.txt does not in itself present any kind of security vulnerability. However, it is often used to identify restricted or private areas of a site's contents. The information in the file may therefore help an attacker to map out the site's contents, especially if some of the locations identified are not linked from elsewhere in the site. If the application relies on robots.txt to protect access to these areas, and does not enforce proper access control over them, then this presents a serious vulnerability.]]>
    false
    993365225623612416 6292224 Private IP addresses disclosed http://api.facebook.com Information Certain
    Discovering the private addresses used within an organisation can help an attacker in carrying out network-layer attacks aiming to penetrate the organisation's internal infrastructure.]]>
  • 10.27.247.101
  • ]]>
    false
    2159724087360902144 5244416 Cookie without HttpOnly flag set http://www.epicdreams.com Information Certain
    You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
  • EPICINFO=2ncrtnepvo6654u5d48brg9cq0; expires=Mon, 18-Apr-2011 20:12:20 GMT; path=/
  • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
    Long Island Escorts, Long Island Escort Service, Long Island Erotic Massage Service, Long Island Tantra, Long Island Escort Agencies, Long Island TV/TS, Long Island Fetish/Fantasy
    EpicDreams, Epic Dreams, Escort, Escorts, incall, outcall, Escort Reviews, Escort Directory, Escort Classifieds Welcome, Guest
    Log In | Free Hobbyist Account | Free Provider Ad | Help
    Home
    myEpicDreams
    VIP Escorts
    Directory
    Photo Gallery
    Calendar
    Reviews & Forums
    Adult Store
    Advertise
    CustomerCare
    April 17, 2011
    Cities > Long Island
    Choose a category:
     Escorts: (44)
     Massage: (3)
     Tantra: (0)
     Dancers: (3)
     BD/SM: (0)
     Fetish/Fantasy: (5)
     TVTS/Shemale: (0)
     Models/Centerfolds: (4)
     After Dark: (0)
     Agencies: (8)
      Calendar Postings:
    Providers travel dates in this city
      Services Wanted: (0)
    Post services or services wanted information in this city
    Local Sponsor Spotlight (Become a sponsor)
    Name: Your Name Last Updated: 10/10/03
    Number of Reviews: 12 Age: 25
    Ad Features: Photo Gallery, Calendar, Mailing List
    Commentary: Click here to become a sponsored advertiser today.
      
     Sponsor Spotlight

    Name: TS Karen Cummings
    Location: Las Vegas, NV
    Quote: Hi this is Karen Cummings the "Jewel Of ... More >>

     Sponsor Spotlight

    Name: Pamela Sweet
    Location: Allentown, PA
    Quote: I love to wear sexy lingerie... More >>

     Sponsor Spotlight

    Name: Amy Taylor
    Location: Los Angeles, CA

     Sponsor Spotlight

    Name: Kellie Sinz
    Location: Las Vegas, NV
    Quote: Did you ever hear the old saying "Good t... More >>

     Sponsor Spotlight

    Name: kara kane
    Location: Charlotte, NC
    Quote: PORNSTAR,FORMER NBA CHEERLEADER,HOOTERS ... More >>

     Sponsor Spotlight

    Name: Lovely Lauren
    Location: Dallas, TX
    Quote: Standing 5'6" with an amazing to... More >>

    A D V E R T I S E M E N T S

    List your banner here!

     RSS Feeds | What's New | FREE Provider Ad | Escort & Adult Links | Adult Store & DVDs
    Copyright © 1998-2011 EpicDreams, All rights reserved. | About EpicDreams | 2257 Notice
    ]]>
    false
    7014977258180424704 6291968 Email addresses disclosed http://utopiaguide.com Information Certain
    However, email addresses of developers and other individuals (whether appearing on-screen or hidden within page source) may disclose information that is useful to an attacker; for example, they may represent usernames that can be used at the application's login, and they may be used in social engineering attacks against the organisation's personnel. Unnecessary or excessive disclosure of email addresses may also lead to an increase in the volume of spam email received.]]>
  • service@utopiaguide.com
  • ]]>
    UtopiaGuide



    Go Back   UtopiaGuide
    Register FAQ Members List CalendarvBookieToplist Today's Posts

    vBulletin Message
    Invalid Post specified. If you followed a valid link, please notify the administrator

    Forum Jump

    All times are GMT -8. The time now is 12:32 PM.

    This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

    Powered by vBulletin® Version 3.6.8
    Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

    ]]>
    false
    5231683112293553152 8389632 Content type incorrectly stated http://www.thegame.me Information Firm
    In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
  • Content-Type: application/javascript
  • The response states that it contains script. However, it actually appears to contain plain text.]]>
    false
    1526405527623174144 5244160 Cross-domain script include http://www.verifiedplaymates.com Information Certain
    If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
  • http://199.80.58.115/openx/www/delivery/spcjs.php?id=1&block=1&blockcampaign=1
  • ]]>
    SEXY Escorts - VerifiedPlaymates.com Escorts

    Verified Playmates
    Fetish Fetish / Fantasy Tantra Tantra BDSM BDSM
    select a city
    Albuquerque Escorts Allentown Escorts Anaheim Escorts Arlington Escorts Arlington Escorts Atlanta Escorts Atlantic City Escorts Austin Escorts Bakersfield Escorts Baltimore Escorts Boston Escorts Carson City Escorts Charlotte Escorts Chicago Escorts Cincinnati Escorts Cleveland Escorts Colorado Springs Escorts Columbus Escorts Dallas Escorts Dayton Escorts Denver Escorts Detroit Escorts El Paso Escorts Fort Lauderdale Escorts Fort Worth Escorts Fremont Escorts Fresno Escorts Hollywood Escorts Honolulu Escorts Houston Escorts Huntington Beach Escorts Indianapolis Escorts Inland Empire Escorts Jacksonville Escorts Kansas City Escorts Las Vegas Escorts Long Beach Escorts Long Island Escorts Los Angeles Escorts Louisville Escorts Manhattan Escorts Memphis Escorts Miami Escorts Milwaukee Escorts Minneapolis Escorts Modesto Escorts Monterey Escorts Nashville Escorts Nassau Escorts New Orleans Escorts New York City Escorts Norfolk Escorts Oakland Escorts Oklahoma City Escorts Omaha Escorts Orange County Escorts Orlando Escorts Palm Springs Escorts Philadelphia Escorts Phoenix Escorts Pittsburgh Escorts Portland Escorts Raleigh Escorts Reno Escorts Riverside Escorts Sacramento Escorts Saint Louis Escorts Salt Lake City Escorts San Antonio Escorts San Diego Escorts San Fernando Escorts San Francisco Escorts San Jose Escorts Santa Ana Escorts Seattle Escorts South Lake Tahoe Escorts Staten Island Escorts Stockton Escorts Tampa Escorts Tucson Escorts Vancouver Escorts Virginia Escorts Virginia Beach Escorts Washington D.C. Escorts More Escorts: All Cities...
    Verified Playmates: ( Guaranteed Authentic - Photos Taken By Us. )
    Manhattan escort - VIP Erica Reed
    VIP Erica Reed
    Manhattan
    Las Vegas escort - Malina
    Malina
    Las Vegas
    Manhattan escort - Nataly - GFE - NYC
    Nataly GFE NYC
    Manhattan
    Las Vegas escort - Tawny Brie
    Tawny Brie
    Las Vegas
    Los Angeles escort - Ava Monroe
    Ava Monroe
    Los Angeles
    Getting Verified through a VP photoshoot will make you stand out as someone special and unique, and build confidence with new clients. When guys see the VP watermark, they know for certain that you are the girl in the photo. A photoshoot will also give your ad front page and top rotation exposure.

    For more info on a VerifiedPlaymates.com Verification shoot:
    More Playmates: ( Available for Booking Across the US )
    Featured Playmates
    New York City escort - Playmate Sophia
    Playmate Sophia
    New York City
    Allentown escort - ATYOURPLEASURE
    ATYOURPLEASURE
    Allentown
    San Diego escort - Japanese Geisha Miki
    Japanese Geisha Miki
    San Diego
    Tucson escort - Dawn in tucson
    Dawn in tucson
    Tucson
    Orange County escort - Aeryn Moore
    Aeryn Moore
    Orange County
    Las Vegas escort - annaeuro
    annaeuro
    Las Vegas
    Manhattan escort - CLAUDIA COLE
    CLAUDIA COLE
    Manhattan

    Apres Vous

    Nashville escort - Liz Monroe
    Liz Monroe
    Nashville
    Orange County escort - Kitty Kitty Kay
    Kitty Kitty Kay
    Orange County
    Washington escort - Wetty
    Wetty
    Washington
    New York City escort - Major Escort
    Major Escort
    New York City
    Chicago escort - AshleyMarie
    AshleyMarie
    Chicago
    Arlington escort - Kourtney Kline
    Kourtney Kline
    Arlington
    Pittsburgh escort - Irene
    Irene
    Pittsburgh
    Orange County escort - Barbi
    Barbi
    Orange County
    New York City escort - lucyyyy
    lucyyyy
    New York City
    San Francisco escort - Niki
    Niki
    San Francisco
    Allentown escort - Oasis Entertainment
    Oasis Entertainment
    Allentown
    San Francisco escort - Ellie Ashlyn
    Ellie Ashlyn
    San Francisco
    New York City escort - BrendaBoobies
    BrendaBoobies
    New York City
    Tucson escort - Sage Needs
    Sage Needs
    Tucson
    Dallas escort - Star Wellness Center
    Star Wellness Center
    Dallas
    New York City escort - Yoshi
    Yoshi
    New York City
    Atlanta escort - Exclusiveatlantaplay
    Exclusiveatlantaplay
    Atlanta
    Austin escort - Darby Depoy
    Darby Depoy
    Austin
    Manhattan escort - ELENA - GFE - NYC
    ELENA GFE NYC
    Manhattan
    Charlotte escort - CarolinaEscorts
    CarolinaEscorts
    Charlotte
    Manhattan escort - blueyebrunette
    blueyebrunette
    Manhattan
    Portland escort - Elite Ladies
    Elite Ladies
    Portland
    Orange County escort - Tiffany Europe
    Tiffany Europe
    Orange County
    Fresno escort - mistressmandy
    mistressmandy
    Fresno
    New York City escort - Nikkei
    Nikkei
    New York City
    San Francisco escort - Tabitha Layne
    Tabitha Layne
    San Francisco
    Houston escort - Amanda Jadore
    Amanda Jadore
    Houston
    Los Angeles escort - Shama Helena Malin
    Shama Helena Malin
    Los Angeles
    Memphis escort - Maya in Memphis
    Maya in Memphis
    Memphis
    Miami escort - Bella Naples
    Bella Naples
    Miami
    Oklahoma City escort - SWEET CANDICE
    SWEET CANDICE
    Oklahoma City
    Orange County escort - VPleasuress
    VPleasuress
    Orange County
    Chicago escort - mychicagobeauties
    mychicagobeauties
    Chicago
    Arlington escort - Nikoletta Armani
    Nikoletta Armani
    Arlington
    New York City escort - Mikei
    Mikei
    New York City
    Chicago escort - Sasha Banks
    Sasha Banks
    Chicago
    Phoenix escort - Chanda
    Chanda
    Phoenix
    Charlotte escort - Princess Roni
    Princess Roni
    Charlotte
    New York City escort - PoshModels
    PoshModels
    New York City
    Reno escort - Jaz
    Jaz
    Reno
    Virginia escort - April Azura
    April Azura
    Virginia
    Dallas escort - Liza Italian Passion
    Liza Italian Passion
    Dallas
    Manhattan escort - Kamasutra
    Kamasutra
    Manhattan
    Las Vegas escort - SS
    SS
    Las Vegas
    Las Vegas escort - Tawny Brie
    Tawny Brie
    Las Vegas
    San Francisco escort - Piper
    Piper
    San Francisco
    Las Vegas escort - JennySyn
    JennySyn
    Las Vegas
    Atlanta escort - NaughtyNatalie
    NaughtyNatalie
    Atlanta
    Chicago escort - sofia
    sofia
    Chicago
    Detroit escort - busty blonde
    busty blonde
    Detroit
    Los Angeles escort - Miss Nina Swiss
    Miss Nina Swiss
    Los Angeles
    Manhattan escort - Playmate Christina
    Playmate Christina
    Manhattan
    Vancouver escort - tabitha_extreme
    tabitha extreme
    Vancouver
    New York City escort - FiveStarNYC
    FiveStarNYC
    New York City
    San Francisco escort - MsKaylaKim
    MsKaylaKim
    San Francisco
    Denver escort - Nadia Rayne
    Nadia Rayne
    Denver
    Atlanta escort - kristen rose 35
    kristen rose 35
    Atlanta
    Chicago escort - Ashley G
    Ashley G
    Chicago
        Welcome to VerifiedPlaymates.com, where you'll find many REAL photos of escorts and playmates we've shot personally. Unlike other sites where you have to sift through all the mess and the fake pictures, we are working hard to shoot the escorts ourselves so you will know they are at least real. Your time is important. Stick with us, and support the ladies that work hard and take the initiative to get Verified at a VP photoshoot, because in the end that will save you time and enhance the experience for everyone involved. We are working long hours here to showcase the finest and best escort playmates nationwide. Whether you're a client looking for that beautiful hot encounter, or for exciting new thrills, this is the website to find it all.

        Very soon, you will be seeing more high-quality erotic and authentic photographs of sexy escort playmates that we've shot, and as time goes on, you will see a whole lot more throughout 2011. So guys, sit back, enjoy, and bookmark this site. You'll seeing stunning updates soon. It's worth the wait! VP is going to do whatever it takes to make sure that this isn't just another escort website. It will be content rich, and continually FRESH.

        In the meantime, feel free to browse around and enjoy all the eye candy on this website. We have so many escorts and playmates advertising here that you will be sure to find one that you would really like to meet. This is the way of the future guys and if we want goodness to prevail, support the cool and hardworking ladies that take time out of their busy day to play straight by getting Verified! This benefits everyone. Support good and honest business practices, and support it with your actions, if this is what we all want as the way of the future!

    Please read our disclaimer before entering this site:



    Craigslist Adult Alternative Replacement Website
    © 2009-2010 - VerifiedPlaymates.com VP Escort Directory - All rights reserved.


    ]]>
    false
    7736683787253833728 2097920 Cross-site scripting (reflected) http://b.scorecardresearch.com High Certain
    The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

    Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

    The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
  • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
  • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
  • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
    f75e2<script>alert(1)</script>18f5e6d68e3 was submitted in the c5 parameter. This input was echoed unmodified in the application's response.

    This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
    alert(1)18f5e6d68e3&c6=&c10=3202889&c15= HTTP/1.1 Host: b.scorecardresearch.com Proxy-Connection: keep-alive Referer: http://www.democracyforums.com/frontpage/index.php User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 ]]> 2080?a.substr(0,2075)+"&ct=1":a;if(!/BlackBerry.*?\/([1-3]\.|4\.[0-5])/.test(b.userAgent)){var c=new Image();c.onload=function(){};c.src=a}else{a=a.replace(/\/b\?/,"/p?");j.write("")}return a}catch(h){}};COMSCORE.purge=function(a){try{var c=[],f,b;a=a||_comscore;for(b=a.length-1;b>=0;b--){f=COMSCORE.beacon(a[b]);a.splice(b,1);if(f){c.push(f)}}return c}catch(d){}};COMSCORE.purge(); COMSCORE.beacon({c1:"8", c2:"6135404", c3:"25", c4:"13345", c5:"f75e218f5e6d68e3", c6:"", c10:"3202889", c15:"", c16:"", r:""}); ]]> false
    560480736955186176 1049088 SQL injection http://news.google.com High Firm
    Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.]]>
    every variable data item that is incorporated into database queries, even if it is not obviously tainted, to prevent oversights occurring and avoid vulnerabilities being introduced by changes elsewhere within the code base of the application.

    You should be aware that some commonly employed and recommended mitigations for SQL injection vulnerabilities are not always effective:
    • One common defence is to double up any single quotation marks appearing within user input before incorporating that input into a SQL query. This defence is designed to prevent malformed data from terminating the string in which it is inserted. However, if the data being incorporated into queries is numeric, then the defence may fail, because numeric data may not be encapsulated within quotes, in which case only a space is required to break out of the data context and interfere with the query. Further, in second-order SQL injection attacks, data that has been safely escaped when initially inserted into the database is subsequently read from the database and then passed back to it again. Quotation marks that have been doubled up initially will return to their original form when the data is reused, allowing the defence to be bypassed.
    • Another often cited defence is to use stored procedures for database access. While stored procedures can provide security benefits, they are not guaranteed to prevent SQL injection attacks. The same kinds of vulnerabilities that arise within standard dynamic SQL queries can arise if any SQL is dynamically constructed within stored procedures. Further, even if the procedure is sound, SQL injection can arise if the procedure is invoked in an unsafe manner using user-controllable data.
    ]]>
    '%20and%201%3d1--%20 was submitted in the Referer HTTP header, and a database error message was returned. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

    The database appears to be Oracle.]]>
    Google News

    Top Stories

    US storms leave dozens dead in destruction's wake

    The Associated Press - ‎29 minutes ago‎
    RALEIGH, NC (AP) - Rescue crews searched for survivors in wind-blasted landscapes Sunday in North Carolina, the state hardest hit by a storm system that spawned dozens of tornadoes from Oklahoma to Virginia and left dozens dead.
    Reuters - WRAL.com - NECN - NBC17.com

    Gadhafi Forces Pound Rebel Positions in Ajdabiya, Continue Siege of Misrata

    Voice of America - Edward Yeranian - ‎1 hour ago‎
    Libyan rebel fighters load a truck with ammunition on the outskirts of Ajdabiya, Libya, Saturday, April 16, 2011. Forces loyal to Libyan leader Colonel Moammar Gadhafi have been shelling rebel positions in and around the eastern town of Ajdabiya, ...
    Times of India - Aljazeera.net - BBC News - Christian Science Monitor - Wikipedia: Battle of Misrata

    Assad pledge fails to quell Syria anger; troops fire

    Reuters - Muhammad Hamed - ‎1 hour ago‎
    A Syrian protester holding his national flag shouts slogans calling for Syria's President Bashar al-Assad to step down during a protest in front of the Syrian embassy in Amman April 17, 2011.
    Ha'aretz - Sky News - BBC News - GulfNews

    View as:ListSectionsTwo column News for you

    This section will adapt to show news about your interests. Choose how often you like to read news from each section and add topics you follow.
    Examples: Astronomy, New England Patriots, White House
    How often do you read:NeverSometimesAlways
    World
    U.S.
    Business
    Sci/Tech
    Entertainment
    Sports
    Health

    Nic Cage -- Arguing with Wife in Tattoo Shop Video

    TMZ.com - ‎2 hours ago‎
    TMZ has obtained surveillance video taken inside a tattoo shop just before Nic Cage was arrested -- where he can clearly be seen carrying some sort of drink as he argues with his wife and others.

    Grizzlies stun top-seeded Spurs, earn first playoff win

    USA Today - Soobum Im - ‎23 minutes ago‎
    SAN ANTONIO (AP) - Zach Randolph (FSY) scored nine of his 25 points in the fourth quarter, and the eighth-seeded Memphis Grizzlies won their first playoff game in franchise history, stunning the San Antonio Spurs 101-98 on Sunday.

    Air traffic controller scheduling changes coming

    Atlanta Journal Constitution - Marcus K. Garner - ‎51 minutes ago‎
    New scheduling rules for air traffic controllers aimed at reducing fatigue on the job will be rolled out Monday, beginning in Atlanta.

    Tokyo Electric Expects to End Fukushima Nuclear Crisis as Early as October

    Bloomberg - Yuji Okada - ‎3 hours ago‎
    Tokyo Electric Power Co. set out a plan to end the crisis at its tsunami-hit Fukushima Dai-Ichi power plant, the worst nuclear disaster since Chernobyl, within six months.

    Box Office: 'Rio' not scared off by 'Scream 4' [Updated]

    Los Angeles Times - ‎2 hours ago‎
    After seven consecutive weekends in which ticket sales were down compared to the same period last year, the movie business was back in the swing of things due largely to a crop of animated birds.

    Sizemore makes return as Indians top struggling Orioles

    Reuters - Jahmal Corner, Rex Gowar - ‎32 minutes ago‎
    CLEVELAND (Reuters) - Grady Sizemore sparked Cleveland with his long awaited return to the field and the Indians handed the Baltimore Orioles their seventh straight defeat with a 4-2 victory Sunday.

    David Arquette Admits To Acting 'Childish'

    Access Hollywood - ‎1 hour ago‎
    David Arquette attends Malaria No More's Hollywood Bites Back! event at Club Nokia at LA Live in Los Angeles on April 16, 2011 Ashlee and Pete!

    SELWESKI: Taxation misinformation fools the public

    Royal Oak Daily Tribune - Chad Selweski - ‎3 hours ago‎
    It's tax time again so I hit the equal sign on my calculator one last time and there it was -- 6.7 percent. That was my bottom line, my true income tax rate on this year's IRS return.

    Ryan: We want tax reform, not tax cuts for rich

    CBS News - ‎3 hours ago‎
    Wis. Rep. says GOP budget plan does not seek more tax breaks for rich; objects to raising taxes on wealthy, despite US borrowing By Lucy Madison Bob Schieffer spoke with Rep. Paul Ryan (R-Wis.

    Medical-Device Deal Could Give J&J a Boost

    Wall Street Journal - Jonathan D. Rockoff - ‎1 hour ago‎
    If it pulls the trigger on a potential $20 billion deal for Synthes Inc., Johnson & Johnson would acquire a dominant player in a major segment of the medical-device market.

    Google Video Swept Out in Spring Cleaning

    PCWorld - Paul Suarez - ‎1 hour ago‎
    Looks like Google is doing a little spring cleaning and the latest on flop service to be swept under the rug is Google Video. The Mountain View-based search behemoth announced via e-mail on Friday that it ...

    True Finns' Soini says wants new talks on Portugal bailout

    Reuters - ‎54 minutes ago‎
    HELSINKI, April 17 (Reuters) - Timo Soini, the leader of Finland's anti-euro True Finns party which has shown strong gains in Sunday's general election, said he wanted to see new negotiations on a bailout package for euro member Portugal.

    Apple's iPad 2 now on sale at select Toys R Us stores

    Apple Insider - Sam Oliver - ‎1 hour ago‎
    Apple's US retail expansion of the iPad 2 continues, with the second-generation touchscreen tablet now on sale at select Toys R Us locations.

    Report: More States Expected to Pay $4 Per Gallon for Gas Soon

    Fox News - ‎4 hours ago‎
    Motorists in five states are paying more than $4 a gallon for gasoline, and New York could be joining the list this week, MyFoxNY.

    Blago brother says Rod should take stand

    Chicago Tribune - ‎1 hour ago‎
    AP The brother of Rod Blagojevich has some advice for the former Illinois governor just days away from his corruption retrial: Take the stand.

    End of QE2 has some investors fearing fall in June

    The Associated Press - ‎1 hour ago‎
    NEW YORK (AP) - Could the financial markets be heading for a June swoon? The answer likely hinges on what happens after the Federal Reserve's $600 billion effort to boost the economy expires.

    Ryan, Geithner Offer Different Views of Agreement to Increase Debt Ceiling

    Bloomberg - David Lerman - ‎31 minutes ago‎
    House Budget Committee Chairman Paul Ryan said Republican leaders have not pledged to raise the nation's debt limit, even as Treasury Secretary Timothy Geithner insisted they had.

    Monte Carlo now seventh heaven for Nadal

    ABC Online - ‎11 minutes ago‎
    Rafael Nadal can rightfully call the Monte Carlo Masters his own after seven straight tournament wins. (Getty Images: Julian Finney) Rafael Nadal pronounced himself 'a lucky guy' after sweeping to a seventh straight title at the Monte Carlo Masters as ...

    US envoy criticized for religious activism resigns

    The Associated Press - ‎4 hours ago‎
    WASHINGTON (AP) - The US ambassador to Malta, an important Roman Catholic supporter of President Barack Obama, said Sunday he would resign after a State Department report criticized him for spending too much time writing and speaking about his ...

    RBNY Fan Reaction: Red Bulls Dominate Quakes, Win 3-0

    Yahoo! Sports - ‎4 hours ago‎
    This article was produced by a member of the Yahoo! Contributor Network, where users like you are published on Yahoo! On the worst night weather-wise fans could ask for, the New York Red Bulls played their best 90 minutes of the season.

    Chicago Metro » - Edit

    Google Fast Flip

     - 
     

    ]]>
    true
    3522317056150099968 3145984 Cleartext submission of password http://utopiaguide.com High Certain
  • http://utopiaguide.com/forums/login.php?do=login
  • The form contains the following password field:
    • vb_login_password
    ]]>
    UtopiaGuide - Search Forums



    Go Back   UtopiaGuide
    Register FAQ Members List CalendarvBookieToplist Today's Posts

    Search Forums
    Search by Key Word
    Key Word(s):
    Search by User Name
    User Name:
    Image Verification
    Please enter the six letters or digits that appear in the image opposite.

    Search Options
    Find Threads with
    Replies
    Find Posts from
    Sort Results by
    Show Results as
    Show Results as
    Search in Forum(s)
    All times are GMT -8. The time now is 12:32 PM.

    This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

    Powered by vBulletin® Version 3.6.8
    Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

    ]]>
    false
    3921422855376888832 6291968 Email addresses disclosed http://www.flashforadults.com Information Certain
    However, email addresses of developers and other individuals (whether appearing on-screen or hidden within page source) may disclose information that is useful to an attacker; for example, they may represent usernames that can be used at the application's login, and they may be used in social engineering attacks against the organisation's personnel. Unnecessary or excessive disclosure of email addresses may also lead to an increase in the volume of spam email received.]]>
  • breathalyse@gmail.com
  • sacha@gmx.de
  • ]]>
    , Gokce Yalcin */ function getCookie( name ) { var start = document.cookie.indexOf( name + "=" ); var len = start + name.length + 1; if ( (!start ) && ( name!= document.cookie.substring( 0, name.length ) ) ) { return null; } if ( start == -1 ) return null; var end = document.cookie.indexOf( ';', len ); if ( end == -1 ) end = document.cookie.length; return unescape( document.cookie.substring( len, end ) ); } function setCookie( name, value, expires, path, domain, secure ) { var today = new Date(); today.setTime( today.getTime() ); if (! expires ) expires = expires * 1000 * 60 * 60 * 24; else expires = expires*1000; var expires_date = new Date( today.getTime() + (expires) ); document.cookie = name+'='+escape( value ) + ( ( expires )? ';expires='+expires_date.toGMTString() : '' ) + //expires.toGMTString() ( ( path )? ';path=' + path : '' ) + ( ( domain )? ';domain=' + domain : '' ) + ( ( secure )? ';secure' : '' ); } function setSessionCookie (name, value) { document.cookie = escape(name) + "=" + escape(value) + "; path=/"; } function deleteCookie( name, path, domain ) { if ( getCookie( name ) ) document.cookie = name + '=' + ( ( path )? ';path=' + path : '') + ( ( domain )? ';domain=' + domain : '' ) + ';expires=Thu, 01-Jan-1970 00:00:01 GMT'; } //can check bla.bla.bla[].. isset = function(e) { try { if (eval(e)) {} } catch(err) { return false; } return true; } function pageWidth() { return window.innerWidth != null? window.innerWidth : document.documentElement && document.documentElement.clientWidth ? document.documentElement.clientWidth : document.body != null ? document.body.clientWidth : null; } function pageHeight() { return window.innerHeight != null? window.innerHeight : document.documentElement && document.documentElement.clientHeight ? document.documentElement.clientHeight : document.body != null? document.body.clientHeight : null; } function microtime() { return new Date().getTime(); } function switchMovie(o,flv,w,h) { if (navigator && navigator.userAgent && navigator.userAgent.indexOf('iPad') != -1 && flv.indexOf('.mp4') != -1) { video_id = new Date(); video_id = video_id.getTime(); o.parentNode.innerHTML = ''; pElement = document.getElementById("video5_"+video_id); pElement.poster = o.src; pElement.load(); pElement.play(); pElement.addEventListener('ended',function() { this.parentNode.innerHTML = ''; },false); } else { o.parentNode.innerHTML = ''; } } function switchMovie_hd(o,flv,w,h) { if (navigator && navigator.userAgent && navigator.userAgent.indexOf('iPad') != -1 && flv.indexOf('.mp4') != -1) { video_id = new Date(); video_id = video_id.getTime(); o.parentNode.innerHTML = ''; pElement = document.getElementById("video5_"+video_id); pElement.poster = o.src; pElement.load(); pElement.play(); if (o.src) { pElement.addEventListener('ended',function() { this.parentNode.innerHTML = ''; },false); } } else { o.parentNode.innerHTML = ''; } } function urlencode( str ) { var histogram = {}, unicodeStr='', hexEscStr=''; var ret = (str+'').toString(); var replacer = function(search, replace, str) { var tmp_arr = []; tmp_arr = str.split(search); return tmp_arr.join(replace); }; histogram["'"] = '%27'; histogram['('] = '%28'; histogram[')'] = '%29'; histogram['*'] = '%2A'; histogram['~'] = '%7E'; histogram['!'] = '%21'; histogram['%20'] = '+'; histogram['\u00DC'] = '%DC'; histogram['\u00FC'] = '%FC'; histogram['\u00C4'] = '%D4'; histogram['\u00E4'] = '%E4'; histogram['\u00D6'] = '%D6'; histogram['\u00F6'] = '%F6'; histogram['\u00DF'] = '%DF'; histogram['\u20AC'] = '%80'; histogram['\u0081'] = '%81'; histogram['\u201A'] = '%82'; histogram['\u0192'] = '%83'; histogram['\u201E'] = '%84'; histogram['\u2026'] = '%85'; histogram['\u2020'] = '%86'; histogram['\u2021'] = '%87'; histogram['\u02C6'] = '%88'; histogram['\u2030'] = '%89'; histogram['\u0160'] = '%8A'; histogram['\u2039'] = '%8B'; histogram['\u0152'] = '%8C'; histogram['\u008D'] = '%8D'; histogram['\u017D'] = '%8E'; histogram['\u008F'] = '%8F'; histogram['\u0090'] = '%90'; histogram['\u2018'] = '%91'; histogram['\u2019'] = '%92'; histogram['\u201C'] = '%93'; histogram['\u201D'] = '%94'; histogram['\u2022'] = '%95'; histogram['\u2013'] = '%96'; histogram['\u2014'] = '%97'; histogram['\u02DC'] = '%98'; histogram['\u2122'] = '%99'; histogram['\u0161'] = '%9A'; histogram['\u203A'] = '%9B'; histogram['\u0153'] = '%9C'; histogram['\u009D'] = '%9D'; histogram['\u017E'] = '%9E'; histogram['\u0178'] = '%9F'; ret = encodeURIComponent(ret); for (unicodeStr in histogram) { hexEscStr = histogram[unicodeStr]; ret = replacer(unicodeStr, hexEscStr, ret); // Custom replace. No regexing } return ret.replace(/(\%([a-z0-9]{2}))/g, function(full, m1, m2) { return "%"+m2.toUpperCase(); }); } function getQueryVariable(variable) { var query = window.location.search.substring(1); var vars = query.split("&"); for (var i=0;i false
    5709027404206615552 5243904 Cross-domain Referer leakage http://googleads.g.doubleclick.net Information Certain
    If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

    You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

    Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

    Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
  • http://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-4063878933780912&output=html&h=90&slotname=2510184792&w=728&lmt=1303100763&flash=10.2.154&url=http%3A%2F%2Fxss.cx%2Fexamples%2Fdork%2Fsql-injection%2Fsql-injection-dork-xss-cross-site-scripting-thatshiphopcom.html&dt=1303083049735&shv=r20110406&jsv=r20110415&saldr=1&correlator=1303083049751&frm=0&adk=1607234649&ga_vid=475756789.1303083050&ga_sid=1303083050&ga_hid=271937893&ga_fc=0&u_tz=-300&u_his=2&u_java=1&u_h=1200&u_w=1920&u_ah=1156&u_aw=1920&u_cd=16&u_nplug=9&u_nmime=44&biw=1079&bih=1016&eid=33895130&fu=0&ifi=1&dtd=37&xpc=N7AiBjeraR&p=http%3A//xss.cx
  • The response contains the following links to other domains:
    • http://pagead2.googlesyndication.com/pagead/abglogo/abg-en-100c-000000.png
    • http://pagead2.googlesyndication.com/pagead/sma8.js
    • http://www.google.com/url?ct=abg&q=https://www.google.com/adsense/support/bin/request.py%3Fcontact%3Dabg_afc%26url%3Dhttp://xss.cx/examples/dork/sql-injection/sql-injection-dork-xss-cross-site-scripting-thatshiphopcom.html%26hl%3Den%26client%3Dca-pub-4063878933780912%26adU%3Dwww.checkmarx.com%26adT%3DSQL%2BInjection%2BTutorial%26adU%3Dvulnerability.scan.qualys.com%26adT%3DOnline%2BVulnerability%2BScan%26adU%3Dwww.appliedtrust.com%26adT%3DWeb-App%2BSecurity%2BJobs%26gl%3DUS&usg=AFQjCNF4yeSx0AStmLYsnCjHAdIKxeUX0A
    ]]>
    Ads by Google
    ]]>
    false
    7573132400112768000 6291968 Email addresses disclosed http://caseyofhouston.com Information Certain
    However, email addresses of developers and other individuals (whether appearing on-screen or hidden within page source) may disclose information that is useful to an attacker; for example, they may represent usernames that can be used at the application's login, and they may be used in social engineering attacks against the organisation's personnel. Unnecessary or excessive disclosure of email addresses may also lead to an increase in the volume of spam email received.]]>
  • you@site.com
  • ]]>
    Check my calendar !

    Caseyofhouston  

    HomeAbout MePhotosServicesRatesGiftsGuestbookReviewsCalendarFAQLinksContact

    Escort Calendar

    I am based in Houston, however I do tour. I am currently touring New York, Boston, Chicago, and New Jersey.

    April 2011

    SundayMondayTuesdayWednesdayThursdayFridaySaturday
    27 Mar
    28 Mar
    29 Mar
    30 Mar
    31 Mar
    1 AprBook ME
    Available
    2 AprBook ME
    Available
    3 AprBook ME
    Available
    4 AprBook ME
    Available
    5 AprBook ME
    Available
    6 AprBook ME
    Available
    7 AprBook ME
    Available
    8 AprBook ME
    Available
    9 AprBook ME
    Available
    10 AprBook ME
    Available
    11 AprBook ME
    Available
    12 AprBook ME
    Available
    13 AprBook ME
    Available
    14 AprBook ME
    Available
    15 AprBook ME
    Available
    16 AprBook ME
    Available
    17 AprBook ME
    Available
    18 AprBook ME
    Available
    19 AprBook ME
    Available
    20 AprBook ME
    Available
    21 AprBook ME
    Available
    22 AprBook ME
    Available
    23 AprBook ME
    Available
    24 AprBook ME
    Available
    25 AprBook ME
    Available
    26 AprBook ME
    Available
    27 AprBook ME
    Available
    28 AprBook ME
    Available
    29 AprBook ME
    Available
    30 AprBook ME
    Available
    (Previous month) <<<>>> (Next month)

    May 2011

    SundayMondayTuesdayWednesdayThursdayFridaySaturday
    1 May
    2 May
    3 May
    4 May
    5 May
    6 May
    7 May
    8 May
    9 May
    10 May
    11 May
    12 May
    13 May
    14 May
    15 May
    16 May
    17 May
    18 May
    19 May
    20 May
    21 May
    22 May
    23 May
    24 May
    25 May
    26 May
    27 May
    28 May
    29 May
    30 May
    31 May
    1 Jun
    2 Jun
    3 Jun
    4 Jun


    June 2011

    SundayMondayTuesdayWednesdayThursdayFridaySaturday
    29 May
    30 May
    31 May
    1 Jun
    2 Jun
    3 Jun
    4 Jun
    5 Jun
    6 Jun
    7 Jun
    8 Jun
    9 Jun
    10 Jun
    11 Jun
    12 Jun
    13 Jun
    14 Jun
    15 Jun
    16 Jun
    17 Jun
    18 Jun
    19 Jun
    20 Jun
    21 Jun
    22 Jun
    23 Jun
    24 Jun
    25 Jun
    26 Jun
    27 Jun
    28 Jun
    29 Jun
    30 Jun
    1 Jul
    2 Jul

    Register for my free newsletter
    Email
    You may also unsubscribe at any time.

    eccie.net

    SitemapRSSAdd to My Yahoo!Add to Google Homepage or Google Reader !
    ]]>
    false
    564429180827568128 5243648 Cookie scoped to parent domain http://www.youtube.com Information Certain
  • use_hitbox=72c46ff6cbcdb7c5585c36411b6b334edAEAAAAw; path=/; domain=.youtube.com
  • VISITOR_INFO1_LIVE=BgoZeYdNyzI; path=/; domain=.youtube.com; expires=Tue, 13-Dec-2011 20:33:40 GMT
  • GEO=1c80b929d24a9b658da6b1c782ce2162cwsAAAAzVVOtwdbzTatOpA==; path=/; domain=.youtube.com
  • The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
    YouTube - Broadcast Yourself.
    Join the largest worldwide video-sharing community!
    Spotlight

    Watch Coachella Live All Weekend

    Tune into youtube.com/coachella to watch the music festival live all weekend -- or check out some of the performances you missed! We've got videos from Ozomatli, !!!, Flogging Molly, Gayngs, Warpaint and more.
     
    What's New

    YouTube.com/Live

    Check out the top live events happening on YouTube!

    Create original videos

    Make animations and videos with your own photos and images

    Mashups, parodies and lip dubs: Ask a legal expert about Fair use

    The strength of the YouTube community lies in its creativity. Often this takes the form of memorable original content, such as Rebecca Black???s recent hit song / music video, Friday.

    However, as t...

    Read more in our Blog

    Queue (0) Return to active list
      1. Your queue is empty. Add videos to your queue using this button:
        or sign in to load a different list.
      Loading...Loading...Saving...
      ]]>
      false
      8318123393506119680 2097920 Cross-site scripting (reflected) http://www.thatshiphop.com High Certain
      The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

      Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

      The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
    1. Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
    2. User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
    3. In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
      bec47"><script>alert(1)</script>990efaf9564 was submitted in the name of an arbitrarily supplied request parameter. This input was echoed unmodified in the application's response.

      This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
      990efaf9564=1 HTTP/1.1 Host: www.thatshiphop.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 ]]> ThatsHipHop.com - News

      ThatsHiphop.com News

       
      Krayzie Bone: No More Harmonizing With Bone...

      Krayzie Bone has announced that he's leaving Bone Thugs n Harmony after 20 years to focus on his solo career and his label, The Life Entertainment. Krayzie's first project is a compilation titled Cleveland Is the City, Volume One, and it'll be on the stre... Read more
      Gucci Mane: It's Still Gucci Time Behind Ba...

      No one has bailed Gucci Mane out of prison, even though his bond is only $5700. He's locked up in Atlanta for allegedly throwing a woman out of his car for rejecting his sexual advances last Friday. But even if he posts bail, he'll simply be transferred t... Read more
      Bobby Brown: Child Number Six On The Way

      Bobby Brown and fiancee Alicia Etheridge are expecting another baby. This will be child number six for Brown and his second with Alicia. He and Whitney Houston have just one daughter, Bobbi Christina. - Rahim Wright... Read more
      Mariah Carey: Bares All -- Yet Again

      Just in case someone in the world hasn't seen Mariah Carey's bare, baby packed belly, she's showing it again - - on the cover of Britain's OK! magazine. Mimi tells the mag that hubby Nick Cannon has already started reading stories to the couple's unborn ... Read more
      Waka Flocka: Gucci And Papoose On New Mixta...

      Waka Flocka Flame has just dropped a new mixtape titled Benjamin Flocka.Surprisingly, there's no Lex Luger production this time around. Instead, Waka recruited Southside to man the boards for most of the project. The mixtape also includes features from th... Read more
      Nicki Minaj: Channeling Marge Simpson

      Nicki Minaj's latest wig looks rather cartoonish - - and that may be because she got the idea for the beehive look from Marge Simpson. Nicki tells People magazine, "Never did I think I would be rocking the Marge Simpson... I realize that she was cutting ... Read more
      Nicki Minaj: Channeling Marge Simpson

      Nicki Minaj's latest wig looks rather cartoonish - - and that may be because she got the idea for the beehive look from Marge Simpson. Nicki tells People magazine, "Never did I think I would be rocking the Marge Simpson... I realize that she was cutting ... Read more
      Rihanna, Eminem, Gaga: Billboard Awards Fin...

      Rihanna leads all comers for next month's Billboard Awards. She's a finalist in 18 categories, including Top Hot 100 Artist and Top Female Artist. Eminem is up for 16 awards, and Lady Gaga is up for 12. Justin Bieber and Bruno Mars are finalists in 11 cat... Read more
      Beyonce: A Shot In The Dark

      Beyonce is keeping people guessing about just what's going on with her new video, which she headed to California's Mojave Desert to shoot on Tuesday. Some sources say the clip is meant to accompany a song called "Girl," while others say it's for "Till the... Read more
      Teyana Taylor: Accused Of Assault

      Teyana Taylor is denying Internet reports that she assaulted another woman at a studio in Burbank, California on Saturday night. She writes on Twitter, "I'm being accused of something I didn't do." TMZ reports that Teyana allegedly laid a beat down on the... Read more
       

      1, 990efaf9564=1&page=2">2, 990efaf9564=1&page=3">3, 990efaf9564=1&page=4">4, 990efaf9564=1&page=5">5, 990efaf9564=1&page=6">6, 990efaf9564=1&page=7">7, 990efaf9564=1&page=8">8, 990efaf9564=1&page=9">9 ... 990efaf9564=1">26 ... 990efaf9564=1">Next

       

      THH Login

      Interviews

      Large Amount

      LARGE AMOUNT ???THE BOY WITH A BILLION BARS??? "The BOY WITH A BILLION BARS???, in which this unique title was also natura
      Read More >

      Group Home

      GROUP HOME RSRadio: So group home it??s been a few years since you have released an official album what made you decide that
      Read More >


      ]]>
      false
      7955184011416097792 5243904 Cross-domain Referer leakage http://utopiaguide.com Information Certain
      If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

      You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

      Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

      Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
    4. http://utopiaguide.com/forums/showthread.php?t=32750&page=22
    5. The response contains the following link to another domain:
      • http://www.longislanderotic.com/longislanderotic/forum/
      ]]>
      Long Island action. - Page 22 - UtopiaGuide



      Go Back   UtopiaGuide > Not your Father's PMB > Stripclubs, Strippers and Porn Stars
      Register FAQ Members List CalendarvBookieToplist Today's Posts

      Reply
       
      Thread Tools
      Old 02-07-2008, 07:35 AM   #631
      seeker6591
      Gold
       
      Join Date: Sep 2005
      Posts: 14,770
      vCash: 500
      i dont think she will resurface...as BH said, she was thrown off the roof.
        Reply With Quote
      Old 02-07-2008, 07:35 AM   #632
      wolf5958
      lil Fuzzybear
       
      Join Date: Nov 2007
      Posts: 7,443
      vCash: 500
      Quote:
      Originally Posted by biohazard View Post
      didn't they throw her off the roof?? sounds like something from the goodfella's movie!
      She fell escapingn across the roof tops from what I read.
        Reply With Quote
      Old 02-07-2008, 07:36 AM   #633
      seeker6591
      Gold
       
      Join Date: Sep 2005
      Posts: 14,770
      vCash: 500
      where is lightweight??

      hungover perhaps?
        Reply With Quote
      Old 02-07-2008, 07:40 AM   #634
      wolf5958
      lil Fuzzybear
       
      Join Date: Nov 2007
      Posts: 7,443
      vCash: 500
      Quote:
      Originally Posted by seeker6591 View Post
      where is lightweight??

      hungover perhaps?
      Either that or his wife beat the shit out of him for coming home lit up like he was. I don't know why he is blaming me I only bought one round. Tami just kept opening them for him and he kept saying yes.
        Reply With Quote
      Old 02-07-2008, 07:40 AM   #635
      teps
      Gold
       
      Join Date: Feb 2003
      Posts: 4,524
      vCash: 500
      Quote:
      Originally Posted by wolf5958 View Post
      Yeah I know the other board but hey I am up for the recon I will be the second volunteer,
      like I said the pond deli is down the street can always grab lunch
      You will probably run into old timers Brooklyn and Jackie there (they were still there the last time I was there) but let me know when you are going and I'll go too.
        Reply With Quote
      Old 02-07-2008, 07:44 AM   #636
      teps
      Gold
       
      Join Date: Feb 2003
      Posts: 4,524
      vCash: 500
      From what I recall, Ting fled down the hall and out on to the roof of the building next door and then tried to jump down to the ground to get away from the armed robbers and messed up her ankle. I have not heard of her since. Has anyone heard if her partner, Cindy, has surfaced anywhere else?
        Reply With Quote
      Old 02-07-2008, 07:46 AM   #637
      wolf5958
      lil Fuzzybear
       
      Join Date: Nov 2007
      Posts: 7,443
      vCash: 500
      Quote:
      Originally Posted by Tom S. View Post
      You will probably run into old timers Brooklyn and Jackie there (they were still there the last time I was there) but let me know when you are going and I'll go too.
      Looks like maybe the 14th. A strip club on Valentines day How romantic LOL
        Reply With Quote
      Old 02-07-2008, 07:48 AM   #638
      wolf5958
      lil Fuzzybear
       
      Join Date: Nov 2007
      Posts: 7,443
      vCash: 500
      I will be back after 12 I need to get ready to go to work. LW I hope you are alive and well, You want to go to Carmen's birthday party today your future ex wife will be there
        Reply With Quote
      Old 02-07-2008, 08:01 AM   #639
      seeker6591
      Gold
       
      Join Date: Sep 2005
      Posts: 14,770
      vCash: 500
      birthday party ???
        Reply With Quote
      Old 02-07-2008, 08:03 AM   #640
      magicfingersny
      Gold
       
      Join Date: Nov 2007
      Posts: 2,346
      vCash: 500
      I tried finding LI adult Entertainment & just came up with something that lists club, no member posting. Is that Bday party for one of the girls at Shady's? If so what time to time. damn it's late already. I am exhausted
        Reply With Quote
      Old 02-07-2008, 08:06 AM   #641
      seeker6591
      Gold
       
      Join Date: Sep 2005
      Posts: 14,770
      vCash: 500
      how about some info on the birthday party...gents?
        Reply With Quote
      Old 02-07-2008, 08:07 AM   #642
      teps
      Gold
       
      Join Date: Feb 2003
      Posts: 4,524
      vCash: 500
      Magic--Here is the link to that site.
      www.longislanderotic.com/longislanderotic/forum/
        Reply With Quote
      Old 02-07-2008, 08:21 AM   #643
      lookin4amp
      Bronze
       
      Join Date: Apr 2007
      Posts: 16
      vCash: 500
      Hi Guys!! I really enjoy reading you guys' posts.... They are Great!! I'm in Nassau and don't really go out to Suffolk...do any of you guys know good place in Nassau where I can get good action??
        Reply With Quote
      Old 02-07-2008, 08:23 AM   #644
      magicfingersny
      Gold
       
      Join Date: Nov 2007
      Posts: 2,346
      vCash: 500
      Thanks for the link Tom. I am just waiting for a confirmation *****
      Carmen Bday Party is Today?
      When to When?
        Reply With Quote
      Old 02-07-2008, 08:24 AM   #645
      seeker6591
      Gold
       
      Join Date: Sep 2005
      Posts: 14,770
      vCash: 500
      our first ISO post in here ???

      LOL
        Reply With Quote
      Old 02-07-2008, 08:43 AM   #646
      biohazard
      Gold
       
      Join Date: Nov 2006
      Posts: 1,870
      vCash: 500
      Quote:
      Originally Posted by lookin4amp View Post
      Hi Guys!! I really enjoy reading you guys' posts.... They are Great!! I'm in Nassau and don't really go out to Suffolk...do any of you guys know good place in Nassau where I can get good action??
      Before the rest of the people jump on you for an In Search Of post (ISO) did ya try the search feature? and you kind of have a low post count you might want to start reviewing any one you visited or at least contributing to other threads, some people might break your balls for not doing that i hope this helps.
        Reply With Quote
      Old 02-07-2008, 08:51 AM   #647
      jamesfromny
      Silver
       
      Join Date: Nov 2007
      Age: 34
      Posts: 192
      vCash: 500
      re: Ting

      Quote:
      Originally Posted by wolf5958 View Post
      I don't think she resurfaced since that. ...
      She will be missed.
        Reply With Quote
      Old 02-07-2008, 08:58 AM   #648
      jamesfromny
      Silver
       
      Join Date: Nov 2007
      Age: 34
      Posts: 192
      vCash: 500
      I've got the day off, and am going to try to see Lightweight's friend Mimi. Should I report back here, or add-on to his review?
        Reply With Quote
      Old 02-07-2008, 09:01 AM   #649
      lightweight
      Moderator
       
      Join Date: Oct 2007
      Posts: 8,364
      vCash: 500
      Reporting for duty folks. I need a few mintutes hear to catch up hear.

      Last edited by lightweight : 02-07-2008 at 09:01 AM.
        Reply With Quote
      Old 02-07-2008, 09:02 AM   #650
      lightweight
      Moderator
       
      Join Date: Oct 2007
      Posts: 8,364
      vCash: 500
      Quote:
      Originally Posted by seeker6591 View Post
      i promise I won't but....

      YOU JUST TOLD HIM.

      LOL

      OH yea
        Reply With Quote
      Old 02-07-2008, 09:03 AM   #651
      lightweight
      Moderator
       
      Join Date: Oct 2007
      Posts: 8,364
      vCash: 500
      Quote:
      Originally Posted by seeker6591 View Post
      did he do the fattie??

      NO. I think because he know that I would have posted it.
        Reply With Quote
      Old 02-07-2008, 09:04 AM   #652
      seeker6591
      Gold
       
      Join Date: Sep 2005
      Posts: 14,770
      vCash: 500
      Quote:
      Originally Posted by jamesfromny View Post
      I've got the day off, and am going to try to see Lightweight's friend Mimi. Should I report back here, or add-on to his review?


      james

      reviews and specific info go in the appropriate threads.

      banter and general discussion can be placed here
        Reply With Quote
      Old 02-07-2008, 09:05 AM   #653
      seeker6591
      Gold
       
      Join Date: Sep 2005
      Posts: 14,770
      vCash: 500
      Quote:
      Originally Posted by lightweight View Post
      NO. I think because he know that I would have posted it.
      no cushion for the pushin??

      LOL
        Reply With Quote
      Old 02-07-2008, 09:05 AM   #654
      lightweight
      Moderator
       
      Join Date: Oct 2007
      Posts: 8,364
      vCash: 500
      Quote:
      Originally Posted by Mr. W. Coyote View Post
      As I am!

      Great.
        Reply With Quote
      Old 02-07-2008, 09:06 AM   #655
      lightweight
      Moderator
       
      Join Date: Oct 2007
      Posts: 8,364
      vCash: 500
      Quote:
      Originally Posted by Mr. W. Coyote View Post
      Is this the place near another Strip club???

      If so, I so agree... 15 mins...in and out last week for me!
      Are you talking about the Gym?
        Reply With Quote
      Old 02-07-2008, 09:07 AM   #656
      lightweight
      Moderator
       
      Join Date: Oct 2007
      Posts: 8,364
      vCash: 500
      Quote:
      Originally Posted by seeker6591 View Post
      good morning gents..

      all is quiet here on the western front.



      has everyone set up their buddy lists yet?
      Hey. ....
        Reply With Quote
      Old 02-07-2008, 09:08 AM   #657
      seeker6591
      Gold
       
      Join Date: Sep 2005
      Posts: 14,770
      vCash: 500
      hey.......

      welcome aboard!
        Reply With Quote
      Old 02-07-2008, 09:09 AM   #658
      lightweight
      Moderator
       
      Join Date: Oct 2007
      Posts: 8,364
      vCash: 500
      Quote:
      Originally Posted by seeker6591 View Post
      "mid" island

      You said my bunny has a good nose.

      Horseblock, rt 112, granny, Middle Island Rd, Continental AVE

      I was just on all those street. Nr you?
        Reply With Quote
      Old 02-07-2008, 09:10 AM   #659
      lightweight
      Moderator
       
      Join Date: Oct 2007
      Posts: 8,364
      vCash: 500
      Quote:
      Originally Posted by wolf5958 View Post
      OK Seek I need to go do my gerbil imatation and do a 45 min run on the tread mill be back in a little bit. Can't wait to see what LW has to say about yesterday and last nights dinner. He was f uped when he headed out yesterday.

      Yes I was. I had to sober up fast and go to dinner and another 7 Carona's.
        Reply With Quote
      Old 02-07-2008, 09:11 AM   #660
      lightweight
      Moderator
       
      Join Date: Oct 2007
      Posts: 8,364
      vCash: 500
      Quote:
      Originally Posted by seeker6591 View Post
      si

      si

      and si senior.


      speaking of getting caught up..it takes me 10 minutes everyday to go back and read this thread !!!

      LOL
      I am still catching up. Not there yet.
        Reply With Quote
      Reply



      Posting Rules
      You may not post new threads
      You may not post replies
      You may not post attachments
      You may not edit your posts

      vB code is On
      Smilies are On
      [IMG] code is On
      HTML code is Off
      Forum Jump

      Similar Threads
      Thread Thread Starter Forum Replies Last Post
      How long will BMM last? BigMadM New York 173 03-03-2006 06:53 PM
      kayla eros long island ViagraMan New York 9 07-30-2003 06:40 AM
      Zara and Paige Long Island info! Shauna New York 5 02-21-2003 10:09 AM
      Gia that used to work on long island GlobalCourtesans New York 17 02-09-2003 09:09 PM
      Kimmie Does Long Island Kimmie New York 11 02-06-2003 10:43 AM

      All times are GMT -8. The time now is 12:07 PM.

      This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

      Powered by vBulletin® Version 3.6.8
      Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

      ]]>
      false
      5349709782772580352 5244928 Password field with autocomplete enabled http://utopiaguide.com Low Certain
      The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
      autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
    6. http://utopiaguide.com/forums/login.php?do=login
    7. The form contains the following password field with autocomplete enabled:
      • vb_login_password
      ]]>
      UtopiaGuide



      Go Back   UtopiaGuide
      Register FAQ Members List CalendarvBookieToplist Today's Posts

      vBulletin Message
      You are not logged in or you do not have permission to access this page. This could be due to one of several reasons:
      1. You are not logged in. Fill in the form at the bottom of this page and try again.
      2. You may not have sufficient privileges to access this page. Are you trying to edit someone else's post, access administrative features or some other privileged system?
      3. If you are trying to post, the administrator may have disabled your account, or it may be awaiting activation.
      Log in
      User Name:
      Password:
      Forgotten Your Password?
      The administrator may have required you to register before you can view this page.

      Forum Jump

      All times are GMT -8. The time now is 12:32 PM.

      This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

      Powered by vBulletin® Version 3.6.8
      Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

      ]]>
      false
      1093766486064182272 2097920 Cross-site scripting (reflected) http://b.scorecardresearch.com High Certain
      The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

      Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

      The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
    8. Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
    9. User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
    10. In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
      21459<script>alert(1)</script>d5a9c85c27d was submitted in the c2 parameter. This input was echoed unmodified in the application's response.

      This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
      alert(1)d5a9c85c27d&c3=25&c4=13345&c5=&c6=&c10=3202889&c15= HTTP/1.1 Host: b.scorecardresearch.com Proxy-Connection: keep-alive Referer: http://www.democracyforums.com/frontpage/index.php User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 ]]> 2080?a.substr(0,2075)+"&ct=1":a;if(!/BlackBerry.*?\/([1-3]\.|4\.[0-5])/.test(b.userAgent)){var c=new Image();c.onload=function(){};c.src=a}else{a=a.replace(/\/b\?/,"/p?");j.write("")}return a}catch(h){}};COMSCORE.purge=function(a){try{var c=[],f,b;a=a||_comscore;for(b=a.length-1;b>=0;b--){f=COMSCORE.beacon(a[b]);a.splice(b,1);if(f){c.push(f)}}return c}catch(d){}};COMSCORE.purge(); COMSCORE.beacon({c1:"8", c2:"613540421459d5a9c85c27d", c3:"25", c4:"13345", c5:"", c6:"", c10:"3202889", c15:"", c16:"", r:""}); ]]> false
      2478854217892372480 3145984 Cleartext submission of password http://www.lessonofpassion.com High Certain
    11. http://www.lessonofpassion.com/user.php?type=login
    12. The form contains the following password field:
      • password
      ]]>
      Lesson of Passion - erotic flash games
      ]]> false 4431069912935372800 1049088 SQL injection http://tap.rubiconproject.com High Tentative
      Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.]]>
      every variable data item that is incorporated into database queries, even if it is not obviously tainted, to prevent oversights occurring and avoid vulnerabilities being introduced by changes elsewhere within the code base of the application.

      You should be aware that some commonly employed and recommended mitigations for SQL injection vulnerabilities are not always effective:
      • One common defence is to double up any single quotation marks appearing within user input before incorporating that input into a SQL query. This defence is designed to prevent malformed data from terminating the string in which it is inserted. However, if the data being incorporated into queries is numeric, then the defence may fail, because numeric data may not be encapsulated within quotes, in which case only a space is required to break out of the data context and interfere with the query. Further, in second-order SQL injection attacks, data that has been safely escaped when initially inserted into the database is subsequently read from the database and then passed back to it again. Quotation marks that have been doubled up initially will return to their original form when the data is reused, allowing the defence to be bypassed.
      • Another often cited defence is to use stored procedures for database access. While stored procedures can provide security benefits, they are not guaranteed to prevent SQL injection attacks. The same kinds of vulnerabilities that arise within standard dynamic SQL queries can arise if any SQL is dynamically constructed within stored procedures. Further, even if the procedure is sound, SQL injection can arise if the procedure is invoked in an unsafe manner using user-controllable data.
      ]]>
      '%20and%201%3d1--%20 and '%20and%201%3d2--%20 were each submitted in the xt parameter. These two requests resulted in different responses, indicating that the input is being incorporated into a SQL query in an unsafe way.

      Note that automated difference-based tests for SQL injection flaws can often be unreliable and are prone to false positive results. You should manually review the reported requests and responses to confirm whether a vulnerability is actually present.]]>
      false false
      4169677462788796416 2098432 Silverlight cross-domain policy http://www.microsoft.com Information Certain
      Even if an allowed domain is not overtly malicious in itself, security vulnerabilities within that domain could potentially be leveraged by a third-party attacker to exploit the trust relationship and attack the application which allows access.]]>

      Allowing access from specific domains means that web sites on those domains can perform two-way interaction with this application. You should only use this policy if you fully trust the specific domains allowed by the policy.]]>
      ]]> false
      6401419024382314496 6292992 Robots.txt file http://www.google.com Information Certain
      The presence of the robots.txt does not in itself present any kind of security vulnerability. However, it is often used to identify restricted or private areas of a site's contents. The information in the file may therefore help an attacker to map out the site's contents, especially if some of the locations identified are not linked from elsewhere in the site. If the application relies on robots.txt to protect access to these areas, and does not enforce proper access control over them, then this presents a serious vulnerability.]]>
      false
      8324752946352846848 5243648 Cookie scoped to parent domain http://optimized-by.rubiconproject.com Information Certain
    13. rdk=8249/13345; expires=Mon, 18-Apr-2011 00:50:04 GMT; max-age=60; path=/; domain=.rubiconproject.com
    14. ses2=13345^3; expires=Mon, 18-Apr-2011 04:59:59 GMT; max-age=29395; path=/; domain=.rubiconproject.com
    15. The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
      <\/script>"; rubicon_tag_code = rubicon_tag_code.replace(/##RUBICON_CB##/g,rubicon_cb); document.write(rubicon_tag_code); document.write("\"Quantcast\"/

      Caseyofhouston  

      HomeAbout MePhotosServicesRatesGiftsGuestbookReviewsCalendarFAQLinksContact

      Escort Contact
      ?

      ?

      Hello gentlemen

      You may call me direct at: 281-763-8032.

      ?

      Or you may leave me a message here, with your information, and I will get back to you ASAP!

      Phone: 281-763-8032

         
       years
       Email   Phone call   Phone SMS  
      • Fields with * before are mandatory.
      • You will receive an email with the booking information for cancelation purposes. First please add @rare-escorts.com to your trusted friends or safe list, etc.

      eccie.net

      SitemapRSSAdd to My Yahoo!Add to Google Homepage or Google Reader !
      ]]>
      false
      7052264184928889856 5244416 Cookie without HttpOnly flag set http://maps.google.com Information Certain
      You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
    16. PREF=ID=0772c9d5ef13aaaf:U=d212295d0f1573ee:TM=1303071569:LM=1303072544:S=VL32M1G2MR3iECjk; expires=Tue, 16-Apr-2013 20:35:44 GMT; path=/; domain=.google.com
    17. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
      Google Maps Screen reader users: click here for plain HTML
      Loading...


      500 km
      500 mi
      Satellite
      more
      ]]>
      false
      3349629982463211520 5243648 Cookie scoped to parent domain http://www.blogger.com Information Certain
    18. NID=46=pflOTaIKxHBWqk_Cb89TjSz094GoZqHrt6zgC3kQbqJMhrJbIMBqid6f-fSuuY4pdKIFrVE5bStPykjrpclYf-jnjETSl8R4EDy8GvW-fByBIxvbXtJXlWFZnd-YG2ym; expires=Tue, 18-Oct-2011 00:49:12 GMT; path=/; domain=.blogger.com; HttpOnly
    19. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
      false
      5357242958092682240 5243648 Cookie scoped to parent domain http://c.statcounter.com Information Certain
    20. is_unique=sc2226915.1303083753.0; expires=Fri, 15-Apr-2016 23:42:33 GMT; path=/; domain=.statcounter.com
    21. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
      false
      1513654192625873920 5244160 Cross-domain script include http://googleads.g.doubleclick.net Information Certain
      If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
    22. http://pagead2.googlesyndication.com/pagead/js/abg.js
    23. http://pagead2.googlesyndication.com/pagead/js/graphics.js
    24. ]]>
      (i)
      Ads by Google
      ]]>
      false
      7584802659862432768 6292992 Robots.txt file http://d.adsverse.com Information Certain
      The presence of the robots.txt does not in itself present any kind of security vulnerability. However, it is often used to identify restricted or private areas of a site's contents. The information in the file may therefore help an attacker to map out the site's contents, especially if some of the locations identified are not linked from elsewhere in the site. If the application relies on robots.txt to protect access to these areas, and does not enforce proper access control over them, then this presents a serious vulnerability.]]>
      false
      4193437810482481152 5243648 Cookie scoped to parent domain http://www.linxdown.com Information Certain
    25. dle_user_id=deleted; expires=Sat, 17-Apr-2010 20:38:30 GMT; path=/; domain=.linxdown.com; httponly
    26. dle_password=deleted; expires=Sat, 17-Apr-2010 20:38:30 GMT; path=/; domain=.linxdown.com; httponly
    27. dle_hash=deleted; expires=Sat, 17-Apr-2010 20:38:30 GMT; path=/; domain=.linxdown.com; httponly
    28. The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
      lessons of passion dirty pictures walkthrough Rapidshare Hotfile Megaupload Mediafire Download Links LinxDown.Com
                        
      Filesonic Fileserve Torrent Usenet Downloads

      Powered by vBulletin® Version 3.8.4
      Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.
      ]]>
      false
      3123705821651309568 8389888 Content type is not specified http://ad.yieldmanager.com Information Certain
      In most cases, the absence of a content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
      0){rm_url+="&X=";for(var i=0;i<\/SCRIPT>';if(rm_pop_frequency){if(rmCanShowPop(rm_pop_id,rm_pop_times,rm_pop_frequency)||rm_pop_nofreqcap){document.write(rm_tag_src);}}else{document.write(rm_tag_src);}function cookiesEnabled(){var cookieEnabled=(navigator.cookieEnabled)?true:false;if(typeof navigator.cookieEnabled=="undefined"&&!cookieEnabled){document.cookie="testcookie";cookieEnabled=(document.cookie.indexOf("testcookie")!=-1)?true:false;}return cookieEnabled;}function rmGetCookie(Name){var search=Name+"=";var CookieString=document.cookie;var result=null;if(CookieString.length>0){offset=CookieString.indexOf(search);if(offset!=-1){offset+=search.length;end=CookieString.indexOf(";",offset);if(end==-1){end=CookieString.length;}result=unescape(CookieString.substring(offset,end));}}return result;}function flashDetection(){var flash=new Object();flash.installed=false;flash.version='0.0';if(navigator.plugins&&navigator.plugins.length){for(x=0;x'); ]]> false
      1064486586124766208 5243904 Cross-domain Referer leakage http://www.lessonofpassion.com Information Certain
      If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

      You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

      Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

      Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
    29. http://www.lessonofpassion.com/games_category.php?type=category&category=%27%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x000146)%3C/script%3E
    30. The response contains the following links to other domains:
      • http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js
      • http://outcastacademy.com/index.php?targeo=lopvert
      • http://www.google-analytics.com/urchin.js
      • http://www.playforceone.com/
      • http://www.sexizu.com/
      ]]>
      Lesson of Passion - \'\"--></style></script><script>alert(0x000146)</script> erotic flash games


      Username   Password  

      If you want to post comments and gain access to special features please your account.
      \'\"--> games
      ]]> false 7439831499296291840 5244416 Cookie without HttpOnly flag set http://c.statcounter.com Information Certain
      You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
    31. is_unique=sc2226915.1303083753.0; expires=Fri, 15-Apr-2016 23:42:33 GMT; path=/; domain=.statcounter.com
    32. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
      false
      8598174824533848064 5243648 Cookie scoped to parent domain http://www.google.com Information Certain
    33. PREF=ID=0772c9d5ef13aaaf:U=d212295d0f1573ee:FF=0:TM=1303071569:LM=1303071853:S=FQDi4EMhKk_8fo5L; expires=Tue, 16-Apr-2013 20:24:13 GMT; path=/; domain=.google.com
    34. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
      false
      2869499324138464256 5244416 Cookie without HttpOnly flag set http://safebrowsing.clients.google.com Information Certain
      You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
    35. PREF=ID=0772c9d5ef13aaaf:TM=1303071569:LM=1303071569:S=CF1gWWQb9CMFLdDz; expires=Tue, 16-Apr-2013 20:19:29 GMT; path=/; domain=.google.com
    36. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
      false
      7544392546311672832 2097920 Cross-site scripting (reflected) http://d.adsverse.com High Certain
      The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

      Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

      The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
    37. Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
    38. User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
    39. In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
      a45d9</script><script>alert(1)</script>4d8c81bad95 was submitted in the loc parameter. This input was echoed unmodified in the application's response.

      This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

      Note that a redirection occurred between the attack request and the response containing the echoed input. It is necessary to follow this redirection for the attack to succeed. When the attack is carried out via a browser, the redirection will be followed automatically.]]>
      4d8c81bad95 HTTP/1.1 Host: d.adsverse.com Proxy-Connection: keep-alive Referer: http://d.adsverse.com/afr.php?key=L2SmMKyiMzuiqKA0o24hL29g&refresh=60&zoneid=14&cb=2130598163 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 Cookie: OAGEO=US%7CTX%7CDallas%7C75207%7C32.7825%7C-96.8207%7C623%7C214%7CMedia+Visions%7C%7C; OAID=574904589a3ae5378ce2de7809c7b231 ]]> Advertisement 4d8c81bad95")', 60000); // ]]]> -->
      Undress her !
      Some are genuine escorts in !
      ]]>
      true
      3894323194510559232 3145984 Cleartext submission of password http://utopiaguide.com High Certain
    40. http://utopiaguide.com/forums/login.php?do=login
    41. The form contains the following password field:
      • vb_login_password
      ]]>
      UtopiaGuide - Powered by vBulletin



      Register FAQ Members List CalendarvBookieToplist Today's Posts

        Forum Last Post Threads Posts Moderator
      Review Index
      NO DISCUSSION ALLOWED: LINKS TO REVIEWS ONLY. Threads must be titled "Provider name" - "Name of Establishement or Independent" - "Location"
      Note: Anyone may post in this section, including providers showing links to their own reviews so long as that is all they post.
      No discussions, post links to reviews only!!!!!!
      03-29-2011 08:27 PM Go to last post
      47 55
       
      THE LADIES
      Advertising, Announcements and In Search Of sections
      Paid Classified Advertisers
      09-09-2009 03:44 AM Go to last post
      3 3
       
      461 3,442
       
      If your thread is a question, contains a question or should be a question it HAD BETTER go in here
      1,906 12,596
      Start Here!!!
      2 9
       
      by KDogg84
      03-11-2011 09:26 PM Go to last post
      5 115
      46 17,611
       
      01-20-2011 06:35 PM Go to last post
      11 50
       
      No flames tolerated. Let the kids place nicely.
      160 1,894
       
      If you want to introduce yourself, here is the place to do it. But do you see the section just before this one? The one titled "Rules"? That comes before this one for a reason.
      Today 10:51 AM Go to last post
      49 1,527
       
      2 189
       
      Through the Looking Glass
      The best section on UG! True stories of how people's lives have been affected by being involved in this lifestyle.
      03-11-2009 09:06 AM Go to last post
      2 24
       
      Slinky Bender
      10 303
       
      7 277
       
      1 40
       
      by BestRX
      08-20-2010 09:23 PM Go to last post
      2 11
       
      7 42
       
      08-21-2010 08:01 PM Go to last post
      3 36
      April
      6 168
       
      10-24-2010 01:11 PM Go to last post
      10 102
       
      The exploits of Gavycrav The Exploiter.
      03-06-2011 11:19 AM Go to last post
      2 36
       
      1 1
       
      Ryanscot
      1 47
       
      03-30-2011 09:49 AM Go to last post
      1 28
       
      1 42
       
      by Left_the_scene
      04-12-2011 06:50 AM Go to last post
      8 155
       
      2 67
       
      An experiment in hooking up
      8 282
       
      From the other side of the camera
      Photographers display their work for ladies of the industry.
      If you would like your own section here, please contact service at utopiaguide.com
      11-17-2009 11:52 AM Go to last post
      2 34
       
      General Discussions
      Discussions which are not geographically specific, nor a "specialty item" of one of the forums below
      04-13-2011 06:33 PM Go to last post
      3,523 113,234
       
      Thoughts on the marketing of Adult Services
      by h4c
      03-31-2011 10:15 AM Go to last post
      47 1,409
      102 5,093
       
      how to successfully live a double life; how to avoid entanglements with law enforcement; how to screen clients effectively; how to deal effectively with being screened, etc
      42 1,283
      11-24-2010 07:20 PM Go to last post
      39 4,314
       
      Alternative - TS/Shemales, BDSM, Group and other
      If you don't want to participate, don't come in. Trolls will not be tolerated.
      01-03-2011 09:12 AM Go to last post
      68 1,102
      by shade
      01-21-2011 12:25 PM Go to last post
      13 345
      by Santino
      01-26-2011 09:22 AM Go to last post
      27 840
      Feet, golden showers, strap-ons, ass play, etc.
      03-02-2011 11:24 AM Go to last post
      25 576
      by franca
      09-24-2010 03:16 PM Go to last post
      2 97
      Tantra, MMF, anything which doesn't fit any of the above sections
      03-28-2011 10:25 AM Go to last post
      27 760
      Kicking & Screaming
      83 9,576
       
      missiles from cyberspace
      25 518
       
      by trigeek
      03-08-2011 03:27 AM Go to last post
      17 497
       
      Absolutely NO flaming, rude or derogatory comments allowed
      18 264
       
      Not your Father's PMB
      1,661 30,726
      653 46,878
      by lowell
      Yesterday 04:29 PM Go to last post
      955 46,668
      85 2,357
       
      10-20-2010 04:23 PM Go to last post
      105 4,753
       
      Local Areas
      Boston / Massachusetts & Rhode Island , Connecticut, Vermont / New Hampshire /Maine
      04-06-2011 08:05 PM Go to last post
      232 1,833
      New York, Long Island, NJ/NY/CT Spa, Northern New Jersey, Southern NJ/Eastern PA ( Philly, Allentown...) , Middle/Western Pennsylvania
      by Scott68
      Today 12:28 PM Go to last post
      15,251 328,307
       
      DC & Baltimore / Maryland / Virginia / Delaware, Carolinas, Florida, Atlanta/Georgia
      04-14-2011 01:14 PM Go to last post
      778 3,082
       
      Chicago / Illinois, Ohio, Detroit / Michigan, Minnesota / Wisonsin, Kansas / Misouri, Nebraska / Iowa, North / South Dakota
      280 585
       
      Texas, New Orleans / Louisianna, Tennessee / Kentucky / Mississippi / Alabama, Oklahoma /Arkansas
      by puffin
      01-05-2011 06:10 PM Go to last post
      164 484
       
      Las Vegas / Nevada, Denver / Colorado, Arizona / New Mexico / Utah, Montana / Idaho/ Wyoming
      by ereuben
      04-03-2011 10:03 PM Go to last post
      194 935
       
      California, Hawaii, Pacific Northwest - Washington and Oregon, Alaska
      by dreman
      03-28-2011 08:45 AM Go to last post
      182 612
       
      Canada, Latin America/South America/Caribbean, Europe, Asia
      04-08-2011 02:37 PM Go to last post
      287 2,818
       
      UG Diversions
      03-18-2011 05:44 AM Go to last post
      2 178
      02-11-2009 11:01 PM Go to last post
      3 64
      11-30-2010 06:01 AM Go to last post
      14 19
      Worst Shill; Stupidest ISO question; Most misdirected geography reference; Dummest suggestion, etc.
      12 771
      by Allen
      03-07-2003 05:49 AM Go to last post
      11 11
      Other stuff
      by new guy
      04-06-2011 05:13 PM Go to last post
      255 25,503
      Yesterday 08:45 PM Go to last post
      938 28,735
      258 17,449
      268 10,298
      04-15-2011 12:24 PM Go to last post
      151 8,202
      04-09-2011 09:29 AM Go to last post
      130 3,570
      104 2,398
      by JackT
      08-02-2010 10:31 AM Go to last post
      98 1,562
      30 773
       
      2,400 128,878
      Private Forums
      Advertising & In Search Of Archive
      528 2,057
       


      What's Going On?
      UtopiaGuide Statistics
      UtopiaGuide Statistics
      Threads: 38,890, Posts: 933,787, Members: 86,221
      Welcome to our newest member, animal99

      Contains New Posts   Forum Contains New Posts
      Contains No New Posts   Forum Contains No New Posts
      All times are GMT -8. The time now is 12:31 PM.

      This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

      Powered by vBulletin® Version 3.6.8
      Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

      ]]>
      false
      1075987341260912640 5244416 Cookie without HttpOnly flag set http://www.google.com Information Certain
      You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
    42. PREF=ID=0772c9d5ef13aaaf:U=d212295d0f1573ee:FF=0:TM=1303071569:LM=1303071854:S=-12yg0SrBzdFcgP0; expires=Tue, 16-Apr-2013 20:24:14 GMT; path=/; domain=.google.com
    43. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
      false
      4595151537618573312 5244416 Cookie without HttpOnly flag set http://ad.turn.com Information Certain
      You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
    44. uid=2931142961646634775; Domain=.turn.com; Expires=Fri, 14-Oct-2011 23:37:29 GMT; Path=/
    45. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
      ]]> false
      3936433342022621184 2097920 Cross-site scripting (reflected) http://adserving.cpxinteractive.com High Certain
      The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

      Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

      The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
    46. Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
    47. User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
    48. In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
      e39f0"><script>alert(1)</script>07db89433ec was submitted in the ad_size parameter. This input was echoed unmodified in the application's response.

      This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
      07db89433ec§ion=1101690 HTTP/1.1 Host: adserving.cpxinteractive.com Proxy-Connection: keep-alive Referer: http://www.linxdown.com/ad/ad160x600.html User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 ]]> document.write('07db89433ec&inv_code=1101690&referrer=http://www.linxdown.com/ad/ad160x600.html&redir=http%3A%2F%2Fad.yieldmanager.com%2Fst%3Fanmember%3D541%26anprice%3D%7BPRICEBUCKET%7D%26ad_type%3Dad%26ad_size%3D160x600e39f0%22%3E%3Cscript%3Ealert%281%29%3C%2Fscript%3E07db89433ec%26section%3D1101690">');

      ]]>
      false
      6601404750634183680 1049088 SQL injection http://www.thatshiphop.com High Certain
      Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.]]>
      every variable data item that is incorporated into database queries, even if it is not obviously tainted, to prevent oversights occurring and avoid vulnerabilities being introduced by changes elsewhere within the code base of the application.

      You should be aware that some commonly employed and recommended mitigations for SQL injection vulnerabilities are not always effective:
      • One common defence is to double up any single quotation marks appearing within user input before incorporating that input into a SQL query. This defence is designed to prevent malformed data from terminating the string in which it is inserted. However, if the data being incorporated into queries is numeric, then the defence may fail, because numeric data may not be encapsulated within quotes, in which case only a space is required to break out of the data context and interfere with the query. Further, in second-order SQL injection attacks, data that has been safely escaped when initially inserted into the database is subsequently read from the database and then passed back to it again. Quotation marks that have been doubled up initially will return to their original form when the data is reused, allowing the defence to be bypassed.
      • Another often cited defence is to use stored procedures for database access. While stored procedures can provide security benefits, they are not guaranteed to prevent SQL injection attacks. The same kinds of vulnerabilities that arise within standard dynamic SQL queries can arise if any SQL is dynamically constructed within stored procedures. Further, even if the procedure is sound, SQL injection can arise if the procedure is invoked in an unsafe manner using user-controllable data.
      ]]>

      The database appears to be MySQL.]]>
      false ThatsHiphop.com - Page Not Found
      ThatsHiphop.com

       

      The file you have requested was not found.

       

      ]]>
      false
      4077075492350206976 6291968 Email addresses disclosed http://www.thatshiphop.com Information Certain
      However, email addresses of developers and other individuals (whether appearing on-screen or hidden within page source) may disclose information that is useful to an attacker; for example, they may represent usernames that can be used at the application's login, and they may be used in social engineering attacks against the organisation's personnel. Unnecessary or excessive disclosure of email addresses may also lead to an increase in the volume of spam email received.]]>
    49. info@thatshiphop.com
    50. ]]>
      ThatsHipHop.com - News

      ThatsHiphop.com News

       
      Krayzie Bone: No More Harmonizing With Bone...

      Krayzie Bone has announced that he's leaving Bone Thugs n Harmony after 20 years to focus on his solo career and his label, The Life Entertainment. Krayzie's first project is a compilation titled Cleveland Is the City, Volume One, and it'll be on the stre... Read more
      Gucci Mane: It's Still Gucci Time Behind Ba...

      No one has bailed Gucci Mane out of prison, even though his bond is only $5700. He's locked up in Atlanta for allegedly throwing a woman out of his car for rejecting his sexual advances last Friday. But even if he posts bail, he'll simply be transferred t... Read more
      Bobby Brown: Child Number Six On The Way

      Bobby Brown and fiancee Alicia Etheridge are expecting another baby. This will be child number six for Brown and his second with Alicia. He and Whitney Houston have just one daughter, Bobbi Christina. - Rahim Wright... Read more
      Mariah Carey: Bares All -- Yet Again

      Just in case someone in the world hasn't seen Mariah Carey's bare, baby packed belly, she's showing it again - - on the cover of Britain's OK! magazine. Mimi tells the mag that hubby Nick Cannon has already started reading stories to the couple's unborn ... Read more
      Waka Flocka: Gucci And Papoose On New Mixta...

      Waka Flocka Flame has just dropped a new mixtape titled Benjamin Flocka.Surprisingly, there's no Lex Luger production this time around. Instead, Waka recruited Southside to man the boards for most of the project. The mixtape also includes features from th... Read more
      Nicki Minaj: Channeling Marge Simpson

      Nicki Minaj's latest wig looks rather cartoonish - - and that may be because she got the idea for the beehive look from Marge Simpson. Nicki tells People magazine, "Never did I think I would be rocking the Marge Simpson... I realize that she was cutting ... Read more
      Nicki Minaj: Channeling Marge Simpson

      Nicki Minaj's latest wig looks rather cartoonish - - and that may be because she got the idea for the beehive look from Marge Simpson. Nicki tells People magazine, "Never did I think I would be rocking the Marge Simpson... I realize that she was cutting ... Read more
      Rihanna, Eminem, Gaga: Billboard Awards Fin...

      Rihanna leads all comers for next month's Billboard Awards. She's a finalist in 18 categories, including Top Hot 100 Artist and Top Female Artist. Eminem is up for 16 awards, and Lady Gaga is up for 12. Justin Bieber and Bruno Mars are finalists in 11 cat... Read more
      Beyonce: A Shot In The Dark

      Beyonce is keeping people guessing about just what's going on with her new video, which she headed to California's Mojave Desert to shoot on Tuesday. Some sources say the clip is meant to accompany a song called "Girl," while others say it's for "Till the... Read more
      Teyana Taylor: Accused Of Assault

      Teyana Taylor is denying Internet reports that she assaulted another woman at a studio in Burbank, California on Saturday night. She writes on Twitter, "I'm being accused of something I didn't do." TMZ reports that Teyana allegedly laid a beat down on the... Read more
       

      1, 2, 3, 4, 5, 6, 7, 8, 9 ... 26 ... Next

       

      THH Login

      Interviews

      Large Amount

      LARGE AMOUNT ???THE BOY WITH A BILLION BARS??? "The BOY WITH A BILLION BARS???, in which this unique title was also natura
      Read More >

      Group Home

      GROUP HOME RSRadio: So group home it??s been a few years since you have released an official album what made you decide that
      Read More >


      ]]>
      false
      5690409445359540224 5244416 Cookie without HttpOnly flag set http://bh.contextweb.com Information Certain
      You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
    51. V=wOebwAz4UvVv; Domain=.contextweb.com; Expires=Wed, 11-Apr-2012 23:37:30 GMT; Path=/
    52. pb_rtb_ev=1:535461.2931142961646634775.0; Domain=.contextweb.com; Expires=Mon, 16-Apr-2012 23:37:30 GMT
    53. The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
      false
      6147306839169880064 5244160 Cross-domain script include http://www.facebook.com Information Certain
      If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
    54. http://b.static.ak.fbcdn.net/rsrc.php/v1/yr/r/AlTQ-BmP-BP.js
    55. ]]>
      Facebook
      FilesTube - Media Search Engine
      Confirm
      You like FilesTube - Media Search Engine. · Admin Page · Insights · ErrorYou like this.148,901 · Admin Page · Insights · Error
      ]]>
      false
      2261913400463993856 5245440 TRACE method is enabled http://utopiaguide.com Information Certain
      Although this behaviour is apparently harmless in itself, it can sometimes be leveraged to support attacks against other application users. If an attacker can find a way of causing a user to make a TRACE request, and can retrieve the response to that request, then the attacker will be able to capture any sensitive data which is included in the request by the user's browser, for example session cookies or credentials for platform-level authentication. This may exacerbate the impact of other vulnerabilities, such as cross-site scripting.]]>
      false
      95721971253583872 5244416 Cookie without HttpOnly flag set https://adwords.google.com Information Certain
      You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
    56. SAG=EXPIRED;Path=/;Expires=Mon, 01-Jan-1990 00:00:00 GMT
    57. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
      Moved Temporarily

      Moved Temporarily

      The document has moved here. ]]>
      false
      2848967470284365824 2097920 Cross-site scripting (reflected) http://adserving.cpxinteractive.com High Certain
      The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

      Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

      The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
    58. Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
    59. User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
    60. In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
      35433"><script>alert(1)</script>013bde76f03 was submitted in the section parameter. This input was echoed unmodified in the application's response.

      This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
      013bde76f03 HTTP/1.1 Host: adserving.cpxinteractive.com Proxy-Connection: keep-alive Referer: http://www.linxdown.com/ad/ad160x600.html User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 ]]> document.write('013bde76f03&referrer=http://www.linxdown.com/ad/ad160x600.html&redir=http%3A%2F%2Fad.yieldmanager.com%2Fst%3Fanmember%3D541%26anprice%3D%7BPRICEBUCKET%7D%26ad_type%3Dad%26ad_size%3D160x600%26section%3D110169035433%22%3E%3Cscript%3Ealert%281%29%3C%2Fscript%3E013bde76f03">');

      ]]>
      false
      6196547226233123840 8389376 HTML uses unrecognised charset http://www.3dadultcomics.com Information Tentative
      In most cases, the absence of a charset directive does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
      charset=ISO-8859-1.]]>
    61. iso-8859-9
    62. ]]>
      3D Adult Comics - 3D Adult Comics, 3D Adult Movies
      3d adult comics
      3d adult movies read 3d comics
      comics manga
      Miho Shower Slut
      Alien Breeding
      A simple drive home from the club turned into much more then Sophia Sin could ever imagine, First she was sucked up by a strange beam of light, woke up nude in a strange place, then injected with some strange liquid that made her more honey then she'd ever been before, and just when things could not seem to get any stranger, she's informed that ONLY SHE can save a dying alien race, find out how in this all new 3D XXX Comicbook!
       
      Gladiatrix
      Forget everything you thought you know about Gladiators! Our big breasted 3D Slut Britney Smears is trapped in the Gladiator pit, fighting for her very life with the most powerful male specimen she's ever encountered. With her massive sword in hand, (and her heaving breasts barely covered) she is in for the fight of her life... or could she use her sexy curvy body to save her very life?
       
      Wonder Woman
      Wonder Woman (or Wonder Cunt) was about ready to face her most toughest foe, the deadly (and sexy) Black Assassin, She thought it would be yet another quick battle but this time the crafty black street thug had a little surprise up his sleeve, and an even bigger surprise in his pants...
       
      Nam Sluts
      Taking advantage of the Cong female’s lesbian lust, the Buxom American GI throws her to the ground, Fists and hands groping and tearing, Both of the warrior women are soon naked! Using her American Know-How of how to administer an old fashioned ass-kicking, the blonde soon has her Asian counterpart pinned and rears back to punch her lights out.... but instead the end up...
       
      Sexual Healing
      Nurse Goodhead is a special kind of nurse, you might call her 'The Head Nurse' but not for the reasons you might be thinking of, Nurse Goodhead is called in to cure 'special cases' the ones that the doctor's have given up on, Our nurse has a very special way to cure her ill, and you'll have to see for yourself just how she cures the sickest of the sick!
       
      White Slut Training
      When faced with the fact that Bob's wife was no longer fucking him, he turned to a most extreme method to get his wife back to performing her wifely duties, the SVP a 'Slut Training Program" while Bob's wife was out on the town she was snatched up and thrown into a van and driven off for her training to begin....
       
      Janitor Sex
      Becky had always wondered if the rumors about Rodney the big black janitor at her finishing school were true, all around the school the girls (and some guys) swore that Rodney had the biggest, thickest black cock that anyone had ever seen. One day after class Becky decided to wait in the locker room and find out once and for all just what kind of a broomstick the janitor really had...
       
      Pirate Lesbians
      Follow Cap'n Clitoria and her first mate Jiggles as they "split the booty" Not every pirate treasure has to be cold, sometimes the best treasures are pink, tiny and wet! Check out the sex on the high seas in this all new 3D Adult Comicbook!
       
      Lesbian Flu Shot
      At St.Hymen's academy for young ladies, all the girls loved visiting Nurse CoCo Puffies, Today Suzi and Dawny were to get their Flu Shots from Nurse CoCo but they were scared of the needle that would be used, come see how our heroic nurse gets these scared teens to 'loosen up' and relax!
      Elf Slut
      Mistress Maid
      Pirate Slut and Guy
      Night of the Horny Zombies
       
      FREE BONUS! You'll get FREE access to more sites by subscribing to this site! CLICK HERE FOR MORE INFO
      JOIN NOW  |  MEMBERS  |  SUPPORT  |  WEBMASTERS
       
      This site contains sexually explicit material. If you are not at least 18 years of age, or object to viewing sexually explicit material,
      or if you don't consider this type of material to conform to your community standards,
      please leave now.
      LEGAL NOTICE: All models appearing on the site were at least 18 years of age at the time their photographs were taken.
      Please refer to our 18 U.S.C. 2257 Record-Keeping Requirements Compliance statement below for further information and documentation.
       
      Terms & Conditions of Membership | 18 U.S.C. 2257 Record-Keeping Requirements Compliance statement | Privacy Policy
      Blog | Gallery | Links | Customer Service | Webmaster Program | Epoch Billing Support | CCBill Billing Support
       
      © 1996 - 2010 by PowerNetX, Inc.  
       
      ]]>
      false
      5608147409591762944 3145984 Cleartext submission of password http://utopiaguide.com High Certain
    63. http://utopiaguide.com/forums/login.php?do=login
    64. The form contains the following password field:
      • vb_login_password
      ]]>
      UtopiaGuide



      Go Back   UtopiaGuide
      Register FAQ Members List CalendarvBookieToplist Today's Posts

      vBulletin Message
      Invalid Forum specified. If you followed a valid link, please notify the administrator

      Forum Jump

      All times are GMT -8. The time now is 12:31 PM.

      This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

      Powered by vBulletin® Version 3.6.8
      Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

      ]]>
      false
      1903387749630406656 5244416 Cookie without HttpOnly flag set http://www.youtube.com Information Certain
      You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
    65. use_hitbox=72c46ff6cbcdb7c5585c36411b6b334edAEAAAAw; path=/; domain=.youtube.com
    66. VISITOR_INFO1_LIVE=O9CD7Ck_7Z0; path=/; domain=.youtube.com; expires=Tue, 13-Dec-2011 20:33:41 GMT
    67. GEO=cb66ebe4391bcea8fd68efb98d6db6e1cwsAAAAzVVOtwdbzTatOpQ==; path=/; domain=.youtube.com
    68. The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
      YouTube - Broadcast Yourself.
      Sort by:

      Search results for

      Alert icon
      We have updated the search options. Let us guide you through the changes.
      Sort by
      No video results for “”


      Queue (0) Return to active list
        1. Your queue is empty. Add videos to your queue using this button:
          or sign in to load a different list.
        Loading...Loading...Saving...
        ]]>
        false
        8363144039038946304 6291968 Email addresses disclosed http://www.google.com Information Certain
        However, email addresses of developers and other individuals (whether appearing on-screen or hidden within page source) may disclose information that is useful to an attacker; for example, they may represent usernames that can be used at the application's login, and they may be used in social engineering attacks against the organisation's personnel. Unnecessary or excessive disclosure of email addresses may also lead to an increase in the volume of spam email received.]]>
      1. dcollison@google.com
      2. ]]>
        1) { this.directEntries = photoFeed; } else { throw "invalid argument: photoFeed"; } if (typeof container == "string") { container = document.getElementById(container); } this.container = container; this.parseOptions(options); this.setup(); } // Thumbnail size preferences. GFslideShow.THUMBNAILS_SMALL = "small"; GFslideShow.THUMBNAILS_MEDIUM = "medium"; GFslideShow.THUMBNAILS_LARGE = "large"; // Thumbnail tag names and namespaces. // MediaRSS. GFslideShow.MRSS_THUMBNAIL_TAG = "thumbnail"; GFslideShow.MRSS_THUMBNAIL_NS = "http://search.yahoo.com/mrss/"; // iTunes. GFslideShow.ITMS_THUMBNAIL_TAG = "coverArt"; GFslideShow.ITMS_THUMBNAIL_NS = "http://phobos.apple.com/rss/1.0/modules/itms/"; // MediaRSS is default. GFslideShow.DEFAULT_THUMBNAIL_TAG = GFslideShow.MRSS_THUMBNAIL_TAG; GFslideShow.DEFAULT_THUMBNAIL_NS = GFslideShow.MRSS_THUMBNAIL_NS; // Default display timings, all in milliseconds. GFslideShow.DEFAULT_DISPLAY_TIME = 3000; GFslideShow.DEFAULT_TRANSISTION_TIME = 1000; GFslideShow.DEFAULT_TRANSISTION_STEP = 40; GFslideShow.DEFAULT_PAUSE_PNG = google.loader.ServiceBase + "/solutions/slideshow/pause.png"; GFslideShow.DEFAULT_PLAY_PNG = google.loader.ServiceBase + "/solutions/slideshow/play.png"; // Full Control Setting GFslideShow.FC_PAUSE_PNG = { small : google.loader.ServiceBase + "/solutions/slideshow/btn_pause_small.png", big : google.loader.ServiceBase + "/solutions/slideshow/btn_pause.png" }; GFslideShow.FC_PLAY_PNG = { small : google.loader.ServiceBase + "/solutions/slideshow/btn_play_small.png", big : google.loader.ServiceBase + "/solutions/slideshow/btn_play.png" }; GFslideShow.FC_PREV_PNG = { small : google.loader.ServiceBase + "/solutions/slideshow/btn_prev_small.png", big : google.loader.ServiceBase + "/solutions/slideshow/btn_prev.png" }; GFslideShow.FC_NEXT_PNG = { small : google.loader.ServiceBase + "/solutions/slideshow/btn_next_small.png", big : google.loader.ServiceBase + "/solutions/slideshow/btn_next.png" }; GFslideShow.DEFAULT_FC_FADEOUT_TIME = 5000; GFslideShow.DEFAULT_FC_OPACITY = 0.65; /** * Setup default option map and apply overrides from constructor. * @param {Object} options Options map. * @private */ GFslideShow.prototype.parseOptions = function(options) { var maxEntries; if (google != undefined && google.feeds != undefined) { maxEntries = google.feeds.Feed.MAX_ENTRIES; } else { maxEntries = 20; } // Default Options this.options = { numResults : maxEntries, scaleImages : false, thumbnailTag : GFslideShow.DEFAULT_THUMBNAIL_TAG, thumbnailNamespace : GFslideShow.DEFAULT_THUMBNAIL_NS, thumbnailSize : GFslideShow.THUMBNAILS_LARGE, linkTarget : null, displayTime : GFslideShow.DEFAULT_DISPLAY_TIME, transitionTime : GFslideShow.DEFAULT_TRANSISTION_TIME, transitionStep : GFslideShow.DEFAULT_TRANSISTION_STEP, pauseOnHover : true, pauseImage : GFslideShow.DEFAULT_PAUSE_PNG, pauseStateCallback : null, scalePauseImage : true, autoCleanup : true, thumbnailUrlResolver : null, transitionCallback : null, transitionAnimationCallback : null, feedLoadCallback : null, feedProcessedCallback : null, imageClickCallback : null, centerBias : { topBias : 0, leftBias : 0 }, pauseCenterBias : { topBias : 0, leftBias : 0 }, fullControlPanel : false, fullControlPanelCursor : false, fullControlPanelFadeOutTime : GFslideShow.DEFAULT_FC_FADEOUT_TIME, fullControlPanelPlayCallback : null, fullControlPanelSmallIcons : false, maintainAspectRatio : true }; if (options) { for (o in this.options) { if (typeof options[o] != "undefined") { this.options[o] = options[o]; } } } // Override strange options if (this.options.displayTime < 100) { this.options.displayTime = 100; } // Calculated var ts = (this.options.transitionTime / this.options.transitionStep); this.delta = Math.min(1, (1.0/ts)); // Flag to start this.started = false; }; /** * Basic setup. * @private */ GFslideShow.prototype.setup = function() { if (this.container == null) return; // Browser fun. if (window.ActiveXObject) { this.ie = this[window.XMLHttpRequest ? 'ie7' : 'ie6'] = true; } else if (window.opera) { this.opera = true; } else if (document.childNodes && !document.all && !navigator.taintEnabled) { this.safari = true; if (navigator.userAgent.indexOf('iPhone') > 0) { this.iphone = true; } } else if (document.getBoxObjectFor != null) { this.gecko = true; } // Feeds.. if (this.feedUrl) { this.feed = new google.feeds.Feed(this.feedUrl); this.feed.setResultFormat(google.feeds.Feed.MIXED_FORMAT); this.feed.setNumEntries(this.options.numResults); this.feed.load(this.bind(this.feedLoaded)); } else if (this.directEntries) { this.feedLoaded(this.directEntries); } }; /** * Add new entries to the existing ones. Only useful in direct entry mode. * @param {Object} newEntries the additional entries Array. */ GFslideShow.prototype.addEntries = function(newEntries) { this.processEntries(newEntries); if (!this.thumb_timer) { this.processThumbs(); } }; /** * Helper method to bind this instance correctly. * @param {Object} method function/method to bind. * @return {Function} * @private */ GFslideShow.prototype.bind = function(method) { var self = this; var opt_args = [].slice.call(arguments, 1); return function() { var args = opt_args.concat([].slice.call(arguments)); return method.apply(self, args); } }; /** * Process mouseover event. * @param {Event} e Optional passed in event. * @private */ GFslideShow.prototype.mouseOver = function(e) { var event = e || window.event; var relatedTarget = event.relatedTarget || event.fromElement; while(relatedTarget != null) { if (relatedTarget == this.container) { return; } relatedTarget = relatedTarget.parentNode; } if (this.options.fullControlPanel) { if (this.options.pauseOnHover && !this.display_paused) { this.pauseOrPlayFullControl(); } this.fadeInFullControl(); } else { this.display_paused = true; if (this.pauseImage) { this.pauseImage.style.visibility = "visible"; } } if (this.options.pauseStateCallback) { this.options.pauseStateCallback(this.display_paused); } }; /** * Process mouseout event. * @param {Event} e Optional passed in event. * @private */ GFslideShow.prototype.mouseOut = function(e) { var event = e || window.event; var relatedTarget = event.relatedTarget || event.toElement; while(relatedTarget != null) { if (relatedTarget == this.container) { return; } relatedTarget = relatedTarget.parentNode; } if (this.options.fullControlPanel) { this.fadeOutFullControl(); this.container.onmousemove = null; if (this.options.pauseOnHover && this.display_paused) { this.pauseOrPlayFullControl(); } } else { this.display_paused = false; if (this.pauseImage) { this.pauseImage.style.visibility = "hidden"; } } if (this.options.pauseStateCallback) { this.options.pauseStateCallback(this.display_paused); } if (this.display_timer == null && this.transition_timer == null) { // restart. this.displayNextPhoto(); } }; GFslideShow.prototype.operaClickAndCallout = function() { var entry = this.entries[this.photo_index]; var tmpLink = this.createLink(entry.link); tmpLink.click(); }; /** * Programatic pause action. */ GFslideShow.prototype.pause = function(opt_suppressPauseImage) { var pi = this.pauseImage; if (opt_suppressPauseImage) { this.pauseImage = null; } this.pauseAndCallout(); this.pauseImage = pi; }; /** * Programatic resume action. */ GFslideShow.prototype.resume = function() { this.resumeSlideShow(); }; /** * Process pause action and associated user callout. * @private */ GFslideShow.prototype.pauseAndCallout = function() { this.display_paused = true; if (this.pauseImage) { this.pauseImage.style.visibility = "visible"; } // for some reason a mouseout happens // when we click and swap divs... this.container.onmouseout = null; if (this.options.imageClickCallback) { this.options.imageClickCallback(this.entries[this.photo_index]); } }; /** * Resume the slideshow after a pause action. */ GFslideShow.prototype.resumeSlideShow = function() { if (this.options.pauseOnHover || this.options.fullControlPanel) { this.container.onmouseover = this.bind(this.mouseOver); this.container.onmouseout = this.bind(this.mouseOut); } this.display_paused = false; if (this.pauseImage) { this.pauseImage.style.visibility = "hidden"; } if (this.display_timer == null && this.transition_timer == null) { // restart. this.displayNextPhoto(); } }; /** * Helper method to properly clear a node and its children. * @param {Object} node Node to clear. * @private */ GFslideShow.prototype.clearNode = function(node) { if (node == null) return; var child; while (child = node.firstChild) { node.removeChild(child); } }; /** * Setup our own subcontainer to the user supplied container. * @private */ GFslideShow.prototype.createSubContainer = function() { var div = document.createElement("div"); div.style.width = "100%"; div.style.height = "100%"; div.style.position = "relative"; div.style.overflow = "hidden"; this.clearNode(this.container); this.container.appendChild(div); // Hold onto our sub-container. this.container = div; }; /** * Select the appropriate thumbnail url from the array of thumbnails provided * based on options. * @param {Array} thumbNodes Array of thumbnails urls. * @private */ GFslideShow.prototype.grabThumb = function(thumbNodes) { var ti = 0; if (thumbNodes.length > 1) { // Use size hint. if (this.options.thumbnailSize == GFslideShow.THUMBNAILS_LARGE) { ti = thumbNodes.length - 1; } else if (this.options.thumbnailSize == GFslideShow.THUMBNAILS_MEDIUM) { ti = Math.floor(thumbNodes.length / 2); } } var node = thumbNodes[ti]; var thumb = null; var thumb = node.getAttribute("url"); if (!thumb) { thumb = node.firstChild.nodeValue; } return thumb; }; /** * Process the thumbs and create appropriate images. These can be done in * chunks. * @param {Number} opt_chunk optional chunk size to process. * @param {Number} opt_timeout optional timeout for next chunk. * @private */ GFslideShow.prototype.processThumbs = function(opt_chunk, opt_timeout) { this.thumb_timer = null; var start = this.thumbs_index; var num = this.entries.length; var chunk = opt_chunk || 4; if (num > (start + chunk)) { num = (start + chunk); // schedule next batch. var cb = this.bind(this.processThumbs); var to = opt_timeout || Math.round(this.options.displayTime / 4); this.thumb_timer = window.setTimeout(cb, to); } for (var i = start; i < num; i++) { var thumbUrl = this.entries[i].thumbUrl; var image = this.createImage(thumbUrl); this.images.push(image); if (this.options.linkTarget) { if (!this.opera) { var link = this.createLink(this.entries[i].link); link.appendChild(image); this.container.appendChild(link); } else { // Opera Hack image.onclick = this.bind(this.operaClickAndCallout); image.style.cursor = 'pointer'; this.container.appendChild(image); } } else { this.container.appendChild(image); } if (image.complete) { // We are already loaded and we have size dimensions. this.imageLoaded(image); } else { // We need to wait for the image to load.. image.onerror = this.bind(this.imageError, image); image.onload = this.bind(this.imageLoaded, image); } this.thumbs_index++; } }; /** * Process and setup the entries * @param {Object} entries Entries array. * @private */ GFslideShow.prototype.processEntries = function(entries) { for (var i = 0; i < entries.length; i++) { var thumbUrl = null; if (this.options.thumbnailUrlResolver) { thumbUrl = this.options.thumbnailUrlResolver(entries[i]); } else { var thumbNodes = google.feeds.getElementsByTagNameNS( entries[i].xmlNode, this.options.thumbnailNamespace, this.options.thumbnailTag); if (thumbNodes && thumbNodes.length > 0) { thumbUrl = this.grabThumb(thumbNodes); } } if (thumbUrl) { entries[i].thumbUrl = thumbUrl; this.entries.push(entries[i]); } } }; /** * Callback associated with the AJAX Feed api after load. * @param {Object} result Loaded result. * @private */ GFslideShow.prototype.feedLoaded = function(result) { if (this.options.feedLoadCallback) { this.options.feedLoadCallback(result); } if ((this.feedUrl && result.error) || (this.directEntries && this.directEntries.length == 0) ) { if (!this.options.feedLoadCallback) { this.container.innerHTML = '
        feed could not be loaded.
        '; } return; } this.createSubContainer(); if (this.container.offsetWidth) { // snapshot. this.width = this.container.offsetWidth; this.height = this.container.offsetHeight; } this.createPauseImage(); this.images = []; this.entries = []; this.thumbs_index = 0; var entries; if (this.feedUrl) { entries = result.feed.entries; } else { entries = this.directEntries; } // Process the entries. this.processEntries(entries); if (this.options.feedProcessedCallback) { this.options.feedProcessedCallback(result); } // Enable full panel control mode. if (this.options.fullControlPanel && this.entries.length > 0) { this.createFullControlPanel(); } // Attach mouse handlers if applicable for pausing. if ((this.options.pauseOnHover || this.options.fullControlPanel) && this.entries.length > 0) { this.container.onmouseover = this.bind(this.mouseOver); this.container.onmouseout = this.bind(this.mouseOut); } if (this.options.imageClickCallback) { this.container.onclick = this.bind(this.pauseAndCallout); } // Seed with first image and quick timeout for next chunk. this.processThumbs(1, 100+(Math.random()*100)); }; /** * Callback asscoiated with an image load. * @param {Element} image Image instance that was loaded. * @private */ GFslideShow.prototype.imageLoaded = function(image) { image.__gfloaded = true; this.adjustImage(image); // Once the first image is loaded, begin the slideshow.. if (!this.started) { for (var i = 0; i < this.images.length; i++) { if (image == this.images[i]) { this.beginSlideShow(i); } break; } } }; /** * Callback asscoiated with an image load error. * @param {Element} image Image instance that was loaded. * @private */ GFslideShow.prototype.imageError = function(image) { image.__gferror = true; }; /** * Adjust the image to the container after load. Will scale and center. * @param {Element} image Image instance that needs adjusting. * @private */ GFslideShow.prototype.adjustImage = function(image) { // Scale if requested. if (this.options.scaleImages) { if (this.options.maintainAspectRatio) { this.scaleImage(image); } else { image.style.height = this.height + "px"; image.style.width = this.width + "px"; } } // Center the image. this.centerImage(image); }; /** * Scale the image appropriately to fit in the container. * @param {Element} image Image instance that needs scaling. * @private */ GFslideShow.prototype.scaleImage = function(image, opt_width, opt_height) { // These change when the first one is set, so we need to remember them. var width = opt_width || this.width; var height = opt_height || this.height; var imgW = image.offsetWidth; var imgH = image.offsetHeight; if (imgW <= 0 || imgH <= 0) return; var scaleH = height / imgH; var scaleW = width / imgW; if (scaleH < scaleW) { image.style.height = height + "px"; image.style.width = Math.round(imgW * scaleH) + "px"; } else { image.style.width = width + "px"; image.style.height = Math.round(imgH * scaleW) + "px"; } }; /** * Center the image appropriately within the container. * @param {Element} image Image instance. * @private */ GFslideShow.prototype.centerImage = function(image) { var oh = this.height - image.offsetHeight; var ow = this.width - image.offsetWidth; // Don't assume these are zero.. image.style.top = "0px"; image.style.left = "0px"; // center the image if (oh > 0) { var ah = Math.round(oh/2); image.style.top = image.offsetTop + ah + this.options.centerBias.topBias + "px"; } if (ow > 0) { var aw = Math.round(ow/2); image.style.left = image.offsetLeft + aw + this.options.centerBias.leftBias + "px"; } }; /** * Create a link element. * @param {String} href Href attribute for the element. * @return {Element} Link element. * @private */ GFslideShow.prototype.createLink = function(href) { var link = document.createElement('a'); link.setAttribute('href', href); if (this.options.linkTarget) { link.setAttribute('target', this.options.linkTarget); } return link; }; /** * Create an image element. * @param {String} src Source attribute for the image element. * @private */ GFslideShow.prototype.createImage = function(src) { var image = document.createElement("img"); image.style.position = "absolute"; image.setAttribute("src", src); this.setOpacity(image, 0); return image; }; /** * Properly adjust the pause image if need be. * @param {Element} image Image representing pause state. * @private */ GFslideShow.prototype.adjustPauseImage = function(image) { if (this.options.scalePauseImage) { var height = Math.round(this.height * 0.33); var width = Math.round(this.width * 0.33); this.scaleImage(image, width, height); } this.placePauseImage(image); }; /** * Properly place the pause image for overlay on a pause state. * @param {Element} image Image representing pause state. * @private */ GFslideShow.prototype.placePauseImage = function(image) { var oh = this.height - image.offsetHeight; var ow = this.width - image.offsetWidth; // Don't assume these are zero.. image.style.top = "0px"; image.style.left = "0px"; // center the image if (oh > 0) { var off = Math.round(this.height * 0.10); if (off < 15) off = 10; var ah = this.height - (image.offsetHeight + off); if (ah < 0) ah = 0; image.style.top = image.offsetTop + ah + this.options.pauseCenterBias.topBias + "px"; } if (ow > 0) { var aw = Math.round(ow/2); image.style.left = image.offsetLeft + aw + this.options.pauseCenterBias.leftBias + "px"; } }; /** * Properly create the alpha transparent version of the pause image. * @param {Element} image Image representing pause state. * @private */ GFslideShow.prototype.createAlphaPauseImage = function(image) { // Work with offscreen version first to get the correct sizes and offsets.. this.adjustPauseImage(image); var imgW = image.offsetWidth; var imgH = image.offsetHeight; var imgT = image.style.top; var imgL = image.style.left; // Now create real one. var element = null; if (this.ie) { var src = this.options.pauseImage; element = document.createElement("div"); element.style.filter = "progid:DXImageTransform.Microsoft." + "AlphaImageLoader(src='" + src + "', sizingMethod='scale')"; element.style.position = "absolute"; element.style.width = imgW + "px"; element.style.height = imgH + "px"; element.style.left = imgL; element.style.top = imgT; } else { element = image; element.style.opacity = ""; } element.style.visibility = "hidden"; element.style.zIndex = 222; if (element != image) { this.container.appendChild(element); this.container.removeChild(image); } this.pauseImage = element; }; /** * Callback asscoiated with the pause image load. * @param {Element} image Pause image instance that was loaded. * @private */ GFslideShow.prototype.pauseImageLoaded = function(image) { this.createAlphaPauseImage(image); }; /** * Create the pause image element. * @param {String} src Source attribute for the pause image element. * @private */ GFslideShow.prototype.createPauseImage = function(src) { if (!this.options.pauseOnHover) return; var pauseOff = this.createImage(this.options.pauseImage); this.container.appendChild(pauseOff); if (pauseOff.complete) { this.createAlphaPauseImage(pauseOff); } else { pauseOff.onload = this.bind(this.pauseImageLoaded, pauseOff); } }; /** * Create the fullControlPanel setup. * @private */ GFslideShow.prototype.createFullControlPanel = function() { var h = (this.options.fullControlPanelSmallIcons?25:45); if (this.options.fullControlPanelCursor) h += 10; var padTop = (this.options.fullControlPanelSmallIcons?5:10); var padBottom = 5; var div = document.createElement('div'); div.style.backgroundColor = '#000000'; div.style.height = h + 'px'; div.style.top = (this.height - (h+padBottom+padTop)) + 'px'; div.style.width = '100%'; div.style.zIndex = '222'; div.style.position = 'relative'; div.style.textAlign = 'center'; div.style.direction = 'ltr'; div.style.paddingTop = padTop + 'px'; div.style.paddingBottom = padBottom + 'px'; var iconSize = this.options.fullControlPanelSmallIcons?'small':'big'; var handCursor = this.ie?'hand':'pointer'; var pause = document.createElement("img"); pause.src = GFslideShow.FC_PAUSE_PNG[iconSize]; pause.style.cursor = handCursor; var next = document.createElement("img"); next.src = GFslideShow.FC_NEXT_PNG[iconSize]; next.style.cursor = handCursor; var prev = document.createElement("img"); prev.src = GFslideShow.FC_PREV_PNG[iconSize]; prev.style.cursor = handCursor; pause.style.marginLeft = '5px'; pause.style.marginRight = '5px'; div.appendChild(prev); div.appendChild(pause); div.appendChild(next); var cursor = null; if (this.options.fullControlPanelCursor) { cursor = document.createElement('div'); cursor.style.height = '1.3em'; cursor.style.fontSize = '11px'; cursor.style.color = '#bbbbbb'; div.appendChild(cursor); } // Hold onto the ui elements.. this.fc = {}; this.fc.container = div; this.fc.pause = pause; this.fc.next = next; this.fc.prev = prev; this.fc.cursor = cursor; next.onclick = this.bind(this.goForward); prev.onclick = this.bind(this.goBackward); pause.onclick = this.bind(this.pauseOrPlayClick); this.fc.container.style.visibility = "hidden"; this.container.appendChild(div); }; /** * Clear the transition timer. Used to prevent leaks. * @private */ GFslideShow.prototype.clearTransitionTimer = function() { if (this.transition_timer) { clearInterval(this.transition_timer); this.transition_timer = null; } }; /** * Sets the transition timer for fadeout. * @private */ GFslideShow.prototype.setTransitionTimer = function() { this.clearTransitionTimer(); this.lastTick = GFslideShow.timeNow(); var cb = this.bind(this.transitionAnimation); this.transition_timer = window.setInterval(cb, this.options.transitionStep); }; /** * Clear the display timer. Used to prevent leaks. * @private */ GFslideShow.prototype.clearDisplayTimer = function() { if (this.display_timer) { clearTimeout(this.display_timer); this.display_timer = null; } }; /** * Sets the display timer. * @private */ GFslideShow.prototype.setDisplayTimer = function() { if (this.display_timer) return; var cb = this.bind(this.displayNextPhoto); this.display_timer = window.setTimeout(cb, this.options.displayTime); }; /** * Clear the thumb timer. Used to prevent leaks. * @private */ GFslideShow.prototype.clearThumbTimer = function() { if (this.thumb_timer) { clearTimeout(this.thumb_timer); this.thumb_timer = null; } }; /** * Displays the slideshow, starting at the corresponding index. * @param {Number} index Index of image to start with. * @private */ GFslideShow.prototype.beginSlideShow = function(index) { this.photo_index = index; this.next = this.images[this.photo_index]; this.snapToNextPhoto(); this.started = true; }; /** * Class helper method for the time now in milliseconds * @private */ GFslideShow.timeNow = function() { var d = new Date(); return d.getTime(); }; /** * Move to the next photo. */ GFslideShow.prototype.goForward = function() { this.finishTransition(); this.setNextPhoto(); this.snapToNextPhoto(); this.clearFullControlTimeoutTimer(); }; /** * Move to the previous photo. */ GFslideShow.prototype.goBackward = function() { this.finishTransition(); this.setPreviousPhoto(); this.snapToNextPhoto(); this.clearFullControlTimeoutTimer(); }; /** * Goto the specified indexed photo. */ GFslideShow.prototype.gotoIndex = function(index) { if (index == this.photo_index) { return; } this.clearTransitionTimer(); this.setPhotoIndex(index); this.snapToNextPhoto(); this.clearFullControlTimeoutTimer(); } /** * Handle mouse clicks on the pause or play button. */ GFslideShow.prototype.pauseOrPlayClick = function() { // Trap a play click if we have a callout registered. if (this.options.fullControlPanelPlayCallback && this.display_paused) { // for some reason a mouseout happens // when we click and swap divs... this.container.onmouseover = null; this.container.onmouseout = null; this.options.fullControlPanelPlayCallback(this.entries[this.photo_index]); this.fadeOutFullControl(); } else { this.pauseOrPlayFullControl(); } } /** * Toggle Pause or Play in FullControl Mode. */ GFslideShow.prototype.pauseOrPlayFullControl = function() { // todo, pause callout? var iconSize = this.options.fullControlPanelSmallIcons?'small':'big'; if (this.display_paused) { this.display_paused = false; this.fc.pause.src = GFslideShow.FC_PAUSE_PNG[iconSize]; if (this.display_timer == null && this.transition_timer == null) { // restart. this.displayNextPhoto(); } } else { this.display_paused = true; this.fc.pause.src = GFslideShow.FC_PLAY_PNG[iconSize]; } }; /** * monitors mouse motion inside the container while fullcontrol panel is * active. * @private */ GFslideShow.prototype.fullControlMotion = function() { var op = this.fc.container.opacity; if (op < GFslideShow.DEFAULT_FC_OPACITY) { this.container.onmousemove = null; this.clearFullControlTimeoutTimer(); this.fadeInFullControl(); } else { this.setFullControlTimeoutTimer(); } } /** * Clears the timeout timer itself. * @private */ GFslideShow.prototype.clearFullControlTimeoutTimer = function() { if (!this.fc) { return; } if (this.fc.timeout) { clearTimeout(this.fc.timeout); this.fc.timeout = null; } } /** * Set up the timeout timer itself. * @private */ GFslideShow.prototype.setFullControlTimeoutTimer = function() { if (this.fc.timeout) { clearTimeout(this.fc.timeout); this.fc.timeout = null; } if (this.options.fullControlPanelFadeOutTime > 0) { var cb = this.bind(this.fadeOutFullControl); this.fc.timeout = setTimeout(cb, this.options.fullControlPanelFadeOutTime); } } /** * Set up a timeout to fadeout the control if no mouse activity. * @private */ GFslideShow.prototype.setFullControlTimeout = function() { this.container.onmousemove = this.bind(this.fullControlMotion); this.setFullControlTimeoutTimer(); } /** * Begin fading in of the FullControl. */ GFslideShow.prototype.fadeInFullControl = function() { this.setOpacity(this.fc.container, 0); var cb = this.bind(this.fadeInFullControlAnimation); this.setFullControlFadeTimer(cb); } /** * Fade in animation for the FullControl */ GFslideShow.prototype.fadeInFullControlAnimation = function() { var op = this.fc.container.opacity; op += 0.075; // Approximation op = Math.min(GFslideShow.DEFAULT_FC_OPACITY, op); this.setOpacity(this.fc.container, op); if (op >= GFslideShow.DEFAULT_FC_OPACITY) { this.setFullControlFadeTimer(); this.setFullControlTimeout(); } } /** * Begin fading out of the FullControl. */ GFslideShow.prototype.fadeOutFullControl = function() { var cb = this.bind(this.fadeOutFullControlAnimation); this.setFullControlFadeTimer(cb); } /** * Fade out animation for the FullControl */ GFslideShow.prototype.fadeOutFullControlAnimation = function() { var op = this.fc.container.opacity; op -= 0.075; this.setOpacity(this.fc.container, op); if (op <= 0) { this.setFullControlFadeTimer(); } } /** * Set the fade timer, clearing previous ones. * @param {Object} opt_callback function/method to bind timer to. * @private */ GFslideShow.prototype.setFullControlFadeTimer = function(opt_callback) { if (this.fc.fade_timer) { clearInterval(this.fc.fade_timer); this.fc.fade_timer = null; } if (opt_callback) { this.fc.fade_timer = window.setInterval(opt_callback, 40); } } /** * Transition animation to next photo. Cleanup when finished. * @private */ GFslideShow.prototype.transitionAnimation = function() { if (this.current && this.next) { var delta = this.delta; var ts = this.options.transitionStep; var now = GFslideShow.timeNow(); var tick = now - this.lastTick; this.lastTick = now; delta *= (tick/ts); if (delta < 0) return; var cur_op = this.current.opacity - delta; var next_op = this.next.opacity + delta; this.setOpacity(this.current, cur_op); this.setOpacity(this.next, next_op); if (this.options.transitionAnimationCallback) { this.options.transitionAnimationCallback(this.next.opacity); } // Still more to go? if (cur_op > 0) { return; } } // Finished transition. this.finishTransition(); }; /** * Select the next photo to display. This takes into account different load * times for images and bad links, etc. * @private */ GFslideShow.prototype.setNextPhoto = function() { if (this.images.length == 0) { return; } var ci = this.photo_index; // wrap if (++this.photo_index >= this.images.length) { this.photo_index = 0; } var image = this.images[this.photo_index]; if (image && image.__gfloaded) { this.next = image; } else { // Image not loaded for some reason, skip it. But don't loop forever. if (this.photo_index == ci) { this.next = this.images[0]; } } }; /** * Select the previous photo to display. This takes into account different load * times for images and bad links, etc. * @private */ GFslideShow.prototype.setPreviousPhoto = function() { var ci = this.photo_index; if (this.images.length != 0) { if (--this.photo_index < 0) { this.photo_index = this.images.length-1; } var image = this.images[this.photo_index]; if (image && image.__gfloaded) { this.next = image; } else { // Image not loaded for some reason, skip it. But don't loop forever. if (this.photo_index == ci) { this.next = this.images[0]; } } } }; /** * Select the photo index to display. * @private */ GFslideShow.prototype.setPhotoIndex = function(index) { if (index < 0 || index >= this.images.length) { return; } var image = this.images[index]; if (image && image.__gfloaded) { this.next = image; this.photo_index = index; } }; /** * Clears the pause events, prevents leaks. * @private */ GFslideShow.prototype.clearPauseEvents = function() { this.container.onmouseover = null; this.container.onmouseout = null; }; /** * Cleanup when we notice we have been removed or replaced. Try to be * as GC friendly as possible. * @private */ GFslideShow.prototype.cleanup = function() { // Try to be gc friendly. this.clearTransitionTimer(); this.clearDisplayTimer(); this.clearThumbTimer(); this.clearPauseEvents(); this.clearNode(this.container); this.container = null; }; /** * Display the next appropriate photo if we can. Also determine if we * need to start transition animation if applicable. * @private */ GFslideShow.prototype.displayNextPhoto = function() { this.display_timer = null; if (!this.started) { return false; } // Just return if we are in a paused state. if (this.display_paused) return; // See if we have been orphaned and cleanup if needed. if ((!this.container || !this.container.parentNode) && this.options.autoCleanup) { this.cleanup(); return; } this.setNextPhoto(); this.beginTransition(); }; /** * Helper method to snap to next photo * @private */ GFslideShow.prototype.snapToNextPhoto = function() { this.setOpacity(this.next, 1); this.setOpacity(this.current, 0); this.current = this.next; this.setDisplayTimer(); if (this.options.transitionCallback) { this.options.transitionCallback(this.entries[this.photo_index], this.options.transitionTime); } if (this.options.fullControlPanel && this.options.fullControlPanelCursor) { var index = (this.photo_index+1) + ' / ' + this.images.length; this.fc.cursor.innerHTML = index; } } /** * Helper method to start transition to next selected photo. * Takes into account transition parameters. * @private */ GFslideShow.prototype.beginTransition = function() { if (!this.current || !this.next || (this.current == this.next)) { // Skip if we are missing something or trying to transition to // ourselves. this.setDisplayTimer(); return; } if (this.options.transitionTime >= this.options.transitionStep) { this.setTransitionTimer(); } else { this.snapToNextPhoto(); } }; /** * Helper method to finish the transition to next selected photo. * @private */ GFslideShow.prototype.finishTransition = function() { this.clearTransitionTimer(); this.snapToNextPhoto(); }; /** * Helper method to set opacity for images.. Also takes into account * visibility in general. * @param {Element} image Image element. * @param {Number} opacity alpha level. * @private */ GFslideShow.prototype.setOpacity = function(image, opacity) { if (image == null) return; opacity = Math.max(0, Math.min(1, opacity)); if (opacity == 0) { if (image.style.visibility != "hidden") { image.style.visibility = "hidden"; } } else { if (image.style.visibility != "visible") { image.style.visibility = "visible"; } } if (this.ie) image.style.filter = "alpha(opacity=" + opacity*100 + ")"; image.style.opacity = image.opacity = opacity; }; ]]>
        false
        1700367133255254016 5244416 Cookie without HttpOnly flag set http://rare-escorts.com Information Certain
        You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
      3. SID=33bkss56jb32act0t2gi263db0; path=/
      4. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
        Escort website design and escort web design for free
           Escort website design and escort web design for free
         
        Login   
        escort design
        Rare Escorts
        Registerescort web designFeaturedescort web designFAQescort web designTestimonialsescort web designBannersescort web designCareersescort web designContact
        escorts web design
        Free Escort Templates

        Escort web design for free

        At Rare, you will have free escort templates that you can use with your website. From time to time we are creating more free escort web design for You. Log into your account and change the look of your web site by picking the template, and applying that template to your escort website and the new look will become live instantly with only... one click...

        Escort website for free

        Forget about long URL of your escort website like escortsiteportal.com/yourpage/htmlfile.html. Our escorts have web sites, with a sexy name like YOU.rare-escort.com or YOU.escortwww.com or other (we will add more sexier .COM domains), in a matter of minutes !

        Escort advertising and marketing for free

        We will also handle the escort advertising automatically by sending your website to search engines. Yes, we will do your search engine optimization and submission free of charge. That's because we know that without advertising your website it is like a Porche without an engine. In this way you can call yourself a rare escort with a rare escort web site.

        Custom content -> Your content

        Customize your website ! Change the content of pages like About Me, Rates (any currency), Photos, Movies, Blog, Mailing list, Chat (yes, your own live chat room), Gifts, Reviews, Guestbook, Calendar, Employment, Contact (even with SMS on your mobile phone), Partners (where you can add links and banners), FAQ (frequently asked questions), Contact, get your own banners (automatically generated) or even choose (or upload) your background music (.MID files), 3Gb/month free hosting and much more, everything for FREE. A complete escort web site for YOU.

        For FREE

        Why use webmasters that you have to pay, or even to beg, to modify your website or webdesign when you can do this yourself, fast and easy without any special knowledge other than few clicks ? You can have now a complete escort site !
        How come that such an offer is free, and it will remain free for life ? We will pay ourselves with a small banner on your page. That's it.

        As a special offer, we are picking each month, an active escort, and register her own .COM domain, again, for free. That means even shorter name for your website. Isn't this a rare even unique offer ?

        Register your escort web design

        If you represent an escort agency, we have the solution for you as well. You can add photos, using the name as a label or you can even create a website for each escort.




        Even more than escort web design, we are continuosly studying the escort business searching new free services and free features built right into your web site like: Escort Membership Area - Escort Webcam - Escort Video Chat - Escort Premium Domains - Escort Fans system - Escort Phone Chat and more at Rare-Escorts.com
        escort design
         Copyright 2004 - . All rights reserved. Rare EscortsTerms And ConditionsPrivacy PolicyResource
        Registerescort designFeaturedescort designFAQescort designTestimonialsescort designBannersescort designCareersescort designContact
        ]]>
        false
        290733249218869248 5244416 Cookie without HttpOnly flag set http://www.naked.com Information Certain
        You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
      5. nkCookie[mcatid]=Girls; path=/; domain=.naked.com
      6. nkCookie[oneCatServer]=deleted; expires=Sat, 17-Apr-2010 20:31:32 GMT; path=/; domain=.naked.com
      7. The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
        false
        6279843811026969600 5243648 Cookie scoped to parent domain http://www.google.com Information Certain
      8. NID=46=S9Y392fp8ACUtEiLfMEN_TlfHWMy3UZVnY_F5BjG4fijMJQPeEmScssb30s_yJeMeu8rSgCWuR5il1IeXx-lc-rvdPZPGvjwEqy4ZrFdZ0vOpGerUdGczceCHPRM3sWG; expires=Mon, 17-Oct-2011 20:37:18 GMT; path=/; domain=.google.com; HttpOnly
      9. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
        linkto:lessonsofpassion.com - Google Search Screen reader users, click here to turn off Google Instant.
        About 12,700 results (0.33 seconds) 
        Tip: These results include the word "links". Show results that include only "linkto".
        Preview image
        ]]>
        false
        8446170420700748800 3145984 Cleartext submission of password http://www.thatshiphop.com High Certain
      10. http://www.thatshiphop.com/index.php?page=login
      11. The form contains the following password field:
        • login_password
        ]]>
        ThatsHipHop.com - News

        ThatsHiphop.com News

         
        Krayzie Bone: No More Harmonizing With Bone...

        Krayzie Bone has announced that he's leaving Bone Thugs n Harmony after 20 years to focus on his solo career and his label, The Life Entertainment. Krayzie's first project is a compilation titled Cleveland Is the City, Volume One, and it'll be on the stre... Read more
        Gucci Mane: It's Still Gucci Time Behind Ba...

        No one has bailed Gucci Mane out of prison, even though his bond is only $5700. He's locked up in Atlanta for allegedly throwing a woman out of his car for rejecting his sexual advances last Friday. But even if he posts bail, he'll simply be transferred t... Read more
        Bobby Brown: Child Number Six On The Way

        Bobby Brown and fiancee Alicia Etheridge are expecting another baby. This will be child number six for Brown and his second with Alicia. He and Whitney Houston have just one daughter, Bobbi Christina. - Rahim Wright... Read more
        Mariah Carey: Bares All -- Yet Again

        Just in case someone in the world hasn't seen Mariah Carey's bare, baby packed belly, she's showing it again - - on the cover of Britain's OK! magazine. Mimi tells the mag that hubby Nick Cannon has already started reading stories to the couple's unborn ... Read more
        Waka Flocka: Gucci And Papoose On New Mixta...

        Waka Flocka Flame has just dropped a new mixtape titled Benjamin Flocka.Surprisingly, there's no Lex Luger production this time around. Instead, Waka recruited Southside to man the boards for most of the project. The mixtape also includes features from th... Read more
        Nicki Minaj: Channeling Marge Simpson

        Nicki Minaj's latest wig looks rather cartoonish - - and that may be because she got the idea for the beehive look from Marge Simpson. Nicki tells People magazine, "Never did I think I would be rocking the Marge Simpson... I realize that she was cutting ... Read more
        Nicki Minaj: Channeling Marge Simpson

        Nicki Minaj's latest wig looks rather cartoonish - - and that may be because she got the idea for the beehive look from Marge Simpson. Nicki tells People magazine, "Never did I think I would be rocking the Marge Simpson... I realize that she was cutting ... Read more
        Rihanna, Eminem, Gaga: Billboard Awards Fin...

        Rihanna leads all comers for next month's Billboard Awards. She's a finalist in 18 categories, including Top Hot 100 Artist and Top Female Artist. Eminem is up for 16 awards, and Lady Gaga is up for 12. Justin Bieber and Bruno Mars are finalists in 11 cat... Read more
        Beyonce: A Shot In The Dark

        Beyonce is keeping people guessing about just what's going on with her new video, which she headed to California's Mojave Desert to shoot on Tuesday. Some sources say the clip is meant to accompany a song called "Girl," while others say it's for "Till the... Read more
        Teyana Taylor: Accused Of Assault

        Teyana Taylor is denying Internet reports that she assaulted another woman at a studio in Burbank, California on Saturday night. She writes on Twitter, "I'm being accused of something I didn't do." TMZ reports that Teyana allegedly laid a beat down on the... Read more
         

        1, 2, 3, 4, 5, 6, 7, 8, 9 ... 26 ... Next

         

        THH Login

        Interviews

        Large Amount

        LARGE AMOUNT ???THE BOY WITH A BILLION BARS??? "The BOY WITH A BILLION BARS???, in which this unique title was also natura
        Read More >

        Group Home

        GROUP HOME RSRadio: So group home it??s been a few years since you have released an official album what made you decide that
        Read More >


        ]]>
        false
        1569030395668646912 4194560 Referer-dependent response http://optimized-by.rubiconproject.com Information Firm
        Common explanations for Referer-dependent responses include:
        • Referer-based access controls, where the application assumes that if you have arrived from one privileged location then you are authorised to access another privileged location. These controls can be trivially defeated by supplying an accepted Referer header in requests for the vulnerable function.
        • Attempts to prevent cross-site request forgery attacks by verifying that requests to perform privileged actions originated from within the application itself and not from some external location. Such defences are not robust - methods have existed through which an attacker can forge or mask the Referer header contained within a target user's requests, by leveraging client-side technologies such as Flash and other techniques.
        • Delivery of Referer-tailored content, such as welcome messages to visitors from specific domains, search-engine optimisation (SEO) techniques, and other ways of tailoring the user's experience. Such behaviours often have no security impact; however, unsafe processing of the Referer header may introduce vulnerabilities such as SQL injection and cross-site scripting. If parts of the document (such as META keywords) are updated based on search engine queries contained in the Referer header, then the application may be vulnerable to persistent code injection attacks, in which search terms are manipulated to cause malicious content to appear in responses served to other application users.
        ]]>

        If the contents of responses is updated based on Referer data, then the same defences against malicious input should be employed here as for any other kinds of user-supplied data.]]>
        <\/script>"; rubicon_tag_code = rubicon_tag_code.replace(/##RUBICON_CB##/g,rubicon_cb); document.write(rubicon_tag_code); document.write("\"Quantcast\"/b0967dfcb81&c2=6135404&c3=25&c4=13345&c5=&c6=&c10=3202889&c15= HTTP/1.1 Host: b.scorecardresearch.com Proxy-Connection: keep-alive Referer: http://www.democracyforums.com/frontpage/index.php User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 ]]> 2080?a.substr(0,2075)+"&ct=1":a;if(!/BlackBerry.*?\/([1-3]\.|4\.[0-5])/.test(b.userAgent)){var c=new Image();c.onload=function(){};c.src=a}else{a=a.replace(/\/b\?/,"/p?");j.write("")}return a}catch(h){}};COMSCORE.purge=function(a){try{var c=[],f,b;a=a||_comscore;for(b=a.length-1;b>=0;b--){f=COMSCORE.beacon(a[b]);a.splice(b,1);if(f){c.push(f)}}return c}catch(d){}};COMSCORE.purge(); COMSCORE.beacon({c1:"840a6fb0967dfcb81", c2:"6135404", c3:"25", c4:"13345", c5:"", c6:"", c10:"3202889", c15:"", c16:"", r:""}); ]]> false
        3325477030863450112 5244160 Cross-domain script include http://www.abxzone.com Information Certain
        If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
      12. http://abxzonecom.skimlinks.com/api/skimlinks.js
      13. http://edge.quantserve.com/quant.js
      14. http://partner.googleadservices.com/gampad/google_service.js
      15. http://www.anrdoezrs.net/6266u0xmoqt-xpq2BFHLELII?target=_blank&mouseover=Y
      16. http://www.anrdoezrs.net/r2122xqmbdfipmefs046A3A76?target=_blank&mouseover=Y
      17. http://www.dpbolvw.net/r098cA6wy-296z-CLPRVOVSM?target=_blank&mouseover=Y
      18. http://www.jdoqocy.com/28108v1ynpru0yqr3CGIMFMJH?target=_blank&mouseover=Y
      19. http://www.jdoqocy.com/e381cA6wy-296z-CLPRVOVSP?target=_blank&mouseover=Y
      20. ]]>
        ABXzone.com
        Thumbnail

        Microsoft’s record-setting security update next week (April 12, 2011) may patch a large number of vulnerabilities in the Windows kernel, researchers said today. On Thursday, Microsoft announced... 

        Read the story »
        LATEST POSTS
        RECENT ARTICLES
        Thumbnail Mozilla Releases New Version of Firefox Browser

        Mozilla, the maker of Firefox, released the latest version of its free and open source Web browser to the public on Tuesday (March 22, 2011). The... 

        Thumbnail Radeon HD 6990

        Well the reviews of the new Radeon 6990 are in and we have a new single card leader. While the benchmarks speak for themselves its obvious... 

        Thumbnail Thermal Interfaces Roundup

        Our first massive roundup is going to talk about 26 different thermal grease choices that can be purchased individually, without the cooler... 

        Thumbnail Intel Releases 6Gb/sec 510 Series Solid State Drives

        Today (February 28, 2011) Intel announced their SSD 510 Series of solid state drives. This is the first SATA 6Gb/sec offering to come from... 

        Thumbnail Intel Rolls Out "Light Peak"

        Intel on Thursday [February 24, 2011] plans to roll out Light Peak, a high-speed connection technology that Apple is also likely to adopt,... 

        Thumbnail World’s First Programmable Nanoprocessor

        Announced by a team of researchers from Harvard University … …and it’s being described as nothing short of a "quantum... 

        Thumbnail Intel Discovers Chip Flaw In Midst Of Major Launch

        The Santa Clara, California, company said the defect was discovered after it shipped more than 100,000 of the chips to computer manufacturers... 

        Thumbnail How to Troubleshoot With Windows’ Problem Steps Recorder

        Whether you’re a professional tech support specialist or simply the go-to tech guru for your family and friends, you know how frustrating... 

        Thumbnail Sandy Bridge is upon us

        Sandy Bridge info: "Way back at the Intel Developers Forum 2009, Intel Corp. was talking aboutSandy Bridge, the code-named architecture... 

        Looking for something?

        Search our community forums:

        Visit our other communities

        A few highly recommended forums...

        Sponsors




        ]]>
        false
        1943428057697889280 2097920 Cross-site scripting (reflected) http://adserving.cpxinteractive.com High Certain
        The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

        Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

        The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
      21. Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
      22. User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
      23. In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
        8910f'-alert(1)-'50be92316de was submitted in the section parameter. This input was echoed unmodified in the application's response.

        This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
        document.write('');

        ]]>
        false
        7014564109068734464 5244160 Cross-domain script include http://www.democracyforums.com Information Certain
        If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
      24. http://democracyforums.us.intellitxt.com/intellitxt/front.asp?ipid=16927
      25. http://democracyforumscom.skimlinks.com/api/skimlinks.js
      26. http://edge.quantserve.com/quant.js
      27. http://partner.googleadservices.com/gampad/google_service.js
      28. ]]>
        Democracy Forums

        Democracy Forums  
        About Us Enab.Stats Register FAQ Community Today's Posts Search


        Go Back   Democracy Forums

        vBulletin Message
        Invalid Forum specified. If you followed a valid link, please notify the administrator

        Forum Jump


        All times are GMT. The time now is 08:28 PM.

        ...


        Powered by vBulletin® Version 3.8.4
        Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.
        ]]>
        false
        1002562034694612992 5243648 Cookie scoped to parent domain http://www.tripadvisor.com Low Firm
      29. TASession=%1%V2ID.7EDA6FF73423A7D829855C5A9454B65B*SQ.1*GR.55*TCPAR.45*TBR.47*EXEX.49*ABTR.91*PPRP.17*PHTB.93*FS.51*HS.popularity*ES.popularity*AS.popularity*DS.5*DF.0*FP.%2FTourism-g48080-Long_Island_City_New_York-Vacations%5C.html-x26amp*LP.%2FTourism-g48080-Long_Island_City_New_York-Vacations%5C.html-x26amp*TRA.true; Domain=.tripadvisor.com; Path=/
      30. v1st=500B9EC2562484E9; path=/; expires=Wed, 19 Feb 2020 14:28:00 GMT; domain=.tripadvisor.com
      31. TATravelInfo=V2*A.2*MG.-1*HP.2*FL.3; Domain=.tripadvisor.com; Expires=Wed, 14-Apr-2021 20:32:19 GMT; Path=/
      32. PassThruUrlArgs=x26amp; Domain=.tripadvisor.com; Expires=Sun, 24-Apr-2011 20:32:19 GMT; Path=/
      33. The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
        301 Moved Permanently

        Found

        The document has moved here.

        ]]> false 4517352261097546752 5244416 Cookie without HttpOnly flag set http://www.google.com Information Certain
        You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>

      34. PREF=ID=0772c9d5ef13aaaf:U=d212295d0f1573ee:FF=0:TM=1303071569:LM=1303071853:S=FQDi4EMhKk_8fo5L; expires=Tue, 16-Apr-2013 20:24:13 GMT; path=/; domain=.google.com
      35. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]> false
        269129774611004416 3145984 Cleartext submission of password http://utopiaguide.com High Certain
      36. http://utopiaguide.com/forums/login.php?do=login
      37. The form contains the following password field:
        • vb_login_password
        ]]>
        UtopiaGuide



        Go Back   UtopiaGuide
        Register FAQ Members List CalendarvBookieToplist Today's Posts

        vBulletin Message
        You are not logged in or you do not have permission to access this page. This could be due to one of several reasons:
        1. You are not logged in. Fill in the form at the bottom of this page and try again.
        2. You may not have sufficient privileges to access this page. Are you trying to edit someone else's post, access administrative features or some other privileged system?
        3. If you are trying to post, the administrator may have disabled your account, or it may be awaiting activation.
        Log in
        User Name:
        Password:
        Forgotten Your Password?
        The administrator may have required you to register before you can view this page.

        Forum Jump

        All times are GMT -8. The time now is 12:32 PM.

        This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

        Powered by vBulletin® Version 3.6.8
        Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

        ]]>
        false
        8276252454044989440 5244160 Cross-domain script include http://www.youtube.com Information Certain
        If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
      38. http://s.ytimg.com/yt/jsbin/www-core-vfl8PDcRe.js
      39. ]]>
        YouTube - Broadcast Yourself.
        Join the largest worldwide video-sharing community!
        Spotlight

        Watch Coachella Live All Weekend

        Tune into youtube.com/coachella to watch the music festival live all weekend -- or check out some of the performances you missed! We've got videos from Ozomatli, !!!, Flogging Molly, Gayngs, Warpaint and more.
         
        What's New

        YouTube.com/Live

        Check out the top live events happening on YouTube!

        Create original videos

        Make animations and videos with your own photos and images

        Mashups, parodies and lip dubs: Ask a legal expert about Fair use

        The strength of the YouTube community lies in its creativity. Often this takes the form of memorable original content, such as Rebecca Black???s recent hit song / music video, Friday.

        However, as t...

        Read more in our Blog

        Queue (0) Return to active list
          1. Your queue is empty. Add videos to your queue using this button:
            or sign in to load a different list.
          Loading...Loading...Saving...
          ]]>
          false
          5197315589991009280 8389120 HTML does not specify charset http://longislanderotic.com Information Certain
          In most cases, the absence of a charset directive does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
          charset=ISO-8859-1.]]> Excessive bandwidth usage]]> false
          3531769502722385920 5244160 Cross-domain script include http://groups.google.com Information Certain
          If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
        1. http://www.google-analytics.com/urchin.js
        2. ]]>
          Google Groups
          Go to Google Groups Home
            
            Advanced Groups Search
            Preferences
          Preview the new Google Groups experience. Learn more » New!
          Discuss online or over email
          1
          Create an account
          2
          Setup your group
          3
          Invite people

           
          ]]>
          false
          8858447658467106816 5244928 Password field with autocomplete enabled http://utopiaguide.com Low Certain
          The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
          autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
        3. http://utopiaguide.com/forums/login.php?do=login
        4. The form contains the following password field with autocomplete enabled:
          • vb_login_password
          ]]>
          UtopiaGuide



          Go Back   UtopiaGuide
          Register FAQ Members List CalendarvBookieToplist Today's Posts

          vBulletin Message
          Invalid Post specified. If you followed a valid link, please notify the administrator

          Forum Jump

          All times are GMT -8. The time now is 12:32 PM.

          This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

          Powered by vBulletin® Version 3.6.8
          Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

          ]]>
          false
          324697569430490112 2097920 Cross-site scripting (reflected) http://www.thatshiphop.com High Certain
          The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

          Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

          The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
        5. Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
        6. User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
        7. In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
          c3ee3<script>alert(1)</script>2f85176a6bf was submitted in the type parameter. This input was echoed unmodified in the application's response.

          This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
          alert(1)2f85176a6bf&h=1 HTTP/1.1 User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322; Netsparker) Content-Type: application/x-www-form-urlencoded X-Requested-With: XMLHttpRequest Accept: */* Cache-Control: no-cache Host: www.thatshiphop.com Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive ]]> Title:   Bootsy Collins Hip-Hop @ Funk U f. Ice
            Cube, Snoop Dogg & Chuck D
          Type:   Audioc3ee32f85176a6bf Source:   2dopeboyz.com Hits:   343 ]]>
          false
          1301870788429429760 5244160 Cross-domain script include http://googleads.g.doubleclick.net Information Certain
          If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
        8. http://pagead2.googlesyndication.com/pagead/sma8.js
        9. ]]>
          • Chicago Coupons 1 ridiculously huge coupon a day. It's like doing Chicago at 90% off! www.Groupon.com/Chicago
          • Scripting Automation Create Complex Scripts in Minutes! Free 30 day trial. Download Now. www.NetworkAutomation.com
          • Excelsior Computers Complete UNIX Advantage, Premier & Excalibur Solutions & Support www.excelsiorcomputers.com
          Ads by Google
          ]]>
          false
          5601231967841085440 5243648 Cookie scoped to parent domain http://pixel.rubiconproject.com Information Certain
        10. rpb=5328%3D1%265671%3D1%264212%3D1; expires=Tue, 17-May-2011 23:37:31 GMT; path=/; domain=.rubiconproject.com
        11. put_1185=2931142961646634775; expires=Thu, 16-Jun-2011 23:37:31 GMT; path=/; domain=.rubiconproject.com
        12. The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
          false
          1831548505159160832 5244928 Password field with autocomplete enabled http://utopiaguide.com Low Certain
          The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
          autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
        13. http://utopiaguide.com/forums/login.php?do=login
        14. The form contains the following password field with autocomplete enabled:
          • vb_login_password
          ]]>
          UtopiaGuide



          Go Back   UtopiaGuide
          Register FAQ Members List CalendarvBookieToplist Today's Posts

          vBulletin Message
          You are not logged in or you do not have permission to access this page. This could be due to one of several reasons:
          1. You are not logged in. Fill in the form at the bottom of this page and try again.
          2. You may not have sufficient privileges to access this page. Are you trying to edit someone else's post, access administrative features or some other privileged system?
          3. If you are trying to post, the administrator may have disabled your account, or it may be awaiting activation.
          Log in
          User Name:
          Password:
          Forgotten Your Password?
          The administrator may have required you to register before you can view this page.

          Forum Jump

          All times are GMT -8. The time now is 12:32 PM.

          This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

          Powered by vBulletin® Version 3.6.8
          Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

          ]]>
          false
          8685968307189483520 1050368 XML injection http://static.xxxmatch.com Medium Tentative
          This kind of vulnerability can be difficult to detect and exploit remotely; you should review the application's response, and the purpose which the relevant input performs within the application's functionality, to determine whether it is indeed vulnerable.]]>
          ]]>> was appended to the value of the REST URL parameter 2. The application's response indicated that this input may have caused an error within a server-side XML or SOAP parser, suggesting that the input has been inserted into an XML document or SOAP message without proper sanitisation. ]]> >/freesex/swfmacmousewheel.js HTTP/1.1 Host: static.xxxmatch.com Proxy-Connection: keep-alive Referer: http://www.xxxmatch.com/dating/freesex User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 Cookie: referral_path=%2F63790%2Fverifiedplaymatespop%2F%2F0%2F0 ]]> 404 - Not Found

          404 - Not Found

          ]]>
          false
          4355865714981714944 5245440 TRACE method is enabled http://caseyofhouston.com Information Certain
          Although this behaviour is apparently harmless in itself, it can sometimes be leveraged to support attacks against other application users. If an attacker can find a way of causing a user to make a TRACE request, and can retrieve the response to that request, then the attacker will be able to capture any sensitive data which is included in the request by the user's browser, for example session cookies or credentials for platform-level authentication. This may exacerbate the impact of other vulnerabilities, such as cross-site scripting.]]>
          false
          7524903763298599936 5244416 Cookie without HttpOnly flag set http://pocketbikeplanet.us.intellitxt.com Information Certain
          You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
        15. VM_USR=AArNPECOHUvQr+aEbt9FOpIAADrpAAA7JQIAAAEvZebC9wA-; Domain=.intellitxt.com; Expires=Thu, 16-Jun-2011 23:58:32 GMT; Path=/
        16. VM_USR=AArNPECOHUvQr+aEbt9FOpIAADrpAAA7JQIAAAEvZebC+AA-; Domain=.intellitxt.com; Expires=Thu, 16-Jun-2011 23:58:32 GMT; Path=/
        17. The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
          false
          3358424892474947584 2097920 Cross-site scripting (reflected) http://www.lessonofpassion.com High Certain
          The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

          Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

          The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
        18. Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
        19. User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
        20. In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
          f55ae</title><script>alert(1)</script>6da55e9a11e was submitted in the category parameter. This input was echoed unmodified in the application's response.

          This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
          6da55e9a11e HTTP/1.1 Host: www.lessonofpassion.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 ]]> Lesson of Passion - \'\"--></style></script><script>alert(0x000146)</script>f55ae6da55e9a11e erotic flash games


          Username   Password  

          If you want to post comments and gain access to special features please your account.
          \'\"-->f55ae6da55e9a11e games
          ]]> false 3485270062729702400 5243648 Cookie scoped to parent domain http://img696.imageshack.us Information Certain
        21. is_uuid=dafe2d73824945689eb185006168ecfc; expires=Thu, 31-Dec-37 23:55:55 GMT; domain=.imageshack.us; path=/
        22. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
          >>%.DIC;??C  ;("(;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;;????????X  !1AQ"aq2????#BR?3br??$Ust????456CDSTc??%Ed??&'78?????????)!1"A2QBa#3Rq?? ?????( ??( ??( ??( ??( ??( ??( ??( ??( ??( ??( ??( ???icw}'?gk5??d?Q?8??5????8.?>kH? ,Fd?[?"?4Zt???h?x????m??L(A?Y&E?q4????#iBm??\o???????????m?5?-???"?p+????9* 2iQ?h?_???O??"?0pO`FA????+?????Cp7???!????n ??Z???9?:Y???/? 9?a?nO??J%?nQ"???-?J??b?3?/c?? ?q??i???X?Y?d@?I8??Y???????Zcg*\??4 ?>???n?{?yh(?H?Q?l??`g?{`g=???}Q?????????????{P;o???S=??Q_\?Q????????wt?w +?'?P0y??(,4[???R+??i?,???I?#??7M????E`4???Z0/??o??``(|?i?~^??h?j???(? ??"0?t?S?}V];D????ck{?y#?}????????@# ?????t????$ ???btc????*;??:??y????i?c?????;?????\}??j>?????T?????>??????????=?k???????O?'?=S?%???????????@?O????>??????}?o????_?O??E??j?!?-??u&????h???V?}??}?? [ InfnvD???M?\??V??n???j???????~??v???}????p?Q(?G??R????<)????Qu??>?????????7_?S???O?p????s??S???>?A??d?6??4?q?O??zoZU?t??=vS????p?z?O???9??1?S?????c??@#??q?????}U???|3????????????~??{?? \w-???>??xX??4?CI?c?l??wQ2?>?i???????n#OF?+ /?????Bc'?r????G??=?9?m??{?>n?-?q*G?L?1??}????b??D?8???????a??M?u<,l%a4|? ?????????/???? ??f?????9??K?kaR$Qm??m?????s?RD*??a?]??c?,??H!?]?DQ:??????W??>??????k??{ >???T1???R?'?C??R??x?4?X?O??ji??vbF)?4??^??L??0?????u????x???????LxU????]??]Z????e??jr?&oH????,????M ??a??p?????;0????^??E&j??????[M82?????Q??K??^Y? d?VV?F????{a?`???1?^?y.|2??EQ?????c?e.?????X?????f5??S%LT\????z???????weO?_?Z??H????)?yHI?$v????O??*?*?????C#n9??k???L??e?w??>???Uk?4???Vb?5???b?>??"??yb?g??jw?1??n2wH?>??T??#?8????^e?wv&6?? ?? ?Zc???:????z&??h????? p????39?K??/?+?^ ??d?0?????????????Z????F?Yk?????k???/???W&>???j??QUY???????&? ??^B?=??;?^?i1c?I???^]??~\?H? V?i?????}bfQ+1????|mEqo%??]A?va???,u[Og?Ii?? i??(?X)V@?DzW7????????k??%q?U?`???+I??L?o*??? ?????Mt?^?g}??aC?1=?_?%v???Z????MRN?3????'q??W?R]jN??W?]??l???6`??&?'?=?ke?E|4???v[?%?6???,?????kp????v???I&??t?l???U????? ?WI?7bC?????'????M^u?????&Q??,y????:N?/^?????I1+?CN??pYG????????~?e???R??4?}Ij??8Fs ??9u???G?kwLy??lm??qe???;??dy??2?)?m6?e????l\????7?\\?O?? l???m]??f??????z????w;W9????o0q????1???.]?`@L??8?9&???Z???@???|>???*>=??????????^??`???D;Q??\'?N7??2{t?j?J??? Yl?v???[????????????1?N?uB?i!???>?m??Fwr+?"?5;??35??e??5??FW3??F??s??{O?T?X??n???8,???????B?????U??;??i1?????p?dw???\?f?p?"???m? s?????W)"??34:{???? d??O?????? #"???v??nle???????,u]?0??f??y???&?\_[?^????8????H??q{??$G?}????t???????????=????K??vfgG-?|?q\?????.m????x?>????????????L???$?8???????:???????U???????j??+???m???@Ey?????;w????i???&?y?) ???A??c?k\r?G??A?.??? [?`?k??G{?p?????k????]??$Kwr???d ?I?08???y2???dy??n? ???U?????'??????????a???S"????????jC??;?0???g??k?V?m?????^I)X?1*??o?t?7"bD????I??????A~7q??e0?mr????1??T'xD??#?)???$??`L?????{S;???{??k?=>????P?????&?????^[XY N=F&?????r8????????{{Q{2??U??k&?VH?D-*??.g'?T?v?=2????\???xc.Z???+?}????+k??J?????,?8I???"?? Xq????}??[[?????#??????}s???(?J?rBd?58@???y????k??v?'?{>b?q???`Wo+.?fuIX18'????o?n??? ????CX?pJ8??S?"c?2??????????t????B??dRx??r|???v|[???k#??????1?v?f2??????m?E??!U???K2?>I-%?F? a?'??=???\b?bg???B?????n?yN??Z@??!?g?????l?+I? ????n`X??H?9Ss?n???cv4??>?k4???`??????W??W??|????D?}??V?????A#???s???qu??????:?Fb%_?q??t???????#?,?s?\?????V?_?????Phj:?n%?K?N{G????/?;y:Gu0i??>+???dW?,gf??I4 ?Y?eNoZ??E2??A,Vk??? |?????'???????????????59?O?cO=?>?u?C??lW'???????W??U$??'???j:?:?R?PH??????O&?~6)??wF?u??[?u|y??????J?2HS>z?y??%wf???B??L???e?O??|????v?9?$???_![?{E??=?s??k?,?????? ?z}(c??/???6????????gja?9????????d??k?????????~????r?5??MeV5,?8$s?(O?H??d??I???8Q =U??>?k? w????k?{?????-?m?"?qq?$?W5???)???g?2?????P1S&?zg???r p?z????r?S2HB? ?fuo??5???????M?3S????????YV???~???/?? ~&????lk??v Nr????I??k????7??#?'????????????+o?????}???N??n?????Y2s???G???x??,m???L?[??B??4? ??????t??m?xl???p?????n?~SY;???1Q?)??N*???f??j!?<?5"I???? ??I?_??????????r???~?H:?e??*????V ??L ?pG?va??Yw?&???BV)???????fZgp?1I=??a???L??I5t$?D?W ????BsQ}-????V???otb??~?0^g%?Zu??????Iy*$I?????1?L?4??{?)??(?8?!$PB?# ??geFSWH??j??iv??!???@{Rj?O????s?9fE]??9?x???xt???????7???F????u????????V???????z?#^????{?GQ?\U???L?P??m2?4g??^*p[?k0x?m??}?B?????????????Wt???uZ^?y???8????????????]?????Wkr?+c???v???????=9?*hM????????^?n?????|H?iJ??G?#???X?O?g??A<7V??@???*??2?????gV51??????5???7?tV?u???A%?+1???_6Ze????t8>??F?????M%??z?+ ??2?A?>??8s??\???i?3Qo?K?J?????2')r????.??F????????\w??V??L?RqX???f?H????????????????K??0Mz??2???>?????k????#l?d??r?s?i??;???Jt?`UN????^???WT???VFg????y#?o?yWO????'?=????V? ??H?d o?pI???W?}???7?c?z??p?/Pf]?????ZJ?y?]??Kr@5,?>???v???6????I6J??????4?4Fa??Z]?L?|??*?????M]??+?P?$Zn??'fq???oC??n^??r???uk .???0|?'??'??????}??3j?(c??J?????ZvM???fFC?\r1?8???[?????es???Go?????]?R9???1?,f]??E?U a???1M?7???s?????????=??q?+?????????s??_??H???k??6[?+ ???U???I??>O?YE?\?&?wp?????(????FffE?????|2?? ?\+B e???y?u?b,?.I??# *;?B????q??X????|G?Tz?3?8`??bA???r?uE???^i??3??T????[Q?????ap?#?y? =j?c?+???????2?L??5????????z8?\??_?????-??????5?Z??q???&?X???o#q???b?!]?9?.X.z^???wwc?G????r????D??"{?nfHcf???:??i?;V\D?'????I??m??+?-??????V8?????????=ENXt?s?????I?? m?tG=?y??i???2??Z????[????5??|?*?R??'????H?E+??zS??q??r?s_?jl??9?k???????[1???|?:[{q?A?%??0 ????O?U??r??gm?????|??D?p=??4?#*? ?|??????O??c -G?1?|??^6Wu???? ??y??N??R??N?n??,~$?I?;P?%?A?^]D?????x?????yc?Vo?WO3=%kxN~?}??y????-?-?k?^?Uof??i?c???lX??q*????????N=j.E??KW??=CJ?HKY8??????>?_??l**i???s??0X?|?"\p???? ?s?_>?on? #?h??{??m?[g???MXo?ky$E?d?rH?? y\?Y?D??Q?+d%Sm?$?TN]-?r- ??6L???qo,wc???????[N?x?qNo4[?Rvb?Y?e4??????????UjR/?????Z`L???$??H%I r??f???x???i?[???V?????J???m??~,????\eO???:?????=co????|?1?sl??(??????oA? 5??Yp?zp?#?V5??Q?+??????RP???e+??4?h?1 ?????UkOD?N??U????[?????T?????vp????&?7?pOo?v?on{?N???q??W??%ag ?2??'???/?????]84?qy< ?g?(???{q??k??t???.?Ns????UQ^5??d??w??]6?6?z[i?1Z[??]?????/.?;C??mmZG?|L?G'?|????I?F????L?eu$??B??|H'???|u?+v?????O??,?? w????3?Qe?8??5??????*^#,M?, ???^+Lr?M?s??i=???????+????y^3?^??oG?.q?????????`?[?x??#???????g??????]?@????g^????i?>wt?FO?????%??xp? =??D??r??5eX???>???e;$`?>`????:?xc?B}bb~?=???r?'?`???ore?=???????U?8??b>??g?KI?5b?A?~V *pW*??xe??????????=???k??K????s? y?a?c?~?? ?????5????8?oF??\???Ni ?Z??$Er%?T?q??????S?W?,??#)????????6?Qj??}N b#U.?G'??W?/?K ?u??\:?q? ???v?U\8????3?????????m?{???>B?1?G.YmI???lO?*??&?&?oH??mY?r?????nV?sq??_$?f?h?'??V?????3P:?I?N?.???????^_,?U???erqm0=?6????)??? ?7L?????G??]?#?=??IS???[?+?0?|?g5>????*??r1??}QS?I.'VL?Z&2]A????%"H??D???O??uqs??\fJM?%?ue??$??U?G??????>G]+?x?GO?j??[?M?Oqg?N???\???Q#n?I????????3?:???v????J?>8?NI?;UWs??gT?@^???rR?????nMu|?????{;`????????U?????C)g?? ?=v??6???/???'???'L??????" ???~???\?$?.?Gd??3??????5?&]???k?.?f???#u?L?.$l??.N}0+F??????GM????2?K??????????i??{?jK????DE?????????????X?G 6?K8?????{?|?;???x????5???$?? t?V9??????9?[N????J?V???G3[Z?? 8|????9?og??H8??X?G|?aOc3???????M??x?z??_QW]? ????>>5???r^]???????? ??f3?8??VU???[n????4$????d??9$??O$9q???J????St}G?Q??????|??M[yo?Hv??"??k?SZ?????nR{/?:?='v???kEkawbK??6?h???av???w?wB?1?U????????????$#???7??5???Q???????Mf??W??????I??-???SW?K#??>?!?k W??'V???*C%Ov!?[??????;????f9$??k?$re?????*?? ???PY??=y?????`??%???0????????V A9?ZEu?/d?BP?um?e????j???????M??a???????6y?&?&????}?6??c?.x????V?>G?8{n????!I?^}o}+5??#??s???s?T-?6???@U?U^?? ?FOA??\!?X??1\??2HP?u????4??9j?W????=m?%? ???~????ki??YyF?K?c?4?,c9??????1?k??L?:?+????????T?+?P?+???????|??N?,-???*???k???????k??)V?r??8o???? |?????MWR????I?z??|??.???x?z??t+{??????NKAc??;???u?z5?V:|6??D?O???]??D?h??????moei?g??o>j?-D\???cnd?#';?r????????[???o??[?< ???8?8?~s???c6k]?????%?Q????(%Q???w?yz??^6?y???N??i?R??) $????????????7\?#???_cox???\??????[g\????t??t?$r?>?C6H?a?w?[?^]?W??+?=???z=m???q??M?z??%?Y??n?L`??;:?????:???xd?#@O????Gn:N?????_#?x?W77m,???1???=?????9?8?????5?U?????J(Q???g??_O?????&???G`???U???,?????u%?H?N2;|?Ku???OD????0?Cm^q?U??????L?`????????sp??IS?\x?k}?????%v??6?8????_#L????P??11|?@??s?;o# ??????5??&Y??d????|?]?]M????F????L??0?? ???WN??cI????*?????9w5K?td?/???C???????r??X?[?\?y???l?f????6r?Oy????S??,??????2??A????6 ??2?Kc%??gJ??? t????Uh????}?r@????m????1?P???Zu???;??4??W_{?`????1?wu?s??2??? c?????i??.?k="? e?^?nf??~??V?*?zY???u????????|VxO??/?`k?????H3???? ??^?q=>???~u?????-??S???$?v??0?????ts?V~??c??????W????^?j????[?+YTV??h??!?????V?????~?5??}9r???r?,????wq???????#?]?bG/? ??????????????e??1?Op??A??pI??Uq??k?B"|?]2?f?1??r})???L#?'?????????(??????i???5????^?u??6~???!B/[? ??[??L?om?Z?Q?????????T????1?2??? ?6q?Ql?)8'????*-X??E????)??????????W?2???i??#????=,?@? R?? *6?4???)?????? 8m6???v\.??~??G??Ny?W ??O??]??R?????????u?m???D???N????$?????R?????'????5??yx????R]u]????q??H??j?X????>|??M?\YFJ?]???????mi9Y4??m-??????oT ???]i?G]?'?m4???]?%2=???>?a??v???????D?????V+?????"#??????B?~O??^?????GJ??c?$,??:?q??y?^ F?E????B?o???O&?;8??i??ndXb????kH?|??M?s?Im}??B??.?\?|G?fc4?jV????{?O9??????N^ZGs,w?8%A?=?z?????W?H???:?Wt??? ?j?/d?? ??K????_?0??^?j?????e?????}?5q????PN2&??g???]???Y?ZL??b?[G?n??q]??[????4??X ?%??TQ????7??p[f?q?fk;?h???t???t?H?????0O??u|o????)??????,???????????L?K?q??p???Q?s]?6?????5????;Nx??V??^+????F??G,?2? X7???c?????t???2?H?R??M?K9C???W?j??????I/?d?2r|??'??c?diY???L.A?R?l???x???MW<.?i?R?]???c????$`w??p+???f[S?.????a?B0]?+???z9_??k???e?kZe???D?B??o???I?c????j????ik????4A?n?L??T???d?&g?99?9?}k?I_???c???lV??\??]??V??L??xX?o???/??]^???2???????/n??jW ouql?k???d?^?Sh??WK???[H????#_:???????[???Y?6x5??t? ??_B{?#?m-??????X???U?K '?u``??p?U??$3???u???q??{ry?(??F?U??????m|(ky???k??V??L??y????????????eF?K8?~?Q??[h??h?{!  #~??????W?p??????#[???q{?H??+????#??C???j w???[?/??m??????.+??-????c?????????n???5??????~???3??j?:?????l???????V?Z>y?|24LHh????????zFF???=??6Nj??cR?`???b??? ?>T??????,k?O?\????y??O??2???{?/?>?7D?[???~T?^m???$?????w?"9n?c????1???????$?tQ??? iI? d??.???q?rc^~?3?$?H?R????rO?Ez^?????6????eg??? K????~;??u?=9?]t?QN????t??????k???:?1??N?~????[[?;Fv?p3??U?r????Y???T?b"W?nS?#?????????? ?'?WyP?_t\/X??C???+m???#?:r?Y????W??7O?]H?xo??c???u?3????f?mu???xm?\PX??/H??m??$?c?3Y??>?d???U#?????F?6?p??@??]8Uj???Q??H&??????????(???m"?T???V??^i???~?????@?W?#??y[17399???????'?t?y???????ir???<?,b?"dl?=???5??T?B?9?L?Yj?????:??i?????q??9????W>?:T??? nV?q]\??q?????>5?????????%???? ?p?*y?u?^??muO????r???????M?W([D?#??Tc?0?L#??3\??}?Mr??n??mkQ?)???????????bs?5???:??A ? :?^??@???J??}??WU??????S??0*r???A,?QO$??5??N?3?C???U?????z????$H?q??WN???5?;\$??R ??#d???Rwp9?/Qooq?|??{>???cgYL?e????WW?tkX???U?21p?`?Qy?|???????KG? kVo&? ?>_???????-E???Z??%???6p??r\?k;?????O?_???F?vQ?QS????????;U|??Ui??????|???K????$OF??g??>?w????7??~U?]w;H[??&??G ???n??w\??%?1@ ?q?Zz?G?????i??>????? ????*?>+??]?/????????u~?Xqza??w?>?? ?5^K?m8?_??n??e~???q\|6}?y=?1.{????p?[???ar?U?\??q?L?2|???Z?b?is?~??_???O???9??0????ao:T$???????B?????0????m]W[??n??u>?"?????,?O?Oyc{N\^x??%???q??|79??ef2???a???E??4??2N?TO???&???A$?[>?\??>?????+n??L?M6D?6??c8, ????????=????%??W??????s???TC??5*????4?O??JU?4( ?Q?]??C??' ,O}??5??{?Rz^k???m?R?l?{??????'?=U??|?Z?]vI ??????????=.,?V{?AS?r:mq?,~U S??I!@?#??*f;V????a?Y?g?????d?#}C???????;?p?nSQ??W??9?n9????b?s?E ??????xL?D?? ??MM??iS}?????/???????????Lj&??Q[0?|v]y"????J???(???P?7? W#uzI???rer?5}4?Of????'?\?#/??6????NYo???i??[?7J???$?@o?????s??V??k??8?p???????9 6??? ??????e?N?k"?o+?L??????1 2k?,6?zUH?gS?+,?Q?? ?q??kY??6??*??r ??-?rF{qYI???W]?????Y0?3?y?5?$?????g?!?q?y?>???r??????????~?????s ?i?3$^W?,?????~?Xl?????[r??k{??g1??J?wu???W6}:p?MwP?#?G?????????o????j?dp-tf{???&t?2d??A8?_?????I#?L????=???????#R?}>???`}???^??8???p?>F?^??K??b??dy[??0v?aq??q??*gC????? ???6?tG?G?03P-????5?? n???!7h%7??r m?t?6[>??K}J?Y??K?.K&H?\?$??r??>6^M'??M??j.???E?s???xbF?y???|?k~>?J^m?WS????IS2DmUTJB?????????[??KmR??d?9J?c??g??K?^??Z??y????K?KO?5????????[e?????v?[???t-K? ? ?c?,?r?O?c?>Qln?s??B? ?$??y??>\?????????[??. ????????0?SL??t??k? ?????S1?>}?????0B?_ ???;??8???F?[gTV?l *??????}??pH ???[???????aQ?????????? ??>?#?Q~''????K??}[ ???????????OZ{D^??SL??{[]???-!?|k????ls??a?]?b?U"??( ??( ??( ??( ??( ?;P( ??>???*@P@P6 ??( ?t?( ?N??8??@?@P@P@P@P@P@P@P?E???J???#?6????g?T P@P()# d? ?+?|gkc?A?1A???( ??( ??( ?)????0?? ?n?R ?x?B??@???{v?t??V?F?I??[???X??Z???< ????`t????? ??? ?dP3?S???4I%?&?e?]t???( ??(:h4??????OP?? ?& ???m??????ctl?????) ???cAqR??e?F(?^fF?B1lgc4@P@Pt|??=?{Q???;?e?????v??}1??<????;??q??h9@Pw?????Oj???????h ???mF?h9A?(;??>??@P@P@P@P@P@???_???=?????????tU??9w?:?]?P?^F?????(6p?oItf??n?? ??C??l!??????{?oR?Q??Z .??*g#?@???4?l?g?1a0wfxT?F???pO?Py?Ft??Y?n?????>3-??2???\? ?????kz?z6???]??pDQ4q ?O??|??1A?????B???"?????????'?:Q?OeZN??>??I?y?3FG0??{y???i??X?$?nz?m??K???]??l????1?>C??PM??v?mz-???1t|?1????=??PL????n:y:??? 6A$??=??l??=??hz4???m?C40=????U??y?{F??????d??????D^?`8q??E@??????z???E?t?4?uK????{?r{g?~4}?t??????????5?d?Wh?;7?;2??*?{Pzv??Z7H?ruoR? ??????W?T???>??Ac?=]?u?????zoL?nC f?-? v?pp???u?J?Iu4?z?kwQ-??r??? ?fh ??( ??( ??( ??( ??( ?Q8?1??{g?/??????t?c?C???????s????%?X?v?y??x/?{??R?q;??b????$??sR{?e??_A??t?(=??W?????????4??l=Mo??Bc???????pf??_?uhL?m"#?j?2G??1???f,OrOzS????4?ez????????`?r??On????G???{i$?f?s?d??b???\???????Ifvz?f?'??-?t??s? ??>??E' ??? m???k?9G?[??!#?F????????t??m+??@D??96???s}?A?$??????j?M??= ???DC??}????8??-_?]??y???8???????G????+8????v[?=???????/:P@? ?????s?eh<+X?????$????@PJ?????!???????H?d?A?}D?Yu?T? ??MC?? S)???A???!??tiX(/0b`s?A??=?????o?Y?@?*{0??h>??=?t?X????D?.??x??O A???:??[I??gr?$??D??=????w??te??sK?]02??da?u??A??^?????a???#f??,??+A????Pj??tZ(?w? ???C?Y)?x?q??s??z5???(????8?x}?{'???W?+??Z?y????-?o????M??'^????u?W??l?b??? ??( ??( ??( ??( ??( ??(?????{r???7????W???o?us?????|>*)? O??~`PU{O??5???w?]=m?pkV?k?lL???2??|?>? ?,?y?)?? ?u?.?????B?/tw?6?JYk7r???d???/?d??$()6?A@???( ??( ??( ??( ??( ?g?ZOD??????????b>??9?????ugR{Y??=??z???J? ????4J???7ff>d???X{/?N????????$??i$?????:?????f??i??>?w?2???s?}!????`jz????[?1??????O???Ju?CCT^A?????]??mq?????D??#M??6???4?P??????9_???Ac???G??????X?Y???F??Y3?(?~?8????S???????+???)X????nh/}???=/J_??P?X??s0?y???3???????/?W????S????ij???9?????+???l/???gku0Ys????Pz?J?????.t?N???;? ??g?? (???n??:J? y?o[?P?Wo9?~?.}?t???^??M,??\?e_@?#???)0s? ??l?v?w ,n.?2?S??q\C???u?DX??V??&3.p? ?#??? }B?Q?? ??e???[G?4G??(~4???'?s??~KY"???????Q???r ? ??U??7??Ts???????>_ou???F||?8?????9G??w?{;?;???w? 6b?< s?s?{("K????Es5?? ??v\??h4?O?Efd???'k????CF?>???????@???24Xi?????rh7\G ????D,&???zs????@????[??PU???2???????'??c??????zy??G??^L?|???[g?}??@E????O*?0Hci?????CPhW??0?????&dUPv?`?????=h?A?kIa{9E??>?r???????AG?????q?????k? ?? ???{7???W???o??ln!?n>?>?AY???????~?1+? s?~{O??A??!?R?????9\g?^????f???^????7??K??]?o???@????B?b??y/. w????$+??8?h*?C?Z?Y?p8????@?]??J@|?l? p??=?F?=??Z?r?"?,rm?0??#???F??????!R_?W?,?|O|????i?j7??V[?a?s??f?`???2}???:T???r?%u?9?WY?*d6y????p|??]????1ve?? ?p1???>?zPA??+;-=?).??x??)(-??????Z ?????U????????+.???/u?.? ????I??E$3J?>j????????v??j?Mq"?3??PN{??????'R??(??M??De\???w)??H0}A??9?Kco?x?cl????yHv??[?R[\$??9?F???Z>K????2 ?C???????SDV)@????'??nO?M ????3[?)????BK2????=~tt]b?J?;????Y??,1??? ????t??v?v??{ ?j?K,j7#L?W=???4 ^??0??7?&?%?1?y+?=????5????K|M?+??c}?? w`????om? z{?2&?vX ?y??4V?Ggosi?cggw$?6??e??????q5?!l!?Ax???0?-?g=?q?@?]kJ????^4?f-?Ow?~8?(+?R?t?Z|o??.ZW????????]??"? ??=?x?r??-???*?????Y???> ?:+(???|=??}G???V???Z?n????Wq?nI?]?PY????]iI?????s??e?????%?P?R??v?T??????T??P7???+vbv?)"?+_?0b} 9?"?-??io?h????t??????1s??|PImM??????C%?M?2E?td????~G?@?u%???*???bV(????el??? ?!?=Ams?M4]Qh?&&K?Fe?%?+?z?????? ??v?+?? ???s? `???$V?$h?6e_o???Pu?r?5f???*?Y2=??g ????%???? rq?q???L?B3?8? ??[[h?i/?6G????F?V?m???'? ?6-?Qx?|??a????}???????R?@[?{??"?A????x? ;}??(*??tc??B? 2??X?B???????j6s]$W(??x?|?i???}?z??k}?WV?????XH??r?]?9? ?q??v?M????)?Ch?G??fgVS??pG?(=)?????h?,|?N2>t ?h??;?????P?BUH!~????K??;??h-n????'?M?????_>"U?#?P!zN ????? Z??a? =? n???2??^?2?q I??`?0???T??K?[4?.???~Pyr~|P>?9vP?Mn??ZO????? ????Kn?????_??????? ????P3???zu????$w?T?y?\?q??>? ????"??L?d???,?.???????-4?G?{?+$2E???q?W?AW{?}8?7?\-???? ?????dg?PZ?5????al????RDa}?,)?e??|?#?J????}C?d?q>?C??????}h^??{hnQfY?h??????? w?-?#@??H???????#?c?#????#u?o`??????? C?Ownw>?m'?(@P@P@P?MZ???????$R???????:?????E?k*??QH?? ??? fD!???m R??k%??h???#?v?????h???c??E?NT?"?F??z?h??????l?7 "/??yQ?a?@??G<3?Gn??n?9P??}>}??????w?XX??l>?=???? 'R??g????A$y???|?????]f??'???????U???@[???????^?m?T)??[?R???rk?$??m?96E??N??? ^u ????5??q2l ;v ???I??@???$??v? ?,TaX????h6?w ?( ??( ??( ??9?9?2s?'?????in?.Q?Hp?????V&?}?"????? ?i?E?n#+?~?O???!8????h}C??4?9 ??y?7?2????\?#c??E??t?f??)?Feg????CXi????N????8??????ce?bA?u2t????O???p6?????t?5?-"?????%wc??"???KT?I?????A?``?=&???xS? (??@?s????4?#???.m ?>??4?X???G??Q??8???(:l4??VA ??Y???G}g??????S)Y??t??]/N,w] ??????{?????????S??8p? F??~X?T??dcth??AipKn?1? ;* ????wA?x?G???D?u?y6??*?Z`q?c?9?/gk????}?? ????? -?i?d?3?A????@???=?d2??c????>y? G?X ??r%?x??(}???>??????????i??? ) ?rN}????, ????x?]???#????,h?"??nB ?8??????????u??@?4d(S??Q???A??h'?U??p?2 ???^? ?????&?P*??????4/????AVP?ll?`????P!??"?NL?Rx??=(??N\?@???e???4It???????;{s????t???`????!' ?????c????7EJ)???#?~\PG?{'??1~????#??8?h+???A???( ??( ??( ???O??@d??>?H??2}h9A*?x`i ???(??M3i ??????f??z???????*oM??????V?????c?6?H????????H<????*??y??:???{?"?H0????IVI,?X?q??p?}??m.??O??F???>??!???d??%?H&6???E???H???Q???@|?y??h{???Y???A1??? ~~4 ??VC!??!va??]?}??v?? f??dA??E?9???{??HLb?o{?.????A??? ?C?N??^?G?9????????O4 ???X?????Ar}h:Yld??????|?(??@?-???,??t???r[??|?)w??d?O??A?z??Ib?.?A=???G????pd????o ????1AQ??? bV?r?@{?????????r? ??:Bt)?C41CB?D????T????D????1?????E&?#?zY??B????O????X2????? ?x? >??}x;?$;???>??N????l????!??I??????L80 ?zP???B?l????yc?hG??0???9?q?????k?"??8'???}h????m-l??,Hb??C??A?5?`')9 ??g?? i??D@?d9??????C??x?Q?6?????N??mFa??????u?'?A??u???F?H@$v????7 ?\0??[? ?pg? ?+F??a??I????: ?????^w`?#/0??r]g?IP??v.?X}??q??P????. ?'?q??|??!???[?>P? ???("???????V>M?\???>?y *?????T?+b~????????G?S????m??????R?W? ????F????eO?_@Q?S???????u'!x????Q?U?j^2#EiUJ?~7+? ???????Q???l?2?? V6:??eLAX?|??v??lrC?tx??UH? ???,?|??? h?0?Eu_'9cz]?%???????+????bz?NMNu o 0??Js??*??&???V??????C?1AT??4??q???"???D#??~????bKh??'N@?????z?????b??,R_YD?4M ~y?Y^????Kaj-??Pp~?j????_E????u?q?M???j??#?????m?6??|?y>c??O?$?b??]{V_???@?????I?,?????>&??f?u??fX??fh?O??u??M"??eyNw???????Ol? ?????o??vAR?1?SUm?????r?*M?????W????c?O?Q??k??R?F??L???V???W??v?mv??? ????-??!???iY???!??Q}&T?????oU????j?Vv.?*q?ak{yl???????k?L??v???PO??c???z3?,??-P?rT??]>?? l??i?%???0?k~r}+???Lf7oE?????$\???L?????????.??!-??1?`>q?????S?????]^]By??v?{P????8y ^????:??S??_{?,??f??]?o?'?!!{!?VWW-M?"?0>U??v?4????4?I!?j???>#)?APvDg#???T+a? !(????f????)??"?????DRl?????zl4???a??????l???c??(z??e?F??i??.??9N???W$???v???????<-??pqQ???X??B?Tv??? ??&??$?RD?{???sYYj????1?????PG?*????????w^??j?a??q }lz????W??? c2,?J6???I?}??????j?V3????r??99?????9m????mq/'????N?,6??X*??z???N?8?Dv?`??l&I?????"{oR???E??F??K???$?7t????*????"?O??????mzW??kU?????SYe|???;???A????CF???qI????k}??6=4????????|-?N9?O3?.???R_??m?s?gv???@?G???Nz???????VS????zU???$?????3?+r?W? f-???#^??Q??>?2????YJ???6???f?????zy??????:????^???} ?XT.}????*Rk?B???y ?t???Z???Ipp?B????yc???QZ??j???NW??1??V?E/qY???;A}?@?|???U????????_i?t0???y?*???????#??4??K{?q?+?????~>?8N??zi?[???Apcc?r?J??D?x0?B???;}??mZI??d'-?f?;,j???'i?K,'??s????xcf?IrKr? ??????5[???~|y? ?>?SD@?????E??n???@?K6???ZGS? 1 ?A???h?NN n??|??'Q???A?2??? ???????E?\??)?1L3a? EHe??ek?V???P 4??????2EE???xK??ua^x? P???+T??Y?r?(?W??t?\??HVl??B?Y?M93?+qq?'?Ig}eb??vB??=??M?.??I.??p)jdd?[???T?N?H????????x?Z???j???w?t????YVA??y???\?[ok=Y????TbG?5?/9~?a?b?]???bTq???s?ax?~K3?????Y=L?M???wE????r9?SU=??N?1?V?R?-?<????#o*G9??M???? qs???????M??8???d??l?????,l???D?e????? ???^_?Rdrx? ?l?????????aZ}?????&??@???O8=?W??}oE?M??Df?X???U?????N?????[??s??????D???u???KQ?]??j?S????Sv2????&??m??df?b??NMzX?GWa? ??T?r???I??????XeK??2KY?[??k??Oo?VuV??;[O?fu????|kK?#?zr[?{y? ?8e???2???{]?Zf??2+[???(9??g?e???????cP??>Kmo?3??????2?psY?M=?l?@?$_?{?:?}???? ?K6?n??b??????7???Q??M??]$????iMU ?MN)???}1M?tu?s??|)??+??Q??????3?8[?NO3J?|??U????|i??2??n ??W??5??????? ?Zp???;-T??$?bg??r???? ?????;F??)??T????????V???|??d???g?(?{`T?G?Fd_{?$???ZDn??!I'??:F??e???U?????F?h?????????]Z?*t??-??\2?S???????+?UEul??????S?fQN]???????Rq]Xa4??????OrkW56???????ldh?"??$???|W??q???=??p??????BT??1Zx????-GD?4?$I??J??*?D??????&???C?V?7??X@?24)??Q??Y???1i,?B?????????????????????zF?u?????M?O?8?h?? ?????^??'X?? ?*?m?a@5?Mq\??F?3??z^?Zl?U=?[*???5x????f?-????g?????0o?K8|d/??????ZYZ??,???F ????\???|?i?"??Qo?c?F?LA??DN ?U?c[???K?????U?M?m??}?i,?????X? ?s???)??K+[?m,W?)4R?4???\$?-??}Gj???d????H?#mR??n?p,??l?;??[???~???*????X?w^?:????:??x~U?p???????nF#&M??f??Y???(q????!e?}b?????h?I~*")???j??"j??$????B??12"?~)1?}?9?9 ???P? ?E"?$ ld$??uJ?i5x-?'???G???q??o??Bg?z|v?{y??Tz?L??????P?n;L??Gr?C?Y??????T}fRcS??Mg?????,?''9??0?s?vy?? :+x?`d????h?7??B?*??H?*n2?%?????? Wo? ???qr???z?"L????>(??u[i? ??s?????v?-??O??Mc????H??z?V?5?7?N???h?2=?yU|??- e???q??? v???%gv'??????+?s?4????-????H?? ??j??\?n?????Y2:???]??????^??<_?q??+?gR]?g?WrJ?M?r??N{?&?o?_M????}+c???R-M???>?j?H??b???????"!?O?h???b??8???A?p??IJ??dQ?!?o??"?????????Q*??!?{?Yd??????l??9F?S??}????v?sL???V_C]??c??IH????t????E?K?Shz?? `?qXr??????????????qU???>F??S?^~???/6:??B??x4?????2??[?3??a??????b??F?+?????G??/?h?!k???Op??j???)l??+?Hp d?*??u?????????Rm ?M????*??? ??ve>??????I???{v?????z?FH???E???,???F????r;T??????}J??W??Q??=k2?UEt???e???u8x??+?/*?c?6????FX?????????)?'lGSh???h??l3??p>5Y??[zy????[&??Q??-???H?J??[h??jm v??\?F?????>?L???????'?(C?"??}??2??5?,?|?Z?qR??{[??O>*?SsI??kOaz????{?+?? =N.]???o?????????????r@?????l???%l??????H??#|?/??N?,r#I??66]?9?)?>(c? ??A??m?ra?????V?R???|j?Y??Dd?Np ? ???h?]?\d??:??/tW??????r???v???4??4?9?8??E5???????>?Ub?5h?w!#?? ??<@?,!C/?r??~????d|???ME????.4??~^???_????5??{[X??2?'??R???6b?Y&`??N??????j?????qFEL,H?????????V?,??>??Q???=?7B?T? ???s`pEEL???????w{Ao?K^B1??ms?Y????-?`VD?????un\57Y??????4?$h2??@?57Q8?lC?????G??$???????^?g,-?P?Ls(+?9??d?????xd????8??F?????'?P??8?mY??q?Q???????w?????y?>???A?(?E?*?d???};??Z????h?bNBJ??.,?,?elc?8?]????5??yh?F?_ ?0z?????+???n>U?rI?V|?@Z!vA$???D?l??}?????A?f???????.;?3Z?c???}>}?w???Y?#-???0???;F>????|?Y??X??t(3?=*~?Q?V???[OL??>?~??V?r???=?G76????+*z9??????3???B 1????R????[k?J?j????????$X?k????!?O??:?1?g??????*m&C?????m?S?[? `Xq?|j?v??b?5??t????3?U?x?H??O??e?)???.6?_CVA?9c?? /????>f?QpI?`P=K+e?lk???????ok?F???M4? ?????K?v??? ?????g??FcU????Q^*?>?uT??ku??<m??d$|1???;(??<9S#?Sq??%????????X??s????cz[?+c??????A??#?vn=??n]8u????$ d`???=???u?????XlX?????5Z???M????FI=??I???? ??f ?p?????S??%e?b{K??X?H???|ky? ?????J?n)"w??WOg{ ?^????M?' %?C/Xj-?}2 ??{???Mm?????t?Q?ko1???}?f?2???????????T??o4?f=?>???R??,??~$????$????s|3?U??0???? ?)??????????v??uM????7 ??"?g?????????j7S?GU?V :T????V? Ae??%i?r?=Es?J?OP??6+?????O?Z 9?u???x????P??#???v5?^?x??`?td?*v???#?p^?2??dVS?:????M2?V{?G??ec?|?Lqg?????o?6 .}+y?\?H??I??4?d3???? U?ww?A??Pr???DP?:??S??E?$ ???????[9?q?ESm??? i?;???y???Y?k?a????a.(N?K?M?|??J???P??0*3???R]???;?&???s\^7??2?aY???!?y ?k????????Y?????9?P;?8???I???L?`?S????Q=?????Si??C?x@??*Pu8R?g??L? ???d???r 9uJ?? }????F??/??\Si??f??ig ??l?N=?M=&Wu+??????{?[g ???j????d6We*F???V?e?IyRT\k?X??-?????t?m,O!?????~~I????? q?:{M61? ?C&???}?????Q?l??U????Z?,7.???????H??+}?$??V??2???????UO?{???,????Oy?z ???|*?????~???2?I???y?:n?q]Zy??8?@T?#?SY?#??????s? ?;(A??I????^?4 ?? v????MO??R?H???x-???,?H5K?|???r@u|j?;KO?]?6?&?U??m????N??ls?*v???Ud$?q????7??A?|0n;???~~???????iO???n?Cf;?J?[Mb?i?Z[??(??v??^?I??3q?*?\?ZW$?%???d?pMc?v???????)??W????c????#???????P?r??? @?jb ?|jhu?b?VF???q?TA?? ??R?RH???>ub???r??U?????E???????[??V?q{???O4x??38&;??????E.?yG??4???mZum?I")??0?~5[J??????9?\7qQ??3r???r????2?j:a?c=?adh?8o????Mqoso??dZ???E?p8?x?-?D?91 %G????????S??M!?.???;?)j???zO??u?g?m??*?`?A??W?5?k????w?@8H?k+I[]k{??e??[i+?? ?K?j??)?j?b????uJ9??T?W-OI????0?nO????Q?????F!?I???i?j???e???&Is???????????K0?5???#????H{???W?k??w?G????Lm??l??t???^?????h?p????y??p?6??Y.??bF<e??V?c?????8,?]??N???????x????hI?i????6^?92??'?qx?X??*?|?I'?D9m?]?>????/j?(?D?[??H???9?PRj6?? ? ?Vv?0?????Z??NA???~S?x?e??????e???f????WVh?7eK?P???V?1????0?~8??U?V??$?*??????Z;vD??????4|?????j?x?P?????????1?yJTC?=?j?&G?8 z??Q?????5?~Udl??x?F??E9???)bVv?E??Iu!????y??U-??,"????? ?#?C?Y??I??C?DwR@??x?MF?zU]?j?[w???K?U??K2B2>G?s??^M?F???????Y?|?u??*?D?d ?o?V???{?}'.??~?i?+?????5??m????BC?EL????????[Mp????E7???f??b?e???S????o-?GO#????{O?MIt?Tm?V?c?X?h?[qZI}?j:5??6???*jq?~???'xdVRC/#??D??????IzP???K ?? c?ER??>??????????????20??????+?cl????8????"1=??P?G#?V?????F??d&?r2j?D??=???c?WXz???n???#rMrp?,?o?u?JUY%?f????I??}??q?;7%?q? ?b{S?e?~??,??#??????"???U???{i??G;$?z??? ?# ?|?g?????+???tMMfc?4? M???u??????t??mb???)??v ???e?a??nz ?-??Ip?\:K???????om???k ????.?8????? ? ???~7?? ??????7p??51Gf???]??4IRT??????9?f?1??????F89?0??$b|??L??p[?)?T2I???Z??\E??[ e[+tL?'???RU?+???2?%_?>I???D?U????f??D\????}????=is?)?f??)???i????5-"'???y?e?+S*?*??h??E#FH?8???[Sj^?3?\???#g??W????-Il???Q|j?i?X???r??/????[???"??|????[??x?$M.??#b? ???????H?Yu.?on???8F>??W??p?????-T?#3,w8>F?????+-?L??>??#?O?|? ?dt??m?] ?Qh?J??C3?,???o?|? ????s4?5? ????????Z?H?s?h??3?VR??buo??? ?U?O??uo7P{=??8?[H????xG?~kU?i?Zau^??t8D?$sA??'8???'V9?@?Kq??:?Z?? ?zw?%c?N?.QIf?8????Z???? ?n????|?$??Y`q???p??????\??;~4?Q+????????_?/ ???c,l??zQ&?n?m?x????s?/j?hxzLi??&U'????e?~:x???/cn??>5?$?u???m?>?U?2??)?????-^????~????O-?,c?N?x$E??GN^???? ??$x%'???R ?w#?3*/>Q[??U?DZ????)b?"????:??~???Q??Y%,x????"???4v?S????Y;?&???V??pC`?wi?D?o1?3??) ?:?????"2I?????yyTe???'>x?e??I!? ???J??d:Z?3????B????_H?R??>????????|.?????n????}?}*%?7B??G5X#?p?????(\@H ~????G????h???-?WV#???*?~?p???t$?$?Ps\?G?1??5L????O$?? m_???J??j7b? ???4?c?>?T,?p{???ou?z????i?????L`Th??>84?6m?J?|?M/???p??????!??E???????;?Q??F^2i?e/??6S????&he???I????8>b??9\T??h?????H???-?A???e?l?uo??Y9fq)???lR???[??7?d?Y???????r???Gbt?A?? c????R?01??W??$?F??1Z??????u*???/sa??f??$r??~5?p?jj?????Kh????p???H?? o??c?1?=?E??#YQ???:???\o?o_9???[??????f"??5????-?P?4?????zTL???l?LO?z??"?????VmK???~?L????????I&???A?t?1O??_ 6?&Z?:?P[i:???I'? w??????'??8????????hpC4w?rA???{U?z??r?,?:??T] A?????f???O???$tm?c???o?Eg??????#5??[_????/??%?f??dR?#??-m?I??n}b&?9QN?OM??<Y\1???\?Z????x???? ???!]???? y???????J?e?1?~j????>?0???4j@???f?$?=??\T??#I!?V???Z???J??)d?????7b??O?F????.?????"9??+;?3?????????^j????W???d???????NEl?7pN?l??X?_(????W???S?j????M???p?M????{?'E>?x??Q?M?k?)??R??\??q[?+.??#V???0?????AX??'0?????)U????Q???#h{??U??????V????NpI??MW????i?C$??????=? [ha??,H2????5? ?O?Hiez?? ??8???d??l?=??>y????j4???Wu???????????X?o?\????|????/????????X??pw(J?????X?V'????);r*:[n4`?T\M?c?Ut?"LF??o'<?????;{???b??????????G?K???'?"?`y?<??~??????VX??TS???nH?]5?]?%????m>?O?%D???YX???? ?G?g???3?(?f`?\??MN?????J???c??M????4??????l??^e?P????????o?f??P???XI???;?#?????]E?a???>.????????9???g-zb)LJ??X??????s??????~????4???c ?aT8?c????p?(Yc?!?[v???J?? ??PG$c?Nko9?????.>M? ??b"?K???H????????S???res??I ?us ?V?S?????Q???z9????dH&??8?G?1??orO?j????>??.3???#???~?r?????>^?8?}??o??nXm"???????g?S???????????????h?F?=???F??)?|?1X_????$,wF2??d?~???x9%2?x?L??-???Vq O??]?B??????o?Yb?le?76?2?YfEi1?l?>??+??x?6?O??zz?J?'?`FN?;???k??<]???g???????????P?O?=???V?? 0?~????N?S?m????O??s$?v?????4?????1?$?? ???m??Ys???}?S??p??7?+???'????[?"??#?I?&+?~ *?Y??d???>????^s?w??y4;???n?e^s?/G}6?L.?9?????di#???K?7?IR>?S??>??i^?z?I??u???O?*??V?H??c9T?l??'?????????V?M?=WP?:???w`???J?j?}V? ?i;sm4l*4???O?F?4=???????????*??G`D?/?~?m????kzyW>~^??????3??-?P0???3 ?FN?????;V?k??l??u?U?t7??????G;?V??????z?WW????????no????p;?q???^vx??Wo???????K????oo?gv?]?1?#?????????.NMR?R_?K [D?k?u)lCc??=?3????? ??v????6?;????SZ??S?[???T?i? ??e?? ???C??? ??{NRw??Ak&??X-&?W-??X=i?1?l????I?Yi?L??2?K2?????_????{???V?m??z~(s?? ?q?)???v?@?D????v6???5ci???4??0jv???J:(@???6?\?8H?$?eu q???????[?m4v(}???>????????T????Z??h?? r??/N?p???Ifb?????kci)????-$?)<;??-De?????Yo???MD??h???v9?\w??3?T???????uE?=????Z!??d>S?n 3????yq???I6????5??X?j??\1O?G???+??9p3?????#????O??????H?z??)??S?7S[i??B??( ?????????>I?,??MoY;?E??q>X????????.?R??Y?c?#?>?ea?1?9eJ??\??"H??4????????L[???m???????>1???:??"??@,3?p9??*?||b????]?o??H????????N9o??? ??2?T???l?#?i???o?Y0???c??y?a?@?{? ????????m???I???H8???:???,?o?????]W?n.#?????p^|?SN??????A?[???{????Z??????????`???1V?????!:???>?ZN>?????????.????d?y???'?g~1???????>+?o?2?=L?????p?<'?q?}??*t]c???E?????[?Vk6??|?8?'$R?T?q ?????O ???T??l?? [???w??x?h?I ?{????N=??????]??`Y??????f?s?N????????nk???'/6?N?1??mk?????;W??????d?N????%?;? ?+_.???+???Tyi?????O?????E[?F?4???j??H ???>?RF???n??v=??}k???%???%???a?i&?r@e??p{?????c?o??".4?#????."?F??'????X???4??????a???wU?0iH?V???x?????????\???5??t??{?]1???Hg^c5?-?ze?-]?i5??$?????????q??????ko>?2??v???f??1?b?C??r???$~?????'H???kn? y&?`F???O>g ???cfU\??a:?Yb?XE?DlBm?`??8??#]>2za??a?*???P7crk?Z?r?.!?????E?I"m?#????????_.*??????? [?????#q??k???Y????\?!???Q?K'h ?????I)????z_?e2??*/???[@???]?h?????BL2?.uF????r?~`Sf?3YZ??Io ~?L??????c??-?O~ ?5??K???+?-?f?z _f??>???\ Fo???++#W?u?4?e?w??D?l,m,o.%U/!9??1???j?H5???$]]?4??RC8#?U????o3?;xdS;?R??=?^o?????4?H?qb?{7???x?_?i?rx^?H9?? k??;?T#???!@4?1 8?9%Fk[W???p????e?m?VXc?{? ????:??????.?e???+`???5????9????? false
          4690430054129146880 5244160 Cross-domain script include http://www.verifiedplaymates.com Information Certain
          If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
        23. http://199.80.58.115/openx/www/delivery/spcjs.php?id=1&block=1&blockcampaign=1
        24. ]]>
          Long Island Erotic Services | Erotic Services in Long Island, NY

          Verified Playmates - Escorts
          Fetish Fetish / Fantasy Tantra Tantra BDSM BDSM
          VerifiedPlaymates.com > See All Premium Long Island Escorts > Long Island Erotic Services Free Classifieds
          New:

          Erotic Services in Long Island

          - Free Classified Section

          Apr 17 - MeetValentina - Allow me to Discover, Stimulate and Fulfill your Deepest Desires... (Manhattan)
          Apr 17 - nikki23 - Nikki, newbie that knows what you need (New York City)
          Apr 17 - AmriahGray - BBW Playmate (Long Island)
          Apr 17 - StarrINVegas - Sexy Brazilian Busty GFE (Long Island)
          Apr 17 - sexii sonya - Seductively Stacked Sexi Spanish Sonya (New York City)
          Apr 17 - KandiKummz - NEW GENTLEMENS__ #1 __CH0iCE NEW (New York City)
          Apr 17 - Kyle - Sexy, Flirty 'n Fit in NYC for the week (Manhattan)
          Apr 17 - BARBIE DOLL FIGURE - BARBIE DOLL FIGURE (Paris) (New York City)
          Apr 17 - JessieNY - I'm NAKED and Waiting For You (New York City)
          Apr 17 - Malani Clasette - Beautiful Pacific Islander Only in Town For A Week (New York City)
          Apr 17 - ms_melanie_magic - ????????o????? SoMeThInG _ YoU _ HaVe _ tO _ eXxXpErIeNcE ?????o????? (Manhattan)
          Apr 17 - Gotham Escorts - ((ExXxTreMLy SeXXXy & NeW ))) JeSsIcA (((*KiLLeR BoDy! *))) (Manhattan)
          Apr 17 - tinytina - TINA HAVE AH BANGIN BODY (New York City)
          Apr 17 - sunny - More Than GFE (New York City)
          Apr 17 - Hottest Babes in NYC - NEW NEW Yasmine HOTTTTTTTT All Natural Mixed Hottie (Manhattan)
          Apr 17 - Liza - BEAUTIFUL, STATUESQUE, SLENDER, SEXY, SWEET, PLAYMATE (Manhattan)
          Apr 17 - amata - amatafor5star sexy superhot female escort in bangkok (New York City)
          Apr 17 - Krystle Simone - Statuesque EBONY Beauty for DISCRETE COMPANIONSHIP (Manhattan)
          Apr 17 - Semmie - Super Sexxi Semmie (New York City)
          Apr 17 - Natalia F - EXQUISITE RARE BLONDE NICARAGUAN BARBIE DOLL (New York City)
          Apr 17 - Anna nyc - Sexxy Passion *Asian Beauty *Nice N Sweet (New York City)
          Apr 17 - Arianne Claire - Arianne St. Claire Ebony Escort and Travel Companion (Manhattan)
          Apr 17 - Ivy Wendy - IVY & WENDY Are At Your Service Roleplay SwingClubs (We Never Say No) (Manhattan)
          Apr 17 - Chocolate Devine - TRUE DEFINIT ION OF SEXXY (New York City)
          Apr 17 - Nicole - Gorgeous brazilian model (New York City)
          Apr 17 - Tabitha Cooks 4U - Indulge in NYC's Cooking Courtesan...yummy! (New York City)
          Apr 17 - ExoticStarr - Starr GFE (New York City)
          Apr 17 - kristy - BUSTY BLUE EYED BUSTY BLONDE PLAYMATE ??? ??? ??? (New York City)
          Apr 17 - Ginanyc - Curvy Sexy Asian For Your Pleasure (New York City)
          Apr 17 - brittani luv - sEXY & sENSUAL bUSTY bRITT (Manhattan)
          Apr 17 - dfentertainment - Dark Fantasies Entertainment the place for all you fantasies (New York City)
          Apr 17 - mslove - The Beautiful Ms. Love is int town!!! :) (Manhattan)
          Apr 17 - gigi bardot - Gigi - Your companion second to none :) (New York City)
          Apr 17 - Tina Voluptuous - Tina Voluptuous (New York City)
          Apr 17 - Sexy Asian Escort NY - we provide the best services,Make you have an unforgettable Exp (New York City)
          Apr 17 - Supermodel - SUPERMODEL: IN NYC ON SATURDAY 25th SEPTEMBER.........!!!!!!!!! (Manhattan)
          Apr 17 - rOBERT - Planet Leah! (New York City)
          Apr 17 - Stasia - STASIA- New In Town Sexy Hot Amazing Beautiful Blonde xXx Playmate (Manhattan)
          Apr 17 - Mercedes10009 - Exotic Ecstacy (New York City)
          Apr 17 - Carasaintjames - Unsure? Dont go with an unknown. (Manhattan)
          Apr 17 - FeFe Fine - Exclusively For The Refined (New York City)
          Apr 17 - Mikei - Escorts Service of New York: 2125376915 (New York City)
          Apr 17 - Toi Rogers - Fun-Size Cutie,Better In Person (Manhattan)
          Apr 17 - Natalia Milano - Gorgeous Mediterranean Treat (Manhattan)
          Apr 17 - Sextriss Diamond Dee - Dreams that Cum True (New York City)
          Apr 17 - Goddess Mya - Femdom Diva - Fetish Mistress Extraordinaire (New York City)
          Apr 17 - Kristine York - Elegant European Beauty Here for you at Last! (Manhattan)
          Apr 17 - Kiesha Kelly - Mixed Mulatto Beauty Booty lovers Favorite (New York City)
          Apr 17 - bmaturebridgette - GFE TALL ELEGANT MATURE REDHEAD (New York City)
          Apr 17 - chloe456 - Hot Blonde Italian Looking For Fun (Manhattan)
          Apr 17 - samarafox - __________________________SAMARA_FOX________________________ (New York City)
          Apr 17 - SonyaRoma - "Girl Next Door" type College Cutie (New York City)
          Apr 17 - CHINA STACK - STOP SETTLING WITH THE REST AND TRY THE BEST (New York City)
          Apr 17 - ASIAN HoT SEXxYFUN - ***** SWEET SEXxY EXOTIC ASIAN GIRLS 100% HoT, NEW PICS ****** (Manhattan)
          Apr 17 - englisherica - Visiting you American boys just for a week (New York City)
          Apr 17 - Kiki - Your favorite New York City girl! (New York City)
          Apr 17 - Gisele Lima - Hotest and Sexiest 21 yo Brazilian !! (New York City)
          Apr 17 - Miss Callie York - The Rent A Mistress Experience (New York City)
          Apr 17 - Ashalees Angels - Professional, Discreet, Beautiful, Well Reviewed, 100% GFE! (Manhattan)
          Apr 17 - Menina - South American Independent Playful Romantic (New York City)
          Apr 17 - VIP-EXOTIC-CHLOE - A flawless Beauty that will have you lusting for more. (Manhattan)
          Apr 17 - Danja - Ebony and Korean Vixen Chinky Eyes and a Bubble Booty (New York City)
          Apr 17 - JR Carrington - XXX Star JR Carrington Manhatten May 18-20 (Manhattan)
          Apr 17 - Elite Service - SLIM AND SEXY LATINA WAITING TO SATISFY YOU TONIGHT (New York City)
          Apr 17 - Sunshyne - The Real GFE Experience (New York City)
          Apr 17 - Exotic - All your dreams wrapped up in my Pretty Little Kitty..... (New York City)
          Apr 17 - BIGGBUTTBONNIE - BIGG BUTT BONNIE'S LOOKING TO WEAR YOU OUT!38D-32-50 (New York City)
          Apr 16 - Talia NYC - Absolutely Gorgeous ALL NATURAL beauty (Manhattan)
          Apr 16 - MzLiciouz - THE PLEASURE PRINCIPLE! (Manhattan)
          Apr 16 - EXOTiC Tyler Knight - NEW -- MOUTH * W_a_T_e_R_i_n_G * MiXED EXOTIC BEAUTY visiting* (Manhattan)
          Apr 16 - CurvyNicole - Curvaceous & Busty Exotic AsianAmerican (Long Island)
          Apr 16 - Milady - Milady - Goddess of Gratification (Manhattan)
          Apr 16 - BrazilianAngel - Gorgeous Brazilian Model (Manhattan)
          Apr 16 - KITTY2169 - TWO SIZZLING HOT BABES READY TO PLEASE (Long Island)
          Apr 16 - Stephanie Cox - *** SuPeR SwEeT PaNaMaNiAn HuNNiE *** (New York City)
          Apr 16 - Chanel Moore - Chanel Moore....Who is your Booty Mistress?? (Manhattan)
          Apr 16 - NAYOMI - S E X Y @@ L A T I N A @@ G I R L (New York City)
          Apr 16 - NicoleXXX - Thick Gorgeous Treat !! (New York City)
          Apr 16 - Pornstar Ms Panther - Pornstarlet Ms. Panther (Manhattan)
          Apr 16 - sly - HOT SENSUAL VENEZUELAN ( ready to please) (New York City)
          Apr 16 - La Bella Don - **SEXY NEW MIXED BARBIE**READY TO PLAY?? (New York City)
          Apr 16 - Ebony Fantasy - NYC's Hottest Chocolate (Manhattan)
          Apr 16 - Kari Devi - Baby it's cold outside!!!! (Manhattan)
          Apr 16 - lizalicious - GFE& Sensual Kink, Mutual Rimming, Gold Showers, StrapOn, Prost8 Msg (Manhattan)
          Apr 16 - Saki - New York Asian Call Girl Escorts Agency (Manhattan)
          Apr 16 - jocelyn - Sweet Natured, Super Addicting Girl Next Door! (Manhattan)
          Apr 16 - karmen delight - Karmen DeLight :**: CuP CaKe BOOTY!! # 1 GFE PLaymate (New York City)
          Apr 16 - Mrsqt - Bbw! Super Neck???s unleash, the Submissive Tongue Lasher@ Rebbeca!! (New York City)
          Apr 16 - Rozae CoxXx - Big Booty and Busty Very Curvy Ebony Doll (New York City)
          Apr 16 - melisa rey - LOOK New In Town ( .SeXy **LaTiNa ** PlAyMaTe. ) SuPeR NAUGHTY (New York City)
          Apr 16 - klassic kream - drippin,ready ,willing and able (Manhattan)
          Apr 16 - Mita - New York Asian Escort 4 You (New York City)
          Apr 16 - Mistress NiNa - XxXFoxXy L@TiNa ReadY 2 PleAsE all NeedsXxX (New York City)
          Apr 16 - avah - sexy & sassy (Manhattan)
          Apr 16 - Ashley sweet - Absolutly beautiful Russian girl (Manhattan)
          Apr 16 - MOCHA - 100% SEXY EBONY ALL ME DADDY (New York City)
          Apr 16 - Naughty Nevaeh - Sexy Miss not so innocent (New York City)
          Apr 16 - hsp - Specializing in Brazilian & Latin Women serving Central/North Jersey (New York City)
          Apr 16 - mskandy44g - Busty Bbw here for u (New York City)
          Apr 16 - Estelle Labelle - Exotic provider (Manhattan)
          Apr 16 - Valatina - Sophisticated GFE Valatina (New York City)
          Apr 16 - Natasha-Secret - Russian Blonde 24/7 Sensual Touch 24/7 - 25 (Manhattan)
          Apr 16 - Angii Wet - When the snow there were still here347-948-9744 (New York City)
          Apr 16 - Laura - The Finish Line is the future for a Grand Time (Manhattan)
          Apr 16 - Sasha347 - Tender Kisses (Manhattan)
          Apr 16 - Mz Juicy - Mz Juicy Latina BBW just for You (New York City)
          Apr 16 - Mona Montez - Sultry Playmate..Real "Power House" (Long Island)
          Apr 16 - LynneC - Mature Elegance (New York City)
          Apr 16 - VictoriaTheGFE - Receive a free session from a True GFE. Big natural 40DD. (New York City)
          Apr 16 - sexy rose - Young Puerto Rican and Egyptian Female, is ready to pamper you now! (New York City)
          Apr 16 - Spicy Jordan - Are you looking for elegance, class and beauty Then Stop Right Here! (Manhattan)
          Apr 16 - Athena Gold - Athena Gold is the Gold Standard in Entertainment. (Manhattan)
          Apr 16 - Sophia Lorenz - Professional, discreet dinner companion and generous loving GFE (Manhattan)
          Apr 16 - alittlebitnaughty - New york & long Island female bachelor party strippers (Long Island)
          Apr 16 - xiaoqing - Enjoy happy ending massage like a king@@Unleash your fantasies (New York City)
          Apr 16 - ChanelChace - ELUSIVE BEAUTY w/AN ADORABLE PERSONALITY (New York City)
          Apr 16 - Anastasia - LET ME TURN YOUR DREAMS INTO REALITY I AM VERY WELL EXPERIENCED (New York City)
          Apr 16 - Goddess Agi - Dakini Goddess Agi...Tantra for Deserving Men, Women and Couples (Manhattan)
          Apr 16 - Rookie Jessica 918 - Petite Ebony Hottie (Manhattan)
          Apr 16 - Anna Coxx - Purely Pleasurable Professionalism, Exclusive Companionship (New York City)
          Apr 16 - Stephanie CMT - __Experience Heaven in My Capable Hands (Manhattan)
          Apr 15 - Gabrielle4u - Ebony and Exotic Princess (New York City)
          Apr 15 - Asian Angel - Asian Escorts NYC (New York City)
          Apr 15 - ashleytaylor8976 - (??'???.??o????????o?? N=E=W GORGEOUS VANILLA VIXXEN (??'???.??o?? (New York City)
          Apr 15 - Nicole Fox - =======================NICOLE FOX IS IN TOWN BABE=================== (New York City)
          Apr 15 - jaccky - -------asian-------sweet------girls--------escort (Manhattan)
          Apr 15 - SARAHLEE - This sweet Macintosh apple is coming to take on the big apple!! (New York City)
          Apr 15 - SexyEyeCandy - === @ Sexy Eye Candy @ === (Manhattan)
          Apr 15 - meagancoxxx - Hot lil Blonde Spinner (Manhattan)
          Apr 15 - ReneeUSA - Exxxtremely Busty, Curvy BBW (Manhattan)
          Apr 15 - Aubrey Humpburn - I offer unhurried companionship for the discerning lady or gentleman (Manhattan)
          Apr 15 - Olga NYC - True russian GFE experience (New York City)
          Apr 15 - nikki pleasure - worship (New York City)
          Apr 15 - summer - SWEET RELAXATION (Manhattan)
          Apr 15 - Rosalina - YES / SEXY / REAL LATINA GIRL N_E_W in TOWN (New York City)
          Apr 15 - new york luxury - new york luxury escorts (New York City)
          Apr 15 - ClassyNYC - European Chloe A goddess of her own!!!!! (New York City)
          Apr 15 - JadeinNYC - Italian & Caribbean exotic beauty (New York City)
          Apr 15 - Marina - Sweet Evas " Marina " Sexy Russian Companion (New York City)
          Apr 15 - suki - Always Waiting for You, Pretty Oriental Girls (New York City)
          Apr 15 - VIP Katelynn - I'm the perfect match for fun-loving gentlemen Ultimate GFE Package (New York City)
          Apr 15 - Exotique Chloe - Exotique Chloe is back for a limited time...don't miss out (New York City)
          Apr 15 - Olya - Milady Goddess of gratification (Manhattan)
          Apr 15 - JasmineFineGFE - SUPER MODEL! Take a min see an Unbelievable Lady PURE GFE! (Manhattan)
          Apr 15 - sexycandigirl21 - Sexy EBony Treat Here for YOU (New York City)
          Apr 15 - CindyReign - Thickness Your New Found Addiction (New York City)
          Apr 15 - Juniper - Cute, Sweet & Innocent (New York City)
          Apr 15 - jaylyn - ___O_N _E___ ___i_N__ __A___ ___M_i_L_ L_i_O_N___ (New York City)
          Apr 15 - Beautiful - CENTERFOLDS - FAMOUS MODELS - ACTRESSES - PLAYBOY & PENTHOUSE MODELS (Manhattan)
          Apr 15 - Melody BBW - Cute, Curvy English Escort in NYC for Xmas Tour! (Manhattan)
          Apr 15 - Gina Passion - Wall Street Encounters (Manhattan)
          Apr 15 - PAULINA - ***LONG HAIRED SPANISH HOTTIE ALL FOR YOURSELF TO ENJOY WOW*** (New York City)
          Apr 15 - Chella - Chella of Manhatan- Erotic, Sensual Muse (New York City)
          Apr 15 - Sexy Jasmine - Sexy Colombian In New Jeresey!! (New York City)
          Apr 15 - SpicyJordan - This Blonde is Ready to Create and Explore are you Ready!?! (New York City)
          Apr 15 - Nikki Noelle - Sexxxy Playmate (New York City)
          Apr 15 - Joynyc - Sweet Asian Outcall Girl are here for you, (New York City)
          Apr 15 - Julia - Sweet,sexy Eastern European Models (Manhattan)
          Apr 15 - aella angel - VIP Aella Angel , a Brazilian & Mediterranean Beauty (Manhattan)
          Apr 15 - Amelia Angel - An Angel for You (Manhattan)
          Apr 15 - MAGICAL TINA LEE - MAGICAL TINA LEE CONTORESHIONEST (New York City)
          Apr 15 - legendary lady - 2 Ebony Beauties (New York City)
          Apr 15 - NycPeaches - Never Cum Alone (Manhattan)
          Apr 15 - sexy minaj - Fatty On Deck Come Have Some Fun With Me (New York City)
          Apr 15 - CT Asian Escort - Connecticut Elite Asian Girls Escort Outcall Service,Your First Choic (New York City)
          Apr 15 - sexy lexy - bombshell pin up doll (Long Island)
          Apr 15 - Desire This BBW - BBW Escort/Companion/Vixen/Mistress/Goddess (New York City)
          Apr 15 - Lexy91 - /// G*O*R*G *E*O*U*S __ = __ W=*=H=*= I=*=T=*=E=*_ ..B=*E=*A=*U=*T=Y (New York City)
          Apr 15 - CRISTINE - HOT AND SENSUAL LATINA (Manhattan)
          Apr 15 - Asian Escort Outcall - =====New ==*==Sexy ==*==ASIAN ==*==GIRL ==*==Petite ==*== Sweet===== (New York City)
          Apr 15 - lissa-05 - ??? HuGe PeRfeCt TiTs*PeRfEcT KiTtY ??? AmAziNg RoUnD BoOtY (Manhattan)
          Apr 15 - sabrina69 - love to please with my tongue (New York City)
          Apr 15 - dreamgirl - 18 year old Ashley Incredible Girl Friend Experience (New York City)
          Apr 15 - Goddess Kathryne - What you've been missing... (Manhattan)
          Apr 15 - erika21 - Erotic Delhi Escorts (New York City)
          Apr 15 - nude69sexy - The best erotic massage in NYC by Russian beauty (Manhattan)
          Apr 15 - jenniejusright - D ELICI OUS BRUNETTE (New York City)
          Apr 15 - Cindy Vans - Ready To Put a Smile on Your Face! (Manhattan)
          Apr 15 - milan - GORGEOUS, BUSTY, PETITE EBONY MODEL MILAN (Manhattan)
          Apr 15 - ny asian angel escor - NY ASIAN ANGEL ESCORT (New York City)
          Apr 15 - venuspet - Amazing (New York City)
          Apr 15 - Elke Gazelle - Erotic WebCam Sexual Experience in Your Private Space Worldwide (New York City)
          Apr 15 - Flower - YOUR TRAVEL PARTNER (New York City)
          Apr 15 - Evita - Naturally Blonde Beauty (Manhattan)
          Apr 15 - AnaBella - Julia is back in Manhattan (Manhattan)


          Craigslist Adult Alternative Replacement Website
          © 2009-2010 - VerifiedPlaymates.com VP Escort Directory - All rights reserved.


          ]]>
          false
          4159468331805062144 8389632 Content type incorrectly stated http://www.democracyforums.com Information Firm
          In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
        25. Content-Type: image/gif
        26. The response states that it contains a GIF image. However, it actually appears to contain a JPEG image.]]>
          ????Y??)?f.e???q????3@?"`????????[???????R???q(v??T? ??'???f???????=7@????2%?jJ?t?????5I o?Ic??YV????6?i??lx??R?X/??u o??;Lox?~?>?????&?ii?6s?I>???x?.???l ?z?????s?d????Q9Y?S????gr?}$??B?Fq??????'F)%?VA???&?2?4x&I>b;??2[(?o?g??j? ?f??q???w??] ???'C?????&?7??s?W?%???jD????W?i?]???)??q?bdH*z?l?????5 ?R ??|???cXj2X_??Anwn?s[$????L?RH?? ??????q8eV????krh?}:3??7W? ????? ak???t?I?g$?*Xu???lC???mc?J?8E?bN(?|cP?Q5??RsfL?? ?FW ??[w:???????r??e?[G?YO???n}G?V???A?????????k????? k????>????@?#K8?4 v_.?c) ???e??I?i?G??????#?6*g?? ?om??KY?FDW?????2??J.\?IG??????C??t?u~?*??u???????55?t?5??6??;??????2?_E4????(? ?x'????-??'w5?H a%#?\??s???V??)u=w??i??? w??s5?????w{"?q?yh?J???mm?8/Q6H?Z??5?(i?[$PK8????y?0~???w?-??]O?????G?a?|??8????X????R?5??N??T? ??(??"?#E ??@??*?Q7s??]]> false
          416446561942760448 6292992 Robots.txt file http://safebrowsing-cache.google.com Information Certain
          The presence of the robots.txt does not in itself present any kind of security vulnerability. However, it is often used to identify restricted or private areas of a site's contents. The information in the file may therefore help an attacker to map out the site's contents, especially if some of the locations identified are not linked from elsewhere in the site. If the application relies on robots.txt to protect access to these areas, and does not enforce proper access control over them, then this presents a serious vulnerability.]]>
          false
          2781624250548170752 5243648 Cookie scoped to parent domain http://ib.adnxs.com Information Certain
        27. uuid2=2724386019227846218; path=/; expires=Sat, 16-Jul-2011 23:42:38 GMT; domain=.adnxs.com; HttpOnly
        28. uuid2=2724386019227846218; path=/; expires=Sat, 16-Jul-2011 23:42:38 GMT; domain=.adnxs.com; HttpOnly
        29. icu=ChII3I4BEAoYByAHKAcw7vWt7QQQ7vWt7QQYBg..; path=/; expires=Sat, 16-Jul-2011 23:42:38 GMT; domain=.adnxs.com; HttpOnly
        30. acb594186=-@L6DkI/7Z[w[5$%64(.1]W6o?enc=jkKSWb3Dyz8sUrwllJnHPwAAAAAAAPg_LFK8JZSZxz-NQpJZvcPLP0yl_Poh9m1dSsYda6b2ziXueqtNAAAAAMVYAwAdAgAApgEAAAIAAACMSgMAk8AAAAEAAABVU0QAVVNEANgCWgBWHwAATxABAgUCAAUAAAAAOCTs4gAAAAA.&tt_code=1626909&udj=uf%28%27a%27%2C+6376%2C+1303083772%29%3Buf%28%27c%27%2C+51148%2C+1303083772%29%3Buf%28%27r%27%2C+215692%2C+1303083772%29%3B&cnd=!rBialgjMjwMQjJUNGAAgk4EDKAAx6fncDLvDyz9CEwgAEAAYACABKP7__________wFCCwi2VBAAGAAgAigBSAFQAFjWPmAAaKYD; path=/; expires=Mon, 18-Apr-2011 23:42:38 GMT; domain=.adnxs.com; HttpOnly
        31. uuid2=2724386019227846218; path=/; expires=Sat, 16-Jul-2011 23:42:38 GMT; domain=.adnxs.com; HttpOnly
        32. anj=Kfu=8fG5EfCxrx)0s]#%2L_'x%SEV/hnKD-GW_55dWhK/!!svq; path=/; expires=Sat, 16-Jul-2011 23:42:38 GMT; domain=.adnxs.com; HttpOnly
        33. The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
          ');]]> false
          7140575382014799872 5243904 Cross-domain Referer leakage http://googleads.g.doubleclick.net Information Certain
          If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

          You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

          Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

          Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
        34. http://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-9643032735294668&output=html&h=90&slotname=1105967903&w=728&lmt=1303090830&flash=10.2.154&url=http%3A%2F%2Fwww.thatshiphop.com%2Fnews.php%3F%2527--%253E%253C%2Fstyle%253E%253C%2Fscript%253E%253Cscript%253Ealert(0x00003E)%253C%2Fscript%253E&dt=1303072830398&shv=r20110406&jsv=r20110412&saldr=1&prev_slotnames=1105967903%2C2809290749&correlator=1303072830099&frm=0&adk=1974906927&ga_vid=2104918749.1303072830&ga_sid=1303072830&ga_hid=189131405&ga_fc=0&u_tz=-300&u_his=1&u_java=1&u_h=1200&u_w=1920&u_ah=1156&u_aw=1920&u_cd=16&u_nplug=9&u_nmime=44&biw=1063&bih=1016&eid=33895130&fu=0&ifi=3&dtd=6&xpc=EeFPYIJmkJ&p=http%3A//www.thatshiphop.com
        35. The response contains the following links to other domains:
          • http://pagead2.googlesyndication.com/pagead/abglogo/abg-en-100c-ffffff.png
          • http://pagead2.googlesyndication.com/pagead/images/i.png
          • http://pagead2.googlesyndication.com/pagead/js/abg.js
          • http://pagead2.googlesyndication.com/pagead/js/graphics.js
          • http://www.google.com/url?ct=abg&q=https://www.google.com/adsense/support/bin/request.py%3Fcontact%3Dabg_afc%26url%3Dhttp://www.thatshiphop.com/news.php%253F%2527--%25253E%25253C/style%25253E%25253C/script%25253E%25253Cscript%25253Ealert(0x00003E)%25253C/script%25253E%26hl%3Den%26client%3Dca-pub-9643032735294668%26adU%3Dwww.Netflix.com%26adT%3DImageAd%26gl%3DUS&usg=AFQjCNFnY6mYxO-gEFvt6xlFQFewc-sXPg
          ]]>
          (i)
          Ads by Google
          ]]>
          false
          4938939494634874880 6291968 Email addresses disclosed http://refer.ccbill.com Information Certain
          However, email addresses of developers and other individuals (whether appearing on-screen or hidden within page source) may disclose information that is useful to an attacker; for example, they may represent usernames that can be used at the application's login, and they may be used in social engineering attacks against the organisation's personnel. Unnecessary or excessive disclosure of email addresses may also lead to an increase in the volume of spam email received.]]>
        36. clientsupport@ccbill.com
        37. ]]>
          Error on refer.ccbill.com

          There seems to be an error in processing your request. The information below will help in determining the cause of the error. If you are sure you have done everything correctly and this error persists, please contact clientsupport@ccbill.com for further assistance.

          Invalid clientAccnum (PartnerId=-1)

          ]]>
          false
          1194352090882270208 5244416 Cookie without HttpOnly flag set http://img139.imageshack.us Information Certain
          You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
        38. is_uuid=4d59c25b35894a13ac5a03167e1ecf77; expires=Thu, 31-Dec-37 23:55:55 GMT; domain=.imageshack.us; path=/
        39. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
          ? J8?9I?$xM??{<f??H?o????? ?m??,$?Y?.W??}??? [iW|4??f????eWR????J??????&?;???Wq?????????\???G??????Hp?????}he{kY???p?=~???????N???7 ?j?????????Q????n?????}????????O??n?Ql??~??rW=s?Y??k??3????NN 9??TO??(???|=??|???????1d?o???Z?<+3c5.?:????;)?%E??x??v???t????????1?????????? f%??7??k?n?jS ?Z??]%???s?????M?< ??]???rH???X?l??zq????????5K?#?6U??i;??U?=8z?]??a????xu????",???>S?????\?!????????:??g?U[?????4tT$'9??V????????m?~??I??_]??C=??Lgk?S?w$???&???m?d??c??? ??c?b?[E?????rm< ?Cj?iC??s?E??-??xE????$?+7??Z???5?K?l???m??????gdb`\??7?5?xgY??=as?]?1????%_??'?OZ?5??|5?Of>?E?,????x???#??????????9?c???$v$??X?$?J??5?+ (???8??`??|7s?2?1M?6???Eoo?=v?/?-5?P7??a????Mi??MYC,?o? ??Z??????ksxK????S#????|z????i??{???+?Xs?Z??ll!?%????U9n???cX????\?ool8??s$#?????|9c ?7z???A4{??!??}???^??./m?????K??mK1??mq???????PH???&? ?xX??????_4?^?eIa????h?g}2?I?t????' ??8????a???Z??????[?n?W????H?-??Z?????[?O?t?an?2?\?+? ????5??+??2?G?x"???6?V??????c?Q????)~'??{\???y<?=???????2??mp??,w??P???=E6??:???qc'????x?d??6?OA?OZ?C?>?%?5I]2??????????^?W?k+}??s??xWz<?z?????s?jV?? ??C??w?^_???????cOXYIer?P??8?[??????^z????u6??????@??????rQ?^?r??f??????w??z?Y?f? Wri?mr??cs?('? h\Y???Z? ??2?M??~=????Q??<_??G??dq ??? ??]?u?6+F????G:???*???Z????M?Y???R???????*???wr{??)????? W?2?kz??*?t?|???LWh/?e??f??QG???*F;??W???[?T???;?I?@{??Tq?Y?R?S?F,???W?u?t?-?k!???*bb??{?I}???]:?)?X?X????x ?+????|T?I,????Z?9 ????@?[Q???l?? ????=?9Q??]'?2v?????]j?I#?t?M?RT??@?X7q??Z?^?MlR???????;0?;?!u?Px?I???????nZBw!?V???|GAm??8?B?]?*??k,."R???(??Vq=N??X????>? ?yb#???X???.?????R%?r?_?W????y????Io+?K+A"?W?HL?9??|~?>*???B???v??fe?F??85?.*_?mQi?j?v??o?+X?-?????~?d??m(???M|??}????)n/-????h??m?O???X?7?O??fOX?=????vf=?y?~????[;?J????r???O?}&??????7J ???|1?????g,?g7???9??'?WK??kT???%?u?Ky h?? ???nGN ?????n??"V)nU??U?|~??y?K\???7?????L(??????8?f?A?y?????O??}&??[??V?????R??????????????,^?0?#?{??G?8??????'_????R_x?Q?jj??[??l?????B?z?:eFV?2.?_G??la????V=?R>?q??ug????i?$q?? ?@9???bn?i??|x?to???P? ??'???1c?U?.tN?????-???????????????w6?????1+?i"? ??~?~?????[o?&????a?R??3???????5??usiu?F????h@VG?z?]?k???Q?E???=?S?^e?V??XN?????#???5??xo?v?/?.,5D?l??/d|B???X^???Y?.?v,^kgQtS?4.G??a?x?\kk?)???BR3?,?No^???5gS???? t????R??5=B?8e??v??ko??l?????g?:????O ??Yl??(Tf\g?w??j??B\??`?E???>????/????Y[o?"2pc?q?????????????ZL4???o4Sp????z ~?/?~???Gc??]?Syd??p?Z?o>?)?,??7?4?{`??_%U@?rzV[??gb=?5-ac?KX???Y.??2??"I??#"??]??zp=?I?k??:???? `?? ?$????`??1??@??? ? ,|=???????????K0?;??T??0???????FT?????<%??;[?4?.u?{?[(??`??[f?+` ????|W?D?w??i?\q???w?????s????O???~?7:'?>9?o?k?[=0??=??r[??aO?????g??? ?G??j???4????I3B?;?Or?Y^????????p??'*{????Q?{w??&?g?gI4?r?#?v?8???iQx?L???k? Q?y?N??' ??e?n?CK??e????????K ??\?(J?D3???W??k???????A:??????????%f????k????i?T?=???????=u?f???4?n????.Q?dy????s?}+???|?x?[]v??,??q ??d!?ps????^???]?????? }OG??M2???P??O????+?>#???V?{b!?????M???;?6?W=*????'cF?"?8?w>?????V ?h??b?????!?????f?ox???9?4??<'d?{f??_.X ??`?x??????}?x?zk?o@?????? [F:????d?????7?????#?W???q ??Xp} ?&?~IIF[????Kc+W???u ?j?%??!?HX??:v?/|E???/????????[G? 8?6I????T?Y???qC6???zy??S0D-??~k???W??]?e??????w gi?=y?P??????Q?l?p?ko_[\?D6r????+?????J??xF??Wp?1j?i????pTw>?O?/???h(?#?n?;?;?K)?i???a?/???Q"??P????+??d<????\n j0????:?????W??? ?????+?w?;?|???????w????3(??2I??a?zN?F???x????{?>K?oF"Xv???[? &,@Q?U??W?7??? i?C??p?Hx?J??i??[??U?{??a?2?9?????c???Q?????@_ ?E@$h???c?P?x?????c=??.$Y???N??=?k?s? >x.UOh?V????>?????Bk??????v?LZw?"U???????R?????6????> ?W??[[??$X??&????+??u ?f}N;i? ?6bf?h??????C???{???+F????M?d%&?? s?+?k?_??????z??"??*?P)?????p: ?0????????????r?x?????y-???98&3?????G??V??;??lI6/??????????F???v??RH?(?i??|??O?????IM????8?1}H4??i?i?#?7 ?\???;???????????Co?4??? P??$g5P?C???G,@???@:??????:??7VR????c??????#Sh???J??9??M[??E)@?????@?#l??????,?Mw;?:o????w#i???bF?3????2r:??U??>???????X???|@?-?5P?c?V~t?O???????i{??>??????|J???r?5e?????f?/?l??O???????L?F??????6???J???????R????WD??yi??{}?@?? ?????n?g??H.5M*1???|??n]r:?\p??M?4??ui??????????????e;Vk??u?????z??5??t??+?IV@??v?L????d??:bH"??A.?~??V????5?OY????j???l???u'SE??RT???+???K???{?:?312.? 8 ???k?_?:TW?~ ??_n?{????1?"I???_w?/"??_???F??q8??5???k{??:?T???7#??????S|????%]??1?x?Y?wt&?5o?i?\J?d?7]?GS????????W?+?!d?Q/c???\?^?\t??Q?[ ?^{?.???????q????????'?? ?v??Sv?4k( ?=:?5i???L??I?????+?o?|>??? K?????x??c=T??z?c@?5GU??Q?>r??Me??6O_j??jE?~?~2?? c? ?9???k??}OX???L????7?Q?pq?TJm?J?^????h?X?d????x????lcC??2??dc85?y?H?L??W?$???WO??9??k?;?z???x???z?,?g?"????????t????&??e?$U ??dn??w?H?1?????? ???M?L?>???|1?X???2??"U?????sX?????????sh ?8 ??$????v?zU?|R???skke???4??9?r??????I??x??)?u??3?x???_?????3xm? >?N???~K|K?-????=G?????????]???d^?????(??c??;6M?#'$|???8?7?|?k+???|>?????????i?5??#$Og?2N ??v????????[????? k?.????J?x?O?h? 7?4{[w?;????{?Y# ???????#???}?VOZGq{m??)m??>??: ?qSMZ*??c??G?0i\??xsW?/?????.?.c? ???B?G_A]????9??|/????[^?l?^F??? ??sT?1jz?V^&??????V??L?e?H? a???K?;??f??I?!???( ????c;?8&?NRM??c]???#?_?{R?G?|u?:?z???X???x??[?-S???}.m?O??`S??Ny??I?????:??? XC'?w6????x-?p;I?('<{q^#?k?]?P??R)-???yK?C?q?^^6?????d??sMB???.??_x9? ?C?k?8??}?????~?a?u}2?9u?V????b??7??k;?4????????????????IT ???Gk???go?N??X:???$?A?*?????5?J?%?yic?????N???R????~??i???%??!?2 ?wFG??^????????4?]???A ????????F????tgJ.??}???????4?#????k\??FNv?{???g?a???p7 ?????+?.???????q?\? )GB??0G??<*???G?9??-??????|/???g?????`????c??????[? Eg??C?N?BK???s???_>Z?$??uo?o`?5??0?????#?5??8?;??d#**R?????>"?=?xc?u?-???%C'??}??'??z/?????F?&?"?/?:???????x?M[^??Y????$B;i???<)?]7^??iR?"?5?yj?????w?UU????????W.^??????d??i??ki[????Lp?-????&?o??$[?"?-??Q%!??~????O???e)?eIy?????RuRrc_??][???B?qd?0I?*ps[?o??]????????9?\o???$Q!?Yf9?;??}f??x???0?_"e?9w?k2Xo?????F??Y7?F?Z?l%??? ?+??" ?H=??h?S??}???r??pn7?ED?(?Rw??9?pk?|W??%????s?[{A???/?f???6?PN?P&?=??s?}k????6???????=B??U??^?4VN.Moc??U?i??)$?GEW???D???8Q?(?T????B-eR??I??%????? ?? [?????`???h?s?/^i?m?=^1m)xT??*0pq^????? W????mw?x?0????? w_??P???u?<#?m:??*?I|????@???A???L?],?_????K6?n??8???u???j?MR?i????X0?P?%????G??^?^ %?)XU?'\z?v???.?-3?L?d?Ha?F?c?~2?/h`???kI?QA??~??3?uk?O?/????i? ~???????P?,a?_??;??^a???O?????Q??!1Y??v??7>??????|e???[y?j?{??6Lg??RI5?|?j?x??{??o???Zxv]Yc????L;}?3?W??????????'K??63i,r ?(????}?,;?}??\{WU???'?????V?M???????u??b?U?Z+VS?????????}?;?G?|8b"?G3??Q??n?8?s\??_?V? ????B???fa?????|$]s?z?+ 8?n4??9h?BO^3??c??I?$?v(?5?B?-8sg???u?????2????{???LK;???oD?Ra?L ?????'???xO?????? &?&?&? Wa? ?k?u--O2????*??|??rx????y?V?L???{bKI!?pO?+????1?1?&6vJ??E???|`p; s_"x?? K??V?Km E????? .????Z?w^?????f?\?5??k]?be??r"?E????%?n??*?R???4?;+??wm?5]bV7?????O!?n????????mL????6g+??|???9? V??I?? e?h7Z2?????W~?eC?????Y????c??d???7@BG!?uI?}???i+Oc??V??4|;???|M?? c??Z?A???\?8??o?n?????L? 7?%?GO>?m ?tyC?~u???GJ'??????_???t??????Y?,|????W?? ?q???^YL??"?ty\mH? ?:??O???9e+M,??Ie?A*=0r3?X?]???c??????CG?x?Q????????Z??gK?_~????a?HMy??,????8???ia\]ouZ????;Q?c?O?)??6???????$???A! ?s??x'?? _????O?yO??????h?^??8)?/ ???8K??????{~u??O?>?@???????)??C(?X??y??X???v>z???$???l_??.???xn???J,??hLW ????? 7? ?????;?J?C???x"??????{w???D????????????o????G??_?????W?|l??5??{??f?6*?NI>??f?:???O "??????c/?/???*???r??E?S??X? ?3H???G??6?Mqc%>^X???0????ww???|>?!?^I? ??#?^1?_u~??t ?/?h??????????~|x???????????DWQ|?????}??!?l??tm?C}?C??s???N^?)?????~???>)?g?????q??$??x??zW???Q=(k?|.??b???#?u???? ???5??Z????6,??9?? g?^?c?Z?e?M??V??[-6?$?????????n?U??????K4??D.r}?P??!????+??a????\w??ZMF(????y$?y?UU?N?c?}:?U?%8?M??UIt?U??? ?~?k??E?$e????????[?M3?o?mR2?u9?pJ?????:iQ|??b??%[ .?w??@??_?Z??z??5Mfx?%?????C1=*"?m?????Y?C???????b?????s???}?????T???? *9>???-\X??[?\??fe%?;g<??|?3?????q?5????1???V??(??I?s??$? ?Vi????a???L?????[?a2? ?????G??/+? ?0?j??Jd?\????Ib ?1???????????BD}??=???;???????{R?5?????DR0 3?b??E??N?;??k{??O?7 ?T??>?????????#?????.?{?? ???Ae?V?bI?x?CF9+?????=?iT??V???-?[]"?,Ot^,?;???????4???m&?????&H6?????????a?0\??4?9'9CZ???????>?l ????r??I?pI??{?????5? ?A?L?Z??????/?e?\??K??U?Q??A??_=jw:fZ?M>M=I2 ?`?O?????:?K??{?~%?8????????ym??xFj?O??w?g??+??%?]~?6'??'???~???]f^???;U?m:???M????????'???r?X?o?5??Qw<`q??????> ?(???????5?"?? ???? ???%?n?U?s?0?I???3??]?:v?u?]?o~T?? t????%??jH?7?**drx?????7?w[?e?L?1?^?Y?"?'k??\W???9?*?????|??:??w?U???B>Mi^6??? ? oUb^??^mG?W??^KU??;??'E???C????n??C????J???m????j_??j??Ym???Q?C?k?_?'z;|?Q??Bq???|a?V????m;V???[9>Q?d??{?Sm??o?Tcz?C.?1?j????????H?.m???S??O5???AB%???D?e]0????c??:???7???m????7sD[SSn?X?J???~?O?????uln,4?$? e+?;/?b??=????kY4g???bJ???Y?MS?G?-w?ze???W,7j?[ga?@?x?s7?&??^???\[?j???3G?d????_?????i?=??q?Z?Dw???"$c#?=s?x*??????-|???-??.^em? ????W?9'?90??b?'????? k? ?Ug???o J??G9?l???????s?x?V??qj??f1ga?????K??????jx7??n????/O????"???v#????B??????g???is?X??-2??v~? t????k?b??Y??.??~?/??????X???L???5`?Y????y????I??/#???6? |?/????c^g?[?KX????U???7???^???dlm_p?^?? ??_?\?l???5?d???s]4??JL??`eG?????(???k? f?@?L????q?@5?????O???y???NR?c2H?z)?NJ?c? 5??j? 12?G?#.?P0??Z?+??g??i??? ??L6?????g?>??k?rP?j??\/??v>???;J???M???????0]E(?1?&;g??|#?/?W?~.?????tW???????0?`{m?8?~???|????j?????%??f5??}3??????o~?? #xvI;'?l????=?????k?v????Z??????T??YfU$0'???PY~?^+?n???|_?W4?J????{????q??*?V[?K???=+??`?z??d?B?eB?^?zn????e?au4???#*:m?q?????Sk??;???(???)?$:??_?|I?S??????E?'??H#X???? ?????A:??#???{W???????=c???z??A`???<?L???gh? ???>????3?(:???>?????um_??kz????WS??????=?wW????)ndM??Q????K?$?b???`?F?os???o ?L??J??0??GcO???h?nJ^???"D???q?????b9?H?~t????qU?????O4lJ??k??? t?+???&?}???}F8,?$Ha3#/&???????c?0]?+t-?YI??????'???`??yA? Hl???^??[\???????"x?y?q%?ya??q\x??(7?XU?M.?.4???4?|???g9?Eh??w?B?????????k?F~?]???j?\hRi?^J??=??A?????????m.a?MhS+'??B3Z?i?????N?=??m?? Ac?kN???^)??.?? ??hN???@?=Mt??????????#?.?u??i ??'?q??z??1???g?x?????Omlax?6 s?z?????5????Q@?4 !??t??]M????i???]??L???hd?l??d?'?h?? o?;?5?jZt2\j7C Prq??APA?%9?(??i?r???x;????q$?????????<(9???/???????l?V?+?_.&$??????????E?j??(??h??Ve7?[?>??????? G?>?|??%?E?/???r?1L? ?:?????\J?b???%V????~'????/?? g?7?72E?Y!dV8?IU??|{?????n?? ???b_?0????z???5 =7Tw?????p4??????? ???> ??M????n?.??2S3I4?!QGR?h???? ?7???y|U?3?z?????W???1 ????V?????u{? ?M????????s??zH????u (?f??1?\???????\???f?? W[???]Q??^9?=?1I7(?(?j?B6????kI??Z?Q???.?,?????eh~?5su|?F+?#??4??/z2u??^ijp? o?k?????b???@G????? ?YiV???????v?)#????V????G???%???.???I?9!}?ma???du?:5j>n]C?PoV\?_??? ,??N?kccn???O??>??x?_?|M??5}e?????W??&???1]v?as???u}i{?r??f?AkGq?W 9??V????k?e??v???W? aiz?h?d?=?? c????'???;)?????q?jo}Z]?3D?E?1????A6??Z?????? n????H?'???I?5?l?? ???????10*???~??(S??-?r=?-??Y???W?u?9n?6?m:?Z???8?G?Q???{U???"??A?m5?J9|9x?n????1#?9??=;?????^???\K?\9?8P?????tw ?W???u??c,?m??vD???Q??2x???4?-?1??rM??X,dH???e?]??c???8l???4?????a?C?v?Ya?8 ?@??d?xr ??J?|>?F?uo?$?hkW?0$?&i7m??>P?%???rU?"??=Q?qT?l??l??q???_^[???Hm????e???~???t)nO?.?]?Xgm?????????{?[?v?z2????}MB8\??,1X?'^;?????4;=POmcsj? ??I+7???yl???+?^lhc!w8^???J???5??s?g?k??[??{?v???????????a=??v?^j).o5 ??O?=0Nq???t?2o x?Hf????S?? ??2??V?????+?????SP? ???????$E?V?y?|#???!h?4*??i?ik?V?;?O ???I??Z=??????l?????????| y??+_???-|?_??$???Ly?a????W???qcz?]?yR??0??gko?t?WQ?????????ife?????i??p[??"?}El??,AX7(?AL??O?????`? y?Y???fX}H???k?????..?)*`??9l P?c?a?>g??gO?\;Z?{qe >$8N????J???|? n?y??9?6?????M{?J9^kx~g??L\???????? ??O???l????/?O#?}@?? Et?r?-l-????Qv8x? g???????i:YK??:????b?w2?}??51X??F# ????j;???t_x?{{???I?*$x@?)|?s?????>"?CJ??M?>??? ?8b????d??????????.d?e?O1Hh???Q????5?VQ?l-?]>?;?%??iXK?y?9?9???rS?.?j1?E?? ?????&_#??s??3<@pN9?j????-???$t?7??q???9???5c{uq??mceo??Kms TA(?j ??pz?? 6?qb??Z?l???!?9???R???#????-??4r*???{y?????Y?????:?5??????????Qh? ?4????lui???,??tE$?n?j???u /??="?L?$R???Do?N??7?e?uq?????r_B?????zC\?|Eq,??k ???????:|bY????Cup?????????OJ?MB{?h?????3{???????Wy#k????<+???4[?H?%?$0??Nd?w)?????????E4??????+Y?ak^???ay|A?j ?P ?????p=P????*?K??>?f???H??s3o8'?*5????/???Q?I&?$?E??F??????G@+6??wp&?%??-c???????I.????3?????_]?u??a[ I?,??'?w??jcF?I'2e ?????Xt??u?[Hc?xF??S??:b????k?{MrX"??]??*????'#???x?,?4?S??1??d6?, ??~\????5-.????|s??#???s???[S??E??g?????????016K?z2???*Z?6?'(?{????0????j??V?I`?8??????????_J?????U??>?b?u?s^?????R?}???_?p?jMj&h??bV?"T??8?S?/??? ]??u??w??jV? ?????`H?Xl~5???????????~\.6,????.?0????????y?sX?sKC?????=?C??????E????+?#1???????p??+?????#??G??ht+e?????F ??(?:????? ??T??^[????j ;;{?????ks?{??I?|?'R1X8TOFLi?wij{.???Y0nx~?Xm)???$???#J ? ???NI???????k?d?wrir?.m$\?u?0b\??)??M;?????k??e??????9??./m?u)???N?+[??????8$uk4?^?4?4???????N??????D?????? ?? ??????S??????.?????????s?e??x??T????ue*#I????BBH>??5??Z#????n_M?A?3????r?k?"?J??????G??WK???+?l????l?+n??? ?I????????2^Cqda??o??x?6f$8?f&?{X????g?[+??????????????!????<;??\C??.??>??9???(?O Ms???|k?5- ?4?d3??w/????_??c?'8??v??????g??a?q?e#? ??{?sbR???P]O??Wo?-GQ??K??'?.b?S??-,?,??E?p??$?^???/t?y?+v???????9J??rwpEp ?6 ?G??????+ r??N1Z??I?h?k?_M=?R????mYS??+????t?4???Y????k?\xv(??q$!n fY;6V,2C.y???I????%s?$??&O:)Z??x?P:0??^c??????R?F???h~??|y1?"??}?W/|aegk???m?4??gq?'t??????w????N6h???n?Q?h?PG?4?Sf????L??2?tC????msT7??o?M?E??????\( ????:??u?~[????_?a??KG[??????i??K} [????_???B}*????????a?f???B???x????Gn??? NsRoTuzO???M]?N?D???2In!|??nw???a???, ???%?????F??????$@???????+h~??=???At%D??????$??j?{?5??|=?Z??k8/$??n?B???P???Y???{PYH*!m? 3???*??R???????i5@??n??`7 ??Z???N O*???Y??[?C@?K???l?K?k????n???MO?C}x?{??s?? ?????x??(??????u?]k????? %\??%?1?L}?T"????????J?g?;M??9T?W? ??sr;\??????;??T?$??????-eK{Y"K?Y??Q''q?????H?\\ZOm%??????n????`>s??Y?}????j?????e-?h0???|??v??`kF???l??mx??b%??0?`|?F89??R???Y???(-m??{?Z???Zlz?XFW2???????)?(nW????+?n?kKmZ?e???4Xi2JH?u?1??YZ??Z?????Kqp?*??F?????????O???t?????? Y?9???+?8?J?n??]E?k:??$z?????????Q[yn?T? ??-?H ???=v???Cm-???i?????P?fb?D???R??>?????n??????-?B"???L? p?#?U?T?]?^???7?J?2m)??_A[?k?m?`?4QH?54????5W???5+Qm}x?N????aF6????????h???????ik$??RE"}??G-??0nA???W:u?h?????wH???????t???-?H?pb?E?`Wi????J?X?\%d?tir??$??V(????2g$(? ?????$ `?K?C?s?2?????????n??$C!7?'??h??{W6>??(?bUG?;?[2@?LC??????????5???$=???H?#?R?|??????|V?\ ?????&?{??l??y??$W???????]?i??????px????~????????^??????,???_\?g????k?5M+?o?dd??N/?A?7R?^@+ ?'D????=????'8 -??????w?1??W????X?n?K\??_????????}??]??}85??c????2???????????\?e??Y????r??????R????O? s???5?2??d??n?"~?8??E?S??c OIh{E??? x??{u?A?#C??????p????5?xg? ?qe?_????Cs???$?|g?? ??C?????B?f??K?G??t??????????????y?????.+T??{v??{???|6????>>h?f?Y |????G?????/???h??}2ON+???[FUK?????Z?????G??s?Q\?[????????????g{{????|c???QU^[3+(?????????bh?)?c?G??^#b!,??~???F????fV?1?>?? IG?9?????U|N???e??? ?}??jF????7?(??k???n????W?5.?2?C?_)?q%?l,$f?s?W?>0x???????????H'?e\?d???7Q?p???q??Ocx?=???3j?\\?8H?299??KP?? ???[?K?+r?????M?oO??vv???~????L?<`???b?_??-3F???i?~?k?X???e??C/???T?{5vz?3?~??????6???'??b??????'???4?n&?????r?.FR??Z ??am{pmcP?WV?j??g?rzv?Y?~ ?D??? i???2ha???k??5????J??S??????M*[??j????Y???????????????>/i????????cb\1?h???b??%r*?N??Qv? ?? nTu? KC???[????N??^e??ih?30'??Q^???_W??u?o??????????p????M??!?_ ??n???b?>xVC?XX?? ?"?????%A??]????p??????+??<'x?%7?'?uvI6??En??x??\s^???#???Mo??B?n?1????<?+?????{???f??WC???/c??:?6I]WNSj?????]\=>x????????$?j?A?ksL?????3?G??i????-w??I?D????>?I??U=???/??y????~m????>??/>"O?Pj? ? ?lE?s????<)N?y?[?n7?Q???O??????"? ?h??a?.UP=????*x?MX??u??F??Ee?H??z~??O7?5x4; ? ??w?]&?????{7'??/?????????d?L?4E????????y?%???72_&n????g?x7?.?6??F?? &;e?]?K??x?w??? ????????A?Tq??Eg`W?A?yO?o?k??^????ZAx?X)o?2?[??n??C?E??j?'?u??/af??>????X?,C?"???0?????????9?_-!??R&????=??)~"?E+?]??&?,?????'???ry???#?Q?C????-?????o9J?.???A??y????0??7??C5????z????C???{,???'*?/??=?K:?~U???>?E??] ?s f?z??x B????? G?????i?m??|????????|???^????????U??M$i?b*p?? ???R??j??????8?s??Uv}???i?N&i-|)??f#??N?U?G???-?t{@??&?F??]?;???gq???5?8m?Db????=?| ??]?????K?] ?Y?re??*??L??oe j??If1??*Uy??~???!SY??(???????'????=?k????+?????hj:U?????^??[???HC??W???*T??HX?k??T??|?? ?.iC??0?????? ???????a???? K?e??q?%(1???x;9??;???]??!?v??){el?6*`8$+??\??IchZ???(p:?_d?~???*d??<`W???~???1?????Ny?; ???h?#??l?v???^??Mn??])?d?KR3?-]??w?k??hbx??3??+?5_??O??E*D??+??7???????h??j4????P?5*?? ??T?????????V?bH?7?#h??g??????i??6????U?rH???~?ii?x??X?H???5???G?S???"X?[?:n?g|???c^?Y??]?F?8h?<~Z?a????? t???#xb?2?Q?1?w????;X?s?G?N?l!k???Oj??? o???(?0\??|?????]C?????i2??(lU?n? 3?:???????;:q|?EJ?Rjr??r??b???y:?????n??w?gM??NGnk????x??q\??J?-??????????????7?*I1L?^3?????/M??`Kk+x????Y?0?????"1?????*2???j?0?????x???S?R#??` ?j?k?!7z???????c?:?c??????)?A.?????4?+???s?????]jk1???b3???c+T?7??>G?????wG?????W:??????)}R??2 ???????6??h?e??g?4???eR???????????r????N?Oh?ZJGL?W?????rx?[??????;??0??cO??ak?/?????n?{ ??????[?#???go'???O?5???I??0V9??OJ???P???O5?3? ??F|?jN1????^??+k???H?e???d???? ?h?(=?4???V??Z???P??E??iZ??u??Q?k??VS????"????????E<+?i_m{????E?????|?'R?_?A??? M:????d??5?5?6?u/??"?twtho?(o\9?Z?~?x?W?Q???L???K?d ??d~?3??W??-?i??4;???V? ?$AP?????? ?Z| ?????c?Z]]?i-~Yc???Z??+}^S???)V????????g?x:+?)t?mR?as(I? ?$?#??U?/??????>T????v k?|{??;??? Z???????B] 1H}r?"??]??u???+???ZL?p?k??1`??t???}???V.?U4?c????s??7?m{??)??6L???Z6????e?i?F?????f??R???F<FG?^_k????O?1?fM=??I_Uk?ur??.Of=?o?^?{????x?.?{2=??S?3????? ??s{xl???V???R??X?/????-$???\]??????j?Cwr?6?GlS??>p??z??j???0??u? ???????Y>w\uU=H??W?h?~%???Z???????7b????w?zx??r?Qk{?n??: ??#c?|;??k?????????@#?My??4? izf????z?Y]=????????`GN???9???<+ ?Z??Sj7FVD??????~???V:?????6pJKY'g???=k???q????)????{??a??QP??????y???u{???5?c?c?)?zW??[?7:?e?Z?h????? ?????????g????? ?;}5????*??N???????????7?U??Ki??/???I1????<>????????$?|????e???|?r?~? ????+?N?<=?????gZ?z??Ma??H?7HPar>P9?{??=.|v??J?r]??L ??^f?&# ??P???k????????|?g???>X??a_????z?????,?xm???*??s?v??Ej??????!@\??~?W??????g?C?9i??%???????`??I=i??????bI ?_??wP??ke????NF??????M??Y??c??YK4[???m?@???????[???{e`????B???2???9??UN"???Xy?:T??]????,?3?5????B?|f?1???]u???????Q????V0??"?=0Z??W?d:? ???W:????;?????,88?\???]i?????<???o=?gk??????R???'f??`e??????t_ ?Z???]????????E???? kk?U?i????Ql?????????? ??e?????Kd???H?h?$?6 &??jO?_ ?/??^h????z??m&?y??x??WB?*K?JQ?c???CH$?yl?*:Z??X?'??eyn%$????+?|?n?D??9??>0??2J??ks?,??????R?| ??-??o???&??# Qz?}????? ?J?L0Xi?Cm?V#$?.?wf&???>h?-?Zj??h?????e?S????k?P???j??9oS;???????'???N?Q??.n?L@?w??R?2??O4o 4~keN: ?MN?E???o.??>?[?m??`????*Ms?l?????5??.?k?????w^??3?k?????'R?od???VJ?Ij????0_A????FN???V?????????i ????????xkR?~*X?x9b?[H?? F4-?P? ???k??2?.?<9?Cjz???W?}&?y??&x?0??6??Gw?9?/??l?E?O?/6KI$8Rq^;sd??e?? >???Q?W??????????Z6[s?c?x?[IRj??ME??/r?x;[?L????????z?????u???q??!?? ??w??Px???????|P??5?Qe????@???X8RW?dj??hZ\?????B???V??F5+??t{GNn]?w????_? ???x?/???KX??v???@Z???5???zT??U?e ??d??G??|I?m?i??|&?-?h???p??e???pQ??"?.????? v?Z???xS?f?P?x??#Bt?f ???kF-??A????$?2o?&???L?????t|?=9??*?V????'v???????o[j???)??{?????Em.?f??E???? #?n???oE??????T?*??G??????~`z?:A?+E????M????]???0|-???????[???G????|??? ?I??\??????_?[*?b? } Q????????Q_ ??O????????j???[?w? ??dr_T~ i|k$?M?????'?y?=I??^?7w????????4??.???[???$s{??|z?B?yTO?U???o_X??I???????]O??N??M_?x?K? ?r?????c?Etz??S??|????:?k???5J1??=?_~k??????dFb???c???\??_????.??? ~?v~*??5[7???Y^E????{_Y|3?_a??C??O?I???c?'S?^#?&x?{??9?n??|9-B3??}0? =?D?j???5??aisI??&6rv?C?????=-t?? 2???R{dW??/?>?e #???????c???G#m1Nd'???????T??Hg?/???????8:3?*???oS?J?Zx?R?1n?=?A7?_??%???P>l?A????W?????f? ??T????l?????/?)??@J???????]????~K?^?7?s?uKT???i#e?x?????[?Y|1q???")]?u????WO??fF????????&??^.???7VhU???c???? ??D????ED=???3???N??q9???U??k????f???!????^???v9?$#??&?|#??w???"??W3A%??h???1?l?KO/??g????S??=W???]??8:????????c?0?I^????J???R~????~k???% ?? ??n?OgO??k?-?E??f+???t??H?|s??O?G? ???pA????0?*C?W?F???Q?S????cO>???.]???diz???,Fj?????+??Ciq??mU??T?"??^:WU? m8??o|S?>???~?\???`???k?Z?????Q?-????|??f ?~???A??S????A???@iV??Qt???? ?U??,????7????Mg??D??=?o??????G?o??&????H??????f;{?b?Nr?(?????SI???;(???k?iV~?MP???*??????????.h???{W???5?r????G???? (???}+G??T2???;?;RKT??????{???i?x'J??R?_\??p?}? ???g?|??c??Mm?%??????V9??3????W?!?????? L?mV?R?!????^?aYQ??S]?+ K?}????~%]????j?i?X?0fkpQQgS????\???s3?????9??W?W,?d? /u8u?MN?K?E???,???,??<`?-?Yx{W?G???o?[?PGt??.???_?O:???w?C??W ?S?3|7???9??d???????A?X ?v?s??]7??.?Ew5?@?.?Z??????s\??T-???r?}???PU$????S??(?e?kF???z??]Ao1*??U??>???cN????d?v?????S?G?a??Y[??M??????F ???q^E?;?j????mCX?F????.9?`??=@???*????M??OkF?%???{?_?>?S??E??}??[?,7?^?gn???E{?????|2?sp?-w?K??:l$n??Z??f???[??D????+??Te??????0???L? h2??=s^;???????4?B>W?#8?W?;????n?O?v??T??????My????\?Vw|??+?1????;u]b????^???N-!??W?????`r?????u?]q?-Ji5%???? ?2?rp3??O???? ?????7?????e??S??]??|i??????????g???V#??????Oa?D?????)???F???Tg.h?????o$I/-!??Ov?????????Q??}??6?? ?~|???T?iS?????zW?x?V??-?b?Y5?:?`?ovl?9p@U? f??j?"?]?=(??3?????????z??S???.J?go?_??|F?B?,???+-@?????<???Zz??WO??MK?;??\Mm$h'?E?5??(???R?????iz>???w?h?-???Mmz`h?f ?3?VS?jE???6??=?z?5????????e_2 ???1?} ??W5?GY?'F ???y6?q???Bd??H? ??9S?8?p??W?G?$K??'[T??Xc??l1 ??}1^3???x?????y??jF??s\???f???C???@?%??|???O?y???Y????M]?r?3????G=??,#???????4d2?i??V????? ?bW,????^??-???$???f??u$??e??;???l"??f5?Y????)???'?]?4?f??c??[E???`??+?+????g??>!x}g[+}[??e???v-??>o~Fkx????n0?dX}??g:v5??/?Z??lo?5??_?m???w??~???l??i??:?? ???$ ??`????pP??????+???=??o?d?4???>??QF???yp?^;f?w???t?????%???BF?\??]:$????,?????? $?Ui-6/?n:???W???2??,?<2-u?f?e?? ??=*??6?\??s??/??]??t?3i\? ???????q!Z????g???????????I,-o *D??$>??????{?gB?????'????\ ?????P?$????9bi???? A?J|4?? A?i?j?<?Q???y?9???~|d???n?N??oz'???C??## ?????c?k??z??????Qi?a)?0w\w?:Xu{O^x?_???H??Kcnd?f^A?e??Z???_????Z??/?> ????J?5 ?)?M*???,p0???j?? ?Q?>??????m??? @5&w??*g;??????????i?)??C?jB??e?,`m?/?dW??i??ztPx?L?????????H{o??+? ? 5?M????3I?{t,??????'??k?????6?????o\???s???W??????V??^Z??G???U5???G?[?:?W??&???y?L???L??????R??PX???E?!??I?^??8???r???)F??^g&????ON??????????6{E?L?IQ?[??Dx$(v?1?3]??<3??gJ???Ksc??aM?c?ob?k???V????U?v???R? Y@?????iT2?r??o???K$?????z~??g????+??d??'?k??!??\G=?????Q??????{WI??? ??Ew???I?E????l??p0IUA??8???"????O??????Q?y??"[??????<??????!o???????k?.????o???M???V?/?4?I?I"V82A!^{???>?|2??:V??[K?6?R?m??y??????'?Wp?jV?M???D#K???y8?ni?4??7?4???n?Bc?-??????\x?8????%&???0??^6?(?Z?2?:?4?+o xnP@?wq??q?Nz???=???Igg?}N)??8?i>???????>9??-/J???kXm??}??eHG??9#5???? ?=^V???]??=?rg???????Y????T?Y?ToZ?:?????qt?=?w7Z{??c?K??<`}?R+??=?c????a'????????E?H?1?J{??1???.???o ?#4??;?3n?k?????Mw?k????!?^C??'q?k?R?]???J??kuc??WZ?o????jfGh???9=?U?{?b?|E?X??k?????u ??Q??????Z5???J??S??In#??;?_B{????u-$>?~?^M?&HX??1?;??????5?n|???xP?4???-??B??????j???'???S???i?G?I?1????z??????t?U????? ?9?o????????kW????????7.???1[9?????sRw??Z??????/%???i??1?????'?y???H??????B????X?jgO??u4?-D&V`?xvn?R??C??k5??N?????^U9:5???Xs??M?{?]?hX'?+??v>????!??I???2?wN???8?k????????]t?6???w ??_?k????.??????c????8?"C???|/?_]??W{??"??D?!|?$???VWG?_5n???C???~!?U??^_? ??P????|+???_????? ??$??9?Jw?y?'?5/ ???Mm?m'???Q!>??????5D??8??\??}??K?{??eZ}sK?7%??>J(Q??\??iO x3N??%p??r????(?cy?<7?*Ad?8?V???????#;???Z???Q??n?????:??*??T??z??u2????f;???+?/?????'?5&?m>?2?nX??????_&iv???"??????6NB????@? xF xN)??4h6F?H,Ny?r????=??????SS????;L????????h???\????^Q?9????????]??H?a?/??Bb??8??+??k?N?sa???$????JH8#9?Oz??V??}y???Y?-?s?F0p??????5LR????????A?9-?????O??Sg??5e????)????8??????K?o?? ?i?V?ve???F????g=I???n&???lO???U???????S?B??5?=?QS??8??|mfs{ &v???Rk~???????$??c?]?4}J 69?%?V?????X6?&?d?????L????|??B?L????P?|?l?@N??q?_VM??E?s??]4?????5??P??O~??o?m.?g{?|A6?sv?r?B? ??v ?9??5?'*u5???*?ENw>????>$??Mz^?U?+???#+???J?~0?;?{}??2/?Hd????+???>???2 ????v?????=???6??Ru???n?????9?/???tO?????%???\???G?9V???ta*S????UVK??????3????N??[?n?v?w??j?q?3T?e?/???x???n,?N?R???X???wl'? ?)???~1?;?Ai???^?/$e?!????^?&t1b?r?????t&??>??U??OL?.?|Em4??;E3?&?'>[?????m?C?Ohm????/?/??u?uUH?/?-?Z??M\?MGY???w??9?????!???^????????7??N[??????M:???p????Z??_???4??5?O?x?r??[,?_5?o^?m<=5????f9??:???????_|???+4?~g=8??z????x????i sF?T))= ?5?8?|B?]??67?g??K?r[?U?||?|?[?[M??V??,?.3????$????????r??0k?-b{????NzdWDi?t9]????w???????]?? ?|K X'82c?+??<{&??????2Z[&6B??.>_C_???????????_i?H???h?B9?[?????????V?YQ-????????cy??????-?gi??g?M??[G?A?g???D?%QM?3?\?c??q?z/??k.????5k?"?9?Q%?a`,d,?]??a?A???W??-4?io'T?,7v????Oww?y?W?jj?Y?97B??(?D?????$2???u?jim vv:?????X??^]t?????I?<=??>(????????N?3n>I;??B?=+s???.??Z?j???????????C??O???(?loL?;4?op?=???x????i?&??I?]6?????q?????\Uy9B?V?v1??? o)bGBx???/?/~?c?a???4W_??cd|??*?_?O???????}??I?+??e??2????_P????%??w?`? ??H=Vb@??|??? 8?4y)?U|;v??h???H>`???????"???#????? ??o?|?'??(}H??IX4?T`?=)X?e?n???? "???\?V?m ?'??-??\e????VO??Hm>Y????Hw?3?>?L???????? ??McW??G9??}>??|d????K?K??xm??L\yi?????y?????????????G?u????9^???Sz????g?_?i??>@qgw????Dq?:k??7/?>!i??$?3\?@?9?;c?q?|S/?<}??K ?????*v&?????> ????[?<0????????8z^?????7??? |G??????A??v??????Z??gG?8?? W?b??O?'???g??R???lv??~ ??e????\]k??'?O?2\??]?\'?Q??u7? ?O??????:J4????Da??zqU??4??WK??Q?-??0??)??[?ZW?Or#??????S????DxoW???7A?(m4?????ry ??T??7??cK?P???LUY????/?!???x?????{???.? ???]??fBU?r???f?> |o??M???6?K????v??_?rAQ?t????c?b?P??J?J3rj?/?c?l<3o???zu???SN?Y?W?@?eh>-?'??#?]??l?G??6??q????????"??????I??D?bs?u??^????_???????U????m???H??v?v?MU?*??Vrr????????~??^"?????gm?? &y???{i1?VE??C?r??f? ?m?$c??;?O?????x:?{??2????V??|?sq?Mh?=?W?c(T?9U?s?????Ldx5?~???f?????O ??"?!?o???&?Ng??=?????5W?h??9i?????U?xH??X?u6???(?????YOFFs]?>!??e?i7???r???h?Uv????z?C?o?????????????V ????2?J-r+???gJ?\=??'??????? o$%5?????I??r????,|k??]B?F??o??????`I?+??o???/??OEiM??W?0q?(YN ????O +Z?????5?????????_U ??b?????M~??h3&???Q?@?dKt#P?d??[jI?o ??@?RI??w?zv??j????n?Cf??Y???z}+???w???*???ic?U?dc?c?????7M?c??,i?~?????u,rd]????|?k3?v? d??7 ??? ?????Z~???? ??-?m?!c??9?_*|A?7?x;S6?i$???]?rYZ?x??N??7????????W???|??{???n`?]N ??????5?n???H?M?W ???-#(??K???:U??+?y????e?.Y?? ??|??O??????ZK?????+?u+p`????W???~o208*E ?_?W^?????j? ???????Y????q?5??s???'???G??+hIY ??Z,? ^T?"\9W?M3??\?<=v.4??-??M?q???W????o??i??wX\??m?B????W?l??Mq?_??K???l?`v?dM?$?+P?;?5=GN?p??m?T??????o?????,?OH?|???Zd??'?~???Wo??nR??[8?????'??6+?5/???\?  -???I,8?8 ?>???~???\????}????#2????3?5????????1?q???y?D??U%?6??E???^?&????:]r?Px???1?m ???^0k?o?[\?J?csku???????Fr  oxS????1??_E??f????&??????? ??\UA:sM???b!;T???e?'???1p?:?&????!$}??f?N6??!v? ??zW??G??????]????(O?????S?x? ?d_8aNI?Q_?fP?_:?????H*TTlz,???f?*D?:c=j??5???;~fR?pA??5??>;[??F?0VF:?????[???^???????o No???o&?$ZM???D1?(??lW??????6??2??O?uc???Q??????? ?F<?3k?Nuf??V?????nA?????????x??2_?g?|x?7?m????<3? ??5m0????R?????f?&???e???M?V?????_jRmg?? ???^???P|w?-u?,?)???????g?0I?]E????{_???k6??7$6????i?&??????X^?O'????~??u+?WQ?????P???G?^???Z???u?_?K??^???????I????????2?]???????? ?k??????4M K?6? ?4?,?b???-?M?b?-?sG?A???c?inI??X???^@5?A,?h??ns??PR`????:?????????]????????????W??4=7@?=????e??Z???(_?i??\??'?Yd\??~`W??d?7???????{D?M??C?????}??y?0???l???)'^?;Wg?|????-???5???{????Z2??%??1\???R?4?<$?[[???X???]T?N;??k?~?P?_??}V?b????S??\?????}|G}s?+?l???!m??+'r2z??V???'[lzt??N?R????i?E??mc9??  >???*???=?WW{??????U5??H?5?$nA? ?????'e????-???[14??c;~??)?f?????5mV?;X?C????%??5?1?8?????W???.??k:?????Jc??\I?a@?#`R5?h_ ~k? s?i?%???$?????? ??:??????x????>????????Kn?I??< yi{? ?t?6??? ?????IbbPn??m?;?????e{h?????b???????x????{?]X???wl?D????g??7k[gr&y:???ZTU:J?Gn????g????^?ZK?|?r?1????i????"@ ???z?????o ?C??+=?^??F??2?Um??f??g?/#?g8?K/???T?N?9?????(?t?U??? {`??g??]GO??m???6?U????U??? ???=????tVEU?}o?V?K??edm?M+|??voJ?P???j??L?????LP???Q?zk??m^? !?in??G???4n????y????Z?=.=I??-??(?AoJ#*??R???????e??H?[{?5?4????B??;?+}????+?Nt??c???|{?,?G??\??b???]??????4????????(???X??H???]l??KxSD?F??$?n??=??}kY??k/?????????u???d?A???"??E6]1?[?GBi??$???X??,?Xn?????l??(_i??~e??+K4??F??????????)<2f???{??????!?Q??gQ??Ni?^J??|?????j?:=??lf??H9???v?'*??W qQ????WgS?M????{x??SHl?????t?o?!h??R??.#?\H4? -?s?????jo?\Y????4?????fP2?z??K???q??Q?z\???k???@??(/?????????q?Xz%???[?ZX?|G,??%??Bz??????M> ????????GRHn????QH?[#?)nR?D??????`? ???n:u?Ag8?m'fy????5?~'?????x~???M{h?#+ :????? ?8]Y\C1_?????R|?mBk+Ml?o???:?9=????kj?o ?w?r?0N??K???1???1q?'??????????????%??????} ???8?H?^{?n????P??K???@????O$c??????>???_??3???? ???^??????W?z????'??Q??U??uI??`H#??????????MR?8b?+??I@?n+??u}?k????=??8???&?'????[M6??3`7???7c?^??o?x???>???? ?ld??I ???????^;??K??|I??$G??B?`x.?#]??K?'????C?i??si*?2?1=?X?tcRQ???-?(BQZ?B?|)???B?w?????#Y?jI??>??:???????=C???#?4????I?????-???%\?+!W??????m?H??0c??K]C???m@]???g?RA^y.??N?????J? ????{?Q]?*J??4?^ri%????]??G?????,??+?X??d??=??|S???%?r??@\??*?@?c?+???wc?????B????I??*'??FHu??Z?????VWwv?=????RW&[????H????t ??>X??T?JV??^g?W?F8X(G?8??c?sC????????,???g? ?w?|C??XZ?\?ouk*M ?a?r}??????.#???? ?R_????j[?H?????|??~?F?????&Q????6{z?G?}r??IrKS???pMI]??Z?t???! ??;??n???e6?4QkZ?QM5?2!l?xz??<???C??Te9??4?O![?;??q?/??m????????Mu$??a[H??b?^LG?d??????_/O??N?i4?w(????Z????=NK??a, r??a(??KM????k?? O5?a?Bx???X???NdvPY??????O??:??Xy|Qh?3T?]PYL??(?yl?ko?B????W&??T??FV??xb?2?P9_Z??????U???????I???c??c?N?V???W??7?s?o_% (c?x??b??:???M?g?Z???a?5?-?q??Q??r ????W ?4?i??n?Z!??X>???????i????1?7??@W????T`?????|?Ki?Bi???j~?-c?Db??u?q????b??OF?k???9?7?|=?????)?#?\???x/?t???R?km\??%?Isv%1?U??rZO?+?????2??{??*??F3???]n????:?]?6?cV!,???A??s?U/?'Tk???#:-?v=?x?'hH???yR?~???_;?e?????????"?????q?g??#??????=?\???????}ki|G??P?q%?-l?E ? ??????c*?T??zzF?6?w???h~#x??O????`?sZ?N??&?????z?"?????[??mD=?:??I?X.???+?^,?p3???j??wFw?m??/?"A?0=??K?PZN??'F????y??x?6?s!?y.????W???2? #?F+???g ??_?H?&?;?2{??RDK??a?5N???????9P???_+??s?N?U?4???V ??F?* %??5????p???v?z5?k{u)y??????U`???V?[]x{T?U\??????h???xJ?-??E?I)?`?a?? 1?&???L?e?U?~1?C????0k?T??[O??F?????????4g?????-)Y???????'???W????t?I??j?\?q??Z?_?w?????????%?u?(??%??$?:|?'?vZ???D?l5? h?#?_????f??[[????\?????}kKmo?;?H?[??[w?Ns??X?~?^??\?v?y?2?+?^??????c????lb??,?? q?|g??[?j?w+?????+????????^?H?a?'F;?GL0??????[?mS?z????? ?,V??!?'9??????.?) ??,*?@?CFs?:U??h/?v???x???0?h?T??? ??ag????g??????*??C?n??&????\?j???;HH? ???5??????\????e??B??????+R??< l??w?CB????W????????_ ??W_q?????/?_?????K????c???>7??"?]?? 5??7???1?w.?N ???:???/X[??5 ????*?r??#hT~??t?wO?!?[]?^$5????|?34?Vnt???K[??2?C?q?o??`????k3u?E~?T?.?????^??xs????n??ysgyn"|=??6K ?\???oA????v???Xh?^).2??c?G?+?G???=??u M??B???g?z???Sh?u??, ?Zj<1??5?wC???8???0???(?p??t~o??_ RP?=??|?{?7?????? [???: ???6??? l????????w?j??VZn?-????6???X?=???:???V????x?ma???"-??#?7\????%?kQ-??5=;?Y%?KD?8??Aq?+?5?????????M^?V??????z?????v4?1?i,?s\????g??ZG?|g{h ??jH???????5??^??Z-:&???V?6d+?M{??k??^?6???D*A?g?\?c^F'?N.?Tw??g?1?????r?L?T[h?TM#????qRI??6???G&?l?A???k7?rxbK???Wi p???~g?q?u?x??]I?????ZNM??k????i?5%C?a??l??W????_ mln??????[?L~U?|????|cg1F-??#9U???sT? B;yD??(?X??? ?????{??+*?nci? ???+?:8???.???j?N??{~??\????oa(b???@??5????N??j?W?????8Ys??w? E?????{?c>V?gm~6?`???y7???_5'??y???G<8? GQ?_?U???????t?;?: O^????b? ??\? ??{o???];R?l??,????_8j^0????? ??? ?????E}???????-?????9?? ??5??R?$????|?m??V?[????BN>???n?OJ?E???????_????ku??@4????bs??x????3????z?????????Q???Pk????R E?5z?')"??? ??CH??\l?s??@????=?&s-?????2??q?W_e??;?=r?n_??zc?W=?Z ?N?6;?U?z ?f?i>~?? ,>i?Z? ?jw??3??]??Z??W?#??????I??@?,??w?dF\??s^??F?>???ui???b???( g??????<?=????????I???Q?"@??{??????_u???Y?5??_1?D?;v??XE?ss[??gU?8?{Z??#??????' ???????z?~%x^x4?-o? ?]??C?^A?O??5;?"?<?]?.>T?;N~??O????>??z??t??1v?4???O:L???M)Ft??b?ju=??~~???z?????*?Z;?9?.9???=?? ??H#??5???_G???????WV?$$,?p2+??E????@A?J 3?rG?9?j2???4?o*+???,q;u???;?vv???"??Inz??:,?????{C??k????>u????0+ ahT~??tS?1T??F{???[??Z???l?+? ?Xy?%?c??kvO??t?????j???`??>?????????u??jD?;Kt??q??????X>/?M??$????? '$?W?_?_4z?1???Q???????r+??x8??ae?e`=A??t???J????FX?R ????`W?>&?>Zj?C6?f??!??b9`9????L?~x?S?,t??\Eg&???1? ?@???|?+??g????#?-l? E?????v"r??8??~?????wpc????????#??????7??qq-????3?????????????W?k??_??t-*y?Gee?M?C T??u??+?o?E5????O |)??mO?t????d?????Q???? ???????? ?X?f?,??z??????s{.?W?xgm???P}9?G?#\??WZ???wm'????=???R???,??b?WXd}'u???"+_?? N&?^D? 8????7?v????????????~=?5?????t?o?????_4???????~?^#????????wc????%=?9?F+?8h??????W???ou6?????B??=W?q???????X??????b!??r?|??~?>6?l??b??"Ab?&???_h?? ?????EL???+G?????1???T??R?>??>0?)?V?????Y???bH!P??9$?:?C???Qh?&?,??????X`d????|9????j1?qt????2????9##????:??g???.m?)y??w?????FM z???=Z???O??<???f??m??+?(? (???&??5?KRsme?<2??Vr$?"?v:?xDS?d??a].?Wiw?????8??????<%?j?7??J??????$>k?9???p?????J???????8#?????1yf????8????8??k???_Z?1k6:????H&??)z??0??s??????c?????qw4J!0?W As??l?%????K??/ock1/? #>F?? 2?\??Yk_ ????? ??????r ????#?KmkX}. /K?}?X???2!?u??}?? ??R??5R:\??M>?P?F}"?????1?t???2 z????x?]?w??a???P?!??^???%Rd?????x??????.zu??&?/ ?U?o=????J?mB???!?:?_???v,?&?.NI?:?TW??_??>???????[?zu?[7?n?'?>??r??B?yf?p??6?????R???[/uO???? ??O??????R??????67:???l ?(??????t P?E?[>???my?i ??k?9m9$??G_??N?A+?f|[???|N???3???^?~????}20+??x?[??????G??j???????brs?=???W????H???????Z??????G????d?????S?a??N?s??[??ti????k????J???u?u? ??`F????~1?b??o?`l?a???G?Tm?,???????-????9?I????$???q?3?Qm?????J?_?M???=xI?Y(.??d<^E;?????Zg???y?[?N?oq??~h???W?????z}????? ? j?P?]M?F??g??ZP??K?N.I??>)??qe?????h??3??W????????tk?Z+zi??2?nrN0?A_G???T?????;????@$?d???~}||? MFa2d\c?zW?M:?\??jIRO???7??]*v??&????Jwns?]???j{?&?k?z?p?{`?????k4fv??5??]??$3j?s"?^-?)##5?}J???dq?S?>?????a???R?k?-?'Y?~? ?????v? ?/????"??K???L?:|????O?9???x??,?t?>k?2?V?Z%i???}??r:u??t????y?a????w????r?^?g????8?????(R?IE9?x???B???"??(-|E&???-2?????~Yj?D?Y?#r????i????0??Q??t?p?N'??7O1????????,?X/???????W??????h?Zj?????vN??????z+?>n??Yz?????E??|5?@.?????`?V???>hV?;?p ?V?&?kA?-??67K{e??a?i? ? /??^?????6???e??nw???Y6????]KH?g????B?.~??m?????i)T?T??u?~??e??iQo??2??? !??????G?c0????????????k???????f??z?E??c=??? %??????x??>3???~!???? &??W?]??)`%_U?O?[??0???Ru$?3?????????i?????????d????v??}k??h}G^??@H??.-????M?~l???v??sH??u?f????S???:?????Caa|?6(??k???AZ??=??*M???]? ?????GT}"hT?????:?_k???{mQt?JH/?? ?k???????j? _ j?j??????I)e??;O???=Fk???m??D?&~?j??V8=??3^>#,?:??{?K????F?iY?O??????s????k?? ???? ??s??zW?=???7????N?M?>??2 ??????????.?#???J0cV???8-?]o?K??A+Iut?;I-$b???????`q??:3?)???p?1????e ?'U??H.??M&?G\??M??V???Ox???"?u?6?{ ???t?$d?????\???7?? xl?y??p?#?H~??IB?????+?#???????,??m??h?7(?_YW*??????h??*ugkl}5???s??p??^G[????!??D??{o?:??m??XO`??e?F\??E>??o??!xWQ?m?K????????X??FG???kB +?T????i$ ????w??,w?"?YM;??????^??{????-??,:??????3W??=???[B?/?#+[??%?~?N2??1???g??7?e:v.?,.?gu?????? ???K)n??>?????@#?b????qK??zrh??&N x?ZZCo?=Z???+[@??s_?S?7?A?????V?I#??(F???9???h?'?????c?#??|R?4???A+?????U??????????cq?j6??R??b>??G G5???L??.??:???z??+?????K?????w?X??????? ??r?/????5M????????<???????0"???????9??|w???uc???Db?? ??????QC?a?Wm?t7??V:|?k?L9V.????W[?R??O?????Yfv???g"???~&???M???u ?? ?A??c/??_b?-213??`|????>???n1|??n?}????fm?????s????X??J??]n?m=>\???4???s[j??_c?t???W?|/???3`?;N???#*?????????f?0??????W??/?| ?DN??d;?%??!??_?w;?????F? ;aw????~???? b}??;?o??y?P$;??|??U????`????????'????????[????C%???YRk?????[???|???????sw,????x??????6)nF?^8?C???x?????^?? Kmk}w,?V?-?N?J?e??t?Q??q?u?R????i'?????|?$??y???j???>I??f?k???v?????p?\??Y???s?@?????F?????Ko#s?7????n?os?8?Y????i?6:???p??)??k???.v?pqv?}???????????MO??Q@?g????M?s_y4}??W????~??|35?????????e8???(mQ??^>??/?F?~??_?v/?>????uese??*????Ca??O?Z?z???Eo&$C???@??Co????K?? p%%7W?|?mu??m*X\X????v?7???????WZf??9?1E?? ??(OBqK?/bW?{?|V?#?|6[]GQ??????hd_?P?]??|I?7?i??"?s};????????????????|@??uI?"??;a??????h?j?>$_x.??t?e???/?B??c#??Q????s???yk??H???E?xo???K????$?2H}I?.???Y?????1?H?????x?k?X?TyC?????ad?????e?????????/????$??????????? #?????wy??????mN?>HN?uw??bd????W????9???? xG?Z??Q[j???"??=?v0A??W??q\xs? v??.?qp?n??7 ??????????????V qr? d ;???????Z??? ?=??Z??????)???F??ka:D^Hmm#?)????g?????i??T???v?? ?c???mtTKX?q???0~ zf????_?,????]???0??s??},R?Q?t?'k?} ?*x?S????3????}??h?J?E???A#G???|???????-_??????dK???????J??]?L?EW??=+?u?[ S?????e??1?b+?????1?_Xmh}1?(??B?4V?E??[???UK?'???/~??W???'s?n?nH>?pk?;??&???<.?h??S?g??????3?#?6???n?%P#?uW??3_!??q1??aj?>????i:J?h\?????L=j?I??S\i???n_?C_Q??2??[?G?????-?mi??c??w?@5?o?'?????KO?^??????a??,{?? f????a?x?X?/??r?d??s?'?s??]??u????8?^????s???? ??H ?-?4????#$??k????j?[y?g?F$m? ?3??d$?rG|v???^???<??4?#1H~b`???PEv????dVF????5?]?J?????????1?J?0?5?S????????N??????q??I$???S??^?????V+????{=*?;u ???????u=@??O??R???Q[???x?????????M$U?b?SX??9?3?\t?g]?? mhr3?2?????a? ????q?z?N??E??P?K}?=??1??*??NP?t6??w?k????>??Zc??+????K????$-???v??<\x????N?Zi??G8?S^[??qz??%c?G9??W??????%?! ??9?5?????? ?????ZT??U? ??s?????m??v????&??f(?????#?]??mu?|?#?o!?????D??(??W*s??$Lg?>??{?-!b ?_??9E??c???kCW?]???????D??2??d?O???{(???|?'e`???>???t)?N???????%??HG???, ??k)?h??>|a?|1?f?G????L?/&??X!??m???(???{?v?9+x?IT?????I??6???4?!]R?uI??m?????Xh?? b?b1?????MS\?X?/?Fp6??????J?s? ????5?h?66z<?q??#s??oJ????[=O??/?tM=2??1?????????y?W?@e??a?z??d)M?s???'????o??????K?,3?dW??$??????f?J?S??(q??`???'?[??bF?n$???_`|n?f???I??=@Y???S!?c???}Qr????:????g-S????p?gN??!?8?S??o?^i?C??Y??r{W?~????|;???U????4?nc?A_'k7??^O%???????????II?m????{8?????W??$???}j????????y?f???7^??(\??E??u_??v???x??o????9=??cS??N?L?j2l?? ?? r???^????IgJ???zdt?*?yRXq?^???LL??o7??!????-?q??????? w`qN?EsR??X/??-?????5J+9u=H?V|???d?I?=?[?U?w?????? pr??U?_C??I?D?????????y??VW????[??E6???}??c?W??;????]h:??N??#??x#5?F??z?U???E?O?N???D[???a??V???W????0D?` ??? ????R4???'??v^?^?C?it????O??X?K???z??ee?E t??^J?C?1??*??,?*yX ??U??e??# ??^+?+jq?\?b?4????y'????53???? w??T1;?F>F`?J??8???|S??x????S?V??r3?#???????;??'?3 .8?o??9?wZ??\?x????A {W?V#?????? ? ??.?? ?????I???R?;? +?5@[????D?!? ???=??r_??*?w?e?????????[R??jWm{(c$C??Oh??S??4??cH?? ??m2??]???v??????"???$?????? ?-6????6??0??5??I? ??? ? ??/jk??1m? q??*?????????-Rr?(?L??????2??O?3?r\??Y/B????K? |?g??Q@??]y??A????_[h?7?f?5-????????n????'??"??O??T.N>a????|5???? ?~?i?,????????;????ls_Y??U????Ny?????yQ?}j???#???6"~??u??j?4??6????d?X??%???G??P????n'g2 ?????q<????V;?h#???ZI?kl~?|?C???????Z?^?Q? ???'?????]??????????i?N??????????=??_??~:?@?!zf???=????v??M???]???o??>&?????}8?6??6????%&?:i??V}q?b?z??????hn|M4{R(?>_l?LW???O??s_?;M??Ij?lQ??'u??? \????N?w??_C?3G????U?e<H?W?]?~x?J????yl????? ?8???_?G?:P??????]>?"?_*(?9?d???[X??*?T?SrX?,???? X?U?[{??w.???????m???tX.,54?V?y2Z+??1?F:t?y?E#??I??2??4???ol?$?y?kl9=?????r???xZ?????r?1??O?+?|????_>%v?A??HD?~\??95?/?Eam?|?K??? ?;3s???????E:?U???S? ?|????oX?9?Ij>? j???)??j?i???? fX|?L??N?(????m?#&?oc??m%?????????h???P????&?,?\=??29 ???3?"?;?/??x????,4??Yg?;C??'?s??????^??>0??5#y?-??Y?~U?J?? ??jb+s???.?)?p????2v??V???'??4b??F??-??????j?M????}???h)\ub??I)?S??%???V??d??q????M????<;???Y?@YB??????wg??(?#w??=?|s?9?MwP?U?wH??Y??????\???I?oQ?]s????\?????%s???^?kxm????q?|z?s???T?????R????8?????n?????,o<#w?Kn????p`|??C?x?????!?x?L???tKk?>u ?r???g?lA??y????\???(?>???W???_?u'??NE@#%??)~?~?.<1s?Y??Gl???????_?????u+?Y?.??????`???O?_??F?:??$??????UxiJ>????Q??[?/???%????r??n??P?k??/??a} y??VG?B???????[ |?T 5?x?Gg?????#?`?>????? :?b??Tk???lc-??)F[9m???cS?G ??97)?G??????c?d???? ??x??X????h?{I?)?4m????U??? ???;q.??82*???>??Msqy$:??p??+?3Wh?h?h?qs L @????????|E?{?? ???????M ????J??nT+Cdc???Q??o??w?x??q?;f }??>????nM#???=??dh?C?h?-MiTG?4~[?????]R]+9????K???9????k?7w??f???$N????s?A?v?????~ OYi?O|????PHa_C??q?O#J??(???????//??U g???J??????+B?<;?.???$????}y???Hf????p%??B???W1?x{\????lE?Q???L?E??I?[-???X??z????6?q??s|?6fKt?I??j?nX?\?|?rrjT??y3n?9_,????:c????\?j? u?XA???r"???????n?A?~???j??[?%???.?^?? t??r??{m)R;??+$a??Z? UU?c/3? G???%???7@??????h?]?\ya???![??xw?M?j yc?gI??`? ?w? ?t??-F?Q?????$?$?[?o5????D?lEp???u??NU}??????Nh??>f???i?????K"L??1?\??n?.?)IQ???mKT????d?73l?????+H??|Cx,l?2?U#???^?4??3?*??-?[R???? ???/????^??g????|]k*Z4??M?B???zt???????????k?? ?????Xd?_??????Eit?[?.?W?Q?????Fz??Z?Q?^????c???S????u?B?8?mA4?In??'?L ?????bk^5??>??6>?/?F???{?E?j?3????<??????]Ey?k(???fA??????????=bl?????? I???'?????;?Q?I?)#?oo???f?N@/?f?E??v?H?HcRI?_?>x??sZ&??j'?YD ??$:W???c????n?G=?P?K< ?yr?]????????W+?s?1????dob???/????F#????=+???K? ???:???h??????/????k97-??N)n|?s`?q-???_???tVf?"?)*??5??_????+????'xn????+?9??o?!? ?f???????f?`9?? ?S?5r??|?w??? S*?dLva?W??[kkXQa????????k???????-=??????[?#?4qF?}??&?n|K?d?:7?=(???Z?Y3?@l?S?2?????p[??"e????H<?=v?????WPv8_?Y???Z??C???o.~??|;???cQ?????eV&???? ?7???F??????{??M??&??>?q??u??t?%p?K?u??????????4Oa??X???yh??8?hW?|0??i????V??cZ ??Up?U5R???Q???????????di?RFJ?y=z?j?????j????? y?g[?J(?? ?3X9d#??[?~??~'???Q?$k??w??ab?/j??zyY\?{so,s(?p??#????6???`pn??[V??J-? ??e2G?I?>???Is!v?W????v8??t>1????????Z??y?`????? ???t??kH??ifgRA?'????4eOM?j{????y?|???U????"? ?_"V+???`=??kw??;u9R?liC?9?X?S???|??S??q?E????V??M?K[FF?s??T???? ? ??g@q,Cht?R?jp??&??????9|????*?ln?{ ?????>2??????I9??d?~n????(u ??#??P??????o'?6*?9?????V?Cb%??E??_,L?x??j???WH??????.??????/???P???Gg0 ?9Fs??5?I??\?F?: ????????5X ??n???v?BjO | ??4 ??5?:??6?8G?????\u??6???????CF?-???= ?^?????>??S? ??8k??l?????????9??+?????f??????c?V??i?=???d???????o??!???s?'\Da?????j^?/?>??%?_????*Kn?S?9?'?v?}??i??\?%?f?Y???z7??(f???Os?\;G?Sv?????????+ZuA????????y?k??????I?T??4r{g??5?k??ZlWV?Imm?i?I?/? ????0?_???????p?m?cvzp w??*?????4xs SB?????+c??J?? ~?9?????kH^i>'k?7m??9??c>??|E?L????D#???????wI??%?t?!??-t?u?4?k???q?y???t??d??_ w?-?_?n???:??????'?}*wi????5??g??Ez??????????o5??l?Z???Kk??y??[c?? u??7??V/>F????p?????\T??\4??j(??Zw ??A?+?u)?#?o???? ?b?,cC?r????U?8_??q?U)?#??|4????$:t?7?@'????/?^???kU?????I?X,?(?????C?x???C??:;?-?-4?YM o?$=x????k?t[o? ??????S?w$F?t=?q]X?B?Z?aB??c??o??{?`Z^,?6?? ???'??????o???Z??????@?2I?=?????#.????o???"?a?x?gl???5?? ??????Fm??_4?=Zso????rg???t "????`?o??p??n8%??u????o??'G????e?|?7??????kN=k?V??t?????s????=?R????j? ,uYm?? /5{A?}?}??;?(P??-??? -??????%x??V?G?????&???~$??????0*??4??????j????V??v?or? r9j?}fnm??q>????? ?a????KC??? ?? ?????O?Vn4??ih?2?9x>N????XI??W??qsf?$" w?c`? ????NFo5?A0??????$!]D?G??2 ???pn~?.????????V????????bp 6?8??kmnRQs#>??=?2??????J?#!?????/???@*G?JXeW????6?GN??Z?:????????[??n?????X????????VZU???[]??Y????(\?-???N?a}??.e??{??fnI?????J?b????.x???L????>?o?f=??8??=O?????$c?wp\??????'QEH??5 S??I??a???????w?t?up?EX????#????o?g???4??D???(F???z?~+i??L7Z???}???n?????????y7? h?^????? u ???c?I:rZ??U?R??s??N{?_Myk#Ie?f?'%????i?"??K???A??2M??Q????j??k5??9fx? DO???????lth?|?T?\y????u# }k?r???U>????l?;???oc??ZxZ{?'i?? ???????$????|????G??j???i??????,?????????N?m&??O=??????e#??s_S??>{??0x??P??ExN?wf??/G?E?????????????????6?{sa??|?q?j????'??jt#y??????Y??????!K}?G?Risjz?y4?,0 ?gqp~?????G?3[?=? ^??7Oogi*? ??????J???????????ws???c?????? 2??.???*>?Rg????{??'?{}:?G?M??\!]??? {??Y?p\??A%?????IGL?s]W??|8???+? ?k????_^l?i??????R?+q?f?<#??x??)?n??j?????M}q-???U1?????%???"'?F J??V???x??&[b\N??????E???????h??,???%N7'??C^?????'??Ci????????Rj&?KX?)?,[??????>??|?m3Zi????w?j`?,Lyg??_*???X't?????Kh????????????fa???M{\?i??;?v;k?? F????E?O?????h??-o&????? z ???{??o???????%??v?-? ?'?^px?/?k????.r??v????-a?K??:e????(????%6??7?e>^Xg?=h???!?????ZYj:}??usl?????c??? #h??]q??????y??n???(C??b?|I??????h?^K{q)?_??R?E?Mo?z?k??F^?????u???d????Z?Il?h?r?(????.??2G??j?h???.??W?z??[}cQ?-???-???$?#????,\????????:??u ?S5?????q??]^??x??_i?i??N?5??*??q?Ubcy????`????4 ?I?^?z???!o:M>D???*??>?y???e????? ???8?}=?=n?8/P???i?}c??W?Xg???*??????\]?:CD?????e?2????=?rKW???O7?>4xbQ?S???K???o?^???>??????Fd???`????3??& ??5t??]g?+T$??E3QW????3?~vR01M????*?`?(n?zn???4?1?liq???]+??????:w^c???o9??qYZ????%? ? ?7(???{? e_???& ???V????kv?N???l?IPq???r??i????q%??92?????k?4~u?I??????A?? ?????dh?oJ????tK).nn ?dt?PAb???p?oy?????Xh????58?? ?8??????G?w???uQ~a??W??hn'S$*r?J??????t 20????p?T?z W?B:KTj????^=?e?????8?H?!?9v?????5???????NX? $???->*?????g?]:?_?????????Q?]'??wSA7??"????{?`?????????????l??$?[m Y?'?>U?W?oNu??i?c??"?s???9=?\???^?D???d{??H?Ib?????W?????????Ic;?F??=s^?9iS?"?Di7?3?~??i~#??i???m????T?j?3?^???????????&nZG?}9??r???G,???n???>?G???~???r???????|g?N|?<1???Q%?X?*c????v?F????=??I??V?????j???W???7??eBFGun????]???amndR???F^???EE???? ?t? |=????i??*??+????+?dA???O?ZE??jb??????*???pPg?????? ???o0???->????/?$?T?n?&?O=?b?UZ?? ?2IKB[?????h?m?G}y?????-O?b???!??J?$??y??? ??t?_I?-??Y??&?jc???Nz?kw??????GR??5x?n?fo.s?,???C??[????????zU??\?r?L??+?@a?? 8>??:????D?zf????4?????x??M?????L?r}?1????5??+E??]?????,???/ ???Y?^????V?X??Cr??r????O?i?~?@?~??0??e????V?w????*<?k???/ ?O???o?????}U?5"???X?lxq??;????+???k%????%??)??TW???G?2{??W)??????h?T????IAst??RD????????'?-Ya???%?????????_?5==n?? j???????Z?:??Iyp???U?kx????y??v?6??p{*QI9j?~?Rx;?? ???3????kzM????I7#??=Ep??o??T???m.?x" p!!@?=?J?k???:c^v???^??n???-!bx??:W?|C??t?j:M????f#?uV?;9#??Vu6h???:??????-?9/'E3\????g ?;???7???meo??,.K ??9?????z???RO???3>??8$?Jf??Y?G?}?t?????1(?LW?*?v?{??8;?`?? ???????8? a?9????Z}????{4?1????2??x?????u)e?a=??3? ?^???#????3$R"&9?A?+??1??8???N1?9???x??Zx??Y??O(?????????o?[??,a?`$X?C??? ?[~??9????????J??v?\[?4I?BI ;??mm??|?,?????h??????5???M?[&?6?E?? 4?2?:u?]L???????!?;,f6??p?LU9T?;?;(?4??????"???*?m?????#?^?B?m?????Yh???}5/?KV????8????\????????A?A5??n?`?X? {?+????????w??]h?y?KF?? ??d???n????n??Ob??5????V?("?g,jSa@???[?????y??R?M?C#Z???!??????????u{???K.?z??&??)3?@?????MMc^?m??a??%? ?d??v??{? ??w??b??v??d?:O??5??][????&?v@"?+???3??$??????.?,??^??0iO??????i?Gh??? ?H?m={s?W??+?????>??yam?y??}?Q??b0??z?????%X?g??#??>5x??????$Q>Dw6? ?c?R'??wo?6??(?O?S??^?????}:8?}.:?????\O? ??w?H??=6X??6??[???b(C??r}???????S???Hn???????+?\W?mz?w?????*?S????? [????/???????? ?7???,|?????"???^??\iZ??Z?m??+?r9??~hx??/??L? ???y2r?? ?{W????f7Z?}N?????????x?W??Z????'?A?1??/?g?4ms@?M??w??S4?F>??LW?~??^?n&?mDL O*??8bL???p??$WM??? ???w?o? ?U?cj|?l??r??????? ?w w??????-rF????^A?G!???9???2?);A???J?????x?RK3?@?s?????U??+W??kY?Q??8??B?$1?<???)??Y}y9.vt??%???o?0????;q??J?????g????B$E\ar+???gT?Qv[ C???h??Fz?A???????Sj~1\[????.UN;??)?q0?JO?=*SU0???????K??}em??,??g?>??9-t;M???%?*?U????a???u B?Kr?Q???2???z?<?????[?n2?z[*!B}wW??R???????????????!x??\??>'&???Ym?2??1o?$????\??????HBt?r??m@?????0???,???G??S??;\[??????t21?u'= ??????pG???? F?N?v???zU?????????$c?pW8??U?/1??P?5???xV?{????F?PdB???_?Z0?P?M,M??H?.fa?I??y?????????-t?ic??whUq?y?;?CT?????d?y&xe????8????`?!?&??4?>??KI?????L??Vz F???7 }?F??????????qmo ???????3??bO??k[)?Mgx2??? ?4d?????/3??????%8??~?????tux#F?D? ?!?1=1? ??<?>?3???sp&a????qV[Mv?? ???S{?l??1????h? ???b?2e??6????r+h??Ynp:0Z???o ?I????Z d??A7?q6?d8? ?-??????ak???? ??X??9?|,???/V5f?#?#?b,j????Eq?a???TW??y\?w=???Vv?e????![?????????[?v? ?H??? `????e???+???T?g? ?? $?#?W??.G???? ????@ I?NT?W?ci?U??>?>t?"?????:?i??B?Sl??????????^?1?XZ??4?M?????m?c?_?Xdr3????z???t???????4$Y#????z??j?m??U??#?U?bM?#=??E? ?"????z47?E??????R;???%?f5 ??????+{iwX???`R?0??u?????T??l?????????~ ?? ?????*??,No??W?u???\x {?e??Y?r;t?u???t?|J?4X??X???u?X?? +_?j????< ?M*?x-$ u?[?F\r3?_?p?d?vW??ONS??kh{'????e????.?=???&F?????Vy?? ??????-)!?W?v|U?[???OM}9'? ?c"?_???};?'??LjDv?~?I?5?4?^???g?:z??k?/j^%?:f?i8BQp?'???????????fK?;].??w};V??? x??~??Os ????????H?F?n^?O?Q%???h??!??B?49?-E}my???-Oh?uHF?q#?d?,???????? ?|/6'????????;????F?`B?%?z?z?#??*??g?G14Qm?:?k???W?Q????:?Er?\???E?????=??6?H0T??pj????G?:?y???? ?????CO????6?a??Cr?pv?Tw???Y#??|;y????????SR?+E?z T???&t??h?(?5 %O"E n?|?????????iz#?H?@7?c???'??.?K3\^??j $??6????m5???o?? ?{??7?Aa?N)zb1??)?Zl???X?{??\y?B???V?e??!f????2E I???=????????&Pz? u5????wQ? ;?????&',z?2x?(ex?{U???kTz??ABR????????\?/?;??)?_?????e?)m???605?!?j?, o?w??~C??l???????????????m?????K{9??C+#y?4 %#?????:??r?.x??/??????f?v???Xuj? ?t?tra??I?????O???l?R>?F???S?????Q??$??????K)?????r!?$ S$1??*??f???-?V??Q?Tx??V?]??*??????z???>??@Z'?9?(?.:??????h?-?E6?a.?bc?\u?Ju!w= {R?:???]?jKV???#,??"??=?????1X\?JB????rO?\?)?R??Q?[y??5?y??Ot???yK????z??A%?$|??i???B?????????[?Y- U??#???$???N?????.$h???ErA?NI??_@~?ii???N"??|ya??F?^???v???[?]1n>F??q???~y??]??[??E??N??gq?F??U??h??//H?c?EV Fq???3?m? 8-???E)????an>??K?b?4?5??s<9?X>???te???q??;U-????g?6t{ ????x?x?m??6_?l>?E????3??en?F,2y?{=????U??2?0????Q?Ozd?0???K-:9?@?F?c(x?V????6L?????!???i????L???-??u9?i???/??R$?~eu??5????Sn?XirM????;?????@???? ????t}s??x???????+-n?)??QL??'??#?\w????N??????I,??,"?nUHeLQZ?x????%?9Ac ??>o*o7?sG??td?oJ?????n?J??G?[???H?}??;P@??Y?`????I-t?XH??a?A[#?z?r]E??d???0???\sn+Z????)??y????9???[Y??p?d?Vf??k?Hd7??zL????x?????YOr?v?,*????;C??:?"Zil"]?????4?~UobK?I+??5????j6m?? ?z`?'?1????I??????o??2?S??5????})d? ??????OBq\????Y?????4;??t???{q?9m???b?r???D?????u? ?:??Z??7??.'IC?r$dI?y?L???i^ ????M??-?s? ???q7??SM3?zT?q6?R;??>??X?w? u*?_`??fp ns?????~n0???y#?(?6_h?~???M?\??/D??fy??x#n?c????bYJ???-???ov?'`7(?L???W???&?D;O?#pO??]????/h7 :v?????=:M???=[D? >'8?K??3??q?p^ ???M?[F"G??@N?????+?2????????f???if?1?L????qW??k??M=?rJa????+???>u?/j?r?~??+v????lhG??>???s??wH3??:QEsV~?.:? ?]&?g?Wxc"=???v??????.???N?q???W??7E? ?????'?(?????D????5?o][??^?3F?4l ?6}?????????g??Y9Y?c.??o?4Q^????H?< false
          6759507715402866688 5243648 Cookie scoped to parent domain http://d.audienceiq.com Information Certain
        40. uid=3997938986913610990; Domain=.audienceiq.com; Expires=Fri, 14-Oct-2011 23:37:30 GMT; Path=/
        41. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
          false
          1258161891592614912 5244416 Cookie without HttpOnly flag set http://d.adsverse.com Information Certain
          You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
        42. OAID=574904589a3ae5378ce2de7809c7b231; expires=Mon, 16-Apr-2012 20:12:34 GMT; path=/
        43. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
          false
          2187512343970810880 6291632 Source code disclosure http://resources.infolinks.com Low Tentative 35?String.fromCharCode(c+29):c.toString(36))};if(!''.replace(/^/,String)){while(c--){d[e(c)]=k[c]||e(c)}k=[function(e){return d[e]}];e=function(){return'\\w+'};c=1};while(c--){if(k[c]){p=p.replace(new RegExp('\\b'+e(c)+'\\b','g'),k[c])}}return p}('if(1q o=="2a"){1H["o"]={}}if(1q o.29=="2a"){o.29=k(A,C){1r(j B in C){A[B]=C[B]}l A}}o.1a={};o.29(o.1a,{eF:0,5I:1f,3u:{9I:"",g4:"",jS:"",cd:[],6q:"",8A:"",5K:"",9o:"",86:"",8P:"",ec:[]},b7:0,4Q:1f,5R:{},bo:5i,b8:0,bm:1l,2i:{},6c:1n,cq:2,nI:1l,5F:{},eA:"jT.5Y.5C",aX:"/js/",eP:{1A:5.5,3N:1.5,3o:3,4o:9,5L:1},4x:1f,eZ:"5o 4j 6B 9b 3G 9c 8x 5x 6s 9W f4 b9 5p 7D f9 fb by fd dh ms df fk bf 4B",dO:"/bt/",5f:{90:1f,8s:1f,7L:0,9n:nf,9t:{fp:1,jW:1},9s:{fp:1,jX:1,o9:1},5y:{a:1,jZ:1,k0:1,br:1,dd:1,dl:1,dt:1,4Y:1,n7:1,h1:1,h2:1,h3:1,h4:1,h5:1,h6:1,2R:1,3A:1,k7:1,k8:1,mD:1,4G:1,5S:1,4L:1,k9:1,17:1,mG:1,ka:1,55:1,m:1},5m:1l,bH:1f,5P:1f,5c:[],5q:1n,6J:1n,1K:[],bA:5i,2o:1f},9v:{fN:1,fM:9,9y:3,fO:8},6M:5i,cx:{},2X:"mH",2I:"bx",cg:0,3K:{},bS:{80:1f,7i:1,51:"mh",83:"mb",82:"aw",84:"mi",5n:cL,79:5i,af:5i,6C:1n,2B:"6Q",9J:"",g8:1l,4g:1f,6o:1f,7Y:16,6U:"2D",ke:1l,cA:20},cw:{80:"5z",7i:"5z",51:"2c",6n:"2c",kf:"2c",83:"2c",82:"2c",84:"2c",5n:"5z",79:"5z",6C:"b5",2B:["6Q","81","5a","6Y","1E"],9J:"5z",g8:"b5",4g:"b3",6o:"b3",7Y:"5z",6U:["2D","1o"]},6u:{},2k:{},9G:50,c5:{69:0,2M:10,6P:10,7X:50,6a:30,68:0},4z:[],aj:{},ep:"2E://7f.5Y.5C/?kh=bb&lU=lQ",9B:"2E://7f.5Y.5C/lR-3y.4C?5o=<%= bO %>&4j=<%= 4j %>",1N:{8m:1f,8Q:lV,8R:kk,9Q:"4n",9i:5i,id:"kl",7x:1n,1P:1f,3v:1f,2o:1f,dc:{1K:k(K,J){j H=o,N=H.1a,C=N.2k,Q=H.5t(K),T=H.1I,L="3M",B=N.2I,M=N.1N.id,V=Q.1a,F=T.1A&&T.2P()<=6;j U=N.1v[K.1T].1i,R=U.27[J];j O=U.27[K.2p].2O||N.2O;j I=H.1x.4I(O,N.1B),D,S,E={};j G,A;if(T.1A&&1m.km=="kn"){G=21;A=58}1j{G=18;A=48}if(R.4f=="no-6m"){D="";S="1E"}1j{D=R.4f;S="2F";if(R.cN){E={2J:"1F 3f",4k:"#ea #dY #dY #ea"}}}j P=J!=K.2p?"1E":"2F";l{1u:"1e",1p:B,id:M+"47"+J,17:{4r:"5v",1c:(U.1c-20)+"1w",1y:"4H",1z:P},2N:[{1u:"7E",1p:B,2L:{2Y:D,98:""},17:H.29({ko:"lj",1c:"lm",lu:"1k",aD:"1o",1z:S,4r:"3T kr 3Z 3T"})},{1u:"1e",1p:B,17:{70:"6f",2M:"2n",7h:"33",1c:"lb"},2N:[{1u:"1e",1p:B,2x:R.55,17:{70:"6f",2M:"2n",65:"5D",4D:"2B",2c:C.83}},{1u:"1e",1p:B,2x:R.1K,17:{70:"6f",2M:"2n",65:"6F",4D:"1E",2c:C.82}}]},{1u:"1e",1p:B,2x:R.7H,2L:{55:R.7H},17:{1y:L,2A:"1F",1o:0,1h:(U.1h-ks)+"1w",1c:"4Z",7h:"33",2M:"2n",65:"5D",4D:"2B",2c:C.84}},{1u:"1e",1p:B,2x:"fu fv",17:H.29({1y:L,2A:0,2D:0,1h:"ku",1c:G+"1w",1Q:[\'1X 1C("\',I,F?"67.4X":"67.2U",\'") no-2d 2l 0 0\'].1s(""),eG:"4y",2c:V.64[N.1B].67,2M:"7j",65:"5D",kv:"3T",3d:"3n"},V.64[N.1B].dj?{7S:V.64[N.1B].dj}:{}),6x:{3C:k(W){Q.8L(W||1H.1Z,1l)},3E:k(W){Q.8L(W||1H.1Z,1n)},kw:k(W){Q.8L(W||1H.1Z,1l)},lv:k(W){Q.8L(W||1H.1Z,1n)}}}]}},4C:k(A,G){j B=o,C=B.1a,H=C.1N.id;j E=C.1v[A.1T].1i;j F=G!=A.2p?"1E":"2F";j D=B.1d.7F(A);l{1u:"1e",1p:C.2I,id:H+"47"+G,17:{1c:(E.1c-20)+"1w",1y:"4H",1z:F},2x:D}},2R:k(I,E){j G=o,H=G.1a,A=H.1N.id;j B=H.1v[I.1T].1i;j D=G.1d.7F(I);j F=E!=I.2p?"1E":"2F";j C=[{1u:"3A",2L:{2t:"33",2m:"5N",2q:3r(D.2V("").fU().1s(""))}},{1u:"3A",2L:{2t:"33",2m:"5o",2q:H.6L}},{1u:"3A",2L:{2t:"33",2m:"4j",2q:H.6O}},{1u:"3A",2L:{2t:"33",2m:"5x",2q:H.3X}}];l{1u:"1e",1p:H.2I,id:A+"47"+E,17:{1z:F},2N:[{1u:"1e",1p:H.2I,17:{1h:B.1h+"1w",1c:B.1c+"1w"},2x:[\'<2R id="6g\',E,\'" 2m="6g\',E,\'" 2Y="\',H.7c,\'" 1h="\',B.1h,\'" 1c="\',B.1c,\'" an="0" bz="no">\'].1s("")},{1u:"6r",id:A+"8p"+E,2L:{52:"9l","3p":["2E://",H.7K,"/5N.6i"].1s(""),49:"6g"+E},17:{1z:"1E"},2N:C}]}}}}});o.1d={};o.29(o.1d,{1D:{1U:{$:k(A){l 1m.56(A)},7P:k(D,C){j A=o.1I;if(!D){l 1f}if(!C){C={}}1r(j B in C){if(C[B]!=1f){if((B=="aC"||B=="aD")&&A.1A){if(B=="aC"){D.17["ky"]="kz(aC="+2h.aT(2W(C[B])*4S)+")"}if(B=="aD"){D.17["ct"]=C[B]}}1j{D.17[B]=C[B]}}}l D},2u:k(B,C){j A=B.kA||(1m.aA&&1m.aA.de?1m.aA.de(B,1f):B.17||1f);l C&&A?A[C]:A},71:k(C){if(!C){l 1n}j B=o.1d.1D.1U;3J(C&&C.3Q&&C.3Q.2H()!="1O"){j A=B.2u(C);if(A["1z"]=="1E"||A["kC"]=="33"){l 1n}C=C.2z}l 1l},db:k(B,A){j C=A.2z;l A.dm?C.7O(B,A.dm):C.4d(B)},c2:k(C){j B=o,A=B.1d.1D;if(!A.1U.71(C)){l 1n}l(A.1U.4U(C).1k0?A:B.aR||B.4p}},3a:k(B){j C,G=o,E=G.1d.1D,F=E.1U,D,J,A;if(B.1u){j K=B.1u.2H();C=1m.7N(K);if(K=="3A"){C.2t=B.2t||"1K"}if(B.id){C.id=B.id}if(B.1p){C.3I=B.1p}if(B.17){F.7P(C,B.17)}if(B.2L){1r(j I in B.2L){C.kF(I,B.2L[I])}}if(1q B.2q!="2a"){C.2q=B.2q}if(1q B.2x!="2a"){C.2x=B.2x}if(B.6x){G.29(C,B.6x)}}1j{if(B.kG&&1q B.2q!="2a"){C=1m.73(B.2q)}1j{l 1f}}if(B.av){C=B.2C.4d(C)}if(B.1u&&B.2N){if(!(B.2N 4N 2y)){B.2N=[B.2N]}1r(D=0,J=B.2N.1b;D=0;E--){if(C[E].2Z(I)!=1f){C.6W(E,0,"-")}}C=C.1s("").2H();G.2f(F,C,":",D[H],J[H]?A:"",";")}l F.1s("")},hE:k(C,A){j B;4e(C){1t"81":B={6R:"0 1E",4D:"2B"};1R;1t"5a":B={6R:"1M 5a "+A,4D:"1E"};1R;1t"6Y":B={6R:"1M 6Y "+A,4D:"1E"};1R;1t"1E":B={6R:"0 1E",4D:"1E"};1R;6z:B={6R:"1M 3f "+A,4D:"2B"}}l B},7l:k(B){j C=1m.1O.17,A="2J-hF:"+B+";";if(1q C.75=="1S"){l A}1j{if(1q C.cu=="1S"){l"-7W-"+A}1j{if(1q C.dG=="1S"){l"-7U-"+A}1j{l""}}}},7b:k(C){j A=o.1I;j D=1m.1O.17,B="kW-3l:"+C+";";if(1q D.3L=="1S"){l B}1j{if(1q D.6G=="1S"){l"-7W-"+B}1j{if(1q D.6b=="1S"&&(!A.3o||2W(A.4a>=97))){l"-7U-"+B}1j{l""}}}},kX:k(B){j C=1m.1O.17,A="1K-3l:"+B+";";if(1q C.7S=="1S"){l A}1j{if(1q C.dH=="1S"){l"-7W-"+A}1j{if(1q C.bY=="1S"){l"-7U-"+A}1j{l""}}}},9S:k(F,B,E,D){j A=o.1I,C="1Q-6m:";if(2W(A.3N)>=3.6){l[C,"-7W-dE-bZ(",F,", ",E,", ",D," ",B,"1w);"].1s("")}1j{if(2W(A.4a)>=89){l[C,"-7U-bZ(dE, 1o ",F,", 1o ",B,", kY(",E,"), kZ(",D,"));"].1s("")}1j{l""}}},43:{75:k(){j A=1m.1O.17;l 1q A.75=="1S"||1q A.cu=="1S"||1q A.dG=="1S"},3L:k(){j B=1m.1O.17,A=o.1I;l 1q B.3L=="1S"||1q B.6G=="1S"||(1q B.6b=="1S"&&(!A.3o||2W(A.4a>=97)))},7S:k(){j A=1m.1O.17;l 1q A.7S=="1S"||1q A.dH=="1S"||1q A.bY=="1S"},87:k(){j A=o.1I;l 2W(A.3N)>=3.6||2W(A.4a)>=89}}}},5W:k(E,G,C,A){j D,B=o.1d.5W,H;if(!(H=B.bU)){H=B.bU={};B.c7=k(I){l I.2V("\'").1s("\\t")};B.dJ=k(I){l I.2V("\\t").1s("\'")}}if(C&&H[C]){D=H[C]}1j{if(A){E=E.1W(//g,"")}j F=E.1W(/[\\r\\t\\n]/g," ").1W(/<%.*?%>/g,B.c7).1W(/\'/g,"\\\\\'").1W(/<%.*?%>/g,B.dJ).1W(/<%=(.*?)%>/g,"\',$1,\'").2V("<%").1s("\');").2V("%>").1s("o.2f(p,\'");F=["j p=[];l2(4M||{}){o.2f(p,\'",F,"\');}l p.1s(\'\');"].1s("");D=26 l3("4M",F);if(C){H[C]=D}}l D(G)},62:{6j:k(){l 26 3m().3h()},a7:k(B,A){l(A||o.1d.62.6j())-B}},3w:{bL:k(D,C){if(!(C 4N 2y)){C=[C]}1r(j B=0,A=C.1b;B=0;B--){if(A[B]==C){A.6W(B,1)}}},c9:k(D,B){j A=[],C;1r(C=D;C<=B;C++){A[A.1b]=C}l A},fi:k(B){j D=0,C,A;1r(C=0,A=B.1b;C=9?"?r="+B.96():""].1s("")},4Y:k(){j B=o.1d,A=B.42.bG();B.1D.3a({1u:"1e",2C:1m.1O,17:{1z:"2F",1y:"3M",1k:"1M",1o:"1M",1h:"1M",1c:"1M"},2x:[\'<4Y lg="2E://7f.fJ.5C/go/nR" 2Y="\',A,\'" 1h="1" 1c="1" 8N="1X" 2m="8H" dQ="dR" 2t="lh/x-ft-bt">\'].1s("")})},8i:k(5l,aL){j il=o,1G=il.1a,6v=il.1d,bi=6v.42.bG(),id="8H"+(++1G.b8);if(5l.3p=="5E"){1G.5R[5l.1C]={8I:il.29(5l,{7J:1n,7v:1n})}}j aN=6v.3w.7q(5l,1l).4W(1);if(aL){aN+=["&",6v.3w.7q(aL,1l).4W(1)].1s("")}1H[id+"dU"]=k(8G,8v){j 4M=1f,4v=1f;3z{4v=5k(8G);4M=5k(7g(8v))}3x(ex){o.3O(1n,"nN")}4v(4M)};6v.1D.3a({1u:"1e",2C:1m.1O,17:{1z:"2F",1y:"3M",1k:"1M",1o:"1M",1h:"1M",1c:"1M"},2x:[\'<4G id="\',id,\'" lk="nL:ln-lo-lp-lq-lr" ls="2E://lt.fJ.5C/lw/ft/lx/bt/lz.lA" 1h="1" 1c="1" 5A="ca">\',\'<5S 2m="lB" 2q="\',bi,\'" />\',\'<5S 2m="lD" 2q="lE" />\',\'<5S 2m="dQ" 2q="dR" />\',\'<5S 2m="8N" 2q="1X" />\',\'<5S 2m="lF" 2q="lG=1A&5T=\',il.1a.5T,"&",aN,\'" />\',"","\\n ",id,"dU(8G, 8v)"].1s("")});6v.42.fe()},lI:k(A){o.1a.b7=A},fe:k(){j A=o.1a;A.b7=10;A.4Q=o.1I.1A?1H["8H"+A.b8]:1m["8H"]},5E:k(B,A,C,D,G,E,H){j F=o,I=F.1a;I.5R[B]={8I:{1C:B,52:A,dA:C,4u:G,77:E,5X:H,7J:1n,7v:1n}};I.4Q.5E(B,A,C,D,G,E,H)},lK:k(A){o.1a.5R[A.1C].8I.7J=1l},lL:k(32){j il=o,1G=il.1a;1G.5R[32.1C].8I.7v=1l;1G.5R[32.1C].4P=32;if(32.4u){3z{j 4v=5k(32.4u)}3x(e){}if(1q 4v=="k"){4v(32)}}},lN:k(32){o.1a.5R[32.1C].4P=32;if(32.77){3z{j 4v=5k(32.77)}3x(e){}if(1q 4v=="k"){4v(32)}}},9x:k(A,B){o.1a.4Q.9x(A,B)},dZ:k(A){l o.1a.4Q.dZ(A)},eU:k(A){o.1a.4Q.eU(A)}},4q:{3j:0,1i:{},cR:k(B){j C=o.1d.4q,A="t"+C.3j++;o.1d.4q.1i[A]=B;l A},8E:k(C,B){j A=o.1d.4q.1i[C];if(B){7k o.1d.4q.1i[C]}l A},n0:k(A){7k o.1d.4q.1i[A]}},eI:k(A){l(A&&A.2Z(/^#?[0-9a-fA-F]{6}$/)!=1f)?A.3S(0)=="#"?A:"#"+A:"#aw"},cp:k(F,D,A){j B=o,E=B.1d;1r(j C in F){if(A&&1q D[C]=="2a"){7k F[C];3b}4e(D[C]){1t"5z":F[C]=2g(F[C],10)||0;1R;1t"b5":F[C]=F[C]=="1n"?1n:!!F[C];1R;1t"2c":F[C]=E.eI(F[C]||"");1R;1t"b3":F[C]=F[C]&&F[C].6d?F[C].6d():F[C];1R;1t"1P":F[C]=F[C]&&F[C].3Q?F[C]:1f;1R;6z:if(D[C]4N 2y){if(E.2y.2v(D[C],F[C])==-1){F[C]=D[C][0]}}}}l F},bj:k(A,F,D){j C,B,E;1r(C=1;C=0&&(D?A[B][F]>E[F]:A[B][F](G.1o+G.1o+T.4p)/2?G.1o+T.4p-20:G.1o;E=a+20-R;P=G.1k-Q;if(L-G.1k>B){P+=B}K=P+B+Q}1j{a=G.1o;E=G.1o-R+((!c.1A||!T.4p)?20:T.4p);P=G.1k-Q;K=G.1k+(T.3V||18)}j Z={8J:{3H:[a,P,a+R,P+Q],6E:1l,38:1l},aQ:{3H:[E,P,E+R,P+Q],6E:1l,38:1l},aM:{3H:[a,K,a+R,K+Q],6E:1l,38:1l},aP:{3H:[E,K,E+R,K+Q],6E:1l,38:1l}};if((a+R>V.1m.6X()+U)||(C&&C.2v("L")!=-1)){Z.8J.38=Z.aM.38=1n}if(E<0||(C&&C.2v("R")!=-1)){Z.aQ.38=Z.aP.38=1n}if((K+Q>V.1m.8D()+A)||(C&&C.2v("T")!=-1)){Z.aM.38=Z.aP.38=1n}if(PA[2]){l 1n}if(A[1]A[3]){l 1n}l 1l},ar:k(B,A){B=B.2H();if((A=="ev"||A=="4L")&&(B.2v("\',F,"<\\/4L>"].1s("")}l F},cO:k(A){l o.1a.3K[A]}});o.29(o,{g7:k(){j B=o,C=B.1a;C.3u.8P=26 3m().3h();if(1q 1H["er"]!="2a"){C.4x=1H["er"]}j A=B.2e("m7");if(A){A=A>4S?4S:A<0?0:A;j E=2h.ax()*4S;if(E>A){j F;3z{F=B.aU(1m.1O)}3x(D){F=1f}if(F){j G=F.1i;1m.ee(G.3P(14,G.1b))}l}}j H=B.2e("m8");if(H){B.7y()}1j{if(1q 1m.7o=="k"){1m.7o("m9",B.7y,1n)}1j{1m.eo=k(){if((1m.8T=="7v"||1m.8T=="ma")&&!B.ef){B.ef=1l;B.7y()}}}}},7y:k(){j B=o,D=B.1a,A=D.3u,E=B.1d,C=26 3m().3h();if(B.eh||!B.eN()){l}B.ew();if(D.4x&&!D.ej){B.ei();l}A.8P=C-A.8P;A.86=C;B.eq();D.2w=B.2e("2w");if(D.2w){if(B.2w.8f("dr","aY")){l}}D.6e=E.eg();if(!B.1I.1A&&D.6e>=9){E.42.4Y()}A.6q=C;B.3t([D.7K,"/mc/",B.96()].1s(""),{md:"o.aY",5o:D.6L,4j:D.6O,9c:D.8d,5x:D.3X});B.eh=1l},aU:k(D){4e(D.9w){1t 1:1t 9:1r(j C=0,B=D.4A.1b;C15&&D.1i.4W(0,14)=="me"?D:1f;6z:l 1f}},aV:k(){j A=o.1a;if(!A.5I){j B=1m.3F("b6");if(B&&B.1b){A.5I=B[0]}}l A.5I},ei:k(){j A=o,B=A.1a;B.ej=1l;A.3t([B.3s,B.aX,"0/mf/",B.4x,".js"].1s(""),1f,"7y")},3t:k(A,D,H){j F=o,I=F.1a,C="",J=[],B;if(1q D=="4G"){1r(j G in D){F.2f(J,(J.1b||A.2v("?")!=-1)?"&":"?",3r(G),"=",3r(D[G]))}C=J.1s("")}1j{if(1q D=="1S"){C=D}}F.aV();if(!I.5I){l 1n}A+=C;if(A.2Z(/^\\w+:\\/\\//)==1f){A="2E://"+A}if(H){B=k(M){j K=o,L=K.1a.5F;if(L[M]){l 1l}L[M]=1l;H=(1q H=="k")?H:(1q H!="1S")?1f:(1q K[H]=="k")?K[H]:1f;if(H){H()}}}1j{B=k(){o.1a.5F[A]=1l}}if(I.5F[A]){B()}1j{I.5F[A]=1n;j E=1m.7N("4L");E.2t="1K/aW";E.eX="mg-8";E.eo=k(){if((1g.8T=="7v"||1g.8T=="mj")&&!I.5F[A]){B(A)}};E.mk=k(){B(A)};E.2Y=A;E=I.5I.4d(E);l 1l}},eq:k(){j A=o;A.29(A.1a,{6L:A.2e("bO")||A.2e("5o"),6O:A.2e("4j")||0,8d:1m.5r.35})},eE:k(){j A=o,B=A.1a;A.29(B,{f6:A.2e("b9")||"",f5:A.2e("mm")||"",fc:A.2e("mo")||"",2O:A.2e("2O")||B.2O||B.1N.9Q,1B:A.2e("1B")||B.1B||"at",fD:A.2e("mp")||B.2i.2G.hd,fE:A.2e("mq")||B.2i.2G.ha,46:A.2e("mr")||1n,6c:A.2e("mu")||B.2i.mv||B.6c,bP:A.2e("mx")||A.2e("my"),4B:A.2e("4B")||""})},2e:k(A){j E=o.1a.4x,C="mz",B=C+"s",D="2a";C+="66",B+="66";l E&&1q 1H[E+"66"+A]!=D?1H[E+"66"+A]:1q 1H[B+A]!=D?1H[B+A]:1q 1H[C+A]!=D?1H[C+A]:1f},ez:k(B){j A=o.mA;l A?A[B]:1f},ew:k(){j F=o,J=F.1a,H,B,K="",I;if(J.3s){l}j D=1m.3F("4L");j C=J.3X=1q ey!="2a"?ey:F.ez("3X");I=C?/\\/mB\\.js$/:/\\/5Y\\.js$/;1r(j E=0,G=D.1b;E=C?D[B]+" (mS)":D[B]}}l"aK"};1g.2P=k(B){j A=1g.1A||1g.3N||1g.5L||1g.3o||1g.9h||1g.4o||"aK";l B?2W(A)||-1:A};1g.6d=k(){l[1g.aI(),1g.2P(),1g.eM()].1s(" ")}},eN:k(){j C=o,A=C.1I,B=C.1a.eP[A.aI()];l B&&A.2P(1l)>=B},2f:k(){if(4K.1b<2){l}j A=4K[0];1r(j B=1;B<4K.1b;B++){A[A.1b]=4K[B]}},dF:k(){j B=o,C=B.1a;j A=B.1d.3i.3g(5r.eQ,"il.mV")||B.2e("mW");if(A){B.1a.2i.4R=A}B.eS()},eS:k(E){j C=o,F=C.1d,D=C.1a,A=D.7w,B=D.3u;if(E&&A){D.8z=A.72[A.mX].1K}1j{B.8A=26 3m().3h();D.8z=D.1K=C.fC();B.8A=26 3m().3h()-B.8A;D.8x=1m.55;D.bv=C.fx();D.7D=C.f0();C.fY();D.di=F.eV();D.5T=(C.2e("mY")||1m.mZ||1m.eX||"").2H();D.6K=["2E://",D.2i.4R,"/3p/n1.6i","?5T=",D.5T,"&r=",C.96()].1s("");D.7c=["2E://",D.2i.4R,"/8K/n2.4C"].1s("")}D.6s=C.7M(D.8z,"|");if(D.6s=9){H.by="f";B.bp()}1j{if(C.2i.2G.bh!="bq"&&F0){j E=3r(H.6B);E=E.4W(0,E.1b-D);E=E.4W(0,2h.5u(E.91(3r("|")),E.91(3r(" ")))||E.1b);H.6B=7g(E);H.6s=B.7M(H.6B,"|")}if(H.6B==""){l}H.by="s";B.as()}}}},as:k(){j A=o,B=A.1a;A.3t(B.6K,B.4c)},fo:k(){j B=o,F=B.1d,C=B.1a,A=[],G;1r(j D in C.4c){B.2f(A,{1u:"3A",2t:"33",2L:{2m:D},2q:C.4c[D]})}G=1m.56("fq");if(G){j E=G.2z;E.6A(G)}G=F.1D.3a({1u:"1e",2C:1m.1O,id:"fq",17:{1z:"1E"},2N:[{1u:"6r",id:"fr",2N:A,2L:{52:"9l",3p:C.6K,49:"9f"}},{1u:"1e",id:"nr",2x:\'<2R id="9f" 2m="9f" 2Y="\'+C.7c+\'" 1h="1" 1c="1" an="0" bz="no">\'}]});if(1H.6H){1H.6H("nt",B.ao)}1j{1H.7o("g1",B.ao,1n)}if(G){1m.56("fr").7p()}},bp:k(){j B=o,C=B.1a,E=B.1d,F=E.42,A=B.1I;if(A.1A){j D={3p:"5E",1C:C.6K,52:"bq",cS:"5Z",4u:"o.bs",77:"o.bN"};F.8i(D,C.4c)}1j{if(!C.4Q){if(C.bo<=0){C.bm=1n;B.bn();l}C.bo-=50;4l(B.bp,50);l}F.5E(C.6K,"bq",C.4c,"5Z","o.bs","o.bN")}},bs:k(32){j 8t=1n,1i=32.1i;3z{8t=5k(1i.1W(/^1i=/,""))}3x(e){}if(8t){o.9g(8t)}},ao:k(1Z){j il=o,1G=il.1a,4M;j ap=1Z.ap||"2E://"+1Z.ff;if(ap.2Z(/^2E:\\/\\/[\\w\\.-]+\\.5Y\\.\\w+/)==1f){l}3z{4M=5k(1Z.1i)}3x(ex){il.3O(1n,"nw")}j 2R=1m.56("9f");if(2R){2R.2Y=1G.7c}il.9g(4M)},fx:k(){j C=1m.3F("ny");1r(j B=0,A=C.1b;B"].1s("")};j C=k(K){l G.2v([""].1s(""))};j E=C(H.bF);j A=C(H.a6);j D=(E==-1||A==-1)?2h.5u(E,A):2h.5H(E,A);j J=C(H.bD);j B=C(H.bC);j I=(J==-1||B==-1)?2h.5u(J,B):2h.5H(J,B);H.5m=(D==-1||(I!=-1&&D>I))},fC:k(){j F=o,J=F.1a,E=J.5f,A=F.1d,G=A.2y,C=J.fD,D=J.fE;if(D){E.fF=G.3g(D.fG,{},1);E.8s=G.3g(D.fH,{},1);E.90=G.3g(D.1p,{},1);1r(j H in E.fF){if(E.5y[H]){7k E.5y[H]}}if(!D.5H){D.5H=1}E.6J=1l}if(C){E.5y=G.3g(C.fG,E.5y,1);E.9s=G.3g(C.fH,E.9s,1);E.9t=G.3g(C.1p,E.9t,1)}F.d4();F.fK();E.fX=F.2e("nJ");F.9m(1m.1O);j I=E.1K.1s("|");I=F.9q(I,"|");j B=F.7M(I,"|");if(E.6J&&B=H.bA){H.5q=1l}1j{D=B.9w}j J=C.6Z(H.8s).1b>0,F=C.6Z(H.90).1b>0;4e(D){1t G.fM:1t G.fN:if(K.fV(B)){if(H.6J&&!H.5P&&!H.5y[B.3Q.2H()]&&((!J&&!F)||(J&&B.id&&H.8s[B.id])||(F&&B.3I&&C.bL(H.90,B.3I.2V(/\\s+/))))){H.5P=B}1r(j E=0,N=B.4A.1b;EO.6M){O.6M=I}1R;1t G.9y:if(H.5m&&H.5P){j L=K.1d.3i.5B(B.1i).1W(/\\s+/g," ");if(L.1b>3){if(H.9n!=-1&&H.7L+L.1b>H.9n){H.5q=1l;L=L.3P(0,H.9n-H.7L).1W(/\\S+$/,"")}K.2f(H.5c,B);K.2f(H.1K,L);H.7L+=L.1b}}1R;1t G.fO:4e(K.1d.3i.5B(B.1i)){1t H.bC:1t H.bD:H.5m=1n;1R;1t H.a6:1t H.bF:H.5m=1l;1R;1t H.fQ:1t H.fR:H.5m=!H.5m;1R;1t H.fS:1t H.fT:H.5q=1l}}if(H.bH==B){H.2o=1f;l{5c:A.2y.9p(H.5c),1K:A.2y.9p(H.1K)}}},9q:k(D,A){if(!A){A="|"}D=D.1W(/\\.|:|;|<|>|=|\\?|\\(|\\)|\\[|\\]|\\{|\\}|,|"|\\nP|\\nQ|\\\\/g,A);D=D.1W(/[\'`\\-]\\W/g,"|").1W(/\\W[\'`\\-]/g,"|");j C=26 6k("\\\\s*\\\\"+A+"+\\\\s*","g");j B=26 6k("\\\\"+A+"{2,}","g");D=D.1W(C,A).1W(B,A);l D.6d().2H()},7M:k(D,B){j C=26 6k("\\\\"+B+"|\\\\s","g");j A=D.2Z(C);l(A!=1f)?A.1b+1:0},fV:k(D){j B=o,C=B.1a,A=C.5f,E=B.1d;l!((D.fW("3U")!=1f&&D!=1m.1O&&!A.fX)||A.5y[D.3Q.2H()]||(D.id&&A.9s[D.id])||(D.3I&&E.3w.bL(A.9t,D.3I.2V(/\\s+/)))||(!C.2i.2G.ht&&!E.1D.1U.71(D)))},fY:k(){j K=o,L=K.1a,D="nS",H=[],B=1m.nT(D),C,F,E,G={},A=0,J=K.1d.1D.1U;1r(j I=0;I=9){if(G.1I.1A){j I={3p:"9x",nW:"5Z",nX:D.5Z};G.1d.42.8i(I,1f)}1j{3z{B.42.9x("5Z",D.5Z)}3x(F){G.3O(1n,"nZ")}}}E=H.5d;C.9I=[0,E.1V?E.1V.1v.1b:0];C.g4=[0,E.57?E.57.1v.1b:0];H.7Z=B.3w.6Z(H.1v);if(H.7Z.1b||H.bP){if(!G.1x[H.2O]){G.3t(G.8O(H.2O),1f,k(){j J=o;J.1x[J.1a.2O].8o()})}}1j{G.3O(1n,"o1")}if(H.bP){G.3t(A+"o3.js",1f,"o4")}G.g9()},5t:k(A){j B=o,C=B.1a;if(1q A=="1S"){A=C.3K[A]}if(A){j D=C.1v[A.1T];if(D&&D.1i&&D.1i.2O){l B.1x[D.1i.2O]}}l B.1x[C.2O]},8O:k(B){j A=o.1a;l["2E://",A.3s,A.76,"o6",B,".js"].1s("")},g9:k(){j A=o,B=A.1a;A.ch();B.3u.9o=26 3m().3h();if(B.2w&&A.2w.dI()){l}A.bV()},bR:k(){j E=o,H=E.1a.6u,D,G;k C(){l 4K[1].ga()}j A=E.1d.3i.8M("io im ik gd ii ih gg gh ib ia 2B i9 i8 i7 i6 gp gq i3 i2 i1 gt hZ hY hX gw");1r(j F=0,B=A.1b;F=V.9G){1R}W=U[Y];P=W.1i;L=T.bX(P);if(!L||W.2z.3I==V.2X){3b}I=1n;B=P.2V(T).1b-1;M=W.2z;J=M.c3||M.7I;R=J.2V(/\\W+/).1b;C=1m.gW();U.6W(Y,1);3J(L&&Q.1V.1b0){S=1m.73(P.4W(0,L.3j));C.4d(S);U.6W(Y++,0,S)}if(O.1I.1A){c=1m.7N("3D");c.2x=["<3D>",a.3S(0),"",a.3P(1)].1s("")}1j{c=1m.73(a)}c=C.4d(c);K=26 O.bu(c,M,B,R,N,"1V");O.2f(Q.1V,K)}P=P.4W(L.3j+a.1b);L=T.bX(P)}if(!I){3b}if(P!=""){S=1m.73(P);C.4d(S);U.6W(Y,0,S)}M.7O(C,W);M.6A(W);W.1i="";H=U.1b}O.c0(Q.1V);O.au(Q.1V);O.1d.bj(Q.1V,"bk",1n)}O.al(A)},al:k(C){j A=o,B=A.1a;A.cb(C);if(B.7V.1b){A.9N("57",1n);A.3t([B.3s,B.76,"h8.js"].1s(""),1f)}A.9N("1V",1l)},c0:k(D){j B=o,E;if(!B.1I.1A){l}1r(j C=0,A=D.1b;C1&&A<6?1:A>9?0:0.5},2M:k(A){l!A||A>16||A<10?0:1},6a:k(A){l A<10?0:A<20?0.3:A<30?0.6:1},68:k(A){l A>0.4?1:A>0.2?0.5:A}},au:k(D){j B=o,G,E=B.1a.c5,F=B.c6;1r(j C=0,A=D.1b;C=D.7i){1R}}if(D.80&&G>=D.80){1R}}L.cv(A)},cf:k(N,D){j J=o,M=J.1a,E=M.2k,B=J.1d,I=B.1D.1U,H=J.1I,F=[],A,G=N.1P;j K=I.2u(N.2z);N.id=G.id=M.2X+(++M.cg);M.3K[N.id]=N;G.3I=M.2X;j L=D.1i||D.7I;if(E.4g){G.2x=[L,\'<3D 1J="\',M.2X,\'7e">\'].1s("")}1j{G.2x=L}if(K["ci"]){J.2f(F,"2s-9r:",K["ci"]," !1Y;")}if(K["65"]){J.2f(F,"2s-5Q:",K["65"]," !1Y;")}if(K["cj"]){J.2f(F,"2s-17:",K["cj"]," !1Y;")}if(!H.1A&&!H.4o&&K["2M"]){J.2f(F,"2s-53:",K["2M"]," !1Y;")}if(H.1A){J.2f(F,J.cn(D))}j C="#"+G.id;B.1D.17.2T(C,F.1s(""));N.4O=1n;N.2p=0;G.hB=k(O){if(!O){O=1H.1Z}O.cm=1l};G.3C=k(O){if(!o.8W){l}o.8W(O,N)};G.3E=k(){o.9k(N)};G.3U=k(O){if(!O){O=1H.1Z}o.7B(O,N)};l G},cn:k(B){j H=o,J=H.1a,D=J.2k,A=H.1d,G=A.1D.1U,F=H.1I,E=[];if(F.2P()>=7&&D.2B=="6Q"){H.2f(E,"2J:1M 3f 1X; 2J-2A:1M 3f ",D.51,";")}if(D.2B!="81"&&D.2B!="1E"){4e(J.cq){1t 1:H.2f(E,"1y:4H;");1R;1t 2:H.2f(E,"3W-2A:1F;");1R;1t 3:H.2f(E,"1y:4H;3W-2A:1F;");1R}}j I=B.cr,C=G.4U(B);if(I&&I.3Q.2H().2Z(/^(?:li|hK)$/)!=1f){if(C.1k+B.3V>=G.4U(I).1k+I.3V){G.7P(I,{85:"3T"})}}if(C.1k+B.3V>1m.1O.9K){G.7P(1m.1O,{85:"3T"})}I=B.2z;if(D.2B=="6Q"&&G.2u(I,"ct")&&2g(G.2u(I,"85"))<2&&I.3V<18){I.17.85="1F"}l E.1s("")},cv:k(F){j G=o,J=G.1a,A,I,D,K,C,B,E;j H=1q F!="2a"?J.7w.72[F].1v:J.1v;if(!G.1I.1A){l}1r(I in H){A=H[I].1V;if(!A){3b}1r(D=0,K=A.1b;D=1G.2k.5n){5M(2Q.2o);2Q.2o=1f;il.1x.4i(1L)}1j{5M(2Q.2o);2Q.2o=4l(k(){il.1x.4i(1L)},1G.2k.5n-a9)}}1j{if(1G.36&&!1i.7z){il.8q(1L)}}},b1:k(A){if(!(A 4N 2y)){A=[A]}1r(j B=0;B1){A.2p=1;E.8S=1n;B.1x.4i(A)}1j{B.1x.4E(A)}},gb:k(A){j B=o,D=B.1a,C=D.2k,E=D.1v[A.1T].1i;j F=E.27[A.2p].4s=="1K"?C.79:C.af;if(B.1I.5L){4l(k(){j H=o,I=H.1a,G=o.1d.1D;I.6I={1o:0,ag:1,el:G.3a({1u:"1e",1p:I.2I,2C:G.1U.$(I.1N.id+"8u"),17:{1y:"3M",4w:I.6M+6,1k:0,1o:0,1h:"1M",1c:"1M"}}),cZ:k(){j J=o.1a.6I;J.el.17.1o=J.ag==1?"1M":"aO";J.ag*=-1}};I.6I.eL=jg(I.6I.cZ,4S)},4S)}if(D.36){4l(k(){B.8q(A)},F);l}if(A.4O){D.1N.7r=1l}1j{4l(k(){B.1x.4E(A)},F)}},8q:k(A){j B=o,D=B.1a,E=D.1v[A.1T],F=E.1i;if(D.3e&&!D.36){l}if((D.3e=="ah"||D.3e=="ai")&&F&&F.27[A.2p].4t==""){D.36=1n;if(D.3R){B.1x.4E(A);D.3R.d5();D.3R=1f}l}j C=B.am(A,1f,D.3e);B.8w({4u:1l,1C:C,1L:A})},8w:k(A){j B=o,E=B.1a,D=B.1d.62.6j();j F=k(){B.d1(A,D)};j C=["2E://",E.7K,"/",D,"/ck.js?5p=",E.5p].1s("");B.3t(C,1f,F)},d1:k(H,A){if(!H.4u){l}j G=o,K=G.1a,R=G.1I,F=G.1d,I=H.1L,J=K.2k.6C;if(K.aj[A]){l}K.aj[A]=1l;if(!H.ak){H.ak=R.1A?d2:d3}j C=H.1C||K.1v[I.1T].1i.27[I.2p].4t;G.aq(I);j P=I.1P.id;I=1f;K.36=1n;G.1x.4E(I);if(C.1b0){J.9i-=25;4l(k(){H.1x.4i(K)},25);l}1j{J.9i=5i}}}if(F.44){F.44.17.1z="1E"}}1j{F.7x=1n;j B=A.ek(F.1Z,K,{1h:F.8Q,1c:F.8R});G.7P(F.44,{1k:B.1k+"1w",1o:B.1o+"1w",1z:"2F"})}},6l:{3B:0,8F:1f,8V:1f,9j:1f,8X:1f,8Y:1f,92:{at:{1K:"#ml",bg:{3y:"#et",7m:"#5G",2b:"#mn"},2K:{3y:"#5G",7m:"#et",2b:"#5G"}}},dq:k(A){j C=o,B=C.1d.1D,E=B.1U.$,G=C.1a.1N.id,F=C.1x.6l,D=C.1a.1v[A.1T].1i;B.3a(C.29(F.eC(A),{2C:E(G+"8u")}));F.3B=0;F.8F=D.27.1b;F.8V=E(G+"eK");F.9j=F.8V.3F("1e");F.8X=E(G+"eO");F.8Y=F.8X.3F("1e")},9d:k(F,A){j C=o,G=C.1x.6l,D=G.92[C.1a.1B],E,B=F.1b;1r(E=0;E <1e 1J="<%= 1p %>" 17="4r:0 0 4m <%= 4F ? 9 : 0 %>1w; 1c:f2;"> <1e 1J="<%= 1p %>" 17="1c:f2; fm-1c:n8; 2s-53:8k; 2s-5Q:5D; 1K-5w:1E; 2c: <%= 1B.55 %>; 2s-9r:bK 9u, 9e, 8h-8c; 1z:n9-na; bc-5A:1k;"><%= ad.55 %> <%if (fy){ %> <% if(2S.43.3L()){ %> <7E id="<%= id %>fg" 1J="<%= 1p %>" 17="6t:1o; 5u-1h:aB; 1c:be; 1z:2F; 2J:3Z 3f <%= 1B.8y %>; 4r-2D:7j; <%= 2S.7b(\\\'0 0 5v 0 \\\' + 1B.dL) %>" 2Y="<%= 4f %>" 98=""/> <% } 1j { %> <1e 1J="<%= 1p %>" 17="6t:1o; 1h:aB; 1c:be; 3W:2n; 4r:-6N 3T 0 <%= 4F ? 0 : -9 %>1w; 1Q:1C(<%= 3c %>3l.<%= 5e %>) no-2d 2l 0 0 1X;"> <7E id="<%= id %>fg" 1J="<%= 1p %>" 17="<% if(!4F){ %>5u-<% } %>1h:aB; 1c:be; 1K-5A:4y;" 2Y="<%= 4f %>" 98=""/> <% } %> <% } %> <1e 1J="<%= 1p %>" 17="7h:33; 1c:ni; fm-1c:6f; 2s-53:2n; 1K-5w:1E; 2c:<%= 1B.1K %>; 2s-5Q:5D;"><%= ad.1K %> <1e 1J="<%= 1p %>" 17="<%= 28 %> 2A:2n; 1o:<%= 4F ? 9 : 0 %>1w; 1h:nm; 1c:4Z; 7h:33; 2s-53:2n; 2s-5Q:5D; 1K-5w:2B; 2c:<%= 1B.g6 %>;" 55="<%= ad.7H %>"><%= ad.7H %> <1e 1J="<%= 1p %> <%= id %>59" 17="<%= 28 %> 2A:fn; 2D:0; 1h:nq; 1c:ns; 3W-1k:3T; 1Q-1y:0 -fs; 1Q-2d:2d-x; 2J:1M 3f <%= 1B.fL %>; <%= 2S.7l(\\\'3T\\\') %> 1K-5A:4y; 2c:<%= 1B.fz %>; 2s-53:2n; 3d:3n; 2s-5Q:5D;" 3C="1g.17.2r=\\\'0 -nu\\\';" 3E="1g.17.2r=\\\'0 -fs\\\';">fu fv\';l I.1d.5W(E,{id:K.1N.id,1p:K.2I,3Y:F,1i:D,ad:J,4f:A,fy:B,1z:F!=L.2p?"1E":"2F",1B:I.5t(L).1a.64[K.1B],2S:I.1d.1D.17,28:"1y:3M;",3c:G,5e:C?"4X":"2U",4F:C})},4C:k(A,D){j B=o,C=B.1a;l B.1d.5W(\'<1e id="<%= id %>47<%= 3Y %>" 1J="<%= 1p %>" 17="1c:<%= 1i.1c %>1w; 1y:4H; 1z:<%= 1z %>;"><%= 3k %>\',{id:C.1N.id,1p:C.2I,3Y:D,1i:C.1v[A.1T].1i,1z:D!=A.2p?"1E":"2F",3k:B.1d.7F(A)})},2R:k(A,E){j B=o,C=B.1a;j D=\'<1e id="<%= id %>47<%= 3Y %>" 1J="<%= 1p %>" 17="1z:<%= 1z %>;"> <1e 1p="<%= 1p %>" 17="1h:<%= 1i.1h %>1w; 1c:<%= 1i.1c %>1w;"> <2R id="6g<%= 3Y %>" 2m="6g<%= 3Y %>" 2Y="<%= 1G.7c %>" 1h="<%= 1i.1h %>" 1c="<%= 1i.1c %>" an="0" bz="no"> <6r id="<%= id %>8p<%= 3Y %>" 52="9l" 3p="2E://<%= 1G.7K %>/5N.6i" 49="6g<%= 3Y %>" 17="1z:1E;"> <3A 2t="33" 2m="5N" 2q="<%= 3r(3k.2V(\\\'\\\').fU().1s(\\\'\\\')) %>" /> <3A 2t="33" 2m="5o" 2q="<%= 1G.6L %>" /> <3A 2t="33" 2m="4j" 2q="<%= 1G.6O %>" /> <3A 2t="33" 2m="5x" 2q="<%= 1G.3X %>" /> \';l B.1d.5W(D,{id:C.1N.id,1p:C.2I,3Y:E,1i:C.1v[A.1T].1i,1z:E!=A.2p?"1E":"2F",3k:B.1d.7F(A),1G:C})}},4n:{8o:k(){j E=o,C=E.1x.4n.1a,B=E.1I,D=2W(B.1A)<7,G=E.1d.1D.17;if(!C.aE){j A="";if(!G.43.87()){A+=" 2Q-1O-bg 2Q-b6-bg"}if(!G.43.75()){A+=" 9F-67"}if(!G.43.3L()&&(!B.1A||!D)){A+=" 3l 3l-h 3l-v"}if(!B.1A||2W(B.1A)>=8){G.2T(".e5","1Q:1C(1i:6m/2U;da,nY/o0+o2+o5/o7+o8/gc+ge/gf+gj/gk+P+gl/gn/gr+gs+gu+gv/gx/gz+gB+gE/gG+gH+gJ/gK/gN+gO/gP/gQ/gR/gS+gT/gU+gV+gX+gY+gZ/h0+h7/h9+d+hb/hc+he+hf/hg+hh/7+hi/hl/ho/hp/hr/hs+hu+hv/hw+hx/hy/hz/hA/hC/hD/hG/hH/hI+hL+hO+hP/hQ/hR/hS/hT/hV+i4/+i5+ie/ig+ij+ip/ir/it+iv+ix+iy/iz+/iB/iD+iE/iF/iH/iI+iK/iM/iN+iQ/iR+iS/iT+iU/+iW+iX+iY+iZ/j0+j2/j3+j4+j5+j6/j7+j8+j9/ja/jb/jc+jd+je/jf/jh+ji+jj/jk/jl+jm+jn+jo+jp/jq+jt+jv+jx+jy/jB+jC+jE=) no-2d 2l 0 0 1X;");G.2T(".dg","1Q:1C(1i:6m/2U;da,jI///////jK/jL+jN/jP+jR/jU/jY+k1/k4/k5+k6+kb/kc+kg) no-2d 2l 4y 4y 1X;")}1j{j F=E.1x.4I("4n",E.1a.1B);G.2T(".e5",["1Q:1C(",F,"2Q.",D?"4X":"2U",") no-2d 2l 0 0 1X;"].1s(""));G.2T(".dg",["1Q:1C(",F,"kq.4X) no-2d 2l 4y 4y 1X;"].1s(""));A+=" 2Q"}E.1x.dk("4n",E.1a.1B,A)}C.aE=1l},1a:{aE:1n,az:1,7d:1f,7a:1f,9Z:1f,a8:1f,64:{at:{eW:"#kI",eY:"#5G",6S:"#kL",9A:"#kO",9C:"#5G",9P:"#kQ",eR:"#kS",8y:"#5G",cG:"#kU",cH:"#5G",cz:"#l0",55:"#l1",1K:"#l6",dL:"la(0,0,0,.39)",g6:"#lf",fL:"#ll",fz:"#aw"},ly:{},lC:{}}},cY:k(Q,L,I){j F=o,S=F.1a,D=S.1N,T=F.1x.4n,U=F.1I,W=T.1a,B=S.2k,E=U.1A&&U.2P()<=6,N={};j V=S.1v[I.1T].1i;j H=F.1x.4I("4n",S.1B);j C={1C:E&&B.dX?B.dX:B.lM||1n,1h:2h.5H(B.lP||63,lT),1c:2h.5H(B.lX||23,25),bI:B.m2||S.ep};if(!F.1d.1D.17.43.3L()&&(!U.1A||2W(U.1A)>=7)){j J={},M={},K={};if(I.aZ){J.1c=2h.aT(I.1P.3V/2);M.1k=I.3v.1k;M.1o=I.1P.9z;M.1h=I.3v.1o+I.1P.4p-I.1P.9z;K.1k=I.3v.1k+J.1c;K.1o=I.3v.1o;j A=F.1d.1D.3a({1u:"3D",2C:I.1P,1p:S.2I});j P=F.1d.1D.1U.4U(A);K.1h=P.1o-I.3v.1o;I.1P.6A(A);j R=2h.em(2h.8U(M.1o-I.1Z.7t,2)+2h.8U(M.1k-I.1Z.7s,2));j O=2h.em(2h.8U(K.1o-I.1Z.7t,2)+2h.8U(K.1k-I.1Z.7s,2));F.29(J,R <1e id="<%= id %>mU" 1J="<%= 1p %>" 17="<%= 28 %> 1k:<%= 3q == \\\'T\\\' ? 0 : \\\'2n\\\' %>; 1o:0; 1h:<%= 1h+10 %>1w; 1c:<%= 1c+39 %>1w; 2J:1M 3f <%= 1B.eR %>; <%= 2S.7l(\\\'4T\\\') %> <% if (2S.43.87()){ %>1Q-2c:<%= 1B.8y %>; <%= 2S.9S(3q == \\\'T\\\' ? \\\'2A\\\' : \\\'1k\\\', (3q == \\\'T\\\' && 2g(b.4a) >= 89) ? 1c+19 : 22, 1B.eW, 1B.eY) %><% } 1j { %>1Q:1C(<%= 3c %>2Q-b6-bg.<%= 5e %>) 2d-x 2l 0 <%= 3q == \\\'T\\\' ? 1c+19+\\\'1w\\\' : \\\'-n6\\\' %> <%= 1B.8y %>;<% } %> <%= 2S.7b(\\\'0 0 a3 0 #a4\\\') %>" 3C="o.5t(\\\'<%= 1L.id %>\\\').a2(1g, \\\'<%= 1L.id %>\\\');" 3E="o.5t(\\\'<%= 1L.id %>\\\').9O(1g, \\\'<%= 1L.id %>\\\');"> <1e id="<%= id %>nb" 1J="<%= 1p %>" 17="1h: 4S%; 1c: nc; <%= 28 %> <%= 3q == \\\'T\\\' ? \\\'2A:0;\\\' : \\\'1k: 0;\\\' %> 1o: 0; z-3j: <%= 4w+4 %>;"> <% if (1q 1G.4x == "4G"){ %> nv fw nx<3D 17="1y: 3M; 1k: 4m; 2s-53: 5v; 2D: nF;" 1J="bx">- <% }/*nK*/ %> <1e id="<%= id %>nM" 1J="<%= 1p %>" 17="<%= 28 %> 1k: 6N; 2D: <%= (1q 1G.4x != "4G") ? "fP" : "aS" %>; 1c: 6f; 2s-5Q: 6F; 2s-9r:bK 9u, 9e, 8h-8c; 2c:<%= 1B.9P %>; 2s-53: 6N;"><%= 1i.27[1L.2p].9P || \\\'gm\\\' %> <% if (2S.43.75()){ %> <1e id="<%= id %>c1" 1J="<%= 1p %> <%= id %>59" 17="<%= 28 %> 1k:4m; 2D:4T; 1h:2n; 1c:2n; 3d:3n; 1Q-1y:-2n -7R; 2J:1M 3f <%= 1B.6S %>; <%= 2S.7l(\\\'4m\\\') %> <%= 2S.7b(\\\'0 -1M 1M 0 \\\' + 1B.9C) %>" 3U="o.1x.9H(1Z, \\\'<%= 1L.id %>\\\')" 3C="1g.17.4k=\\\'<%= 1B.9A %>\\\';" 3E="1g.17.4k = \\\'<%= 1B.6S %>\\\';"> <% } 1j { %> <1e 1J="<%= 1p %> <%= id %>59" 17="<%= 28 %> 1k:1F; 1o:1F; 1h:2n; 1c:2n; 1Q-1y:0 -7R;"> <1e id="<%= id %>c1" 1J="<%= 1p %>" 17="<%= 28 %> 1k: 5b; 2D: 4T; 1h: 4Z; 1c: 4Z; 3d:3n; 1Q: 1C(<%= 3c %>9F-67.<%= 5e %>) no-2d 2l 0 0 1X;" 3U="o.1x.9H(1Z, \\\'<%= 1L.id %>\\\')" 3C="1g.17.2r=\\\'0 -4Z\\\';" 3E="1g.17.2r = \\\'0 0\\\';"> <1e 1J="<%= 1p %> <%= id %>59" 17="<%= 28 %> 1k:1F; 1o:1F; 1h:2n; 1c:2n; 1Q-1y:-2n -7R;"> <% } %> <1e id="<%= id %>8u" 1J="<%= 1p %>" 17="<%= 28 %> 1k:<%= 3q == \\\'T\\\' ? 4 : 34 %>1w; 1o:3Z; 1h:<%= 1h %>1w; 1c:<%= 1c %>1w; 2c:<%= 1B.1K %>; 3d: 3n; 2J:1M 3f <%= 1B.cz %>; <% if (2S.43.87()){ %><%= 2S.9S(3q == \\\'T\\\' ? \\\'2A\\\' : \\\'1k\\\', (3q == \\\'T\\\' && 2g(b.4a) >= 89) ? 1c-41 : 41, 1B.cG, 1B.cH) %><% } 1j { %>1Q:1C(<%= 3c %>2Q-1O-bg.<%= 5e %>) 2d-x 2l 0 <%= 3q == \\\'T\\\' ? 1c-41 : -41 %>1w 1X;<% } %>" 3U="o.7B(1Z, o.1d.cO(\\\'<%= 1L.id %>\\\'));"> <%= il.cP(1L, 1i) %> <1e id="<%= id %>iV" 1J="<%= 1p %> <%= id %>59" 17="<%= 28 %> 1h: 8k; 1c: 8k; z-3j: <%= 4w+5 %>; 1Q-1y:<%= 3q == \\\'T\\\' ? \\\'-8k -cU;\\\' : \\\'0 -cU;\\\' %>; 1k:<%= 3q == \\\'T\\\' ? 1c+39 : 0 %>1w; <%= fh == \\\'L\\\' ? \\\'2D: 24\\\' : \\\'1o: 24\\\' %>1w;"><% if (!2S.43.3L() && (!b.1A || 2W(b.1A) >= 7)){ %><1e id="<%= id %>bw" 1J="<%= 1p %>" 17="<%= 28 %> 1k:<%= 1L.5j.1k - (3q == \\\'T\\\' ? 37 : 24) %>1w; 1o:<%= 1L.5j.1o-37 %>1w; 1h:<%= 1h+10+74 %>1w; 1c:<%= 1c+39+74 %>1w; z-3j:<%= 4w+1 %>;" <% if (b.3N && 2W(b.3N) < 3.5){ %> 3C="o.5t(\\\'<%= 1L.id %>\\\').a2(1g, \\\'<%= 1L.id %>\\\');" 3E="o.5t(\\\'<%= 1L.id %>\\\').9O(1g, \\\'<%= 1L.id %>\\\');"<% } %>> <1e id="<%= id %>jJ" 1J="<%= 1p %>" 17="<%= 28 %> 1k:0; 1o:0; 1h:4b; 1c:95; 1Q:1C(<%= 3c %>3l.2U) no-2d 2l 0 -88 1X;"> <1e id="<%= id %>jM" 1J="<%= 1p %>" 17="<%= 28 %> 1k:0; 1o:4b; 1h:<%= 1h+10-60 %>1w; 1c:6p; 1Q:1C(<%= 3c %>3l-h.2U) 2d-x 2l 0 0 1X;"> <1e id="<%= id %>jQ" 1J="<%= 1p %>" 17="<%= 28 %> 1k:0; 2D:0; 1h:8B; 1c:95; 1Q:1C(<%= 3c %>3l.2U) no-2d 2l -4b -88 1X;"> <1e id="<%= id %>jV" 1J="<%= 1p %>" 17="<%= 28 %> 1k:95; 1o:0; 1h:6p; 1c:<%= 1c+39-61 %>1w; 1Q:1C(<%= 3c %>3l-v.2U) 2d-y 2l 0 0 1X;"> <1e id="<%= id %>k2" 1J="<%= 1p %>" 17="<%= 28 %> 1k:95; 2D:0; 1h:6p; 1c:<%= 1c+39-61 %>1w; 1Q:1C(<%= 3c %>3l-v.2U) 2d-y 2l -8b 0 1X;"> <1e id="<%= id %>kt" 1J="<%= 1p %>" 17="<%= 28 %> 2A:0; 1o:0; 1h:4b; 1c:8B; 1Q:1C(<%= 3c %>3l.2U) no-2d 2l 0 -8e 1X;"> <1e id="<%= id %>kB" 1J="<%= 1p %>" 17="<%= 28 %> 2A:0; 1o:4b; 1h:<%= 1h+10-60 %>1w; 1c:6p; 1Q:1C(<%= 3c %>3l-h.2U) 2d-x 2l 0 -8b 1X;"> <1e id="<%= id %>kV" 1J="<%= 1p %>" 17="<%= 28 %> 2A:0; 2D:0; 1h:8B; 1c:8B; 1Q:1C(<%= 3c %>3l.2U) no-2d 2l -4b -8e 1X;"><1e id="<%= id %>e0" 1J="<%= 1p %>" 17="<%= 28 %> 1k:<%= 6T.1k %>1w; 1o:<%= 6T.1o %>1w; 1h:<%= 6T.1h %>1w; 1c:<%= 6T.1c %>1w; z-3j:<%= 4w+6 %>; 3d:3n;" 3C="o.8W(1Z, \\\'<%= 1L.id %>\\\');" 3E="o.9k(\\\'<%= 1L.id %>\\\');" 3U="o.7B(1Z, \\\'<%= 1L.id %>\\\')"><% } %>\';l F.1d.5W(G,{il:F,1G:S,eT:T,1L:I,1i:V,id:D.id,1p:S.2I,b:U,1h:Q,1c:L,fh:I.40,3q:I.45,28:"1y:3M;",4w:S.6M,5s:C,bB:B.nO||(S.4x?C.bI:F.1d.5W(S.9B,{bO:S.6L,4j:S.6O},"9B")),1B:W.64[S.1B],2S:F.1d.1D.17,3c:H,5e:E?"4X":"2U",4F:E,6T:J},V.9L,1l)},9O:k(E,G){j D="0 0 a3 0 #a4",B=o,C=B.1a,A=B.1I,F=B.1d.1D.1U.$;B.9k(C.3K[G]);if(1q E.17.3L=="1S"){E.17.3L=D}1j{if(1q E.17.6G=="1S"){E.17.6G=D}1j{if(1q E.17.6b=="1S"&&(!A.3o||2g(A.3o>=97))){E.17.6b=D}1j{j H=C.1N.id+"bw";if(!F(H)){l}F(H+"dy").17.2r="0 -88";F(H+"dD").17.2r="0 0";F(H+"dK").17.2r="-4b -88";F(H+"fB").17.2r="0 0";F(H+"dT").17.2r="-8b 0";F(H+"e2").17.2r="0 -8e";F(H+"e9").17.2r="0 -8b";F(H+"en").17.2r="-4b -8e"}}}},a2:k(E,G){j D="0 0 a3 4T #a4",B=o,C=B.1a,A=B.1I,F=B.1d.1D.1U.$;B.cV(C.3K[G]);if(1q E.17.3L=="1S"){E.17.3L=D}1j{if(1q E.17.6G=="1S"){E.17.6G=D}1j{if(1q E.17.6b=="1S"&&(!A.3o||2g(A.3o>=97))){E.17.6b=D}1j{j H=C.1N.id+"bw";if(!F(H)){l}F(H+"dy").17.2r="0 -dN";F(H+"dD").17.2r="0 -6p";F(H+"dK").17.2r="-4b -dN";F(H+"fB").17.2r="-6p 0";F(H+"dT").17.2r="-aS 0";F(H+"e2").17.2r="0 -eH";F(H+"e9").17.2r="0 -aS";F(H+"en").17.2r="-4b -eH"}}}},4i:k(K){j I=o,C=I.1d,H=C.1D.1U,D=I.1x.4n,B=D.1a,J=I.1a,F=J.1N;j E=J.1v[K.1T].1i;j A=E.27.1b>1&&E.gy;j G=A?19:0;if(B.7d!=E.1h||B.7a!=E.1c){B.7d=E.1h;B.7a=E.1c;B.9Z=B.7d+12;B.a8=B.7a+54+G}K.5j=C.9M(F.1Z,K,{1h:B.9Z,1c:B.a8});K.5j.1k+=K.45=="T"?-5:5;K.5j.1o+=K.40=="L"?30:0;if(F.1P){1m.1O.6A(F.1P)}F.1P=I.1d.1D.3a({1u:"1e",1p:J.2I,2C:1m.1O,17:{1z:"1E"},2x:D.cY(B.7d,B.7a+G,K)});I.e6(H.$(F.id+"8u"),E,K);if(A){I.1x.6l.dq(K)}F.1P.17.1z="2F";I.gb(K)}}});o.g7()',62,1498,'|||||||||||||||||||var|function|return|||INFOLINKS|||||||||||||||||||||||||||||||||||||||||||||style|||Settings|length|height|Utils|div|null|this|width|data|else|top|true|document|false|left|cls|typeof|for|join|case|tag|sentences|px|Skins|position|display|IE|theme|url|DOM|none|2px|st|window|Browser|class|text|adObj|1px|bubble|body|node|background|break|string|sentence|element|intext|replace|transparent|important|event|||||||new|ads|abs|extend|undefined|disabled|color|repeat|getCustomerVar|push|parseInt|Math|gsdData|backgroundColor|behavior|scroll|name|13px|timer|currentAdIndex|value|backgroundPosition|font|type|getStyle|indexOf|custom|innerHTML|Array|parentNode|bottom|underline|parent|right|http|block|wd|toLowerCase|baseClass|border|arrow|attributes|fontSize|children|skin|getVersion|bbl|iframe|dms|addRule|png|split|parseFloat|adLinkClass|src|match|||responseObj|hidden||href|pendingClick||inBounds||createDOMFragment|continue|imgPath|cursor|adClicked|solid|toObject|getTime|String|index|content|shadow|Date|pointer|Safari|action|oY|encodeURIComponent|resourcesHost|loadScript|clientImpressionLog|pos|Object|catch|out|try|input|current|onmouseover|span|onmouseout|getElementsByTagName|makey|rect|className|while|adLinkMap|boxShadow|absolute|Firefox|registerError|substring|tagName|adWin|charAt|3px|onclick|offsetHeight|padding|version|adIndex|4px|orientationX||flashUtil|supports|loader|orientationY|denyClickBeforeBubbleShow|_AD_||target|AppleWebKit|66px|impressionParams|appendChild|switch|thumbURL|simanitIcon|uac|showBubble|wsid|borderColor|setTimeout|8px|zephyr|Opera|offsetWidth|tempData|margin|template|redirectURL|success|func|zIndex|whiteLabel|center|hoverQueue|childNodes|ifip|html|textDecoration|closeBubble|ie6|object|relative|getImagesPath|containers|arguments|script|obj|instanceof|hovered|response|flashObject|rs|100|6px|getAbsPos|queueObj|substr|gif|embed|17px||linkColor|method|size||title|getElementById|related||_BG|dotted|7px|nodes|components|imgExt|harvest|mouseEvent|5px|1000|bblPos|eval|actionData|enabled|bubbleShowDelay|pid|rid|stopped|location|logo|getSkin|max|10px|decoration|jsv|deniedTags|int|align|trim|com|bold|sendURLRequest|loadedScripts|ffffff|min|documentHead|opener|tmr_imp|Chrome|clearTimeout|echo|Windows|insideAllowedNode|weight|flashUtilData|param|pcode|externalObj|documentElement|VeST|contextReferenceKey|infolinks|fuid|||Time||themes|fontWeight|_|btn|importance|matches|wordCount|WebkitBoxShadow|sendClientLog|toString|flashVersion|16px|IL_AD_FRAME|rendered|htm|now|RegExp|pagination|image|linkHoverColor|simanitOver|37px|tmr_gsd|form|twnum|float|behaviorCustomer|ut|click|events|stopEvent|default|removeChild|ptxt|adsReuseWindow|selectedQueueObj|clear|normal|MozBoxShadow|attachEvent|fixerPixel|useAllowSettings|impressionUrl|customerId|maxZIndex|9px|websiteId|visible|double|borderBottom|headBtnBorder|simlink|simanitPosition|inline|splice|getWidth|dashed|keys|lineHeight|isVisible|instances|createTextNode||borderRadius|scriptPath|error|leni|bubbleHideDelay|mainHeight|buildBoxShadow|blankURL|mainWidth|_ICON|www|decodeURIComponent|overflow|highlightCount|12px|delete|buildBorderRadius|over|Linux|addEventListener|submit|toQueryString|showing|clientY|clientX|unhoverableAreas|complete|updater|hasData|Init|requireBubbleShow|sentenceObj|doAdClick|sheet|ref|img|parseTokens|navigator|displayedURL|innerText|open|routerHost|charCount|countWords|createElement|insertBefore|setStyle|firstChild|84px|textShadow|_blank|webkit|relatedTagsMarkers|moz|onViewPort|simanitWidth|sentencesKeys|sentencesLimit|single|textColor|titleColor|adLinkColor|paddingBottom|tmr_all|linearGradient|116px|530|onWin|74px|serif|customerUrl|183px|handler|trackerURL|sans|embedIE|GET|15px|queueSentenceObj|dataFetchTime|parser|initSkin|_AD_FORM|logClick|auth|allowedIds|dataObj|_BODY_MAIN|args|updateClickCookie|ptitle|bodyBg|currentText|tmr_har|68px|Gecko|getHeight|get|total|command|ilfc|request|TR|static|setBtnState|qw|wmode|getSkinUrl|tmr_wait|defaultWidth|defaultHeight|defer|readyState|pow|prev|doAdHover|next|nextArrow|clearHoverQueue|allowedCls|lastIndexOf|colors|_found|Mac|67px|getNoCacheValue|533|alt|actualTemplate||page_keyw|purl|colorArrow|Arial|IL_FRAME|handleResponse|MobileSafari|skinLoadingWaitTime|prevArrow|doAdOut|post|harvestText|charLimit|tmr_hi|clone|normalizeText|family|deniedIds|deniedCls|MS|nodeTypes|nodeType|setLocalStorage|TEXT|offsetLeft|headBtnBorderOver|defaultHelpUrl|headBtnShadow|viewport|ALL|header|maxSentenceIntextCandidates|xCloseBubble|intxt_num|categoryId|clientHeight|lid|adjustBubblePosition|postRenderCallback|outBubble|sponsor|defaultSkin|pageY|buildLinearGradient|mouseTracker|hoverRequestTimer|doubleUnderline|rts|cleanObj|dataPending|fullWidth|styleSheet|thumbnailsHost|overBubble|40px|0a3452|alwaysShowAd|tagOn|getDelta|fullHeight|time|loadExternalTagUrlSuccess|loadExternalTagUrlError|loadExternalTagUrlErrorFollowthrough||showFallbackAd|htmlBubbleHideDelay|direction|onLink|onLinkAfterWinOpen|redirectCookieUpdates|maxLength|renderLinks|getRedirectUrl|frameborder|receivePostMessage|origin|setLinkOutClasses|hasSpecialTags|sendImpressionByScript|sky|scoreIntextCandidates|isChild|000000|random|floor|rv|defaultView|97px|opacity|cssFloat|initialized|qmin|hover|customSentenceObj|getName|behavior_imp|unknown|flashVarsObj|BR|flashVars|0px|BL|TL|clientWidth|111px|ceil|searchForIntegrationComment|getDocumentHead|javascript|scriptDefaultPath|gsdCallback|isMultiline|getScrollLeft|hitTrackerURL|ua|str|Mozilla|bool|head|flashLoadAmount|flashEmbedConter|anow|getScrollTop||vertical|metroServer|73px|gid||drm|swf|insertionSort|score|customImplementations|impressionByFlash|sendImpression|flashLoadMaxWait|sendImpressionByFlash|POST||receiveImpressionByFlash|flash|Candidate|keywords|_SHADOW|IL_BASE||scrolling|timeLimit|helpUrl|tagOff|tagGenericOff|generateClientImpressionLog|tagGenericOn|getSwfUrl|firstNode|link|pageX|Trebuchet|hasKey|getActualWidth|registerImpressionError|cid|updaterClass|WIN|mapCustomerBehaviorSettings|behaviorDefault|_HELP|cache|setIntextCandidateNodes|hooks|exec|WebkitTextShadow|gradient|estimateIECIntextCandidatesFontSize|_X|isOnViewport|textContent|24px|scoringFactors|candidateCalcs|encQ|normalizeSentenceLists|range|middle|renderAdLinks|createStyleSheet|intxt_sen|mapImpressionBehaviorSettings|createAdLink|adLinkNumberer|mergeBehaviorSettings|fontFamily|fontStyle||bubbleDirection|cancelBubble|fixIEAdNodeStyle|server_infolink_bubble_direction|sanitize|IEUnderlineFix|offsetParent||styleFloat|MozBorderRadius|convertIECandidates2TextNodes|behaviorSanitize|productStatus|mapUnhoverableAreas|bodyMainBorder|hoverRequestDelay|_HOVER|_ICON_OVER|doAdHoverDelayed|inHierarchy|getAdData|bodyGradientStart|bodyGradientEnd|x1|x2|setAdData|200|insertRule|thumbIsDefault|getAdObjById|renderAdsContent|EXTERNAL|create|lsparams|adShowTimer|69px|doBubbleOver|clickUrl|stylesheet|renderBubble|mover|bubble_top|doRedirect|2048|8192|setConditionalTags|close|externalTag|externalTagURL|utf|prod_t|base64|insertAfter|templates||getComputedStyle|crtw|IL_BUBBLE_LOADING|csilv|silverlightVersion|btnShadow|preloadImages||nextSibling|getBoundingClientRect||offsetTop|init|verification|before||after|impression|scrollTop|scrollLeft|_TL|createStylesheet|params|cssRules|setSentences|_T|linear|initHarvest|WebkitBorderRadius|MozTextShadow|createInTextCandidates|decQ|_TR|thumbShadow|ActiveXObject|252px|flashPath|externalTagsParsers|allowScriptAccess|always|mooterCustomSearch|_R|_DoFSCommand|sc|ript|bubbleLogoUrlDowngrade|56889e|getLocalStorage|_SIMLINK|createPreloader|_BL|30px|status|IL_BUBBLE_BG|afterBubbleRendered|concat|Image|_B|afcbd9|doRectsOverlap||encode|write|_isReady|getFlashVersion|_initialized|getWhiteLabelSettings|WhiteLabelSettingsLoaded|adjustLoaderPosition||sqrt|_BR|onreadystatechange|defaultHomeUrl|setCustomerId|infolinks_white_label|mappedUnhoverableAreas|a8d7f0|discard|all|setHosts||infolinks_path|getBootProperty|resourcesDefaultHost|runtimeServer|dom|bresources|setCustomerConfig|cacheCounter|textAlign|318px|validateColorValue|Version|_AD_PREV|interval|getOS|isSupportedClient|_AD_NEXT|supportedVersions|search|bodyBorder|prepareImpression|sk|deleteLocalStorage|getSilverlightVersion|headGradientStart|charset|headGradientEnd|impressionParamList|getReferrer|adTemplates|36px|mapImpressionParams|rcate|pageCategory|allowedNumOfSentences|add2HoverQueue|host|refq|query|rh|requireHighlight|crt|flashLoadComplete|domain|_THUMB|oX|sum|values|crtss|userAgent|line|11px|sendImpressionByIframe|footer|IL_FORM_CONT|IL_FORM|23px|shockwave|Click|here|Ad|getMetaKeywords|hasThumb|btnText||_L|getTextData|highlightDeny|highlightAllow|allowedTags|tags|ids|removeAttribute|macromedia|setHarvestEnabled|btnBorder|DOCUMENT|ELEMENT|COMMENT|44px|tagToggle|tagGenericToggle|tagStop|tagGenericStop|reverse|isHarvestableNode|getAttribute|allowOnclick|getRelatedTagsMarkers|description|relatedTagsWidths|message|AgControl|plugins|rtag_num|ShockwaveFlash|displayURL|Ready|bubbleEffect|initHighlight|toUpperCase|bubbleShowingCallback|80fbFpRW18mXPjUmIDPKe6gABqd5g|link_hover_bg_color|n7lpqKgvScuq61Wjj8gKkjzwYuPE|Xo9DUPGliZk568cEV2WkW1XvrdW08O3pB3Ur1u14nO6XNHxg6NCZsN4y|ad_link_color|ad_show_timer||0Mj7kxIXrq95duzd81MAuU2aN7X9LJBQk|xEBIPlatUphtrAcXyxk7A5O0rXodKnHx1lFXft2Dah5fEhURXiAlxG|nA2H4|Advertisement|Fl||simanit_over|simanit_width|zvnZbqzCarXylm9Qa6Ks0KmQiDu6ZHBjvCYITFZ664hek9mjgbPbb8B2vBV6sI|R3LJo5HD|bubble_logo_url_downgrade|rqen1A8jo4GiAB4AB3KBmideYytp6EcPn21|aPuzyiEe67ITvfgacB800mXVnOg5J1QKOAQ4C6txkYquHXGLhOBuZMLTnPEAcXVsD41PhaqFjYwBiOsdlAK5jBU3bpWIhKxELOT7vLm9|bubble_help_link|6gpmlrNNFzD8yfA5iXKQ0j6o2OuAXMAVJD90zfc|scrollMessages|Lq3RGYVPjx|server_infolink_highlight_count|YujHvlLrOaBaIhIztaHG5p0ZvFNnsdl4QaGdyXPT0sY91z3jl4x2LD5296g3xgry3dm|server_infolink_title_color|server_infolink_link_color|XT7KPhPSO9Ne9OWcEOV96e2HGlsNBV27WKIAcD5rd20NuThwQWT1jdN|server_infolink_ad_show_timer|bILBiNC8cKwRLyzt6cXX|8cveT417ZJzKTcr|server_infolink_ad_link_color|Z8uhIIlQwFlh7OGzZV5mK8swfJ69W7BaP2|ioJndQtSvtKDEYVW19Wlvf7UnVCIS2pY8NaJUb2W3rt58KPB4SbmqwWxFQRKYyB4W4GWYNab|server_infolink_category_id|server_infolink_simanit_icon|DHDT1Y3kdx4s8b1eqZOPH9KjqvBUqTeYlG9nP1V9v26Bmq7BPnVGk5XZdaik09Hia16Bao857nIJSh|1QeBq83SXWtB1Sq7eXvD0e1m9dfUmYXz|iFvQD|vYYZzn0i|yokCozMKUx8416Qq1dvDMVdU3OSdCh|cLr4kM9G7Iyj8TVK01SHpF|Gtg|VqZRMhduamRbyssBoFqFJ|mTV4G7mnD8TabnScWCdZfr9S|createDocumentFragment|On3JdzHl4EpvP5N0jrPZyIr1B4JBkcG4j85|SnRJXp3BzOw4WBKQf|yS34VNi8YheVRPo1T4DI|gQNTMsxMeLZ00PLoKTHQNfDens6|||||||y4a0v83pCgFP9Y9rQctCSddm1Ko9pI|infolinks_related_tags|uUT4qLroZN2D7KLAq8VF7tDq5Q8vepQ8qFAsYOc68rval5ZuxLXwzcvO9M4JxxA6JxrSaV8UGraB0giMbvrBB7QMCG959PLokO9zPAvTUQXJ||26WYP9Pv|hdragVi2AtMByi9lSYYb3Zs97eGKMFga9||eeLJMbHdM27V1M0oPF3qDfHEsua1lDxq5thkfbp0eiH3x4vo4seRPC6OEcMOP|3gL|xO3u6GIX1CtUD8SQywYKrnu3T2WQMEOY3OKJJLRV|ByabhbsWgeej3JggoHUjKRQKGA63Vg0UsgttnIXrbwI|3q69YJNSU0Wlt88OqH2EbiHRkYYLPxUBpjjB|outline|trebuchet|j4Dh3v6eflFtEoHMgsKGgJIHv|baseline|list|2YBvc04Ewz3TZ2lTTvcI81uNMQzuPxno42HMP36p0zPvbU4M7eQZi0IGS2SjQtQGEFIJ9CsUtBQFUTOszYZ75Dd9BRrhNWkKiP4N|Rl|IL_BBL_TD|R2HhfYuV40HK4DfXKm6cfrTzGt3czgNTbS0I2ymaj2cgqt8b0e2GBovwZrVeFgBRH4gfosG4QamQsO|MS7rktUFmOXq||3OvwuTIf2CcPrQpdpUeYr3b7ijnjBPfZAI8q4a572u0P3jSSBq3bUCjsHcEwzbMKBDA|Rmjo50gK5rXWAVIzM21on7KYrgH6tNW7opNe|Hzu56|mDITA|CFaF8QHycS4nrdfn51QCtbCQ6uCf7wPNhZgLAiBKQYIyJ|UgPinsPA7uKnL16sxVaZiQYNp5vSlm31rdAYJRGwduAzIx|6nrGllbfwxg7ppFFLxqXnL|ondblclick|xszftHX|b9cnPoyZBfrolU7esrEIjbnw7nH3LzE6PdoRR7gUj7N8|buildLinkUnderlineCSS|radius|zdxnJcY2pC07TZGi3uV7MHbWJQwgVppEU|tXO|avkoFDtVWPFB5dcl98jPc|server_infolink_double_underline|td|USEWuATAHCcAe34D|server_infolink_ads_reuse_window|server_infolink_text_color|R2PsGCOlncI|BZvidug2PulKjtWFqQ|NEef7GckB7WFegBlm6F7yiO0AazYAsMP|5f2|tPe2N9f2XLxhzbsKwntc|zT4SOfKFzx4JD|mouse_tracker|SKwnimM5hE5365pcRMBnOWM|infolinks_mouse_tracker|bubble_logo_link|bubble_logo_height|bubble_logo_width|initMouseTracker|bubble_logo_url|bubble_direction|simanit_position|np6eDetiHdQ33rYqND9FAccOA|oE9guvATL|simanit_icon|bubble_effect|category_id|double_underline|ads_reuse_window|ad_hide_timer|||mhQErFPAngCQtUNDUQOQ3Qz87pLgGWFjjo1R8Dn0qfJTy1KRB3apC||FV6MG|text_color|title_color|bAKK9j0puiesbXvX6rISLkHZ0sOm1aHJgrtpB0SE6TJl|link_hover_color||link_color||highlight_count|nm7GhP4RtRCdOVjTPLhXiAb28OH76|effects|djQUJemRFnFgj48WBZdfH9wmtRs|effect|C7FdKjJizA0wxzpoX6e06KjQ6ugc|kill|cXCrmnpsce7N3RCeNVCIEWUIiAwEH|srcElement|HiYkgdHVbwxO|EXD4V0HY|6Mh5O5IAiWlXJ6aHB0Ez6mB4GA87RaqszrQaP0EDTZClutKoKBShodVYNOEH7YeUYR|sdata|l0n5R9IBixoIFKz06b|cfv|PWG4ARfx|dczitKi|ROfl0T8ilHHAY0J3Ci1qnge4B91LDay2QdeQmoCllNFymUo1z96QdQqUmpEGDpVeHonIbbMilAYLxzKaAdxZwtQXiTeQqAVr62Ye6AJ8Kgmtn5JGTvnm0R62PoMGtSdtILAzQC|gdlh1|BPQCbtlwJQAqroud|QjqygqXDDP9i81kR|e004|BcW9bRpgGT1ibqFugddPaOBr|defaultBblSize|z5|n4aFymyABPAGjcyLAac7VMC7T8N0NJCmrn9R4izpQO1BhfZc|thumbnail|jpg|sfFpYC0jkb8QeTltLxcSYNdh2xYTzttlSPgLE5b4EHAY52ZvNWZyVtc5F3kXeRd5F3R3pXnOzZ5sxOTZ|Qus3dS8pyLvMvsXeRd5F0|79J8xyZvc2byPJfPOyn5K85M3qn|mME4M3mRi7yLvPORF7vIu8g7H3mJi7zL7F3kXWbv0ryLvIu8q7Z3ke9g5IXOTN7uzOS1Tkx|adG6YQIBc4BluWFLFswseMjx9pO3jA81QCHikxClmAibvfLgr2r4|_TAIL|3nj4|PJTKJ|MDS1d|kPMxg6E9i|GQEn411BO5ihvAMOrJy7eY2YvaEpPaICCZSqYRk7tqXiQJYZYx2aHcLZXeurT0XjCpWShli0dwmOYXHiMFoeqItkEfNm1iOIxU2BUkZPZwIhYKshbKzSQ8zCWe33xcoGHcxnzCGWpK5|e005|8CeOoMxEYSb2VbI8|GtBTozR2r5bmRC4hAilYhzQAAOuwBnuz|UEoZw2kqybS8|mksygHh|Wwl4jY9qM|w7j9pUGllikKhIStJQfDw8EwSQ4MgkLKj3XqDWVUBcbNKSrNyCvfp6YzwQ39KWov3dB4wEfB5hwDlrQABaxp1MGTWUyGWSPY5YAD6LfC|8pALC01eS7D1FTRrf19ZS3V2zx7d4MCgAAArAIvcmU0YOwT7zQQDDH6h5fKCfolHjENwUVh1qfF|doSHe0QD612keBNAEBlDbwJF6oQdJGTV0uJtcuhcEMKWF8TY7DWpN6cxLBscFQzXZ|ENhm9X478hjyXEvahpYYndXk4mJgx9oAXd8nDQSV3J6sjm3ANMZRvWstlzh|cbn70WjBZg4YpYo0QLi3RUytIBJzcZbuDvv1iBqIC431ZKs3QX4TpjUthTVWyWPb3C5H7QgAEapJlgJUgtIaG72HlC5qWx1ZOueQtJgMo9u6xr|PXnq6y0Bg6HebCOcXEVSk4YlusllmAXw7WUSAcMQf349ycrZR6xWFqvD3e3nVNckBQeOGTqwAJWnL3k8YTBouWAT|PXG4stlU3MKjhKLlU2Fg9HmJe3oVIcvDPnDJ7N3M779f06EbYK8057n|cSJW4tvTijI3|0oy7IxfD7vVtyIsdkdlfzvzH5n9qbdN8rLRqk8vcpMJpOXUCg0BQaH9h0cN6K8pQkOHch|setInterval|9OKF4sP|AUG5o5InNh6Ft2Z|exWvE1JnhLQbs|9hR|YqJB4W2W1pyoynQkIjukTpdVrvOp12|f0miB2WcCQgKHhDxY3yUXm7tn2HxA31dZ3Uvv5T25XZyxSK5RFdo4rjRyVnFO3PC9JUVWYKhSKrVCZ7YNEyYsz46bu2ZYWC4PDVMiQsoutzKJR2RZ6adgZ|vl5W|pPVapWERkQ|4YjfW8xm|7u1Pmvt0W6jPWodzR3MeZEjxLdv2XhOW6sJDgmPXKpUeZZdu3plQUF|bubble_left||7vx2m|IL_REDIRECT_FORM|qCgkM3CASCVt9gvDd3x6qaqsoeSDwucXQ6BjkUQHnZlZXtssjZn7dzYunlS5tA85|noClickPrefix|NTJ640GlSnavCc5Hv|O1|bubble_body_width|clk_t|AgwA|2IM|bubble_body_height|XLqH64AAAAASUVORK5CYII|redclk|rurl|gdlc|R0lGODlhKgAUAIABAP|_SHADOW_TL|yH|C05FVFNDQVBFMi4wAwEAAAAh|_SHADOW_T|QQJIwABACwAAAAAKgAUAAACToSPqcsbDc8DM5pq3c2ba98hwSiRJYmOlbomrRhOT|renderBubbleContent|tSrnTGG42Hug18zXoqmDHYEQJtmNPKdIGydsQi6NrzYT3TrfcLDovH5LL5jE5bCgAh|_SHADOW_TR|QQJIwABACwAAAAAKgAUAAACVYSPqcsbDc8DM5pq3c2ba98hwSiRJYmOlbomrRhOT|rtag_pos|resources|tSrnTGG42Hug18zXoqmDHYEQJtmNPKdIGydsQi6NrzYT3TrfcLbljDGVaTzDCjLep1ZOyOXwsAIfkECSMAAQAsAAAAACoAFAAAAluEj6nLGw3PAzOaat3Nm2vfIcEokSWJjpW6Jq0YTk|_SHADOW_L|wibiyaToolbar_window|wibiyaToolbar|7Uq50xhuNh7oNfM16Kpgx2BECbZjTynSBsnbEIuja82E90633C25YGWMwq|acronym|address|lEY8|_SHADOW_R|isNaN|krtntgn|LCnr4DikAACH5BAUjAAEALAAAAAAqABQAAAJhhI|pyxsNzwMzmmrdzZtr3yHBKJEliY6VuiatGE5P|label|legend|select|th|1KudMYbjYe6DXzNeiqYMdgRAm2Y08p0gbJ2xCLo2vNhPdOt9wtuWBljB1TcVbCaTrYr|S6L4GZ5m0yvQ|mooterSearch|redirectClicks|linkHoverBgColor|xzd3hbAAA7|kid|mooterKeyPress|keyCode|176|IL_BUBBLE|compatMode|BackCompat|maxWidth|trafficmp|loading|14px|110|_SHADOW_BL|80px|paddingTop|onmousedown|skip|filter|alpha|currentStyle|_SHADOW_B|visibility|borderLeftWidth|borderTopWidth|setAttribute|isTextNode|overwrite|cee7f5|innerHeight|innerWidth|a7b5c1|pageYOffset|pageXOffset|717a82|css|9eabb7|obj2Rule|8094a2|ssd|e3eff5|_SHADOW_BR|box|buildTextShadow|from|to|ccd7de|0c5099|with|Function|number|Shockwave|474c46|Flash|GetVariable|Silverlight|rgba|96px|Plug|In|IsVersionSupported|1272b7|pluginspage|application||120px|classid|aeae84|90px|D27CDB6E|AE6D|11cf|96B8|444553540000|codebase|download|verticalAlign|onmouseup|pub|cabs|fresh|swflash|cab|movie|valentine|quality|high|flashvars|environment|FSCommand|flashLoadUpdate|cacheOverride|requestOpenHandler|requestCompleteHandler|bubbleLogoUrl|requestError|clearInterval|bubbleLogoWidth|101|opt|_LOADER|120|trackerid|316|skins|bubbleLogoHeight|returnValue|preventDefault|stopPropagation|scr|bubbleLogoLink|start|end|Loading|contentType|percentage|ddw|DOMContentLoaded|interactive|252667|gsd|callback|IL_INTEGRATION|wl|UTF|009900|24951E|loaded|onload|999999|cat|cee3ee|require_highlight|highlight_deny|highlight_allow|deny_click_before_bubble_show|||send_client_log|scl|ifr|updater_class|refreshed_container|infolink|_boot|infolinks_main|metro_server|noscript|router|e001|textarea|IL_AD|thumbnails|borderTop|18px|50px|tmr_dwq|dcil|MSIE|Mobile|Presto|more|Engine|28px|_BODY|rt|runtime_server|impressionCallCounter|encoding|characterSet|destroy|doq|blank|referrer|org|net|22px|fieldset|19px|table|cell|_HEAD|32px|simpleLink|_LOGO|8000|cookie|400|82px|postMessage|platform|Win64|200px|w002||333333|87px|IL_FRAME_CONT|20px|onmessage|46px|Your|w004|Here|meta|INTEXT_OFF|INTEXT_ON|INTEXT_STOP|INTEXT_TOGGLE|_OFF|_ON|105px|_STOP|_TOGGLE|integrateComscore|allow_onclick|endif|clsid|_SPONSOR|w003|bubbleHelpLink|x201C|x201D|getflashplayer|IL_RELATED_TAGS|getElementsByName|e006|e002|key|val|iVBORw0KGgoAAAANSUhEUgAAAD8AAABhCAYAAABh23lYAAAAGXRFWHRTb2Z0d2FyZQBBZG9iZSBJbWFnZVJlYWR5ccllPAAADVFJREFUeNrsXAlUVOUe|w010|2bu7DPADMsAArK7oKi4ZJILAioq5gqp6XlqVprW6b3KQ2WJ9Sp9|w005|U5Z|infolinks_updater|initUpdater|mixRctU8InmgoS4AC655IqYmoioKMswMzDDLPfOvP8fP4wMZex1TsDMd|skin_|xxh7nf9vvvH8d7eXa73YcQkgwIBGwHnCKONSlgLCAWIACcAewA3GplXABdz5f2dweMo2vvd3DtPnTMIUABwEr|QMNNJ7|wibiyaToolbar_window_template'.split('|'),0,{})) ]]> false 9160813909312344064 5244928 Password field with autocomplete enabled http://www.lessonofpassion.com Low Certain
          The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
          autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
        44. http://www.lessonofpassion.com/user.php?type=login
        45. The form contains the following password field with autocomplete enabled:
          • password
          ]]>
          Lesson of Passion - Gilligans Long Island erotic flash game


          Username   Password  

          If you want to post comments and gain access to special features please your account.

             Gilligans Long Island




           
          GAME RATING:
          68.67%
          VIEWS:
          3386
          COMMENTS:
          4



          Other games

               


          Comments

          Brono1601 2011.03.22
          way to much clicking is required. graphics are poor quality, story is boring

          alex0412 2011.02.10
          good game and very good pictures

          Xyzzy 2011.01.11
          Never did like the Charlie games too much. Some good ideas, but way to repetitive, and no thought required by the player, just point and click.

          ahclem 2010.11.27
          Charlie games are way too simple. More challenge is required


          Add your own comment - only for LOP CLUB members
          If you are new user please REGISTER for FREE.
          ]]> false 3651912249826214912 5244416 Cookie without HttpOnly flag set http://www.youtube.com Information Certain
          You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
        46. use_hitbox=72c46ff6cbcdb7c5585c36411b6b334edAEAAAAw; path=/; domain=.youtube.com
        47. VISITOR_INFO1_LIVE=BgoZeYdNyzI; path=/; domain=.youtube.com; expires=Tue, 13-Dec-2011 20:33:40 GMT
        48. GEO=1c80b929d24a9b658da6b1c782ce2162cwsAAAAzVVOtwdbzTatOpA==; path=/; domain=.youtube.com
        49. The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
          YouTube - Broadcast Yourself.
          Join the largest worldwide video-sharing community!
          Spotlight

          Watch Coachella Live All Weekend

          Tune into youtube.com/coachella to watch the music festival live all weekend -- or check out some of the performances you missed! We've got videos from Ozomatli, !!!, Flogging Molly, Gayngs, Warpaint and more.
           
          What's New

          YouTube.com/Live

          Check out the top live events happening on YouTube!

          Create original videos

          Make animations and videos with your own photos and images

          Mashups, parodies and lip dubs: Ask a legal expert about Fair use

          The strength of the YouTube community lies in its creativity. Often this takes the form of memorable original content, such as Rebecca Black???s recent hit song / music video, Friday.

          However, as t...

          Read more in our Blog

          Queue (0) Return to active list
            1. Your queue is empty. Add videos to your queue using this button:
              or sign in to load a different list.
            Loading...Loading...Saving...
            ]]>
            false
            2928793679388848128 5243904 Cross-domain Referer leakage http://googleads.g.doubleclick.net Information Certain
            If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

            You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

            Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

            Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
          1. http://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-9643032735294668&output=html&h=90&slotname=1105967903&w=728&lmt=1303090830&flash=10.2.154&url=http%3A%2F%2Fwww.thatshiphop.com%2Fnews.php%3F%2527--%253E%253C%2Fstyle%253E%253C%2Fscript%253E%253Cscript%253Ealert(0x00003E)%253C%2Fscript%253E&dt=1303072830048&shv=r20110406&jsv=r20110412&saldr=1&correlator=1303072830099&frm=0&adk=2878790657&ga_vid=2104918749.1303072830&ga_sid=1303072830&ga_hid=189131405&ga_fc=0&u_tz=-300&u_his=1&u_java=1&u_h=1200&u_w=1920&u_ah=1156&u_aw=1920&u_cd=16&u_nplug=9&u_nmime=44&biw=1079&bih=1016&eid=33895130&fu=0&ifi=1&dtd=323&xpc=8eGReqX86O&p=http%3A//www.thatshiphop.com
          2. The response contains the following links to other domains:
            • http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
            • http://pagead2.googlesyndication.com/pagead/abglogo/abg-en-100c-ffffff.png
            • http://pagead2.googlesyndication.com/pagead/images/i.png
            • http://pagead2.googlesyndication.com/pagead/imgad?id=COGHlq2_yOmkahDYBRhaMggURmXwJutCYw
            • http://pagead2.googlesyndication.com/pagead/js/abg.js
            • http://pagead2.googlesyndication.com/pagead/js/graphics.js
            • http://www.google.com/url?ct=abg&q=https://www.google.com/adsense/support/bin/request.py%3Fcontact%3Dabg_afc%26url%3Dhttp://www.thatshiphop.com/news.php%253F%2527--%25253E%25253C/style%25253E%25253C/script%25253E%25253Cscript%25253Ealert(0x00003E)%25253C/script%25253E%26hl%3Den%26client%3Dca-pub-9643032735294668%26adU%3DMyGreenDot.com%26adT%3DImageAd%26gl%3DUS&usg=AFQjCNGDsuURrW4Qw77u3dcN7-ss_DGhQQ
            ]]>
            (i)
            Ads by Google
            ]]>
            false
            1460993884604185600 3145984 Cleartext submission of password http://utopiaguide.com High Certain
          3. http://utopiaguide.com/forums/login.php?do=login
          4. The form contains the following password field:
            • vb_login_password
            ]]>
            Long Island action. - Page 22 - UtopiaGuide



            Go Back   UtopiaGuide > Not your Father's PMB > Stripclubs, Strippers and Porn Stars
            Register FAQ Members List CalendarvBookieToplist Today's Posts

            Reply
             
            Thread Tools
            Old 02-07-2008, 07:35 AM   #631
            seeker6591
            Gold
             
            Join Date: Sep 2005
            Posts: 14,770
            vCash: 500
            i dont think she will resurface...as BH said, she was thrown off the roof.
              Reply With Quote
            Old 02-07-2008, 07:35 AM   #632
            wolf5958
            lil Fuzzybear
             
            Join Date: Nov 2007
            Posts: 7,443
            vCash: 500
            Quote:
            Originally Posted by biohazard View Post
            didn't they throw her off the roof?? sounds like something from the goodfella's movie!
            She fell escapingn across the roof tops from what I read.
              Reply With Quote
            Old 02-07-2008, 07:36 AM   #633
            seeker6591
            Gold
             
            Join Date: Sep 2005
            Posts: 14,770
            vCash: 500
            where is lightweight??

            hungover perhaps?
              Reply With Quote
            Old 02-07-2008, 07:40 AM   #634
            wolf5958
            lil Fuzzybear
             
            Join Date: Nov 2007
            Posts: 7,443
            vCash: 500
            Quote:
            Originally Posted by seeker6591 View Post
            where is lightweight??

            hungover perhaps?
            Either that or his wife beat the shit out of him for coming home lit up like he was. I don't know why he is blaming me I only bought one round. Tami just kept opening them for him and he kept saying yes.
              Reply With Quote
            Old 02-07-2008, 07:40 AM   #635
            teps
            Gold
             
            Join Date: Feb 2003
            Posts: 4,524
            vCash: 500
            Quote:
            Originally Posted by wolf5958 View Post
            Yeah I know the other board but hey I am up for the recon I will be the second volunteer,
            like I said the pond deli is down the street can always grab lunch
            You will probably run into old timers Brooklyn and Jackie there (they were still there the last time I was there) but let me know when you are going and I'll go too.
              Reply With Quote
            Old 02-07-2008, 07:44 AM   #636
            teps
            Gold
             
            Join Date: Feb 2003
            Posts: 4,524
            vCash: 500
            From what I recall, Ting fled down the hall and out on to the roof of the building next door and then tried to jump down to the ground to get away from the armed robbers and messed up her ankle. I have not heard of her since. Has anyone heard if her partner, Cindy, has surfaced anywhere else?
              Reply With Quote
            Old 02-07-2008, 07:46 AM   #637
            wolf5958
            lil Fuzzybear
             
            Join Date: Nov 2007
            Posts: 7,443
            vCash: 500
            Quote:
            Originally Posted by Tom S. View Post
            You will probably run into old timers Brooklyn and Jackie there (they were still there the last time I was there) but let me know when you are going and I'll go too.
            Looks like maybe the 14th. A strip club on Valentines day How romantic LOL
              Reply With Quote
            Old 02-07-2008, 07:48 AM   #638
            wolf5958
            lil Fuzzybear
             
            Join Date: Nov 2007
            Posts: 7,443
            vCash: 500
            I will be back after 12 I need to get ready to go to work. LW I hope you are alive and well, You want to go to Carmen's birthday party today your future ex wife will be there
              Reply With Quote
            Old 02-07-2008, 08:01 AM   #639
            seeker6591
            Gold
             
            Join Date: Sep 2005
            Posts: 14,770
            vCash: 500
            birthday party ???
              Reply With Quote
            Old 02-07-2008, 08:03 AM   #640
            magicfingersny
            Gold
             
            Join Date: Nov 2007
            Posts: 2,346
            vCash: 500
            I tried finding LI adult Entertainment & just came up with something that lists club, no member posting. Is that Bday party for one of the girls at Shady's? If so what time to time. damn it's late already. I am exhausted
              Reply With Quote
            Old 02-07-2008, 08:06 AM   #641
            seeker6591
            Gold
             
            Join Date: Sep 2005
            Posts: 14,770
            vCash: 500
            how about some info on the birthday party...gents?
              Reply With Quote
            Old 02-07-2008, 08:07 AM   #642
            teps
            Gold
             
            Join Date: Feb 2003
            Posts: 4,524
            vCash: 500
            Magic--Here is the link to that site.
            www.longislanderotic.com/longislanderotic/forum/
              Reply With Quote
            Old 02-07-2008, 08:21 AM   #643
            lookin4amp
            Bronze
             
            Join Date: Apr 2007
            Posts: 16
            vCash: 500
            Hi Guys!! I really enjoy reading you guys' posts.... They are Great!! I'm in Nassau and don't really go out to Suffolk...do any of you guys know good place in Nassau where I can get good action??
              Reply With Quote
            Old 02-07-2008, 08:23 AM   #644
            magicfingersny
            Gold
             
            Join Date: Nov 2007
            Posts: 2,346
            vCash: 500
            Thanks for the link Tom. I am just waiting for a confirmation *****
            Carmen Bday Party is Today?
            When to When?
              Reply With Quote
            Old 02-07-2008, 08:24 AM   #645
            seeker6591
            Gold
             
            Join Date: Sep 2005
            Posts: 14,770
            vCash: 500
            our first ISO post in here ???

            LOL
              Reply With Quote
            Old 02-07-2008, 08:43 AM   #646
            biohazard
            Gold
             
            Join Date: Nov 2006
            Posts: 1,870
            vCash: 500
            Quote:
            Originally Posted by lookin4amp View Post
            Hi Guys!! I really enjoy reading you guys' posts.... They are Great!! I'm in Nassau and don't really go out to Suffolk...do any of you guys know good place in Nassau where I can get good action??
            Before the rest of the people jump on you for an In Search Of post (ISO) did ya try the search feature? and you kind of have a low post count you might want to start reviewing any one you visited or at least contributing to other threads, some people might break your balls for not doing that i hope this helps.
              Reply With Quote
            Old 02-07-2008, 08:51 AM   #647
            jamesfromny
            Silver
             
            Join Date: Nov 2007
            Age: 34
            Posts: 192
            vCash: 500
            re: Ting

            Quote:
            Originally Posted by wolf5958 View Post
            I don't think she resurfaced since that. ...
            She will be missed.
              Reply With Quote
            Old 02-07-2008, 08:58 AM   #648
            jamesfromny
            Silver
             
            Join Date: Nov 2007
            Age: 34
            Posts: 192
            vCash: 500
            I've got the day off, and am going to try to see Lightweight's friend Mimi. Should I report back here, or add-on to his review?
              Reply With Quote
            Old 02-07-2008, 09:01 AM   #649
            lightweight
            Moderator
             
            Join Date: Oct 2007
            Posts: 8,364
            vCash: 500
            Reporting for duty folks. I need a few mintutes hear to catch up hear.

            Last edited by lightweight : 02-07-2008 at 09:01 AM.
              Reply With Quote
            Old 02-07-2008, 09:02 AM   #650
            lightweight
            Moderator
             
            Join Date: Oct 2007
            Posts: 8,364
            vCash: 500
            Quote:
            Originally Posted by seeker6591 View Post
            i promise I won't but....

            YOU JUST TOLD HIM.

            LOL

            OH yea
              Reply With Quote
            Old 02-07-2008, 09:03 AM   #651
            lightweight
            Moderator
             
            Join Date: Oct 2007
            Posts: 8,364
            vCash: 500
            Quote:
            Originally Posted by seeker6591 View Post
            did he do the fattie??

            NO. I think because he know that I would have posted it.
              Reply With Quote
            Old 02-07-2008, 09:04 AM   #652
            seeker6591
            Gold
             
            Join Date: Sep 2005
            Posts: 14,770
            vCash: 500
            Quote:
            Originally Posted by jamesfromny View Post
            I've got the day off, and am going to try to see Lightweight's friend Mimi. Should I report back here, or add-on to his review?


            james

            reviews and specific info go in the appropriate threads.

            banter and general discussion can be placed here
              Reply With Quote
            Old 02-07-2008, 09:05 AM   #653
            seeker6591
            Gold
             
            Join Date: Sep 2005
            Posts: 14,770
            vCash: 500
            Quote:
            Originally Posted by lightweight View Post
            NO. I think because he know that I would have posted it.
            no cushion for the pushin??

            LOL
              Reply With Quote
            Old 02-07-2008, 09:05 AM   #654
            lightweight
            Moderator
             
            Join Date: Oct 2007
            Posts: 8,364
            vCash: 500
            Quote:
            Originally Posted by Mr. W. Coyote View Post
            As I am!

            Great.
              Reply With Quote
            Old 02-07-2008, 09:06 AM   #655
            lightweight
            Moderator
             
            Join Date: Oct 2007
            Posts: 8,364
            vCash: 500
            Quote:
            Originally Posted by Mr. W. Coyote View Post
            Is this the place near another Strip club???

            If so, I so agree... 15 mins...in and out last week for me!
            Are you talking about the Gym?
              Reply With Quote
            Old 02-07-2008, 09:07 AM   #656
            lightweight
            Moderator
             
            Join Date: Oct 2007
            Posts: 8,364
            vCash: 500
            Quote:
            Originally Posted by seeker6591 View Post
            good morning gents..

            all is quiet here on the western front.



            has everyone set up their buddy lists yet?
            Hey. ....
              Reply With Quote
            Old 02-07-2008, 09:08 AM   #657
            seeker6591
            Gold
             
            Join Date: Sep 2005
            Posts: 14,770
            vCash: 500
            hey.......

            welcome aboard!
              Reply With Quote
            Old 02-07-2008, 09:09 AM   #658
            lightweight
            Moderator
             
            Join Date: Oct 2007
            Posts: 8,364
            vCash: 500
            Quote:
            Originally Posted by seeker6591 View Post
            "mid" island

            You said my bunny has a good nose.

            Horseblock, rt 112, granny, Middle Island Rd, Continental AVE

            I was just on all those street. Nr you?
              Reply With Quote
            Old 02-07-2008, 09:10 AM   #659
            lightweight
            Moderator
             
            Join Date: Oct 2007
            Posts: 8,364
            vCash: 500
            Quote:
            Originally Posted by wolf5958 View Post
            OK Seek I need to go do my gerbil imatation and do a 45 min run on the tread mill be back in a little bit. Can't wait to see what LW has to say about yesterday and last nights dinner. He was f uped when he headed out yesterday.

            Yes I was. I had to sober up fast and go to dinner and another 7 Carona's.
              Reply With Quote
            Old 02-07-2008, 09:11 AM   #660
            lightweight
            Moderator
             
            Join Date: Oct 2007
            Posts: 8,364
            vCash: 500
            Quote:
            Originally Posted by seeker6591 View Post
            si

            si

            and si senior.


            speaking of getting caught up..it takes me 10 minutes everyday to go back and read this thread !!!

            LOL
            I am still catching up. Not there yet.
              Reply With Quote
            Reply



            Posting Rules
            You may not post new threads
            You may not post replies
            You may not post attachments
            You may not edit your posts

            vB code is On
            Smilies are On
            [IMG] code is On
            HTML code is Off
            Forum Jump

            Similar Threads
            Thread Thread Starter Forum Replies Last Post
            How long will BMM last? BigMadM New York 173 03-03-2006 06:53 PM
            kayla eros long island ViagraMan New York 9 07-30-2003 06:40 AM
            Zara and Paige Long Island info! Shauna New York 5 02-21-2003 10:09 AM
            Gia that used to work on long island GlobalCourtesans New York 17 02-09-2003 09:09 PM
            Kimmie Does Long Island Kimmie New York 11 02-06-2003 10:43 AM

            All times are GMT -8. The time now is 12:07 PM.

            This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

            Powered by vBulletin® Version 3.6.8
            Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

            ]]>
            false
            2232817898245125120 8389632 Content type incorrectly stated http://www.crowdgather.com Information Firm
            In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
          5. Content-Type: text/plain; charset=UTF-8
          6. The response states that it contains plain text. However, it actually appears to contain unrecognised content.]]>
            +???55R1z????qV$++??\555?????V+*$l???\_???????b$0??r?????????+&*MeE??????????SS+?C?????????Sc/ c?????????qSly???????Ow???eCe??????Ow??? C Kr???cGO?? C|OGB??????e?xrrG????????eG?Ow????( @   ??????????????????????????????????????????????????u???B???%???-???[???????????????????????????????????????????????????????????????????????????????????????????????????p??|??u???1???u???????????????????????????????????????????????????????????????????????????????????????????????????????v??w??s??s???(???????????????????????????????????????????????????????????????????????????????????????????????????????????/??t ??s??s??s??u???A???l???n???u??????????????????????????????????B???^???????????????????????????????????????????????x??s ??r ??s??s??s??s ??t??s ??x???*???-??z???[??????????????????????????S???.???????????????????????????????????????z??s ??t ??s ??s??s??t???A??????????????????????????????????????????????????I???????I???1????????????????????????????????&???N???????????R??t ??u ??????????????????????????????????????????????????????9??w???&??????z???E????????????????????????p???4??????s ?????????t???b??????????????????????????????????????????????????????y??|???Y??????|??|????????????????????????1???????\??r ??s??????r ?????????????????????????????????????????????????{"???4???v???????????9??|??|??{"????????????????????????????????W???x??????} ?????????????????????????????????????????????????????????????A???A???A???A???A???D???>???U???????????????????????????????????????????????2???N???????????????????????????????????????z???O???A???A???A???A???A???D???m???????????????????????????????????????????????????????y???]???????????????????????????????????????????@???A???D???>???U???????????????????????????????????????????????????????????????????????????????????????????????????????????U???????D???^???????????????????????????????????????????????????????????????????????????????????????????????????????n???a???t???????????????????????????????????????????????????????????]]> false
            5554571407007723520 5244928 Password field with autocomplete enabled http://utopiaguide.com Low Certain
            The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
            autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
          7. http://utopiaguide.com/forums/login.php?do=login
          8. The form contains the following password field with autocomplete enabled:
            • vb_login_password
            ]]>
            UtopiaGuide



            Go Back   UtopiaGuide
            Register FAQ Members List CalendarvBookieToplist Today's Posts

            vBulletin Message
            Invalid Thread specified. If you followed a valid link, please notify the administrator

            Forum Jump

            All times are GMT -8. The time now is 12:32 PM.

            This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

            Powered by vBulletin® Version 3.6.8
            Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

            ]]>
            false
            2413740100786145280 5244160 Cross-domain script include http://www.lessonofpassion.com Information Certain
            If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
          9. http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js
          10. http://www.google-analytics.com/urchin.js
          11. ]]>
            Lesson of Passion - Gilligans Long Island erotic flash game


            Username   Password  

            If you want to post comments and gain access to special features please your account.

               Gilligans Long Island




             
            GAME RATING:
            68.67%
            VIEWS:
            3386
            COMMENTS:
            4



            Other games

                 


            Comments

            Brono1601 2011.03.22
            way to much clicking is required. graphics are poor quality, story is boring

            alex0412 2011.02.10
            good game and very good pictures

            Xyzzy 2011.01.11
            Never did like the Charlie games too much. Some good ideas, but way to repetitive, and no thought required by the player, just point and click.

            ahclem 2010.11.27
            Charlie games are way too simple. More challenge is required


            Add your own comment - only for LOP CLUB members
            If you are new user please REGISTER for FREE.
            ]]> false 6870374119540963328 5244416 Cookie without HttpOnly flag set http://content.yieldmanager.com Information Certain
            You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
          12. RMAK=2-2-02E5790768608A63AF620C40F2478816DD675D01116220590BFA6230D15B5773-72CC1F498007A47479BBB1E6246B9B94B616DAE9902C2A31B278D18CE5CD39A7; expires=Sun, 15-May-2011 23:42:40 GMT; path=/ak/; domain=content.yieldmanager.com
          13. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
            false
            3423946719703061504 8389632 Content type incorrectly stated http://www.epicdreams.com Information Firm
            In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
          14. Content-Type: text/plain; charset=UTF-8
          15. The response states that it contains plain text. However, it actually appears to contain unrecognised content.]]>
            false
            1065096643741100032 3145984 Cleartext submission of password http://www.lessonofpassion.com High Certain
          16. http://www.lessonofpassion.com/user.php?type=login
          17. The form contains the following password field:
            • password
            ]]>
            Lesson of Passion - Gilligans Long Island erotic flash game


            Username   Password  

            If you want to post comments and gain access to special features please your account.

               Gilligans Long Island




             
            GAME RATING:
            68.67%
            VIEWS:
            3386
            COMMENTS:
            4



            Other games

                 


            Comments

            Brono1601 2011.03.22
            way to much clicking is required. graphics are poor quality, story is boring

            alex0412 2011.02.10
            good game and very good pictures

            Xyzzy 2011.01.11
            Never did like the Charlie games too much. Some good ideas, but way to repetitive, and no thought required by the player, just point and click.

            ahclem 2010.11.27
            Charlie games are way too simple. More challenge is required


            Add your own comment - only for LOP CLUB members
            If you are new user please REGISTER for FREE.
            ]]> false 3310792693417506816 3145984 Cleartext submission of password http://www.epicdreams.com High Certain
          18. http://www.epicdreams.com/oops.html
          19. The form contains the following password fields:
            • password1
            • password2
            ]]>
            Free Escort Ad, Free Provider Ads, Free Adult Advertising, Sign up for free escort ad today
            EpicDreams, Epic Dreams, Escort, Escorts, incall, outcall, Escort Reviews, Escort Directory, Escort Classifieds Welcome, Guest
            Log In | Free Hobbyist Account | Free Provider Ad | Help
            Home
            myEpicDreams
            VIP Escorts
            Directory
            Photo Gallery
            Calendar
            Reviews & Forums
            Adult Store
            Advertise
            CustomerCare
            April 17, 2011
            Advertiser Sign Up > Account Setup
            Ad Type
            Select the ad type that best suits your needs and then create your login information below. You'll receive a full page ad, 1 large photo, 5 picture photo gallery, 150+ words of text, your own Calendar to post your events and travel information, your own Reviews page, your own Mailing List, and 1 city and 1 category listings. Upgrade to a SPONSORS Ad and get these FEATURES.
            Individual (Independent Provider)
            Agency

            Create your Login Account:

            EpicDreams ID: Must contain at least three and be no longer than 16 alphanumeric characters. Example: johndoe, john123, or 123john. Your ID will appear when you post reviews and participate on our message boards and chat rooms.
            Password: Valid password must contain at least three alphanumeric characters.
            Confirm Password: Please re-type your password.
            Email Address: Please supply your email address. (example: johndoe@yourdomain.com) An EpicDreams Welcome Letter containing your account information will be sent to this email address. This email will also be used to log into your account.
            Please let us know how you found EpicDreams
             I agree to the terms and conditions above.
             Provider News
            Five sponsor cities - $65/month
            • Get listed above all non-sponsors
            • Get unlimited messages
            • Get emails delivered to your private email address (such as Hotmail, Yahoo, Gmail, and AOL)
            • Get maximum site-wide visiblity
            • Get listed in the VIP page
            • Never have your contact info disappear.
            • No Product Ads
            • No Sponsor Spotlights on your ad
            • Your Calendar postings will appear in the city Calendar
            • Receive priority customer support
            • Compare Sponsors vs. Non-Sponsors
            Banner Listing - $90/month
            • click here for more info
            • Appear on the right side of EVERY page
            • Instant traffic to your personal web page or EpicDreams ad
            Refer your friends and get a free sponsor month
            Share your link, get listed on the homepage!
            Banner Exchange Program. Increase traffic. Click here for complete details.

            A D V E R T I S E M E N T S

            List your banner here!

             RSS Feeds | What's New | FREE Provider Ad | Escort & Adult Links | Adult Store & DVDs
            Copyright © 1998-2011 EpicDreams, All rights reserved. | About EpicDreams | 2257 Notice
            ]]>
            false
            3426705108595640320 5244416 Cookie without HttpOnly flag set http://www.lessonofpassion.com Low Firm
            You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
          20. PHPSESSID=74fdfbcac72b7916790fd66bac6f2c6c; path=/
          21. The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
            Lesson of Passion - Gilligans Long Island erotic flash game


            Username   Password  

            If you want to post comments and gain access to special features please your account.

               Gilligans Long Island




             
            GAME RATING:
            68.67%
            VIEWS:
            3386
            COMMENTS:
            4



            Other games

                 


            Comments

            Brono1601 2011.03.22
            way to much clicking is required. graphics are poor quality, story is boring

            alex0412 2011.02.10
            good game and very good pictures

            Xyzzy 2011.01.11
            Never did like the Charlie games too much. Some good ideas, but way to repetitive, and no thought required by the player, just point and click.

            ahclem 2010.11.27
            Charlie games are way too simple. More challenge is required


            Add your own comment - only for LOP CLUB members
            If you are new user please REGISTER for FREE.
            ]]> false 3114426972974144512 4194560 Referer-dependent response http://adserving.cpxinteractive.com Information Firm
            Common explanations for Referer-dependent responses include:
            • Referer-based access controls, where the application assumes that if you have arrived from one privileged location then you are authorised to access another privileged location. These controls can be trivially defeated by supplying an accepted Referer header in requests for the vulnerable function.
            • Attempts to prevent cross-site request forgery attacks by verifying that requests to perform privileged actions originated from within the application itself and not from some external location. Such defences are not robust - methods have existed through which an attacker can forge or mask the Referer header contained within a target user's requests, by leveraging client-side technologies such as Flash and other techniques.
            • Delivery of Referer-tailored content, such as welcome messages to visitors from specific domains, search-engine optimisation (SEO) techniques, and other ways of tailoring the user's experience. Such behaviours often have no security impact; however, unsafe processing of the Referer header may introduce vulnerabilities such as SQL injection and cross-site scripting. If parts of the document (such as META keywords) are updated based on search engine queries contained in the Referer header, then the application may be vulnerable to persistent code injection attacks, in which search terms are manipulated to cause malicious content to appear in responses served to other application users.
            ]]>

            If the contents of responses is updated based on Referer data, then the same defences against malicious input should be employed here as for any other kinds of user-supplied data.]]>
            document.write('');

            ]]>
            false
            document.write('');

            ]]>
            false
            9159530235220535296 5245312 File upload functionality http://translate.google.com Information Certain
          22. File path traversal
          23. Persistent cross-site scripting
          24. Placing of other client-executable code into the domain
          25. Transmission of viruses and other malware
          26. Denial of service
          27. You should review the file upload functionality to understand its purpose, and establish whether uploaded content is ever returned to other application users, either through their normal usage of the application or by being fed a specific link by an attacker.

            Some factors to consider when evaluating the security impact of this functionality include:
            • Whether uploaded content can subsequently be downloaded via a URL within the application.
            • What Content-type and Content-disposition headers the application returns when the file's content is downloaded.
            • Whether it is possible to place executable HTML/JavaScript into the file, which executes when the file's contents are viewed.
            • Whether the application performs any filtering on the file extension or MIME type of the uploaded file.
            • Whether it is possible to construct a hybrid file containing both executable and non-executable content, to bypass any content filters - for example, a file containing both a GIF image and a Java archive (known as a GIFAR file).
            • What location is used to store uploaded content, and whether it is possible to supply a crafted filename to escape from this location.
            • Whether archive formats such as ZIP are unpacked by the application.
            • How the application handles attempts to upload very large files, or decompression bomb files.
            ]]>
          28. Use a server-generated filename if storing uploaded files on disk.
          29. Inspect the content of uploaded files, and enforce a whitelist of accepted, non-executable content types. Additionally, enforce a blacklist of common executable formats, to hinder hybrid file attacks.
          30. Enforce a whitelist of accepted, non-executable file extensions.
          31. If uploaded files are downloaded by users, supply an accurate non-generic Content-type header, and also a Content-disposition header which specifies that browsers should handle the file as an attachment.
          32. Enforce a size limit on uploaded files (for defence-in-depth, this can be implemented both within application code and in the web server's configuration.
          33. Reject attempts to upload archive formats such as ZIP.
          34. ]]>
          35. http://translate.google.com/
          36. Note that Burp has not identified any specific security vulnerabilities with this functionality, and you should manually review it to determine whether any problems exist.]]>
            Google Translate

            Google Translate

            Try a new browser with automatic translation.
            Download Google Chrome
            Type text or a website address or translate a document.

            Do more with Google Translate

            • Wake up to translation. Translate text right from your iGoogle homepage.
            • Wish your Norwegian fans could read your blog? Install the Google Translate Element for easy translation.
            • Build your global business. Advertise across languages using Google Global Market Finder.
            • Stay in touch with your pen-pal in Paris. Enable automatic email and chat translation in Gmail.
            ]]>
            false
            8683069851072276480 5244928 Password field with autocomplete enabled http://utopiaguide.com Low Certain
            The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
            autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
          37. http://utopiaguide.com/forums/login.php?do=login
          38. The form contains the following password field with autocomplete enabled:
            • vb_login_password
            ]]>
            UtopiaGuide



            Go Back   UtopiaGuide
            Register FAQ Members List CalendarvBookieToplist Today's Posts

            vBulletin Message
            Sorry. The email function has been disabled by the administrator.

            Forum Jump

            All times are GMT -8. The time now is 12:32 PM.

            This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

            Powered by vBulletin® Version 3.6.8
            Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

            ]]>
            false
            6646944314632796160 5244416 Cookie without HttpOnly flag set http://www.theeroticreview.com Information Certain
            You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
          39. GUID=B60CD60E15191848A2D6053B0EFD3210; domain=.theeroticreview.com; path=/
          40. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
            Object moved

            Object Moved

            This object may be found here. ]]>
            false
            4756103371391322112 5244160 Cross-domain script include http://www.verifiedplaymates.com Information Certain
            If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
          41. http://199.80.58.115/openx/www/delivery/spcjs.php?id=1&block=1&blockcampaign=1
          42. ]]>
            SEXY Escorts - VerifiedPlaymates.com Escorts

            Verified Playmates
            Fetish Fetish / Fantasy Tantra Tantra BDSM BDSM
            select a city
            Albuquerque Escorts Allentown Escorts Anaheim Escorts Arlington Escorts Arlington Escorts Atlanta Escorts Atlantic City Escorts Austin Escorts Bakersfield Escorts Baltimore Escorts Boston Escorts Carson City Escorts Charlotte Escorts Chicago Escorts Cincinnati Escorts Cleveland Escorts Colorado Springs Escorts Columbus Escorts Dallas Escorts Dayton Escorts Denver Escorts Detroit Escorts El Paso Escorts Fort Lauderdale Escorts Fort Worth Escorts Fremont Escorts Fresno Escorts Hollywood Escorts Honolulu Escorts Houston Escorts Huntington Beach Escorts Indianapolis Escorts Inland Empire Escorts Jacksonville Escorts Kansas City Escorts Las Vegas Escorts Long Beach Escorts Long Island Escorts Los Angeles Escorts Louisville Escorts Manhattan Escorts Memphis Escorts Miami Escorts Milwaukee Escorts Minneapolis Escorts Modesto Escorts Monterey Escorts Nashville Escorts Nassau Escorts New Orleans Escorts New York City Escorts Norfolk Escorts Oakland Escorts Oklahoma City Escorts Omaha Escorts Orange County Escorts Orlando Escorts Palm Springs Escorts Philadelphia Escorts Phoenix Escorts Pittsburgh Escorts Portland Escorts Raleigh Escorts Reno Escorts Riverside Escorts Sacramento Escorts Saint Louis Escorts Salt Lake City Escorts San Antonio Escorts San Diego Escorts San Fernando Escorts San Francisco Escorts San Jose Escorts Santa Ana Escorts Seattle Escorts South Lake Tahoe Escorts Staten Island Escorts Stockton Escorts Tampa Escorts Tucson Escorts Vancouver Escorts Virginia Escorts Virginia Beach Escorts Washington D.C. Escorts More Escorts: All Cities...
            Verified Playmates: ( Guaranteed Authentic - Photos Taken By Us. )
            Manhattan escort - VIP Erica Reed
            VIP Erica Reed
            Manhattan
            Las Vegas escort - Malina
            Malina
            Las Vegas
            Manhattan escort - Nataly - GFE - NYC
            Nataly GFE NYC
            Manhattan
            Las Vegas escort - Tawny Brie
            Tawny Brie
            Las Vegas
            Los Angeles escort - Ava Monroe
            Ava Monroe
            Los Angeles
            Getting Verified through a VP photoshoot will make you stand out as someone special and unique, and build confidence with new clients. When guys see the VP watermark, they know for certain that you are the girl in the photo. A photoshoot will also give your ad front page and top rotation exposure.

            For more info on a VerifiedPlaymates.com Verification shoot:
            More Playmates: ( Available for Booking Across the US )
            Featured Playmates
            New York City escort - Playmate Sophia
            Playmate Sophia
            New York City
            Allentown escort - ATYOURPLEASURE
            ATYOURPLEASURE
            Allentown
            San Diego escort - Japanese Geisha Miki
            Japanese Geisha Miki
            San Diego
            Tucson escort - Dawn in tucson
            Dawn in tucson
            Tucson
            Orange County escort - Aeryn Moore
            Aeryn Moore
            Orange County
            Las Vegas escort - annaeuro
            annaeuro
            Las Vegas
            Manhattan escort - CLAUDIA COLE
            CLAUDIA COLE
            Manhattan

            Apres Vous

            Nashville escort - Liz Monroe
            Liz Monroe
            Nashville
            Orange County escort - Kitty Kitty Kay
            Kitty Kitty Kay
            Orange County
            Washington escort - Wetty
            Wetty
            Washington
            New York City escort - Major Escort
            Major Escort
            New York City
            Chicago escort - AshleyMarie
            AshleyMarie
            Chicago
            Arlington escort - Kourtney Kline
            Kourtney Kline
            Arlington
            Pittsburgh escort - Irene
            Irene
            Pittsburgh
            Orange County escort - Barbi
            Barbi
            Orange County
            New York City escort - lucyyyy
            lucyyyy
            New York City
            San Francisco escort - Niki
            Niki
            San Francisco
            Allentown escort - Oasis Entertainment
            Oasis Entertainment
            Allentown
            San Francisco escort - Ellie Ashlyn
            Ellie Ashlyn
            San Francisco
            New York City escort - BrendaBoobies
            BrendaBoobies
            New York City
            Tucson escort - Sage Needs
            Sage Needs
            Tucson
            Dallas escort - Star Wellness Center
            Star Wellness Center
            Dallas
            New York City escort - Yoshi
            Yoshi
            New York City
            Atlanta escort - Exclusiveatlantaplay
            Exclusiveatlantaplay
            Atlanta
            Austin escort - Darby Depoy
            Darby Depoy
            Austin
            Manhattan escort - ELENA - GFE - NYC
            ELENA GFE NYC
            Manhattan
            Charlotte escort - CarolinaEscorts
            CarolinaEscorts
            Charlotte
            Manhattan escort - blueyebrunette
            blueyebrunette
            Manhattan
            Portland escort - Elite Ladies
            Elite Ladies
            Portland
            Orange County escort - Tiffany Europe
            Tiffany Europe
            Orange County
            Fresno escort - mistressmandy
            mistressmandy
            Fresno
            New York City escort - Nikkei
            Nikkei
            New York City
            San Francisco escort - Tabitha Layne
            Tabitha Layne
            San Francisco
            Houston escort - Amanda Jadore
            Amanda Jadore
            Houston
            Los Angeles escort - Shama Helena Malin
            Shama Helena Malin
            Los Angeles
            Memphis escort - Maya in Memphis
            Maya in Memphis
            Memphis
            Miami escort - Bella Naples
            Bella Naples
            Miami
            Oklahoma City escort - SWEET CANDICE
            SWEET CANDICE
            Oklahoma City
            Orange County escort - VPleasuress
            VPleasuress
            Orange County
            Chicago escort - mychicagobeauties
            mychicagobeauties
            Chicago
            Arlington escort - Nikoletta Armani
            Nikoletta Armani
            Arlington
            New York City escort - Mikei
            Mikei
            New York City
            Chicago escort - Sasha Banks
            Sasha Banks
            Chicago
            Phoenix escort - Chanda
            Chanda
            Phoenix
            Charlotte escort - Princess Roni
            Princess Roni
            Charlotte
            New York City escort - PoshModels
            PoshModels
            New York City
            Reno escort - Jaz
            Jaz
            Reno
            Virginia escort - April Azura
            April Azura
            Virginia
            Dallas escort - Liza Italian Passion
            Liza Italian Passion
            Dallas
            Manhattan escort - Kamasutra
            Kamasutra
            Manhattan
            Las Vegas escort - SS
            SS
            Las Vegas
            Las Vegas escort - Tawny Brie
            Tawny Brie
            Las Vegas
            San Francisco escort - Piper
            Piper
            San Francisco
            Las Vegas escort - JennySyn
            JennySyn
            Las Vegas
            Atlanta escort - NaughtyNatalie
            NaughtyNatalie
            Atlanta
            Chicago escort - sofia
            sofia
            Chicago
            Detroit escort - busty blonde
            busty blonde
            Detroit
            Los Angeles escort - Miss Nina Swiss
            Miss Nina Swiss
            Los Angeles
            Manhattan escort - Playmate Christina
            Playmate Christina
            Manhattan
            Vancouver escort - tabitha_extreme
            tabitha extreme
            Vancouver
            New York City escort - FiveStarNYC
            FiveStarNYC
            New York City
            San Francisco escort - MsKaylaKim
            MsKaylaKim
            San Francisco
            Denver escort - Nadia Rayne
            Nadia Rayne
            Denver
            Atlanta escort - kristen rose 35
            kristen rose 35
            Atlanta
            Chicago escort - Ashley G
            Ashley G
            Chicago
                Welcome to VerifiedPlaymates.com, where you'll find many REAL photos of escorts and playmates we've shot personally. Unlike other sites where you have to sift through all the mess and the fake pictures, we are working hard to shoot the escorts ourselves so you will know they are at least real. Your time is important. Stick with us, and support the ladies that work hard and take the initiative to get Verified at a VP photoshoot, because in the end that will save you time and enhance the experience for everyone involved. We are working long hours here to showcase the finest and best escort playmates nationwide. Whether you're a client looking for that beautiful hot encounter, or for exciting new thrills, this is the website to find it all.

                Very soon, you will be seeing more high-quality erotic and authentic photographs of sexy escort playmates that we've shot, and as time goes on, you will see a whole lot more throughout 2011. So guys, sit back, enjoy, and bookmark this site. You'll seeing stunning updates soon. It's worth the wait! VP is going to do whatever it takes to make sure that this isn't just another escort website. It will be content rich, and continually FRESH.

                In the meantime, feel free to browse around and enjoy all the eye candy on this website. We have so many escorts and playmates advertising here that you will be sure to find one that you would really like to meet. This is the way of the future guys and if we want goodness to prevail, support the cool and hardworking ladies that take time out of their busy day to play straight by getting Verified! This benefits everyone. Support good and honest business practices, and support it with your actions, if this is what we all want as the way of the future!

            Please read our disclaimer before entering this site:



            Craigslist Adult Alternative Replacement Website
            © 2009-2010 - VerifiedPlaymates.com VP Escort Directory - All rights reserved.


            ]]>
            false
            1727338791670906880 5243904 Cross-domain Referer leakage http://googleads.g.doubleclick.net Information Certain
            If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

            You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

            Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

            Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
          43. http://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-4063878933780912&output=html&h=90&slotname=2510184792&w=728&lmt=1303097592&flash=10.2.154&url=http%3A%2F%2Fxss.cx%2Fexamples%2Fdork%2Fmobile%2Fxss-dork-mobile-cross-site-scripting-foxnews.mobi.html&dt=1303079687583&bpp=12&shv=r20110406&jsv=r20110415&correlator=1303079688651&frm=0&adk=1607234649&ga_vid=1909402508.1303079689&ga_sid=1303079689&ga_hid=1543956586&ga_fc=0&u_tz=-300&u_his=3&u_java=1&u_h=1200&u_w=1920&u_ah=1156&u_aw=1920&u_cd=16&u_nplug=9&u_nmime=44&biw=1063&bih=1016&fu=0&ifi=1&dtd=1113&xpc=LZl5GCUi0q&p=http%3A//xss.cx
          44. The response contains the following links to other domains:
            • http://pagead2.googlesyndication.com/pagead/abglogo/abg-en-100c-000000.png
            • http://pagead2.googlesyndication.com/pagead/sma8.js
            • http://www.google.com/url?ct=abg&q=https://www.google.com/adsense/support/bin/request.py%3Fcontact%3Dabg_afc%26url%3Dhttp://xss.cx/examples/dork/mobile/xss-dork-mobile-cross-site-scripting-foxnews.mobi.html%26hl%3Den%26client%3Dca-pub-4063878933780912%26adU%3Dvulnerability.scan.qualys.com%26adT%3DOnline%2BVulnerability%2BScan%26adU%3DT-Mobile.com%26adT%3DT-Mobile%25C2%25AE%2BOfficial%2BSite%26adU%3Dwww.appliedtrust.com%26adT%3DWeb-App%2BSecurity%2BJobs%26gl%3DUS&usg=AFQjCNFZeCVSDcueuXKlBfsL1_sVatJyMA
            ]]>
            • Online Vulnerability Scan Online Network Vulnerability Scan. Try our Free Online Scan Today! vulnerability.scan.qualys.com
            • T-Mobile?? Official Site Check out Cool New Phones Today On America's Largest 4G Network???. T-Mobile.com
            • Web-App Security Jobs Work/Live in Boulder - fun web app security position w/ great benefits www.appliedtrust.com
            ]]>
            false
            2190084890984329216 5245440 TRACE method is enabled http://d.adsverse.com Information Certain
            Although this behaviour is apparently harmless in itself, it can sometimes be leveraged to support attacks against other application users. If an attacker can find a way of causing a user to make a TRACE request, and can retrieve the response to that request, then the attacker will be able to capture any sensitive data which is included in the request by the user's browser, for example session cookies or credentials for platform-level authentication. This may exacerbate the impact of other vulnerabilities, such as cross-site scripting.]]>
            false
            8774705751655920640 3145984 Cleartext submission of password http://www.epicdreams.com High Certain
          45. http://www.epicdreams.com/login_confirm.shtm
          46. The form contains the following password field:
            • pwenter
            ]]>
            EpicDreams
            EpicDreams, Epic Dreams, Escort, Escorts, incall, outcall, Escort Reviews, Escort Directory, Escort Classifieds Welcome, Guest
            Log In | Free Hobbyist Account | Free Provider Ad | Help
            Home
            myEpicDreams
            VIP Escorts
            Directory
            Photo Gallery
            Calendar
            Reviews & Forums
            Adult Store
            Advertise
            CustomerCare
            April 17, 2011
            Login
            Providers and Members (Client/Hobbyist):
            Enter your email address and password to log in.
            Email Address:
            Password:
            Forgot Your Password?
            Enter the e-mail address and your account information will be sent to you.
              
             Sponsor Spotlight

            Name: Pamela Sweet
            Location: Allentown, PA
            Quote: I love to wear sexy lingerie... More >>

             Sponsor Spotlight

            Name: kara kane
            Location: Charlotte, NC
            Quote: PORNSTAR,FORMER NBA CHEERLEADER,HOOTERS ... More >>

             Sponsor Spotlight

            Name: Lovely Lauren
            Location: Dallas, TX
            Quote: Standing 5'6" with an amazing to... More >>

             Sponsor Spotlight

            Name: Kellie Sinz
            Location: Las Vegas, NV
            Quote: Did you ever hear the old saying "Good t... More >>

             Sponsor Spotlight

            Name: Amy Taylor
            Location: Los Angeles, CA

             Sponsor Spotlight

            Name: Asian Kitty
            Location: Las Vegas, NV
            Quote: Hi Baby ! I am Exactl... More >>

             Provider Spotlight

            Name: Toi
            Location: San Diego, CA
            Quote: Hello everybody. I am a 27yr old black female... More >>

            A D V E R T I S E M E N T S

            List your banner here!

             RSS Feeds | What's New | FREE Provider Ad | Escort & Adult Links | Adult Store & DVDs
            Copyright © 1998-2011 EpicDreams, All rights reserved. | About EpicDreams | 2257 Notice
            ]]>
            false
            1886381774460422144 5243904 Cross-domain Referer leakage http://googleads.g.doubleclick.net Information Certain
            If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

            You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

            Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

            Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
          47. http://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-4063878933780912&output=html&h=90&slotname=2510184792&w=728&lmt=1303101044&flash=10.2.154&url=file%3A%2F%2F%2FC%3A%2Fcdn%2Fexamples%2Fdork%2Fsql-injection%2Fsql-injection-dork-xss-cross-site-scripting-thatshiphopcom.html&dt=1303083044312&bpp=4&shv=r20110406&jsv=r20110415&correlator=1303083044461&frm=0&adk=1607234649&ga_vid=1092750689.1303083045&ga_sid=1303083045&ga_hid=1667764784&ga_fc=0&u_tz=-300&u_his=1&u_java=1&u_h=1200&u_w=1920&u_ah=1156&u_aw=1920&u_cd=16&u_nplug=9&u_nmime=44&biw=1063&bih=1016&fu=0&ifi=1&dtd=218&xpc=1S8PjLYi05&p=file%3A//
          48. The response contains the following links to other domains:
            • http://pagead2.googlesyndication.com/pagead/abglogo/abg-en-100c-000000.png
            • http://pagead2.googlesyndication.com/pagead/sma8.js
            • http://www.google.com/url?ct=abg&q=https://www.google.com/adsense/support/bin/request.py%3Fcontact%3Dabg_afc%26url%3Dfile:///C:/cdn/examples/dork/sql-injection/sql-injection-dork-xss-cross-site-scripting-thatshiphopcom.html%26hl%3Den%26client%3Dca-pub-4063878933780912%26adU%3Dvulnerability.scan.qualys.com%26adT%3DOnline%2BVulnerability%2BScan%26adU%3Dwww.SpearTip.net%26adT%3DDigital%2BForensics%26adU%3DCIOupdate.com%26adT%3DSecuring%2BYour%2BApplication%26gl%3DUS&usg=AFQjCNGWJtnBdQNyY8eiEVeNs_yKRg60yQ
            ]]>
            • Online Vulnerability Scan Online Network Vulnerability Scan. Try our Free Online Scan Today! vulnerability.scan.qualys.com
            • Digital Forensics Embezzlement - Fraud - Collusion Former Legal/Governmental advisors www.SpearTip.net
            • Securing Your Application 7 Top Security Solutions Reviewed. Free White Paper. Learn more today. CIOupdate.com
            Ads by Google
            ]]>
            false
            4539199417065849856 6291968 Email addresses disclosed http://www.epicdreams.com Information Certain
            However, email addresses of developers and other individuals (whether appearing on-screen or hidden within page source) may disclose information that is useful to an attacker; for example, they may represent usernames that can be used at the application's login, and they may be used in social engineering attacks against the organisation's personnel. Unnecessary or excessive disclosure of email addresses may also lead to an increase in the volume of spam email received.]]>
          49. customercare@epicdreams.com
          50. ]]>
            Escort Calendar For
            EpicDreams, Epic Dreams, Escort, Escorts, incall, outcall, Escort Reviews, Escort Directory, Escort Classifieds Welcome, Guest
            Log In | Free Hobbyist Account | Free Provider Ad | Help
            Home
            myEpicDreams
            VIP Escorts
            Directory
            Photo Gallery
            Calendar
            Reviews & Forums
            Adult Store
            Advertise
            CustomerCare
            April 17, 2011
            Cities > > Sponsor Calendar
            Go to Previous Month    Go to Next Month April 17, 2011
            Sun Mon Tue Wed Thu Fri Sat
            1
            2
            3
            4
            5
            6
            7
            8
            9
            10
            11
            12
            13
            14
            15
            16
            17
            18
            19
            20
            21
            22
            23
            24
            25
            26
            27
            28
            29
            30
            Events for April 17, 2011
            There are no events for this day.
              
             Sponsor Spotlight

            Name: Amy Taylor
            Location: Los Angeles, CA

             Sponsor Spotlight

            Name: kara kane
            Location: Charlotte, NC
            Quote: PORNSTAR,FORMER NBA CHEERLEADER,HOOTERS ... More >>

             Sponsor Spotlight

            Name: Isabel
            Location: Chicago, IL
            Quote: I'm very affectionate and a highly respo... More >>

             Sponsor Spotlight

            Name: TS Karen Cummings
            Location: Las Vegas, NV
            Quote: Hi this is Karen Cummings the "Jewel Of ... More >>

             Sponsor Spotlight

            Name: Lovely Lauren
            Location: Dallas, TX
            Quote: Standing 5'6" with an amazing to... More >>

             Sponsor Spotlight

            Name: Pamela Sweet
            Location: Allentown, PA
            Quote: I love to wear sexy lingerie... More >>

            A D V E R T I S E M E N T S

            List your banner here!

             RSS Feeds | What's New | FREE Provider Ad | Escort & Adult Links | Adult Store & DVDs
            Copyright © 1998-2011 EpicDreams, All rights reserved. | About EpicDreams | 2257 Notice
            ]]>
            false
            5074709795619164160 5243904 Cross-domain Referer leakage http://www.google.com Information Certain
            If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

            You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

            Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

            Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
          51. http://www.google.com/url?sa=t&source=web&cd=7&ved=0CDIQFjAG&url=http%3A%2F%2Fwww.epicdreams.com%2Fcategories.shtm%3Fcn%3DLong%2520Island%2520Escorts%26catcity%3D210&ei=jUmrTe7NIsbJgQep7-HzBQ&usg=AFQjCNGByUH5P3EtLkyMwJdN777oz8qmfA
          52. The response contains the following link to another domain:
            • http://www.epicdreams.com/categories.shtm?cn=Long%20Island%20Escorts&catcity=210
            ]]>
            302 Moved

            302 Moved

            The document has moved here. ]]>
            false
            2153653153555061760 2097920 Cross-site scripting (reflected) http://www.findalternative.com High Certain
            The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

            Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

            The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
          53. Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
          54. User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
          55. In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
            84db5"style%3d"x%3aexpression(alert(1))"11dd9de820a was submitted in the REST URL parameter 2. This input was echoed as 84db5"style="x:expression(alert(1))"11dd9de820a in the application's response.

            This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbitrary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.]]>
            lessons of passion dating sim guide index2.php index.php84db5"style="x:expression(alert(1))"11dd9de820a - Find Alternative
                
            Advanced Search - Preferences
            We were looking for pages containing the term lessons of passion dating sim guide index2.php index.php84db5"style="x:expression(alert(1))"11dd9de820a 0 pages were found (2.0011 Seconds)

            Did you mean: lessons of passion dating Sim guide index Phip index fopped style x expression alert 1 DEA?




            Unfortunately we couldn't find any pages containing the term "lessons of passion dating sim guide index2.php index.php84db5"style="x:expression(alert(1))"11dd9de820a"


              English  Latviski  Slovenian
            Sponsors Area   Query Archive
            Add Firefox Search Plugin Now!
            Privacy Policy
            Find Alternative
            ]]>
            false
            3294238626442909696 5244416 Cookie without HttpOnly flag set http://www.flashforadults.com Information Certain
            You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
          56. MORDER=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%3D%3D; expires=Sun, 17-Apr-2011 21:29:22 GMT
          57. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
            Flash for Adults

            Content on this page requires a newer version of Adobe Flash Player.

            Get Adobe Flash player

            Clinic Doctor Release: 04/17/2011
            Your the doctor on call at this clinic and a redhead comes walking in and needs ot be looked at right away! You might need to check her ass out really good though! Can you cut it?
            TV Buddys Release: 04/14/2011
            Your always going over to this girls aptment to watch tv with her and finally she calls you out on all the times you come over can you stand the heat and tell her your there cause you want ot secertly fuck her?
            Lesbian Pool Play Release: 04/11/2011
            Here a girl is wanting toi expirence her first lesbian sex and does it ever get hot you can watch as they try al kinds of postions and even get some strapons and get down to fucking and if your luck you can fuck one of them as well.
            Airport Security Release: 04/08/2011
            Here you play the main security man and get to check over this sweet blonde as she sets off the metal detector. It doesn't stop there as you take her to a private room to complete the inspection!
            Teacher Fuck Release: 04/05/2011
            Katty has failed her exam but really needs a passing grade and you get to play the teacher and its up to you if she makes your grade and gets her passing marks!
            The Bad Maid Release: 04/02/2011
            You have this maid and shes been doing a bad job lately and its time to get her to move on or put out and fuck you so she can keep her job its all up to you if she can clean your pipes right this time.
            Bar Pickup Release: 03/30/2011
            Here a sweet young girl is waiting around and if you get to buy her a drink you might be in enough luck to take and fuck her.
            Dinner Invatation Release: 03/27/2011
            Here you get to be a secert admire and finally send a message ot a girl that ytou like to have dinner with you thing is she thinks its her bnoyfriend that sent the invite now its up to you to convince her to stay and fuck you!
            The new Sexatary Release: 03/24/2011
            Here its Janny's first day on the job and you can play the cleaner that takes advantage of her and fucks her good like a boss.
            Tied Up Hooker Release: 03/21/2011
            You get to find this sweet hooker all tied up in your apt so what do you do? Cut her lose or fuck her well shes still tied up and split your in control its up to you.
             
            FREE BONUS! You'll get FREE access to more sites by subscribing to this site! CLICK HERE FOR MORE INFO
            JOIN NOW  |  MEMBERS  |  SUPPORT  |  WEBMASTERS
            This site contains sexually explicit Ex Girlfriend Sluts. If you are not at least 18 years of age, or object to viewing sexually explicit material involving real Ex-Girlfriend photos and videos submitted by our members, or if you don't consider amateur porn to conform to your community standards, please leave now.
            LEGAL NOTICE: All models appearing on the site were at least 18 years of age at the time their photographs were taken.
            Please refer to our 18 U.S.C. 2257 Record-Keeping Requirements Compliance statement below for further information and documentation.
            Terms & Conditions of Membership | 18 U.S.C. 2257 Record-Keeping Requirements Compliance statement | Privacy Policy
            Links | Customer Service | Webmaster Program
            © 1996 - 2010 by PowerNetX, Inc.
             
            ]]>
            false
            5209219625997281280 5244672 Session token in URL http://caseyofhouston.com Medium Firm
          58. http://caseyofhouston.com/code.php?PHPSESSID=9c427f4c538ed5c84467b8adec1aca52
          59. ]]>
            CREATOR: gd-jpeg v1.0 (using IJG JPEG v62), default quality ??C    $.' ",#(7),01444'9=82<.342??C  2!!22222222222222222222222222222222222222222222222222???"?? ???}!1AQa"q2???#B??R??$3br? %&'()*456789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz??????????????????????????????????????????????????????????????????????????? ???w!1AQaq"2?B???? #3R?br? $4?%?&'()*56789:CDEFGHIJSTUVWXYZcdefghijstuvwxyz?????????????????????????????????????????????????????????????????????????? ????5?_Z??t??w??Ai ???????W,?gbTbI]?q???@-???Aw?[[,?~??l}q]dw?k?????R? y `H?????'?y?Z ?0?R7e??z=:??]N???vv?~??W8?<?P??i.t???K??8H ?? ?rx????????????m??4L??a~????oO?X???+FV@wJ?????-??'?t~?D?.?$ ?????x>????/??I-"kG9C#9?n????>*Cx???$??N?Y?1??#??N???????h?;~?0?c???'[?G???t?w?U ???FG?)?,???=.??y??_?? ?g???i?f?~?Z??H?R?? ?~^? ;???~{?at{k?m"?[???P@O?{???S}O?P???kh????????7???%d?` ??]F?FN;s???Y0O???5?/f?z???7?????;-6????w????6?0O???????P?+n?????I?'?????b??gQ???e???0?h?R?rF>??\?V??(??g?,_)????H???'???vzf?????&??A ?3??g????x*?c?????18? ?1?????????? (?? ?xV??X_;dB?pF(??3?}?F`y???\G???ZP-????HYcd$u?QEP??+m??;??v???8?q?{? ?;????xn&?3)20G??????m???5?]??cn??89????????.??I4??m#??????(? u?k/lM??@X?????c?75):s???P?????4?K???IH?????P_??"7??e? ??P????d????.\rwc?T??k} ????*" ?????pq[Q@Q@??]]> false
            4470071658291532800 5244416 Cookie without HttpOnly flag set http://sorry.google.com Information Certain
            You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
          60. S=sorry=TERA0PM30LpwNu-DKA3SOw; path=/; domain=google.com
          61. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
            http://www.google.com/search?sourceid=chrome&ie=UTF-8&q=linkto%3Alessonsofpassion.com


            To continue, please type the characters below:

            Please enable images





            About this page

            Our systems have detected unusual traffic from your computer network. This page checks to see if it's really you sending the requests, and not a robot. Why did this happen?


            IP address: 173.193.214.243
            Time: 2011-04-17T20:37:02Z
            URL: http://www.google.com/search?sourceid=chrome&ie=UTF-8&q=linkto%3Alessonsofpassion.com
            ]]>
            false
            4448934574398186496 5244928 Password field with autocomplete enabled http://utopiaguide.com Low Certain
            The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
            autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
          62. http://utopiaguide.com/forums/login.php?do=login
          63. The form contains the following password field with autocomplete enabled:
            • vb_login_password
            ]]>
            UtopiaGuide



            Go Back   UtopiaGuide
            Register FAQ Members List CalendarvBookieToplist Today's Posts

            vBulletin Message
            Sorry! The administrator has disabled the list of members.

            Forum Jump

            All times are GMT -8. The time now is 12:32 PM.

            This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

            Powered by vBulletin® Version 3.6.8
            Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

            ]]>
            false
            481475990967294976 5243648 Cookie scoped to parent domain http://t.mookie1.com Low Firm
          64. session=1303072666|1303072839; path=/; domain=.mookie1.com
          65. id=914804995789526; path=/; expires=Fri, 11-May-12 20:40:39 GMT; domain=.mookie1.com
          66. The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
            false
            5032599845932217344 5244160 Cross-domain script include http://www.chucksanimeshrine.com Information Certain
            If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
          67. http://pagead2.googlesyndication.com/pagead/show_ads.js
          68. ]]>
            Chuck's Anime Shrine: Error/Forbidden
             

            Look what you did, you made Mikuru cry

            Oops, looks like you were brought to an address that's wrong, forbidden or no longer exists ^^;;. You'll have to go back in your browser or you can simply select any of the other links below or above.

            Character/Series Shrines | Cosplay | Idols


            Site Version 4.0 - Copyright 2002-2011 Chuck's Anime Shrine | Site Map | Our Artwork | Guest Book | Links | Mobile | Legal | About Us
            ]]>
            false
            2339786112970447872 5244416 Cookie without HttpOnly flag set http://ads.ad4game.com Information Certain
            You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
          69. _OABLOCK[16483]=deleted; expires=Sat, 17-Apr-2010 20:38:57 GMT; path=/; domain=ads.ad4game.com
          70. %5FOABLOCK%5B16483%5D=deleted; expires=Sat, 17-Apr-2010 20:38:57 GMT; path=/; domain=ads.ad4game.com
          71. _OASCAP[16483]=deleted; expires=Sat, 17-Apr-2010 20:38:57 GMT; path=/; domain=ads.ad4game.com
          72. %5FOASCAP%5B16483%5D=deleted; expires=Sat, 17-Apr-2010 20:38:57 GMT; path=/; domain=ads.ad4game.com
          73. _OAZBLOCK[14072]=deleted; expires=Sat, 17-Apr-2010 20:38:57 GMT; path=/; domain=ads.ad4game.com
          74. %5FOAZBLOCK%5B14072%5D=deleted; expires=Sat, 17-Apr-2010 20:38:57 GMT; path=/; domain=ads.ad4game.com
          75. _OASZCAP[14072]=deleted; expires=Sat, 17-Apr-2010 20:38:57 GMT; path=/; domain=ads.ad4game.com
          76. %5FOASZCAP%5B14072%5D=deleted; expires=Sat, 17-Apr-2010 20:38:57 GMT; path=/; domain=ads.ad4game.com
          77. OAID=8b013c6be14dfd94a258788b8333beed; expires=Mon, 16-Apr-2012 20:38:58 GMT; path=/
          78. _OABLOCK[16483]=1303072738; expires=Tue, 17-May-2011 20:38:58 GMT; path=/; domain=ads.ad4game.com
          79. _OAZBLOCK[14072]=1303072738; expires=Tue, 17-May-2011 20:38:58 GMT; path=/; domain=ads.ad4game.com
          80. OABLOCK=16483.1303072658; expires=Tue, 17-May-2011 20:38:58 GMT; path=/; domain=ads.ad4game.com
          81. OASCAP=16483.1; path=/; domain=ads.ad4game.com
          82. OAZBLOCK=14072.1303072658; expires=Tue, 17-May-2011 20:38:58 GMT; path=/; domain=ads.ad4game.com
          83. OASZCAP=14072.1; path=/; domain=ads.ad4game.com
          84. The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
            7){org.openx.SWFObject.doPrepUnload=true;}if(c){this.addParam("bgcolor",c);}var q=_7?_7:"high";this.addParam("quality",q);this.setAttribute("useExpressInstall",false);this.setAttribute("doExpressInstall",false);var _c=(_8)?_8:window.location;this.setAttribute("xiRedirectUrl",_c);this.setAttribute("redirectUrl","");if(_9){this.setAttribute("redirectUrl",_9);}};org.openx.SWFObject.prototype={useExpressInstall:function(_d){this.xiSWFPath=!_d?"expressinstall.swf":_d;this.setAttribute("useExpressInstall",true);},setAttribute:function(_e,_f){this.attributes[_e]=_f;},getAttribute:function(_10){return this.attributes[_10];},addParam:function(_11,_12){this.params[_11]=_12;},getParams:function(){return this.params;},addVariable:function(_13,_14){this.variables[_13]=_14;},getVariable:function(_15){return this.variables[_15];},getVariables:function(){return this.variables;},getVariablePairs:function(){var _16=new Array();var key;var _18=this.getVariables();for(key in _18){_16[_16.length]=key+"="+_18[key];}return _16;},getSWFHTML:function(){var _19="";if(navigator.plugins&&navigator.mimeTypes&&navigator.mimeTypes.length){if(this.getAttribute("doExpressInstall")){this.addVariable("MMplayerType","PlugIn");this.setAttribute("swf",this.xiSWFPath);}_19="0){_19+="flashvars=\""+_1c+"\"";}_19+="/>";}else{if(this.getAttribute("doExpressInstall")){this.addVariable("MMplayerType","ActiveX");this.setAttribute("swf",this.xiSWFPath);}_19="";_19+="";var _1d=this.getParams();for(var key in _1d){_19+="";}var _1f=this.getVariablePairs().join("&");if(_1f.length>0){_19+="";}_19+="";}return _19;},write:function(_20){if(this.getAttribute("useExpressInstall")){var _21=new org.openx.PlayerVersion([6,0,65]);if(this.installedVer.versionIsValid(_21)&&!this.installedVer.versionIsValid(this.getAttribute("version"))){this.setAttribute("doExpressInstall",true);this.addVariable("MMredirectURL",escape(this.getAttribute("xiRedirectUrl")));document.title=document.title.slice(0,47)+" - Flash Player Installation";this.addVariable("MMdoctitle",document.title);}}if(this.skipDetect||this.getAttribute("doExpressInstall")||this.installedVer.versionIsValid(this.getAttribute("version"))){var n=(typeof _20=="string")?document.getElementById(_20):_20;n.innerHTML=this.getSWFHTML();return true;}else{if(this.getAttribute("redirectUrl")!=""){document.location.replace(this.getAttribute("redirectUrl"));}}return false;}};org.openx.SWFObjectUtil.getPlayerVersion=function(){var _23=new org.openx.PlayerVersion([0,0,0]);if(navigator.plugins&&navigator.mimeTypes.length){var x=navigator.plugins["Shockwave Flash"];if(x&&x.description){_23=new org.openx.PlayerVersion(x.description.replace(/([a-zA-Z]|\s)+/,"").replace(/(\s+r|\s+b[0-9]+)/,".").split("."));}}else{if(navigator.userAgent&&navigator.userAgent.indexOf("Windows CE")>=0){var axo=1;var _26=3;while(axo){try{_26++;axo=new ActiveXObject("ShockwaveFlash.ShockwaveFlash."+_26);_23=new org.openx.PlayerVersion([_26,0,0]);}catch(e){axo=null;}}}else{try{var axo=new ActiveXObject("ShockwaveFlash.ShockwaveFlash.7");}catch(e){try{var axo=new ActiveXObject("ShockwaveFlash.ShockwaveFlash.6");_23=new org.openx.PlayerVersion([6,0,21]);axo.AllowScriptAccess="always";}catch(e){if(_23.major==6){return _23;}}try{axo=new ActiveXObject("ShockwaveFlash.ShockwaveFlash");}catch(e){}}if(axo!=null){_23=new org.openx.PlayerVersion(axo.GetVariable("$version").split(" ")[1].split(","));}}}return _23;};org.openx.PlayerVersion=function(_29){this.major=_29[0]!=null?parseInt(_29[0]):0;this.minor=_29[1]!=null?parseInt(_29[1]):0;this.rev=_29[2]!=null?parseInt(_29[2]):0;};org.openx.PlayerVersion.prototype.versionIsValid=function(fv){if(this.majorfv.major){return true;}if(this.minorfv.minor){return true;}if(this.rev=0;i--){_2f[i].style.display="none";for(var x in _2f[i]){if(typeof _2f[i][x]=="function"){_2f[i][x]=function(){};}}}};if(org.openx.SWFObject.doPrepUnload){if(!org.openx.unloadSet){org.openx.SWFObjectUtil.prepUnload=function(){__flash_unloadHandler=function(){};__flash_savedUnloadHandler=function(){};window.attachEvent("onunload",org.openx.SWFObjectUtil.cleanupSWFs);};window.attachEvent("onbeforeunload",org.openx.SWFObjectUtil.prepUnload);org.openx.unloadSet=true;}}if(!document.getElementById&&document.all){document.getElementById=function(id){return document.all[id];};}var getQueryParamValue=org.openx.util.getRequestParameter;var FlashObject=org.openx.SWFObject;var SWFObject=org.openx.SWFObject;document.mmm_fo=1;var MAX_207667a9 = ''; MAX_207667a9 += "<"+"style type=\"text/css\">\n"; MAX_207667a9 += "<"+"!--\n"; MAX_207667a9 += "#footer207667a9{\n"; MAX_207667a9 += "/* Netscape 4, IE 4.x-5.0/Win and other lesser browsers will use this */\n"; MAX_207667a9 += "position: fixed; right: 0px; bottom: 0px;\n"; MAX_207667a9 += "/* IE5.5+/Win - this is more specific than the IE 5.0 version */\n"; MAX_207667a9 += "right: auto; bottom: auto;\n"; MAX_207667a9 += "left: 0px;\n"; MAX_207667a9 += "bottom: 0px;\n"; MAX_207667a9 += "right: 0px;\n"; MAX_207667a9 += "padding: 0px;\n"; MAX_207667a9 += "}\n"; MAX_207667a9 += "-->\n"; MAX_207667a9 += "<"+"/style>\n"; MAX_207667a9 += "<"+"!--[if lte IE 8]>\n"; MAX_207667a9 += "<"+"style type=\"text/css\">\n"; MAX_207667a9 += "#footer207667a9{\n"; MAX_207667a9 += "/* Netscape 4, IE 4.x-5.0/Win and other lesser browsers will use this */\n"; MAX_207667a9 += "position: absolute; right: 0px; bottom: 0px;\n"; MAX_207667a9 += "/* IE5.5+/Win - this is more specific than the IE 5.0 version */\n"; MAX_207667a9 += "right: auto; bottom: auto;\n"; MAX_207667a9 += "left: expression( ( 0 + ( ignoreMe2 = document.documentElement.scrollLeft ? document.documentElement.scrollLeft : document.body.scrollLeft ) ) + \'px\' );\n"; MAX_207667a9 += "top: expression( ( -footer207667a9.offsetHeight + ( document.documentElement.clientHeight ? document.documentElement.clientHeight : document.body.clientHeight ) + ( ignoreMe = document.documentElement.scrollTop ? document.documentElement.scrollTop : document.body.scrollTop ) ) + \'px\' );\n"; MAX_207667a9 += "width: expression( ( 0 + ( ignoreMe3 = document.documentElement.clientWidth ? document.documentElement.clientWidth : document.body.clientWidth ) ) + \'px\' );\n"; MAX_207667a9 += "}\n"; MAX_207667a9 += "<"+"/style>\n"; MAX_207667a9 += "<"+"script type=\"text/javascript\">\n"; MAX_207667a9 += "if (document.documentMode == 8) {\n"; MAX_207667a9 += "document.write(\"<"+"style type=\\\"text/css\\\">#footer207667a9{ position:fixed;left:0px;right:0px;bottom:0px;}<"+"/style>\");\n"; MAX_207667a9 += "}\n"; MAX_207667a9 += "<"+"/script>\n"; MAX_207667a9 += "<"+"![endif]-->\n"; MAX_207667a9 += "<"+"div id=\"footer207667a9\" style=\"height:0px;display:none;z-index: 2147483647;padding:0px;\">\n"; MAX_207667a9 += "<"+"div style=\"height:100%;overflow-y:hidden;position:relative;z-index: 2147483647;padding:0px;\">\n"; MAX_207667a9 += "<"+"div style=\"position: absolute;z-index: 2147483647;width:100%;padding: 0px;\">\n"; MAX_207667a9 += "<"+"table width=\"100%\" cellpadding=\"0\" cellspacing=\"0\" border=\"0\" style=\"z-index: 2147483647;border-width: 0pt; background: transparent none repeat scroll 0% 0%; border-collapse: separate;padding:0px;\"><"+"tr><"+"td align=\"center\" style=\"border-width:0px;\"><"+"div align=\"center\" style=\"padding:0px;\">\n"; MAX_207667a9 += "<"+"!-- FILE1=http://cdn.ad4game.com/499547b8f932202063ca764a7c2c34e1.swf&clickTAG=http://ads.ad4game.com/www/delivery/ck.php?oaparams=2__bannerid=16483__zoneid=14072__OXLCA=1__cb=b49a1c7d2b__oadest=https%3A%2F%2Fwww.wizard101.com%2Fwizardcreator%3Futm_campaign%3Ddisp_ad4%26utm_content%3D300x250enroll%26utm_source%3Dad4%26utm_medium%3Ddisplay\" -->\n"; MAX_207667a9 += "<"+"div id=\'ox_dfcbd4f76482835253d34169971b523a\' style=\'display: inline;\'><"+"img src=\'http://cdn.ad4game.com/1x1.gif\' alt=\'\' title=\'\' border=\'0\' /><"+"/div>\n"; MAX_207667a9 += "<"+"script type=\'text/javascript\'><"+"!--// <"+"![CDATA[\n"; MAX_207667a9 += "var ox_swf = new FlashObject(\'http://cdn.ad4game.com/499547b8f932202063ca764a7c2c34e1.swf\', \'Advertisement\', \'800\', \'100\', \'6\');\n"; MAX_207667a9 += "ox_swf.addVariable(\'clickTARGET\', \'_blank\');\n"; MAX_207667a9 += "ox_swf.addVariable(\'clickTAG\', \'http%3A%2F%2Fads.ad4game.com%2Fwww%2Fdelivery%2Fck.php%3Foaparams%3D2__bannerid%3D16483__zoneid%3D14072__OXLCA%3D1__cb%3Db49a1c7d2b__oadest%3Dhttps%253A%252F%252Fwww.wizard101.com%252Fwizardcreator%253Futm_campaign%253Ddisp_ad4%2526utm_content%253D300x250enroll%2526utm_source%253Dad4%2526utm_medium%253Ddisplay\');\n"; MAX_207667a9 += "ox_swf.addParam(\'wmode\',\'transparent\');\n"; MAX_207667a9 += "ox_swf.addParam(\'allowScriptAccess\',\'always\');\n"; MAX_207667a9 += "ox_swf.write(\'ox_dfcbd4f76482835253d34169971b523a\');\n"; MAX_207667a9 += "// ]]]> --><"+"/script><"+"script type=\'text/javascript\'><"+"!--//<"+"![CDATA[\n"; MAX_207667a9 += "MAX_footer_init(\'000000\', 50, \'FFFFFF\');\n"; MAX_207667a9 += "//]]]>--><"+"/script><"+"!-- FILE1=http://cdn.ad4game.com/499547b8f932202063ca764a7c2c34e1.swf&clickTAG=http://ads.ad4game.com/www/delivery/ck.php?oaparams=2__bannerid=16483__zoneid=14072__OXLCA=1__cb=b49a1c7d2b__oadest=https%3A%2F%2Fwww.wizard101.com%2Fwizardcreator%3Futm_campaign%3Ddisp_ad4%26utm_content%3D300x250enroll%26utm_source%3Dad4%26utm_medium%3Ddisplay\" -->\n"; MAX_207667a9 += "<"+"script type=\'text/javascript\'>document.context=\'YjoxNjQ4MyNjOjE1NzZ8\'; <"+"/script>\n"; MAX_207667a9 += "<"+"/div><"+"/td><"+"/tr><"+"/table><"+"/div>\n"; MAX_207667a9 += "<"+"div id=\"MAXt_207667a9\" style=\"height:50px;z-index: 2147483647;padding:0;\"><"+"/div>\n"; MAX_207667a9 += "<"+"div id=\"MaxFooter\" style=\"height:50px;z-index: 2147483647;position:static;padding:0;\"><"+"/div>\n"; MAX_207667a9 += "<"+"div id=\"MAXc_207667a9\" style=\"position: absolute;right: 5pt;bottom:4px;display:none;z-index: 2147483647;padding:0;\"><"+"table style=\"border-width: 0pt; background: transparent none repeat scroll 0% 0%; border-collapse: separate;\"><"+"tr><"+"td style=\"border-width:0px;\" align=\"right\"><"+"a id=\"MAXa_207667a9\" href=\"javascript:MAX_footer_close_207667a9(0);\" style=\"color:white;font-size:11px;font-family:verdana;text-decoration:underline;\">Close<"+"/a>\n"; MAX_207667a9 += "<"+"/td><"+"/tr><"+"/table><"+"/div>\n"; MAX_207667a9 += "<"+"/div>\n"; MAX_207667a9 += "<"+"/div>\n"; document.write(MAX_207667a9); function MAX_findObj(n, d) { var p,i,x; if(!d) d=document; if((p=n.indexOf("?"))>0&&parent.frames.length) { d=parent.frames[n.substring(p+1)].document; n=n.substring(0,p);} if(!(x=d[n])&&d.all) x=d.all[n]; for (i=0;!x&&id.layers.length;i++) x=MAX_findObj(n,d.layers[i].document); if(!x && document.getElementById) x=document.getElementById(n); return x; } function MAX_footer_init(bg, height, hc) { MAX_footer_values1 = bg; MAX_footer_values2 = height; MAX_footer_values3 = hc; window.setTimeout("MAX_footer_init207667a9()", 200); } var MAX_footer_values1; var MAX_footer_values2; var MAX_footer_values3; function MAX_footer_init207667a9() { var bg = MAX_footer_values1; var height = MAX_footer_values2; var hc = MAX_footer_values3; var o = MAX_findObj('MAXa_207667a9'); if (o) { if (o.style) c = o.style; else c = o; c.color = '#'+hc; } o = MAX_findObj('MAXh_207667a9'); if (o) { if (o.style) c = o.style; else c = o; c.color = '#'+hc; } o = MAX_findObj('MaxFooter'); if (o) { if (o.style) c = o.style; else c = o; c.backgroundColor = '#'+bg; } if (height > 0) { if (o) { var o2 = MAX_findObj('MAXt_207667a9'); if (o2) { if (o2.style) c = o2.style; else c = o2; c.height = ''+(100-height)+'px'; if (o.style) c = o.style; else c = o; c.height = ''+height+'px'; } } } } function MAX_footer_close_207667a9(ft) { var o = MAX_findObj('MAXc_207667a9'); if (!o) return false; if (o.style) c = o.style; else c = o; c.display = 'none'; if (MAX_adlayers_intervalid_207667a9 != null) { window.clearInterval(MAX_adlayers_intervalid_207667a9); } MAX_adlayers_counter_207667a9 = 100; if (MAX_adlayers_counter_207667a9 > 0) { MAX_adlayers_intervalid_207667a9 = window.setInterval('MAX_footer_slidein_207667a9()', 30); } } function MAX_footer_slideout_207667a9() { var o = MAX_findObj('footer207667a9'); if (!o) return false; if (o.style) c = o.style; else c = o; MAX_adlayers_counter_207667a9 -= 3; if (MAX_adlayers_counter_207667a9 <= 0) { window.clearInterval(MAX_adlayers_intervalid_207667a9); c.height = '100px'; o = MAX_findObj('MAXc_207667a9'); if (!o) return false; if (o.style) c = o.style; else c = o; c.display = 'inline'; } else { c.height = ''+ (100-MAX_adlayers_counter_207667a9) +'px'; } } function MAX_footer_slidein_207667a9() { var o = MAX_findObj('footer207667a9'); if (!o) return false; if (o.style) c = o.style; else c = o; MAX_adlayers_counter_207667a9 -= 3; if (MAX_adlayers_counter_207667a9 > 0) { c.height = ''+ MAX_adlayers_counter_207667a9 + 'px'; } else { c.display = 'none'; c.height = '0px'; window.clearInterval(MAX_adlayers_intervalid_207667a9); MAX_adlayers_intervalid_207667a9 = null; } } function MAX_footer_207667a9() { MAX_adlayers_intervalid_207667a9 = window.setInterval('MAX_footer_slideout_207667a9()', 30); var o = MAX_findObj('footer207667a9'); if (!o) return false; if (o.style) c = o.style; else c = o; c.display = 'inline'; } var MAX_adlayers_counter_207667a9 = 100; var MAX_adlayers_intervalid_207667a9 = null; var MAX_adlayers_timerid_207667a9 = null; function MAX_footer_start_207667a9() { window.setTimeout("MAX_footer_207667a9()", 2100); } MAX_footer_start_207667a9(); var gaJsHost = (("https:" == document.location.protocol) ? "https://ssl." : "http://www."); document.write(unescape("%3Cscript src='" + gaJsHost + "google-analytics.com/ga.js' type='text/javascript'%3E%3C/script%3E")); try { var pageTracker = _gat._getTracker("UA-2544276-5"); pageTracker._trackPageview(); } catch(err) {} _qoptions={ qacct:"p-83POQfOeGbhRY" }; document.write(unescape("%3Cscript src='http://edge.quantserve.com/quant.js' type='text/javascript'%3E%3C/script%3E")); ]]> false
            675863647130630144 5244160 Cross-domain script include http://outcastacademy.com Information Certain
            If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
          85. http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js
          86. http://www.google-analytics.com/urchin.js
          87. ]]>
            Outcast Academy - Lesson of Passion PREMIUM site by leonizer <a href="index.php" title="Outcast Academy erotic flash game">Welcome to our academy We will support your change into a better young woman. With good manners, well educated and ready for life in a modern society. If you are sentenced here... ...it means that you were bad bad girl.</a> <a href="girls.php" title="Sexy flash game Outcast Academy">Academy is populated with many young students who were directed here from all over the world. Girls has split themselves ints ome kind of fractions - Models, Emos and more. Sometimes there are incidents between them but management tries to keep everything under control.</a>
                         

            Do you need our support? Please contact us.



            WARNING: This website contains explicit adult material. You may only use this Website if you are at least 18 years of age, or at least the age of majority in the jurisdiction where you reside or from which you access this Website. If you do not meet these requirements, then you do not have permission to use the Website.



            ?? 2011 Outcast Academy by Lesson of Passion games



            ]]> false 9161962366914783232 5244928 Password field with autocomplete enabled http://www.epicdreams.com Low Certain
            The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
            autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
          88. http://www.epicdreams.com/oops.html
          89. The form contains the following password fields with autocomplete enabled:
            • password1
            • password2
            ]]>
            Free Escort Ad, Free Provider Ads, Free Adult Advertising, Sign up for free escort ad today
            EpicDreams, Epic Dreams, Escort, Escorts, incall, outcall, Escort Reviews, Escort Directory, Escort Classifieds Welcome, Guest
            Log In | Free Hobbyist Account | Free Provider Ad | Help
            Home
            myEpicDreams
            VIP Escorts
            Directory
            Photo Gallery
            Calendar
            Reviews & Forums
            Adult Store
            Advertise
            CustomerCare
            April 17, 2011
            Advertiser Sign Up > Account Setup
            Ad Type
            Select the ad type that best suits your needs and then create your login information below. You'll receive a full page ad, 1 large photo, 5 picture photo gallery, 150+ words of text, your own Calendar to post your events and travel information, your own Reviews page, your own Mailing List, and 1 city and 1 category listings. Upgrade to a SPONSORS Ad and get these FEATURES.
            Individual (Independent Provider)
            Agency

            Create your Login Account:

            EpicDreams ID: Must contain at least three and be no longer than 16 alphanumeric characters. Example: johndoe, john123, or 123john. Your ID will appear when you post reviews and participate on our message boards and chat rooms.
            Password: Valid password must contain at least three alphanumeric characters.
            Confirm Password: Please re-type your password.
            Email Address: Please supply your email address. (example: johndoe@yourdomain.com) An EpicDreams Welcome Letter containing your account information will be sent to this email address. This email will also be used to log into your account.
            Please let us know how you found EpicDreams
             I agree to the terms and conditions above.
             Provider News
            Five sponsor cities - $65/month
            • Get listed above all non-sponsors
            • Get unlimited messages
            • Get emails delivered to your private email address (such as Hotmail, Yahoo, Gmail, and AOL)
            • Get maximum site-wide visiblity
            • Get listed in the VIP page
            • Never have your contact info disappear.
            • No Product Ads
            • No Sponsor Spotlights on your ad
            • Your Calendar postings will appear in the city Calendar
            • Receive priority customer support
            • Compare Sponsors vs. Non-Sponsors
            Banner Listing - $90/month
            • click here for more info
            • Appear on the right side of EVERY page
            • Instant traffic to your personal web page or EpicDreams ad
            Refer your friends and get a free sponsor month
            Share your link, get listed on the homepage!
            Banner Exchange Program. Increase traffic. Click here for complete details.

            A D V E R T I S E M E N T S

            List your banner here!

             RSS Feeds | What's New | FREE Provider Ad | Escort & Adult Links | Adult Store & DVDs
            Copyright © 1998-2011 EpicDreams, All rights reserved. | About EpicDreams | 2257 Notice
            ]]>
            false
            404601164552045568 5243904 Cross-domain Referer leakage http://ol5u8o2ka38be34j62ktnefji390jhro-a-fc-opensocial.googleusercontent.com Information Certain
            If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

            You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

            Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

            Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
          90. http://ol5u8o2ka38be34j62ktnefji390jhro-a-fc-opensocial.googleusercontent.com/gadgets/ifr?url=http://fcgadgets.appspot.com/spec/shareit.xml&container=peoplesense&parent=http://www.cloudscan.me/&mid=0&view=profile&libs=google.blog&d=0.556.7&lang=en&view-params=%7B%22skin%22:%7B%22FACE_SIZE%22:%2232%22,%22HEIGHT%22:%22200%22,%22TITLE%22:%22%22,%22BORDER_COLOR%22:%22transparent%22,%22ENDCAP_BG_COLOR%22:%22transparent%22,%22ENDCAP_TEXT_COLOR%22:%22%23666666%22,%22ENDCAP_LINK_COLOR%22:%22%233d74a5%22,%22ALTERNATE_BG_COLOR%22:%22transparent%22,%22CONTENT_BG_COLOR%22:%22transparent%22,%22CONTENT_LINK_COLOR%22:%22%233d74a5%22,%22CONTENT_TEXT_COLOR%22:%22%23666666%22,%22CONTENT_SECONDARY_LINK_COLOR%22:%22%233d74a5%22,%22CONTENT_SECONDARY_TEXT_COLOR%22:%22%23666666%22,%22CONTENT_HEADLINE_COLOR%22:%22%23666666%22,%22FONT_FACE%22:%22normal+normal+13px+Arial,+Tahoma,+Helvetica,+FreeSans,+sans-serif%22%7D%7D&communityId=00129212639365482611&caller=http://www.cloudscan.me/
          91. The response contains the following link to another domain:
            • http://fcgadgets.blogspot.com/
            ]]>
            ]]> false
            7005672438519735296 5243648 Cookie scoped to parent domain http://pixel.rubiconproject.com Information Certain
          92. rpb=5328%3D1%265671%3D1%264212%3D1%262372%3D1%263810%3D1%262374%3D1; expires=Fri, 14-Oct-2011 23:37:36 GMT; path=/; domain=.rubiconproject.com
          93. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
            false
            8393821680665028608 5243904 Cross-domain Referer leakage http://www.lessonofpassion.com Information Certain
            If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

            You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

            Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

            Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
          94. http://www.lessonofpassion.com/user.php?type=register
          95. The response contains the following links to other domains:
            • http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js
            • http://www.3dadultcomics.com/?t=110138,1,4,1
            • http://www.google-analytics.com/urchin.js
            • http://www.playforceone.com/
            • http://www.sexizu.com/
            ]]>
            Lesson of Passion - erotic flash games


            Username   Password  

            If you want to post comments and gain access to special features please your account.
            New Player registration

            Welcome to Lesson of Passion CLUB.

            Username


            Password


            Password confirmation


            E-mail


            Country


            ]]> false 3937549239210748928 2097920 Cross-site scripting (reflected) http://www.thatshiphop.com High Certain
            The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

            Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

            The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
          96. Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
          97. User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
          98. In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
            /script%3E%3Cscript%3Ealert(0x00003E)%3C/script%3E request parameter is copied into the value of an HTML tag attribute which is encapsulated in double quotation marks. The payload 94afe"><script>alert(1)</script>78a6b1082b4 was submitted in the %27--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x00003E)%3C/script%3E parameter. This input was echoed unmodified in the application's response.

            This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
            78a6b1082b4 HTTP/1.1 Host: www.thatshiphop.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 ]]> ThatsHipHop.com - News

            ThatsHiphop.com News

             
            Krayzie Bone: No More Harmonizing With Bone...

            Krayzie Bone has announced that he's leaving Bone Thugs n Harmony after 20 years to focus on his solo career and his label, The Life Entertainment. Krayzie's first project is a compilation titled Cleveland Is the City, Volume One, and it'll be on the stre... Read more
            Gucci Mane: It's Still Gucci Time Behind Ba...

            No one has bailed Gucci Mane out of prison, even though his bond is only $5700. He's locked up in Atlanta for allegedly throwing a woman out of his car for rejecting his sexual advances last Friday. But even if he posts bail, he'll simply be transferred t... Read more
            Bobby Brown: Child Number Six On The Way

            Bobby Brown and fiancee Alicia Etheridge are expecting another baby. This will be child number six for Brown and his second with Alicia. He and Whitney Houston have just one daughter, Bobbi Christina. - Rahim Wright... Read more
            Mariah Carey: Bares All -- Yet Again

            Just in case someone in the world hasn't seen Mariah Carey's bare, baby packed belly, she's showing it again - - on the cover of Britain's OK! magazine. Mimi tells the mag that hubby Nick Cannon has already started reading stories to the couple's unborn ... Read more
            Waka Flocka: Gucci And Papoose On New Mixta...

            Waka Flocka Flame has just dropped a new mixtape titled Benjamin Flocka.Surprisingly, there's no Lex Luger production this time around. Instead, Waka recruited Southside to man the boards for most of the project. The mixtape also includes features from th... Read more
            Nicki Minaj: Channeling Marge Simpson

            Nicki Minaj's latest wig looks rather cartoonish - - and that may be because she got the idea for the beehive look from Marge Simpson. Nicki tells People magazine, "Never did I think I would be rocking the Marge Simpson... I realize that she was cutting ... Read more
            Nicki Minaj: Channeling Marge Simpson

            Nicki Minaj's latest wig looks rather cartoonish - - and that may be because she got the idea for the beehive look from Marge Simpson. Nicki tells People magazine, "Never did I think I would be rocking the Marge Simpson... I realize that she was cutting ... Read more
            Rihanna, Eminem, Gaga: Billboard Awards Fin...

            Rihanna leads all comers for next month's Billboard Awards. She's a finalist in 18 categories, including Top Hot 100 Artist and Top Female Artist. Eminem is up for 16 awards, and Lady Gaga is up for 12. Justin Bieber and Bruno Mars are finalists in 11 cat... Read more
            Beyonce: A Shot In The Dark

            Beyonce is keeping people guessing about just what's going on with her new video, which she headed to California's Mojave Desert to shoot on Tuesday. Some sources say the clip is meant to accompany a song called "Girl," while others say it's for "Till the... Read more
            Teyana Taylor: Accused Of Assault

            Teyana Taylor is denying Internet reports that she assaulted another woman at a studio in Burbank, California on Saturday night. She writes on Twitter, "I'm being accused of something I didn't do." TMZ reports that Teyana allegedly laid a beat down on the... Read more
             

            1, 78a6b1082b4=&page=2">2, 78a6b1082b4=&page=3">3, 78a6b1082b4=&page=4">4, 78a6b1082b4=&page=5">5, 78a6b1082b4=&page=6">6, 78a6b1082b4=&page=7">7, 78a6b1082b4=&page=8">8, 78a6b1082b4=&page=9">9 ... 78a6b1082b4=">26 ... 78a6b1082b4=">Next

             

            THH Login

            Interviews

            Large Amount

            LARGE AMOUNT ???THE BOY WITH A BILLION BARS??? "The BOY WITH A BILLION BARS???, in which this unique title was also natura
            Read More >

            Group Home

            GROUP HOME RSRadio: So group home it??s been a few years since you have released an official album what made you decide that
            Read More >


            ]]>
            false
            5913478833384085504 3145984 Cleartext submission of password http://utopiaguide.com High Certain
          99. http://utopiaguide.com/forums/login.php?do=login
          100. The form contains the following password field:
            • vb_login_password
            ]]>
            UtopiaGuide



            Go Back   UtopiaGuide
            Register FAQ Members List CalendarvBookieToplist Today's Posts

            vBulletin Message
            Sorry! The administrator has disabled the list of members.

            Forum Jump

            All times are GMT -8. The time now is 12:32 PM.

            This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

            Powered by vBulletin® Version 3.6.8
            Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

            ]]>
            false
            1277479300879479808 5244416 Cookie without HttpOnly flag set http://img291.imageshack.us Information Certain
            You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
          101. is_uuid=f87bb4c294ef4e01a8980438aab3bd57; expires=Thu, 31-Dec-37 23:55:55 GMT; domain=.imageshack.us; path=/
          102. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
            ELRY`gnu|???????????????? &/8AKT]gqz???????????? !-8COZfr~?????????? -;HUcq~????????? +:IXgw????????'7HYj{???????+=Oat??????? 2FZn???????  % : O d y ? ? ? ? ? ?  ' = T j ? ? ? ? ? ? " 9 Q i ? ? ? ? ? ?  * C \ u ? ? ? ? ? & @ Z t ? ? ? ? ?.Id???? %A^z???? &Ca~????1Om????&Ed????#Cc????'Ij????4Vx???&Il????Ae????@e???? Ek???*Qw???;c???*R{???Gp???@j???>i???  A l ? ? ?!!H!u!?!?!?"'"U"?"?"?# #8#f#?#?#?$$M$|$?$?% %8%h%?%?%?&'&W&?&?&?''I'z'?'?( (?(q(?(?))8)k)?)?**5*h*?*?++6+i+?+?,,9,n,?,?- -A-v-?-?..L.?.?.?/$/Z/?/?/?050l0?0?11J1?1?1?2*2c2?2?3 3F33?3?4+4e4?4?55M5?5?5?676r6?6?7$7`7?7?88P8?8?99B99?9?:6:t:?:?;-;k;?;?<' >`>?>??!?a????@#@d@?@?A)AjA?A?B0BrB?B?C:C}C?DDGD?D?EEUE?E?F"FgF?F?G5G{G?HHKH?H?IIcI?I?J7J}J?K KSK?K?L*LrL?MMJM?M?N%NnN?OOIO?O?P'PqP?QQPQ?Q?R1R|R?SS_S?S?TBT?T?U(UuU?VV\V?V?WDW?W?X/X}X?YYiY?ZZVZ?Z?[E[?[?\5\?\?]']x]?^^l^?__a_?``W`?`?aOa?a?bIb?b?cCc?c?d@d?d?e=e?e?f=f?f?g=g?g?h?h?h?iCi?i?jHj?j?kOk?k?lWl?mm`m?nnkn?ooxo?p+p?p?q:q?q?rKr?ss]s?ttpt?u(u?u?v>v?v?wVw?xxnx?y*y?y?zFz?{{c{?|!|?|?}A}?~~b~?#???G??? ?k???0?????W????????G????r???;????i???3?????d???0?????c???1?????f???6????n????????z???M??? ?????_???4??? ?u???L???$?????h???B????????d???@????????i???G???&????v???V???8????????n???R???7???????u???\???D???-???????u???`???K???8???%???????y???h???Y???J???;???.???!?????? ?????z???p???g???_???X???Q???K???F???A???=???:???8???6???5???5???6???7???9???"?ne??++??????,.???]??#?????N?x????N?)?A6H;???'???????e??YH???NWH<7^1?$`?w??2:??)??s???+??e BR?????? ???=^?????W???5 ?HFy?J? q?c?'u?lnUQ?yNH? H?s??^???]I?0??Q??????89?s?^:????????????????719'???(??R ????4????;?8?DY?_??1? ??r$?F?s??,L? 1???7??? ?xX???I?????<[??_? ~??k???K?u?{{??????'?)j???77r??> ?"\?\ ?Z?g8?M6??NM-~%??nQO??`kQj?j??Xo9NKo??_???[??I8??h?rl?? '=?{??S?k???$?E???6?G???_?_?i?k? ?=??wz7???? ?595k????]:?t??u???d??%???'?4????????[??,???_? s?????#C????Y???????:$?*??_S?5???X?qe5?????0???S??x96??(9?J)_??\??????ciN1??????"?<>b???j4??????Q?Wi???Y?+????L??? n]g???2??? i??i?????????4??????]?fHR{?cf?O????:????z???????M???{8o?&?L2????>?r#c??????e????r??7h??????mR?emyg?j?Z?v0?????s?b?|T???mt??e?? J7????EW??{???r"??I? ?21???n?&=??x' ? g#?8??J??3????*???Y?@,?Y???crG%wn?Q?LWzv? ??????r??????\?EG?^x#??}?5%v&?M;?KV??Q? B?C`?p([?=??IU?????(? #0 ??dk?J5???g??>J??m_[]X?AQ?????E[??9+b=???:W?wu????;?S????? ~??G??_ o&3???o?,G??>??L?l? Y?+ _?????u?????????Yh???c????$@5???.???#?????\? ?T? ?????#???xj?t??Z4#?G?$?????m8??c9s?^?q?S?{A'v??????=$????h?????q??o???????????a%???????????/???????? .?????{K??h???????????.?????|?????????????o????UCE}??l?K???=??????Q???=?????5]? .??|???_????G??????????TQw?,?}???{??_??????o????UCE}?K???=?????4????ffm?7%?#?????V_?(?{???l?????????:+,?H???9???wzI??H???H/M? ??s??#?J??O????cxS??0~R????z? 6??W*^ ??~R?eU?d?N0r1????5???n?k?^?w??Q????6???????\#n?????8 ~s????J?]e?1?\?/2.>Q??>A??N????Z$???-??q??Q???K??/?L??r3^??Gmiok??+.?>v???`u>?????8?^?w]m????t??8JQ?q?=;i??c??l??????7"P??8???"?E?cG ??3?jF?eO?????:?????=???l+E,?Q?('?1?o??>??????:;Yv?$?1??????:*?dO?l?vWo?_h??!????(?>f??]F*?+??i?!??5{]???x?/?X?>?9?S???????6?&?v?j???U?I?[?w7 $Q???Y???????a(?p?agf??j???[](?????>?(?Q?0S?b"?^J-s-%)????[??Ns??.7v????? ????>???o?????"?m??????%??}?O???????q.?)??m.M??Ov??in?O???????????m????\ i??V?E1?%???mN???m??B???T??+?qG$1G???[????x?H^??;{-?????g??T??????? z*???~?????)Y-?-???{?H?????R]??L????t7?m?Z???=?$?$h????L???tBB6???FQeY|???? ,??Wq??v???Z?"??s???g6?f??/?s??U?2??Z???)????????b?U????/?~#?u?|U?/.??`|1??1{}o?XK????????ci&?m?`?K??%I8???K?f?????????????u'?5??;???f??????wwt????Zr?"@??G????????G?f?????SW????4]#I?u;KK=u|C??Eu??&??i4?Q?[F?H?L?nm?[??????~??u??'???_?zd?&?m:?j]?e>???j???#I?y7?.|?? ???p4?upS?*51r????%K??QJ3???????)N?U?S?3???oh???*??S?luxR????3O??L?i??;?.??\???_?C??(????%?~'??k? ?"?_??C?-??'???l?i_!??mm????Cai5???k??jv+Cg ???????????.,?y????D?????)i]?W?y ?P??? 5?%???????'????????S????h????U? ?p??0???J?x?C?P?T?[f??e?M2gX??}?Y?????1???????? ?-t?+?????y]Z??7 e??>e?Oi??u5k.??I[?bh?K?>.????W???p? & ?*q?!?>v?;?nI)Z???y??Y?#?????2??r??q?S?V?k??_#?????O????>1? ??+? ??>|Z?A}?]a%?~$|0?l|{g?%{m/????1???U?`??? w???e?d??J???Q?_???? t??#T???)? ?+F?????>$?S??? "?|1????????z_????\?+LE??E?p .?????????s??????t?n???U?????? ???D??????;h?+???WP0?&N??=?B? ???????z????????o?mh?> |O?S?k??|S???????o??~'x3[?? ???????Zl??{??X?X?_???????yI%*?F"?*??Zu???,F???5g???.?_?????\??>4x??O????D??`???????|b??e?j?\?~)???????]?????i2??F4??7??p?-? ?|J???(??|i??~"????????????g????????^7???ox?6?4????????4?[X????Z??u9?+o?o? ?-?7???l??4??????$? ?H????j??#C???o/???|X??????U???i>+?)????@x??_???'\?5??? ?\x?;??&?6j???j_??A?k???N?+??0x?r???? Z?O?6???g?"? ??Z???'??)lf?????????_3,?'???~M?K'?)??U?#?N?I?*V??????N????'I??WO M???|?? ?kR?AV??$???ME?)7?????I???t??AO?????????9M???;?????cC??|??k???S?b?????VZ???i?4]2??^?/??ka????{??Z??WO*??/?????c???????~>j? ?!??(???eM>"?>????????????{c?)????~!??????S?????????????o???g?|'?????'??? ?e????GA??'???_?k??O?????=??o?a??WP??-< ?[???Z???.|k???kH?S_?a?K??x?.?c>?/d???`?J?? s???U?h?u?e:?XJU???O?C??UJ?z?Ew()??IA???wh????????????Y??? ?c????W?S?f??[?/??=?5???>?N?lO??G??SK???lr^??i??5???Q??/EL?????????C?Zf??5?i_?3?????_?f?|A?S?????????u/? ??H???b[??^ ????[?O?>#?-?@???%???ErS???'?_?V?g?#??????????_?Qo??? ???O?? W??B??? ??G?%?????h_???M???h??Z??|?Z??u=??????????g??~?3???????j???????~,?~%?]????A>5x???????~%??g?#??#????,??s?M/T?aau ????r??'??U? t??mG u?????N? ??(???}????gE??8??`? U!?G?)I??x?%{%%?y|n??{?|+[6??o?w? ??w?????>~??O????|/??N?g?|k??????|G????N?s?????>)x?J?<-??\?m??ot+?GU?!???K?S???mc????nW??m?K????????.~~???h???~!?O??? j~?-????1????????_????_??"?????7w??>*?,l????uw\???Bo?&??????G?3}??]??>???E?|a?#??O |_?~????e???g???????V?us?a'???n?????{_??~?;?????r??!?g?k?b?????<7q?>|@?7?I???o?k?????;??K????)?_?/????????????????H??Fk?i?ZD??Q????????<-?5????????????????????q?k?_?)jZ2x??>??Q?????s?K??N??4kk?~?;?WB??,.l?EQ??!???7?T???????V?X????s?i?Q????v????????????>2?$?m?jV???!?'?????????n?????<_??}W?????????q??~??????Ouc??.??^%???3\?.???? ??????u?????Y?????#??? 9?R?|'????5???Q|??;? d?#?{??;?`1??;??A?k ?H?=rn????,k?n?0p2?3?s???'?W???@}???????Me??????S?O????????R ??c<(oVe?w???@??????? ?????4x6?0[ y? ?S????[S?6??*,?[?L?L???,????????????Y?kM2?\\??Oy????K?????B??] ?: ?Z?>.?*{^?VrvQI?u'??k??[CJ??????????n?K?Z????z_?W?S[????c??J??????R?????5/?-??)?U ?l?r???+?q???fw?W??x?_K?c?>#i,?'??S**?Z6?o?~@?2F ?????A????|????W???/?.d??B ?{??xcp??UX?c?? t$???^????? ????Q?:-}???[&???pp?2???r U???????>??!x??????+$ g??B?A???*T????|J[???0??P9?g????,v????{h??{??N???0c?K? YEu!?Y??n'??hePLj??????c?????????G?G???}[?m?????.??N?????????G????k?M??e??????[;{????^'????QVK? ?????$,??L?FwC?oV?l-J?M?7????wN+f?U?u????8??c??$?9??J??(??w??R?-jk??hxW???O???s],????Zm???Kqo ?>??K?E K4H?rZ????dB?4?X?T?W?W?=<-?O??tO???????? Xf?5???K?"?>dd6$;???????>??m ??R??Y? s?[G%??+?aY$?0?I?U8??????pg?|k?X-4/??t?N??:W?[D??q??_??f?[????S?5??hr?}~K;?x??dJ???2#?<&w:?u\?????J?????'?%?9?M?.G??>Jr??7?P???R?*4i???F????F2?????7*????(?e>#???V?k????dl ?? ????= ?88?????|8?6?q???u?/Q?{@???[L??]???'s(A??????2?6??(?YK???/is??"{??6??"Y&?E?p??Y? ^(Co??????????|Y??[??????xbK? ??N?c#|L?:5???:??W+???R???QY[??.?A ???hb??S'?~<|H??(????Z???uq|????^,?.?Mn???I$???;??T?24?ZI?U?>YU8[??oQ????K?{?t?cw{??????n??"6E?%D?:?C2+??0p?*?U??mk?U?o8?7??x???????L?????'???s????ZM[Mn????M??A??7?>???1????????W?8x?T???_Y???V???????|??F??Z??p???$??R^?????????????%SQ?4q? 3"?F* ?k??????k?C???h? ????o?:???A~??x7???????K???|c???A???_ ?? ^A?x??y????x?R?5?v??5 ??Q??D-=??1??O?o????,6>?[????xxW?T??? ?T???%V?Jx?^_/eJ???:??q????? ????G6????????N??c???1?T???kR???14???*:u9?ve^Z?#?,w?Is???vvf??? ? bFX1??f??MF??A? ???h?i$?H*???$o? .?arp7?h?xx??&?????????i???s*Y\Lm??{?$??.???0 ??L???x?????????Ap?cg?]p/??m???t? ??-??????'??C ,L?,?#Esl??:?J=??}/k?~_?|??8?,?l?)b?zx?D&?'????e$?Nh?6?h??????x;? I????????|L??? ????^???x ??7???????{o???D??t?-?B??? ??xw????:?M??a????????K?b?&C:i^?????????O7???[ j,I ?b???%???~??u???\?c?s?????)??y??]????W??^?0?.?Q?A???????????4??k?E?\???4?/X?!~???g[??b?i?????????)-??3M?1?B$n?r `?38?/gyT?q?U?#|???\:??????;+?;+$)?*?z???S??(??iFj?5???????U!?T[[??????8h??????%??_??M????X_[?s?>7????}WH????#????pw???C?'???????w???????~????????S???????o?????Z??!?6j/????/???ys?~?zF????o?|5?[??j????+?m????w??4x?tma4?D??|G?x/I??>0????3i????n????g???X???7??*~?t?????_]~??&?????f?L??/f?-ot?Hi?wP?SA4>?7????%???O ??_???7???????t??????_??4??~?W?/????i?~%?s???ik?!?l????? ?~.?=?g??{??d???????@x?????????????O?}???i?O??k?????KO??M~??????#??&??p?k? >&Yx????????A?'???????jV??}???4?;?j?????gX?uk??"?aU^?????G*Q??o??-a??%?sU???1?%???}?I????^?Rk??=??????P_???K????c???C????_?'?_.?l??????3??<1xW@???????-?? ???i??>?k?O??????od?[?/,??o`?k??? m????<=?W?#?????fo? >(j?7?????E?[???~???????A?]??zV??~+o????O????u=Bkx!-?[??L???9???g[?????????? ?????o????????O?G??G?a???|c???~????<?o??????????h [Y?~?5????2??{??,?@??????|????'?`???? ~??O?3?S???????|=?7?u?(????m???/?{T??~'????s?Y?x'?V?#???=?H?H??u?[z|;??2|.[??l?E????(?e 8?tp?????aE?^????!??U???O????OAJ?;R?$?.d????s????#m??????;????|???f??C??????{?Z??U??j??????R???s^??>9?|U??/|w??? ????4}???????y%??O?4 ?t?)????_????dms????x??W??7?????#??z???????O???+?]_???u}s??????H???y?h???????[G"m*????*???????&????b????j?>"???f9> ? ?????i?F??/?????????#?????o?z????o hWq?@|ii????i?o i6?????g???????3?'???q?P^????s??g??u7???a????x???Mb=?'?x???R5?(????????,???XjT?rT??????)U????_+?g??v??I=O?m??? ?????????0?G?????g???4 ?>&????j??v_?????????|I?Y??K?D[?g?|???w?k?S?6?}?s??? ???7|Y?I?y??~??~E?sxw?g??A???~+I?d?????>=?(?/?>!????:??5/???\???Y??}??????M,?a?????,??||?>?????2?????w????/??W_?????~0???~??~?????M??4???? A?e?O ??j?m???h??[?????/??????cH?j??/\:???x???? |?_???_?_???????=??m?/?@??v??O?|B??????[????:u???6 ??ny?G ??? >?????p??U1S?LL! ??V??j2??EJ?_g??G??????C-??u??????????mh?6??i+?6???Nk?*?????5??g???L #?)?x????.????9??w?3??/???|T?5? ?????|???`?O??4kE?N??wO?????KM"?J???[????o?#5??|/???G???c?????W???^?????uO???????/??? ?f?o> x?|??>/X?^?-L?&?o?MOX????uM ?R?????????:?i????????????;7?-??~????_Y|.?t?/A?????=????_j7m?????1?/??2???sq{?7?t??????????f??V??/f?w ?'?H?;e?(?o?Q_=?V?-????z?????E??.????P7?C??????h???|S?xc?????/?j-?hVz 'J?/??Z??^????kq; vH??8??'Wf?>??~&??^???o????g{w?Mu?x??>??J?v?X.h?yS} ??????????????????????j?d??Q?Q???Ug6??3?O ??q/????b?????VV??m?R?'((?(?T?|??}^x??E??)?]k??N??-?>?P?e id?y???*?????????k?????????>#h?n??9????????H??z??m???+U????Kx,??O????u?k?????i7?=??W???????ZI,9&14j?6~~???? |x???@?2???]G??K???qw?????7K??S??bho??[)qM.?/???I????aV ??? c?Ju???R?J??V?b????.wZ??mS? ????)?g f7??RTg??V1?N?(???????' ??Swk??????? ?d???????C?6?????^j?f? ?:???WW??m??6K??Z$??S+4{>?|o?i????Mu?5??????????4??]NM?b??Ey(0+?,o,!?as#K?Z|i??i?(??.?Mv??YM;?v?9??Y?u+?Me?I???U??wm?PV_ XZ??Z?Qx?K]?@?n??6r?4????G???/!??P??4?2?e??\????.M??>?????:?v?S|?[-ky????_??>'??q?r?^?/????e??(?'d?????????EK?????_????5mwS??B?'???K??T???????????8????w?bl#????h???????????c?Zm????(?k%%iE???I??????(??M+?o??????<?????????B?W??????????CIkq??} Z????=??<3???d?????}>???;?>?b[???U?g?? ??[?7?W>????-??????? GTY|??,????I??????8CQ[C?X?+?F??~&??g?E???+j?_KY$?l???\?O?aH?{I??E???ko ???&?6Vw?:????6W+~DVw??o???H??&[??R??n 9M???????^g??L???u#????7???????)>WOY???of?5??o q???=?n? Fo?`????`13?q8?*???.)??nJ???g??j?qS?j??????g???~ ??O???f??c?'???? 4x??G?????Y?%??????????_?|C??o??[??6?=?iz2|J?o?~#_\????+A?'????-\?Io?J??}?k??q??????m?T??(??_? ??in?Q????f??????????W?????4???G???}Z*0s????*??T?s?n?74?K???8?s????????c-?ZN??M~??'??G?S?:??{?k*|[???iW????G*[???VW19?c??C$D?*????M?????b_?+u?????+??O?/????~7?????z???j????????b???4??E???????+3??????P?0?????g??? t?T? a14???D??^?g|DhUn?K?4?b?v?s^#?????g????q? `r?e????0??L??*br?a\?__???U?????c?T](:?*????|???f??h?<'?????{???NK?E?mK?2?P$?'FIf?8?????]T|? ?x?V??F??t??N??t)????S?O ????R?aY??-(?????ah??c%???9V+u0??c[S6?0?k?ke??e????GN?,d?8??j?u^????????5????W?????5???~?E?5???E?=??T?T?????g???Z??fX?V_2S????6????a?????k??i?E??t?BN???x'??????c?'?%??gm??????P??R???I????????v?s??!???~2I?}>8K?5??? ?????K@???W~%????'?!]?d?j?????q?_?????!?????E?a???V??? x?x??????.????+??.???s??????K:??6 ??7?XJmJ??J?\e*?Q??,????RQ????..??3????LV??k9/?{????m???B???Q??W/+??????o????P???6?M?=?x??~6|4?/?~#j>5??W?????h?_K?'?8?1?}V??Z???e?%??o?-1?m-#?{??E??s??|????F??(???? 7????????? '??? ~??~|,??????t?x????o??t{k]2?????????X\xJho????b?????~??g?'???~| ?7??%?o?oF?c??D??| ??gE?????T???D?[?_?wW? ?u?????????5??????P?g????~/?????/?7??a~!?w????go???O?????"???????G??????.?t??7Z??4?K???[;?Feha???I!{??'?q? V?.?;???u#I?Y?[????d???8??E????/ ??;w?(Ji>???O?+?????????~??d??????????>??|?o?_>6%?x???~k???|U??_??Z???? ????????????r????#????????%????U????_ ?Q?D??>?F? >?_????~:iw? ??5??>3??~#????$??? ?u??{M*????`?r?#N?K?jF??#UNt&?eN???)Jx7:Q???????}7'F?O?????T??Q???{I?'????O???????u4o??_??6??:w?b?q????|[????????'?????b?~??????????rx'RM6??z,??C?????5?w?N??????'?/?_????eO?&??|e???{???n|???a?>,??;?5??R????5O?c?? ??X???0hv?:_?9um+\??U????/????7??? ??K?{??T??a?>?;??4???f???v??x?????f?? ??|c?i???C?/|?~??????|L???i0%?\?y?W??????%?J????o?m{??~~?????^???~?? 7?~??U???i md?v?????_?f?!g?)?T? ???;x#???mC??u_????xK????J????~(?;???3????????|???? ????V?? }sZ????zm????????k?w???????<_???????K]OV??????q&????0D????? x?@???[??}_B??Y??)???????*/??bKO??????????&????/???\k??????x;?_???Mx???0?=??C??!,??1???????????K?? ?:Lk?????X[Yh?N?????6?????!?f?G?????x??C??O!?K?B????_6.j?X?hT????Q??????W?hFJ?y??iG?v????Y=;[_ Q????g???"??I???????s?S??8?0??d??zFV@??!?[??ygyu?????:O?~?+???*????Xj?w??ME.t}N??????]^?Y]???????d?ZC?D1?wbE?w9-?????+?????m???c?????V?o?m5_??|?jfj??.?'?n????{{)???K????%- _??U???}???S?6:8|g???????;RoW;r??Z?b??Sj-??J???87:??_????c?r???t??\?R?Z?^????????|/????g?Y??c??xT??U??W???????x??Z.??j?u??z???KW??n.????? ?S??z??-??}0k???&?wb?>?(???;1? ?,???????x?B??x?????/s?}o????K???MkC?o????X???? K???????\?od???????$O??P???NK+H???????+?PE;F???M??.d??????]??T??9 ?T?d?[P{j?n???u3??J??C?gVq?w|?m^???yTU???M&?ZI?$??dp"T.????#?P6???e????y???????,???4?%??\K%??:J?i??ji?)??@??# ??yY?hW~??q5??N]&?I?4?R f?9?[?$?O??[?MN ?ck+??????8??? ???????????<+}{???m?_???3nuX?' Mn??BU??9????N#???9\???'zwvJ??)?FWW\???+?*{?O?s*?Fp?????Q???Sn????????Z?yE7g????????6Z??W/???^??]?zW??????i??4?3OO ?xkQ??????Y\l??O`g?n????o?K????#?T???_???h???L4?/??|U???????[?}?h??km?i????2 ??? O+?s|q?e???O??????b?g?_?>?????xR}?PC??lS]Z^G4?n?G? ?L??jI????_??|}??{ocm???wy????5???r????1wd??W????Uf?????uU??t?????C?mY^2????t? |???%W?????et(8???md??*pP?d??{]???4?x??w?4??k7:m??V?W?h??1?R3q?jM?4???? ?(?;?<5??? ??b|5?c1Y~#&?)?2?????*Y?q?/??????R?P??u???q? T?S???|s???? #???>??O??????W?OxG????^??~'??<7????G???ot???T?????g???I? ?#????h_ ?5?W?|!????A???c?U????xC??e?X?C????m?4?{??0?4?W?O?~,kz???^??n??\?xs?O????X?P??h??o?|u}???????=?v???????_-?X????_??1?xCG?????? ?uy3???3??>? x?????????/?_???/?_> ~?s|??????n?????*???k/ /?_|????+?l??Q??|a???? ?i?_xY?????7?/?]?Y???Hf??????;Y/-gki-?????? ?,??????rh??qo???(?? ??i?i???'????&?wyo????\???]?LhV?4??p?l?-?xgJ9eZuk??g??^????$=?H{????\R??????p~ P?(???Nc??|?u|??e??R?Q??^I,5o?'?????3??,^ ?V??????T??4v_ ??W<'$??T? ??~"K??????y??o?? 7r????x$9 ?g??7???C|A?--??-? )??G???O" / ????????a??????? ?'.?????naN??4'8??cp?q?)O??Nj??Rp?f??RQ???T??Vr???Yz?`??u9K Y???5?U`?d??KW????G?????R?7??? ??6?|a????-'?????&??=?=O?????????e????? ??4kM??]???!b?R????!???G??????????_? |r???O???/?z????^?:??/??~'?n?~ ?S|O?????f_??/?xz?T??k?o???'v??????+ O?<=?/?|??^??|#???????~??????>0h????2?T??u??:???????6?ai????\d?i????|I?????a?????? ???u_?3????W???O?_?)/?$>x???W???x?H??~x:?@???????<}??'L???w??g?>????Nu?aiq?????Ft#?s?V??:S?AT????N??8?t?'<*p???`kP???a??OU.[_?*?J???{_?????????Y????t????????????O?/???(G?c?|T???e?????*xv?E??~-????????_????#?N??&?l|9u??~? ????????O?a?N??t~?~;???O?~???S?Vx????;????????~3|*?????????S?????R? ?OS?~i????]?4s}????? ??O ???? > ???<=q?)????? ?w?!A?k^???c?Ui??H?? ????7??*??t??????????4?>?????g???m?f/??e??^??{?[?~?T?-?????j??g?-?g?j>2??? ?x???????Y4o?gcs?mbkg???3?'???x|Un ????p??|F*?&?K?Z??:??????>z???????n??"? V??#?? F|????N?E???????(5k?~???o???????9u??(7?h??k?j~o??j??/???S? ??_????? ~?> ???_ x????>??G[???{??)o??Y??{$iiu{?w??????_?d?K?????6????_????}?'?.??D?a???????_ ??0?Q??Y5??7_gO?.?Q???"X??? L??5K?? [x~???? +?_? q?x???????O??<?~?~???M[?@?@??|I??7_?~*?3?_?;?Z?~???????k???^,??????d?/?/?K?u??S???k??? ??????c??????(?G????3?K???o??????{??&??? |P??|+?%??C?7???X4e{?????_?$???????????[xSB???????c???@|_?r|Q??f?>>??? j? t?V??+T?g?+???4?SN??Zi????????u????7?]O????~?? >??!?????c????e???????5?x???????'|?????t[???????`???????s?~?????_?5??'? "??hW?> ???=?}O A?xwRw?k?MU??????????^?????$A?????M;??????k??? M??G?????????~?W>????4?[|??c?j?x????t????A?w????kLi<}?x???_?????+?{?i????I?\?,M??[?????????cyr???????h?????I?????~a?s[?Bz????? ?'-?????????+??P??????????6?????o5??4?W??????Y????6K?????b?f???^?r????Ioo??M???Hm?x??)??? v??]??oYj?7?}? N?0F??ZLE??+ 9V>u ??@5??Z?q????????Cta?? ????x???W F5*e??????????T????il?m???2??X?XJ??(?v ????N?#(?Rq?{?[5???Y????>|??\]?R?j2?yP^??6?????_???|[?^x????QH??I???]ON?X&??5??N??????\?,I"uV/?????;????]/???????i??<??i?=>???suaq?h???nha*M???IH???/???KR9~*??q?9?R?'J?t????M?e?????9[??RM~????f8\G??G?J???j8r????v??9???>f????:'????????m>??M?.u? x???G?5?? ???rZiz???mi?9}?v {k?,???1????}?(???z/??[M]?G???+??y?? !N??]}??+It??????u?iT??u1T?Z?cEK??O^_vjWQi;8s9&?$???o??? ??M???P???%??5?????2?I?>?,o?/xc?7????????u?5?c?f??2?#??2"O?-"??4?6?W-?????8$??#??u$}k?o~???O? +???.,??i??<???s??:??????~?0 :0}???2,^x:?<$?qJ??J?s?4?5e??Nr~m_?????up??>7??Qt?&?j??????*i%?R??-ckZ???Y\??Wv?????]\Mq????MNKs???@#6{u{xK??;?h??+G???O\_]?a????$?eO???O ?????G??????Z?<2n?-A??of? X??.?`?F???u?G?t??0?F??????hw?i^???m*?K\???X?Z=?7:??Q? ?ug ?ga?I%?j7S?i5??2?T????????;U?n?[??.+?o-?'??????&?D???7??6??*????YG?xNTW?M$?????Zh??????m?Z????2?????n??{4??????ZJ???#c??YkZC?t??,?????-?????????ef0?J???@-?H???q??u?~?XZj???]??h?i?n?V??kH?t??9(???. ???-#|????)????"[=[R??~??_ ????~%?b?t?k=4FLz??o?????c??@?????J/?'????????W_?.?>%Y?n???q??:??$???s????\??e?n$???|O???&????????m?????????Z??=?x????U.|&]I{V???x?????{?r???~'????_ ???J??G?|Oi?i?~??I??s?,??]3P?? }?G?Z5????!??<'$L???U???4r??;???B????<9????^U??v?????V?q?M???^?vv[????\o??,????????8M???e????S??????W??T?o???o??? ????*??X?a??.5??????~?R?C? v???6%?B9?W??6???A?G#???"03???:d~? ???_?;?]??K????????5?4_i??}?X|A??x?(.t?7[??????u8?$i^??N?{?|f)??;??o?/?????x???!???????~??Vz???o????4/XX???????{l? ?v?????????(?????M???>??_'?^??-????[?R+'?? ?|???m??????S???????fMP|V?????? a[ ?E?x????~k_?RO??&|bO????????m???\?C????? |G?i????)?\?k?n? ????=??,_???????~???E????3???????t?~%?6?>????=?Wm;??d?&h?n^?+?as?EP~t????~,~???O?|\???k?p????# ???????????y?h8????O?Q?-????Y?9?e????9?k???(Q??y?b??0????X???{K??uszUmS:T???{?'???>|???:??E?Q?c^?5]cA?Zi????_X??^?%??????V?*Mn;???????]Y?ql?J?? 4)n|Q5????d]?\??]??HP?[E?%?D?????a????a?|???????9x0|%?w?Wj~V??K;k?RMJ{ 8??o?9?x?????tc?X]Mkqsij ?????zb???????? Y???RO????1D??????f?,[??|h???k??5?"I?We`??? f?`?j?V*???d?8?~-?6????????R?;?*?P????L?/?4?T??a??5S????K8??H???????x?m??,|_a?C????R??????f???W?#???&?,??????,6?1?PR???A?????f?a????t?????????G?g???|D????&h^-????O???'?o?&??j??p???x[H???g?????5KQ?m??N?S??P?|??1?????#7??n???M?}?3????gsC???????????4{?lrR?????1???3?Wo??eO\ @???'?-}^o|u???O???_???/??~?????g?? ??3?????+?x??Z??????y?? ???|J???)??!??_x????Q?G?P??? ???????7????:"??wS?x{V??&???*?ua:i??P{???xc??|UZ J?"V???ST?{8F?I??????y?V???\???s? ?I??6?>?i]^\?I5?M?)?? ?b?U???>&????"?????_???;}?7]??f?/ ZxKR?7??g/??????l???e???=w?O?????e?]x?J??}??j?y??>C??H?????????@>2??G?t F???~*?C?#????G??????^???o?Q|E?9?D??K?????5?q???? ??M?hk??????-?kp?ih~(?????Q?e???????????n?d??1?o????n??&O|o???O~??$?o???e?[?v??|4?>"Y???????ho?S?4{k????F?4~?_???~1^|???_??Ok??(O?????C?m?????????G?/|R????Mq??????qGw?pw ????3j?G`p???W?J????gF5?Jr????X???? ?8F.1?+????3,?J????8???\?jN1J?Si??^?????? ???S??{D?????-?u?o?-????V?????d???????????????F???rx}Q?k??|hM2m??\????X???W??????J4????Fo????V?:????t??&P???Rt??g?,D!???????^????o$???;??.?????????~~???????{G??i???4? ??|K?'??????O??^kxL????Z??5??Mo(_??d??n???mM7?}??*???? u?|???g{????????8i???1??_?q?O????z???????????]_X?S?V? d??4???5~??????b???????????7?'?o??W?<?/??????+O???f?>%??????Y??? ????}W[????i???<=%???V??Mm=?y?s?Uj????d??? ????????????}#W?8????VXJ*9+?[??U.??????????4??v?????? ??ok?????x?V??|Y???G?????>??????<7????~??x??KZ67>0????????????X?!????????|???????h|=????5??@?\?|D????4?kF}g????????3?7???H??H???????? ??h ?S???s???ae????u-BbB????? ??,?? ?T?2F???????|Y?s?? ?/???U???V?????5???&Ku???M??y??,?g$g'?>??r???Q??h?N???7d??????ySQI&~???m??9?.?SX?;?s?$?/'MsK????&??????>???|u??????fC?}i???????6?v??H@s?????I???E??? ?G-???s???????? ?*??u]0???[EiI?????! ??Ms?&u'*??rQm??\W????I9y?????*5???r*N1O??s???????-]?V??:?????E??? ??R?`S??4??XK?7??O?D??M?R??.Ye]?11??H?z-?????{?'8-?u-??ns??9???x??????h??"?47??U?k?x??/???^(????5W?h?K?-+Q?F??O?-??i5?o/?q?p4??(,?????|F.?hP?t??b?M?????g&??2??|???18lo?*?#???p?J*?s??.???????|?????V?Z?t=3I?????_i??J??R????gE????n"f?V)a??+?m????l???S?6?m??o?????}2?e???U?F&/1?De??E????V??D?S??o ?|U???_???j???????;?M???_f???? mn?f??I$7?m?c??6 ????=w??????I??????u???F$rKi%?????F????V@?W??????jRq?Zq?"|?k??%?Ik????%_???R?_?8?j?I????vmJV???q.{?(?~8??9?w??????w5?????????C?>?e?|:??|Sa???????f3xB??U?xoO???#?} ??Vz?V?W??????u?????G?&????[???????D???u5?????u+X?%???????Z???{?%bm????o??#????x~?????? ??Z??~ xo????.??#??M?? ??6WPj^?????Q?????V??????-??c??k?3????~5|??1j_u 7???? Z?oI????????D???????cM???????z{7???g?? ??/??????D1K +?d??RW?????e%+??5>h??F5=l?+??EasG??f?U?cx?o?*.V??M????$?n ID?=????9ZmEW?`?4?YB?????e?l^k?c?V?? i~i???????O$)s}i? ??>K.W??7??O-?F?T"?&???~YNo????n??????O??????"Q?????+{??????JI]6?;???8?=?G??=?_??)????????d?q??u_Z????{??kK??f6???l??{m?:?"???*?8??|K,??????_M?? )??P?^X|?[? o)????T(`K??????????J??9?v??m??u?+5+?????_?????????J????w??????<??GO??%?Y??t?>???^[?g??H????4???D?N??y?? ??L?^sm L?#????i??`????'a??????<3???2j???mS?|i??u=6[????Q??????6???1?E???,u \i??????TZ?????.?????6????Y?KD?k?Ol]?????AoE???j-2??????O????#x?????3??%?&?,c??1?/??>/?????O??A????V??Y???Z?5???^?|~Y?????S ?83EU?^???gE;?+^q????????9~a??????|Y???mG??????_k??g?Ha?5+???????7?????*?X*1\???f??+?????0?????|%????? K?Y??7?]????4?? :a?0H FDI-??4YH???????Q??g? ??D|H???G????}?WT??h_?w?_????m&o???D??Z^??????????!p?i?@??????2e???\.*?kR??(`??}???J?>jNi?{|j7m%v???1???(?1Y?/w??j?F?Oy=6?????C???????7???o????????????~x??G?-???3?@??Xk???`^(????~0??{?&?{??S?mZ????k?/???{??????B???g??? x???~??>???S????????Cm6?{???~ ??mc???????????@?????/?h??:??t=7S???4?:=[L??0i????d?b??ap??/????:H?Yk?S?????????B?????E??~xF XiVn??xO???x?J????!H$?]lZ?c(??????P/??Od?x?y?p?u?xIb06??N?????u(??wnM:??V??W???rN.??G^? f???????L*?u0????T' ????n6 ???/?????Q?Qh??????i???g???S????!?S?>????.??l????pn#?????~x{K???g?[?>?t??{????x??A???6?Z?????m????c?????F?/$?A?h? L??v??? ~?????5???$?w??xK???????x??~????!?9? ;BOj?e??:w???t????"??-pW????LvY??l??0?C??B?#????7*??? U?????~]&??o????xxad??????V???????]KM??P??m??????3??V{u?,???? }?=?r???m?'? ???????x;?/???a???g?$???-z x??7????s?B? >T?K?$???)lD%??j?'?&???J???CT?2x7?> ???f~? [i??M????{eg"????[?yeQ$?^J?C??e???_*??? ?? ?????a????7 #??????P?N5ia?R???????o??b??U??V?R4?8?v!b1S??21??Q?N?"?j???Y9T??9?&??O?c?????????]??? /???x?D??.??iZ??He?5?~??t?r/??J?k ;???-.+?kD?/??]??=??H7?qCp%?V?W???]Z^?y3??U???????n?(?:???????KZ?J???I??rm??G??\9???g8???C?X??Z?,?*?rnrIBP????T???$????SX??????A????? ??/ ?e??T?{?K\?y!=|????W9?1a?w?????? {?????S?*??u???o ?Z?6Z_?-&??Z ? ??^Cs?%?????+??L/?????7????h???N??O??0O?j????7????7?4???'??????Fj???|1k?m@????????lu?????cj?W~.??e?o??????9??q?B|D?_?? xG????m?#?????f?|w?7?O??K???????ox??_??k]???s?M^??~@K??????{??:?3?>+ ????D)?S?????Bu%RJR??U#(B??.U.[G???1 Te N ?+6??3I&??????????|??C???? 4?>/?g???0??????????y?C?????????0??~|1????o?i?#???e?]???W?,.??E-???O??????n?g???????m????????x???????o?v?????o????????^?????7??j m+????sqa???zv??if ??????????????|?????+??A?????????>??nt???V?o???????????o?'????7??w???W?] ?? _?J|M???1x?????? ?????;?????o?o??]???x????@?4?8??~??n?>??_?4???O4???q?:?{?S?<,p??h??U(F???8?jTcuM?/m?? ?b??E?{?U?????????w?v???[?3?s?r?/??i? ?? ?{??????????? ????????;?V??|?,??,??HY????? ????[D????o????{?????'?????N?O??o?{?}????? ?'?>???fi??~???O?|!???S???|]????:U????G????P???4[kj_?W7?? f??????s?A???;???i??|i?G??}?????7??????O??W?a????d???? 5?x????????%??>j?~????}???|~??uKU? s? ??s?r[???????~???????M?'?e?U??>,~???$|+????????? K?xt???6???j[ m;K??.?}G??P????? ???$?C?Q[?R? &??vMFI{9???Jj?qU???q???f??o?dO??????_h7? ?e/?? ?v????V??????xc??n???_??j[?i^;??? iZ???|5??O?I|4.??u &?tI??U??w???c?????g?k???q???&??] ??_???????>(?T??h???????w???]????[?? < ?[?R???????h??[6?Ywq?%?T?8??^4?xS?G(??5jJr?qW?xl;Q?8sS?? I??*bp6??`???m??8B1I_????z????g??Zxg?????~??/?????-f?? ???b??]??o?Pk/??>~???1???G?^?o??V?Q???;mwEmb-E'???)~~???L?~?_?U????????k?y?O???]???|?=a?o? ~&?s???????^?f??y?Wu?}6????i6????,?m??>>?????/??????????o?????`_????i???????????'?O? ?o????_?|W???5????B????G??~?7?2J5 FY????????^8?>&?b???o???? i?N????G????x???^??_k?&??x??z????cg??z???PL???%???????x??????????mxr?K?b????<???????u_??? p???/?"????|D?????g?-?3??,?_?{????5????w?!???/[?????????????k ??[??Cm??m )^U?+??gA??+?5:???n??KS??n s*???????}? Z???????KT?h??????%?#|1?W?>+x????5???+?:w?? x?/??m??k?>5???|7??????rA??'/?4Z????\7????`??? u?V? ???)9L??)?????????'???j?6??????s?J????Q??-????O?"????C???T???H?,+?????gR?5&???n?V??I??B?????f?IbrOs???9???L?????1?N Y??8<$Yx3?P??_-?I?m??6???Z???eq?K=??\?s?~?4??????Y.#???O??Z? ???z?????A??U?????MB????\?s????\?-??[m?R)????/????E?o??:???x?_?????-??????sW?]n?????O k?x??-?@???&?i????X??^ ?m?y>c-??W???I/?S?RW??%8?????'t?}%f}?iN9k??,???R_4?? 9Y??sQ???m=O??????/???[??B??~?uiuk?9o???la???#h??]???m???X|?7???:D??u>?4???????c+c? ?b???1?J?W???????|????7?o??R???~???ye??&-^-??????i????oz?3Z_?7??I~-msqec???????(A? S?O??B?|? ?(??n??x? ????b?_???t??????ILm-???????)??$??7?q?R?y9???y?m8?????h?i???]?.???. J?D?7*vW??U???+t????x ?n?e*?]?z???"G3??"????%C??q?k?;??@-V%[p??UBB???xU?q????Z??x?}?1??A???mR??!T?[?????5?e?V O?????'h???????????>?3*????? S?????{????4=6&?p?M??0?=???p??s??z?I'5????j?e-g??>X|.?K|E??????^8?5?k?_???????m-???x?K??>d7+{???K?.-?9im????=?}=???.??Mw?????7????|7u??k?*?N??=7[????S???^??g?? ??S?? ?lum5c???3??7??_?o5!???O?i?[????t?K?w?x???????? c??[??|>?ywv????? ???]???????? kJ???????Vz???? -No???xz???-??? ~q?{m/?8T?B?$Z?VsNn1Mr*m?uO?x*?b???V???jQjQ?8????NIr?EE6?I??????????????#?k???-.> ^i?ii.????????^\??d????G?g?TW????? ?????? ??x?y??l?J?????_>)|)?K??x~(???????u????9?7????-?????????????-SS??-E?-w|-????"?S??n? ??Q???"k-/???6?+??c?O???W?^?:???O?_~%???? ?ox??@?^?/???#Y???g?h?5??Xk^6??6?a???3Ok??H4????9???_ ?}N?7??gIN)???juQ???T9;MNm?t??1??6?78`pp????s???jZEAK?.KV?!H%%/???F?????a???~?? [?&???|????s???j? ??Ik?I?k:????????????$R???O=?4z??L????ho ???? ?#???oxc???????&?k^???[xk@??????Y?H?5?@X???x?g??mf ?a??l???/?????7???o???3?Q???k?o?z.?i}??$hF{?7??j6???Wcm ??j?z,??i???476e'????bx7????>?l??W2x+J2?w???????7???M.K?{[????i<;?F??\?g???u? ?F?U9??????iK??3N??i?????\?w????I5?r??yUz?OO$?????z?E?$?:O????gINJ?-?????????(???1?|T?y???G???7????????s?k?v,??s??j7??x? [?z?????R?5-;X??_P?5??G?CP?? ??~$Oxf6??t????iB?M??m4xnl?O?8?????\?^[????T????;;?>C?W???N???>%x?RmW????K??,?.??,???=CU}JIa???? ?N?c?????1??p?~=c??=?WP????S?~??????j{???????????1,?? 4???Y???? rQ?9?$??(?F???*??????????g?b1??4???S??Rz&?)I???3n?]5???&??i??[????A??w6?~\?[0?T????'?????lV??4s,????I???V?}?_?h????????y3?????7?????y?p!?????X?"???????3x??=E???y?G??5?R43?8?E?[X??????!???m?????]][[???f????MI???x?V0??B??W??????? ??(.???Z?S?/"??;h`?I???h?0??s?c?2???+?m4?FIuF???OK+??"MN?u?)q(k+???? ?in?????Q???C???s?M O )??2J???X?????qJ????g?;??VQ\?.>?]??Z;?mn?z?W?bx?n?rV{????????????]"?%[w?????d????????????^??v_?w?????O?7??W???Y??u#3M" ?kw?>Z????O1p? ?x??!?*zs?p??F?5NZ?4?(S????%Q???t?R?|y??Y?f|#Z?????,?U*nT????5*K?/?+??^?E??I?z???G?3???*b??N?x???n??~#?C??????????????b?~;x?? ?????k??? ??CiLG?1o?? ???|???=?????i???_???BW????jx?M??????h?@#w??Vp?'S>?Sj??K?V?t????r??/???s?n??:???s???X?_? ???????7*d???~j?????3???? ???_|K?????????????`I????????;??Q??z??O??/?5|K??w?|j??4_??V???????S????????+???:???mo?^?%???i-?????#??\k?X?9f30?a?9mH,.x???T???wM~????1t?Q??J?s??????X????P??y????>?????~???>???o???-9????S???m!K??O?;??"o? (.d ?,PI#?X??????+<=?????)#?s??b???-J5?? ??+????\????:?gew???d??s? ????????7?q??o|??js?1??@???RMK????N????m?5?E??kV7-go???L??-^?H4?? ?j???$?????????????m???i_??G??%?u{=B ???.N?s?G+??Ewn-??^???;b???????Y?xf??Y.L??????\???m;????{?l5F?q?9$?vU?_W?/S?,??,?>?????!?|&?5?w?*Zi:???.x?h???u?m%??(??\?????k??j7:o??Am??xhkq[[I???9?K??-???-|]?>4??[M.???"?>"??qx???z????%e??Y[[X??S[?D????-)|???/???????I%??\K?k???)????????X?????:)+???`?W?5+?_?}?>3?X????~??G?$??C?m+?:????u??????M?{o5k@?w62??k?O??x???g????L??????$X???~?Ly?Y|??^???U???~7?F?o???u?|@?<? ???[?2iv??W????5?kZ??{mk??v?^?b??q%??????s?????<_????b?t?Z7?R??^?OC????x??i??*??q?????}C?bh?????????(~?'??[?j??|!?{????vq~?????E|?'??????y?u?x;?'??6??M?5???f??????g?_V?g?S??>?'?_?????????G?> ?zo?3E?5MK????CxG??????'?k?.?JjZ??t??????l&?????????m?????????%??~?~'? ?k??,?_??[?{?z?| ?kk?hZ???-?sL????]CP?'?????u?4?n?N?^?Q??+W???O?_?*$z?.|c???S?7?|?G?_ ?j????Z????;???~??T)??????g???? ??y??$??~????,5&}V?????~/x?? ???Z~??*?[s???? ?)??3x[?_? ?*?????????U??"???i:????x?????????????o?x3P??V??/??????????|?? ??F??????'??u???$op~ ??%????????:??5d??????S?'???O?~?W?p?00????????W?4????W?|4?5?=|Z??o,? ^??/??z???_???????,??5;?Z???????I"?u}='???ss??S??|k?i?m?[^?h?9?[???{??0???O????G????N?m?o????m??|^??????}????Z|? ???XE?m~/ ????m.??>??????}?/???b??[N???????j?R????2j??/?p?o??W????cZ????????'?A?5??8?/?s{??????? b;7?u/??????????/??Q???O?Z??? :???'?m???h?????N?\?????ye??U????F??u?(Q???VO?????j???(i.Z??S?l?J???R?? ???????????W?^?\??POK_?;?O???????/ |???????????G???Kx??|?~|???????????4o????????2|???'?B?;?x??Ns?,z????w?|1?|`???x(X???|K????F?f?G?#^(?'????#??l????-|??8?8? D ?}k????}w?^_??[}O???u?3xH????Ri???/?z7?u?x=v? [?:???.Y.???N??????????W6??????~???;???????????!i??F?/4???? ]?????P??J??:\????????Z]??I????4x????2n?3,??Q??;????X???T?8???????rJ??8?p??QN???[^?/m????7$?wI?R??U+?[?}O![T???u? ??f8$?bO;?$@q?j?Q?????C??Zp??????1?A?_?Ki_Vy?ZBIW8????<{U??"@???Mj$AI???3???>??I??#P??@dy ?M??????,:????t>???????9???????N\?ia??C??????? %??pck??;+[!??H{??W%??b??b?oM???.U????e????H??%?H??#?8??tO?????4? r???s??I!?0L???8???.$O????u&?+I?D?K4?,??????\?????yf???I????om,?v???c????vmM????+?X?G?y??J??%?????????_???V?W?Z?/?=?U??/?M???/????56?{????&?????j?]E?mm?i???&??S??/~??~?o?????? ???i>&? ?? ??z??t??/?? xm??zf??^? O?????V?X?|3?^????&????o?!??f???v??F????w?u?K???h???? ??I?\?<+??n?)?%?<-*???A7?_?w???/???7??o??V?>?s?^x??v.??9?|A????_ ???Wl????/?!#?>?wy??C????h??>B?????h*??_??????Z???'k]???JJ_????a??? IC? ??d?ZK???k?^?F???T??????a?????u????_??1???]_?:?~1?????&???u????+??v?&??}?i???|$???????x???????|~??~7x+N?????%?&o?~?? ??'?X?Bn|i?{?b????]y?????~-?? F?qz^A???#????X5|$??&??o??_\|Y??k ~??z^????????^???????^?#O???8?'S??J?Q8N???iG?Q?????k???5?t??_)?d/??ftgN??????????%y$?Qr??"|5?y??Lg?~x??O???Z????x??\???ix?W?&?c???f???:?1?/xSF?'?:????m????&?????a$?Z???>|9????R??????}???t??w?/?????????.???:'?D??????n??jZ???.?7??? ??4 ????P?x#?????????????.?8?t?B??R???5?KO????????6???b??Xf3X?m?h? ??????Ko?> |Z??K5???4???S??|&?????{|J?]???????~??~(~??$???????_??CU7?????n?2?:Yv'4???C??IEJQ?:?q??wQ??2q? )G??4??7)??b??`r??p?]?"??q?A?E???R????js??+\??_?w?m?o??? ????|U%?????lo ?[??R?~?????D?W?<9ss?mu]&y?,~?????>???'??|L?>??K_??K???????}??wG??b??g?ek??v?`????m;?%???h??6?H?rm?`????4{???|Y??m[??6???:6?o?+?????????0x??3???????>) ,7??3&?y?????[C?C%??m??-#?G?F ?Z?vP??????? ??p??;/???????jN?4?????'(r?q??R??????vqn???W?X:t??? J3V??O?|???.??k^e%?A?+????e????~(??3???_?~/?a???????i????? ???n?Q?RI??F6???????"?????_ ?w??\x??????r??_??{y????~????????^X?=?O ?i??,?$R?????ne???? ?e{{?.m'k?Ha?|???-?[[?@q?7?K????????????:v??~?>5???? ? @>?n?]|;???|.??????Z??M???_F?V?]9??u???5?7wl????qf??|Q??? ?I????j?c???x??c????N??N???j?w???L???? ?6?2^H??6??0?7????dkk?!UgP"V?T\??h? ???`7????????????????$s??.~??|'c???O????\h~????$?????wo??????\Kqg???0?N??0w????C?????_?j?(G??????:f??????=????zt=c?????V?K=???????"/????L???" >]????c???,b ???S??9??G???H?,????}+???ti??UJ??V?lf&????[?u??#'x?p?J??????|?h4q?cW?8???{8,?:?JT>?# ?6nt?? ???OUs?_? ???I??? _?@=??.???q?1???4?j??Z??????l??$???k????on??m????yoc?&K^?`????????U?[?o?(_?&{??????r??e?Z?????xs? ?x\}?ot=s????cguf?! /?/???#(?vz????E*??Miq???G??-???9)??Q???9???*PI?5??Z'????>y?\????????M:-??u???????x?????Ckw???K??H??it???_????lB?V?????? A:???????0?w?B??W??8??&?i-?R??_?Si???-?g?o?t?^????URN?'???d-???????#{???]O???%?3?5?????D??\?$???U?c??l[????????h_ k_k?:? ??m????P????~????P??k??z?V??v:??.??4???K?jr?^X}???&y?-??d?93???)|??s?U??go??;?V??????q?k^'?| ???L?o????e?&??i?r?N~???i?QbQ? ??s???g?? ???K? #?6Z???C??6+;=rmE?>??i?????????i?y.-m.??x???R????B???O?O?_?&??-?????=?O?????????u???>????y??15 s(M?k[?x????+A??K??X?dha2?E F?d?%W???i?J)JJ?s???U?T??*tV WU:rW?K)?????Z.????Y????3_?(m??q%??u????<@??~?i?3??7v.??u?<5??#??2Ah?^6?"S?N???dy???o-????;??r@l?????o?/?#o???u??~!|H?>??u?X~!?j?>>???$??5????-?o?E?&?3???qqi ?f?? ???????i?^? ?*?????u?????F????~????hz??)???????<1=??9? d??f?d|K?p?/)??fT???I{??*p??&??N+NV??)h???L??'F??\B?=%{^???[????lm?JO?gI???c?????[I???0|I??&??Cra??????????Qq?rJ??'???Z?~???9??2??&]J?/??V??a*?2?B?(%^??????r??QI?+??i??_J???Vp>??~?z?1?2?o???ir???????h????????a??,??Y???_??6A???m?m/???.??a? ??Y?w?Ox?}j????jS????????hV+?Z @??b?-??????*6??W?S?3j?????<\b??x3? ??????q?=:???? ?}?q?B??r~|????|4?????????<?'?~!??|{m?|6????????J?????"i??:??x?]???????n4???|?Q?x3??k,cR2?nX???R???%?'?????8???????O??#???Lt=?_?o??????????/???]???????_?>/???&???????H|c?|g??????/????|y??7??????i?P??H4[?CM??n??????^?E?W?????_?????_? ?E?U?????N????? >(x???_????~)?^??? ??_?:?'???^????7?.l??{?W:??t[Yo,??O??_?{????+??????????????7???g??O?/~?z???W???>*x.?K}_ |F?5? N{8 ????tiu?S???2?.q???a?8??Z?e)?*?r??M]? R ????)?9BrN??%??\??uV QM?????W{?=,?ih?wL??2????????k??????w?I?|3?W???o?????;|m?????Z??6>x???????????:?Z?5?|???|E?4???6?5???A??6???`??|w?O?F????????1?O?????e?k?/????h?O???W?{??'7?m?O?????????vPx ?O?(|=????iz??7? ??0??g?Y? ?|}????? OH??ag>?h???R??X,7???D)a?????????c'*?T0V?W?YJ?.eEF???????9???9g???,Lah??$??>x??E???)I??Q>????????R???> xE?g[??'???/??S?????????????E???z??????B?????t?|+??u[K[?i<9???T?[??]N(>B???W?W???~????????}_? ?d??????l/x??w??i?????-??/???K?.I?|?????#??4??<-??z??u{?[i? ???i? ???????7|r?k?r?$?]???'????|???46?~&x??^??|U???> ???!?'??~??????- )Z?R_?z??-_A???~ ??~ ?Ee? ?8???]5?_??"+MQ?^?sr??????? 8???FU???xy???L???N?; ?T??P????U+N.?z??vG.&?m???z??E$?J??2T??????M?v??w???????P??> ??~ ???f????????W?L???????????g?????o??;?N????.xg?_???~?1??.~????>x?T???o??,????O???g??????C???y?$????|???_?w????C?kV??Cz??Y?quo?y??G?????i?B?l???x??_>???:O????c?>???????V?4?5???%?|g?]?W?M?mK]??????]?i?^???K?+??C???????/?~"??_?o??w?o??????????c?????=???????hj>?{?o????yuc????MJ;?K-N?O??iWH?f???l??8W&?????<0????????/?6???RQ?????b?????fy?q????????ih??[$??????P]?f?? ???>????9?FC??}k?L?????_ ?d?????g?O_?I??/|3????-/K????o?|w???? ?????????????^hs??R???V?7?9?+j??G???g???[????~??e?????????< ??O?o??*??t??t?X?? k??l????w?X?,?s"W?=NC???r??s??\??*??????Z?n?????L?????K??????W?O?? ??????g??tK??k?>????z?:o? Y|U??2-???5?e?i??1cK?]?z??"?>????????S/ ?z????-e?-??????o?8?u????xD?????? ????~#??[?????M>????Q?????R?$?5???k?|G???^??Z??? ?@|Z????U???6?D?;?k^???u??z???b?| ?[?N???Op?l???jJ?2?y?.???F?????7';]sm?k??????G??}*t?J??! $?\????I?????VjIj?O??????Ot??~5??(?o^?]3???????6?J??????J??????Z4m??x???????R#?[????????_????^M{ks????????g*#??E?'??????ZIs4???????1????<=?i???>??????x???&???/x?T??XuV???o?|e????Q_?h?[??3??vr???B?????C?/????????b x???5%?%f????>+??[??u????\??\??"?&??c??Z/u%}?I&??]3??RRJM?NV??????;?&?m???? |O?n??x?Z?|a?????????;???_?7?????9?_?i?????4???^&???m?#??^yd?^???????????h?R:9mW???$~?W????'?V????-?md?A????2,M?d??/V????GC?5???g????i?j??GZ????e??u??????v?\?????"Y"????[9?c$?QQ??|.?/???????I?.u?]??%??c?h?u????k?O??0?? ?E%?]??????????y?N?h??i?{????p?????????????v???:???????;8f??};??2???5?{k"?o,?????k?!?????r??"?S??r???h?[@???C?^"?.?k?%??????~?=??a{#??????? ?FK????k????_?4?#??a{?+[?$5?|???h??????|C??%?????????7F9n????????s?????,???9?L?? ???i~????????????????Vj?o?e?k:??~'|Y???-(?:???????m??C?Gsqm??#h?#:c??bi?_???Rj~,??u?????B?>?? ??O?I.?,?????}<\_??? ?~??G??:?^??)?2???x?B???g??J?mu?2????7Z%??uq??1j6??o"??K??????\??????W| ?W??+?????_C????"^>?n?"?????[????j??4Kg??P?[??)??-??G6??????/G??'???=?eN????????J???a?~?F4S?Vp~?.?ik???c?W?^????? ?Uk?r????rvi???gv?OW??o?/? ??{?5???k-{? A?~??~?3???e????'M???_?t??P?0o?h? ??ho?????/??<???[?|y????7?:?e??x??????_?Kc?/????c?m??.u+?]??q%?ZC7???Lc?????-?|a???3?? ??????66???#???s?;I?i??_?5?R?*???????u??6??{?b?H,?0???&?/|}????7a?Y????G"?d???%? ?K2?t??????????V5#?x?????p?(??] ,i*?b?E)??Q???e(????~??????S???A??e?????????/?'???;?W0h?F??i&']??\4?]???A?? ??7?_???????]'Y?~ J??????(?wx?'?_???Y?7??W? ?W??e??)???j????/?>&O??xz[d???B???e?????;?F?????za?d???t?aO?&???y??/|u??>&xQ?????>?#?????1?MI?X4??????)????7?$?? ??[|!???? Y[B}?P???K???-&???????OX?????O????>2??=C]??????>0?#??w???????Z\e??`?rH???z???d?1>4?x????????Q??????~&~???t?Z???-#?~"????-??#??^^Es?jQ?>#6?A&y?ky?${?????k????b?????N???{??q?.?o???h???I`R???o?!??e???0?[ ?????!?8?!?????C?fm ????h5???? ????M&?2????IS?1???k??????Ja??J2]R???.M?J??????4Y???m?x??;O????8?(?FQ?&@?`A?????+?????(A??????7?[?S????.?L? ??????}V?[i??vj??q???G???H?c?A'????7??]"?D?W3?)g@?k,dNA ?T c'????.|m???V???u5=Z???????????%\3Iq+3}??I'-???????2?$'9??J???)??]????d??(I???ui\???7P?l?x??aa??=*q?)?+?baZ3???]GN?'))s?4????5?Sk??(???c??e??????> ?G?y?[???W?_?\?_???G|?G???o|&??/?????+?? ?Y????|7?,??? ^xgP?????I????RUYa???4lT?!????G????IO?[x]??[O??k??u?????c?W?5][??g?_???mt????????$EhY??Ji???????fk?w?Yn???]W???R?x???O????!x?????OP?umC??^"???? ?????Kx`3???u9s-??????<?????7?/???'~?z??????$n??a| ????h???S???S?o?7? ?W??_xjy4?wZ?b?~??? ????v??e??e|??3???E?'?????O?h????-?~~????????G?WP???????d???J??/?t??7?5???S?b??)??? ??????S??f??????k?;D??f?4/??^?????;??/?=?~???o??4|B??????K?W??????hu,|[>?s?y?]?M?8??iO)??????L?Vt??*>?T?:sS??*????5P???gR)?/??T?j???,-????????m?V?I??S?g???G?z'??????????x??2??????(7?-?K?h~????????o???~ ??!?g???3??????X?????.???Z?S???????x???,>>?cX???_?>?!?????????Oj????_??????w??_?gM????{????t?n?K6???mKA??????lc??7???$??lt?4??V? | ??????2????*?|H????????|C?[?? ???f??????6z????i?w??Mg?7Oh??o.????W????????g??L??5? CO??/?;y??6?B??]??o??????^f8J??F????^UT????V P?-I8?V?x$?????T??oJk?MZw???I???i???w?I?-????K?? ?g?_?W?|]???[?y??????1x??w???o????=??o????????|? ?#?h??0?B?b?*?8?~x_????-?k??O?o?v????????U?;^?z?5 i?W????Z??? [?#????~(?s?`??G???1????????Jub?:?)J>???8?J?????4?=l'??R?s8Tq?????]??JMYs6???????_?5? ?_??/??e?????D?g?????~????_?[????s??????o?>%???|5??C??????????4?CU??o{?*????????????e??:????????| ? ? ??[?q????????O??????c?????[??|l?o?C?g?<? xO?q&???????3??{.?g?juv??g? ?G??!jZ???d?? ?)?L??Z??|E??~???????m???????e?|?????|;??????>|%|@???O?z??!???O?%?5?X??!??K?>??)??C?]?????4?/|A??????q?5???}^??+??h??L??g??(e?Fk+?A?}?JM >5?XM?W??Z8??????????+;?O????????????g???~??????m??????5?:???{u??? t?j???aa??t?M:???m%?2?[???????????|P???:?G?yq????x ?_2???????????????~>[|5??~ |)?????|t???| ??o?|??H?)? &??{???????GU??W?]????d??c???@?,;???b? d?!Nz????~?{???? rF??d??s?n????[?:????G???k?h?y)?|e?Jsv?}??s{?-???oqy?]+N`?@y6???2}-???'????i??Xh?,_Id!????\>#????[??H???'?m???EFfA?????O?Ei? ????|=?|g??y0????1????w?11?,Z??7??????}?0??????G?????????_?5??j4{?/?z?Q?-lv:??z??X????}>?g ?k?G? ?\??? U???R?,?&??U+7???u???+??h?*??|??js??T)????+?k???????OB???<]???2h??m?>???o???(????nl%???|a ?'?+q?3???????/S?s? ????????i??-9???Ms? ????????+/j6????????6??_?< ?+;m????-'N????h?G?/???|f`?:?S?-?3F?????g_?u??W?????????>??s???T?y$?:N???n????z??.??6?|9??[^^Z??????%?-3T??????qu8????b[k??4???\@?Mg?N?ddU???-??? KQ??k?????? x?U}F??????O???G???X{???????5??$?????????Y??2???)b??k???7kq?|H??ws?[[y???.?????|m?i"+xV???u????m ???\??BX??w???#?|???j??w???s???Sw???V???f????+Go??]??????,`??N???_???7?Y?K???-|e??u&????????W???m?F?e???????????0?M?[??G"?Y??I????????????'?p??n?]?????????C????o?(?{??#?/7??U????fK?~???g??o??q??I?????;?;??c????z6?w??[????vL?K?o??????K??~9?w??? ??o?R????V?W??????h??y,?G?M8G??ge???k???Lr??????g???~???3?????????S??_?????;?????k???|o????_ |/?4??l,4kx?3ii?x?=:??_??s3???q?}RP_S?J???i??,,9??&?lD???U^?%#?????????)?UqT??JVt??u??nK?Y?KG )??i??????l????5-?~?5????.??^?u9/o?:?[?L??P^?^?.#??`+??????:?d:V?}????K? ;2\[^?p?^??? c??-??8l4?S?N?r?}?? E??o~?_?8?<g?????y?P?????2]?w:??O?:Y?:x~?i?F0?7??V?0?????B????b?n?{?cm=?Gwcu$)}??*??f????D???,L!?~???a? 8^2J? +?B?R?7?d?iT???J*R?n?^7b?????M?v????????|?QJ\??N??%?|=?/??|]???????????+???u? jZ????w?3?Pk:6?ewG?7?q?" ?%??9?a?~$???>,?2x???-?7?n?????^4??}gX?>??G???SU??;?5?A?K??7???i ?k?97??k??gGO |{?ww ?2Zi^+??? ??.?6?ifuF`?:???myie{j???G?Y???4C?? j?A]B?Qk?????1G???;eY?? ?Ql???N?\F?[?S?. ????@? ?H????;?g?p?i?O;?o:R??U????Y7%R ???T??_4Z???!????/?KA?{?>??O???0???-???<?:??????o?ZMgs?xS?6?-?#i?c?u?;??o?\???M^/?=??|??,>+?xjY?+??-?[??p?*?\e 4???9??S9R?\H??\*?UmSZY?]??????????J????wV???|?,????e?????W??l??o?c?7??$d?5?~&?{MN?Zm=????4????????>?#~???h ?e? ????^??????"???/?o??kX?kR??^?S?5???H?Dc??t?? ~5??^?/?j?????ku?a?/??x?zQ?+????o?v???;??3?h?KqE?h?'?????nd??????????U?'? ?_?????5????tO??m????o?4?&??K GI??{{?>"|f?u?Fh???F?,,????? ?u?/?G??g????n=?????y61?hg???\ &e?\??k?:?.?Q?V???????TT ?|?e?????V?O??:^?Q?????r?P???d?d????????????????o??0??, ?P????[D??H?2-?? a? (?~o?????/?7??W???>??h??}??s?I6??hr|b???ot??XF?-?[L????P???? ;mg?????.?;I4???8?????/???:D0?[@?"i? ?vw???????~%p????? ?9???%?xc ??e???bp0??u?]?aW??V???'???C??4?53\???^}????:Ts??%'Q???\??mZJ?J?].????e????HP???[(8$?q?1!M???x???5?|?9o??~??ZGq{ ?Y??F??b3$77!|?eP?D?P?q??OCe??#?T8*\ )?t'?p????9?:|G????HKizx?9/M??e?DYa'?-????xB??N[h??x?9n_,?;???z?\?Jn?P?tn??I'???d???t??9????????{C???I)????m$?vZ-?t??????????Bk?????6?iZ?5%?n0????????X???k?,???i??5???????|??h?s_????7?|????V??^_?j>$?"@ZIn?Tq_???K N?????Uf???s????6??????EP???}?8??????????B??_?V????????/?{O???W??????mcD??*i????Vi?+?gtm^e????m???c??3>??chN7??,?_????;?,7??=NZNX ???c?E?0??^ ??f?_???.???+?7>?????O??s?? M??&Au??-?=R?? ??P??w^q???k?{u????O??~???????w?N|W?c??? I??????G?o<?{??????????KM#?tc?G?OQ??%?Q???+??lCu????Z??|g?????k??=??c?g?k{O?]i?????~??????8?Yq??W???/ ???z>??????S?V??6?\??P??Z??}????????|9??k????6?????????]??????7x??!???:?r???C???????1??????c?????????m??wZ??y=??m%??1|M???O???Y?a:????? Q??n?D?V???P?#???w????xHajT???t)(??M?+?+(?M[o??I?w?????h??\????|M?=?+??????i??? ??|#??l?g?? 4??? ?????????l??gL??? ??8?'????????????O??????W???'???mo??f??1|??5????? ?$?[??x?g???_ j??-?l}3Y?&?}??:??????<1?Xi3??????\?????~~?_ ?{?i? ???t~?????'??G.??X??`??p?]???W ??T? R?N8?A?Q?t??R????????9*geZY????/????<]?M_????|???'??[_????7?o??^?????????????O????,????????\Aq?n.>2??>??7?5O?k???^??y?h???^???Q??????o??[?x??????!?w??????????????? tO ??^???|H??<?E?K?vi? ??iW0??g??4???????V??l%\??(??8??i?????J????)????t?????UR????,?U?h??h{??w?vR?n???rQRZ???+K?????K_??????4?#?t+q????8?s?Yu????/??6?q????? ????_?????????3?X??????????I?J|q???????j??C???.<=?ms??\x/I?u??^??44TK?/?.??????~Z???q?8?b????? ^?=??ye?\?????-;????G?m?s$Ph???S??_???mY??~?'?????y??N?g?T??nW??MB????????????>?G?????%???C?-V?X??O?V?L?o?"?{? 4??f?m?j?y"?H???????t?O? ????????(?1?0Y??r??H?kck?????|???? e-??*??"???????J*Sk????R??T?/????|o???|/??fM???S? ?1?Cx??{?k??N???U????K@?? ?ak&?im?k/??M?\???K?j??T????? ???<3?|g?/?? ??-o???0|_???/??????"1???????????3??z?K???????}?>?c?M.}?A??????U?i??Q?V?R??s??xK?V???????r???????O??? ?[x??T?-4:ag?;? jW?Z?????????7?7????????<????_?{?>????Mo?>/???h?3}??j????G?????B??m??n4??? K?0"?x?:85&?????8???WT?>?)??_j??akJ??I???\???>.??W3G#$C??t?NL?t(?$i????%?xK?????+?K?Z?????]o???????7??k?J Y?Z??????J??B??j??????m?4???,?}n?K?O?`????f??y???? ~?_#K+?mJ?Z??>*,?+?4?F?T?wL?7d??6%?V?Rm??{??_??W]?:?7????????w1~?????G????Z???.??1?V??x__?~?ub??q?|A??|j?#????h???7?k+)!e$??????3??3??o????k=M-??x??????'???':l???h???R4??e??;???????~??????G?:????%????x?R?%?????O???.?-?????B|o???c?az??G?F?H?L$?!???????s???'???~,i?]??0???? x????M???i ?e?7???"K}CV?[O?J??2??1????? ??U?|????>?EBSvNK??Z'???5%????mw?.??nz^???????'g????? x?A?????I????v? ?5???-??????|f?Mg???????Ya??72D`???r?????D|T??????????z"??????A??[??q????k ??>?[O?>?V???z3??t-#X???{?F}6k??9?'???]'?Zw?/h~???????B??????cX??????#?z??????????w??wq5??????2???????? a??????j?{?^1??:G?u?k?????M??|??4?h????????u?2\Y^C????3????.)?????a?c??vw??"???:???z??B?????????Mh???????_?zg?]i?D?+??? /|%????C???????Q?????j??|-ivb/??CB???]B?5????yg?h??O?+?@???U?Q?S???]mu>????SXiz???Q?????????}??? ???5=.???Yn???Rh%?/??? ??3m???w??(???uo???=g?TT? ?? ????K?`?,K??|?k????c?????"??W?G?? Om???.?>??????/???I?uE?n?????V2'??s?????~??????i???????m'???? |A?yi??z???????????h???]??????m???IB?W??1??????/?.M?q?\?5?O+?o?V?% ^!:K?a?U+????????????6??>n?bj?B?I?U:w???c??=ZJ?/?????????????!?????????>??x?I?7??6?5??????z|c?w?U?X????+mJ?u????o[?o???????k?Iu??q???mm????oK???????m?"?o?_???`??????]??????4??s?k?????0?u??a??nMYu????0?????NRwO`???a?+.??D? ?????^1??<)?/??O??>#?5?y????0???????--[M???<>5????H?$}: ?u??}?,F????}?????G x??\?$???? G???*?f'?WO??0????S??.j|???IL?p8??!?P?J?J?wW?B4???????>??mZ?W????|????A?|*?????????a??,??k??kK-W??&????n??%??e?'?yk?r??%#?_?:?\?I?7?)F?}??:?|x?=m#sc?????E?e?h????t??????????c?^???x??????????????| ??I?|??k?????a?K??g??!???"????PZx?????n^????$???>7??^?8~?~~???R??&&??Ax???}KK???q??????J?D?uk?x????t??Y??_?6?[F?Z???mibI?rOr ? ? ????Y?> ???O`?? ?/????X?d??????p?8????????R??i?? u|,?q&Vx:?a?kJ?IB???jZ-???s+k~????O? o?????2D1?? ??l???@?[Y?4x??????J?H?wFG9D?n?????W??]? ??=x??N??S?I???NC?fb???>0XIl??6????c7???~????/ [??? Z[??#R??"um$?P]???b??????????g??mB???r?:?s??i????Q5???_sg=?? ?Cm?]?y??n.????^x??? ,A?~#??????U ??b2:3?q? ?????V???T???|=?:???Zq?iQ??O?VK?|}???S??????0?/a?Q??/ Nu?HRNp~???N3?)J??i~=?g??H`X??l-u??f???xb?xRi#C&?et??X?8^?k??i?6??*?6??i?X??;???2>YNp \??~Z??g??? ??? Ao`?u??:??d?vx???,w???m?0M?C ????%??!??R-,S????]?V?`co??? ??95???????+?;~???/I4:????;o?x{^??65??a?X????_?{???????%????1??Y??}? k?~'?????%??,<???;??R |S?s?{?ZG? %?????~?~?o?|l????{?[???^?c?g???-?gM?O???O?^??m????m?E??k??D?w?~xK???5u?????]???2??V:????k3?????C?Xi?Bu$???:?Ui???I??tl?UGQK??c/????\?H?'??Z=???v???a>+X~??S????????????|o?V??????g???????K?O??=???hx/?>???4? x????h??E????xL?????v?u |?{??~3?o?/?????j/????O???h WF???<??{]????R????k> ?????M?????D? e????N?V?Y??????????<#?|Y? ?_k_-~ \|???G????Gm?Z????5?[???[? ????????cx????j ????????????x7?:???????Z???????v???G????)??? ?l??g]?C?u?????i?????9?|K???C?|'?[??Z???F????[???????]~????8g??/?q?,o%,E:???9??N? ?P??p???%?yb-)??iFS?%??????????r?SR?k?&??????g?kZ??)?BI?S???F??|'?>|H???????O??q?>?m?w???k?0???????A?#?}??? ?_T?g?$??^??"??+?R?P???f???Z?????O?f_????t???x>?????N~??W???2[i0x?A?4??~?? ?x???????|-k??|Ao7?2??>(??f kT?{?y?l_?#?????v?????|i?x?p?????^?? ?T??????(????o??9???/??q????+3?m{E??m??%?=A???^????o????[??:???n?x?L?~+k^???| ???????}????Bm3???}????/???:?+ J???o'{?? ?^!????X?E?/???%QSu??????G?? X?Q??????????'2?e? C??????g???????????G???????w?^~?>4?#?~?:????/?c/? ????????????T^?.?????[???Mc ?~ ?^?i???y|=????@???`????x??,??4??'O??? `?W????{N???~&?z_?A??|??x??F???x6???O?ho??1?f????A???? M??.4??{???S?????_?9?+?????W???{??>?.)i?,u?{?(?; ?????]A_4~???N????c?~??>/|O?????3x???zg???M?_?|q?_xG?g????0???_?Z??~?t??????T?????K?????????S??|7?>0|P????@????o?{???M?o x?W????77?n5F??C??s? {Y??h????????wWJ??-??>>?D?y???>8?_???????|????\?K `)#?B~Q"W?~?L?|Mp??z??,????it9?K?? 77l0@fP25???U?\???xiC}??e}v?*V?W??ST?????????v;???Z???????????}C?z%???????s?+??5x??????.t??k?l???x??|G?]_?x?P???1k?R??P??Y5?7?=/? e?wY???-#_?????????7???'?Z?.^?Z??kz?? >\X?m??~??~?cx?????F?G?^ ??/?????Mk@?|y?k?>~?6?/?u??gI,????|??&?s+?O35??q????&???N?w?zuI^?I-JM?0????M?}7?U??d?7?`????H'?ff???9??3??_j?n??k??> ???5]2MZ?o *?j???.???N-?? ????????{}?i^????X?m?}'??v/!?N?e?????\=?h??F??????S??S?4R???\???k????.???Nnz?? ???E??R?jO.??i]r?J+F???????N??g??"???gt???|K???JQ???z?? ?i}?h?K/?#_???a?>??"wx????4????U'??g?????L????T??N ?T? _???????????l???=??+Cg?O???????D??????U?O?B?%???ec??(?v??2?3???'???,oI?I???O ?I??l?K,???=0?S???1???k????L???????????y?????o6?s??D?CHTO?????c??c&??f;c&_)?3oC?j?p???OI????F????p?m{??M;???JV???8 ????????l??e?m}?N????6????\Wig?"6??!?s?/1R?H+????r? P??(t7_?????????m5???rK?????(?m?v?b{u??vX?c?K?k???Av??????$v?! ???????e?K?????^Hf%??????c?K?.?o??[?Ew PCm"Y?bn&?Y?b?W$e28??fA?m|?#????J????t??WD??^??i??U%??:?i????????SwM?Z}??????kyy-????Cu?M?q?>?????o??CwdY$?o~?? #????5?f?????A?? ??,?#C????G???K:???|?k?|V????^Z?????z???$,???n/Y-??$XI??Hp?Y???c???{??'?; \M2????mn5??h?8nmt?%[-62#?s?t ???dM????????n?g????I????N??/??b?yi.m??vZ???5f?i???9? ??m??$K7??zn/$?IW?? s?H? ?.&?$ud?????(?Z/????r?????Z??????xYXY@? ,???(?1\?MMq?????c???iMok|?U????????H./?????V?'??E?S??U??e??????????om1?[O?_==???????s?h/?_????? ???m?????=,??[???7?f?s\]>LS??b??8?????u*B?Q?j?q????????{???=??,;?F ?'8??????????????/?????o???E??k???c?????sa?????5+ ?R ?????x??'uq???g?7???~???w?;?g???=x????? &??:O?|???jA!-JU?] F???v????P??p?Xy???q?9c???Z??? ??????f_?f?6?:???IB?*? ????a????(S?*5?R??(?Q???%m?8?m???O*???GFV??h??+???????O?z???????????k^??S????k?v?o?5k;x4??%??f???>%???6+ ?K???????-?????A??????????/?~|???w?;?j????5o ?>?I???>,Xi?i???T??&??,?/?/?M????I?????\_#???f?????%|c?v?<|??????865/?J?xz%_|O???r\I?8????i|N?v???QoV8???y?? ~??????????????+FF?~'?a??A??Z???I?`xk?JR@c??d!{?t????c???f?????_E,N?J??\Y??|/-??????ho???????{?O?u?????i?(~???)?'?G????X??O?o?? |?;????)?|@? ???B?6???5??????-z????????S???????c?_??????3????i?]~?????/Y?l????????>i??????^??h^ ?????' ??????I??3U????6???????z??????7????? ?/?"|'?~?g??)??~?>=?~6|8??m????????D??I??????/??%?c?_K???-???WF?ii? +_k?5?X????h??i?|F?{?x??^????????M??+I???S????~ ???s@?,???w?>'???|Y??4 s???v?d???F????[Y2??'???????o?=?;???o???>????? ?"?}W??????:W? W??????sC???ow??;??Gkg????b]?\}R???[T?????kR?? FS?W?y????^??:???;?/???_?M/?k?W???????I????Y?_?}jo????t???:jZ??<#{??O?5????? ?????/-??Ee?O????????'??? ?g_E?????_>0~????l?1?/??\?o??S???e{???V??S?k?????]??M?S??C???????j?B??~!?????]???n???~?!??????~.???|z?>???#?>??I?Y??&?l??h? ?j???????[?]??? ?>?_jZ????&????n??x?G????????b??????y?qu????_?[??>?????< ??M?.?0|A?< ????o ?Z4?Z4z???,Fy?O??dy??~ ?`?*??3??8??BxD%??Z?aRXEJm?hR??2R??Vo??W+???(?jN?T=??????8??Z2?????}/?c?????HMc???Ic?%i???M?????? ???5?L?w??L?s*?O??B?cv?@???~??h???)o?~??????k?o??????I?????C???C???????.?F??R??????o?????x_T^-??h???M?~??o?????o???i_?7??O??o???b??????????<??7???????????x3???W?u?]???ox6MX???`??J]?&???? g??C?,]YK:X???zXz?y???I? 5hU?B??IK????????b1X??K?4yIJ4?\??y/{?-6?x?~k;o???a?a???j?????k????????f?????R?7???/????am?Zx?~>?'? B??#A?4?~?x??t?v????-????N???o???????'G??f??K????? ??hK/ x{G??!?~;?????5??cJ}s?^$k???Wh6T|bo|g???c??????????O??W??|U????fMs???Ua????k? ?-??3?jZ???DQ??k????M/?~6?????f?xS?????????6?/???}_??(????????????|;?y?? \??i???????se.??h?u???s ??1|$???c??????e6???\x?@???no?z??n?g??:.???~??~i???<???:???/??K?j??Z??go?A?U??Q?dY???u?O Y??]??n??x??V?????I??/x?Z?c??4?OY?????njSY?ROe???m#?I}t?&???X???,^'6?g9K???? ?????V?????Tp?P???415)F?S???_??(F?Ee?????Jn?95???N?Z??R?]_k???6?9d$P??RTq?z0???o?w???V???? ?*q?c?N??J??J?eQ???&?K[????j: ?*\??Yk??]f?H????i:vb?> ???>/??????^Y??s????lTH?(??????f}w?P??w_???O]?????V??rj???kV?:???c???#????\\_??$??? ????8]?S??c?n?{?_?????[7??g[[???_??_m3????????????\(?Xi~?WFe????????+.?????hF?8??|??WKW?+Y5??????L?wRu'&???-o?Ww?.?\??R??5??7]?y???i??6??????t??3?^,?kZ????\?v??V??????Ar?^?sis??r??vm??????x&??o??m???^??9??????Z????M???I????+Q?#??'???-?2????? j7?_??RYj?0???~(??????(?s???m??d??mNS?NR?3?$??????????????#?q?4??????-????????????a?c??????F?P6~??S?m?$??cY??k??????e?a?iZ ?? 3mq ???;?~,???.|O?]SH?`[?Yh^=7?2?6j??u?2??????????.?cG? ????A?^?'?&???~'|E??i????V_?????????Z?|e???~#i??i6W?*??????G?[?:???u???u????^k? |????0Z_?-?u;?kmc???ZSw3??xSM???-??sb?\@?,EJ8?59Rq?v^?c%+?-?W??la^-???/|@??< ?|C??k?E??? ??Sg.??ki?j??o???????[i????7???????????rQ???_%??M???i???b??Xm!x???j????X?93??q?????Y?B??k??~|v?????|????mt??? 2???jRD?io??? ???->F????Ey?\j???8J??U|???x???? ??[t=L??|???/h??????????S??????^?W???]?{?~9?@???#U????????_x??H??ik?[? e???????-???H??????3???%??4???>??u-j?????>"??mn??w??Y??'??zf ?>O^K????}V{????.u??????k?????W???????h???R^Wep?#??4????|7{f?r?s??X?{?I'[??I?E?i? hp???T?.?'???|????\????)j???????Npj?k?ue??oM[??z?-?Q?7??o???;X?{?O2??U???????,}?o?=??????? ?G???5?b?????8??|A????-S\?????]n?H?D??O? ??&+?(??Y?,?c??h?aL??????u???????? ?!i?i?1?W??m???o??$???&??+?7??-O?????Z>?-?3?????f???^j=??$k%?????E3y?_6K,G???{??????u+??????????? ?|????!?y?3?0?J?e)J?T?9???*??%IPsI+?V}? _ ???b?zp?)$?x).????????b???;???????????^q???3?j?????|??S?????_ t{+?CV???#?????;f????W? ?cB???T?R?&?P?D+?70|F??y?#a????"v_??&?S?Ap'$}???B???^?NJ G?NIAY;???~"???x??]0J?ix???+?????? 5??z??<??? ???????T???5 3???x3?&?a}?h??c??1 ?M?dHd?[[??fM?q?k?????+???&?~)???-?+??;?-?G?5??W?{}4??2?:??o?v??+]|U???n?u~c?[??bo?&???/u??/??h?????o,????}-g?????????? n??? ???[??e???d???hZ|?;??<?B|i?????.x????#??*?x???4???????????? u ]???j??1??U????jXo?yIuT?f??V?????9???3~???B/?+W????{|a??a????yB/k????? ?-???uO?A?????[?E????&g??T3?[L?/?;??o??Tz???M?g?H?? HT?mq*<??*????\???????:????????????|}?F???????mu%??V?F???}f????F??p&b?~D?? ???_?H??? :1u??????V]\????v?4??/p?$j ???T?}o?S:?|D????5?8????????7???I??/?nQ?z??{?F??????12?8??%^I???R??H???}5Q?8??????' ???$??????????+$?9r??'9?0???]i?_F?q??HD??q#@m??????I??my????}??.o?{?J??1!V??db?Q&?j?]C?? ?B??Eq??5K? Km&)Ye2%??q Vx?+}???.Kw??4?r???????Y4?io}t?~?????Ta*QT?????????wZit??????????????$\???5???$?/?m??`08??w?????f???7U??dT$e?????E??V??'?????\????8?Q????^??????4?y?A??~?e????f>???~??????^~???#??4??????{Z?txu?KG??O?q?????s?i??w??Byb?{?????-?????????Z?e,e?K/??????_8j??aq/???_???H?F?~???8???? +??????w?~ |6?!?_???iO?+????mu_???$?.??Y???>7?? ? x?/?|9?E|N???-a?(>?k^ ??.~0k????????1?|c?????t???=??I}??*{j7?Zs???G???[?-??????? k?O?#??[??:???????3??????u?????V??I?WO????4o?o?Q\ M???4}+?s?????6?E??!???y??a???????_[????>'?m?_???????~???@h?\h?e??|Z??q???>???????_ ?;?j? ?C? ????n-/?????*?Y62???????|/?~?? ????????? ????.?????Ox[?:??? ~???????V??~????V?????$??^?&?_?-???;^?2???M ?????l?}r?y??>c9:??J?{$???% ??_?p?h?-s?bx~!?r???Q_%h?????x??{k{??????>,~?????5/?:?>/??#?? ?)G??????4??????????S?o?3s??1?????j??g?6???R??)????g??#??????G???????????#??????w?K?/??f+????$????o??K?o?_???Z??,?Q?h????<%?i?????num@YG5?_???6????i???j???~?^????|c??Zw?o?? ?|B????????y?(?S?Mm??q????]?????/?h?:???k??Z?6????'?_?f|??? ?y????k???????~?]???] ???]+?^1?????4???xXx;????%????^?tMn ??70[}?U????J\?c_,???G ???u??Nt?Z?JV????IEsRW??4?k???-???_ xKR???=??W)???????k~?~5?$??>4x?????<3???3??o?"??,????fmg??7?u????;V?????$??4??X?j?s?Cmk)?;???(?????*??R?%%??[?a?S?Y|{:5#Q?wm?r?7x?N?u?_??/??^?n?? ?-W???x+A??????]?xG]??:>?m3??N?}?vV9?X?H??R??_???o????????X???&??????@\?k????0????/?4?t??I?^??????<} i??/#??????&?K??#???b?&???'?????x???O?o???(G?????S??]?+?????*??N??,?N?pP?/6?I??2N???I?]=7?)??'????I?}C?R??G g?^jZ?f???D??????O??????^?????S??Y???? ?_?i??????P??7WK????{??W ??N?ev1??0R?????d?????k?m>x$?N???'g*?w???Tu2B?Y?????$p???d????:?yu??*?X?S0??8?M?e? ??WRki!?o2 ?Hb?e??g??5?|?sm<`??J???e??O??8?D{??5?q??f??:R?^R??IS~??O????m??G??j???Ez??i?g'??d???m??????????{_?W?????~5???i6????/??%?<7?? h??W??e?[Y\]?x??????k?<:??l?z&????^?Xa??????/c???r??????[?Z????5k?|G?O?u?K?Z??qs}?^x?U??_???:??]?{2??/?7X^???|Q? ??????|9??????o?n??o?/????????ww2?O?x?Z???_*V ??5??r<+?9)AIu??2v?J????????4???5??????????z?? ?5???cD??????X??)?j? ??oD_&7?.| ?;????[h/???(?|9?X????d??=??N???L .??h?k=?^???????? ???k??[???\??b$:???-3??]????%?????M???h?????r????t:??g??c???????x?{??$??v????t??%???!??u??s??_h?f????n???[?G4?6?????? ???y?3???i?R??P??^e???^??4?5???k??7???e)h?z;k?u???6??-uG???|Wo?? ???|,?t?f?????Q=???_???$??]c?W?|]?K?+?? \???? ?| =??????Z??X?v??&4?.??5??|7?T???1???@? uB?P?h??s????|W?C?R??e????? 4[=?V???~?Z?????/C????~???I??/q?_?b????c???1??t?c???4=S?7???m/V!?H??u??w?^?q??j???_e??WD@[?Eo/?Ksu?z?aYDLE??,M? p??P??A??????????{@?u???[[?g?>?'?%?.?????? {??4?O?/?7?~ ?U????x??>?????t-WW??--t?V??^?? Cp?Q??????q????W?^?o?~;k?*??????????];M??5 xs??>?i.?p??J???q??;S?3n!?W???`2?+????\O??p?-???X??j?QqJu*??Z5(??J.?4?i?~C?y6\MC0?MQUo*.6r?I5??qRT?&?^???,?????#???1?&;Y???$?pN?w?:???5????m?c??{??k?z????g????8J??????o?u7?U?F??? ??????TL???]:'????G?k?k?V???????_YB????IGM,??~?:?????????EZ?F?!??}????n??k???hh?|oocq??? ???nth?N?]?8.?h>q.??q???bKo??o?~(?[??W?mM?F?I???g?p?%??*?I*?? ?;j??Z&?f?h?9!???XD???I*????1!pWsn????h???v?[4?Ek%??l?C??@\?????[?O?P.U?/?+A?)F??-,???]??m??????qM?k'd??}??}6I]??? ??????????e?5 X4????2 ??S?D???}??l|.L??Ut1?f???x?V???}B???Z???-ax?vt?A ?^ fA??_T?"??i?2?????C???h?-??$B]?????n,?????I+?<$?W??K???W?V?k??}???o??U??J7???}?wn?z???V?Z????!?|9cc??m-??_c??M ????6|????v???i?4?l.W???,??{?+??G?coh?\????i!??????D?$?? K?-W]B????K????X]????a?d???V<3? ????_L0~???BP\?]??0?QTH?xG?"?b??TIc?0$?H9???/T??mH?(R??k% }/?K???G????????)???u???o??~x????K? ????)????G?/??????/?? ???_ ?? ?x`????~????W?:~?????????i~.?j?9?M>??mL?}?-z????? ??r????n?c???????X-????????????B?h????l|e?????3???????>"????4???V??4?:?.t?? ?????eiG??K)Pk???:??? ?~&????n_????b????ay??R?xC?_4oM????? ?n??????kW????[???E???(non?????R???QBg,F$d???????.???E5?;?7??2??A??O??Q>??;??2?v+?????[?|`??t?|$??????kZ'?? ?f{;]?????-??,a?I?t?/????/??Y?j7?+I#?#?M??E???N???o?????????>+k??;??K{???U??:\??@ ?Z???????w???????wu??S??n??k}0E?C|_W?*.f??1?F*>}???????????*????O???_?M?cI??? ?'??Ox?M?<oa???????6~/?{?mq_?B??:'?|Y??r???,?? ???.Rb??????l<?`??>x_?#???h^-???m???Z?>9?[d????vM???s?A??1?[?O?)?3!??#????N?f40?i??????,? ?g(C??7??_R?A???m9WW????V???G ???(????*Q????h????E{z?Q????>[;????_?O???????]f-7??????T?jPx_Ga?x????o&??}?U???l?&=????q???O??????KW????????"???m???e???}[]?04??DAoeP?[kW?W?|M????z????Z?Z?Z[??.?R???|??.yY??g??9;??-?|??? ?W?|E?7$????\Gy??f9.???=??????j??l?z??f 5????/???%g'|?w:3Nd'?????M????]?x{V?t/h7?u?Z??.4?[G?4????zf???6r$?????2?4.?E,+"2?~$? ,??? 9?????_????3a??s?????N$j??-??o???z?1?|?????????>2?'???ks}??n?o???f??ce??Ow???'mb(mn%?NK???g"6?#&?????????)z????n??SUb|{??M%??????y???>%??1?o?????}??t????7?,|}???!??s???]V??~?uE??>+???[?? G??(-.?X6j?)???P????O?????8??????>x?????????~|U???=??????gO ]?b????? -??Z??????????????Vz?????????{?_??B?o?$????e??_>$?`?g;?????u???M???o?zG?kO?[?7Y/?+Ox?E???o????C???T??4mW??"???-?_?&&??;???g????CM??umm??\???7?????gU??M????=????W??}?????5??<??M?J???u/???? ??|b????YmL$q??3|????j???x?8??D?9J7????O?????~F??n?:?N????I??w???O????/????Co???Vm??????i????}?(?????Q?O??????????~0?_??????notT?????|)?o????4???~??~?? ~)??U??>(M?!?????.?? ???^?p???i?G?Ss???_?????|i?????????l5;/ xn??T??{k???????~??????>x?z???|?|}???|$???M?l?]M???2?S??????m?7?3[??????g??c???????????C?,?W_???wC??~|f?????~;??y????????.%???Q??;??d:?????k/?W???'???/?{??????| ??I~~?Z_?|???Z???{ ???????+???7?~|5???]+?^.????,???7?4?P?b??]?]hf????d??~I8)Y?I{?M?x?PIK^_????????|3???-|o?????R??????3???W????4K?????f??m<}?????j???>.x????'[?????o??i|d?Po?? ?=z?E????y????Pm#?W????X??^6???M?????n~|B????_??B?.??i#??O k?????gP??M?7:&??5?$xc??????x?]????_?? ?0|g?V?? ????e????_????????%??????~"????]?????z?????????Lz??????G?U???+?l????Yx??????|0???? ?%????>??????~#x?B???/x?]_????????y?????x???\???*y????t???[ F??0??&??I??j?Z?M?S?g)9???RQRs?{?~hII?Y]?T?*??'t??????m~???2~????-u??o\???^i:W?O?H????}s???'?????o?|?????6X?W????O??4??????]??v??%~x????Z???????\?i.???]???????? ~?????c???????7V???C<?8.4?v7?H?`???G?R"?R?D?HU??????k?? ????:???hx/???????????k??????ui???C???m_D??????/?cmu?U???I0C"p?#??????9???0=?????8?M????:???a??Nu???IJ?9?b?N0????q?e ??M??c~????M??m?i?n?~????P?m???????Y? ?7V????~l????+?d?o4??:>?k??UWb'??? xv??b0G@?????V????X_?c?&???ZxK????;???o??????lm"<?C?1?????_?y?OM???j?\??-??qGe%??? ?S?UA???????E????~:|?????v?I??i??7?Zj> ??u{{}J????a?o&?E-?n??"3*?????C??@???????G??#?Meks???{o???$q?7?i?]+??'.??Go?????2?????????0??U????7R?X8?|??c(G?A?{???M??V????=hfyq??F???u??%*?pj2?Qpm????????_??Y??/U?_?????? ?y?x??^?*????~????(??????Y????M5??<=??K5??]?v8v?Md??????????o?kk?!?>??L?x?U?ey[0???????/-?Y??)Q#?????????o|T???g?????rx??Z&??_?k}e?}?z??????N???Z?????y} ??X?D'9r?#CR? ?GX?\??9g' ??????V?W???L6?X?????Y?????????$|B?1?o|Ky??.?S?r?xfY??E??EP???{O?5????)????Ie????????E?i'?L?]??v?%???g?5k?????U???#??s$?2????<?N????>??ou+???"?????????a??????k?a2??.+i[???{???????)5?|G???\d???KE0???~?"?2%??$aR3?c ?e???2??&evm?d??,?9nI???r??{???wm^?4?y&?%?c????T??J??????|??KNX?5}?m{[_???m?b`?o? ??4?? ????X???y@?J???s\6?)? w??#e?7O1%W?0??@?D????y#??|?w????????i_F????v????Ah????wu??Kn?[Y?4m??RB????\?r??vC3??x.]H??????5??In?J??G?7?A??G/??8O?6???(?M??h?.??????[?t??F????[?M6Io?n}?? ????X???????i?l?%?S"_?Y????,X???F?|??b?zn???f?]??x??r????+?_\i?O?0V}???+??X?B??\?e???EsT???????v???t???+??CZ???7????/??rZ$?v??Fo?5?K???om^?{??<#??%]?6?????t??k????U???H???<#??B????]u,??ev????3F??f?%J2w?YZ)???7v?w????:?v???? ?X^?Q? l????????n??v06?????????? ???(?$???????1k??22}?n??y??4??)?$???*6?????0|N?u#tC'?????@????6?? ????uuw??kmkk ?ss=????X???????????????I??s?????*???i?/?_?C??$???k9F???"?????????|H??|?}*ms??,?ze?F$?R????5-B?VX???O??/? ????O??n/o&?? ?O???^&???7?i??7p?!Oj?4?|C?"?J?-/?"x??9?? ??n?i?4e??t??[i??-#?| ???E6??\??????????Ik?f???>2????? ?????(?|-?x??I???????mwM????o??/?i6z]?Mm?Iu?}?x??;????b_?z????l???|R??)q\??u?? ????.?o?Y\?-& mn?U.nX??????d??9s??\?}??T??yI??i)?'Z3?/?+??g???f?L????7Z?j{8?'?uE-Z??{#??V??????%?????.?eo Y\9??V???????wo?7?l)?@O??? ??,????l??`?v?:??=???}? N?/?:}?????.B????Z|wV??)1r?g`?O??V?Q???!o????+????h-?-.????_x?Y MOT?5? Kt????Y?;?Jq??`??;(b?(????J??jr]?95xU???;sJ?T?k*.R?c}?w??5????6????????f ?????.??????? ?^??????hUM????=?e?T???> | ???????Q????"?D???j~?]??????????'K??m?9e??n'IE??j????|aqc??7??;?i???)?1?\\4v????9?I??A)h???????x????T?q'bp*??,$????????? R?mB??&?~?^???????e>#??~v??.g?W?k8J????? ujFk????? s?4??g?O?>j????????nR? ?o?l!????~?5'??U?????K?A C OgV;Q?B??1???j?/?S.??U'?i? ??N?n?T??96?;{?n?2?~9f??C??!??O????*???????7./??1???????|??:??7^?5??*???ic??Y??Y?O?Dw?zF??=r??3??3?8????^?x??????,|?q??k>5??x?\???O???~????k???x??????x{J????uk???B???4?I?????l ?_?C?{vT??_?????2????sM?o?b5?E~???h~(?9?{?C????4????????w?"?-???Q?V???o?p?4?_????Mo? V?H???KYQ???N?d7RH??n??X?;,Ff??I???s?o??x????X|???????h~Y?S??g~????U???G?{??<?O????|J??Ox ???_?x???-????s?w???.???w??Z??g???=????? |S??????}???%?7?G?????G??/?~'?Qe?/?Z=??????_??_h??w??;p<7o?]?Z?r??>????_?_?K?O??go????^~???g??????7?rc?>????'??}g????3W??%?N?c? ????>?[?k} ???? ??(p?+?2??C&?uN?z?gW???m??5R?# ?NsT??9?Nr???*?????a??R??Wn)&?????Q??.euk??????????h>???????+?D?*????? ?????g?+?_???>??a?????|1??1????V??t? h??????h? iv?/?5??"^R??????7???0???m? ??-??1???????s???D?}w???7???????Q~?:????_?|3??????v?????k=fg??>;~?_?_??x??g?4??O???????? >kV_???????c??&?_ |ki???? ?t-???-<=??x?^???C?/?Vz??/??$?~?@??????????????_?;???????MkP??????????????F??Q????p??:??X?Z??t? U???1?*?U*??*R?.85? /?Y??4?ce5N???-,???6?e???'=j]9?????:???0E?W|o?'?~'???+?#?>'??~ |P?%???????K???????z |H??~7??G,4?:??g???~??^x??&??kO???u?w??????#i?_?9????k??t??>??>3?V??/? ?.?'ou??4/???w??_ >)x_?]?W? ????;I???o/%?????0?a??C M'O???{??b?q?8???B??t_?????w???????m???Y????QO |`???O????O????\?:~?_/~0????<???'???????~#M? ??tK/ ?_?R8???|?A???H????o????/?y???y?????????e???w?r?[?K???~?M???????s?A?6??W???oq???zW?(?i ?L?L~?1a???G\?????7?? ???~???po? ?????g??????? ?????????????,/o?O???>??_j?6????? ?U?.???i?6:?????????? 7?????_??????l?o?t????&?????_t?76?>|V?$????????Gopt???J/M5???W?s???_~???|U??g?Eu?/? ?)??k????|??????>!?????_?$??????????;????]P???PmF??l??Gok??k??????6???z-??5?kK:????????cQ?A?.-|????Q???Y??n?y>?????????_ ?g/?6 <]?????g??????f???O???? ?N??}.? ???A???u??????jKy:]?????#???r??s????^?? ]>?????Xs??????sWw?????c??S?'??u??V???(??j??Cz????)???rx???9?F{U1??`AO??I?:?.Cx>???o?????????O????Z[??R?u? ??XGK?5?b[F?"*?=???[\??i?1?E!?`????~ |4:E?:f???R8??2B?v????e?? ?F1*I}?K?l3??{lV????6?|P?O??$???M???=?? 4?m????D???|?4?? (Ap?y-??q??_? ?Kn?3?[??3? ??L?p2H?_?G? ?:h_?g???_??Aw?<7???#?"_?O ?2??? r??E%??L?+R?/??y????Ic????:?|'??L????:???xJ??y?2? 2? 05???;???????#V/?:??]??*i>??9??s?b?/{????a??q????y?? ????~???w?>??????,?k???t?O?4????T?"?.? ?IP@5???f9? ??9???y?mV?5a???&?C?b?|?w???????[P??????????%?L?O ??b[-j_?Q?@????d?4???#5}??%$?V?~??????(??0?IQ??Y?t}?Z?6J?!J??7V?Ok?F??H??Z?jn?q?x???'#??? ????)??*XxJ?"??ueN2?Jr??E^???????????;k?=??????m??x????b?i? E???B???????I&????m??????5?6[t????ej?4??o?{?d~??|???j???Z??|#/????i??????Z????m?^ k?????!????4 I?5$??']? VI-????????a~?^????B~? ? ? ???> ?????????????X?K?k>"?W???'????dMN??i?:d???7?:u??0????t_?? >???M?O?|W??g?????????????g?~?????}-???x?{???n~?? V???????# ?d?M ???Hbyy)?\??JtjT??z?5%e6?Im?)%?#???1??????,U?R?IEV?J.??}?q?J?"?d???Z?1Xc????5?94???z?????o^?Y$sS?????K]???W??^??b?][I;??????E?Cm,?E?|???B??u????J??t}?A?$_??T?E?E4?~??+??????W???8?,5m_VM:??]L?v?????iI??OO????h?K?????Mo?\0R???/?^??e{??{?~????O?u?b??x?|G?4??u??R?m?:??Z?3qB?40?????I??D???u??"???w?A??|S?J?/?????>???????2X?}???]'?$?\J?s?4i???-??u?#???$wi??H?m?W??%m???#|=???;???k??}??^$????#B?T?,?-&?y?<=?h6c1????Dh??F???X:|7?b?????(A?R??&??vtn??^??RSIs8;;????fXw&???Y???_Q??&?????0??A???????{?t$??k=6K?tXOu??n????~?|S?????_?w????!????$?????:????cT?G?????[?U?????&??\??/?~)????????'=???????w????k?,?~?-???M?i??E?wG ???U^V2?%?o?^???O?????E??????Ex???'?~?6????r_?_R?|]?x??z?Go?izsi?}?????MjWXn ?5?O??if????I)?5??Ms8UiT???f??'?????*Q?g??????7?I=cr??u%6???m?7? ??^??e????-????mt ?W? ?T?/|/?]j??'?.5+?SzY[??sN?h????$H?M0?????"?? /???????=?????e??~?????g???H???\^????Z??(Lq]k7 ?? ~D??&?S?5~??t?????xkP?5?5_?0?j?X????c[??~2??|?-????I?_^Y=?kw??:}??r? ?? }????R???????w?#???A?'??6?6??????????????7;`?m?X????e?U?pFQ??^??5)bymg8???g=ouS? ??? ???g_??????\??????7uN*S]?????J.N+Ey???k??? ??????D?Lft??E?R n??????????~T??~I? i????4mNV????? ??F????8?E??#?Q,2D`?)x???????MD6?m???h4-& ???C??K?k?f?_*d?O?A;??_?y7;;?~?|N????g??=?S?G??<7???x??k?S??????g???4??? #?7??> ?<9??G??u?n??(???K??}6?V?q??x?e??J?[:?u????i?_?3?m[??????M*?N????????[?Iz??rI?mW??6?;??x????f?? ???????*j6t? ??_e)E? 'x??Lq?q??W?s:j?X? ???'????k????,|????{???/?_>?????? ?x???|A?oY?j????l ???mw ??_l??e "??+ ????ue6? ?p9?/???s?????RU?(??????0?#(I???u"?HYFI?&??i?:Q?X???9?Qi???&?z????s????O??????w???????????/?+???R?? ?.???????|D?~|?}????5?M?_?~???(?z???W?#?????/????jQ?K5???? ??r??|k????????~-???k?? k????/x????S~???k-#U??????x{?D????u9 ????????ZM??G?l???-?#??|+???_?o???0??s?3????<????W??|K???? ?_j??????Z??z?p????N?>??$??M???G?w??u?[?????~1?????'????_?U???H??q???_5??a??4o???'???/??????6??????w??c???$?d????e???????>?O??:??8b^?gNp?? T????)?????JP?J????5??vM??,???W?;?N?6|?????NM??$y????????????qx?Z??> x ???????t? ]|???/x??"????_?]?????????D????d??oY"???+f???h???????3????????Z?????o?$??????????c?????W?z??O?????w??$?d???W?V???.???????o6??^I+?m????dX\]F?&???~x????J?? ???f????????&?h?? ?????7???~(x ?~#??_????;?xJ??>??E??'??5?[???j%{V???)????????????? ?)????????"????Q???,~0x??????3????>X]i???f?5??2?lr6??????????`?w??~3??~??????z???Z?@????b?????&??y?%e?j)?Y5??o??????J? RJ???f??Z???GW???'??>_?W?????????s?|?????>-?e?R????~=j????????u?CL?k?????y?h?v?s? ?b??????????/????h}?g????z?6??7???0|^?????'???? >i_o?-??????~:?M?i7BK? ?k~?????=??|O ??W?K? p??8??/g?O?????}Y9'VJ????(???G???I9??J?z?????6?)G?~?????-~??'?/???O??$i???[)?M?6?O?[^X?M???}???o? S?^:???h??? ??{V??? N?O????6?(???/?[J????????????????]8?B???c????O???+o?o?? ?l?K???A?Y??!?F/??=?i???????;???6????0?5???????????x?W??[\?W:??u?c??m7??:????a????+??[?G??'?????k?-_?o??K\???]?W????o|H??w?????SiR#???k??????vw??O?8Z??!S?W????a???!R??!N?*|???'c+?? ^S?,????3[E?????;]?7G???O?"?o??V??>;?M?????1??|[???s??>x??????????|)?[?????\x?l?m??D????yo?^]i???h-??_????|?x?????????g?~??G????&???? ??g?e??|E???????>|B?X???s???u???u????v?F5(??]R??????q???????z?????????1?X??^? f97,N"??T8v?[7 ?*?lC???e??Nr?x?N+?J2?!??;?=fi?VU???1??r???7????(????2nVkW5?i???? ??_S??=??????s??;?n????f?????irY#??Y????\?P>P?|?? ?_?>?w?x?b?6?"keZ?bF$3mb?????E'????> ?????=c????/ x?Zh???;wz?????'??\???SG?jz??(.7?2??>?ha?[??? ???C?A???????;Yv????O??[?+{Ha???Kf'?o?#?e??=?qy????e??:???P???V"?$?$?F?e)(?Zn?'3q???8k>?B?2^??? o?t????MFW?Z?E;]?????y]?l?"????m*-???7J[1?K???j??z_?m?as5????j-6u?g???o?wv?K*???K M???v_!?/????_??L???jn???f????C#(%?^]>L????!?*???tyw??Yyd??a?;?I?I[;?nA????Z?/????[???FN???V??uf?^?~?k_u?g??Y?3,??(?=o??2????????e?4q??Vx??bu ?\???p ?H"??j????????*?n????????N?+???]???]a??+I?mP?????]??0? ??>!???f??X?: ???;?%W pKc???? /???i??:?(nu??~5?<?]*,????i??G???S??2?W?-???9?m?s??*??????yd??\??N???????0y???,*???RpqO??r????{???d??4?TD?o?Y ??F?l??????L????????????`?<;?r?????7??Y??I????o??!s?????? ~?W?<?X%O?????&*I+??n???9h??|m????.??O?W?<`??`??]_B???M+D?v?.????i?g??^@?????W???|M?kZ??j?????:??O?]j???Oywx?c,??Zkz?J/M?i?w{??w?:M?FX??A$??Y?y???!Q?&u?/.B???G???~b??????"?G,?G7??e??w'?cm?e?t????/o????o4??8???? ??6?]AUlO??%????????H"???????T?!??????????f1?,??????M4v?g?Z%(??????\?wK?+?e???~?\tp??+h??VY?;b ?Z???)e??>f?????Qd.Vw,??]F7?dF??3??9??N??? ?W7?dh??????r ???zH??6???C?!?g???GR?A??????Q~T???d?$ g?` )??E?;?^??O^??MGdd?????i?-?z?m??-?a??7(?4%.????????nb_??V?I???[t.?c????+??????&_?wi?[?????5o???Q?=/\?:/?? ??sie?Y?auO ?{???Q??u#?i??E%???_?Q?'??k/j6???????;Y???EM??D2?y??.??v]?,??]??Q??4??6??Vi ?pY?aC/??????GZ?%?????t?Y>{?zEA?????_???_??4???p8?^k???? ??? $?/?K??m?O?4?????ski??Gi?Y??t?%?- ???c\Kn?*1???Xf#??1e?2?9???????$?ux/,7n?q???%Yd?3??[???2????c????E??:'?l??[?K?????? E?>! ??? *????m6W9Ui4?7k,???o??????????mVx???4???6{[Y????;T-wmr??O_w?~?,?,?M1???g?????k?d~????P?&????9??w?i.h??g%-?|????????z???[]'?[=???|?x???_ ???m?I???i???f?g?{?x???],mtkS?y4?E??(???k? t?w?????W???? ???>????>??cc??>x#?????wqm?u?YtF?Fyg?????????7???_?i??xj?]??o?5?GI?n? ??>:???5-[?K??I?????M?)?`??????????g??|????o?.??????4?? ?q?k ??F4??????j????)??Wm ??i??k?`??3:??J?5Nn ?Tm'NN????????$???x????4?^?????R?????U.?r??7??b?????o???_?R???????????<?O?+??0??o?? ?o????xS?:???????j?xH?}7?????n?Z????Y?? ' ??w?Q?????L????B???+?w?|-??1?3F?? ???x???w??#??i_??.??iz????j.?o5?]]R???|t?~????e???????F???O???)???H???[??9?R??? v?H?"??? ???XV?D??iA\??%???x??s~?Z?????8???o??+R??o?5??? k_??Mnn???il?|C?],m#*?h??y? ??Uha?L\?a??z?z.??D!K?*??S??9?|?q??M??i??[??\??*???[??y????????K:?&?,;?~??m|{????? ??t#N??w??<?g?_ ?????o[??x??>??ivk??z????j??e?M?P???V]3??????j~?g???k????j??F?????|~?? ?? ?Y????2?????PC?w? ??~??#??]???|P?-????E?????%?rjn$ ?m??'?[:??VI???s$???L d??u0?W?)V??6?9??????6?"?.i?e%I?Y[?3H?????*? =j?q??=?M?????????????}??o?V??3~??oy??k#?? ??}GS?E??????T?F?=???]D????????????[????I???Z?w?>?????/???I?????b????????????5?y?IZ?3??? #??U???i|l???Ld??????t?#???????????;????tMM???#?`X?-_??????M?? ??M{?w:???????????jkRxn?@?|F?????iw????(,???=.?????(??????x??????}??%g?u???????Ge??l????????v?r??MbY??Q??0???a???????.x?Q??8???a?????????Qr??y?+8???9?V???U??0?W(????>"?=?+??a*{j?????{??]?h't?|7???????u?[(??o????u?2????F??@?<???'?<3 ?????????????????????????ev;???J????`???rS??????o?O??G?op?Xj7?{?????7???????6r???d?@?\?7?u,?)????+?x??q ?'?:?????(???\???Ui?z????7?????G????*8lL0u?N? ??+?m?SRRO???Snt???A?_??j????????s"?>)|1?R\O xO?z????_Dq??????*7?W???Q? Y3y???g?<$?T???6??A????U?v????5??????Oo?~$??1???~?Rs>??|0?3?[?_?WV?? ?6?_???A?x[????? ?x?^?4??????????~?????I??WV???\k????!???C??^?k??u=??>???}=?v???|r?????W7????p??U?V?]??$????????'lO??y???R?%??????|??x?>????q????Y?GbSj?n??????-???|?[????K???x?3?K???????n-[??????2?w? ????O??o???v????}??6???f?'???E?????y?]??4????o.5 ??????O?)?'c??????muX?? ??0l???c>???#??E?Q?(???Xmb?1'?s_?????3?_???~]|/???8????h????????C?????????a?L??S?o?? ug?xn????g?]Mu????RU?_? c????&h??`???Z?a?x??^MB-??!?+?wL??E???4_?px??w???_?>?}??Fk?s\?????{?????_??=?KO??}?????3?o?K???????Z???Z??? ?/_???f????go?>??g?W??F??x?O?>;???[?_?V?????^??_?Z??u???[_?~%???????R????? ? t; ???E???5?Y???^?juy?6Q?caN??F?J????'?)E??%?????N?.7?r|??Z8?\?T??4?b'd??zt???g.V?y??g$???70??jD??D?j ?UUJ????1???W?f??{?i??????3?????????????????'???m+\[??>3???_ -???~??W?.?}??N?|E?K-??????u??z???q?K?xk?q?x?????#O???+L?t??:??!?o???????????PZ?xN??????\???w??????}?+M I??mw????qo?D8{8??????(????j??f?i?????????>gS0pT????|N??????y'???s??HF9?A???pj??R????'??_???/??????7??j-W????M???&???????? ??U???S?E??7???#?>%?3^????/????^??R????G???_?|??-??2??k?z??? ???;? ?=?????k?o?????zf?s?-???G?-o??|8?U??%? ??????B??b8&????l??f?)??p???h?:j????_fq?{>???^*?(??J?>?0?p?Tk?Y)????&??J?n???[?[[??%??? ?s??qW?]? ?:o??o???=?????7???c?z??m??6?G???KJ?e??q?X?{qk???tG??f?U????L? HP?$W??w?????9?3?????m???2?????????C??G?i?w??4m?hn?[ux?????+T?F???!??s???_???d1j???Er???????xV?Y?T????^??]J_?I?HR?+)?+2?(i"????e?????????/&?O ?????W(P?Z?*a???.f?u??I^t?RI4?g??? ??????? 5??g???????X4?$?uVZ???5??MJ?????O B?j??^????I?IR??t?????4M??|?????a???ey???m??4?g$???'????>W????nc???k ?????Vs???7? ????S? ???????To????g8?o?????TS}?j3?;???b???:|?*?t????g^?[?F;??B?ox?w??f-4?l)f??)???????_?ko.f9vT?'???"??????m.,?L??5;?y?y??k?_?+???kFq???fU'&??????8N??k?xZ??e??a?(?V??????(T??TM&?+kgo?<???g???Q?a?;FM{???W????*?qj??+??? ?H?>+?tyoc??d??"?????? ???d?#???9???X??/???~5????|??Z?:???Z???x??7??I??x???5??M?0C??/?>;j???????:?@e???nb}????I<????C?y?N?y?????|??E????bX&R????sC???~?????1)???:?ZE??'??c|?????c?w???>;??`1?M-?7??W?_ xC??? ????>$j?????9$??1??????Giq???????L?Jc??E6?]?UU?h??W?L????????V??????c??_k?|Ww????{O??6?3\ng?u???R p{ ?0??Kj??7*:0d?v????&B?h]???????s???P?H~?????F?9????F?q?9q??!????31????O?B?-;??*7???U?Z??7????.r?lNxu-?*p?7???p??w?N..???V???>8?(?e_| ?g??z????5j??????[?z???,???Y?)?4{Y??M?U?@?I??uls(????x??9??Z~????#???k?/??U?xs????k???_??'?4K?>?E?????|{????S?N?R=??V????????+??4d???????[x???????????|/????>"????h)i???Z?M????p??L>?v??D<7???5?????J???1???;???@???|^??7??MN????????????+???3]???? c?M@?*??oh?$?2A$L???/?)????o?$O????E??|I???? x????[??~,??+?D??X?t?n??????????????:B\|??|^e7???xq@TY?B???/ J EF????yF?W?w? ?????????|E??\???Q???????wQ\?~????>??????\????x????JB?h?????aOo9??2?M*9?*c ??T?T????Z??8[??????g??8N:?.#R????TwK???xj???V?R???N?_??????gT?_???;kMF??]?{?+M?-n?/5me5?n?{;?F?@M???4_j??dwEO??v?||??c?+/?o?3???x[????{? .}JO??d?)??L?m?????????n?]?O???q?m????W??"Y-?????jv????z?~:?Lw????lt?Vi????B3?x/I)?z???????ck?%?f???? ??D????[?[?~&ma<?S??q? ?B?[?x?????|?0G?>???O?1X??Xx, 6??J?c???M???Rz??W?????>??-????K????]XP??IJjn?e=)GNT??d???????^???????????T?|???.????~?}????k ?_??0???t????)~?^????k???#???2?I????_?Ox?7??+h^???|W?k]??z/??|A????#~??????Q?$?N?c?iP?ql?"6??-??oq?~'?????C???|#??c??????u? |F??zm??a??Z???Z??F1??????{T???????K?l??-m???? ?y???~??????5?????????u ???k???Yi?_;RIZ?????-???0}?/??Y?L?5?????;?R??????????VQ??)7m.?ml?????D???b3J????b1Tq)???z?????\?t?i?P?|??G$????????d|d?A}}?/??????b??mM???,$????n?m~5-?o4??/?????6??????n? ????S?Ukk??&W??H?VP?*???*I???|O{hn???7?$Im??!D? H?"4l?8>?"&??o?-???????Z?k?=Ro?Z????i:t> ???"?5??i??n.o,Rk?e??I5?geP???N1?+??u?naN8??? t?>^x?u?G??z????v?????T??????????R????qw?j????????y?k ??(?g?Ja?Z??~3x?V??????c????s7d]'??*I?o?????F??D~?? ?/?E?$???/? ?Z?????G?~&|E?t?tY??o?K?c?]???\?m?????(????<?B~?}?~??~.?????<????t??D??Ml??rx#???? ?o???O???? >%~?:?? o???w?w?????t??????C_??? ?_?&?;??????5???\?????g??H?Z????5?????[h??/???xG?_?? ??"??o???????O?{??.?W??jZ????????.?G?a??t?W????.?mo??C#6?{??? ??>m???????\????o?k???????Q?6??xS??tO?^~?D???4??c@?+??1A???7]???y?|??????9_?? ?m?(R??d?j:S??m??M*)C[\??q??X?dx???6????U.X???|???W?(?????f??k??????E???n?&?|?TX|S??|mw??o?~?:?W?y?-|???|Z????xg[????H?O?O?Z??y?5c??'??:?Z[_??j??? ??^?{?q|k????7???dm[X?U?W?5i%????#E???-?_???|z??? ??9???> jU??|)??g????Y??t?g?????5_?^?u????????????a?Y???????;?_???Nx[??9???>%?????{???4h???^_?????x??q??<#? ?E??[h??n?A? ???{M=?>????|\|F?[i?;\?????5?????????7???????I????0???? 5?q?|K?~"xF ? ????z??iH?Z???R?nt?Xoc???q;R? ????Y?_o?-b????k?W??g???L'???p?y??????'nH?I??????j?J?s???????????k????>??"~? ?? ?\????%???<????^>?nR?}6????? ? U?R~??'??{????'?:???4[???;???????????????????4???P?????9? c@?5?{? _F???h?`??H?_?[?C~???O?|W??? ???}?/?{?=|J??tOk??1?x???????xW\??? ??R????_??]x?@{?;O xvK?CQX4??a??????Oi?????HS?;}k??_???o?zF??_ |?>??????w??8???????g??v??????Qt? ???\??$?+ ?hB??qn???v???\??X?;Z??????6g?1U???r?{'B6N\??r???Z??%~j????_?????~>????G??????O????f=???iP?{?M???ei?G`dX?-+?s\s?2?x?????? ????-?9~??_???~ ??&????Rw????$z?????k??_??q?6?_?7:g?t?{??h?-?:????Q?? ????209l?????u%)??????m?????~l?Zt???)R?iS???b?c?I%d???:\?S??r?y?y{?QXB???~???O[??x??????,??????<???O h??>?-?????9???+1u2????J?q ?A$???n$Q?????x?U??????M????MH?Kd?G??ti???Hv?k????nn?????? ???:???e???%?Mh\?????E??????$;??8??M????eY???>??F?IV??H'Ju$#??Y?????\?(?O ?ai???"?8B)74????m?????3?[??o????<$??Z??z?????Z?)????G??(5My?mO{?"s??uS?;? K???Z?j7z^?M ??a?nl??{u?9RH?X??????g ???????~???^_i>)?s?xg?^??@d???R?W?|1??-???3X??|9????mn ???????'???i?? ??????C?Yx????W??h?4Yd?I{?;n??=v???P?????H???'???=??>???,;?e?X?r??jP?:K??Tu?Z3?i??g(???#:|W???>l?????z?wNRKXFj?i];7?????????=??I?~ |L?$??????k?V??R???;Y0??"io?}?N??o?s'?Y??????)????-?j| ??E?>???i1??? MV??Z?????E???A?'L?????2?????:?????S?:?????a????$R??'?t ;M%m?G?V b?M??,P???????]J?????j6j_4_?0??%??s???7?>?g??0?j?X?>??\??B????!+????%[ ?z????????I?Q?!F .XLm,F?J?`??*,=??B.?5?N??~o?8????-???>g?????J)?jR???6???y?)&?9;? !???{o|t?m????$B??U?? ??p?B???P ???#T_i:v??]?hW:u?????o.[}]??K?$?i??????? ? ??h_???|i?5????2La???A????????X?3?a4?K@??F?"1( Z%h????????=+???c**???xSq?O???????G?&i??''??^?.?tn:??}>??O???j>?I??KW?g?|?^?GP??"???#???L ???$Q??????????x??A?? ?[??$??4??? ???W?? ? ???g??J?]\L??H?}?}??Lq??>????k???????????=?m???Jb?K?=?=WU?t?[???gt#?|!????>3?t=??,Itg|F?G??1?xW ?????F8Z]_,????%(???{???a?b??T?:3?I???VIv????^????~??O??????b?n|5?/?>?????G ?O?Y?Ox?[yB?????D??L+%?????es??kT?GI-#?"8??D?}?w?4?1??V p?z??~ x????O?Oj??"?o?|G????:??r????_?????wr?K?\j?S?? ?%W???N?8y,?G?X????? D?p??B?q????l? ?+???????}tJ??????k'vzx????8???KM5vr{?[?-??3M?{??[c??qGo????? _?01??RJ?? ??-????VC???g*?#? ?L`yn???T)??????H?k??o??IDe??? 61y?9?????f5?t{??????&??^kz??????)??P???R?Cg?U???2HV'U??U????< ?q????*p??J?jIB?yJs?J*)?7k= ?b(?hV?bj?T0???9IF4??R????U???W???????????V???~???/?|eX??B??????R??0?{?????? ?!??????i??7??'??x?W??cA??~??n'Uv??k???&?????V?S?c{?hp???i?#K"?????Y`E)??? P???@?l?*s?1????4??????5?'Y????K?j>????me?i???????'?P??J??*?M????_??8??????????? NuR?? ???j??y???8?E?QU?? ?q??I??KM??}?mm??I?f-??????6?m?_ j?????E??????x;?? ?M???-?L??okR??????-?.???N??>???v?u?o?G????????;Hn? ]l?z??a?(NaX4V?pYK.?nV?+?r???|????kS??|??x`???k???p????????????loa?A{wa? G?m?VHm?Z??m????o?Xx????+???W?9m??????C??????[-???5????Z???????3E?{??s?`????d1????S??Z?g?e???5?R8?R?Ly??????>E?(??~g7??\3?W?M(??NR?1?8??????[????_???????:~?6]?????e(??,?f????????6????O)eUR?^?????????]????????|a????!?;?mfmI?~|9???X?L???W?i?5?s4?)?wHc?w???I???B> ~???g?O???????????????|7??^?<??7??y???i???>?P?????????^???b??)???|U?????'??o?????O?8?G???I???xg^???????Ay?x?l?????????mm?^9 ?O??c@?fQ??j????X????Q???Ty?6??|rq?v?*I]?K3?76??XN??_?*?%?fX?R?????E?wM???r???KG?Ey??O???/?o?[?????c?M??4q}p???????w?xr q???pi???kw??/%?c???0?k?????=?z??6X\i???Z?[k>*?Sj?????a??????"??8\??$?sZ.Q???????h??;?.?'4???d????????e???5,u??C?| ?Y?ZxgX???u???x???V?6????t?????????t?h?+??_?C????g?O??<#???D??????V???=???sF??????#???t?j??lQjQ??????C=???E-n/-???c?r?q?????a:?????O??V?e+?F??vv=?]????W??? NIGR?*?<uN???B.2r????R?5?t???Y????H&?7??a?G?^ZZ?1???????N?&?~?iw,?-?KX?'???B?/?W?f{?????}e?? x?+ ?/?C??VF????Q?>?l1 ??? ????:??do??????(|?-???]_??6??xF?H?M??????|??xz +???wzy??v??L?2?0%??????????K??~???O x???0??!?v(? ?%?|a?;%_?Kxs?"???tk??o???%?T???,?????WZ??K???&\=????????d(???\???6?????)n??????z???$(?VK?.??C 2?D?????#?!? ??_5?bj??XUj8????]???k?&?\mu?s??'????N??)(???M?.^?T?(.k?|?????b?k?=???^$????|o???|i?O?? ?4??V~,x???????? ?Y???????>#?;?????? ?h??o?S'?a?k?6_ ?O????????~1|A??~(?|0????n>/???!??y?;|{?I?[???Z????^x???O??<-{uh?????uo????9?L|??????L??7#? ??W??.?ZJ???????.m???????8?*?IL????????????f?*i]?j?n???S???Wm??????P???9??'?m?ax?O?/???|???mb?y?X?=????]???g??S?Z???x???^"????N?4j?jD ??j1F?0? ~??????????O?????k=?^?????????_???o?-?'T????I?|i??D??? :?z?????'???c??k?Mo}??nRO???_???v?G???!???j?? ??I)?????????????N??+?????/?5????w?7????? ?????c? N??????]????? ^??"??z?????|???4?x????O? >?E????>??c2??{~?Tv`Hd???\cB?z??????5?*????8N???????-n??Ih????|? ?P???U?*Ug???4?c.XCKE=n??n???o?????M???>iZv??????6??+??h??zg? S????a??? ????????O????????5 ????????k??ywt?x???? ???~??~???f-o?d??h???_?;??b?~$x#??????A?k?qo~???{???W??,??.?m5?m~{?qA??C?[??G?L??RooQ???8????????M?_?1??????L"???Q????/????Y??*?5??>&??O??????u_???????c?_?? x?M?3?z-I?)?i?????C? ??"?C?^ ???m|v??5?xG???????G?8???S C?'?|>? ??N?u?\\?????z:?[j?5?f?-????????On?? ?????sO?I!@????^=?????/?+????]???g??????O?:W??G?o?s?'????L??Oo?~????????W??D????xo?i???.?3???}?H??_? rJ?dgp???g??V$w8R U?< ????[?x??0??? ???I?QH4????eRp?rp9C????P??UF??????^????f6?E??x&???\y??ZD???Om?xr?3]D81_???K?????cc??x?+w????[? ???E? ??]???K$`]6??6??]??????b??g????????w?k??????W??A??????????>???.??,F?^9?_????O?81??????v??+?????5?j????o??vC???????????Yb?>?gs??_G?t??~ ????7??????{???N.?*5??G??0??S???,a,^]?Y?J??:??)@??z|O??w?KJ?4b?? s?g(K?;???<4V???r?5???w??????}:??y???????:??[?%???&?????????gv???? ??~?????_?O?4????2?~??????t/_h?????/? ?[?s?L[????O ??w?????2-???t)'?'?i?_?*?r?O????T???l??~?^!??]?`x?\??}6h?q??#.muxOU]WO{{???-??]?"C?,6?????/??|L?? q?EV???yfm)??n8?S??I??P???U?cF??????.?a?|]???MG?5hT?9{??????)$??8?4?{??K?????A?Zx??T????-!????????C3i??&Ck??:?????\oMEV????? ???~?h??6?*??&*?q???????[????_??|L??4_?z??xW?Z??hREoy?????}????-???h???`?%????r?U?7??*?O??.?k?8???????????????Q???F?????J?`????8?cy~?~??{???K?B?g???#?\??$??|?;=?1?H??0????:C??K{????????k???g??l???F?_?? j^Y2L?6???[??V????I" ???W?|?>!?I???bx?????????????,?????;?#K?Z[{e???8{?????ZWU????`???#??hO?????nl|S?W???n?u;??K] IU?????????4?'??Z?f?F???!b??4?f53?v??Y?o??)s???uu ?t??f~m????fX???%Lb?[d???J=w??{o???k????d"{?]? ?????1??X??7 c ?!ko???7O??' I6??e'~???k????c;Q??/n????????Rfs#?Y_}????%???3JRL?eD??7??(?A??8??S?4?h?$?V?????,U??V??q?????8S??]??u7?yQ?}*&??n _?????P?:??!??J??^??????+h?X ??Q@?(??"?#hU&]??im?*?q_?????<?I/?? ???]??i?????!nlZR^? ?-J2?????*sOZ???^=Xl??????????-?G %?&?V?&?8?U.e??H????(x?x>)?s???2?k??>?c???$?|Qc????c2kJ??Q?IU??ox??w(2}?C??99??Ab@u??K??u:|g??????~\i>Z9q??6?;9???*?x6?ps??y??br???F????R?????k??,>+???M.Z?0|??????c?$~;?t??J???*8???\??????g????o??:^?uK?^???M6??St\Oi?j7N??Msm:???y%?-?'?G???x????~*?`.???5?@`K??`k? \???????E????[D?#B?*?~??M?j???/|'????????F?[????a??=7??;?????HB????0T???xR?C*?????_???W??5?iZ/?t/ ???f??O?O???S?????D???????Zo5a??E???_??K????A??9vY7?B?0??i???????K??U?I??*???v??b+e?A??R?XE?Ni[i?|oWx????%????Yj3?(???P3"y/0?G???IA?,y???????>?>!?>?Ls??&K?68/???F??4?'W???(+/???y??l6????|??i????????y?????dD?dy???o?? ??^??5???u?GE?-???????_ uMZHM??????}???]dXu?t?f?4 rg??tYc?6?????? uo???? Sr?NNJ4????Tqsm?uIY?????)?5=??????????[TB??????????_?`??J;O?????Oj???Z??~??>??|'???x+???O????\?v???{???????C??oe?B??{(m5??8?m??+4X??d??????0???G???1??a?=?_?zo?????:h??????Sw??x???K???GF??&?=:???3??7???a?????4?/?? ?h??/??_??|'?????Ml?[?~o??????fG?MU????m??K???~1???????3?N??Q?sJ?I?.m????????1?S???X?S%???q?k?R?????r>Wm,?k???_????^?????]??}???????}j?T ?xTx??ot??7V???$??>Xu?cZXk?zL2?y:???????????h?/??????]j3??}??h"e?_??"xCE??????'?L?;???????/???w71]?^?s?????.l?{?x????e?????? -???????~f???i?????'???_?K?q?????[?????*????~???k?_o???k???S??C?K?+I?De?:??f????Y_C,y?Q??q?mx????????9?U?b??1 J?r?#QZ4???>G??s??4?????W?;?QS??S???:???c6???????%H?m??^???:|^M_?/??????M??/U?????+?t6???^}?W????5??cO)???Z??r[?????? R?J????p???:??-z???T?????9OX?i}&???m??/?Q?? F?ueRNS? qJ9????QQ?P???)$?U??MSN????????mKI??j_??????J????????']Y^??+5???F??He?????? ?p??|??5????? ??2??? O???????.ww???????????Z???Ms5???xO? ??3??,???e?]???y??5?I?wv.?K1$??5??;.????+?u_,?3m|V??x???`c#??)U??I????b??z???????-?i????~?^*f??'???.?\R??SP??&?w?R?.?(????o?G|K?C??f???(????|M??N_M?Q?;??2?*/?/?M???1?k??????? /????????)??V?Q?m???B?????-j?ea????9???:???|t??? ???????RB?8>!x????9\????]q?R"?zc???_?'?,????G???'?????!?\???u?i??????qst?p??S{?|$af?? w??????DO?/????]~?~:?B?????C?/????'????=kG?????$??5???O?Z??/4?5??~??w?????????G??'?7?#? |z????X_|y?m????|O? ?c??????????k?R?? +?^?????o????????h??-N????? ??.?;???kY?{?W?x???O?M????? ?7?R??~??>&~?:??g??-??????o?j??????C?k?_???????-?????u??|M?o?_?7?!?)?&??????|??L?E? ?x??:???}um?m7M??????'???>??;+?w???I-O?"????+?|g??#?)?  ??T??>&?D??Y?I?k;????g?[?? ?*??Ya?W?????????+??? #????5?|E??>>?Y???w?f???|b?G???? u???5???}F?????'??????BIM_J?C????t ??????:U????z~??i????j???~??i??_j:???????????Wr???q??vp? ??[n????N?'?<_????????W??5??k?V?5??>?X?4??>+?[O?5???E?+?'?SA? ????f?O2?3? ??d|.?????????? k?"?>???U?? ? ????????_?<?|l?R?G??l|?{?D????OmOR?m?2???[??'????O|]?"???M?|?a7???U?7????5??? ?&????~3??|5???<??~?Y????ss??%??q&?m?a?b?|????R??{???M$??b?t??;-???80xs?????K?Y4??5|????j????L?? By??K???/-???????g????>)|%?<9?|N?|@??&???Z??hZn??Vx???????3???? ???|!?? o?~&??y?-`?????T??b?????.?????? f??^*????&?a???`??X|9??????%???_ x? _????????Z?????cq*^???bkx???,xG? s?4?;?>?7H????/?????x?? ?.?v?%???D?????????x????/?x?????~????a????1??|7???o?????t?.??^?x'?w?_i>???uW??]??? ??+?????rz??~??????B?%u(??J??rQv??????t??????NV??t?BwME?N??I???]h???? ??????o??????[?[?E??g???T?Q????Ej?????v?????????v?}??^?%?J:????m?m??Bq?T????????c?????NI? ?62?:7?0???????}_??NK??y??????Z??????m/?g?|??F[;6_x??!k{fh?=?????u2$n??X??????W??_O?k?Fk?o^??5?J[v??p?????H#?!?cL???y???g?;?????mZ?,????zd???\?i?&X?'?_??$??M?{?????R?R>n?9?o ?wQ?x?4?q?M??K?aF ?Gm=?,7?????|?n??? xsG ?xa],??Sx?8?J??T?jNsMZ?^??+?l:?RX ??c???????"j??~.E?|???Z??i??????;?Oq#yv2i:????????6)??Rt???????K? ?O???W?????:???L??w?$?i?4?????$??o'?|5?@????:?`???????o???7W?O??md?X???[xN??i?M&,??;?H|????`J?_???f????????{???A?{?q??????iy}????]A????u?tW[?K???.?V?S????0?d?Y??]??q/ ftj?|q?????7_??T?\??L=LTT??=z8 s?????g?"?lc????8Jt?W?{5?T??????S??Z8Bu?y?}????>,|2?e????%???kIqq???'?d??<@?? R??X???$?x???]Ruh?1?K?G?3??T???@?? K?l???un?\?2?M??{l;?P?MJ1?cE?[????|??????Xi'G5??m,D9?????,5i4????J/~ev?=????$???<%??|7????~!]i.?_??ud???.?r?"[Zh????ZH?????h??l,????B.N?k?????[%??R$3?::?? eEd?V6?Y$c ?o?S?????????m3_x??z??-"??_;H?.????I?e?-??X??U????*?R<?????]H ??Q????Fa?????p??E)"?.PT??W%??U 5J?^??????+?v???v???+??.sS;?q?????o??V?j4?OO?????r??e?? D???ceXd???TyHy?)?Lr,p?(g`????1eqq-???q,?9O&H????,e???r9??.F?U?6??Z;?k=??H?[?C?;4Y??gX?-??p7p??7Q????Y????y??De?X?????]??)(?0@c??@?????yb?N?-um?z?]??k?;R???=?????????Z?n??}?y?i^?s??G? ??4?i???o|C?????????)ic? ?{8??8t?q????? R?}B?Kb^{???B??3dbO???f?rp?J????h?K?2-T?????#X??$ 1 ??Cd??_?? |I????????|g??h&??F?{?A4?2?? ????|?? Z?[J??5???4?Y_??p?e??_??~U??NI*t??B?b'?S?^??^????Rs?6?l?;????~g??f?8??Z????*?,um?t??f?a??Q?k???mq????~"JW??5?+?? 14m4>??R??x??-ms????d??m????????^ ?c?< i?? :{???0??9?u?r?'??9?5????R?c7e!T?]KW??+$?m,???Y?????x????8??6??Z?.??o??P?f???J???-m}????^.?-|4?I5??????q??iL?"????F??,??q?pD~kFWc???xf?_ ?????$my$???$???Ki??$r? 9?I??R?V_?| ?? ?xc????(>'????.????E????n5bm?l?jHT;,q??J?'?????????~??Z??6???i?@?x?(Q???.?0??\????HB6?su? ??O?L??8???o?h?j?/ K?0?8?K?thS\?j(????????*?????????G??{T?????_e?????'????????????G#DC'(???Yv? ??W%K?(H?????.??M?oQ?)?? +???????g&??eV?|?=,k? n??"?s??H???4?}?V?(m?R?X/mon?\???%gg?c?L?y??821?HT??s?N?????4MJ?N???i??????o?X?Z???jVw??W0?GF?w??$ aY?&R???8?F??)&???.??}?c:???r ?.???.???u????vqvi??~???v??C??6?-?k>??7????{?B}.??#j?Q???o ^?s?-?mz8`?????g?{???R?|6?????Ks???~???^?h?????????(?<?5?H,?;????6:w?>??=??|-!?TN???C??8????????)?? |?????C????/????K?;??????F???y?? '?}J?N??Y?%?,?o ???M?????\??????hZ??????.l??{????????-?????????<,????!'?? u?p1???$?g??6????998 )i?}=2???fU?b?'?s???/yMIr?3M??qr??T??S??>[???0? ???t?S????wI+^??{?j?>??/??|N???{???4??O?^???<??!e[mg?>?4???-?l mkST?s???g?dG?xG???7???????'??V????~??|?w?? P=????????|1?????O$??????????p?n????+#G ??????????[?U~????? O????se?F?{y?E???o?????~MR: ?k?vK??g?E????????????f??>5???&??>x?????6?>+??????\???????O???????nH?????)$u?p&UE??3;??yeL?-?g(???N??"?/cJ^???d???te(??????U*?_ZQ?G ?n+?:r??q???,SiN??O?WZ??M?{?K???;??? }???o?V???xEf?E???<?G?????'?2?K?8m????gK?+??2?zh?(1 ?_??.??%?n?d?4'x????U????????x?C:t??5B7N?????[om?Z??{??????~2x?+?MC?? |y{??Ua:?~?IQ??3j??U?H p "?#? E?eq?~??_?g???>?rr?????????X??[O?w??zO??)??Q??h????? ???????-gf?????R?~?5??O???????}?]?`??O?????%??d??O?Y?h????a??r??????|9?Z?c????&????.w)?8<_e~?6?U???f??i???->????8?J?c?Nwu?F??uqs_:p??~)????e?@???\??m???????:PS?Geq?8?'?&??!:???c ?y&? |)?S???4??[+?h?0??????:V?????*???}"?Z???!?C|?n??G?(V d?\??????|f???~?>>Y?????????????? ??x|&2_??Pr??v??'? c?9???3???????A?3h?_? ????? ??xv??=??~0|-???????????D?;?\???????l?DwQ[?????]O???O?x??n??K?>???b??m??|?8,.|??????-B;?????cg?hZAtgXS@? ?6?O???? oC]Y4?WP?W]???=???????hw????i??>???sce#??)k8??H????o????yG?~?x?? ??]??3?=???????6??M??/?*?N?????^?4?Y???=??:??????\F??D????Q????4?ye?_?S? ??Ex;?????[?'~?????~x_????K???*?????(?O?o???Zi^???l?-t?A?O?xzo?7??+ ??????????;vFvf,??Y?1'.?yb{?Mf??O?_?~?Ze??g???????>?E???? ????G?Ox???~???|???w~-??? nO??Z??495?GE??????N?,%???~ |-????#????"x]????_k???~'x?L??~????`???>?|K???G?-?S?9????_Y?K?????????[\????]3?`???n~?>$????xn??^???n?u????/?o??.??6?????+??OZ?S?]#S?m,????|)??????{?i4t???~*&?????? ?V>8????????WZ?4?????-^D?at??,w?ye???$???K???x3??????|&???Oko?jz????R????n???$??y-?nZ??[X?*3? [?!??^?????E???:???~???t????[x??E??=????~[?0?_>>???R???w????????h7??????g?????m???6>i??@??67???,t? x?J??:????|??K? ??????????????G???WV???~ |l?I{???O?=????s?A?;?:_?mj?F?????u???I?_xK_?n??/?E?%?.???l?ox??>!?|M??E??5?m]t{?????????$??-??g?????.gr-???a?Std?V????X??7??&??\d wU??? ?M????htHuS?R@?!7)???:????????r?{`-o?t=?K??Fu?S/?V?m<.q^???_6????e'&?????J?????;N?#?R??s?n??g?NZJ??;???E?k?$??2|A?&???s/??? ???_?e???8z????EH?T':s?&?n.t?R??? ?4???}5(??)???_?????????r]G?~W??????? ??????i?w?A?????f????O?&??M?@x??>8_xs?%????.?i?A ?_j????;V???_????'?v??uo ?|P????C????GM[???????pi? %?W?D 9|?}???????G??5F?Ci??@?=???????Gm???c$muIjl????~?:$R?H_+???????$N??????9?] ??????U %???%WS?U?$?gU??(?c?o4?1???eU???w?I$???Km???v?c?W??~O???C??MO??}??-??????o?KQ????N???a???=3@????`????_#~??0??O??????km3???v??Qx??????h??????O?o??,/K?2x??#??????f?????.g?Q>??Kub?????%??5(?)???A??T???+?? ?????? ????m?????R#???O??i~??/?W?(?"?-??? +O=\]???(??xYb???$?h?4???S????`k8???)]I???F#??~???????????????????V???Q??F???}n?0???V????Q[? X??{?jV?{;?O?D6d\??/~?7?4?????????ob?h????"????Yi???Da???,:,???Y?9b ???? ??3?S????c???A|???B????o ?v???W??s};;???u6?su ?z??y???????E?????*?a???<1?h6????e?????C?????k?7??x_R???8C?|?C??Rg^w?mL??c??O ??t?j? [ ??6,F????}G?Va???e?K???q??,5wN??NJn???v?V?!??)???(J??m]M????????D?|K??????? ??? Mf??????I1?uh?????hf??Q???S?7????[?????)?????~B?RMVO?i0????? ???a???m?#ea????>????<#??k?? ???7WZl????nt????$T]A|W????n?5P??-_???C??????|)?ns/???:???Gkgy)??]???e?#??Y???xK?????@I????G??3:??S?!?8?????V]g???????U???)??4?5RW?4a-uL?=^??????/Y?&?y|???V0???j ?Z?Z?Y?B??????j?Z?VE*?d1#??2?Hd r?$???1X?U?(T?????_????j?J?Qr???t????????V| ?O??????????.?5]g???A { ??d?Ji????-m?#I?????CE$f???u-???????UB$*??JCx?kl?? ?A?? ???o?????K??!?R?g???/:M#V?]?o?????????R?d1???ex??n??v="????RE'?t????F?5??gK?t??Q?F????Y?_9????8%???q?????1l,eS ?s{k?-?????OK?N??g?fY? -?? ?R40?*u&?J0???n??????n???v?h/?z??a?Y??P???t?ya???'xn???????J???s|Y?m????????M??????o ???p???=??????L???E????B??9>A?W??>j?B ?s??e????S???G$?&CW1??6%?1? _?p???M?`?bps?*?\????mx???K??~g?`x???JN?]?S?B ?D?i??*???a| z???? ??kwD???(?/??%???FD?Q?3+K?S?lEJT??7R?5???_+??????z?V?e#????)8?????o{&?????????? a?3?z???????_??? ??!?????W??-^?A??k?????????u8l.oV0|?????@%[????|6? ??_ Gp.!????4o9???`????h?D???*?$FI ?q;4K???hZ??5?G?Pj ??^??Z?%?4@jv?2I????E??2Y`C ???.5 _?z?$:?????;?fh -?"x?9D?3??UX?@d,|6??J?????Z??6fxuOx??O?WC?%{o ?\c$*?F????v_?????o?^t????g??#+??????????U?nn????K?d???$qxw???(?Mm??????K_?~>?,?Q?T??tMZd0?,???t????Y????~??????\d?????Q??_????????|6???G???~??K?????a?|Q5????M?u?T?????h??f??O?rE(_?wn????o{??g??(???RV?????~??w??x+?w?????_ ?$?~??e???%??t?Ro~?^ ???????^??mSW????e?????H???"?k???????> ???\i2i?|k?sS]??O#????k?????u??A?m?c??z???Z??yS???*YEp`???}>~?????~??????:h>+?!?~??Nv???w? ???-?x[??K???7??;B????????i??n5??J?C????-???m?/???T? ???????S???Q????????????A????C????{??????"xj??0Yis[^?7???^+k?6??FV?0?? ?5????/????????6??????????????e???????? ??m???oD?E? ?/??.???H??=?_????t?Y????Xi ??;?/|4???2??????????K????????c?^K}????[x?S???.?Go ???m???m??f??????uu? ?~??k?_??P?????N ?Wo??5?hK??? ??_??? ?`?s??? ?:??o??V????^9?o???k?~??q???????S??m'?:d???k???p???a&>?m?|@?y/Z4V???????{?3? ??'???>???????O????t;?/??6?G????????i?tW?Q?u?%????T??????D????[??????o?&??j????/?N[??/??e??z?>???????i?q??????G?4X?G???u??b??f?.??L|?p?/?r72??S?I_?????l&????????6V?YLDRXd?M???F????&????TOp???@?QBy???GVc??$???Ir>??|Ai?xR????5???d?%?[g?E,H?9n9;A?A+????taBT?J ??/Em???/?,}o8T????????=~[i??>????t/???9W? v???I?e:??-???X&?? FGlq?? B??????;?|Y?W?m_@????|1?e???l???P??|Y5???D?=?????k?e??w?$?u|fK_ ??? ?? ??6??1[?)?ZN?????u????n'?p ?????m??[?{?Gw-?Ki??$????;mG?W???U?????t?.uB????'?????x?ac?[ Z?e?59?t?Sr??*.QR???I?7????58?????,??????9??[G?m??R?TxW?m?Z~?????:v????CY??s??R?]????C???????x??R??Q4??J?N??DIV??(v!?c???????????|Sqa5???;?????g?E???J?u????i?)?????Q??o#?A?X?{Ek? g??????Q??&??_ |;???h{??>?/??M??v???`t??E?k??;????Ko4??q$I??i~? ???A????S??b?????? 9??,??# S?????aV?10?+S?"?X?????? sL?5??-:??L.?Z?????0ui??q?~??\?y?M?F???N???'???~??? ????M3?W??? ??:l????????K?-J C??V??g??6~$:K?s???ZU?PG-??????????g??? ?Rk?$??h???s??K?\/?5??-#N?m5??*?k;?K?7?q??$?qa????~??? ??)|u??????(?W???x?]2=J?[???!??/ Y?|?$??T??+????soo?'?#?Y????O??^??w&????????s4??j:????^\?Y?'2?%?0?????|A?fX?,?l????q??*QT???v???i????|????6c?\??8a??r??????m>%(?uN/??pJ?Z?O%??????evM?!F?J?H?|??)]?+??9m$?4?J??1n%)r?K>?wUiw?*????g\ 6??;?,?kCm???#y?F ??????? \?d?,???qK?l?q)?U? v?lc$|?????C?:???????????????&?[w??]???_+t??x??Zn??X??^??????Y?????????{[X,?3=??2? B0?^R? t??????????%|/??=?????2??^???M???x??3??J??j?'????2??[4?$? ???;? ?????????)h????^ ?d?????i????? ?x{?????|Jl/V+}S?/?h???????D????-@?-??/??k??+????4??KV?V?.\L?7?o???#L?|b}f?????`G?moipF%Y?S??yN5????? `????E???SEz????)F1\?-?/????5&?$??x????????N?rq?'5?O??N1??V?e?????n/t??????_^??n?fuf9,V???:?Q?????/?V[??D"?'`?;v?\gkO ?:W???Io#?#,?l?Q???????9???F??59nq$m??;?'? ?????8z}?[0???F?io?O_?????ahF1?9U????????G_5??NY???FE,??e?vq?v??}Z??f?^fuQ??(DbF????p?'$??V????ClD?????? ??? ???2[?@?/P???\?Y????V?j??y??;?>>R??}:?????=z2??????e?????)??>$m??Xf??@??k?V???????x???t?u?*mg??????c]???6???Sj-?SKo??z???IdC ???????i"yj????Y5r;?????F=??W??3Y??q? ?ap???????*c?6???2+??IR?a14*???:J/??iu?_????O?)??,???x'??u????^3??$V????\H?6??h~????/???????i>!?K?[??=/Z2[??\>d????7????K [???m??]SZ???J?3???1t!JxZS????*qqJ.??,??I???kd?C??7??59??MDk??????]??rZ*??P???",E#UR#+?B??u?x]???i??oZx???Lh?i???????????\??)?b [c4???+??!??????I ??y-? ?),??D??? Hp@?#$?[>???9?i???[???7v7?? ???M???|?B?QjN???O]U??Q???+o??%v??M??o{iw?9q\?? *U#gt??c???;]?????[/???gO??? ??? ?>?%L>? 9???X#4^V???$e?B?$*????????1?????58.i????M"??? ?U}?I???73?n%???+|>???t????E??l?y??Z???S?Y????\???^?B?????4???#??$b????X???????b?`+??RT??F\?$???i??v????????hb"??BJJ?8^???Y???>L??????Q???|?MUl??<'?]???????K???6w??????u?|??u??%??Kh?B.?u+?x?Hb??P?????-x?f?..&?2$?\???V?M%??y#H?J?L$?r??H??-lF&? ??????snn?j-???{??~?P?N???????\??4??\??W?}????<????????y?????????V?[O?????gL???;O????????# ????????.o ??| ?+-A,????D?CL???????g???????????[?x-???o???o?3? ???[???`?k?|m??`???????6????J?&??? ?M???sZ?????? A5?C?e???"FTO.0???????3??L?<_?B????U????S?^"?????+?'?G(?S/???I?;?J????'?:????????m?ed?fB???? ??????G?%??.8????W?s\E@v????????<????|????? Z? ?`g?????p??z???^ .=??????P?5=PD5 ?n?%?BM?C&??B??v/??+6??a?l??L??b??? ?  ?l??>^??h??????MN ???|?>V_???o?&??C???u???6?`:???y?:????^}?{???UZXa?#9?????X?~j?b?z?Adp???~t???Y #b=?|????de?p?I=;?????<4?+??????m??s????????M?S?:??y`?+pH????s???Z??f??8??E?3r???n??#6?_?[???Z?]????o?o?^#?l????i???h?ml?_]ip???!W????6??e???????NF???}?n??ko??????P??"???~??5?wZ????/L?W?'?????kv??td@???[?0+?G%P(Q?#?????0?K??N??f??????W?&?gN?*I??0??v?e$?[o???????????a?F?x+OO?>????J5=????V???????k{t???E6?~?6??# ;???????w???O?J?_?6???(|??,??e??y? ?v?3isk?l7lK?N?0UQQ?o??? ?C????????G?n??????>-?l?a? ??j^?????ZZ?emo????Z?]?,^??*FV)&???$???? ?S?Q?7????-?x??????gj??n???????5?Q???u&?umvt{V_??3??????????w????Y5W3??????*??K???)T??i?n?YU?8??!d?????Z??}?*?{?????3??j?-??W?AK??^R???mo?~?????> ??K?!???;????%< Jt???Q?N?i^??????V[-?}-??k,?3N???XH???Q?????9?*?P?C???G.??d?5?L????dCL0O???X/?\????i??????Ex??m?????`???#?n????????(?FQ??x7N?/??Ht?`??>??N ?????V?????????|59V?????J??$"?yJME$??9I$?wv[??3?x??? ??????9tm.?C???g?? x5???k?-????]?.Rx?=??7W?;???\-???.n.m?=h/???J[U?l??k?j????J???@??? ;]?x!?b??f???U?????=;k$??x????(??u???????l?;????o?g????=F????xoX?q??[3?????=ab1}??dg#????>?> hSNV? ?m?5h/e??M????Y??b????G?@?OZ???Z?????z??&??????QT??ME?O????*?a???????{?X??]?r;+?????y???X???#?PA??Q?ze?Y?HA?Ux?2??b?T????@?W?'w)??W????????nt[???)?L???8?)?y?? ??`??HQ???pIFG??s?F?#;??T????Y?M:z?C???qLT=?' Rt??S?''?Y??[????IfM???T3 ?*2 ? ? ?{H?Ek[???E`H?l??r ?????.?N}M ?????????8??m????l??n???Y??? H?P?????F??8???Z????.??b?#h??J????}3T????EV8.????]???;? r0O<MS?? H??%?v???0;???#???>+3????~??/??Mw??;)??d???{??????\}?X?AY1????^??9?J??IIK??VU ?B? |?pFGn??????h?m?]?awg!q??2??????q??1R#?k`@????HG???r3????5????8?l???????hF??:??b??Oqq#??A????]?"???vK?z?98?y?x?+y??+?cF?W??h??B?y`?+????#q?? 6???vr????'s#@?%?S??????????.?&?h??JcM?g??c?`g>\??;s8?7?m?t??K?=j ???R?????}gO?|e??~??%????4g ;?go?s ?x??? ?x&?~1|.??u????2cW3[]J?5 9H??/?&H$??\?)????j/qw?H???????.#v?y\ ??'????>??????e rx???]?*?Is??^????hg_5K?2vJ?cl?O?qu????G{u???N????????g?'?$??Ko??????l?????0??|?u?^U?>b?????????6?????[???????,?%u??,Y??????s);?????????m?:??????P3??5 Tv!?I?#h#6???l???"???????!x?9@???\?R?c??I??C?pI^Qz?~7???kX?4?n?co.?i?k?uzwk??? ??V????? n\???????1$??v??Y'?B?KEowT?N?A?U;? ????9???????4??U??????H???Zch/???{?3S?-????no?$??&??H???G?????X??^'?6????}$??? \???????e?,?qu??&?E~H?u????^?}?6?~?M&??/???????i??i??????h??????O _n???\???C??mn? ????/???~2??|>.]|\?????u??? ???w@?\ false
            1418473055115133952 5243648 Cookie scoped to parent domain http://tap.rubiconproject.com Information Certain
          103. khaos=GMMM8SST-B-HSA1; Domain=.rubiconproject.com; Expires=Mon, 15-Apr-2019 23:37:35 GMT; Path=/
          104. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
            false
            8767319438373355520 5244416 Cookie without HttpOnly flag set http://ad.turn.com Information Certain
            You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
          105. uid=2931142961646634775; Domain=.turn.com; Expires=Fri, 14-Oct-2011 20:43:41 GMT; Path=/
          106. adImpCount=B8MczozRVryTximg0572dSLAcMiDebP8hhcUBawLHRApagDPKKctVczI9DEFcEkPvFBMD_r71JCvgjjawylbakT4Hy0v6ksSnCDa7fz11eaMifLpV7fqak3Dns_efbQIXFrofTsD-VjzD17HEaQiDIvVeEI_ShgUiVKLKx23oGmyKyuZekSrBs8bFOGeiOzaXBLzrMtX1DsPIUaGIdRa3Q; Domain=.turn.com; Expires=Fri, 14-Oct-2011 20:43:41 GMT; Path=/
          107. fc=-C2EWVCCQsegLqdoQkO8K4iZHhLVAYkAWKBPAg6WLuB3AL7Gx9Az1OHn7o3KNmBF6aOZ_B1S0lxLfHFBmANc1b3wc-cQ7FRKnITKYzO3zYV52dhK4dSErN9-EcLOAtq0; Domain=.turn.com; Expires=Fri, 14-Oct-2011 20:43:41 GMT; Path=/
          108. pf=pw1IlegMqlOo9iuWjWgsqt1x3peAZekyA2CgXd0EnaIPkNaW3X0pm_fQ4RfYGdhS2aZbyiatV59WiX88fVL7XjJsK7mjf-D1y3j2WAHvG04; Domain=.turn.com; Expires=Fri, 14-Oct-2011 20:43:41 GMT; Path=/
          109. The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
            = 0; } var naturalImages = new Array; naturalImageOnLoad = function() { if (this.width >= this.height) { // this.originalImageTag.width = this.boxSize; this.originalImageTag.height = (this.boxSize * this.height / this.width); } else { // this.originalImageTag.height = this.boxSize; this.originalImageTag.width = (this.boxSize * this.width / this.height); } this.originalImageTag.style.visibility='visible'; } function resizeImage(obj, size) { if(obj.naturalWidth > 0 && obj.naturalHeight > 0) { if (obj.naturalWidth >= obj.naturalHeight) { // obj.width = size; obj.height = (size * obj.naturalHeight / obj.naturalWidth); } else { // obj.height = size; obj.width = (size * obj.naturalWidth / obj.naturalHeight); } } else { var img = new Image(); img.onload = naturalImageOnLoad; img.originalImageTag = obj; img.boxSize = size; img.src = obj.src; naturalImages.push(img); } if(!checkIt("msie")) { obj.style.visibility='visible'; } } /** * SWFObject v1.5: Flash Player detection and embed - http://blog.deconcept.com/swfobject/ * * SWFObject is (c) 2007 Geoff Stearns and is released under the MIT License: * http://www.opensource.org/licenses/mit-license.php * */ if(typeof deconcept=="undefined"){var deconcept=new Object();}if(typeof deconcept.util=="undefined"){deconcept.util=new Object();}if(typeof deconcept.SWFObjectUtil=="undefined"){deconcept.SWFObjectUtil=new Object();}deconcept.SWFObject=function(_1,id,w,h,_5,c,_7,_8,_9,_a){if(!document.getElementById){return;}this.DETECT_KEY=_a?_a:"detectflash";this.skipDetect=deconcept.util.getRequestParameter(this.DETECT_KEY);this.params=new Object();this.variables=new Object();this.attributes=new Array();if(_1){this.setAttribute("swf",_1);}if(id){this.setAttribute("id",id);}if(w){this.setAttribute("width",w);}if(h){this.setAttribute("height",h);}if(_5){this.setAttribute("version",new deconcept.PlayerVersion(_5.toString().split(".")));}this.installedVer=deconcept.SWFObjectUtil.getPlayerVersion();if(!window.opera&&document.all&&this.installedVer.major>7){deconcept.SWFObject.doPrepUnload=true;}if(c){this.addParam("bgcolor",c);}var q=_7?_7:"high";this.addParam("quality",q);this.setAttribute("useExpressInstall",false);this.setAttribute("doExpressInstall",false);var _c=(_8)?_8:window.location;this.setAttribute("xiRedirectUrl",_c);this.setAttribute("redirectUrl","");if(_9){this.setAttribute("redirectUrl",_9);}};deconcept.SWFObject.prototype={useExpressInstall:function(_d){this.xiSWFPath=!_d?"expressinstall.swf":_d;this.setAttribute("useExpressInstall",true);},setAttribute:function(_e,_f){this.attributes[_e]=_f;},getAttribute:function(_10){return this.attributes[_10];},addParam:function(_11,_12){this.params[_11]=_12;},getParams:function(){return this.params;},addVariable:function(_13,_14){this.variables[_13]=_14;},getVariable:function(_15){return this.variables[_15];},getVariables:function(){return this.variables;},getVariablePairs:function(){var _16=new Array();var key;var _18=this.getVariables();for(key in _18){_16[_16.length]=key+"="+_18[key];}return _16;},getSWFHTML:function(){var _19="";if(navigator.plugins&&navigator.mimeTypes&&navigator.mimeTypes.length){if(this.getAttribute("doExpressInstall")){this.addVariable("MMplayerType","PlugIn");this.setAttribute("swf",this.xiSWFPath);}_19="0){_19+="flashvars=\""+_1c+"\"";}_19+="/>";}else{if(this.getAttribute("doExpressInstall")){this.addVariable("MMplayerType","ActiveX");this.setAttribute("swf",this.xiSWFPath);}_19="";_19+="";var _1d=this.getParams();for(var key in _1d){_19+="";}var _1f=this.getVariablePairs().join("&");if(_1f.length>0){_19+="";}_19+="";}return _19;},write:function(_20){if(this.getAttribute("useExpressInstall")){var _21=new deconcept.PlayerVersion([6,0,65]);if(this.installedVer.versionIsValid(_21)&&!this.installedVer.versionIsValid(this.getAttribute("version"))){this.setAttribute("doExpressInstall",true);this.addVariable("MMredirectURL",escape(this.getAttribute("xiRedirectUrl")));document.title=document.title.slice(0,47)+" - Flash Player Installation";this.addVariable("MMdoctitle",document.title);}}if(this.skipDetect||this.getAttribute("doExpressInstall")||this.installedVer.versionIsValid(this.getAttribute("version"))){var n=(typeof _20=="string")?document.getElementById(_20):_20;n.innerHTML=this.getSWFHTML();return true;}else{if(this.getAttribute("redirectUrl")!=""){document.location.replace(this.getAttribute("redirectUrl"));}}return false;}};deconcept.SWFObjectUtil.getPlayerVersion=function(){var _23=new deconcept.PlayerVersion([0,0,0]);if(navigator.plugins&&navigator.mimeTypes.length){var x=navigator.plugins["Shockwave Flash"];if(x&&x.description){_23=new deconcept.PlayerVersion(x.description.replace(/([a-zA-Z]|\s)+/,"").replace(/(\s+r|\s+b[0-9]+)/,".").split("."));}}else{if(navigator.userAgent&&navigator.userAgent.indexOf("Windows CE")>=0){var axo=1;var _26=3;while(axo){try{_26++;axo=new ActiveXObject("ShockwaveFlash.ShockwaveFlash."+_26);_23=new deconcept.PlayerVersion([_26,0,0]);}catch(e){axo=null;}}}else{try{var axo=new ActiveXObject("ShockwaveFlash.ShockwaveFlash.7");}catch(e){try{var axo=new ActiveXObject("ShockwaveFlash.ShockwaveFlash.6");_23=new deconcept.PlayerVersion([6,0,21]);axo.AllowScriptAccess="always";}catch(e){if(_23.major==6){return _23;}}try{axo=new ActiveXObject("ShockwaveFlash.ShockwaveFlash");}catch(e){}}if(axo!=null){_23=new deconcept.PlayerVersion(axo.GetVariable('$version').split(" ")[1].split(","));}}}return _23;};deconcept.PlayerVersion=function(_29){this.major=_29[0]!=null?parseInt(_29[0]):0;this.minor=_29[1]!=null?parseInt(_29[1]):0;this.rev=_29[2]!=null?parseInt(_29[2]):0;};deconcept.PlayerVersion.prototype.versionIsValid=function(fv){if(this.majorfv.major){return true;}if(this.minorfv.minor){return true;}if(this.rev=0;i--){_2f[i].style.display="none";for(var x in _2f[i]){if(typeof _2f[i][x]=="function"){_2f[i][x]=function(){};}}}};if(deconcept.SWFObject.doPrepUnload){if(!deconcept.unloadSet){deconcept.SWFObjectUtil.prepUnload=function(){__flash_unloadHandler=function(){};__flash_savedUnloadHandler=function(){};window.attachEvent("onunload",deconcept.SWFObjectUtil.cleanupSWFs);};window.attachEvent("onbeforeunload",deconcept.SWFObjectUtil.prepUnload);deconcept.unloadSet=true;}}if(!document.getElementById&&document.all){document.getElementById=function(id){return document.all[id];};}var getQueryParamValue=deconcept.util.getRequestParameter;var FlashObject=deconcept.SWFObject;var SWFObject=deconcept.SWFObject; document.write('\n\n\n \n\n \n \n \n \n \n\n\n\n\n\n\n \n \n \n \n \n \n \n \nfunction pr_swfver(){\nvar osf,osfd,i,axo=1,v=0,nv=navigator;\nif(nv.plugins&&nv.mimeTypes.length){osf=nv.plugins["Shockwave Flash"];if(osf&&osf.description){osfd=osf.description;v=parseInt(osfd.substring(osfd.indexOf(".")-2))}}\nelse{try{for(i=5;axo!=null;i++){axo=new ActiveXObject("ShockwaveFlash.ShockwaveFlash."+i);v=i}}catch(e){}}\nreturn v;\n}\nvar pr_d=new Date();pr_d=pr_d.getDay()+"|"+pr_d.getHours()+":"+pr_d.getMinutes()+"|"+-pr_d.getTimezoneOffset()/60;\nvar pr_postal="";\nvar pr_data="";\nvar pr_redir="http://r.turn.com/r/tpclick/id/QDRIiX1HEikSCwEA_QEBAA/3c/http%3A%2F%2Fgoogleads.g.doubleclick.net%2Faclk%3Fsa%3Dl%26ai%3DB5z3ybFCrTa6HDa7GsQeSt-C5AY200M4B9bmdvRTJkYikFwAQARgBIAA4AVCAx-HEBGDJ7oOI8KPsEoIBF2NhLXB1Yi05NjQzMDMyNzM1Mjk0NjY4sgETd3d3LnRoYXRzaGlwaG9wLmNvbboBCTcyOHg5MF9hc8gBCdoBdWh0dHA6Ly93d3cudGhhdHNoaXBob3AuY29tL2Jyb3dzZS5waHA_dHlwZT0nJTIyLS0lM0UlM0Mvc3R5bGUlM0UlM0Mvc2NyaXB0JTNFJTNDc2NyaXB0JTNFYWxlcnQoMHgwMDAwOTIpJTNDL3NjcmlwdCUzRZgCsgXAAgTIArWc1RGoAwHoA4YI6APhBegD2QHoA9AE9QMEAADEgAaJh6_u2aeujZIB%26num%3D1%26sig%3DAGiWqtwOTLLbew_MglE3l-F2ONNz20_qaQ%26client%3Dca-pub-9643032735294668%26adurl%3D/url/$CTURL$";\nvar pr_nua=navigator.userAgent.toLowerCase();\nvar prHost=(("https:"==document.location.protocol)?"https://":"http://");var pr_sec=((prHost==\'https://\')?\'&secure=1\':\'\');\nvar pr_pos="",pr_inif=(window!=top);\nif(pr_inif){try{pr_pos=(typeof(parent.document)!="unknown")?(((typeof(inDapIF)!="undefined")&&(inDapIF))||(parent.document.domain==document.domain))?"&pos=s":"&pos=x":"&pos=x";}\ncatch(e){pr_pos="&pos=x";}if(pr_pos=="&pos=x"){var pr_u=new RegExp("[A-Za-z]+:[/][/][A-Za-z0-9.-]+");var pr_t=this.window.document.referrer;\nvar pr_m=pr_t.match(pr_u);if(pr_m!=null){pr_pos+="&dom="+pr_m[0];}}else{if(((typeof(inDapMgrIf)!="undefined")&&(inDapMgrIf))||((typeof(isAJAX)!="undefined")&&(isAJAX))){pr_pos+="&ajx=1"}}}\nif(pr_postal!=""){var przipmatch=/^\\d{5}$/;if(przipmatch.test(pr_postal)){pr_pos+="&postal="+pr_postal;}}\nif((pr_data!="")&&(pr_data.indexOf("&")<0)){pr_pos+="&data="+pr_data;}\nvar pr_s="ads.pointroll.com/PortalServe/?pid=1149217T71620101123190930&flash="+pr_swfver()+"&time="+pr_d+"&redir="+pr_redir+pr_pos+pr_sec+"&r="+Math.random();\ndocument.write("");\n\n \n \n \n \n \n \n \n \n\n\n\n\n \n\n \n\n') ]]> false
            4742902821517296640 8389632 Content type incorrectly stated http://www.linxdown.com Information Firm
            In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
          110. Content-Type: text/css
          111. The response states that it contains CSS. However, it actually appears to contain unrecognised content.]]>
            false
            6422353071585736704 2097920 Cross-site scripting (reflected) http://widgets.digg.com High Certain
            The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

            Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

            The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
          112. Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
          113. User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
          114. In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
            ca710<script>alert(1)</script>7e342f7ecdb was submitted in the url parameter. This input was echoed unmodified in the application's response.

            This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
            alert(1)7e342f7ecdb HTTP/1.1 Host: widgets.digg.com Proxy-Connection: keep-alive Referer: http://xss.cx/examples/netsparker/www.lessonofpassion.com_80.htm User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 ]]> alert(1)7e342f7ecdb", "diggs": 0});]]> false
            1976522492416139264 5243648 Cookie scoped to parent domain http://d.audienceiq.com Information Certain
          115. uid=4110685209277066740; Domain=.audienceiq.com; Expires=Fri, 14-Oct-2011 23:37:30 GMT; Path=/
          116. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
            false
            6186336490679987200 5243648 Cookie scoped to parent domain http://g-pixel.invitemedia.com Information Certain
          117. exchange_uid="eyI0IjpbIkNBRVNFQ0NyZjVYQkMyTExTQ3BjRWRBVjNzVSIsNzM0MjQ0XX0=";Version=1;Path=/;Domain=invitemedia.com;Expires=Mon, 16-Apr-2012 20:41:02 GMT;Max-Age=31536000
          118. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
            false
            8942792391695156224 5244160 Cross-domain script include http://www.linxdown.com Information Certain
            If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
          119. http://tcr.tynt.com/javascripts/Tracer.js?user=cTz9R47_er3RrPadbiUt4I
          120. ]]>
            lessons of passion dirty pictures walkthrough Rapidshare Hotfile Megaupload Mediafire Download Links LinxDown.Com
                              
            Filesonic Fileserve Torrent Usenet Downloads
            \ '; var te_clr1_att02cont1_bi = {'baseName':'te-clr1-att02cont1','anchName':'te-clr1-att02cont1-anch','width':300,'height':250,'ox':20b6a69162acaa5591,'oy':0,'plc':'tr','iplc':'ctr','intDivName':'te-clr1-att02cont1-itl','iconSpanId':'te-clr1-att02cont1-icon','backgroundColor':'white','opacity':.8,'filterOpacity':80,'containerId':'att02cont1','noticeBaseUrl':'http://choices.truste.com/camsg?','interstitial':te_clr1_att02cont1_ib,'interstitialWidth':300,'interstitialHeight':250,'popTab':false,'showLink':'javascript:truste.ca.showoverlay(te_clr1_att02cont1_bi)','hideLink':'javascript:truste.ca.hideoverlay(te_clr1_att02cont1_bi)','icon':'http://choices.truste.com/assets/admarker.png','icon_cam':'http://choices.truste.com/assets/adicon.png','iconText':'','aid':'att02','pid':'mec01','zindex':'10002','cam':'2'}; var tecabaseurl = 'choices.truste.com'; truste.ca.addEvent(window, 'load', function() { if(!truste.defjsload) { var element = document.createElement('script'); element.src = 'http://' + tecabaseurl + '/js/tecaintjs.js'; document.body.appendChild(element); truste.defjsload = true; } truste.ca.addBinding(te_clr1_att02cont1_bi); }); ]]>
            false
            7597936901546263552 5244416 Cookie without HttpOnly flag set http://www.verifiedplaymates.com Information Certain
            You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
          121. apache2_cookie=173.193.214.243.1303071237598074; path=/; expires=Thu, 16-Jun-11 20:13:57 GMT
          122. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
            false
            3311547888264322048 6291968 Email addresses disclosed http://utopiaguide.com Information Certain
            However, email addresses of developers and other individuals (whether appearing on-screen or hidden within page source) may disclose information that is useful to an attacker; for example, they may represent usernames that can be used at the application's login, and they may be used in social engineering attacks against the organisation's personnel. Unnecessary or excessive disclosure of email addresses may also lead to an increase in the volume of spam email received.]]>
          123. service@utopiaguide.com
          124. ]]>
            UtopiaGuide



            Go Back   UtopiaGuide
            Register FAQ Members List CalendarvBookieToplist Today's Posts

            vBulletin Message
            Invalid Thread specified. If you followed a valid link, please notify the administrator

            Forum Jump

            All times are GMT -8. The time now is 12:32 PM.

            This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

            Powered by vBulletin® Version 3.6.8
            Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

            ]]>
            false
            4925112094202947584 5244416 Cookie without HttpOnly flag set http://translate.google.com Information Certain
            You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
          125. PREF=ID=0772c9d5ef13aaaf:U=d212295d0f1573ee:TM=1303071569:LM=1303072583:S=o_rTP7-q_AB_6p6K; expires=Tue, 16-Apr-2013 20:36:23 GMT; path=/; domain=.google.com
          126. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
            Google Translate

            Google Translate

            Try a new browser with automatic translation.
            Download Google Chrome
            Type text or a website address or translate a document.

            Do more with Google Translate

            • Wake up to translation. Translate text right from your iGoogle homepage.
            • Wish your Norwegian fans could read your blog? Install the Google Translate Element for easy translation.
            • Build your global business. Advertise across languages using Google Global Market Finder.
            • Stay in touch with your pen-pal in Paris. Enable automatic email and chat translation in Gmail.
            ]]>
            false
            3019499762365240320 2097920 Cross-site scripting (reflected) http://d.adsverse.com High Certain
            The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

            Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

            The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
          127. Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
          128. User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
          129. In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
            b9143</script><script>alert(1)</script>7cdc1b19283
            was submitted in the name of an arbitrarily supplied request parameter. This input was echoed unmodified in the application's response.

            This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

            Note that a redirection occurred between the attack request and the response containing the echoed input. It is necessary to follow this redirection for the attack to succeed. When the attack is carried out via a browser, the redirection will be followed automatically.]]> 7cdc1b19283=1 HTTP/1.1 Host: d.adsverse.com Proxy-Connection: keep-alive Referer: http://caseyofhouston.com/calendar.php User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 Cookie: OAGEO=US%7CTX%7CDallas%7C75207%7C32.7825%7C-96.8207%7C623%7C214%7CMedia+Visions%7C%7C; OAID=574904589a3ae5378ce2de7809c7b231 ]]> Advertisement 7cdc1b19283=1&loc=http%3A%2F%2Fcaseyofhouston.com%2Fcalendar.php")', 60000); // ]]]> -->
            Undress her !
            Some are genuine escorts in !
            ]]>
            true
            8120181163613747200 5244160 Cross-domain script include http://www.verifiedplaymates.com Information Certain
            If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
          130. http://199.80.58.115/openx/www/delivery/spcjs.php?id=1&block=1&blockcampaign=1
          131. ]]>

            Verified Playmates
            Fetish Fetish / Fantasy Tantra Tantra BDSM BDSM
            Directory Links:

            Want your banner on here? To get a link to your website added to our new link directory,
            please submit your banner or link code to: tim@verifiedplaymates.com



            Our Linking Code:





            Las Vegas Escort Directory

            Go to http://mistressmiel.com
            Trinity of Chicago

            http://mistressvixxen.escort-site.com



             NAUGHTY FREE SEX VIDEOS

            Craigslist Adult Alternative Replacement Website
            © 2009-2010 - VerifiedPlaymates.com VP Escort Directory - All rights reserved.


            ]]>
            false
            6809865132499796992 8389888 Content type is not specified http://ad.adperium.com Information Certain
            In most cases, the absence of a content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
            ]]> false
            2991078153400493056 6291968 Email addresses disclosed http://caseyofhouston.com Information Certain
            However, email addresses of developers and other individuals (whether appearing on-screen or hidden within page source) may disclose information that is useful to an attacker; for example, they may represent usernames that can be used at the application's login, and they may be used in social engineering attacks against the organisation's personnel. Unnecessary or excessive disclosure of email addresses may also lead to an increase in the volume of spam email received.]]>
          132. mihai_bazon@yahoo.com
          133. ]]>
            0;) { ar[--i] = Calendar._DN[i].substr(0, Calendar._SDN_len); } Calendar._SDN = ar; // table of short month names if (typeof Calendar._SMN_len == "undefined") Calendar._SMN_len = 3; ar = new Array(); for (var i = 12; i > 0;) { ar[--i] = Calendar._MN[i].substr(0, Calendar._SMN_len); } Calendar._SMN = ar; } }; // ** constants /// "static", needed for event handlers. Calendar._C = null; /// detect a special case of "web browser" Calendar.is_ie = ( /msie/i.test(navigator.userAgent) && !/opera/i.test(navigator.userAgent) ); Calendar.is_ie5 = ( Calendar.is_ie && /msie 5\.0/i.test(navigator.userAgent) ); /// detect Opera browser Calendar.is_opera = /opera/i.test(navigator.userAgent); /// detect KHTML-based browsers Calendar.is_khtml = /Konqueror|Safari|KHTML/i.test(navigator.userAgent); // BEGIN: UTILITY FUNCTIONS; beware that these might be moved into a separate // library, at some point. Calendar.getAbsolutePos = function(el) { var SL = 0, ST = 0; var is_div = /^div$/i.test(el.tagName); if (is_div && el.scrollLeft) SL = el.scrollLeft; if (is_div && el.scrollTop) ST = el.scrollTop; var r = { x: el.offsetLeft - SL, y: el.offsetTop - ST }; if (el.offsetParent) { var tmp = this.getAbsolutePos(el.offsetParent); r.x += tmp.x; r.y += tmp.y; } return r; }; Calendar.isRelated = function (el, evt) { var related = evt.relatedTarget; if (!related) { var type = evt.type; if (type == "mouseover") { related = evt.fromElement; } else if (type == "mouseout") { related = evt.toElement; } } while (related) { if (related == el) { return true; } related = related.parentNode; } return false; }; Calendar.removeClass = function(el, className) { if (!(el && el.className)) { return; } var cls = el.className.split(" "); var ar = new Array(); for (var i = cls.length; i > 0;) { if (cls[--i] != className) { ar[ar.length] = cls[i]; } } el.className = ar.join(" "); }; Calendar.addClass = function(el, className) { Calendar.removeClass(el, className); el.className += " " + className; }; // FIXME: the following 2 functions totally suck, are useless and should be replaced immediately. Calendar.getElement = function(ev) { var f = Calendar.is_ie ? window.event.srcElement : ev.currentTarget; while (f.nodeType != 1 || /^div$/i.test(f.tagName)) f = f.parentNode; return f; }; Calendar.getTargetElement = function(ev) { var f = Calendar.is_ie ? window.event.srcElement : ev.target; while (f.nodeType != 1) f = f.parentNode; return f; }; Calendar.stopEvent = function(ev) { ev || (ev = window.event); if (Calendar.is_ie) { ev.cancelBubble = true; ev.returnValue = false; } else { ev.preventDefault(); ev.stopPropagation(); } return false; }; Calendar.addEvent = function(el, evname, func) { if (el.attachEvent) { // IE el.attachEvent("on" + evname, func); } else if (el.addEventListener) { // Gecko / W3C el.addEventListener(evname, func, true); } else { el["on" + evname] = func; } }; Calendar.removeEvent = function(el, evname, func) { if (el.detachEvent) { // IE el.detachEvent("on" + evname, func); } else if (el.removeEventListener) { // Gecko / W3C el.removeEventListener(evname, func, true); } else { el["on" + evname] = null; } }; Calendar.createElement = function(type, parent) { var el = null; if (document.createElementNS) { // use the XHTML namespace; IE won't normally get here unless // _they_ "fix" the DOM2 implementation. el = document.createElementNS("http://www.w3.org/1999/xhtml", type); } else { el = document.createElement(type); } if (typeof parent != "undefined") { parent.appendChild(el); } return el; }; // END: UTILITY FUNCTIONS // BEGIN: CALENDAR STATIC FUNCTIONS /** Internal -- adds a set of events to make some element behave like a button. */ Calendar._add_evs = function(el) { with (Calendar) { addEvent(el, "mouseover", dayMouseOver); addEvent(el, "mousedown", dayMouseDown); addEvent(el, "mouseout", dayMouseOut); if (is_ie) { addEvent(el, "dblclick", dayMouseDblClick); el.setAttribute("unselectable", true); } } }; Calendar.findMonth = function(el) { if (typeof el.month != "undefined") { return el; } else if (typeof el.parentNode.month != "undefined") { return el.parentNode; } return null; }; Calendar.findYear = function(el) { if (typeof el.year != "undefined") { return el; } else if (typeof el.parentNode.year != "undefined") { return el.parentNode; } return null; }; Calendar.showMonthsCombo = function () { var cal = Calendar._C; if (!cal) { return false; } var cal = cal; var cd = cal.activeDiv; var mc = cal.monthsCombo; if (cal.hilitedMonth) { Calendar.removeClass(cal.hilitedMonth, "hilite"); } if (cal.activeMonth) { Calendar.removeClass(cal.activeMonth, "active"); } var mon = cal.monthsCombo.getElementsByTagName("div")[cal.date.getMonth()]; Calendar.addClass(mon, "active"); cal.activeMonth = mon; var s = mc.style; s.display = "block"; if (cd.navtype < 0) s.left = cd.offsetLeft + "px"; else { var mcw = mc.offsetWidth; if (typeof mcw == "undefined") // Konqueror brain-dead techniques mcw = 50; s.left = (cd.offsetLeft + cd.offsetWidth - mcw) + "px"; } s.top = (cd.offsetTop + cd.offsetHeight) + "px"; }; Calendar.showYearsCombo = function (fwd) { var cal = Calendar._C; if (!cal) { return false; } var cal = cal; var cd = cal.activeDiv; var yc = cal.yearsCombo; if (cal.hilitedYear) { Calendar.removeClass(cal.hilitedYear, "hilite"); } if (cal.activeYear) { Calendar.removeClass(cal.activeYear, "active"); } cal.activeYear = null; var Y = cal.date.getFullYear() + (fwd ? 1 : -1); var yr = yc.firstChild; var show = false; for (var i = 12; i > 0; --i) { if (Y >= cal.minYear && Y <= cal.maxYear) { yr.innerHTML = Y; yr.year = Y; yr.style.display = "block"; show = true; } else { yr.style.display = "none"; } yr = yr.nextSibling; Y += fwd ? cal.yearStep : -cal.yearStep; } if (show) { var s = yc.style; s.display = "block"; if (cd.navtype < 0) s.left = cd.offsetLeft + "px"; else { var ycw = yc.offsetWidth; if (typeof ycw == "undefined") // Konqueror brain-dead techniques ycw = 50; s.left = (cd.offsetLeft + cd.offsetWidth - ycw) + "px"; } s.top = (cd.offsetTop + cd.offsetHeight) + "px"; } }; // event handlers Calendar.tableMouseUp = function(ev) { var cal = Calendar._C; if (!cal) { return false; } if (cal.timeout) { clearTimeout(cal.timeout); } var el = cal.activeDiv; if (!el) { return false; } var target = Calendar.getTargetElement(ev); ev || (ev = window.event); Calendar.removeClass(el, "active"); if (target == el || target.parentNode == el) { Calendar.cellClick(el, ev); } var mon = Calendar.findMonth(target); var date = null; if (mon) { date = new Date(cal.date); if (mon.month != date.getMonth()) { date.setMonth(mon.month); cal.setDate(date); cal.dateClicked = false; cal.callHandler(); } } else { var year = Calendar.findYear(target); if (year) { date = new Date(cal.date); if (year.year != date.getFullYear()) { date.setFullYear(year.year); cal.setDate(date); cal.dateClicked = false; cal.callHandler(); } } } with (Calendar) { removeEvent(document, "mouseup", tableMouseUp); removeEvent(document, "mouseover", tableMouseOver); removeEvent(document, "mousemove", tableMouseOver); cal._hideCombos(); _C = null; return stopEvent(ev); } }; Calendar.tableMouseOver = function (ev) { var cal = Calendar._C; if (!cal) { return; } var el = cal.activeDiv; var target = Calendar.getTargetElement(ev); if (target == el || target.parentNode == el) { Calendar.addClass(el, "hilite active"); Calendar.addClass(el.parentNode, "rowhilite"); } else { if (typeof el.navtype == "undefined" || (el.navtype != 50 && (el.navtype == 0 || Math.abs(el.navtype) > 2))) Calendar.removeClass(el, "active"); Calendar.removeClass(el, "hilite"); Calendar.removeClass(el.parentNode, "rowhilite"); } ev || (ev = window.event); if (el.navtype == 50 && target != el) { var pos = Calendar.getAbsolutePos(el); var w = el.offsetWidth; var x = ev.clientX; var dx; var decrease = true; if (x > pos.x + w) { dx = x - pos.x - w; decrease = false; } else dx = pos.x - x; if (dx < 0) dx = 0; var range = el._range; var current = el._current; var count = Math.floor(dx / 10) % range.length; for (var i = range.length; --i >= 0;) if (range[i] == current) break; while (count-- > 0) if (decrease) { if (--i < 0) i = range.length - 1; } else if ( ++i >= range.length ) i = 0; var newval = range[i]; el.innerHTML = newval; cal.onUpdateTime(); } var mon = Calendar.findMonth(target); if (mon) { if (mon.month != cal.date.getMonth()) { if (cal.hilitedMonth) { Calendar.removeClass(cal.hilitedMonth, "hilite"); } Calendar.addClass(mon, "hilite"); cal.hilitedMonth = mon; } else if (cal.hilitedMonth) { Calendar.removeClass(cal.hilitedMonth, "hilite"); } } else { if (cal.hilitedMonth) { Calendar.removeClass(cal.hilitedMonth, "hilite"); } var year = Calendar.findYear(target); if (year) { if (year.year != cal.date.getFullYear()) { if (cal.hilitedYear) { Calendar.removeClass(cal.hilitedYear, "hilite"); } Calendar.addClass(year, "hilite"); cal.hilitedYear = year; } else if (cal.hilitedYear) { Calendar.removeClass(cal.hilitedYear, "hilite"); } } else if (cal.hilitedYear) { Calendar.removeClass(cal.hilitedYear, "hilite"); } } return Calendar.stopEvent(ev); }; Calendar.tableMouseDown = function (ev) { if (Calendar.getTargetElement(ev) == Calendar.getElement(ev)) { return Calendar.stopEvent(ev); } }; Calendar.calDragIt = function (ev) { var cal = Calendar._C; if (!(cal && cal.dragging)) { return false; } var posX; var posY; if (Calendar.is_ie) { posY = window.event.clientY + document.body.scrollTop; posX = window.event.clientX + document.body.scrollLeft; } else { posX = ev.pageX; posY = ev.pageY; } cal.hideShowCovered(); var st = cal.element.style; st.left = (posX - cal.xOffs) + "px"; st.top = (posY - cal.yOffs) + "px"; return Calendar.stopEvent(ev); }; Calendar.calDragEnd = function (ev) { var cal = Calendar._C; if (!cal) { return false; } cal.dragging = false; with (Calendar) { removeEvent(document, "mousemove", calDragIt); removeEvent(document, "mouseup", calDragEnd); tableMouseUp(ev); } cal.hideShowCovered(); }; Calendar.dayMouseDown = function(ev) { var el = Calendar.getElement(ev); if (el.disabled) { return false; } var cal = el.calendar; cal.activeDiv = el; Calendar._C = cal; if (el.navtype != 300) with (Calendar) { if (el.navtype == 50) { el._current = el.innerHTML; addEvent(document, "mousemove", tableMouseOver); } else addEvent(document, Calendar.is_ie5 ? "mousemove" : "mouseover", tableMouseOver); addClass(el, "hilite active"); addEvent(document, "mouseup", tableMouseUp); } else if (cal.isPopup) { cal._dragStart(ev); } if (el.navtype == -1 || el.navtype == 1) { if (cal.timeout) clearTimeout(cal.timeout); cal.timeout = setTimeout("Calendar.showMonthsCombo()", 250); } else if (el.navtype == -2 || el.navtype == 2) { if (cal.timeout) clearTimeout(cal.timeout); cal.timeout = setTimeout((el.navtype > 0) ? "Calendar.showYearsCombo(true)" : "Calendar.showYearsCombo(false)", 250); } else { cal.timeout = null; } return Calendar.stopEvent(ev); }; Calendar.dayMouseDblClick = function(ev) { Calendar.cellClick(Calendar.getElement(ev), ev || window.event); if (Calendar.is_ie) { document.selection.empty(); } }; Calendar.dayMouseOver = function(ev) { var el = Calendar.getElement(ev); if (Calendar.isRelated(el, ev) || Calendar._C || el.disabled) { return false; } if (el.ttip) { if (el.ttip.substr(0, 1) == "_") { el.ttip = el.caldate.print(el.calendar.ttDateFormat) + el.ttip.substr(1); } el.calendar.tooltips.innerHTML = el.ttip; } if (el.navtype != 300) { Calendar.addClass(el, "hilite"); if (el.caldate) { Calendar.addClass(el.parentNode, "rowhilite"); } } return Calendar.stopEvent(ev); }; Calendar.dayMouseOut = function(ev) { with (Calendar) { var el = getElement(ev); if (isRelated(el, ev) || _C || el.disabled) return false; removeClass(el, "hilite"); if (el.caldate) removeClass(el.parentNode, "rowhilite"); if (el.calendar) el.calendar.tooltips.innerHTML = _TT["SEL_DATE"]; return stopEvent(ev); } }; /** * A generic "click" handler :) handles all types of buttons defined in this * calendar. */ Calendar.cellClick = function(el, ev) { var cal = el.calendar; var closing = false; var newdate = false; var date = null; if (typeof el.navtype == "undefined") { if (cal.currentDateEl) { Calendar.removeClass(cal.currentDateEl, "selected"); Calendar.addClass(el, "selected"); closing = (cal.currentDateEl == el); if (!closing) { cal.currentDateEl = el; } } cal.date.setDateOnly(el.caldate); date = cal.date; var other_month = !(cal.dateClicked = !el.otherMonth); if (!other_month && !cal.currentDateEl) cal._toggleMultipleDate(new Date(date)); else newdate = !el.disabled; // a date was clicked if (other_month) cal._init(cal.firstDayOfWeek, date); } else { if (el.navtype == 200) { Calendar.removeClass(el, "hilite"); cal.callCloseHandler(); return; } date = new Date(cal.date); if (el.navtype == 0) date.setDateOnly(new Date()); // TODAY // unless "today" was clicked, we assume no date was clicked so // the selected handler will know not to close the calenar when // in single-click mode. // cal.dateClicked = (el.navtype == 0); cal.dateClicked = false; var year = date.getFullYear(); var mon = date.getMonth(); function setMonth(m) { var day = date.getDate(); var max = date.getMonthDays(m); if (day > max) { date.setDate(max); } date.setMonth(m); }; switch (el.navtype) { case 400: Calendar.removeClass(el, "hilite"); var text = Calendar._TT["ABOUT"]; if (typeof text != "undefined") { text += cal.showsTime ? Calendar._TT["ABOUT_TIME"] : ""; } else { // FIXME: this should be removed as soon as lang files get updated! text = "Help and about box text is not translated into this language.\n" + "If you know this language and you feel generous please update\n" + "the corresponding file in \"lang\" subdir to match calendar-en.js\n" + "and send it back to to get it into the distribution ;-)\n\n" + "Thank you!\n" + "http://dynarch.com/mishoo/calendar.epl\n"; } alert(text); return; case -2: if (year > cal.minYear) { date.setFullYear(year - 1); } break; case -1: if (mon > 0) { setMonth(mon - 1); } else if (year-- > cal.minYear) { date.setFullYear(year); setMonth(11); } break; case 1: if (mon < 11) { setMonth(mon + 1); } else if (year < cal.maxYear) { date.setFullYear(year + 1); setMonth(0); } break; case 2: if (year < cal.maxYear) { date.setFullYear(year + 1); } break; case 100: cal.setFirstDayOfWeek(el.fdow); return; case 50: var range = el._range; var current = el.innerHTML; for (var i = range.length; --i >= 0;) if (range[i] == current) break; if (ev && ev.shiftKey) { if (--i < 0) i = range.length - 1; } else if ( ++i >= range.length ) i = 0; var newval = range[i]; el.innerHTML = newval; cal.onUpdateTime(); return; case 0: // TODAY will bring us here if ((typeof cal.getDateStatus == "function") && cal.getDateStatus(date, date.getFullYear(), date.getMonth(), date.getDate())) { return false; } break; } if (!date.equalsTo(cal.date)) { cal.setDate(date); newdate = true; } else if (el.navtype == 0) newdate = closing = true; } if (newdate) { ev && cal.callHandler(); } if (closing) { Calendar.removeClass(el, "hilite"); ev && cal.callCloseHandler(); } }; // END: CALENDAR STATIC FUNCTIONS // BEGIN: CALENDAR OBJECT FUNCTIONS /** * This function creates the calendar inside the given parent. If _par is * null than it creates a popup calendar inside the BODY element. If _par is * an element, be it BODY, then it creates a non-popup calendar (still * hidden). Some properties need to be set before calling this function. */ Calendar.prototype.create = function (_par) { var parent = null; if (! _par) { // default parent is the document body, in which case we create // a popup calendar. parent = document.getElementsByTagName("body")[0]; this.isPopup = true; } else { parent = _par; this.isPopup = false; } this.date = this.dateStr ? new Date(this.dateStr) : new Date(); var table = Calendar.createElement("table"); this.table = table; table.cellSpacing = 0; table.cellPadding = 0; table.calendar = this; Calendar.addEvent(table, "mousedown", Calendar.tableMouseDown); var div = Calendar.createElement("div"); this.element = div; div.className = "calendar"; if (this.isPopup) { div.style.position = "absolute"; div.style.display = "none"; } div.appendChild(table); var thead = Calendar.createElement("thead", table); var cell = null; var row = null; var cal = this; var hh = function (text, cs, navtype) { cell = Calendar.createElement("td", row); cell.colSpan = cs; cell.className = "button"; if (navtype != 0 && Math.abs(navtype) <= 2) cell.className += " nav"; Calendar._add_evs(cell); cell.calendar = cal; cell.navtype = navtype; cell.innerHTML = "
            " + text + "
            "; return cell; }; row = Calendar.createElement("tr", thead); var title_length = 6; (this.isPopup) && --title_length; (this.weekNumbers) && ++title_length; hh("?", 1, 400).ttip = Calendar._TT["INFO"]; this.title = hh("", title_length, 300); this.title.className = "title"; if (this.isPopup) { this.title.ttip = Calendar._TT["DRAG_TO_MOVE"]; this.title.style.cursor = "move"; hh("×", 1, 200).ttip = Calendar._TT["CLOSE"]; } row = Calendar.createElement("tr", thead); row.className = "headrow"; this._nav_py = hh("«", 1, -2); this._nav_py.ttip = Calendar._TT["PREV_YEAR"]; this._nav_pm = hh("‹", 1, -1); this._nav_pm.ttip = Calendar._TT["PREV_MONTH"]; this._nav_now = hh(Calendar._TT["TODAY"], this.weekNumbers ? 4 : 3, 0); this._nav_now.ttip = Calendar._TT["GO_TODAY"]; this._nav_nm = hh("›", 1, 1); this._nav_nm.ttip = Calendar._TT["NEXT_MONTH"]; this._nav_ny = hh("»", 1, 2); this._nav_ny.ttip = Calendar._TT["NEXT_YEAR"]; // day names row = Calendar.createElement("tr", thead); row.className = "daynames"; if (this.weekNumbers) { cell = Calendar.createElement("td", row); cell.className = "name wn"; cell.innerHTML = Calendar._TT["WK"]; } for (var i = 7; i > 0; --i) { cell = Calendar.createElement("td", row); if (!i) { cell.navtype = 100; cell.calendar = this; Calendar._add_evs(cell); } } this.firstdayname = (this.weekNumbers) ? row.firstChild.nextSibling : row.firstChild; this._displayWeekdays(); var tbody = Calendar.createElement("tbody", table); this.tbody = tbody; for (i = 6; i > 0; --i) { row = Calendar.createElement("tr", tbody); if (this.weekNumbers) { cell = Calendar.createElement("td", row); } for (var j = 7; j > 0; --j) { cell = Calendar.createElement("td", row); cell.calendar = this; Calendar._add_evs(cell); } } if (this.showsTime) { row = Calendar.createElement("tr", tbody); row.className = "time"; cell = Calendar.createElement("td", row); cell.className = "time"; cell.colSpan = 2; cell.innerHTML = Calendar._TT["TIME"] || " "; cell = Calendar.createElement("td", row); cell.className = "time"; cell.colSpan = this.weekNumbers ? 4 : 3; (function(){ function makeTimePart(className, init, range_start, range_end) { var part = Calendar.createElement("span", cell); part.className = className; part.innerHTML = init; part.calendar = cal; part.ttip = Calendar._TT["TIME_PART"]; part.navtype = 50; part._range = []; if (typeof range_start != "number") part._range = range_start; else { for (var i = range_start; i <= range_end; ++i) { var txt; if (i < 10 && range_end >= 10) txt = '0' + i; else txt = '' + i; part._range[part._range.length] = txt; } } Calendar._add_evs(part); return part; }; var hrs = cal.date.getHours(); var mins = cal.date.getMinutes(); var t12 = !cal.time24; var pm = (hrs > 12); if (t12 && pm) hrs -= 12; var H = makeTimePart("hour", hrs, t12 ? 1 : 0, t12 ? 12 : 23); var span = Calendar.createElement("span", cell); span.innerHTML = ":"; span.className = "colon"; var M = makeTimePart("minute", mins, 0, 59); var AP = null; cell = Calendar.createElement("td", row); cell.className = "time"; cell.colSpan = 2; if (t12) AP = makeTimePart("ampm", pm ? "pm" : "am", ["am", "pm"]); else cell.innerHTML = " "; cal.onSetTime = function() { var pm, hrs = this.date.getHours(), mins = this.date.getMinutes(); if (t12) { pm = (hrs >= 12); if (pm) hrs -= 12; if (hrs == 0) hrs = 12; AP.innerHTML = pm ? "pm" : "am"; } H.innerHTML = (hrs < 10) ? ("0" + hrs) : hrs; M.innerHTML = (mins < 10) ? ("0" + mins) : mins; }; cal.onUpdateTime = function() { var date = this.date; var h = parseInt(H.innerHTML, 10); if (t12) { if (/pm/i.test(AP.innerHTML) && h < 12) h += 12; else if (/am/i.test(AP.innerHTML) && h == 12) h = 0; } var d = date.getDate(); var m = date.getMonth(); var y = date.getFullYear(); date.setHours(h); date.setMinutes(parseInt(M.innerHTML, 10)); date.setFullYear(y); date.setMonth(m); date.setDate(d); this.dateClicked = false; this.callHandler(); }; })(); } else { this.onSetTime = this.onUpdateTime = function() {}; } var tfoot = Calendar.createElement("tfoot", table); row = Calendar.createElement("tr", tfoot); row.className = "footrow"; cell = hh(Calendar._TT["SEL_DATE"], this.weekNumbers ? 8 : 7, 300); cell.className = "ttip"; if (this.isPopup) { cell.ttip = Calendar._TT["DRAG_TO_MOVE"]; cell.style.cursor = "move"; } this.tooltips = cell; div = Calendar.createElement("div", this.element); this.monthsCombo = div; div.className = "combo"; for (i = 0; i < Calendar._MN.length; ++i) { var mn = Calendar.createElement("div"); mn.className = Calendar.is_ie ? "label-IEfix" : "label"; mn.month = i; mn.innerHTML = Calendar._SMN[i]; div.appendChild(mn); } div = Calendar.createElement("div", this.element); this.yearsCombo = div; div.className = "combo"; for (i = 12; i > 0; --i) { var yr = Calendar.createElement("div"); yr.className = Calendar.is_ie ? "label-IEfix" : "label"; div.appendChild(yr); } this._init(this.firstDayOfWeek, this.date); parent.appendChild(this.element); }; /** keyboard navigation, only for popup calendars */ Calendar._keyEvent = function(ev) { var cal = window._dynarch_popupCalendar; if (!cal || cal.multiple) return false; (Calendar.is_ie) && (ev = window.event); var act = (Calendar.is_ie || ev.type == "keypress"), K = ev.keyCode; if (ev.ctrlKey) { switch (K) { case 37: // KEY left act && Calendar.cellClick(cal._nav_pm); break; case 38: // KEY up act && Calendar.cellClick(cal._nav_py); break; case 39: // KEY right act && Calendar.cellClick(cal._nav_nm); break; case 40: // KEY down act && Calendar.cellClick(cal._nav_ny); break; default: return false; } } else switch (K) { case 32: // KEY space (now) Calendar.cellClick(cal._nav_now); break; case 27: // KEY esc act && cal.callCloseHandler(); break; case 37: // KEY left case 38: // KEY up case 39: // KEY right case 40: // KEY down if (act) { var prev, x, y, ne, el, step; prev = K == 37 || K == 38; step = (K == 37 || K == 39) ? 1 : 7; function setVars() { el = cal.currentDateEl; var p = el.pos; x = p & 15; y = p >> 4; ne = cal.ar_days[y][x]; };setVars(); function prevMonth() { var date = new Date(cal.date); date.setDate(date.getDate() - step); cal.setDate(date); }; function nextMonth() { var date = new Date(cal.date); date.setDate(date.getDate() + step); cal.setDate(date); }; while (1) { switch (K) { case 37: // KEY left if (--x >= 0) ne = cal.ar_days[y][x]; else { x = 6; K = 38; continue; } break; case 38: // KEY up if (--y >= 0) ne = cal.ar_days[y][x]; else { prevMonth(); setVars(); } break; case 39: // KEY right if (++x < 7) ne = cal.ar_days[y][x]; else { x = 0; K = 40; continue; } break; case 40: // KEY down if (++y < cal.ar_days.length) ne = cal.ar_days[y][x]; else { nextMonth(); setVars(); } break; } break; } if (ne) { if (!ne.disabled) Calendar.cellClick(ne); else if (prev) prevMonth(); else nextMonth(); } } break; case 13: // KEY enter if (act) Calendar.cellClick(cal.currentDateEl, ev); break; default: return false; } return Calendar.stopEvent(ev); }; /** * (RE)Initializes the calendar to the given date and firstDayOfWeek */ Calendar.prototype._init = function (firstDayOfWeek, date) { var today = new Date(), TY = today.getFullYear(), TM = today.getMonth(), TD = today.getDate(); this.table.style.visibility = "hidden"; var year = date.getFullYear(); if (year < this.minYear) { year = this.minYear; date.setFullYear(year); } else if (year > this.maxYear) { year = this.maxYear; date.setFullYear(year); } this.firstDayOfWeek = firstDayOfWeek; this.date = new Date(date); var month = date.getMonth(); var mday = date.getDate(); var no_days = date.getMonthDays(); // calendar voodoo for computing the first day that would actually be // displayed in the calendar, even if it's from the previous month. // WARNING: this is magic. ;-) date.setDate(1); var day1 = (date.getDay() - this.firstDayOfWeek) % 7; if (day1 < 0) day1 += 7; date.setDate(-day1); date.setDate(date.getDate() + 1); var row = this.tbody.firstChild; var MN = Calendar._SMN[month]; var ar_days = this.ar_days = new Array(); var weekend = Calendar._TT["WEEKEND"]; var dates = this.multiple ? (this.datesCells = {}) : null; for (var i = 0; i < 6; ++i, row = row.nextSibling) { var cell = row.firstChild; if (this.weekNumbers) { cell.className = "day wn"; cell.innerHTML = date.getWeekNumber(); cell = cell.nextSibling; } row.className = "daysrow"; var hasdays = false, iday, dpos = ar_days[i] = []; for (var j = 0; j < 7; ++j, cell = cell.nextSibling, date.setDate(iday + 1)) { iday = date.getDate(); var wday = date.getDay(); cell.className = "day"; cell.pos = i << 4 | j; dpos[j] = cell; var current_month = (date.getMonth() == month); if (!current_month) { if (this.showsOtherMonths) { cell.className += " othermonth"; cell.otherMonth = true; } else { cell.className = "emptycell"; cell.innerHTML = " "; cell.disabled = true; continue; } } else { cell.otherMonth = false; hasdays = true; } cell.disabled = false; cell.innerHTML = this.getDateText ? this.getDateText(date, iday) : iday; if (dates) dates[date.print("%Y%m%d")] = cell; if (this.getDateStatus) { var status = this.getDateStatus(date, year, month, iday); if (this.getDateToolTip) { var toolTip = this.getDateToolTip(date, year, month, iday); if (toolTip) cell.title = toolTip; } if (status === true) { cell.className += " disabled"; cell.disabled = true; } else { if (/disabled/i.test(status)) cell.disabled = true; cell.className += " " + status; } } if (!cell.disabled) { cell.caldate = new Date(date); cell.ttip = "_"; if (!this.multiple && current_month && iday == mday && this.hiliteToday) { cell.className += " selected"; this.currentDateEl = cell; } if (date.getFullYear() == TY && date.getMonth() == TM && iday == TD) { cell.className += " today"; cell.ttip += Calendar._TT["PART_TODAY"]; } if (weekend.indexOf(wday.toString()) != -1) cell.className += cell.otherMonth ? " oweekend" : " weekend"; } } if (!(hasdays || this.showsOtherMonths)) row.className = "emptyrow"; } this.title.innerHTML = Calendar._MN[month] + ", " + year; this.onSetTime(); this.table.style.visibility = "visible"; this._initMultipleDates(); // PROFILE // this.tooltips.innerHTML = "Generated in " + ((new Date()) - today) + " ms"; }; Calendar.prototype._initMultipleDates = function() { if (this.multiple) { for (var i in this.multiple) { var cell = this.datesCells[i]; var d = this.multiple[i]; if (!d) continue; if (cell) cell.className += " selected"; } } }; Calendar.prototype._toggleMultipleDate = function(date) { if (this.multiple) { var ds = date.print("%Y%m%d"); var cell = this.datesCells[ds]; if (cell) { var d = this.multiple[ds]; if (!d) { Calendar.addClass(cell, "selected"); this.multiple[ds] = date; } else { Calendar.removeClass(cell, "selected"); delete this.multiple[ds]; } } } }; Calendar.prototype.setDateToolTipHandler = function (unaryFunction) { this.getDateToolTip = unaryFunction; }; /** * Calls _init function above for going to a certain date (but only if the * date is different than the currently selected one). */ Calendar.prototype.setDate = function (date) { if (!date.equalsTo(this.date)) { this._init(this.firstDayOfWeek, date); } }; /** * Refreshes the calendar. Useful if the "disabledHandler" function is * dynamic, meaning that the list of disabled date can change at runtime. * Just * call this function if you think that the list of disabled dates * should * change. */ Calendar.prototype.refresh = function () { this._init(this.firstDayOfWeek, this.date); }; /** Modifies the "firstDayOfWeek" parameter (pass 0 for Synday, 1 for Monday, etc.). */ Calendar.prototype.setFirstDayOfWeek = function (firstDayOfWeek) { this._init(firstDayOfWeek, this.date); this._displayWeekdays(); }; /** * Allows customization of what dates are enabled. The "unaryFunction" * parameter must be a function object that receives the date (as a JS Date * object) and returns a boolean value. If the returned value is true then * the passed date will be marked as disabled. */ Calendar.prototype.setDateStatusHandler = Calendar.prototype.setDisabledHandler = function (unaryFunction) { this.getDateStatus = unaryFunction; }; /** Customization of allowed year range for the calendar. */ Calendar.prototype.setRange = function (a, z) { this.minYear = a; this.maxYear = z; }; /** Calls the first user handler (selectedHandler). */ Calendar.prototype.callHandler = function () { if (this.onSelected) { this.onSelected(this, this.date.print(this.dateFormat)); } }; /** Calls the second user handler (closeHandler). */ Calendar.prototype.callCloseHandler = function () { if (this.onClose) { this.onClose(this); } this.hideShowCovered(); }; /** Removes the calendar object from the DOM tree and destroys it. */ Calendar.prototype.destroy = function () { var el = this.element.parentNode; el.removeChild(this.element); Calendar._C = null; window._dynarch_popupCalendar = null; }; /** * Moves the calendar element to a different section in the DOM tree (changes * its parent). */ Calendar.prototype.reparent = function (new_parent) { var el = this.element; el.parentNode.removeChild(el); new_parent.appendChild(el); }; // This gets called when the user presses a mouse button anywhere in the // document, if the calendar is shown. If the click was outside the open // calendar this function closes it. Calendar._checkCalendar = function(ev) { var calendar = window._dynarch_popupCalendar; if (!calendar) { return false; } var el = Calendar.is_ie ? Calendar.getElement(ev) : Calendar.getTargetElement(ev); for (; el != null && el != calendar.element; el = el.parentNode); if (el == null) { // calls closeHandler which should hide the calendar. window._dynarch_popupCalendar.callCloseHandler(); return Calendar.stopEvent(ev); } }; /** Shows the calendar. */ Calendar.prototype.show = function () { var rows = this.table.getElementsByTagName("tr"); for (var i = rows.length; i > 0;) { var row = rows[--i]; Calendar.removeClass(row, "rowhilite"); var cells = row.getElementsByTagName("td"); for (var j = cells.length; j > 0;) { var cell = cells[--j]; Calendar.removeClass(cell, "hilite"); Calendar.removeClass(cell, "active"); } } this.element.style.display = "block"; this.hidden = false; if (this.isPopup) { window._dynarch_popupCalendar = this; Calendar.addEvent(document, "keydown", Calendar._keyEvent); Calendar.addEvent(document, "keypress", Calendar._keyEvent); Calendar.addEvent(document, "mousedown", Calendar._checkCalendar); } this.hideShowCovered(); }; /** * Hides the calendar. Also removes any "hilite" from the class of any TD * element. */ Calendar.prototype.hide = function () { if (this.isPopup) { Calendar.removeEvent(document, "keydown", Calendar._keyEvent); Calendar.removeEvent(document, "keypress", Calendar._keyEvent); Calendar.removeEvent(document, "mousedown", Calendar._checkCalendar); } this.element.style.display = "none"; this.hidden = true; this.hideShowCovered(); }; /** * Shows the calendar at a given absolute position (beware that, depending on * the calendar element style -- position property -- this might be relative * to the parent's containing rectangle). */ Calendar.prototype.showAt = function (x, y) { var s = this.element.style; s.left = x + "px"; s.top = y + "px"; this.show(); }; /** Shows the calendar near a given element. */ Calendar.prototype.showAtElement = function (el, opts) { var self = this; var p = Calendar.getAbsolutePos(el); if (!opts || typeof opts != "string") { this.showAt(p.x, p.y + el.offsetHeight); return true; } function fixPosition(box) { if (box.x < 0) box.x = 0; if (box.y < 0) box.y = 0; var cp = document.createElement("div"); var s = cp.style; s.position = "absolute"; s.right = s.bottom = s.width = s.height = "0px"; document.body.appendChild(cp); var br = Calendar.getAbsolutePos(cp); document.body.removeChild(cp); if (Calendar.is_ie) { br.y += document.body.scrollTop; br.x += document.body.scrollLeft; } else { br.y += window.scrollY; br.x += window.scrollX; } var tmp = box.x + box.width - br.x; if (tmp > 0) box.x -= tmp; tmp = box.y + box.height - br.y; if (tmp > 0) box.y -= tmp; }; this.element.style.display = "block"; Calendar.continuation_for_the_fucking_khtml_browser = function() { var w = self.element.offsetWidth; var h = self.element.offsetHeight; self.element.style.display = "none"; var valign = opts.substr(0, 1); var halign = "l"; if (opts.length > 1) { halign = opts.substr(1, 1); } // vertical alignment switch (valign) { case "T": p.y -= h; break; case "B": p.y += el.offsetHeight; break; case "C": p.y += (el.offsetHeight - h) / 2; break; case "t": p.y += el.offsetHeight - h; break; case "b": break; // already there } // horizontal alignment switch (halign) { case "L": p.x -= w; break; case "R": p.x += el.offsetWidth; break; case "C": p.x += (el.offsetWidth - w) / 2; break; case "l": p.x += el.offsetWidth - w; break; case "r": break; // already there } p.width = w; p.height = h + 40; self.monthsCombo.style.display = "none"; fixPosition(p); self.showAt(p.x, p.y); }; if (Calendar.is_khtml) setTimeout("Calendar.continuation_for_the_fucking_khtml_browser()", 10); else Calendar.continuation_for_the_fucking_khtml_browser(); }; /** Customizes the date format. */ Calendar.prototype.setDateFormat = function (str) { this.dateFormat = str; }; /** Customizes the tooltip date format. */ Calendar.prototype.setTtDateFormat = function (str) { this.ttDateFormat = str; }; /** * Tries to identify the date represented in a string. If successful it also * calls this.setDate which moves the calendar to the given date. */ Calendar.prototype.parseDate = function(str, fmt) { if (!fmt) fmt = this.dateFormat; this.setDate(Date.parseDate(str, fmt)); }; Calendar.prototype.hideShowCovered = function () { if (!Calendar.is_ie && !Calendar.is_opera) return; function getVisib(obj){ var value = obj.style.visibility; if (!value) { if (document.defaultView && typeof (document.defaultView.getComputedStyle) == "function") { // Gecko, W3C if (!Calendar.is_khtml) value = document.defaultView. getComputedStyle(obj, "").getPropertyValue("visibility"); else value = ''; } else if (obj.currentStyle) { // IE value = obj.currentStyle.visibility; } else value = ''; } return value; }; var tags = new Array("applet", "iframe", "select"); var el = this.element; var p = Calendar.getAbsolutePos(el); var EX1 = p.x; var EX2 = el.offsetWidth + EX1; var EY1 = p.y; var EY2 = el.offsetHeight + EY1; for (var k = tags.length; k > 0; ) { var ar = document.getElementsByTagName(tags[--k]); var cc = null; for (var i = ar.length; i > 0;) { cc = ar[--i]; p = Calendar.getAbsolutePos(cc); var CX1 = p.x; var CX2 = cc.offsetWidth + CX1; var CY1 = p.y; var CY2 = cc.offsetHeight + CY1; if (this.hidden || (CX1 > EX2) || (CX2 < EX1) || (CY1 > EY2) || (CY2 < EY1)) { if (!cc.__msh_save_visibility) { cc.__msh_save_visibility = getVisib(cc); } cc.style.visibility = cc.__msh_save_visibility; } else { if (!cc.__msh_save_visibility) { cc.__msh_save_visibility = getVisib(cc); } cc.style.visibility = "hidden"; } } } }; /** Internal function; it displays the bar with the names of the weekday. */ Calendar.prototype._displayWeekdays = function () { var fdow = this.firstDayOfWeek; var cell = this.firstdayname; var weekend = Calendar._TT["WEEKEND"]; for (var i = 0; i < 7; ++i) { cell.className = "day name"; var realday = (i + fdow) % 7; if (i) { cell.ttip = Calendar._TT["DAY_FIRST"].replace("%s", Calendar._DN[realday]); cell.navtype = 100; cell.calendar = this; cell.fdow = realday; Calendar._add_evs(cell); } if (weekend.indexOf(realday.toString()) != -1) { Calendar.addClass(cell, "weekend"); } cell.innerHTML = Calendar._SDN[(i + fdow) % 7]; cell = cell.nextSibling; } }; /** Internal function. Hides all combo boxes that might be displayed. */ Calendar.prototype._hideCombos = function () { this.monthsCombo.style.display = "none"; this.yearsCombo.style.display = "none"; }; /** Internal function. Starts dragging the element. */ Calendar.prototype._dragStart = function (ev) { if (this.dragging) { return; } this.dragging = true; var posX; var posY; if (Calendar.is_ie) { posY = window.event.clientY + document.body.scrollTop; posX = window.event.clientX + document.body.scrollLeft; } else { posY = ev.clientY + window.scrollY; posX = ev.clientX + window.scrollX; } var st = this.element.style; this.xOffs = posX - parseInt(st.left); this.yOffs = posY - parseInt(st.top); with (Calendar) { addEvent(document, "mousemove", calDragIt); addEvent(document, "mouseup", calDragEnd); } }; // BEGIN: DATE OBJECT PATCHES /** Adds the number of days array to the Date object. */ Date._MD = new Array(31,28,31,30,31,30,31,31,30,31,30,31); /** Constants used for time computations */ Date.SECOND = 1000 /* milliseconds */; Date.MINUTE = 60 * Date.SECOND; Date.HOUR = 60 * Date.MINUTE; Date.DAY = 24 * Date.HOUR; Date.WEEK = 7 * Date.DAY; Date.parseDate = function(str, fmt) { var today = new Date(); var y = 0; var m = -1; var d = 0; var a = str.split(/\W+/); var b = fmt.match(/%./g); var i = 0, j = 0; var hr = 0; var min = 0; for (i = 0; i < a.length; ++i) { if (!a[i]) continue; switch (b[i]) { case "%d": case "%e": d = parseInt(a[i], 10); break; case "%m": m = parseInt(a[i], 10) - 1; break; case "%Y": case "%y": y = parseInt(a[i], 10); (y < 100) && (y += (y > 29) ? 1900 : 2000); break; case "%b": case "%B": for (j = 0; j < 12; ++j) { if (Calendar._MN[j].substr(0, a[i].length).toLowerCase() == a[i].toLowerCase()) { m = j; break; } } break; case "%H": case "%I": case "%k": case "%l": hr = parseInt(a[i], 10); break; case "%P": case "%p": if (/pm/i.test(a[i]) && hr < 12) hr += 12; else if (/am/i.test(a[i]) && hr >= 12) hr -= 12; break; case "%M": min = parseInt(a[i], 10); break; } } if (isNaN(y)) y = today.getFullYear(); if (isNaN(m)) m = today.getMonth(); if (isNaN(d)) d = today.getDate(); if (isNaN(hr)) hr = today.getHours(); if (isNaN(min)) min = today.getMinutes(); if (y != 0 && m != -1 && d != 0) return new Date(y, m, d, hr, min, 0); y = 0; m = -1; d = 0; for (i = 0; i < a.length; ++i) { if (a[i].search(/[a-zA-Z]+/) != -1) { var t = -1; for (j = 0; j < 12; ++j) { if (Calendar._MN[j].substr(0, a[i].length).toLowerCase() == a[i].toLowerCase()) { t = j; break; } } if (t != -1) { if (m != -1) { d = m+1; } m = t; } } else if (parseInt(a[i], 10) <= 12 && m == -1) { m = a[i]-1; } else if (parseInt(a[i], 10) > 31 && y == 0) { y = parseInt(a[i], 10); (y < 100) && (y += (y > 29) ? 1900 : 2000); } else if (d == 0) { d = a[i]; } } if (y == 0) y = today.getFullYear(); if (m != -1 && d != 0) return new Date(y, m, d, hr, min, 0); return today; }; /** Returns the number of days in the current month */ Date.prototype.getMonthDays = function(month) { var year = this.getFullYear(); if (typeof month == "undefined") { month = this.getMonth(); } if (((0 == (year%4)) && ( (0 != (year%100)) || (0 == (year%400)))) && month == 1) { return 29; } else { return Date._MD[month]; } }; /** Returns the number of day in the year. */ Date.prototype.getDayOfYear = function() { var now = new Date(this.getFullYear(), this.getMonth(), this.getDate(), 0, 0, 0); var then = new Date(this.getFullYear(), 0, 0, 0, 0, 0); var time = now - then; return Math.floor(time / Date.DAY); }; /** Returns the number of the week in year, as defined in ISO 8601. */ Date.prototype.getWeekNumber = function() { var d = new Date(this.getFullYear(), this.getMonth(), this.getDate(), 0, 0, 0); var DoW = d.getDay(); d.setDate(d.getDate() - (DoW + 6) % 7 + 3); // Nearest Thu var ms = d.valueOf(); // GMT d.setMonth(0); d.setDate(4); // Thu in Week 1 return Math.round((ms - d.valueOf()) / (7 * 864e5)) + 1; }; /** Checks date and time equality */ Date.prototype.equalsTo = function(date) { return ((this.getFullYear() == date.getFullYear()) && (this.getMonth() == date.getMonth()) && (this.getDate() == date.getDate()) && (this.getHours() == date.getHours()) && (this.getMinutes() == date.getMinutes())); }; /** Set only the year, month, date parts (keep existing time) */ Date.prototype.setDateOnly = function(date) { var tmp = new Date(date); this.setDate(1); this.setFullYear(tmp.getFullYear()); this.setMonth(tmp.getMonth()); this.setDate(tmp.getDate()); }; /** Prints the date in a string according to the given format. */ Date.prototype.print = function (str) { var m = this.getMonth(); var d = this.getDate(); var y = this.getFullYear(); var wn = this.getWeekNumber(); var w = this.getDay(); var s = {}; var hr = this.getHours(); var pm = (hr >= 12); var ir = (pm) ? (hr - 12) : hr; var dy = this.getDayOfYear(); if (ir == 0) ir = 12; var min = this.getMinutes(); var sec = this.getSeconds(); s["%a"] = Calendar._SDN[w]; // abbreviated weekday name [FIXME: I18N] s["%A"] = Calendar._DN[w]; // full weekday name s["%b"] = Calendar._SMN[m]; // abbreviated month name [FIXME: I18N] s["%B"] = Calendar._MN[m]; // full month name // FIXME: %c : preferred date and time representation for the current locale s["%C"] = 1 + Math.floor(y / 100); // the century number s["%d"] = (d < 10) ? ("0" + d) : d; // the day of the month (range 01 to 31) s["%e"] = d; // the day of the month (range 1 to 31) // FIXME: %D : american date style: %m/%d/%y // FIXME: %E, %F, %G, %g, %h (man strftime) s["%H"] = (hr < 10) ? ("0" + hr) : hr; // hour, range 00 to 23 (24h format) s["%I"] = (ir < 10) ? ("0" + ir) : ir; // hour, range 01 to 12 (12h format) s["%j"] = (dy < 100) ? ((dy < 10) ? ("00" + dy) : ("0" + dy)) : dy; // day of the year (range 001 to 366) s["%k"] = hr; // hour, range 0 to 23 (24h format) s["%l"] = ir; // hour, range 1 to 12 (12h format) s["%m"] = (m < 9) ? ("0" + (1+m)) : (1+m); // month, range 01 to 12 s["%M"] = (min < 10) ? ("0" + min) : min; // minute, range 00 to 59 s["%n"] = "\n"; // a newline character s["%p"] = pm ? "PM" : "AM"; s["%P"] = pm ? "pm" : "am"; // FIXME: %r : the time in am/pm notation %I:%M:%S %p // FIXME: %R : the time in 24-hour notation %H:%M s["%s"] = Math.floor(this.getTime() / 1000); s["%S"] = (sec < 10) ? ("0" + sec) : sec; // seconds, range 00 to 59 s["%t"] = "\t"; // a tab character // FIXME: %T : the time in 24-hour notation (%H:%M:%S) s["%U"] = s["%W"] = s["%V"] = (wn < 10) ? ("0" + wn) : wn; s["%u"] = w + 1; // the day of the week (range 1 to 7, 1 = MON) s["%w"] = w; // the day of the week (range 0 to 6, 0 = SUN) // FIXME: %x : preferred date representation for the current locale without the time // FIXME: %X : preferred time representation for the current locale without the date s["%y"] = ('' + y).substr(2, 2); // year without the century (range 00 to 99) s["%Y"] = y; // year with the century s["%%"] = "%"; // a literal '%' character var re = /%./g; if (!Calendar.is_ie5 && !Calendar.is_khtml) return str.replace(re, function (par) { return s[par] || par; }); var a = str.match(re); for (var i = 0; i < a.length; i++) { var tmp = s[a[i]]; if (tmp) { re = new RegExp(a[i], 'g'); str = str.replace(re, tmp); } } return str; }; Date.prototype.__msh_oldSetFullYear = Date.prototype.setFullYear; Date.prototype.setFullYear = function(y) { var d = new Date(this); d.__msh_oldSetFullYear(y); if (d.getMonth() != this.getMonth()) this.setDate(28); this.__msh_oldSetFullYear(y); }; // END: DATE OBJECT PATCHES // global object that remembers the calendar window._dynarch_popupCalendar = null; ]]>
            false
            6436224800589466624 5244416 Cookie without HttpOnly flag set http://tap.rubiconproject.com Information Certain
            You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
          134. cd=false; Domain=.rubiconproject.com; Expires=Mon, 16-Apr-2012 23:37:34 GMT; Path=/
          135. dq=3|0|3|0; Expires=Mon, 16-Apr-2012 23:37:34 GMT; Path=/
          136. The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
            false
            5867691792868013056 5243904 Cross-domain Referer leakage http://www.lessonofpassion.com Information Certain
            If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

            You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

            Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

            Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
          137. http://www.lessonofpassion.com/lop_games.php?mygame=Gilligans%20Long%20Island
          138. The response contains the following links to other domains:
            • http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js
            • http://playforceone.com/salesforce/game_3dgf_06.jpg
            • http://playforceone.com/salesforce/games_hungirly_02.jpg
            • http://playforceone.com/salesforce/games_tori500_02.jpg
            • http://playforceone.com/salesforce/gamez_terra_01.jpg
            • http://refer.ccbill.com/cgi-bin/clicks.cgi?CA=929606-0000&PA=1892332
            • http://www.3dgirlfriends.com/?t=110138,1,53,0
            • http://www.adult-empire.com/rs.php?site_id=7625&wm_id=6818
            • http://www.facebook.com/sharer.php?u=http://lessonofpassion.com/lop_games.php?mygame=Gilligans Long Island&t=Gilligans Long Island - Lesson of Passion
            • http://www.google-analytics.com/urchin.js
            • http://www.playforceone.com/
            • http://www.sexizu.com/
            ]]>
            Lesson of Passion - Gilligans Long Island erotic flash game


            Username   Password  

            If you want to post comments and gain access to special features please your account.

               Gilligans Long Island




             
            GAME RATING:
            68.67%
            VIEWS:
            3386
            COMMENTS:
            4



            Other games

                 


            Comments

            Brono1601 2011.03.22
            way to much clicking is required. graphics are poor quality, story is boring

            alex0412 2011.02.10
            good game and very good pictures

            Xyzzy 2011.01.11
            Never did like the Charlie games too much. Some good ideas, but way to repetitive, and no thought required by the player, just point and click.

            ahclem 2010.11.27
            Charlie games are way too simple. More challenge is required


            Add your own comment - only for LOP CLUB members
            If you are new user please REGISTER for FREE.
            ]]> false 8508209119941905408 5245440 TRACE method is enabled http://www.epicdreams.com Information Certain
            Although this behaviour is apparently harmless in itself, it can sometimes be leveraged to support attacks against other application users. If an attacker can find a way of causing a user to make a TRACE request, and can retrieve the response to that request, then the attacker will be able to capture any sensitive data which is included in the request by the user's browser, for example session cookies or credentials for platform-level authentication. This may exacerbate the impact of other vulnerabilities, such as cross-site scripting.]]>
            false
            6345225850921381888 5243904 Cross-domain Referer leakage http://googleads.g.doubleclick.net Information Certain
            If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

            You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

            Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

            Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
          139. http://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-4063878933780912&output=html&h=90&slotname=2510184792&w=728&lmt=1303100969&flash=10.2.154&url=file%3A%2F%2F%2FC%3A%2Fcdn%2Fexamples%2Fdork%2Fxss%2Fxss-dork-cross-site-scripting-www1xxxmatchcom.html&dt=1303082969779&bpp=5&shv=r20110406&jsv=r20110415&correlator=1303082969829&frm=0&adk=1607234649&ga_vid=1408192107.1303082970&ga_sid=1303082970&ga_hid=8191800&ga_fc=0&u_tz=-300&u_his=1&u_java=1&u_h=1200&u_w=1920&u_ah=1156&u_aw=1920&u_cd=16&u_nplug=9&u_nmime=44&biw=1063&bih=1016&fu=0&ifi=1&dtd=89&xpc=ZoXLMOhfsn&p=file%3A//
          140. The response contains the following links to other domains:
            • http://pagead2.googlesyndication.com/pagead/abglogo/abg-en-100c-000000.png
            • http://pagead2.googlesyndication.com/pagead/sma8.js
            • http://www.google.com/url?ct=abg&q=https://www.google.com/adsense/support/bin/request.py%3Fcontact%3Dabg_afc%26url%3Dfile:///C:/cdn/examples/dork/xss/xss-dork-cross-site-scripting-www1xxxmatchcom.html%26hl%3Den%26client%3Dca-pub-4063878933780912%26adU%3Dwww.appliedtrust.com%26adT%3DWeb-App%2BSecurity%2BJobs%26adU%3Dwww.NetworkAutomation.com%26adT%3DScripting%2BAutomation%26adU%3Dwww.ErrorTeck.com%26adT%3DJava%2BScript%2BRepair%26gl%3DUS&usg=AFQjCNFFuqZOzhIpqTtP_f16JD0F4OjfQA
            ]]>
            • Web-App Security Jobs Work/Live in Boulder - fun web app security position w/ great benefits www.appliedtrust.com
            • Scripting Automation Create Complex Scripts in Minutes! No Code. Download Free Trial Now. www.NetworkAutomation.com
            • Java Script Repair Quick & Easy Java Script Error Fix! Download & Fix Now ??? Takes 3 Min. www.ErrorTeck.com
            Ads by Google
            ]]>
            false
            5702675112053885952 5245440 TRACE method is enabled http://textad.xxxmatch.com Information Certain
            Although this behaviour is apparently harmless in itself, it can sometimes be leveraged to support attacks against other application users. If an attacker can find a way of causing a user to make a TRACE request, and can retrieve the response to that request, then the attacker will be able to capture any sensitive data which is included in the request by the user's browser, for example session cookies or credentials for platform-level authentication. This may exacerbate the impact of other vulnerabilities, such as cross-site scripting.]]>
            false
            6870347257110950912 5244928 Password field with autocomplete enabled http://utopiaguide.com Low Certain
            The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
            autocomplete="off"
            within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
          141. http://utopiaguide.com/forums/login.php?do=login
          142. The form contains the following password field with autocomplete enabled:
            • vb_login_password
            ]]>
            UtopiaGuide



            Go Back   UtopiaGuide
            Register FAQ Members List CalendarvBookieToplist Today's Posts

            vBulletin Message
            You are not logged in or you do not have permission to access this page. This could be due to one of several reasons:
            1. You are not logged in. Fill in the form at the bottom of this page and try again.
            2. You may not have sufficient privileges to access this page. Are you trying to edit someone else's post, access administrative features or some other privileged system?
            3. If you are trying to post, the administrator may have disabled your account, or it may be awaiting activation.
            Log in
            User Name:
            Password:
            Forgotten Your Password?
            The administrator may have required you to register before you can view this page.

            Forum Jump

            All times are GMT -8. The time now is 12:32 PM.

            This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

            Powered by vBulletin® Version 3.6.8
            Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

            ]]>
            false
            253892652062441472 1049088 SQL injection http://www.thatshiphop.com High Certain
            Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.]]>
            every variable data item that is incorporated into database queries, even if it is not obviously tainted, to prevent oversights occurring and avoid vulnerabilities being introduced by changes elsewhere within the code base of the application.

            You should be aware that some commonly employed and recommended mitigations for SQL injection vulnerabilities are not always effective:
            • One common defence is to double up any single quotation marks appearing within user input before incorporating that input into a SQL query. This defence is designed to prevent malformed data from terminating the string in which it is inserted. However, if the data being incorporated into queries is numeric, then the defence may fail, because numeric data may not be encapsulated within quotes, in which case only a space is required to break out of the data context and interfere with the query. Further, in second-order SQL injection attacks, data that has been safely escaped when initially inserted into the database is subsequently read from the database and then passed back to it again. Quotation marks that have been doubled up initially will return to their original form when the data is reused, allowing the defence to be bypassed.
            • Another often cited defence is to use stored procedures for database access. While stored procedures can provide security benefits, they are not guaranteed to prevent SQL injection attacks. The same kinds of vulnerabilities that arise within standard dynamic SQL queries can arise if any SQL is dynamically constructed within stored procedures. Further, even if the procedure is sound, SQL injection can arise if the procedure is invoked in an unsafe manner using user-controllable data.
            ]]>

            The database appears to be MySQL.]]>
            false ThatsHiphop.com - Page Not Found
            ThatsHiphop.com

             

            The file you have requested was not found.

             

            ]]>
            false
            7567041813136342016 5244416 Cookie without HttpOnly flag set http://d.audienceiq.com Information Certain
            You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
          143. uid=3997938986913610990; Domain=.audienceiq.com; Expires=Fri, 14-Oct-2011 23:37:30 GMT; Path=/
          144. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
            false
            2020615211498685440 5244416 Cookie without HttpOnly flag set http://scholar.google.com Information Certain
            You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
          145. GSP=ID=0772c9d5ef13aaaf; expires=Sun, 17-Jan-2038 19:14:07 GMT; path=/; domain=.scholar.google.com
          146. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
            Google Scholar

            Google Scholar


             Advanced Scholar Search

            ( )

            Stand on the shoulders of giants


            Go to Google Home - About Google - About Google Scholar

            ©2011 Google

            ]]>
            false
            5696438093185580032 5243904 Cross-domain Referer leakage http://www.google.com Information Certain
            If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

            You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

            Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

            Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
          147. http://www.google.com/url?sa=t&source=web&cd=5&ved=0CCkQFjAE&url=http%3A%2F%2Fwww.verifiedplaymates.com%2FLong-Island_NY%2Ferotic-services&ei=jUmrTe7NIsbJgQep7-HzBQ&usg=AFQjCNEsCVL8-oCA7iGtzJ9I6dDbzZXqNA
          148. The response contains the following link to another domain:
            • http://www.verifiedplaymates.com/Long-Island_NY/erotic-services
            ]]>
            302 Moved

            302 Moved

            The document has moved here. ]]>
            false
            7371734369170421760 2097920 Cross-site scripting (reflected) http://adserving.cpxinteractive.com Low Certain
            The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

            Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

            The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
          149. Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
          150. User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
          151. In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
            2a6de'-alert(1)-'ca8a29e5bc4 was submitted in the Referer HTTP header. This input was echoed unmodified in the application's response.

            This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

            Because the user data that is copied into the response is submitted within a request header, the application's behaviour is not trivial to exploit in an attack against another user. In the past, methods have existed of using client-side technologies such as Flash to cause another user to make a request containing an arbitrary HTTP header. If you can use such a technique, you can probably leverage it to exploit the XSS flaw. This limitation partially mitigates the impact of the vulnerability.]]>
            document.write('');

            ]]>
            false
            255441528188542976 5244416 Cookie without HttpOnly flag set http://optimized-by.rubiconproject.com Information Certain
            You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
          152. rdk=8249/13345; expires=Mon, 18-Apr-2011 00:50:04 GMT; max-age=60; path=/; domain=.rubiconproject.com
          153. ses2=13345^3; expires=Mon, 18-Apr-2011 04:59:59 GMT; max-age=29395; path=/; domain=.rubiconproject.com
          154. The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
            <\/script>"; rubicon_tag_code = rubicon_tag_code.replace(/##RUBICON_CB##/g,rubicon_cb); document.write(rubicon_tag_code); document.write("\"Quantcast\"/


            Username   Password  

            If you want to post comments and gain access to special features please your account.
            Login ERROR

            You have not defined your LOGIN or PASSWORD.
            Please LOGIN again using correct data.

            If you are new user please REGISTER
            ]]> false Lesson of Passion - erotic flash games


            Username   Password  

            If you want to post comments and gain access to special features please your account.
            Login ERROR

            You have not defined your LOGIN or PASSWORD.
            Please LOGIN again using correct data.

            If you are new user please REGISTER
            ]]> false 650447309975094272 1050368 XML injection http://static.xxxmatch.com Medium Tentative
            This kind of vulnerability can be difficult to detect and exploit remotely; you should review the application's response, and the purpose which the relevant input performs within the application's functionality, to determine whether it is indeed vulnerable.]]>
            ]]>> was appended to the value of the REST URL parameter 3. The application's response indicated that this input may have caused an error within a server-side XML or SOAP parser, suggesting that the input has been inserted into an XML document or SOAP message without proper sanitisation. ]]> >/swfmacmousewheel.js HTTP/1.1 Host: static.xxxmatch.com Proxy-Connection: keep-alive Referer: http://www.xxxmatch.com/dating/freesex User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 Cookie: referral_path=%2F63790%2Fverifiedplaymatespop%2F%2F0%2F0 ]]> 404 - Not Found

            404 - Not Found

            ]]>
            false
            4112970631364489216 5244160 Cross-domain script include http://blogs.babble.com Information Certain
            If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
          155. http://edge.quantserve.com/quant.js
          156. ]]>
            Nothing found for Strollerderby 2011 04 12 Long-island-serial-killer-did-they-murder-a-toddler-as-well X26amp

            Best of Babble.com



            About strollerderby

            Sierra Black is a blogger, writer and mother. Her personal essays have appeared in Mothering Magazine, the New York Times and Babble. Sierra writes primarily about parenting, personal finance and green living. When she's not chasing deadlines or toddlers, Sierra spends her time gardening, crafting and finding new non-toxic ways to get crayon off the walls. Before she answered to Mommy, Sierra was a features reporter for the Eagle-Tribune newspaper. To follow her adventures parenting three kids in the Boston area check out her personal blog, ChildWild.

            Meredith Carroll is a native New Yorker who now lives in Aspen, Colo., where she writes her weekly, award-winning newspaper column, Meredith Pro Tem. She also contributes regularly to The Huffington Post and has appeared in other publications such as The New York Times and Town & Country. She is a former TV producer and radio host, and enjoyed (or suffered through) a brief and undistinguished career in feature films as well. Rush Limbaugh once called her a babe, although she’s not sure if that’s something about which she should be bragging. Read more at MeredithCarroll.com.

            Carolyn Castiglia is a comedian and writer based in New York who is known for wowing audiences with her high-energy stand-up and brilliantly funny freestyle rap. You may recognize her hip-hop alter ego, Miss CKC, from Comedy Central, VH1 and MTV2. Carolyn's web videos have been nominated for an ECNY Award and featured in two issues of Entertainment Weekly magazine. Her jokes have appeared in Time Out New York, The New York Post, The Idiot's Guide to Jokes and Life & Style magazine. You can find Carolyn's writing elsewhere on online at MarieClaire.com and The Huffington Post. She blogs at http://carolyncastiglia.blogspot.com.

            Sunny Chanel resides in San Francisco with her husband, daughter, beagle and a tarantula named Lulu. She has strung words together for the SF Weekly, Bust, and Jane among others and currently writes for Babble's Famecrawler and Strollerderby blog.

            Katie Allison Granju is the married mother of five kids ranging in age from infancy to high school. She works full time as the Social Media Manager with a large cable network. When not trying to find someone's socks, she enjoys political debate, powerpop and Indian food. After losing her oldest child to drug addiction, Katie is passionate about raising parental awareness of teenage addiction and overdose.

            Madeline Holler, writer and freelance journalist, has contributed essays to Babble since the site's launch in 2006 and has blogged for Strollerderby since 2007. Her work has appeared elsewhere in print and on the web, including Salon. A native of the Midwest, she lives in Long Beach, Calif., where she's raising two daughters and a son.

            John Cave Osborne was baptized by fire, when it comes to the institution of parenting. In a span of just thirteen months, he morphed from consummate bachelor into father of four thanks to marrying a single mom, then quickly conceiving triplets. The author and freelance writer lives with his loud and delightfully dysfunctional brood in Knoxville, TN. On the rare occasions when he is not with his family, you can most certainly find him somewhere in the woods, most likely backpacking along the Appalachian Trail.

            Danielle Sullivan is the mom of three, editor by trade, writer at heart, and native New Yorker. She has worked in the parenting magazine world for over 10 years, is the former Managing Editor of NYMetroParents, and has written for NY Family, Midwifery Today and Long Island Woman. She lives with her husband and children in Brooklyn, NY. When not on the little league field, at a school event or in a pediatrician’s waiting room, Danielle can be found listening to a Dave Matthews song and writing away at her computer. Visit her at Just Write Mom.

            Heather Turgeon is a psychotherapist and science writer. She authors the weekly Science of Kids column for Babble and is a regular contributor to Strollerderby. Heather also runs groups for new moms at the Pump Station in Los Angeles. Follow the science of kids to keep up with the latest research in child development and parenting.

             
            ]]>
            false
            1552707736417017856 2097920 Cross-site scripting (reflected) http://pocketbikeplanet.us.intellitxt.com High Certain
            The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

            Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

            The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
          157. Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
          158. User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
          159. In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
            a7928'-alert(1)-'e05b35c7561 was submitted in the name of an arbitrarily supplied request parameter. This input was echoed unmodified in the application's response.

            This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
            false
            6561130974042896384 5244416 Cookie without HttpOnly flag set http://webmail.aol.com Information Certain
            You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
          160. Context=ver:3&sid:814021f8-6f90-4ac5-af9d-f363ae7c3e03&rt:STANDARD&ckd:.mail.aol.com&ckp:%2f&ha:gCa3iwZcRvFlqwKql8HRA82awBQ%3d&; domain=.mail.aol.com; path=/
          161. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
            Object moved

            Object moved to here.

            ]]>
            false
            4740075192636742656 5244928 Password field with autocomplete enabled https://www.verifiedplaymates.com Low Certain
            The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
            autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
          162. https://www.verifiedplaymates.com/cgi-bin/playmates/register.cgi?pa=do_process_provider_signup
          163. The form contains the following password fields with autocomplete enabled:
            • Password
            • Confirm_Password
            ]]>
            Verified Playmates - Local Escorts

            Verified Playmates - Escorts
            Fetish Fetish / Fantasy Tantra Tantra BDSM BDSM
            Error: No action defined.
            Create Your vPlaymates Account - Ad Posting is for Providers Only. It's Very Easy To Submit Your Ad Here!
            Choose a UserName:
            Password:
            Confirm Password:
            (Retype Password)
            Choose Account Type: Independent: Manage your own account
            Agency: Allows you to quickly manage multiple provider's accounts.
            Ad Contact Info
            Your Nick Name:
            (Displayed Alias):

            ( This is displayed as your identity on your ad copy instead, so that your real login username here is never displayed. )
            Phone:
            Email:
            *Valid email required to validate your posting. A confirmation email will be sent here for you to approve.
            Your Website:
            Your Profile Description:
            Ethnicity:
            Age:
            Eye Color:
            Hair Color:
            Build:
            Bust:
            Cup Size:
            Kitty:
            Height: ft.   inches
            Your Ad Copy and Placement Info:
            Place in Category(s):
            Incall Escorts
            Outcall Escorts
            GFE Playmates
            Tantra / Dakini
            Massage
            BDSM
            Fetish / Fantasy

            Trangender / Transexual / Shemale
            Place Ad in City:
            Place Ad in City: ( Choose a city )

            Arizona
            Phoenix
            Tucson

            California
            Anaheim
            Bakersfield
            Fremont
            Fresno
            Hollywood
            Huntington Beach
            Inland Empire
            Long Beach
            Los Angeles
            Modesto
            Monterey
            Oakland
            Orange County
            Palm Springs
            Riverside
            Sacramento
            San Diego
            San Fernando
            San Francisco
            San Jose
            Santa Ana
            Stockton

            Colorado
            Colorado Springs
            Denver

            District of Columbia
            Washington D.C.


            Florida
            Fort Lauderdale
            Jacksonville
            Miami
            Orlando
            Tampa

            Georgia
            Atlanta

            Hawaii
            Honolulu

            Illinois
            Chicago

            Indiana
            Indianapolis

            Kentucky
            Louisville

            Louisiana
            New Orleans

            Massachusetts
            Boston

            Maryland
            Baltimore

            Michigan
            Detroit

            Minnesota
            Minneapolis


            Missouri
            Kansas City
            Saint Louis

            North Carolina
            Charlotte
            Raleigh

            Nebraska
            Omaha

            New Jersey
            Atlantic City

            New Mexico
            Albuquerque

            Nevada
            Carson City
            Las Vegas
            Reno
            South Lake Tahoe

            New York
            Long Island
            Manhattan
            Nassau
            New York City
            Staten Island

            Ohio
            Cincinnati
            Cleveland
            Columbus
            Dayton


            Oklahoma
            Oklahoma City

            Oregon
            Portland

            Pennsylvania
            Allentown
            Philadelphia
            Pittsburgh

            Tennessee
            Memphis
            Nashville

            Texas
            Arlington
            Austin
            Dallas
            El Paso
            Fort Worth
            Houston
            San Antonio

            Utah
            Salt Lake City

            Virginia
            Arlington
            Norfolk
            Virginia
            Virginia Beach

            Washington
            Seattle
            Vancouver

            Wisconsin
            Milwaukee

            Canada: Montreal Toronto Niagara Vancouver     United Kingdom: London
            Rate Per Hour: (Optional)
            Ad Title: (69 character maximum)
            Your Text Ad Copy:
            (No HTML)
            Availability Note:
            (69 character maximum.)
             


            ]]>
            false
            820452388280648704 8389120 HTML does not specify charset http://www.longislanderotic.com Information Certain
            In most cases, the absence of a charset directive does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
            charset=ISO-8859-1.]]> ErrorThe system cannot find the file specified. ]]> false
            6360365788304958464 5244928 Password field with autocomplete enabled http://utopiaguide.com Low Certain
            The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
            autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
          164. http://utopiaguide.com/forums/login.php?do=login
          165. The form contains the following password field with autocomplete enabled:
            • vb_login_password
            ]]>
            UtopiaGuide - Smilies



            Go Back   UtopiaGuide > FAQ
            Register FAQ Members List CalendarvBookieToplist Today's Posts

            Smilies
            'Smilies' are small graphical images that can be used to convey an emotion or feeling. If you have used email or internet chat, you are likely familiar with the smilie concept. Certain standard strings are automatically converted into smilies. Try twisting your head on one side if you do not 'get' smilies; using a bit of imagination should reveal a face of some description.

            If you want to disable smilies in a post that you make, you can select the 'Disable Smilies' option when posting. This is particularly useful if you are posting program code and you do not want ;) converted to a smilie face!

            Standard Smilies
            What to Type Resulting Graphic Meaning
            ;) Wink Wink
            :D Big Grin Big Grin
            :o Embarrassment Embarrassment
            :( Frown Frown
            :) Smilie Smilie
            :confused: Confused Confused
            :eek: EEK! EEK!
            :mad: Mad Mad
            :rolleyes: Roll Eyes (Sarcastic) Roll Eyes (Sarcastic)
            :cool: Cool Cool
            :p Stick Out Tongue Stick Out Tongue
            All times are GMT -8. The time now is 12:32 PM.

            This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

            Powered by vBulletin® Version 3.6.8
            Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

            ]]>
            false
            8625369086670635008 2097920 Cross-site scripting (reflected) http://choices.truste.com High Certain
            The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

            Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

            The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
          166. Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
          167. User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
          168. In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
            72bf5<script>alert(1)</script>90779ed9993 was submitted in the w parameter. This input was echoed unmodified in the application's response.

            This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
            alert(1)90779ed9993&h=250&ox=20&zi=10002&plc=tr&iplc=ctr HTTP/1.1 Host: choices.truste.com Proxy-Connection: keep-alive Referer: http://redcated/COM/iview/286738779/direct;wi.300;hi.250/01?click=http%3A%2F%2Fads%2Ebluelithium%2Ecom%2Fclk%3F2%2C13%253B7979b33d9e4bd6d0%253B12f652ef121%2C0%253B%253B%253B2538480843%2C5jBaAPSUGACV6HcAAAAAAE6rHgAAAAAAAgAAAAIAAAAAAP8AAAABEG8SHgAAAAAA%2DQEtAAAAAAB8bigAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAB6sAUAAAAAAAIAAwAAAAAAIfEuZS8BAAAAAAAAADhjNWNiMGI2LTY5MzItMTFlMC05NjA5LTAwMzA0OGQ2NjcyYQA4nyoAAAA%3D%2Chttp%253A%252F%252Fglobal%2Eard%2Eyahoo%2Ecom%252FSIG%253D15r2836hg%252FM%253D787833%2E14445075%2E14291840%2E13270877%252FD%253Dflickr%252FS%253D792600415%253ALREC%252FY%253DYAHOO%252FEXP%253D1303079863%252FL%253D1IHgjdG%5FaWaKRmeZTatPkQJwrcHW802rT5cAC%5F9Q%252FB%253DoVI1X0Je5ic%2D%252FJ%253D1303072663859267%252FK%253DsUGpy66vNZ9u8X6MUKcbSg%252FA%253D6261161%252FR%253D0%252F%252A%2524%2Chttp%253A%252F%252Fadjax%2Eflickr%2Eyahoo%2Ecom%252Fads%252F792600415%252Flrec%252F%2C%24http%3A%2F%2Ft.invitemedia.com%2Ftrack_click%3FauctionID%3D13030726651610996-80002%26campID%3D61369%26crID%3D80002%26pubICode%3D2949625%26pub%3D209944%26partnerID%3D64%26redirectURL%3D User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 ]]> \ \
            \ \
            \

            AT&T cares about your privacy. \ delivered this personalized ad based on your interests. \ This is a placeholder for custom text.\

            \ \
            \
            \

            Ad Choices by

            \
            \ \ \ '; var te_clr1_att02cont1_bi = {'baseName':'te-clr1-att02cont1','anchName':'te-clr1-att02cont1-anch','width':30072bf590779ed9993,'height':250,'ox':20,'oy':0,'plc':'tr','iplc':'ctr','intDivName':'te-clr1-att02cont1-itl','iconSpanId':'te-clr1-att02cont1-icon','backgroundColor':'white','opacity':.8,'filterOpacity':80,'containerId':'att02cont1','noticeBaseUrl':'http://choices.truste.com/camsg?','interstitial':te_clr1_att02cont1_ib,'interstitialWidth':240,'interstitialHeight':220,'popTab':false,'showLink':'javascript:truste.ca.showpop(te_clr1_att02cont1_bi)','hideLink':'javascript:self.close()','icon':'http://choices.truste.com/assets/admarker.png','icon_cam':'http://choices.truste.com/assets/adicon.png','iconText':'','aid':'att02','pid':'mec01','zindex':'10002','cam':'2'}; var tecabaseurl = 'choices.truste.com'; truste.ca.addEvent(window, 'load', function() { if(!truste.defjsload) { var element = document.createElement('script'); element.src = 'http://' + tecabaseurl + '/js/tecaintjs.js'; document.body.appendChild(element); truste.defjsload = true; } truste.ca.addBinding(te_clr1_att02cont1_bi); }); ]]>
            false
            1472634894197406720 2097920 Cross-site scripting (reflected) http://choices.truste.com High Certain
            The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

            Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

            The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
          169. Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
          170. User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
          171. In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
            ec3c6<script>alert(1)</script>c946dfc6cab was submitted in the zi parameter. This input was echoed unmodified in the application's response.

            This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
            alert(1)c946dfc6cab&plc=tr&iplc=ctr HTTP/1.1 Host: choices.truste.com Proxy-Connection: keep-alive Referer: http://redcated/COM/iview/286738779/direct;wi.300;hi.250/01?click=http%3A%2F%2Fads%2Ebluelithium%2Ecom%2Fclk%3F2%2C13%253B7979b33d9e4bd6d0%253B12f652ef121%2C0%253B%253B%253B2538480843%2C5jBaAPSUGACV6HcAAAAAAE6rHgAAAAAAAgAAAAIAAAAAAP8AAAABEG8SHgAAAAAA%2DQEtAAAAAAB8bigAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAB6sAUAAAAAAAIAAwAAAAAAIfEuZS8BAAAAAAAAADhjNWNiMGI2LTY5MzItMTFlMC05NjA5LTAwMzA0OGQ2NjcyYQA4nyoAAAA%3D%2Chttp%253A%252F%252Fglobal%2Eard%2Eyahoo%2Ecom%252FSIG%253D15r2836hg%252FM%253D787833%2E14445075%2E14291840%2E13270877%252FD%253Dflickr%252FS%253D792600415%253ALREC%252FY%253DYAHOO%252FEXP%253D1303079863%252FL%253D1IHgjdG%5FaWaKRmeZTatPkQJwrcHW802rT5cAC%5F9Q%252FB%253DoVI1X0Je5ic%2D%252FJ%253D1303072663859267%252FK%253DsUGpy66vNZ9u8X6MUKcbSg%252FA%253D6261161%252FR%253D0%252F%252A%2524%2Chttp%253A%252F%252Fadjax%2Eflickr%2Eyahoo%2Ecom%252Fads%252F792600415%252Flrec%252F%2C%24http%3A%2F%2Ft.invitemedia.com%2Ftrack_click%3FauctionID%3D13030726651610996-80002%26campID%3D61369%26crID%3D80002%26pubICode%3D2949625%26pub%3D209944%26partnerID%3D64%26redirectURL%3D User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 ]]> \ \
            \
            \ \

            \ This ad was delivered on behalf of AT&T. It was automatically matched to your computer\'s browsing activity. AT&T is commited to providing you with transparency and control over the types of advertising you see by us.\


            \ More information & opt-out options »

            \ Online Privacy Information »

            \ AT&T Privacy FAQ »\

            \
            \
            \
            \ Powered by \
            \ \ '; var te_clr1_att02cont1_bi = {'baseName':'te-clr1-att02cont1','anchName':'te-clr1-att02cont1-anch','width':300,'height':250,'ox':20,'oy':0,'plc':'tr','iplc':'ctr','intDivName':'te-clr1-att02cont1-itl','iconSpanId':'te-clr1-att02cont1-icon','backgroundColor':'white','opacity':.8,'filterOpacity':80,'containerId':'att02cont1','noticeBaseUrl':'http://choices.truste.com/camsg?','interstitial':te_clr1_att02cont1_ib,'interstitialWidth':300,'interstitialHeight':250,'popTab':false,'showLink':'javascript:truste.ca.showoverlay(te_clr1_att02cont1_bi)','hideLink':'javascript:truste.ca.hideoverlay(te_clr1_att02cont1_bi)','icon':'http://choices.truste.com/assets/admarker.png','icon_cam':'http://choices.truste.com/assets/adicon.png','iconText':'','aid':'att02','pid':'mec01','zindex':'10002ec3c6c946dfc6cab','cam':'2'}; var tecabaseurl = 'choices.truste.com'; truste.ca.addEvent(window, 'load', function() { if(!truste.defjsload) { var element = document.createElement('script'); element.src = 'http://' + tecabaseurl + '/js/tecaintjs.js'; document.body.appendChild(element); truste.defjsload = true; } truste.ca.addBinding(te_clr1_att02cont1_bi); }); ]]>
            false
            5775561346872061952 8389888 Content type is not specified http://ad.turn.com Information Certain
            In most cases, the absence of a content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
            |>|>|>|>|>|>|>@"@B@?A?]]> false
            5160331805912845312 6292992 Robots.txt file http://safebrowsing.clients.google.com Information Certain
            The presence of the robots.txt does not in itself present any kind of security vulnerability. However, it is often used to identify restricted or private areas of a site's contents. The information in the file may therefore help an attacker to map out the site's contents, especially if some of the locations identified are not linked from elsewhere in the site. If the application relies on robots.txt to protect access to these areas, and does not enforce proper access control over them, then this presents a serious vulnerability.]]>
            false
            2860513615739250688 5244416 Cookie without HttpOnly flag set http://www.verifiedplaymates.com Information Certain
            You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
          172. apache2_cookie=173.193.214.243.1303071693305865; path=/; expires=Thu, 16-Jun-11 20:21:33 GMT
          173. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
            false
            2358498773718504448 8389888 Content type is not specified http://ads.pointroll.com Information Certain
            In most cases, the absence of a content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
            ")]]> false
            8478436349816670208 5244160 Cross-domain script include http://www.oliverwillis.com Information Certain
            If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
          174. http://ads.pubmatic.com/AdServer/js/showad.js
          175. http://pagead2.googlesyndication.com/pagead/show_ads.js
          176. http://s30.sitemeter.com/js/counter.js?site=s30livenws
          177. http://stats.wordpress.com/e-201115.js
          178. http://wahoha.com/widget/tAcmGI
          179. http://widgets.outbrain.com/claim.js
          180. ]]>
            Nothing found for Livenews X26amp

            Breaking News USA

            Latest Breaking News »

            Page Not Found

            The story you are looking for has been removed or moved elsewhere. Search above to find what you need, go to our front page, or click on the most recent stories here:

            Breaking News

            Neighbor: Joseph Naso Had Boxes Of Notebooks With Torture Fantasies

            The Rock To Return To WWE May 2

            Hillary Clinton Offers Japan Support

            Serena Williams In Bikini In Miami

            FUNNY PICTURE: Beauty & The Beast In Bondage

            Sophie Cranston: Kate Middleton Wedding Dress Designer

            Pope On Palm Sunday: Tech Can’t Replace God

            UK Apartment At One Hyde Park Sells For $220 Million

            Forum Plotted Revenge Vs. Long Island Serial Killer Victim Amber Lynn Costello

            “El Kilo” Drug Kingpin Caught In Mexico

            Cee-Lo Green Cut Off At Coachella

            Lauren Goodger: Trampoline Accident Caused Plastic Surgery

            Iran Accuses Siemens Of Helping USA With Stuxnet Virus Attack

            Rihanna In Red

            Nicolas Cage Arrested For Drunken Domestic Abuse

            Top Poker Sites Shut Down By FBI

            Facebook Sues “Facebook Of Sex”

            Angelica Rangel: Illinois Teacher Accused Of Sex With Student

            Condoleezza Rice Appearing On “30 Rock”

            Evangeline Lilly Pregnant With First Baby

            Vittorio Arrigoni: Italian Peace Activists Killed By Islamists

            Kristen LaBrie Gets 8-10 Years For Withholding Cancer Medicine From Son

            Emma Watson Has 21st Birthday

            Walter Breuning: World’s Oldest Man Dies At 114

            HD Nintendo Wii 2 Coming To E3?

            Neil Gaiman’s “American Gods” Probably Coming To HBO

            Samuel L. Jackson Playing Martin Luther King On Broadway

            Holly Bobo: Tennessee Woman Missing

            Study: 98% Of Catholic Women Use Birth Control Banned By Church

            Crystal Mangum: Duke Lacrosse Accuser Under Suspicion For Murder Of Boyfriend

            PHOTOS: Courteney Cox At Late Show With David Letterman

            Sarah Palin Claims Alleged Stalker Shawn Christy Made Rape Threat

            Moody’s, S&P Helped Cause Financial Crisis

            Obama Kicking Off Reelection Campaign In Chicago

            VIDEO: Rise Of The Planet Of The Apes Teaser Trailer

            Hunter Bryce: Porn Star Found Dead

            Internet Advertising Hits Record High Revenue

            Scarlett Johansson Moves In With Sean Penn

            VIDEO: “Abduction” Movie Trailer

            Jun Young Su: American Arrested In North Korea

            WWE Diva Gail Kim Denies Retirement Rumors

            Witness: Berlusconi Parties Were Erotic

            Kyle James Kvasnicka: College Women’s Volleyball Coach Accused Of Sex Crime

            Gary Plummer: 49ers Broadcaster Fired After Sexy Podcast

            Arielle Kebbel At Scream 4 Premiere

            Mother Drives Herself, 3 Children Into Hudson River

            15 Year Old Boy Charged In Murder Of Teen Andy Zeng

            Joseph Naso: Photographer Could Be Serial Killer

            Study: Alcohol Helps Brain Remember

            Sugar Ray Leonard Voted Off Dancing With The Stars

            Follow on Twitter
            Follow on Facebook

            Latest News

            Neighbor: Joseph Naso Had Boxes Of Notebooks With Torture Fantasies

            The Rock To Return To WWE May 2

            Hillary Clinton Offers Japan Support

            Serena Williams In Bikini In Miami

            FUNNY PICTURE: Beauty & The Beast In Bondage

            Sophie Cranston: Kate Middleton Wedding Dress Designer

            Pope On Palm Sunday: Tech Can’t Replace God

            UK Apartment At One Hyde Park Sells For $220 Million

            Forum Plotted Revenge Vs. Long Island Serial Killer Victim Amber Lynn Costello

            “El Kilo” Drug Kingpin Caught In Mexico

            Cee-Lo Green Cut Off At Coachella

            Lauren Goodger: Trampoline Accident Caused Plastic Surgery

            Iran Accuses Siemens Of Helping USA With Stuxnet Virus Attack

            Rihanna In Red

            Nicolas Cage Arrested For Drunken Domestic Abuse

            Top Poker Sites Shut Down By FBI

            Facebook Sues “Facebook Of Sex”

            Angelica Rangel: Illinois Teacher Accused Of Sex With Student

            Condoleezza Rice Appearing On “30 Rock”

            Evangeline Lilly Pregnant With First Baby

            Vittorio Arrigoni: Italian Peace Activists Killed By Islamists

            Kristen LaBrie Gets 8-10 Years For Withholding Cancer Medicine From Son

            Maximum Bio

            Celebrity Pictures
            Questions & Answers
            Movie Database

            Movie News

            ]]>
            false
            6142678450407237632 5244416 Cookie without HttpOnly flag set http://pixel.rubiconproject.com Information Certain
            You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
          181. rpb=5328%3D1%265671%3D1%264212%3D1%262372%3D1%263810%3D1%262374%3D1%266286%3D1%266073%3D1%265852%3D1%264210%3D1; expires=Tue, 17-May-2011 23:45:00 GMT; path=/; domain=.rubiconproject.com
          182. rpx=5328%3D11319%2C0%2C1%2C%2C%265671%3D11319%2C0%2C1%2C%2C%264212%3D11319%2C0%2C1%2C%2C%266286%3D11319%2C0%2C1%2C%2C%262372%3D11319%2C0%2C1%2C%2C%263810%3D11319%2C0%2C1%2C%2C%262374%3D11319%2C0%2C1%2C%2C%266073%3D11319%2C0%2C1%2C%2C%264210%3D11319%2C0%2C2%2C%2C%265852%3D11319%2C0%2C1%2C%2C; expires=Tue, 17-May-2011 23:45:00 GMT; path=/; domain=.pixel.rubiconproject.com
          183. put_1523=9QQxcTO5uH2Ia7Bk4vGS2S96ufOGsSDC; expires=Wed, 27-Apr-2011 23:45:00 GMT; path=/; domain=.rubiconproject.com
          184. The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
            false
            1450181103531244544 5243648 Cookie scoped to parent domain http://ad.turn.com Information Certain
          185. uid=2931142961646634775; Domain=.turn.com; Expires=Fri, 14-Oct-2011 23:37:29 GMT; Path=/
          186. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
            ]]> false
            4375836060008017920 6292224 Private IP addresses disclosed http://www.cloudscan.me Information Certain
            Discovering the private addresses used within an organisation can help an attacker in carrying out network-layer attacks aiming to penetrate the organisation's internal infrastructure.]]>
          187. 192.168.50.20
          188. ]]>
            Penetration Testing | Hoyt LLC: SQL Injection
            Showing newest posts with label SQL Injection. Show older posts
            Showing newest posts with label SQL Injection. Show older posts

            Sunday, April 17, 2011

            colivia.de, SQL Injection, Single Quote, DORK, CWE-89, CAPEC-66

            colivia.de, SQL Injection, Single Quote, DORK, CWE-89, CAPEC-66

            Issue:   SQL injection
            Severity:   High
            Confidence:   Firm
            Host:   http://www.colivia.de
            Path:   /submit.php


            Issue detail

            The name of an arbitrarily supplied request parameter appears to be vulnerable to SQL injection attacks. The payload " was submitted in the name of an arbitrarily supplied request parameter, and a database error message was returned. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

            The database appears to be MySQL.

            Remediation detail

            The application should handle errors gracefully and prevent SQL error messages from being returned in responses.

            Issue background

            SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

            Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.  

            SQL Injection in colivia.de, DORK, SQL Injection, CWE-89, CAPEC-66

            gabbr.com, SQL Injection, DORK, Single Quote, CWE-89, CAPEC-66

            gabbr.com, SQL Injection, DORK, Single Quote, CWE-89, CAPEC-66

            Issue:   SQL injection
            Severity:   High
            Confidence:   Firm
            Host:   http://www.gabbr.com
            Path:   /inc/fauxMenu.css


            Issue detail

            The REST URL parameter 1 appears to be vulnerable to SQL injection attacks. The payload ' was submitted in the REST URL parameter 1, and a database error message was returned. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

            The database appears to be MySQL.

            The application attempts to block SQL injection attacks but this can be circumvented by submitting a URL-encoded NULL byte () before the characters that are being blocked.

            Remediation detail

            The application should handle errors gracefully and prevent SQL error messages from being returned in responses. NULL byte bypasses typically arise when the application is being defended by a web application firewall (WAF) that is written in native code, where strings are terminated by a NULL byte. You should fix the actual vulnerability within the application code, and if appropriate ask your WAF vendor to provide a fix for the NULL byte bypass.

            Issue background

            SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

            Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.  


            SQL Injection in gabbr.com, DORK, SQL Injection, CWE-89, CAPEC-66

            longislanderotic.com, SQL Injection, Single Quote, DORK, CWE-89, CAPEC-66

            longislanderotic.com - OWNED and EXPOSED.

            Issue:   SQL injection
            Severity:   High
            Confidence:   Certain
            Host:   http://www.longislanderotic.com
            Path:   /longislanderotic/forum/

            All the user info is open for all to see via SQL Injection with Reverse Shell.


            Issue detail
            The name of an arbitrarily supplied request parameter appears to be vulnerable to SQL injection attacks. A single quote was submitted in the name of an arbitrarily supplied request parameter, and a database error message was returned. Two single quotes were then submitted and the error message disappeared. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

            The database appears to be Microsoft SQL Server.

            Remediation detail

            The application should handle errors gracefully and prevent SQL error messages from being returned in responses.

            Issue background

            SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

            Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.  


            SQL Injection in longislanderotic.com, DORK, SQL Injection, CWE-89, CAPEC-66
            http://xss.cx/examples/dork/sql-injection/4.16.2011-sql-injection-dork-poc-example-report-vulnerable-server.html#1.34


            Summary

            Severity:  High
            Confidence:  Firm
            Host:  http://www.longislanderotic.com
            Path:  /longislanderotic/forum/

            Issue detail

            The Referer HTTP header appears to be vulnerable to SQL injection attacks. The payload ',0,0,0)waitfor%20delay'0%3a0%3a20'-- was submitted in the Referer HTTP header, and a database error message was returned. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

            The database appears to be Microsoft SQL Server.

            Remediation detail

            The application should handle errors gracefully and prevent SQL error messages from being returned in responses.

            Request

            GET /longislanderotic/forum/ HTTP/1.1
            Host: www.longislanderotic.com
            Proxy-Connection: keep-alive
            Referer: http://www.google.com/search?hl=en&q=',0,0,0)waitfor%20delay'0%3a0%3a20'--
            User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16
            Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
            Accept-Encoding: gzip,deflate,sdch
            Accept-Language: en-US,en;q=0.8
            Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3

            Response

            HTTP/1.1 200 OK
            Connection: close
            Date: Sun, 17 Apr 2011 17:42:53 GMT
            Server: Microsoft-IIS/6.0
            X-Powered-By: ASP.NET
            Content-Type: text/html
            Set-Cookie: WWF=SID=zb688d2ede1dz9157b8c16f4219bdeaz; path=/longislanderotic
            Set-Cookie: ASPSESSIONIDQSBBADSQ=NBMDCGFBPOLHPEEEBPKECEJF; path=/
            Cache-control: private

            <br /><strong>Server Error in Forum Application</strong><br />An error has occured while writing to the database.<br />Please contact the forum administrator.<br /><br /><strong>Support Error Code:-</
            ...[SNIP]...
            <br />Microsoft OLE DB Provider for SQL Server<br />
            ...[SNIP]...

            amenme.com, Single Quote, SQL Injection, DORK, CWE-89, CAPEC-66

            amenme.com, Single Quote, SQL Injection, DORK, CWE-89, CAPEC-66

            Issue:   SQL injection
            Severity:   High
            Confidence:   Certain
            Host:   http://www.amenme.com
            Path:   /AmenMe/Amens/AmenToThis.aspx


            Issue detail

            The Referer HTTP header appears to be vulnerable to SQL injection attacks. A single quote was submitted in the Referer HTTP header, and a database error message was returned. Two single quotes were then submitted and the error message disappeared. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

            The database appears to be Microsoft SQL Server.

            Remediation detail

            The application should handle errors gracefully and prevent SQL error messages from being returned in responses.

            Issue background

            SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

            Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.  


            SQL Injection in amenme.com, DORK, SQL Injection, CWE-89, CAPEC-66

            Saturday, April 16, 2011

            brownrudnick.com, XSS, SQL Injection, CWE-89, CAPEC-66, CAPEC-86, Cross Site Scripting, CWE-79, DORK

            brownrudnick.com, XSS, SQL Injection, CWE-89, CAPEC-66, CAPEC-86, Cross Site Scripting, CWE-79, DORK




            Hoyt LLC Research comments that XSS and SQL Injection via DORK is an Unforgivable Vulnerability.


            Issue Background


            Reflected cross-site scripting vulnerabilities arise when data is copied from a request and echoed into the application's immediate response in an unsafe way. An attacker can use the vulnerability to construct a request which, if issued by another application user, will cause JavaScript code supplied by the attacker to execute within the user's browser in the context of that user's session with the application.

            The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

            Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).


            XSS in brownrudnick.com, DORK, Cross Site Scripting, CWE-79, CAPEC-86

            XSS in brownrudnick.com, DORK, Cross Site Scripting, CWE-79, CAPEC-86

            External References

            morrisonmahoney.com, XSS, SQL Injection, CWE-89, CAPEC-66, CAPEC-86, Cross Site Scripting, CWE-79, DORK

            morrisonmahoney.com, XSS, SQL Injection, CWE-89, CAPEC-66, CAPEC-86, Cross Site Scripting, CWE-79, DORK




            Hoyt LLC Research comments that XSS and SQL Injection via DORK is an Unforgivable Vulnerability.


            Issue Background


            Reflected cross-site scripting vulnerabilities arise when data is copied from a request and echoed into the application's immediate response in an unsafe way. An attacker can use the vulnerability to construct a request which, if issued by another application user, will cause JavaScript code supplied by the attacker to execute within the user's browser in the context of that user's session with the application.

            The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

            Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).


            XSS in morrisonmahoney.com, DORK, Cross Site Scripting, CWE-79, CAPEC-86

            XSS in morrisonmahoney.com, DORK, Cross Site Scripting, CWE-79, CAPEC-86

            External References

            Thursday, April 7, 2011

            skadden.com, SQL Injection, XSS, XML Injection, CWE-79, CWE-89, DORK

             About Us
            Hoyt LLC Research | Vulnerability Disclosure Policy
            Coordinated Disclosure | Uncoordinated Disclosure

            XSS.CX Research investigates and reports on security vulnerabilities embedded in Web Applications and Products used in wide-scale deployment.

            Hoyt LLC provides litigation expertise with research, forensic analysis and support services targeting the SS7, PSTN and IP Networks. Please use Live Chat to contact us 7x24x365.

            The responsibility for all software and hardware products rests with the Vendor alone, and we suggest that Vendors take that responsibility very seriously. Vulnerable Applications create Legal, Compliance and Regulatory exposure for all parties.

            The identification and reporting of emerging and known vulnerabilities is more difficult when details of a vulnerability are made public before by another 3rd party prior to an update being developed. When such events occur, Full Disclosure is our primary consideration, in order to protect the Public against malicious attackers whom may exploit the vulnerability.

            Subject: Full Disclosure

            XSS in skadden.com
            Timeline: 1) October 2010, Vulnerable Site contacted by external facing, public form.
            2) April 6, 2011, XSS remains unfixed despite IP|CIDR connect from *.skadden.com Host on 1-21-2011.
            3) Target also notified of multiple, critical vulnerabilities in October 2011, no response.

            XML + SQL Injection in skadden.com
            Timeline: 1) DORK Crawler identifies DNA indicating Blind and SQL Injection with XSS on 1/29/2011
            2) Vulnerable Site again contacted, no response.
            3) Disclosure on 4/6/2011

            Hoyt LLC Research and our Private Vulnerability Reporting are an opportunity for a Company to implement a resolution, demonstrate Best Practices, and work with a widely recognized research team to resolve all OWASP Top 10 issues in a timely manner, pro bono.

            Issue #1
            SQL Injection occurs when data input for example by a user is interpreted as a SQL command rather than normal data by the backend database. This is an extremely common vulnerability and its successful exploitation can have critical implications. SQL Injection is confirmed by executing a test SQL Query on the back-end database, for example, these Proof of Concepts (PoC's):

            Select @@version
            Microsoft SQL Server 2005 - 9.00.4053.00 (Intel X86) May 26 2009 14:24:20 Copyright (c) 1988-2005 Microsoft Corporation Standard Edition on Windows NT 5.2 (Build 3790: Service Pack 2)

            Select SUSER_SNAME()
            SKADCOM\svcCldFusion

            Select @@servername
            SKADLQS01\SKADLQS01

            Issue #2

            Multiple Adobe products with different Data Services versions are vulnerable to XML External Entity (XXE) and XML injection attacks. XML external Entities injection allows a wide range of XML based attacks, including local file disclosure, TCP scans and Denial of Service condition, which can be achieved by recursive entity injection, attribute blow up and other types of injection. For more information about the implications associated to this vulnerability, refer to the RFC2518 (17.7 Implications of XML External Entities): http://www.ietf.org/rfc/rfc2518.txt.

            Proof of Concept - REDACTED - PARTIAL

            EXAMPLE - DOCTYPE test ENTITY x3 SYSTEM c:/windows/win.ini

            Pattern found:
            ; for 16-bit app support

            Issue #3

            XSS - The Site provides many XSS vectors, including the ability access the File System. Possible Stored XSS and Reflected XSS attacks are made easy by bringing unsuspecting victims to the Skadden Site and inject a Payload from the skadden.com server.

            Issue background

            Reflected cross-site scripting vulnerabilities arise when data is copied from a request and echoed into the application's immediate response in an unsafe way. An attacker can use the vulnerability to construct a request which, if issued by another application user, will cause JavaScript code supplied by the attacker to execute within the user's browser in the context of that user's session with the application.
            Summary: Unforgivable Vulnerabilities, Lawyers, News, GRC, RISK, Exposure, No Experience Required

            Saturday, April 2, 2011

            SQL Injection, DORK, Single Quote, CWE-89, CAPEC-66, Database Error, April 1, 2011 Report


            Issue:   SQL injection
            Severity:   High
            Confidence:   Certain
            Host:   http://sql.injection.dorks


            Issue detail

            21 instances of this issue were identified, at the following locations:
            • http://www.usf.edu/server-info [REST URL parameter 1]
            • http://www.usf.edu/server-info [name of an arbitrarily supplied request parameter]
            • http://www.x17online.com/server-status [REST URL parameter 1]
            • http://www.usf.edu/server-status [REST URL parameter 1]
            • http://www.beeg.com/server-status [REST URL parameter 1]
            • http://www.usf.edu/server-status [name of an arbitrarily supplied request parameter]
            • http://www.beeg.com/server-status [name of an arbitrarily supplied request parameter]
            • http://www.beeg.com/favicon.ico [REST URL parameter 1]
            • http://www.tech-recipes.com/server-info [REST URL parameter 1]
            • http://www.qwickstep.com/server-status [REST URL parameter 1]
            • http://www.tech-recipes.com/server-status [REST URL parameter 1]
            • http://www.almanac.com/server-status [REST URL parameter 1]
            • http://www.travelscream.com/server-status [REST URL parameter 1]
            • http://www.comannet.com/server-status [REST URL parameter 1]
            • http://www.essortment.com/server-status [REST URL parameter 1]
            • http://www.lyricsdepot.com/server-status [REST URL parameter 1]
            • http://www.excite.com/server-status [REST URL parameter 1]
            • http://www.smartertravel.com/server-status [REST URL parameter 1]
            • http://www.helium.com/server-status [name of an arbitrarily supplied request parameter]
            • http://www.newsweek.com/server-status [name of an arbitrarily supplied request parameter]
            • http://www.comannet.com/server-status [name of an arbitrarily supplied request parameter]


            Issue background

            SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

            Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.

            Issue remediation

            The most effective way to prevent SQL injection attacks is to use parameterised queries (also known as prepared statements) for all database access. This method uses two steps to incorporate potentially tainted data into SQL queries: first, the application specifies the structure of the query, leaving placeholders for each item of user input; second, the application specifies the contents of each placeholder. Because the structure of the query has already defined in the first step, it is not possible for malformed data in the second step to interfere with the query structure. You should review the documentation for your database and application platform to determine the appropriate APIs which you can use to perform parameterised queries. It is strongly recommended that you parameterise every variable data item that is incorporated into database queries, even if it is not obviously tainted, to prevent oversights occurring and avoid vulnerabilities being introduced by changes elsewhere within the code base of the application.

            You should be aware that some commonly employed and recommended mitigations for SQL injection vulnerabilities are not always effective:
            • One common defence is to double up any single quotation marks appearing within user input before incorporating that input into a SQL query. This defence is designed to prevent malformed data from terminating the string in which it is inserted. However, if the data being incorporated into queries is numeric, then the defence may fail, because numeric data may not be encapsulated within quotes, in which case only a space is required to break out of the data context and interfere with the query. Further, in second-order SQL injection attacks, data that has been safely escaped when initially inserted into the database is subsequently read from the database and then passed back to it again. Quotation marks that have been doubled up initially will return to their original form when the data is reused, allowing the defence to be bypassed.
            • Another often cited defence is to use stored procedures for database access. While stored procedures can provide security benefits, they are not guaranteed to prevent SQL injection attacks. The same kinds of vulnerabilities that arise within standard dynamic SQL queries can arise if any SQL is dynamically constructed within stored procedures. Further, even if the procedure is sound, SQL injection can arise if the procedure is invoked in an unsafe manner using user-controllable data.       

            Friday, April 1, 2011

            politicalwire.com, SQL Injection, favicon.ico, DORK, CWE-89, CAPEC-66

            politicalwire.com, SQL Injection, favicon.ico, DORK, CWE-89, CAPEC-66

            Click to Execute URI in the form of http://politicalwire.com/favicon.ico' produces application response of:

            Error: pdo error: [1064: You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near ''/') or (fileinfo_url like '/favicon.ico'/index%')) and te' at line 2] in EXECUTE("select mt_fileinfo.* from mt_fileinfo JOIN mt_template ON fileinfo_template_id = template_id WHERE fileinfo_blog_id = 4 and ((fileinfo_url = '/favicon.ico'' or fileinfo_url = '/favicon.ico'/') or (fileinfo_url like '/favicon.ico'/index%')) and template_type != 'backup' order by length(fileinfo_url) asc")
            #0 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/extlib/adodb5/adodb.inc.php(1037): adodb_throw('pdo', 'EXECUTE', 1064, 'You have an err...', 'select mt_filei...', false, Object(ADODB_pdo))
            #1 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/extlib/adodb5/adodb.inc.php(1012): ADOConnection->_Execute('select mt_filei...', false)
            #2 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/extlib/adodb5/adodb.inc.php(1543): ADOConnection->Execute('select mt_filei...', false)
            #3 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/extlib/adodb5/adodb.inc.php(1380): ADOConnection->GetArray('select mt_filei...', false)
            #4 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/extlib/adodb5/adodb-active-record.inc.php(959): ADOConnection->GetAll('select mt_filei...', false)
            #5 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/extlib/adodb5/adodb.inc.php(2119): adodb_GetActiveRecordsClass(Object(ADODB_pdo), 'FileInfo', 'mt_fileinfo  JO...', 'fileinfo_blog_i...', false, false, Array, Array)
            #6 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/lib/class.baseobject.php(143): ADOConnection->GetActiveRecordsClass('FileInfo', 'mt_fileinfo  JO...', 'fileinfo_blog_i...', false, false, Array)
            #7 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/lib/mtdb.base.php(240): BaseObject->Find('fileinfo_blog_i...', false, false, Array)
            #8 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/mt.php(645): MTDatabase->resolve_url('/favicon.ico%27', 4)
            #9 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/mt.php(488): MT->resolve_url('/favicon.ico%27')
            #10 /nfs/c01/h08/mnt/1720/domains/politicalwire.com/html/mtview.php(6): MT->view()
            #11 {main}

            Monday, March 21, 2011

            Daily DORK, SQL Injection, Unforgivable Vulnerabilities, CWE-89, CAPEC-66, Scanner Lack of Coverage

            Daily DORK, SQL Injection, Unforgivable Vulnerabilities, CWE-89, CAPEC-66, Scanner Lack of Coverage

            Hoyt LLC Research asks the rhetorical question, does your Vulnerability Scanner test for Unforgivable Vulnerabilities? This is low hanging fruit. 1 in 6 major market vulnerability scanners does not see this DORK!

            Application Request:
            GET /ib2 HTTP/1.1
            Host: tools.ip2location.com
            User-Agent: '


            Application Response:
            ERROR [42000] [MySQL][ODBC 5.1 Driver][mysqld-5.1.31-community-log]You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '
            XSS in tools.ip2location.com, DORK, Cross Site Scripting, CWE-79, CAPEC-86

            Friday, March 18, 2011

            publisher.mediapass.com, XSS, CAPEC-86, Cross Site Scripting, CWE-79, CWE-89, SQL Injection, CAPEC-86, CAPEC-66

            publisher.mediapass.com, Login Form, XSS, SQL Injection, XSS Report


            Updated 4-8-2011 - Vendor is unresponsive after a series of e-mails. Inquiry made to when SQL Injection + XSS Vulnerability would be resolved.


            Issue Background


            Reflected cross-site scripting vulnerabilities arise when data is copied from a request and echoed into the application's immediate response in an unsafe way. An attacker can use the vulnerability to construct a request which, if issued by another application user, will cause JavaScript code supplied by the attacker to execute within the user's browser in the context of that user's session with the application.

            The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

            Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).


            XSS in publisher.mediapass.com, DORK, Cross Site Scripting, CWE-79, CAPEC-86

            XSS in publisher.mediapass.com, DORK, Cross Site Scripting, CWE-79, CAPEC-86

            External References

            Wednesday, March 16, 2011

            dce.sapha.com, DORK, SQL Injection, Single Quote, CWE-89, CAPEC-66

            CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')



            Issue: SQL injection
            Severity: High
            Confidence: Certain
            Host: http://dce.sapha.com
            Path: /engine.php


            Issue detail

            The ac parameter appears to be vulnerable to SQL injection attacks. A single quote was submitted in the ac parameter, and a database error message was returned. Two single quotes were then submitted and the error message disappeared. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

            The database appears to be MySQL.

            Remediation detail

            The application should handle errors gracefully and prevent SQL error messages from being returned in responses.

            Issue background

            SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

            Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.

            tours.sapha.com, CWE-89, CAPEC-66, DORK, SQL Injection, Single Quote

            tours.sapha.com, CWE-89, CAPEC-66, DORK, SQL Injection, Single Quote


            Issue: SQL injection
            Severity: High
            Confidence: Certain
            Host: http://tours.sapha.com
            Path: /


            Issue detail

            The scs_sid parameter appears to be vulnerable to SQL injection attacks. A single quote was submitted in the scs_sid parameter, and a database error message was returned. Two single quotes were then submitted and the error message disappeared. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

            The database appears to be MySQL.

            Remediation detail

            The application should handle errors gracefully and prevent SQL error messages from being returned in responses.

            Issue background

            SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

            Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.

            Remediation background

            The most effective way to prevent SQL injection attacks is to use parameterised queries (also known as prepared statements) for all database access. This method uses two steps to incorporate potentially tainted data into SQL queries: first, the application specifies the structure of the query, leaving placeholders for each item of user input; second, the application specifies the contents of each placeholder. Because the structure of the query has already defined in the first step, it is not possible for malformed data in the second step to interfere with the query structure. You should review the documentation for your database and application platform to determine the appropriate APIs which you can use to perform parameterised queries. It is strongly recommended that you parameterise every variable data item that is incorporated into database queries, even if it is not obviously tainted, to prevent oversights occurring and avoid vulnerabilities being introduced by changes elsewhere within the code base of the application.

            You should be aware that some commonly employed and recommended mitigations for SQL injection vulnerabilities are not always effective:
            • One common defence is to double up any single quotation marks appearing within user input before incorporating that input into a SQL query. This defence is designed to prevent malformed data from terminating the string in which it is inserted. However, if the data being incorporated into queries is numeric, then the defence may fail, because numeric data may not be encapsulated within quotes, in which case only a space is required to break out of the data context and interfere with the query. Further, in second-order SQL injection attacks, data that has been safely escaped when initially inserted into the database is subsequently read from the database and then passed back to it again. Quotation marks that have been doubled up initially will return to their original form when the data is reused, allowing the defence to be bypassed.
            • Another often cited defence is to use stored procedures for database access. While stored procedures can provide security benefits, they are not guaranteed to prevent SQL injection attacks. The same kinds of vulnerabilities that arise within standard dynamic SQL queries can arise if any SQL is dynamically constructed within stored procedures. Further, even if the procedure is sound, SQL injection can arise if the procedure is invoked in an unsafe manner using user-controllable data.

            apps.sapha.com, SQL Injection, Single Quote, DORK, CWE-89, CAPEC-66

            CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')


            SQL Injection DORK - Click to Execute URI

            Application Response:

            Database error on host '192.168.50.20', db 'sapha_core', user 'www', object 'globalDB': Invalid SQL: select SQL_CACHE * from site_options where site_ID = ''+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),(SELECT now()),CHAR(95),CHAR(33),CHAR(64)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))+''
            MySQL Error: 1062 (Duplicate entry '_!@2011-03-16 13:54:16_!@:1' for key 1)
            Session halted.

            Issue: SQL injection
            Severity: High
            Confidence: Certain
            Host: http://apps.sapha.com
            Path: /hooktour/tourservice.php

            Issue detail

            The scs%5Fsid parameter appears to be vulnerable to SQL injection attacks. A single quote was submitted in the scs%5Fsid parameter, and a database error message was returned. Two single quotes were then submitted and the error message disappeared. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

            The database appears to be MySQL.

            Remediation detail

            The application should handle errors gracefully and prevent SQL error messages from being returned in responses.

            Issue background

            SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

            Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.

            Remediation background

            The most effective way to prevent SQL injection attacks is to use parameterised queries (also known as prepared statements) for all database access. This method uses two steps to incorporate potentially tainted data into SQL queries: first, the application specifies the structure of the query, leaving placeholders for each item of user input; second, the application specifies the contents of each placeholder. Because the structure of the query has already defined in the first step, it is not possible for malformed data in the second step to interfere with the query structure. You should review the documentation for your database and application platform to determine the appropriate APIs which you can use to perform parameterised queries. It is strongly recommended that you parameterise every variable data item that is incorporated into database queries, even if it is not obviously tainted, to prevent oversights occurring and avoid vulnerabilities being introduced by changes elsewhere within the code base of the application.

            You should be aware that some commonly employed and recommended mitigations for SQL injection vulnerabilities are not always effective:
            • One common defence is to double up any single quotation marks appearing within user input before incorporating that input into a SQL query. This defence is designed to prevent malformed data from terminating the string in which it is inserted. However, if the data being incorporated into queries is numeric, then the defence may fail, because numeric data may not be encapsulated within quotes, in which case only a space is required to break out of the data context and interfere with the query. Further, in second-order SQL injection attacks, data that has been safely escaped when initially inserted into the database is subsequently read from the database and then passed back to it again. Quotation marks that have been doubled up initially will return to their original form when the data is reused, allowing the defence to be bypassed.
            • Another often cited defence is to use stored procedures for database access. While stored procedures can provide security benefits, they are not guaranteed to prevent SQL injection attacks. The same kinds of vulnerabilities that arise within standard dynamic SQL queries can arise if any SQL is dynamically constructed within stored procedures. Further, even if the procedure is sound, SQL injection can arise if the procedure is invoked in an unsafe manner using user-controllable data.

            Sunday, March 13, 2011

            SQL Injection, Exposed, Risk, Single Quote Injection, DORK Report, CWE-89, CAPEC-66

            SQL Injection, Single Quote Injection, DORK Report, CWE-89, CAPEC-66

            Hoyt LLC Research observes Sunday Morning Daily SQL Injection DORKs with Click to Execute URI's on display from Netsparker, our tool of choice for automated SQL Injection Analysis of Forms and Parameters.

            Netsparker's unique detection and exploitation techniques allows it to be dead accurate in reporting hence it's the first and the only False Positive Free web application security scanner.

            Hoyt LLC Research suggests the use of Netsparker for individual URI/Parameter analysis. Don't Point/Train and Shoot! We express the opinion that Netsparker is a manual analysis tool best combined with Burp Suite Pro for Manual Penetration Testing. Netsparker is a best-of-breed tool for exposing the true risk of vulnerabilities.

            SQL Injection DORK #1 for Sunday, March 13, 2011
            Question #1 - The Current Time is?


            Somewhere in California deep inside an Owned and Expose MySQL Server, the time is 2011-03-13 10:39:05

            SQL Injection DORK #2 for Sunday, March 13, 2011
            Question #2 - The Current SQL Server Version running behind a Login Form is?


            Somewhere in Massachusetts deep inside an Owned and Expose MS SQl Server Server, the MS SQL Server Version details are:
            Microsoft SQL Server 2000 - 8.00.760 (Intel X86) Dec 17 2002 14:22:05 Copyright (c) 1988-2003 Microsoft Corporation Standard Edition on Windows NT 5.2 (Build 3790: Service Pack 2)

            More to come this Sunday Morning.....

            Wednesday, March 9, 2011

            Single Quote, lion.com, SQL Injection, DORK, CWE-89, CAPEC-66

            Single Quote, SQL Injection, DORK, CWE-89, CAPEC-66

            Hoyt LLC Research observes a Single Quote SQL Injection DORK in the form of Click to Execute URI http://www.lion.com/?1'=1

            Application Response:

            Microsoft OLE DB Provider for SQL Server error '80040e14'

            Incorrect syntax near '='.

            /inc/menus.asp, line 40


            Issue: SQL injection
            Severity: High
            Confidence: Certain
            Host: http://www.lion.com
            Path: /

            Issue detail

            The name of an arbitrarily supplied request parameter appears to be vulnerable to SQL injection attacks. A single quote was submitted in the name of an arbitrarily supplied request parameter, and a database error message was returned. Two single quotes were then submitted and the error message disappeared. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

            The database appears to be Microsoft SQL Server.

            Remediation detail

            The application should handle errors gracefully and prevent SQL error messages from being returned in responses.

            Issue background

            SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

            Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.

            Remediation background

            The most effective way to prevent SQL injection attacks is to use parameterised queries (also known as prepared statements) for all database access. This method uses two steps to incorporate potentially tainted data into SQL queries: first, the application specifies the structure of the query, leaving placeholders for each item of user input; second, the application specifies the contents of each placeholder. Because the structure of the query has already defined in the first step, it is not possible for malformed data in the second step to interfere with the query structure. You should review the documentation for your database and application platform to determine the appropriate APIs which you can use to perform parameterised queries. It is strongly recommended that you parameterise every variable data item that is incorporated into database queries, even if it is not obviously tainted, to prevent oversights occurring and avoid vulnerabilities being introduced by changes elsewhere within the code base of the application.

            You should be aware that some commonly employed and recommended mitigations for SQL injection vulnerabilities are not always effective:
            • One common defence is to double up any single quotation marks appearing within user input before incorporating that input into a SQL query. This defence is designed to prevent malformed data from terminating the string in which it is inserted. However, if the data being incorporated into queries is numeric, then the defence may fail, because numeric data may not be encapsulated within quotes, in which case only a space is required to break out of the data context and interfere with the query. Further, in second-order SQL injection attacks, data that has been safely escaped when initially inserted into the database is subsequently read from the database and then passed back to it again. Quotation marks that have been doubled up initially will return to their original form when the data is reused, allowing the defence to be bypassed.
            • Another often cited defence is to use stored procedures for database access. While stored procedures can provide security benefits, they are not guaranteed to prevent SQL injection attacks. The same kinds of vulnerabilities that arise within standard dynamic SQL queries can arise if any SQL is dynamically constructed within stored procedures. Further, even if the procedure is sound, SQL injection can arise if the procedure is invoked in an unsafe manner using user-controllable data.

            [High Possibility] SQL Injection

            1 TOTAL
            CRITICAL
            SQL Injection occurs when data input for example by a user is interpreted as a SQL command rather than normal data by the backend database. This is an extremely common vulnerability and its successful exploitation can have critical implications. Even though Netsparker believes that there is a SQL Injection in here it could not confirm it. There can be numerous reasons for Netsparker not being able to confirm this. We strongly recommend investigating the issue manually to ensure that it is an SQL Injection and that it needs to be addressed. You can also consider sending the details of this issue to us, in order that we can address this issue for the next time and give you a more precise result.

            Impact

            Depending on the backend database, database connection settings and the operating system, an attacker can mount one or more of the following type of attacks successfully:
            • Reading, Updating and Deleting arbitrary data from the database
            • Executing commands on the underlying operating system
            • Reading, Updating and Deleting arbitrary tables from the database

              Actions to Take

              1. See the remedy for solution.
              2. If you are not using a database access layer (DAL) within the architecture consider its benefits and implement if appropriate. As a minimum the use of s DAL will help centralize the issue and its resolution. You can also use an ORM (object relational mapping). Most ORM systems use parameterized queries and this can solve many if not all SQL Injection based problems.
              3. Locate all of the dynamically generated SQL queries and convert them to parameterised queries. (If you decide to use a DAL/ORM, change all legacy code to use these new libraries)
              4. Monitor and review weblogs and application logs in order to uncover active or previous exploitation attempts.

              Remedy

              A very robust method for mitigating the threat of SQL Injection based vulnerabilities is to use parameterized queries (prepared statements). Almost all modern languages provide built in libraries for this. Wherever possible do not create dynamic SQL queries or SQL queries with string concatenation.

              Required Skills for Successful Exploitation

              There are numerous freely available tools to test for SQL Injection vulnerabilities. This is a complex area with many dependencies, however it should be noted that the numerous resources available in this area have raised both attacker awareness of the issues and their ability to discover and leverage them. SQL Injection is one of the most common web application vulnerabilities.

              External References

              Remedy References

              ]]>
              false
              2460149360705513472 5243648 Cookie scoped to parent domain http://r.openx.net Information Certain
            • i=02dd71c0-6aac-4019-82e3-049e51d96c25; expires=Tue, 16-Apr-2013 23:37:30 GMT; path=/; domain=.openx.net
            • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
              false
              2424115527846269952 2097920 Cross-site scripting (reflected) http://optimized-by.rubiconproject.com Information Certain
              The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

              Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

              The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
            • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
            • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
            • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
              abfcf"-alert(1)-"b1178026f2d was submitted in the ruid cookie. This input was echoed unmodified in the application's response.

              This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

              Because the user data that is copied into the response is submitted within a cookie, the application's behaviour is not trivial to exploit in an attack against another user. Typically, you will need to find a means of setting an arbitrary cookie value in the victim's browser in order to exploit the vulnerability. This limitation considerably mitigates the impact of the vulnerability.]]>
              <\/script>"; rubicon_tag_code = rubicon_tag_code.replace(/##RUBICON_CB##/g,rubicon_cb); document.write(rubicon_tag_code); document.write("\"Quantcast\"/

              Caseyofhouston  

              HomeAbout MePhotosServicesRatesGiftsGuestbookReviewsCalendarFAQLinksContact

              About Me
              Hello gentlemen!
              ?
              My name is Casey. I'm 26yrs old, 5'7", 115lbs, and my mesurements are 36b-24-28. I offer honest, un-rushed service with a smile. What you see is 100% me!
              ?
              No games
              No drama
              No bait and switch!!
              ?
              Just me, and lots of FUN!!!
              ?
              I have a great attitude, a charming personality, and I love meeting new people.
              ?
              Not to mention I always AIM to PLEASE!!
              Your total satisfaction is my ultimate goal!!
              ?
              So gentlemen, if you like what you see so far, you will love me in person!!
              Give me a call...
              ?
              I also provide escort services to the following areas
              ?The Woodlands, Spring, Kingwood, Pearland, Sugarland most surrounding areas of Houston...
              Anywhere you need me....
              ?
              XOXOXO
              Casey
              281-763-8032

              Register for my free newsletter
              Email
              You may also unsubscribe at any time.

              eccie.net

              SitemapRSSAdd to My Yahoo!Add to Google Homepage or Google Reader !

              Get free escort web design (like this one) !

              ]]>
              false
              5646608496899392512 5244160 Cross-domain script include http://www.cloudscan.me Information Certain
              If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
            • http://hostedusa3.whoson.com/include.js?domain=stalker.opticalcorp.com
            • http://www.blogger.com/static/v1/widgets/560535965-widgets.js
            • http://www.google.com/jsapi
            • http://www.google.com/uds/solutions/slideshow/gfslideshow.js
            • ]]>
              Penetration Testing | Hoyt LLC

              Sunday, April 17, 2011

              foxnews.mobi, XSS, CAPEC-86, Cross Site Scripting, CWE-79

              foxnews.mobi, XSS, CAPEC-86, Cross Site Scripting, CWE-79


              Issue Background


              Reflected cross-site scripting vulnerabilities arise when data is copied from a request and echoed into the application's immediate response in an unsafe way. An attacker can use the vulnerability to construct a request which, if issued by another application user, will cause JavaScript code supplied by the attacker to execute within the user's browser in the context of that user's session with the application.

              The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

              Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).


              XSS in foxnews.mobi, DORK, Cross Site Scripting, CWE-79, CAPEC-86
              External References

              colivia.de, SQL Injection, Single Quote, DORK, CWE-89, CAPEC-66

              colivia.de, SQL Injection, Single Quote, DORK, CWE-89, CAPEC-66

              Issue:   SQL injection
              Severity:   High
              Confidence:   Firm
              Host:   http://www.colivia.de
              Path:   /submit.php


              Issue detail

              The name of an arbitrarily supplied request parameter appears to be vulnerable to SQL injection attacks. The payload " was submitted in the name of an arbitrarily supplied request parameter, and a database error message was returned. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

              The database appears to be MySQL.

              Remediation detail

              The application should handle errors gracefully and prevent SQL error messages from being returned in responses.

              Issue background

              SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

              Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.  

              SQL Injection in colivia.de, DORK, SQL Injection, CWE-89, CAPEC-66

              gabbr.com, SQL Injection, DORK, Single Quote, CWE-89, CAPEC-66

              gabbr.com, SQL Injection, DORK, Single Quote, CWE-89, CAPEC-66

              Issue:   SQL injection
              Severity:   High
              Confidence:   Firm
              Host:   http://www.gabbr.com
              Path:   /inc/fauxMenu.css


              Issue detail

              The REST URL parameter 1 appears to be vulnerable to SQL injection attacks. The payload ' was submitted in the REST URL parameter 1, and a database error message was returned. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

              The database appears to be MySQL.

              The application attempts to block SQL injection attacks but this can be circumvented by submitting a URL-encoded NULL byte () before the characters that are being blocked.

              Remediation detail

              The application should handle errors gracefully and prevent SQL error messages from being returned in responses. NULL byte bypasses typically arise when the application is being defended by a web application firewall (WAF) that is written in native code, where strings are terminated by a NULL byte. You should fix the actual vulnerability within the application code, and if appropriate ask your WAF vendor to provide a fix for the NULL byte bypass.

              Issue background

              SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

              Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.  


              SQL Injection in gabbr.com, DORK, SQL Injection, CWE-89, CAPEC-66

              longislanderotic.com, SQL Injection, Single Quote, DORK, CWE-89, CAPEC-66

              longislanderotic.com - OWNED and EXPOSED.

              Issue:   SQL injection
              Severity:   High
              Confidence:   Certain
              Host:   http://www.longislanderotic.com
              Path:   /longislanderotic/forum/

              All the user info is open for all to see via SQL Injection with Reverse Shell.


              Issue detail
              The name of an arbitrarily supplied request parameter appears to be vulnerable to SQL injection attacks. A single quote was submitted in the name of an arbitrarily supplied request parameter, and a database error message was returned. Two single quotes were then submitted and the error message disappeared. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

              The database appears to be Microsoft SQL Server.

              Remediation detail

              The application should handle errors gracefully and prevent SQL error messages from being returned in responses.

              Issue background

              SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

              Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.  


              SQL Injection in longislanderotic.com, DORK, SQL Injection, CWE-89, CAPEC-66
              http://xss.cx/examples/dork/sql-injection/4.16.2011-sql-injection-dork-poc-example-report-vulnerable-server.html#1.34


              Summary

              Severity:  High
              Confidence:  Firm
              Host:  http://www.longislanderotic.com
              Path:  /longislanderotic/forum/

              Issue detail

              The Referer HTTP header appears to be vulnerable to SQL injection attacks. The payload ',0,0,0)waitfor%20delay'0%3a0%3a20'-- was submitted in the Referer HTTP header, and a database error message was returned. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

              The database appears to be Microsoft SQL Server.

              Remediation detail

              The application should handle errors gracefully and prevent SQL error messages from being returned in responses.

              Request

              GET /longislanderotic/forum/ HTTP/1.1
              Host: www.longislanderotic.com
              Proxy-Connection: keep-alive
              Referer: http://www.google.com/search?hl=en&q=',0,0,0)waitfor%20delay'0%3a0%3a20'--
              User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16
              Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
              Accept-Encoding: gzip,deflate,sdch
              Accept-Language: en-US,en;q=0.8
              Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3

              Response

              HTTP/1.1 200 OK
              Connection: close
              Date: Sun, 17 Apr 2011 17:42:53 GMT
              Server: Microsoft-IIS/6.0
              X-Powered-By: ASP.NET
              Content-Type: text/html
              Set-Cookie: WWF=SID=zb688d2ede1dz9157b8c16f4219bdeaz; path=/longislanderotic
              Set-Cookie: ASPSESSIONIDQSBBADSQ=NBMDCGFBPOLHPEEEBPKECEJF; path=/
              Cache-control: private

              <br /><strong>Server Error in Forum Application</strong><br />An error has occured while writing to the database.<br />Please contact the forum administrator.<br /><br /><strong>Support Error Code:-</
              ...[SNIP]...
              <br />Microsoft OLE DB Provider for SQL Server<br />
              ...[SNIP]...
              ]]>
              false
              5599109624754658304 5243648 Cookie scoped to parent domain http://t.mookie1.com Low Firm
            • session=1303072666|1303072809; path=/; domain=.mookie1.com
            • id=914804995789526; path=/; expires=Fri, 11-May-12 20:40:09 GMT; domain=.mookie1.com
            • The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
              false
              7455640177028627456 5244160 Cross-domain script include http://www.foxnews.mobi Information Certain
              If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
            • http://a.ringleaderdigital.com/adtag.js
            • ]]>
              FOX News - Home
              April 17, 2011 4:29 PM EDT
               
               
               
              DOW up 56.68 | NAS up 4.43 | S&P up 5.16
              (Data as of 2011-04-15 4:02 EDT)
               
               
               
              ]]>
              false
              1168077992300741632 8389632 Content type incorrectly stated http://d.adsverse.com Information Firm
              In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
            • Content-Type: text/html
            • The response states that it contains HTML. However, it actually appears to contain script.]]>
              false
              6131792939453102080 5243648 Cookie scoped to parent domain http://tap.rubiconproject.com Information Certain
            • cd=false; Domain=.rubiconproject.com; Expires=Mon, 16-Apr-2012 23:48:38 GMT; Path=/
            • lm="17 Apr 2011 23:48:38 GMT"; Version=1; Domain=.rubiconproject.com; Max-Age=31536000; Path=/
            • The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
              false
              8506096741069983744 7340288 Cacheable HTTPS response https://www.verifiedplaymates.com Information Certain
            • Cache-control: no-store
            • Pragma: no-cache
            • ]]>
              false
              6080329856223284224 5244928 Password field with autocomplete enabled http://www.lessonofpassion.com Low Certain
              The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
              autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
            • http://www.lessonofpassion.com/user.php?type=login
            • The form contains the following password field with autocomplete enabled:
              • password
              ]]>
              Lesson of Passion - erotic flash games
              ]]> false 309077410057804800 6291968 Email addresses disclosed https://www.verifiedplaymates.com Information Certain
              However, email addresses of developers and other individuals (whether appearing on-screen or hidden within page source) may disclose information that is useful to an attacker; for example, they may represent usernames that can be used at the application's login, and they may be used in social engineering attacks against the organisation's personnel. Unnecessary or excessive disclosure of email addresses may also lead to an increase in the volume of spam email received.]]>
            • ads@verifiedplaymates.com
            • ]]>
              Verified Playmates - Admin Login
               
               
              Verified Playmates - Secure Provider Management
              UserName:
              Password:
               

              Forgot Login UserName or Password? Retrieve it here!

              If you have any problems, want anything on this site fixed, or just have suggestions regarding what other features you like to see implemented here, please feel free to email us with the details. Our programmers are very quick in putting up new improvement features, and fixes to improve your experience.

              email: ads@verifiedplaymates.com


              ]]>
              false
              7637013040643572736 5244160 Cross-domain script include http://caseyofhouston.com Information Certain
              If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
            • http://imgs.rare-escort.com/rare/t/main.js
            • http://www.google-analytics.com/urchin.js
            • ]]>
              My Escort Reviews

              Caseyofhouston  

              HomeAbout MePhotosServicesRatesGiftsGuestbookReviewsCalendarFAQLinksContact

              Escort Reviews
              Reviewer: SHOTSONGOAL (13-Apr-2011)
              Saw the provider on backpage and her long blonde hair caught my eye. Read that she was originally from Texas and is visiting LI for a little bit. She is thin, blonde, and looks like a pleasant southerner. Called, left a message, then she called back and I was directed to the usual escort hotel in that area. Classic 2 call system as I received the room number on the 2nd call. Knocked on the door and it was opened by a thin, blonde, beautiful woman in a white dress.
              Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1087986
              Reviewer: IAMKVOTHE (02-Apr-2011)
              I did a search and found nothing (surprisingly) for Casey. This is my first review so I hope this will help fellow members. She was well reviewed on TER and has a personal website so I took the plunge. I called her and got voicemail. She called back and we were set for an hour later. She sounded sweet and professional on the phone. I called again once off the exit to get incall spot (at a nice clean hotel), then once more while in the parking lot to get the room number. When she opened the door, I was pleasantly surprised. She is very good looking and her photos, while accurate, makes her look a lot older and taller. She is about 5'6" with long dirty blonde hair and a great spinner body. She greeted me warmly in a short white dress. I put the donation on the table while having a couple laughs with her, then we were off to the races! We started with a good CBJ to get things warmed up. Perfect combination of rhythm, suction and hands. Once I was ready, we switched to Mish. She was extremely tight and felt amazing! We then discussed Greek and she said she is just starting, but "we'll try" for an additional 75. We went slowly for a while and had mild success but ended up abandoning the endeavor. We changed covers and proceeded with Mish, CG, and finished with a great CBJ; she cleaned up with a hot towel. We chatted for a bit while I dressed. She is intelligent and the southern accent is perfect. I mentioned bgfe to her and hopefully she'll be joining as a provider here soon. She is currently on BP: http://newyork.backpage.com/FemaleEs...ng-26/17674627 Looks: 8 - she's younger and prettier than her pics Body: 7 - nice spinner body with A-cups Attitude: 10 - very pleasant, intelligent, and accommodating. Cleanliness: 10 (she is a smoker, but the room does not smell) Rate: 225/hr + 75 for Greek (hopefully she gets more practice so the next time will be a true trip to the islands) Services: CBJ, Mish, CG, Greek (+75) (YMMV on this service). I did not go for LFK/DFK or DATY Repeat: Yes once she has more experience with Greek Casey, if you read this, thanks for a great time!
              Source: http://www.bestgfe.com/forum/showthread.php?186069-TOFTT-Casey-Of-Houston-currently-on-BP
              Reviewer: MOONMAN1 (01-Apr-2011)
              Have seen reviews of Casey and most are positive. My first choice had canceled so I was looking for back up plan. Must say Casey was a good alternative. Easy to set up the appt. There was some light screening. She will not discuss services on the phone so do not ask. Got to the hotel and when the door opened there was an attractive young blonde. She indeed does look better than her pics. Light kiss and hug and some light talk. She asked for the donation and I left the envelope on the dresser. She did count it and I guess that's OK. She said get undressed and lay down on the bed.
              Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1085153
              Reviewer: DACRITIC (31-Mar-2011)
              I had seen pictures of Casey on backpage and wondered about meeting her. Checked out her review (TER 143871) and they looked good. Decided to make a late call and she was only able to meet for a half hour. Met her at her hotel and the pictures are well representative of her looks. She is very thin, and I prefer more curves, but she had a cool attitude. Decided to go ahead and have some fun.
              Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1082663
              Reviewer: bergenbob38 (30-Mar-2011)
              First of all, I'm new here. New to the area too. Have seen several girls in Jersey but only a few on the Island.   Saw Casey's ad on BP and checked out her website at caseyofhouston.com.  Definately worth the trip.  Friendly and easy going.  Great BJ, covered but great.  Full service made it a good choice.  Seconds are available too.
              Source: http://www.longislanderotic.com/longislanderotic/forum/forum_posts.asp?TID=2437
              Reviewer: TRIGGER (26-Mar-2011)
              Recently, I am kind of discouraged with the Amps, so I have decided to go the escort route. I saw her advertisment on BP and based on her photos I wasn't impressed. I decided to do some research and found out that she has great reviews on other boards. She is a small, petite blonde with small tits. Personally, I like big-titted women. but I guess let me try her out based on the reviews. It's a two-call screening process. When she is in town, she hosts in Nassau, near the LIE. Anyway, I get to the room, and I was like supe happy. She is very cute and has a nice body. She greets me and we hug and I am grabbing hert ass. It was heaven! We chatted a bit as I got comfortable and then proceeds to give me a nice back rub to make me relax. Afterwards, she gave an excellent CBJ, that I couldn't hold any longer and was in ecstasy. I was worried that I was done after 1 pop. She said let's try for round 2. Gentlemen, I am closer to 60 than 50 and wasn't sure if I could. Well, little trigger did stand at attention, but I couldn't spew forth l*** from the volcano. However, it was a nice dry run. She doesn't allow coming on face or licking of the balls, but her personality, Texas accent and technique were great. 1hr $225 with MSOG possible. Unfortunately, according to her website (google caseyofhouston) it's nothing personal but she doen't partake in dark chocalate. Therefore, If you want to upgrade to the escort level, she's a good bang for the $$.
              Source: http://www.utopiaguide.com/forums/showthread.php?t=44783&highlight=CASEYOFHOUSTON
              Reviewer: WIZZWHIG (18-Mar-2011)
              Was looking forward to meeting Casey for awhile here on Long Island, NY - finally got a chance today and called. She picked up and we were able to arrange a mutual time to get together. Called to confirm and got the location and a few screening questions, another call for the room and up I went. Glad I did - her photos did her no justice - she is gorgeous - but better - she has a personality to match. Great conversation, great attitude and a great experience with her. She made me feel comfortable like we were old friends. Will be looking for a repeat visit. Nice kiss upon leaving too from this sweet gal!
              Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1081084
              Reviewer: COSTUMED1 (23-Feb-2011)
              I saw Casey on Back Page, and saw that she had excellent reviews here on TER. Because of what I saw and read, and because she is from out of town, I thought there was no way I would be able to get an appointment with this tomato. But she picked right up when I called and I set up the time I wanted, a little afternoon delight a few hours later at 2 pm. Which means there's a lot of guys out there who are really missing out! She's very friendly on the phone ( and with an adorable Texas accent that gets your motor running just talking to her!), just asked a few questions and we set up the time - easy! When I got to her hotel, she gave me the room number and also detailed instructions of how to get there - very cute and helpful. And hearing her voice on the phone again - I couldn't wait to get up there. She opened the door, wearing a thong and cammie kind of thing, and I thought - those guys on TER were right, her pictures do not do her justice. She seems a lot taller and sleeker in her pictures than she is. But more than that, in the pics, she seems kind of hard - nothing could be farther from the truth. She is the sweetest, softest little piece of heaven you can imagine. Non VIPs, let me just say this - I was on for an hour, but I wasn't there even fifteen minutes before I was asking how much for an extra half an hour. I knew this was not going to be quick. More to come, for VIPs...
              Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1072139
              Reviewer: EROTICTHRUST (15-Feb-2011)
              Just happen to be in Houston on business and needed some R&R during the trip as it was getting a little stressful. Upon going through some of the TER reviews I came across Casey and based on her info and reviews decided to give her a shot. Emailed her my info and exchanged info, upon my arrival gave her a call and had a very nice conversation, as she has one of those welcoming southern accents. Although she showed up a half hour late due to traffic she called ahead and was very apologetic. Once she showed up at my door I was not disappointed as she looks better in person than her pics. Non VIPâeTMs if you are ever in Houston I defiantly recommendâe¦VIPâeTMs read on.
              Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1070877&user=0
              Reviewer: thomas1960 (23-Jan-2011)
              Reviewer thomas1960 Review Date 1/19/2011 Visit Date 1/17/2011 On Time : Perfect Visited At Houston, TX Rating : Best of the best Overall Attitude : Passionate, outgoing Appearance Overall Appearance : Super Model Accurate Photo : Yes Accurate Profile : Yes Tattoos : One Age Range : Late 20's Body Type : Tight & toned Grooming / Hygiene : Immaculate Dress : Sexy Details Friendliness : Very friendly Temperament : Extremely attentive Personality : Wild Child Conversation : Great conversationalist Motivation : Loves her job Encounter What type of encounter did you have? Private time Was this your first experience? Yes Did your encounter go as expected? Yes, everything was perfect Was the time with your companion reasonable priced? Rates were consistent as quoted What will you remember most about your experience? Wonderful in all ways. Would you see again? Definitely
              Source: http://www.escorts.com/review/198871/198871
              Reviewer: MNSCMAN (20-Dec-2010)
              Called Casey around 8:00pm and made appointment for 10:00pm. Very comfortable with coming to my room once I told her I was member of TER and had read some of her reviews. She did call me in my room to verify our converation. Casey prides herself on being punctional so called to say she would be 10 minutes late because of parking problems. Arrived in very tight jeans and tight red sweater that showed off her nice thin body. She checked the donation and suggested we get comfortable.
              Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1052167
              Reviewer: BRUSHFIRE (03-Dec-2010)
              I discovered Casey on TER. She had good reviews so I decided to give her a call. She does a good job of screening and doesnâeTMt waste any time. She arrived at my place right on time. I like girls but I really like punctual girls. Casey is tall and thin, nices ass, small tits and a nicely trimmed snatch, the photos are accurate. She was wearing a blouse and tight blue jeans. After an exchange of pleasantries we both got undressed. (I recommend)
              Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1045585
              Reviewer: absolut (22-Nov-2010)
              Review: Casey made her case for GFE -------------------------------------------------------------------------------- Date: Sun Provider: CaseyOfHouston Phone: 281-763-8032 Email Address: - URL / Website: http://www.eccie.net/showthread.php?t=128548 City: Houston State: Texas Address: BW & 59S Appointment Type: Incall Did the Appointment take place at the agreed-upon time?: Yes Activities: LK, disrobed, NE, FK, SE, DATY, BJ, MPCFS, clean up, conversation, random repeat Session Length: 1 hr Fee: 200 Hair Color and Length: LONG blond with streaks, to middle of back Age: 2x Smoking Status: I Couldn't Tell Ethnic Background: White/Caucasian Physical Description: Casey is about 5-8, maybe 100# soaking wet, THIN spinner, model thin, not anorexic thin IMHO. Dazzling eyes, perfect smile that will charm the pants of you. A-cup with very responsive nipples. Some marks on a FLAT tummy, absolutely no problem for me. Marks of motherhood denote a REAL WOMAN. Recommendation: Yes
              Source: http://www.eccie.net/showthread.php?t=131733
              Reviewer: BBS3469 (16-Nov-2010)
              I read some of Casey's reviews before deciding to finally see her. The first time I called her she got nervous and hung up on me. I tried again from a different number and after a couple of light screening questions and checks she agreed to come to my hotel near the Houston Galleria. Took her about half an hour to arrive. She arrived dressed in jeans, nice heels, a nice black top and matching black jacket, looking sexy as hell but not attracting too much attention. She looks youthful and attractive and her smile is really warm and welcoming, made me relax the minute I saw her. Non-VIPs she's a real nice girl...
              Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1042332
              Reviewer: Bigdog5475 (03-Nov-2010)
              Date: 11-2-2010 Provider: Casey Phone: 281-763-8032 Email Address: - URL / Website: http://caseyofhouston.rare-playmate.com/ City: Beaumont State: Texas Address: Notel Appointment Type: Incall Did the Appointment take place at the agreed-upon time?: Yes Activities: CBJ, HJ, CBJ, CG, Frog, Mish Session Length: 1 hour Fee: 200 Hair Length and Color: Past Shoulder, Blonde with Black streaks. Age: 26 Smoking Status: I Couldn't Tell Ethnic Background: White/Caucasian Physical Description: Her photo's make her appear to be very tall but in person she is a small petite woman. Breast A cups. Small tat on her lower stomach and one on her lower back but not destrating. Recommendation: Yes
              Source: http://www.eccie.net/showthread.php?t=122323
              Reviewer: GENT1 (05-Sep-2010)
              Called Casey when I made it to town. Saw her on backpage and her reviews. She was easy to make the appointment with. Very friendly. She called when she was on her way. Ance she got there I was amazed at how beautiful this girl is.... Stunning is the only word that comes to mind. She has a great witty personality and knows how to make you feel at ease. After a little small talk we got comfortable. WOW! Non Vips yes, yes, yes... Vips read on....
              Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1017645
              Reviewer: GREYGOOSE2000 (01-Sep-2010)
              Casey looks as hot in person as her photos. Long blonde hair, tight body and a great ass. The session was Non GFE but I still had a good time. I would recommend her because she is hot and she is reasonably priced.
              Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1015918
              Reviewer: crzybull5912 (01-Sep-2010)
              Date: 8-25-10 Provider: Casey Phone: 281-763-8032 Email Address: URL / Website: http://beaumont.backpage.com/FemaleEscorts/8786449- www.caseyofhouston.rare-playmate.com City: Beaumont State: Texas Address: Notel, College street/I10 Appointment Type: Incall Did the Appointment take place at the agreed-upon time?: Yes Activities: She met me at door, room dimly light nice and cool. Wow, first impressions, a beautiful girl. Easy to talk to, very good personality. conversed during almost all of the activities you see here except when she had a mouth full. CBJ, DS, FDAU, CFS, sitting up position with her on my lap facing me, then standing up, then placed her on the bed on her back, put her ankles next to her ears and worked that for a while, then rolled her on her side, spread legs apart with one over my shoulder til finish. Session Length: 1 hr Fee: 200 Hair Length and Color: Middle of back, Blonde with Black mixed, matches pictures. Age: Mid 20's Smoking Status: I Couldn't Tell Ethnic Background: White/Caucasian Physical Description:A spinner, her pics make her appear taller than she is. I would say ad portrays accurate stats. Very beautiful girl, even better looking in person. Petitie, small tits, nice nipples with good size areola around them, they are real too, sagging some but just my type. Shaved Kitty, a couple of small tats from what I remember but not distracting obviously. Has that kind of sexy face you like to watch when tending to business. Recommendation: Yes
              Source: http://www.eccie.net/showthread.php?t=90698
              Reviewer: METROJAY1 (05-Aug-2010)
              After seeing her ad on backpage, I googled her and found her on Eros, TER, and her own personal website. Everything seemed good so I called her. She had a few screening questions and we made the appt. When I arrived at her location I called again to get the room number. Non VIP's - this girl is hot. VIP's read on.
              Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1006687
              Reviewer: brwalker240 (23-Jul-2010)
              Easy to set the appointment. On time and very welcoming. I got there and we started talking. She was very personable and relaxing. Once we broke the ice we got busy. She was very accommodating and well worth it. Specific Details : She was dressed very hot with tight jeans and a tight top. Her face looked beautiful. She has a great accent and is a sweet talker. We got naked after about 5 minutes and she gave me an awsome CBJ. I then went down on her and she came. She then returned to CBJ and I had multiple pops.
              Source: http://www.escorts.com/review/168206/Great
              Reviewer: CHITOWNPIMP (10-May-2010)
              Casey's Eros ad caught my eye and I gave her a call. I did some research and she has reviews on other sites as well. She was very pleasant over the phone and we setup a time for later in the day. Once I arrived, Casey was ready to go.
              Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=977917
              Reviewer: INER (23-Apr-2010)
              I was in Houston for the night and was lonely. When she arrived at my hotel I knew right off that I had made a good decision in calling her. Casey is an intelligent friendly down to earth beauty. Her understated good looks and outgoing personality made me feel at ease immediately. As she began to disrobe she asked me to get more comfortable.
              Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=972773
              Reviewer: STVBA (19-Apr-2010)
              I called and set up an outcall for later on that night at my hotel. She showed right on time after she called about 20 minutes out. I was stunned when she walked in. Gorgeous...the pictures do nothing for her. She is stunning. Tight little jeans and t-shirt. We had a little small talk, took care of the donation and got undressed. Non-VIP's, will definitely repeat.
              Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=971637
              Reviewer: Soldierboy18 (16-Mar-2010)
              Visiting town on business, saw Casey's ad and read her reviews and got very interested. She was incredibly nice and friendly on the phone, scheduled an odd-hour appointment on short notice. Once she showed up, I was glad I called her - she is even hotter in real life than in her pics. Non-VIPs I recommend, for the rest of you read on.
              Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=960450&user=0
              Reviewer: iner1 (24-Feb-2010)
              General Details : Met Casey through this site. She is a intelligent friendly down to earth beauty. When she arrived at my hotel I knew right off that I had made a good decision in calling her. Specific Details : Her understated good looks and outgoing personality made me feel at ease immediately. As she began to disrobe she asked me to get more comfortable. She has a good figure but it was her personality that immediately turned me on. She began by caressing me between my legs and then began what was one of the best cbj's I have ever had. So good in fact that I blew my load much sooner than I had expected. She was surprised and said she was sorry because she had much more in mind. Her attitude and attentiveness makes me want to call her the next time I am in Houston.
              Source: http://www.escorts.com/review/141153/Great-experience
              Reviewer: wade1966 (11-Feb-2010)
              Casey was very easy to book an appointment with and came to my hotel right on time. She looks stunning and is such a young attractive thing. She reminded me of the babyitter from next door. After a little small talk she gave me a CBJ that is one of the best I ever had. She has a very small kitty and I loved giving her treats down there. Then we did many different positions. She is very athletic and really knows how to satisfy a man. I high ly recommend her and will have to see her again next time I am in Houston.
              Source: http://www.escorts.com/review/139292/What-a-hottie
              Reviewer: MIKEE (16-Jan-2010)
              Have been eyeing Casey for quite a while but I have my regulars and most times I try something new has been a real disappointment. Now Im pounding my forehead for being such a dumb-ass! This lady was outasight! Great personality! Great tight little body and an even tighter... If you dont enjoy seeing her, you are probably dead.
              Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=941236
              Reviewer: dsblinder (12-Jan-2010)
              Title : Sweet Southern Lady Reviewer : dsblinder123 Review Date : 12/31/2009 Visit Date : 12/30/2009 Visit Length : 1 Hour On Time : Yes Meeting Location : Escort's Hotel Visit : Provided Agreed Upon Time Visited At : Houston, TX Rating : A cut above Overall Rating : Average General Details : I called her and she answered with a sweet southern accent. After a quick screening process she told me where to meet her.
              Source: http://www.escorts.com/review/132953/Sweet-Southern-Lady
              Reviewer: dsblinder (11-Jan-2010)
              When I called Casey and it was easy to get hold of her. She answered and asked a few questions and I told her I was p411 she sounded relieved. She got all my info and set up the appointment and told me she would call about 30 minutes before and tell me where to meet. I met her at her incall hotel and when I first saw her she looked so much better than her pictures. She checked my ID for her safety and then we went into the room.......VIP's read on
              Source: http://www.theeroticreview.com/reviews/show.asp?id=143871
              (only for escort private view)

              eccie.net

              SitemapRSSAdd to My Yahoo!Add to Google Homepage or Google Reader !
              ]]>
              false
              102859234005411840 5244416 Cookie without HttpOnly flag set http://b.scorecardresearch.com Information Certain
              You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
            • UID=25894b9d-24.143.206.177-1303083414; expires=Tue, 16-Apr-2013 23:37:01 GMT; path=/; domain=.scorecardresearch.com
            • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
              false
              7584799564868626432 5244416 Cookie without HttpOnly flag set http://pixel.rubiconproject.com Information Certain
              You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
            • rpb=5328%3D1%265671%3D1%264212%3D1; expires=Tue, 17-May-2011 23:37:31 GMT; path=/; domain=.rubiconproject.com
            • rpx=5328%3D11319%2C0%2C1%2C%2C%265671%3D11319%2C0%2C1%2C%2C%264212%3D11319%2C0%2C2%2C%2C; expires=Tue, 17-May-2011 23:37:31 GMT; path=/; domain=.pixel.rubiconproject.com
            • put_1185=2931142961646634775; expires=Thu, 16-Jun-2011 23:37:31 GMT; path=/; domain=.rubiconproject.com
            • The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
              false
              4271687236895014912 5244416 Cookie without HttpOnly flag set http://utopiaguide.com Information Certain
              You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
            • bblastvisit=1303070837; expires=Mon, 16-Apr-2012 20:07:17 GMT; path=/; domain=.utopiaguide.com
            • bbwelcomeheaders=1303070837; path=/; domain=.utopiaguide.com
            • The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
              Long Island action. - Page 22 - UtopiaGuide



              Go Back   UtopiaGuide > Not your Father's PMB > Stripclubs, Strippers and Porn Stars
              Register FAQ Members List CalendarvBookieToplist Today's Posts

              Reply
               
              Thread Tools
              Old 02-07-2008, 07:35 AM   #631
              seeker6591
              Gold
               
              Join Date: Sep 2005
              Posts: 14,770
              vCash: 500
              i dont think she will resurface...as BH said, she was thrown off the roof.
                Reply With Quote
              Old 02-07-2008, 07:35 AM   #632
              wolf5958
              lil Fuzzybear
               
              Join Date: Nov 2007
              Posts: 7,443
              vCash: 500
              Quote:
              Originally Posted by biohazard View Post
              didn't they throw her off the roof?? sounds like something from the goodfella's movie!
              She fell escapingn across the roof tops from what I read.
                Reply With Quote
              Old 02-07-2008, 07:36 AM   #633
              seeker6591
              Gold
               
              Join Date: Sep 2005
              Posts: 14,770
              vCash: 500
              where is lightweight??

              hungover perhaps?
                Reply With Quote
              Old 02-07-2008, 07:40 AM   #634
              wolf5958
              lil Fuzzybear
               
              Join Date: Nov 2007
              Posts: 7,443
              vCash: 500
              Quote:
              Originally Posted by seeker6591 View Post
              where is lightweight??

              hungover perhaps?
              Either that or his wife beat the shit out of him for coming home lit up like he was. I don't know why he is blaming me I only bought one round. Tami just kept opening them for him and he kept saying yes.
                Reply With Quote
              Old 02-07-2008, 07:40 AM   #635
              teps
              Gold
               
              Join Date: Feb 2003
              Posts: 4,524
              vCash: 500
              Quote:
              Originally Posted by wolf5958 View Post
              Yeah I know the other board but hey I am up for the recon I will be the second volunteer,
              like I said the pond deli is down the street can always grab lunch
              You will probably run into old timers Brooklyn and Jackie there (they were still there the last time I was there) but let me know when you are going and I'll go too.
                Reply With Quote
              Old 02-07-2008, 07:44 AM   #636
              teps
              Gold
               
              Join Date: Feb 2003
              Posts: 4,524
              vCash: 500
              From what I recall, Ting fled down the hall and out on to the roof of the building next door and then tried to jump down to the ground to get away from the armed robbers and messed up her ankle. I have not heard of her since. Has anyone heard if her partner, Cindy, has surfaced anywhere else?
                Reply With Quote
              Old 02-07-2008, 07:46 AM   #637
              wolf5958
              lil Fuzzybear
               
              Join Date: Nov 2007
              Posts: 7,443
              vCash: 500
              Quote:
              Originally Posted by Tom S. View Post
              You will probably run into old timers Brooklyn and Jackie there (they were still there the last time I was there) but let me know when you are going and I'll go too.
              Looks like maybe the 14th. A strip club on Valentines day How romantic LOL
                Reply With Quote
              Old 02-07-2008, 07:48 AM   #638
              wolf5958
              lil Fuzzybear
               
              Join Date: Nov 2007
              Posts: 7,443
              vCash: 500
              I will be back after 12 I need to get ready to go to work. LW I hope you are alive and well, You want to go to Carmen's birthday party today your future ex wife will be there
                Reply With Quote
              Old 02-07-2008, 08:01 AM   #639
              seeker6591
              Gold
               
              Join Date: Sep 2005
              Posts: 14,770
              vCash: 500
              birthday party ???
                Reply With Quote
              Old 02-07-2008, 08:03 AM   #640
              magicfingersny
              Gold
               
              Join Date: Nov 2007
              Posts: 2,346
              vCash: 500
              I tried finding LI adult Entertainment & just came up with something that lists club, no member posting. Is that Bday party for one of the girls at Shady's? If so what time to time. damn it's late already. I am exhausted
                Reply With Quote
              Old 02-07-2008, 08:06 AM   #641
              seeker6591
              Gold
               
              Join Date: Sep 2005
              Posts: 14,770
              vCash: 500
              how about some info on the birthday party...gents?
                Reply With Quote
              Old 02-07-2008, 08:07 AM   #642
              teps
              Gold
               
              Join Date: Feb 2003
              Posts: 4,524
              vCash: 500
              Magic--Here is the link to that site.
              www.longislanderotic.com/longislanderotic/forum/
                Reply With Quote
              Old 02-07-2008, 08:21 AM   #643
              lookin4amp
              Bronze
               
              Join Date: Apr 2007
              Posts: 16
              vCash: 500
              Hi Guys!! I really enjoy reading you guys' posts.... They are Great!! I'm in Nassau and don't really go out to Suffolk...do any of you guys know good place in Nassau where I can get good action??
                Reply With Quote
              Old 02-07-2008, 08:23 AM   #644
              magicfingersny
              Gold
               
              Join Date: Nov 2007
              Posts: 2,346
              vCash: 500
              Thanks for the link Tom. I am just waiting for a confirmation *****
              Carmen Bday Party is Today?
              When to When?
                Reply With Quote
              Old 02-07-2008, 08:24 AM   #645
              seeker6591
              Gold
               
              Join Date: Sep 2005
              Posts: 14,770
              vCash: 500
              our first ISO post in here ???

              LOL
                Reply With Quote
              Old 02-07-2008, 08:43 AM   #646
              biohazard
              Gold
               
              Join Date: Nov 2006
              Posts: 1,870
              vCash: 500
              Quote:
              Originally Posted by lookin4amp View Post
              Hi Guys!! I really enjoy reading you guys' posts.... They are Great!! I'm in Nassau and don't really go out to Suffolk...do any of you guys know good place in Nassau where I can get good action??
              Before the rest of the people jump on you for an In Search Of post (ISO) did ya try the search feature? and you kind of have a low post count you might want to start reviewing any one you visited or at least contributing to other threads, some people might break your balls for not doing that i hope this helps.
                Reply With Quote
              Old 02-07-2008, 08:51 AM   #647
              jamesfromny
              Silver
               
              Join Date: Nov 2007
              Age: 34
              Posts: 192
              vCash: 500
              re: Ting

              Quote:
              Originally Posted by wolf5958 View Post
              I don't think she resurfaced since that. ...
              She will be missed.
                Reply With Quote
              Old 02-07-2008, 08:58 AM   #648
              jamesfromny
              Silver
               
              Join Date: Nov 2007
              Age: 34
              Posts: 192
              vCash: 500
              I've got the day off, and am going to try to see Lightweight's friend Mimi. Should I report back here, or add-on to his review?
                Reply With Quote
              Old 02-07-2008, 09:01 AM   #649
              lightweight
              Moderator
               
              Join Date: Oct 2007
              Posts: 8,364
              vCash: 500
              Reporting for duty folks. I need a few mintutes hear to catch up hear.

              Last edited by lightweight : 02-07-2008 at 09:01 AM.
                Reply With Quote
              Old 02-07-2008, 09:02 AM   #650
              lightweight
              Moderator
               
              Join Date: Oct 2007
              Posts: 8,364
              vCash: 500
              Quote:
              Originally Posted by seeker6591 View Post
              i promise I won't but....

              YOU JUST TOLD HIM.

              LOL

              OH yea
                Reply With Quote
              Old 02-07-2008, 09:03 AM   #651
              lightweight
              Moderator
               
              Join Date: Oct 2007
              Posts: 8,364
              vCash: 500
              Quote:
              Originally Posted by seeker6591 View Post
              did he do the fattie??

              NO. I think because he know that I would have posted it.
                Reply With Quote
              Old 02-07-2008, 09:04 AM   #652
              seeker6591
              Gold
               
              Join Date: Sep 2005
              Posts: 14,770
              vCash: 500
              Quote:
              Originally Posted by jamesfromny View Post
              I've got the day off, and am going to try to see Lightweight's friend Mimi. Should I report back here, or add-on to his review?


              james

              reviews and specific info go in the appropriate threads.

              banter and general discussion can be placed here
                Reply With Quote
              Old 02-07-2008, 09:05 AM   #653
              seeker6591
              Gold
               
              Join Date: Sep 2005
              Posts: 14,770
              vCash: 500
              Quote:
              Originally Posted by lightweight View Post
              NO. I think because he know that I would have posted it.
              no cushion for the pushin??

              LOL
                Reply With Quote
              Old 02-07-2008, 09:05 AM   #654
              lightweight
              Moderator
               
              Join Date: Oct 2007
              Posts: 8,364
              vCash: 500
              Quote:
              Originally Posted by Mr. W. Coyote View Post
              As I am!

              Great.
                Reply With Quote
              Old 02-07-2008, 09:06 AM   #655
              lightweight
              Moderator
               
              Join Date: Oct 2007
              Posts: 8,364
              vCash: 500
              Quote:
              Originally Posted by Mr. W. Coyote View Post
              Is this the place near another Strip club???

              If so, I so agree... 15 mins...in and out last week for me!
              Are you talking about the Gym?
                Reply With Quote
              Old 02-07-2008, 09:07 AM   #656
              lightweight
              Moderator
               
              Join Date: Oct 2007
              Posts: 8,364
              vCash: 500
              Quote:
              Originally Posted by seeker6591 View Post
              good morning gents..

              all is quiet here on the western front.



              has everyone set up their buddy lists yet?
              Hey. ....
                Reply With Quote
              Old 02-07-2008, 09:08 AM   #657
              seeker6591
              Gold
               
              Join Date: Sep 2005
              Posts: 14,770
              vCash: 500
              hey.......

              welcome aboard!
                Reply With Quote
              Old 02-07-2008, 09:09 AM   #658
              lightweight
              Moderator
               
              Join Date: Oct 2007
              Posts: 8,364
              vCash: 500
              Quote:
              Originally Posted by seeker6591 View Post
              "mid" island

              You said my bunny has a good nose.

              Horseblock, rt 112, granny, Middle Island Rd, Continental AVE

              I was just on all those street. Nr you?
                Reply With Quote
              Old 02-07-2008, 09:10 AM   #659
              lightweight
              Moderator
               
              Join Date: Oct 2007
              Posts: 8,364
              vCash: 500
              Quote:
              Originally Posted by wolf5958 View Post
              OK Seek I need to go do my gerbil imatation and do a 45 min run on the tread mill be back in a little bit. Can't wait to see what LW has to say about yesterday and last nights dinner. He was f uped when he headed out yesterday.

              Yes I was. I had to sober up fast and go to dinner and another 7 Carona's.
                Reply With Quote
              Old 02-07-2008, 09:11 AM   #660
              lightweight
              Moderator
               
              Join Date: Oct 2007
              Posts: 8,364
              vCash: 500
              Quote:
              Originally Posted by seeker6591 View Post
              si

              si

              and si senior.


              speaking of getting caught up..it takes me 10 minutes everyday to go back and read this thread !!!

              LOL
              I am still catching up. Not there yet.
                Reply With Quote
              Reply



              Posting Rules
              You may not post new threads
              You may not post replies
              You may not post attachments
              You may not edit your posts

              vB code is On
              Smilies are On
              [IMG] code is On
              HTML code is Off
              Forum Jump

              Similar Threads
              Thread Thread Starter Forum Replies Last Post
              How long will BMM last? BigMadM New York 173 03-03-2006 06:53 PM
              kayla eros long island ViagraMan New York 9 07-30-2003 06:40 AM
              Zara and Paige Long Island info! Shauna New York 5 02-21-2003 10:09 AM
              Gia that used to work on long island GlobalCourtesans New York 17 02-09-2003 09:09 PM
              Kimmie Does Long Island Kimmie New York 11 02-06-2003 10:43 AM

              All times are GMT -8. The time now is 12:07 PM.

              This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

              Powered by vBulletin® Version 3.6.8
              Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

              ]]>
              false
              6098228862595357696 6291968 Email addresses disclosed http://www.verifiedplaymates.com Information Certain
              However, email addresses of developers and other individuals (whether appearing on-screen or hidden within page source) may disclose information that is useful to an attacker; for example, they may represent usernames that can be used at the application's login, and they may be used in social engineering attacks against the organisation's personnel. Unnecessary or excessive disclosure of email addresses may also lead to an increase in the volume of spam email received.]]>
            • tim@verifiedplaymates.com
            • ]]>

              Verified Playmates
              Fetish Fetish / Fantasy Tantra Tantra BDSM BDSM
              Directory Links:

              Want your banner on here? To get a link to your website added to our new link directory,
              please submit your banner or link code to: tim@verifiedplaymates.com



              Our Linking Code:





              Las Vegas Escort Directory

              Go to http://mistressmiel.com
              Trinity of Chicago

              http://mistressvixxen.escort-site.com



               NAUGHTY FREE SEX VIDEOS

              Craigslist Adult Alternative Replacement Website
              © 2009-2010 - VerifiedPlaymates.com VP Escort Directory - All rights reserved.


              ]]>
              false
              1472658976239289344 5244160 Cross-domain script include http://rare-escorts.com Information Certain
              If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
            • http://escort-traffic.com/na.js
            • http://www.google-analytics.com/urchin.js
            • ]]>
              Escort website design and escort web design for free
                 Escort website design and escort web design for free
               
              Login   
              escort design
              Rare Escorts
              Registerescort web designFeaturedescort web designFAQescort web designTestimonialsescort web designBannersescort web designCareersescort web designContact
              escorts web design
              Free Escort Templates

              Escort web design for free

              At Rare, you will have free escort templates that you can use with your website. From time to time we are creating more free escort web design for You. Log into your account and change the look of your web site by picking the template, and applying that template to your escort website and the new look will become live instantly with only... one click...

              Escort website for free

              Forget about long URL of your escort website like escortsiteportal.com/yourpage/htmlfile.html. Our escorts have web sites, with a sexy name like YOU.rare-escort.com or YOU.escortwww.com or other (we will add more sexier .COM domains), in a matter of minutes !

              Escort advertising and marketing for free

              We will also handle the escort advertising automatically by sending your website to search engines. Yes, we will do your search engine optimization and submission free of charge. That's because we know that without advertising your website it is like a Porche without an engine. In this way you can call yourself a rare escort with a rare escort web site.

              Custom content -> Your content

              Customize your website ! Change the content of pages like About Me, Rates (any currency), Photos, Movies, Blog, Mailing list, Chat (yes, your own live chat room), Gifts, Reviews, Guestbook, Calendar, Employment, Contact (even with SMS on your mobile phone), Partners (where you can add links and banners), FAQ (frequently asked questions), Contact, get your own banners (automatically generated) or even choose (or upload) your background music (.MID files), 3Gb/month free hosting and much more, everything for FREE. A complete escort web site for YOU.

              For FREE

              Why use webmasters that you have to pay, or even to beg, to modify your website or webdesign when you can do this yourself, fast and easy without any special knowledge other than few clicks ? You can have now a complete escort site !
              How come that such an offer is free, and it will remain free for life ? We will pay ourselves with a small banner on your page. That's it.

              As a special offer, we are picking each month, an active escort, and register her own .COM domain, again, for free. That means even shorter name for your website. Isn't this a rare even unique offer ?

              Register your escort web design

              If you represent an escort agency, we have the solution for you as well. You can add photos, using the name as a label or you can even create a website for each escort.




              Even more than escort web design, we are continuosly studying the escort business searching new free services and free features built right into your web site like: Escort Membership Area - Escort Webcam - Escort Video Chat - Escort Premium Domains - Escort Fans system - Escort Phone Chat and more at Rare-Escorts.com
              escort design
               Copyright 2004 - . All rights reserved. Rare EscortsTerms And ConditionsPrivacy PolicyResource
              Registerescort designFeaturedescort designFAQescort designTestimonialsescort designBannersescort designCareersescort designContact
              ]]>
              false
              8952715995232988160 5244416 Cookie without HttpOnly flag set http://books.google.com Information Certain
              You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
            • PREF=ID=0772c9d5ef13aaaf:U=d212295d0f1573ee:TM=1303071569:LM=1303072456:S=ZdrhaNMwRElYmjAj; expires=Tue, 16-Apr-2013 20:34:16 GMT; path=/; domain=.google.com
            • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
              Google Books
              ]]>
              false
              1848322458860857344 8389120 HTML does not specify charset http://caseyofhouston.com Information Certain
              In most cases, the absence of a charset directive does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
              charset=ISO-8859-1.]]> Contact me here - 281-763-8032

              Caseyofhouston  

              HomeAbout MePhotosServicesRatesGiftsGuestbookReviewsCalendarFAQLinksContact

              Escort Contact
              ?

              ?

              Hello gentlemen

              You may call me direct at: 281-763-8032.

              ?

              Or you may leave me a message here, with your information, and I will get back to you ASAP!

              Phone: 281-763-8032

                 
               years
               Email   Phone call   Phone SMS  
              • Fields with * before are mandatory.
              • You will receive an email with the booking information for cancelation purposes. First please add @rare-escorts.com to your trusted friends or safe list, etc.

              eccie.net

              SitemapRSSAdd to My Yahoo!Add to Google Homepage or Google Reader !
              ]]>
              false
              4095868951368601600 2097920 Cross-site scripting (reflected) http://ib.adnxs.com High Certain
              The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

              Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

              The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
            • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
            • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
            • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
              14a3e'%3balert(1)//25b58c25ab2 was submitted in the redir parameter. This input was echoed as 14a3e';alert(1)//25b58c25ab2 in the application's response.

              This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
              ');]]> false
              6691742141032687616 5243648 Cookie scoped to parent domain http://books.google.com Information Certain
            • PREF=ID=0772c9d5ef13aaaf:U=d212295d0f1573ee:TM=1303071569:LM=1303072456:S=ZdrhaNMwRElYmjAj; expires=Tue, 16-Apr-2013 20:34:16 GMT; path=/; domain=.google.com
            • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
              Google Books
              ]]>
              false
              2692889776906468352 5244672 Session token in URL http://caseyofhouston.com Medium Firm
            • http://caseyofhouston.com/calendar.php?m=03&y=2011&PHPSESSID=9c427f4c538ed5c84467b8adec1aca52
            • http://caseyofhouston.com/calendar.php?m=05&y=2011&PHPSESSID=9c427f4c538ed5c84467b8adec1aca52
            • http://caseyofhouston.com/partners_jump.php?pid=163771&PHPSESSID=9c427f4c538ed5c84467b8adec1aca52
            • ]]>
              Check my calendar !

              Caseyofhouston  

              HomeAbout MePhotosServicesRatesGiftsGuestbookReviewsCalendarFAQLinksContact

              Escort Calendar

              I am based in Houston, however I do tour. I am currently touring New York, Boston, Chicago, and New Jersey.

              April 2011

              SundayMondayTuesdayWednesdayThursdayFridaySaturday
              27 Mar
              28 Mar
              29 Mar
              30 Mar
              31 Mar
              1 AprBook ME
              Available
              2 AprBook ME
              Available
              3 AprBook ME
              Available
              4 AprBook ME
              Available
              5 AprBook ME
              Available
              6 AprBook ME
              Available
              7 AprBook ME
              Available
              8 AprBook ME
              Available
              9 AprBook ME
              Available
              10 AprBook ME
              Available
              11 AprBook ME
              Available
              12 AprBook ME
              Available
              13 AprBook ME
              Available
              14 AprBook ME
              Available
              15 AprBook ME
              Available
              16 AprBook ME
              Available
              17 AprBook ME
              Available
              18 AprBook ME
              Available
              19 AprBook ME
              Available
              20 AprBook ME
              Available
              21 AprBook ME
              Available
              22 AprBook ME
              Available
              23 AprBook ME
              Available
              24 AprBook ME
              Available
              25 AprBook ME
              Available
              26 AprBook ME
              Available
              27 AprBook ME
              Available
              28 AprBook ME
              Available
              29 AprBook ME
              Available
              30 AprBook ME
              Available
              (Previous month) <<<>>> (Next month)

              May 2011

              SundayMondayTuesdayWednesdayThursdayFridaySaturday
              1 May
              2 May
              3 May
              4 May
              5 May
              6 May
              7 May
              8 May
              9 May
              10 May
              11 May
              12 May
              13 May
              14 May
              15 May
              16 May
              17 May
              18 May
              19 May
              20 May
              21 May
              22 May
              23 May
              24 May
              25 May
              26 May
              27 May
              28 May
              29 May
              30 May
              31 May
              1 Jun
              2 Jun
              3 Jun
              4 Jun


              June 2011

              SundayMondayTuesdayWednesdayThursdayFridaySaturday
              29 May
              30 May
              31 May
              1 Jun
              2 Jun
              3 Jun
              4 Jun
              5 Jun
              6 Jun
              7 Jun
              8 Jun
              9 Jun
              10 Jun
              11 Jun
              12 Jun
              13 Jun
              14 Jun
              15 Jun
              16 Jun
              17 Jun
              18 Jun
              19 Jun
              20 Jun
              21 Jun
              22 Jun
              23 Jun
              24 Jun
              25 Jun
              26 Jun
              27 Jun
              28 Jun
              29 Jun
              30 Jun
              1 Jul
              2 Jul

              Register for my free newsletter
              Email
              You may also unsubscribe at any time.

              eccie.net

              SitemapRSSAdd to My Yahoo!Add to Google Homepage or Google Reader !
              ]]>
              false
              6046487327502018560 8389632 Content type incorrectly stated http://static.filestube.com Information Firm
              In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
            • Content-Type: image/gif
            • The response states that it contains a GIF image. However, it actually appears to contain a PNG image.]]>
              3m???d?????&E??"?Fs???9?s???l:???g>?B??lbSG?j??B?G?m???fg???:!??#?Pa????-?K?F?~?6?????u?~?v???}?~???? ? ?????C?u?.??'?????A????Z???!H???5??|av????i?2s??r`????0>o?=q??????WR????+?+?w??Vp??4R]?%z??pyy??j?>?(Yv??+e????FH??z@K}3-?M?u ?? false
              9074898388545725440 3145984 Cleartext submission of password http://utopiaguide.com High Certain
            • http://utopiaguide.com/forums/login.php?do=login
            • The form contains the following password field:
              • vb_login_password
              ]]>
              UtopiaGuide - Calendar



              Go Back   UtopiaGuide > Calendar
              Register FAQ Members List CalendarvBookieToplist Today's Posts

              Public Show Today Monthly View Add New Event
              December 2006
              >
              >
              >
              26 Sun
               
              27 Mon
               
              28 Tue
               
              29 Wed
               
              30 Thu
               
              1 Fri
              2 Sat
              >
              >
              >
              3 Sun
              4 Mon
              5 Tue
              6 Wed
              7 Thu
              8 Fri
              9 Sat
              >
              >
              >
              10 Sun
              11 Mon
              spmocyt1 (46)
              12 Tue
              13 Wed
              14 Thu
              15 Fri
              16 Sat
              chac77 (29)
              >
              >
              >
              17 Sun
              18 Mon
              19 Tue
              20 Wed
              21 Thu
              22 Fri
              23 Sat
              candishop (21)
              >
              >
              >
              24 Sun
              25 Mon
              capitan2 (34)
              26 Tue
              27 Wed
              28 Thu
              xyniks (41)
              xkyroutx (25)
              29 Fri
              30 Sat
              >
              >
              >
              31 Sun
              1 Mon
               
              2 Tue
               
              3 Wed
               
              4 Thu
               
              5 Fri
               
              6 Sat
               

              November 2006
                S M T W T F S
              > 29 30 31 1 2 3 4
              > 5 6 7 8 9 10 11
              > 12 13 14 15 16 17 18
              > 19 20 21 22 23 24 25
              > 26 27 28 29 30 1 2
              January 2007
                S M T W T F S
              > 31 1 2 3 4 5 6
              > 7 8 9 10 11 12 13
              > 14 15 16 17 18 19 20
              > 21 22 23 24 25 26 27
              > 28 29 30 31 1 2 3
               
              Add New Event
              Jump to month
              Calendar Jump
              All times are GMT -8. The time now is 12:32 PM.

              This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

              Powered by vBulletin® Version 3.6.8
              Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

              ]]>
              false
              524252942921777152 5244928 Password field with autocomplete enabled http://www.thatshiphop.com Low Certain
              The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
              autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
            • http://www.thatshiphop.com/index.php?page=login
            • The form contains the following password field with autocomplete enabled:
              • login_password
              ]]>
              ThatsHipHop.com - News

              ThatsHiphop.com News

               
              Krayzie Bone: No More Harmonizing With Bone...

              Krayzie Bone has announced that he's leaving Bone Thugs n Harmony after 20 years to focus on his solo career and his label, The Life Entertainment. Krayzie's first project is a compilation titled Cleveland Is the City, Volume One, and it'll be on the stre... Read more
              Gucci Mane: It's Still Gucci Time Behind Ba...

              No one has bailed Gucci Mane out of prison, even though his bond is only $5700. He's locked up in Atlanta for allegedly throwing a woman out of his car for rejecting his sexual advances last Friday. But even if he posts bail, he'll simply be transferred t... Read more
              Bobby Brown: Child Number Six On The Way

              Bobby Brown and fiancee Alicia Etheridge are expecting another baby. This will be child number six for Brown and his second with Alicia. He and Whitney Houston have just one daughter, Bobbi Christina. - Rahim Wright... Read more
              Mariah Carey: Bares All -- Yet Again

              Just in case someone in the world hasn't seen Mariah Carey's bare, baby packed belly, she's showing it again - - on the cover of Britain's OK! magazine. Mimi tells the mag that hubby Nick Cannon has already started reading stories to the couple's unborn ... Read more
              Waka Flocka: Gucci And Papoose On New Mixta...

              Waka Flocka Flame has just dropped a new mixtape titled Benjamin Flocka.Surprisingly, there's no Lex Luger production this time around. Instead, Waka recruited Southside to man the boards for most of the project. The mixtape also includes features from th... Read more
              Nicki Minaj: Channeling Marge Simpson

              Nicki Minaj's latest wig looks rather cartoonish - - and that may be because she got the idea for the beehive look from Marge Simpson. Nicki tells People magazine, "Never did I think I would be rocking the Marge Simpson... I realize that she was cutting ... Read more
              Nicki Minaj: Channeling Marge Simpson

              Nicki Minaj's latest wig looks rather cartoonish - - and that may be because she got the idea for the beehive look from Marge Simpson. Nicki tells People magazine, "Never did I think I would be rocking the Marge Simpson... I realize that she was cutting ... Read more
              Rihanna, Eminem, Gaga: Billboard Awards Fin...

              Rihanna leads all comers for next month's Billboard Awards. She's a finalist in 18 categories, including Top Hot 100 Artist and Top Female Artist. Eminem is up for 16 awards, and Lady Gaga is up for 12. Justin Bieber and Bruno Mars are finalists in 11 cat... Read more
              Beyonce: A Shot In The Dark

              Beyonce is keeping people guessing about just what's going on with her new video, which she headed to California's Mojave Desert to shoot on Tuesday. Some sources say the clip is meant to accompany a song called "Girl," while others say it's for "Till the... Read more
              Teyana Taylor: Accused Of Assault

              Teyana Taylor is denying Internet reports that she assaulted another woman at a studio in Burbank, California on Saturday night. She writes on Twitter, "I'm being accused of something I didn't do." TMZ reports that Teyana allegedly laid a beat down on the... Read more
               

              1, 2, 3, 4, 5, 6, 7, 8, 9 ... 26 ... Next

               

              THH Login

              Interviews

              Large Amount

              LARGE AMOUNT ???THE BOY WITH A BILLION BARS??? "The BOY WITH A BILLION BARS???, in which this unique title was also natura
              Read More >

              Group Home

              GROUP HOME RSRadio: So group home it??s been a few years since you have released an official album what made you decide that
              Read More >


              ]]>
              false
              66444933216382976 5243904 Cross-domain Referer leakage http://googleads.g.doubleclick.net Information Certain
              If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

              You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

              Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

              Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
            • http://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-4063878933780912&output=html&h=90&slotname=2510184792&w=728&lmt=1303097592&flash=10.2.154&url=http%3A%2F%2Fxss.cx%2Fexamples%2Fdork%2Fmobile%2Fxss-dork-mobile-cross-site-scripting-foxnews.mobi.html&dt=1303079612638&bpp=4&shv=r20110406&jsv=r20110412&correlator=1303079613690&frm=0&adk=1607234649&ga_vid=41627615.1303079614&ga_sid=1303079614&ga_hid=1631029694&ga_fc=0&u_tz=-300&u_his=2&u_java=1&u_h=1200&u_w=1920&u_ah=1156&u_aw=1920&u_cd=16&u_nplug=9&u_nmime=44&biw=1063&bih=1016&fu=0&ifi=1&dtd=1076&xpc=AMYSlyCyYj&p=http%3A//xss.cx
            • The response contains the following links to other domains:
              • http://pagead2.googlesyndication.com/pagead/abglogo/abg-en-100c-000000.png
              • http://pagead2.googlesyndication.com/pagead/sma8.js
              • http://www.google.com/url?ct=abg&q=https://www.google.com/adsense/support/bin/request.py%3Fcontact%3Dabg_afc%26url%3Dhttp://xss.cx/examples/dork/mobile/xss-dork-mobile-cross-site-scripting-foxnews.mobi.html%26hl%3Den%26client%3Dca-pub-4063878933780912%26adU%3Dwww.Groupon.com/Chicago%26adT%3DChicago%2BCoupons%26adU%3Dwww.NetworkAutomation.com%26adT%3DScripting%2BAutomation%26adU%3Dwww.excelsiorcomputers.com%26adT%3DExcelsior%2BComputers%26gl%3DUS&usg=AFQjCNEOB6SprwK3g1zE39Mez2pZb1FMHg
              ]]>
              • Chicago Coupons 1 ridiculously huge coupon a day. It's like doing Chicago at 90% off! www.Groupon.com/Chicago
              • Scripting Automation Create Complex Scripts in Minutes! Free 30 day trial. Download Now. www.NetworkAutomation.com
              • Excelsior Computers Complete UNIX Advantage, Premier & Excalibur Solutions & Support www.excelsiorcomputers.com
              Ads by Google
              ]]>
              false
              4046178997787566080 2097920 Cross-site scripting (reflected) http://input.insights.gravity.com High Certain
              The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

              Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

              The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
            • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
            • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
            • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
              cca45"%3balert(1)//2248481d84d was submitted in the g parameter. This input was echoed as cca45";alert(1)//2248481d84d in the application's response.

              This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
              false
              1506492754313716736 2097920 Cross-site scripting (reflected) http://ads.pointroll.com High Certain
              The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

              Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

              The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
            • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
            • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
            • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
              7bac9"-alert(1)-"e95a1dd87a4 was submitted in the redir parameter. This input was echoed unmodified in the application's response.

              This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
              ")]]> false
              2252142792755914752 5244416 Cookie without HttpOnly flag set http://um.simpli.fi Information Certain
              You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
            • uid=33KJlw0AY6A4eg4s7B36C0%3D%3D; domain=.simpli.fi; path=/; expires=Mon, 16-Apr-2012 23:42:40 GMT
            • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
              false
              3786965105650558976 5244416 Cookie without HttpOnly flag set http://sync.mathtag.com Information Certain
              You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
            • ts=1303084730; domain=.mathtag.com; path=/; expires=Mon, 16-Apr-2012 23:58:50 GMT
            • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
              false
              6450084059305485312 5244416 Cookie without HttpOnly flag set http://d.audienceiq.com Information Certain
              You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
            • uid=4110685209277066740; Domain=.audienceiq.com; Expires=Fri, 14-Oct-2011 23:37:30 GMT; Path=/
            • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
              false
              1102568111889831936 2097920 Cross-site scripting (reflected) http://www.findalternative.com High Certain
              The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

              Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

              The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
            • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
            • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
            • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
              17d9d"style%3d"x%3aexpression(alert(1))"62b3321881f was submitted in the name of an arbitrarily supplied request parameter. This input was echoed as 17d9d"style="x:expression(alert(1))"62b3321881f in the application's response.

              This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response. The PoC attack demonstrated uses a dynamically evaluated expression with a style attribute to introduce arbitrary JavaScript into the document. Note that this technique is specific to Internet Explorer, and may not work on other browsers.]]>
              lessons of passion dating sim guide index2.php index.php 17d9d"style="x:expression(alert(1))"62b3321881f - Find Alternative
                  
              Advanced Search - Preferences
              We were looking for pages containing the term lessons of passion dating sim guide index2.php index.php 17d9d"style="x:expression(alert(1))"62b3321881f 0 pages were found (2.0011 Seconds)

              Did you mean: lessons of passion dating Sim guide index Phip index Phip DD style x expression alert 1 bf?




              Unfortunately we couldn't find any pages containing the term "lessons of passion dating sim guide index2.php index.php 17d9d"style="x:expression(alert(1))"62b3321881f"


                English  Latviski  Slovenian
              Sponsors Area   Query Archive
              Add Firefox Search Plugin Now!
              Privacy Policy
              Find Alternative
              ]]>
              false
              7781516205663196160 5243904 Cross-domain Referer leakage http://www.thatshiphop.com Information Certain
              If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

              You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

              Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

              Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
            • http://www.thatshiphop.com/news.php?%27--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x00003E)%3C/script%3E
            • The response contains the following link to another domain:
              • http://pagead2.googlesyndication.com/pagead/show_ads.js
              ]]>
              ThatsHipHop.com - News

              ThatsHiphop.com News

               
              Krayzie Bone: No More Harmonizing With Bone...

              Krayzie Bone has announced that he's leaving Bone Thugs n Harmony after 20 years to focus on his solo career and his label, The Life Entertainment. Krayzie's first project is a compilation titled Cleveland Is the City, Volume One, and it'll be on the stre... Read more
              Gucci Mane: It's Still Gucci Time Behind Ba...

              No one has bailed Gucci Mane out of prison, even though his bond is only $5700. He's locked up in Atlanta for allegedly throwing a woman out of his car for rejecting his sexual advances last Friday. But even if he posts bail, he'll simply be transferred t... Read more
              Bobby Brown: Child Number Six On The Way

              Bobby Brown and fiancee Alicia Etheridge are expecting another baby. This will be child number six for Brown and his second with Alicia. He and Whitney Houston have just one daughter, Bobbi Christina. - Rahim Wright... Read more
              Mariah Carey: Bares All -- Yet Again

              Just in case someone in the world hasn't seen Mariah Carey's bare, baby packed belly, she's showing it again - - on the cover of Britain's OK! magazine. Mimi tells the mag that hubby Nick Cannon has already started reading stories to the couple's unborn ... Read more
              Waka Flocka: Gucci And Papoose On New Mixta...

              Waka Flocka Flame has just dropped a new mixtape titled Benjamin Flocka.Surprisingly, there's no Lex Luger production this time around. Instead, Waka recruited Southside to man the boards for most of the project. The mixtape also includes features from th... Read more
              Nicki Minaj: Channeling Marge Simpson

              Nicki Minaj's latest wig looks rather cartoonish - - and that may be because she got the idea for the beehive look from Marge Simpson. Nicki tells People magazine, "Never did I think I would be rocking the Marge Simpson... I realize that she was cutting ... Read more
              Nicki Minaj: Channeling Marge Simpson

              Nicki Minaj's latest wig looks rather cartoonish - - and that may be because she got the idea for the beehive look from Marge Simpson. Nicki tells People magazine, "Never did I think I would be rocking the Marge Simpson... I realize that she was cutting ... Read more
              Rihanna, Eminem, Gaga: Billboard Awards Fin...

              Rihanna leads all comers for next month's Billboard Awards. She's a finalist in 18 categories, including Top Hot 100 Artist and Top Female Artist. Eminem is up for 16 awards, and Lady Gaga is up for 12. Justin Bieber and Bruno Mars are finalists in 11 cat... Read more
              Beyonce: A Shot In The Dark

              Beyonce is keeping people guessing about just what's going on with her new video, which she headed to California's Mojave Desert to shoot on Tuesday. Some sources say the clip is meant to accompany a song called "Girl," while others say it's for "Till the... Read more
              Teyana Taylor: Accused Of Assault

              Teyana Taylor is denying Internet reports that she assaulted another woman at a studio in Burbank, California on Saturday night. She writes on Twitter, "I'm being accused of something I didn't do." TMZ reports that Teyana allegedly laid a beat down on the... Read more
               

              1, 2, 3, 4, 5, 6, 7, 8, 9 ... 26 ... Next

               

              THH Login

              Interviews

              Large Amount

              LARGE AMOUNT ???THE BOY WITH A BILLION BARS??? "The BOY WITH A BILLION BARS???, in which this unique title was also natura
              Read More >

              Group Home

              GROUP HOME RSRadio: So group home it??s been a few years since you have released an official album what made you decide that
              Read More >


              ]]>
              false
              3447497990167248896 6292224 Private IP addresses disclosed http://www.facebook.com Information Certain
              Discovering the private addresses used within an organisation can help an attacker in carrying out network-layer attacks aiming to penetrate the organisation's internal infrastructure.]]>
            • 10.36.228.119
            • ]]>
              false
              2134631236765959168 5243904 Cross-domain Referer leakage http://www.google.com Information Certain
              If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

              You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

              Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

              Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
            • http://www.google.com/url?sa=t&source=web&cd=6&ved=0CC0QFjAF&url=http%3A%2F%2Fwww.lessonofpassion.com%2Flop_games.php%3Fmygame%3DGilligans%2520Long%2520Island&ei=jUmrTe7NIsbJgQep7-HzBQ&usg=AFQjCNFndszcjwc6toQTW0EZRtITaLzNeA
            • The response contains the following link to another domain:
              • http://www.lessonofpassion.com/lop_games.php?mygame=Gilligans%20Long%20Island
              ]]>
              302 Moved

              302 Moved

              The document has moved here. ]]>
              false
              305646040172658688 8389120 HTML does not specify charset http://input.insights.gravity.com Information Certain
              In most cases, the absence of a charset directive does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
              charset=ISO-8859-1.]]> false
              7741762345829025792 6291968 Email addresses disclosed http://caseyofhouston.com Information Certain
              However, email addresses of developers and other individuals (whether appearing on-screen or hidden within page source) may disclose information that is useful to an attacker; for example, they may represent usernames that can be used at the application's login, and they may be used in social engineering attacks against the organisation's personnel. Unnecessary or excessive disclosure of email addresses may also lead to an increase in the volume of spam email received.]]>
            • you@site.com
            • ]]>
              Welcome, hope to see you soon!

              Caseyofhouston  

              HomeAbout MePhotosServicesRatesGiftsGuestbookReviewsCalendarFAQLinksContact

              About Me
              Hello gentlemen!
              ?
              My name is Casey. I'm 26yrs old, 5'7", 115lbs, and my mesurements are 36b-24-28. I offer honest, un-rushed service with a smile. What you see is 100% me!
              ?
              No games
              No drama
              No bait and switch!!
              ?
              Just me, and lots of FUN!!!
              ?
              I have a great attitude, a charming personality, and I love meeting new people.
              ?
              Not to mention I always AIM to PLEASE!!
              Your total satisfaction is my ultimate goal!!
              ?
              So gentlemen, if you like what you see so far, you will love me in person!!
              Give me a call...
              ?
              I also provide escort services to the following areas
              ?The Woodlands, Spring, Kingwood, Pearland, Sugarland most surrounding areas of Houston...
              Anywhere you need me....
              ?
              XOXOXO
              Casey
              281-763-8032

              Register for my free newsletter
              Email
              You may also unsubscribe at any time.

              eccie.net

              SitemapRSSAdd to My Yahoo!Add to Google Homepage or Google Reader !

              Get free escort web design (like this one) !

              ]]>
              false
              7021252540560918528 5244416 Cookie without HttpOnly flag set http://pixel.rubiconproject.com Information Certain
              You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
            • rpb=5328%3D1; expires=Tue, 17-May-2011 23:36:57 GMT; path=/; domain=.rubiconproject.com
            • rpx=5328%3D11319%2C0%2C2%2C%2C; expires=Tue, 17-May-2011 23:36:57 GMT; path=/; domain=.pixel.rubiconproject.com
            • put_2025=549188a1-a07c-4231-be94-7f725e1a19f7; expires=Tue, 16-Apr-2013 23:36:57 GMT; path=/; domain=.rubiconproject.com
            • The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
              false
              7160248181357601792 6292224 Private IP addresses disclosed http://static.ak.fbcdn.net Information Certain
              Discovering the private addresses used within an organisation can help an attacker in carrying out network-layer attacks aiming to penetrate the organisation's internal infrastructure.]]>
            • 10.30.148.190
            • ]]>
              =0;b--)try{if(parent.frames[b]&&parent.frames[b].Arbiter&&parent.frames[b].Arbiter.inform)WidgetArbiter._siblings.push(parent.frames[b].Arbiter);}catch(a){}},inform:function(){WidgetArbiter._findSiblings();var a=$A(arguments);WidgetArbiter._siblings.each(function(b){b.inform.apply(b,a);});}}; WindowComm={_callbacks:{},makeHandler:function(a,c){c=c||'opener';var b='f'+(Math.random()*(1<<30)).toString(16).replace('.','');WindowComm._callbacks[b]=a;return new URI('/connect/window_comm.php').setQueryData({_id:b,_relation:c}).getQualifiedURI().toString();},_recv:function(b){var a=new URI(b).getQueryData();WindowComm._callbacks[a._id](a);}}; var PopupResizer={_opts:{allowShrink:true,timeout:100},init:function(a){copy_properties(PopupResizer._opts,a);PopupResizer._resizeCheck.recur(PopupResizer._opts.timeout);},_resizeCheck:function(){var e=Vector2.getViewportDimensions(),a=PopupResizer._getDocumentSize(),c=a.y-e.y,d=a.x-e.x;if(d<0)d=0;if(!PopupResizer._opts.allowShrink&&c<0)c=0;if(c||d)try{window.resizeBy(d,c);if(d)window.moveBy(d/-2,0);}catch(b){}},_getDocumentSize:function(){var a={x:ua.firefox()?document.documentElement.scrollWidth:document.body.scrollWidth,y:document.body.scrollHeight};if(a.x<=0||a.x>document.documentElement.scrollWidth)a.x=document.documentElement.scrollWidth;if(a.y<=0||a.y>document.documentElement.scrollHeight)a.y=document.documentElement.scrollHeight;if(window.Dialog&&Dialog.max_bottom&&Dialog.max_bottom>a.y)a.y=Dialog.max_bottom;return a;},open:function(i,b,j){var f=typeof window.screenX!='undefined'?window.screenX:window.screenLeft,g=typeof window.screenY!='undefined'?window.screenY:window.screenTop,e=typeof window.outerWidth!='undefined'?window.outerWidth:document.body.clientWidth,d=typeof window.outerHeight!='undefined'?window.outerHeight:(document.body.clientHeight-22),c=parseInt(f+((e-j)/2),10),h=parseInt(g+((d-b)/2.5),10),a=('width='+j+',height='+b+',left='+c+',top='+h);return window.open(i,'_blank',a);}}; var PlatformOptInPopup=function(){};copy_properties(PlatformOptInPopup,{DIALOG_URL:'/connect/uiserver.php',DIALOG_WIDTH:420,DIALOG_HEIGHT:450,APP_ID:127760087237610,open:function(d,c,a){if(!d)d='generic';if(!c)c='opt.in';var b=new URI(PlatformOptInPopup.DIALOG_URL);b.addQueryData({social_plugin:d,method:c,display:'popup',app_id:PlatformOptInPopup.APP_ID});if(a)b.addQueryData(a);return PopupResizer.open(b.toString(),PlatformOptInPopup.DIALOG_WIDTH,PlatformOptInPopup.DIALOG_HEIGHT);}}); function ConnectSocialWidget(a,b){ConnectSocialWidget.setInstance(b,this);ConnectSocialWidget.delayUntilDisplayed(function(){this.initializeObject.call(this,a,b);}.bind(this));}copy_properties(ConnectSocialWidget,{OPT_IN_FACEBOOK_APP_ID:'127760087237610',TYPE_ACTIVITY:'A',TYPE_RECOMMENDATIONS:'R',TYPE_LIKEBOX:'L',instances:{},setInstance:function(b,a){ConnectSocialWidget.instances[b]=a;},getInstance:function(a){return ConnectSocialWidget.instances[a];},popups:{},login:function(a,b){ConnectSocialWidget.popups[b]={popup:PlatformOptInPopup.open('login','opt.in')};},aDelayedFunctions:[],delayUntilDisplayed:function(a){ConnectSocialWidget.aDelayedFunctions.push(a);if(ConnectSocialWidget.aDelayedFunctions.length===1){if(!ConnectSocialWidget.ndTestDim){var b=document.createElement('div'),c={position:'absolute',width:'1px',height:'1px',visibility:'hidden',overflow:'hidden',top:'0px'};for(var d in c)if(typeof c[d]==='string')CSS.setStyle(b,d,c[d]);document.body.appendChild(b);ConnectSocialWidget.ndTestDim=b;}ConnectSocialWidget.testForDisplay();}},testForDisplay:function(){var a=Vector2.getElementDimensions(ConnectSocialWidget.ndTestDim).y;if(a!==0){ConnectSocialWidget.aDelayedFunctions.forEach(function(b){b();});ConnectSocialWidget.aDelayedFunctions=[];}else ConnectSocialWidget.testForDisplay.defer(100);},listenForLogin:function(){if(!ConnectSocialWidget.listenerAttached){Arbiter.subscribe('platform/socialplugins/login',function(a){if(a.user!==Env.user)document.location.reload();});ConnectSocialWidget.listenerAttached=true;}}});copy_properties(ConnectSocialWidget.prototype,{initializeObject:function(e,g){var d=DOM.scry(document.body,e.sOverflowContainerSelector)[0],c=DOM.scry(d,'.fbConnectWidgetFooter')[0],a=c?Vector2.getElementDimensions(c).y:0,f=e.sOverflowItemsSelector,b=DOM.scry(document.body,e.sStreamContainerSelector)[0];this.fRemoveOverflowElements=this.removeOverflowElements.bind(this,d,b,f,-a);copy_properties(this,{bInitialized:true,sWidgetId:g,iFooterHeight:a,ndTop:d,ndFooter:c,ndContentContainer:b,oQueryParams:new URI(window.location.href).getQueryData(),bComboMode:e.bComboMode,sOverflowItemsSelector:f});copy_properties(this.oQueryParams,{post_form_id:Env.post_form_id,user:Env.user});this.fRemoveOverflowElements();CSS.setStyle(b,'visibility','visible');animation(b).from('opacity',0).to('opacity',1).duration(200).go();ConnectSocialWidget.listenForLogin();new ClickThroughMonitor({ndTop:this.ndContentContainer,fValidateLink:this.getElementTop.bind(this),fGetMonitorData:function(h){var i={site:this.oQueryParams.site,type:this.getLinkType(),plugin:this.getPluginType(),social:(DOM.scry(h,'^div.fbSocial').length>0),pos:this.getItemPosition(this.getElementTop(h)),signature:this.getItemSignature(this.getElementTop(h))};if(this.oQueryParams.api_key)i.api_key=this.oQueryParams.api_key;return i;}.bind(this)});},getElementTop:function(b){var a=DOM.scry(b,'^'+this.sOverflowItemsSelector);return a[0];},getItemPosition:function(d){var a=DOM.scry(this.ndContentContainer,this.sOverflowItemsSelector),c=a.length,b=a.indexOf(d)+1;return b+'/'+c;},getItemSignature:function(c){var a=c.className.split(' ');for(var b=0;b0&&(f=$(a.pop()))&&(Vector2.getElementDimensions(f).y+Vector2.getElementPosition(f).y)>e)DOM.remove(f);},login:function(){ConnectSocialWidget.login(this.appID,this.sWidgetId);},toggleLogin:function(){DOM.scry(this.ndTop,'.fbToggleLogin').forEach(function(a){CSS.toggle(a);});this.fRemoveOverflowElements();}});function ActivityWidget(a,b){this.parent.construct(this,a,b);}ActivityWidget.extend('ConnectSocialWidget');ActivityWidget.ENDPOINT='/ajax/connect/activity_widget.php';ActivityWidget.REQUEST_INTERVAL=15*1000;ActivityWidget.ACTIVITY_HEIGHT=45;ActivityWidget.MAX_INTERVAL=30;ActivityWidget.MAX_ITEMS=24;copy_properties(ActivityWidget.prototype,{initializeObject:function(a,b){this.parent.initializeObject.call(this,a,b);copy_properties(this,{responseHandler:function(c){ConnectSocialWidget.delayUntilDisplayed(function(){this.onResponse(c);}.bind(this));}.bind(this),scheduleHandler:function(){ConnectSocialWidget.delayUntilDisplayed(function(){this.launchAsyncRequest().scheduleRequest();}.bind(this));}.bind(this),iDecay:0,iInterval:1,sRecommendationsChild:a.sRecommendationsChild,aEventHanlders:[Event.listen(document.body,'mouseover',this._onMouseOver.bind(this))]});this.oQueryParams.nb_activities=Math.min(ActivityWidget.MAX_ITEMS,Math.round((this.oQueryParams.height||300)/ActivityWidget.ACTIVITY_HEIGHT));this.oQueryParams.newest=a.iNewestStoryTime||0;this.scheduleRequest();},getLinkType:function(){return ConnectSocialWidget.TYPE_ACTIVITY;},getPluginType:function(){return ConnectSocialWidget.TYPE_ACTIVITY;},removeOverflowElements:function(){if(this.bComboMode&&!this.bFirstRound){this.bFirstRound=true;var d=Vector2.getElementPosition(this.ndTop).y,b=Vector2.getElementDimensions(document.body).y-(d+this.iFooterHeight),c=Math.round(b/2),a=$A(arguments);a[a.length]=c;ConnectSocialWidget.prototype.removeOverflowElements.apply(this,a);}else ConnectSocialWidget.prototype.removeOverflowElements.apply(this,arguments);},launchAsyncRequest:function(){if(window.LiveTimer){LiveTimer.timestamps=LiveTimer.timestamps||[];LiveTimer.startLoop(0);}new AsyncRequest().setURI(ActivityWidget.ENDPOINT).setData(this.oQueryParams).setReadOnly(true).setErrorHandler(function(){}).setHandler(this.responseHandler).setMethod('GET').send();return this;},onResponse:function(f){var e=f.getPayload();if(e&&e.html&&e.iNewestStoryTime>this.oQueryParams.newest){if(this.oQueryParams.newest===0){var c=this.getEmptyMessage();if(c)DOM.remove(c);}var d=HTML(e.html).getNodes()[0],a=[];var b=function(l){var j=DOM.scry(d,l)[0];if(j.childNodes.length===0)return;j.className="";var k=DOM.scry(this.ndContentContainer,l)[0];if(CSS.hasClass(k,'hidden_elem'))return;DOM.prependContent(k,j);CSS.setStyle(j,'opacity',0);ConnectSocialWidget.prototype.removeOverflowElements(this.ndTop,this.ndActivity,'div.fbActivity',-this.iFooterHeight);if(j.childNodes.length===0){DOM.remove(j);return;}var h=Vector2.getElementDimensions(j),g=$A(j.childNodes);var i=function(){DOM.prependContent(k,g);DOM.remove(j);this.fRemoveOverflowElements();if(this.sRecommendationsChild)ConnectSocialWidget.getInstance(this.sRecommendationsChild).showRecommendationsSeparator().fRemoveOverflowElements();}.bind(this);a.push(animation(j).from('height',0).to('height',h.y).from('opacity',0).to('opacity',1).blind().ondone(i).duration(400).ease());}.bind(this);b('div.fbFriendsActivity');a.forEach(function(g){g.go();});this.oQueryParams.newest=e.iNewestStoryTime+1;}},scheduleRequest:function(){var a=this.iInterval+this.iDecay;this.iDecay=this.iInterval;this.iInterval=a;this.oLastTimeout=setTimeout(this.scheduleHandler,ActivityWidget.REQUEST_INTERVAL+a*1000);},_onMouseOver:function(){var a=this.iInterval;this.iDecay=0;this.iInterval=1;if(a>ActivityWidget.MAX_INTERVAL){clearTimeout(this.oLastTimeout);this.scheduleRequest();}},hasFriendsActivity:function(){return DOM.scry(this.ndContentContainer,'div.fbFriendsActivity')[0].childNodes.length>0;},hasContent:function(){return DOM.scry(this.ndTop,this.sOverflowItemsSelector).length>0;},getEmptyMessage:function(){return DOM.find(this.ndContentContainer,'div.fbEmptyWidget');},showEmptyMessage:function(){var a=this.getEmptyMessage();if(a)CSS.show(a);}});function RecommendationsWidget(a,b){this.parent.construct(this,a,b);}RecommendationsWidget.extend('ConnectSocialWidget');copy_properties(RecommendationsWidget.prototype,{getLinkType:function(){return ConnectSocialWidget.TYPE_RECOMMENDATIONS;},getPluginType:function(){return this.sActivityParent?ConnectSocialWidget.TYPE_ACTIVITY:ConnectSocialWidget.TYPE_RECOMMENDATIONS;},initializeObject:function(b,d){this.parent.initializeObject.call(this,b,d);this.sActivityParent=b.sActivityParent;this.cropImages();if(this.sActivityParent){var a=Vector2.getElementPosition(this.ndFooter).y-Vector2.getElementPosition(this.ndContentContainer).y,c=copy_properties({},this.oQueryParams);if(a0){var b=function(event){RecommendationsWidget.image_resize({image:event.getTarget(),dimension:RecommendationsWidget.IMAGE_HEIGHT});};a.forEach(function(c){if(c.complete){RecommendationsWidget.image_resize({image:c,dimension:RecommendationsWidget.IMAGE_HEIGHT});}else Event.listen(c,'load',b);});}},hasContent:function(){return this.ndContentContainer.childNodes.length>0;},getParent:function(){if(this.sActivityParent)return ConnectSocialWidget.getInstance(this.sActivityParent);},showRecommendationsSeparator:function(){var b=this.getParent();if(b&&b.hasContent()){var a=DOM.scry(this.ndTop,'div.fbRecommendationsSeparator')[0];CSS.show(a);CSS.setStyle(a,'visibility','visible');}return this;},removeOverflowElements:function(){ConnectSocialWidget.prototype.removeOverflowElements.apply(this,arguments);if(this.sActivityParent&&!this.hasContent()){var a=DOM.scry(this.ndTop,'div.fbRecommendationsSeparator')[0];CSS.hide(a);}},onResponse:function(e){DOM.remove(DOM.scry(this.ndTop,"img.fbLoadImg")[0]);var d=e.getPayload();if(d&&d.html){var b=HTML(d.html).getNodes()[0],a=DOM.find(b,'div.fbEmptyWidget'),c=this.getParent();if(a&&c){if(!c.hasContent())c.showEmptyMessage();}else{this.showRecommendationsSeparator();DOM.appendContent(this.ndContentContainer,$A(b.childNodes));this.fRemoveOverflowElements();this.cropImages();animation(this.ndContentContainer).from('opacity',0).to('opacity',1).go();}}}});RecommendationsWidget.ENDPOINT='/ajax/connect/recommendations_widget.php';RecommendationsWidget.IMAGE_HEIGHT=35;RecommendationsWidget.ITEM_HEIGHT=45;function LikeBoxWidget(a,b){this.parent.construct(this,a,b);}LikeBoxWidget.extend('ConnectSocialWidget');copy_properties(LikeBoxWidget.prototype,{getLinkType:function(){return ConnectSocialWdiget.TYPE_LIKEBOX;},getPluginType:function(){return ConnectSocialWidget.TYPE_LIKEBOX;}});RecommendationsWidget.image_resize=function(j){var h=j.image,i=Vector2.getElementDimensions(h),a=i.y,g=i.x,e=j.dimension,k=e+'px';if(a<=5||g<=5)return;var d=a/g;if(d<.5||d>2)return;if(a===g){CSS.setStyle(h,'width',k);}else if(a0){this.adminLinks=[];for(var a=0;a0?i[0]:null;if(h.showFaces&&h.viewer>0)this.loggedInUserPhotoDiv=DOM.find(this.widget,'div.connect_widget_logged_in_user');}if(this.layout===ExternalNodeConnectWidget.SIMPLE_LAYOUT){this.originalButtonWidth=this.computeButtonDimensions().width;this.summaryIncluding=DOM.find(this.widget,'td.connect_widget_simple_including');this.supportCommenting=false;this.usingInlineCommenting=false;}this.setQueryData();if(this.pageId)copy_properties(this.popupOptInParams,{connect_id:this.pageId});this.errorSpans=DOM.scry(this.widget,'span.connect_widget_error_span');if(this.errorSpans.length>0){this.errorLinks=[];for(var b=0;b0){this.confirmLinks=[];for(var d=0;d0;},updateConnectionWithComment:function(event){Event.kill(event);if(this.commentButtonIsActive){this.postInlineComment();this.resetInlineComment();this.closeInlineComment();}},postInlineComment:function(){this.postUserComment(this.inlineCommentInput.value.trim());},resetInlineComment:function(){this.concealCommentButton();var a=this.inlineCommentInput.getAttribute('placeholder');this.inlineCommentInput.value=a;},showInlineComment:function(event){Event.kill(event);if(!this.inlineCommentFlyoutOpen||this.inlineCommentFlyoutVisible||this.error)return;this.inlineCommentFlyoutVisible=true;CSS.show(this.inlineCommentFlyout);},hideInlineComment:function(event){Event.kill(event);if(!this.inlineCommentFlyoutOpen||!this.inlineCommentFlyoutVisible)return;if(DOM.contains(this.inlineCommentFlyout,event.getRelatedTarget()))return;var b=this.inlineCommentInput.value.trim();var a=this.inlineCommentInput.getAttribute('placeholder');if(b.length>0&&b!=a)return;this.inlineCommentFlyoutVisible=false;CSS.hide(this.inlineCommentFlyout);},closeInlineComment:function(){this.inlineCommentFlyoutVisible=false;this.inlineCommentFlyoutOpen=false;CSS.hide(this.inlineCommentFlyout);this.resetInlineComment();},concealCommentButton:function(){CSS.addClass(this.inlineCommentButton,'hidden_elem');CSS.setStyle(this.inlineCommentInput,'width',this.textInputWidthWithoutButton+'px');CSS.setStyle(this.inlineCommentInput,'margin-right',0);},positionInlineCommentFlyout:function(){CSS.addClass(this.inlineCommentFlyout,'comment_widget_offscreen');CSS.removeClass(this.inlineCommentFlyout,'hidden_elem');var b=0;var a=this.computeButtonDimensions();var e=a.height;var d=this.grayOut?b:b+20;var g=intl_locale_is_rtl()?'right':'left';if(this.showFaces){var k=DOM.scry(this.widget,'span.connect_widget_text')[0];var h=intl_locale_is_rtl()?'paddingRight':'paddingLeft';var l=CSS.getStyle(k,h);d=this.grayOut?b:b+parseInt(l,10);var i=Vector2.getElementDimensions(this.sampleConnections).y;e=i-3;}var j=Vector2.getElementDimensions(this.summaryText).y;if(j>15)e+=2;CSS.setStyle(this.inlineCommentFlyout,g,d+'px');CSS.setStyle(this.inlineCommentFlyout,'top',(-e)+'px');var n=Vector2.getElementPosition(this.widget,'document').x;var m=Vector2.getElementDimensions(this.widget).x;var o=n+m-d-5;CSS.setStyle(this.inlineCommentFlyout,'width',o+'px');CSS.removeClass(this.inlineCommentButton,'hidden_elem');var f=Vector2.getElementDimensions(this.inlineCommentButton).x;CSS.addClass(this.inlineCommentButton,'hidden_elem');var c=(this.inlineCommentClose)?15:0;this.textInputWidthWithoutButton=o-24-c;this.textInputWidthWithButton=this.textInputWidthWithoutButton-f-this.textInputMarginWithButton-1;CSS.setStyle(this.inlineCommentInput,'width',this.textInputWidthWithoutButton+'px');CSS.setStyle(this.inlineCommentInput,'margin-right',0);CSS.removeClass(this.inlineCommentFlyout,'comment_widget_offscreen');CSS.addClass(this.inlineCommentFlyout,'hidden_elem');},postUserComment:function(a){var b={href:this.externalUrl,node_type:this.nodeType,edge_type:this.edgeType,page_id:this.pageId,connect_text:this.connectText,story_fbid:this.connectStoryFbid,comment:a};Bootloader.loadComponents(['async','async-postlude'],function(){new AsyncRequest().setURI(this.getCommentAjaxEndpoint()).setData(b).setNectarModuleDataSafe().setNectarImpressionIdSafe().send();}.bind(this));this.closeCommentWidget();},closeCommentWidget:function(){if(this.commentWidgetOpen){delete this.inGracePeriod;delete this.commentWidgetIsExpanded;this.commentWidgetVisible=false;this.commentWidgetOpen=false;UnverifiedXD.send({type:'dismissEdgeCommentDialog'});}},presentAdminPage:function(){var a='_blank';window.open(this.adminUrl.toString(),a);},presentErrorDialog:function(){var c='_blank';var b='toolbar=0, status=0, width=960, height=300';var a=new URI('/connect/connect_to_node_error.php');a.addQueryData({title:this.error.brief,body:this.error.full});window.open(a.toString(),c,b);},presentConfirmDialog:function(){var b='_blank';var a='toolbar=0,status=0,width=450,height=200,scrollbars=0,location=0,menubar=0';if(!window.confirmDialogReturn)window.confirmDialogReturn={};window.confirmDialogReturn[this.widgetID]=this;var c=this.getConfirmURL();window.open(c,b,a);},returnFromConfirmDialog:function(a){if(a){this.showConfirm=null;this.confirmedConnect=a;this.connectToNode(!this.alreadyConnected);}else this.updateWidget({nowConnected:this.alreadyConnected,showConfirm:null,isAdmin:this.viewerIsAdmin},false);},syncWidgetDisplay:function(){var a=this.alreadyConnected;this.setButtonState(a);this.showElementIf(this.connectedMessage,a);this.showElementIf(this.notConnectedMessage,!a);if(this.adminSpans)for(var b=0;b0)this.inlineCommentClose=this.inlineCommentClose[0];this.commentButtonIsActive=false;Event.listen(this.inlineCommentInput,'keyup',this.conditionallyActivateButton.bind(this));Event.listen(this.inlineCommentInput,'focus',this.exposeCommentButton.bind(this));Event.listen(this.inlineCommentButton,'click',this.updateConnectionWithComment.bind(this));Event.listen(this.widget,'mouseout',this.hideInlineComment.bind(this));Event.listen(this.widget,'mouseover',this.showInlineComment.bind(this));if(this.inlineCommentClose)Event.listen(this.inlineCommentClose,'click',function(event){for(var a=0;a0){f=f[0];var e=50;var d=Vector2.getElementDimensions(f);var g=e/d.x;if(g<1){CSS.setStyle(f,'width',e);CSS.setStyle(f,'height',d.y*g);}}}this.setupCommentHooks(this.commentDocument);this.commentWidgetIsExpanded=!this.inlineUnlikeLink;var b=this.getCommentActivatingComponent();b.onmouseout=this.hideCommentWidget.bind(this);b.onmouseover=this.showCommentWidget.bind(this);this.commentDocument.body.onmouseout=this.hideCommentWidget.bind(this);this.commentDocument.body.onmouseover=this.showCommentWidget.bind(this);this.inGracePeriod=false;},setupCommentHooks:function(a){this.placeholderInputRegion=DOM.find(a,'div.connect_comment_widget_placeholder_input_region');this.placeholderInput=DOM.find(this.placeholderInputRegion,'input.connect_comment_widget_placeholder_input');this.fullInputRegion=DOM.find(a,'div.connect_comment_widget_full_input_region');this.fullInputTextarea=DOM.find(this.fullInputRegion,'textarea.connect_comment_widget_full_input_textarea');this.widgetButtonRegion=DOM.find(a,'div.connect_comment_widget_button_region');this.postToFacebookButton=DOM.find(this.widgetButtonRegion,'.connect_comment_widget_post_button input');this.inlineUnlikeLink=DOM.scry(a,'a.connect_comment_widget_unlike_link');if(this.inlineUnlikeLink.length>0)this.inlineUnlikeLink=this.inlineUnlikeLink[0];this.defaultInputText=this.placeholderInput.value;this.placeholderInput.onfocus=this.transitionToFullInputMode.bind(this);this.fullInputTextarea.onfocus=this.removePlaceholderText.bind(this);this.fullInputTextarea.onblur=this.restorePlaceholderText.bind(this);this.postToFacebookButton.onclick=this.updateUserComment.bind(this);if(this.inlineUnlikeLink)this.inlineUnlikeLink.onclick=this.connectToNodeOnClick.bind(this);},getCommentActivatingComponent:function(){if(this.layout===ExternalNodeConnectWidget.BOX_COUNT_LAYOUT||this.layout===ExternalNodeConnectWidget.BUTTON_COUNT_LAYOUT){return this.widget;}else if(this.layout===ExternalNodeConnectWidget.SIMPLE_LAYOUT){return this.widget;}else if(this.grayOut){return DOM.find(this.widget,'table.connect_widget_interactive_area');}else return this.confirmationCell;},showCommentWidget:function(event){this.inGracePeriod=true;this.killCloseThread();if(this.commentWidgetOpen&&!this.commentWidgetVisible){this.commentWidgetVisible=true;CSS.show(this.commentDocument.body);UnverifiedXD.send({type:'showEdgeCommentDialog'});}return false;},hideCommentWidget:function(event){this.inGracePeriod=false;if(this.commentWidgetOpen&&this.commentWidgetVisible){var a=function(){if(!this.inGracePeriod&&this.shouldHideExpandedWidget()){this.fullInputTextarea.blur();this.commentWidgetVisible=false;if(!this.socialBar)CSS.hide(this.commentDocument.body);UnverifiedXD.send({type:'hideEdgeCommentDialog'});}this.inGracePeriod=false;this.killCloseThread();}.bind(this);this.closeThreadID=setTimeout(a,100);}return false;},shouldHideExpandedWidget:function(){return !this.commentWidgetIsExpanded||this.fullInputTextarea.value===''||this.fullInputTextarea.value===this.defaultInputText;},killCloseThread:function(){if(this.closeThreadID){clearTimeout(this.closeThreadID);delete this.closeThreadID;}},transferCSSStyles:function(){var d=DOM.scry(window.document,'link');var e=DOM.scry(window.document,'style');var c=DOM.find(window.document,'html');var g=DOM.find(this.commentDocument,'html');var f=DOM.find(this.commentDocument,'head');for(var a=0;a0&&c<=5){CSS.setStyle(this.connectButton,'width',(b.button_width-parseInt(CSS.getStyle(this.connectButton,'paddingLeft'))-parseInt(CSS.getStyle(this.connectButton,'paddingRight'))-parseInt(CSS.getStyle(this.connectButton,'borderLeftWidth'))-parseInt(CSS.getStyle(this.connectButton,'borderRightWidth')))+'px');this.sizeNumberCloud();}if(this.layout===ExternalNodeConnectWidget.STANDARD_LAYOUT){var d=Vector2.getElementDimensions(this.widget).y;CSS.setStyle(this.widget,'height',(d+5)+'px');CSS.setStyle(this.connectButton,'position','absolute');var g=intl_locale_is_rtl();var h=g?'right':'left';var e=ua.firefox();var f=ua.ie();if((e||f)&&this.connectButtonSlider){CSS.setStyle(this.connectButtonSlider,h,b.button_width+'px');if(f&&f<=7)this.fixIEButtonDoubleLineBug();}if(g){CSS.setStyle(this.connectButton,h,-b.button_width+'px');}else CSS.setStyle(this.connectButton,h,-(b.button_width+10)+'px');CSS.setStyle(this.confirmationCell,'position','absolute');CSS.setStyle(this.confirmationCell,h,(b.button_width+a+5)+'px');CSS.setStyle(this.confirmationCell,'top','5px');if(this.sampleConnections)CSS.setStyle(this.sampleConnections,'margin-'+h,(e?-10:-(b.button_width+10))+'px');this.invertedButtons=true;this.repositionFacepileVertically();}},repositionFacepileVertically:function(){if(this.invertedButtons&&this.sampleConnections){var a=Vector2.getElementDimensions(this.summaryText).y;CSS.setStyle(this.sampleConnections,'margin-top',(5+a+5)+'px');}}}); function fbpage_set_fan_status(c,f,a,h,g,d,e){g=g?g:function(j){_fbpage_show_change_status_feedback(c,j.getPayload());};var b={fbpage_id:f,add:a,reload:h};if(e!=null)copy_properties(b,e);var i=new AsyncRequest().setURI('/ajax/pages/fan_status.php').setData(b).setNectarModuleDataSafe(c).setHandler(g);if(d)i.setErrorHandler(d);i.send();return false;}function fbpage_set_favorite_status(d,e,a){var f=function(){_fbpage_show_change_status_feedback(d,this.getUserData());};var c={fbpage_id:e,add:a};var b=new AsyncRequest().setMethod('POST').setURI('/ajax/pages/favorite_status.php').setData(c);new Dialog().setAsync(b).setCloseHandler(f).show();return false;}function _fbpage_show_change_status_feedback(b,a){if(!a||!b)return;if(a.reload){fbpage_reload_on_fan_status_changed(a.preserve_tab);}else fbpage_redraw_on_fan_status_changed(b,a.feedback);}function fbpage_reload_on_fan_status_changed(a){var c=URI.getRequestURI();if(a){var b=Arbiter.query('SideNav.selectedKey');if(!c.getQueryData().sk&&b)c.addQueryData({sk:b});}window.location.href=c;}function fbpage_redraw_on_fan_status_changed(a,b){if(!b)return;var d=document.createElement('span');d.innerHTML=b;CSS.setClass(d,'fan_status_inactive');a.parentNode.replaceChild(d,a);var c=function(){if(data.can_repeat_action)d.parentNode.replaceChild(a,d);};animation(d).duration(3000).checkpoint().to('backgroundColor','#FFFFFF').duration(1000).ondone(c).go();} function ConnectWidget(h,f,a,e,b){copy_properties(this,{channel_url:b,like_mode:e,profile_id:f,viewer_id:h,status:null,popup:null,busy:false,new_fan:null,user_profile:null});this.fan_hidden=[];this.fan_shown=[];var c=DOM.scry(document,'div.connections');if(c.length>0){c=c[0];this.user_profile=DOM.find(c,'div.user_profile');this.new_fan=DOM.find(c,'div.grid_item_plus');this.fan_shown.push(this.new_fan);this.fan_shown.push(DOM.find(c,'span.total_plus'));var g=DOM.scry(c,'span.total');var d=DOM.scry(c,'div.grid_item');if(d.length>1)this.fan_hidden.push(d[1]);this.fan_hidden.push(g[g.length-1]);}if(!this.like_mode){this.button=$(a);this.popup_uri=new URI('/login.php');this.popup_uri.addQueryData({connect_id:this.profile_id,popup:true});Event.listen(this.button,'click',this.connectClickHandler.bind(this));}else Arbiter.subscribe('platform/like/connection',this.updateWidgetFromLike.bind(this));ConnectWidget.instances[a]=this;if(this.channel_url)XD.init({channelUrl:this.channel_url});}ConnectWidget.instances={};ConnectWidget.is_connect=true;ConnectWidget.prototype.setLoggedIn=function(a){this.viewer_id=a;return this;};ConnectWidget.prototype.connectClickHandler=function(a){a.kill();if(this.viewer_id!=0){this.connect();}else this.popUpLogin();};ConnectWidget.prototype.connect=function(){if(!this.busy){this.busy=true;fbpage_set_fan_status(this.button,this.profile_id,true,false,this.connectDoneHandler.bind(this),this.connectErrorHandler.bind(this),this.getAsyncData());}};ConnectWidget.prototype.disconnect=function(){if(!this.busy){this.busy=true;fbpage_set_fan_status(this.button,this.profile_id,false,false,this.connectUndoneHandler.bind(this),function(){},this.getAsyncData());}};ConnectWidget.prototype.getAsyncData=function(){var a={source:'connect',is_connect:ConnectWidget.is_connect};if(ge('post_form_id'))a.post_form_id=$('post_form_id').value;if(env_get('fb_dtsg'))a.fb_dtsg=env_get('fb_dtsg');return a;};ConnectWidget.prototype.popUpLogin=function(){window.open(this.popup_uri.toString(),'_blank','toolbar=0,status=0,width=626,height=400');};ConnectWidget.prototype.updateWidgetFromLike=function(b,f){if(!f.userProfile)return;if(this.user_profile){var c=DOM.find(this.user_profile,'img');var a=DOM.find(this.user_profile,'a');var e=DOM.find(this.user_profile,'div.name');c.src=f.userProfile.pic_square;a.href=f.userProfile.profile_url;DOM.setContent(e,f.userProfile.name);}var d;if(f.nowConnected){d='likeboxLiked';this.showNewFan();}else{d='likeboxUnliked';this.hideNewFan();}if(this.channel_url)XD.send({type:d});};ConnectWidget.prototype.connectErrorHandler=function(b){if(b.error==1357001){this.viewer_id=0;this.popUpLogin();}else if(b.error==1357013){CSS.hide(this.button);var a=$N('a',{href:DOM.find(document,'div.name_block a').href,target:'_blank'},_tx("Verification is needed to connect."));this.status=$N('span',{className:'connect_span'},a);DOM.insertAfter(this.button,this.status);}else{CSS.hide(this.button);if(b.error==1431001){this.status=$N('span',{className:'connect_span'},_tx("You like this."));}else this.status=$N('span',{className:'connect_span'},b.getErrorSummary()+': '+b.getErrorDescription());animation(this.status).from('opacity',0).to('opacity',1).go();DOM.insertAfter(this.button,this.status);}this.busy=false;};ConnectWidget.prototype.connectDoneHandler=function(c){var b=c.getPayload();if(!b||!b.feedback)return;this.status=$N('span',{className:'connect_span'},HTML(b.feedback));var d=$N('a',{className:'undo'},_tx("Undo"));Event.listen(d,'click',function(e){e.kill();this.disconnect();}.bind(this));DOM.appendContent(this.status,d);animation(this.status).from('opacity',0).to('opacity',1).go();DOM.insertAfter(this.button,this.status);CSS.hide(this.button);if(this.new_fan!=null&&b.connect_fan_div){var a=$N('div',{},HTML(b.connect_fan_div));DOM.setContent(this.new_fan,DOM.find(a,'a'));}this.showNewFan();this.busy=false;};ConnectWidget.prototype.showNewFan=function(){this.fan_shown.forEach(function(b){if(!CSS.hasClass(b,'hidden_elem'))return;var a=CSS.getStyle(b,'width');CSS.setStyle(b,'width',0);CSS.setStyle(b,'opacity',0);CSS.show(b);animation(b).to('width',a).duration(100).checkpoint().to('opacity',1).duration(400).go();});this.fan_hidden.forEach(function(a){CSS.hide(a);});};ConnectWidget.prototype.connectUndoneHandler=function(b){var a=b.getPayload();DOM.remove(this.status);animation(this.button).from('opacity',0).to('opacity',1).go();CSS.show(this.button);this.hideNewFan();this.busy=false;};ConnectWidget.prototype.hideNewFan=function(){this.fan_shown.forEach(function(a){if(CSS.hasClass(a,'hidden_elem'))return;animation(a).to('opacity',0).duration(100).checkpoint(.25).to('width',0).duration(100).ondone(function(){CSS.setStyle(a,'width',null);CSS.hide(a);this.fan_hidden.forEach(function(b){CSS.show(b);});}.bind(this)).go();}.bind(this));};ConnectWidget.loadStream=function(b,a){new AsyncRequest().setMethod('GET').setURI('/ajax/connect/connect_widget.php').setData({id:b,uniqid:a}).setReadOnly(true).setErrorHandler(bagofholding).send();};ConnectWidget.loggedIn=function(c,a){if(ge('post_form_id')){DOM.replace($('post_form_id'),HTML(a));}else DOM.appendContent(DOM.find(document,'body'),HTML(a));for(var b in ConnectWidget.instances){ConnectWidget.instances[b].setLoggedIn(c);ConnectWidget.instances[b].connect();}};ConnectWidget.setIsConnect=function(a){ConnectWidget.is_connect=a;};ConnectWidget.popUpConnect=function(c){var b={id:c,captcha:true,post_form_id:$('post_form_id').value};var d=URI('/plugins/likebox.php').addQueryData(b);var a=window.open(d,'_blank','toolbar=0,status=0,width=640,height=480');}; var ExternalPageLikeWidget=function(a){a.edgeType='like';this.parent.construct(this,a);this.unactionLink=DOM.scry(this.widget,'span.unlike_link')[0];if(this.unactionLink)Event.listen(this.unactionLink,'click',this.connectToNodeOnClick.bind(this));this.hasShowedInsights=false;this.showInsights();};ExternalPageLikeWidget.extend('ExternalNodeConnectWidget');copy_properties(ExternalPageLikeWidget.prototype,{getSyncEndpointName:function(){return 'platform/like/sync';},getConnectionEndpointName:function(){return 'platform/like/connection';},getPluginName:function(){return 'like';},presentInsightsPage:function(){var a=this.adminUrl.split('/');var b=a[a.length-1];window.open('/insights/?sk=po_'+b,'_blank');},showInsights:function(){if(this.hasShowedInsights)return;var b=DOM.scry(this.widget,'a.connect_widget_insights_link');if(b)for(var a=0;a false
              7752235014849127424 2097920 Cross-site scripting (reflected) http://pubads.g.doubleclick.net High Certain
              The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

              Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

              The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
            • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
            • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
            • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
              d60e9<script>alert(1)</script>6432900303f was submitted in the slotname parameter. This input was echoed unmodified in the application's response.

              This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
              alert(1)6432900303f&page_slots=TheGame_Browse-Page-3%2CTheGame_Browse-Page-5&cookie=ID%3D742d557fb7c85ed0%3AT%3D1303072660%3AS%3DALNI_MbPMEsE5fSrg9FG-q3mKGE7rHE8Dg&cookie_enabled=1&url=http%3A%2F%2Fwww.thegame.me%2Fplay%2Flessons-of-passion%2F&lmt=1303090674&dt=1303072674773&cc=100&biw=1079&bih=1016&ifi=2&adk=10979450&u_tz=-300&u_his=1&u_java=true&u_h=1200&u_w=1920&u_ah=1156&u_aw=1920&u_cd=16&u_nplug=9&u_nmime=44&flash=10.2.154&gads=v2&ga_vid=362077840.1303072671&ga_sid=1303072671&ga_hid=1074669635&ga_fc=true HTTP/1.1 Host: pubads.g.doubleclick.net Proxy-Connection: keep-alive Referer: http://www.thegame.me/play/lessons-of-passion/ User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 Cookie: id=22fba3001601008d||t=1303072660|et=730|cs=-8oc1u1u ]]> alert(1)6432900303f":{"_type_":"html","_expandable_":false,"_html_":"\x3c!DOCTYPE HTML PUBLIC \"-//W3C//DTD HTML 4.01//EN\"\"http://www.w3.org/TR/html4/strict.dtd\"\x3e\x3chtml\x3e\x3chead\x3e\x3cstyle\x3ea:link{color:#000000}a:visited{color:#000000}a:hover{color:#000000}a:active{color:#000000}\x3c/style\x3e\x3c/head\x3e\x3cbody leftmargin=\"0\" topmargin=\"0\" marginwidth=\"0\" marginheight=\"0\"style=\"background:transparent\"\x3e\x3cscript\x3e(function(){window.ss=function(d,e){window.status=d;var c=document.getElementById(e);if(c){var a;a=c.href;var b=a.match(\"^(.*)([?|\x26]nm=)([^\x26]*)(.*)$\");if(b){b[3]=(Number(b[3])||0)+1;b[0]=\"\";a=b.join(\"\")}else a=a+\"\x26nm=1\";c.href=a}return true};})();function su(id) {var a = document.getElementById(id);var b = (new Date()).getTime();if (a \x26\x26 a.myt \x26\x26 b) {var t = b - a.myt;var bi = a.href.indexOf(\"\x26clkt=\");if (bi \x3e 0) {var c = a.href.substring(0, bi+6); var d = a.href.substring(bi+6, a.href.length);var ei = d.indexOf(\"\x26\");var r = '';if (ei \x3e= 0)r = d.substring(ei, d.length);a.href = c + t + r; } else {a.href += \"\x26clkt=\" + t;}}return true;}(function(){var i=this;var l=function(b,c){for(var e=0,a=String(b).replace(/^[\\s\\xa0]+|[\\s\\xa0]+$/g,\"\").split(\".\"),d=String(c).replace(/^[\\s\\xa0]+|[\\s\\xa0]+$/g,\"\").split(\".\"),g=Math.max(a.length,d.length),k=0;e==0\x26\x26k\x3cg;k++){var f=a[k]||\"\",h=d[k]||\"\",O=RegExp(\"(\\\\d*)(\\\\D*)\",\"g\"),P=RegExp(\"(\\\\d*)(\\\\D*)\",\"g\");do{var n=O.exec(f)||[\"\",\"\",\"\"],o=P.exec(h)||[\"\",\"\",\"\"];if(n[0].length==0\x26\x26o[0].length==0)break;e=j(n[1].length==0?0:parseInt(n[1],10),o[1].length==0?0:parseInt(o[1],10))||j(n[2].length==0,o[2].length==0)||j(n[2],o[2])}while(e==0)}return e},j=function(b,c){if(b\x3cc)return-1;else if(b\x3ec)return 1;return 0};var m=function(b,c){this.x=b!==undefined?b:0;this.y=c!==undefined?c:0};var p,q,r,s,t=function(){return i.navigator?i.navigator.userAgent:null};s=r=q=p=false;var u;if(u=t()){var v=i.navigator;p=u.indexOf(\"Opera\")==0;q=!p\x26\x26u.indexOf(\"MSIE\")!=-1;r=!p\x26\x26u.indexOf(\"WebKit\")!=-1;s=!p\x26\x26!r\x26\x26v.product==\"Gecko\"}var w=p,x=q,y=s,z=r,A;a:{var B=\"\",C;if(w\x26\x26i.opera){var D=i.opera.version;B=typeof D==\"function\"?D():D}else{if(y)C=/rv\\:([^\\);]+)(\\)|;)/;else if(x)C=/MSIE\\s+([^\\);]+)(\\)|;)/;else if(z)C=/WebKit\\/(\\S+)/;if(C){var E=C.exec(t());B=E?E[1]:\"\"}}if(x){var F,G=i.document;F=G?G.documentMode:undefined;if(F\x3eparseFloat(B)){A=String(F);break a}}A=B}var H=A,I={};var J;!x||I[\"9\"]||(I[\"9\"]=l(H,\"9\")\x3e=0);x\x26\x26(I[\"9\"]||(I[\"9\"]=l(H,\"9\")\x3e=0));var K=function(b){return b.nodeType==9?b:b.ownerDocument||b.document},L=function(b){this.a=b||i.document||document};var M=function(b,c){var e;a:{e=K(b);if(e.defaultView\x26\x26e.defaultView.getComputedStyle)if(e=e.defaultView.getComputedStyle(b,null)){e=e[c]||e.getPropertyValue(c);break a}e=\"\"}return e||(b.currentStyle?b.currentStyle[c]:null)||b.style[c]},N=function(b){if(x)return b.offsetParent;var c=K(b),e=M(b,\"position\"),a=e==\"fixed\"||e==\"absolute\";for(b=b.parentNode;b\x26\x26b!=c;b=b.parentNode){e=M(b,\"position\");a=a\x26\x26e==\"static\"\x26\x26b!=c.documentElement\x26\x26b!=c.body;if(!a\x26\x26(b.scrollWidth\x3eb.clientWidth||b.scrollHeight\x3eb.clientHeight||e==\"fixed\"||e==\"absolute\"))return b}return null};var Q=function(b,c,e){var a=\"\x26\"+c+\"=\";c=b.indexOf(a);if(c\x3c0)return b+a+e;c+=a.length;a=b.indexOf(\"\x26\",c);return a\x3e=0?b.substring(0,c)+e+b.substring(a):b.substring(0,c)+e},R=null,S=function(b){R=b};document.addEventListener\x26\x26document.addEventListener(\"mousedown\",S,true);window.xy=function(b,c){var e=b||R;if(e){var a,d=K(c),g=M(c,\"position\"),k=y\x26\x26d.getBoxObjectFor\x26\x26!c.getBoundingClientRect\x26\x26g==\"absolute\"\x26\x26(a=d.getBoxObjectFor(c))\x26\x26(a.screenX\x3c0||a.screenY\x3c0),f=new m(0,0),h;a=d?d.nodeType==9?d:K(d):document;if(h=x)h=(a?new L(K(a)):J||(J=new L)).a.compatMode!=\"CSS1Compat\";h=h?a.body:a.documentElement;if(c!=h)if(c.getBoundingClientRect){a=c.getBoundingClientRect();if(x){g=c.ownerDocument;a.left-=g.documentElement.clientLeft+g.body.clientLeft;a.top-=g.documentElement.clientTop+g.body.clientTop}a=a;d=d?new L(K(d)):J||(J=new L);d=!z\x26\x26d.a.compatMode==\"CSS1Compat\"?d.a.documentElement:d.a.body;d=new m(d.scrollLeft,d.scrollTop);f.x=a.left+d.x;f.y=a.top+d.y}else if(d.getBoxObjectFor\x26\x26!k){a=d.getBoxObjectFor(c);d=d.getBoxObjectFor(h);f.x=a.screenX-d.screenX;f.y=a.screenY-d.screenY}else{a=c;do{f.x+=a.offsetLeft;f.y+=a.offsetTop;if(a!=c){f.x+=a.clientLeft||0;f.y+=a.clientTop||0}if(z\x26\x26M(a,\"position\")==\"fixed\"){f.x+=d.body.scrollLeft;f.y+=d.body.scrollTop;break}a=a.offsetParent}while(a\x26\x26a!=c);if(w||z\x26\x26g==\"absolute\")f.y-=d.body.offsetTop;for(a=c;(a=N(a))\x26\x26a!=d.body\x26\x26a!=h;){f.x-=a.scrollLeft;if(!w||a.tagName!=\"TR\")f.y-=a.scrollTop}}d=Math.round(e.clientY-f.y);c.href=Q(c.href,\"nx\",Math.round(e.clientX-f.x));c.href=Q(c.href,\"ny\",d)}};})();function cs(){window.status='';} function jcc(a) {pha=document.getElementById(a); nc=pha.href.indexOf('\x26jca='); if(nc\x3e=1) return; jca=(4503)-(710)-(390); if (a=='aw0') {jca+=(3182);} else {jca=0;} phb=pha.href+'\x26jca='+jca; pha.href=phb;} function st(id) {var a = document.getElementById(id);if (a) {a.myt = (new Date()).getTime();xy(window.event, a);}return true;}function ha(a){ var pha=document.getElementById(a);var nhi=pha.href.indexOf(\"\x26nh=\");if(nhi \x3c 1) {pha.href+=\"\x26nh=1\";}su(a); jcc(a); }function ca(a) { var pha=document.getElementById(a);var nci=pha.href.indexOf(\"\x26nc=\");if(nci \x3c 1) {pha.href+=\"\x26nc=1\";}su(a); jcc(a); top.location.href=document.getElementById(a).href;}function ga(o,e) {if (document.getElementById) {a=o.id.substring(1);p=\"\";r=\"\";g=e.target;if (g) {t=g.id;f=g.parentNode;if (f) {p=f.id;h=f.parentNode;if (h)r=h.id;}} else {h=e.srcElement;f=h.parentNode;if (f)p=f.id;t=h.id;}if (t==a||p==a||r==a)return true;var pha=document.getElementById(a);var nbi=pha.href.indexOf(\"\x26nb=\");if(nbi \x3c 1) {pha.href+=\"\x26nb=1\";}su(a); jcc(a); top.location.href=document.getElementById(a).href;}}\x3c/script\x3e\x3c/body\x3e\x3c/html\x3e","_snippet_":false,"_height_":0,"_width_":0,"_empty_":false,"_is_afc_":false,"_is_psa_":true,"_is_3pas_":false,"_cids_":["E"],"_a2ids_":["A"],"_pstok_":"xRErxDv1CmcKBRDLoc8ECgA"}});]]> false
              2460879725551081472 6291968 Email addresses disclosed http://www.epicdreams.com Information Certain
              However, email addresses of developers and other individuals (whether appearing on-screen or hidden within page source) may disclose information that is useful to an attacker; for example, they may represent usernames that can be used at the application's login, and they may be used in social engineering attacks against the organisation's personnel. Unnecessary or excessive disclosure of email addresses may also lead to an increase in the volume of spam email received.]]>
            • customercare@epicdreams.com
            • ]]>
              Provider ad help, customer service, Membership help, help desk
              EpicDreams, Epic Dreams, Escort, Escorts, incall, outcall, Escort Reviews, Escort Directory, Escort Classifieds Welcome, Guest
              Log In | Free Hobbyist Account | Free Provider Ad | Help
              Home
              myEpicDreams
              VIP Escorts
              Directory
              Photo Gallery
              Calendar
              Reviews & Forums
              Adult Store
              Advertise
              CustomerCare
              April 17, 2011
              How to Contact Us

              Please check the FAQ section below first below sending us an email. If you are a Member (Client/Hobbyist) or Provider, please log in first and return back to the CustomerCare page. Complete all fields below.

              Name:
              Email Address:
              Select a Topic:
              Provide a Description:
              Security Code:


              Enter the characters you see above.
                FAQ - Mostly Frequently Asked Questions
              Provider Questions
              • I just sign up for my free provider ad and have not yet received my email account information?

              • If you do not receive an email confirmation letter within a hour of your registration, please check your "Junk E-Mail" or "Bulk" folder if you are a Hotmail, Yahoo, or AOL member. If you do not still find it, please contact CustomerCare.

              • How do I purchase a provider Sponsor Listing?

              • Log into your myEpicDreams and select "Buy Sponsor Listing". Then select the BUY SPONSOR LISTING button or text link next to your desired city. You will then be directed to an CCBill form page to complete your payment information. Once approved, your selected sponsor listing will automatically appear in the choosen city.

                We will notify you if your credit card was declined by CCBill so you can make a re-purchase again. This sometimes occur due to the following:
              • wrong billing address
              • bank is busy
              • bank decline
              • How do I purchase a Banner Listing that appears on the right side of every EpicDreams page?

              • Log into your myEpicDreams and select "Buy Banner". Complete the form. Once completed, uou will then be directed to an CCBill form page to complete your payment information. Once approved, your banner will appear on the right side of every page within 24 hours.

                We will notify you if your credit card was declined by CCBill so you can make a re-purchase again. This sometimes occur due to the following:
              • wrong billing address
              • bank is busy
              • bank decline
              • How do I cancel my Sponsor/Banner Listing?

              • Go to: https://support.ccbill.com. You will need the following pieces of information:
              • Email
              • Credit Card #
              • Subscription ID


              Member/Hobbyist/Client Questions
              • How do I become a member?

              • Select the "BE A MEMBER (Clients/Hobbyists Only)" link at the top right of the tab navigation.

              • I just signed up as a member and I can't log in?

              • To activate your free membership, you will need to click the link in your email confirmation letter to activate your account. If you do not receive an email confirmation letter within a hour of your registration, please check your "Junk E-Mail" or "Bulk" folder if you are a Hotmail, Yahoo, or AOL member. If it's not there, please contact customercare.

              • When I select a provider ad, nothing happens? I can not view the provider's information.

              • EpicDreams uses pop-ups for the providers ad. Please disable your any pop-up blockers applications.
                
               Sponsor Spotlight

              Name: Amy Taylor
              Location: Los Angeles, CA

               Sponsor Spotlight

              Name: Isabel
              Location: Chicago, IL
              Quote: I'm very affectionate and a highly respo... More >>

               Sponsor Spotlight

              Name: Kellie Sinz
              Location: Las Vegas, NV
              Quote: Did you ever hear the old saying "Good t... More >>

               Sponsor Spotlight

              Name: kara kane
              Location: Charlotte, NC
              Quote: PORNSTAR,FORMER NBA CHEERLEADER,HOOTERS ... More >>

               Sponsor Spotlight

              Name: Asian Kitty
              Location: Las Vegas, NV
              Quote: Hi Baby ! I am Exactl... More >>

               Sponsor Spotlight

              Name: Pamela Sweet
              Location: Allentown, PA
              Quote: I love to wear sexy lingerie... More >>

              Poll
              Which lingerie is sexy on a woman?
               Garters & Pantyhose
               Babydolls & Slips
               Teddies & Bustiers
               I prefer nothing
              View Results  
              A D V E R T I S E M E N T S

              List your banner here!

               RSS Feeds | What's New | FREE Provider Ad | Escort & Adult Links | Adult Store & DVDs
              Copyright © 1998-2011 EpicDreams, All rights reserved. | About EpicDreams | 2257 Notice
              ]]>
              false
              4587810167041178624 2097920 Cross-site scripting (reflected) http://ad.yieldmanager.com High Certain
              The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

              Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

              The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
            • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
            • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
            • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
              d0ea6"-alert(1)-"509b0768a14 was submitted in the name of an arbitrarily supplied request parameter. This input was echoed unmodified in the application's response.

              This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
              0){rm_url+="&X=";for(var i=0;i<\/SCRIPT>';if(rm_pop_frequency){if(rmCanShowPop(rm_pop_id,rm_pop_times,rm_pop_frequency)||rm_pop_nofreqcap){document.write(rm_tag_src);}}else{document.write(rm_tag_src);}function cookiesEnabled(){var cookieEnabled=(navigator.cookieEnabled)?true:false;if(typeof navigator.cookieEnabled=="undefined"&&!cookieEnabled){document.cookie="testcookie";cookieEnabled=(document.cookie.indexOf("testcookie")!=-1)?true:false;}return cookieEnabled;}function rmGetCookie(Name){var search=Name+"=";var CookieString=document.cookie;var result=null;if(CookieString.length>0){offset=CookieString.indexOf(search);if(offset!=-1){offset+=search.length;end=CookieString.indexOf(";",offset);if(end==-1){end=CookieString.length;}result=unescape(CookieString.substring(offset,end));}}return result;}function flashDetection(){var flash=new Object();flash.installed=false;flash.version='0.0';if(navigator.plugins&&navigator.plugins.length){for(x=0;x'); ]]> false
              8864141818624328704 1049088 SQL injection http://www.epicdreams.com High Tentative
              Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.]]>
              every variable data item that is incorporated into database queries, even if it is not obviously tainted, to prevent oversights occurring and avoid vulnerabilities being introduced by changes elsewhere within the code base of the application.

              You should be aware that some commonly employed and recommended mitigations for SQL injection vulnerabilities are not always effective:
              • One common defence is to double up any single quotation marks appearing within user input before incorporating that input into a SQL query. This defence is designed to prevent malformed data from terminating the string in which it is inserted. However, if the data being incorporated into queries is numeric, then the defence may fail, because numeric data may not be encapsulated within quotes, in which case only a space is required to break out of the data context and interfere with the query. Further, in second-order SQL injection attacks, data that has been safely escaped when initially inserted into the database is subsequently read from the database and then passed back to it again. Quotation marks that have been doubled up initially will return to their original form when the data is reused, allowing the defence to be bypassed.
              • Another often cited defence is to use stored procedures for database access. While stored procedures can provide security benefits, they are not guaranteed to prevent SQL injection attacks. The same kinds of vulnerabilities that arise within standard dynamic SQL queries can arise if any SQL is dynamically constructed within stored procedures. Further, even if the procedure is sound, SQL injection can arise if the procedure is invoked in an unsafe manner using user-controllable data.
              ]]>
              21003837'%20or%201%3d1--%20 and 21003837'%20or%201%3d2--%20 were each submitted in the User-Agent HTTP header. These two requests resulted in different responses, indicating that the input is being incorporated into a SQL query in an unsafe way.

              Note that automated difference-based tests for SQL injection flaws can often be unreliable and are prone to false positive results. You should manually review the reported requests and responses to confirm whether a vulnerability is actually present.]]>
              Adult Entertainment, Escorts, Escort Reviews, Incall, Outcall, Erotic Massage, EpicDreams, Epic Dreams, Escort Photos, TV/TS, Escort Service, Escort Classifieds, BDSM
              EpicDreams, Epic Dreams, Escort, Escorts, incall, outcall, Escort Reviews, Escort Directory, Escort Classifieds Welcome, Guest
              Log In | Free Hobbyist Account | Free Provider Ad | Help
              Home
              myEpicDreams
              VIP Escorts
              Directory
              Photo Gallery
              Calendar
              Reviews & Forums
              Adult Store
              Advertise
              CustomerCare
              April 17, 2011
              >> Sponsor Spotlights
              >> Reviews
              >> Today's Most Popular Providers (Learn how to place your ad here)
               01    
              Escort:
               02    
              Escort:
               03    
              Escort:
               04   
              Escort:
               05   
              Escort:
               06   
              Escort:
               07   
              Escort:
               08   
              Escort:
               09   
              Escort:
               10   
              Escort:
               11   
              Escort:
               12   
              Escort:
               13   
              Escort:
               14   
              Escort:
               15   
              Escort:
               16   
              Escort:
               17   
              Escort:
               18   
              Escort:
                
               Newest Provider

              Name: Perfectblode
              Location: Moscow Russia, EU
              Quote: Perfect Body Moscow Blonde... More >>

              Recent Providers   RSS Feeds RSS
              Enter your email to be notified of new providers added to the site.

                
              Escort PLEASURES PLAYHOUSE PLEASURES PLAYHOUSE
              ,
              Escort DiscreetDesires DiscreetDesires
              New York, NY
              Escort Kumiko Kumiko
              Orlando, FL
              Escort Izabella Izabella
              ,
              Escort Sophia Sophia
              ,
              Escort Tatiana Tatiana
              Ft. Lauderdale, FL
              Escort Sierra Michaels Sierra Michaels
              Philadelphia, PA
              Escort VIP Natalia Tacori VIP Natalia Tacori
              Albany, NY
              Escort ScarletRibbons ScarletRibbons
              Mountain View, CA
              Escort Butterfly Bangkok Escort Butterfly Bangkok Escort
              Bangkok Thailand, AA
              Poll
              Which lingerie is sexy on a woman?
               Garters & Pantyhose
               Babydolls & Slips
               Teddies & Bustiers
               I prefer nothing
              View Results  
              A D V E R T I S E M E N T S

              List your banner here!

               RSS Feeds | What's New | FREE Provider Ad | Escort & Adult Links | Adult Store & DVDs
              Copyright © 1998-2011 EpicDreams, All rights reserved. | About EpicDreams | 2257 Notice
              ]]>
              true
              Adult Entertainment, Escorts, Escort Reviews, Incall, Outcall, Erotic Massage, EpicDreams, Epic Dreams, Escort Photos, TV/TS, Escort Service, Escort Classifieds, BDSM
              EpicDreams, Epic Dreams, Escort, Escorts, incall, outcall, Escort Reviews, Escort Directory, Escort Classifieds Welcome, Guest
              Log In | Free Hobbyist Account | Free Provider Ad | Help
              Home
              myEpicDreams
              VIP Escorts
              Directory
              Photo Gallery
              Calendar
              Reviews & Forums
              Adult Store
              Advertise
              CustomerCare
              April 17, 2011
              >> Sponsor Spotlights
              >> Reviews
              >> Today's Most Popular Providers (Learn how to place your ad here)
               01    
              Escort:
               02    
              Escort:
               03    
              Escort:
               04   
              Escort:
               05   
              Escort:
               06   
              Escort:
               07   
              Escort:
               08   
              Escort:
               09   
              Escort:
               10   
              Escort:
               11   
              Escort:
               12   
              Escort:
               13   
              Escort:
               14   
              Escort:
               15   
              Escort:
               16   
              Escort:
               17   
              Escort:
               18   
              Escort:
                
               Newest Provider

              Name: Perfectblode
              Location: Moscow Russia, EU
              Quote: Perfect Body Moscow Blonde... More >>

              Recent Providers   RSS Feeds RSS
              Enter your email to be notified of new providers added to the site.

                
              Escort PLEASURES PLAYHOUSE PLEASURES PLAYHOUSE
              ,
              Escort DiscreetDesires DiscreetDesires
              New York, NY
              Escort Kumiko Kumiko
              Orlando, FL
              Escort Izabella Izabella
              ,
              Escort Sophia Sophia
              ,
              Escort Tatiana Tatiana
              Ft. Lauderdale, FL
              Escort Sierra Michaels Sierra Michaels
              Philadelphia, PA
              Escort VIP Natalia Tacori VIP Natalia Tacori
              Albany, NY
              Escort ScarletRibbons ScarletRibbons
              Mountain View, CA
              Escort Butterfly Bangkok Escort Butterfly Bangkok Escort
              Bangkok Thailand, AA
              Poll
              Which lingerie is sexy on a woman?
               Garters & Pantyhose
               Babydolls & Slips
               Teddies & Bustiers
               I prefer nothing
              View Results  
              A D V E R T I S E M E N T S

              List your banner here!

               RSS Feeds | What's New | FREE Provider Ad | Escort & Adult Links | Adult Store & DVDs
              Copyright © 1998-2011 EpicDreams, All rights reserved. | About EpicDreams | 2257 Notice
              ]]>
              true
              975093848563835904 5244416 Cookie without HttpOnly flag set http://tap.rubiconproject.com Information Certain
              You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
            • khaos=GMMM8SST-B-HSA1; Domain=.rubiconproject.com; Expires=Mon, 15-Apr-2019 23:37:35 GMT; Path=/
            • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
              false
              5754900127520160768 2097920 Cross-site scripting (reflected) http://d.adsverse.com High Certain
              The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

              Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

              The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
            • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
            • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
            • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
              5fc17</script><script>alert(1)</script>c59118bfacf was submitted in the zoneid parameter. This input was echoed unmodified in the application's response.

              This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

              Note that a redirection occurred between the attack request and the response containing the echoed input. It is necessary to follow this redirection for the attack to succeed. When the attack is carried out via a browser, the redirection will be followed automatically.]]>
              c59118bfacf&cb=2130598163&loc=http%3A%2F%2Fcaseyofhouston.com%2Freviews.php HTTP/1.1 Host: d.adsverse.com Proxy-Connection: keep-alive Referer: http://d.adsverse.com/afr.php?key=L2SmMKyiMzuiqKA0o24hL29g&refresh=60&zoneid=14&cb=2130598163 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 Cookie: OAGEO=US%7CTX%7CDallas%7C75207%7C32.7825%7C-96.8207%7C623%7C214%7CMedia+Visions%7C%7C; OAID=574904589a3ae5378ce2de7809c7b231 ]]> Advertisement c59118bfacf&cb=2130598163&loc=http%3A%2F%2Fcaseyofhouston.com%2Freviews.php")', 60000); // ]]]> --> ]]> true
              4033456642040435712 2097920 Cross-site scripting (reflected) http://www.thatshiphop.com High Certain
              The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

              Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

              The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
            • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
            • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
            • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
              29915<script>alert(1)</script>fccb48abde1 was submitted in the name of an arbitrarily supplied request parameter. This input was echoed unmodified in the application's response.

              This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
              alert(1)fccb48abde1&h=1 HTTP/1.1 User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 1.1.4322; Netsparker) Content-Type: application/x-www-form-urlencoded X-Requested-With: XMLHttpRequest Accept: */* Cache-Control: no-cache Host: www.thatshiphop.com Accept-Encoding: gzip, deflate Proxy-Connection: Keep-Alive ]]> Title:   Bootsy Collins Hip-Hop @ Funk U f. Ice
                Cube, Snoop Dogg & Chuck D
              Type:   Audio/29915fccb48abde1 Source:   2dopeboyz.com Hits:   343 ]]>
              false
              2790179779787676672 6292224 Private IP addresses disclosed http://static.ak.fbcdn.net Information Certain
              Discovering the private addresses used within an organisation can help an attacker in carrying out network-layer attacks aiming to penetrate the organisation's internal infrastructure.]]>
            • 10.30.145.197
            • ]]>
              0);},reduce:null,reduceRight:null,sort:a(Array.prototype.sort),reverse:a(Array.prototype.reverse),concat:a(Array.prototype.concat),slice:a(Array.prototype.slice),indexOf:a(Array.prototype.indexOf||function(d,b){var c=this.length;b|=0;if(b<0)b+=c;for(;b'+this._extra_action+'';return a;},setAction:function(a){this._extra_action=a;return this;},getAction:function(){this._fillCache();var a=function(){this._inline_js();eval_global(this._extra_action);}.bind(this);if(this.getDeferred()){return a.defer.bind(a);}else return a;},setDeferred:function(a){this._defer=!!a;return this;},getDeferred:function(){return this._defer;},getContent:function(){return this._content;},getNodes:function(){this._fillCache();return this._nodes;},getRootNode:function(){return this.getNodes()[0];},hasOptionElements:function(){this._fillCache();return this._has_option_elements;},_fillCache:function(){if(null!==this._nodes)return;var d=this._content;if(!d){this._nodes=[];return;}d=d.replace(/(<(\w+)[^>]*?)\/>/g,function(l,m,n){return n.match(/^(abbr|br|col|img|input|link|meta|param|hr|area|embed)$/i)?l:m+'>';});var h=d.trim().toLowerCase(),k=document.createElement('div'),b=false;var j=(!h.indexOf('',''])||(!h.indexOf('',''])||(h.match(/^<(thead|tbody|tfoot|colg|cap)/)&&[1,'','
              '])||(!h.indexOf('',''])||((!h.indexOf('',''])||(!h.indexOf('',''])||null;if(null===j){k.className='__WRAPPER';if(ua.ie()){j=[0,' ',''];b=true;}else j=[0,'',''];}k.innerHTML=j[1]+d+j[2];while(j[0]--)k=k.lastChild;if(b)k.removeChild(k.firstChild);k.className!='__WRAPPER';if(0!=k.getElementsByTagName('option').length)this._has_option_elements=true;if(ua.ie()){var i;if(!h.indexOf(''&&-1==h.indexOf('=0;--f)if(i[f].nodeName&&i[f].nodeName.toLowerCase()=='tbody'&&i[f].childNodes.length==0)i[f].parentNode.removeChild(i[f]);}var g=k.getElementsByTagName('script');var a=[];for(var e=0;e=0;e--)g[e].parentNode.removeChild(g[e]);var c=function(){for(var l=0;l7&&!DOM.isNode(l,['table','tbody','thead','tfoot','tr','select','fieldset']))){l.innerHTML=d;return $A(l.childNodes);}}else if(DOM.isNode(l,DOM.NODE_TYPES.TEXT)){l.data=d;return [d];}var i,e=[],b=[];var f=document.createDocumentFragment();if(!(d instanceof Array))d=[d];for(var h=0;h=a.length&&this.substring(this.length-a.length)==a;};String.prototype.split=(function(a){return function(h,e){var b="";if(h===null||e===null){return [];}else if(typeof h=='string'){return a.call(this,h,e);}else if(h===undefined){return [this.toString()];}else if(h instanceof RegExp){if(!h._2||!h._1){b=h.toString().replace(/^[\S\s]+\//,"");if(!h._1)if(!h.global){h._1=new RegExp(h.source,"g"+b);}else h._1=1;}separator1=h._1===1?h:h._1;var i=(h._2?h._2:h._2=new RegExp("^"+separator1.source+"$",b));if(e===undefined||e<0){e=false;}else{e=Math.floor(e);if(!e)return [];}var f,g=[],d=0,c=0;while((e?c++<=e:true)&&(f=separator1.exec(this))){if((f[0].length===0)&&(separator1.lastIndex>f.index))separator1.lastIndex--;if(separator1.lastIndex>d){if(f.length>1)f[0].replace(i,function(){for(var j=1;jg)try{if(ua.ie()<8){var img_div=document.createElement('div');img_div.style.filter='progid:DXImageTransform.Microsoft.AlphaImageLoader(src="'+e.src.replace('"','%22')+'", sizingMethod="scale")';img_div.style.width=g+'px';img_div.style.height=Math.floor(((g/e.offsetWidth)*e.offsetHeight))+'px';if(e.parentNode.tagName=='A')img_div.style.cursor='pointer';e.parentNode.insertBefore(img_div,e);e.parentNode.removeChild(e);}else throw 1;}catch(b){e.style.width=g+'px';}CSS.removeClass(e,'img_loading');}function imageConstrainSize(e,b,c,d){var a=new Image();a.onload=function(){if(a.width>0&&a.height>0){var k=a.width;var h=a.height;if(k>b||h>c){var g=c/b;var f=h/k;if(f>g){k=k*(c/h);h=c;}else{h=h*(b/k);k=b;}}var j=ge(d);if(j){var i=document.createElement('img');i.src=e;i.width=k;i.height=h;j.parentNode.insertBefore(i,j);j.parentNode.removeChild(j);}}};a.src=e;}function image_has_loaded(a){if(a.naturalWidth!==undefined){return a.complete&&a.width!=0;}else if(a.height==20&&a.width==20&&a.complete){return false;}else if(a.complete===undefined&&ua.safari()<500){var b=new Image();b.src=a.src;return b.complete;}return a.complete;}function image_has_failed(a){if((a.complete==null&&a.width==20&&a.height==20)||(a.mimeType!=null&&a.complete&&a.mimeType=='')||(a.naturalHeight!=null&&a.complete&&a.naturalHeight==0))return true;} function intl_locale_is_rtl(){return ('rtl'==CSS.getStyle(document.body,'direction'));} DataStore=window.DataStore||{_storage:{},_elements:{},_tokenCounter:1,_NOT_IN_DOM_CONST:1,_getStorage:function(a){var b;if(typeof a=='string'){b='str_'+a;}else{b='elem_'+(a.__FB_TOKEN||(a.__FB_TOKEN=[DataStore._tokenCounter++]))[0];DataStore._elements[b]=a;}return DataStore._storage[b]||(DataStore._storage[b]={});},_shouldDeleteData:function(a){if(!a.nodeName)return false;try{if(null!=a.offsetParent)return false;}catch(b){}if(document.documentElement.contains){return !document.documentElement.contains(a);}else return (document.documentElement.compareDocumentPosition(a)&DataStore._NOT_IN_DOM_CONST);},set:function(c,b,d){var a=DataStore._getStorage(c);a[b]=d;return c;},get:function(e,d,c){var b=DataStore._getStorage(e),f=b[d];if(typeof f==='undefined'&&e.getAttribute){var a=e.getAttribute('data-'+d);f=(null===a)?undefined:a;}if((c!==undefined)&&(f===undefined))f=b[d]=c;return f;},remove:function(c,b){var a=DataStore._getStorage(c),d=a[b];delete a[b];return d;},cleanup:function(){var b,a;for(b in DataStore._elements){a=DataStore._elements[b];if(DataStore._shouldDeleteData(a)){delete DataStore._storage[b];delete DataStore._elements[b];}}}}; Event.DATASTORE_KEY='Event.listeners';if(!Event.prototype)Event.prototype={};function $E(a){a=a||window.event||{};if(!a._inherits_from_prototype)for(var c in Event.prototype)try{a[c]=Event.prototype[c];}catch(b){}return a;}(function(){copy_properties(Event.prototype,{_inherits_from_prototype:true,stop:function(){this.cancelBubble=true;this.stopPropagation&&this.stopPropagation();return this;},prevent:function(){this.returnValue=false;this.preventDefault&&this.preventDefault();return this;},kill:function(){this.stop().prevent();return false;},getTarget:function(){var g=this.target||this.srcElement;return g?$(g):null;},getRelatedTarget:function(){var g=this.relatedTarget||this.fromElement;return g?$(g):null;},getModifiers:function(){var g={control:!!this.ctrlKey,shift:!!this.shiftKey,alt:!!this.altKey,meta:!!this.metaKey};g.access=ua.osx()?g.control:g.alt;g.any=g.control||g.shift||g.alt||g.meta;return g;}});copy_properties(Event,{listen:function(h,p,j,m){if(typeof h=='string')h=$(h);if(typeof m=='undefined')m=Event.Priority.NORMAL;if(typeof p=='object'){var i={};for(var o in p)i[o]=Event.listen(h,o,p[o],m);return i;}if(p.match(/^on/i))throw new TypeError("Bad event name `"+event+"': use `click', not `onclick'.");p=p.toLowerCase();var k=DataStore.get(h,b,{});if(f[p]){var g=f[p];p=g.base;j=g.wrap(j);}a(h,p);var q=k[p];if(!(m in q))q[m]=[];var l=q[m].length,n=new EventHandlerRef(j,q[m],l);q[m].push(n);return n;},stop:function(g){return $E(g).stop();},prevent:function(g){return $E(g).prevent();},kill:function(g){return $E(g).kill();},getKeyCode:function(event){event=$E(event);if(!event)return false;switch(event.keyCode){case 63232:return 38;case 63233:return 40;case 63234:return 37;case 63235:return 39;case 63272:case 63273:case 63275:return null;case 63276:return 33;case 63277:return 34;}if(event.shiftKey)switch(event.keyCode){case 33:case 34:case 37:case 38:case 39:case 40:return null;}return event.keyCode;},getPriorities:function(){if(!e){var g=values(Event.Priority);g.sort(function(h,i){return h-i;});e=g;}return e;},__fire:function(g,i,event){var h=Event.__getHandler(g,i);if(h)return h($E(event));},__getHandler:function(g,h){return DataStore.get(g,Event.DATASTORE_KEY+h);}});var e=null,b=Event.DATASTORE_KEY;var c=function(g){return function(h){if(!DOM.contains(this,h.getRelatedTarget()))return g.call(this,h);};};var f={mouseenter:{base:'mouseover',wrap:c},mouseleave:{base:'mouseout',wrap:c}};var a=function(g,l){var h='on'+l;var k=d.bind(g);var j=DataStore.get(g,b);if(l in j)return;j[l]={};if(g.addEventListener){g.addEventListener(l,k,false);}else if(g.attachEvent)g.attachEvent(h,k);DataStore.set(g,b+l,k);if(g[h]){var i=g[h];g[h]=null;Event.listen(g,l,i,Event.Priority.TRADITIONAL);}if(g.nodeName==='FORM'&&l==='submit')Event.listen(g,l,Event.__bubbleSubmit.curry(g),Event.Priority._BUBBLE);};var d=function(event){event=$E(event);var n=event.type;if(!DataStore.get(this,b))throw new Error("Bad listenHandler context.");var o=DataStore.get(this,b)[n];if(!o)throw new Error("No registered handlers for `"+n+"'.");if(n=='click'){var i=Parent.byTag(event.getTarget(),'a');user_action(i,n,event);}var k=Event.getPriorities();for(var j=0;j=0;b--)if(d=a.style[c[b]]!==undefined)break;CSS.supportsBorderRadius=bagof(d);return d;}}); add_properties('Input',{focus:function(a){try{a.focus();}catch(b){}},isEmpty:function(a){return !(/\S/).test(a.value||'')||CSS.hasClass(a,'DOMControl_placeholder');},getValue:function(a){return Input.isEmpty(a)?'':a.value;},setValue:function(b,c){CSS.removeClass(b,'DOMControl_placeholder');b.value=c;var a=DOMControl.getInstance(b);a&&a.resetHeight&&a.resetHeight();},setPlaceholder:function(a,b){a.setAttribute('title',b);a.setAttribute('placeholder',b);if(a==document.activeElement)return;if(Input.isEmpty(a)){CSS.conditionClass(a,'DOMControl_placeholder',b);a.value=b;}},reset:function(a){Input.setValue(a,'');var b=a.getAttribute('placeholder');b&&Input.setPlaceholder(a,b);a.style.height='';},setSubmitOnEnter:function(a,b){CSS.conditionClass(a,'enter_submit',b);},getSubmitOnEnter:function(a){return CSS.hasClass(a,'enter_submit');}}); function animation(a){if(a==undefined)return;if(this==window){return new animation(a);}else{this.obj=a;this._reset_state();this.queue=[];this.last_attr=null;}}animation.resolution=20;animation.offset=0;animation.prototype._reset_state=function(){this.state={attrs:{},duration:500};};animation.prototype.stop=function(){this._reset_state();this.queue=[];return this;};animation.prototype._build_container=function(){if(this.container_div){this._refresh_container();return;}if(this.obj.firstChild&&this.obj.firstChild.__animation_refs){this.container_div=this.obj.firstChild;this.container_div.__animation_refs++;this._refresh_container();return;}var b=document.createElement('div');b.style.padding='0px';b.style.margin='0px';b.style.border='0px';b.__animation_refs=1;var a=this.obj.childNodes;while(a.length)b.appendChild(a[0]);this.obj.appendChild(b);this._orig_overflow=this.obj.style.overflow;this.obj.style.overflow='hidden';this.container_div=b;this._refresh_container();};animation.prototype._refresh_container=function(){this.container_div.style.height='auto';this.container_div.style.width='auto';this.container_div.style.height=this.container_div.offsetHeight+'px';this.container_div.style.width=this.container_div.offsetWidth+'px';};animation.prototype._destroy_container=function(){if(!this.container_div)return;if(!--this.container_div.__animation_refs){var a=this.container_div.childNodes;while(a.length)this.obj.appendChild(a[0]);this.obj.removeChild(this.container_div);}this.container_div=null;this.obj.style.overflow=this._orig_overflow;};animation.ATTR_TO=1;animation.ATTR_BY=2;animation.ATTR_FROM=3;animation.prototype._attr=function(a,d,c){a=a.replace(/-[a-z]/gi,function(e){return e.substring(1).toUpperCase();});var b=false;switch(a){case 'background':this._attr('backgroundColor',d,c);return this;case 'margin':d=animation.parse_group(d);this._attr('marginBottom',d[0],c);this._attr('marginLeft',d[1],c);this._attr('marginRight',d[2],c);this._attr('marginTop',d[3],c);return this;case 'padding':d=animation.parse_group(d);this._attr('paddingBottom',d[0],c);this._attr('paddingLeft',d[1],c);this._attr('paddingRight',d[2],c);this._attr('paddingTop',d[3],c);return this;case 'backgroundColor':case 'borderColor':case 'color':d=animation.parse_color(d);break;case 'opacity':d=parseFloat(d,10);break;case 'height':case 'width':if(d=='auto'){b=true;}else d=parseInt(d,10);break;case 'borderWidth':case 'lineHeight':case 'fontSize':case 'marginBottom':case 'marginLeft':case 'marginRight':case 'marginTop':case 'paddingBottom':case 'paddingLeft':case 'paddingRight':case 'paddingTop':case 'bottom':case 'left':case 'right':case 'top':case 'scrollTop':case 'scrollLeft':d=parseInt(d,10);break;default:throw new Error(a+' is not a supported attribute!');}if(this.state.attrs[a]===undefined)this.state.attrs[a]={};if(b)this.state.attrs[a].auto=true;switch(c){case animation.ATTR_FROM:this.state.attrs[a].start=d;break;case animation.ATTR_BY:this.state.attrs[a].by=true;case animation.ATTR_TO:this.state.attrs[a].value=d;break;}};animation._get_box_width=function(c){var d=parseInt(CSS.getStyle(c,'paddingLeft'),10),e=parseInt(CSS.getStyle(c,'paddingRight'),10),a=parseInt(CSS.getStyle(c,'borderLeftWidth'),10),b=parseInt(CSS.getStyle(c,'borderRightWidth'),10);return c.offsetWidth-(d?d:0)-(e?e:0)-(a?a:0)-(b?b:0);};animation._get_box_height=function(c){var e=parseInt(CSS.getStyle(c,'paddingTop'),10),d=parseInt(CSS.getStyle(c,'paddingBottom'),10),a=parseInt(CSS.getStyle(c,'borderTopWidth'),10),b=parseInt(CSS.getStyle(c,'borderBottomWidth'),10);return c.offsetHeight-(e?e:0)-(d?d:0)-(a?a:0)-(b?b:0);};animation.prototype.to=function(a,b){if(b===undefined){this._attr(this.last_attr,a,animation.ATTR_TO);}else{this._attr(a,b,animation.ATTR_TO);this.last_attr=a;}return this;};animation.prototype.by=function(a,b){if(b===undefined){this._attr(this.last_attr,a,animation.ATTR_BY);}else{this._attr(a,b,animation.ATTR_BY);this.last_attr=a;}return this;};animation.prototype.from=function(a,b){if(b===undefined){this._attr(this.last_attr,a,animation.ATTR_FROM);}else{this._attr(a,b,animation.ATTR_FROM);this.last_attr=a;}return this;};animation.prototype.duration=function(a){this.state.duration=a?a:0;return this;};animation.prototype.checkpoint=function(b,a){if(b===undefined)b=1;this.state.checkpoint=b;this.queue.push(this.state);this._reset_state();this.state.checkpointcb=a;return this;};animation.prototype.blind=function(){this.state.blind=true;return this;};animation.prototype.hide=function(){this.state.hide=true;return this;};animation.prototype.show=function(){this.state.show=true;return this;};animation.prototype.ease=function(a){this.state.ease=a;return this;};animation.prototype.go=function(){var b=(new Date()).getTime();this.queue.push(this.state);for(var a=0;al){d=false;continue;}if(b.checkpointcb){this._callback(b.checkpointcb,l-b.start);b.checkpointcb=null;}if(b.started===undefined){if(b.show)this._show();for(var a in b.attrs){if(b.attrs[a].start!==undefined)continue;switch(a){case 'backgroundColor':case 'borderColor':case 'color':var m=animation.parse_color(CSS.getStyle(this.obj,a=='borderColor'?'borderLeftColor':a));if(b.attrs[a].by){b.attrs[a].value[0]=Math.min(255,Math.max(0,b.attrs[a].value[0]+m[0]));b.attrs[a].value[1]=Math.min(255,Math.max(0,b.attrs[a].value[1]+m[1]));b.attrs[a].value[2]=Math.min(255,Math.max(0,b.attrs[a].value[2]+m[2]));}break;case 'opacity':var m=CSS.getOpacity(this.obj);if(b.attrs[a].by)b.attrs[a].value=Math.min(1,Math.max(0,b.attrs[a].value+m));break;case 'height':var m=animation._get_box_height(this.obj);if(b.attrs[a].by)b.attrs[a].value+=m;break;case 'width':var m=animation._get_box_width(this.obj);if(b.attrs[a].by)b.attrs[a].value+=m;break;case 'scrollLeft':case 'scrollTop':var m=(this.obj==document.body)?(document.documentElement[a]||document.body[a]):this.obj[a];if(b.attrs[a].by)b.attrs[a].value+=m;b['last'+a]=m;break;default:var m=parseInt(CSS.getStyle(this.obj,a),10)||0;if(b.attrs[a].by)b.attrs[a].value+=m;break;}b.attrs[a].start=m;}if((b.attrs.height&&b.attrs.height.auto)||(b.attrs.width&&b.attrs.width.auto)){if(ua.firefox()<3)n=true;this._destroy_container();for(var a in {height:1,width:1,fontSize:1,borderLeftWidth:1,borderRightWidth:1,borderTopWidth:1,borderBottomWidth:1,paddingLeft:1,paddingRight:1,paddingTop:1,paddingBottom:1})if(b.attrs[a])this.obj.style[a]=b.attrs[a].value+(typeof b.attrs[a].value=='number'?'px':'');if(b.attrs.height&&b.attrs.height.auto)b.attrs.height.value=animation._get_box_height(this.obj);if(b.attrs.width&&b.attrs.width.auto)b.attrs.width.value=animation._get_box_width(this.obj);}b.started=true;if(b.blind)this._build_container();}var h=(l-b.start)/b.duration;if(h>=1){h=1;if(b.hide)this._hide();}else d=false;var j=b.ease?b.ease(h):h;if(!k&&h!=1&&b.blind)k=true;if(n&&this.obj.parentNode){var i=this.obj.parentNode;var g=this.obj.nextSibling;i.removeChild(this.obj);}for(var a in b.attrs)switch(a){case 'backgroundColor':case 'borderColor':case 'color':this.obj.style[a]='rgb('+animation.calc_tween(j,b.attrs[a].start[0],b.attrs[a].value[0],true)+','+animation.calc_tween(j,b.attrs[a].start[1],b.attrs[a].value[1],true)+','+animation.calc_tween(j,b.attrs[a].start[2],b.attrs[a].value[2],true)+')';break;case 'opacity':CSS.setStyle(this.obj,'opacity',animation.calc_tween(j,b.attrs[a].start,b.attrs[a].value));break;case 'height':case 'width':this.obj.style[a]=j==1&&b.attrs[a].auto?'auto':animation.calc_tween(j,b.attrs[a].start,b.attrs[a].value,true)+'px';break;case 'scrollLeft':case 'scrollTop':var f=this.obj==document.body;var m=(f)?(document.documentElement[a]||document.body[a]):this.obj[a];if(b['last'+a]!=m){delete b.attrs[a];}else{var c=animation.calc_tween(j,b.attrs[a].start,b.attrs[a].value,true)-m;if(!f){this.obj[a]=c+m;}else if(a=='scrollLeft'){window.scrollBy(c,0);}else window.scrollBy(0,c);b['last'+a]=c+m;}break;default:this.obj.style[a]=animation.calc_tween(j,b.attrs[a].start,b.attrs[a].value,true)+'px';break;}if(h==1){this.queue.splice(e--,1);this._callback(b.ondone,l-b.start-b.duration);}}if(n)i[g?'insertBefore':'appendChild'](this.obj,g);if(!k&&this.container_div)this._destroy_container();return !d;};animation.prototype.ondone=function(a){this.state.ondone=a;return this;};animation.prototype._callback=function(a,b){if(a){animation.offset=b;a.call(this);animation.offset=0;}};animation.calc_tween=function(a,b,c,d){return (d?parseInt:parseFloat)((c-b)*a+b,10);};animation.parse_color=function(a){var b=/^#([a-f0-9]{1,2})([a-f0-9]{1,2})([a-f0-9]{1,2})$/i.exec(a);if(b){return [parseInt(b[1].length==1?b[1]+b[1]:b[1],16),parseInt(b[2].length==1?b[2]+b[2]:b[2],16),parseInt(b[3].length==1?b[3]+b[3]:b[3],16)];}else{var c=/^rgba? *\(([0-9]+), *([0-9]+), *([0-9]+)(?:, *([0-9]+))?\)$/.exec(a);if(c){if(c[4]==='0'){return [255,255,255];}else return [parseInt(c[1],10),parseInt(c[2],10),parseInt(c[3],10)];}else if(a=='transparent'){return [255,255,255];}else throw 'Named color attributes are not supported.';}};animation.parse_group=function(a){var a=trim(a).split(/ +/);if(a.length==4){return a;}else if(a.length==3){return [a[0],a[1],a[2],a[1]];}else if(a.length==2){return [a[0],a[1],a[0],a[1]];}else return [a[0],a[0],a[0],a[0]];};animation.push=function(a){if(!animation.active)animation.active=[];animation.active.push(a);if(!animation.timeout)animation.timeout=setInterval(animation.animate.bind(animation),animation.resolution,false);animation.animate(true);};animation.animate=function(c){var d=(new Date()).getTime();for(var b=c===true?animation.active.length-1:0;b0){var d=e[0];try{if(elementY(d)>0&&elementX(d)>0)return d;}catch(a){}}return null;},focusFirst:function(b){var a=Form.getFirstElement(b);if(a){a.focus();return true;}return false;}});var DOMPath={findNodePath:function(c,e){e=e||[];if(c.id||!DOM.isNode(c.parentNode))return {id:c.id,path:e.reverse()};var d=c.parentNode;var b=d.childNodes;for(var a=0;a=0;a--)b[a].hide();}},_handleEscapeKey:function(event,a){Dialog._escape();},_escape:function(){var d=Dialog.getCurrent();if(!d)return true;var e=d._semi_modal;var b=d._buttons;if(!b&&!e)return true;if(e&&!b){d.hide();return false;}var a;var c=Dialog._findButton(b,'cancel');if(d._cancelHandler){d.cancel();return false;}else if(c){a=c;}else if(b.length==1){a=b[0];}else return true;d._handleButton(a);return false;},call_or_eval:function(obj,func,args){if(!func)return undefined;args=args||{};if(typeof(func)=='string'){var params=keys(args).join(', ');func=eval('({f: function('+params+') { '+func+'}})').f;}return func.apply(obj,values(args));}});copy_properties(Dialog.prototype,{show:function(a){this._showing=true;if(a){if(this._overlay)this._overlay.style.display='';if(this._fade_enabled)CSS.setStyle(this._obj,'opacity',1);this._obj.style.display='';}else this._dirty();return this;},showLoading:function(){this._loading_was_shown=true;this._renderDialog($N('div',{className:'dialog_loading'},_tx("Loading...")));return this;},hide:function(a){if(!this._showing)return this;this._showing=false;if(this._autohide_timeout){clearTimeout(this._autohide_timeout);this._autohide_timeout=null;}if(this._fade_enabled&&(!Dialog.dialogStack||Dialog.dialogStack.length<=1)){this._fadeOut(a);}else this._hide(a);return this;},cancel:function(){if(!this._cancelHandler||this._cancelHandler()!==false)this.hide();},getRoot:function(){return this._obj;},getBody:function(){return DOM.scry(this._obj,'div.dialog_body')[0];},getButtonElement:function(a){if(typeof a=='string')a=Dialog._findButton(this._buttons,a);if(!a||!a.name)return null;var b=DOM.scry(this._popup,'input');var c=function(d){return d.name==a.name;};return b.filter(c)[0]||null;},getContentNode:function(){var a=DOM.scry(this._content,'div.dialog_content');a.length!=1;return a[0];},getFormData:function(){return Form.serialize(this.getContentNode());},setShowing:function(){this.show();return this;},setHiding:function(){this.hide();return this;},setTitle:Dialog._basicMutator('_title'),setBody:Dialog._basicMutator('_body'),setExtraData:Dialog._basicMutator('_extra_data'),setReturnData:Dialog._basicMutator('_return_data'),setShowLoading:Dialog._basicMutator('_show_loading'),setFullBleed:Dialog._basicMutator('_full_bleed'),setImmediateRendering:function(a){this._immediate_rendering=a;return this;},setUserData:Dialog._basicMutator('_user_data'),getUserData:function(){return this._user_data;},setAutohide:function(a){if(a){if(this._showing){this._autohide_timeout=setTimeout(this.hide.shield(this),a);}else this._autohide=a;}else{this._autohide=null;if(this._autohide_timeout){clearTimeout(this._autohide_timeout);this._autohide_timeout=null;}}return this;},setSummary:Dialog._basicMutator('_summary'),setButtons:function(a){var c;if(!(a instanceof Array)){c=$A(arguments);}else c=a;for(var d=0;d0)||this._buttons_message){if(this._buttons_message)b.push($N('div',{className:'dialog_buttons_msg'},this._format(this._buttons_message)));if(this._buttons)for(var e=0;e=0;b--)if(c[b]==this){c.splice(b,1);}else if(!c[b]._shown_while_stacked)c[b]._hide(true);}c.push(this);return this;},_activeResize:function(){if(this.last_offset_height!=this._content.offsetHeight)this.last_offset_height=this._content.offsetHeight;},_buildDialogContent:function(){CSS.addClass(this._obj,'pop_dialog');if(intl_locale_is_rtl())CSS.addClass(this._obj,'pop_dialog_rtl');var a;if(Dialog._useCSSBorders){a='
              '+'
              '+'
              ';}else a='
              '+'
              '+'
              '+'
              '+'
              '+'
              '+'
              '+'
              '+'
              ';DOM.setContent(this._popup,HTML(a));this._frame=DOM.find(this._popup,'div.pop_content');this._content=this._frame;},_buildOverlay:function(){this._overlay=$N('div',{id:'generic_dialog_overlay'});if(this._modal_class)CSS.addClass(this._overlay,this._modal_class);if(this._semi_modal){var a=function(b){if(b.getTarget()==this._obj||b.getTarget()==this._overlay)this.hide();}.bind(this);Event.listen(this._obj,'click',a);Event.listen(this._overlay,'click',a);}if(ua.ie()<7)this._overlay.style.height=Vector2.getDocumentDimensions().y+'px';onloadRegister(function(){document.body.appendChild(this._overlay);}.bind(this));},_resetDialog:function(){if(!this._popup)return;this._resetDialogObj();},_resetDialogObj:function(){var c=DOM.find(this._popup,'div.pop_content');var b=Vector2.getScrollPosition().y;var f=Vector2.getViewportDimensions().y;var d=Vector2.getElementDimensions(c).y;var e=b+this._top+'px';if(this._top+d>f){var a=Math.max(f-d,0);e=((a/2)+b)+'px';}this._popup.style.top=e;},_fadeOut:function(b){if(!this._popup)return;try{animation(this._obj).duration(0).checkpoint().to('opacity',0).hide().duration(250).ondone(this._hide.bind(this,b)).go();}catch(a){this._hide(b);}},_hide:function(d){if(this._obj)this._obj.style.display='none';if(this._overlay)if(d){this._overlay.style.display='none';}else{DOM.remove(this._overlay);this._overlay=null;}if(this.timeout){clearTimeout(this.timeout);this.timeout=null;}if(this._hidden_objects.length){for(var b=0,c=this._hidden_objects.length;b=0;a--)if(b[a]==this)b.splice(a,1);if(b.length)b[b.length-1]._showDialog();}if(this._obj){DOM.remove(this._obj);this._obj=null;}if(this._close_handler)this._close_handler({return_data:this._return_data});},_handleButton:function(a){if(typeof a=='string')a=Dialog._findButton(this._buttons,a);if(!a)return;var b=Dialog.call_or_eval(a,a.handler);if(b===false)return;if(a.name=='cancel'){this.cancel();}else if(Dialog.call_or_eval(this,this._handler,{button:a})!==false)this.hide();},_submitForm:function(d,e,b){var c=this.getFormData();if(b)c[b.name]=b.label;if(this._extra_data)copy_properties(c,this._extra_data);var a=new AsyncRequest().setURI(e).setData(c).setMethod(d).setReadOnly(d=='GET');this.setAsync(a);return false;},_setFromModel:function(c){var a={};copy_properties(a,c);if(a.immediateRendering){this.setImmediateRendering(a.immediateRendering);delete a.immediateRendering;}for(var d in a){if(d=='onloadRegister'){this.onloadRegister(a[d]);continue;}var b=this['set'+d.substr(0,1).toUpperCase()+d.substr(1)];if(!(!b))b.apply(this,$A(a[d]));}},_updateBottom:function(){var a=Vector2.getElementDimensions(this._content).y+Vector2.getElementPosition(this._content).y;Dialog._bottoms[Dialog._bottoms.length-1]=a;Dialog._updateMaxBottom();}}); function AsyncRequest(uri){var dispatchResponse=bind(this,function(asyncResponse){try{this.clearStatusIndicator();this._measureSaved&&this._measureSaved();if(this._isPrefetch){this._isPrefetch=false;return;}if(!this.isRelevant()){invokeErrorHandler(1010);return;}if(this.initialHandler(asyncResponse)!==false){clearTimeout(this.timer);asyncResponse.jscc&&invoke_callbacks([asyncResponse.jscc]);if(this.handler)try{var suppress_onload=this.handler(asyncResponse);}catch(exception){asyncResponse.is_last&&this.finallyHandler(asyncResponse);throw exception;}asyncResponse.is_last&&this.finallyHandler(asyncResponse);if(suppress_onload!==AsyncRequest.suppressOnloadToken){var onload=asyncResponse.onload;if(onload)for(var ii=0;ii=300&&err<=399){summary=_tx("Redirection");desc=_tx("Your access to Facebook was redirected or blocked by a third party at this time, please contact your ISP or reload. ");redir_url=this.transport.getResponseHeader("Location");if(redir_url)goURI(redir_url,true);silent=true;}else{summary=_tx("Oops!");desc=_tx("Something went wrong. We're working on getting this fixed as soon as we can. You may be able to try again.");}!this.getOption('suppressErrorAlerts');copy_properties(r,{error:err,errorSummary:summary,errorDescription:desc,silentError:silent});dispatchErrorResponse(r,true);}});var handleResponse=function(response){var asyncResponse=this.interpretResponse(response);this.invokeResponseHandler(asyncResponse);};var onStateChange=function(){try{if(this.transport.readyState==4){AsyncRequest._inflightPurge();try{if(typeof(this.transport.getResponseHeader)!='undefined'&&this.transport.getResponseHeader('X-FB-Server'))this._xFbServer=this.transport.getResponseHeader('X-FB-Server');}catch(ex){}if(this.transport.status>=200&&this.transport.status<300){invokeResponseHandler(_interpretTransportResponse());}else if(ua.safari()&&(typeof(this.transport.status)=='undefined')){invokeErrorHandler(1002);}else if(window.send_error_signal&&window.Env&&window.Env.retry_ajax_on_network_error&&this.transport.status in {0:1,12029:1,12030:1,12031:1,12152:1}&&this.remainingRetries>0){--this.remainingRetries;delete this.transport;this.send(true);return;}else invokeErrorHandler();if(this.getOption('asynchronous')!==false)delete this.transport;}}catch(exception){try{if(!window.loaded)return;}catch(ex){return;}delete this.transport;if(this.remainingRetries>0){--this.remainingRetries;this.send(true);}else{!this.getOption('suppressErrorAlerts');if(window.send_error_signal)send_error_signal('async_xport_resp','1007:'+(this._xFbServer||'-')+':'+this.getURI()+':'+exception.message);invokeErrorHandler(1007);}}};var onJSONPResponse=function(data,more_chunked_response){var is_first=(this.is_first===undefined);this.is_first=is_first;if(this.transportIframe&&!more_chunked_response)(function(x){document.body.removeChild(x);}).bind(null,this.transportIframe).defer();if(ua.ie()>=9&&window.JSON)data=window.JSON.parse(window.JSON.stringify(data));var r=this.interpretResponse(data);r.asyncResponse.is_first=is_first;r.asyncResponse.is_last=!more_chunked_response;this.invokeResponseHandler(r);return more_chunked_response;};copy_properties(this,{onstatechange:onStateChange,onjsonpresponse:onJSONPResponse,replayResponses:replayResponses,invokeResponseHandler:invokeResponseHandler,interpretResponse:interpretResponse,handleResponse:handleResponse,transport:null,method:'POST',uri:'',timeout:null,timer:null,initialHandler:bagofholding,handler:null,errorHandler:null,transportErrorHandler:null,timeoutHandler:null,finallyHandler:bagofholding,serverDialogCancelHandler:bagofholding,relativeTo:null,statusElement:null,statusClass:'',data:{},context:{},readOnly:false,writeRequiredParams:['post_form_id'],remainingRetries:0,option:{asynchronous:true,suppressCacheInvalidation:false,suppressErrorHandlerWarning:false,suppressEvaluation:false,suppressErrorAlerts:false,retries:0,jsonp:false,bundle:false,useIframeTransport:false,tfbEndpoint:true,handleErrorAfterUnload:false},_replayable:undefined,_replayKey:'',_isPrefetch:false});this.errorHandler=AsyncResponse.defaultErrorHandler;this.transportErrorHandler=bind(this,'errorHandler');if(uri!=undefined)this.setURI(uri);return this;}Arbiter.subscribe("page_transition",function(b,a){AsyncRequest._id_threshold=a.id;});copy_properties(AsyncRequest,{pingURI:function(c,a,b){a=a||{};return new AsyncRequest().setURI(c).setData(a).setOption('asynchronous',!b).setOption('suppressErrorHandlerWarning',true).setErrorHandler(bagofholding).setTransportErrorHandler(bagofholding).send();},receiveJSONPResponse:function(b,a,c){if(this._JSONPReceivers[b])if(!this._JSONPReceivers[b](a,c))delete this._JSONPReceivers[b];},_hasBundledRequest:function(){return AsyncRequest._allBundledRequests.length>0;},stashBundledRequest:function(){var a=AsyncRequest._allBundledRequests;AsyncRequest._allBundledRequests=[];return a;},setBundledRequestProperties:function(b){var c=null;if(b.stashedRequests)AsyncRequest._allBundledRequests=AsyncRequest._allBundledRequests.concat(b.stashedRequests);if(!AsyncRequest._hasBundledRequest()){var a=b.callback;a&&a();}else{copy_properties(AsyncRequest._bundledRequestProperties,b);if(b.start_immediately)c=AsyncRequest._sendBundledRequests();}return c;},_bundleRequest:function(b){if(b.getOption('jsonp')||b.getOption('useIframeTransport')){b.setOption('bundle',false);return false;}else if(!b.uri.isFacebookURI()){b.setOption('bundle',false);return false;}else if(!b.getOption('asynchronous')){b.setOption('bundle',false);return false;}var a=b.uri.getPath();if(!AsyncRequest._bundleTimer)AsyncRequest._bundleTimer=setTimeout(function(){AsyncRequest._sendBundledRequests();},0);AsyncRequest._allBundledRequests.push([a,b]);return true;},_sendBundledRequests:function(){clearTimeout(AsyncRequest._bundleTimer);AsyncRequest._bundleTimer=null;var a=AsyncRequest._allBundledRequests;AsyncRequest._allBundledRequests=[];var e={};copy_properties(e,AsyncRequest._bundledRequestProperties);AsyncRequest._bundledRequestProperties={};if(is_empty(e)&&a.length==1){var g=a[0][1];g.setOption('bundle',false).send();return g;}var d=function(){e.callback&&e.callback();};if(a.length===0){d();return null;}var b=[];for(var c=0;cAsyncRequest._id_threshold;},clearStatusIndicator:function(){var a=this.getStatusElement();if(a){CSS.removeClass(a,'async_saving');CSS.removeClass(a,this.statusClass);}},addStatusIndicator:function(){var a=this.getStatusElement();if(a){CSS.addClass(a,'async_saving');CSS.addClass(a,this.statusClass);}},specifiesWriteRequiredParams:function(){return this.writeRequiredParams.every(function(a){this.data[a]=this.data[a]||Env[a]||(ge(a)||{}).value;if(this.data[a]!==undefined)return true;return false;},this);},setReplayable:function(b,a){this._replayable=b;this._replayKey=a||'';return this;},setOption:function(a,b){if(typeof(this.option[a])!='undefined')this.option[a]=b;return this;},getOption:function(a){typeof(this.option[a])=='undefined';return this.option[a];},abort:function(){if(this.transport){var a=this.getTransportErrorHandler();this.setOption('suppressErrorAlerts',true);this.setTransportErrorHandler(bagofholding);this._requestAborted=1;this.transport.abort();this.setTransportErrorHandler(a);}},abandon:function(){clearTimeout(this.timer);this.setOption('suppressErrorAlerts',true).setHandler(bagofholding).setErrorHandler(bagofholding).setTransportErrorHandler(bagofholding);if(this.transport){this._requestAborted=1;this.transport.abort();}},setNectarActionData:function(a){if(this.data.nctr===undefined)this.data.nctr={};this.data.nctr._ia=1;if(a){if(this.data.nctr._as===undefined)this.data.nctr._as={};copy_properties(this.data.nctr._as,a);}return this;},setNectarData:function(a){if(a){if(this.data.nctr===undefined)this.data.nctr={};copy_properties(this.data.nctr,a);}return this;},setNectarModuleDataSafe:function(a){if(this.setNectarModuleData)this.setNectarModuleData(a);return this;},setNectarImpressionIdSafe:function(){if(this.setNectarImpressionId)this.setNectarImpressionId();return this;},setPrefetch:function(a){this._isPrefetch=a;this.setAllowCrossPageTransition(true);return this;},setAllowCrossPageTransition:function(a){this._allowCrossPageTransition=!!a;return this;},send:function(c){if(this._checkCache&&this._checkCache())return true;c=c||false;if(!this.uri)return false;!this.errorHandler&&!this.getOption('suppressErrorHandlerWarning');if(this.getOption('jsonp')&&this.method!='GET')this.setMethod('GET');if(this.getOption('useIframeTransport')&&this.method!='GET')this.setMethod('GET');this.timeoutHandler!==null&&(this.getOption('jsonp')||this.getOption('useIframeTransport'));if(!this.getReadOnly()){if(!this.specifiesWriteRequiredParams())return false;if(this.method!='POST')return false;}if(this.method=='POST'&&this.getOption('tfbEndpoint')){this.data.fb_dtsg=Env.fb_dtsg;this.data.lsd=getCookie('lsd');}this._replayable=(!this.getReadOnly()&&this._replayable!==false)||this._replayable;if(this._replayable)Arbiter.inform(AsyncRequest.REPLAYABLE_AJAX,this);if(!is_empty(this.context)&&this.getOption('tfbEndpoint')){copy_properties(this.data,this.context);this.data.ajax_log=1;}if(!this.getReadOnly()&&this.getOption('tfbEndpoint')&&this.method=='POST'&&this.data.post_form_id_source===undefined)this.data.post_form_id_source='AsyncRequest';if(this.getOption('bundle')&&AsyncRequest._bundleRequest(this))return true;this.setNewSerial();if(this.getOption('tfbEndpoint'))this.uri.addQueryData({__a:1});this.finallyHandler=async_callback(this.finallyHandler,'final');var h,d;if(this.method=='GET'){h=this.uri.addQueryData(this.data).toString();d='';}else{h=this.uri.toString();d=URI.implodeQuery(this.data);}if(this.getOption('jsonp')||this.getOption('useIframeTransport')){h=this.uri.addQueryData({__a:this.id}).toString();AsyncRequest._JSONPReceivers[this.id]=async_callback(bind(this,'onjsonpresponse'),'json');if(this.getOption('jsonp')){(function(){document.body.appendChild($N('script',{src:h,type:"text/javascript"}));}).bind(this).defer();}else{var e={position:'absolute',top:'-1000px',left:'-1000px',width:'80px',height:'80px'};this.transportIframe=$N('iframe',{src:h,style:e});document.body.appendChild(this.transportIframe);}return true;}if(this.transport)return false;var g=null;try{g=new XMLHttpRequest();}catch(b){}if(!g)try{g=new ActiveXObject("Msxml2.XMLHTTP");}catch(b){}if(!g)try{g=new ActiveXObject("Microsoft.XMLHTTP");}catch(b){}if(!g)return false;g.onreadystatechange=async_callback(bind(this,'onstatechange'),'xhr');if(!c)this.remainingRetries=this.getOption('retries');if(window.send_error_signal||window.ArbiterMonitor)this._sendTimeStamp=this._sendTimeStamp||(+new Date());this.transport=g;try{this.transport.open(this.method,h,this.getOption('asynchronous'));}catch(a){return false;}var f=env_get('svn_rev');if(f)this.transport.setRequestHeader('X-SVN-Rev',String(f));if(this.method=='POST')this.transport.setRequestHeader('Content-Type','application/x-www-form-urlencoded');this.addStatusIndicator();this.transport.send(d);if(this.timeout!==null)this.resetTimeout(this.timeout);AsyncRequest._inflightAdd(this);return true;},_displayServerDialog:function(c,b){var a=new Dialog(c);if(b)a.setHandler(this._displayConfirmationHandler.bind(this,a));a.setCancelHandler(function(){this.serverDialogCancelHandler.apply(this,arguments);this.finallyHandler.apply(this,arguments);}.bind(this)).setCloseHandler(this.finallyHandler.bind(this)).show();},_displayConfirmationHandler:function(a){this.data.confirmed=1;copy_properties(this.data,a.getFormData());this.send();}});function AsyncResponse(b,a){copy_properties(this,{error:0,errorSummary:null,errorDescription:null,onload:null,replay:false,payload:a||null,request:b||null,silentError:false,is_last:true});return this;}copy_properties(AsyncResponse,{defaultErrorHandler:function(b){try{if(!b.silentError){AsyncResponse.verboseErrorHandler(b);}else b.logErrorByGroup('silent',10);}catch(a){alert(b);}},verboseErrorHandler:function(b){try{var summary=b.getErrorSummary();var desc=b.getErrorDescription();b.logErrorByGroup('popup',10);if(b.silentError&&desc=='')desc=_tx("Something went wrong. We're working on getting this fixed as soon as we can. You may be able to try again.");ErrorDialog.show(summary,desc);}catch(a){alert(b);}}});copy_properties(AsyncResponse.prototype,{getRequest:function(){return this.request;},getPayload:function(){return this.payload;},getError:function(){return this.error;},getErrorSummary:function(){return this.errorSummary;},setErrorSummary:function(a){a=(a===undefined?null:a);this.errorSummary=a;return this;},getErrorDescription:function(){return this.errorDescription;},getErrorIsWarning:function(){return this.errorIsWarning;},setReplay:function(a){a=(a===undefined?true:a);this.replay=!!a;return this;},isReplay:function(){return this.replay;},logError:function(a,c){if(window.send_error_signal){c=(c===undefined?'':(':'+c));var d=this.request.getURI();var b=this.error+':'+(env_get('vip')||'-')+c+':'+d;if(!d||d.indexOf('scribe_endpoint.php')!=-1)a='async_error_double';send_error_signal(a,b);}},logErrorByGroup:function(b,a){if(Math.floor(Math.random()*a)==0)if(this.error==1357010||this.error<15000){this.logError('async_error_oops_'+b);}else this.logError('async_error_logic_'+b);}}); var DOMScroll={getScrollState:function(){var d=Vector2.getViewportDimensions();var a=Vector2.getDocumentDimensions();var b=(a.x>d.x);var c=(a.y>d.y);b+=0;c+=0;return new Vector2(b,c);},_scrollbarSize:null,_initScrollbarSize:function(){var a=$N('p');a.style.width='100%';a.style.height='200px';var b=$N('div');b.style.position='absolute';b.style.top='0px';b.style.left='0px';b.style.visibility='hidden';b.style.width='200px';b.style.height='150px';b.style.overflow='hidden';b.appendChild(a);document.body.appendChild(b);var c=a.offsetWidth;b.style.overflow='scroll';var d=a.offsetWidth;if(c==d)d=b.clientWidth;document.body.removeChild(b);DOMScroll._scrollbarSize=c-d;if(DOMScroll._scrollbarSize<5)DOMScroll._scrollbarSize=15;},getScrollbarSize:function(){if(DOMScroll._scrollbarSize===null)DOMScroll._initScrollbarSize();return DOMScroll._scrollbarSize;},scrollTo:function(d,a,c,b){if(typeof a=='undefined'||a===true)a=750;if(!(d instanceof Vector2)){var e=Vector2.getScrollPosition().x;var f=Vector2.getElementPosition($(d)).y;f=f-Math.min(0,Math.max(Vector2.getViewportDimensions().y/3,100));d=new Vector2(e,f,'document');}if(c){d.y-=Vector2.getViewportDimensions().y/2;}else if(b){d.y-=Vector2.getViewportDimensions().y;d.y+=b;}d=d.convertTo('document');if(a){Bootloader.loadComponents('animation',function(){var g=document.body;animation(g).to('scrollTop',d.y).to('scrollLeft',d.x).ease(animation.ease.end).duration(a).go();});}else if(window.scrollTo)window.scrollTo(d.x,d.y);}}; function UntrustedLink(a,d,b,c){this.dom=a;this.url=a.href;this.hash=d;this.func_get_params=c||function(){return {};};Event.listen(this.dom,'click',this.onclick.bind(this));Event.listen(this.dom,'mousedown',this.onmousedown.bind(this));Event.listen(this.dom,'mouseup',this.onmouseup.bind(this));Event.listen(this.dom,'mouseout',this.onmouseout.bind(this));this.onmousedown($E(b));}UntrustedLink.bootstrap=function(a,d,b,c){if(a.__untrusted)return;a.__untrusted=true;new UntrustedLink(a,d,b,c);};UntrustedLink.prototype.getRewrittenURI=function(){var a=copy_properties({u:this.url,h:this.hash},this.func_get_params(this.dom));return new URI('/l.php').setQueryData(a).setSubdomain('www');};UntrustedLink.prototype.onclick=function(){(function(){this.dom.href=this.url;}).bind(this).defer(100);this.dom.href=this.getRewrittenURI();};UntrustedLink.prototype.onmousedown=function(a){if(a.button==2)this.dom.href=this.getRewrittenURI();};UntrustedLink.prototype.onmouseup=function(){this.dom.href=this.getRewrittenURI();};UntrustedLink.prototype.onmouseout=function(){this.dom.href=this.url;}; function ElementController(){this.handlers=[[],[]];}copy_properties(ElementController,{ALL:1,TARGETS:2,MODIFIERS:4,BUTTONS:8});ElementController.prototype={initialize:function(){this.initialize=bagofholding;onloadRegister(this.register.bind(this));},handle:function(e,event,a){a=a||bagof(true);var b=this.handlers[0].concat(this.handlers[1]);for(var c=0,d=b.length;c=525&&event.which!=1))return false;return true;},usesWebProtocol:function(a){var b=a.match(/^(\w+):/);return !b||b[1].match(/^http/i);}});var FormController=new ElementController();copy_properties(FormController,{register:function(){Event.listen(document.documentElement,'submit',this.handler.bind(this));},handler:function(event){user_action(event.getTarget(),'form',event);return this.handle(event.getTarget(),event);}}); onloadRegister(function(){copy_properties(AsyncRequest.prototype,{setNectarModuleData:function(c){if(this.method=='POST'){var d=Env.module;if(c&&d===undefined){var b={fbpage_fan_confirm:1};var e=null;for(var a=c;a&&a!=document.body;a=a.parentNode){if(!a.id||typeof a.id!=='string')continue;if(a.id.startsWith('pagelet_')){d=a.id;break;}if(!e&&b[a.id])e=a.id;}if(d===undefined&&e)d=e;}if(d!==undefined){if(this.data.nctr===undefined)this.data.nctr={};this.data.nctr._mod=d;}}},setNectarImpressionId:function(){if(this.method=='POST'){var a=env_get('impid');if(a!==undefined){if(this.data.nctr===undefined)this.data.nctr={};this.data.nctr._impid=a;}}}});}); function htmlspecialchars(a){if(typeof(a)=='undefined'||a===null||!a.toString)return '';if(a===false){return '0';}else if(a===true)return '1';return a.toString().replace(/&/g,'&').replace(/"/g,'"').replace(/'/g,''').replace(//g,'>');}function htmlize(a){return htmlspecialchars(a).replace(/\n/g,'
              ');}function escape_js_quotes(a){if(typeof(a)=='undefined'||!a.toString)return '';return a.toString().replace(/\\/g,'\\\\').replace(/\n/g,'\\n').replace(/\r/g,'\\r').replace(/"/g,'\\x22').replace(/'/g,'\\\'').replace(//g,'\\x3e').replace(/&/g,'\\x26');} !function(){var a=function(){var b=0;return function(){if(!b){b=1;setTimeout(function(){b=0;var c=Vector2.getViewportDimensions();setCookie('wd',c.x+'x'+c.y);},100);}};}();onloadRegister(a);onloadRegister(function(){Event.listen(window,'resize',a);});onloadRegister(function(){Event.listen(window,'focus',a);});}(); var DocumentTitle=(function(g){var a=1500;var f=[];var e=0;var c=null;var d=true;function b(){if(f.length>0){if(d){DocumentTitle.set(f[e].title,true);e=++e%f.length;d=false;}else DocumentTitle.reset();}else{clearInterval(c);c=null;DocumentTitle.reset();}}return {get:function(){return g;},set:function(h,i){document.title=h;if(!i){g=h;Arbiter.inform('update_title',h);}},reset:function(){DocumentTitle.set(DocumentTitle.get(),true);d=true;},blink:function(i){var h={title:i};f.push(h);if(c===null)c=b.recur(a);return {stop:function(){var j=f.indexOf(h);if(j>=0){f.splice(j,1);if(e>j)e--;}}};}};})(document.title); function AjaxPipeRequest(b,a){this._uri=b;this._query_data=a;this._request=new AsyncRequest();this._canvas_id=null;this._allow_cross_page_transition=true;this._replayable=false;}copy_properties(AjaxPipeRequest.prototype,{setCanvasId:function(a){this._canvas_id=a;return this;},setURI:function(a){this._uri=a;return this;},setData:function(a){this._query_data=a;return this;},getData:function(a){return this._query_data;},setAllowCrossPageTransition:function(a){this._allow_cross_page_transition=a;return this;},setAppend:function(a){this._append=a;return this;},send:function(){this._request.setOption('useIframeTransport',true).setURI(this._uri).setData(copy_properties({ajaxpipe:1},this._query_data)).setPreBootloadHandler(this._preBootloadHandler.bind(this)).setInitialHandler(this._onInitialResponse.bind(this)).setHandler(this._onResponse.bind(this)).setReplayable(this._replayable).setMethod('GET').setReadOnly(true).setAllowCrossPageTransition(this._allow_cross_page_transition);AjaxPipeRequest._current_request=this._request;this._request.send();return this;},_preBootloadFirstResponse:function(a){return false;},_fireDomContentCallback:function(){this._arbiter.inform('ajaxpipe/domcontent_callback',true,Arbiter.BEHAVIOR_STATE);},_fireOnloadCallback:function(){this._arbiter.inform('ajaxpipe/onload_callback',true,Arbiter.BEHAVIOR_STATE);},_isRelevant:function(a){return this._request==AjaxPipeRequest._current_request||a.isReplay()||this._jsNonBlock;},_preBootloadHandler:function(b){var a=b.getPayload();if(!a||a.redirect||!this._isRelevant(b))return false;var c=false;if(b.is_first){!this._append&&AjaxPipeRequest.clearCanvas(this._canvas_id);this._arbiter=new Arbiter();c=this._preBootloadFirstResponse(b);this._arbiter.registerCallback(function(){this._onUIpageOnload&&this._onUIpageOnload();}.bind(this),['uipage_onload']);this.pipe=new BigPipe({arbiter:this._arbiter,rootNodeID:this._canvas_id,lid:this._request.lid,rrEnabled:b.payload.roadrunner_enabled,isAjax:true,domContentCallback:this._fireDomContentCallback.bind(this),onloadCallback:this._fireOnloadCallback.bind(this),domContentEvt:'ajaxpipe/domcontent_callback',onloadEvt:'ajaxpipe/onload_callback',isReplay:b.isReplay(),jsNonBlock:this._jsNonBlock});}return c;},_redirect:function(a){return false;},_versionCheck:function(a){return true;},_onInitialResponse:function(b){var a=b.getPayload();if(!this._isRelevant(b))return false;if(!a)return true;if(this._redirect(a)||!this._versionCheck(a))return false;return true;},_processFirstResponse:function(b){var a=b.getPayload();if(ge(this._canvas_id)&&a.canvas_class!==null)CSS.setClass(this._canvas_id,a.canvas_class);},setFirstResponseHandler:function(a){this._processFirstResponse=a;return this;},_onResponse:function(b){var a=b.payload;if(!this._isRelevant(b))return AsyncRequest.suppressOnloadToken;if(b.is_first){this._processFirstResponse(b);a.provides=a.provides||[];a.provides.push('uipage_onload');if(this._append)a.append=this._canvas_id;}if(a){if('content' in a.content&&this._canvas_id!==null&&this._canvas_id!='content'){a.content[this._canvas_id]=a.content.content;delete a.content.content;}this.pipe.onPageletArrive(a);}if(b.is_last)AjaxPipeRequest.restoreCanvas(this._canvas_id);return AsyncRequest.suppressOnloadToken;},setFinallyHandler:function(a){this._request.setFinallyHandler(a);return this;},setErrorHandler:function(a){this._request.setErrorHandler(a);return this;},abort:function(){this._request.abort();if(AjaxPipeRequest._current_request==this._request)AjaxPipeRequest._current_request=null;this._request=null;return this;},setReplayable:function(a){this._replayable=a;return this;},setJSNonBlock:function(a){this._jsNonBlock=a;return this;},getAsyncRequest:function(){return this._request;}});copy_properties(AjaxPipeRequest,{clearCanvas:function(a){var b=ge(a);if(b){b.style.minHeight='600px';DOM.empty(b);}},restoreCanvas:function(a){var b=ge(a);if(b)b.style.minHeight='100px';},getCurrentRequest:function(){return AjaxPipeRequest._current_request;},setCurrentRequest:function(a){AjaxPipeRequest._current_request=a;},isActiveOnPage:function(b){if(!env_get('ajaxpipe_enabled'))return false;var a=new RegExp(env_get('ajaxpipe_inactive_page_regex')||null);return !a.test(URI(b).getPath());}}); var HistoryManager=window.HistoryManager||{_IFRAME_BASE_URI:'http://static.ak.facebook.com/common/history_manager.php',history:null,current:0,fragment:null,_setIframeSrcFragment:function(b){b=b.toString();var a=HistoryManager.history.length-1;HistoryManager.iframe.src=HistoryManager._IFRAME_BASE_URI+'?|index='+a+'#'+encodeURIComponent(b);return HistoryManager;},getIframeSrcFragment:function(){return decodeURIComponent(URI(HistoryManager.iframe.contentWindow.document.location.href).getFragment());},nextframe:function(a,b){if(b){HistoryManager._setIframeSrcFragment(a);return;}if(a!==undefined){HistoryManager.iframeQueue.push(a);}else{HistoryManager.iframeQueue.splice(0,1);HistoryManager.iframeTimeout=null;HistoryManager.checkURI();}if(HistoryManager.iframeQueue.length&&!HistoryManager.iframeTimeout){var c=HistoryManager.iframeQueue[0];HistoryManager.iframeTimeout=setTimeout(function(){HistoryManager._setIframeSrcFragment(c);},100,false);}},isInitialized:function(){return !!HistoryManager._initialized;},init:function(){if(!env_get('ALLOW_TRANSITION_IN_IFRAME')&&window!=window.top)return;if(HistoryManager._initialized)return HistoryManager;var b=URI();var a=b.getFragment()||'';if(a.charAt(0)==='!'){a=a.substr(1);b.setFragment(a);}if(URI.getRequestURI(false).getProtocol().toLowerCase()=='https')HistoryManager._IFRAME_BASE_URI='https://s-static.ak.facebook.com/common/history_manager.php';copy_properties(HistoryManager,{_initialized:true,fragment:a,orig_fragment:a,history:[b],callbacks:[],lastChanged:new Date().getTime(),canonical:URI('#'),fragmentTimeout:null,user:0,iframeTimeout:null,iframeQueue:[],enabled:true,debug:bagofholding});if(window.history&&history.pushState){this.lastURI=document.URL;window.history.replaceState(this.lastURI,null);Event.listen(window,'popstate',function(c){if(c&&c.state&&HistoryManager.lastURI!=c.state){HistoryManager.lastURI=c.state;HistoryManager.lastChanged=(+new Date());HistoryManager.notify(URI(c.state).getUnqualifiedURI().toString());}}.bind(HistoryManager));if(ua.chrome()>5||ua.safari()>533)setInterval(HistoryManager.checkURI,42,false);if(ua.safari()<534)HistoryManager._updateRefererURI(this.lastURI);return HistoryManager;}HistoryManager._updateRefererURI(URI.getRequestURI(false));if(ua.safari()<500||ua.firefox()<2){HistoryManager.enabled=false;return HistoryManager;}if(ua.ie()<8){HistoryManager.iframe=document.createElement('iframe');copy_properties(HistoryManager.iframe.style,{width:'0',height:'0',frameborder:'0',left:'0',top:'0',position:'absolute'});onloadRegister(function(){HistoryManager._setIframeSrcFragment(a);document.body.insertBefore(HistoryManager.iframe,document.body.firstChild);});}else if('onhashchange' in window){Event.listen(window,'hashchange',function(){HistoryManager.checkURI.bind(HistoryManager).defer();});}else setInterval(HistoryManager.checkURI,42,false);return HistoryManager;},registerURIHandler:function(a){HistoryManager.callbacks.push(a);return HistoryManager;},setCanonicalLocation:function(a){HistoryManager.canonical=URI(a);return HistoryManager;},notify:function(c){if(c==HistoryManager.orig_fragment)c=HistoryManager.canonical.getFragment();for(var b=0;b=0;--b)if(HistoryManager.history[b].getFragment().replace(/%23/g,'#')==a)break;++HistoryManager.user;if(b>=0){HistoryManager.go(b-HistoryManager.current);}else HistoryManager.go('#'+a);--HistoryManager.user;}delete a;},_updateRefererURI:function(e){e=e.toString();if(e.charAt(0)!='/'&&e.indexOf('//')==-1)return;var d=new URI(window.location);if(d.isFacebookURI()){var a=d.getPath()+window.location.search;}else var a='';var c=URI(e).getQualifiedURI().setFragment(a).toString();var b=2048;if(c.length>b)c=c.substring(0,b)+'...';setCookie('x-referer',c);},go:function(c,e,f){if(window.history&&history.pushState){e||typeof(c)=='number';var h=URI(c).removeQueryData('ref').toString();HistoryManager.lastChanged=(+new Date());this.lastURI=h;if(f){window.history.replaceState(c,null,h);}else window.history.pushState(c,null,h);if(ua.safari()<534)HistoryManager._updateRefererURI(c);return false;}HistoryManager.debug('go: '+c);if(e===undefined)e=true;if(!HistoryManager.enabled)if(!e)return false;if(typeof(c)=='number'){if(!c)return false;var b=c+HistoryManager.current;var d=Math.max(0,Math.min(HistoryManager.history.length-1,b));HistoryManager.current=d;b=HistoryManager.history[d].getFragment()||HistoryManager.orig_fragment;b=URI(b).removeQueryData('ref').getUnqualifiedURI().toString();HistoryManager.fragment=b;HistoryManager.lastChanged=new Date().getTime();if(ua.ie()<8){if(HistoryManager.fragmentTimeout)clearTimeout(HistoryManager.fragmentTimeout);HistoryManager._temporary_fragment=b;HistoryManager.fragmentTimeout=setTimeout(function(){window.location.hash='#!'+b;delete HistoryManager._temporary_fragment;},750,false);if(!HistoryManager.user)HistoryManager.nextframe(b,f);}else if(!HistoryManager.user)go_or_replace(window.location,window.location.href.split('#')[0]+'#!'+b,f);if(e)HistoryManager.notify(b);HistoryManager._updateRefererURI(b);return false;}c=URI(c);if(c.getDomain()==URI().getDomain())c=URI('#'+c.getUnqualifiedURI());var a=HistoryManager.history[HistoryManager.current].getFragment();var g=c.getFragment();if(g==a||(a==HistoryManager.orig_fragment&&g==HistoryManager.canonical.getFragment())){if(e)HistoryManager.notify(g);HistoryManager._updateRefererURI(g);return false;}if(f)HistoryManager.current--;var i=(HistoryManager.history.length-HistoryManager.current)-1;HistoryManager.history.splice(HistoryManager.current+1,i);HistoryManager.history.push(URI(c));return HistoryManager.go(1,e,f);},getCurrentFragment:function(){var a=HistoryManager._temporary_fragment!==undefined?HistoryManager._temporary_fragment:URI.getRequestURI(false).getFragment();return a==HistoryManager.orig_fragment?HistoryManager.canonical.getFragment():a;}};var PageTransitions=window.PageTransitions||{_transition_handlers:[],_scroll_positions:{},_scroll_locked:false,isInitialized:function(){return !!PageTransitions._initialized;},_init:function(){if(!env_get('ALLOW_TRANSITION_IN_IFRAME')&&window!=window.top)return;if(PageTransitions._initialized)return PageTransitions;PageTransitions._initialized=true;var d=URI.getRequestURI(false);var a=d.getUnqualifiedURI();var e=URI(a).setFragment(null);var c=a.getFragment();if(c.charAt(0)==='!'&&e.toString()===c.substr(1))a=e;copy_properties(PageTransitions,{_current_uri:a,_most_recent_uri:a,_next_uri:a});var b;if(d.getFragment().startsWith('/')){b=d.getFragment();}else b=a;HistoryManager.init().setCanonicalLocation('#'+b).registerURIHandler(PageTransitions._historyManagerHandler);LinkController.registerFallbackHandler(PageTransitions._rewriteHref,LinkController.TARGETS|LinkController.MODIFIERS);LinkController.registerFallbackHandler(PageTransitions._onlinkclick);FormController.registerFallbackHandler(PageTransitions._onformsubmit);Event.listen(window,'scroll',function(){if(!PageTransitions._scroll_locked)PageTransitions._scroll_positions[PageTransitions._current_uri]=Vector2.getScrollPosition();});return PageTransitions;},registerHandler:function(b,a){PageTransitions._init();a=a||5;if(!PageTransitions._transition_handlers[a])PageTransitions._transition_handlers[a]=[];PageTransitions._transition_handlers[a].push(b);},getCurrentURI:function(a){if(!PageTransitions._current_uri&&!a)return new URI(PageTransitions._most_recent_uri);return new URI(PageTransitions._current_uri);},getMostRecentURI:function(){return new URI(PageTransitions._most_recent_uri);},getNextURI:function(){return new URI(PageTransitions._next_uri);},_rewriteHref:function(a){var c=a.getAttribute('href');var b=_computeRelativeURI(PageTransitions._most_recent_uri.getQualifiedURI(),c).toString();if(c!=b)a.setAttribute('href',b);},_onlinkclick:function(a){_BusyUIManager.lookBusy(a);PageTransitions.go(a.getAttribute('href'));return false;},_onformsubmit:function(a){var c=new URI(Form.getAttribute(a,'action')||''),b=_computeRelativeURI(PageTransitions._most_recent_uri,c);a.setAttribute('action',b.toString());if((Form.getAttribute(a,'method')||'GET').toUpperCase()==='GET'){PageTransitions.go(b.addQueryData(Form.serialize(a)));return false;}},go:function(d,b){var a=new URI(d).removeQueryData('quickling').getQualifiedURI();var c=a.getUnqualifiedURI();delete PageTransitions._scroll_positions[c];!b&&user_action({href:a.toString()},'uri',null,'INDIRECT');_BusyUIManager.lookBusy();PageTransitions._loadPage(a,function(e){if(e){HistoryManager.go(a.toString(),false,b);}else go_or_replace(window.location,a,b);});},_historyManagerHandler:function(a){if(a.charAt(0)!='/')return false;user_action({href:a},'h',null);PageTransitions._loadPage(new URI(a),function(b){if(!b)go_or_replace(window.location,a,true);});return true;},_loadPage:function(e,c){if(URI(e).getFragment()&&are_equal(URI(e).setFragment(null).getQualifiedURI(),URI(PageTransitions._current_uri).setFragment(null).getQualifiedURI())){PageTransitions._current_uri=PageTransitions._most_recent_uri=e;PageTransitions.restoreScrollPosition();_BusyUIManager.stopLookingBusy();return;}var d=PageTransitions._scroll_positions[PageTransitions._current_uri];PageTransitions._current_uri=null;PageTransitions._next_uri=e;if(d)DOMScroll.scrollTo(d,false);var b=function(){PageTransitions._scroll_locked=true;var f=PageTransitions._handleTransition(e);c&&c(f);};var a=_runHooks('onbeforeleavehooks');if(a){_BusyUIManager.stopLookingBusy();PageTransitions._warnBeforeLeaving(a,b);}else b();},_handleTransition:function(f){window.onbeforeleavehooks=undefined;_BusyUIManager.lookBusy();if(!f.isSameOrigin())return false;var e=window.AsyncRequest&&AsyncRequest.getLastId();Arbiter.inform("pre_page_transition",{from:PageTransitions.getMostRecentURI(),to:f});for(var b=PageTransitions._transition_handlers.length-1;b>=0;--b){var a=PageTransitions._transition_handlers[b];if(!a)continue;for(var c=a.length-1;c>=0;--c)if(a[c](f)===true){var d={sender:this,uri:f,id:e};Arbiter.inform("page_transition",d);return true;}else a.splice(c,1);}return false;},unifyURI:function(){PageTransitions._current_uri=PageTransitions._most_recent_uri=PageTransitions._next_uri;},transitionComplete:function(a){PageTransitions._executeCompletionCallback();_BusyUIManager.stopLookingBusy();PageTransitions.unifyURI();if(!a)PageTransitions.restoreScrollPosition();try{if(document.activeElement&&document.activeElement.nodeName==='A')document.activeElement.blur();}catch(b){}},_executeCompletionCallback:function(){if(PageTransitions._completionCallback)PageTransitions._completionCallback();PageTransitions._completionCallback=null;},setCompletionCallback:function(a){PageTransitions._completionCallback=a;},_warnBeforeLeaving:function(b,a){new Dialog().setTitle(_tx("Are you sure you want to leave this page?")).setBody(htmlize(b)).setButtons([{name:'leave_page',label:_tx("Leave this Page"),handler:a},{name:'continue_editing',label:_tx("Stay on this Page"),className:'inputaux'}]).setModal().show();},restoreScrollPosition:function(){PageTransitions._scroll_locked=false;var c=PageTransitions._current_uri;var e=PageTransitions._scroll_positions[c];if(e){DOMScroll.scrollTo(e,false);return;}function d(f){return (f||null)&&(DOM.scry(document.body,"a[name='"+escape_js_quotes(f)+"']")[0]||ge(f));}var a=d(URI(c).getFragment());if(a){var b=Vector2.getElementPosition(a);b.x=0;DOMScroll.scrollTo(b);}}};function _computeRelativeURI(d,b){var e=new URI(),c=b;d=new URI(d);b=new URI(b);if(b.getDomain()&&!b.isFacebookURI())return c;var f=d;var a=['Protocol','Domain','Port','Path','QueryData','Fragment'];a.forEach(function(h){var g=h=='Path'&&f===d;if(g)e.setPath(_computeRelativePath(d.getPath(),b.getPath()));if(!is_empty(b['get'+h]()))f=b;if(!g)e['set'+h](f['get'+h]());});return e;}function _computeRelativePath(b,a){if(!a)return b;if(a.charAt(0)=='/')return a;var c=b.split('/').slice(0,-1);c[0]!=='';a.split('/').forEach(function(d){if(!(d=='.'))if(d=='..'){if(c.length>1)c=c.slice(0,-1);}else c.push(d);});return c.join('/');}function go_or_replace(a,d,c){var e=new URI(d);if(a.pathname=='/'&&e.getPath()!='/'&&e.isQuicklingEnabled()){var b=a.search?{}:{q:''};e=new URI().setPath('/').setQueryData(b).setFragment(e.getUnqualifiedURI()).toString();d=e.toString();}if(c&&!(ua.ie()<8)){a.replace(d);}else if(a.href==d){a.reload();}else a.href=d;}var _BusyUIManager=window._BusyUIManager||{_looking_busy:false,_original_cursors:[],lookBusy:function(a){if(a)_BusyUIManager._giveProgressCursor(a);if(_BusyUIManager._looking_busy)return;_BusyUIManager._looking_busy=true;_BusyUIManager._giveProgressCursor(document.body);},stopLookingBusy:function(){if(!_BusyUIManager._looking_busy)return;_BusyUIManager._looking_busy=false;while(_BusyUIManager._original_cursors.length){var c=_BusyUIManager._original_cursors.pop();var b=c[0];var a=c[1];if(b.style)b.style.cursor=a||'';}},_giveProgressCursor:function(a){if(!ua.safari()){_BusyUIManager._original_cursors.push([a,a.style.cursor]);a.style.cursor='progress';}}}; onloadRegister(function(){Event.listen(document.documentElement,'submit',function(b){var a=b.getTarget().getElementsByTagName('*');for(var c=0;c(12*3600)||(new Date(c*1000).getDay()!=new Date(d*1000).getDay()))return e;var f=c-d,b=Math.floor(f/60),a=Math.floor(b/60);if(b<1){e.text=_tx("a few seconds ago");e.next=60-f%60;return e;}if(a<1){if(b==1){e.text=_tx("about a minute ago");}else e.text=_tx("{number} minutes ago",{number:b});e.next=60-f%60;return e;}if(a!=11)e.next=3600-f%3600;if(a==1){e.text=_tx("about an hour ago");return e;}e.text=_tx("{number} hours ago",{number:a});return e;}}; if(!this.JSON)this.JSON=function(){function f(n){return n<10?'0'+n:n;}Date.prototype.toJSON=function(){return this.getUTCFullYear()+'-'+f(this.getUTCMonth()+1)+'-'+f(this.getUTCDate())+'T'+f(this.getUTCHours())+':'+f(this.getUTCMinutes())+':'+f(this.getUTCSeconds())+'Z';};var m={'\b':'\\b','\t':'\\t','\n':'\\n','\f':'\\f','\r':'\\r','"':'\\"','\\':'\\\\'};function stringify(value,whitelist){var a,i,k,l,v;switch(typeof value){case 'string':return (new RegExp('[\x00-\x1f\\\\"]')).test(value)?'"'+value.replace(/[\x00-\x1f\\"]/g,function(a){var c=m[a];if(c)return c;c=a.charCodeAt();return '\\u00'+Math.floor(c/16).toString(16)+(c%16).toString(16);})+'"':'"'+value+'"';case 'number':return isFinite(value)?String(value):'null';case 'boolean':return String(value);case 'null':return 'null';case 'object':if(DOM.isNode(value))return null;if(!value)return 'null';if(typeof value.toJSON==='function')return stringify(value.toJSON());a=[];if(typeof value.length==='number'&&!(propertyIsEnumerable(value,'length'))){l=value.length;for(i=0;i=2||typeof b=='string'){this._src=b;this._data=a||{};}else if(arguments.length==1)this._data=b;this.refresh();return this;},setAllowCrossPageTransition:function(a){this._allow_cross_page_transition=a;return this;},setBundleOption:function(a){this._is_bundle=a;return this;},refresh:function(b){var a=function(d){this._request=null;if(b&&this._id)this._element=ge(this._id);var c=HTML(d.getPayload());if(this._append){DOM.appendContent(this._element,c);}else DOM.setContent(this._element,c);this._handler();}.bind(this);if(this._use_ajaxpipe){this._request=new AjaxPipeRequest();this._request.setCanvasId(this._id).setAppend(this._append).setJSNonBlock(this._jsNonblock);}else this._request=new AsyncRequest().setMethod('GET').setReadOnly(true).setOption('bundle',this._is_bundle).setHandler(a);this._request.setURI(this._src).setReplayable(this._replayable).setAllowCrossPageTransition(this._allow_cross_page_transition).setData({data:JSON.stringify(merge(this._context_data,this._data))}).send();return this;},cancel:function(){if(this._request)this._request.abort();},setUseAjaxPipe:function(a){this._use_ajaxpipe=!!a;return this;},setReplayable:function(a){this._replayable=!!a;return this;},setAppend:function(a){this._append=!!a;return this;},setJSNonBlock:function(a){this._jsNonblock=!!a;return this;}}); var Button=(function(){var a='uiButtonDisabled';var c='button:blocker';var b='href';function d(i,h){var g=DataStore.get(i,c);if(h){if(g){g.remove();DataStore.remove(i,c);}}else if(!g)DataStore.set(i,c,Event.listen(i,'click',bagof(false),Event.Priority.URGENT));}function e(g){var h=Parent.byClass(g,'uiButton');if(!h)throw new Error('invalid use case');return h;}function f(g){return DOM.isNode(g,'a');}return {getInputElement:function(g){g=e(g);if(f(g))throw new Error('invalid use case');return DOM.find(g,'input');},isEnabled:function(g){return !CSS.hasClass(e(g),a);},setEnabled:function(j,g){j=e(j);CSS.conditionClass(j,a,!g);if(f(j)){var h=j.href;var k=DataStore.get(j,b,'#');if(g){if(!h)j.href=k;}else{if(h&&h!==k)DataStore.set(j,b,h);j.removeAttribute('href');}d(j,g);}else{var i=Button.getInputElement(j);i.disabled=!g;d(i,g);}},setLabel:function(h,g){h=e(h);if(f(h)){var i=DOM.find(h,'span.uiButtonText');DOM.setContent(i,g);}else Button.getInputElement(h).value=g;CSS.conditionClass(h,'uiButtonNoText',!g);},setIcon:function(h,g){if(!DOM.isNode(g))return;CSS.addClass(g,'customimg');h=e(h);var i=DOM.scry(h,'.img')[0];if(i){DOM.replace(i,g);}else DOM.prependContent(h,g);}};})();]]>
              false
              6378289087134216192 5243648 Cookie scoped to parent domain http://tap.rubiconproject.com Information Certain
            • cd=false; Domain=.rubiconproject.com; Expires=Mon, 16-Apr-2012 23:37:34 GMT; Path=/
            • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
              false
              2119229317540796416 5244928 Password field with autocomplete enabled http://www.linxdown.com Low Certain
              The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
              autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
            • http://www.linxdown.com/71e/lc/lessons+of+passion+dirty+pictures+walkthrough
            • The form contains the following password field with autocomplete enabled:
              • login_password
              ]]>
              lessons of passion dirty pictures walkthrough Rapidshare Hotfile Megaupload Mediafire Download Links LinxDown.Com
                                
              Filesonic Fileserve Torrent Usenet Downloads

              Powered by vBulletin® Version 3.8.4
              Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.
              ]]>
              false
              3782620921886700544 2097920 Cross-site scripting (reflected) http://www.foxnews.mobi Low Certain
              The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

              Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

              The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
            • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
            • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
            • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
              e0f16"><script>alert(1)</script>01b5f30ac2b was submitted in the Referer HTTP header. This input was echoed unmodified in the application's response.

              This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

              Because the user data that is copied into the response is submitted within a request header, the application's behaviour is not trivial to exploit in an attack against another user. In the past, methods have existed of using client-side technologies such as Flash to cause another user to make a request containing an arbitrary HTTP header. If you can use such a technique, you can probably leverage it to exploit the XSS flaw. This limitation partially mitigates the impact of the vulnerability.]]>
              01b5f30ac2b ]]> FOX News - Home
              April 17, 2011 4:29 PM EDT
               
               
               
              DOW up 56.68 | NAS up 4.43 | S&P up 5.16
              (Data as of 2011-04-15 4:02 EDT)
               
               
               
              01b5f30ac2b&c1=Home&v1=D=c1&c2=Home&v2=D=c2&c41=Sun&v41=D=c41&c42=1615&v42=D=c42&vid=9c70069f-13c4-45c3-9b51-fc8c596273d6&server=D=User-Agent&ev=event1" alt="" width="5" height="5"/> ]]>
              false
              3118328403658375168 5243904 Cross-domain Referer leakage http://googleads.g.doubleclick.net Information Certain
              If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

              You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

              Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

              Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
            • http://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-4063878933780912&output=html&h=90&slotname=2510184792&w=728&lmt=1303106046&flash=10.2.154&url=file%3A%2F%2F%2FC%3A%2Fcdn%2Fexamples%2Fhtml%2Fxss-dork-cross-site-scripting-adservingcpxinteractivecom.html&dt=1303088046327&bpp=4&shv=r20110406&jsv=r20110415&correlator=1303088046440&frm=0&adk=1607234649&ga_vid=38416128.1303088046&ga_sid=1303088046&ga_hid=2039437449&ga_fc=0&u_tz=-300&u_his=1&u_java=1&u_h=1200&u_w=1920&u_ah=1156&u_aw=1920&u_cd=16&u_nplug=9&u_nmime=44&biw=1063&bih=1016&fu=0&ifi=1&dtd=170&xpc=LrSY8ryD24&p=file%3A//
            • The response contains the following links to other domains:
              • http://pagead2.googlesyndication.com/pagead/abglogo/abg-en-100c-ffffff.png
              • http://pagead2.googlesyndication.com/pagead/images/i.png
              • http://pagead2.googlesyndication.com/pagead/js/abg.js
              • http://pagead2.googlesyndication.com/pagead/js/graphics.js
              • http://www.google.com/url?ct=abg&q=https://www.google.com/adsense/support/bin/request.py%3Fcontact%3Dabg_afc%26url%3Dfile:///C:/cdn/examples/html/xss-dork-cross-site-scripting-adservingcpxinteractivecom.html%26hl%3Den%26client%3Dca-pub-4063878933780912%26adU%3Dwww.qualys.com/dummies%26adT%3DImageAd%26gl%3DUS&usg=AFQjCNEZlaooKBHw5wb4vRcKyHRnnstAJA
              ]]>
              (i)
              Ads by Google
              ]]>
              false
              6566604088313726976 5243648 Cookie scoped to parent domain http://img141.imageshack.us Information Certain
            • is_uuid=ad1a64962a724101932a2af3addf287e; expires=Thu, 31-Dec-37 23:55:55 GMT; domain=.imageshack.us; path=/
            • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
              ?W?&q?J? ???!????p??&??p??r?/????????? ???4?#=w?H???C??*5??1K???r??????5???_??js?T0? `???k?A*e????"2????U>K ?y???!??o?~??si???r??KP??{????????m????$k?s??n0\M??-|??=??u%??%)?ol\???!O??ZA;?%[? 2?? +A??E? ?~?/?c@/??Q???Tn??????4?=1?#5G[N)ZV??=?v?#?Q????4%?"???A???!t?.=E??%=R???6DUG?KA???H?6??"N????_??#??_???,??xyR?6???)?M?h?P'??lGU7?0?rD|?????iU?I?lw??'r???$DV??D??r?????????w8??!BqR_D?f??2E???q?{b??????S?[%Jp2?N????d?????u??Q?<_h???Q*?cn????p?d:??aW?lE???CL?tH?~7,?]q?e*??>?!.?j????)?Fu??/????8-Y{ ???g%ip?mY ???M?p????j??iG??G ??l ?]? ??R??E??)(?JI????K??Y????q??T???$V#???q??{?,6??2O???>y??F?)L?r? ??????:???? 4@???V?q?$?r ??#?\???P?v ???Z?Hj6`?PUL????8??=??p?#p??Nb?Q???diKK??$???n???4?!A?.J??M??????}?Q??????/;3:K?B?R?[k}??k6}??3?????q???Lf?????r??P???)?b1??????J?O??Y=???E???r??n??=5C??|Ff??y??M?`-?C?TM2*$w?r?L%!????????O???)?ZQ??fg?? ??,? ??u?`??z???b?$?_? ???c??????V?z/9!?)$??bk>eJi?}B#?)?kl???????&r?Sm????)W5H\b???OL?G?d5hF?)???\??5e? ??*JYsO0????????!?J?C ?? e6???[o?}g??????*eJ)???????Nw??$?DJ?C?P(YM?#????2?8???? ????vcQ????!?l?S~?????7???LkRZqKN???h?r?!?UU?waED???a???z??4?Pp?]qKJR?,?$??6u??i??????Dzx??-Ot\sR?!?O8?jj??????K?Pie^?0??<:Il1?9:@ ?K???k?p?kDL?M:5k%l?D?a??i???/??T??V??J????a??=i6??????%7E?? ?Lv????? ?)??????????Lf???? ???N%??A\D?o0?Z-?%m???`o???L?tU??\9M?fK?c???!??R?m???pC?m"?5???????-y?? ??N??????5??l???*?A?????[^??;x?a?????2?;??o?i??????mcr7??.^t?$\+??? ?,+%?4??7????`/????A?C`'??{?????l?AB=d??????H????]??hBZI????'\dB0i?LpR????D\????E?8??$??iM?b???8?VKSF?1????Q?k~?,V????!????)EJ ?????&?(?A1???#bs&???0v?K???S?[???) ??{ ?Ou[?????Sj?n0????????I}IYB?G?*?V???r??;Mk????*??r?F??|??e????[???q?$Ta???l4$??u?? ?j?9??s.?q"3?8Ja9? ]??BH_O6??r'o?i_+/?)?HB?Fy??J?C????1????z?m?1???[x!*+t?Jw#V?6???????x???[qZt?.???.>????????+0C,s????W??t??F??HQ^?i_Q(Q??sT?2P?* ?w???A????KJ?U????p??O??/?y??[??v]*???) ?U?K:T??*?>?9O??`?l?X???'????? ??=z?"?9WB4V???T??n?eK????!?? ?Q??a??|h?N?X?'3 [?R?N?@$kHM?&?_??????? ?A?SQ'C??????]B??r?A0?3V?O-?:BV?p???M?U????|?B~?d? ?+=C?????5S??%A???H?Q>E??? ?????C?????l???C???3?WeB??r??E?pH?JI??-???`D?2??u?_????dTw???L???^?E???I?l?)?2 Z????? ? X????9??9jU9??B`?T YS??@??>??/7 ??R????";Q??h ?????a0fu??3&?K}?d???y7???0KR?C?6?,??&??J?c?d?!???}(?E???9r%:???&??9???????p????Dh??U?1-CHA??o? TxM???qZ???IB??}W?t???a$????x?????L?!?uRR????[?>b1?yB#??:??ZJO??[??cs?s6?ibm5m?/GP????????????d"-?R"?Bw&????|)???aq?F?w2??#?d?J?*?^?Kd[r???nSi2?SL4?,?? ????H?D?s.4#> ??6????? iD??L????[???????'?g`?? U :Az;h? ]%6???:f???o?2>6???????a+?I??uz???A??pb ?k??????p???7??.u?????Re???# ??]%iPKIU????q??S?q??@??.4??qH?s?^/?4?t? ???{???-??9Qb??#K@^?O{`???2??w-??:?CoK?f? h?A??0??s?mv?Qa'= Il ???_5??q?S?i-7p[n?????$????????????|t ???p ???e??Q????s??1?5(??/?o?$6?0?"S)Lf?V??e[??jB,??~ %ha ?]?JM?w?GM?*???y&Rf??)???$r?C??]w??????No%p???????:AP?+??9?????\W??i???(?sB}7?/??OT??r??-:?E?Kb????????L??7?)O?VHV_?Z?6??u?M9???????j??!??D???B?e???v7?W+??8G????!?&1??T?q?p]?4????? \??{???%q??l??A?&I??q%?8???[)????g???q??[????uP#????B?-?q?c?W? ?k[rp??w??????{iBYw@P_T??{???9??d???Qg??G?p?GR??$??Vv?>;???q???*??UX????n??????M???[ABbH??)-3??W~)`i_4???%=?U"??2'ip??4.!F]*s-?}??GX???7?8??? ?V???(,?4?n?a??[?t?O3?????????0?r???k?v7? ?????[b???@)?e?????PZ?w?*?????????A????Le??!?%r ?[??P??Y???????aiZ???{b????k???e? [z?$????+Iz?DR?????? ???F??????:?????????xM?????L?S? ?8?e??n@??????????U??V??Ka/?????pU?:1???????H#` ?>qx???D????????? ??????D,?E?"???? v??d?-???7????Y??4?s??2???t?k?F??Hz ?UU??????????'`|?A??be???5??x?&2??*A?????;m?????P|?#??|??z???p#@ G,???n??ro?;??????(z??\?{c?x?Q?????i5*??$?u??4? o????i?? ????~???db?(s&d?????????i????????*??V????U/?#/ ??A?n ?????i#????a?&??????\? ?!$?Co?????s\?????H??!O5&??u??I;??3?8??R???5?8?Q?.??[eOBdi???xI?S~?????D??(?8?2f4??Z??? ?c????C?Pc?r8????j?>????b??G????>Yn+??H`'??!{)'?????8o?R?e????O???Jt:??R?Bw?v?Lsz??~??q??????~W?l?u$?????-??\s???w?>?????????? 4.??Yd???1|?j+ ?? k?????EB?E?m???s?j??X??f???? oS??67{??Y2??RP~2M????a???????\Be??s?5~U??????,??M%??H????68?WH ????????a???F?:?M??[??1+R??; %?2;??Ud??\B?w?Q??c/???|?????a????ma~?????j????j???DO?_???cS?lJB??(?h??Kf&h???)ZJ????*:q~,OS??P ?,??z?????%4???wQP+Z????U?\???Y?Q?1+???Ul??x??T??8?5!?@?{?~???&d*? ??S?\?N?\g??X?? ?bO 3va??u??????????&?)??q?Y??H?? V?{g?v?6?I6????(j_[???????P??%I?T?K?m.???k???@?????F??#?#H?)d?????o???u?????0?SEJRU?????:??? l_???kiO??6c???B?#?O?K?0??[??}???;@b[h??%???N?A {?xpr?*+]??]?????r??0?UN?MY??)??BM???????V?}+RR?j?E?s???z??????H2Y??`,? fw?"?%??BN???s?Q??a?????U ??l???M*???/? ??y-??%.???t?HK\D'I*YE??zy?fY?-o????+M?:h???? ??P]3W???Al$?LvR;?b????{????RH????hak??ej?P???F6Z}???mw@7;w?#????9j??? ?Ju??'??Wp?bm2*eV??????m??8???+;????v#P L???s:?????<3r?-??????jQA}???????x?Q??r????7?!W??o??.q"g???@??6?x?t??m????R??)??????H???o?? ??XR?????????f?ur !:y*?H???l=}??5?m?G?u?????G{???}G?-[D?\?????{_?jc?yfJ?[?t/`6w??~???Z???W?I???jC??U???r?I???\}?????????z?suM?%?Ei??l~???M?4bS???@ p??rq??M?32?N?!?Cn8BW???????1>???T???O?9???f??RA67??*I?%!??C0BRi@(7???0E??1?3EJ ??",h?O?l?????z?:U?no?tl? ????T?ndb N?????c????#?T1{U????c?3?*??_?.EBd8??6?#??n?c?>?V???.??h/??V&N{r Nr?N]SFd?? 4?j?3SK^[?ji?_d X ?? \D{?k5z? \J???cJ?'?nz??`o???H???Oq??\? ?'{????1?i?????r?? j???4???J?.?fQp??\?????`?U?0?VY?s???}??C?h?M??J????8??"t-%??VO??;%$?6?????f^B?R???!d lR1Y#?|/a?J^y--{???*$`wc???O????-?sc?e?$!2???}??P??W|u?P? P???`???G?==??4???\?????0?.?V??z?'??R????? ?N?J??j??r@?o???Jq?{m???DV?V"*?*???jL?V?V?????O?????J?N[&9e??S?G??w7??????????0? ?ti-??'P=oa?"W$???2??K?d==???o???c>??#??o^xb??8??????R????????a??(:w ????!)#????x?????&????mPz?:??c?y?S??M?3k??????at?'???$j????P+?D????*4?*K?;?]???$?^?E???.k??W?&??z???? ????r?/E???~d????"?'??"?5???M???b??C??j^?R K?oJ?8I?/a?;?u???2??e??R??!?V????a??9}R?L?R?u?C?[@X?q?????k??a ?H???a???S3??\???)?q???@???7?~?? ???T????Q)Y&????e????7"*PI't&??u1[???l???b?ac?,}?&?W1]y??.-v??#???*"LzsQ???Xyz?m???21??SAD???????uQ??????\Kk?? ?zlU{1?? e?i?4)!JK??~Uv??qr?T-???J???????B?????????????+. ??%-????Y?J?'O??P?U??u"T??e?????)W?`?<:??????$A}Q`?Hy g????p???)??^C???*#)?z\'|-?j??K ???N??????b?????9??G?? ?[?? ? Il? {?l??nZCm? YZ??RO??X????G!HN????*?~????l???u.??????o=I??'?NP?B??Hw??J????a???e?|?P??Pi??)???7????? ???U|??B???z+??8?>??c>S???????"??u>??????????W?-?NG?%??u)K??t^?????(2?m????d???)7??S??)NEv3???BH??x7?6???$H}??:4v#W?6?c????2?0\??bA??Z??J??????z??ya?9????????)??-???]J>A??dj??????~KM?IMG!?#D???*Y? d??e-cg?<@???%O??Y?V).L1I???*F?d2??r??W??????????6t??y???H%K?}V=????L!?'D?a?Y /????"?!???o??M?+.?d???|Z?Z???:y????6??h????'"??LV??.???% ?w?/_?&q0????/6?+l??7???*9N??Ul???v^]?z$????9@?m{??vQ?6??x'lq????R????'?1d}????"&han?????7pS??}MF?)?$%*[gt??????t??????B?z??????L*?Z#?L?????s??*;?Z?p?I=?????,?1???T??[???[M???t;??????Q????y~?????(???????>?S???\B`?? m? ???u??k?8? ?/?m??|????;???/???????n9 p?@??n??a{??8???g:?i)????$2?YS???[#ae??8Xu? TTf?o4???-im????m?E???^?:K?G?R?????}pr??>??U'S??(??j3?JT???I??m?|?????3Vh?l0??B??? %Jl???:???Rjgi??z%?{'???I?Q???FR??S?????:zZ??.??^m???m ?%?-???O}??o?????.??al??i"?F6?+/???d?5???|#?'R?l???c^k?!???)????$?!??????u\?[?Y?2??)????????oXM?C??U;? ??E+?uyBR?1IW[N8.?P??ISq?????J?TAl?P?\c?~?Y??VL4H?B?T??U}-??$x?8??bJj ?*?X??#??JO?7??F??m?3pj)S6??? ??$]$????&8??Q??M????l?B ?PQm??;EN,p??a ??z?}?g?l?"?M?-q???)??B_??B]R???m??0???\s??T?y?)&?N??`????sm ?z??ZH?}???X??g????l?q????\?V?B})????R?Ha"O?v??????0K4%?T????d*?R???@D?@i?KP?Z????}?q?[GFJ3??? )??$??M?????[????,r?<?? ??X??F)?pb?_????$??????@ w????>??I?F?#'P?H?!?;6?q? Y?????&? % ????O+5t??q?#?JXG&?i?V?"?V?d??8???t??|F5d??????????t????$Ev@K?r,]lQ????ZyR]qM?H'q??p????%???R??QkRT??P?????o??}??d???)???Kl?????2b9t?n? hB????:}q?s3?{?P?9????.? !!??s(O??!???e>?1?4I3?.?????'???E????8??&TY?%?_f?,'e????,l@?w???i?5???vC0?SeczI???66=q?| ?????#?jJ??vL8??N???(Y???2???,k?V?O|}Z??L?;"d&?OvRQV?????D??f5V55?1?*?d?`m???????.c???? ??c???ZP?7&??{a?V']E??f\t??D??D????mWBd9?6?`?y?&K?? F0? O?B?b???Xt?9?????:CQff? 2?JUzw??????Y|9r?>???fD?'RS??G?\1?7??)???i*?'4??s???X????e?????8D???b~ @??$~a??1b?3?]f???;P???d????d?w7?l???O}??]J??)n:5#??&?15^?oiEF?'W3!??6,*BV?N?U??q?Z?L}??BS?mi??6?????`??f?+Mf????P??{?o=1??E?.?:o???L?+?YP?o'????/???1&J?;H???.??)???i:? ???@???? 4 ??MZ?L??af??????C\W?'?%.???K?iE?$u6???C?*K ^?c??j(^???$v????h4?&????^F??)?W?????d?) ???o?"??3f\??j&1<4?kh?;????*=e?P\??* ? M?{lz?;s&?5??WC?%ED *??'?jS?R?KU8???m*??hK??_A??R??n-??? ?4'O???GG????k,|?j???B??Q?GN???U~\F?]?2_??n?v~??????@}?~??o'??!????"?s?????h?M?(??}?O?}E???{`{?v??R?9?k? ?d,????S?3&I~?9??*?6???Q??*2??A???q??>?a qv????i1?h+Q?????,???????~C??(?? ?|TQr???J????%%?4???????+1?t?&?ui?(?????!???n?rYN??? qUE??IYu>p^Q?VIk????:?N???7?9???a}mG?U?/???!2???nl<_ q?~????g?s?l)???N??G??/j????X??`???*p\?d!???.Ki??M7e??u??i?G??J7???J\??? DM4?J?x??(???????>T???? f???n?H????9??4#???{^?S~ ?@J???dX#qo??Cc???tz????????v?&5!?m?p6'?q??8L??KB\???v??M7?0Lk??bh1??5? n:???wP+.??) ??????{-??v??}'??^ >?? S?? ?[????+?????B???+KhQ"????l???b?V??I 2V????Dt???z???9I?O?H ?P???B???? ??????m???V???!]?b?? r!???h|??X??????O???Dn?????%???M??y??????L??"34-?K?&??v??t? ?ySM??P?V d"????I?????2{??=???k??*??6?? ?Q?M?`;n?`?N)?@I?+??=???'V?Wd2?6t?? 7 ????R?-??-????\?????nn?H~f?aM:?????)c??*?)?j?% ?%??'??~??4??"\?%v??>-??v??OJC?}???n???/[???I?N?,)J??!??O.??{???`??2S9?WL?(???[???)F?2I?U?o???:?^ZM4d???? ;?????t???%??Wj??L????`?9I/?A?????HA?P????Gj?U:?Qm?X?JJ[_K?*??m?BGBOC??P??ls* ???a/"$??T????6J????????w?Tk?????????K!?[-???sm??|aK??) ??K?.???'VA???J?@?KJvO?b???H?A???d.????Sm?H???WK?n ?lp-t?lS)?X??qU?f?? ??i?X???'F??h?C?R?Gs????8???(????_?b:`m*?a?[?Om?????q?\? hI????? ???${?@3?twLr????l?m??????t?!#?n????e??|???J???????????b S??d?b??f???K??`H????????XQ??-mSTqZ???(?8????k???;&????3?.???v?*R6????????C?L??????A ???#??????6?^?????MK~4???$??R y????bm>??:Cq?3).!????opn?..?*^?Z????;??^??,??u?z??? j*?RB???7??+Z?H?Z?!?xM???iIi?D[A?]??b-N??F??G?g?C??D??M??V?GB.,/?*S?????!$??? ????? ?k~???A???I?Av<??????LI 4.? ?B:???o?J":??T??0?u???z??4??V?E?,?{?4????;?)?A????|o?V?O?Pr?J?K[?D?jPn;? ?Rv??~?????gC{?[???E?????????? ?W@:z???r,?AVa?Mm0??)??~??????N?a?`kk????? f|????V?R?t?Xc{r??Fa?{????Kj?J!?)???H?? ??1??^p?Q??o???u?F??????_q?)???f?P?[q ^??kP>?????`{2?f\?*u@???6??)l?uh  ?9M?5!??JS2jJ???P??a?c?V?=Ko??-??^??j??q??????.K??[7=:??[??9????q?A,????R?V????F?tN?8??A? |Z?J;??|K?a ???6Z??( b5F??n?a?{R?)i?????-?)+v??????v??????R??T??yk??Xo?kw?8(j?o?C?s?u$ff??Ve}??f?8???B?? ??r1?*2cEEB r???v?X0??????????*R?@a-?oJS:?d+HIP ???8???? 0?????>[nYZ ????|U}??3?ZWz?N?B+ORq??R??d??IR??4??eGa???.??MTb1MT?h???_U=N???Z? ;i=?`MU? ??E?S???Hq??????*&?#??LF?^s?'Ah52#L?kF???U?uQ=|?Jb?? ??/d???_|?????/??\j@??C?qZma??w&?^??jmAR???X??5!??.??U??GK????sh+?c ?&??$????Lx?$ ?_? d]???i*U? ?F??-M??rd?X??m?-???5??I?F??|{ ?%??'[B )r!??(j.(+?A???7?Kz?j? ? dj?P&z?RB?????????8??] *>?+\?5??/?"S??+5h1 'HR?Ckt%j?n??.#??-???b??B???ydod???_?>s??p??"5??1? ???*H?KObq??g? d???]ZLjssf???[JZ??-?D??$\]??Cr?R??UPy2????????H??????1?,w[??}?S ?4???hJ?H_eX????DW>?,??-???j:@Ry%O1'?P???/?]H????5'?r??????[l/??z??*???>d?????G!???"J?TU!??????Q"?ab??nM"Sg??2C!1?,??r?]?|????R+O??k?}?Q)m?b? ?n?c???w9~????J?:?"? ?S?=U?%6?????????[????VjuYC/??!??$??:????o}?.?'F]*LD????H??K*J??? ?????#*M_+????&??]????I@Aij?m???? 7?R??/?_???MEc????F?IH???pN???5??}K?I?????+?G??4r??+Q??>Vr\d?-?y.6?= ?2R??????c6??? _Z?4!` w`?X??????C H??+?q???P??[?8??0?H?R}??? ?H?$w???*J??y????????F???(????q??%?1??????Su,?KZS?S!V|?b??=??5?s?????A ?^??2? ????5?h?j?~???!QZ??o*K?J?????? e[??W??3??o??U??P?f?e>A-6???*j?T?'??X#??? ?}?O??????%?????)5??Km????FA? ?????f)H?l?s~ZAM?6??\???BL????S ??I?V?a???&?u???q?,?RJ~Uy???????-??c???%IH)??Ql??? Y?????+5?RB~:+??e??%?7????6B??,?%e?????+}?K???H~?????p?**U?Iq:P??}q?5j????q??+???u??? ?z???^?)P?????????????p%??7B?r????lJ??,???!?5-M?! ?n?n????? ?+a??K?????R/?a]o?p?[rYMe???[ ?\???o?O?c???G.?"?*?YSuyYDW?? ?K??q?y?r?Y\?m???%???T?n??tQ??>i?T?Ga Gjs?e?}??cP??g????s$???R??H??R?j?K?????b?s?????R???j?j?d?i?% >?S?Q???l?R?p*Ft?M?#.*C??*u??+????T%EQ[??y???J??#???? >??L??L?:I???QQ??\Xt???}?n'??I?w???U????t??T.??????? ????' ?`M?R'V?v-Bq_R? ?AB???V??????N?T??%???E?:J?U#???2u W?v??U ??%??S?I?s?_???.??=??8? ?*MF?]vuUS?O???????m?-???c?5???W???I??r>?t?Z*2*??9???Gm7????7?|~?hYjC??e"??,r +gH>?c???je??q???Tv???V?!Q????"?b??????i??2??????R{?I??f2jq?B?fKvahP??z(?q?1?? ???)r?d??? ???am?G???WA??N>???8???mJkJ?0*??i?K??]}???? ^?{?h?#?ljr2?E????#??)??0?P??os?2)9???"K?S?????bJ?em???R?z?"?k???????'%4??Y=wI?612?????S?R??$?@????p?69Q??P??%??Cj?%]@8?M??x??teY,?#J?? ?O????Q??\?|?? N?9Ly????e?????:??-kmcl?H??? ???????????????YR????I??^?:?=?? ???????Gp;?8?s&Aecd??K?????`?M1?%Qr+RS?%o,??~?3????\D???2???_?? )?????+?8??|?????PU????$?eqr?^aD[PcV?7???@In????)??!?T??l??Sn?b??*????y?K{?u*?|XUj??}?Ou???\Gd?????????f?x& e W??r?Y??]?ACh}?d???[?? |^?%?U?????Q?)?????%$-?P?K???-2????6?? ?G#?a?0^?%J??%?*UR[????b2?K.4U?*?0[?Lp??+$?s?Z???HH??? ????*???RBh8??s?`68jv+A6? c*????????? 6Qm%?p?op6?4??ve^?a?R??}+7?F"He`??,????T?$?? PM?;?+[ ???G??C???Y?7????aM????N???\+?Q!???T???F??N?? $??0`?J?`D??kXq? ? 0??C\i?m??m?6?p???2?un?z??y?????;?????C??w[$??n?????=w?u*??)c?1?S?3L???85;???h3UVT;1!n$?)??:???EC???!???KP?z?Si?N?u??+???]????lt????.???????? ??6????? ??412??????????G???C??[?a?H?0?Db?->??????rY-]kH??@?[?g*??XyyZ?N? Tu&V =?????'??D??[?H????F??@M?????`????@?w?J?W??w??T R???[Q??-r?????c6??*?rBB???RZ ??_?a?????O??+?f+?????)?o?l??3Eq?%R'??????>F?N?>0k}5?}?o?M????#?????"?R?[S?r0) iSc????????bm)??2\eS"|3o:R?(????l[?]?T)b\*?B??P ?p;o?-}???=?uB?????R?M? ??H[?????[St?r?E???Gj[ ????%???on?0bg s?Z????un?-l?'?????{`??i??qa??HrTv?%j???I?uaC?????F}G*?*???e??f:c???heVWkX?'b???-6'bAe?:?aP|j-?Ke?;????c$?X?~?S???t?e?*?1??+{?? |?B)J?`ot??W?:* ??0sr?Ic?#NZ?g ?m?? ???P????mf?r/????????r?2?T?Jt-??????q?L&???? ]???O"??k? ?V?U?}ZVh\?Fq????y?????????W??m\??i+?uj??O????P*)v????r1?_h?b??S??> 5?,???I*??????bQ?K??+ IK?\a?V4????O????[?|$??ar^JC?5?$???? ?UJ????Z2?????????T? hP??Rr??.r??2 'd?v?f|?>? ?????}???"????E??? #?&k????|?Or?o a!yU??]?u?!?????F?????^??a????>>e[2???q?|I??$&??Ip?T????g??????)?:?????2$J|j?5S????(? ???,p?WL?Kj2??9???H ?-?X??v?S?3?+????VY?f??;?????bAX`?V?y?lyU????L???R?~hp????-?t??.???6??m??W???'??[j?V?????YB?Z??$?c???B9("?]~?A????s?N??????2hb+IQ+?????`?8??3??yZ%!M? K?!??d H???$??????dM?K????8????R??(?O4??el?????????? mm`??{a1ej????3!_??F????#?7?o?<?k?8c?yc1P?&?EKV?rN?*???`v'???ba?YV;???/?}?6???????H???0?p??????H>F e\?V?I}4?Iy??r\YK?@??????????jz"??*Xa??)???bn7?????B?????fo?u)? ??E5(?Y?Qd?~??1XeXs?R?4?-2?!n(]&?e[X?gm&??????)??8?7Jok??id6BW??Ut;?#UG(???nL?m??b?q?^????SO???r??H7! ???a??8????R?;?^??~????????v?S?M-??!???S*)B????MU??.0S???k ??t??Wa??_@R??e2B???b???d|[???$?KBO??^?*???=?_2?????/@?cDt???? q??J??d6?E?;?Qk?h4?r?G^??e??l()m??????9?E???&g?>??|? ?yR?BE???32eT?? ?e,??H5| a??J??k`??????1??????"????i-J0?+??pmq??%+???Z??z?!?????H~?(?????S?S?H#H??vA??/-/?T?AWL]??%?Wy %)H???c????R?$?????W??h*?g?l???R??vB[IJc?;??8i!??:????I?LY???tf?$2w?a????"ju??????!=_,??? G???|????eI^???m?q?C???%.?+)H????<+3??j?????{?dZ??Z4?????n?a??Y??0EY?2FYx??z?Q?#?N"=?[b???g??????i]l?AB???:`?W?&?)???????R?K???ao??k !? ?????uC?1I???S??Z??6?X??m??O6??P?$??#???Ra??%-?mj?{?????(B?"f8 r*O?? f??????? s????V\???T???D?H??~bb??lG??????]?=35g(?_(???eD???c!V_??.??DTD??q??jR??????$?? ??ubLS%j?????;|m=n?5?"???v?g?T?|h???i .??R??? y????I?V??}??>}? "W2,Wm?q??Q?6?6??K?!jIS?)???y??/???, ?R???J0??P!U??zaYn9$2???!l????%?!)???$ $???;VwDT?(? ????g?.F?K?JH)T?TG??i9M? ??h??3f|?S?*r???RR?U??:_???/UX??Br4T?%RBE?rI?C????????=???R??%*R?????ZE?(??Hm??)eEc??????Bk?3HT???.%P?4?????:Hu![jJ???}p?FQPb?????(???????? HhZ??de?tj?q????jrh?CB?'??\]????a??a 1?R9G??:d?????)?2??AJ[???lI?fzr??u*]fT???) ???m??R??2??W?uz? ????bP2??@q?{lq7$T???????#?????@????_?R??x??? ??n??1a?(fJ=L>??`@??$? PZ.?????.%?? ??$O??E?????p|au,'??B/?1???"?tby?>????????????????w??7E?"[???-????\?,jl19L#>?u?qHP???5fL??&?&T?2IX???\g-????-?e?? ?R??>???Z?????0??????Ip??Uh??q??z?????As???F???yq&Ip?)?@?6 ?-?K??)l??k??T???8??m??Zm ChBS?cc?K????8????an??x?J??3?!?;?-??b??NB1?$?q:Q?sAX?*?6?|)???,?m6+?'JV??W?0???"#4??S-?= X??????eN??\u8???R?Q??m??}???uH??????Z2?????J??1?jT@?????J'?#?b4?\?B???>5:??????b???^???~5HJq3-?A[?o?*??????o???{[????o? ~W???k?r??????>?? U????;\??????v_?2m,S]?.??5??{R?moum??? 3}_3????N1lhi)?k? Q?q??q]C?S?)n-i????5Og?v ??-o???n?U?9k7??.J S u??_????????b????eiN?E????|???;???U?;??67?#?a?Z^`~?[??eR?G??!JB????v?Pc?????;???n????????+S?:?5,?GOlf9?*?t??? ?w???U?%JmR??6B???,~??5??W???4?~:lHR?<_??Q??qO??????3??3?e%?(??]?tLl?SR?^??cs????d??>C????f? ?y???u?*?z?-2?R???Uz6?72=??yI8`LN"?????U???? ?????a?$?)3?[*N1??RJBB?U???c;{v? ?????#fl??Z??-4?????9?Ko???ar?_?P???R^e????J7??3??wA?? [??7?3?C???B??6o??VD_???#??\Hs?.cv?X??J'??l ?UZ%Y?I?A\g??%JV??Os?4X?3N?(?R????T???x????j ?M??????U????NX\?x???????cV?WyS1?i*i?????J????o??-???~#?R??? ?;?H;Rw?3?????????C?????? W1??????e?c?P,??c??????;????{?Z??d?*????)???yV,??B?un?e???R??;??o|)?r6i???????)s?.??v??G?x?Um??!????????' ???XP?n?1?|b??KC??R?} ?%I??~?R??|?q,k????ShPk??4? @???p?J???K:[?F????DT??IqIM??1??J??4K???"3M??u,]G?????Jd???H&?}2?W}??S})? ??i???`??y`?Qs?(??+(?%?&??";?-??????P???)?'?6??eN??c?C???M??=/T???.i(i?q????N?4?oB8???4?^Zsq??8v??FF]??Ih? u?V??e{_l'?2?????B?????????a?I?C???C??? I?8u?g????-?1?E???+a%!C????U_??*5????????5?3^? o??w????E/'???v?jk?S?-,?'???Ez'"??^\?p$? ????'??????NC??&*?,?? a%??:?q3T???}?r?i???D???u? n??E??#????0??-;?A?L?1*Yv??MEU6,??'4c????%+?u????R??)????}B?>< m???_F?M?S???,??!??jN?u$]D????2??Fl?D*K????%*G?l6# ??(S??7??????Q? ?GV?!Gea9B??????R?1??oe?8??q?*?b{ y?^?UB???x?$(-CZ?OT???????P????q:??;?? B? ?p??? ? ]?m?g????a???CMJz@???B?x???(d?????3 ???Q}????}Y???L??c????!??#?KR4dV?T???Ny??+?8???;???????&?Zg}???X????J??)?_?_???=PJ ???JF?J???? 1??M_O?H?v????f?Y??s??$?-$?$x>q?I?I??g?3?J`???6K?l??Y????A?'???e??:l??Y??`w?P??0???ej????????^mJHP?? ?w??;???\??????d?????H??|h????m&t?:??]XR???LV1?3'U ?'?d<4????l;?&8wQ??}??? ?J52??????????[???"|?[??????$?5??:?~!? r??7?GC?S?7??;???w?*UD(??g????? ?*?[P???!?e?s? <I?? ???H???P$ ?6???G{???%q8`?qte?GJ?q\G?o?P^}:??#???r??Sz????3???????)????;??7??`2`4$).6?%#J??I??&^??t?Y ??!IN???>??? G??c9T?? -VC??t????l???V?n?UHT????a.Qf???Q?U?,x#?:S$P)??4???N???????8??$?)?*??6?G???-?'3%e?"Ot??5Z\???~R=???T????W?e?T?:P/q??9????3cO'^?"?a??8???Ev???B?PK`?~???????bODM-?9iIW?(???R????0?)"Vq??*b?PwE?|K??f*?Q ????p??o:x?R??m?j?,@???;??k?B??A?*c2u??3?G_?? ?Y ??r?@?*(4?]}???)H???q??$??q??@=&f9B????1L"$???>WX$ ?6$c???&}IL????????P=????-????????3KB??|?????Aq(?`?c??&[?j?E??Jq??[@?}???(?R?P??dE[???>e?M???4???&K??6?X$}p *FbI??v?????d??!??3!-7w"?1"?dL???S\?p????p??N^???4?N?8 ???o????7?!D?QT???l??E#??q?$??h??? r>e ??????&KJT????I????E????m??n????!2??x?X?]?R?9G:R??U?d5?US^??i?5??xC?????????Ch?ND?%?*?U?qn???.~l:?RU k??iRa???q????*?7???????8j?[z?QQe?? ?Yk??1?????F??y?H?#??8??;?kUee6? ??.???H[??? (???{??????(????[ ?T?????:?3E4?????1]%!?5????#R?????!l????l?j???U????Q(?_?+?B\???^?S???? ??m~??a???*3)ODv3r????M? ? ???3K???) ?um????q_/y{=???/?\???8???`??clX? ?E??[??S???H[iW??q???g?YDv?n?< ??? Y??V6=?b4??j?^?5X???9*qM?H??OKl:??wY???????#????Tf?)?????>? ???p?7%T???i??J???o?? ?d?oH????????0?>P???U?Si|????y?"MUCM?????R????E?nA??D????;3P?????X?P??C???=D?? ?A???:O??{?T?%&???r:???jG?l?"}y?s?#S?Zn??????m??? ????~???Q??H:?p??????? ???}?k3f??????*%V+?)?."?PU? 3?\???eo??????IU????[?3NF???s??)???9??uW??f?????/?K ,??d??u??(S?C~??Az?i)%:w??EM?*??9o?????Qk3P??S?G????Hr0?Re_|???e9m??p???o?C??????5??% ??k7?y?????????? I??a?[j??? _???eE?v?)*$\??_ Y2????)??J??8l?m?VM?)??9??^psT ?????%A?u??D?ez|??u?S???????|L?GLK)r4????6$???p????Q????-???*?'?0??G??s]?g?CaCG???.l???(?P??*?QD 1?b???T???????D?C?????]?|?0?j&C!?????m? ????TyM??=o)?W*W?ro???????W?????L??9vXk??d;??I"???{`z?mF?c?*.????&2[kY>?~an???Na??h??,z}mh,?1?E8??7?;?? S???*L???P??pm?/r??e???X??k?+???.^]??Pm??aRF? ?p[????WNp?G??t????"m???D?(4z{???*??cHm?y <??f???4??9vB???W???wT|?????0[[m?O???,?????j?H??$)"M??w?????f?[?G?.|d???W%???[?A?nqCf??@ST??_:K?q?^ov?t??N4???:"f????r?R?L??9???+Qb??$??:?x?@????3e>KS???yS5?t?\7?<{v?9*??3rc[?????????\?????Yn*??I??????w??9?k?*L????,??a?v`????(PeU>??? ?P)?O????1?n3{?g?4??M_h??f?l?*T???K?C????H???'Y{,U??y?)?(i/?I ??L+W?i?N]S/?@)A?????????,Q?,A??t?????\0?????!?[? wU+?s.#L??F? ?J @?'??u{.???????g???#?????{2?R?rL?L4#???????l:?K???+3F???m?y?]mnz????*?c???^???U?U!f?2?1n?!?oM??????/M=? ??'Q??W????UJtiPq?:?.???? ?BD??C^?ZbV\v)J)?#?b?_????h?4 2?:?E??? -?nn<[l&???{??????Nv?="??)?z??jC??_?5m??7??????CTW!2?%??%VSv?B:?,??$ ????z Q?hQ???4????;??J?Z?[TjK?$>?(!???_??H???????????K?]?\I?O\fX???|F??e ??????Uc1R?yJH???i??????U?r1.?V??K????/2???]??N??S??? j????v?Sc??u?q??T?????^R????]=K?5$ ?}?? WZ????g?H#b0??i?RZf4a%??N?*?I??P???A?_p???|c?Z????H???[T??i+n6?q?jh??ma2%>?h7????{?z?s;??+v?S??)?[???????????k??1ezm'!e???l???O?V?g?I??|?l?????x%?????_??:?h?t!????!rP?p????'f En35??i ??M??+????Wj?z&,4??CV??>???U???U??l?k6?7w?G???J??%]?I?L ?o?q??C?I??M??}?????RS?????f?K?4w??%???)??~?y?L|?V? L}??$?p]E$t??P??b3?[?????`0AO%?e:????I??;?????n???f?2??M!?????Y!l?za?:9?:Lw!Ua??;?RJu ???qUqb???e&KI??J?a )u?????_a?E??E~p? ???X?1T?DG#4????I(P?o???&??M~L?o)Q????)#b ?O|4p???^???hm?S?qkp!?.?????#|YTL?????Uu??a??-? ?qas??^?c?;?T$?5&3???e?6??q? ?o0T#"L??|C?L??e:~???SI?Q?Q?F/HsQBRl??m??D?0?0?????[??????? ?*/F:????]???T????????;i??Z?P??J?[quL???j??-?6?? 9nd??tT?a|?????-?c??$?b?Rf5?5QX$8???????P????V?IJD?)n)L?=v?TF???r??((?Ie????*?V????`??]??bu???.8??,???q?`V?N?1%??)JJ@)mkN?#??b?r?|?C????RK{<.?m?_pGl)????@?a?J5?fN?? ?_q??S?^????B~?R? ??A??C?1???0?t??_f?????5 p?b??[I?.Rza?$7?????E?3/????????y??)e@????O b???D?????1?>P50 T???u(,?Rf?Ae?Or?`v'??c???4.%Fz???%N'9??~n?nv??[???j??u?i??i??(}???H:m????U???O??.?j a $?P6n1?.?+????LA???9???/!Tj??!????:??????????Gv?1?| (SO1???[?y??J?????N?Tv3???????????????|:s??4????t;?V?}?v|?u?l???i???Lbf??%??RKm??GM?{??^+_??T?T)?&???!M????=?H?? Tl?k?&~?S?I?X??Zf???????8[??R??A,;K???:??t?'s?b T-?R???5???????Ry ?/???%??c?z??V??E2s.#`ZuN!?n? ?.??????~!#??Nu??9@?????l??yb???P???4??1????????/??????C?e???????_?eZ?:??wcHed??6????v?d?Ss?hUjl???X*u?z?p??+RA? ???Mc*?b?J]SZ??O-?R???u???????I?? ??7t?i??K?dTf9?y?G??t?P? ???U?????,?L???e???HC?JB????0?? \rb??H????e r{?d?6?@= ??{???R[K??At????(6N????J?SJ? 9?Jl???F?k? '???cs??x??*t? ?^~#S?)???I??-^?(?;? b??7&o??|????IU??"????QX%}{??qK????T?? ?H??? ^?d?'??????l????]U?1???i?_?q???????(UA??m?,??r jyB@:?????/??}1?0???\V??????0F[e??*a&?M?#??qT????|5L6?P?j:?W_W?(j9F?u?N?Ki?P9??????PZa==??G??i??zs,??.???????+T?#.HkBB?P?b???? ez?z????9?^??"??:] 'p??$(%e!X?????>[I'??s?B|?YU??9SE?4??!e&???????[gslt!?)??o??|K????Gh??W8ji???S?l ?.0J?Wzu6$'-?0 ????lj ?r??2K?!A'?4?????Y0Kp??? ?s??? 9~;-???R?6?????sc??U?r???_??g@u?w ?o?x??;0}?????b?7?Y?4?ym????SkX{?U?????????????????X?4?+?Z???Q??yX8N??|??uF???????V?????p??Xl?A?)?=????*4??A?T(?%*??????.!@?o????T?>?o??E? ??_?JR/?? ?>????????ZL??v???n_`?;?n?vn??hs?Ng?T??)b*?qI??E?????\??? ????qn??(z?5?o? ?T??> d'?? Q2?]M?r?ri9IR??}????\????)?w??uV??Z????E????????9??X}\?c??????6,?g_0%U???'???*?Y??"Xn? H}1Q?i?????5??9V?????gU?C?ZrH????W?2?s???(a??aPjl???$ ?\)G?????*k?\?X?A?"i???W"????#??*??? ?????~2?.Z?i.j??Z?????8__????"?3?d()?l???q ?6|nH?b?{/??#D???h???????m4???Ooq????*??iI???@K??k6??l????W?4 DC"?;???% ??????\??+?"???R?>5E?7? D{Z?C???[??+?\Hk$l,?S?2?q? ????olsDl??y??6Kl???H@?? 6?*Zg`??S?]mKH$[N??pq?5?kC9N???? ?b?????????kQ,?9?:G??t?f*???d)???:????$??NK??%$???????????%????z?~)??Z?v$lN??1T??][??Ca)U?????w?Cb&??&?o???????5?v?7 &????5?gWc?q`0^????!?b??0?#q???????3 ???6????,/R?M????????tew9??%?}K"???0??R??E?H?|=?8_?#T????????_a?yw?9?z?.@XqG???+=?e$? y??WK??auN!?4??Nw ?????J?1??*?2;?:??b??c??.?c?x?P?M?fj/Kv)?? $iJOT?X[ S2?Z?3Wb?5?????.???G?|/???&Ego????G???g???YK?q?~.?7??9??5??H?G?1?????d???$_l[Y{*U?d#P?N"bn????7I?Ss?Os-OvC!$rd???????????????}?9??c?ykSJ???&=R?b?2???n*%;???????j??????-|??????????*??\ (TP T?7%??.?~?|???_%?2?\?? ??]mD:???G?.z?W???r??? 6?8?B?$w?8??9??r??UV???d?I??m??B??h/M\?<$"?J???????[_???^???????Jan(Hm!? 65???vM??e?L??,????bnV??\Wj??`??-?? ??m?|d???dY????k ?/k?6?X??*\??D???"l???}???\g ?????????e8?[?uIl ????~??j?@??%??????n?? NQh???Z`r%?T???[?|?%?/??v ??t??|l?9?? ???lEu????(V?.qZ?_???????*S????^????nR?\???Z????4?BR???OB?#?SJ@m???-???9R???v?.??*'?m?'???eD ?-[???????B??u?F"?)?2H??u?U9?c8j.?r v ????{?=?#S?e?B??i??? ?"?/???L]}Y?RP?#?y?A8?:??!j P?z?q?s(?nE9kn?MzCRt8??@??u8/"d?4???+C??-Ii??o??/????H?oD?k9?n-HR?R:v?1?W???[+)W?8????#?)o|lf???[??=??!I??_T??z?????R?,??_??Q???=@?I???+h??WL?KJRVP???P???*H )?4??l&?:??F@K md\X??V?7?m???@J??J????????q)u???(l?????W?E??U?/r?6??? ^%????????K?qY??HMI?P???}/?????Ib?b!?(??2????????????????????%?L?&????G)??Sj?/??j*?$??Qe?J ??>?cq?b?6^f???t%A?d??c????=1.z???m??1U7??9???????%gK?DXR?z\X?| ?}?8v?w?h??????????NF??N?????"???|R??j??2?p? ? )U???WU??}1S?TR??;!j??Q?????RM?V?\/?.?1??.??O??0?Z??????B?@??b?9.??mwQk)Y?#??N?Ct???t??b?)}??b?/??????Jw2T??\??R ?F?\A???8oNk??&NTV\???@q? ZZJ?.A??C???Z?? ??,?5":#NmW??????!?:~c?@?c?)??q?+M?a??}?Uh ??????Or??9??Y???jT?????A??6??mm????8?C?K_??? h+????\?2D?????NQi[?_T(o??,|???XmH???????:U???? dk?????? ??x??????YB?Hp??S?v7??w ?5?F?? ???W???????????-W?*E` ?YF?rm?I?1"?>??)????Z?G??????aL????Z?g? eH??EQt??c|???B?\w????B]ZR??????p6??RQ??hoZ??????l??????O??K Xd)&????????E:]? ?? ???8?E???d???????n?.???pG?!?o?68???_?h?P??J???J???0?"I4??/?:??P?????P6??^#???YL?ZU%t?1R????V *$?X}>?#T?S*?$?":\X(R@[??????VZ?!M????)??y????A???N?????uWS???^???????????J?!??\. G@R???? Il?+??b????#P???k???h1????/???n\l???.)`9}??@Gl???y?.?[AC???R?dP????????I??f????? ?R??b-??c?t?tz??2L???<I?z?o??@o??`xh@=?-?,??,???????VQG`?b?.J???8???????O??Q? ?2? ?Z?Ho?BR????*????s ??????KH[f???;???$ ???m=)?O4????V?:??c??????$v#??^???O???b?????[?#X!*??O???V???Z????????? ? ;~k{?[N6K?????-??p?mk8????,y??????????:^??)?$X7a?????uIR?LPc,5-?-Ad???u??VL????iSM??b?d:;????E-5 d????(??? A????0??dI???!?!?2?6?^?? ?????Zd?{N?&B)iB^?????????@5'Z??W?M????Yp!GR?+"?)????44???uK?YHE?S???.???%A,?(8T?:???$X??????????M?6??Z?Jn:\t??v????????>;v ???iu8???@6???{`?7???}?w?N?????b?+?@???8?Rb??B??-??B???????W??????????-?5!??$??_M?3??V?? ?U????????7? 5$??q)???????J?W??K?~'-\?8??@ u!?*??5?"??FU?d?0???7 &??W-zu???d9K??"?????V????????^???#????@m?p?y4?`????DZw??$}[?0??}??'?^??y???R@?E??p?T????A~???]%>?G??a??O&??Zz????7u$??????}????t:?9??aL??H? ??o?%?????)?5???l5Q+??)????G???Sm?????AV????? ????bS???Y?d??@??4??? ????? P?Z?]?&??Q??d???a-????I Z?????/????s?>?bR???J6?????z?F?U? ?????????P??sOl'KUSC?m??XJ?????9?V???H??yS???w?l.m?3?Yk8I???? j?MB~??-?? ????.?????U?Q??h iJ?Q?Me? Am-?4?swj#? ]a??????X ??znQ???Jfna?0*j???Z?t?*N?)$t?/?=8D??R?????d?a??b?D?????`0Q?????o?$?????$G&??????????vg??????????6c????*?R?????J_- ? 0??*???C??3,L??%l?I@?????*?|?E?????w8???????RZab?0?L~xq//???MP??d???s????8??p=u,^O?bIj*??-I*?W???6??)Z ,Hl????c???4?h????? B????[B"??E=??6???-zAA;?:`~???????z?T?? (1?O????????jC+dU??RB?}??????1?%??n?] w??:??F????Cqu?&#N$?Y??l0q@=??q:Y?J?&g????%?H?RM?6???gj??%NDv???%VJO{?b?rU^b??????m????Q??]???y?O?5"??F?{? ?E??1?? h5??j?}?8. ?0M~????K??lH6?kbRx+8?]B2T?Kd???7?.pg%f\???*???R?Ip?Wb?v?*S+I?@?????iqC??YT??B???7???J(D-?????$?"?Wnm2????iz???{Z???6]??cR[vJD????m?????t?4#[n?W??t?????S'??E|X?r?????q *?????1 r??=2KuFV??nLs?Bv[c????Tn????s"!: ???????4??- &??z]??M????|?.`?meV? ?-M?7=??L ?g??u????94)!RKk t??????&,??y?H???I|?????3?dzeJS?6?? P)Z7(=????8S??F??<>?UEh?[@?o??X?????;?2?Y?UJUM??B?m)???????(5??4?5??CKZ????A??L?M????|????|:GS???R)?] -????????~?T?9??8??\???i?6 ?R?Kg???k??????SV?C? ????8/?'?a?`L?M???GJQu??Z?cMO?O???i??3?!J??? w2?????f:?l@?????P?2c?D?O???!????{y??e ?????G*???0??b???)??F?`9?o8??cm?P???:?5Z3-:?Le?????cr????'??7?e6????????A??????S???$bcV%?8????e???&?(???????*????l??]=j?h?%???]3?hr?$??6???I'??qlU1%??2[J??/pk '????N+?m?:?w?t??I?????L?^Z???S??9iHkW??8??????+??2?m?>??hi ????6??*??u)?l??-@ ?:??c??M%??Qm.\%W?P? ???#?e>?=:?+Ah?K?? p6???}K??>??Ki?FTF?Tl??????2?*W6TF$?ii!??YI???}?aY?"e??@??b?5????G?? 7????Sp*??ye ??i??'? ?=??c+?C?L4?n-?iY??!8??k???uI?M??????n????ZTBRh~?-??U9???L?#%.?$%"?(v??????)??9jJnBQ?%I#sa???|?n(?1b\??!???MKv???+J??????0?d????@J?Q??p???4??J???m ??{??c6????8??l??>U?/??K?M??(g?Q y?E?-?q??V$?3?O???????J????z???a?????????! M?z?GLD???k?J??z ?-/?????F??K?????2??bT?O???tl:???l??!??T?0\$ >5??;??z?D??C ??N?j[?#Jl|y???Oj4?aL???9???AO_??A??id?FZ??S?i?Yu?\????6?#?P?U^D?\d?-?? &? On?T??j?E4?6??#?A??$?????vr?uhl?^?:?????k??(YKv -*z??????E??????????)?g?!J???n??7?H?*?I????olw ???I??:??????A_iOL????????k???fo?h?J?Tz?d5r\*?@?????w??O???@RJ@.p@?f??(?&?? AR?? ?????k= ???g?a?"?E??r?z???U?9)wB?????}???G??iT???S&?q?8??R?QN??? +?T ???%?V??7M?Q|???/?|;?????VH??????;0?????U?m???NR????.???c??q??????W$d?r?aJr,??e?H???? ??\ ?5%?X?l??r??d?????-?b??5?`0??? zhS??G?"T?N??QRP?(Q?`??6f????t? ?dHR?%??>?>???,?9P?.??????????? ?H?9+????H????9F???????XN??????O>?XM???|]^S????9?=u*m??a?????@???vab???u?kq&H J?R??%??;??|T??? /9??i?62?R????5???'???? *BA?lN??????????'EU?-??)L:??+?*-?0?0?X???MJ??>??0Q&???_?4ER&V?Imm?0_k8J?D?4??.E???t?|,k?o?OX??r???O???? ?1??Io"D?e Z?? ?o|[?2????6?)?Cdr?uM???????t????*????SqT?R??Ro?6?"?*.?s\&? ??k?q???m?4????? ???KU)kd???-GF?J/????N?]???7&zV???O????w+?x???=?]z???n?m??3;?cM%? ???i`nI? 8?_V?G?H3G#?q??"e???)Mfr??\??B?I???F ?????? 8 o????? t???s?7+??? ??-!n?????????b?B?JE?c???|]=R??+????t(???43/?Ac?? ?>??Co]????k(?????q(G?BJ????p??h?A:n??a?n??Z?2?TB??J"?(X?????????Z??? ?0Y?? ????1?6??@Q?x??J???Q{??m??:s_}d??ER,?h?qb????D:??????#?\{_Es?y?PR??q????.; e?{????&??BB\???n??3?????M????l?au? 6? \??! ????)?o#"k{???,??0??))J?B??????HX)1?Y??.SsfN????>?2Qf?Bn??????\ ?y"'????Z?????B??U$??*?l?f?0]Jh$^???^?{c?I?v??h.?.|cJf?|?$?????%)C?????4!:?oq??# ??L)????6??? ?????]RJ?6?-N}?$????U??^N?P????m??^f??p?T?siR?v?)? aW?g?1???f3??[A??X??IW??R?$[~??Z?ZR??n#H`,?6???\????a}?K???-h&?7???8Y?\A?[?]?t?{???5???7?t?9*$?l$8???W7??r?a?U}? 0??<6s??????d=Vc?[W1V%-?_}???x??xWz????X????UvL%??]???9?????%c??pR{?1??Y V?@| Ch,?`/??2[-???,\0?T|?\????M??`?PJ?J\?;?W??9b????2d%??%I??l2??sz2?>??M??K[?A ??b ????????%???{yIl'?????-I??./??u?(?O %??*??}@&@ '?[?Rs??qj????d/?R?m{w?c ?n ?,?*En?vm?=?S?????~??+?DNd???J?U??L?????X??9E??6USp????w?? 7?U?Q??XoI?^?e??M?"R[???&??]???????Q]??b??:???^-?'?Qm:`??????g}%?e??U??s,???jU?? D??K??K?p?I?JJn??????Zn???Q???>?P?*?"?? ?4??ut???{b??{Z?:?????PG!?Go??J?z??'?b????S??'?t?OP-t?????3*?m???5NJ!86??l?GRz??J?"???????V?+??I? ???????????JU??0??k?)?v??iH????O????G????l&(???LrU]U*"\v?%d??*'??{????D?n ??c???o???ulq?t!}S? ?(_9 u~#?'W??8?Mo'??U)"4???/+gG????i??????'?v?e?5~B?%??P???B??7????t???Y,!J???G??k?3>??[?&?N??|??2??E?)$?\?Q?\'T?_f,??Q?Ntl?????}???*S??y?????? ?Z???4?lt??????b???"?????: ???eI~e^\??S????????k???x[. ?*C?????8??%? J??? =>?d?9nuzth?????%?k??s???7?????>?'????^i????S?:?8??lt$?d??+?????n????s5 ????B>????h$,?r??q????^NG??u??33%?RN??c?*????S???|?Y* >??#8?YR??)???pE?c??2?_)(?J}???9???C??M-??>??u?pH??R5?{k???????l???8??*?o{b?? S*?fd?:0??Et?$P?o?1I?r??????-?5"??K??s???5:Ucd??qw?L??!????m?>C?? kN??p-?? ?ftS???"-I?JR???'?"'*? PUJ]?RR??W('apz????~?ma????f??Dt?IGkc?]?L?vDP2???C???5WQ:S? p?? ?=? T?U%iR?i)'?? -i?!????3\K??Y7??1??K??%?i\O??:B???H=???>??!?? ??n?u=O???Q)JM??????n:?f???vR?n?LO???9?????`ia ?c???o??b??J?%????ZY? ????q??Q?0T?%7????r\?3??$?DHM?????????????g?? ?WS??I?F??U9d??? Ju??'3?????Qd?h6?@?G??v???? -?!JkRB=$[???|l? ?S??R?F?\?h?$?lb?c 3?62????w:?.???? ?T???????<_?Y??S????}??#"5??? _{?6x???K?J?8?L)????;???r??)5?u?$6?J?.-}???? rq??!??].J???(?:@??u????fZ?? U?N4?9??-??J?I v;TFDD7?Z ????jr.S?%l???g?9G3;??2??q??l?Joq?[ ??X???\?t??)n[w?F?{c????7?i}z????OH?5?&N?Kv`??B???J?kq?0???`F?5i??)??e?zl??sJ~$ *t??I IY??? sVY??T?u#??????Ca????pO??F?????(??8w?3e??????Kj?C?$?WCK???B???????j:??)S???????}??k???Rl?*d?+??+!??6????-J,6???JX?????/????KPBJ???|:??X?&k?/LD?2??~?n????x5Y??? ?T?nw)?|?E????h?GN??sJ@'B?????iE2??PcD???(7??c??H?H??i?q\??C?%h+?P ???aJ??!??)??-?>??????K?;a???u??????[m???A???0??]?-am????F?8Q???vY $$??b6ci?M??Q?H? ?P??N?GS?^y?2??N?RI??????(???F????R?[k ???8bJ?p\?pS???u?%????????&?]-2???s?-u~P1 ??G???7??m{???#???9?P?}??-?I????AaM?K?.$HQqc?=????????|????;`?[?$j?re]??uJDe; z]l?=/?19???a*????????R????dH?59?Z???M??d????B[????wV? ???Gq???qChY???b??"S????????'?t??a=*???{_???5????2e$4??) _RN%FDy ?? *???#???d?C?\Sl0??I?c?]??/???{?+????f0?M5?????)???HQ?;????{?+?e?K?r4b? ??w6?aN??MK????*?n$???????C? ?2??b?P?{??X???R????PZ?????:??f?X]?6?B?????yf??i?|_???i?MJ?>R?????~?=???=k ??1?????%?*4?G???4?J#????5?N??P?ua? ?d?J?V??M????????C?G?s?!?y6?IC?G???uv?;?K???G???????n@8\E7-R???%??Ssd?;#?e???????????J?J[??x???.?X?e?&??pq?R?W[?n ?=p]?DR???:?n?p?>PN?Ms+?B?fL??7.c?90???W?R???:?????\J??E?R??n?#HJ4op{?5P?_)??p S3??p?F?R???aJ3?\)?=?????1????BE[4???Z@PO??;ok????T?.=By?????????aq??Y??"V^Eim[?? ??_????`??r?@??Hp????+~?Rp?5?v?LX??????s?,?%?????2?h>.p%?J));?>?Iy????09?V????????M?N?[ &}?flt% ?v????u=????k$?:oeu?X?W ?{? ^PBJ??V ?????ZV????>1$8A(?v'????- ??}D?y????(hF??kGE ??\}?????M?ux?#-???#RB??8??,???~???D?%Re-?AKI??P?v??"Di??'???n?H%w??T?x??^??'????????y?UNL?b???.??ZN?*?? ?m??c?&s??R|?I????Z?d9u"??.P?t????o?>???E?????}7???C?i?q?M5??????~u????5??v73?? ??y?)??C?????b??????7(%67??'^??Z?8y?i????6??????B?E:T" K??????????????r*S1?$(???????9n?i#%??!???6.??m?,% I????&T????6? ???_2????rOM???? C???m7?????????&xb?4?????{????oR&u?B?1???%%??vc?+H????u#Q6?{?C?!j[k)h?Tz??|?@???`jI;?>y???p:?- ????s?&I(?^???T???r[@???/???%d? P\??>???A?`?$???cZ?M???z@6????? ?[?g?n?N~K?%??????m?????I??k3?/%k??c????i/?J.]a? w9? o?6;~???!1???;?NF???????VB?n4?????:?(\+???j^~*???Zo????o?T???$??H?qii??vJ? ?(n}??L?nB? ????#r???'Kz$yX}jK?B????\?Tuo?Hu??SI@??Rl?S?IH?}???????? ????%?6???????ZM+,???????[?t?:{v???????S??K????9?W?G??{?]?6??E????V???&??\l?2?F??)?947???tC@?Z}??| ???Kz? ??W?[??.,z???? f?2B?R?I??? s? ??|?aR??d???(??`??P????6k?f????=???\????*r?(J?*X?????j   Z?qdxM?*?y^?rb3t???GCY???*?'0$eR*UU??;?[*q`o????l??(???(% t7=p????])M?*????8?-EM??M???*|2?y=?S?A??T?|?????>v??4e%?3 JB???"?1??mN?@5HK ??fOB1M???3?T????3?wQM??/???V??[BT?/?I?=%??*qX??? ?"?Z?????H?g?[4?j,?%?? ??>??o|#???S??-???f????O[?)?????Q?6G?J?'?? \Gm ??O??c7v??????? ??Hi*e??????????U(?QkY????*??Z????????cd6/?>F,\??&p???~T9?g?P=????qU??Q??c?ihJ??TBB?z?_???',q??R?"?????6??Mn-??'?Z??R?.R/??lB\p????S????????t??}???i)+[.&?'H `?L}?P ?"???{??VKr?a?,?rz?Od~*???????6??R??-AG?$m??[???P????N????u????&?0?W???p?)i?Cf??????`'e:??V?yOX(?N??M?cSr8)(Q~?%]RG\?"???v?R???YCkl/-l?u?P?Qk??)?1*??d?a?q?? X?)%+F??? ????%aVP'p;B?S???? j??bH ????=?NHK(:S?o???}?M](??????? W??B??[????B???)??I???:J??IX{???]??Sj???5???70?$??R??F??+t[??12???6`FiO1? D???|V?h??%1??F?o?9) ??????? MF????U/1?j%FH rC???r?????M?F????PR??)????^???l?M!???V?$??????Y?J?f??5D??y:?nm???????T??&?Vh?????Q$??IV??6??????TI'~?-:?\?"T?f0??'*9y?M ??????P?6??RD?????h?j?????p?*?Y?????n?p?-M??4%??!?J????????*:/{[k?J??????`U???w??[D??b?0??*?9 ?????????+3A?n?k??????'?1?Y.?Q??`?:?I??XA???#?????|??F?D~=.?Q??$??4)??6% ?u7??C? ??vy?u??k???U ?????7e?F???pr???????h?????y??J??????????9???hNau?.XZ??rE??????`???W?_??4????*?c~6???????Fc??R?RV?x,?Z????|'?a??m?????I?$G[ ??P?? &?`?? ?.?????I???? ?*?X??P????u(?Nu/??9?E?lTG??5?SU???DYe??????v??$ ??Y??*??H{??M????IJ?%Q3?!I?2?NOB??I?)?sT?9?uM?!E??c?7S??q?f?Nbh??JloB???;aoR-j ? ??`???$WkKy! ???*K|?a??6???#?Kv??5Of^l????;?????|??Q?cB?l~?eWBf2??$t???6????w?=?o$S??uQ?)E(mEw????|??\??Jt?Z?t??Y*l??????lGP+P=/n???????X?h?D?????7g!?-?O? R?K?????(Q E?????K??e????*qJ??N?~?F???B??KA???M??b?????0vD+*|G???]qF?)O8J?|i???]??!&????SeDY??) ??LV5??hnhSA???\??O\Y<? ?(UR??f!mb?a`?G??$??`??%b?"?\wJP???1???^??!?n?? ?>??'?U?pO??Pu6?`??2?W?V???????x??6??? *W?6?#c??:?HJ? ??e??k???t? qi*#??U`?P??~??i>>???d?L?n0?E??(?B??`>???k??C.4?f?yE,?[q#?????/???9@???s?=OuN."&?.????w?u?p??L?W?"???5647O????"?2?u????4???;????????Y???Tf?]?RBd(????8?)?y??,E???0??k??I3?'J?????%??_|G}?N?8?]?M??A??I sQ?????p??l?????????8???g@AJ???V???{b??P???Q??R??H?????I??h??Cm???&K? H;u?????????*-??AIKL????{??^??gi???????$??)[?a?????P}?, ??9??j.:GQ? ??+ K?o?6b????Al?j?/?M???c2?&?????#r????g8??D?I?8?+?P) c?s&??z??:D?????:{?????4{??a? yK%????q?Y?|5T&Ea?&<_$~mg zR???[?;?k?B?N?LH??d?8?\bmo1??B? wn,V??$w?P??????'u?5C50?5?m?~??_???yKJ????}A8`c.??N?R?CQ?\??R7?h??"l$?E???gP?T??J??????(Z?????:C???gS?R??g??N $j?f:????? ?D???sp????nOof??s?H???r?B?@'}#%RCk)X ??o8?8?2;?!)????u??(&?)!@t??+Z??2T?!=4??? H?I?=P?YbhN?L?M=?N?]&?6???v???>??????R?B??in{?6V@y??u???k7??aq?a??5?????????_I?RVGa???j??3?4??????????zQH! a?????`KQ???Qy?YIQL?i* ?>?|?????r)`?Ye? ??Q#q??.???!?E4??R^m?}*??>?b?????@???b??8??vm5O?# ??????5?I?(??&?jK??lGC"??H???6B?:)R???????%_???????\???^U?|?rj?^B?uiW1??????l?=nY?Y?5?7}??? ??&k?? ????W ?P???Dw@6?????\????k7v?G??RN?c?+?2?z,?;mo?P?:?s???g???b?mE??????8??)??P??5$?P=??"qF??i???w??!!?&E?)~|?HI(?e ???hhL?&????-?????1[WM????t???????]12g1C??????|Pz?"0?H;? ??.:P?u?q??(??+B?K?&??+? {SgK???Pt??{?L??M@??y?-~???????m6Us?"??DBu,?iF?????4e?R???'P?????)?o??8????jAnz??-AKL???K???????w???=7I?7 ??o?m???u??R??=??C?I"?.j?????DH?Ba?????????/ ?E??e}qO0T???8?$??cdN???k/f???RR?U?F?O?G[~??r??????l7??Q? ?!WV?i??????5?i?P?;??&??6B?T{????;?:G?B??~_????????C?Zv?.??.?#???????xn-?\??*C??$?? 7H|+?{}1?B?!p?|jZnG%??BPm??`b_Q??WL$l???IW??T??Z?1?????^a?v?2 +! 7?S?`??e57?J?wY$???=? ??"?{??f???$Z??l??t?o|\?Y&????#?q_5??^v;?D??P???'k?pJ?Y???S?Z??CL?? ?F?$c???k??k2??????X#?.?6M?:?N?Fq???1u?Q1??)R????R=g?????J?????mn????i??:???5?_C??????8?qL?n:?|`?cs?"?k?{???Vs?"?:j???!M?????e?}:???!3U????????^?5?"??`??9???-M?bM?m ???L?l???r?qK????&j,M???Xv? ??,k,??NzXM?)?3CK????????M+_??vRRz????L?:\G?w3???????l]_?f;???'!?iR?E?_? ??O?H?C??/?????%?;?????J4?@??1g/?5? ??[?eV7??Xm?????$`??)Y?iR`??e?Hn?????r??????yg:??????????e???????,w?!??po???O???O?"??)?.??{??L??\Zf??qZ????_?-???J?????w????p-??*g2Pw ?????J??~???e ?6????b?{j {x???3?*E?fs???J??o??q???4?k`H?O??(????V\??|??G?P?~???W?j?z[B????? [d?`W?M??]??.?????9{c?(GYZ???|HFUuq??Q ???qM??Q?**85Oa??V??P??Xe?'????IjE??z?J?(??Kt? ?.4????N??cEB?Sa??*????k? ??"G??0f?a`"??JB?`?n????f???z,R??Hb??#?q?"??????????m\?Tg WKkw?? ?Ab?0e?|[???f?)H'Dv??O??t?eG??? ?+?J??????J??H?5?n??L?V??%?P?+???U?l???#8O???U??(??hn?????T?z??v??\??,Ttf?=n? ???MF;Ki?=&???Q)-bv>??(5?tH`LDp?7 P'????"t8?B??V?HKZ6Q?O`s???8e?? ??r??-???????????????08?FS???i??zYP?-?? ??*???3?\?Q???#)???:??M?OM^???R??!??R,??*E????x?yS?=e?5?rO????\Ka_iIiN?+(K@?[ge~??,j[o?qTE???,???h???6?g?z?S????r??? B? ????83%?s?B???-?AGJ?F?>?/!l??_Z?`)??F?Pmq=??^?'6V?\u-??????8?(??V^??t????ASEM???}$??&D?????|) T???8&?-? 2?U?i?l6?o?? R???eea??????N,?.??*??sJ->?IJ?m?????>F6?:???N ?o?pQQ[??r??-I??U??<`?q?????+?[?M?%?m??p*??????$???Z\SjekQ????\E??$??r1?'A??ky?z2??#)?XRn??\???q??eD??T??uB?????;_?`a??U?1??|6??+??,???q??r"???t?vp)?ZTGO????Z?V??A?(V?P?o6????9@s??*RO?R??[6z??]???Z???$hi/?$rN???j?C[??R}???@8?(?T???????K?0Z????R?\>?o??loB??SUh????J??????,?R???c?????~^??(H???? '?1Aq??r?????R?;0K???!NX??L ?l?J?? q?$?b?}q??W?=?K#??h?s????????v6??,??LP???2??j?vWO?????T']???? ???-??{???9h????w???????=???J?:????I??[1jEI(i??????V????H?HjM1?~-?q%??(??0??Y *$D?B~l?IK??uRM??????zsUy4?? ?? ?2T???[?w?????!N??*\??z:_?????,'?)+???a;?G?:? ????j?I?Re?????U?ONa?R6?z z?YvC?????????? a??????`??qRc??bSKS?+E?7?e#c??%2J??U??) %NX%w W?#q????I????6?????vjLD?????6B ???YN?????=P?|?TVg&}[??????-?Q???}@?x?&Q e??PIr[?$?ime6?@??V?L??kN*g5?~???M?]IY?:`2?K??C?,[u ??#?'?????]??#6???'_?M?2?X.%??l?????> ?j5?????R?0?N8????%)&??| ?U??A?>?? 9???b?;??x J?e?d8?Z????`?{?????.T??z?5i?????Y:?Z???hP7?{?faAejn??K??u&??????J]?[???3*3?u?{)Q?Y?1???>r\???v K*/????p?M???s ???????A?;1!??0?K??)u??w?9?????w=EU??w?X9?L?????IZP?$ y?????????:???8???:??[9????1OS?Al???w?????(????[G?4}(X7???1???Z ??=???&??_?0?KT19?:?? ???bo ??_??!??HsRE?W????[????S-?,????? J???1+,?v?U$%,?\/?U???y??0???o0?M?T?1?V????m??="?v??X??l?n?571E\?7z??d?{\o??????C?m?%+Z?Z????7=!??:;98?+IU?Z??T??J$?????0?????4%??}?N?8?*?????)????5??45???'? 4?T&???u?n[? E??t????mO?]?Y?Lq??E?Ud???? ???Z???I??%w???c??C???+l?=k??/???xO?v????qa?q?G6of????$??? $s ????OK?Ca ???[?js?????u?IZ??:$HS?6?-Hh?5'??????mn?S1?????[?Q???m?/ 4H ?????5n???N???8? Yq? !#???{+?6_9f?m(???HB?X8?O2??y????H???xYT?H??_????{???N?Y6?s???FZ?dC???2fR?f??"??;?puRPt?5~??$???NXw:???q??x2??d????????p??8????r?e U>UmZs;?zPiHG??e)?T?Y?$C?+?Q????r ??~S./U?>U ??}???9??I?? 1I?P????U? C} ????e6????'' ?2???39??1 %L6???t?s?U ?H?4???2?A5??j???????6G??s????>9?Vt:Fj ??x*',?RU}E?:u??{5??c?{?nT?Hz6f??jo?X???w??%???`BE?=?[?e?2?]?33#??t???]j3?????????5??q?????Zl?V?K???**@;??c??? ???H5?r??A????_??h????)?S??"J?)$r??t^?k????D????P?E??>??Nrc???[SiOP;???'p=?z?S???1 OA??w?5?????Y??????!???b?????O??7q?G??|?Zj??!????BZ4?NZF?E????? ???I?U2Ma???1?zT?||?z}.??$,?w-}?oeu?W(?? 7An?,???3dP[???#?????_ut?h?3-W&f*?H????I???I??X?`{x?(4?????/gx?R3?ahW???RH?? _?????!36?b???O1?>J?lt??X?s?? ???????3$!E??????Wy???????O~?????????I "??v#????9?"ev?pY?????L???????#?*&????????t>?:???~!???X?????????h5j?9?K??? -?????q]FJ%7,?B?:?I? ?La*???B?a???v?GQ??@?9(j??m????,?????l?????FE???uW?>y2b?1?????|?!?T_?j??????$???=?? 2Z??F9k L??:~ez??????d?~????r:? ?r??@? ?2???S??J|Z?MDy?&?v:4?? ??F???T????pR?1s&???S??????{X~?]??]#.(>??(???q???4??p?-S_q }O??T???L,??~ ?7? ?????gW%3 ?R??SpLh?x%m??!???b??,S??-??????:?????????r??%FR]Lw?w ? |+???R?????Q??[ ?????.B3x???????_?B4?\?5? i???????)A ?)c????????v??a?)????AK?q??I??tT ?O??kIU???{U???F`?u??P?>??p%??(o O7 \$% ${???)??sY~U+?*?????lf?"? ??}<:?P??p%Gc??????d'2??? Y_????U??hm?s????AJAA?m? ?n?1?? ??-m?G?v?uPe??;&?\?Qu ????H??+??W????G????x;???? R ??{_xi&~?E???z )y??????P??+u|???????`c?|?l???c??Qe?J??pP??*J?I+?????u ?8???-?{?d_??????{z????55?-TV?f?`??M?)?Y??1???@rw?)????i?Y?? ]??)#???n??T4???>??????:z?!?r?q,?k}?C??? ??(??ECb3n???jW{[????-?Y???w-u7w>?b???? ????????????kM?W????tJ[6T????^?-?z?IBn.?M?,}'??1??$????????C?`?RI?n?????9??F^??l?Z?y??yD?{??f?&R???????????e????2???Y&???????U???? ?b;???k.???6"?N$T?C????V??q ) ??`G??6t|??(??wJ?K??}E?????H??kb?O?? ????x?Y??ad*???2????p?%?? ???2f_?[j?i???)hzB???{$m????B??????32?}???. ????7?q. p?TY??O???*Q??U{??????(?QV??s???4?#?????O.& ? RW??w?%??n-??M'U?q#?a?d??47R???9)?Q?p_}Z ??????)?0?Z???????#+Se??????? b??jZ0??%?W???p?Pqf??i?????`~????jG/???BR??I]??|A?G?Q??N???-??v??)?s? Y??u???/??4|???5U??s???????????E?/8?-??D????'|yi,(?:nl?H??T??R???C??????/??)???~?V@?al?d?2???S?Q???????1H?Q??)??^bpX,+?A????/??z ??uGB?G?[{??29???*?v?;{?Z????2?????6? ??7V???Ux?_[P???TJ??????h?d~?S????Z[?*?S?@Z?:J??P(6E???I??VR??+????C??b?:To?\v? ? ng????V???"6??d??????\[???i?dinFa??a?5 ???7mWE?=V?zA???F??Z{3??r?D??yI?????'W??W^?\?l ??fQXD???????|t?M???6?dM?^-? [?lU f?F??? ;?cYMsN?f?O???????[NC 6?T??[k)%+?lo?Qo??31??R??5]??VH?"u?$????*?????????g\W?U???J?O???(??a??????=ZG;Z?????????????B?1dIJ`8?R?7wX?o??s????Z?l?Z??w@9j??  _??J?D?7=&?i ?M2?*;E?H??Ub{J{???CVIH*?:+??3???U?e?Xm??? ??M??m?q1&??i* e???V???e$o??n??aq?w?f??? ??a???o-?c?M???b,q??^u,??? ?)7????I????- 6M?U+}?}?!?ZnBT???k??_[acY:???????F??mm?#K.?j???????6?%!,%I 7H??9???l?8?l?Y??V??>?%/??J??(|??????Hbv???.?.???Uae???e`7??"?bF??Zi)l?Ir???Q??+?3r??Ph/??i^?o?lm?|}?0?^?"M?r,??M???????0??!???/???{cU1qMQiT49-*7._??u???3|?? ??????m??????1?J???Z\*r?"?]?Te1I?El??P?4???$i????(???;??J????U????t???=i?R??Z??M?qu ?MUd?&?)nhR?????Oe'??Y??$)??SI????)Z?L????}1E??csY6???????q!j?'{?!??u uiN Jx7w"????????L?????S?)??iQ????d?fN?????$UR??U?I????\Y?sB?|??.?#?+ ^? z?BG@1[????>ZV?????i$??????P????? ?-?i?a?zW?????hT?F]?F??4G\8T?7-????1?@$w??v???HbD?F???qm?A?Zo{????ber??:&?HR???n???_??+?D?????(>???N 7k???!%???q???$w?2P?R??;=??P?????yIN??/???U?4E????~V?Xo??????\?%N=p? ??n9??:??B`?'r?6?????F@P???r?ea??'5K???[R.?z?????bl??%!q?J??ua???T????_Tvb??5????32iE??-?m?%E???Ro????!???G5?z??~?YZ?? ?b??????U?!iv-?;b??m??L???H??B#?lT?~??y???? (t???*???|?r ?aO?_|zZ??Z??h?l?gDx??T??2?? i\?T?6?$?????? ?? ??6?a.?B?]f?"J???=@??9O;C]31L???C? x??????b?'P2Ur,?}???K?????S8H???G???kt????'k???????S???R?E ????? ?(?I??????0u?????:o??1????Bn??pRm?? ":??????l;?? )? A)B~??]??AE????Q ?}???]p??oa|t?C???BT?CT?????????P?V??B??K ?qup?k??-?0K?_X????~?? iB?C???e?? ??6tL?d???J?u???R???|?K2$`??? ?.d???;:2, ?i"?N*??^?? Q?ZQ ?c????Do?2?%f??????b?57!??Qx!?R???????ou???OU?)_?K??2?-??y???.?R?Taq????v>.???????z ?Lj?-??????Zt??7K????TQT6??5??g[$?*?o???J??i??T??Ur??? I?.e|????????77??[?????Y?XMR??6: T??? ?q?C?!)t?*Z?!^????e?????????^?w???9J??)??@n;e??~??~;?<}?=??R????ZR!W?N?0:U]???t?HZ@-??*???U{?????M?U`???>1"????x?? ???3O.??t'??#?a?|k????? ?\?bb?????????2??|"B?4???????W%?H??m?????o???????????q??Bl???\ @?(?M??zcT?????C??Z??X+?S?#???`u2???P$+?Oa{?? ?a??????]??V?n????/a??C?:6???+G?R??MjuE?????8?ZR?6?J??? ???B?*???-?c???????+????_q??tal ?!?????lOr1jp?9b???<????]]> false
              2345298822864533504 5244160 Cross-domain script include http://caseyofhouston.com Information Certain
              If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
            • http://imgs.rare-escort.com/rare/t/main.js
            • http://www.google-analytics.com/urchin.js
            • ]]>
              Contact me here - 281-763-8032

              Caseyofhouston  

              HomeAbout MePhotosServicesRatesGiftsGuestbookReviewsCalendarFAQLinksContact

              Escort Contact
              ?

              ?

              Hello gentlemen

              You may call me direct at: 281-763-8032.

              ?

              Or you may leave me a message here, with your information, and I will get back to you ASAP!

              Phone: 281-763-8032

                 
               years
               Email   Phone call   Phone SMS  
              • Fields with * before are mandatory.
              • You will receive an email with the booking information for cancelation purposes. First please add @rare-escorts.com to your trusted friends or safe list, etc.

              eccie.net

              SitemapRSSAdd to My Yahoo!Add to Google Homepage or Google Reader !
              ]]>
              false
              9028767535129219072 5244416 Cookie without HttpOnly flag set http://longislanderotic.com Low Firm
              You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
            • ASPSESSIONIDSQACCASR=DKNLJKKBHGNKFAKBMEMDGEEM; path=/
            • The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
              Excessive bandwidth usage]]> false
              8441309947332152320 5244672 Session token in URL http://www.google.com Medium Firm
            • http://www.google.com/realtimejs?q=longislanderotic&hl=en&sa=X&tbo=1&tbs=rltm:1&prmd=ivns&ei=OEKrTcCZKYHVgQedgZ30BQ&polltype=mb&since=1303068640000000&sessionstart=1303068640000000&usg=020f
            • ]]>
              false
              3756876116206981120 5244928 Password field with autocomplete enabled http://www.facebook.com Low Certain
              The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
              autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
            • https://www.facebook.com/login.php?login_attempt=1&display=popup
            • The form contains the following password field with autocomplete enabled:
              • pass
              ]]>
              Login | Facebook
              ]]>
              false
              8212252707150136320 5243648 Cookie scoped to parent domain http://www.youtube.com Information Certain
            • use_hitbox=72c46ff6cbcdb7c5585c36411b6b334edAEAAAAw; path=/; domain=.youtube.com
            • VISITOR_INFO1_LIVE=O9CD7Ck_7Z0; path=/; domain=.youtube.com; expires=Tue, 13-Dec-2011 20:33:41 GMT
            • GEO=cb66ebe4391bcea8fd68efb98d6db6e1cwsAAAAzVVOtwdbzTatOpQ==; path=/; domain=.youtube.com
            • The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
              YouTube - Broadcast Yourself.
              Sort by:

              Search results for

              Alert icon
              We have updated the search options. Let us guide you through the changes.
              Sort by
              No video results for “”


              Queue (0) Return to active list
                1. Your queue is empty. Add videos to your queue using this button:
                  or sign in to load a different list.
                Loading...Loading...Saving...
                ]]>
                false
                8175513301306558464 5243648 Cookie scoped to parent domain http://pixel.rubiconproject.com Information Certain
              1. rpb=5328%3D1%265671%3D1%264212%3D1%262372%3D1%263810%3D1%262374%3D1%266286%3D1%266073%3D1%265852%3D1%264210%3D1; expires=Tue, 17-May-2011 23:45:00 GMT; path=/; domain=.rubiconproject.com
              2. put_1523=9QQxcTO5uH2Ia7Bk4vGS2S96ufOGsSDC; expires=Wed, 27-Apr-2011 23:45:00 GMT; path=/; domain=.rubiconproject.com
              3. The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
                false
                1369548465184707584 6292992 Robots.txt file http://clients1.google.com Information Certain
                The presence of the robots.txt does not in itself present any kind of security vulnerability. However, it is often used to identify restricted or private areas of a site's contents. The information in the file may therefore help an attacker to map out the site's contents, especially if some of the locations identified are not linked from elsewhere in the site. If the application relies on robots.txt to protect access to these areas, and does not enforce proper access control over them, then this presents a serious vulnerability.]]>
                false
                7228687720556504064 5244928 Password field with autocomplete enabled http://utopiaguide.com Low Certain
                The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
                autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
              4. http://utopiaguide.com/forums/login.php?do=login
              5. The form contains the following password field with autocomplete enabled:
                • vb_login_password
                ]]>
                UtopiaGuide - FAQ



                Go Back   UtopiaGuide
                Register FAQ Members List CalendarvBookieToplist Today's Posts

                Search FAQ Search FAQ
                Search Word(s):
                Matching Options:
                Search in:

                vBulletin FAQ

                All times are GMT -8. The time now is 12:31 PM.

                This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

                Powered by vBulletin® Version 3.6.8
                Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

                ]]>
                false
                2227450960695159808 8389632 Content type incorrectly stated http://spd.pointroll.com Information Firm
                In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
              6. Content-Type: text/plain
              7. The response states that it contains plain text. However, it actually appears to contain script.]]>
                =0)){if(h.indexOf('s')>=0){ta[ta.length]='SELECT'}if(h.indexOf('t')>=0){ta[ta.length]='INPUT'}if(h.indexOf('i')>=0){ta[ta.length]='IFRAME'}if(h.indexOf('o')>=0){ta[ta.length]='OBJECT'}if(h.indexOf('e')>=0){ta[ta.length]='EMBED'}for(i=0;i0){clearTimeout(prto)}prto=setTimeout('prTease()',Math.abs(prtd))}else{setTimeout('prBegin()',100)}}function prTease(){if(prta==1){prtg=2;prPanel(0,prtz,prbg,prbs,prbo,prtit,prtc,priw,prih,1,1,praa,prpid,prpo,prao,prcs);prtg=1;if(prtd<0){prmh=praa}if(prtt>0){setTimeout('prEnd()',prtt)}else{setTimeout('prtg=0;prta=1;prtz=0;prmh=0;',2000)}}}function prEnd(){if(prtg>0){prad=0;if(proo==0){prNoDisp(1)}prtg=0;prta=1;prtz=0;}}function prInit(z,bg,bs,bo,t,c,w,h,i,a,po,ao,td,tt,s,cs){if(typeof(prpsi)!='undefined'){clearInterval(prpsi)}if(prta==1){prup=0}if(prxx.indexOf(z)<0){prxx+=(z+',');if(s!=''){prCache(s)}}if((td!=0)&&(prtz==0)){prtz=z;prbg=bg;prbs=bs;prbo=bo;prtit=t;prtc=c;priw=w;prih=h;prpid=i;praa=a;prpo=po;prao=ao;prtd=td;prtt=tt;prcs=cs;prBegin()}else if(td<0){prBUp(z,'visible')}} function prPanel(r,z,bg,bs,bo,ti,txt,iw,ih,np,pp,adid,pid,pop,aop,cs,ce,mw,mh){if((prgo==1)&&(prmh!=adid)){prad=1;if((prup!=pid)||(prz!=z)){var n=aop.length,d=parseInt(aop.substr(n-1,1)),o=aop.substr(n-2,1),e='1',q='pi',u=0;if(n>2){e=aop.substr(0,1)}priw=parseInt(iw);prih=parseInt(ih);prz=przo;if(prup!=0){if(prz==z){q='pr';u=prup;if((u<0)&&(prmh<0)){pid=-pid}prNoDisp(0)}else{if(prxs){prPush(0,-1*prGet("PushOffset"));}else{prNoDisp(1)}}}if(prids.indexOf(',')>=0){var ids=prids.split(',');for(var i=0;i0){if((o==0)&&(prbf==0)){proo=o;clearTimeout(proto);proto=setTimeout("prRoll()",250)}else{prbf=1;proo=1;clearTimeout(proto2);proto2=setTimeout("prbf=0;proo="+o.toString(),150)}prad=0}else{proo=o;if(o==0){clearTimeout(proto);proto=setTimeout("prRoll()",250)}}}function prBUp(z,v){var f=document.getElementById('prflsh'+z);if(typeof(f)!='undefined'){f.style.visibility=v}}function prBOut(e){prad=0;clearTimeout(proto);proto=setTimeout("prRoll()",250)}function prBOver(z){if(prz!=z){clearTimeout(proto);prRoll()}prad=1;prz=z}function prBExit(e){prad=0;clearTimeout(proto);proto=setTimeout("prRoll()",250)}function prBTStart(){pr_trk('pi',Math.abs(prup),0);}function prBTStop(){pr_trk('pu',Math.abs(prup),0);}function prNoDisp(t,o){if((prsw==1)||(o)){var z=prz;if(typeof(prpsi)!='undefined'){clearInterval(prpsi)}var v,m=document,p=m.getElementById('prf'+z),y=p.style;prsw=0;prmh=0;prBUp(z,'visible');y.visibility='hidden';eval("if(typeof(prHide)=='function'){prHide('visible',prhd"+z+",prff)}");p.innerHTML='';p.style.clip='';if(t>0){prz=z;pr_trk('pu',prup,0)}prtg=0;prup=0;if(prpc=='2'){prClBtn(0)}}} function prDo(r,z,bg,bs,bo,ti,txt,np,pp,pe,d,o,e,cs,mw,mh){var s;if(bg=='$NONE$'){bg='';prff=1}else{bg=' BGCOLOR='+bg;prff=0}s='
                ';if((bg!='')||(bs>0)){s=s+'
                '+txt+'
                '}else{s=s+txt}s=s+'
                ';var i,fw,fh,m=document,v=m.getElementById('prf'+z);eval("if(typeof(przz"+z+")=='number'){v.style.zIndex=przz"+z+"}");eval("if(typeof(prHide)=='function'){prHide('hidden',prhd"+z+",prff)}");v.innerHTML=s;i=m.getElementById('prinner'+z);v.style.left='-400px';v.style.top='-400px';fw=i.offsetWidth;fh=i.offsetHeight;if(fw==0)fw=i.offsetWidth;if(v.style.clip!=''){v.style.clip='rect(0,'+fw+','+fh+',0)'}ppos='prPos('+r+',"'+z+'",'+np+','+pp+',"'+pe+'",'+fw+','+fh+','+d+','+o+','+e+','+cs+');';prPos(r,z,np,pp,pe,fw,fh,d,o,e,cs);prsw=1;} function prPos(r,z,np,pp,pe,fw,fh,d,o,e,cs){var m=document,opl=0,opt=0,bb=false,op='a',fb=0,a=m.getElementById('pradi'+z);try{if(a.offsetParent.id=='prtrans'){fb=1}while(!bb){op=op+'.offsetParent';bb=eval(op+".tagName=='BODY'");if((fb==0)||(!bb)){eval('opl+='+op+'.offsetLeft');eval('opt+='+op+'.offsetTop');}}}catch(e){}var p=m.getElementById('prf'+z).style,oL=a.offsetLeft+opl,oT=a.offsetTop+opt,iw=priw,ih=prih;var dh,dw,cT,cL,s1,s2,sA,sB,q,t,t1,t2,ti,tp,w1=0,w2=0,wb,hb,aL=oL,aT=oT,jst=0,z=0,k=0,sx='no',fx=prpf.charAt(0),fy;dh=window.innerHeight;hb=dh-17;dw=window.innerWidth;wb=dw-17;cT=m.body.scrollTop;cL=m.body.scrollLeft;if(d<4){s1=aT-cT;s2=dh-s1-ih;sA=aL-cL;sB=dw-sA-iw;q=ih}else{s1=aL-cL;s2=dw-s1-iw;sA=aT-cT;sB=dh-sA-ih;q=iw}if(o=='1'){if(d<4){aT=aT+ih;q=(-ih)}else{aL=aL+iw;q=(-iw)}}else{if(fw<=iw){wb=dw}if(fh<=ih){hb=dh}}if(d<4){t=aL;ti=iw;tp=fw}else{t=aT;ti=ih;tp=fh}if(typeof(cs)!='undefined'){t1=t+cs;}else{t1=t+((ti/np)*(pp-1))}if(e=='4'){t=t1}else{t2=t+ti;if(tp>ti){jst=((e=='3')?((sA>sB)?2:1):(parseInt(e)))}else if((t1+tp)>t2){jst=2}if(jst==0){t=t1}else if(jst==2){t=t2-tp}}if(d<4){aL=t;k=5;if(((d==1)&&(s1>s2))||(d==3)){aT=aT-fh+q;z=1;k=4}}else{aT=t;k=6;if(((d==4)&&(s1>s2))||(d==6)){aL=aL-fw+q;z=1;k=7}}if((prpf!='')&&(fx!=' ')){fy=prpf.charAt(1);var xx=(((wb/5)*(parseInt(fx)-1))+((wb/5)/2))-(fw/2)+cL;var yy=(((dh/5)*(parseInt(fy)-1))+((dh/5)/2))-(fh/2)+cT;if((fx==1)||(fx==5)){if(xx-cL<2){xx=cL+2}else if((xx+fw)>((dw+cL)-24)){xx=(dw+cL)-fw-24}}if((fy==1)||(fy==5)){if(yy-cT<2){yy=cT+2}else if((yy+fh)>((dh+cT)-24)){yy=(dh+cT)-fh-24}}aL=xx;aT=yy;}if((prup<0)||(prpc=='1')){if(typeof(window.onresize)=='undefined'){window.onresize=prAutoSize}if((typeof(prajx)=='undefined')||(prajx==0)){if(typeof(prpsi)!='undefined'){clearInterval(prpsi)}prpsi=setInterval(ppos,50)}}p.left=aL+'px';p.top=aT+'px';p.visibility='visible';}function prAutoSize(){eval(ppos);} function prReveal(o,w,h,x,y,a){var v,l,t,i,r=w,b=h;if(x){l=x;r+=l}else{l=0}if(y){t=y;b+=t}else{t=0}document.getElementById('prf'+prz).style.clip='rect('+t+'px '+r+'px '+b+'px '+l+'px)';if(typeof(a)=='undefined'){a=o}if(o){prrv=1;v='hidden';i=8999}else{prrv=0;v='visible';i=8998}if(a){prActivity(i)}eval("if(typeof(prHide)=='function'){prHide('"+v+"',prhd"+prz+",prff)}");}function prClose(){setTimeout('prNoDisp(1)',100)}function prPin(){prpc='1'}function prUnPin(){prpc='0'}function prDelayedPin(a){if(a){prActivity(a)}setTimeout('prPin()',1000);}function prRoll(e){if((prsw)&&(prpc=='0')&&(prad!=1)){if(proo==0){prNoDisp(1)}}}if(!window.prRefs){window.prRefs={}}function prSet(n,v){if((typeof(n)!='undefined')&&(typeof(v)!='undefined')){window.prRefs[n]=v}}function prGet(n){if(typeof(window.prRefs[n])!='undefined'){return window.prRefs[n]}else{return null}} function prOpenPanel(p,a){var mo,co,ro=document.getElementById('p'+prz+p+'prareaid');if(ro){prpot=0;if(typeof(ro)!='undefined'){mo=(ro.onmouseover);co=(ro.onclick);if((mo!=null)&&(typeof(mo)!='undefined')){ro.onmouseover()}else if((co!=null)&&(typeof(co)!='undefined')){ro.onclick()}}}else if(prpot<3){setTimeout('prOpenPanel('+p+','+a+')',200);prpot++;}}function prGoPanel(p,a){var po,mo,co,r="document.getElementById('p"+prz+p+"prareaid')";eval('po=typeof('+r+')');if((po!='undefined')&&(prup!=0)){if(a>0){pr_trk('pa',1,a)}if(a<0){prmh=-1}else{prmh=0}eval('mo=('+r+'.onmouseover)');eval('co=('+r+'.onclick)');if((mo!=null)&&(typeof(mo)!='undefined')){setTimeout(r+'.onmouseover();prad=0;',100)}else if((co!=null)&&(typeof(co)!='undefined')){setTimeout(r+'.onclick();prad=0;',100)}}}function prBeacon(s){var bc=new Image(1,1);bc.src=s}function prGetTime(){return (new Date()).getTime()/1000;}if(typeof(window.prObj)=='undefined'){window.prObj={};for(var i=0;i0)?"&t="+prObj[prz].int:"")+"&r="+Math.random();if(a>=0){prRetar(q,iid)}if(typeof(pr_trk.callback) == "function"){pr_trk.callback(q, 1, prz, c);}}catch(e){}}function pr_trk(q,o,c,x,n){if(o!=0){var p=prup,nn='',z=prz.substr(0,8)+'-'+prz.substr(8,4)+'-'+prz.substr(12,4)+'-'+prz.substr(16,4)+'-'+prz.substr(20,12);prInteract(q, o, prz, c);if(typeof(n)!='undefined'){nn='&n='+n}try{var prtr=new Image(1,1);prtr.src="http://t.pointroll.com/PointRoll/Track/?q="+q+"&i="+z+"&o="+o+"&c="+c+"&p="+eval('prpi'+prz)+"&u="+p+nn+((prObj[prz].int>0)?"&t="+prObj[prz].int:"")+"&r="+Math.random();if(c>=0){prRetar(q,prz)}if(typeof(pr_trk.callback) == "function"){pr_trk.callback(q, o, prz, c);}}catch(e){}prInteract(q, o, prz, c);if((x!=1)&&((q=='pc')||(q=='ac'))){setTimeout('prNoDisp(0)',500)}}}function prRetar(q,z){var hi,ex,cm,e='';eval('hi=typeof(prhi'+z+')');if(hi!='undefined'){eval('hi=prhi'+z);if((hi==0)&&((q=='pi')||(q=='pu')||(q=='pa')||(q=='ba'))){e='3';}else if((q=='pc')||(q=='ac')){e='4';}if(e!=''){eval('prhi'+z+'=1');eval('ex=typeof(prrtex'+z+')');if(ex!='undefined'){eval('ex=prrtex'+z);eval('cm=prcm'+z);var tpx=new Image(1,1);tpx.src='http://ads.pointroll.com/Retarget/?campid='+cm+'&exp='+ex+'&evtid='+e+'&r='+Math.random();}}}}if(typeof(prPost)=="function"){prPost();}]]>
                false
                5331593515329977344 5244160 Cross-domain script include http://www.findalternative.com Information Certain
                If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
              8. http://resources.infolinks.com/js/infolinks_main.js
              9. ]]>
                lessons of passion dating sim guide index2.php index.php - Find Alternative
                    
                Advanced Search - Preferences
                We were looking for pages containing the term lessons of passion dating sim guide index2.php index.php 50 pages were found (0.0001 Seconds)

                Did you mean: lessons of passion dating Sim guide index Phip index Phip?

                lessons of passion dating sim guide index2.php index.php - Find ...
                We were looking for pages containing the term lessons of passion dating sim guide index2.php index.php: 50 pages were found (0.0001 Seconds)
                www.findalternative.com/search/lessons-of

                lessons of passion dating sim guide index.php - Find Alternative
                lessons of passion dating sim guide index2.php index.php... We were looking for pages containing the term lessons of passion dating sim guide index2.php index.php...
                www.findalternative.com/search/lessons-of

                lop2 sim cheats : images - web - videos | ZapMash
                lessons of passion dating sim guide index2.php index.php - Find ... lop2 sim cheats: images - web - videos | ZapMash Find images, web links, videos and more on lop2 sim ...
                www.zapmash.com/lop2-sim-cheats.html


                Ecommerce components com_sitemap sitemap.xml.php -
                lessons of passion dating sim guide index2.php index.php - Find ... www.frontlinelk.com/site/ Ecommerce-components-com_sitemap-sitemap.xml.php Galaxy Angel Sim Date RPG ...
                www.frontlinelk.com/site/Ecommerce-components-com_sitemap-sitemap.xml.php


                cdrenvelop Hotfile Rapidshare Megaupload FileServe & Torrents
                ... perfect tour guide ... indexphp index2.php | index2 php option ckforms itemid sk i click.php | kameha tribute to dragon ball | lessons of passion dating sim tori 500 | audio ...
                www.heroturko.org/c/cdrenvelop

                walkthrough lesson of passion esd xt : images - web - videos | ZapMash
                Lesson of Passion ESD XT; lessons of passion dating sim guide index.php - Find Alternative Lesson of Passion: ESD XT Dating Sim s Need to brush up on your dating skills? ...
                www.zapmash.com/walkthrough-lesson-of-passion

                Galaxy Angel Sim Date RPG - The Geek Forums
                Description: Yet another manga dating sim game. Never can get enough can we? ... I've found a walkthrough guide. It lists 25 secrets. Here is the list of screens ...
                www.the-geek.com/db2/index.php?showtopic=3325&view=getla...


                LoZ - Simdate RPG
                Lesson of Passion: ESD XT Erotic sim date featuring Arie Giovanni! ... Dating Sims Need to brush up on your dating skills? Try these saucy ...
                www.newgrounds.com/portal/view/375926

                acim dating
                erotic dating sim games compare dating sites for ... christian youth lesson on dating online emo chicks ... datingfun com s masturbation guide nursing home spouses dating
                sueltaent.com/forum/index.php?topic=576.0

                Lets Meow Meow Minna de Nyan Nyan eng - dating sim Hotfile ...
                ... Com,Lets,Meow,Meow,Minna,de,Nyan,Nyan,eng,-,dating,sim ... option sectionex controller 2ph index2.php index3.php | sectionex component option co indexphp index3.php | ...
                www.downarchive.com/dl/Lets+Meow+Meow+Minna+de+Nyan+Nyan+eng+-+da...

                This time Haiti: Exceptional America to the rescue, again ...
                ... are karrine and lil wayne dating dating guide ... from dating pick up lines lesson of passion online dating ... cyrus dating status elf girl sim dating rpg ...
                www.loudountimes.com/index.php/blogs/article/this_time_h...

                Digital Hotcake Wedding Essentials rapidshare, megaupload, torrent ...
                Digital Tutors - Beginner's Guide to CINEMA 4D ... As your passion for great photography grows, ... php option rokdownloads view .. .php index2.php ... index.php index ...
                www.darelease.com/11e/dl/Digital+Hotcake+Wedding+Essentials

                Smokyo - Gaijin Pot
                Thursday 08:30-13:00 (4 lessons) Friday 09:00-15:30 (4 ... Training: Provided Material and monthly guide ... boxes, kanji T-shirts, English-translated PC dating-sim ...
                www.smokyo.com/index.php/index.php/

                Megatokyo Forums -> Favorites Of All Time (and Why)
                ... to a T. Hitomi is a fine heroine whose efforts, though small and personal, guide the ... The lessons taught are usually good ones, but the consequences for the sinful or ...
                forums.megatokyo.com/index.php?showtopic=1691093&view=al...

                Runway - Kiss Clips
                A step by step guide on how to kiss. thanks for watching ... how to kiss a woman how to kiss a girl kissing lesson pick ... Tags: hothowtos kissing someone dating first ending goodbye bye ...
                www.cnjianqing.com/index.php?key=Kiss+Clips



                More Results:   1  2  3  4 >>

                  English  Latviski  Slovenian
                Sponsors Area   Query Archive
                Add Firefox Search Plugin Now!
                Privacy Policy
                Find Alternative
                ]]>
                false
                2339769285303287808 5244416 Cookie without HttpOnly flag set http://www.google.com Information Certain
                You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
              10. PREF=ID=0772c9d5ef13aaaf:U=d212295d0f1573ee:FF=0:TM=1303071569:LM=1303071854:S=-12yg0SrBzdFcgP0; expires=Tue, 16-Apr-2013 20:24:14 GMT; path=/; domain=.google.com
              11. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                GoogleScreen reader users, click here to turn off Google Instant.
                ]]>
                false
                8348215869316384768 8389120 HTML does not specify charset http://www.lessonofpassion.com Information Certain
                In most cases, the absence of a charset directive does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
                charset=ISO-8859-1.]]> 404 Not Found

                Not Found

                The requested URL /comlink.swf?username=&quest= was not found on this server.
                www.lessonofpassion.com ]]>
                false
                6788934274822795264 8389632 Content type incorrectly stated http://www.democracyforums.com Information Firm
                In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
              12. Content-Type: image/gif
              13. The response states that it contains a GIF image. However, it actually appears to contain a JPEG image.]]>
                ??C     ??C   ??KK??  ??7!1Aa"Q q?B???#23&????????? ?????s?Z??????|6uv??~??k6??2.?S??5?(?????3??? ???c?.v??1P?%t5?D;?????D????;+B;y?I9??:M????W??I??|??E1TY\U!\? T?x?}????_???e?r?VV???4???)?U3o?=?I?8?q? <`????C?/6;U%??J ?I??:??$??0|v??a???????^??????Jc#??s?Z?????X??????T?E?Aw^??_n?##?3?t?rEG-???r ?'?????i???)O;?=N}?x? r???????t?D%???? Z?????C$??TQ:??r?t???H?T!? ?r>???$?-'??????\7??m??Z??V?QAGO)%a I)???3???< _z ?p ?????4 q??F???Kw(# N1???????????zh2-|F?Y$Y??T?9?d ?tC??N7?I???}?`?UVR??\?1CQM0b$???xp?r0G@C???????}??????q?,t?U?? t???f??p3?bI ??? ???B??[i???????,?C]w??$?z?Q?;`?{G9?s?~???`??????????OSe?R*??I????????p???9?d???????????,j????????3?>?}tR?#?x??8Gxp?o????fV?::??5??J???z*X?^z?V4Q???@?4_???^???6???u?S=l2+G??4U?i_??/H?H!??<???4?#?!$?n~pt?F???p??O????)????+3L?????x? ?A???7u??????D?c ?$?; ??wZ???Bp?i|? ??????P??????z??????A?mU??A?K?!?????s???zZy? ?>?????4?Q!J??J??2C0?A???Wr"\???l??o?G54? ???y ???m?QJ?%?????c????W???6?i9?g?mD???Y?????$ 1!?0?????h??2????????c?Fx???Q???????M??]]> false
                2673838827895849984 5243648 Cookie scoped to parent domain http://ak1.abmr.net Information Certain
              14. 01AI=2-2-E075F76EB644DD5063923E3115877F11B67FD76E1F46AE1DD96CCB566E1D9E22-34A279EF7E52D93381FE4915B11068D508A3AC2E73FB2278E85F42A6697A3137; expires=Mon, 16-Apr-2012 23:36:54 GMT; path=/; domain=.abmr.net
              15. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                false
                494571340911328256 2097920 Cross-site scripting (reflected) http://ad.turn.com High Certain
                The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

                Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

                The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
              16. Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
              17. User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
              18. In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
                89157"><script>alert(1)</script>2e66a4fc9a4 was submitted in the fpid parameter. This input was echoed unmodified in the application's response.

                This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
                2e66a4fc9a4 HTTP/1.1 Host: ad.turn.com Proxy-Connection: keep-alive Referer: http://tap2-cdn.rubiconproject.com/partner/scripts/rubicon/emily.html User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 Cookie: adImpCount=CMHOO7uf_udLLq9eGtJ3PdQJcQ_K22BQHXQ-dT6incxd6ISB_q_vS5rapRhLZ6kjvFBMD_r71JCvgjjawylbas-n3UVMoc2HfetiqdcGK7-MifLpV7fqak3Dns_efbQIZw0xnwcn-ju7SUW_27p2BuIIvMb-MRyDgs7z-nEGMqA; fc=NVeBshHSVnoUxhcixGrBhDuuhRKDd8vnh1xheKiYPKd3AL7Gx9Az1OHn7o3KNmBFGJEeoEGIaoMAXW2vTWlmm73wc-cQ7FRKnITKYzO3zYV52dhK4dSErN9-EcLOAtq0; pf=pdEodDKRQncnfsbhMkHepg5DGCQ18I8JWnp-qTHvZFsPkNaW3X0pm_fQ4RfYGdhSpTBAM4oF9IkquHFs0_EGjDJsK7mjf-D1y3j2WAHvG04; rrs=undefined%7Cundefined%7C3; rds=undefined%7Cundefined%7C15082; rv=1; uid=2931142961646634775 ]]> ]]> false
                4946025424809852928 5244160 Cross-domain script include http://internet.theonlynews.com Information Certain
                If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
              19. http://pagead2.googlesyndication.com/pagead/show_ads.js
              20. ]]>
                Internet News|Blogging News|Copywriting News

                Among the Wounded: Navy Corpsman Anthony "Doc" Thompson – Dallas Morning News


                Dallas Morning News

                Among the Wounded: Navy Corpsman Anthony "Doc" Thompson
                Dallas Morning News
                In Internet Explorer, go to Tools / Internet Options. Check the "Delete browsing history on exit" box. Select "OK." If you are using Internet Explorer 7, make sure Phishing Filter is turned off by going to Tools / Phishing Filter / Turn Off Automatic ...

                and more »

                Samsung eyes sale of hard-disk-drive unit: report (Reuters)

                NEW YORK (Reuters) - Samsung Electronics Co may be looking to sell its hard- disk-drive business for $1.5 billion, the Wall Street Journal reported on Sunday.
                Share With Friends: Share on FacebookTweet ThisPost to Google-BuzzSend on GmailPost to Linked-InSubscribe to This Feed | Rss To Twitter | Internet - Top Stories News, RSS Feeds and Widgets via Feedzilla.

                Abundant locally, Internet cafes create controversy statewide – Gainesville Sun

                Internet cafes that offer cash-prize sweepstakes have proliferated across Florida in recent years, raising the ire of critics who say the establishments amount to gambling parlors that cause trouble for communities. HOW THEY WORK Cafes sell Internet time ...

                How To Be Rich (It’s Not What You Think) (twistimage)

                **Episode #249 of Six Pixels of Separation - The Twist Image Podcast is now live and ready for you to listen to.** If you don't take what you do at work very seriously, Tim Sanders has some thoughts for you. Tim is the former Chief Solutions Officer at Yahoo! and later their Leadership Coach. Since he left Yahoo!, Sanders has been on a journey to become a modern day Napolean Hill or Dale Carnegie. Through the digital channels, speaking and his three best-selling business books (Love Is The Killer App, The Likeability Factor and Saving The World At Work), Sanders is on a mission to make every person - everyday - really think about their purpose and what they're bringing not only to their work, but to the world. HIs newly published book, Today We Are Rich, is meant to foster and develop complete confidence in everything that you do. It's a powerful read and it was a pleasure to catch up with Tim again. If you need a push, this is for you. Enjoy the conversation... **You can grab the latest episode of Six Pixels of Separation here (or feel free to subscribe via ...
                Share With Friends: Share on FacebookTweet ThisPost to Google-BuzzSend on GmailPost to Linked-InSubscribe to This Feed | Rss To Twitter | Internet - Blogging News, RSS Feeds and Widgets via Feedzilla.

                XXX domain names go live (Theregister.co.uk)

                #### Finally, pr0n comes to the interwebs The first .xxx web addresses have gone live on the internet, almost 11 years after the extension was first proposed.???
                Share With Friends: Share on FacebookTweet ThisPost to Google-BuzzSend on GmailPost to Linked-InSubscribe to This Feed | Rss To Twitter | Internet - Top Stories Stories, RSS and RSS Feed via Feedzilla.

                Internet can be a playground for predators – Zanesville Times Recorder

                Sometimes the things that have affected us personally are the hardest things to write about. They expose our vulnerability. But while they involve a great deal of personal disclosure, they also can hold a great deal of benefit for others. So the life ...

                Last updated at 3:59 PM on 17th April 2011 – Daily Mail


                New York Daily News

                Last updated at 3:59 PM on 17th April 2011
                Daily Mail
                Members of an Internet sex forum hatched a 'revenge' plot against one of the 'Craigslist ripper' victims, just weeks before she went missing. Online messages show that Amber Lynn Costello was threatened by an angry client eight weeks before she ...
                Internet sex forum wanted 'revenge' vs. Long Island hooker later murdered ...New York Daily News

                all 3 news articles »

                Internet can be a playground for predators – Zanesville Times Recorder

                Sometimes the things that have affected us personally are the hardest things to write about. They expose our vulnerability. But while they involve a great deal of personal disclosure, they also can hold a great deal of benefit for others. So the life ...

                Microsoft to Push IE9 to Windows Users This Week – eWeek


                MSN Tech & Gadget UK

                Microsoft to Push IE9 to Windows Users This Week
                eWeek
                Microsoft will begin offering Internet Explorer 9 via Windows Update, likely in order to rapidly increase adoption of its new browser. Microsoft plans to start pushing Internet Explorer 9 to Windows 7 and Windows Vista users via Windows Update, ...
                Windows Update Will Push IE9; IE10 Will Snub VistaHard OCP
                Windows Update Will Push IE9; IE10 Will Snub VistaNewsFactor Network
                Internet Explorer 10 Won't Run on VistaInfopackets
                GSMArena.com
                all 50 news articles »

                Internet can be a playground for predators – Zanesville Times Recorder

                Sometimes the things that have affected us personally are the hardest things to write about. They expose our vulnerability. But while they involve a great deal of personal disclosure, they also can hold a great deal of benefit for others. So the life ...
                ]]>
                false
                7286823977432775680 8389632 Content type incorrectly stated http://media-cdn.tripadvisor.com Information Firm
                In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
              21. Content-Type: text/html; charset=iso-8859-1
              22. The response states that it contains HTML. However, it actually appears to contain plain text.]]>
                false
                1170455403894461440 5243648 Cookie scoped to parent domain http://www.theeroticreview.com Information Certain
              23. GUID=21749C0A0449234AAD6C633C19DACD1F; domain=.theeroticreview.com; path=/
              24. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                Object moved

                Object Moved

                This object may be found here. ]]>
                false
                4494607476455108608 5243904 Cross-domain Referer leakage http://www.lessonofpassion.com Information Certain
                If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

                You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

                Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

                Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
              25. http://www.lessonofpassion.com/user.php?type=register
              26. The response contains the following links to other domains:
                • http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js
                • http://www.3dgirlfriends.com/?t=110138,1,53,0
                • http://www.google-analytics.com/urchin.js
                • http://www.playforceone.com/
                • http://www.sexizu.com/
                ]]>
                Lesson of Passion - erotic flash games


                Username   Password  

                If you want to post comments and gain access to special features please your account.
                New Player registration

                Welcome to Lesson of Passion CLUB.

                Username


                Password


                Password confirmation


                E-mail


                Country


                ]]> false 8343849202411918336 5244160 Cross-domain script include http://www.freeforums.org Information Certain
                If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
              27. http://www.statcounter.com/counter/counter.js
              28. ]]>
                *No-Ads Special* Free Forums - FreeForums.org - Create a free forum in minutes!
                Free Forums #1 Free Forum Hosting
                #1 Overall
                FreeForums.org is one of the most used services online, and the #1 free forum host.
                Moving your forum?
                Please read our transfer page if you have an existing forum with another host.
                Customizable
                Customize your free forum to fit your needs with 170+ styles & 60+ languages.
                99.9% Uptime
                We keep your free forum online so it's always there when you need it.
                High Security
                We give you the tools to keep your forum safe and secure.
                24/7 Support
                We offer free 24/7 support via support forum and email.
                Millions of Users
                FreeForums.org is trusted by millions of forum users each month.
                Backups
                We take daily backups of your forum to ensure your data is always safe.
                Room to Grow
                We host both small and large forums. There's no forum too big!
                Optimized Servers
                We use the latest technology with our servers, and optimize them for our forums.
                No-Ads Special
                For a limited time create a free forum and receive 30 days free ad-removal for your forum.
                Proprietary Software
                The Free Forum System runs on state-of-the-art, proprietary software.

                Free Forum:
                Forum Features
                Why FreeForums.org
                Create a free forum
                Help Center:
                Knowledge base
                Support Forum
                Contact Us
                Site Map
                FreeForums.org:
                About us
                Our Blog
                Advanced Hosting
                User Testimonials
                Forum Leaderboard
                Free Forum News:
                Upcoming Ad Changes
                New Feature Release
                FreeForums.org Turns 4
                Loading Speeds Improved!
                New "Falling Snow" Mod Installed
                New way to suggest features/mods
                "You don't even know, before freeforums.org I had used over 20 other free Forum hosts. FreeForums.org has held up to the reputation it received by some of my friends who refereed me to this wonderful forum host!"

                - Nate R.


                © 2011 FreeForums.org | About FreeForums.org | Advertising Opportunities | Legal | A member of the Crowdgather Forum Community
                ]]>
                false
                8422148539649589248 5243648 Cookie scoped to parent domain http://ib.adnxs.com Information Certain
              29. uuid2=2724386019227846218; path=/; expires=Sat, 16-Jul-2011 23:36:59 GMT; domain=.adnxs.com; HttpOnly
              30. uuid2=2724386019227846218; path=/; expires=Sat, 16-Jul-2011 23:36:59 GMT; domain=.adnxs.com; HttpOnly
              31. icu=ChII3I4BEAoYAyADKAMwm_Ot7QQQm_Ot7QQYAg..; path=/; expires=Sat, 16-Jul-2011 23:36:59 GMT; domain=.adnxs.com; HttpOnly
              32. acb204812=-@L6D208WM[w[5$%64(.k9SHp?enc=4Zf6eVORzD9MNEjBU0jIPwAAAMDMzPw_TDRIwVNIyD_hl_p5U5HMP-qzkpsou8BkSsYda6b2ziWbeatNAAAAAMVYAwAdAgAApgEAAAIAAACLSgMAk8AAAAEAAABVU0QAVVNEACwB-gBWHwAAxA8BAgUCAAUAAAAADCeYAgAAAAA.&tt_code=1626909&udj=uf%28%27a%27%2C+6376%2C+1303083436%29%3Buf%28%27c%27%2C+51148%2C+1303083436%29%3Buf%28%27r%27%2C+215691%2C+1303083436%29%3B&cnd=!2xcJawjMjwMQi5UNGAAgk4EDKAAxMrHrw1WRzD9CEwgAEAAYACABKP7__________wFCCwi2VBAAGAAgAigBSAFQAFjWPmAAaKYD; path=/; expires=Mon, 18-Apr-2011 23:36:59 GMT; domain=.adnxs.com; HttpOnly
              33. uuid2=2724386019227846218; path=/; expires=Sat, 16-Jul-2011 23:36:59 GMT; domain=.adnxs.com; HttpOnly
              34. anj=Kfu=8fG5EfCxrx)0s]#%2L_'x%SEV/hnKD-GW_55dWhK/!!svq; path=/; expires=Sat, 16-Jul-2011 23:36:59 GMT; domain=.adnxs.com; HttpOnly
              35. The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
                ');]]> false
                9021674580370679808 5244160 Cross-domain script include http://arrangementseekers.com Information Certain
                If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
              36. http://assets3-cdn.establishedmen.com/javascripts/signup_alt.js?fdb3564b113e96804353bcba1360e920ffa9ab9f
              37. ]]>
                Arrangement Seekers

                Intimacy with a Twi$t.

                & years old

                ]]>
                false
                1837073641545600000 3145984 Cleartext submission of password http://utopiaguide.com High Certain
              38. http://utopiaguide.com/forums/login.php?do=login
              39. The form contains the following password field:
                • vb_login_password
                ]]>
                UtopiaGuide - vBookie



                Go Back   UtopiaGuide
                Register FAQ Members List CalendarvBookieToplist Today's Posts

                Welcome to the Bookie! Bookie News & Events
                Welcome to the Bookie! To place bets in the Bookie you will need to register
                News & Events
                vBookie installed! 11-22-2007

                Currently showing OPEN Events. Switch to Events
                ItemGroupStatusAddedOpen UntilPayouts After


                vBookie v1.0.7
                Copyright 2004 Daren "Rico" Chandisingh
                A Respawned! production.
                All times are GMT -8. The time now is 12:32 PM.

                This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

                Powered by vBulletin® Version 3.6.8
                Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

                ]]>
                false
                6988738540994287616 8389120 HTML does not specify charset http://www1.xxxmatch.com Information Certain
                In most cases, the absence of a charset directive does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
                charset=ISO-8859-1.]]> Free Sex, Free XXX, XXX Sex, Online Personals Site, Online Dating Site, Adult Personals, Adult Dating - XXXMATCH.COM

                Login to xxxmatch.com!

                To login to xxxmatch.com, please fill in your username and password in the form below and hit submit.
                If you are not a member of xxxmatch.com please Click here to create a new account.

                login
                ]]>
                false
                7431853838846990336 6292224 Private IP addresses disclosed http://static.ak.fbcdn.net Information Certain
                Discovering the private addresses used within an organisation can help an attacker in carrying out network-layer attacks aiming to penetrate the organisation's internal infrastructure.]]>
              40. 10.138.17.184
              41. ]]>
                ?ED??e?Y??,y????????~E?H+???_???jS?A??AL??????d?''<]?v?9??????+Blm??~X?/??????r9h;?0????h??????8?w??X?????k?2?[?|?8?5?-????x0?;???}? ?=??\?m??-o?&???p??p???F,??7r????n?+???+??N??*n??2?????y;/?\ ??!?2\?^?"??e?S?YV4CY%/m????;r%?mo???+?_is????O??o? ?&?t???a??ms??=????0???????9W??"? false
                8183555403602909184 2097920 Cross-site scripting (reflected) http://www.lessonofpassion.com High Certain
                The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

                Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

                The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
              42. Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
              43. User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
              44. In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
                831ae<script>alert(1)</script>d9bccb5f332 was submitted in the category parameter. This input was echoed unmodified in the application's response.

                This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
                alert(1)d9bccb5f332 HTTP/1.1 Host: www.lessonofpassion.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 ]]> Lesson of Passion - \'\"--></style></script><script>alert(0x000146)</script>831ae<script>alert(1)</script>d9bccb5f332 erotic flash games


                Username   Password  

                If you want to post comments and gain access to special features please your account.
                \'\"-->831aed9bccb5f332 games
                ]]> false 349827238580938752 5243904 Cross-domain Referer leakage http://www.google.com Information Certain
                If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

                You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

                Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

                Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
              45. http://www.google.com/url?sa=t&source=web&cd=8&ved=0CDYQFjAH&url=http%3A%2F%2Futopiaguide.com%2Fforums%2Fshowthread.php%3Ft%3D32750%26page%3D22&ei=jUmrTe7NIsbJgQep7-HzBQ&usg=AFQjCNGBn8qpAEFw1Xq2cBc-H_LopMFmGw
              46. The response contains the following link to another domain:
                • http://utopiaguide.com/forums/showthread.php?t=32750&page=22
                ]]>
                302 Moved

                302 Moved

                The document has moved here. ]]>
                false
                3887945247471762432 2097920 Cross-site scripting (reflected) http://ads.pointroll.com High Certain
                The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

                Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

                The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
              47. Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
              48. User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
              49. In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
                8c5a2"%3balert(1)//0df7023e2f1 was submitted in the flash parameter. This input was echoed as 8c5a2";alert(1)//0df7023e2f1 in the application's response.

                This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
                ")]]> false
                5717643753992740864 5243904 Cross-domain Referer leakage http://googleads.g.doubleclick.net Information Certain
                If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

                You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

                Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

                Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
              50. http://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-4063878933780912&output=html&h=90&slotname=2510184792&w=728&lmt=1303100911&flash=10.2.154&url=http%3A%2F%2Fxss.cx%2Fexamples%2Fdork%2Fsql-injection%2Fsql-injection-dork-xss-lessonofpassioncom.html&dt=1303083093828&bpp=3&shv=r20110406&jsv=r20110415&correlator=1303083093839&frm=0&adk=1607234649&ga_vid=2035248877.1303083094&ga_sid=1303083094&ga_hid=31544906&ga_fc=0&u_tz=-300&u_his=4&u_java=1&u_h=1200&u_w=1920&u_ah=1156&u_aw=1920&u_cd=16&u_nplug=9&u_nmime=44&biw=1079&bih=1016&fu=0&ifi=1&dtd=16&xpc=l5mZ9aXMcA&p=http%3A//xss.cx
              51. The response contains the following links to other domains:
                • http://pagead2.googlesyndication.com/pagead/abglogo/abg-en-100c-000000.png
                • http://pagead2.googlesyndication.com/pagead/sma8.js
                • http://www.google.com/url?ct=abg&q=https://www.google.com/adsense/support/bin/request.py%3Fcontact%3Dabg_afc%26url%3Dhttp://xss.cx/examples/dork/sql-injection/sql-injection-dork-xss-lessonofpassioncom.html%26hl%3Den%26client%3Dca-pub-4063878933780912%26adU%3Dvulnerability.scan.qualys.com%26adT%3DOnline%2BVulnerability%2BScan%26adU%3Dwww.appliedtrust.com%26adT%3DWeb-App%2BSecurity%2BJobs%26adU%3Dwww.SpearTip.net%26adT%3DDigital%2BForensics%26gl%3DUS&usg=AFQjCNGm6QYnGGKQmQR-daCCfSeeU5yUHQ
                ]]>
                • Online Vulnerability Scan Online Network Vulnerability Scan. Try our Free Online Scan Today! vulnerability.scan.qualys.com
                • Web-App Security Jobs Work/Live in Boulder - fun web app security position w/ great benefits www.appliedtrust.com
                • Digital Forensics Embezzlement - Fraud - Collusion Former Legal/Governmental advisors www.SpearTip.net
                Ads by Google
                ]]>
                false
                4093140998039957504 5244160 Cross-domain script include http://www.adminfusion.com Information Certain
                If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
              52. http://edge.quantserve.com/quant.js
              53. http://partner.googleadservices.com/gampad/google_service.js
              54. ]]>
                AdminFusion
                28,493 Total Members
                70,481 Forum Threads
                340,875 Forum Posts
                0 Users Online Now
                Thumbnail

                Patrick O???Keefe is the founder of the iFroggy Network, a network of websites covering various interests. He has been managing online communities since 2000 and is the author of ???Managing Online Forums,???... 

                Read the story »
                LATEST THREADS
                POPULAR ARTICLES
                RECENT ARTICLES
                Thumbnail Interview with Sanjay Sabnani

                Many of you have read Sanjay’s posts on AdminFusion, but may not know a lot about his background in the world of forums. I thought it... 

                Thumbnail My experience at ForumCon

                As people trickled in the room, I was looking for name badges of people I met online. Julian from Viglink introduced himself as we had conversed... 

                Thumbnail vBulletin partners with Skimlinks to help forum owners monetize their content

                Skimlinks, a UK advertising startup, has announced a partnership with forum software developers vBulletin to integrate its innovative affiliate... 

                Thumbnail [Contest Winner] The Community Blueprint

                Hi I’m Chris Mooney, I want to share with you my experiences with setting up, developing and marketing your community. I’ve worked... 

                Thumbnail The Importance of Forums

                With the rise of social media many people have claimed that forums are becoming obsolete, a relic of dial-up Internet in the late 1990s. But... 

                Thumbnail TheForumCon conference is coming. Are you going?

                There is a conference next month that is geared for forum owners, community managers and people with forum expertise. Some exciting companies... 

                Thumbnail Win an iPad with AdminFusion!

                AdminFusion are holding a contest to win a FREE iPad just in time for the Christmas/New Year Holiday! All you need to do to enter is to be a... 

                Thumbnail INTERVIEW WITH MIKE WILT, FOUNDER OF NINJA POST

                We recently had the opportunity to conduct an interview with Mike Wilt of Ninja Post. We invite you to learn more about this exciting new development... 

                Thumbnail XenForo - Has the vBulletin killer arrived?

                Background In 2002, vBulletin brought on Kier Darby during the development of version 2.0 By December 2002, Darby had taken over as lead developer... 

                Looking for something?

                Search our community forums:

                Visit our other communities

                A few highly recommended forums...

                Archives

                All entries, chronologically...

                ]]>
                false
                8739714011473930240 5244416 Cookie without HttpOnly flag set http://caseyofhouston.com Low Firm
                You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
              55. PHPSESSID=9c427f4c538ed5c84467b8adec1aca52; path=/
              56. The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                My Escort Reviews

                Caseyofhouston  

                HomeAbout MePhotosServicesRatesGiftsGuestbookReviewsCalendarFAQLinksContact

                Escort Reviews
                Reviewer: SHOTSONGOAL (13-Apr-2011)
                Saw the provider on backpage and her long blonde hair caught my eye. Read that she was originally from Texas and is visiting LI for a little bit. She is thin, blonde, and looks like a pleasant southerner. Called, left a message, then she called back and I was directed to the usual escort hotel in that area. Classic 2 call system as I received the room number on the 2nd call. Knocked on the door and it was opened by a thin, blonde, beautiful woman in a white dress.
                Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1087986
                Reviewer: IAMKVOTHE (02-Apr-2011)
                I did a search and found nothing (surprisingly) for Casey. This is my first review so I hope this will help fellow members. She was well reviewed on TER and has a personal website so I took the plunge. I called her and got voicemail. She called back and we were set for an hour later. She sounded sweet and professional on the phone. I called again once off the exit to get incall spot (at a nice clean hotel), then once more while in the parking lot to get the room number. When she opened the door, I was pleasantly surprised. She is very good looking and her photos, while accurate, makes her look a lot older and taller. She is about 5'6" with long dirty blonde hair and a great spinner body. She greeted me warmly in a short white dress. I put the donation on the table while having a couple laughs with her, then we were off to the races! We started with a good CBJ to get things warmed up. Perfect combination of rhythm, suction and hands. Once I was ready, we switched to Mish. She was extremely tight and felt amazing! We then discussed Greek and she said she is just starting, but "we'll try" for an additional 75. We went slowly for a while and had mild success but ended up abandoning the endeavor. We changed covers and proceeded with Mish, CG, and finished with a great CBJ; she cleaned up with a hot towel. We chatted for a bit while I dressed. She is intelligent and the southern accent is perfect. I mentioned bgfe to her and hopefully she'll be joining as a provider here soon. She is currently on BP: http://newyork.backpage.com/FemaleEs...ng-26/17674627 Looks: 8 - she's younger and prettier than her pics Body: 7 - nice spinner body with A-cups Attitude: 10 - very pleasant, intelligent, and accommodating. Cleanliness: 10 (she is a smoker, but the room does not smell) Rate: 225/hr + 75 for Greek (hopefully she gets more practice so the next time will be a true trip to the islands) Services: CBJ, Mish, CG, Greek (+75) (YMMV on this service). I did not go for LFK/DFK or DATY Repeat: Yes once she has more experience with Greek Casey, if you read this, thanks for a great time!
                Source: http://www.bestgfe.com/forum/showthread.php?186069-TOFTT-Casey-Of-Houston-currently-on-BP
                Reviewer: MOONMAN1 (01-Apr-2011)
                Have seen reviews of Casey and most are positive. My first choice had canceled so I was looking for back up plan. Must say Casey was a good alternative. Easy to set up the appt. There was some light screening. She will not discuss services on the phone so do not ask. Got to the hotel and when the door opened there was an attractive young blonde. She indeed does look better than her pics. Light kiss and hug and some light talk. She asked for the donation and I left the envelope on the dresser. She did count it and I guess that's OK. She said get undressed and lay down on the bed.
                Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1085153
                Reviewer: DACRITIC (31-Mar-2011)
                I had seen pictures of Casey on backpage and wondered about meeting her. Checked out her review (TER 143871) and they looked good. Decided to make a late call and she was only able to meet for a half hour. Met her at her hotel and the pictures are well representative of her looks. She is very thin, and I prefer more curves, but she had a cool attitude. Decided to go ahead and have some fun.
                Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1082663
                Reviewer: bergenbob38 (30-Mar-2011)
                First of all, I'm new here. New to the area too. Have seen several girls in Jersey but only a few on the Island.   Saw Casey's ad on BP and checked out her website at caseyofhouston.com.  Definately worth the trip.  Friendly and easy going.  Great BJ, covered but great.  Full service made it a good choice.  Seconds are available too.
                Source: http://www.longislanderotic.com/longislanderotic/forum/forum_posts.asp?TID=2437
                Reviewer: TRIGGER (26-Mar-2011)
                Recently, I am kind of discouraged with the Amps, so I have decided to go the escort route. I saw her advertisment on BP and based on her photos I wasn't impressed. I decided to do some research and found out that she has great reviews on other boards. She is a small, petite blonde with small tits. Personally, I like big-titted women. but I guess let me try her out based on the reviews. It's a two-call screening process. When she is in town, she hosts in Nassau, near the LIE. Anyway, I get to the room, and I was like supe happy. She is very cute and has a nice body. She greets me and we hug and I am grabbing hert ass. It was heaven! We chatted a bit as I got comfortable and then proceeds to give me a nice back rub to make me relax. Afterwards, she gave an excellent CBJ, that I couldn't hold any longer and was in ecstasy. I was worried that I was done after 1 pop. She said let's try for round 2. Gentlemen, I am closer to 60 than 50 and wasn't sure if I could. Well, little trigger did stand at attention, but I couldn't spew forth l*** from the volcano. However, it was a nice dry run. She doesn't allow coming on face or licking of the balls, but her personality, Texas accent and technique were great. 1hr $225 with MSOG possible. Unfortunately, according to her website (google caseyofhouston) it's nothing personal but she doen't partake in dark chocalate. Therefore, If you want to upgrade to the escort level, she's a good bang for the $$.
                Source: http://www.utopiaguide.com/forums/showthread.php?t=44783&highlight=CASEYOFHOUSTON
                Reviewer: WIZZWHIG (18-Mar-2011)
                Was looking forward to meeting Casey for awhile here on Long Island, NY - finally got a chance today and called. She picked up and we were able to arrange a mutual time to get together. Called to confirm and got the location and a few screening questions, another call for the room and up I went. Glad I did - her photos did her no justice - she is gorgeous - but better - she has a personality to match. Great conversation, great attitude and a great experience with her. She made me feel comfortable like we were old friends. Will be looking for a repeat visit. Nice kiss upon leaving too from this sweet gal!
                Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1081084
                Reviewer: COSTUMED1 (23-Feb-2011)
                I saw Casey on Back Page, and saw that she had excellent reviews here on TER. Because of what I saw and read, and because she is from out of town, I thought there was no way I would be able to get an appointment with this tomato. But she picked right up when I called and I set up the time I wanted, a little afternoon delight a few hours later at 2 pm. Which means there's a lot of guys out there who are really missing out! She's very friendly on the phone ( and with an adorable Texas accent that gets your motor running just talking to her!), just asked a few questions and we set up the time - easy! When I got to her hotel, she gave me the room number and also detailed instructions of how to get there - very cute and helpful. And hearing her voice on the phone again - I couldn't wait to get up there. She opened the door, wearing a thong and cammie kind of thing, and I thought - those guys on TER were right, her pictures do not do her justice. She seems a lot taller and sleeker in her pictures than she is. But more than that, in the pics, she seems kind of hard - nothing could be farther from the truth. She is the sweetest, softest little piece of heaven you can imagine. Non VIPs, let me just say this - I was on for an hour, but I wasn't there even fifteen minutes before I was asking how much for an extra half an hour. I knew this was not going to be quick. More to come, for VIPs...
                Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1072139
                Reviewer: EROTICTHRUST (15-Feb-2011)
                Just happen to be in Houston on business and needed some R&R during the trip as it was getting a little stressful. Upon going through some of the TER reviews I came across Casey and based on her info and reviews decided to give her a shot. Emailed her my info and exchanged info, upon my arrival gave her a call and had a very nice conversation, as she has one of those welcoming southern accents. Although she showed up a half hour late due to traffic she called ahead and was very apologetic. Once she showed up at my door I was not disappointed as she looks better in person than her pics. Non VIPâeTMs if you are ever in Houston I defiantly recommendâe¦VIPâeTMs read on.
                Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1070877&user=0
                Reviewer: thomas1960 (23-Jan-2011)
                Reviewer thomas1960 Review Date 1/19/2011 Visit Date 1/17/2011 On Time : Perfect Visited At Houston, TX Rating : Best of the best Overall Attitude : Passionate, outgoing Appearance Overall Appearance : Super Model Accurate Photo : Yes Accurate Profile : Yes Tattoos : One Age Range : Late 20's Body Type : Tight & toned Grooming / Hygiene : Immaculate Dress : Sexy Details Friendliness : Very friendly Temperament : Extremely attentive Personality : Wild Child Conversation : Great conversationalist Motivation : Loves her job Encounter What type of encounter did you have? Private time Was this your first experience? Yes Did your encounter go as expected? Yes, everything was perfect Was the time with your companion reasonable priced? Rates were consistent as quoted What will you remember most about your experience? Wonderful in all ways. Would you see again? Definitely
                Source: http://www.escorts.com/review/198871/198871
                Reviewer: MNSCMAN (20-Dec-2010)
                Called Casey around 8:00pm and made appointment for 10:00pm. Very comfortable with coming to my room once I told her I was member of TER and had read some of her reviews. She did call me in my room to verify our converation. Casey prides herself on being punctional so called to say she would be 10 minutes late because of parking problems. Arrived in very tight jeans and tight red sweater that showed off her nice thin body. She checked the donation and suggested we get comfortable.
                Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1052167
                Reviewer: BRUSHFIRE (03-Dec-2010)
                I discovered Casey on TER. She had good reviews so I decided to give her a call. She does a good job of screening and doesnâeTMt waste any time. She arrived at my place right on time. I like girls but I really like punctual girls. Casey is tall and thin, nices ass, small tits and a nicely trimmed snatch, the photos are accurate. She was wearing a blouse and tight blue jeans. After an exchange of pleasantries we both got undressed. (I recommend)
                Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1045585
                Reviewer: absolut (22-Nov-2010)
                Review: Casey made her case for GFE -------------------------------------------------------------------------------- Date: Sun Provider: CaseyOfHouston Phone: 281-763-8032 Email Address: - URL / Website: http://www.eccie.net/showthread.php?t=128548 City: Houston State: Texas Address: BW & 59S Appointment Type: Incall Did the Appointment take place at the agreed-upon time?: Yes Activities: LK, disrobed, NE, FK, SE, DATY, BJ, MPCFS, clean up, conversation, random repeat Session Length: 1 hr Fee: 200 Hair Color and Length: LONG blond with streaks, to middle of back Age: 2x Smoking Status: I Couldn't Tell Ethnic Background: White/Caucasian Physical Description: Casey is about 5-8, maybe 100# soaking wet, THIN spinner, model thin, not anorexic thin IMHO. Dazzling eyes, perfect smile that will charm the pants of you. A-cup with very responsive nipples. Some marks on a FLAT tummy, absolutely no problem for me. Marks of motherhood denote a REAL WOMAN. Recommendation: Yes
                Source: http://www.eccie.net/showthread.php?t=131733
                Reviewer: BBS3469 (16-Nov-2010)
                I read some of Casey's reviews before deciding to finally see her. The first time I called her she got nervous and hung up on me. I tried again from a different number and after a couple of light screening questions and checks she agreed to come to my hotel near the Houston Galleria. Took her about half an hour to arrive. She arrived dressed in jeans, nice heels, a nice black top and matching black jacket, looking sexy as hell but not attracting too much attention. She looks youthful and attractive and her smile is really warm and welcoming, made me relax the minute I saw her. Non-VIPs she's a real nice girl...
                Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1042332
                Reviewer: Bigdog5475 (03-Nov-2010)
                Date: 11-2-2010 Provider: Casey Phone: 281-763-8032 Email Address: - URL / Website: http://caseyofhouston.rare-playmate.com/ City: Beaumont State: Texas Address: Notel Appointment Type: Incall Did the Appointment take place at the agreed-upon time?: Yes Activities: CBJ, HJ, CBJ, CG, Frog, Mish Session Length: 1 hour Fee: 200 Hair Length and Color: Past Shoulder, Blonde with Black streaks. Age: 26 Smoking Status: I Couldn't Tell Ethnic Background: White/Caucasian Physical Description: Her photo's make her appear to be very tall but in person she is a small petite woman. Breast A cups. Small tat on her lower stomach and one on her lower back but not destrating. Recommendation: Yes
                Source: http://www.eccie.net/showthread.php?t=122323
                Reviewer: GENT1 (05-Sep-2010)
                Called Casey when I made it to town. Saw her on backpage and her reviews. She was easy to make the appointment with. Very friendly. She called when she was on her way. Ance she got there I was amazed at how beautiful this girl is.... Stunning is the only word that comes to mind. She has a great witty personality and knows how to make you feel at ease. After a little small talk we got comfortable. WOW! Non Vips yes, yes, yes... Vips read on....
                Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1017645
                Reviewer: GREYGOOSE2000 (01-Sep-2010)
                Casey looks as hot in person as her photos. Long blonde hair, tight body and a great ass. The session was Non GFE but I still had a good time. I would recommend her because she is hot and she is reasonably priced.
                Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1015918
                Reviewer: crzybull5912 (01-Sep-2010)
                Date: 8-25-10 Provider: Casey Phone: 281-763-8032 Email Address: URL / Website: http://beaumont.backpage.com/FemaleEscorts/8786449- www.caseyofhouston.rare-playmate.com City: Beaumont State: Texas Address: Notel, College street/I10 Appointment Type: Incall Did the Appointment take place at the agreed-upon time?: Yes Activities: She met me at door, room dimly light nice and cool. Wow, first impressions, a beautiful girl. Easy to talk to, very good personality. conversed during almost all of the activities you see here except when she had a mouth full. CBJ, DS, FDAU, CFS, sitting up position with her on my lap facing me, then standing up, then placed her on the bed on her back, put her ankles next to her ears and worked that for a while, then rolled her on her side, spread legs apart with one over my shoulder til finish. Session Length: 1 hr Fee: 200 Hair Length and Color: Middle of back, Blonde with Black mixed, matches pictures. Age: Mid 20's Smoking Status: I Couldn't Tell Ethnic Background: White/Caucasian Physical Description:A spinner, her pics make her appear taller than she is. I would say ad portrays accurate stats. Very beautiful girl, even better looking in person. Petitie, small tits, nice nipples with good size areola around them, they are real too, sagging some but just my type. Shaved Kitty, a couple of small tats from what I remember but not distracting obviously. Has that kind of sexy face you like to watch when tending to business. Recommendation: Yes
                Source: http://www.eccie.net/showthread.php?t=90698
                Reviewer: METROJAY1 (05-Aug-2010)
                After seeing her ad on backpage, I googled her and found her on Eros, TER, and her own personal website. Everything seemed good so I called her. She had a few screening questions and we made the appt. When I arrived at her location I called again to get the room number. Non VIP's - this girl is hot. VIP's read on.
                Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1006687
                Reviewer: brwalker240 (23-Jul-2010)
                Easy to set the appointment. On time and very welcoming. I got there and we started talking. She was very personable and relaxing. Once we broke the ice we got busy. She was very accommodating and well worth it. Specific Details : She was dressed very hot with tight jeans and a tight top. Her face looked beautiful. She has a great accent and is a sweet talker. We got naked after about 5 minutes and she gave me an awsome CBJ. I then went down on her and she came. She then returned to CBJ and I had multiple pops.
                Source: http://www.escorts.com/review/168206/Great
                Reviewer: CHITOWNPIMP (10-May-2010)
                Casey's Eros ad caught my eye and I gave her a call. I did some research and she has reviews on other sites as well. She was very pleasant over the phone and we setup a time for later in the day. Once I arrived, Casey was ready to go.
                Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=977917
                Reviewer: INER (23-Apr-2010)
                I was in Houston for the night and was lonely. When she arrived at my hotel I knew right off that I had made a good decision in calling her. Casey is an intelligent friendly down to earth beauty. Her understated good looks and outgoing personality made me feel at ease immediately. As she began to disrobe she asked me to get more comfortable.
                Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=972773
                Reviewer: STVBA (19-Apr-2010)
                I called and set up an outcall for later on that night at my hotel. She showed right on time after she called about 20 minutes out. I was stunned when she walked in. Gorgeous...the pictures do nothing for her. She is stunning. Tight little jeans and t-shirt. We had a little small talk, took care of the donation and got undressed. Non-VIP's, will definitely repeat.
                Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=971637
                Reviewer: Soldierboy18 (16-Mar-2010)
                Visiting town on business, saw Casey's ad and read her reviews and got very interested. She was incredibly nice and friendly on the phone, scheduled an odd-hour appointment on short notice. Once she showed up, I was glad I called her - she is even hotter in real life than in her pics. Non-VIPs I recommend, for the rest of you read on.
                Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=960450&user=0
                Reviewer: iner1 (24-Feb-2010)
                General Details : Met Casey through this site. She is a intelligent friendly down to earth beauty. When she arrived at my hotel I knew right off that I had made a good decision in calling her. Specific Details : Her understated good looks and outgoing personality made me feel at ease immediately. As she began to disrobe she asked me to get more comfortable. She has a good figure but it was her personality that immediately turned me on. She began by caressing me between my legs and then began what was one of the best cbj's I have ever had. So good in fact that I blew my load much sooner than I had expected. She was surprised and said she was sorry because she had much more in mind. Her attitude and attentiveness makes me want to call her the next time I am in Houston.
                Source: http://www.escorts.com/review/141153/Great-experience
                Reviewer: wade1966 (11-Feb-2010)
                Casey was very easy to book an appointment with and came to my hotel right on time. She looks stunning and is such a young attractive thing. She reminded me of the babyitter from next door. After a little small talk she gave me a CBJ that is one of the best I ever had. She has a very small kitty and I loved giving her treats down there. Then we did many different positions. She is very athletic and really knows how to satisfy a man. I high ly recommend her and will have to see her again next time I am in Houston.
                Source: http://www.escorts.com/review/139292/What-a-hottie
                Reviewer: MIKEE (16-Jan-2010)
                Have been eyeing Casey for quite a while but I have my regulars and most times I try something new has been a real disappointment. Now Im pounding my forehead for being such a dumb-ass! This lady was outasight! Great personality! Great tight little body and an even tighter... If you dont enjoy seeing her, you are probably dead.
                Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=941236
                Reviewer: dsblinder (12-Jan-2010)
                Title : Sweet Southern Lady Reviewer : dsblinder123 Review Date : 12/31/2009 Visit Date : 12/30/2009 Visit Length : 1 Hour On Time : Yes Meeting Location : Escort's Hotel Visit : Provided Agreed Upon Time Visited At : Houston, TX Rating : A cut above Overall Rating : Average General Details : I called her and she answered with a sweet southern accent. After a quick screening process she told me where to meet her.
                Source: http://www.escorts.com/review/132953/Sweet-Southern-Lady
                Reviewer: dsblinder (11-Jan-2010)
                When I called Casey and it was easy to get hold of her. She answered and asked a few questions and I told her I was p411 she sounded relieved. She got all my info and set up the appointment and told me she would call about 30 minutes before and tell me where to meet. I met her at her incall hotel and when I first saw her she looked so much better than her pictures. She checked my ID for her safety and then we went into the room.......VIP's read on
                Source: http://www.theeroticreview.com/reviews/show.asp?id=143871
                (only for escort private view)

                eccie.net

                SitemapRSSAdd to My Yahoo!Add to Google Homepage or Google Reader !
                ]]>
                false
                2884116271210661888 5243648 Cookie scoped to parent domain http://d.p-td.com Information Certain
              57. uid=3706692347515356359; Domain=.p-td.com; Expires=Fri, 14-Oct-2011 23:37:30 GMT; Path=/
              58. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                false
                3533167595323783168 5244416 Cookie without HttpOnly flag set http://pixel.rubiconproject.com Information Certain
                You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
              59. rpb=5328%3D1%265671%3D1%264212%3D1%262372%3D1%263810%3D1%262374%3D1%266286%3D1%266073%3D1%264210%3D1%265852%3D1; expires=Tue, 17-May-2011 23:51:33 GMT; path=/; domain=.rubiconproject.com
              60. rpx=5328%3D11319%2C0%2C1%2C%2C%265671%3D11319%2C0%2C1%2C%2C%264212%3D11319%2C0%2C1%2C%2C%266286%3D11319%2C0%2C1%2C%2C%262372%3D11319%2C0%2C1%2C%2C%263810%3D11319%2C0%2C1%2C%2C%262374%3D11319%2C0%2C1%2C%2C%266073%3D11319%2C0%2C1%2C%2C%264210%3D11319%2C0%2C1%2C%2C%265852%3D11319%2C0%2C2%2C%2C; expires=Tue, 17-May-2011 23:51:33 GMT; path=/; domain=.pixel.rubiconproject.com
              61. put_2101=8218888f-9a83-4760-bd14-33b4666730c0; expires=Tue, 17-May-2011 23:51:33 GMT; path=/; domain=.rubiconproject.com
              62. The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
                false
                4440814242646775808 5243648 Cookie scoped to parent domain http://www.google.com Information Certain
              63. PREF=ID=0772c9d5ef13aaaf:U=d212295d0f1573ee:FF=0:TM=1303071569:LM=1303071852:S=AYepXKyoLFAyEbmZ; expires=Tue, 16-Apr-2013 20:24:12 GMT; path=/; domain=.google.com
              64. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                false
                8327577924401243136 5243648 Cookie scoped to parent domain http://img291.imageshack.us Information Certain
              65. is_uuid=f87bb4c294ef4e01a8980438aab3bd57; expires=Thu, 31-Dec-37 23:55:55 GMT; domain=.imageshack.us; path=/
              66. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                ELRY`gnu|???????????????? &/8AKT]gqz???????????? !-8COZfr~?????????? -;HUcq~????????? +:IXgw????????'7HYj{???????+=Oat??????? 2FZn???????  % : O d y ? ? ? ? ? ?  ' = T j ? ? ? ? ? ? " 9 Q i ? ? ? ? ? ?  * C \ u ? ? ? ? ? & @ Z t ? ? ? ? ?.Id???? %A^z???? &Ca~????1Om????&Ed????#Cc????'Ij????4Vx???&Il????Ae????@e???? Ek???*Qw???;c???*R{???Gp???@j???>i???  A l ? ? ?!!H!u!?!?!?"'"U"?"?"?# #8#f#?#?#?$$M$|$?$?% %8%h%?%?%?&'&W&?&?&?''I'z'?'?( (?(q(?(?))8)k)?)?**5*h*?*?++6+i+?+?,,9,n,?,?- -A-v-?-?..L.?.?.?/$/Z/?/?/?050l0?0?11J1?1?1?2*2c2?2?3 3F33?3?4+4e4?4?55M5?5?5?676r6?6?7$7`7?7?88P8?8?99B99?9?:6:t:?:?;-;k;?;?<' >`>?>??!?a????@#@d@?@?A)AjA?A?B0BrB?B?C:C}C?DDGD?D?EEUE?E?F"FgF?F?G5G{G?HHKH?H?IIcI?I?J7J}J?K KSK?K?L*LrL?MMJM?M?N%NnN?OOIO?O?P'PqP?QQPQ?Q?R1R|R?SS_S?S?TBT?T?U(UuU?VV\V?V?WDW?W?X/X}X?YYiY?ZZVZ?Z?[E[?[?\5\?\?]']x]?^^l^?__a_?``W`?`?aOa?a?bIb?b?cCc?c?d@d?d?e=e?e?f=f?f?g=g?g?h?h?h?iCi?i?jHj?j?kOk?k?lWl?mm`m?nnkn?ooxo?p+p?p?q:q?q?rKr?ss]s?ttpt?u(u?u?v>v?v?wVw?xxnx?y*y?y?zFz?{{c{?|!|?|?}A}?~~b~?#???G??? ?k???0?????W????????G????r???;????i???3?????d???0?????c???1?????f???6????n????????z???M??? ?????_???4??? ?u???L???$?????h???B????????d???@????????i???G???&????v???V???8????????n???R???7???????u???\???D???-???????u???`???K???8???%???????y???h???Y???J???;???.???!?????? ?????z???p???g???_???X???Q???K???F???A???=???:???8???6???5???5???6???7???9???"?ne??++??????,.???]??#?????N?x????N?)?A6H;???'???????e??YH???NWH<7^1?$`?w??2:??)??s???+??e BR?????? ???=^?????W???5 ?HFy?J? q?c?'u?lnUQ?yNH? H?s??^???]I?0??Q??????89?s?^:????????????????719'???(??R ????4????;?8?DY?_??1? ??r$?F?s??,L? 1???7??? ?xX???I?????<[??_? ~??k???K?u?{{??????'?)j???77r??> ?"\?\ ?Z?g8?M6??NM-~%??nQO??`kQj?j??Xo9NKo??_???[??I8??h?rl?? '=?{??S?k???$?E???6?G???_?_?i?k? ?=??wz7???? ?595k????]:?t??u???d??%???'?4????????[??,???_? s?????#C????Y???????:$?*??_S?5???X?qe5?????0???S??x96??(9?J)_??\??????ciN1??????"?<>b???j4??????Q?Wi???Y?+????L??? n]g???2??? i??i?????????4??????]?fHR{?cf?O????:????z???????M???{8o?&?L2????>?r#c??????e????r??7h??????mR?emyg?j?Z?v0?????s?b?|T???mt??e?? J7????EW??{???r"??I? ?21???n?&=??x' ? g#?8??J??3????*???Y?@,?Y???crG%wn?Q?LWzv? ??????r??????\?EG?^x#??}?5%v&?M;?KV??Q? B?C`?p([?=??IU?????(? #0 ??dk?J5???g??>J??m_[]X?AQ?????E[??9+b=???:W?wu????;?S????? ~??G??_ o&3???o?,G??>??L?l? Y?+ _?????u?????????Yh???c????$@5???.???#?????\? ?T? ?????#???xj?t??Z4#?G?$?????m8??c9s?^?q?S?{A'v??????=$????h?????q??o???????????a%???????????/???????? .?????{K??h???????????.?????|?????????????o????UCE}??l?K???=??????Q???=?????5]? .??|???_????G??????????TQw?,?}???{??_??????o????UCE}?K???=?????4????ffm?7%?#?????V_?(?{???l?????????:+,?H???9???wzI??H???H/M? ??s??#?J??O????cxS??0~R????z? 6??W*^ ??~R?eU?d?N0r1????5???n?k?^?w??Q????6???????\#n?????8 ~s????J?]e?1?\?/2.>Q??>A??N????Z$???-??q??Q???K??/?L??r3^??Gmiok??+.?>v???`u>?????8?^?w]m????t??8JQ?q?=;i??c??l??????7"P??8???"?E?cG ??3?jF?eO?????:?????=???l+E,?Q?('?1?o??>??????:;Yv?$?1??????:*?dO?l?vWo?_h??!????(?>f??]F*?+??i?!??5{]???x?/?X?>?9?S???????6?&?v?j???U?I?[?w7 $Q???Y???????a(?p?agf??j???[](?????>?(?Q?0S?b"?^J-s-%)????[??Ns??.7v????? ????>???o?????"?m??????%??}?O???????q.?)??m.M??Ov??in?O???????????m????\ i??V?E1?%???mN???m??B???T??+?qG$1G???[????x?H^??;{-?????g??T??????? z*???~?????)Y-?-???{?H?????R]??L????t7?m?Z???=?$?$h????L???tBB6???FQeY|???? ,??Wq??v???Z?"??s???g6?f??/?s??U?2??Z???)????????b?U????/?~#?u?|U?/.??`|1??1{}o?XK????????ci&?m?`?K??%I8???K?f?????????????u'?5??;???f??????wwt????Zr?"@??G????????G?f?????SW????4]#I?u;KK=u|C??Eu??&??i4?Q?[F?H?L?nm?[??????~??u??'???_?zd?&?m:?j]?e>???j???#I?y7?.|?? ???p4?upS?*51r????%K??QJ3???????)N?U?S?3???oh???*??S?luxR????3O??L?i??;?.??\???_?C??(????%?~'??k? ?"?_??C?-??'???l?i_!??mm????Cai5???k??jv+Cg ???????????.,?y????D?????)i]?W?y ?P??? 5?%???????'????????S????h????U? ?p??0???J?x?C?P?T?[f??e?M2gX??}?Y?????1???????? ?-t?+?????y]Z??7 e??>e?Oi??u5k.??I[?bh?K?>.????W???p? & ?*q?!?>v?;?nI)Z???y??Y?#?????2??r??q?S?V?k??_#?????O????>1? ??+? ??>|Z?A}?]a%?~$|0?l|{g?%{m/????1???U?`??? w???e?d??J???Q?_???? t??#T???)? ?+F?????>$?S??? "?|1????????z_????\?+LE??E?p .?????????s??????t?n???U?????? ???D??????;h?+???WP0?&N??=?B? ???????z????????o?mh?> |O?S?k??|S???????o??~'x3[?? ???????Zl??{??X?X?_???????yI%*?F"?*??Zu???,F???5g???.?_?????\??>4x??O????D??`???????|b??e?j?\?~)???????]?????i2??F4??7??p?-? ?|J???(??|i??~"????????????g????????^7???ox?6?4????????4?[X????Z??u9?+o?o? ?-?7???l??4??????$? ?H????j??#C???o/???|X??????U???i>+?)????@x??_???'\?5??? ?\x?;??&?6j???j_??A?k???N?+??0x?r???? Z?O?6???g?"? ??Z???'??)lf?????????_3,?'???~M?K'?)??U?#?N?I?*V??????N????'I??WO M???|?? ?kR?AV??$???ME?)7?????I???t??AO?????????9M???;?????cC??|??k???S?b?????VZ???i?4]2??^?/??ka????{??Z??WO*??/?????c???????~>j? ?!??(???eM>"?>????????????{c?)????~!??????S?????????????o???g?|'?????'??? ?e????GA??'???_?k??O?????=??o?a??WP??-< ?[???Z???.|k???kH?S_?a?K??x?.?c>?/d???`?J?? s???U?h?u?e:?XJU???O?C??UJ?z?Ew()??IA???wh????????????Y??? ?c????W?S?f??[?/??=?5???>?N?lO??G??SK???lr^??i??5???Q??/EL?????????C?Zf??5?i_?3?????_?f?|A?S?????????u/? ??H???b[??^ ????[?O?>#?-?@???%???ErS???'?_?V?g?#??????????_?Qo??? ???O?? W??B??? ??G?%?????h_???M???h??Z??|?Z??u=??????????g??~?3???????j???????~,?~%?]????A>5x???????~%??g?#??#????,??s?M/T?aau ????r??'??U? t??mG u?????N? ??(???}????gE??8??`? U!?G?)I??x?%{%%?y|n??{?|+[6??o?w? ??w?????>~??O????|/??N?g?|k??????|G????N?s?????>)x?J?<-??\?m??ot+?GU?!???K?S???mc????nW??m?K????????.~~???h???~!?O??? j~?-????1????????_????_??"?????7w??>*?,l????uw\???Bo?&??????G?3}??]??>???E?|a?#??O |_?~????e???g???????V?us?a'???n?????{_??~?;?????r??!?g?k?b?????<7q?>|@?7?I???o?k?????;??K????)?_?/????????????????H??Fk?i?ZD??Q????????<-?5????????????????????q?k?_?)jZ2x??>??Q?????s?K??N??4kk?~?;?WB??,.l?EQ??!???7?T???????V?X????s?i?Q????v????????????>2?$?m?jV???!?'?????????n?????<_??}W?????????q??~??????Ouc??.??^%???3\?.???? ??????u?????Y?????#??? 9?R?|'????5???Q|??;? d?#?{??;?`1??;??A?k ?H?=rn????,k?n?0p2?3?s???'?W???@}???????Me??????S?O????????R ??c<(oVe?w???@??????? ?????4x6?0[ y? ?S????[S?6??*,?[?L?L???,????????????Y?kM2?\\??Oy????K?????B??] ?: ?Z?>.?*{^?VrvQI?u'??k??[CJ??????????n?K?Z????z_?W?S[????c??J??????R?????5/?-??)?U ?l?r???+?q???fw?W??x?_K?c?>#i,?'??S**?Z6?o?~@?2F ?????A????|????W???/?.d??B ?{??xcp??UX?c?? t$???^????? ????Q?:-}???[&???pp?2???r U???????>??!x??????+$ g??B?A???*T????|J[???0??P9?g????,v????{h??{??N???0c?K? YEu!?Y??n'??hePLj??????c?????????G?G???}[?m?????.??N?????????G????k?M??e??????[;{????^'????QVK? ?????$,??L?FwC?oV?l-J?M?7????wN+f?U?u????8??c??$?9??J??(??w??R?-jk??hxW???O???s],????Zm???Kqo ?>??K?E K4H?rZ????dB?4?X?T?W?W?=<-?O??tO???????? Xf?5???K?"?>dd6$;???????>??m ??R??Y? s?[G%??+?aY$?0?I?U8??????pg?|k?X-4/??t?N??:W?[D??q??_??f?[????S?5??hr?}~K;?x??dJ???2#?<&w:?u\?????J?????'?%?9?M?.G??>Jr??7?P???R?*4i???F????F2?????7*????(?e>#???V?k????dl ?? ????= ?88?????|8?6?q???u?/Q?{@???[L??]???'s(A??????2?6??(?YK???/is??"{??6??"Y&?E?p??Y? ^(Co??????????|Y??[??????xbK? ??N?c#|L?:5???:??W+???R???QY[??.?A ???hb??S'?~<|H??(????Z???uq|????^,?.?Mn???I$???;??T?24?ZI?U?>YU8[??oQ????K?{?t?cw{??????n??"6E?%D?:?C2+??0p?*?U??mk?U?o8?7??x???????L?????'???s????ZM[Mn????M??A??7?>???1????????W?8x?T???_Y???V???????|??F??Z??p???$??R^?????????????%SQ?4q? 3"?F* ?k??????k?C???h? ????o?:???A~??x7???????K???|c???A???_ ?? ^A?x??y????x?R?5?v??5 ??Q??D-=??1??O?o????,6>?[????xxW?T??? ?T???%V?Jx?^_/eJ???:??q????? ????G6????????N??c???1?T???kR???14???*:u9?ve^Z?#?,w?Is???vvf??? ? bFX1??f??MF??A? ???h?i$?H*???$o? .?arp7?h?xx??&?????????i???s*Y\Lm??{?$??.???0 ??L???x?????????Ap?cg?]p/??m???t? ??-??????'??C ,L?,?#Esl??:?J=??}/k?~_?|??8?,?l?)b?zx?D&?'????e$?Nh?6?h??????x;? I????????|L??? ????^???x ??7???????{o???D??t?-?B??? ??xw????:?M??a????????K?b?&C:i^?????????O7???[ j,I ?b???%???~??u???\?c?s?????)??y??]????W??^?0?.?Q?A???????????4??k?E?\???4?/X?!~???g[??b?i?????????)-??3M?1?B$n?r `?38?/gyT?q?U?#|???\:??????;+?;+$)?*?z???S??(??iFj?5???????U!?T[[??????8h??????%??_??M????X_[?s?>7????}WH????#????pw???C?'???????w???????~????????S???????o?????Z??!?6j/????/???ys?~?zF????o?|5?[??j????+?m????w??4x?tma4?D??|G?x/I??>0????3i????n????g???X???7??*~?t?????_]~??&?????f?L??/f?-ot?Hi?wP?SA4>?7????%???O ??_???7???????t??????_??4??~?W?/????i?~%?s???ik?!?l????? ?~.?=?g??{??d???????@x?????????????O?}???i?O??k?????KO??M~??????#??&??p?k? >&Yx????????A?'???????jV??}???4?;?j?????gX?uk??"?aU^?????G*Q??o??-a??%?sU???1?%???}?I????^?Rk??=??????P_???K????c???C????_?'?_.?l??????3??<1xW@???????-?? ???i??>?k?O??????od?[?/,??o`?k??? m????<=?W?#?????fo? >(j?7?????E?[???~???????A?]??zV??~+o????O????u=Bkx!-?[??L???9???g[?????????? ?????o????????O?G??G?a???|c???~????<?o??????????h [Y?~?5????2??{??,?@??????|????'?`???? ~??O?3?S???????|=?7?u?(????m???/?{T??~'????s?Y?x'?V?#???=?H?H??u?[z|;??2|.[??l?E????(?e 8?tp?????aE?^????!??U???O????OAJ?;R?$?.d????s????#m??????;????|???f??C??????{?Z??U??j??????R???s^??>9?|U??/|w??? ????4}???????y%??O?4 ?t?)????_????dms????x??W??7?????#??z???????O???+?]_???u}s??????H???y?h???????[G"m*????*???????&????b????j?>"???f9> ? ?????i?F??/?????????#?????o?z????o hWq?@|ii????i?o i6?????g???????3?'???q?P^????s??g??u7???a????x???Mb=?'?x???R5?(????????,???XjT?rT??????)U????_+?g??v??I=O?m??? ?????????0?G?????g???4 ?>&????j??v_?????????|I?Y??K?D[?g?|???w?k?S?6?}?s??? ???7|Y?I?y??~??~E?sxw?g??A???~+I?d?????>=?(?/?>!????:??5/???\???Y??}??????M,?a?????,??||?>?????2?????w????/??W_?????~0???~??~?????M??4???? A?e?O ??j?m???h??[?????/??????cH?j??/\:???x???? |?_???_?_???????=??m?/?@??v??O?|B??????[????:u???6 ??ny?G ??? >?????p??U1S?LL! ??V??j2??EJ?_g??G??????C-??u??????????mh?6??i+?6???Nk?*?????5??g???L #?)?x????.????9??w?3??/???|T?5? ?????|???`?O??4kE?N??wO?????KM"?J???[????o?#5??|/???G???c?????W???^?????uO???????/??? ?f?o> x?|??>/X?^?-L?&?o?MOX????uM ?R?????????:?i????????????;7?-??~????_Y|.?t?/A?????=????_j7m?????1?/??2???sq{?7?t??????????f??V??/f?w ?'?H?;e?(?o?Q_=?V?-????z?????E??.????P7?C??????h???|S?xc?????/?j-?hVz 'J?/??Z??^????kq; vH??8??'Wf?>??~&??^???o????g{w?Mu?x??>??J?v?X.h?yS} ??????????????????????j?d??Q?Q???Ug6??3?O ??q/????b?????VV??m?R?'((?(?T?|??}^x??E??)?]k??N??-?>?P?e id?y???*?????????k?????????>#h?n??9????????H??z??m???+U????Kx,??O????u?k?????i7?=??W???????ZI,9&14j?6~~???? |x???@?2???]G??K???qw?????7K??S??bho??[)qM.?/???I????aV ??? c?Ju???R?J??V?b????.wZ??mS? ????)?g f7??RTg??V1?N?(???????' ??Swk??????? ?d???????C?6?????^j?f? ?:???WW??m??6K??Z$??S+4{>?|o?i????Mu?5??????????4??]NM?b??Ey(0+?,o,!?as#K?Z|i??i?(??.?Mv??YM;?v?9??Y?u+?Me?I???U??wm?PV_ XZ??Z?Qx?K]?@?n??6r?4????G???/!??P??4?2?e??\????.M??>?????:?v?S|?[-ky????_??>'??q?r?^?/????e??(?'d?????????EK?????_????5mwS??B?'???K??T???????????8????w?bl#????h???????????c?Zm????(?k%%iE???I??????(??M+?o??????<?????????B?W??????????CIkq??} Z????=??<3???d?????}>???;?>?b[???U?g?? ??[?7?W>????-??????? GTY|??,????I??????8CQ[C?X?+?F??~&??g?E???+j?_KY$?l???\?O?aH?{I??E???ko ???&?6Vw?:????6W+~DVw??o???H??&[??R??n 9M???????^g??L???u#????7???????)>WOY???of?5??o q???=?n? Fo?`????`13?q8?*???.)??nJ???g??j?qS?j??????g???~ ??O???f??c?'???? 4x??G?????Y?%??????????_?|C??o??[??6?=?iz2|J?o?~#_\????+A?'????-\?Io?J??}?k??q??????m?T??(??_? ??in?Q????f??????????W?????4???G???}Z*0s????*??T?s?n?74?K???8?s????????c-?ZN??M~??'??G?S?:??{?k*|[???iW????G*[???VW19?c??C$D?*????M?????b_?+u?????+??O?/????~7?????z???j????????b???4??E???????+3??????P?0?????g??? t?T? a14???D??^?g|DhUn?K?4?b?v?s^#?????g????q? `r?e????0??L??*br?a\?__???U?????c?T](:?*????|???f??h?<'?????{???NK?E?mK?2?P$?'FIf?8?????]T|? ?x?V??F??t??N??t)????S?O ????R?aY??-(?????ah??c%???9V+u0??c[S6?0?k?ke??e????GN?,d?8??j?u^????????5????W?????5???~?E?5???E?=??T?T?????g???Z??fX?V_2S????6????a?????k??i?E??t?BN???x'??????c?'?%??gm??????P??R???I????????v?s??!???~2I?}>8K?5??? ?????K@???W~%????'?!]?d?j?????q?_?????!?????E?a???V??? x?x??????.????+??.???s??????K:??6 ??7?XJmJ??J?\e*?Q??,????RQ????..??3????LV??k9/?{????m???B???Q??W/+??????o????P???6?M?=?x??~6|4?/?~#j>5??W?????h?_K?'?8?1?}V??Z???e?%??o?-1?m-#?{??E??s??|????F??(???? 7????????? '??? ~??~|,??????t?x????o??t{k]2?????????X\xJho????b?????~??g?'???~| ?7??%?o?oF?c??D??| ??gE?????T???D?[?_?wW? ?u?????????5??????P?g????~/?????/?7??a~!?w????go???O?????"???????G??????.?t??7Z??4?K???[;?Feha???I!{??'?q? V?.?;???u#I?Y?[????d???8??E????/ ??;w?(Ji>???O?+?????????~??d??????????>??|?o?_>6%?x???~k???|U??_??Z???? ????????????r????#????????%????U????_ ?Q?D??>?F? >?_????~:iw? ??5??>3??~#????$??? ?u??{M*????`?r?#N?K?jF??#UNt&?eN???)Jx7:Q???????}7'F?O?????T??Q???{I?'????O???????u4o??_??6??:w?b?q????|[????????'?????b?~??????????rx'RM6??z,??C?????5?w?N??????'?/?_????eO?&??|e???{???n|???a?>,??;?5??R????5O?c?? ??X???0hv?:_?9um+\??U????/????7??? ??K?{??T??a?>?;??4???f???v??x?????f?? ??|c?i???C?/|?~??????|L???i0%?\?y?W??????%?J????o?m{??~~?????^???~?? 7?~??U???i md?v?????_?f?!g?)?T? ???;x#???mC??u_????xK????J????~(?;???3????????|???? ????V?? }sZ????zm????????k?w???????<_???????K]OV??????q&????0D????? x?@???[??}_B??Y??)???????*/??bKO??????????&????/???\k??????x;?_???Mx???0?=??C??!,??1???????????K?? ?:Lk?????X[Yh?N?????6?????!?f?G?????x??C??O!?K?B????_6.j?X?hT????Q??????W?hFJ?y??iG?v????Y=;[_ Q????g???"??I???????s?S??8?0??d??zFV@??!?[??ygyu?????:O?~?+???*????Xj?w??ME.t}N??????]^?Y]???????d?ZC?D1?wbE?w9-?????+?????m???c?????V?o?m5_??|?jfj??.?'?n????{{)???K????%- _??U???}???S?6:8|g???????;RoW;r??Z?b??Sj-??J???87:??_????c?r???t??\?R?Z?^????????|/????g?Y??c??xT??U??W???????x??Z.??j?u??z???KW??n.????? ?S??z??-??}0k???&?wb?>?(???;1? ?,???????x?B??x?????/s?}o????K???MkC?o????X???? K???????\?od???????$O??P???NK+H???????+?PE;F???M??.d??????]??T??9 ?T?d?[P{j?n???u3??J??C?gVq?w|?m^???yTU???M&?ZI?$??dp"T.????#?P6???e????y???????,???4?%??\K%??:J?i??ji?)??@??# ??yY?hW~??q5??N]&?I?4?R f?9?[?$?O??[?MN ?ck+??????8??? ???????????<+}{???m?_???3nuX?' Mn??BU??9????N#???9\???'zwvJ??)?FWW\???+?*{?O?s*?Fp?????Q???Sn????????Z?yE7g????????6Z??W/???^??]?zW??????i??4?3OO ?xkQ??????Y\l??O`g?n????o?K????#?T???_???h???L4?/??|U???????[?}?h??km?i????2 ??? O+?s|q?e???O??????b?g?_?>?????xR}?PC??lS]Z^G4?n?G? ?L??jI????_??|}??{ocm???wy????5???r????1wd??W????Uf?????uU??t?????C?mY^2????t? |???%W?????et(8???md??*pP?d??{]???4?x??w?4??k7:m??V?W?h??1?R3q?jM?4???? ?(?;?<5??? ??b|5?c1Y~#&?)?2?????*Y?q?/??????R?P??u???q? T?S???|s???? #???>??O??????W?OxG????^??~'??<7????G???ot???T?????g???I? ?#????h_ ?5?W?|!????A???c?U????xC??e?X?C????m?4?{??0?4?W?O?~,kz???^??n??\?xs?O????X?P??h??o?|u}???????=?v???????_-?X????_??1?xCG?????? ?uy3???3??>? x?????????/?_???/?_> ~?s|??????n?????*???k/ /?_|????+?l??Q??|a???? ?i?_xY?????7?/?]?Y???Hf??????;Y/-gki-?????? ?,??????rh??qo???(?? ??i?i???'????&?wyo????\???]?LhV?4??p?l?-?xgJ9eZuk??g??^????$=?H{????\R??????p~ P?(???Nc??|?u|??e??R?Q??^I,5o?'?????3??,^ ?V??????T??4v_ ??W<'$??T? ??~"K??????y??o?? 7r????x$9 ?g??7???C|A?--??-? )??G???O" / ????????a??????? ?'.?????naN??4'8??cp?q?)O??Nj??Rp?f??RQ???T??Vr???Yz?`??u9K Y???5?U`?d??KW????G?????R?7??? ??6?|a????-'?????&??=?=O?????????e????? ??4kM??]???!b?R????!???G??????????_? |r???O???/?z????^?:??/??~'?n?~ ?S|O?????f_??/?xz?T??k?o???'v??????+ O?<=?/?|??^??|#???????~??????>0h????2?T??u??:???????6?ai????\d?i????|I?????a?????? ???u_?3????W???O?_?)/?$>x???W???x?H??~x:?@???????<}??'L???w??g?>????Nu?aiq?????Ft#?s?V??:S?AT????N??8?t?'<*p???`kP???a??OU.[_?*?J???{_?????????Y????t????????????O?/???(G?c?|T???e?????*xv?E??~-????????_????#?N??&?l|9u??~? ????????O?a?N??t~?~;???O?~???S?Vx????;????????~3|*?????????S?????R? ?OS?~i????]?4s}????? ??O ???? > ???<=q?)????? ?w?!A?k^???c?Ui??H?? ????7??*??t??????????4?>?????g???m?f/??e??^??{?[?~?T?-?????j??g?-?g?j>2??? ?x???????Y4o?gcs?mbkg???3?'???x|Un ????p??|F*?&?K?Z??:??????>z???????n??"? V??#?? F|????N?E???????(5k?~???o???????9u??(7?h??k?j~o??j??/???S? ??_????? ~?> ???_ x????>??G[???{??)o??Y??{$iiu{?w??????_?d?K?????6????_????}?'?.??D?a???????_ ??0?Q??Y5??7_gO?.?Q???"X??? L??5K?? [x~???? +?_? q?x???????O??<?~?~???M[?@?@??|I??7_?~*?3?_?;?Z?~???????k???^,??????d?/?/?K?u??S???k??? ??????c??????(?G????3?K???o??????{??&??? |P??|+?%??C?7???X4e{?????_?$???????????[xSB???????c???@|_?r|Q??f?>>??? j? t?V??+T?g?+???4?SN??Zi????????u????7?]O????~?? >??!?????c????e???????5?x???????'|?????t[???????`???????s?~?????_?5??'? "??hW?> ???=?}O A?xwRw?k?MU??????????^?????$A?????M;??????k??? M??G?????????~?W>????4?[|??c?j?x????t????A?w????kLi<}?x???_?????+?{?i????I?\?,M??[?????????cyr???????h?????I?????~a?s[?Bz????? ?'-?????????+??P??????????6?????o5??4?W??????Y????6K?????b?f???^?r????Ioo??M???Hm?x??)??? v??]??oYj?7?}? N?0F??ZLE??+ 9V>u ??@5??Z?q????????Cta?? ????x???W F5*e??????????T????il?m???2??X?XJ??(?v ????N?#(?Rq?{?[5???Y????>|??\]?R?j2?yP^??6?????_???|[?^x????QH??I???]ON?X&??5??N??????\?,I"uV/?????;????]/???????i??<??i?=>???suaq?h???nha*M???IH???/???KR9~*??q?9?R?'J?t????M?e?????9[??RM~????f8\G??G?J???j8r????v??9???>f????:'????????m>??M?.u? x???G?5?? ???rZiz???mi?9}?v {k?,???1????}?(???z/??[M]?G???+??y?? !N??]}??+It??????u?iT??u1T?Z?cEK??O^_vjWQi;8s9&?$???o??? ??M???P???%??5?????2?I?>?,o?/xc?7????????u?5?c?f??2?#??2"O?-"??4?6?W-?????8$??#??u$}k?o~???O? +???.,??i??<???s??:??????~?0 :0}???2,^x:?<$?qJ??J?s?4?5e??Nr~m_?????up??>7??Qt?&?j??????*i%?R??-ckZ???Y\??Wv?????]\Mq????MNKs???@#6{u{xK??;?h??+G???O\_]?a????$?eO???O ?????G??????Z?<2n?-A??of? X??.?`?F???u?G?t??0?F??????hw?i^???m*?K\???X?Z=?7:??Q? ?ug ?ga?I%?j7S?i5??2?T????????;U?n?[??.+?o-?'??????&?D???7??6??*????YG?xNTW?M$?????Zh??????m?Z????2?????n??{4??????ZJ???#c??YkZC?t??,?????-?????????ef0?J???@-?H???q??u?~?XZj???]??h?i?n?V??kH?t??9(???. ???-#|????)????"[=[R??~??_ ????~%?b?t?k=4FLz??o?????c??@?????J/?'????????W_?.?>%Y?n???q??:??$???s????\??e?n$???|O???&????????m?????????Z??=?x????U.|&]I{V???x?????{?r???~'????_ ???J??G?|Oi?i?~??I??s?,??]3P?? }?G?Z5????!??<'$L???U???4r??;???B????<9????^U??v?????V?q?M???^?vv[????\o??,????????8M???e????S??????W??T?o???o??? ????*??X?a??.5??????~?R?C? v???6%?B9?W??6???A?G#???"03???:d~? ???_?;?]??K????????5?4_i??}?X|A??x?(.t?7[??????u8?$i^??N?{?|f)??;??o?/?????x???!???????~??Vz???o????4/XX???????{l? ?v?????????(?????M???>??_'?^??-????[?R+'?? ?|???m??????S???????fMP|V?????? a[ ?E?x????~k_?RO??&|bO????????m???\?C????? |G?i????)?\?k?n? ????=??,_???????~???E????3???????t?~%?6?>????=?Wm;??d?&h?n^?+?as?EP~t????~,~???O?|\???k?p????# ???????????y?h8????O?Q?-????Y?9?e????9?k???(Q??y?b??0????X???{K??uszUmS:T???{?'???>|???:??E?Q?c^?5]cA?Zi????_X??^?%??????V?*Mn;???????]Y?ql?J?? 4)n|Q5????d]?\??]??HP?[E?%?D?????a????a?|???????9x0|%?w?Wj~V??K;k?RMJ{ 8??o?9?x?????tc?X]Mkqsij ?????zb???????? Y???RO????1D??????f?,[??|h???k??5?"I?We`??? f?`?j?V*???d?8?~-?6????????R?;?*?P????L?/?4?T??a??5S????K8??H???????x?m??,|_a?C????R??????f???W?#???&?,??????,6?1?PR???A?????f?a????t?????????G?g???|D????&h^-????O???'?o?&??j??p???x[H???g?????5KQ?m??N?S??P?|??1?????#7??n???M?}?3????gsC???????????4{?lrR?????1???3?Wo??eO\ @???'?-}^o|u???O???_???/??~?????g?? ??3?????+?x??Z??????y?? ???|J???)??!??_x????Q?G?P??? ???????7????:"??wS?x{V??&???*?ua:i??P{???xc??|UZ J?"V???ST?{8F?I??????y?V???\???s? ?I??6?>?i]^\?I5?M?)?? ?b?U???>&????"?????_???;}?7]??f?/ ZxKR?7??g/??????l???e???=w?O?????e?]x?J??}??j?y??>C??H?????????@>2??G?t F???~*?C?#????G??????^???o?Q|E?9?D??K?????5?q???? ??M?hk??????-?kp?ih~(?????Q?e???????????n?d??1?o????n??&O|o???O~??$?o???e?[?v??|4?>"Y???????ho?S?4{k????F?4~?_???~1^|???_??Ok??(O?????C?m?????????G?/|R????Mq??????qGw?pw ????3j?G`p???W?J????gF5?Jr????X???? ?8F.1?+????3,?J????8???\?jN1J?Si??^?????? ???S??{D?????-?u?o?-????V?????d???????????????F???rx}Q?k??|hM2m??\????X???W??????J4????Fo????V?:????t??&P???Rt??g?,D!???????^????o$???;??.?????????~~???????{G??i???4? ??|K?'??????O??^kxL????Z??5??Mo(_??d??n???mM7?}??*???? u?|???g{????????8i???1??_?q?O????z???????????]_X?S?V? d??4???5~??????b???????????7?'?o??W?<?/??????+O???f?>%??????Y??? ????}W[????i???<=%???V??Mm=?y?s?Uj????d??? ????????????}#W?8????VXJ*9+?[??U.??????????4??v?????? ??ok?????x?V??|Y???G?????>??????<7????~??x??KZ67>0????????????X?!????????|???????h|=????5??@?\?|D????4?kF}g????????3?7???H??H???????? ??h ?S???s???ae????u-BbB????? ??,?? ?T?2F???????|Y?s?? ?/???U???V?????5???&Ku???M??y??,?g$g'?>??r???Q??h?N???7d??????ySQI&~???m??9?.?SX?;?s?$?/'MsK????&??????>???|u??????fC?}i???????6?v??H@s?????I???E??? ?G-???s???????? ?*??u]0???[EiI?????! ??Ms?&u'*??rQm??\W????I9y?????*5???r*N1O??s???????-]?V??:?????E??? ??R?`S??4??XK?7??O?D??M?R??.Ye]?11??H?z-?????{?'8-?u-??ns??9???x??????h??"?47??U?k?x??/???^(????5W?h?K?-+Q?F??O?-??i5?o/?q?p4??(,?????|F.?hP?t??b?M?????g&??2??|???18lo?*?#???p?J*?s??.???????|?????V?Z?t=3I?????_i??J??R????gE????n"f?V)a??+?m????l???S?6?m??o?????}2?e???U?F&/1?De??E????V??D?S??o ?|U???_???j???????;?M???_f???? mn?f??I$7?m?c??6 ????=w??????I??????u???F$rKi%?????F????V@?W??????jRq?Zq?"|?k??%?Ik????%_???R?_?8?j?I????vmJV???q.{?(?~8??9?w??????w5?????????C?>?e?|:??|Sa???????f3xB??U?xoO???#?} ??Vz?V?W??????u?????G?&????[???????D???u5?????u+X?%???????Z???{?%bm????o??#????x~?????? ??Z??~ xo????.??#??M?? ??6WPj^?????Q?????V??????-??c??k?3????~5|??1j_u 7???? Z?oI????????D???????cM???????z{7???g?? ??/??????D1K +?d??RW?????e%+??5>h??F5=l?+??EasG??f?U?cx?o?*.V??M????$?n ID?=????9ZmEW?`?4?YB?????e?l^k?c?V?? i~i???????O$)s}i? ??>K.W??7??O-?F?T"?&???~YNo????n??????O??????"Q?????+{??????JI]6?;???8?=?G??=?_??)????????d?q??u_Z????{??kK??f6???l??{m?:?"???*?8??|K,??????_M?? )??P?^X|?[? o)????T(`K??????????J??9?v??m??u?+5+?????_?????????J????w??????<??GO??%?Y??t?>???^[?g??H????4???D?N??y?? ??L?^sm L?#????i??`????'a??????<3???2j???mS?|i??u=6[????Q??????6???1?E???,u \i??????TZ?????.?????6????Y?KD?k?Ol]?????AoE???j-2??????O????#x?????3??%?&?,c??1?/??>/?????O??A????V??Y???Z?5???^?|~Y?????S ?83EU?^???gE;?+^q????????9~a??????|Y???mG??????_k??g?Ha?5+???????7?????*?X*1\???f??+?????0?????|%????? K?Y??7?]????4?? :a?0H FDI-??4YH???????Q??g? ??D|H???G????}?WT??h_?w?_????m&o???D??Z^??????????!p?i?@??????2e???\.*?kR??(`??}???J?>jNi?{|j7m%v???1???(?1Y?/w??j?F?Oy=6?????C???????7???o????????????~x??G?-???3?@??Xk???`^(????~0??{?&?{??S?mZ????k?/???{??????B???g??? x???~??>???S????????Cm6?{???~ ??mc???????????@?????/?h??:??t=7S???4?:=[L??0i????d?b??ap??/????:H?Yk?S?????????B?????E??~xF XiVn??xO???x?J????!H$?]lZ?c(??????P/??Od?x?y?p?u?xIb06??N?????u(??wnM:??V??W???rN.??G^? f???????L*?u0????T' ????n6 ???/?????Q?Qh??????i???g???S????!?S?>????.??l????pn#?????~x{K???g?[?>?t??{????x??A???6?Z?????m????c?????F?/$?A?h? L??v??? ~?????5???$?w??xK???????x??~????!?9? ;BOj?e??:w???t????"??-pW????LvY??l??0?C??B?#????7*??? U?????~]&??o????xxad??????V???????]KM??P??m??????3??V{u?,???? }?=?r???m?'? ???????x;?/???a???g?$???-z x??7????s?B? >T?K?$???)lD%??j?'?&???J???CT?2x7?> ???f~? [i??M????{eg"????[?yeQ$?^J?C??e???_*??? ?? ?????a????7 #??????P?N5ia?R???????o??b??U??V?R4?8?v!b1S??21??Q?N?"?j???Y9T??9?&??O?c?????????]??? /???x?D??.??iZ??He?5?~??t?r/??J?k ;???-.+?kD?/??]??=??H7?qCp%?V?W???]Z^?y3??U???????n?(?:???????KZ?J???I??rm??G??\9???g8???C?X??Z?,?*?rnrIBP????T???$????SX??????A????? ??/ ?e??T?{?K\?y!=|????W9?1a?w?????? {?????S?*??u???o ?Z?6Z_?-&??Z ? ??^Cs?%?????+??L/?????7????h???N??O??0O?j????7????7?4???'??????Fj???|1k?m@????????lu?????cj?W~.??e?o??????9??q?B|D?_?? xG????m?#?????f?|w?7?O??K???????ox??_??k]???s?M^??~@K??????{??:?3?>+ ????D)?S?????Bu%RJR??U#(B??.U.[G???1 Te N ?+6??3I&??????????|??C???? 4?>/?g???0??????????y?C?????????0??~|1????o?i?#???e?]???W?,.??E-???O??????n?g???????m????????x???????o?v?????o????????^?????7??j m+????sqa???zv??if ??????????????|?????+??A?????????>??nt???V?o???????????o?'????7??w???W?] ?? _?J|M???1x?????? ?????;?????o?o??]???x????@?4?8??~??n?>??_?4???O4???q?:?{?S?<,p??h??U(F???8?jTcuM?/m?? ?b??E?{?U?????????w?v???[?3?s?r?/??i? ?? ?{??????????? ????????;?V??|?,??,??HY????? ????[D????o????{?????'?????N?O??o?{?}????? ?'?>???fi??~???O?|!???S???|]????:U????G????P???4[kj_?W7?? f??????s?A???;???i??|i?G??}?????7??????O??W?a????d???? 5?x????????%??>j?~????}???|~??uKU? s? ??s?r[???????~???????M?'?e?U??>,~???$|+????????? K?xt???6???j[ m;K??.?}G??P????? ???$?C?Q[?R? &??vMFI{9???Jj?qU???q???f??o?dO??????_h7? ?e/?? ?v????V??????xc??n???_??j[?i^;??? iZ???|5??O?I|4.??u &?tI??U??w???c?????g?k???q???&??] ??_???????>(?T??h???????w???]????[?? < ?[?R???????h??[6?Ywq?%?T?8??^4?xS?G(??5jJr?qW?xl;Q?8sS?? I??*bp6??`???m??8B1I_????z????g??Zxg?????~??/?????-f?? ???b??]??o?Pk/??>~???1???G?^?o??V?Q???;mwEmb-E'???)~~???L?~?_?U????????k?y?O???]???|?=a?o? ~&?s???????^?f??y?Wu?}6????i6????,?m??>>?????/??????????o?????`_????i???????????'?O? ?o????_?|W???5????B????G??~?7?2J5 FY????????^8?>&?b???o???? i?N????G????x???^??_k?&??x??z????cg??z???PL???%???????x??????????mxr?K?b????<???????u_??? p???/?"????|D?????g?-?3??,?_?{????5????w?!???/[?????????????k ??[??Cm??m )^U?+??gA??+?5:???n??KS??n s*???????}? Z???????KT?h??????%?#|1?W?>+x????5???+?:w?? x?/??m??k?>5???|7??????rA??'/?4Z????\7????`??? u?V? ???)9L??)?????????'???j?6??????s?J????Q??-????O?"????C???T???H?,+?????gR?5&???n?V??I??B?????f?IbrOs???9???L?????1?N Y??8<$Yx3?P??_-?I?m??6???Z???eq?K=??\?s?~?4??????Y.#???O??Z? ???z?????A??U?????MB????\?s????\?-??[m?R)????/????E?o??:???x?_?????-??????sW?]n?????O k?x??-?@???&?i????X??^ ?m?y>c-??W???I/?S?RW??%8?????'t?}%f}?iN9k??,???R_4?? 9Y??sQ???m=O??????/???[??B??~?uiuk?9o???la???#h??]???m???X|?7???:D??u>?4???????c+c? ?b???1?J?W???????|????7?o??R???~???ye??&-^-??????i????oz?3Z_?7??I~-msqec???????(A? S?O??B?|? ?(??n??x? ????b?_???t??????ILm-???????)??$??7?q?R?y9???y?m8?????h?i???]?.???. J?D?7*vW??U???+t????x ?n?e*?]?z???"G3??"????%C??q?k?;??@-V%[p??UBB???xU?q????Z??x?}?1??A???mR??!T?[?????5?e?V O?????'h???????????>?3*????? S?????{????4=6&?p?M??0?=???p??s??z?I'5????j?e-g??>X|.?K|E??????^8?5?k?_???????m-???x?K??>d7+{???K?.-?9im????=?}=???.??Mw?????7????|7u??k?*?N??=7[????S???^??g?? ??S?? ?lum5c???3??7??_?o5!???O?i?[????t?K?w?x???????? c??[??|>?ywv????? ???]???????? kJ???????Vz???? -No???xz???-??? ~q?{m/?8T?B?$Z?VsNn1Mr*m?uO?x*?b???V???jQjQ?8????NIr?EE6?I??????????????#?k???-.> ^i?ii.????????^\??d????G?g?TW????? ?????? ??x?y??l?J?????_>)|)?K??x~(???????u????9?7????-?????????????-SS??-E?-w|-????"?S??n? ??Q???"k-/???6?+??c?O???W?^?:???O?_~%???? ?ox??@?^?/???#Y???g?h?5??Xk^6??6?a???3Ok??H4????9???_ ?}N?7??gIN)???juQ???T9;MNm?t??1??6?78`pp????s???jZEAK?.KV?!H%%/???F?????a???~?? [?&???|????s???j? ??Ik?I?k:????????????$R???O=?4z??L????ho ???? ?#???oxc???????&?k^???[xk@??????Y?H?5?@X???x?g??mf ?a??l???/?????7???o???3?Q???k?o?z.?i}??$hF{?7??j6???Wcm ??j?z,??i???476e'????bx7????>?l??W2x+J2?w???????7???M.K?{[????i<;?F??\?g???u? ?F?U9??????iK??3N??i?????\?w????I5?r??yUz?OO$?????z?E?$?:O????gINJ?-?????????(???1?|T?y???G???7????????s?k?v,??s??j7??x? [?z?????R?5-;X??_P?5??G?CP?? ??~$Oxf6??t????iB?M??m4xnl?O?8?????\?^[????T????;;?>C?W???N???>%x?RmW????K??,?.??,???=CU}JIa???? ?N?c?????1??p?~=c??=?WP????S?~??????j{???????????1,?? 4???Y???? rQ?9?$??(?F???*??????????g?b1??4???S??Rz&?)I???3n?]5???&??i??[????A??w6?~\?[0?T????'?????lV??4s,????I???V?}?_?h????????y3?????7?????y?p!?????X?"???????3x??=E???y?G??5?R43?8?E?[X??????!???m?????]][[???f????MI???x?V0??B??W??????? ??(.???Z?S?/"??;h`?I???h?0??s?c?2???+?m4?FIuF???OK+??"MN?u?)q(k+???? ?in?????Q???C???s?M O )??2J???X?????qJ????g?;??VQ\?.>?]??Z;?mn?z?W?bx?n?rV{????????????]"?%[w?????d????????????^??v_?w?????O?7??W???Y??u#3M" ?kw?>Z????O1p? ?x??!?*zs?p??F?5NZ?4?(S????%Q???t?R?|y??Y?f|#Z?????,?U*nT????5*K?/?+??^?E??I?z???G?3???*b??N?x???n??~#?C??????????????b?~;x?? ?????k??? ??CiLG?1o?? ???|???=?????i???_???BW????jx?M??????h?@#w??Vp?'S>?Sj??K?V?t????r??/???s?n??:???s???X?_? ???????7*d???~j?????3???? ???_|K?????????????`I????????;??Q??z??O??/?5|K??w?|j??4_??V???????S????????+???:???mo?^?%???i-?????#??\k?X?9f30?a?9mH,.x???T???wM~????1t?Q??J?s??????X????P??y????>?????~???>???o???-9????S???m!K??O?;??"o? (.d ?,PI#?X??????+<=?????)#?s??b???-J5?? ??+????\????:?gew???d??s? ????????7?q??o|??js?1??@???RMK????N????m?5?E??kV7-go???L??-^?H4?? ?j???$?????????????m???i_??G??%?u{=B ???.N?s?G+??Ewn-??^???;b???????Y?xf??Y.L??????\???m;????{?l5F?q?9$?vU?_W?/S?,??,?>?????!?|&?5?w?*Zi:???.x?h???u?m%??(??\?????k??j7:o??Am??xhkq[[I???9?K??-???-|]?>4??[M.???"?>"??qx???z????%e??Y[[X??S[?D????-)|???/???????I%??\K?k???)????????X?????:)+???`?W?5+?_?}?>3?X????~??G?$??C?m+?:????u??????M?{o5k@?w62??k?O??x???g????L??????$X???~?Ly?Y|??^???U???~7?F?o???u?|@?<? ???[?2iv??W????5?kZ??{mk??v?^?b??q%??????s?????<_????b?t?Z7?R??^?OC????x??i??*??q?????}C?bh?????????(~?'??[?j??|!?{????vq~?????E|?'??????y?u?x;?'??6??M?5???f??????g?_V?g?S??>?'?_?????????G?> ?zo?3E?5MK????CxG??????'?k?.?JjZ??t??????l&?????????m?????????%??~?~'? ?k??,?_??[?{?z?| ?kk?hZ???-?sL????]CP?'?????u?4?n?N?^?Q??+W???O?_?*$z?.|c???S?7?|?G?_ ?j????Z????;???~??T)??????g???? ??y??$??~????,5&}V?????~/x?? ???Z~??*?[s???? ?)??3x[?_? ?*?????????U??"???i:????x?????????????o?x3P??V??/??????????|?? ??F??????'??u???$op~ ??%????????:??5d??????S?'???O?~?W?p?00????????W?4????W?|4?5?=|Z??o,? ^??/??z???_???????,??5;?Z???????I"?u}='???ss??S??|k?i?m?[^?h?9?[???{??0???O????G????N?m?o????m??|^??????}????Z|? ???XE?m~/ ????m.??>??????}?/???b??[N???????j?R????2j??/?p?o??W????cZ????????'?A?5??8?/?s{??????? b;7?u/??????????/??Q???O?Z??? :???'?m???h?????N?\?????ye??U????F??u?(Q???VO?????j???(i.Z??S?l?J???R?? ???????????W?^?\??POK_?;?O???????/ |???????????G???Kx??|?~|???????????4o????????2|???'?B?;?x??Ns?,z????w?|1?|`???x(X???|K????F?f?G?#^(?'????#??l????-|??8?8? D ?}k????}w?^_??[}O???u?3xH????Ri???/?z7?u?x=v? [?:???.Y.???N??????????W6??????~???;???????????!i??F?/4???? ]?????P??J??:\????????Z]??I????4x????2n?3,??Q??;????X???T?8???????rJ??8?p??QN???[^?/m????7$?wI?R??U+?[?}O![T???u? ??f8$?bO;?$@q?j?Q?????C??Zp??????1?A?_?Ki_Vy?ZBIW8????<{U??"@???Mj$AI???3???>??I??#P??@dy ?M??????,:????t>???????9???????N\?ia??C??????? %??pck??;+[!??H{??W%??b??b?oM???.U????e????H??%?H??#?8??tO?????4? r???s??I!?0L???8???.$O????u&?+I?D?K4?,??????\?????yf???I????om,?v???c????vmM????+?X?G?y??J??%?????????_???V?W?Z?/?=?U??/?M???/????56?{????&?????j?]E?mm?i???&??S??/~??~?o?????? ???i>&? ?? ??z??t??/?? xm??zf??^? O?????V?X?|3?^????&????o?!??f???v??F????w?u?K???h???? ??I?\?<+??n?)?%?<-*???A7?_?w???/???7??o??V?>?s?^x??v.??9?|A????_ ???Wl????/?!#?>?wy??C????h??>B?????h*??_??????Z???'k]???JJ_????a??? IC? ??d?ZK???k?^?F???T??????a?????u????_??1???]_?:?~1?????&???u????+??v?&??}?i???|$???????x???????|~??~7x+N?????%?&o?~?? ??'?X?Bn|i?{?b????]y?????~-?? F?qz^A???#????X5|$??&??o??_\|Y??k ~??z^????????^???????^?#O???8?'S??J?Q8N???iG?Q?????k???5?t??_)?d/??ftgN??????????%y$?Qr??"|5?y??Lg?~x??O???Z????x??\???ix?W?&?c???f???:?1?/xSF?'?:????m????&?????a$?Z???>|9????R??????}???t??w?/?????????.???:'?D??????n??jZ???.?7??? ??4 ????P?x#?????????????.?8?t?B??R???5?KO????????6???b??Xf3X?m?h? ??????Ko?> |Z??K5???4???S??|&?????{|J?]???????~??~(~??$???????_??CU7?????n?2?:Yv'4???C??IEJQ?:?q??wQ??2q? )G??4??7)??b??`r??p?]?"??q?A?E???R????js??+\??_?w?m?o??? ????|U%?????lo ?[??R?~?????D?W?<9ss?mu]&y?,~?????>???'??|L?>??K_??K???????}??wG??b??g?ek??v?`????m;?%???h??6?H?rm?`????4{???|Y??m[??6???:6?o?+?????????0x??3???????>) ,7??3&?y?????[C?C%??m??-#?G?F ?Z?vP??????? ??p??;/???????jN?4?????'(r?q??R??????vqn???W?X:t??? J3V??O?|???.??k^e%?A?+????e????~(??3???_?~/?a???????i????? ???n?Q?RI??F6???????"?????_ ?w??\x??????r??_??{y????~????????^X?=?O ?i??,?$R?????ne???? ?e{{?.m'k?Ha?|???-?[[?@q?7?K????????????:v??~?>5???? ? @>?n?]|;???|.??????Z??M???_F?V?]9??u???5?7wl????qf??|Q??? ?I????j?c???x??c????N??N???j?w???L???? ?6?2^H??6??0?7????dkk?!UgP"V?T\??h? ???`7????????????????$s??.~??|'c???O????\h~????$?????wo??????\Kqg???0?N??0w????C?????_?j?(G??????:f??????=????zt=c?????V?K=???????"/????L???" >]????c???,b ???S??9??G???H?,????}+???ti??UJ??V?lf&????[?u??#'x?p?J??????|?h4q?cW?8???{8,?:?JT>?# ?6nt?? ???OUs?_? ???I??? _?@=??.???q?1???4?j??Z??????l??$???k????on??m????yoc?&K^?`????????U?[?o?(_?&{??????r??e?Z?????xs? ?x\}?ot=s????cguf?! /?/???#(?vz????E*??Miq???G??-???9)??Q???9???*PI?5??Z'????>y?\????????M:-??u???????x?????Ckw???K??H??it???_????lB?V?????? A:???????0?w?B??W??8??&?i-?R??_?Si???-?g?o?t?^????URN?'???d-???????#{???]O???%?3?5?????D??\?$???U?c??l[????????h_ k_k?:? ??m????P????~????P??k??z?V??v:??.??4???K?jr?^X}???&y?-??d?93???)|??s?U??go??;?V??????q?k^'?| ???L?o????e?&??i?r?N~???i?QbQ? ??s???g?? ???K? #?6Z???C??6+;=rmE?>??i?????????i?y.-m.??x???R????B???O?O?_?&??-?????=?O?????????u???>????y??15 s(M?k[?x????+A??K??X?dha2?E F?d?%W???i?J)JJ?s???U?T??*tV WU:rW?K)?????Z.????Y????3_?(m??q%??u????<@??~?i?3??7v.??u?<5??#??2Ah?^6?"S?N???dy???o-????;??r@l?????o?/?#o???u??~!|H?>??u?X~!?j?>>???$??5????-?o?E?&?3???qqi ?f?? ???????i?^? ?*?????u?????F????~????hz??)???????<1=??9? d??f?d|K?p?/)??fT???I{??*p??&??N+NV??)h???L??'F??\B?=%{^???[????lm?JO?gI???c?????[I???0|I??&??Cra??????????Qq?rJ??'???Z?~???9??2??&]J?/??V??a*?2?B?(%^??????r??QI?+??i??_J???Vp>??~?z?1?2?o???ir???????h????????a??,??Y???_??6A???m?m/???.??a? ??Y?w?Ox?}j????jS????????hV+?Z @??b?-??????*6??W?S?3j?????<\b??x3? ??????q?=:???? ?}?q?B??r~|????|4?????????<?'?~!??|{m?|6????????J?????"i??:??x?]???????n4???|?Q?x3??k,cR2?nX???R???%?'?????8???????O??#???Lt=?_?o??????????/???]???????_?>/???&???????H|c?|g??????/????|y??7??????i?P??H4[?CM??n??????^?E?W?????_?????_? ?E?U?????N????? >(x???_????~)?^??? ??_?:?'???^????7?.l??{?W:??t[Yo,??O??_?{????+??????????????7???g??O?/~?z???W???>*x.?K}_ |F?5? N{8 ????tiu?S???2?.q???a?8??Z?e)?*?r??M]? R ????)?9BrN??%??\??uV QM?????W{?=,?ih?wL??2????????k??????w?I?|3?W???o?????;|m?????Z??6>x???????????:?Z?5?|???|E?4???6?5???A??6???`??|w?O?F????????1?O?????e?k?/????h?O???W?{??'7?m?O?????????vPx ?O?(|=????iz??7? ??0??g?Y? ?|}????? OH??ag>?h???R??X,7???D)a?????????c'*?T0V?W?YJ?.eEF???????9???9g???,Lah??$??>x??E???)I??Q>????????R???> xE?g[??'???/??S?????????????E???z??????B?????t?|+??u[K[?i<9???T?[??]N(>B???W?W???~????????}_? ?d??????l/x??w??i?????-??/???K?.I?|?????#??4??<-??z??u{?[i? ???i? ???????7|r?k?r?$?]???'????|???46?~&x??^??|U???> ???!?'??~??????- )Z?R_?z??-_A???~ ??~ ?Ee? ?8???]5?_??"+MQ?^?sr??????? 8???FU???xy???L???N?; ?T??P????U+N.?z??vG.&?m???z??E$?J??2T??????M?v??w???????P??> ??~ ???f????????W?L???????????g?????o??;?N????.xg?_???~?1??.~????>x?T???o??,????O???g??????C???y?$????|???_?w????C?kV??Cz??Y?quo?y??G?????i?B?l???x??_>???:O????c?>???????V?4?5???%?|g?]?W?M?mK]??????]?i?^???K?+??C???????/?~"??_?o??w?o??????????c?????=???????hj>?{?o????yuc????MJ;?K-N?O??iWH?f???l??8W&?????<0????????/?6???RQ?????b?????fy?q????????ih??[$??????P]?f?? ???>????9?FC??}k?L?????_ ?d?????g?O_?I??/|3????-/K????o?|w???? ?????????????^hs??R???V?7?9?+j??G???g???[????~??e?????????< ??O?o??*??t??t?X?? k??l????w?X?,?s"W?=NC???r??s??\??*??????Z?n?????L?????K??????W?O?? ??????g??tK??k?>????z?:o? Y|U??2-???5?e?i??1cK?]?z??"?>????????S/ ?z????-e?-??????o?8?u????xD?????? ????~#??[?????M>????Q?????R?$?5???k?|G???^??Z??? ?@|Z????U???6?D?;?k^???u??z???b?| ?[?N???Op?l???jJ?2?y?.???F?????7';]sm?k??????G??}*t?J??! $?\????I?????VjIj?O??????Ot??~5??(?o^?]3???????6?J??????J??????Z4m??x???????R#?[????????_????^M{ks????????g*#??E?'??????ZIs4???????1????<=?i???>??????x???&???/x?T??XuV???o?|e????Q_?h?[??3??vr???B?????C?/????????b x???5%?%f????>+??[??u????\??\??"?&??c??Z/u%}?I&??]3??RRJM?NV??????;?&?m???? |O?n??x?Z?|a?????????;???_?7?????9?_?i?????4???^&???m?#??^yd?^???????????h?R:9mW???$~?W????'?V????-?md?A????2,M?d??/V????GC?5???g????i?j??GZ????e??u??????v?\?????"Y"????[9?c$?QQ??|.?/???????I?.u?]??%??c?h?u????k?O??0?? ?E%?]??????????y?N?h??i?{????p?????????????v???:???????;8f??};??2???5?{k"?o,?????k?!?????r??"?S??r???h?[@???C?^"?.?k?%??????~?=??a{#??????? ?FK????k????_?4?#??a{?+[?$5?|???h??????|C??%?????????7F9n????????s?????,???9?L?? ???i~????????????????Vj?o?e?k:??~'|Y???-(?:???????m??C?Gsqm??#h?#:c??bi?_???Rj~,??u?????B?>?? ??O?I.?,?????}<\_??? ?~??G??:?^??)?2???x?B???g??J?mu?2????7Z%??uq??1j6??o"??K??????\??????W| ?W??+?????_C????"^>?n?"?????[????j??4Kg??P?[??)??-??G6??????/G??'???=?eN????????J???a?~?F4S?Vp~?.?ik???c?W?^????? ?Uk?r????rvi???gv?OW??o?/? ??{?5???k-{? A?~??~?3???e????'M???_?t??P?0o?h? ??ho?????/??<???[?|y????7?:?e??x??????_?Kc?/????c?m??.u+?]??q%?ZC7???Lc?????-?|a???3?? ??????66???#???s?;I?i??_?5?R?*???????u??6??{?b?H,?0???&?/|}????7a?Y????G"?d???%? ?K2?t??????????V5#?x?????p?(??] ,i*?b?E)??Q???e(????~??????S???A??e?????????/?'???;?W0h?F??i&']??\4?]???A?? ??7?_???????]'Y?~ J??????(?wx?'?_???Y?7??W? ?W??e??)???j????/?>&O??xz[d???B???e?????;?F?????za?d???t?aO?&???y??/|u??>&xQ?????>?#?????1?MI?X4??????)????7?$?? ??[|!???? Y[B}?P???K???-&???????OX?????O????>2??=C]??????>0?#??w???????Z\e??`?rH???z???d?1>4?x????????Q??????~&~???t?Z???-#?~"????-??#??^^Es?jQ?>#6?A&y?ky?${?????k????b?????N???{??q?.?o???h???I`R???o?!??e???0?[ ?????!?8?!?????C?fm ????h5???? ????M&?2????IS?1???k??????Ja??J2]R???.M?J??????4Y???m?x??;O????8?(?FQ?&@?`A?????+?????(A??????7?[?S????.?L? ??????}V?[i??vj??q???G???H?c?A'????7??]"?D?W3?)g@?k,dNA ?T c'????.|m???V???u5=Z???????????%\3Iq+3}??I'-???????2?$'9??J???)??]????d??(I???ui\???7P?l?x??aa??=*q?)?+?baZ3???]GN?'))s?4????5?Sk??(???c??e??????> ?G?y?[???W?_?\?_???G|?G???o|&??/?????+?? ?Y????|7?,??? ^xgP?????I????RUYa???4lT?!????G????IO?[x]??[O??k??u?????c?W?5][??g?_???mt????????$EhY??Ji???????fk?w?Yn???]W???R?x???O????!x?????OP?umC??^"???? ?????Kx`3???u9s-??????<?????7?/???'~?z??????$n??a| ????h???S???S?o?7? ?W??_xjy4?wZ?b?~??? ????v??e??e|??3???E?'?????O?h????-?~~????????G?WP???????d???J??/?t??7?5???S?b??)??? ??????S??f??????k?;D??f?4/??^?????;??/?=?~???o??4|B??????K?W??????hu,|[>?s?y?]?M?8??iO)??????L?Vt??*>?T?:sS??*????5P???gR)?/??T?j???,-????????m?V?I??S?g???G?z'??????????x??2??????(7?-?K?h~????????o???~ ??!?g???3??????X?????.???Z?S???????x???,>>?cX???_?>?!?????????Oj????_??????w??_?gM????{????t?n?K6???mKA??????lc??7???$??lt?4??V? | ??????2????*?|H????????|C?[?? ???f??????6z????i?w??Mg?7Oh??o.????W????????g??L??5? CO??/?;y??6?B??]??o??????^f8J??F????^UT????V P?-I8?V?x$?????T??oJk?MZw???I???i???w?I?-????K?? ?g?_?W?|]???[?y??????1x??w???o????=??o????????|? ?#?h??0?B?b?*?8?~x_????-?k??O?o?v????????U?;^?z?5 i?W????Z??? [?#????~(?s?`??G???1????????Jub?:?)J>???8?J?????4?=l'??R?s8Tq?????]??JMYs6???????_?5? ?_??/??e?????D?g?????~????_?[????s??????o?>%???|5??C??????????4?CU??o{?*????????????e??:????????| ? ? ??[?q????????O??????c?????[??|l?o?C?g?<? xO?q&???????3??{.?g?juv??g? ?G??!jZ???d?? ?)?L??Z??|E??~???????m???????e?|?????|;??????>|%|@???O?z??!???O?%?5?X??!??K?>??)??C?]?????4?/|A??????q?5???}^??+??h??L??g??(e?Fk+?A?}?JM >5?XM?W??Z8??????????+;?O????????????g???~??????m??????5?:???{u??? t?j???aa??t?M:???m%?2?[???????????|P???:?G?yq????x ?_2???????????????~>[|5??~ |)?????|t???| ??o?|??H?)? &??{???????GU??W?]????d??c???@?,;???b? d?!Nz????~?{???? rF??d??s?n????[?:????G???k?h?y)?|e?Jsv?}??s{?-???oqy?]+N`?@y6???2}-???'????i??Xh?,_Id!????\>#????[??H???'?m???EFfA?????O?Ei? ????|=?|g??y0????1????w?11?,Z??7??????}?0??????G?????????_?5??j4{?/?z?Q?-lv:??z??X????}>?g ?k?G? ?\??? U???R?,?&??U+7???u???+??h?*??|??js??T)????+?k???????OB???<]???2h??m?>???o???(????nl%???|a ?'?+q?3???????/S?s? ????????i??-9???Ms? ????????+/j6????????6??_?< ?+;m????-'N????h?G?/???|f`?:?S?-?3F?????g_?u??W?????????>??s???T?y$?:N???n????z??.??6?|9??[^^Z??????%?-3T??????qu8????b[k??4???\@?Mg?N?ddU???-??? KQ??k?????? x?U}F??????O???G???X{???????5??$?????????Y??2???)b??k???7kq?|H??ws?[[y???.?????|m?i"+xV???u????m ???\??BX??w???#?|???j??w???s???Sw???V???f????+Go??]??????,`??N???_???7?Y?K???-|e??u&????????W???m?F?e???????????0?M?[??G"?Y??I????????????'?p??n?]?????????C????o?(?{??#?/7??U????fK?~???g??o??q??I?????;?;??c????z6?w??[????vL?K?o??????K??~9?w??? ??o?R????V?W??????h??y,?G?M8G??ge???k???Lr??????g???~???3?????????S??_?????;?????k???|o????_ |/?4??l,4kx?3ii?x?=:??_??s3???q?}RP_S?J???i??,,9??&?lD???U^?%#?????????)?UqT??JVt??u??nK?Y?KG )??i??????l????5-?~?5????.??^?u9/o?:?[?L??P^?^?.#??`+??????:?d:V?}????K? ;2\[^?p?^??? c??-??8l4?S?N?r?}?? E??o~?_?8?<g?????y?P?????2]?w:??O?:Y?:x~?i?F0?7??V?0?????B????b?n?{?cm=?Gwcu$)}??*??f????D???,L!?~???a? 8^2J? +?B?R?7?d?iT???J*R?n?^7b?????M?v????????|?QJ\??N??%?|=?/??|]???????????+???u? jZ????w?3?Pk:6?ewG?7?q?" ?%??9?a?~$???>,?2x???-?7?n?????^4??}gX?>??G???SU??;?5?A?K??7???i ?k?97??k??gGO |{?ww ?2Zi^+??? ??.?6?ifuF`?:???myie{j???G?Y???4C?? j?A]B?Qk?????1G???;eY?? ?Ql???N?\F?[?S?. ????@? ?H????;?g?p?i?O;?o:R??U????Y7%R ???T??_4Z???!????/?KA?{?>??O???0???-???<?:??????o?ZMgs?xS?6?-?#i?c?u?;??o?\???M^/?=??|??,>+?xjY?+??-?[??p?*?\e 4???9??S9R?\H??\*?UmSZY?]??????????J????wV???|?,????e?????W??l??o?c?7??$d?5?~&?{MN?Zm=????4????????>?#~???h ?e? ????^??????"???/?o??kX?kR??^?S?5???H?Dc??t?? ~5??^?/?j?????ku?a?/??x?zQ?+????o?v???;??3?h?KqE?h?'?????nd??????????U?'? ?_?????5????tO??m????o?4?&??K GI??{{?>"|f?u?Fh???F?,,????? ?u?/?G??g????n=?????y61?hg???\ &e?\??k?:?.?Q?V???????TT ?|?e?????V?O??:^?Q?????r?P???d?d????????????????o??0??, ?P????[D??H?2-?? a? (?~o?????/?7??W???>??h??}??s?I6??hr|b???ot??XF?-?[L????P???? ;mg?????.?;I4???8?????/???:D0?[@?"i? ?vw???????~%p????? ?9???%?xc ??e???bp0??u?]?aW??V???'???C??4?53\???^}????:Ts??%'Q???\??mZJ?J?].????e????HP???[(8$?q?1!M???x???5?|?9o??~??ZGq{ ?Y??F??b3$77!|?eP?D?P?q??OCe??#?T8*\ )?t'?p????9?:|G????HKizx?9/M??e?DYa'?-????xB??N[h??x?9n_,?;???z?\?Jn?P?tn??I'???d???t??9????????{C???I)????m$?vZ-?t??????????Bk?????6?iZ?5%?n0????????X???k?,???i??5???????|??h?s_????7?|????V??^_?j>$?"@ZIn?Tq_???K N?????Uf???s????6??????EP???}?8??????????B??_?V????????/?{O???W??????mcD??*i????Vi?+?gtm^e????m???c??3>??chN7??,?_????;?,7??=NZNX ???c?E?0??^ ??f?_???.???+?7>?????O??s?? M??&Au??-?=R?? ??P??w^q???k?{u????O??~???????w?N|W?c??? I??????G?o<?{??????????KM#?tc?G?OQ??%?Q???+??lCu????Z??|g?????k??=??c?g?k{O?]i?????~??????8?Yq??W???/ ???z>??????S?V??6?\??P??Z??}????????|9??k????6?????????]??????7x??!???:?r???C???????1??????c?????????m??wZ??y=??m%??1|M???O???Y?a:????? Q??n?D?V???P?#???w????xHajT???t)(??M?+?+(?M[o??I?w?????h??\????|M?=?+??????i??? ??|#??l?g?? 4??? ?????????l??gL??? ??8?'????????????O??????W???'???mo??f??1|??5????? ?$?[??x?g???_ j??-?l}3Y?&?}??:??????<1?Xi3??????\?????~~?_ ?{?i? ???t~?????'??G.??X??`??p?]???W ??T? R?N8?A?Q?t??R????????9*geZY????/????<]?M_????|???'??[_????7?o??^?????????????O????,????????\Aq?n.>2??>??7?5O?k???^??y?h???^???Q??????o??[?x??????!?w??????????????? tO ??^???|H??<?E?K?vi? ??iW0??g??4???????V??l%\??(??8??i?????J????)????t?????UR????,?U?h??h{??w?vR?n???rQRZ???+K?????K_??????4?#?t+q????8?s?Yu????/??6?q????? ????_?????????3?X??????????I?J|q???????j??C???.<=?ms??\x/I?u??^??44TK?/?.??????~Z???q?8?b????? ^?=??ye?\?????-;????G?m?s$Ph???S??_???mY??~?'?????y??N?g?T??nW??MB????????????>?G?????%???C?-V?X??O?V?L?o?"?{? 4??f?m?j?y"?H???????t?O? ????????(?1?0Y??r??H?kck?????|???? e-??*??"???????J*Sk????R??T?/????|o???|/??fM???S? ?1?Cx??{?k??N???U????K@?? ?ak&?im?k/??M?\???K?j??T????? ???<3?|g?/?? ??-o???0|_???/??????"1???????????3??z?K???????}?>?c?M.}?A??????U?i??Q?V?R??s??xK?V???????r???????O??? ?[x??T?-4:ag?;? jW?Z?????????7?7????????<????_?{?>????Mo?>/???h?3}??j????G?????B??m??n4??? K?0"?x?:85&?????8???WT?>?)??_j??akJ??I???\???>.??W3G#$C??t?NL?t(?$i????%?xK?????+?K?Z?????]o???????7??k?J Y?Z??????J??B??j??????m?4???,?}n?K?O?`????f??y???? ~?_#K+?mJ?Z??>*,?+?4?F?T?wL?7d??6%?V?Rm??{??_??W]?:?7????????w1~?????G????Z???.??1?V??x__?~?ub??q?|A??|j?#????h???7?k+)!e$??????3??3??o????k=M-??x??????'???':l???h???R4??e??;???????~??????G?:????%????x?R?%?????O???.?-?????B|o???c?az??G?F?H?L$?!???????s???'???~,i?]??0???? x????M???i ?e?7???"K}CV?[O?J??2??1????? ??U?|????>?EBSvNK??Z'???5%????mw?.??nz^???????'g????? x?A?????I????v? ?5???-??????|f?Mg???????Ya??72D`???r?????D|T??????????z"??????A??[??q????k ??>?[O?>?V???z3??t-#X???{?F}6k??9?'???]'?Zw?/h~???????B??????cX??????#?z??????????w??wq5??????2???????? a??????j?{?^1??:G?u?k?????M??|??4?h????????u?2\Y^C????3????.)?????a?c??vw??"???:???z??B?????????Mh???????_?zg?]i?D?+??? /|%????C???????Q?????j??|-ivb/??CB???]B?5????yg?h??O?+?@???U?Q?S???]mu>????SXiz???Q?????????}??? ???5=.???Yn???Rh%?/??? ??3m???w??(???uo???=g?TT? ?? ????K?`?,K??|?k????c?????"??W?G?? Om???.?>??????/???I?uE?n?????V2'??s?????~??????i???????m'???? |A?yi??z???????????h???]??????m???IB?W??1??????/?.M?q?\?5?O+?o?V?% ^!:K?a?U+????????????6??>n?bj?B?I?U:w???c??=ZJ?/?????????????!?????????>??x?I?7??6?5??????z|c?w?U?X????+mJ?u????o[?o???????k?Iu??q???mm????oK???????m?"?o?_???`??????]??????4??s?k?????0?u??a??nMYu????0?????NRwO`???a?+.??D? ?????^1??<)?/??O??>#?5?y????0???????--[M???<>5????H?$}: ?u??}?,F????}?????G x??\?$???? G???*?f'?WO??0????S??.j|???IL?p8??!?P?J?J?wW?B4???????>??mZ?W????|????A?|*?????????a??,??k??kK-W??&????n??%??e?'?yk?r??%#?_?:?\?I?7?)F?}??:?|x?=m#sc?????E?e?h????t??????????c?^???x??????????????| ??I?|??k?????a?K??g??!???"????PZx?????n^????$???>7??^?8~?~~???R??&&??Ax???}KK???q??????J?D?uk?x????t??Y??_?6?[F?Z???mibI?rOr ? ? ????Y?> ???O`?? ?/????X?d??????p?8????????R??i?? u|,?q&Vx:?a?kJ?IB???jZ-???s+k~????O? o?????2D1?? ??l???@?[Y?4x??????J?H?wFG9D?n?????W??]? ??=x??N??S?I???NC?fb???>0XIl??6????c7???~????/ [??? Z[??#R??"um$?P]???b??????????g??mB???r?:?s??i????Q5???_sg=?? ?Cm?]?y??n.????^x??? ,A?~#??????U ??b2:3?q? ?????V???T???|=?:???Zq?iQ??O?VK?|}???S??????0?/a?Q??/ Nu?HRNp~???N3?)J??i~=?g??H`X??l-u??f???xb?xRi#C&?et??X?8^?k??i?6??*?6??i?X??;???2>YNp \??~Z??g??? ??? Ao`?u??:??d?vx???,w???m?0M?C ????%??!??R-,S????]?V?`co??? ??95???????+?;~???/I4:????;o?x{^??65??a?X????_?{???????%????1??Y??}? k?~'?????%??,<???;??R |S?s?{?ZG? %?????~?~?o?|l????{?[???^?c?g???-?gM?O???O?^??m????m?E??k??D?w?~xK???5u?????]???2??V:????k3?????C?Xi?Bu$???:?Ui???I??tl?UGQK??c/????\?H?'??Z=???v???a>+X~??S????????????|o?V??????g???????K?O??=???hx/?>???4? x????h??E????xL?????v?u |?{??~3?o?/?????j/????O???h WF???<??{]????R????k> ?????M?????D? e????N?V?Y??????????<#?|Y? ?_k_-~ \|???G????Gm?Z????5?[???[? ????????cx????j ????????????x7?:???????Z???????v???G????)??? ?l??g]?C?u?????i?????9?|K???C?|'?[??Z???F????[???????]~????8g??/?q?,o%,E:???9??N? ?P??p???%?yb-)??iFS?%??????????r?SR?k?&??????g?kZ??)?BI?S???F??|'?>|H???????O??q?>?m?w???k?0???????A?#?}??? ?_T?g?$??^??"??+?R?P???f???Z?????O?f_????t???x>?????N~??W???2[i0x?A?4??~?? ?x???????|-k??|Ao7?2??>(??f kT?{?y?l_?#?????v?????|i?x?p?????^?? ?T??????(????o??9???/??q????+3?m{E??m??%?=A???^????o????[??:???n?x?L?~+k^???| ???????}????Bm3???}????/???:?+ J???o'{?? ?^!????X?E?/???%QSu??????G?? X?Q??????????'2?e? C??????g???????????G???????w?^~?>4?#?~?:????/?c/? ????????????T^?.?????[???Mc ?~ ?^?i???y|=????@???`????x??,??4??'O??? `?W????{N???~&?z_?A??|??x??F???x6???O?ho??1?f????A???? M??.4??{???S?????_?9?+?????W???{??>?.)i?,u?{?(?; ?????]A_4~???N????c?~??>/|O?????3x???zg???M?_?|q?_xG?g????0???_?Z??~?t??????T?????K?????????S??|7?>0|P????@????o?{???M?o x?W????77?n5F??C??s? {Y??h????????wWJ??-??>>?D?y???>8?_???????|????\?K `)#?B~Q"W?~?L?|Mp??z??,????it9?K?? 77l0@fP25???U?\???xiC}??e}v?*V?W??ST?????????v;???Z???????????}C?z%???????s?+??5x??????.t??k?l???x??|G?]_?x?P???1k?R??P??Y5?7?=/? e?wY???-#_?????????7???'?Z?.^?Z??kz?? >\X?m??~??~?cx?????F?G?^ ??/?????Mk@?|y?k?>~?6?/?u??gI,????|??&?s+?O35??q????&???N?w?zuI^?I-JM?0????M?}7?U??d?7?`????H'?ff???9??3??_j?n??k??> ???5]2MZ?o *?j???.???N-?? ????????{}?i^????X?m?}'??v/!?N?e?????\=?h??F??????S??S?4R???\???k????.???Nnz?? ???E??R?jO.??i]r?J+F???????N??g??"???gt???|K???JQ???z?? ?i}?h?K/?#_???a?>??"wx????4????U'??g?????L????T??N ?T? _???????????l???=??+Cg?O???????D??????U?O?B?%???ec??(?v??2?3???'???,oI?I???O ?I??l?K,???=0?S???1???k????L???????????y?????o6?s??D?CHTO?????c??c&??f;c&_)?3oC?j?p???OI????F????p?m{??M;???JV???8 ????????l??e?m}?N????6????\Wig?"6??!?s?/1R?H+????r? P??(t7_?????????m5???rK?????(?m?v?b{u??vX?c?K?k???Av??????$v?! ???????e?K?????^Hf%??????c?K?.?o??[?Ew PCm"Y?bn&?Y?b?W$e28??fA?m|?#????J????t??WD??^??i??U%??:?i????????SwM?Z}??????kyy-????Cu?M?q?>?????o??CwdY$?o~?? #????5?f?????A?? ??,?#C????G???K:???|?k?|V????^Z?????z???$,???n/Y-??$XI??Hp?Y???c???{??'?; \M2????mn5??h?8nmt?%[-62#?s?t ???dM????????n?g????I????N??/??b?yi.m??vZ???5f?i???9? ??m??$K7??zn/$?IW?? s?H? ?.&?$ud?????(?Z/????r?????Z??????xYXY@? ,???(?1\?MMq?????c???iMok|?U????????H./?????V?'??E?S??U??e??????????om1?[O?_==???????s?h/?_????? ???m?????=,??[???7?f?s\]>LS??b??8?????u*B?Q?j?q????????{???=??,;?F ?'8??????????????/?????o???E??k???c?????sa?????5+ ?R ?????x??'uq???g?7???~???w?;?g???=x????? &??:O?|???jA!-JU?] F???v????P??p?Xy???q?9c???Z??? ??????f_?f?6?:???IB?*? ????a????(S?*5?R??(?Q???%m?8?m???O*???GFV??h??+???????O?z???????????k^??S????k?v?o?5k;x4??%??f???>%???6+ ?K???????-?????A??????????/?~|???w?;?j????5o ?>?I???>,Xi?i???T??&??,?/?/?M????I?????\_#???f?????%|c?v?<|??????865/?J?xz%_|O???r\I?8????i|N?v???QoV8???y?? ~??????????????+FF?~'?a??A??Z???I?`xk?JR@c??d!{?t????c???f?????_E,N?J??\Y??|/-??????ho???????{?O?u?????i?(~???)?'?G????X??O?o?? |?;????)?|@? ???B?6???5??????-z????????S???????c?_??????3????i?]~?????/Y?l????????>i??????^??h^ ?????' ??????I??3U????6???????z??????7????? ?/?"|'?~?g??)??~?>=?~6|8??m????????D??I??????/??%?c?_K???-???WF?ii? +_k?5?X????h??i?|F?{?x??^????????M??+I???S????~ ???s@?,???w?>'???|Y??4 s???v?d???F????[Y2??'???????o?=?;???o???>????? ?"?}W??????:W? W??????sC???ow??;??Gkg????b]?\}R???[T?????kR?? FS?W?y????^??:???;?/???_?M/?k?W???????I????Y?_?}jo????t???:jZ??<#{??O?5????? ?????/-??Ee?O????????'??? ?g_E?????_>0~????l?1?/??\?o??S???e{???V??S?k?????]??M?S??C???????j?B??~!?????]???n???~?!??????~.???|z?>???#?>??I?Y??&?l??h? ?j???????[?]??? ?>?_jZ????&????n??x?G????????b??????y?qu????_?[??>?????< ??M?.?0|A?< ????o ?Z4?Z4z???,Fy?O??dy??~ ?`?*??3??8??BxD%??Z?aRXEJm?hR??2R??Vo??W+???(?jN?T=??????8??Z2?????}/?c?????HMc???Ic?%i???M?????? ???5?L?w??L?s*?O??B?cv?@???~??h???)o?~??????k?o??????I?????C???C???????.?F??R??????o?????x_T^-??h???M?~??o?????o???i_?7??O??o???b??????????<??7???????????x3???W?u?]???ox6MX???`??J]?&???? g??C?,]YK:X???zXz?y???I? 5hU?B??IK????????b1X??K?4yIJ4?\??y/{?-6?x?~k;o???a?a???j?????k????????f?????R?7???/????am?Zx?~>?'? B??#A?4?~?x??t?v????-????N???o???????'G??f??K????? ??hK/ x{G??!?~;?????5??cJ}s?^$k???Wh6T|bo|g???c??????????O??W??|U????fMs???Ua????k? ?-??3?jZ???DQ??k????M/?~6?????f?xS?????????6?/???}_??(????????????|;?y?? \??i???????se.??h?u???s ??1|$???c??????e6???\x?@???no?z??n?g??:.???~??~i???<???:???/??K?j??Z??go?A?U??Q?dY???u?O Y??]??n??x??V?????I??/x?Z?c??4?OY?????njSY?ROe???m#?I}t?&???X???,^'6?g9K???? ?????V?????Tp?P???415)F?S???_??(F?Ee?????Jn?95???N?Z??R?]_k???6?9d$P??RTq?z0???o?w???V???? ?*q?c?N??J??J?eQ???&?K[????j: ?*\??Yk??]f?H????i:vb?> ???>/??????^Y??s????lTH?(??????f}w?P??w_???O]?????V??rj???kV?:???c???#????\\_??$??? ????8]?S??c?n?{?_?????[7??g[[???_??_m3????????????\(?Xi~?WFe????????+.?????hF?8??|??WKW?+Y5??????L?wRu'&???-o?Ww?.?\??R??5??7]?y???i??6??????t??3?^,?kZ????\?v??V??????Ar?^?sis??r??vm??????x&??o??m???^??9??????Z????M???I????+Q?#??'???-?2????? j7?_??RYj?0???~(??????(?s???m??d??mNS?NR?3?$??????????????#?q?4??????-????????????a?c??????F?P6~??S?m?$??cY??k??????e?a?iZ ?? 3mq ???;?~,???.|O?]SH?`[?Yh^=7?2?6j??u?2??????????.?cG? ????A?^?'?&???~'|E??i????V_?????????Z?|e???~#i??i6W?*??????G?[?:???u???u????^k? |????0Z_?-?u;?kmc???ZSw3??xSM???-??sb?\@?,EJ8?59Rq?v^?c%+?-?W??la^-???/|@??< ?|C??k?E??? ??Sg.??ki?j??o???????[i????7???????????rQ???_%??M???i???b??Xm!x???j????X?93??q?????Y?B??k??~|v?????|????mt??? 2???jRD?io??? ???->F????Ey?\j???8J??U|???x???? ??[t=L??|???/h??????????S??????^?W???]?{?~9?@???#U????????_x??H??ik?[? e???????-???H??????3???%??4???>??u-j?????>"??mn??w??Y??'??zf ?>O^K????}V{????.u??????k?????W???????h???R^Wep?#??4????|7{f?r?s??X?{?I'[??I?E?i? hp???T?.?'???|????\????)j???????Npj?k?ue??oM[??z?-?Q?7??o???;X?{?O2??U???????,}?o?=??????? ?G???5?b?????8??|A????-S\?????]n?H?D??O? ??&+?(??Y?,?c??h?aL??????u???????? ?!i?i?1?W??m???o??$???&??+?7??-O?????Z>?-?3?????f???^j=??$k%?????E3y?_6K,G???{??????u+??????????? ?|????!?y?3?0?J?e)J?T?9???*??%IPsI+?V}? _ ???b?zp?)$?x).????????b???;???????????^q???3?j?????|??S?????_ t{+?CV???#?????;f????W? ?cB???T?R?&?P?D+?70|F??y?#a????"v_??&?S?Ap'$}???B???^?NJ G?NIAY;???~"???x??]0J?ix???+?????? 5??z??<??? ???????T???5 3???x3?&?a}?h??c??1 ?M?dHd?[[??fM?q?k?????+???&?~)???-?+??;?-?G?5??W?{}4??2?:??o?v??+]|U???n?u~c?[??bo?&???/u??/??h?????o,????}-g?????????? n??? ???[??e???d???hZ|?;??<?B|i?????.x????#??*?x???4???????????? u ]???j??1??U????jXo?yIuT?f??V?????9???3~???B/?+W????{|a??a????yB/k????? ?-???uO?A?????[?E????&g??T3?[L?/?;??o??Tz???M?g?H?? HT?mq*<??*????\???????:????????????|}?F???????mu%??V?F???}f????F??p&b?~D?? ???_?H??? :1u??????V]\????v?4??/p?$j ???T?}o?S:?|D????5?8????????7???I??/?nQ?z??{?F??????12?8??%^I???R??H???}5Q?8??????' ???$??????????+$?9r??'9?0???]i?_F?q??HD??q#@m??????I??my????}??.o?{?J??1!V??db?Q&?j?]C?? ?B??Eq??5K? Km&)Ye2%??q Vx?+}???.Kw??4?r???????Y4?io}t?~?????Ta*QT?????????wZit??????????????$\???5???$?/?m??`08??w?????f???7U??dT$e?????E??V??'?????\????8?Q????^??????4?y?A??~?e????f>???~??????^~???#??4??????{Z?txu?KG??O?q?????s?i??w??Byb?{?????-?????????Z?e,e?K/??????_8j??aq/???_???H?F?~???8???? +??????w?~ |6?!?_???iO?+????mu_???$?.??Y???>7?? ? x?/?|9?E|N???-a?(>?k^ ??.~0k????????1?|c?????t???=??I}??*{j7?Zs???G???[?-??????? k?O?#??[??:???????3??????u?????V??I?WO????4o?o?Q\ M???4}+?s?????6?E??!???y??a???????_[????>'?m?_???????~???@h?\h?e??|Z??q???>???????_ ?;?j? ?C? ????n-/?????*?Y62???????|/?~?? ????????? ????.?????Ox[?:??? ~???????V??~????V?????$??^?&?_?-???;^?2???M ?????l?}r?y??>c9:??J?{$???% ??_?p?h?-s?bx~!?r???Q_%h?????x??{k{??????>,~?????5/?:?>/??#?? ?)G??????4??????????S?o?3s??1?????j??g?6???R??)????g??#??????G???????????#??????w?K?/??f+????$????o??K?o?_???Z??,?Q?h????<%?i?????num@YG5?_???6????i???j???~?^????|c??Zw?o?? ?|B????????y?(?S?Mm??q????]?????/?h?:???k??Z?6????'?_?f|??? ?y????k???????~?]???] ???]+?^1?????4???xXx;????%????^?tMn ??70[}?U????J\?c_,???G ???u??Nt?Z?JV????IEsRW??4?k???-???_ xKR???=??W)???????k~?~5?$??>4x?????<3???3??o?"??,????fmg??7?u????;V?????$??4??X?j?s?Cmk)?;???(?????*??R?%%??[?a?S?Y|{:5#Q?wm?r?7x?N?u?_??/??^?n?? ?-W???x+A??????]?xG]??:>?m3??N?}?vV9?X?H??R??_???o????????X???&??????@\?k????0????/?4?t??I?^??????<} i??/#??????&?K??#???b?&???'?????x???O?o???(G?????S??]?+?????*??N??,?N?pP?/6?I??2N???I?]=7?)??'????I?}C?R??G g?^jZ?f???D??????O??????^?????S??Y???? ?_?i??????P??7WK????{??W ??N?ev1??0R?????d?????k?m>x$?N???'g*?w???Tu2B?Y?????$p???d????:?yu??*?X?S0??8?M?e? ??WRki!?o2 ?Hb?e??g??5?|?sm<`??J???e??O??8?D{??5?q??f??:R?^R??IS~??O????m??G??j???Ez??i?g'??d???m??????????{_?W?????~5???i6????/??%?<7?? h??W??e?[Y\]?x??????k?<:??l?z&????^?Xa??????/c???r??????[?Z????5k?|G?O?u?K?Z??qs}?^x?U??_???:??]?{2??/?7X^???|Q? ??????|9??????o?n??o?/????????ww2?O?x?Z???_*V ??5??r<+?9)AIu??2v?J????????4???5??????????z?? ?5???cD??????X??)?j? ??oD_&7?.| ?;????[h/???(?|9?X????d??=??N???L .??h?k=?^???????? ???k??[???\??b$:???-3??]????%?????M???h?????r????t:??g??c???????x?{??$??v????t??%???!??u??s??_h?f????n???[?G4?6?????? ???y?3???i?R??P??^e???^??4?5???k??7???e)h?z;k?u???6??-uG???|Wo?? ???|,?t?f?????Q=???_???$??]c?W?|]?K?+?? \???? ?| =??????Z??X?v??&4?.??5??|7?T???1???@? uB?P?h??s????|W?C?R??e????? 4[=?V???~?Z?????/C????~???I??/q?_?b????c???1??t?c???4=S?7???m/V!?H??u??w?^?q??j???_e??WD@[?Eo/?Ksu?z?aYDLE??,M? p??P??A??????????{@?u???[[?g?>?'?%?.?????? {??4?O?/?7?~ ?U????x??>?????t-WW??--t?V??^?? Cp?Q??????q????W?^?o?~;k?*??????????];M??5 xs??>?i.?p??J???q??;S?3n!?W???`2?+????\O??p?-???X??j?QqJu*??Z5(??J.?4?i?~C?y6\MC0?MQUo*.6r?I5??qRT?&?^???,?????#???1?&;Y???$?pN?w?:???5????m?c??{??k?z????g????8J??????o?u7?U?F??? ??????TL???]:'????G?k?k?V???????_YB????IGM,??~?:?????????EZ?F?!??}????n??k???hh?|oocq??? ???nth?N?]?8.?h>q.??q???bKo??o?~(?[??W?mM?F?I???g?p?%??*?I*?? ?;j??Z&?f?h?9!???XD???I*????1!pWsn????h???v?[4?Ek%??l?C??@\?????[?O?P.U?/?+A?)F??-,???]??m??????qM?k'd??}??}6I]??? ??????????e?5 X4????2 ??S?D???}??l|.L??Ut1?f???x?V???}B???Z???-ax?vt?A ?^ fA??_T?"??i?2?????C???h?-??$B]?????n,?????I+?<$?W??K???W?V?k??}???o??U??J7???}?wn?z???V?Z????!?|9cc??m-??_c??M ????6|????v???i?4?l.W???,??{?+??G?coh?\????i!??????D?$?? K?-W]B????K????X]????a?d???V<3? ????_L0~???BP\?]??0?QTH?xG?"?b??TIc?0$?H9???/T??mH?(R??k% }/?K???G????????)???u???o??~x????K? ????)????G?/??????/?? ???_ ?? ?x`????~????W?:~?????????i~.?j?9?M>??mL?}?-z????? ??r????n?c???????X-????????????B?h????l|e?????3???????>"????4???V??4?:?.t?? ?????eiG??K)Pk???:??? ?~&????n_????b????ay??R?xC?_4oM????? ?n??????kW????[???E???(non?????R???QBg,F$d???????.???E5?;?7??2??A??O??Q>??;??2?v+?????[?|`??t?|$??????kZ'?? ?f{;]?????-??,a?I?t?/????/??Y?j7?+I#?#?M??E???N???o?????????>+k??;??K{???U??:\??@ ?Z???????w???????wu??S??n??k}0E?C|_W?*.f??1?F*>}???????????*????O???_?M?cI??? ?'??Ox?M?<oa???????6~/?{?mq_?B??:'?|Y??r???,?? ???.Rb??????l<?`??>x_?#???h^-???m???Z?>9?[d????vM???s?A??1?[?O?)?3!??#????N?f40?i??????,? ?g(C??7??_R?A???m9WW????V???G ???(????*Q????h????E{z?Q????>[;????_?O???????]f-7??????T?jPx_Ga?x????o&??}?U???l?&=????q???O??????KW????????"???m???e???}[]?04??DAoeP?[kW?W?|M????z????Z?Z?Z[??.?R???|??.yY??g??9;??-?|??? ?W?|E?7$????\Gy??f9.???=??????j??l?z??f 5????/???%g'|?w:3Nd'?????M????]?x{V?t/h7?u?Z??.4?[G?4????zf???6r$?????2?4.?E,+"2?~$? ,??? 9?????_????3a??s?????N$j??-??o???z?1?|?????????>2?'???ks}??n?o???f??ce??Ow???'mb(mn%?NK???g"6?#&?????????)z????n??SUb|{??M%??????y???>%??1?o?????}??t????7?,|}???!??s???]V??~?uE??>+???[?? G??(-.?X6j?)???P????O?????8??????>x?????????~|U???=??????gO ]?b????? -??Z??????????????Vz?????????{?_??B?o?$????e??_>$?`?g;?????u???M???o?zG?kO?[?7Y/?+Ox?E???o????C???T??4mW??"???-?_?&&??;???g????CM??umm??\???7?????gU??M????=????W??}?????5??<??M?J???u/???? ??|b????YmL$q??3|????j???x?8??D?9J7????O?????~F??n?:?N????I??w???O????/????Co???Vm??????i????}?(?????Q?O??????????~0?_??????notT?????|)?o????4???~??~?? ~)??U??>(M?!?????.?? ???^?p???i?G?Ss???_?????|i?????????l5;/ xn??T??{k???????~??????>x?z???|?|}???|$???M?l?]M???2?S??????m?7?3[??????g??c???????????C?,?W_???wC??~|f?????~;??y????????.%???Q??;??d:?????k/?W???'???/?{??????| ??I~~?Z_?|???Z???{ ???????+???7?~|5???]+?^.????,???7?4?P?b??]?]hf????d??~I8)Y?I{?M?x?PIK^_????????|3???-|o?????R??????3???W????4K?????f??m<}?????j???>.x????'[?????o??i|d?Po?? ?=z?E????y????Pm#?W????X??^6???M?????n~|B????_??B?.??i#??O k?????gP??M?7:&??5?$xc??????x?]????_?? ?0|g?V?? ????e????_????????%??????~"????]?????z?????????Lz??????G?U???+?l????Yx??????|0???? ?%????>??????~#x?B???/x?]_????????y?????x???\???*y????t???[ F??0??&??I??j?Z?M?S?g)9???RQRs?{?~hII?Y]?T?*??'t??????m~???2~????-u??o\???^i:W?O?H????}s???'?????o?|?????6X?W????O??4??????]??v??%~x????Z???????\?i.???]???????? ~?????c???????7V???C<?8.4?v7?H?`???G?R"?R?D?HU??????k?? ????:???hx/???????????k??????ui???C???m_D??????/?cmu?U???I0C"p?#??????9???0=?????8?M????:???a??Nu???IJ?9?b?N0????q?e ??M??c~????M??m?i?n?~????P?m???????Y? ?7V????~l????+?d?o4??:>?k??UWb'??? xv??b0G@?????V????X_?c?&???ZxK????;???o??????lm"<?C?1?????_?y?OM???j?\??-??qGe%??? ?S?UA???????E????~:|?????v?I??i??7?Zj> ??u{{}J????a?o&?E-?n??"3*?????C??@???????G??#?Meks???{o???$q?7?i?]+??'.??Go?????2?????????0??U????7R?X8?|??c(G?A?{???M??V????=hfyq??F???u??%*?pj2?Qpm????????_??Y??/U?_?????? ?y?x??^?*????~????(??????Y????M5??<=??K5??]?v8v?Md??????????o?kk?!?>??L?x?U?ey[0???????/-?Y??)Q#?????????o|T???g?????rx??Z&??_?k}e?}?z??????N???Z?????y} ??X?D'9r?#CR? ?GX?\??9g' ??????V?W???L6?X?????Y?????????$|B?1?o|Ky??.?S?r?xfY??E??EP???{O?5????)????Ie????????E?i'?L?]??v?%???g?5k?????U???#??s$?2????<?N????>??ou+???"?????????a??????k?a2??.+i[???{???????)5?|G???\d???KE0???~?"?2%??$aR3?c ?e???2??&evm?d??,?9nI???r??{???wm^?4?y&?%?c????T??J??????|??KNX?5}?m{[_???m?b`?o? ??4?? ????X???y@?J???s\6?)? w??#e?7O1%W?0??@?D????y#??|?w????????i_F????v????Ah????wu??Kn?[Y?4m??RB????\?r??vC3??x.]H??????5??In?J??G?7?A??G/??8O?6???(?M??h?.??????[?t??F????[?M6Io?n}?? ????X???????i?l?%?S"_?Y????,X???F?|??b?zn???f?]??x??r????+?_\i?O?0V}???+??X?B??\?e???EsT???????v???t???+??CZ???7????/??rZ$?v??Fo?5?K???om^?{??<#??%]?6?????t??k????U???H???<#??B????]u,??ev????3F??f?%J2w?YZ)???7v?w????:?v???? ?X^?Q? l????????n??v06?????????? ???(?$???????1k??22}?n??y??4??)?$???*6?????0|N?u#tC'?????@????6?? ????uuw??kmkk ?ss=????X???????????????I??s?????*???i?/?_?C??$???k9F???"?????????|H??|?}*ms??,?ze?F$?R????5-B?VX???O??/? ????O??n/o&?? ?O???^&???7?i??7p?!Oj?4?|C?"?J?-/?"x??9?? ??n?i?4e??t??[i??-#?| ???E6??\??????????Ik?f???>2????? ?????(?|-?x??I???????mwM????o??/?i6z]?Mm?Iu?}?x??;????b_?z????l???|R??)q\??u?? ????.?o?Y\?-& mn?U.nX??????d??9s??\?}??T??yI??i)?'Z3?/?+??g???f?L????7Z?j{8?'?uE-Z??{#??V??????%?????.?eo Y\9??V???????wo?7?l)?@O??? ??,????l??`?v?:??=???}? N?/?:}?????.B????Z|wV??)1r?g`?O??V?Q???!o????+????h-?-.????_x?Y MOT?5? Kt????Y?;?Jq??`??;(b?(????J??jr]?95xU???;sJ?T?k*.R?c}?w??5????6????????f ?????.??????? ?^??????hUM????=?e?T???> | ???????Q????"?D???j~?]??????????'K??m?9e??n'IE??j????|aqc??7??;?i???)?1?\\4v????9?I??A)h???????x????T?q'bp*??,$????????? R?mB??&?~?^???????e>#??~v??.g?W?k8J????? ujFk????? s?4??g?O?>j????????nR? ?o?l!????~?5'??U?????K?A C OgV;Q?B??1???j?/?S.??U'?i? ??N?n?T??96?;{?n?2?~9f??C??!??O????*???????7./??1???????|??:??7^?5??*???ic??Y??Y?O?Dw?zF??=r??3??3?8????^?x??????,|?q??k>5??x?\???O???~????k???x??????x{J????uk???B???4?I?????l ?_?C?{vT??_?????2????sM?o?b5?E~???h~(?9?{?C????4????????w?"?-???Q?V???o?p?4?_????Mo? V?H???KYQ???N?d7RH??n??X?;,Ff??I???s?o??x????X|???????h~Y?S??g~????U???G?{??<?O????|J??Ox ???_?x???-????s?w???.???w??Z??g???=????? |S??????}???%?7?G?????G??/?~'?Qe?/?Z=??????_??_h??w??;p<7o?]?Z?r??>????_?_?K?O??go????^~???g??????7?rc?>????'??}g????3W??%?N?c? ????>?[?k} ???? ??(p?+?2??C&?uN?z?gW???m??5R?# ?NsT??9?Nr???*?????a??R??Wn)&?????Q??.euk??????????h>???????+?D?*????? ?????g?+?_???>??a?????|1??1????V??t? h??????h? iv?/?5??"^R??????7???0???m? ??-??1???????s???D?}w???7???????Q~?:????_?|3??????v?????k=fg??>;~?_?_??x??g?4??O???????? >kV_???????c??&?_ |ki???? ?t-???-<=??x?^???C?/?Vz??/??$?~?@??????????????_?;???????MkP??????????????F??Q????p??:??X?Z??t? U???1?*?U*??*R?.85? /?Y??4?ce5N???-,???6?e???'=j]9?????:???0E?W|o?'?~'???+?#?>'??~ |P?%???????K???????z |H??~7??G,4?:??g???~??^x??&??kO???u?w??????#i?_?9????k??t??>??>3?V??/? ?.?'ou??4/???w??_ >)x_?]?W? ????;I???o/%?????0?a??C M'O???{??b?q?8???B??t_?????w???????m???Y????QO |`???O????O????\?:~?_/~0????<???'???????~#M? ??tK/ ?_?R8???|?A???H????o????/?y???y?????????e???w?r?[?K???~?M???????s?A?6??W???oq???zW?(?i ?L?L~?1a???G\?????7?? ???~???po? ?????g??????? ?????????????,/o?O???>??_j?6????? ?U?.???i?6:?????????? 7?????_??????l?o?t????&?????_t?76?>|V?$????????Gopt???J/M5???W?s???_~???|U??g?Eu?/? ?)??k????|??????>!?????_?$??????????;????]P???PmF??l??Gok??k??????6???z-??5?kK:????????cQ?A?.-|????Q???Y??n?y>?????????_ ?g/?6 <]?????g??????f???O???? ?N??}.? ???A???u??????jKy:]?????#???r??s????^?? ]>?????Xs??????sWw?????c??S?'??u??V???(??j??Cz????)???rx???9?F{U1??`AO??I?:?.Cx>???o?????????O????Z[??R?u? ??XGK?5?b[F?"*?=???[\??i?1?E!?`????~ |4:E?:f???R8??2B?v????e?? ?F1*I}?K?l3??{lV????6?|P?O??$???M???=?? 4?m????D???|?4?? (Ap?y-??q??_? ?Kn?3?[??3? ??L?p2H?_?G? ?:h_?g???_??Aw?<7???#?"_?O ?2??? r??E%??L?+R?/??y????Ic????:?|'??L????:???xJ??y?2? 2? 05???;???????#V/?:??]??*i>??9??s?b?/{????a??q????y?? ????~???w?>??????,?k???t?O?4????T?"?.? ?IP@5???f9? ??9???y?mV?5a???&?C?b?|?w???????[P??????????%?L?O ??b[-j_?Q?@????d?4???#5}??%$?V?~??????(??0?IQ??Y?t}?Z?6J?!J??7V?Ok?F??H??Z?jn?q?x???'#??? ????)??*XxJ?"??ueN2?Jr??E^???????????;k?=??????m??x????b?i? E???B???????I&????m??????5?6[t????ej?4??o?{?d~??|???j???Z??|#/????i??????Z????m?^ k?????!????4 I?5$??']? VI-????????a~?^????B~? ? ? ???> ?????????????X?K?k>"?W???'????dMN??i?:d???7?:u??0????t_?? >???M?O?|W??g?????????????g?~?????}-???x?{???n~?? V???????# ?d?M ???Hbyy)?\??JtjT??z?5%e6?Im?)%?#???1??????,U?R?IEV?J.??}?q?J?"?d???Z?1Xc????5?94???z?????o^?Y$sS?????K]???W??^??b?][I;??????E?Cm,?E?|???B??u????J??t}?A?$_??T?E?E4?~??+??????W???8?,5m_VM:??]L?v?????iI??OO????h?K?????Mo?\0R???/?^??e{??{?~????O?u?b??x?|G?4??u??R?m?:??Z?3qB?40?????I??D???u??"???w?A??|S?J?/?????>???????2X?}???]'?$?\J?s?4i???-??u?#???$wi??H?m?W??%m???#|=???;???k??}??^$????#B?T?,?-&?y?<=?h6c1????Dh??F???X:|7?b?????(A?R??&??vtn??^??RSIs8;;????fXw&???Y???_Q??&?????0??A???????{?t$??k=6K?tXOu??n????~?|S?????_?w????!????$?????:????cT?G?????[?U?????&??\??/?~)????????'=???????w????k?,?~?-???M?i??E?wG ???U^V2?%?o?^???O?????E??????Ex???'?~?6????r_?_R?|]?x??z?Go?izsi?}?????MjWXn ?5?O??if????I)?5??Ms8UiT???f??'?????*Q?g??????7?I=cr??u%6???m?7? ??^??e????-????mt ?W? ?T?/|/?]j??'?.5+?SzY[??sN?h????$H?M0?????"?? /???????=?????e??~?????g???H???\^????Z??(Lq]k7 ?? ~D??&?S?5~??t?????xkP?5?5_?0?j?X????c[??~2??|?-????I?_^Y=?kw??:}??r? ?? }????R???????w?#???A?'??6?6??????????????7;`?m?X????e?U?pFQ??^??5)bymg8???g=ouS? ??? ???g_??????\??????7uN*S]?????J.N+Ey???k??? ??????D?Lft??E?R n??????????~T??~I? i????4mNV????? ??F????8?E??#?Q,2D`?)x???????MD6?m???h4-& ???C??K?k?f?_*d?O?A;??_?y7;;?~?|N????g??=?S?G??<7???x??k?S??????g???4??? #?7??> ?<9??G??u?n??(???K??}6?V?q??x?e??J?[:?u????i?_?3?m[??????M*?N????????[?Iz??rI?mW??6?;??x????f?? ???????*j6t? ??_e)E? 'x??Lq?q??W?s:j?X? ???'????k????,|????{???/?_>?????? ?x???|A?oY?j????l ???mw ??_l??e "??+ ????ue6? ?p9?/???s?????RU?(??????0?#(I???u"?HYFI?&??i?:Q?X???9?Qi???&?z????s????O??????w???????????/?+???R?? ?.???????|D?~|?}????5?M?_?~???(?z???W?#?????/????jQ?K5???? ??r??|k????????~-???k?? k????/x????S~???k-#U??????x{?D????u9 ????????ZM??G?l???-?#??|+???_?o???0??s?3????<????W??|K???? ?_j??????Z??z?p????N?>??$??M???G?w??u?[?????~1?????'????_?U???H??q???_5??a??4o???'???/??????6??????w??c???$?d????e???????>?O??:??8b^?gNp?? T????)?????JP?J????5??vM??,???W?;?N?6|?????NM??$y????????????qx?Z??> x ???????t? ]|???/x??"????_?]?????????D????d??oY"???+f???h???????3????????Z?????o?$??????????c?????W?z??O?????w??$?d???W?V???.???????o6??^I+?m????dX\]F?&???~x????J?? ???f????????&?h?? ?????7???~(x ?~#??_????;?xJ??>??E??'??5?[???j%{V???)????????????? ?)????????"????Q???,~0x??????3????>X]i???f?5??2?lr6??????????`?w??~3??~??????z???Z?@????b?????&??y?%e?j)?Y5??o??????J? RJ???f??Z???GW???'??>_?W?????????s?|?????>-?e?R????~=j????????u?CL?k?????y?h?v?s? ?b??????????/????h}?g????z?6??7???0|^?????'???? >i_o?-??????~:?M?i7BK? ?k~?????=??|O ??W?K? p??8??/g?O?????}Y9'VJ????(???G???I9??J?z?????6?)G?~?????-~??'?/???O??$i???[)?M?6?O?[^X?M???}???o? S?^:???h??? ??{V??? N?O????6?(???/?[J????????????????]8?B???c????O???+o?o?? ?l?K???A?Y??!?F/??=?i???????;???6????0?5???????????x?W??[\?W:??u?c??m7??:????a????+??[?G??'?????k?-_?o??K\???]?W????o|H??w?????SiR#???k??????vw??O?8Z??!S?W????a???!R??!N?*|???'c+?? ^S?,????3[E?????;]?7G???O?"?o??V??>;?M?????1??|[???s??>x??????????|)?[?????\x?l?m??D????yo?^]i???h-??_????|?x?????????g?~??G????&???? ??g?e??|E???????>|B?X???s???u???u????v?F5(??]R??????q???????z?????????1?X??^? f97,N"??T8v?[7 ?*?lC???e??Nr?x?N+?J2?!??;?=fi?VU???1??r???7????(????2nVkW5?i???? ??_S??=??????s??;?n????f?????irY#??Y????\?P>P?|?? ?_?>?w?x?b?6?"keZ?bF$3mb?????E'????> ?????=c????/ x?Zh???;wz?????'??\???SG?jz??(.7?2??>?ha?[??? ???C?A???????;Yv????O??[?+{Ha???Kf'?o?#?e??=?qy????e??:???P???V"?$?$?F?e)(?Zn?'3q???8k>?B?2^??? o?t????MFW?Z?E;]?????y]?l?"????m*-???7J[1?K???j??z_?m?as5????j-6u?g???o?wv?K*???K M???v_!?/????_??L???jn???f????C#(%?^]>L????!?*???tyw??Yyd??a?;?I?I[;?nA????Z?/????[???FN???V??uf?^?~?k_u?g??Y?3,??(?=o??2????????e?4q??Vx??bu ?\???p ?H"??j????????*?n????????N?+???]???]a??+I?mP?????]??0? ??>!???f??X?: ???;?%W pKc???? /???i??:?(nu??~5?<?]*,????i??G???S??2?W?-???9?m?s??*??????yd??\??N???????0y???,*???RpqO??r????{???d??4?TD?o?Y ??F?l??????L????????????`?<;?r?????7??Y??I????o??!s?????? ~?W?<?X%O?????&*I+??n???9h??|m????.??O?W?<`??`??]_B???M+D?v?.????i?g??^@?????W???|M?kZ??j?????:??O?]j???Oywx?c,??Zkz?J/M?i?w{??w?:M?FX??A$??Y?y???!Q?&u?/.B???G???~b??????"?G,?G7??e??w'?cm?e?t????/o????o4??8???? ??6?]AUlO??%????????H"???????T?!??????????f1?,??????M4v?g?Z%(??????\?wK?+?e???~?\tp??+h??VY?;b ?Z???)e??>f?????Qd.Vw,??]F7?dF??3??9??N??? ?W7?dh??????r ???zH??6???C?!?g???GR?A??????Q~T???d?$ g?` )??E?;?^??O^??MGdd?????i?-?z?m??-?a??7(?4%.????????nb_??V?I???[t.?c????+??????&_?wi?[?????5o???Q?=/\?:/?? ??sie?Y?auO ?{???Q??u#?i??E%???_?Q?'??k/j6???????;Y???EM??D2?y??.??v]?,??]??Q??4??6??Vi ?pY?aC/??????GZ?%?????t?Y>{?zEA?????_???_??4???p8?^k???? ??? $?/?K??m?O?4?????ski??Gi?Y??t?%?- ???c\Kn?*1???Xf#??1e?2?9???????$?ux/,7n?q???%Yd?3??[???2????c????E??:'?l??[?K?????? E?>! ??? *????m6W9Ui4?7k,???o??????????mVx???4???6{[Y????;T-wmr??O_w?~?,?,?M1???g?????k?d~????P?&????9??w?i.h??g%-?|????????z???[]'?[=???|?x???_ ???m?I???i???f?g?{?x???],mtkS?y4?E??(???k? t?w?????W???? ???>????>??cc??>x#?????wqm?u?YtF?Fyg?????????7???_?i??xj?]??o?5?GI?n? ??>:???5-[?K??I?????M?)?`??????????g??|????o?.??????4?? ?q?k ??F4??????j????)??Wm ??i??k?`??3:??J?5Nn ?Tm'NN????????$???x????4?^?????R?????U.?r??7??b?????o???_?R???????????<?O?+??0??o?? ?o????xS?:???????j?xH?}7?????n?Z????Y?? ' ??w?Q?????L????B???+?w?|-??1?3F?? ???x???w??#??i_??.??iz????j.?o5?]]R???|t?~????e???????F???O???)???H???[??9?R??? v?H?"??? ???XV?D??iA\??%???x??s~?Z?????8???o??+R??o?5??? k_??Mnn???il?|C?],m#*?h??y? ??Uha?L\?a??z?z.??D!K?*??S??9?|?q??M??i??[??\??*???[??y????????K:?&?,;?~??m|{????? ??t#N??w??<?g?_ ?????o[??x??>??ivk??z????j??e?M?P???V]3??????j~?g???k????j??F?????|~?? ?? ?Y????2?????PC?w? ??~??#??]???|P?-????E?????%?rjn$ ?m??'?[:??VI???s$???L d??u0?W?)V??6?9??????6?"?.i?e%I?Y[?3H?????*? =j?q??=?M?????????????}??o?V??3~??oy??k#?? ??}GS?E??????T?F?=???]D????????????[????I???Z?w?>?????/???I?????b????????????5?y?IZ?3??? #??U???i|l???Ld??????t?#???????????;????tMM???#?`X?-_??????M?? ??M{?w:???????????jkRxn?@?|F?????iw????(,???=.?????(??????x??????}??%g?u???????Ge??l????????v?r??MbY??Q??0???a???????.x?Q??8???a?????????Qr??y?+8???9?V???U??0?W(????>"?=?+??a*{j?????{??]?h't?|7???????u?[(??o????u?2????F??@?<???'?<3 ?????????????????????????ev;???J????`???rS??????o?O??G?op?Xj7?{?????7???????6r???d?@?\?7?u,?)????+?x??q ?'?:?????(???\???Ui?z????7?????G????*8lL0u?N? ??+?m?SRRO???Snt???A?_??j????????s"?>)|1?R\O xO?z????_Dq??????*7?W???Q? Y3y???g?<$?T???6??A????U?v????5??????Oo?~$??1???~?Rs>??|0?3?[?_?WV?? ?6?_???A?x[????? ?x?^?4??????????~?????I??WV???\k????!???C??^?k??u=??>???}=?v???|r?????W7????p??U?V?]??$????????'lO??y???R?%??????|??x?>????q????Y?GbSj?n??????-???|?[????K???x?3?K???????n-[??????2?w? ????O??o???v????}??6???f?'???E?????y?]??4????o.5 ??????O?)?'c??????muX?? ??0l???c>???#??E?Q?(???Xmb?1'?s_?????3?_???~]|/???8????h????????C?????????a?L??S?o?? ug?xn????g?]Mu????RU?_? c????&h??`???Z?a?x??^MB-??!?+?wL??E???4_?px??w???_?>?}??Fk?s\?????{?????_??=?KO??}?????3?o?K???????Z???Z??? ?/_???f????go?>??g?W??F??x?O?>;???[?_?V?????^??_?Z??u???[_?~%???????R????? ? t; ???E???5?Y???^?juy?6Q?caN??F?J????'?)E??%?????N?.7?r|??Z8?\?T??4?b'd??zt???g.V?y??g$???70??jD??D?j ?UUJ????1???W?f??{?i??????3?????????????????'???m+\[??>3???_ -???~??W?.?}??N?|E?K-??????u??z???q?K?xk?q?x?????#O???+L?t??:??!?o???????????PZ?xN??????\???w??????}?+M I??mw????qo?D8{8??????(????j??f?i?????????>gS0pT????|N??????y'???s??HF9?A???pj??R????'??_???/??????7??j-W????M???&???????? ??U???S?E??7???#?>%?3^????/????^??R????G???_?|??-??2??k?z??? ???;? ?=?????k?o?????zf?s?-???G?-o??|8?U??%? ??????B??b8&????l??f?)??p???h?:j????_fq?{>???^*?(??J?>?0?p?Tk?Y)????&??J?n???[?[[??%??? ?s??qW?]? ?:o??o???=?????7???c?z??m??6?G???KJ?e??q?X?{qk???tG??f?U????L? HP?$W??w?????9?3?????m???2?????????C??G?i?w??4m?hn?[ux?????+T?F???!??s???_???d1j???Er???????xV?Y?T????^??]J_?I?HR?+)?+2?(i"????e?????????/&?O ?????W(P?Z?*a???.f?u??I^t?RI4?g??? ??????? 5??g???????X4?$?uVZ???5??MJ?????O B?j??^????I?IR??t?????4M??|?????a???ey???m??4?g$???'????>W????nc???k ?????Vs???7? ????S? ???????To????g8?o?????TS}?j3?;???b???:|?*?t????g^?[?F;??B?ox?w??f-4?l)f??)???????_?ko.f9vT?'???"??????m.,?L??5;?y?y??k?_?+???kFq???fU'&??????8N??k?xZ??e??a?(?V??????(T??TM&?+kgo?<???g???Q?a?;FM{???W????*?qj??+??? ?H?>+?tyoc??d??"?????? ???d?#???9???X??/???~5????|??Z?:???Z???x??7??I??x???5??M?0C??/?>;j???????:?@e???nb}????I<????C?y?N?y?????|??E????bX&R????sC???~?????1)???:?ZE??'??c|?????c?w???>;??`1?M-?7??W?_ xC??? ????>$j?????9$??1??????Giq???????L?Jc??E6?]?UU?h??W?L????????V??????c??_k?|Ww????{O??6?3\ng?u???R p{ ?0??Kj??7*:0d?v????&B?h]???????s???P?H~?????F?9????F?q?9q??!????31????O?B?-;??*7???U?Z??7????.r?lNxu-?*p?7???p??w?N..???V???>8?(?e_| ?g??z????5j??????[?z???,???Y?)?4{Y??M?U?@?I??uls(????x??9??Z~????#???k?/??U?xs????k???_??'?4K?>?E?????|{????S?N?R=??V????????+??4d???????[x???????????|/????>"????h)i???Z?M????p??L>?v??D<7???5?????J???1???;???@???|^??7??MN????????????+???3]???? c?M@?*??oh?$?2A$L???/?)????o?$O????E??|I???? x????[??~,??+?D??X?t?n??????????????:B\|??|^e7???xq@TY?B???/ J EF????yF?W?w? ?????????|E??\???Q???????wQ\?~????>??????\????x????JB?h?????aOo9??2?M*9?*c ??T?T????Z??8[??????g??8N:?.#R????TwK???xj???V?R???N?_??????gT?_???;kMF??]?{?+M?-n?/5me5?n?{;?F?@M???4_j??dwEO??v?||??c?+/?o?3???x[????{? .}JO??d?)??L?m?????????n?]?O???q?m????W??"Y-?????jv????z?~:?Lw????lt?Vi????B3?x/I)?z???????ck?%?f???? ??D????[?[?~&ma<?S??q? ?B?[?x?????|?0G?>???O?1X??Xx, 6??J?c???M???Rz??W?????>??-????K????]XP??IJjn?e=)GNT??d???????^???????????T?|???.????~?}????k ?_??0???t????)~?^????k???#???2?I????_?Ox?7??+h^???|W?k]??z/??|A????#~??????Q?$?N?c?iP?ql?"6??-??oq?~'?????C???|#??c??????u? |F??zm??a??Z???Z??F1??????{T???????K?l??-m???? ?y???~??????5?????????u ???k???Yi?_;RIZ?????-???0}?/??Y?L?5?????;?R??????????VQ??)7m.?ml?????D???b3J????b1Tq)???z?????\?t?i?P?|??G$????????d|d?A}}?/??????b??mM???,$????n?m~5-?o4??/?????6??????n? ????S?Ukk??&W??H?VP?*???*I???|O{hn???7?$Im??!D? H?"4l?8>?"&??o?-???????Z?k?=Ro?Z????i:t> ???"?5??i??n.o,Rk?e??I5?geP???N1?+??u?naN8??? t?>^x?u?G??z????v?????T??????????R????qw?j????????y?k ??(?g?Ja?Z??~3x?V??????c????s7d]'??*I?o?????F??D~?? ?/?E?$???/? ?Z?????G?~&|E?t?tY??o?K?c?]???\?m?????(????<?B~?}?~??~.?????<????t??D??Ml??rx#???? ?o???O???? >%~?:?? o???w?w?????t??????C_??? ?_?&?;??????5???\?????g??H?Z????5?????[h??/???xG?_?? ??"??o???????O?{??.?W??jZ????????.?G?a??t?W????.?mo??C#6?{??? ??>m???????\????o?k???????Q?6??xS??tO?^~?D???4??c@?+??1A???7]???y?|??????9_?? ?m?(R??d?j:S??m??M*)C[\??q??X?dx???6????U.X???|???W?(?????f??k??????E???n?&?|?TX|S??|mw??o?~?:?W?y?-|???|Z????xg[????H?O?O?Z??y?5c??'??:?Z[_??j??? ??^?{?q|k????7???dm[X?U?W?5i%????#E???-?_???|z??? ??9???> jU??|)??g????Y??t?g?????5_?^?u????????????a?Y???????;?_???Nx[??9???>%?????{???4h???^_?????x??q??<#? ?E??[h??n?A? ???{M=?>????|\|F?[i?;\?????5?????????7???????I????0???? 5?q?|K?~"xF ? ????z??iH?Z???R?nt?Xoc???q;R? ????Y?_o?-b????k?W??g???L'???p?y??????'nH?I??????j?J?s???????????k????>??"~? ?? ?\????%???<????^>?nR?}6????? ? U?R~??'??{????'?:???4[???;???????????????????4???P?????9? c@?5?{? _F???h?`??H?_?[?C~???O?|W??? ???}?/?{?=|J??tOk??1?x???????xW\??? ??R????_??]x?@{?;O xvK?CQX4??a??????Oi?????HS?;}k??_???o?zF??_ |?>??????w??8???????g??v??????Qt? ???\??$?+ ?hB??qn???v???\??X?;Z??????6g?1U???r?{'B6N\??r???Z??%~j????_?????~>????G??????O????f=???iP?{?M???ei?G`dX?-+?s\s?2?x?????? ????-?9~??_???~ ??&????Rw????$z?????k??_??q?6?_?7:g?t?{??h?-?:????Q?? ????209l?????u%)??????m?????~l?Zt???)R?iS???b?c?I%d???:\?S??r?y?y{?QXB???~???O[??x??????,??????<???O h??>?-?????9???+1u2????J?q ?A$???n$Q?????x?U??????M????MH?Kd?G??ti???Hv?k????nn?????? ???:???e???%?Mh\?????E??????$;??8??M????eY???>??F?IV??H'Ju$#??Y?????\?(?O ?ai???"?8B)74????m?????3?[??o????<$??Z??z?????Z?)????G??(5My?mO{?"s??uS?;? K???Z?j7z^?M ??a?nl??{u?9RH?X??????g ???????~???^_i>)?s?xg?^??@d???R?W?|1??-???3X??|9????mn ???????'???i?? ??????C?Yx????W??h?4Yd?I{?;n??=v???P?????H???'???=??>???,;?e?X?r??jP?:K??Tu?Z3?i??g(???#:|W???>l?????z?wNRKXFj?i];7?????????=??I?~ |L?$??????k?V??R???;Y0??"io?}?N??o?s'?Y??????)????-?j| ??E?>???i1??? MV??Z?????E???A?'L?????2?????:?????S?:?????a????$R??'?t ;M%m?G?V b?M??,P???????]J?????j6j_4_?0??%??s???7?>?g??0?j?X?>??\??B????!+????%[ ?z????????I?Q?!F .XLm,F?J?`??*,=??B.?5?N??~o?8????-???>g?????J)?jR???6???y?)&?9;? !???{o|t?m????$B??U?? ??p?B???P ???#T_i:v??]?hW:u?????o.[}]??K?$?i??????? ? ??h_???|i?5????2La???A????????X?3?a4?K@??F?"1( Z%h????????=+???c**???xSq?O???????G?&i??''??^?.?tn:??}>??O???j>?I??KW?g?|?^?GP??"???#???L ???$Q??????????x??A?? ?[??$??4??? ???W?? ? ???g??J?]\L??H?}?}??Lq??>????k???????????=?m???Jb?K?=?=WU?t?[???gt#?|!????>3?t=??,Itg|F?G??1?xW ?????F8Z]_,????%(???{???a?b??T?:3?I???VIv????^????~??O??????b?n|5?/?>?????G ?O?Y?Ox?[yB?????D??L+%?????es??kT?GI-#?"8??D?}?w?4?1??V p?z??~ x????O?Oj??"?o?|G????:??r????_?????wr?K?\j?S?? ?%W???N?8y,?G?X????? D?p??B?q????l? ?+???????}tJ??????k'vzx????8???KM5vr{?[?-??3M?{??[c??qGo????? _?01??RJ?? ??-????VC???g*?#? ?L`yn???T)??????H?k??o??IDe??? 61y?9?????f5?t{??????&??^kz??????)??P???R?Cg?U???2HV'U??U????< ?q????*p??J?jIB?yJs?J*)?7k= ?b(?hV?bj?T0???9IF4??R????U???W???????????V???~???/?|eX??B??????R??0?{?????? ?!??????i??7??'??x?W??cA??~??n'Uv??k???&?????V?S?c{?hp???i?#K"?????Y`E)??? P???@?l?*s?1????4??????5?'Y????K?j>????me?i???????'?P??J??*?M????_??8??????????? NuR?? ???j??y???8?E?QU?? ?q??I??KM??}?mm??I?f-??????6?m?_ j?????E??????x;?? ?M???-?L??okR??????-?.???N??>???v?u?o?G????????;Hn? ]l?z??a?(NaX4V?pYK.?nV?+?r???|????kS??|??x`???k???p????????????loa?A{wa? G?m?VHm?Z??m????o?Xx????+???W?9m??????C??????[-???5????Z???????3E?{??s?`????d1????S??Z?g?e???5?R8?R?Ly??????>E?(??~g7??\3?W?M(??NR?1?8??????[????_???????:~?6]?????e(??,?f????????6????O)eUR?^?????????]????????|a????!?;?mfmI?~|9???X?L???W?i?5?s4?)?wHc?w???I???B> ~???g?O???????????????|7??^?<??7??y???i???>?P?????????^???b??)???|U?????'??o?????O?8?G???I???xg^???????Ay?x?l?????????mm?^9 ?O??c@?fQ??j????X????Q???Ty?6??|rq?v?*I]?K3?76??XN??_?*?%?fX?R?????E?wM???r???KG?Ey??O???/?o?[?????c?M??4q}p???????w?xr q???pi???kw??/%?c???0?k?????=?z??6X\i???Z?[k>*?Sj?????a??????"??8\??$?sZ.Q???????h??;?.?'4???d????????e???5,u??C?| ?Y?ZxgX???u???x???V?6????t?????????t?h?+??_?C????g?O??<#???D??????V???=???sF??????#???t?j??lQjQ??????C=???E-n/-???c?r?q?????a:?????O??V?e+?F??vv=?]????W??? NIGR?*?<uN???B.2r????R?5?t???Y????H&?7??a?G?^ZZ?1???????N?&?~?iw,?-?KX?'???B?/?W?f{?????}e?? x?+ ?/?C??VF????Q?>?l1 ??? ????:??do??????(|?-???]_??6??xF?H?M??????|??xz +???wzy??v??L?2?0%??????????K??~???O x???0??!?v(? ?%?|a?;%_?Kxs?"???tk??o???%?T???,?????WZ??K???&\=????????d(???\???6?????)n??????z???$(?VK?.??C 2?D?????#?!? ??_5?bj??XUj8????]???k?&?\mu?s??'????N??)(???M?.^?T?(.k?|?????b?k?=???^$????|o???|i?O?? ?4??V~,x???????? ?Y???????>#?;?????? ?h??o?S'?a?k?6_ ?O????????~1|A??~(?|0????n>/???!??y?;|{?I?[???Z????^x???O??<-{uh?????uo????9?L|??????L??7#? ??W??.?ZJ???????.m???????8?*?IL????????????f?*i]?j?n???S???Wm??????P???9??'?m?ax?O?/???|???mb?y?X?=????]???g??S?Z???x???^"????N?4j?jD ??j1F?0? ~??????????O?????k=?^?????????_???o?-?'T????I?|i??D??? :?z?????'???c??k?Mo}??nRO???_???v?G???!???j?? ??I)?????????????N??+?????/?5????w?7????? ?????c? N??????]????? ^??"??z?????|???4?x????O? >?E????>??c2??{~?Tv`Hd???\cB?z??????5?*????8N???????-n??Ih????|? ?P???U?*Ug???4?c.XCKE=n??n???o?????M???>iZv??????6??+??h??zg? S????a??? ????????O????????5 ????????k??ywt?x???? ???~??~???f-o?d??h???_?;??b?~$x#??????A?k?qo~???{???W??,??.?m5?m~{?qA??C?[??G?L??RooQ???8????????M?_?1??????L"???Q????/????Y??*?5??>&??O??????u_???????c?_?? x?M?3?z-I?)?i?????C? ??"?C?^ ???m|v??5?xG???????G?8???S C?'?|>? ??N?u?\\?????z:?[j?5?f?-????????On?? ?????sO?I!@????^=?????/?+????]???g??????O?:W??G?o?s?'????L??Oo?~????????W??D????xo?i???.?3???}?H??_? rJ?dgp???g??V$w8R U?< ????[?x??0??? ???I?QH4????eRp?rp9C????P??UF??????^????f6?E??x&???\y??ZD???Om?xr?3]D81_???K?????cc??x?+w????[? ???E? ??]???K$`]6??6??]??????b??g????????w?k??????W??A??????????>???.??,F?^9?_????O?81??????v??+?????5?j????o??vC???????????Yb?>?gs??_G?t??~ ????7??????{???N.?*5??G??0??S???,a,^]?Y?J??:??)@??z|O??w?KJ?4b?? s?g(K?;???<4V???r?5???w??????}:??y???????:??[?%???&?????????gv???? ??~?????_?O?4????2?~??????t/_h?????/? ?[?s?L[????O ??w?????2-???t)'?'?i?_?*?r?O????T???l??~?^!??]?`x?\??}6h?q??#.muxOU]WO{{???-??]?"C?,6?????/??|L?? q?EV???yfm)??n8?S??I??P???U?cF??????.?a?|]???MG?5hT?9{??????)$??8?4?{??K?????A?Zx??T????-!????????C3i??&Ck??:?????\oMEV????? ???~?h??6?*??&*?q???????[????_??|L??4_?z??xW?Z??hREoy?????}????-???h???`?%????r?U?7??*?O??.?k?8???????????????Q???F?????J?`????8?cy~?~??{???K?B?g???#?\??$??|?;=?1?H??0????:C??K{????????k???g??l???F?_?? j^Y2L?6???[??V????I" ???W?|?>!?I???bx?????????????,?????;?#K?Z[{e???8{?????ZWU????`???#??hO?????nl|S?W???n?u;??K] IU?????????4?'??Z?f?F???!b??4?f53?v??Y?o??)s???uu ?t??f~m????fX???%Lb?[d???J=w??{o???k????d"{?]? ?????1??X??7 c ?!ko???7O??' I6??e'~???k????c;Q??/n????????Rfs#?Y_}????%???3JRL?eD??7??(?A??8??S?4?h?$?V?????,U??V??q?????8S??]??u7?yQ?}*&??n _?????P?:??!??J??^??????+h?X ??Q@?(??"?#hU&]??im?*?q_?????<?I/?? ???]??i?????!nlZR^? ?-J2?????*sOZ???^=Xl??????????-?G %?&?V?&?8?U.e??H????(x?x>)?s???2?k??>?c???$?|Qc????c2kJ??Q?IU??ox??w(2}?C??99??Ab@u??K??u:|g??????~\i>Z9q??6?;9???*?x6?ps??y??br???F????R?????k??,>+???M.Z?0|??????c?$~;?t??J???*8???\??????g????o??:^?uK?^???M6??St\Oi?j7N??Msm:???y%?-?'?G???x????~*?`.???5?@`K??`k? \???????E????[D?#B?*?~??M?j???/|'????????F?[????a??=7??;?????HB????0T???xR?C*?????_???W??5?iZ/?t/ ???f??O?O???S?????D???????Zo5a??E???_??K????A??9vY7?B?0??i???????K??U?I??*???v??b+e?A??R?XE?Ni[i?|oWx????%????Yj3?(???P3"y/0?G???IA?,y???????>?>!?>?Ls??&K?68/???F??4?'W???(+/???y??l6????|??i????????y?????dD?dy???o?? ??^??5???u?GE?-???????_ uMZHM??????}???]dXu?t?f?4 rg??tYc?6?????? uo???? Sr?NNJ4????Tqsm?uIY?????)?5=??????????[TB??????????_?`??J;O?????Oj???Z??~??>??|'???x+???O????\?v???{???????C??oe?B??{(m5??8?m??+4X??d??????0???G???1??a?=?_?zo?????:h??????Sw??x???K???GF??&?=:???3??7???a?????4?/?? ?h??/??_??|'?????Ml?[?~o??????fG?MU????m??K???~1???????3?N??Q?sJ?I?.m????????1?S???X?S%???q?k?R?????r>Wm,?k???_????^?????]??}???????}j?T ?xTx??ot??7V???$??>Xu?cZXk?zL2?y:???????????h?/??????]j3??}??h"e?_??"xCE??????'?L?;???????/???w71]?^?s?????.l?{?x????e?????? -???????~f???i?????'???_?K?q?????[?????*????~???k?_o???k???S??C?K?+I?De?:??f????Y_C,y?Q??q?mx????????9?U?b??1 J?r?#QZ4???>G??s??4?????W?;?QS??S???:???c6???????%H?m??^???:|^M_?/??????M??/U?????+?t6???^}?W????5??cO)???Z??r[?????? R?J????p???:??-z???T?????9OX?i}&???m??/?Q?? F?ueRNS? qJ9????QQ?P???)$?U??MSN????????mKI??j_??????J????????']Y^??+5???F??He?????? ?p??|??5????? ??2??? O???????.ww???????????Z???Ms5???xO? ??3??,???e?]???y??5?I?wv.?K1$??5??;.????+?u_,?3m|V??x???`c#??)U??I????b??z???????-?i????~?^*f??'???.?\R??SP??&?w?R?.?(????o?G|K?C??f???(????|M??N_M?Q?;??2?*/?/?M???1?k??????? /????????)??V?Q?m???B?????-j?ea????9???:???|t??? ???????RB?8>!x????9\????]q?R"?zc???_?'?,????G???'?????!?\???u?i??????qst?p??S{?|$af?? w??????DO?/????]~?~:?B?????C?/????'????=kG?????$??5???O?Z??/4?5??~??w?????????G??'?7?#? |z????X_|y?m????|O? ?c??????????k?R?? +?^?????o????????h??-N????? ??.?;???kY?{?W?x???O?M????? ?7?R??~??>&~?:??g??-??????o?j??????C?k?_???????-?????u??|M?o?_?7?!?)?&??????|??L?E? ?x??:???}um?m7M??????'???>??;+?w???I-O?"????+?|g??#?)?  ??T??>&?D??Y?I?k;????g?[?? ?*??Ya?W?????????+??? #????5?|E??>>?Y???w?f???|b?G???? u???5???}F?????'??????BIM_J?C????t ??????:U????z~??i????j???~??i??_j:???????????Wr???q??vp? ??[n????N?'?<_????????W??5??k?V?5??>?X?4??>+?[O?5???E?+?'?SA? ????f?O2?3? ??d|.?????????? k?"?>???U?? ? ????????_?<?|l?R?G??l|?{?D????OmOR?m?2???[??'????O|]?"???M?|?a7???U?7????5??? ?&????~3??|5???<??~?Y????ss??%??q&?m?a?b?|????R??{???M$??b?t??;-???80xs?????K?Y4??5|????j????L?? By??K???/-???????g????>)|%?<9?|N?|@??&???Z??hZn??Vx???????3???? ???|!?? o?~&??y?-`?????T??b?????.?????? f??^*????&?a???`??X|9??????%???_ x? _????????Z?????cq*^???bkx???,xG? s?4?;?>?7H????/?????x?? ?.?v?%???D?????????x????/?x?????~????a????1??|7???o?????t?.??^?x'?w?_i>???uW??]??? ??+?????rz??~??????B?%u(??J??rQv??????t??????NV??t?BwME?N??I???]h???? ??????o??????[?[?E??g???T?Q????Ej?????v?????????v?}??^?%?J:????m?m??Bq?T????????c?????NI? ?62?:7?0???????}_??NK??y??????Z??????m/?g?|??F[;6_x??!k{fh?=?????u2$n??X??????W??_O?k?Fk?o^??5?J[v??p?????H#?!?cL???y???g?;?????mZ?,????zd???\?i?&X?'?_??$??M?{?????R?R>n?9?o ?wQ?x?4?q?M??K?aF ?Gm=?,7?????|?n??? xsG ?xa],??Sx?8?J??T?jNsMZ?^??+?l:?RX ??c???????"j??~.E?|???Z??i??????;?Oq#yv2i:????????6)??Rt???????K? ?O???W?????:???L??w?$?i?4?????$??o'?|5?@????:?`???????o???7W?O??md?X???[xN??i?M&,??;?H|????`J?_???f????????{???A?{?q??????iy}????]A????u?tW[?K???.?V?S????0?d?Y??]??q/ ftj?|q?????7_??T?\??L=LTT??=z8 s?????g?"?lc????8Jt?W?{5?T??????S??Z8Bu?y?}????>,|2?e????%???kIqq???'?d??<@?? R??X???$?x???]Ruh?1?K?G?3??T???@?? K?l???un?\?2?M??{l;?P?MJ1?cE?[????|??????Xi'G5??m,D9?????,5i4????J/~ev?=????$???<%??|7????~!]i.?_??ud???.?r?"[Zh????ZH?????h??l,????B.N?k?????[%??R$3?::?? eEd?V6?Y$c ?o?S?????????m3_x??z??-"??_;H?.????I?e?-??X??U????*?R<?????]H ??Q????Fa?????p??E)"?.PT??W%??U 5J?^??????+?v???v???+??.sS;?q?????o??V?j4?OO?????r??e?? D???ceXd???TyHy?)?Lr,p?(g`????1eqq-???q,?9O&H????,e???r9??.F?U?6??Z;?k=??H?[?C?;4Y??gX?-??p7p??7Q????Y????y??De?X?????]??)(?0@c??@?????yb?N?-um?z?]??k?;R???=?????????Z?n??}?y?i^?s??G? ??4?i???o|C?????????)ic? ?{8??8t?q????? R?}B?Kb^{???B??3dbO???f?rp?J????h?K?2-T?????#X??$ 1 ??Cd??_?? |I????????|g??h&??F?{?A4?2?? ????|?? Z?[J??5???4?Y_??p?e??_??~U??NI*t??B?b'?S?^??^????Rs?6?l?;????~g??f?8??Z????*?,um?t??f?a??Q?k???mq????~"JW??5?+?? 14m4>??R??x??-ms????d??m????????^ ?c?< i?? :{???0??9?u?r?'??9?5????R?c7e!T?]KW??+$?m,???Y?????x????8??6??Z?.??o??P?f???J???-m}????^.?-|4?I5??????q??iL?"????F??,??q?pD~kFWc???xf?_ ?????$my$???$???Ki??$r? 9?I??R?V_?| ?? ?xc????(>'????.????E????n5bm?l?jHT;,q??J?'?????????~??Z??6???i?@?x?(Q???.?0??\????HB6?su? ??O?L??8???o?h?j?/ K?0?8?K?thS\?j(????????*?????????G??{T?????_e?????'????????????G#DC'(???Yv? ??W%K?(H?????.??M?oQ?)?? +???????g&??eV?|?=,k? n??"?s??H???4?}?V?(m?R?X/mon?\???%gg?c?L?y??821?HT??s?N?????4MJ?N???i??????o?X?Z???jVw??W0?GF?w??$ aY?&R???8?F??)&???.??}?c:???r ?.???.???u????vqvi??~???v??C??6?-?k>??7????{?B}.??#j?Q???o ^?s?-?mz8`?????g?{???R?|6?????Ks???~???^?h?????????(?<?5?H,?;????6:w?>??=??|-!?TN???C??8????????)?? |?????C????/????K?;??????F???y?? '?}J?N??Y?%?,?o ???M?????\??????hZ??????.l??{????????-?????????<,????!'?? u?p1???$?g??6????998 )i?}=2???fU?b?'?s???/yMIr?3M??qr??T??S??>[???0? ???t?S????wI+^??{?j?>??/??|N???{???4??O?^???<??!e[mg?>?4???-?l mkST?s???g?dG?xG???7???????'??V????~??|?w?? P=????????|1?????O$??????????p?n????+#G ??????????[?U~????? O????se?F?{y?E???o?????~MR: ?k?vK??g?E????????????f??>5???&??>x?????6?>+??????\???????O???????nH?????)$u?p&UE??3;??yeL?-?g(???N??"?/cJ^???d???te(??????U*?_ZQ?G ?n+?:r??q???,SiN??O?WZ??M?{?K???;??? }???o?V???xEf?E???<?G?????'?2?K?8m????gK?+??2?zh?(1 ?_??.??%?n?d?4'x????U????????x?C:t??5B7N?????[om?Z??{??????~2x?+?MC?? |y{??Ua:?~?IQ??3j??U?H p "?#? E?eq?~??_?g???>?rr?????????X??[O?w??zO??)??Q??h????? ???????-gf?????R?~?5??O???????}?]?`??O?????%??d??O?Y?h????a??r??????|9?Z?c????&????.w)?8<_e~?6?U???f??i???->????8?J?c?Nwu?F??uqs_:p??~)????e?@???\??m???????:PS?Geq?8?'?&??!:???c ?y&? |)?S???4??[+?h?0??????:V?????*???}"?Z???!?C|?n??G?(V d?\??????|f???~?>>Y?????????????? ??x|&2_??Pr??v??'? c?9???3???????A?3h?_? ????? ??xv??=??~0|-???????????D?;?\???????l?DwQ[?????]O???O?x??n??K?>???b??m??|?8,.|??????-B;?????cg?hZAtgXS@? ?6?O???? oC]Y4?WP?W]???=???????hw????i??>???sce#??)k8??H????o????yG?~?x?? ??]??3?=???????6??M??/?*?N?????^?4?Y???=??:??????\F??D????Q????4?ye?_?S? ??Ex;?????[?'~?????~x_????K???*?????(?O?o???Zi^???l?-t?A?O?xzo?7??+ ??????????;vFvf,??Y?1'.?yb{?Mf??O?_?~?Ze??g???????>?E???? ????G?Ox???~???|???w~-??? nO??Z??495?GE??????N?,%???~ |-????#????"x]????_k???~'x?L??~????`???>?|K???G?-?S?9????_Y?K?????????[\????]3?`???n~?>$????xn??^???n?u????/?o??.??6?????+??OZ?S?]#S?m,????|)??????{?i4t???~*&?????? ?V>8????????WZ?4?????-^D?at??,w?ye???$???K???x3??????|&???Oko?jz????R????n???$??y-?nZ??[X?*3? [?!??^?????E???:???~???t????[x??E??=????~[?0?_>>???R???w????????h7??????g?????m???6>i??@??67???,t? x?J??:????|??K? ??????????????G???WV???~ |l?I{???O?=????s?A?;?:_?mj?F?????u???I?_xK_?n??/?E?%?.???l?ox??>!?|M??E??5?m]t{?????????$??-??g?????.gr-???a?Std?V????X??7??&??\d wU??? ?M????htHuS?R@?!7)???:????????r?{`-o?t=?K??Fu?S/?V?m<.q^???_6????e'&?????J?????;N?#?R??s?n??g?NZJ??;???E?k?$??2|A?&???s/??? ???_?e???8z????EH?T':s?&?n.t?R??? ?4???}5(??)???_?????????r]G?~W??????? ??????i?w?A?????f????O?&??M?@x??>8_xs?%????.?i?A ?_j????;V???_????'?v??uo ?|P????C????GM[???????pi? %?W?D 9|?}???????G??5F?Ci??@?=???????Gm???c$muIjl????~?:$R?H_+???????$N??????9?] ??????U %???%WS?U?$?gU??(?c?o4?1???eU???w?I$???Km???v?c?W??~O???C??MO??}??-??????o?KQ????N???a???=3@????`????_#~??0??O??????km3???v??Qx??????h??????O?o??,/K?2x??#??????f?????.g?Q>??Kub?????%??5(?)???A??T???+?? ?????? ????m?????R#???O??i~??/?W?(?"?-??? +O=\]???(??xYb???$?h?4???S????`k8???)]I???F#??~???????????????????V???Q??F???}n?0???V????Q[? X??{?jV?{;?O?D6d\??/~?7?4?????????ob?h????"????Yi???Da???,:,???Y?9b ???? ??3?S????c???A|???B????o ?v???W??s};;???u6?su ?z??y???????E?????*?a???<1?h6????e?????C?????k?7??x_R???8C?|?C??Rg^w?mL??c??O ??t?j? [ ??6,F????}G?Va???e?K???q??,5wN??NJn???v?V?!??)???(J??m]M????????D?|K??????? ??? Mf??????I1?uh?????hf??Q???S?7????[?????)?????~B?RMVO?i0????? ???a???m?#ea????>????<#??k?? ???7WZl????nt????$T]A|W????n?5P??-_???C??????|)?ns/???:???Gkgy)??]???e?#??Y???xK?????@I????G??3:??S?!?8?????V]g???????U???)??4?5RW?4a-uL?=^??????/Y?&?y|???V0???j ?Z?Z?Y?B??????j?Z?VE*?d1#??2?Hd r?$???1X?U?(T?????_????j?J?Qr???t????????V| ?O??????????.?5]g???A { ??d?Ji????-m?#I?????CE$f???u-???????UB$*??JCx?kl?? ?A?? ???o?????K??!?R?g???/:M#V?]?o?????????R?d1???ex??n??v="????RE'?t????F?5??gK?t??Q?F????Y?_9????8%???q?????1l,eS ?s{k?-?????OK?N??g?fY? -?? ?R40?*u&?J0???n??????n???v?h/?z??a?Y??P???t?ya???'xn???????J???s|Y?m????????M??????o ???p???=??????L???E????B??9>A?W??>j?B ?s??e????S???G$?&CW1??6%?1? _?p???M?`?bps?*?\????mx???K??~g?`x???JN?]?S?B ?D?i??*???a| z???? ??kwD???(?/??%???FD?Q?3+K?S?lEJT??7R?5???_+??????z?V?e#????)8?????o{&?????????? a?3?z???????_??? ??!?????W??-^?A??k?????????u8l.oV0|?????@%[????|6? ??_ Gp.!????4o9???`????h?D???*?$FI ?q;4K???hZ??5?G?Pj ??^??Z?%?4@jv?2I????E??2Y`C ???.5 _?z?$:?????;?fh -?"x?9D?3??UX?@d,|6??J?????Z??6fxuOx??O?WC?%{o ?\c$*?F????v_?????o?^t????g??#+??????????U?nn????K?d???$qxw???(?Mm??????K_?~>?,?Q?T??tMZd0?,???t????Y????~??????\d?????Q??_????????|6???G???~??K?????a?|Q5????M?u?T?????h??f??O?rE(_?wn????o{??g??(???RV?????~??w??x+?w?????_ ?$?~??e???%??t?Ro~?^ ???????^??mSW????e?????H???"?k???????> ???\i2i?|k?sS]??O#????k?????u??A?m?c??z???Z??yS???*YEp`???}>~?????~??????:h>+?!?~??Nv???w? ???-?x[??K???7??;B????????i??n5??J?C????-???m?/???T? ???????S???Q????????????A????C????{??????"xj??0Yis[^?7???^+k?6??FV?0?? ?5????/????????6??????????????e???????? ??m???oD?E? ?/??.???H??=?_????t?Y????Xi ??;?/|4???2??????????K????????c?^K}????[x?S???.?Go ???m???m??f??????uu? ?~??k?_??P?????N ?Wo??5?hK??? ??_??? ?`?s??? ?:??o??V????^9?o???k?~??q???????S??m'?:d???k???p???a&>?m?|@?y/Z4V???????{?3? ??'???>???????O????t;?/??6?G????????i?tW?Q?u?%????T??????D????[??????o?&??j????/?N[??/??e??z?>???????i?q??????G?4X?G???u??b??f?.??L|?p?/?r72??S?I_?????l&????????6V?YLDRXd?M???F????&????TOp???@?QBy???GVc??$???Ir>??|Ai?xR????5???d?%?[g?E,H?9n9;A?A+????taBT?J ??/Em???/?,}o8T????????=~[i??>????t/???9W? v???I?e:??-???X&?? FGlq?? B??????;?|Y?W?m_@????|1?e???l???P??|Y5???D?=?????k?e??w?$?u|fK_ ??? ?? ??6??1[?)?ZN?????u????n'?p ?????m??[?{?Gw-?Ki??$????;mG?W???U?????t?.uB????'?????x?ac?[ Z?e?59?t?Sr??*.QR???I?7????58?????,??????9??[G?m??R?TxW?m?Z~?????:v????CY??s??R?]????C???????x??R??Q4??J?N??DIV??(v!?c???????????|Sqa5???;?????g?E???J?u????i?)?????Q??o#?A?X?{Ek? g??????Q??&??_ |;???h{??>?/??M??v???`t??E?k??;????Ko4??q$I??i~? ???A????S??b?????? 9??,??# S?????aV?10?+S?"?X?????? sL?5??-:??L.?Z?????0ui??q?~??\?y?M?F???N???'???~??? ????M3?W??? ??:l????????K?-J C??V??g??6~$:K?s???ZU?PG-??????????g??? ?Rk?$??h???s??K?\/?5??-#N?m5??*?k;?K?7?q??$?qa????~??? ??)|u??????(?W???x?]2=J?[???!??/ Y?|?$??T??+????soo?'?#?Y????O??^??w&????????s4??j:????^\?Y?'2?%?0?????|A?fX?,?l????q??*QT???v???i????|????6c?\??8a??r??????m>%(?uN/??pJ?Z?O%??????evM?!F?J?H?|??)]?+??9m$?4?J??1n%)r?K>?wUiw?*????g\ 6??;?,?kCm???#y?F ??????? \?d?,???qK?l?q)?U? v?lc$|?????C?:???????????????&?[w??]???_+t??x??Zn??X??^??????Y?????????{[X,?3=??2? B0?^R? t??????????%|/??=?????2??^???M???x??3??J??j?'????2??[4?$? ???;? ?????????)h????^ ?d?????i????? ?x{?????|Jl/V+}S?/?h???????D????-@?-??/??k??+????4??KV?V?.\L?7?o???#L?|b}f?????`G?moipF%Y?S??yN5????? `????E???SEz????)F1\?-?/????5&?$??x????????N?rq?'5?O??N1??V?e?????n/t??????_^??n?fuf9,V???:?Q?????/?V[??D"?'`?;v?\gkO ?:W???Io#?#,?l?Q???????9???F??59nq$m??;?'? ?????8z}?[0???F?io?O_?????ahF1?9U????????G_5??NY???FE,??e?vq?v??}Z??f?^fuQ??(DbF????p?'$??V????ClD?????? ??? ???2[?@?/P???\?Y????V?j??y??;?>>R??}:?????=z2??????e?????)??>$m??Xf??@??k?V???????x???t?u?*mg??????c]???6???Sj-?SKo??z???IdC ???????i"yj????Y5r;?????F=??W??3Y??q? ?ap???????*c?6???2+??IR?a14*???:J/??iu?_????O?)??,???x'??u????^3??$V????\H?6??h~????/???????i>!?K?[??=/Z2[??\>d????7????K [???m??]SZ???J?3???1t!JxZS????*qqJ.??,??I???kd?C??7??59??MDk??????]??rZ*??P???",E#UR#+?B??u?x]???i??oZx???Lh?i???????????\??)?b [c4???+??!??????I ??y-? ?),??D??? Hp@?#$?[>???9?i???[???7v7?? ???M???|?B?QjN???O]U??Q???+o??%v??M??o{iw?9q\?? *U#gt??c???;]?????[/???gO??? ??? ?>?%L>? 9???X#4^V???$e?B?$*????????1?????58.i????M"??? ?U}?I???73?n%???+|>???t????E??l?y??Z???S?Y????\???^?B?????4???#??$b????X???????b?`+??RT??F\?$???i??v????????hb"??BJJ?8^???Y???>L??????Q???|?MUl??<'?]???????K???6w??????u?|??u??%??Kh?B.?u+?x?Hb??P?????-x?f?..&?2$?\???V?M%??y#H?J?L$?r??H??-lF&? ??????snn?j-???{??~?P?N???????\??4??\??W?}????<????????y?????????V?[O?????gL???;O????????# ????????.o ??| ?+-A,????D?CL???????g???????????[?x-???o???o?3? ???[???`?k?|m??`???????6????J?&??? ?M???sZ?????? A5?C?e???"FTO.0???????3??L?<_?B????U????S?^"?????+?'?G(?S/???I?;?J????'?:????????m?ed?fB???? ??????G?%??.8????W?s\E@v????????<????|????? Z? ?`g?????p??z???^ .=??????P?5=PD5 ?n?%?BM?C&??B??v/??+6??a?l??L??b??? ?  ?l??>^??h??????MN ???|?>V_???o?&??C???u???6?`:???y?:????^}?{???UZXa?#9?????X?~j?b?z?Adp???~t???Y #b=?|????de?p?I=;?????<4?+??????m??s????????M?S?:??y`?+pH????s???Z??f??8??E?3r???n??#6?_?[???Z?]????o?o?^#?l????i???h?ml?_]ip???!W????6??e???????NF???}?n??ko??????P??"???~??5?wZ????/L?W?'?????kv??td@???[?0+?G%P(Q?#?????0?K??N??f??????W?&?gN?*I??0??v?e$?[o???????????a?F?x+OO?>????J5=????V???????k{t???E6?~?6??# ;???????w???O?J?_?6???(|??,??e??y? ?v?3isk?l7lK?N?0UQQ?o??? ?C????????G?n??????>-?l?a? ??j^?????ZZ?emo????Z?]?,^??*FV)&???$???? ?S?Q?7????-?x??????gj??n???????5?Q???u&?umvt{V_??3??????????w????Y5W3??????*??K???)T??i?n?YU?8??!d?????Z??}?*?{?????3??j?-??W?AK??^R???mo?~?????> ??K?!???;????%< Jt???Q?N?i^??????V[-?}-??k,?3N???XH???Q?????9?*?P?C???G.??d?5?L????dCL0O???X/?\????i??????Ex??m?????`???#?n????????(?FQ??x7N?/??Ht?`??>??N ?????V?????????|59V?????J??$"?yJME$??9I$?wv[??3?x??? ??????9tm.?C???g?? x5???k?-????]?.Rx?=??7W?;???\-???.n.m?=h/???J[U?l??k?j????J???@??? ;]?x!?b??f???U?????=;k$??x????(??u???????l?;????o?g????=F????xoX?q??[3?????=ab1}??dg#????>?> hSNV? ?m?5h/e??M????Y??b????G?@?OZ???Z?????z??&??????QT??ME?O????*?a???????{?X??]?r;+?????y???X???#?PA??Q?ze?Y?HA?Ux?2??b?T????@?W?'w)??W????????nt[???)?L???8?)?y?? ??`??HQ???pIFG??s?F?#;??T????Y?M:z?C???qLT=?' Rt??S?''?Y??[????IfM???T3 ?*2 ? ? ?{H?Ek[???E`H?l??r ?????.?N}M ?????????8??m????l??n???Y??? H?P?????F??8???Z????.??b?#h??J????}3T????EV8.????]???;? r0O<MS?? H??%?v???0;???#???>+3????~??/??Mw??;)??d???{??????\}?X?AY1????^??9?J??IIK??VU ?B? |?pFGn??????h?m?]?awg!q??2??????q??1R#?k`@????HG???r3????5????8?l???????hF??:??b??Oqq#??A????]?"???vK?z?98?y?x?+y??+?cF?W??h??B?y`?+????#q?? 6???vr????'s#@?%?S??????????.?&?h??JcM?g??c?`g>\??;s8?7?m?t??K?=j ???R?????}gO?|e??~??%????4g ;?go?s ?x??? ?x&?~1|.??u????2cW3[]J?5 9H??/?&H$??\?)????j/qw?H???????.#v?y\ ??'????>??????e rx???]?*?Is??^????hg_5K?2vJ?cl?O?qu????G{u???N????????g?'?$??Ko??????l?????0??|?u?^U?>b?????????6?????[???????,?%u??,Y??????s);?????????m?:??????P3??5 Tv!?I?#h#6???l???"???????!x?9@???\?R?c??I??C?pI^Qz?~7???kX?4?n?co.?i?k?uzwk??? ??V????? n\???????1$??v??Y'?B?KEowT?N?A?U;? ????9???????4??U??????H???Zch/???{?3S?-????no?$??&??H???G?????X??^'?6????}$??? \???????e?,?qu??&?E~H?u????^?}?6?~?M&??/???????i??i??????h??????O _n???\???C??mn? ????/???~2??|>.]|\?????u??? ???w@?\ false
                4890315563703379968 6291632 Source code disclosure http://favicon.ico.freepowerboards.com Low Tentative Page Not Found - FreePowerBoards

                Oops, page not found!

                The page you are looking for no longer exists. You may have mis-typed the URL. Please check your spelling.

                If you are positive that the URL is correct, we regret to let you know that it has been deleted.



                Become a forum owner today!

                ]]>
                false
                1150279508578178048 5244416 Cookie without HttpOnly flag set http://d.p-td.com Information Certain
                You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
              67. uid=3706692347515356359; Domain=.p-td.com; Expires=Fri, 14-Oct-2011 23:37:30 GMT; Path=/
              68. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                false
                3466308425049753600 6291968 Email addresses disclosed http://static.xxxmatch.com Information Certain
                However, email addresses of developers and other individuals (whether appearing on-screen or hidden within page source) may disclose information that is useful to an attacker; for example, they may represent usernames that can be used at the application's login, and they may be used in social engineering attacks against the organisation's personnel. Unnecessary or excessive disclosure of email addresses may also lead to an increase in the volume of spam email received.]]>
              69. haineault@gmail.com
              70. maggie@filamentgroup.com
              71. scott@filamentgroup.com
              72. ]]>
                35?String.fromCharCode(c+29):c.toString(36))};if(!''.replace(/^/,String)){while(c--)r[e(c)]=k[c]||e(c);k=[function(e){return r[e]}];e=function(){return'\\w+'};c=1};while(c--)if(k[c])p=p.replace(new RegExp('\\b'+e(c)+'\\b','g'),k[c]);return p}(';5(1O.1t)(7($){5($.29.1x)1I{1m.23("1u",P,z)}1F(e){}$.p.4=7(j){5(3.K==0)l 3;5(E J[0]==\'1j\'){5(3.K>1){8 k=J;l 3.W(7(){$.p.4.H($(3),k)})};$.p.4[J[0]].H(3,$.1T(J).21(1)||[]);l 3};8 j=$.10({},$.p.4.18,j||{});3.1v(\'.9-4-1l\').n(\'9-4-1l\').W(7(){8 a=(3.1J||\'1K-4\').1L(/\\[|\\]+/g,"1S");8 b=$(3.1U||1m.1X);8 c=$(3);8 d=b.6(\'4\')||{y:0};8 e=d[a];8 f;5(e)f=e.6(\'4\');5(e&&f){f.y++}B{f=$.10({},j||{},($.1k?c.1k():($.1H?c.6():s))||{},{y:0,C:[],u:[]});f.t=d.y++;e=$(\'<1M 12="9-4-1Q"/>\');c.1R(e);e.n(\'4-T-13-S\');5(c.R(\'Q\'))f.m=z;e.1a(f.A=$(\'\'+f.15+\'\').1d(7(){$(3).4(\'N\');$(3).n(\'9-4-M\')}).1b(7(){$(3).4(\'v\');$(3).D(\'9-4-M\')}).1h(7(){$(3).4(\'w\')}).6(\'4\',f))};8 g=$(\'\'+3.1p+\'\');e.1a(g);5(3.U)g.R(\'U\',3.U);5(3.17)g.n(3.17);5(f.1V)f.x=2;5(E f.x==\'19\'&&f.x>0){8 h=($.p.11?g.11():0)||f.1c;8 i=(f.y%f.x),V=1y.1z(h/f.x);g.11(V).1A(\'a\').1B({\'1C-1D\':\'-\'+(i*V)+\'1E\'})};5(f.m)g.n(\'9-4-1e\');B g.n(\'9-4-1G\').1d(7(){$(3).4(\'1f\');$(3).4(\'G\')}).1b(7(){$(3).4(\'v\');$(3).4(\'F\')}).1h(7(){$(3).4(\'w\')});5(3.L)f.o=g;c.1i();c.1N(7(){$(3).4(\'w\')});g.6(\'4.r\',c.6(\'4.9\',g));f.C[f.C.K]=g[0];f.u[f.u.K]=c[0];f.q=d[a]=e;f.1P=b;c.6(\'4\',f);e.6(\'4\',f);g.6(\'4\',f);b.6(\'4\',d)});$(\'.4-T-13-S\').4(\'v\').D(\'4-T-13-S\');l 3};$.10($.p.4,{G:7(){8 a=3.6(\'4\');5(!a)l 3;5(!a.G)l 3;8 b=$(3).6(\'4.r\')||$(3.Z==\'X\'?3:s);5(a.G)a.G.H(b[0],[b.I(),$(\'a\',b.6(\'4.9\'))[0]])},F:7(){8 a=3.6(\'4\');5(!a)l 3;5(!a.F)l 3;8 b=$(3).6(\'4.r\')||$(3.Z==\'X\'?3:s);5(a.F)a.F.H(b[0],[b.I(),$(\'a\',b.6(\'4.9\'))[0]])},1f:7(){8 a=3.6(\'4\');5(!a)l 3;5(a.m)l;3.4(\'N\');3.1n().1o().Y(\'.q-\'+a.t).n(\'9-4-M\')},N:7(){8 a=3.6(\'4\');5(!a)l 3;5(a.m)l;a.q.1W().Y(\'.q-\'+a.t).D(\'9-4-1q\').D(\'9-4-M\')},v:7(){8 a=3.6(\'4\');5(!a)l 3;3.4(\'N\');5(a.o){a.o.6(\'4.r\').R(\'L\',\'L\');a.o.1n().1o().Y(\'.q-\'+a.t).n(\'9-4-1q\')}B $(a.u).1r(\'L\');a.A[a.m||a.1Y?\'1i\':\'1Z\']();3.20()[a.m?\'n\':\'D\'](\'9-4-1e\')},w:7(a){8 b=3.6(\'4\');5(!b)l 3;5(b.m)l;b.o=s;5(E a!=\'1s\'){5(E a==\'19\')l $(b.C[a]).4(\'w\');5(E a==\'1j\')$.W(b.C,7(){5($(3).6(\'4.r\').I()==a)$(3).4(\'w\')})}B b.o=3[0].Z==\'X\'?3.6(\'4.9\'):(3.22(\'.q-\'+b.t)?3:s);3.6(\'4\',b);3.4(\'v\');8 c=$(b.o?b.o.6(\'4.r\'):s);5(b.1g)b.1g.H(c[0],[c.I(),$(\'a\',b.o)[0]])},m:7(a,b){8 c=3.6(\'4\');5(!c)l 3;c.m=a||a==1s?z:P;5(b)$(c.u).R("Q","Q");B $(c.u).1r("Q");3.6(\'4\',c);3.4(\'v\')},24:7(){3.4(\'m\',z,z)},25:7(){3.4(\'m\',P,P)}});$.p.4.18={A:\'26 27\',15:\'\',x:0,1c:16};$(7(){$(\'r[28=1w].9\').4()})})(1t);',62,134,'|||this|rating|if|data|function|var|star||||||||||||return|readOnly|addClass|current|fn|rater|input|null|serial|inputs|draw|select|split|count|true|cancel|else|stars|removeClass|typeof|blur|focus|apply|val|arguments|length|checked|hover|drain|div|false|disabled|attr|drawn|to|id|spw|each|INPUT|filter|tagName|extend|width|class|be|title|cancelValue||className|options|number|append|mouseout|starWidth|mouseover|readonly|fill|callback|click|hide|string|metadata|applied|document|prevAll|andSelf|value|on|removeAttr|undefined|jQuery|BackgroundImageCache|not|radio|msie|Math|floor|find|css|margin|left|px|catch|live|meta|try|name|unnamed|replace|span|change|window|context|control|before|_|makeArray|form|half|children|body|required|show|siblings|slice|is|execCommand|disable|enable|Cancel|Rating|type|browser'.split('|'),0,{})) // // From: browserDetect-min.js // jQuery(document).ready(function(){var a=navigator.userAgent.toLowerCase();jQuery.browser.chrome=/chrome/.test(navigator.userAgent.toLowerCase());if(jQuery.browser.msie){jQuery('body').addClass('browserIE');jQuery('body').addClass('browserIE'+jQuery.browser.version.substring(0,1))}if(jQuery.browser.chrome){jQuery('body').addClass('browserChrome');a=a.substring(a.indexOf('chrome/')+7);a=a.substring(0,1);jQuery('body').addClass('browserChrome'+a);jQuery.browser.safari=false}if(jQuery.browser.safari){jQuery('body').addClass('browserSafari');a=a.substring(a.indexOf('version/')+8);a=a.substring(0,1);jQuery('body').addClass('browserSafari'+a)}if(jQuery.browser.mozilla){if(navigator.userAgent.toLowerCase().indexOf('firefox')!=-1){jQuery('body').addClass('browserFirefox');a=a.substring(a.indexOf('firefox/')+8);a=a.substring(0,1);jQuery('body').addClass('browserFirefox'+a)}else{jQuery('body').addClass('browserMozilla')}}if(jQuery.browser.opera){jQuery('body').addClass('browserOpera')}}); // // From: jquery.alphanumeric.pack.js // eval(function(p,a,c,k,e,d){e=function(c){return(c35?String.fromCharCode(c+29):c.toString(36))};if(!''.replace(/^/,String)){while(c--){d[e(c)]=k[c]||e(c)}k=[function(e){return d[e]}];e=function(){return'\\w+'};c=1};while(c--){if(k[c]){p=p.replace(new RegExp('\\b'+e(c)+'\\b','g'),k[c])}}return p}('(2($){$.c.f=2(p){p=$.d({g:"!@#$%^&*()+=[]\\\\\\\';,/{}|\\":<>?~`.- ",4:"",9:""},p);7 3.b(2(){5(p.G)p.4+="Q";5(p.w)p.4+="n";s=p.9.z(\'\');x(i=0;i0){var f=a(this[0]);var g=f.data("tests");return a.map(f.data("buffer"),function(l,m){return g[m]?l:null}).join("")}d=a.extend({placeholder:"_",completed:null},d);var k=a.mask.definitions;var g=[];var e=j.length;var i=null;var h=j.length;a.each(j.split(""),function(m,l){if(l=="?"){h--;e=m}else{if(k[l]){g.push(new RegExp(k[l]));if(i==null){i=g.length-1}}else{g.push(null)}}});return this.each(function(){var r=a(this);var m=a.map(j.split(""),function(x,y){if(x!="?"){return k[x]?d.placeholder:x}});var n=false;var q=r.val();r.data("buffer",m).data("tests",g);function v(x){while(++x<=h&&!g[x]){}return x}function t(x){while(!g[x]&&--x>=0){}for(var y=x;y16&&z<32)||(z>32&&z<41));if((x.begin-x.end)!=0&&(!n||z==8||z==46)){w(x.begin,x.end)}if(z==8||z==46||(b&&z==127)){t(x.begin+(z==46?0:-1));return false}else{if(z==27){r.val(q);r.caret(0,p());return false}}}function o(B){if(n){n=false;return(B.keyCode==8)?false:null}B=B||window.event;var C=B.charCode||B.keyCode||B.which;var z=a(this).caret();if(B.ctrlKey||B.altKey||B.metaKey){return true}else{if((C>=32&&C<=125)||C>186){var x=v(z.begin-1);if(xz.length){break}}else{if(m[B]==z[x]&&B!=e){x++;C=B}}}if(!y&&C+1=e){s();if(!y){r.val(r.val().substring(0,C+1))}}}return(e?B:i)}if(!r.attr("readonly")){r.one("unmask",function(){r.unbind(".mask").removeData("buffer").removeData("tests")}).bind("focus.mask",function(){q=r.val();var x=p();s();setTimeout(function(){if(x==j.length){r.caret(0,x)}else{r.caret(x)}},0)}).bind("blur.mask",function(){p();if(r.val()!=q){r.change()}}).bind("keydown.mask",l).bind("keypress.mask",o).bind(c,function(){setTimeout(function(){r.caret(p(true))},0)})}p()})}})})(jQuery); // // From: jquery.query-2.1.5.js // /** * jQuery.query - Query String Modification and Creation for jQuery * Written by Blair Mitchelmore (blair DOT mitchelmore AT gmail DOT com) * Licensed under the WTFPL (http://sam.zoy.org/wtfpl/). * Date: 2009/06/14 * * @author Blair Mitchelmore * @version 2.1.5 * **/ new function(settings) { // Various Settings var $separator = settings.separator || '&'; var $spaces = settings.spaces === false ? false : true; var $suffix = settings.suffix === false ? '' : '[]'; var $prefix = settings.prefix === false ? false : true; var $hash = $prefix ? settings.hash === true ? "#" : "?" : ""; var $numbers = settings.numbers === false ? false : true; jQuery.query = new function() { var is = function(o, t) { return o != undefined && o !== null && (!!t ? o.constructor == t : true); }; var parse = function(path) { var m, rx = /\[([^[]*)\]/g, match = /^(\S+?)(\[\S*\])?$/.exec(path), base = match[1], tokens = []; while (m = rx.exec(match[2])) tokens.push(m[1]); return [base, tokens]; }; var set = function(target, tokens, value) { var o, token = tokens.shift(); if (typeof target != 'object') target = null; if (token === "") { if (!target) target = []; if (is(target, Array)) { target.push(tokens.length == 0 ? value : set(null, tokens.slice(0), value)); } else if (is(target, Object)) { var i = 0; while (target[i++] != null); target[--i] = tokens.length == 0 ? value : set(target[i], tokens.slice(0), value); } else { target = []; target.push(tokens.length == 0 ? value : set(null, tokens.slice(0), value)); } } else if (token && token.match(/^\s*[0-9]+\s*$/)) { var index = parseInt(token, 10); if (!target) target = []; target[index] = tokens.length == 0 ? value : set(target[index], tokens.slice(0), value); } else if (token) { var index = token.replace(/^\s*|\s*$/g, ""); if (!target) target = {}; if (is(target, Array)) { var temp = {}; for (var i = 0; i < target.length; ++i) { temp[i] = target[i]; } target = temp; } target[index] = tokens.length == 0 ? value : set(target[index], tokens.slice(0), value); } else { return value; } return target; }; var queryObject = function(a) { var self = this; self.keys = {}; if (a.queryObject) { jQuery.each(a.get(), function(key, val) { self.SET(key, val); }); } else { jQuery.each(arguments, function() { var q = "" + this; q = q.replace(/^[?#]/,''); // remove any leading ? || # q = q.replace(/[;&]$/,''); // remove any trailing & || ; if ($spaces) q = q.replace(/[+]/g,' '); // replace +'s with spaces jQuery.each(q.split(/[&;]/), function(){ var key = decodeURIComponent(this.split('=')[0]); var val = decodeURIComponent(this.split('=')[1]); if (!key) return; if ($numbers) { if (/^[+-]?[0-9]+\.[0-9]*$/.test(val)) // simple float regex val = parseFloat(val); else if (/^[+-]?[0-9]+$/.test(val)) // simple int regex val = parseInt(val, 10); } val = (!val && val !== 0) ? true : val; if (val !== false && val !== true && typeof val != 'number') val = val; self.SET(key, val); }); }); } return self; }; queryObject.prototype = { queryObject: true, has: function(key, type) { var value = this.get(key); return is(value, type); }, GET: function(key) { if (!is(key)) return this.keys; var parsed = parse(key), base = parsed[0], tokens = parsed[1]; var target = this.keys[base]; while (target != null && tokens.length != 0) { target = target[tokens.shift()]; } return typeof target == 'number' ? target : target || ""; }, get: function(key) { var target = this.GET(key); if (is(target, Object)) return jQuery.extend(true, {}, target); else if (is(target, Array)) return target.slice(0); return target; }, SET: function(key, val) { var value = !is(val) ? null : val; var parsed = parse(key), base = parsed[0], tokens = parsed[1]; var target = this.keys[base]; this.keys[base] = set(target, tokens.slice(0), value); return this; }, set: function(key, val) { return this.copy().SET(key, val); }, REMOVE: function(key) { return this.SET(key, null).COMPACT(); }, remove: function(key) { return this.copy().REMOVE(key); }, EMPTY: function() { var self = this; jQuery.each(self.keys, function(key, value) { delete self.keys[key]; }); return self; }, load: function(url) { var hash = url.replace(/^.*?[#](.+?)(?:\?.+)?$/, "$1"); var search = url.replace(/^.*?[?](.+?)(?:#.+)?$/, "$1"); return new queryObject(url.length == search.length ? '' : search, url.length == hash.length ? '' : hash); }, empty: function() { return this.copy().EMPTY(); }, copy: function() { return new queryObject(this); }, COMPACT: function() { function build(orig) { var obj = typeof orig == "object" ? is(orig, Array) ? [] : {} : orig; if (typeof orig == 'object') { function add(o, key, value) { if (is(o, Array)) o.push(value); else o[key] = value; } jQuery.each(orig, function(key, value) { if (!is(value)) return true; add(obj, key, build(value)); }); } return obj; } this.keys = build(this.keys); return this; }, compact: function() { return this.copy().COMPACT(); }, toString: function() { var i = 0, queryString = [], chunks = [], self = this; var addFields = function(arr, key, value) { if (!is(value) || value === false) return; var o = [encodeURIComponent(key)]; if (value !== true) { o.push("="); o.push(encodeURIComponent(value)); } arr.push(o.join("")); }; var build = function(obj, base) { var newKey = function(key) { return !base || base == "" ? [key].join("") : [base, "[", key, "]"].join(""); }; jQuery.each(obj, function(key, value) { if (typeof value == 'object') build(value, newKey(key)); else addFields(chunks, newKey(key), value); }); }; build(this.keys); if (chunks.length > 0) queryString.push($hash); queryString.push(chunks.join($separator)); return queryString.join(""); } }; return new queryObject(location.search, location.hash); }; }(jQuery.query || {}); // Pass in jQuery.query as settings object // // From: jquery.scrollTo-min.js // /** * jQuery.ScrollTo - Easy element scrolling using jQuery. * Copyright (c) 2007-2008 Ariel Flesler - aflesler(at)gmail(dot)com | http://flesler.blogspot.com * Dual licensed under MIT and GPL. * Date: 9/11/2008 * @author Ariel Flesler * @version 1.4 * * http://flesler.blogspot.com/2007/10/jqueryscrollto.html */ ;(function(h){var m=h.scrollTo=function(b,c,g){h(window).scrollTo(b,c,g)};m.defaults={axis:'y',duration:1};m.window=function(b){return h(window).scrollable()};h.fn.scrollable=function(){return this.map(function(){var b=this.parentWindow||this.defaultView,c=this.nodeName=='#document'?b.frameElement||b:this,g=c.contentDocument||(c.contentWindow||c).document,i=c.setInterval;return c.nodeName=='IFRAME'||i&&h.browser.safari?g.body:i?g.documentElement:this})};h.fn.scrollTo=function(r,j,a){if(typeof j=='object'){a=j;j=0}if(typeof a=='function')a={onAfter:a};a=h.extend({},m.defaults,a);j=j||a.speed||a.duration;a.queue=a.queue&&a.axis.length>1;if(a.queue)j/=2;a.offset=n(a.offset);a.over=n(a.over);return this.scrollable().each(function(){var k=this,o=h(k),d=r,l,e={},p=o.is('html,body');switch(typeof d){case'number':case'string':if(/^([+-]=)?\d+(px)?$/.test(d)){d=n(d);break}d=h(d,this);case'object':if(d.is||d.style)l=(d=h(d)).offset()}h.each(a.axis.split(''),function(b,c){var g=c=='x'?'Left':'Top',i=g.toLowerCase(),f='scroll'+g,s=k[f],t=c=='x'?'Width':'Height',v=t.toLowerCase();if(l){e[f]=l[i]+(p?0:s-o.offset()[i]);if(a.margin){e[f]-=parseInt(d.css('margin'+g))||0;e[f]-=parseInt(d.css('border'+g+'Width'))||0}e[f]+=a.offset[i]||0;if(a.over[i])e[f]+=d[v]()*a.over[i]}else e[f]=d[i];if(/^\d+$/.test(e[f]))e[f]=e[f]<=0?0:Math.min(e[f],u(t));if(!b&&a.queue){if(s!=e[f])q(a.onAfterFirst);delete e[f]}});q(a.onAfter);function q(b){o.animate(e,j,a.easing,b&&function(){b.call(this,r,a)})};function u(b){var c='scroll'+b,g=k.ownerDocument;return p?Math.max(g.documentElement[c],g.body[c]):k[c]}}).end()};function n(b){return typeof b=='object'?b:{top:b,left:b}}})(jQuery); // // From: jquery.utils.min.js // /* jQuery utils - 0.8.0 http://code.google.com/p/jquery-utils/ (c) Maxime Haineault http://haineault.com MIT License (http://www.opensource.org/licenses/mit-license.php */ (function(jQuery){ jQuery.extend(jQuery.expr[':'], { // case insensitive version of :contains icontains: function(a,i,m){return (a.textContent||a.innerText||jQuery(a).text()||"").toLowerCase().indexOf(m[3].toLowerCase())>=0;} }); jQuery.iterators = { getText: function() { return jQuery(this).text(); }, parseInt: function(v){ return parseInt(v, 10); } }; jQuery.extend({ // Taken from ui.core.js. // Why are you keeping this gem for yourself guys ? :| keyCode: { BACKSPACE: 8, CAPS_LOCK: 20, COMMA: 188, CONTROL: 17, DELETE: 46, DOWN: 40, END: 35, ENTER: 13, ESCAPE: 27, HOME: 36, INSERT: 45, LEFT: 37, NUMPAD_ADD: 107, NUMPAD_DECIMAL: 110, NUMPAD_DIVIDE: 111, NUMPAD_ENTER: 108, NUMPAD_MULTIPLY: 106, NUMPAD_SUBTRACT: 109, PAGE_DOWN: 34, PAGE_UP: 33, PERIOD: 190, RIGHT: 39, SHIFT: 16, SPACE: 32, TAB: 9, UP: 38 }, keyIs: function(k, e) { return parseInt(jQuery.keyCode[k.toUpperCase()], 10) == parseInt((typeof(e) == 'number' )? e: e.keyCode, 10); }, // Redirect to a specified url redirect: function(url) { window.location.href = url; return url; }, // Stop event shorthand stop: function(e, preventDefault, stopPropagation) { if (preventDefault) { e.preventDefault(); } if (stopPropagation) { e.stopPropagation(); } return preventDefault && false || true; }, // Returns the basename of a path basename: function(path) { var t = path.split('/'); return t[t.length] === '' && s || t.slice(0, t.length).join('/'); }, // Returns the filename of a path filename: function(path) { return path.split('/').pop(); }, // Returns a formated file size filesizeformat: function(bytes, suffixes){ var b = parseInt(bytes, 10); var s = suffixes || ['byte', 'bytes', 'KB', 'MB', 'GB']; if (isNaN(b) || b === 0) { return '0 ' + s[0]; } if (b == 1) { return '1 ' + s[0]; } if (b < 1024) { return b.toFixed(2) + ' ' + s[1]; } if (b < 1048576) { return (b / 1024).toFixed(2) + ' ' + s[2]; } if (b < 1073741824) { return (b / 1048576).toFixed(2) + ' '+ s[3]; } else { return (b / 1073741824).toFixed(2) + ' '+ s[4]; } }, fileExtension: function(s) { var tokens = s.split('.'); return tokens[tokens.length-1] || false; }, // Returns true if an object is a String isString: function(o) { return typeof(o) == 'string' && true || false; }, // Returns true if an object is a RegExp isRegExp: function(o) { return o && o.constructor.toString().indexOf('RegExp()') != -1 || false; }, // Returns true if an object is an array // Mark Miller - http://blog.360.yahoo.com/blog-TBPekxc1dLNy5DOloPfzVvFIVOWMB0li?p=916 //isArray: function(o) { // if (!o) { return false; } // return Object.prototype.toString.apply(o.constructor.prototype) === '[object Array]'; //}, isObject: function(o) { return (typeof(o) == 'object'); }, // Convert input to currency (two decimal fixed number) toCurrency: function(i) { i = parseFloat(i, 10).toFixed(2); return (i=='NaN') ? '0.00' : i; }, /*-------------------------------------------------------------------- * javascript method: "pxToEm" * by: Scott Jehl (scott@filamentgroup.com) Maggie Wachs (maggie@filamentgroup.com) http://www.filamentgroup.com * * Copyright (c) 2008 Filament Group * Dual licensed under the MIT (filamentgroup.com/examples/mit-license.txt) and GPL (filamentgroup.com/examples/gpl-license.txt) licenses. * * Description: pxToEm converts a pixel value to ems depending on inherited font size. * Article: http://www.filamentgroup.com/lab/retaining_scalable_interfaces_with_pixel_to_em_conversion/ * Demo: http://www.filamentgroup.com/examples/pxToEm/ * * Options: scope: string or jQuery selector for font-size scoping reverse: Boolean, true reverses the conversion to em-px * Dependencies: jQuery library * Usage Example: myPixelValue.pxToEm(); or myPixelValue.pxToEm({'scope':'#navigation', reverse: true}); * * Version: 2.1, 18.12.2008 * Changelog: * 08.02.2007 initial Version 1.0 * 08.01.2008 - fixed font-size calculation for IE * 18.12.2008 - removed native object prototyping to stay in jQuery's spirit, jsLinted (Maxime Haineault ) --------------------------------------------------------------------*/ pxToEm: function(i, settings){ //set defaults settings = jQuery.extend({ scope: 'body', reverse: false }, settings); var pxVal = (i === '') ? 0 : parseFloat(i); var scopeVal; var getWindowWidth = function(){ var de = document.documentElement; return self.innerWidth || (de && de.clientWidth) || document.body.clientWidth; }; /* When a percentage-based font-size is set on the body, IE returns that percent of the window width as the font-size. For example, if the body font-size is 62.5% and the window width is 1000px, IE will return 625px as the font-size. When this happens, we calculate the correct body font-size (%) and multiply it by 16 (the standard browser font size) to get an accurate em value. */ if (settings.scope == 'body' && jQuery.browser.msie && (parseFloat(jQuery('body').css('font-size')) / getWindowWidth()).toFixed(1) > 0.0) { var calcFontSize = function(){ return (parseFloat(jQuery('body').css('font-size'))/getWindowWidth()).toFixed(3) * 16; }; scopeVal = calcFontSize(); } else { scopeVal = parseFloat(jQuery(settings.scope).css("font-size")); } var result = (settings.reverse === true) ? (pxVal * scopeVal).toFixed(2) + 'px' : (pxVal / scopeVal).toFixed(2) + 'em'; return result; } }); jQuery.extend(jQuery.fn, { // Select a text range in a textarea selectRange: function(start, end){ // use only the first one since only one input can be focused if (jQuery(this).get(0).createTextRange) { var range = jQuery(this).get(0).createTextRange(); range.collapse(true); range.moveEnd('character', end); range.moveStart('character', start); range.select(); } else if (jQuery(this).get(0).setSelectionRange) { jQuery(this).bind('focus', function(e){ e.preventDefault(); }).get(0).setSelectionRange(start, end); } return jQuery(this); }, /*-------------------------------------------------------------------- * JQuery Plugin: "EqualHeights" * by: Scott Jehl, Todd Parker, Maggie Costello Wachs (http://www.filamentgroup.com) * * Copyright (c) 2008 Filament Group * Licensed under GPL (http://www.opensource.org/licenses/gpl-license.php) * * Description: Compares the heights or widths of the top-level children of a provided element and sets their min-height to the tallest height (or width to widest width). Sets in em units by default if pxToEm() method is available. * Dependencies: jQuery library, pxToEm method (article: http://www.filamentgroup.com/lab/retaining_scalable_interfaces_with_pixel_to_em_conversion/) * Usage Example: jQuery(element).equalHeights(); Optional: to set min-height in px, pass a true argument: jQuery(element).equalHeights(true); * Version: 2.1, 18.12.2008 * * Note: Changed pxToEm call to call jQuery.pxToEm instead, jsLinted (Maxime Haineault ) --------------------------------------------------------------------*/ equalHeights: function(px){ jQuery(this).each(function(){ var currentTallest = 0; jQuery(this).children().each(function(i){ if (jQuery(this).height() > currentTallest) { currentTallest = jQuery(this).height(); } }); if (!px || !jQuery.pxToEm) { currentTallest = jQuery.pxToEm(currentTallest); } //use ems unless px is specified // for ie6, set height since min-height isn't supported if (jQuery.browser.msie && jQuery.browser.version == 6.0) { jQuery(this).children().css({'height': currentTallest}); } jQuery(this).children().css({'min-height': currentTallest}); }); return this; }, // Copyright (c) 2009 James Padolsey // http://james.padolsey.com/javascript/jquery-delay-plugin/ delay: function(time, callback){ jQuery.fx.step.delay = function(){}; return this.animate({delay:1}, time, callback); } }); })(jQuery); /* jQuery strings - 0.2 http://code.google.com/p/jquery-utils/ (c) Maxime Haineault http://haineault.com MIT License (http://www.opensource.org/licenses/mit-license.php) Implementation of Python3K advanced string formatting http://www.python.org/dev/peps/pep-3101/ Documentation: http://code.google.com/p/jquery-utils/wiki/StringFormat */ (function(jQuery){ var strings = { strConversion: { // tries to translate any objects type into string gracefully __repr: function(i){ switch(this.__getType(i)) { case 'array':case 'date':case 'number': return i.toString(); case 'object': var o = []; for (x=0; x 0) { o = new Array(Math.ceil(l / p.length)).join(p).substr(0, t = !t ? l : t == 1 ? 0 : Math.ceil(l / 2)) + str + p.substr(0, l - t); } return o; }, __getInput: function(arg, args) { var key = arg.getKey(); switch(this.__getType(args)){ case 'object': // Thanks to Jonathan Works for the patch var keys = key.split('.'); var obj = args; for(var subkey = 0; subkey < keys.length; subkey++){ obj = obj[keys[subkey]]; } if (typeof(obj) != 'undefined') { if (strings.strConversion.__getType(obj) == 'array') { return arg.getFormat().match(/\.\*/) && obj[1] || obj; } return obj; } else { // TODO: try by numerical index } break; case 'array': key = parseInt(key, 10); if (arg.getFormat().match(/\.\*/) && typeof args[key+1] != 'undefined') { return args[key+1]; } else if (typeof args[key] != 'undefined') { return args[key]; } else { return key; } break; } return '{'+key+'}'; }, __formatToken: function(token, args) { var arg = new Argument(token, args); return strings.strConversion[arg.getFormat().slice(-1)](this.__getInput(arg, args), arg); }, // Signed integer decimal. d: function(input, arg){ var o = parseInt(input, 10); // enforce base 10 var p = arg.getPaddingLength(); if (p) { return this.__pad(o.toString(), p, arg.getPaddingString(), 0); } else { return o; } }, // Signed integer decimal. i: function(input, args){ return this.d(input, args); }, // Unsigned octal o: function(input, arg){ var o = input.toString(8); if (arg.isAlternate()) { o = this.__pad(o, o.length+1, '0', 0); } return this.__pad(o, arg.getPaddingLength(), arg.getPaddingString(), 0); }, // Unsigned decimal u: function(input, args) { return Math.abs(this.d(input, args)); }, // Unsigned hexadecimal (lowercase) x: function(input, arg){ var o = parseInt(input, 10).toString(16); o = this.__pad(o, arg.getPaddingLength(), arg.getPaddingString(),0); return arg.isAlternate() ? '0x'+o : o; }, // Unsigned hexadecimal (uppercase) X: function(input, arg){ return this.x(input, arg).toUpperCase(); }, // Floating point exponential format (lowercase) e: function(input, arg){ return parseFloat(input, 10).toExponential(arg.getPrecision()); }, // Floating point exponential format (uppercase) E: function(input, arg){ return this.e(input, arg).toUpperCase(); }, // Floating point decimal format f: function(input, arg){ return this.__pad(parseFloat(input, 10).toFixed(arg.getPrecision()), arg.getPaddingLength(), arg.getPaddingString(),0); }, // Floating point decimal format (alias) F: function(input, args){ return this.f(input, args); }, // Floating point format. Uses exponential format if exponent is greater than -4 or less than precision, decimal format otherwise g: function(input, arg){ var o = parseFloat(input, 10); return (o.toString().length > 6) ? Math.round(o.toExponential(arg.getPrecision())): o; }, // Floating point format. Uses exponential format if exponent is greater than -4 or less than precision, decimal format otherwise G: function(input, args){ return this.g(input, args); }, // Single character (accepts integer or single character string). c: function(input, args) { var match = input.match(/\w|\d/); return match && match[0] || ''; }, // String (converts any JavaScript object to anotated format) r: function(input, args) { return this.__repr(input); }, // String (converts any JavaScript object using object.toString()) s: function(input, args) { return input.toString && input.toString() || ''+input; } }, format: function(str, args) { var end = 0; var start = 0; var match = false; var buffer = []; var token = ''; var tmp = (str||'').split(''); for(start=0; start < tmp.length; start++) { if (tmp[start] == '{' && tmp[start+1] !='{') { end = str.indexOf('}', start); token = tmp.slice(start+1, end).join(''); buffer.push(strings.strConversion.__formatToken(token, (typeof arguments[1] != 'object')? arguments2Array(arguments, 2): args || [])); } else if (start > end || buffer.length < 1) { buffer.push(tmp[start]); } } return (buffer.length > 1)? buffer.join(''): buffer[0]; }, calc: function(str, args) { return eval(format(str, args)); }, repeat: function(s, n) { return new Array(n+1).join(s); }, UTF8encode: function(s) { return unescape(encodeURIComponent(s)); }, UTF8decode: function(s) { return decodeURIComponent(escape(s)); }, tpl: function() { var out = '', render = true; // Set // jQuery.tpl('ui.test', ['', helloWorld ,'']); if (arguments.length == 2 && jQuery.isArray(arguments[1])) { this[arguments[0]] = arguments[1].join(''); return jQuery; } // jQuery.tpl('ui.test', 'hello world'); if (arguments.length == 2 && jQuery.isString(arguments[1])) { this[arguments[0]] = arguments[1]; return jQuery; } // Call // jQuery.tpl('ui.test'); if (arguments.length == 1) { return jQuery(this[arguments[0]]); } // jQuery.tpl('ui.test', false); if (arguments.length == 2 && arguments[1] == false) { return this[arguments[0]]; } // jQuery.tpl('ui.test', {value:blah}); if (arguments.length == 2 && jQuery.isObject(arguments[1])) { return jQuery(jQuery.format(this[arguments[0]], arguments[1])); } // jQuery.tpl('ui.test', {value:blah}, false); if (arguments.length == 3 && jQuery.isObject(arguments[1])) { return (arguments[2] == true) ? jQuery.format(this[arguments[0]], arguments[1]) : jQuery(jQuery.format(this[arguments[0]], arguments[1])); } } }; var Argument = function(arg, args) { this.__arg = arg; this.__args = args; this.__max_precision = parseFloat('1.'+ (new Array(32)).join('1'), 10).toString().length-3; this.__def_precision = 6; this.getString = function(){ return this.__arg; }; this.getKey = function(){ return this.__arg.split(':')[0]; }; this.getFormat = function(){ var match = this.getString().split(':'); return (match && match[1])? match[1]: 's'; }; this.getPrecision = function(){ var match = this.getFormat().match(/\.(\d+|\*)/g); if (!match) { return this.__def_precision; } else { match = match[0].slice(1); if (match != '*') { return parseInt(match, 10); } else if(strings.strConversion.__getType(this.__args) == 'array') { return this.__args[1] && this.__args[0] || this.__def_precision; } else if(strings.strConversion.__getType(this.__args) == 'object') { return this.__args[this.getKey()] && this.__args[this.getKey()][0] || this.__def_precision; } else { return this.__def_precision; } } }; this.getPaddingLength = function(){ var match = false; if (this.isAlternate()) { match = this.getString().match(/0?#0?(\d+)/); if (match && match[1]) { return parseInt(match[1], 10); } } match = this.getString().match(/(0|\.)(\d+|\*)/g); return match && parseInt(match[0].slice(1), 10) || 0; }; this.getPaddingString = function(){ var o = ''; if (this.isAlternate()) { o = ' '; } // 0 take precedence on alternate format if (this.getFormat().match(/#0|0#|^0|\.\d+/)) { o = '0'; } return o; }; this.getFlags = function(){ var match = this.getString().matc(/^(0|\#|\-|\+|\s)+/); return match && match[0].split('') || []; }; this.isAlternate = function() { return !!this.getFormat().match(/^0?#/); }; }; var arguments2Array = function(args, shift) { var o = []; for (l=args.length, x=(shift || 0)-1; x' + '' ); $('#' + selector).hide(); }); $.fn.profilemenu = function(options){ // options var opts = $.extend({}, $.fn.profilemenu.defaults, options); return this.each(function(){ $(this).mouseenter(function(){ in_menu = true; show_hover($(this).position().left, $(this).position().top); var links = ['im_link','vp_link','mp_link','fl_link','em_link']; var num_links = links.length; for (i = 0; i < num_links; i++) { // if the link exists if ($(this).attr(links[i])) { // im link should have an onclick handler if (links[i] == 'im_link') { $('#' + links[i]) .attr('href', '#' + $(this).attr(links[i])) // this is to make the have a hover event .click(function(e){ instantMessageAllowLaunch($(this).attr('href').slice(1)); return false; }) .show(); } else { $('#' + links[i]) .attr('href', $(this).attr(links[i])) .show(); } } else { $('#' + links[i]).hide(); } } }); $(this).mouseleave(function(){ in_menu = false; }); $(this).click(function(){ var link = $(this).attr('vp_link'); if (link) { document.location.href = link; } }); }); function show_hover(x, y) { var offset_x = opts.offset_x; var offset_y = opts.offset_y; var new_x = x + offset_x; var new_y = y + offset_y; // prevent the menu from going above the screen if (new_y < 0) { new_y = 0; } $('#' + selector) .css('position', 'absolute') .css('left', new_x) .css('top', new_y) .css('display', 'block') .stop() .animate({opacity: opts.fade_to}, opts.delay) //.fadeIn('fast') .mouseenter(function(){ in_menu = true; $(this).stop().animate({opacity: opts.fade_to}, opts.delay); }) .mouseleave(function(){ in_menu = false; }); if (!menu_open) { $().mousemove(hide_hover); } menu_open = true; } function hide_hover() { if (!in_menu) { menu_open = false; $('#' + selector) //.fadeOut('fast'); .stop() .animate({opacity: 0}, opts.delay, function(){ $(this).css('display','none') }); $().unbind('mousemmove', hide_hover); } } } $.fn.profilemenu.defaults = { delay: 200, fade_to: 0.9, offset_x: 125, offset_y: 35 }; }) (jQuery); // // From: jquery.resizeimages.js // /** * Resize images on window load to fit to resizeheight/resizewidth. * * Just add the .resize class to an image and attributes with the size to resize to. * */ (function($) { $(window).load(function() { $('.resize').resizeimages(); }); $.fn.resizeimages = function(options) { // options var opts = $.extend({}, $.fn.resizeimages.defaults, options); return this.each(function() { if ($(this).attr('complete')) { resizeImage($(this)); } else { $(this).load(function(){ resizeImage($(this)); }); } function resizeImage(obj) { // if resizeheight and resizewidth isn't specified, do not resize if (!(parseInt(obj.attr('resizeheight')) && parseInt(obj.attr('resizewidth')))) { return; } var maxHeight = parseInt(obj.attr('resizeheight')); var maxWidth = parseInt(obj.attr('resizewidth')); var h = obj.height(); var w = obj.width(); if (h != 0 || w != 0) { // resize only if the image has already size, i.e. is visible var hDiff = h / maxHeight; var wDiff = w / maxWidth; if (hDiff > 1 && wDiff > 1) { if (hDiff > wDiff) { obj.height(maxHeight) obj.css("width", "") } else { obj.width(maxWidth); obj.css("height", "") } } else if (hDiff > 1 || wDiff > 1) { if (hDiff > 1) { obj.height(maxHeight); obj.css("width", "") } else { obj.width(maxWidth); obj.css("height", "") } } if (opts.fade) { obj.fadeIn('slow'); } else { obj.show(); } obj.removeClass('resize'); } } }); } $.fn.resizeimages.defaults = { fade: false }; }) (jQuery); /* Script created by designFORGE { identity foundry } jQuery transparency plugin */ (function($){$.fn.transBGdraw = function(options){defaults ={'background':'#000000','opacity':'0.37','-moz-opacity':'0.37','filter':'alpha(opacity=37)','position':'absolute','z-index':'-1','height':$(this).height(),'width':$(this).width(),'padding-top':$(this).css('padding-top'),'padding-right':$(this).css('padding-right'),'padding-bottom':$(this).css('padding-bottom'),'padding-left':$(this).css('padding-left'),'border-top-style':$(this).css('border-top-style'),'border-top-width':$(this).css('border-top-width'),'border-top-color':$(this).css('background-color'),'border-right-style':$(this).css('border-right-style'),'border-right-width':$(this).css('border-right-width'),'border-right-color':$(this).css('background-color'),'border-bottom-style':$(this).css('border-bottom-style'),'border-bottom-width':$(this).css('border-bottom-width'),'border-bottom-color':$(this).css('background-color'),'border-left-style':$(this).css('border-left-style'),'border-left-width':$(this).css('border-left-width'),'border-left-color':$(this).css('background-color'),'margin-top':$(this).css('margin-top'),'margin-right':$(this).css('margin-right'),'margin-bottom':$(this).css('margin-bottom'),'margin-left':$(this).css('margin-left'),'top':$(this).position().top,'left':$(this).position().left};var options = $.extend(defaults, options);$(this).addClass('transBG');$('
                ').insertBefore(this);$('#'+$(this).attr('id')+'TransBG').css(options);};})(jQuery); (function($){$.fn.transBGredraw = function(options){defaults ={'background':'#000000','opacity':'0.37','-moz-opacity':'0.37','filter':'alpha(opacity=37)','position':'absolute','z-index':'-1','height':$(this).height(),'width':$(this).width(),'padding-top':$(this).css('padding-top'),'padding-right':$(this).css('padding-right'),'padding-bottom':$(this).css('padding-bottom'),'padding-left':$(this).css('padding-left'),'border-top-style':$(this).css('border-top-style'),'border-top-width':$(this).css('border-top-width'),'border-top-color':$(this).css('background-color'),'border-right-style':$(this).css('border-right-style'),'border-right-width':$(this).css('border-right-width'),'border-right-color':$(this).css('background-color'),'border-bottom-style':$(this).css('border-bottom-style'),'border-bottom-width':$(this).css('border-bottom-width'),'border-bottom-color':$(this).css('background-color'),'border-left-style':$(this).css('border-left-style'),'border-left-width':$(this).css('border-left-width'),'border-left-color':$(this).css('background-color'),'margin-top':$(this).css('margin-top'),'margin-right':$(this).css('margin-right'),'margin-bottom':$(this).css('margin-bottom'),'margin-left':$(this).css('margin-left'),'top':$(this).position().top,'left':$(this).position().left};var options = $.extend(defaults, options);$('#'+$(this).attr('id')+'TransBG').css(options);};})(jQuery); /* * jQuery Plugin: DivCorners * http://www.roydukkey.com/divcorners * * Copyright (c) 2009 Rory Dueck * * Dual licensed under the MIT (http://www.opensource.org/licenses/mit-license.php) * and GPL (http://www.opensource.org/licenses/gpl-license.php) licenses. * * Date: 2009-09-01 (Tue, 01 Sept 2009) * Version: 1.5.1 */ eval(function(p,a,c,k,e,r){e=function(c){return(c35?String.fromCharCode(c+29):c.toString(36))};if(!''.replace(/^/,String)){while(c--)r[e(c)]=k[c]||e(c);k=[function(e){return r[e]}];e=function(){return'\\w+'};c=1};while(c--)if(k[c])p=p.replace(new RegExp('\\b'+e(c)+'\\b','g'),k[c]);return p}('(k($){D f={1l:k(s,e){D o=$.1m({W:"/1n/",E:".1o",6:10,4:0,I:"J",X:"",18:""},s);o.e=$.19(o.6)?o.6.1a==2?{t:o.6[0],r:o.6[1],b:o.6[0],l:o.6[1]}:{t:o.6[0],r:o.6[1],b:o.6[2],l:o.6[3]}:{t:o.6,r:o.6,b:o.6,l:o.6};o.r=$.19(o.4)?o.4.1a==2?{t:o.4[0]>o.e.t?o.4[0]-o.e.t:0,r:o.4[1]>o.e.r?o.4[1]-o.e.r:0,b:o.4[0]>o.e.b?o.4[0]-o.e.b:0,l:o.4[1]>o.e.l?o.4[1]-o.e.l:0}:{t:o.4[0]>o.e.t?o.4[0]-o.e.t:0,r:o.4[1]>o.e.r?o.4[1]-o.e.r:0,b:o.4[2]>o.e.b?o.4[2]-o.e.b:0,l:o.4[3]>o.e.l?o.4[3]-o.e.l:0}:{t:o.4>o.e.t?o.4-o.e.t:0,r:o.4>o.e.r?o.4-o.e.r:0,b:o.4>o.e.b?o.4-o.e.b:0,l:o.4>o.e.l?o.4-o.e.l:0};o.x=o.18.F(/\\s/g,"").1p(",");Y m.G(k(){D g=$(m),u=g.h(">.1q"),x,a,v,y,b,c;g.1r("A").5({"8":g.8(),"9":g.9()});u.5({"8":u.8(),"9":u.9()});j(o.X!="")g.h(o.X).G(k(){$(m).1s(k(){$(m).K(".A").H("r")})});1b(x 1c a=[["t","L"],["r","w"],["b","Z"],["l","z"]]){v=g.1d(\'\'+($.O(a[x][1],o.x)==-1?\'<12 P="\'+o.W+a[x][1]+o.E+\'" />\':"")+"").h(">.N"+a[x][1]);j(x!=1&&x!=3){o.I=="J"?v.5("B-z",o.e.l+o.r.l).9(g.Q()-(o.r.l+o.e.l+o.r.r+o.e.r)):v.5(a[x][1],-q("o.e."+a[x][0])).5("B-z",o.r.l).9(g.Q()-(o.r.l+o.r.r));v.8(q("o.e."+a[x][0])).5("13","14");1b(y 1c b=[["l","z"],["r","w"]]){c=g.1d(\'\'+($.O(a[x][1]+"-"+b[y][1],o.x)==-1?\'<12 P="\'+o.W+a[x][1]+"-"+b[y][1]+o.E+\'" />\':"")+"").h(">.N"+a[x][1]+"-"+b[y][1]);j(o.I!="J")c.5(a[x][1],-q("o.e."+a[x][0])).5(b[y][1],-q("o.e."+b[y][0]));c.8(q("o.e."+a[x][0])+q("o.r."+a[x][0])).9(q("o.e."+b[y][0])+q("o.r."+b[y][0])).5("13","14");j($.O(a[x][1]+"-"+b[y][1],o.x)==-1)R(c,o.E)}}1t{o.I=="J"?v.5("B-L",o.e.t+o.r.t).8(g.S()-(o.r.t+o.e.t+o.r.b+o.e.b)):v.5(a[x][1],-q("o.e."+a[x][0])).5("B-L",o.r.t).8(g.S()-(o.r.t+o.r.b));v.9(q("o.e."+a[x][0])).5("13","14")}j($.O(a[x][1],o.x)==-1)R(v,o.E)}15(g);j(e!=16)g.K(".A").H("r")})},H:k(e){Y m.G(k(){D g=$(m),c=g.h(">.T-z"),d=g.h(">.T-w");j(g.1u("A")){g.5("1f","0");j(e=="r")g.5({"8":"","9":""});g.h(">.T,>.C").9(g.Q()-(c.9()+U(c.5("z").F("V"))+d.9()+U(d.5("w").F("V"))));g.h(">.1v,>.1g").8(g.S()-(c.8()+U(c.5("L").F("V"))+(d=g.h(">.C-z")).8()+U(d.5("Z").F("V"))));15(g);j(e=="r")g.5({"8":g.8(),"9":g.9()});g.5("1f","1");j(e!=16)g.K(".A").H("r")}})},1w:k(e){Y m.G(k(){$(m).1x("A").h(">.11").1y();j(e!=16)$(m).K(".A").H("r")})}};$.G(f,k(i){$.1z[i]=m});k R(p,n){j($.17.1h&&n==".R"){D i=(p=$(p)).h("12");p.5("1i","1A:1B.1C.1D(P=\'"+i.1E("P")+"\',1F=\'1G\')");i.5("1i","1H(1I=0)")}}k 15(c){j($.17.1J<7.0&&$.17.1h){1K(c){h(">.T-w,>.1g,>.C-w").5("B-w",Q()%2!=0?"-1j":"1k");h(">.C-z,>.C,>.C-w").5("B-Z",S()%2!=0?"-1j":"1k")}}}})(1L);',62,110,'||||radius|css|expand||height|width||||||||find||if|function||this||||eval||||||right|||left|dCorner|margin|dcbottom|var|fileType|replace|each|dcResize|position|inside|parents|top|div|dc|inArray|src|innerWidth|png|innerHeight|dctop|parseInt|px|imgPrefix|resize|return|bottom||dcItem|img|display|block|widthFix|false|browser|exclude|isArray|length|for|in|append|class|zoom|dcright|msie|filter|1px|0px|dcCreate|extend|images|gif|split|dcContent|addClass|load|else|hasClass|dcleft|dcClear|removeClass|remove|fn|progid|DXImageTransform|Microsoft|AlphaImageLoader|attr|sizingMethod|scale|alpha|opacity|version|with|jQuery'.split('|'),0,{})) ]]>
                false
                7947879759632820224 5244416 Cookie without HttpOnly flag set http://www.verifiedplaymates.com Information Certain
                You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
              73. apache2_cookie=173.193.214.243.1303071238399991; path=/; expires=Thu, 16-Jun-11 20:13:58 GMT
              74. The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                ') this.shimobject=document.getElementById("iframeshim") this.shimobject.style.filter='progid:DXImageTransform.Microsoft.Alpha(style=0,opacity=0)' this.iframeshimadded=true}}}]]> false
                3163732407528820736 5243904 Cross-domain Referer leakage http://l.yimg.com Information Certain
                If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

                You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

                Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

                Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
              75. http://l.yimg.com/g/combo/1/3.3.0?intl/intl-min.js&attribute/attribute-min.js&base/base-min.js&anim/anim-min.js&autocomplete/lang/autocomplete.js&collection/array-extras-min.js&escape/escape-min.js&event-valuechange/event-valuechange-min.js&dom/selector-css3-min.js&classnamemanager/classnamemanager-min.js&widget/widget-min.js&widget/widget-position-min.js&widget/widget-position-align-min.js&widget/widget-stack-min.js&autocomplete/autocomplete-min.js&autocomplete/autocomplete-list-keys-min.js&j/.CC.A.vNiA7&j/.C-.BL.A.vPPj3&j/.HO-.C-.F.A.vT2dN&datasource/datasource-local-min.js&dump/dump-min.js&datatype/datatype-xml-min.js&json/json-min.js&queue-promote/queue-promote-min.js&io/io-min.js&j/.J_.DS.A.vTjzG&j/.HO-.X-.CA-.BYsource.A.vSXAs&datasource/datasource-function-min.js&j/.CW-.CU.A.vQ7Rh&j/.HO-3.A.vTUwE&j/.CV-.CH.A.vTAvQ&j/.HZ-.K.A.vUq7b&j/.DB-.S-.C-.F.A.vTYqw&j/.DB-.S.A.vU71b&j/.HP.A.vSSXu&j/.CF.A.vNC25&j/.FW-.FX-.GH.A.vTo7S&j/.HQ.A.vTWr1&j/.CE-.K.A.vUnGw&cookie/cookie-min.js&j/.B-.C-.F.A.vQ7T1&j/urls.A.vSbuW&j/.B-.BY.A.vUk45&j/.H-.BY.A.vUrgq&j/.G-.BD.A.vNHSJ&j/.G-.BO.A.vNwR5&j/.X-.W-.C-.F.A.vKPQb&j/.X-.W-.D.A.vT39f&j/.DL.A.vLPjE&j/.CX-.CY.A.vP8NE&widget/widget-stdmod-min.js&widget/widget-position-constrain-min.js&overlay/overlay-min.js&j/.FW-.HN.A.vU88G&event-simulate/event-simulate-min.js&node/node-event-simulate-min.js&j/.B-.T-.CI-.C-.F.A.vTD57&j/.CM/.BA_2.5.1-.D.A.vPzuj&j/.HO-.D.A.vTn7f&j/.BZ-.D.A.vNstC&j/.HX-.C-.F.A.vNxPY&j/.HX-.BH.A.vTJQA&j/.CN-.DD.A.vSXbj&j/.B-.O-.C-.F.A.vTAEs&j/.BM.A.vSDKY&j/.B-.O.A.vTUo3&j/.B-.H-.BB-.C-.F.A.vQvrC&j/.Y-.C-.F.A.vNqGb&j/.Y.A.vSPs3&j/.B-.M-.C-.F.A.vT5ny&j/.U-.CG.A.vTA1w&transition/transition-min.js&j/.B-.M.A.vUdu3&j/.B-.HZs.A.vUpsf&event/event-touch-min.js&event-gestures/event-gestures-min.js&j/.B-.N-.C-.F.A.vQaRq&j/.CL.A.vN4N7&j/.B-.CL-.BW.A.vPwky&j/.DR-.DG.A.vU69b&j/.B-.BE-.C-.F.A.vPHP5&j/.B-.BE-.D.A.vU6cC&j/.Z-.DK-.D.A.vLQEf&j/.Z-.DJ-.BJ.A.vLQEf&j/.BV.A.vm3UA&j/fl.DSd.A.vT5ph&j/.HV-.C-.F.A.vPKTL&stylesheet/stylesheet-min.js&
              76. The response contains the following link to another domain:
                • http://www.flickr.com/help/website/
                ]]>
                =0;--s){z=y[s];for(v in z){if(z.hasOwnProperty(v)){u=b.mix({},z[v],true,t);r=u.value;x=u.cloneDefaultValue;if(r){if((x===undefined&&(c===r.constructor||k.isArray(r)))||x===l||x===true){u.value=b.clone(r);}else{if(x===q){u.value=b.merge(r);}}}A=null;if(v.indexOf(j)!==-1){A=v.split(j);v=A.shift();}if(A&&w[v]&&w[v].value){i.setValue(w[v].value,A,r);}else{if(!A){if(!w[v]){w[v]=u;}else{b.mix(w[v],u,true,t);}}}}}}}return w;},_initHierarchy:function(w){var t=this._lazyAddAttrs,x,y,z,u,s,v=this._getClasses(),r=this._getAttrCfgs();for(z=v.length-1;z>=0;z--){x=v[z];y=x.prototype;if(x._yuibuild&&x._yuibuild.exts){for(u=0,s=x._yuibuild.exts.length;u=T),S,U;this._runAttrs(R,T,Q);this._actualFrames+=1;this._set(L,R);this.fire(I);if(P){this._lastFrame();}},_runAttrs:function(Z,Y,V){var W=this._runtimeAttr,R=B.Anim.behaviors,X=W.easing,P=Y,T=false,Q,S,U;if(Z>=Y){T=true;}if(V){Z=Y-Z;P=0;}for(U in W){if(W[U].to){Q=W[U];S=(U in R&&"set" in R[U])?R[U].set:B.Anim.DEFAULT_SETTER;if(!T){S(this,U,Q.from,Q.to,Z,Y,X,Q.unit);}else{S(this,U,Q.from,Q.to,P,Y,X,Q.unit);}}}},_lastFrame:function(){var P=this.get("iterations"),Q=this.get(H);Q+=1;if(P==="infinite"||Q-1&&e>0){for(;g>-1;--g){if(f[g]===j){return g;}}}return -1;};a.unique=function(f,l){var k=0,e=f.length,h=[],m,g;for(;k-1;--g){if(m===h[g]){break;}}if(g===-1){h.push(m);}}if(l){if(b.isNumber(h[0])){h.sort(a.numericSort);}else{h.sort();}}return h;};a.filter=c.filter?function(e,g,h){return e.filter(g,h);}:function(g,l,m){var j=0,e=g.length,h=[],k;for(;j":">",'"':""","'":"'","/":"/","`":"`"},B={html:function(D){return D.replace(/[&<>"'\/`]/g,B._htmlReplacer);},regex:function(D){return D.replace(/[\-#$\^*()+\[\]{}|\\,.?\s]/g,"\\$&");},_htmlReplacer:function(D){return A[D];}};B.regexp=B.regex;C.Escape=B;},"3.3.0");/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("event-valuechange",function(D){var B=D.Array,C="value",A={POLL_INTERVAL:50,TIMEOUT:10000,_history:{},_intervals:{},_notifiers:{},_timeouts:{},_poll:function(I,F,J){var H=I._node,E=H&&H.value,K=A._history[F],G;if(!H){A._stopPolling(I,F);return;}if(E!==K){A._history[F]=E;G={_event:J,newVal:E,prevVal:K};B.each(A._notifiers[F],function(L){L.fire(G);});A._refreshTimeout(I,F);}},_refreshTimeout:function(F,E){A._stopTimeout(F,E);A._timeouts[E]=setTimeout(function(){A._stopPolling(F,E);},A.TIMEOUT);},_startPolling:function(F,E,H,G){if(!E){E=D.stamp(F);}if(!G&&A._intervals[E]){return;}A._stopPolling(F,E);A._intervals[E]=setInterval(function(){A._poll(F,E,H);},A.POLL_INTERVAL);A._refreshTimeout(F,E,H);},_stopPolling:function(F,E){if(!E){E=D.stamp(F);}A._intervals[E]=clearInterval(A._intervals[E]);A._stopTimeout(F,E);},_stopTimeout:function(F,E){if(!E){E=D.stamp(F);}A._timeouts[E]=clearTimeout(A._timeouts[E]);},_onBlur:function(E){A._stopPolling(E.currentTarget);},_onFocus:function(F){var E=F.currentTarget;A._history[D.stamp(E)]=E.get(C);A._startPolling(E,null,F);},_onKeyDown:function(E){A._startPolling(E.currentTarget,null,E);},_onKeyUp:function(E){if(E.charCode===229||E.charCode===197){A._startPolling(E.currentTarget,null,E,true);}},_onMouseDown:function(E){A._startPolling(E.currentTarget,null,E);},_onSubscribe:function(I,H,G){var F=D.stamp(I),E=A._notifiers[F];A._history[F]=I.get(C);G._handles=I.on({blur:A._onBlur,focus:A._onFocus,keydown:A._onKeyDown,keyup:A._onKeyUp,mousedown:A._onMouseDown});if(!E){E=A._notifiers[F]=[];}E.push(G);},_onUnsubscribe:function(J,I,H){var G=D.stamp(J),E=A._notifiers[G],F=B.indexOf(E,H);H._handles.detach();if(F!==-1){E.splice(F,1);if(!E.length){A._stopPolling(J,G);delete A._notifiers[G];delete A._history[G];}}}};D.Event.define("valueChange",{detach:A._onUnsubscribe,on:A._onSubscribe,publishConfig:{emitFacade:true}});D.ValueChange=A;},"3.3.0",{requires:["event-focus","event-synthetic"]});/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("selector-css3",function(a){a.Selector._reNth=/^(?:([\-]?\d*)(n){1}|(odd|even)$)*([\-+]?\d*)$/;a.Selector._getNth=function(d,o,q,h){a.Selector._reNth.test(o);var m=parseInt(RegExp.$1,10),c=RegExp.$2,j=RegExp.$3,k=parseInt(RegExp.$4,10)||0,p=[],l=a.Selector._children(d.parentNode,q),f;if(j){m=2;f="+";c="n";k=(j==="odd")?1:0;}else{if(isNaN(m)){m=(c)?1:0;}}if(m===0){if(h){k=l.length-k+1;}if(l[k-1]===d){return true;}else{return false;}}else{if(m<0){h=!!h;m=Math.abs(m);}}if(!h){for(var e=k-1,g=l.length;e=0&&l[e]===d){return true;}}}else{for(var e=l.length-k,g=l.length;e>=0;e-=m){if(e-1;},"checked":function(b){return(b.checked===true||b.selected===true);},enabled:function(b){return(b.disabled!==undefined&&!b.disabled);},disabled:function(b){return(b.disabled);}});a.mix(a.Selector.operators,{"^=":"^{val}","$=":"{val}$","*=":"{val}"});a.Selector.combinators["~"]={axis:"previousSibling"};},"3.3.0",{requires:["dom-base","selector-native","selector-css2"]});/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("classnamemanager",function(C){var B="classNamePrefix",D="classNameDelimiter",A=C.config;A[B]=A[B]||"yui3";A[D]=A[D]||"-";C.ClassNameManager=function(){var E=A[B],F=A[D];return{getClassName:C.cached(function(){var G=C.Array(arguments);if(G[G.length-1]!==true){G.unshift(E);}else{G.pop();}return G.join(F);})};}();},"3.3.0");/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("widget-base",function(b){var g=b.Lang,r=b.Node,e=b.ClassNameManager,w=e.getClassName,M,s=b.cached(function(L){return L.substring(0,1).toUpperCase()+L.substring(1);}),F="content",P="visible",K="hidden",y="disabled",B="focused",d="width",A="height",N="boundingBox",v="contentBox",k="parentNode",m="ownerDocument",x="auto",j="srcNode",I="body",H="tabIndex",q="id",i="render",J="rendered",n="destroyed",a="strings",o="
                ",z="Change",p="loading",E="_uiSet",D="",G=function(){},u=true,O=false,t,l={},f=[P,y,A,d,B],C=b.UA.webkit,h={};function c(Q){var T=this,L,S,R=T.constructor;T._strs={};T._cssPrefix=R.CSS_PREFIX||w(R.NAME.toLowerCase());c.superclass.constructor.apply(T,arguments);S=T.get(i);if(S){if(S!==u){L=S;}T.render(L);}}c.NAME="widget";t=c.UI_SRC="ui";c.ATTRS=l;l[q]={valueFn:"_guid",writeOnce:u};l[J]={value:O,readOnly:u};l[N]={value:null,setter:"_setBB",writeOnce:u};l[v]={valueFn:"_defaultCB",setter:"_setCB",writeOnce:u};l[H]={value:null,validator:"_validTabIndex"};l[B]={value:O,readOnly:u};l[y]={value:O};l[P]={value:u};l[A]={value:D};l[d]={value:D};l[a]={value:{},setter:"_strSetter",getter:"_strGetter"};l[i]={value:O,writeOnce:u};c.CSS_PREFIX=w(c.NAME.toLowerCase());c.getClassName=function(){return w.apply(e,[c.CSS_PREFIX].concat(b.Array(arguments),true));};M=c.getClassName;c.getByNode=function(L){var R,Q=M();L=r.one(L);if(L){L=L.ancestor("."+Q,true);if(L){R=h[b.stamp(L,u)];}}return R||null;};b.extend(c,b.Base,{getClassName:function(){return w.apply(e,[this._cssPrefix].concat(b.Array(arguments),true));},initializer:function(L){h[b.stamp(this.get(N))]=this;if(this._applyParser){this._applyParser(L);}},destructor:function(){var Q=this.get(N),L=this.get(v),R=b.stamp(Q,u);if(R in h){delete h[R];}if(this.UI_EVENTS){this._destroyUIEvents();}this._unbindUI(Q);if(L){L.remove(u);}Q.remove(u);},render:function(L){if(!this.get(n)&&!this.get(J)){this.publish(i,{queuable:O,fireOnce:u,defaultTargetOnly:u,defaultFn:this._defRenderFn});this.fire(i,{parentNode:(L)?r.one(L):null});}return this;},_defRenderFn:function(L){this._parentNode=L.parentNode;this.renderer();this._set(J,u);this._removeLoadingClassNames();},renderer:function(){var L=this;L._renderUI();L.renderUI();L._bindUI();L.bindUI();L._syncUI();L.syncUI();},bindUI:G,renderUI:G,syncUI:G,hide:function(){return this.set(P,O);},show:function(){return this.set(P,u);},focus:function(){return this._set(B,u);},blur:function(){return this._set(B,O);},enable:function(){return this.set(y,O);},disable:function(){return this.set(y,u);},_uiSizeCB:function(L){this.get(v).toggleClass(M(F,"expanded"),L);},_renderBox:function(L){var T=this,Q=T.get(v),R=T.get(N),V=T.get(j),S=T.DEF_PARENT_NODE,U=(V&&V.get(m))||R.get(m)||Q.get(m);if(V&&!V.compareTo(Q)&&!Q.inDoc(U)){V.replace(Q);}if(!R.compareTo(Q.get(k))&&!R.compareTo(Q)){if(Q.inDoc(U)){Q.replace(R);}R.appendChild(Q);}L=L||(S&&r.one(S));if(L){L.appendChild(R);}else{if(!R.inDoc(U)){r.one(I).insert(R,0);}}},_setBB:function(L){return this._setBox(this.get(q),L,this.BOUNDING_TEMPLATE);},_setCB:function(L){return(this.CONTENT_TEMPLATE===null)?this.get(N):this._setBox(null,L,this.CONTENT_TEMPLATE);},_defaultCB:function(L){return this.get(j)||null;},_setBox:function(R,Q,L){Q=r.one(Q)||r.create(L);if(!Q.get(q)){Q.set(q,R||b.guid());}return Q;},_renderUI:function(){this._renderBoxClassNames();this._renderBox(this._parentNode);},_renderBoxClassNames:function(){var S=this._getClasses(),L,Q=this.get(N),R;Q.addClass(M());for(R=S.length-3;R>=0;R--){L=S[R];Q.addClass(L.CSS_PREFIX||w(L.NAME.toLowerCase()));}this.get(v).addClass(this.getClassName(F));},_removeLoadingClassNames:function(){var R=this.get(N),L=this.get(v),Q=this.getClassName(p),S=M(p);R.removeClass(S).removeClass(Q);L.removeClass(S).removeClass(Q);},_bindUI:function(){this._bindAttrUI(this._UI_ATTRS.BIND);this._bindDOM();},_unbindUI:function(L){this._unbindDOM(L);},_bindDOM:function(){var L=this.get(N).get(m);this._hDocFocus=L.on("focus",this._onDocFocus,this);if(C){this._hDocMouseDown=L.on("mousedown",this._onDocMouseDown,this);}},_unbindDOM:function(L){if(this._hDocFocus){this._hDocFocus.detach();}if(C&&this._hDocMouseDown){this._hDocMouseDown.detach();}},_syncUI:function(){this._syncAttrUI(this._UI_ATTRS.SYNC);},_uiSetHeight:function(L){this._uiSetDim(A,L);this._uiSizeCB((L!==D&&L!==x));},_uiSetWidth:function(L){this._uiSetDim(d,L);},_uiSetDim:function(L,Q){this.get(N).setStyle(L,g.isNumber(Q)?Q+this.DEF_UNIT:Q);},_uiSetVisible:function(L){this.get(N).toggleClass(this.getClassName(K),!L);},_uiSetDisabled:function(L){this.get(N).toggleClass(this.getClassName(y),L);},_uiSetFocused:function(R,Q){var L=this.get(N);L.toggleClass(this.getClassName(B),R);if(Q!==t){if(R){L.focus();}else{L.blur();}}},_uiSetTabIndex:function(Q){var L=this.get(N);if(g.isNumber(Q)){L.set(H,Q);}else{L.removeAttribute(H);}},_onDocMouseDown:function(L){if(this._domFocus){this._onDocFocus(L);}},_onDocFocus:function(L){this._domFocus=this.get(N).contains(L.target);this._set(B,this._domFocus,{src:t});},toString:function(){return this.name+"["+this.get(q)+"]";},DEF_UNIT:"px",DEF_PARENT_NODE:null,CONTENT_TEMPLATE:o,BOUNDING_TEMPLATE:o,_guid:function(){return b.guid();},_validTabIndex:function(L){return(g.isNumber(L)||g.isNull(L));},_bindAttrUI:function(Q){var R,L=Q.length;for(R=0;R-1){k=k.substring(h+c.length);}if(this.UI_EVENTS[k]){i=k;}}return i;}},_initUIEvent:function(i){var j=this._getUIEvent(i),h=this._uiEvtsInitQueue||{};if(j&&!h[j]){this._uiEvtsInitQueue=h[j]=1;this.after(d,function(){this._createUIEvent(j);delete this._uiEvtsInitQueue[j];});}},on:function(h){this._initUIEvent(h);return e.superclass.on.apply(this,arguments);},publish:function(i,h){var j=this._getUIEvent(i);if(j&&h&&h.defaultFn){this._initUIEvent(j);}return e.superclass.publish.apply(this,arguments);}},true);},"3.3.0",{requires:["widget-base","node-event-delegate"]});YUI.add("widget-htmlparser",function(f){var e=f.Widget,c=f.Node,d=f.Lang,a="srcNode",b="contentBox";e.HTML_PARSER={};e._buildCfg={aggregates:["HTML_PARSER"]};e.ATTRS[a]={value:null,setter:c.one,getter:"_getSrcNode",writeOnce:true};f.mix(e.prototype,{_getSrcNode:function(g){return g||this.get(b);},_applyParsedConfig:function(i,g,h){return(h)?f.mix(g,h,false):g;},_applyParser:function(g){var i=this,j=i.get(a),h=i._getHtmlParser(),l,k;if(h&&j){f.Object.each(h,function(n,m,p){k=null;if(d.isFunction(n)){k=n.call(i,j);}else{if(d.isArray(n)){k=j.all(n[0]);if(k.isEmpty()){k=null;}}else{k=j.one(n);}}if(k!==null&&k!==undefined){l=l||{};l[m]=k;}});}g=i._applyParsedConfig(j,g,l);},_getHtmlParser:function(){var h=this._getClasses(),k={},g,j;for(g=h.length-1;g>=0;g--){j=h[g].HTML_PARSER;if(j){f.mix(k,j,true);}}return k;}});},"3.3.0",{requires:["widget-base"]});YUI.add("widget-skin",function(e){var d="boundingBox",b="contentBox",a="skin",c=e.ClassNameManager.getClassName;e.Widget.prototype.getSkinName=function(){var f=this.get(b)||this.get(d),h=new RegExp("\\b"+c(a)+"-(\\S+)"),g;if(f){f.ancestor(function(i){g=i.get("className").match(h);return g;});}return(g)?g[1]:null;};},"3.3.0",{requires:["widget-base"]});YUI.add("widget",function(a){},"3.3.0",{use:["widget-base","widget-uievents","widget-htmlparser","widget-skin"]});/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("widget-position",function(A){var I=A.Lang,L=A.Widget,N="xy",J="position",G="positioned",K="boundingBox",H="relative",M="renderUI",F="bindUI",D="syncUI",C=L.UI_SRC,E="xyChange";function B(O){this._posNode=this.get(K);A.after(this._renderUIPosition,this,M);A.after(this._syncUIPosition,this,D);A.after(this._bindUIPosition,this,F);}B.ATTRS={x:{setter:function(O){this._setX(O);},getter:function(){return this._getX();},lazyAdd:false},y:{setter:function(O){this._setY(O);},getter:function(){return this._getY();},lazyAdd:false},xy:{value:[0,0],validator:function(O){return this._validateXY(O);}}};B.POSITIONED_CLASS_NAME=L.getClassName(G);B.prototype={_renderUIPosition:function(){this._posNode.addClass(B.POSITIONED_CLASS_NAME);},_syncUIPosition:function(){var O=this._posNode;if(O.getStyle(J)===H){this.syncXY();}this._uiSetXY(this.get(N));},_bindUIPosition:function(){this.after(E,this._afterXYChange);},move:function(){var O=arguments,P=(I.isArray(O[0]))?O[0]:[O[0],O[1]];this.set(N,P);},syncXY:function(){this.set(N,this._posNode.getXY(),{src:C});},_validateXY:function(O){return(I.isArray(O)&&I.isNumber(O[0])&&I.isNumber(O[1]));},_setX:function(O){this.set(N,[O,this.get(N)[1]]);},_setY:function(O){this.set(N,[this.get(N)[0],O]);},_getX:function(){return this.get(N)[0];},_getY:function(){return this.get(N)[1];},_afterXYChange:function(O){if(O.src!=C){this._uiSetXY(O.newVal);}},_uiSetXY:function(O){this._posNode.setXY(O);}};A.WidgetPosition=B;},"3.3.0",{requires:["base-build","node-screen","widget"]});/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("widget-position-align",function(A){var H=A.Lang,D="align",F="bindUI",B="syncUI",E="offsetWidth",I="offsetHeight",K="viewportRegion",G="region",J="alignChange";function C(L){if(!this._posNode){A.error("WidgetPosition needs to be added to the Widget, before WidgetPositionAlign is added");}A.after(this._syncUIPosAlign,this,B);A.after(this._bindUIPosAlign,this,F);}C.ATTRS={align:{value:null},centered:{setter:"_setAlignCenter",lazyAdd:false,value:false}};C.TL="tl";C.TR="tr";C.BL="bl";C.BR="br";C.TC="tc";C.RC="rc";C.BC="bc";C.LC="lc";C.CC="cc";C.prototype={_syncUIPosAlign:function(){var L=this.get(D);if(L){this._uiSetAlign(L.node,L.points);}},_bindUIPosAlign:function(){this.after(J,this._afterAlignChange);},_setAlignCenter:function(L){if(L){this.set(D,{node:L===true?null:L,points:[C.CC,C.CC]});}return L;},_afterAlignChange:function(L){if(L.newVal){this._uiSetAlign(L.newVal.node,L.newVal.points);}},_uiSetAlign:function(O,N){if(!H.isArray(N)||N.length!=2){A.error("align: Invalid Points Arguments");return;}var M=this._getRegion(O),L,P,Q;if(M){L=N[0];P=N[1];switch(P){case C.TL:Q=[M.left,M.top];break;case C.TR:Q=[M.right,M.top];break;case C.BL:Q=[M.left,M.bottom];break;case C.BR:Q=[M.right,M.bottom];break;case C.TC:Q=[M.left+Math.floor(M.width/2),M.top];break;case C.BC:Q=[M.left+Math.floor(M.width/2),M.bottom];break;case C.LC:Q=[M.left,M.top+Math.floor(M.height/2)];break;case C.RC:Q=[M.right,M.top+Math.floor(M.height/2),L];break;case C.CC:Q=[M.left+Math.floor(M.width/2),M.top+Math.floor(M.height/2),L];break;default:break;}if(Q){this._doAlign(L,Q[0],Q[1]);}}},_doAlign:function(M,L,P){var O=this._posNode,N;switch(M){case C.TL:N=[L,P];break;case C.TR:N=[L-O.get(E),P];break;case C.BL:N=[L,P-O.get(I)];break;case C.BR:N=[L-O.get(E),P-O.get(I)];break;case C.TC:N=[L-(O.get(E)/2),P];break;case C.BC:N=[L-(O.get(E)/2),P-O.get(I)];break;case C.LC:N=[L,P-(O.get(I)/2)];break;case C.RC:N=[(L-O.get(E)),P-(O.get(I)/2)];break;case C.CC:N=[L-(O.get(E)/2),P-(O.get(I)/2)];break;default:break;}if(N){this.move(N);}},_getRegion:function(M){var L;if(!M){L=this._posNode.get(K);}else{M=A.Node.one(M);if(M){L=M.get(G);}}return L;},align:function(M,L){this.set(D,{node:M,points:L});},centered:function(L){this.align(L,[C.CC,C.CC]);}};A.WidgetPositionAlign=C;},"3.3.0",{requires:["widget-position"]});/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("widget-stack",function(E){var N=E.Lang,T=E.UA,d=E.Node,F=E.Widget,c="zIndex",P="shim",a="visible",e="boundingBox",W="renderUI",G="bindUI",S="syncUI",Q="offsetWidth",D="offsetHeight",M="parentNode",A="firstChild",X="ownerDocument",H="width",V="height",K="px",O="shimdeferred",f="shimresize",Z="visibleChange",C="widthChange",J="heightChange",b="shimChange",B="zIndexChange",I="contentUpdate",R="stacked";function U(L){this._stackNode=this.get(e);this._stackHandles={};E.after(this._renderUIStack,this,W);E.after(this._syncUIStack,this,S);E.after(this._bindUIStack,this,G);}U.ATTRS={shim:{value:(T.ie==6)},zIndex:{value:0,setter:function(L){return this._setZIndex(L);}}};U.HTML_PARSER={zIndex:function(L){return L.getStyle(c);}};U.SHIM_CLASS_NAME=F.getClassName(P);U.STACKED_CLASS_NAME=F.getClassName(R);U.SHIM_TEMPLATE='';U.prototype={_syncUIStack:function(){this._uiSetShim(this.get(P));this._uiSetZIndex(this.get(c));},_bindUIStack:function(){this.after(b,this._afterShimChange);this.after(B,this._afterZIndexChange);},_renderUIStack:function(){this._stackNode.addClass(U.STACKED_CLASS_NAME);},_setZIndex:function(L){if(N.isString(L)){L=parseInt(L,10);}if(!N.isNumber(L)){L=0;}return L;},_afterShimChange:function(L){this._uiSetShim(L.newVal);},_afterZIndexChange:function(L){this._uiSetZIndex(L.newVal);},_uiSetZIndex:function(L){this._stackNode.setStyle(c,L);},_uiSetShim:function(L){if(L){if(this.get(a)){this._renderShim();}else{this._renderShimDeferred();}}else{this._destroyShim();}},_renderShimDeferred:function(){this._stackHandles[O]=this._stackHandles[O]||[];var Y=this._stackHandles[O],L=function(g){if(g.newVal){this._renderShim();}};Y.push(this.on(Z,L));},_addShimResizeHandlers:function(){this._stackHandles[f]=this._stackHandles[f]||[];var Y=this.sizeShim,L=this._stackHandles[f];this.sizeShim();L.push(this.after(Z,Y));L.push(this.after(C,Y));L.push(this.after(J,Y));L.push(this.after(I,Y));},_detachStackHandles:function(L){var Y=this._stackHandles[L],g;if(Y&&Y.length>0){while((g=Y.pop())){g.detach();}}},_renderShim:function(){var L=this._shimNode,Y=this._stackNode;if(!L){L=this._shimNode=this._getShimTemplate();Y.insertBefore(L,Y.get(A));if(T.ie==6){this._addShimResizeHandlers();}this._detachStackHandles(O);}},_destroyShim:function(){if(this._shimNode){this._shimNode.get(M).removeChild(this._shimNode);this._shimNode=null;this._detachStackHandles(O);this._detachStackHandles(f);}},sizeShim:function(){var Y=this._shimNode,L=this._stackNode;if(Y&&T.ie===6&&this.get(a)){Y.setStyle(H,L.get(Q)+K);Y.setStyle(V,L.get(D)+K);}},_getShimTemplate:function(){return d.create(U.SHIM_TEMPLATE,this._stackNode.get(X));}};E.WidgetStack=U;},"3.3.0",{requires:["base-build","widget"]});/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("autocomplete-base",function(f){var g=f.Escape,j=f.Lang,q=f.Array,i=f.Object,d=j.isFunction,r=j.isString,u=j.trim,l=f.Attribute.INVALID_VALUE,o="_functionValidator",x="_sourceSuccess",c="allowBrowserAutocomplete",h="inputNode",w="query",e="queryDelimiter",b="requestTemplate",m="results",n="resultListLocator",k="value",s="valueChange",a="clear",t=w,p=m;function v(){f.before(this._bindUIACBase,this,"bindUI");f.before(this._destructorACBase,this,"destructor");f.before(this._syncUIACBase,this,"syncUI");this.publish(a,{defaultFn:this._defClearFn});this.publish(t,{defaultFn:this._defQueryFn});this.publish(p,{defaultFn:this._defResultsFn});}v.ATTRS={allowBrowserAutocomplete:{value:false},allowTrailingDelimiter:{value:false},inputNode:{setter:f.one,writeOnce:"initOnly"},maxResults:{value:0},minQueryLength:{value:1},query:{readOnly:true,value:null},queryDelay:{value:100},queryDelimiter:{value:null},requestTemplate:{setter:"_setRequestTemplate",value:null},resultFilters:{setter:"_setResultFilters",value:[]},resultFormatter:{validator:o},resultHighlighter:{setter:"_setResultHighlighter"},resultListLocator:{setter:"_setLocator"},results:{readOnly:true,value:[]},resultTextLocator:{setter:"_setLocator"},source:{setter:"_setSource"},tokenInput:{readOnly:true},value:{value:""}};v.CSS_PREFIX="ac";v.UI_SRC=(f.Widget&&f.Widget.UI_SRC)||"ui";v.prototype={sendRequest:function(A,B){var y,z=this.get("source");if(A||A===""){this._set(w,A);}else{A=this.get(w);}if(z){if(!B){B=this.get(b);}y=B?B(A):A;z.sendRequest({request:y,callback:{success:f.bind(this._onResponse,this,A)}});}return this;},_bindUIACBase:function(){var z=this.get(h),y=z&&z.tokenInput;if(y){z=y.get(h);this._set("tokenInput",y);}if(!z){f.error("No inputNode specified.");return;}this._inputNode=z;this._acBaseEvents=[z.on(s,this._onInputValueChange,this),z.on("blur",this._onInputBlur,this),this.after(c+"Change",this._syncBrowserAutocomplete),this.after(s,this._afterValueChange)];},_destructorACBase:function(){var y=this._acBaseEvents;while(y&&y.length){y.pop().detach();}},_syncUIACBase:function(){this._syncBrowserAutocomplete();this.set(k,this.get(h).get(k));},_createArraySource:function(z){var y=this;return{sendRequest:function(A){y[x](z.concat(),A);}};},_createFunctionSource:function(z){var y=this;return{sendRequest:function(A){y[x](z(A.request)||[],A);}};},_createObjectSource:function(z){var y=this;return{sendRequest:function(A){var B=A.request;y[x](i.owns(z,B)?z[B]:[],A);}};},_functionValidator:function(y){return y===null||d(y);},_getObjectValue:function(B,A){if(!B){return;}for(var z=0,y=A.length;B&&z0&&H.length>M){H.length=M;}if(O){B=O(A,H.concat());if(!B){return;}for(K=0,L=B.length;K1){C[y-1]=z;z=C.join(A+" ");}z=z+A+" ";}this.set(k,z);},_afterValueChange:function(E){var A,B,y,z=E.newVal,D,C;if(E.src!==v.UI_SRC){this._inputNode.set(k,z);return;}y=this.get("minQueryLength");D=this._parseValue(z)||"";if(y>=0&&D.length>=y){A=this.get("queryDelay");C=this;B=function(){C.fire(t,{inputValue:z,query:D});};if(A){clearTimeout(this._delay);this._delay=setTimeout(B,A);}else{B();}}else{clearTimeout(this._delay);this.fire(a,{prevVal:E.prevVal?this._parseValue(E.prevVal):null});}},_onInputBlur:function(B){var C=this.get(e),y,z,A;if(C&&!this.get("allowTrailingDelimiter")){C=j.trimRight(C);A=z=this._inputNode.get(k);if(C){while((z=j.trimRight(z))&&(y=z.length-C.length)&&z.lastIndexOf(C)===y){z=z.substring(0,y);}}else{z=j.trimRight(z);}if(z!==A){this.set(k,z);}}},_onInputValueChange:function(z){var y=z.newVal;if(y===this.get(k)){return;}this.set(k,y,{src:v.UI_SRC});},_onResponse:function(y,z){if(y===this.get(w)){this._parseResponse(y,z.response,z.data); }},_defClearFn:function(){this._set(w,null);this._set(m,[]);},_defQueryFn:function(z){var y=z.query;this.sendRequest(y);},_defResultsFn:function(y){this._set(m,y[m]);}};f.AutoCompleteBase=v;},"3.3.0",{optional:["autocomplete-sources"],requires:["array-extras","base-build","escape","event-valuechange","node-base"]});YUI.add("autocomplete-sources",function(g){var e=g.Lang,a="_sourceSuccess",c="maxResults",d="requestTemplate",b="resultListLocator";function f(){}f.prototype={_YQL_SOURCE_REGEX:/^(?:select|set|use)\s+/i,_createIOSource:function(l){var i={},j={},k=this,n,h,m;j.sendRequest=function(p){var o=function(s){var t=s.request,q,u,r;if(i[t]){k[a](i[t],s);}else{q=k.get(c);u=k.get(d);r=l;if(u){r+=u(t);}r=e.sub(r,{maxResults:q>0?q:1000,query:encodeURIComponent(t)});if(n&&n.isInProgress()){n.abort();}n=g.io(r,{on:{success:function(y,v){var x;try{x=g.JSON.parse(v.responseText);}catch(w){g.error("JSON parse error",w);}if(x){i[t]=x;k[a](x,s);}}}});}};h=p;if(!m){m=true;g.use("io-base","json-parse",function(){j.sendRequest=o;o(h);});}};return j;},_createJSONPSource:function(l){var i={},j={},k=this,h,m;j.sendRequest=function(o){var n=function(p){var q=p.request;if(i[q]){k[a](i[q],p);}else{l._config.on.success=function(r){i[q]=r;k[a](r,p);};l.send(q);}};h=o;if(!m){m=true;g.use("jsonp",function(){if(!(l instanceof g.JSONPRequest)){l=new g.JSONPRequest(l,{format:g.bind(k._jsonpFormatter,k)});}j.sendRequest=n;n(h);});}};return j;},_createStringSource:function(h){if(this._YQL_SOURCE_REGEX.test(h)){return this._createYQLSource(h);}else{if(h.indexOf("{callback}")!==-1){return this._createJSONPSource(h);}else{return this._createIOSource(h);}}},_createYQLSource:function(k){var i={},l={},j=this,h,m;if(!this.get(b)){this.set(b,this._defaultYQLLocator);}l.sendRequest=function(p){var o,n=function(u){var v=u.request,w,s,q,t,r;if(i[v]){j[a](i[v],u);}else{w=function(x){i[v]=x;j[a](x,u);};s=j.get("yqlEnv");q=j.get(c);t={proto:j.get("yqlProtocol")};r=e.sub(k,{maxResults:q>0?q:1000,query:v});if(o){o._callback=w;o._opts=t;o._params.q=r;if(s){o._params.env=s;}}else{o=new g.YQLRequest(r,{on:{success:w},allowCache:false},s?{env:s}:null,t);}o.send();}};h=p;if(!m){m=true;g.use("yql",function(){l.sendRequest=n;n(h);});}};return l;},_defaultYQLLocator:function(i){var j=i&&i.query&&i.query.results,h;if(j&&e.isObject(j)){h=g.Object.values(j)||[];j=h.length===1?h[0]:h;if(!e.isArray(j)){j=[j];}}else{j=[];}return j;},_jsonpFormatter:function(i,j,k){var h=this.get(c),l=this.get(d);if(l){i+=l(k);}return e.sub(i,{callback:j,maxResults:h>0?h:1000,query:encodeURIComponent(k)});}};f.ATTRS={yqlEnv:{value:null},yqlProtocol:{value:"http"}};g.Base.mix(g.AutoCompleteBase,[f]);},"3.3.0",{optional:["io-base","json-parse","jsonp","yql"],requires:["autocomplete-base"]});YUI.add("autocomplete-list",function(b){var h=b.Lang,u=b.Node,k=b.Array,o=9,r="_CLASS_ITEM",s="_CLASS_ITEM_ACTIVE",d="_CLASS_ITEM_HOVER",t="_SELECTOR_ITEM",f="activeItem",j="alwaysShowList",n="circular",q="hoveredItem",l="id",e="item",c="list",v="result",i="results",p="visible",g="width",m="select",a=b.Base.create("autocompleteList",b.Widget,[b.AutoCompleteBase,b.WidgetPosition,b.WidgetPositionAlign,b.WidgetStack],{ARIA_TEMPLATE:"
                ",ITEM_TEMPLATE:"
              77. ",LIST_TEMPLATE:"
                  ",initializer:function(){var w=this.get("inputNode");if(!w){b.error("No inputNode specified.");return;}this._inputNode=w;this._listEvents=[];this.DEF_PARENT_NODE=w.get("parentNode");this[r]=this.getClassName(e);this[s]=this.getClassName(e,"active");this[d]=this.getClassName(e,"hover");this[t]="."+this[r];this.publish(m,{defaultFn:this._defSelectFn});},destructor:function(){while(this._listEvents.length){this._listEvents.pop().detach();}},bindUI:function(){this._bindInput();this._bindList();},renderUI:function(){var A=this._createAriaNode(),x=this.get("contentBox"),z=this._inputNode,y,w=z.get("parentNode");y=this._createListNode();this._set("listNode",y);x.append(y);z.addClass(this.getClassName("input")).setAttrs({"aria-autocomplete":c,"aria-expanded":false,"aria-owns":y.get("id"),role:"combobox"});w.append(A);this._ariaNode=A;this._boundingBox=this.get("boundingBox");this._contentBox=x;this._listNode=y;this._parentNode=w;},syncUI:function(){this._syncResults();this._syncVisibility();},hide:function(){return this.get(j)?this:this.set(p,false);},selectItem:function(w){if(w){if(!w.hasClass(this[r])){return this;}}else{w=this.get(f);if(!w){return this;}}this.fire(m,{itemNode:w,result:w.getData(v)});return this;},_activateNextItem:function(){var x=this.get(f),w;if(x){w=x.next(this[t])||(this.get(n)?null:x);}else{w=this._getFirstItemNode();}this.set(f,w);return this;},_activatePrevItem:function(){var x=this.get(f),w=x?x.previous(this[t]):this.get(n)&&this._getLastItemNode();this.set(f,w||null);return this;},_add:function(w){var x=[];k.each(h.isArray(w)?w:[w],function(y){x.push(this._createItemNode(y).setData(v,y));},this);x=b.all(x);this._listNode.append(x.toFrag());return x;},_ariaSay:function(y,w){var x=this.get("strings."+y);this._ariaNode.setContent(w?h.sub(x,w):x);},_bindInput:function(){var z=this._inputNode,x,y,w;if(this.get("align")===null){w=this.get("tokenInput");x=(w&&w.get("boundingBox"))||z;this.set("align",{node:x,points:["tl","bl"]});if(!this.get(g)&&(y=x.get("offsetWidth"))){this.set(g,y);}}this._listEvents.push(z.on("blur",this._onListInputBlur,this));},_bindList:function(){this._listEvents.concat([this.after({mouseover:this._afterMouseOver,mouseout:this._afterMouseOut,activeItemChange:this._afterActiveItemChange,alwaysShowListChange:this._afterAlwaysShowListChange,hoveredItemChange:this._afterHoveredItemChange,resultsChange:this._afterResultsChange,visibleChange:this._afterVisibleChange}),this._listNode.delegate("click",this._onItemClick,this[t],this)]);},_clear:function(){this.set(f,null);this._set(q,null);this._listNode.get("children").remove(true);},_createAriaNode:function(){var w=u.create(this.ARIA_TEMPLATE);return w.addClass(this.getClassName("aria")).setAttrs({"aria-live":"polite",role:"status"}); },_createItemNode:function(w){var x=u.create(this.ITEM_TEMPLATE);return x.addClass(this[r]).setAttrs({id:b.stamp(x),role:"option"}).setAttribute("data-text",w.text).append(w.display);},_createListNode:function(){var w=u.create(this.LIST_TEMPLATE);return w.addClass(this.getClassName(c)).setAttrs({id:b.stamp(w),role:"listbox"});},_getFirstItemNode:function(){return this._listNode.one(this[t]);},_getLastItemNode:function(){return this._listNode.one(this[t]+":last-child");},_syncResults:function(x){var w;if(!x){x=this.get(i);}this._clear();if(x.length){w=this._add(x);this._ariaSay("items_available");}if(this.get("activateFirstItem")&&!this.get(f)){this.set(f,this._getFirstItemNode());}},_syncVisibility:function(w){if(this.get(j)){w=true;this.set(p,w);}if(typeof w==="undefined"){w=this.get(p);}this._inputNode.set("aria-expanded",w);this._boundingBox.set("aria-hidden",!w);if(w){this._syncUIPosAlign();}else{this.set(f,null);this._set(q,null);this._boundingBox.get("offsetWidth");}},_afterActiveItemChange:function(y){var x=this._inputNode,w=y.newVal,z=y.prevVal;if(z&&z._node){z.removeClass(this[s]);}if(w){w.addClass(this[s]);x.set("aria-activedescendant",w.get(l));}else{x.removeAttribute("aria-activedescendant");}if(this.get("scrollIntoView")){(w||x).scrollIntoView();}},_afterAlwaysShowListChange:function(w){this.set(p,w.newVal||this.get(i).length>0);},_afterHoveredItemChange:function(x){var w=x.newVal,y=x.prevVal;if(y){y.removeClass(this[d]);}if(w){w.addClass(this[d]);}},_afterMouseOver:function(w){var x=w.domEvent.target.ancestor(this[t],true);this._mouseOverList=true;if(x){this._set(q,x);}},_afterMouseOut:function(){this._mouseOverList=false;this._set(q,null);},_afterResultsChange:function(w){this._syncResults(w.newVal);if(!this.get(j)){this.set(p,!!w.newVal.length);}},_afterVisibleChange:function(w){this._syncVisibility(!!w.newVal);},_onListInputBlur:function(w){if(!this._mouseOverList||this._lastInputKey===o){this.hide();}},_onItemClick:function(w){var x=w.currentTarget;this.set(f,x);this.selectItem(x);},_defSelectFn:function(w){var x=w.result.text;this._inputNode.focus();this._updateValue(x);this._ariaSay("item_selected",{item:x});this.hide();}},{ATTRS:{activateFirstItem:{value:false},activeItem:{setter:b.one,value:null},alwaysShowList:{value:false},circular:{value:true},hoveredItem:{readOnly:true,value:null},listNode:{readOnly:true,value:null},scrollIntoView:{value:false},strings:{valueFn:function(){return b.Intl.get("autocomplete-list");}},tabSelect:{value:true},visible:{value:false}},CSS_PREFIX:b.ClassNameManager.getClassName("aclist")});b.AutoCompleteList=a;b.AutoComplete=a;},"3.3.0",{lang:["en"],requires:["autocomplete-base","selector-css3","widget","widget-position","widget-position-align","widget-stack"],after:["autocomplete-sources"],skinnable:true});YUI.add("autocomplete-plugin",function(b){var a=b.Plugin;function c(d){d.inputNode=d.host;if(!d.render&&d.render!==false){d.render=true;}c.superclass.constructor.apply(this,arguments);}b.extend(c,b.AutoCompleteList,{},{NAME:"autocompleteListPlugin",NS:"ac",CSS_PREFIX:b.ClassNameManager.getClassName("aclist")});a.AutoComplete=c;a.AutoCompleteList=c;},"3.3.0",{requires:["autocomplete-list","node-pluginhost"]});YUI.add("autocomplete",function(a){},"3.3.0",{use:["autocomplete-base","autocomplete-sources","autocomplete-list","autocomplete-plugin"]});/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("autocomplete-list-keys",function(g){var c=40,a=13,d=27,f=9,b=38;function e(){g.before(this._unbindKeys,this,"destructor");g.before(this._bindKeys,this,"bindUI");this._initKeys();}e.prototype={_initKeys:function(){var h={},i={};this._keyEvents=[];h[c]=this._keyDown;i[a]=this._keyEnter;i[d]=this._keyEsc;i[f]=this._keyTab;i[b]=this._keyUp;this._keys=h;this._keysVisible=i;},_bindKeys:function(){this._keyEvents.push(this._inputNode.on(g.UA.gecko?"keypress":"keydown",this._onInputKey,this));},_unbindKeys:function(){while(this._keyEvents.length){this._keyEvents.pop().detach();}},_keyDown:function(){if(this.get("visible")){this._activateNextItem();}else{this.show();}},_keyEnter:function(){var h=this.get("activeItem");if(h){this.selectItem(h);}else{return false;}},_keyEsc:function(){this.hide();},_keyTab:function(){var h;if(this.get("tabSelect")){h=this.get("activeItem");if(h){this.selectItem(h);return true;}}return false;},_keyUp:function(){this._activatePrevItem();},_onInputKey:function(j){var h,i=j.keyCode;this._lastInputKey=i;if(this.get("results").length){h=this._keys[i];if(!h&&this.get("visible")){h=this._keysVisible[i];}if(h){if(h.call(this,j)!==false){j.preventDefault();}}}}};g.Base.mix(g.AutoCompleteList,[e]);},"3.3.0",{requires:["autocomplete-list","base-build"]});YUI.add("sprintf",function(b){function a(e,d){for(var f=[];d>0;f[--d]=e){}return f.join("")}function c(){var h=0,l,j=arguments[h++],e=[],g,d,k,n,q="";while(j){if(g=/^[^\x25]+/.exec(j)){e.push(g[0])}else{if(g=/^\x25{2}/.exec(j)){e.push("%")}else{if(g=/^\x25(?:(\d+)\$)?(\+)?(0|'[^$])?(-)?(\d+)?(?:\.(\d+))?([b-fosuxX])/.exec(j)){if(((l=arguments[g[1]||h++])==null)||(l==undefined)){throw ("Too few arguments.")}if(/[^s]/.test(g[7])&&(typeof(l)!="number")){throw ("Expecting number but found "+typeof(l))}switch(g[7]){case"b":l=l.toString(2);break;case"c":l=String.fromCharCode(l);break;case"d":l=parseInt(l);break;case"e":l=g[6]?l.toExponential(g[6]):l.toExponential();break;case"f":l=g[6]?parseFloat(l).toFixed(g[6]):parseFloat(l);break;case"o":l=l.toString(8);break;case"s":l=((l=String(l))&&g[6]?l.substring(0,g[6]):l);break;case"u":l=Math.abs(l);break;case"x":l=l.toString(16);break;case"X":l=l.toString(16).toUpperCase();break}l=(/[def]/.test(g[7])&&g[2]&&l>=0?"+"+l:l);k=g[3]?g[3]=="0"?"0":g[3].charAt(1):" ";n=g[5]-String(l).length-q.length;d=g[5]?a(k,n):"";e.push(q+(g[4]?l+d:d+l))}else{throw ("Huh ?!")}}}j=j.substring(g[0].length)}return e.join("")}b.sprintf=c},"0.0.1");YUI.add("transjax-base",function(d){var a={};function c(f,e){if(!d.Lang.isObject(a[f])){a[f]={}}if(d.Lang.isObject(e)){d.mix(a[f],e)}}function b(){var g,l,k,f,e,j;g=Array.prototype.slice.call(arguments);l=g.shift();k=g.shift();e=a[l];if(arguments.length>1){if(d.Lang.isObject(e)){f=e[k]}if(d.Lang.isUndefined(f)){return k}g.unshift(f);return d.sprintf.apply(window,g)}else{j={};for(var h in e){if(e.hasOwnProperty(h)){j[h]=e[h]}}return j}}d.transjax={add:c,get:b}},"0.0.1",{requires:["sprintf"]});YUI.add("bo-selecta-transjax",function(a){a.transjax.add("bo-selecta",{me:'me',loading:'Loading...',uber_contact_list_view_profile:'View Profile',uber_contact_list_friend_and_family:'Friend & Family',uber_contact_list_friend:'Friend',uber_contact_list_family:'Family',uber_contact_list_contact:'Contact',uber_contact_list_removed:'Removed',uber_contact_list_edit:'Edit',uber_contact_list_default_text:'screen name, real name, or email',uber_contact_list_max_results:'Showing [results_shown] of [total_results] results. See all...',uber_contact_list_no_realname:'No real name given',bo_selecta_no_contacts_found:'No contacts found.',bo_selecta_no_members_found:'No members found.',bo_selecta_global_search_msg:'Search through all Flickr members?',bo_selecta_global_search_msg_2:'Search all Flickr members?',too_many_results:'We found too many results to display here. Please type a few more characters.'})},"0.0.1",{requires:["transjax-base"]});/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("datasource-local",function(C){var B=C.Lang,A=function(){A.superclass.constructor.apply(this,arguments);};C.mix(A,{NAME:"dataSourceLocal",ATTRS:{source:{value:null}},_tId:0,transactions:{},issueCallback:function(G,F){var E=(G.error||G.response.error);if(E){G.error=G.error||G.response.error;F.fire("error",G);}if(G.callback){var D=(E&&G.callback.failure)||G.callback.success;if(D){D(G);}}}});C.extend(A,C.Base,{initializer:function(D){this._initEvents();},_initEvents:function(){this.publish("request",{defaultFn:C.bind("_defRequestFn",this),queuable:true});this.publish("data",{defaultFn:C.bind("_defDataFn",this),queuable:true});this.publish("response",{defaultFn:C.bind("_defResponseFn",this),queuable:true});},_defRequestFn:function(E){var D=this.get("source");if(B.isUndefined(D)){E.error=new Error("Local source undefined");}this.fire("data",C.mix({data:D},E));},_defDataFn:function(G){var E=G.data,F=G.meta,D={results:(B.isArray(E))?E:[E],meta:(F)?F:{}};this.fire("response",C.mix({response:D},G));},_defResponseFn:function(D){A.issueCallback(D,this);},sendRequest:function(D){D=D||{};var E=A._tId++;this.fire("request",{tId:E,request:D.request,callback:D.callback,cfg:D.cfg||{}});return E;}});C.namespace("DataSource").Local=A;},"3.3.0",{requires:["base"]});/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("dump",function(g){var b=g.Lang,c="{...}",f="f(){...}",a=", ",d=" => ",e=function(p,n){var j,h,l=[],k=b.type(p);if(!b.isObject(p)){return p+"";}else{if(k=="date"){return p;}else{if(p.nodeType&&p.tagName){return p.tagName+"#"+p.id;}else{if(p.document&&p.navigator){return"window";}else{if(p.location&&p.body){return"document";}else{if(k=="function"){return f;}}}}}}n=(b.isNumber(n))?n:3;if(k=="array"){l.push("[");for(j=0,h=p.length;j0)?b.dump(p[j],n-1):c);}else{l.push(p[j]);}l.push(a);}if(l.length>1){l.pop();}l.push("]");}else{if(k=="regexp"){l.push(p.toString());}else{l.push("{");for(j in p){if(p.hasOwnProperty(j)){try{l.push(j+d);if(b.isObject(p[j])){l.push((n>0)?b.dump(p[j],n-1):c);}else{l.push(p[j]);}l.push(a);}catch(m){l.push("Error: "+m.message);}}}if(l.length>1){l.pop();}l.push("}");}}return l.join("");};g.dump=e;b.dump=e;},"3.3.0");/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("datatype-xml-parse",function(b){var a=b.Lang;b.mix(b.namespace("DataType.XML"),{parse:function(f){var d=null;if(a.isString(f)){try{if(!a.isUndefined(ActiveXObject)){d=new ActiveXObject("Microsoft.XMLDOM");d.async=false;d.loadXML(f);}}catch(c){try{if(!a.isUndefined(DOMParser)){d=new DOMParser().parseFromString(f,"text/xml");}}catch(g){}}}if((a.isNull(d))||(a.isNull(d.documentElement))||(d.documentElement.nodeName==="parsererror")){}return d;}});b.namespace("Parsers").xml=b.DataType.XML.parse;},"3.3.0",{requires:["yui-base"]});YUI.add("datatype-xml-format",function(b){var a=b.Lang;b.mix(b.namespace("DataType.XML"),{format:function(c){try{if(!a.isUndefined(XMLSerializer)){return(new XMLSerializer()).serializeToString(c);}}catch(d){if(c&&c.xml){return c.xml;}else{return(a.isValue(c)&&c.toString)?c.toString():"";}}}});},"3.3.0",{requires:["yui-base"]});YUI.add("datatype-xml",function(a){},"3.3.0",{use:["datatype-xml-parse","datatype-xml-format"]});/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("json-parse",function(B){function K(Q){return(B.config.win||this||{})[Q];}var I=K("JSON"),J=K("eval"),L=(Object.prototype.toString.call(I)==="[object JSON]"&&I),E=!!L,O=/[\u0000\u00ad\u0600-\u0604\u070f\u17b4\u17b5\u200c-\u200f\u2028-\u202f\u2060-\u206f\ufeff\ufff0-\uffff]/g,M=/\\(?:["\\\/bfnrt]|u[0-9a-fA-F]{4})/g,D=/"[^"\\\n\r]*"|true|false|null|-?\d+(?:\.\d*)?(?:[eE][+\-]?\d+)?/g,F=/(?:^|:|,)(?:\s*\[)+/g,P=/[^\],:{}\s]/,N=function(Q){return"\\u"+("0000"+(+(Q.charCodeAt(0))).toString(16)).slice(-4);},C=function(S,Q){var R=function(X,V){var U,T,W=X[V];if(W&&typeof W==="object"){for(U in W){if(W.hasOwnProperty(U)){T=R(W,U);if(T===undefined){delete W[U];}else{W[U]=T;}}}}return Q.call(X,V,W);};return typeof Q==="function"?R({"":S},""):S;},G=function(R,Q){R=R.replace(O,N);if(!P.test(R.replace(M,"@").replace(D,"]").replace(F,""))){return C(J("("+R+")"),Q);}throw new SyntaxError("JSON.parse");};B.namespace("JSON").parse=function(R,Q){if(typeof R!=="string"){R+="";}return L&&B.JSON.useNativeParse?L.parse(R,Q):G(R,Q);};function A(R,Q){return R==="ok"?true:Q;}if(L){try{E=(L.parse('{"ok":false}',A)).ok;}catch(H){E=false;}}B.JSON.useNativeParse=E;},"3.3.0");YUI.add("json-stringify",function(B){var I=(B.config.win||{}).JSON,k=B.Lang,M=k.isFunction,f=k.isObject,R=k.isArray,J=Object.prototype.toString,Z=(J.call(I)==="[object JSON]"&&I),c=!!Z,a="undefined",O="object",W="null",i="string",X="number",S="boolean",K="date",b={"undefined":a,"string":i,"[object String]":i,"number":X,"[object Number]":X,"boolean":S,"[object Boolean]":S,"[object Date]":K,"[object RegExp]":O},F="",N="{",A="}",U="[",H="]",P=",",C=",\n",L="\n",d=":",G=": ",Q='"',E=/[\\\"\x00-\x1f\x7f-\x9f\u00ad\u0600-\u0604\u070f\u17b4\u17b5\u200c-\u200f\u2028-\u202f\u2060-\u206f\ufeff\ufff0-\uffff]/g,D={"\b":"\\b","\t":"\\t","\n":"\\n","\f":"\\f","\r":"\\r",'"':'\\"',"\\":"\\\\"};function l(e){var Y=typeof e;return b[Y]||b[J.call(e)]||(Y===O?(e?O:W):a);}function h(Y){if(!D[Y]){D[Y]="\\u"+("0000"+(+(Y.charCodeAt(0))).toString(16)).slice(-4);}return D[Y];}function T(Y){return Q+Y.replace(E,h)+Q;}function V(Y,e){return Y.replace(/^/gm,e);}function g(e,u,Y){if(e===undefined){return undefined;}var n=M(u)?u:null,t=J.call(Y).match(/String|Number/)||[],v=B.JSON.dateToString,s=[],q,p,r;if(n||!R(u)){u=undefined;}if(u){q={};for(p=0,r=u.length;p=0;--w){if(s[w]===AB){throw new Error("JSON.stringify. Cyclical reference");}}y=R(AB);s.push(AB);if(y){for(w=AB.length-1;w>=0;--w){AA[w]=m(AB,w)||W;}}else{AE=u||AB;w=0;for(o in AE){if(AE.hasOwnProperty(o)){AC=m(AB,o);if(AC){AA[w++]=T(o)+z+AC;}}}}s.pop();if(Y&&AA.length){return y?U+L+V(AA.join(C),Y)+L+H:N+L+V(AA.join(C),Y)+L+A;}else{return y?U+AA.join(P)+H:N+AA.join(P)+A;}}return m({"":e},"");}if(Z){try{c=("0"===Z.stringify(0));}catch(j){c=false;}}B.mix(B.namespace("JSON"),{useNativeStringify:c,dateToString:function(e){function Y(m){return m<10?"0"+m:m;}return e.getUTCFullYear()+"-"+Y(e.getUTCMonth()+1)+"-"+Y(e.getUTCDate())+"T"+Y(e.getUTCHours())+d+Y(e.getUTCMinutes())+d+Y(e.getUTCSeconds())+"Z";},stringify:function(m,Y,e){return Z&&B.JSON.useNativeStringify?Z.stringify(m,Y,e):g(m,Y,e);}});},"3.3.0");YUI.add("json",function(A){},"3.3.0",{use:["json-parse","json-stringify"]});/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("queue-promote",function(A){A.mix(A.Queue.prototype,{indexOf:function(B){return A.Array.indexOf(this._q,B);},promote:function(C){var B=this.indexOf(C);if(B>-1){this._q.unshift(this._q.splice(B,1));}},remove:function(C){var B=this.indexOf(C);if(B>-1){this._q.splice(B,1);}}});},"3.3.0",{requires:["yui-base"]});/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("io-base",function(d){var D="io:start",p="io:complete",b="io:success",f="io:failure",E="io:end",y=0,o={"X-Requested-With":"XMLHttpRequest"},z={},k=d.config.win;function l(){return k.XMLHttpRequest?new XMLHttpRequest():new ActiveXObject("Microsoft.XMLHTTP");}function e(){var w=y;y++;return w;}function x(G,w){var F={};F.id=d.Lang.isNumber(w)?w:e();G=G||{};if(!G.use&&!G.upload){F.c=l();}else{if(G.use){if(G.use==="native"){if(k.XDomainRequest){F.c=new XDomainRequest();F.t=G.use;}else{F.c=l();}}else{F.c=d.io._transport[G.use];F.t=G.use;}}else{F.c={};F.t="io:iframe";}}return F;}function i(w){if(k){if(w.c&&k.XMLHttpRequest){w.c.onreadystatechange=null;}else{if(d.UA.ie===6&&!w.t){w.c.abort();}}}w.c=null;w=null;}function q(H,I){var G=new d.EventTarget().publish("transaction:"+H),w=I.arguments,F=I.context||d;if(w){G.on(I.on[H],F,w);}else{G.on(I.on[H],F);}return G;}function u(G,F){var w=F.arguments;if(w){d.fire(D,G,w);}else{d.fire(D,G);}if(F.on&&F.on.start){q("start",F).fire(G);}}function g(G,H){var F=G.e?{status:0,statusText:G.e}:G.c,w=H.arguments;if(w){d.fire(p,G.id,F,w);}else{d.fire(p,G.id,F);}if(H.on&&H.on.complete){q("complete",H).fire(G.id,F);}}function j(F,G){var w=G.arguments;if(w){d.fire(E,F.id,w);}else{d.fire(E,F.id);}if(G.on&&G.on.end){q("end",G).fire(F.id);}i(F);}function t(F,G){var w=G.arguments;if(w){d.fire(b,F.id,F.c,w);}else{d.fire(b,F.id,F.c);}if(G.on&&G.on.success){q("success",G).fire(F.id,F.c);}j(F,G);}function h(G,H){var F=G.e?{status:0,statusText:G.e}:G.c,w=H.arguments;if(w){d.fire(f,G.id,F,w);}else{d.fire(f,G.id,F);}if(H.on&&H.on.failure){q("failure",H).fire(G.id,F);}j(G,H);}function a(G,w,H,F){i(G);H.xdr.use="flash";H.data=H.form&&F?F:null;return d.io(w,H,G.id);}function r(w,F){w+=((w.indexOf("?")==-1)?"?":"&")+F;return w;}function v(w,F){if(F){o[w]=F;}else{delete o[w];}}function c(G,w){var F;w=w||{};for(F in o){if(o.hasOwnProperty(F)){if(!w[F]){w[F]=o[F];}}}for(F in w){if(w.hasOwnProperty(F)){if(w[F]!=="disable"){G.setRequestHeader(F,w[F]);}}}}function n(F,w){if(F&&F.c){F.e=w;F.c.abort();}}function s(F,w){z[F.id]=k.setTimeout(function(){n(F,"timeout");},w);}function m(w){k.clearTimeout(z[w]);delete z[w];}function B(G,H){var w;try{w=(G.c.status&&G.c.status!==0)?G.c.status:0;}catch(F){w=0;}if(w>=200&&w<300||w===1223){t(G,H);}else{h(G,H);}}function C(w,F){if(w.c.readyState===4){if(F.timeout){m(w.id);}k.setTimeout(function(){g(w,F);B(w,F);},0);}}function A(G,O,K){var L,F,M,H,w,S,J,Q,I,R=G;O=d.Object(O);F=x(O.xdr||O.form,K);H=O.method?O.method=O.method.toUpperCase():O.method="GET";S=O.sync;J=O.data;if(d.Lang.isObject(O.data)&&d.QueryString){O.data=d.QueryString.stringify(O.data);}if(O.form){if(O.form.upload){return d.io.upload(F,G,O);}else{L=d.io._serialize(O.form,O.data);if(H==="POST"||H==="PUT"){O.data=L;}else{if(H==="GET"){G=r(G,L);}}}}if(O.data&&H==="GET"){G=r(G,O.data);}if(O.data&&H==="POST"){O.headers=d.merge({"Content-Type":"application/x-www-form-urlencoded; charset=UTF-8"},O.headers);}if(F.t){return d.io.xdr(G,F,O);}if(!S){F.c.onreadystatechange=function(){C(F,O);};}try{F.c.open(H,G,S?false:true);if(O.xdr&&O.xdr.credentials){F.c.withCredentials=true;}}catch(P){if(O.xdr){return a(F,R,O,J);}}c(F.c,O.headers);u(F.id,O);try{F.c.send(O.data||"");if(S){M=F.c;Q=["status","statusText","responseText","responseXML"];w=O.arguments?{id:F.id,arguments:O.arguments}:{id:F.id};for(I=0;I<4;I++){w[Q[I]]=F.c[Q[I]];}w.getAllResponseHeaders=function(){return M.getAllResponseHeaders();};w.getResponseHeader=function(T){return M.getResponseHeader(T);};g(F,O);B(F,O);return w;}}catch(N){if(O.xdr){return a(F,R,O,J);}}if(O.timeout){s(F,O.timeout);}return{id:F.id,abort:function(){return F.c?n(F,"abort"):false;},isInProgress:function(){return F.c?F.c.readyState!==4&&F.c.readyState!==0:false;}};}A.start=u;A.complete=g;A.success=t;A.failure=h;A.end=j;A._id=e;A._timeout=z;A.header=v;d.io=A;d.io.http=A;},"3.3.0",{requires:["event-custom-base","querystring-stringify-simple"]});YUI.add("io-form",function(b){var a=encodeURIComponent;b.mix(b.io,{_serialize:function(w,B){var q=[],x=w.useDisabled||false,A=0,g=(typeof w.id==="string")?w.id:w.id.getAttribute("id"),t,r,k,z,u,p,y,l,m,h;if(!g){g=b.guid("io:");w.id.setAttribute("id",g);}r=b.config.doc.getElementById(g);for(p=0,y=r.elements.length;p-1){h=t.options[t.selectedIndex];q[A++]=k+a(h.attributes.value&&h.attributes.value.specified?h.value:h.text);}break;case"select-multiple":if(t.selectedIndex>-1){for(l=t.selectedIndex,m=t.options.length;l'+''+''+''+"",p=k.createElement("div");k.body.appendChild(p);p.innerHTML=n;}function a(d,n){d.c.onprogress=function(){h[d.id]=3;};d.c.onload=function(){h[d.id]=4;c.io.xdrResponse(d,n,"success");};d.c.onerror=function(){h[d.id]=4;c.io.xdrResponse(d,n,"failure");};if(n.timeout){d.c.ontimeout=function(){h[d.id]=4;c.io.xdrResponse(d,n,"timeout");};d.c.timeout=n.timeout;}}function e(r,q,n){var p,d;if(!r.e){p=q?decodeURI(r.c.responseText):r.c.responseText;d=n==="xml"?c.DataType.XML.parse(p):null;return{id:r.id,c:{responseText:p,responseXML:d}};}else{return{id:r.id,e:r.e};}}function j(d,n){return d.c.abort(d.id,n);}function f(d){return b?h[d.id]!==4:d.c.isInProgress(d.id); }c.mix(c.io,{_transport:{},xdr:function(d,n,p){if(p.xdr.use==="flash"){g[n.id]={on:p.on,context:p.context,arguments:p.arguments};p.context=null;p.form=null;m.setTimeout(function(){if(n.c&&n.c.send){n.c.send(d,p,n.id);}else{c.io.xdrResponse(n,p,"transport error");}},c.io.xdr.delay);}else{if(b){a(n,p);n.c.open(p.method||"GET",d);n.c.send(p.data);}else{n.c.send(d,n,p);}}return{id:n.id,abort:function(){return n.c?j(n,p):false;},isInProgress:function(){return n.c?f(n.id):false;}};},xdrResponse:function(s,u,r){var n,d=b?h:g,q=u.xdr.use==="flash"?true:false,p=u.xdr.dataType;u.on=u.on||{};if(q){n=g[s.id]?g[s.id]:null;if(n){u.on=n.on;u.context=n.context;u.arguments=n.arguments;}}switch(r){case"start":c.io.start(s.id,u);break;case"complete":c.io.complete(s,u);break;case"success":c.io.success(p||q?e(s,q,p):s,u);delete d[s.id];break;case"timeout":case"abort":case"transport error":s.e=r;case"failure":c.io.failure(p||q?e(s,q,p):s,u);delete d[s.id];break;}},xdrReady:function(d){c.io.xdr.delay=0;c.fire(l,d);},transport:function(p){var q=p.yid||c.id,d=p.id||"flash",n=c.UA.ie?p.src+"?d="+new Date().valueOf().toString():p.src;if(d==="native"||d==="flash"){i(n,q);this._transport.flash=k.getElementById("yuiIoSwf");}else{if(d){this._transport[p.id]=p.src;}}}});c.io.xdr.delay=50;},"3.3.0",{requires:["io-base","datatype-xml"]});YUI.add("io-upload-iframe",function(c){var n=c.config.win,j=c.config.doc,h=(j.documentMode&&j.documentMode>=8),i=decodeURIComponent;function f(u,t){var v=[],d=t.split("="),r,q;for(r=0,q=d.length-1;r');d._node.style.position="absolute";d._node.style.top="-1000px";d._node.style.left="-1000px";c.one("body").appendChild(d);c.on("load",function(){a(q,r);},"#ioupload"+q.id);}function b(t,r,u){var s=(typeof u.form.id==="string")?j.getElementById(u.form.id):u.form.id,q,d={action:s.getAttribute("action"),target:s.getAttribute("target")};g(s,t.id,r);if(u.data){q=f(s,u.data);}if(u.timeout){e(t,u);}s.submit();c.io.start(t.id,u);if(u.data){k(s,q);}p(s,d);return{id:t.id,abort:function(){var v={id:t.id,status:"abort"};if(c.one("#ioupload"+t.id)){l(t.id);c.io.complete(v,u);c.io.end(v,u);}else{return false;}},isInProgress:function(){return c.one("#ioupload"+t.id)?true:false;}};}c.mix(c.io,{upload:function(q,d,r){o(q,r);return b(q,d,r);}});},"3.3.0",{requires:["io-base","node-base"]});YUI.add("io-queue",function(b){var a=new b.Queue(),g,l=1;function f(){var m=a.next();g=m.id;l=0;b.io(m.uri,m.cfg,m.id);}function d(m){a.promote(m);}function i(m,p){var n={uri:m,id:b.io._id(),cfg:p};a.add(n);if(l===1){f();}return n;}function c(m){l=1;if(g===m&&a.size()>0){f();}}function k(m){a.remove(m);}function e(){l=1;if(a.size()>0){f();}}function h(){l=0;}function j(){return a.size();}i.size=j;i.start=e;i.stop=h;i.promote=d;i.remove=k;b.on("io:complete",function(m){c(m);},b.io);b.mix(b.io,{queue:i},true);},"3.3.0",{requires:["io-base","queue-promote"]});YUI.add("io",function(a){},"3.3.0",{use:["io-base","io-form","io-xdr","io-upload-iframe","io-queue"]});YUI.add("gallery-flickr-api",function(a){YUI.namespace("flickrAPITransactions");var k="http://api.flickr.com/services/rest/",m={format:"json",clientType:"yui-3-flickrapi-module"},f="flapicb",g=YUI.flickrAPITransactions,c=function(){return true},j=function(){return true},h=function(){return true},b={last_response_id:0,id_map:{},response_map:{},setResponse:function(p,o){var n=b;n.response_map[p]=o;return n.response_map[p]},setId:function(q,p){var o=b,n=p;o.id_map[q]=n;o.last_response_id=n;return n}},e=function(q){var n="";for(var p in q){if(q.hasOwnProperty(p)){n+=p+"="+q[p]+"&"}}return n.substr(0,n.length-1)},i=function(u,r,n,p){var t=b,s,o;if(p){try{s=a.JSON.parse(r[1].responseText)}catch(q){a.log("invalid JSON","error","flickrAPI")}o=[{params:r[2].params,data:s}].concat(r)}else{s=(t.response_map[t.id_map[r[0].tId]])?t.response_map[t.id_map[r[0].tId]][0]:null;o=[{params:r[0].data,data:s}].concat(r)}if(s){if(s.stat==="ok"){return u.apply(a,o)}else{a.log(s.message,"error","flickrAPI");this.failure.apply(a,o)}}else{this.failure.apply(a,o)}},d=function(p,r,q){var o=b.last_response_id+1,n=a.Get.script(p+"?"+e(r)+"&jsoncallback=YUI.flickrAPITransactions."+f+o+"&cachebust="+(new Date()).getTime(),q);b.setId(n.tId,o);g[f+o]=function(s){var t=b.setResponse(o,arguments);if(t){a.later(1000,a,function(){delete g[f+o]})}};return n},l=function(n,p,o){a.use("io",function(q){q.io(n,{method:"POST",data:e(p),timeout:30000,on:o,"arguments":{params:p}})})};a.flickrAPI={callMethod:function(o,q,n,s){s=s||{};oYUIPOSTConf=s||{};q=q||{};var p=k;q=a.merge(a.config.flickrAPI,q);if(q.flickr_api_uri){p=q.flickr_api_uri;delete q.flickr_api_uri}a.Object.each(q,function(v,t,u){u[t]=encodeURIComponent(v)});q.method=o;if(a.Lang.isFunction(n)){n={success:n,failure:c,progress:j,timeout:h}}if(a.Lang.isObject(n)){s=a.merge(s,{onSuccess:function(){a.fire("flickrAPI:success");return i.apply(n,[n.success,arguments,1])},onFailure:function(){if(b.response_map[b.id_map[arguments[0].tId]]!==null){a.log("Your request (ID:"+arguments[0].tId+") has failed.","error","flickrAPI");a.fire("flickrAPI:failure");return i.apply(n,[n.failure,arguments,0])}},onProgress:function(){a.fire("flickrAPI:progress");return i.apply(n,[n.progress,arguments,null])},onTimeout:function(){a.log("Your request (ID:"+arguments[0].tId+") has timed out","error","flickrAPI");g[f+b.id_map[arguments[0].tId]]=function(){a.log("A response callback was fired but suppressed because of a timeout enforced by configuration.","warn","flickrAPI")};b.response_map[b.id_map[arguments[0].tId]]=null;a.Get.abort(arguments[0].tId);a.fire("flickrAPI:timeout");return i.apply(n,[n.timeout,arguments,0])}});oYUIPOSTConf=a.merge(oYUIPOSTConf,{success:function(){a.fire("flickrAPI:success");return i.apply(n,[n.success,arguments,1,1])},failure:function(){a.log("Your request (ID:"+arguments[0].tId+") has failed.","error","flickrAPI");a.fire("flickrAPI:failure");return i.apply(n,[n.failure,arguments,0,1])},timeout:function(){a.log("Your request (ID:"+arguments[0].tId+") has timed out","error","flickrAPI");a.fire("flickrAPI:timeout");return i.apply(n,[n.timeout,arguments,0,1])}})}s.scope=a;var r=a.merge(s.data,m,q);s.data=r;if(/(?:add|create|delete|edit|mute|post|record|remove|set|submit|unmute|move|sort|hide|block|unblock|insert)[a-zA-Z]*$/.test(r.method)){r.nojsoncallback=1;return l(p,r,oYUIPOSTConf)}else{return d(p,r,s)}}}},"gallery-a-002",{requires:["event"]});YUI.add("bo-selecta-global-search-datasource",function(a){a.BoSelectaGlobalSearchDataSource=function(b){a.BoSelectaGlobalSearchDataSource.superclass.constructor.apply(this,arguments);this.request=null;this.selector=b.selector};a.extend(a.BoSelectaGlobalSearchDataSource,a.DataSource.Local,{_defRequestFn:function(d){var c,b=this;if(this.request&&this.request.readyState<4){this.request.abort()}this.selector.loadingBox.setStyle("display","block");c=decodeURIComponent(d.request);this.request=a.flickrAPI.callMethod("flickr.people.search",{username:c},{success:function(j,p){var q=j.data,i=j.params;if(!b.selector.searchingGlobally){b.selector.loadingBox.setStyle("display","none");return}var l=[];var r=q.people.person;var k,h;for(var g=0,m=r.length;g0){var f,o,e;for(var g=0,m=b.selector.zeroResultsMessages.length;g0){this.loadingBox=d.item(0);this.loadingBox.setStyle("display",this.fetchDataImmediately&&!this.loadTransparently?"block":"none")}else{this.loadingBox=b.Node.create('
                  '+this.loadingText+"
                  ");this.loadingBox.setStyle("display",this.fetchDataImmediately&&!this.loadTransparently?"block":"none");this.container.append(this.loadingBox)}this.inputField.set("disabled",false);this.inputField.set("value",this.preloadText);this.inputField.addClass("grey");this.inputField.on("focus",this.clearDefaultText,this,true);this.inputField.on("blur",function(f){if(this.inputField.get("value")===""){this.restoreDefaultText()}},this,true);if(!this.allowFormSubmit){this.form=this.container.ancestor("form");if(this.form){this.form.on("submit",function(f){f.halt()})}}this.maxInputWidth=parseInt(this.container.getStyle("width"),10)||this.defaultContainerWidth;this.defaultInputWidth=parseInt(this.inputField.getStyle("width"),10)||this.defaultContainerWidth};b.BoSelecta3.prototype._initAutoComplete=function(){var c=this;this.contactsCacheDataSource=new b.DataSource.Function({source:function(d){return c._searchContacts(d)}});this.globalSearchDataSource=new b.BoSelectaGlobalSearchDataSource({selector:this});this.autoComp=new b.AutoComplete({inputNode:this.inputField,source:this.contactsCacheDataSource,resultTextLocator:function(d){if(d&&d.u){return d.u}return""},resultFormatter:function(f,d,e){return c._formatResult(f,d,e)},activateFirstItem:this.selectFirstItem,queryDelay:0,render:true});this.autoComp.on("select",this._onItemSelectEvent,this,true);this.autoComp.on("query",this._handleQueryChange,this,true);this.autoComp.after("query",this._resizeListToFit,this,true);this.inputField.on("keydown",this._onInputFieldKeyDown,this,true);this.inputField.on("focus",function(){var d=c.getQuery();if(d){c.autoComp.sendRequest(d)}})};b.BoSelecta3.prototype._fetchData=function(){this.fire("BoSelecta:dataFetchStart");if(!this.loadTransparently){this.inputField.setStyle("display","none");this.loadingBox.setStyle("display","block")}var c=this.apiURL;var d=this;var e={success:function(f,g,l){if(g.responseText==="-1"||g.responseText===""){if(d.allowNoContacts){d.contacts=[];if(!d.loadTransparently){d.restoreDefaultText();d.loadingBox.style.display="none";d.inputField.style.display="inline";if(d.inputField.value===""||d.focusOnFetch){d.clear(true)}}d.dataFetchComplete.fire()}else{e.failure()}return}var k=g.responseText.split("\u0002")[1];var p="\u0003";var m="\u0001";d.contacts=k.split(p);var i;for(var h=0,j=d.contacts.length;h0){var e,t,d;for(var f=0,l=this.zeroResultsMessages.length;f'+s.message+"

                  ";l.push(v);continue}if(s.totalResultsMessage){v='

                  '+s.message+"

                  ";l.push(v);continue}if(s.message){v='

                  '+s.message+"

                  ";l.push(v);continue}m=(j.respectCanTagFlag&&s.c==="0")?' class="disabled"':"";if(s.e&&!s.u&&!s.n){if(!s.i){s.i="/images/icon_unread.gif"}e=j.showIcon?'':"";d='

                  '+e+''+a(s.e,c)+'

                  ';l.push(d);continue}k=(s.a)?s.a:s.n;g=' / '+b.transjax.get("bo-selecta","uber_contact_list_view_profile")+"";if(!s.i){s.i=(s.f&&s.f!==0&&s.s&&s.s!==0)?"http://farm"+s.f+".static"+(b.config.flickr.dev?"-dev":"")+".flickr.com/"+s.s+"/buddyicons/"+s.n+".jpg":"http://www.flickr.com/images/buddyicon.jpg"}o="";if(j.showRelationship){if(s.d==="1"&&s.y==="1"){o+=b.transjax.get("bo-selecta","uber_contact_list_friend_and_family")}else{if(s.d==="1"){o+=b.transjax.get("bo-selecta","uber_contact_list_friend")}else{if(s.y==="1"){o+=b.transjax.get("bo-selecta","uber_contact_list_family")}else{if(s.removed==="1"){o+=''+b.transjax.get("bo-selecta","uber_contact_list_removed")+""}else{if(j.searchingGlobally){o+=""}else{o+=b.transjax.get("bo-selecta","uber_contact_list_contact")}}}}}if(j.showEditRelationshipLink&&!j.searchingGlobally){o+=' ('+b.transjax.get("bo-selecta","uber_contact_list_edit")+")"}}e=j.showIcon?'':"";e=j.linkUsernameToPhotostream?''+e+"":e;u=j.showUsername?a(s.u,c):"";u=j.linkUsernameToPhotostream?''+u+"":''+u+"";r="";if(j.showSubtitle){if(!s.matched||s.matched==="realname"){r=s.r?a(s.r,c):b.transjax.get("bo-selecta","uber_contact_list_no_realname")}else{if(s.matched==="username"){r=s.r?j._sanitizeString(s.r):b.transjax.get("bo-selecta","uber_contact_list_no_realname")}else{if(s.matched==="email"){r=a(s.e,c)}else{if(s.matched==="path_alias"&&s.a){r="flickr.com/people/"+a(s.a,c)+"/"}}}}r=j.linkSubtitle?''+r+"":''+r+""}f=b.Node.create('

                  '+e+u+r+''+o+"

                  ");b.imageFader.attach(f.all("img"));l.push(f)}return l};function a(g,e){if(!g){return g}var c,d,f;d=e?g.search(e):-1;if(d===-1){return b.BoSelecta3.sanitizeString(g)}c=g.match(e);f=d+c[0].length;return b.BoSelecta3.sanitizeString(g.substring(0,d))+''+b.BoSelecta3.sanitizeString(g.substring(d,f))+""+b.BoSelecta3.sanitizeString(g.substring(f,g.length))}b.BoSelecta3.prototype._resizeListToFit=function(i){var g,f,d=this.minListWidth,h,j,c;if(i.type==="autocompleteList:query"||(i.type==="autocompleteList:visibleChange"&&i.newVal===true)){g=i.currentTarget;f=g.get("listNode");f.all("li p").each(function(e){h=e.one(".name");j=e.one(".relationship");if(h&&j){c=h.get("offsetWidth")+j.get("offsetWidth")+12;if(c>d){d=c}}});if(!this.baseListWidth){this.baseListWidth=g.get("width")}g.set("width",(d>this.baseListWidth)?d:this.baseListWidth);g.set("zIndex",this.zIndex)}};b.BoSelecta3.prototype._attachIconEvents=function(e){if(!personmenu_process_img||typeof personmenu_process_img!=="function"){return}var g=e.all("img"),d;for(var f=0,c=g.size();f0){f=(c.item(0).hasClass("bs-message")&&!c.item(0).hasClass("bs-onclick"))}}if(!this.autoComp._oCurItem||f){this.fire("BoSelecta:inputEnter")}}};b.BoSelecta3.prototype._sanitizeString=function(c){c=c.replace(//g,">");return c};b.BoSelecta3.prototype._unsanitizeString=function(c){c=c.replace(/\</g,"<").replace(/\>/g,">");return c};b.BoSelecta3.prototype._escapeForRegEx=function(c){c=decodeURIComponent(c);c=c.replace(/\\/g,"\\\\").replace(/\./g,"\\.").replace(/\*/g,"\\*").replace(/\$/g,"\\$").replace(/\^/g,"\\^").replace(/\?/g,"\\?");c=c.replace(/\|/g,"\\|").replace(/\+/g,"\\+").replace(/\(/g,"\\(").replace(/\)/g,"\\)").replace(/\[/g,"\\[").replace(/\]/g,"\\]");return c};b.BoSelecta3.prototype._substituteEquivalentChars=function(f){var c,e,d;c=["(?:ae|??)","(?:oe|??)","(?:ss|??)","(?:th|??)","[a???????????????]","[e??????????]","[i??????????]","[o??????????????????????????????????]","[u?????????????????????????????]","[y????]","[c????]","[d??]","[f??]","[g??]","[h??]","[j??]","[k??]","[l??]","[n????]","[r??]","[s?????]","[t??]","[z??]"];e=c.length;for(d=0;d533.2||a.ie>7){g=true}}if(g){b()}e=true}c.keyboardShortcutManager={register:j,isEnabled:function(){return g},disable:function(){g=false},enable:function(){g=true},destroy:function(){g=false;e=false;if(f){f.detach()}}}},"0.0.1",{requires:F.config.modules["keyboard-shortcut-manager"].requires});YUI.add("nav-selecta-transjax",function(a){a.transjax.add("nav-selecta",{search_on_flickr:"Search Everyone's Uploads",search_more:"More search types...",search_photostream:"Your Photostream",search_users_photostream:"%s Photostream",search_contacts:"Your Contacts' Photos",search_people:"Flickr Members",search_tags:"Tags",search_groups:"Groups",search_location:"Places",search_apps:"Apps",search_help:"The Help Forum",search_advanced:"Advanced Search",section_your_photostream:'Your Photostream',section_your_sets:'Your Sets',section_your_collections:'Your Collections',section_your_galleries:'Your Galleries',section_your_archives:'Your Archives',section_your_tags:'Your Tags',section_your_map:'Your Map',section_your_favorites:'Your Favorites',section_your_stats:'Your Stats',section_your_apps:'Your Apps',section_recent_activity:'Recent Activity',section_photos_of_you:'Photos of You',section_upload_photos:'Upload Photos',section_your_account:'Your Account',section_your_profile:'Your Profile',section_flickrmail:'FlickrMail',section_organize_and_create:'Organize & Create',section_prints_and_photo_products:'Prints & photo products',section_contacts:"Contacts' Recent Uploads",section_photos_of_your_contacts:'Photos of Your Contacts',section_contact_list:'Contact List',section_find_your_friends:'Find Your Friends',section_invite_your_friends:'Invite your Friends',section_invite_history:'Invite History',section_guest_pass_history:'Guest Pass History',section_your_groups:'Your Groups',section_recent_changes_in_your_groups:'Recent Changes in Your Groups',section_create_a_new_group:'Create a New Group',section_the_tour:'The Tour',section_explore:'Explore',section_last_7_days_interesting:'Last 7 Days Interesting',section_popular_tags:'Popular Tags',section_calendar:'Calendar',section_most_recent_uploads_to_flickr:'Most Recent Uploads to Flickr',section_video_on_flickr:'Video on Flickr',section_galleries:'Galleries',section_explore_analog:'Explore Analog',section_flickr_clock:'Flickr Clock',section_world_map:'World Map',section_places:'',section_the_commons:'The Commons',section_creative_commons:'Creative Commons',section_flickrblog:'FlickrBlog',section_getty_images:"Getty Images",section_code_flickr:"code.flickr",section_the_app_garden:'The App Garden',section_camera_finder:'Camera Finder',section_developer_guidelines:'Developer Guide',section_api_docs:'API Documentation',section_feeds:'Feeds',section_help:'Help',section_community_guidelines:'Community Guidelines',section_the_help_forum:'The Help Forum',section_faq:'FAQ',section_tools:'Tools',section_sitemap:'Sitemap',section_about_flickr:'About Flickr',section_jobs:'Jobs at Flickr',section_terms_of_service:'Terms of Service',section_terms_of_use:'Terms of Use',section_your_privacy:'Your Privacy',section_copyright_ip_policy:'Copyright/IP Policy',section_report_abuse:'Report Abuse'})},"0.0.1",{requires:F.config.modules["nav-selecta-transjax"].requires||[]});YUI.add("nav-selecta",function(g){var f=false;g.on("keydown",function(h){if(h.metaKey||h.ctrlKey){f=true}});g.on("keyup",function(h){if(h.metaKey||h.ctrlKey){f=false}});g.NavSelecta=function(i,h){h=h||{};h.showSubtitle=(typeof h.showSubtitle!=="undefined")?h.showSubtitle:true;h.showIcon=(typeof h.showIcon!=="undefined")?h.showIcon:true;h.maxResultsDisplayed=h.maxResultsDisplayed||15;h.searchOnRealname=(typeof h.searchOnRealname!=="undefined")?h.searchOnRealname:true;h.searchOnEmail=(typeof h.searchOnEmail!=="undefined")?h.searchOnEmail:true;h.searchOnPathAlias=(typeof h.searchOnPathAlias!=="undefined")?h.searchOnPathAlias:true;h.selectFirstItem=(typeof h.selectFirstItem!=="undefined")?h.selectFirstItem:true;h.loadTransparently=(typeof h.loadTransparently!=="undefined")?h.loadTransparently:true;h.minListWidth=h.minListWidth||266;g.NavSelecta.superclass.constructor.call(this,i,h);this.maxContactsDisplayed=h.maxContactsDisplayed||3;this.maxSectionsDisplayed=h.maxSectionsDisplayed||3;this.on("BoSelecta:resultSelect",b);this.on("BoSelecta:resultClick",b);if(g.config.flickr.user&&g.config.flickr.user.nsid){this.inputField.once("mouseover",this.fetchData,this,true);this.inputField.once("focus",this.fetchData,this,true);this.on("BoSelecta:dataFetchComplete",this.refreshResults,this,true)}this.container.addClass("nav-selecta");g.keyboardShortcutManager.register("83",e,"",this);this.addSections(g.config.flickr.nav_selecta.additional_sections)};var c={},d={};function b(i,h){if(i.type==="contact"){if(!f){window.location="/photos/"+(i.a?i.a:i.n)+"/"}}else{if(i.type==="section"){if(!f){window.location=i.url}}else{if(!f){window.location="/search/?q="+h}}}}function e(h){h.preventDefault();window.scrollTo(0,0);this.inputField.focus()}c._searchContacts=function(v){var w,p=[],x=v,k,u=this,i=false,h=false;p.push({type:"search",message:g.transjax.get("nav-selecta","search_on_flickr",''+x+""),onclick:function(n){if(!f){document.location="/search/?q="+x}},url:"/search/?q="+x});if(g.config.flickr.nav_selecta.photostream_search_user){if(g.config.flickr.user&&g.config.flickr.user.nsid&&g.config.flickr.user.nsid==g.config.flickr.nav_selecta.photostream_search_user.nsid){p.push({type:"search-photostream",message:g.transjax.get("nav-selecta","search_photostream",''+x+""),onclick:function(){if(!f){document.location="/search/?w="+g.config.flickr.user.nsid+"&q="+x}},url:"/search/?w="+g.config.flickr.user.nsid+"&q="+x});i=true}else{p.push({type:"search-users-photostream",message:g.transjax.get("nav-selecta","search_users_photostream",g.config.flickr.nav_selecta.photostream_search_user.owner_name_possessive,''+x+""),onclick:function(){if(!f){document.location="/search/?w="+g.config.flickr.nav_selecta.photostream_search_user.nsid+"&q="+x}},url:"/search/?w="+g.config.flickr.nav_selecta.photostream_search_user.nsid+"&q="+x});h=true}}if(!this.showMoreSearches){p.push({type:"search-more",message:g.transjax.get("nav-selecta","search_more",''+x+""),onclick:function(){u.showMoreSearches=true;u.selectSecondItem=u.autoComp.after("results",function(n){if(i||h){u.autoComp.set("activeItem",u.autoComp._getFirstItemNode().next().next())}else{u.autoComp.set("activeItem",u.autoComp._getFirstItemNode().next())}u.selectSecondItem.detach()});u.refreshResults()}})}else{if(g.config.flickr.user&&g.config.flickr.user.nsid&&!i){p.push({type:"search-photostream",message:g.transjax.get("nav-selecta","search_photostream",''+x+""),onclick:function(){if(!f){document.location="/search/?w="+g.config.flickr.user.nsid+"&q="+x}},url:"/search/?w="+g.config.flickr.user.nsid+"&q="+x})}if(g.config.flickr.nav_selecta.photostream_search_user&&(!g.config.flickr.user||(g.config.flickr.user.nsid!=g.config.flickr.nav_selecta.photostream_search_user.nsid))&&!h){p.push({type:"search-users-photostream",message:g.transjax.get("nav-selecta","search_users_photostream",g.config.flickr.nav_selecta.photostream_search_user.owner_name_possessive,''+x+""),onclick:function(){if(!f){document.location="/search/?w="+g.config.flickr.nav_selecta.photostream_search_user.nsid+"&q="+x}},url:"/search/?w="+g.config.flickr.nav_selecta.photostream_search_user.nsid+"&q="+x})}if(g.config.flickr.user&&g.config.flickr.user.nsid){p.push({type:"search-contacts",message:g.transjax.get("nav-selecta","search_contacts",''+x+""),onclick:function(){if(!f){document.location="/search/?w=contacts&q="+x}},url:"/search/?w=contacts&q="+x})}p.push({type:"search-groups",message:g.transjax.get("nav-selecta","search_groups",''+x+""),onclick:function(){if(!f){document.location="/search/groups/?q="+x}},url:"/search/groups/?q="+x});p.push({type:"search-people",message:g.transjax.get("nav-selecta","search_people",''+x+""),onclick:function(){if(!f){document.location="/search/people/?m=names&q="+x}},url:"/search/people/?m=names&q="+x})}if(v&&typeof v==="string"){v=this._escapeForRegEx(v);v=this._substituteEquivalentChars(v);var o=new RegExp(v,"i"),t,m;if(this.contacts){var l=false,q=[];for(var j=0,s=this.contacts.length;j'+y.message+"

                  ";s.push(C);continue}if(y.type.match(/^search/)){C='";s.push(C);continue}if(y.type==="section"){C='

                  '+a(y.name,h)+"

                  ";s.push(C);B=true;continue}if(y.globalSearchLink){C='";s.push(C);continue}if(y.message){C='

                  '+y.message+"

                  ";s.push(C);continue}pClasses=[];if(!r){pClasses.push("first-contact")}if(w[v+1]&&w[v+1].raw&&w[v+1].raw.type!=="contact"){pClasses.push("last-contact")}t=(pClasses.length)?' class="'+pClasses.join(" ")+'"':"";if(y.e&&!y.u&&!y.n){if(!y.i){y.i="/images/icon_unread.gif"}j=p.showIcon?'':"";i='

                  '+j+''+a(y.e,h)+'

                  ';s.push(i);r=true;continue}q=(y.a)?y.a:y.n;l=' / '+g.transjax.get("bo-selecta","uber_contact_list_view_profile")+"";if(!y.i){y.i=(y.f&&y.f!==0&&y.s&&y.s!==0)?"http://farm"+y.f+".static.flickr.com/"+y.s+"/buddyicons/"+y.n+".jpg":"http://www.flickr.com/images/buddyicon.jpg"}u="";if(p.showRelationship){if(y.d==="1"&&y.y==="1"){u+=g.transjax.get("bo-selecta","uber_contact_list_friend_and_family")}else{if(y.d==="1"){u+=g.transjax.get("bo-selecta","uber_contact_list_friend")}else{if(y.y==="1"){u+=g.transjax.get("bo-selecta","uber_contact_list_family")}else{if(y.removed==="1"){u+=''+g.transjax.get("bo-selecta","uber_contact_list_removed")+""}else{if(p.searchingGlobally){u+=""}else{u+=g.transjax.get("bo-selecta","uber_contact_list_contact")}}}}}if(p.showEditRelationshipLink&&!p.searchingGlobally){u+=' ("+g.transjax.get("bo-selecta","uber_contact_list_edit")+")"}}j=p.showIcon?'":"";j=p.linkUsernameToPhotostream?''+j+"":j;A=p.showUsername?a(y.u,h):"";A=p.linkUsernameToPhotostream?''+A+"":''+A+"";x="";if(p.showSubtitle){if(!y.matched||y.matched==="realname"){x=y.r?a(y.r,h):g.transjax.get("bo-selecta","uber_contact_list_no_realname")}else{if(y.matched==="username"){x=y.r?p._sanitizeString(y.r):g.transjax.get("bo-selecta","uber_contact_list_no_realname")}else{if(y.matched==="email"){x=a(y.e,h)}else{if(y.matched==="path_alias"&&y.a){x="flickr.com/people/"+a(y.a,h)+"/"}}}}x=p.linkSubtitle?''+x+"":''+x+""}k=g.Node.create('

                  '+j+A+x+''+u+"

                  ");g.imageFader.attach(k.all("img"));s.push(k);r=true}return s};function a(l,j){if(!l){return l}var h,i,k;i=j?l.search(j):-1;if(i===-1){return g.BoSelecta3.sanitizeString(l)}h=l.match(j);k=i+h[0].length;return g.BoSelecta3.sanitizeString(l.substring(0,i))+''+g.BoSelecta3.sanitizeString(l.substring(i,k))+""+g.BoSelecta3.sanitizeString(l.substring(k,l.length))}c.addSections=function(h){g.NavSelecta.nav_sections=g.NavSelecta.nav_sections.concat(h)};d.nav_sections=[{name:g.transjax.get("nav-selecta","section_your_photostream"),sectionType:"photos",url:"/photos/me/"},{name:g.transjax.get("nav-selecta","section_your_sets"),sectionType:"photos",url:"/photos/me/sets/"},{name:g.transjax.get("nav-selecta","section_your_collections"),sectionType:"photos",url:"/photos/me/collections/"},{name:g.transjax.get("nav-selecta","section_your_galleries"),sectionType:"photos",url:"/photos/me/galleries/"},{name:g.transjax.get("nav-selecta","section_your_archives"),sectionType:"photos",url:"/photos/me/archives/"},{name:g.transjax.get("nav-selecta","section_your_tags"),sectionType:"photos",url:"/photos/me/tags/"},{name:g.transjax.get("nav-selecta","section_your_map"),sectionType:"map",url:"/photos/me/map/"},{name:g.transjax.get("nav-selecta","section_your_favorites"),sectionType:"photos",url:"/photos/me/favorites/"},{name:g.transjax.get("nav-selecta","section_your_stats"),sectionType:"stats",url:"/photos/me/stats/"},{name:g.transjax.get("nav-selecta","section_your_apps"),sectionType:"",url:"/services/apps/by/me/"},{name:g.transjax.get("nav-selecta","section_recent_activity"),sectionType:"activity",url:"/activity/"},{name:g.transjax.get("nav-selecta","section_photos_of_you"),sectionType:"photos",url:"/photosof/me/"},{name:g.transjax.get("nav-selecta","section_upload_photos"),sectionType:"photos",url:"/photos/upload/"},{name:g.transjax.get("nav-selecta","section_your_account"),sectionType:"text",url:"/account/"},{name:g.transjax.get("nav-selecta","section_your_profile"),sectionType:"",url:"/people/me/"},{name:g.transjax.get("nav-selecta","section_flickrmail"),sectionType:"text",url:"/mail/"},{name:g.transjax.get("nav-selecta","section_organize_and_create"),sectionType:"photos",url:"/photos/organize/"},{name:g.transjax.get("nav-selecta","section_prints_and_photo_products"),sectionType:"photos",url:"/photos/organize/?start_tab=print"},{name:g.transjax.get("nav-selecta","section_contacts"),sectionType:"photos",url:"/photos/contacts/"},{name:g.transjax.get("nav-selecta","section_photos_of_your_contacts"),sectionType:"photos",url:"/photosof/contacts/"},{name:g.transjax.get("nav-selecta","section_contact_list"),sectionType:"contacts",url:"/people/me/contacts/"},{name:g.transjax.get("nav-selecta","section_find_your_friends"),sectionType:"contacts",url:"/import/people/"},{name:g.transjax.get("nav-selecta","section_invite_your_friends"),sectionType:"contacts",url:"/invite/"},{name:g.transjax.get("nav-selecta","section_invite_history"),sectionType:"text",url:"/invite/history/"},{name:g.transjax.get("nav-selecta","section_guest_pass_history"),sectionType:"text",url:"/invite/history/guests/"},{name:g.transjax.get("nav-selecta","section_your_groups"),sectionType:"photos",url:"/groups/"},{name:g.transjax.get("nav-selecta","section_recent_changes_in_your_groups"),sectionType:"activity",url:"/recent.gne"},{name:g.transjax.get("nav-selecta","section_create_a_new_group"),sectionType:"text",url:"/groups_create.gne"},{name:g.transjax.get("nav-selecta","section_the_tour"),sectionType:"text",url:"/tour/"},{name:g.transjax.get("nav-selecta","section_explore"),sectionType:"photos",url:"/explore/"},{name:g.transjax.get("nav-selecta","section_last_7_days_interesting"),sectionType:"photos",url:"/explore/interesting/7days/"},{name:g.transjax.get("nav-selecta","section_popular_tags"),sectionType:"photos",url:"/photos/tags/"},{name:g.transjax.get("nav-selecta","section_most_recent_uploads_to_flickr"),sectionType:"photos",url:"/photos/"},{name:g.transjax.get("nav-selecta","section_video_on_flickr"),sectionType:"video",url:"/explore/video/"},{name:g.transjax.get("nav-selecta","section_galleries"),sectionType:"photos",url:"/galleries/"},{name:g.transjax.get("nav-selecta","section_explore_analog"),sectionType:"photos",url:"/analog/"},{name:g.transjax.get("nav-selecta","section_flickr_clock"),sectionType:"photos",url:"/explore/clock/"},{name:g.transjax.get("nav-selecta","section_world_map"),sectionType:"map",url:"/map/"},{name:g.transjax.get("nav-selecta","section_places"),sectionType:"map",url:"/places/"},{name:g.transjax.get("nav-selecta","section_the_commons"),sectionType:"photos",url:"/commons/"},{name:g.transjax.get("nav-selecta","section_creative_commons"),sectionType:"photos",url:"/creativecommons/"},{name:g.transjax.get("nav-selecta","section_flickrblog"),sectionType:"photos",url:"http://blog.flickr.com/"},{name:g.transjax.get("nav-selecta","section_getty_images"),sectionType:"photos",url:"/gettyimages/"},{name:g.transjax.get("nav-selecta","section_code_flickr"),sectionType:"code",url:"http://code.flickr.com/"},{name:g.transjax.get("nav-selecta","section_the_app_garden"),sectionType:"text",url:"/services/"},{name:g.transjax.get("nav-selecta","section_camera_finder"),sectionType:"text",url:"/cameras/"},{name:g.transjax.get("nav-selecta","section_developer_guidelines"),sectionType:"code",url:"/services/developer/"},{name:g.transjax.get("nav-selecta","section_api_docs"),sectionType:"code",url:"/services/api/"},{name:g.transjax.get("nav-selecta","section_feeds"),sectionType:"text",url:"/services/feeds/"},{name:g.transjax.get("nav-selecta","section_help"),sectionType:"text",url:"/help/"},{name:g.transjax.get("nav-selecta","section_community_guidelines"),sectionType:"text",url:"/guidelines.gne"},{name:g.transjax.get("nav-selecta","section_the_help_forum"),sectionType:"text",url:"/help/forum/"},{name:g.transjax.get("nav-selecta","section_faq"),sectionType:"text",url:"/help/faq/"},{name:g.transjax.get("nav-selecta","section_tools"),sectionType:"text",url:"/tools/"},{name:g.transjax.get("nav-selecta","section_about_flickr"),sectionType:"meta",url:"/about/"},{name:g.transjax.get("nav-selecta","section_jobs"),sectionType:"meta",url:"/jobs/"},{name:g.transjax.get("nav-selecta","section_report_abuse"),sectionType:"text",url:"/report_abuse.gne"}];g.extend(g.NavSelecta,g.BoSelecta3,c,d)},"0.0.1",{requires:F.config.modules["nav-selecta"].requires||[]});YUI.add("popup-login",function(a){var e="/photo_grease_postlogin.gne",h=false,q=false,o=false,r,p="head-upload-link",c="signin-popup",l=/cookie_session=[^;]+/gi,b=a.global_dialog;function n(){var s={method:"post",data:"random=0",on:{success:function(v,u,t){if(u&&(u.responseText==="1,1"||u.responseText==="1,0")){a.fire("login:authenticated",u.responseText)}else{d()}}}};a.later(100,this,g);a.io("/fragment.gne?name=social-auth-fragment",s)}function g(){b.show({loading:true,modal:true})}function d(){b.hide()}function k(v){if(a.config.flickr.is_touch_device){var u=e+"?d="+window.location+"¬popup=1";window.location=v+"?popup=0&redir="+encodeURIComponent(u);return false}var t=v+"?popup=1&redir="+e+"?d="+window.location;try{r=window.open(t,"newWindow","width=650,height=650,resizable=1,scrollbars=1,location=yes")}catch(w){return true}try{if(r.focus){r.focus()}}catch(s){}a.later(100,this,function(){if(!r||r.closed||typeof r.closed==="undefined"||!h){var x=e+"?d="+window.location+"¬popup=1";window.location=v+"?popup=0&redir="+encodeURIComponent(x)}});return false}function i(){a.later(20,this,f);q=true;k("/signin")}var j=0;function f(){if(document.cookie.match(l)){q=false;n()}else{a.later(20,this,f)}}function m(){if(a.config.flickr.user.nsid){return}a.one("body").on("click",function(u){var t=u.target.get("id");if(u.target.hasClass(c)){u.halt();i()}else{if(t===p){o=true;u.halt();i()}}});var s=a.one("window");s.on("login|blur",function(t){h=true});s.on("login|focus",function(t){h=false;if(q){n()}});a.on("login:authenticated",function(t){if(t==="1,1"){window.location="/"}else{if(o){window.location="/photos/upload"}else{window.location.reload()}}})}a.popup_login={init:m}},"0.0.1",{requires:["node","event","global-dialog"]});YUI.add("occult",function(e){if(typeof window.FLICKR==="undefined"){window.FLICKR={};var d=window.FLICKR}function c(){var f=arguments,l=null,h,g,k;for(h=0;h=5){g=k}else{g=x}}}}}catch(q){g=x}b.StorageFullError=function(d){b.StorageFullError.superclass.constructor.call(d);this.name="StorageFullError";this.message=d||"Maximum storage capacity reached";if(b.UA.ie){this.description=this.message}};b.extend(b.StorageFullError,Error);b.augment(r,b.EventTarget,true,null,{emitFacade:true,prefix:"storage-lite",preventable:false});r.publish(t,{fireOnce:true});b.mix(r,{clear:function(){},getItem:function(e,d){return null},length:function(){return 0},removeItem:function(d){},setItem:function(d,e){}});if(g===h||g===a){b.mix(r,{length:function(){return n.length},removeItem:function(d){n.removeItem(d)},setItem:function(e,w,d){n.setItem(e,d?c.stringify(w):w)}},true);if(g===h){n=j.localStorage;b.mix(r,{clear:function(){n.clear()},getItem:function(w,e){try{return e?c.parse(n.getItem(w)):n.getItem(w)}catch(d){return null}}},true)}else{if(g===a){n=j.globalStorage[j.location.hostname];b.mix(r,{clear:function(){for(var d in n){if(n.hasOwnProperty(d)){n.removeItem(d);delete n[d]}}},getItem:function(w,e){try{return e?c.parse(n[w].value):n[w].value}catch(d){return null}}},true)}}r.fire(t)}else{if(g===m||g===k){b.mix(r,{clear:function(){u={};r._save()},getItem:function(e,d){return u.hasOwnProperty(e)?u[e]:null},length:function(){var e=0,d;for(d in u){if(u.hasOwnProperty(d)){e+=1}}return e},removeItem:function(d){if(u){delete u[d];r._save()}else{u={}}},setItem:function(e,w,d){u[e]=w;r._save()}},true);if(g===m){n=j.openDatabase(i,p,v,y);b.mix(r,{_save:function(){n.transaction(function(d){d.executeSql("REPLACE INTO "+i+" (name, value) VALUES ('data', ?)",[c.stringify(u)])})}},true);n.transaction(function(d){d.executeSql("CREATE TABLE IF NOT EXISTS "+i+"(name TEXT PRIMARY KEY, value TEXT NOT NULL)");d.executeSql("SELECT value FROM "+i+" WHERE name = 'data'",[],function(z,w){if(w.rows.length){try{u=c.parse(w.rows.item(0).value)}catch(e){u={}}}r.fire(t)})})}else{if(g===k){n=s.createElement("span");n.addBehavior("#default#userData");b.mix(r,{_save:function(){var e=c.stringify(u);try{n.setAttribute(l,e);n.save(f)}catch(d){throw new b.StorageFullError()}}},true);b.on("domready",function(){s.body.appendChild(n);n.load(f);try{u=c.parse(n.getAttribute(l))}catch(d){u={}}r.fire(t)})}}}else{r.fire(t)}}},"1.0.0",{requires:["event-base","event-custom","event-custom-complex","json"]});YUI.add("grease",function(c){var Q=false,L,ae,I=c.StorageLite,M=false,p,q,u,J,P,y="pc",r="pf",f="pct",K="ps",R="ps3",S="/photo_grease_postlogin.gne",t="fave",V="contact",W="share",z="share_v3",g="comment",d=/cookie_session=[^;]+/gi,j=";",ag=3,H=1000,E=[y,K,R,r,f,r];if(c.config.flickr.grease_enabled){Q=true}J=c.global_dialog;function n(){c.Array.each(E,function(Y){I.removeItem(Y)})}var aa=(function(){var Y=null,ap=false,ai=0,ak=false,aj=false;function an(){H=(H>=10000)?H:H*2;return H}function ao(){if(aj){if(Y){J.remove_existing_dialog();Y.cancel();ap=false}aj=false}}function al(){aj=false;if(Y){Y.cancel()}ao();J.remove_existing_dialog();ap=false;Y=null;ak=false;ai=0;H=1000;ak=false}function ah(){if(Y){Y.cancel()}ak=true;c.fire("grease:cancel")}function am(){if(ak){return}if(Y){Y.cancel();Y=null}var aq={method:"post",data:"random=0",on:{success:function(au,at,ar){if(at&&at.responseText.substring(0,1)==="1"){c.fire("grease:authenticated")}else{if(ai++');ai.appendChild(Y)}function C(){J.create_dialog(c.one("#grease-confirm-"+u).get("innerHTML"),{width:355}).show({loading:false,modal:true});c.one("#global_dialog").on("click",e,this);c.later(10000,this,c.global_dialog.hide);if(c.config.flickr.enable_rapid_tracking&&c.one("#reg-tour")){c.use("rapid-tracker",function(ah){ah.rapidTracker.addModules("grease-conversion-tracker");ah.rapidTracker.beaconClick("grease-conversion-tracker",u);switch(u){case t:ad("https://pclick.internal.yahoo.com/p/s=2143640346&t="+Math.random());break;case V:ad("https://pclick.internal.yahoo.com/p/s=2143640345&t="+Math.random());break;case W:ad("https://pclick.internal.yahoo.com/p/s=2143640344&t="+Math.random());break;default:ad("https://pclick.internal.yahoo.com/p/s=2143640343&t="+Math.random())}})}}function O(Y){J.remove_existing_dialog();C();if(!c.PhotoData.get(Y).get("is_fave")){c.PhotoData.get(Y).toggle_fave()}n()}function B(Y){v();n();c.flickrAPI.callMethod("flickr.sharing.share",Y,{success:function(ah){k();C()},failure:o})}function ac(Y){v();n();Y.magic_cookie=c.config.flickr.magic_cookie;Y.from_grease=1;c.use("share-this-v3-dialog",function(ah){ah.shareThisV3Dialog.do_share_action(Y)})}function o(){n();J.create_dialog(c.one("#grease-error").get("innerHTML")).show({loading:false,modal:true,width:355,style:"grease-error"});c.one("#global_dialog").on("click",e,this);c.later(5000,this,c.global_dialog.hide)}function m(Y){v();contactArr=Y.split(";");c.flickrAPI.callMethod("flickr.contacts.add",{user_id:contactArr[0],friend:contactArr[1],family:contactArr[2]},{success:function(ah){k();C();n()},failure:o})}function l(){if(document.cookie.match(d)){L=false;v();checkAuth()}else{c.later(20,this,l)}}function T(ai){v();n();var ah=c.one("#message");if(!ah){o();return}c.one("#message").set("innerHTML",ai);var Y={method:"post",data:"preview=0",form:{id:c.one(".add-comment-form form")},on:{success:function(an,am,ak){k();C();var aj=c.one("#comments");aj.set("innerHTML",am.responseText);var al=aj.one(".Problem");if(al){J.create_alert_dialog(al.get("innerHTML"),function(){aj.one("#message").scrollIntoView()})}}}};c.io("/photo_comments_fragment.gne",Y)}function w(aj){var ai;aa.reset();var ah=aj+"&popup=1&redir="+S+"?d="+encodeURIComponent(window.location+"?reg=1")+"&src="+u;if(c.config.flickr.is_touch_device){ai=S+"?d="+window.location+"¬popup=1&src="+u+"®=1";window.location=aj+"&popup=0&redir="+encodeURIComponent(ai);return false}try{ae=window.open(ah,"newWindow","width=650,height=650,resizable=1,scrollbars=1,location=yes")}catch(al){return true}try{if(ae.focus){ae.focus()}}catch(Y){}if(!ae||ae.closed||typeof ae.closed==="undefined"){ai=S+"?d="+window.location+"¬popup=1&src="+u+"®=1";window.location=aj+"&popup=0&redir="+encodeURIComponent(ai)}var ak=c.one("window");ak.on("grease|focus",function(){if(!aa.canceled){aa.start()}if(!document.cookie.match(d)){k();P(false);l()}});c.on("grease:cancel",function(am){L=false;b()});ak.on("grease|blur",function(){if(!aa.canceled){aa.pause()}});ak.on("grease:timeout",function(am){L=false;b()});c.on("grease:authenticated",function(ap){v();L=false;P(true);var aq=(R),am=["reg=1","src="+u];if(aq){var ao=window.location.toString(),an=ao.match(/\?/i);ao+=(!an?"?":"&")+am.join("&");window.location=ao}else{window.location=c.config.flickr.photo.url+"?"+am.join("&")}});return false}function a(ai,aj,ah){var Y=ah||false;I.setItem(ai,aj,Y)}function Z(Y,ai){var ah=ai||false;return I.getItem(Y,ah)}function A(Y){if(!L){aa.reset();P=Y||function(){};c.global_dialog.remove_existing_dialog();c.global_dialog.show({loading:true,modal:true});L=true;w("/signin?src="+u+"®=1")}else{b();A(Y)}}function F(Y){n();a(y,c.config.flickr.photo.id+j+Y);u="comment"}function s(Y){n();a(r,c.config.flickr.photo.id);u="fave"}function U(Y){n();if(c.Lang.isArray(Y)){a(f,Y.join(";"));u="contact"}}function N(Y){n();a(K,Y,true);u="share"}function ab(Y){n();a(R,Y,true);u="sharev3"}c.grease={init:X,enabled:Q,authenticate:A,postComment:F,addFave:s,addContact:U,share:N,shareV3:ab};if(c.config.flickr.user.admin_user==="saw"){c.occult.register("postComment",function(Y){T(Y)});c.occult.register("showdialog",function(Y){u="fave";C()});c.occult.register("fakeerror",function(Y){o(Y)})}var h=c.one("#reg-tour");function i(){for(var Y=1;Y<4;Y++){af.removeClass(D+Y)}}function G(Y){Y.preventDefault();i();c.Event.purgeElement("#reg-tour");h.addClass("hidden")}function x(Y){if(Y.test("#reg-tour")){return}if(Y.test("ol li")){i();switch(Y.get("id")){case"step-1":af.addClass(D+1);break;case"step-2":af.addClass(D+2);break;case"step-3":af.addClass(D+3);break}}else{x(Y.get("parentNode"))}}if(h){var D="tour-step",af=c.one("body");h.one(".close-x").on("click",G);h.on("mouseover",function(Y){x(Y.target)});h.on("mouseout",function(Y){i()})}},"0.0.1",{requires:["node","event-focus","gallery-flickr-api","gallery-storage-lite","photo-data","occult","global-dialog"]});YUI.add("history-manager",function(c){var e=window,k=e.location,b=e.history,g=(b.pushState&&b.replaceState),r=!g&&(c.UA.gecko>=1.92),w={},u,y,a,i={photo_page:/^\/photos\/([^\/]+)\/(\d+)(?:\/in\/([^\/]+))?(?:(?:\/page(\d+))|(?:\/(lightbox))|(?:\/(tour)))?/,faves_page:/^\/photos\/([^\/]+)\/favorites(?:\/with\/(\d+))?(?:\/(lightbox))?/},h=(c.config.flickr.page_type==="photo"||c.config.flickr.page_type==="faves")&&(g||r);function v(){if(!h){return}s(n());if(g){e.addEventListener("popstate",x,false)}else{if(r){e.addEventListener("hashchange",d,false)}}q(y)}function s(z){c.log("setState","info","history-manager");if(!u){u=z}y=z}function n(){var z,B,A,F,D,E,G,C={};switch(c.config.flickr.page_type){case"photo":z=i.photo_page.exec(k.pathname);if(z instanceof Array&&z[1]){if(z[3]==="photostream"){a=true}B=z[1];A=z[2];F=z[3]||"photostream";D=z[4]||((k.search.indexOf("page=")>-1)?k.search.split("page=")[1].split("&")[0]:undefined)||1;E=z[5]?true:undefined;G=z[6]?true:undefined;if(B){C.pathalias=B}if(A){C.photo_id=A}if(F){C.context_id=F}if(D){C.page=D}if(E){C.lightbox=E}if(G){C.tour=G}}break;case"faves":z=i.faves_page.exec(k.pathname);if(z instanceof Array&&z[1]){B=z[1];A=z[2];E=z[3]?true:undefined;if(B){C.pathalias=B}if(A){C.photo_id=A}if(E){C.lightbox=E}}break}return C}function f(A){var z="";switch(c.config.flickr.page_type){case"photo":z+="/photos/"+A.pathalias+"/"+A.photo_id+"/";if(A.context_id&&(a||A.context_id!=="photostream")){z+="in/"+A.context_id+"/"}if(A.page>1){z+="page"+A.page+"/"}else{if(A.lightbox){z+="lightbox/"}else{if(A.tour||u.tour){z+="tour/"}}}break;case"faves":z+="/photos/"+A.pathalias+"/favorites/";if(A.photo_id){z+="with/"+A.photo_id+"/"}if(A.lightbox){z+="lightbox/"}break}return z}function j(B,A){var z;for(z in B){if(B.hasOwnProperty(z)){if(!A.hasOwnProperty(z)||A[z]!==B[z]){return false}}}for(z in A){if(A.hasOwnProperty(z)){if(!B.hasOwnProperty(z)||B[z]!==A[z]){return false}}}return true}function o(C,A){c.log("pushState","info","history-manager");var B,D,z;A=A||{};B=A.replace;D=c.Lang.isString(A.title)?A.title:e.document.title;z=f(C);if(j(C,y)){return}s(C);if(g){if(B){b.replaceState(C,D,z)}else{b.pushState(C,D,z)}m()}else{if(r){w[z]=C;if(z===k.pathname||z===k.pathname+"/"){z=""}if(!z&&!p()){}else{if(!z){z="/"}if(B){k.replace("#"+z)}else{k.assign("#"+z)}}m()}}}function q(A,z){var B;z=z||{};B=z.title;o(A,{replace:true,title:B})}function t(){var z,A={};if(y){for(z in y){if(y.hasOwnProperty(z)){A[z]=y[z]}}}return A}function p(){var z=k.href.indexOf("#");if(z===-1){return""}return k.href.substr(z+1)}function m(){c.fire("historyManager:change",y)}function x(z){c.log("handlePop","info","history-manager");l(z.state)}function d(A){var z=p();if(z==="/"){z=k.pathname}l(w[z])}function l(A){c.log("handleStateChange","info","history-manager");var z;if(!A){A=n()}if(!j(A,y)){z=true}if(z){s(A);m()}}v();c.historyManager={enabled:h,pushState:o,replaceState:q,getState:t}},"0.0.1",{requires:["event"]});/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("cookie",function(C){var K=C.Lang,I=C.Object,G=null,D=K.isString,P=K.isObject,F=K.isUndefined,E=K.isFunction,H=encodeURIComponent,B=decodeURIComponent,N=C.config.doc;function J(L){throw new TypeError(L);}function M(L){if(!D(L)||L===""){J("Cookie name must be a non-empty string.");}}function A(L){if(!D(L)||L===""){J("Subcookie name must be a non-empty string.");}}C.Cookie={_createCookieString:function(Q,T,R,O){O=O||{};var V=H(Q)+"="+(R?H(T):T),L=O.expires,U=O.path,S=O.domain;if(P(O)){if(L instanceof Date){V+="; expires="+L.toUTCString();}if(D(U)&&U!==""){V+="; path="+U;}if(D(S)&&S!==""){V+="; domain="+S;}if(O.secure===true){V+="; secure";}}return V;},_createCookieHashString:function(L){if(!P(L)){J("Cookie._createCookieHashString(): Argument must be an object.");}var O=[];I.each(L,function(R,Q){if(!E(R)&&!F(R)){O.push(H(Q)+"="+H(String(R)));}});return O.join("&");},_parseCookieHash:function(S){var R=S.split("&"),T=G,Q={};if(S.length){for(var O=0,L=R.length;O0){var L=(Y===false?function(Z){return Z;}:B),U=W.split(/;\s/g),V=G,O=G,R=G;for(var Q=0,S=U.length;Q=58){j=g/58;h=g-(58*Math.floor(j));f=""+i.substr(h,1)+f;g=Math.floor(j)}return(j)?""+i.substr(j,1)+f:f}function a(l){var k="123456789abcdefghijkmnopqrstuvwxyzABCDEFGHJKLMNPQRSTUVWXYZ";var g=l.length;var f=0;var j=1;for(var h=(g-1);h>=0;h--){f=f+j*k.indexOf(l[h]);j=j*k.length}return f}e.urls={photoPage:b,favesPage:d,getShortID:c,getLongID:a}},"0.0.1");YUI.add("photo-data",function(c){var b={};function i(l){var k;if(l instanceof h){k=l}else{if(b[l.id]){k=b[l.id];k.merge_data(l)}else{k=new h(l);b[l.id]=k}}return k}function e(k){if(typeof k==="undefined"){return b}else{return b[k]}}function f(k){if(k==="0"){k=0}return !!k}function d(k){k=parseInt(k,10);if(!c.Lang.isNumber(k)){return undefined}return k}function j(k){k=parseInt(k,10);if(!c.Lang.isNumber(k)||k<0||k>3){return undefined}return k}function a(k){if(!k||!c.Lang.isObject(k)){k={}}return k}function g(k){return c.Lang.isNumber(k)&&parseInt(k,10)===k}c.PhotoData={add:i,get:e};function h(k){h.superclass.constructor.apply(this,arguments)}h.NAME="PhotoData";h.ATTRS={id:{value:""},title:{broadcast:1,value:"",setter:function(l,k){if(!c.Lang.isString(l)){if(c.Lang.isNumber(l)){l=l+""}else{l=""}}return l.replace(/^\s+$/,"")}},description:{broadcast:1,value:""},owner:{value:"",setter:function(k){if(!c.Lang.isString(k)){if(c.Lang.isObject(k)&&k.nsid){k=k.nsid}else{k=""}}return k}},ownername:{value:""},pathalias:{value:""},url:{value:"",getter:function(l,k){return c.urls.photoPage(this)}},date_posted:{broadcast:1,getter:d},is_public:{broadcast:1,getter:f},is_friend:{broadcast:1,getter:f},is_family:{broadcast:1,getter:f},perm_comment:{broadcast:1,getter:j},perm_addmeta:{broadcast:1,getter:j},perms:{getter:function(){return{is_public:this.get("is_public"),is_friend:this.get("is_friend"),is_family:this.get("is_family"),perm_comment:this.get("perm_comment"),perm_addmeta:this.get("perm_addmeta")}}},license:{broadcast:1,getter:d,setter:d},safety_level:{broadcast:1,getter:d,setter:d},needs_interstitial:{broadcast:1,value:false,getter:f,setter:f},media:{broadcast:1,value:"photo"},is_video:{getter:function(){return(this.get("media")==="video")}},secret:{value:""},deleted:{value:false},dmca_takedown:{value:false},geo:{broadcast:1,getter:function(k){if(!c.Lang.isObject(k)){k={}}return k}},perm_viewgeo:{broadcast:1,value:false},is_bad:{broadcast:1,getter:d,setter:d},content_type:{broadcast:1,getter:d,setter:d},is_fave:{broadcast:1,value:false,setter:function(m,k){m=f(m);var l=this.get(k);if(m!==l){if(m){this.increment("fave_count")}else{this.decrement("fave_count")}}if(this.get("fave_changes_pending")===0){this.set("is_confirmed_fave",m)}return m},getter:f},is_confirmed_fave:{value:undefined},fave_changes_pending:{value:0},fave_count:{broadcast:1,value:0,getter:d,setter:d},can_fave:{value:false,getter:function(){if(this.get("is_ignored")){return false}if(this.get("dmca_takedown")){return false}if(this.get("is_owner")){return false}if(!c.config.flickr.user.nsid&&!c.config.flickr.grease_enabled){return false}return true}},group_count:{broadcast:1,getter:d,setter:d},people_count:{broadcast:1,getter:d,setter:d},guestpass_count:{broadcast:1,getter:d,setter:d},is_owner:{value:false,getter:function(){return c.config.flickr.user.nsid&&c.config.flickr.user.nsid===this.get("owner")}},is_ignored:{value:false},sizes:{value:{},getter:a}};c.extend(h,c.Base,{initializer:function(k){this.merge_data(k)},merge_data:function(l){var m,k;if(typeof l.id!=="undefined"&&l.id!==this.get("id")){this.set("id",l.id)}if(typeof l.title!=="undefined"&&l.title!==this.get("title")){this.set("title",l.title)}if(typeof l.description!=="undefined"&&l.description!==this.get("description")){this.set("description",l.description)}if(typeof l.owner!=="undefined"&&l.owner!==this.get("owner")){this.set("owner",l.owner)}if(typeof l.ownername!=="undefined"&&l.ownername!==this.get("ownername")){this.set("ownername",l.ownername)}if(typeof l.pathalias!=="undefined"&&l.pathalias!==this.get("pathalias")){this.set("pathalias",l.pathalias)}if(typeof l.url!=="undefined"&&l.url!==this.get("url")){this.set("url",l.url)}if(typeof l.date_posted!=="undefined"&&l.date_posted!==this.get("date_posted")){this.set("date_posted",l.date_posted)}if(typeof l.date_taken!=="undefined"&&l.date_taken!==this.get("date_taken")){this.set("date_taken",l.date_taken)}if(typeof l.is_public!=="undefined"&&l.is_public!==this.get("is_public")){this.set("is_public",l.is_public)}if(typeof l.is_friend!=="undefined"&&l.is_friend!==this.get("is_friend")){this.set("is_friend",l.is_friend)}if(typeof l.is_family!=="undefined"&&l.is_family!==this.get("is_family")){this.set("is_family",l.is_family)}if(typeof l.perm_comment!=="undefined"&&l.perm_comment!==this.get("perm_comment")){this.set("perm_comment",l.perm_comment)}if(typeof l.perm_addmeta!=="undefined"&&l.perm_addmeta!==this.get("perm_addmeta")){this.set("perm_addmeta",l.perm_addmeta)}if(typeof l.license!=="undefined"&&l.license!==this.get("license")){this.set("license",l.license)}if(typeof l.needs_interstitial!=="undefined"&&l.needs_interstitial!==this.get("needs_interstitial")){this.set("needs_interstitial",l.needs_interstitial)}if(typeof l.safety_level!=="undefined"&&l.safety_level!==this.get("safety_level")){this.set("safety_level",l.safety_level)}if(typeof l.media!=="undefined"&&l.media!==this.get("media")){this.set("media",l.media)}if(typeof l.secret!=="undefined"&&l.secret!==this.get("secret")){this.set("secret",l.secret)}if(typeof l.is_bad!=="undefined"&&l.is_bad!==this.get("is_bad")){this.set("is_bad",l.is_bad)}if(typeof l.content_type!=="undefined"&&l.content_type!==this.get("content_type")){this.set("content_type",l.content_type)}if(typeof l.is_faved!=="undefined"&&l.is_faved!==this.get("is_fave")){this.set("is_fave",l.is_faved)}if(typeof l.is_fave!=="undefined"&&l.is_fave!==this.get("is_fave")){this.set("is_fave",l.is_fave)}if(typeof l.fave_count!=="undefined"&&l.fave_count!==this.get("fave_count")){this.set("fave_count",l.fave_count)}if(typeof l.geo!=="undefined"&&l.geo!==this.get("geo")){this.set("geo",l.geo)}if(typeof l.perm_viewgeo!=="undefined"&&l.perm_viewgeo!==this.get("perm_viewgeo")){this.set("perm_viewgeo",l.perm_viewgeo)}if(typeof l.woe!=="undefined"&&l.woe!==this.get("woe")){this.set("woe",l.woe)}if(typeof l.group_count!=="undefined"&&l.group_count!==this.get("group_count")){this.set("group_count",l.group_count)}if(typeof l.people_count!=="undefined"&&l.people_count!==this.get("people_count")){this.set("people_count",l.people_count)}if(typeof l.guestpass_count!=="undefined"&&l.guestpass_count!==this.get("guestpass_count")){this.set("guestpass_count",l.guestpass_count)}if(l.sizes&&c.Lang.isObject(l.sizes)){m=l.sizes}else{m={};if(l.url_sq){m.sq={url:l.url_sq,width:parseInt(l.width_sq,10),height:parseInt(l.height_sq,10)}}if(l.url_t){m.t={url:l.url_t,width:parseInt(l.width_t,10),height:parseInt(l.height_t,10)}}if(l.url_s){m.s={url:l.url_s,width:parseInt(l.width_s,10),height:parseInt(l.height_s,10)}}if(l.url_m){m.m={url:l.url_m,width:parseInt(l.width_m,10),height:parseInt(l.height_m,10)}}if(l.url_z){m.z={url:l.url_z,width:parseInt(l.width_z,10),height:parseInt(l.height_z,10)}}if(l.url_l){m.l={url:l.url_l,width:parseInt(l.width_l,10),height:parseInt(l.height_l,10)}}if(l.url_o){m.o={url:l.url_o,width:parseInt(l.width_o,10),height:parseInt(l.height_o,10)}}if(l.media==="video"){if(l.height_v){m.v={width:parseInt(l.width_v,10),height:parseInt(l.height_v,10)}}}}if(c.Object.size(m)){k=this.get("sizes")||{};c.Object.each(k,function(n,o){if(m[o]){m[o]=c.merge(n,m[o])}});this.set("sizes",c.merge(k,m))}},toggle_fave:function(){var l=this,k,o,m,n;if(!this.get("can_fave")){return}if(c.config.flickr.grease_enabled&&!c.config.flickr.user.nsid){c.grease.addFave(this.get("id"));c.grease.authenticate();return}k=!this.get("is_fave");o="flickr.favorites."+(k?"add":"remove");m={photo_id:this.get("id")};n={success:function(){var p,q,r,s;p=l.get("id");l.decrement("fave_changes_pending");l.set("is_confirmed_fave",k);if(l.get("fave_changes_pending")===0){l.set("is_fave",k)}q="faves-"+(c.config.flickr.user.pathalias?c.config.flickr.user.pathalias:c.config.flickr.user.nsid);r=c.ContextData.getContext(q);if(r){s=r.getPhotoPosition(p)}if(k){if(r){if(c.ContextData.getPrevLimit(q)===s){c.ContextData.unremovePhoto(q,s)}else{c.ContextData.invalidate(q)}}else{if(c.config.flickr.page_type==="photo"&&l.get("id")===c.config.flickr.photo.id){c.ContextData.add({id:q,user_id:c.config.flickr.user.nsid,type:"faves",title:c.transjax.get("photo","your_favorites"),url:c.config.flickr.user.photos_url+"favorites/",photos:{"0":l}})}}}else{if(r&&c.Lang.isNumber(s)){c.ContextData.removePhoto(q,s)}}},failure:function(){l.decrement("fave_changes_pending");if(l.get("fave_changes_pending")===0){l.set("is_fave",l.get("is_confirmed_fave"))}}};this.set("is_fave",k);this.increment("fave_changes_pending");c.flickrAPI.callMethod(o,m,n)},record_interstitial_clickthrough:function(){var k=this.get("owner");c.Object.each(b,function(l,m){if(l.get("owner")===k){l.set("needs_interstitial",false)}});c.flickrAPI.callMethod("flickr.people.recordInterstitialClickthrough",{user_id:k},function(){})},increment:function(k){if(!g(this.get(k))){return false}return this.add(k,1)},decrement:function(k){if(!g(this.get(k))){return false}return this.add(k,-1)},add:function(l,m){var n=this.get(l),k;if(!c.Lang.isNumber(n)||!c.Lang.isNumber(m)){return false}k=n+m;if(this.set(l,k)){return k}else{return false}}})},"0.0.1",{requires:["anim","base","cookie","event","gallery-flickr-api","grease","node","photo-transjax","urls"]});YUI.add("context-data",function(b){var i={},t;function m(u){var v=new e(u);i[v.id]=v;v.on("totalChange",function(w){b.fire("ContextData:totalChange",v.id,w)});v.on("photoLoaded",function(w,x){b.fire("ContextData:photoLoaded",v.id,w,x)});v.on("photoRemoved",function(w,x){b.fire("ContextData:photoRemoved",v.id,w,x)});v.on("photoUnremoved",function(w,x){b.fire("ContextData:photoUnremoved",v.id,w,x)});v.on("photoLoadFailure",function(w){b.fire("ContextData:photoLoadFailure",v.id,w)});v.on("limitsReached",function(x,w){b.fire("ContextData:limitsReached",v.id,x,w)});v.on("prevLimitReached",function(w){b.fire("ContextData:prevLimitReached",v.id,w)});v.on("nextLimitReached",function(w){b.fire("ContextData:nextLimitReached",v.id,w)});b.on("historyManager:change",function(w){if(w.context_id&&w.context_id!==t){l(w.context_id)}});if(u.open){l(v.id)}b.fire("ContextData:contextAdded",v);return v}function s(v){var u=i[v];if(!u){return}i[v]=undefined;delete i[v];if(t===v){l("photostream")}b.fire("ContextData:contextRemoved",v)}function k(u){b.fire("ContextData:contextInvalidated",u)}function o(u){var x=j(u),z=x.type,E=x.set_id,C=x.group_id,A=x.gallery_id,D=x.user_id,v=x.owner_name_possessive,B=x.title,w=x.url,y=u===t;s(u);m({id:u,set_id:E,group_id:C,gallery_id:A,user_id:D,owner_name_possessive:v,type:z,title:B,url:w,photos:{"0":b.PhotoData.get(b.config.flickr.photo.id)},open:y})}function j(u){if(u){return i[u]}else{if(t){return i[t]}else{return undefined}}}function g(){return b.Object.values(i)}function p(v,u){if(i[v]){return i[v].loadPhoto(u)}}function d(v,u){if(i[v]){return i[v].removePhoto(u)}}function q(v,u){if(i[v]){return i[v].unremovePhoto(u)}}function n(v,u){return i[v]?i[v].getPhoto(u):undefined}function r(v,u){return i[v]?i[v].getPhotoPosition(u):undefined}function h(v){var u={};b.Object.each(i,function(x,y){var w=r(y,v);if(b.Lang.isNumber(w)){u[y]=w}});return u}function c(u){return i[u]?i[u].prev_limit:undefined}function f(u){return i[u]?i[u].next_limit:undefined}function l(u){t=u;if(a()){b.fire("ContextData:open",u)}}function a(){if(!b.historyManager.enabled){return true}var u=b.historyManager.getState(),v;switch(b.config.flickr.page_type){case"photo":if(u.context_id!==t){u.context_id=t;b.historyManager.replaceState(u);v=true}break;case"faves":v=false;break}return v}b.ContextData={add:m,remove:s,reload:o,invalidate:k,getContext:j,getContexts:g,loadPhoto:p,removePhoto:d,unremovePhoto:q,getPhoto:n,getPhotoPosition:r,getPhotoPositions:h,getPrevLimit:c,getNextLimit:f,open:l};function e(u){this.id=u.id;this.type=u.type;this.set_id=u.set_id;this.group_id=u.group_id;this.gallery_id=u.gallery_id;this.user_id=u.user_id;this.owner_name_possessive=u.owner_name_possessive;this.title=u.title||"";this.url=u.url||"";this.order_by=u.order_by||"";this.total=parseInt(u.total,10);this.removed={};if(b.config.flickr.filmstrips&&b.config.flickr.filmstrips.enable_filmstrip_timelines){this.start_position=parseInt(u.start_position,10)}this.photos={};if(!b.Lang.isNumber(this.total)){this.total=undefined}this.prev_limit=u.prev_limit;this.next_limit=u.next_limit;b.Object.each(u.photos,function(w,v){this.setPhoto(v,b.PhotoData.add(w))},this);this.next_batch={};this.loading_batches={}}e.prototype={getPhoto:function(u){return this.photos[u+""]},setPhoto:function(u,v){this.photos[u+""]=v},getPhotoPosition:function(v){var u;b.Object.some(this.photos,function(w,x){if(w.get("id")===v){u=x;return true}});return parseInt(u,10)},loadPhoto:function(u){var w=this.getPhoto(u),v,x;if(w){this.fire("photoLoaded",u,w)}else{v=b.Lang.isNumber(this.prev_limit)&&uthis.next_limit;if(v||x){if(v){this.fire("prevLimitReached",this.prev_limit)}if(x){this.fire("nextLimitReached",this.next_limit)}if(v&&x){this.fire("limitsReached",this.prev_limit,this.next_limit)}}else{this.fetch(u)}}},removePhoto:function(u){var v=this.getPhoto(u);this.removed[u+""]=true;this.fire("photoRemoved",u,v)},unremovePhoto:function(u){var v=this.getPhoto(u);this.removed[u+""]=undefined;delete this.removed[u+""];this.fire("photoUnremoved",u,v)},inBatchRange:function(v,u){return(v&&v.range&&u>=v.range[0]&&u<=v.range[1])},inNextBatch:function(u){return this.inBatchRange(this.next_batch,u)},inLoadingBatch:function(u){var w,v;for(w in this.loading_batches){if(this.loading_batches.hasOwnProperty(v)){v=this.loading_batches[w];if(this.inBatchRange(v,u)){return true}}}return false},addToNextBatch:function(w){var x,A,z,v,y,u,B;x=this.next_batch.positions||[];x.push(w);A=x.sort(b.Array.numericSort);this.next_batch.positions=A;z=this.getClosestLoadedPosition(x);if(b.Lang.isNumber(z)){v=z;y=this.getPhoto(z).get("id");u=z-A[0];B=A[A.length-1]-z;if(u<0){u=0}if(B<0){B=0}this.next_batch.range=[v-u,v+B];this.next_batch.params={start_pos:v,photo_id:y,num_prev:u,num_next:B};if(!this.next_batch.handle){this.next_batch.handle=b.later(500,this,this.fetchBatch)}}else{b.log("No photo was found in the context. At least one photo is needed to fetch data.","error","context-data")}},fetch:function(u){if((b.Lang.isNumber(this.prev_limit)&&uthis.next_limit)||this.inNextBatch(u)||this.inLoadingBatch(u)){return}this.addToNextBatch(u);return},fetchBatch:function(){var z,D,B,v,w,A,u,x,y,E,C;z=this.next_batch;this.next_batch={};D=z.range.toString();this.loading_batches[D]=z;B=z.params.start_pos;v=z.params.photo_id;w=z.params.num_prev;A=z.params.num_next;switch(this.type){case"contacts":u="flickr.contacts.getContext";x={photo_id:v,num_prev:A,num_next:w};y=true;break;case"photosof":u="flickr.photos.people.getContext";x={user_id:this.user_id,photo_id:v,num_prev:A,num_next:w};y=true;break;case"faves":u="flickr.favorites.getContext";x={user_id:this.user_id,photo_id:v,num_prev:A,num_next:w};y=true;break;case"gallery":u="flickr.galleries.getContext";x={gallery_id:this.gallery_id,photo_id:v,num_prev:w,num_next:A};break;case"photolist":u="flickr.photolist.getContext";x={photolist_id:this.id.split("photolist-")[1],photo_id:v,num_prev:w,num_next:A};break;case"pool":u="flickr.groups.pools.getContext";x={group_id:this.group_id,photo_id:v,num_prev:A,num_next:w};y=true;break;case"search":break;case"set":u="flickr.photosets.getContext";x={photoset_id:this.set_id,photo_id:v,num_prev:A,num_next:w};y=true;break;case"stream":u="flickr.photos.getContext";x={photo_id:v,num_prev:A,num_next:w,order_by:this.order_by==="datetaken"?"datetaken":(this.order_by==="dateposted"?"dateposted":"")};y=true;break;case"tags":break;case"timescrubber":break}if(!v||(!w&&!A)||!u||!x){return}x.extras="url_sq,url_t,url_s,url_m,url_z,url_l,url_o,video_size,owner_name,path_alias,icon_server,needs_interstitial";C=this;E={success:function(H){var J,G,L,N,I,F,K,M;C.loading_batches[D]=undefined;delete C.loading_batches[D];M=parseInt(H.data.count._content,10);L=(H.data.prevphotos&&b.Lang.isArray(H.data.prevphotos.photo))?H.data.prevphotos.photo:[];N=(H.data.nextphotos&&b.Lang.isArray(H.data.nextphotos.photo))?H.data.nextphotos.photo:[];if(b.Lang.isNumber(M)){if(M!==parseInt(C.total,10)){C.total=M;C.fire("totalChange",C.total)}}J=y?L:N;G=y?N:L;for(I=J.length-1;I>=0;I--){K=parseInt(B,10)+1+I;if(!C.getPhoto(K)){F=b.PhotoData.add(J[I]);C.setPhoto(K,F);C.fire("photoLoaded",K,F)}}for(I=G.length-1;I>=0;I--){K=parseInt(B,10)-1-I;if(!C.getPhoto(K)){F=b.PhotoData.add(G[I]);C.setPhoto(K,F);C.fire("photoLoaded",K,F)}}if(w>G.length){C.prev_limit=B-G.length;C.fire("prevLimitReached",C.prev_limit)}if(A>J.length){C.next_limit=B+J.length;C.fire("nextLimitReached",C.next_limit)}if((w>G.length||A>J.length)&&b.Lang.isNumber(C.prev_limit)&&b.Lang.isNumber(C.next_limit)){C.fire("limitsReached",C.prev_limit,C.next_limit)}},failure:function(G){var F=C.getPhotoPosition(z.params.photo_id);b.Array.each(z.positions,function(H){C.fire("photoLoadFailure",H)});if(G&&G.data){if((C.type==="contacts"&&G.data.code===2)||(C.type==="photosof"&&G.data.code===3)||(C.type==="faves"&&G.data.code===3)||(C.type==="gallery"&&G.data.code===3)||(C.type==="pool"&&G.data.code===2)||(C.type==="set"&&G.data.code===2)||(C.type==="stream"&&G.data.code===1)){b.log("The getContext API request failed because the key photo is not in the context","error","context-data");C.removePhoto(F)}else{if((C.type==="contacts"&&G.data.code===1)||(C.type==="photosof"&&G.data.code===1)||(C.type==="faves"&&G.data.code===1)||(C.type==="gallery"&&G.data.code===1)||(C.type==="pool"&&G.data.code===1)||(C.type==="set"&&G.data.code===1)||(C.type==="stream"&&G.data.code===1)||(C.type==="photolist"&&G.data.code===1)){b.log("The getContext API request failed because the key photo does not exist","error","context-data");C.getPhoto(F).set("deleted",true)}}}C.loading_batches[D]=undefined;delete C.loading_batches[D]}};if(u&&x&&E){b.flickrAPI.callMethod(u,x,E)}return this},getClosestLoadedPosition:function(x){var w,v,u,y;w=b.Object.keys(this.photos);v=0;b.Array.each(x,function(z){v+=parseInt(z,10)});u=v/x.length;w.sort(function(A,z){var C,B;C=Math.abs(A-u);B=Math.abs(z-u);return(C-B)});b.Array.some(w,function(z){if(this.photos[z].get("deleted")!==true){y=z;return true}},this);return parseInt(y,10)}};b.augment(e,b.EventTarget)},"0.0.1",{requires:["event-custom","gallery-flickr-api","history-manager","photo-data","urls"]});YUI.add("event-annotations",function(e){var c={},b=100;function d(g){var f;switch(g.type){case"key":f=g.which+g.pageX+g.pageY;break;default:f=g.type+g.pageX+g.pageY;break}return f}function a(f){delete (c[f])}e.eventAnnotations={add:function(i,h){var g;var f=d(i);if(e.Lang.isObject(i)&&e.Lang.isObject(i._event)&&e.Lang.isObject(h)){var j=e.later(b,this,a,f);g=c[f]||{};e.mix(g,h,true);if(g.timer){g.timer.cancel()}g.timer=j;c[f]=g}},get:function(i,g){var f=d(i);var h=c[f]||{};if(h.timer){h.timer.cancel()}h.timer=e.later(b,this,a,f);if(g){return h[g]}else{return h}}}},"0.0.1",{});YUI.add("event-mousedrag",function(c){var b,q,l,d,g;q="mousedrag";l={};d=20;g=true;function n(u,t,r,s){c.Array.each(u,function(w){var v={};if(w.notifiers[r]){v.mouseTarget=t;v.start={clientX:s.start[0],clientY:s.start[1],nodeX:h(s.start[0],w.node),nodeY:f(s.start[1],w.node)};v.current={diffX:s.current[0]-s.start[0],diffY:s.current[1]-s.start[1],clientX:s.current[0],clientY:s.current[1],nodeX:h(s.current[0],w.node),nodeY:f(s.current[1],w.node)};v.clientRegion={left:v.start.clientXs){r=s}}return r}function f(t,u){var s,v,r;s=o(u);v=t+s[1];r=s[3];if(g){if(v<0){v=0}if(v>r){v=r}}return v}function a(s,r){return[h(clientX),f(clientY)]}function i(s,r){return Math.sqrt(s*s+r*r)}function e(){var v,s,r,u,t;if(b){return}b=true;v=[];u={start:[],current:[]};t=u;c.one("html").on(q+"|mousedown",c.throttle(function(w){if(c.eventAnnotations.get(w,"ignoreDrag")){return}if(w.button!==1){return}v=j(w.target);s=w.target;if(!v.length){return}r=true;w.preventDefault();t.start=[w.clientX,w.clientY]},d));c.one("html").on(q+"|mousemove",c.throttle(function(w){var x;if(!v.length){return}if(r){t.current=[w.clientX,w.clientY]}c.Array.each(v,function(y){if(y.threshold_met){n(v,s,"mousedrag:step",t)}else{x=i((Math.abs(t.current[0]-t.start[0])),(Math.abs(t.current[1]-t.start[1])));if(x>y.pixel_threshold){n(v,s,"mousedrag:start",t);y.threshold_met=true}}})},d));c.one("html").on(q+"|mouseup",c.throttle(function(w){if(w.button!==1){return}if(!v.length){return}c.Array.each(v,function(x){if(x.threshold_met){n(v,s,"mousedrag:end",t);x.threshold_met=false}});v=[];r=false;t=u},d))}function j(s){var r=[];c.Object.each(l,function(u,t){if(u.node.contains(s)){r.push(u)}});return r}function m(){if(!b){return}b=false;c.detach(q+"|mousedown");c.detach(q+"|mousemove");c.detach(q+"|mouseup")}function k(s,u,r,t){var v=u.get("_yuid");r._evtGuid=t.id;if(!l[v]){l[v]={node:u,notifiers:{},pixel_threshold:1}}if(!l[v].notifiers[s]){l[v].notifiers[s]=t}e()}function p(s,u,r,t){}c.Event.define("mousedrag:start",{on:function(t,r,s){k("mousedrag:start",t,r,s)},detach:function(t,r,s){p("mousedrag:start",t,r,s)}});c.Event.define("mousedrag:step",{on:function(t,r,s){k("mousedrag:step",t,r,s)},detach:function(t,r,s){p("mousedrag:step",t,r,s)}});c.Event.define("mousedrag:end",{on:function(t,r,s){k("mousedrag:end",t,r,s)},detach:function(t,r,s){p("mousedrag:end",t,r,s)}})},"0.0.1",{requires:["node","event-custom-complex","event-synthetic","event-annotations"]});YUI.add("global-dialog-transjax",function(a){a.transjax.add("global-dialog",{button_confirm:'OKAY',button_cancel:'CANCEL'})},"0.0.1",{requires:["transjax-base"]});YUI.add("global-dialog",function(b){var a=function(){var c=this,e=(b.UA.ie&&(b.UA.ie<7||(typeof document.documentMode!=="undefined"?document.documentMode===5:false)||!document.compatMode.match(/css1compat/i))),d="global_dialog",f=(b.UA.ie&&b.UA.ie<7);this.spinner=null;this.is_modal=false;this.events_on=false;this.o_shadows=null;this.is_showing=false;this.style=(typeof b.config!=="undefined"&&typeof b.config.flickr!=="undefined"&&!b.config.flickr.is_zeus?"style_2009":"default");this.last_style=null;this.on_escape_handler=null;this.o=null;this.o_container=null;this.o_cover=null;this.timestamp=null;this.get_elements=function(){if(!c.o_cover){c.o_cover=b.one("#global-dialog-background")}if(!c.o||!c.o_container){c.o=b.one("#"+d);if(!c.o){return false}else{c.o_container=c.o.one("div.global_dialog_container");if(c.o){c.o_shadows={left:b.one("div.shadow_l"),right:b.one("div.shadow_r")};return true}}}else{return true}};this.reposition=function(){var h,g,i;if(e){if(window.innerWidth){g=window.pageXOffset;i=window.pageYOffset}else{g=document.body.scrollLeft;i=document.body.scrollTop}}if(!c.get_elements()){if(e){if(c.spinner){c.spinner.style.top=(i+parseInt((document.documentElement.clientHeight||document.body.clientHeight)/2,10)+"px")}c.position_cover()}return false}h=parseInt(c.o_container.get("offsetHeight"),10);if(h&&c.o_shadows&&c.o_shadows.left&&c.o_shadows.right){c.o_shadows.left.setStyle("height",(h+"px"));c.o_shadows.right.setStyle("height",(h+"px"))}c.o.setStyle("marginLeft",-(c.o.get("offsetWidth")/2)+"px");c.o.setStyle("marginTop",-(c.o.get("offsetHeight")/2)+"px");c.o.setStyle("left","50%");c.o.setStyle("top","50%");if(e){c.o.setStyle("top",(i+parseInt((document.documentElement.clientHeight||document.body.clientHeight)/2,10)+"px"))}};this.show=function(g){if(typeof g!=="undefined"&&typeof g.loading!=="undefined"){c.set_loading(g.loading?true:false)}if(!c.get_elements()){return false}if(typeof g!=="undefined"){if((typeof g.modal==="undefined")||(typeof g.modal!=="undefined"&&g.modal!==false)){c.set_modal(true)}else{c.set_modal(false)}if(typeof g.style!=="undefined"){c.set_style(g.style)}else{c.set_style(c.style)}if(typeof g.width!=="undefined"){c.set_width(g.width)}c.set_short_message_style((typeof g.short_message!=="undefined"&&g.short_message))}else{c.set_modal(true)}if(!c.is_showing){if(g&&typeof g.left!=="undefined"){c.o.setStyle("left",g.left);c.o.setStyle("top",g.top);c.o.setStyle("display","block");c.is_showing=true}else{c.o.setStyle("left","-9999px");c.o.setStyle("top","-9999px");c.o.setStyle("display","block");c.reposition();c.is_showing=true}}};this.hide=function(g){if(b.focusTracker&&b.focusTracker.isInput()){b.focusTracker.blur()}c.set_modal();if(e){c.detach_events()}c.detach_key_events();if(g&&g.loading){c.set_loading(true)}else{c.set_loading(false)}if(!c.get_elements()){return false}if(c.is_showing){c.o.setStyle("display","none");c.is_showing=false}c.on_escape_handler=null;if(c.modal_remove_handler&&c.modal_remove_handler.detach){c.modal_remove_handler.detach()}if(c.modal_remove_key_handler&&c.modal_remove_key_handler.detach){c.modal_remove_key_handler.detach()}};this.set_width=function(g){if(!c.get_elements()){return false}if(g){c.o.setStyle("width","auto");c.o_container.setStyle("width",g+(g==="auto"?"":"px"))}else{c.o.setStyle("width","auto");c.o_container.setStyle("width",(b.UA.ie&&b.UA.ie<7?"334px":"320px"))}c.reposition()};this.set_style=function(g){if(!c.get_elements()){return false}if(c.last_style){c.o.removeClass(c.last_style)}if(g){c.o.addClass(g)}c.last_style=g;c.reposition()};this.set_short_message_style=function(g){c.use_short_message_style=g;if(!c.get_elements()){return false}c.o.removeClass("style_2009");if(g){c.o.removeClass("global_dialog");c.o.addClass("global-dialog-short-msg");if(c.is_modal){c.modal_remove_handler=c.o_cover.once("click",function(){c.hide()});c.modal_remove_key_handler=b.once("key",function(){if(b.contextManager){b.contextManager.unset(b.contextManager.get())}c.hide()},window,"down:13,27")}}else{c.o.removeClass("global-dialog-short-msg");c.o.addClass("global_dialog")}c.reposition()};this.set_spinner=function(g){if(g){if(!c.spinner){c.spinner=document.createElement("div");c.spinner.className="global_dialog_spinner";document.body.appendChild(c.spinner);if(e){c.position_cover()}}c.spinner.style.display="block"}else{if(c.spinner){c.spinner.style.display="none"}}};this.set_modal=function(g){c.is_modal=g;if(!c.o_cover){return false}if(g){if(e){c.o_cover.setStyle("position","absolute");c.position_cover();c.attach_events()}else{c.o_cover.setStyle("position","fixed")}c.attach_key_events();var h=35;c.o_cover.setStyle("backgroundColor","#000");c.o_cover.setStyle("opacity",h/100);c.o_cover.setStyle("MozOpacity",h/100);c.o_cover.setStyle("filter","alpha(opacity="+h+")");c.o_cover.setStyle("display","block")}else{c.o_cover.setStyle("position","absolute");c.o_cover.setStyle("display","none");c.detach_events();c.detach_key_events()}};this.set_loading=function(g){if(!c.o_cover){return false}if(g){c.set_spinner(g);c.o_cover.removeClass("loaded");c.o_cover.addClass("loading");if(!c.is_modal){c.set_modal(true)}}else{c.set_spinner(g);c.o_cover.removeClass("loading");c.o_cover.addClass("loaded");if(c.is_modal){c.set_modal(false)}}};this.remove_existing_dialog=function(){if(c.o){try{c.o._node.parentNode.removeChild(c.o._node);c.o=null;return true}catch(g){return false}}};this.create_dialog=function(j,h){if(c.o){c.remove_existing_dialog();c.o=null}c.timestamp=(new Date()).getTime();c.last_style=null;c.is_showing=false;var i=document.createElement("div");document.body.appendChild(i);c.o=b.one(i);c.o.set("id","global_dialog");c.o.set("className","global_dialog");var g="";if(b.config.flickr.enable_global_dialog_maximizer){b.log("assign maximizer handler");c.o.on("click",function(k){if(k.target.test(".global-dialog-admin-maximizer a")){k.preventDefault();c.o.addClass("global-dialog-maximized")}});g=''}c.o.set("innerHTML",'
                  '+j+"
                  "+g+"
                  ");c.o_container=null;c.get_elements();if(h&&h.style){c.set_style(h.style)}else{c.set_style(c.style)}if(h&&h.width){c.set_width(h.width)}else{c.set_width()}return c};this.create_confirmation_dialog=function(h,p,n){var i,j,g,m,q,l,o,k;h=h||"";i={CONFIRM:b.transjax.get("global-dialog","button_confirm"),CANCEL:b.transjax.get("global-dialog","button_cancel"),width:330,loading:false,modal:true,confirm_butt_class:"Butt",cancel_butt_class:"CancelButt",checkboxes:[],photo:{},scope:window};if(!b.Lang.isObject(n)){n={}}i=b.mix(n,i);q=b.guid();l=b.guid();j="";if(i.photo&&i.photo.url){j='
                  "}g="";if(i.checkboxes.length){b.Array.each(i.checkboxes,function(r){g+='
                  "})}k=' ';if(i.confirm_butt_class==="BigAssButt"){k=' '+i.CONFIRM+""}m='
                  '+h+j+g+'
                  '+k+'
                  ';b.global_dialog.remove_existing_dialog();b.global_dialog.create_dialog(m,i).show(i);o=b.delegate("click",function(s){var t,r;t=(s.target.get("id")===q);r={};if(i.checkboxes.length){r.checkboxes=[];c.o_container.all('input[type="checkbox"]').each(function(u){r.checkboxes.push(u.get("checked"))})}b.global_dialog.hide();p.apply(i.scope,[t,r]);s.preventDefault();o.detach()},c.o_container,'.button_container input[type="button"], .button_container a.BigAssButt')};this.create_alert_dialog=function(l,m,k){var h,j,i,g;h={CONFIRM:b.transjax.get("global-dialog","button_confirm"),width:330,loading:false,modal:true};if(!b.Lang.isObject(k)){k={}}h=b.mix(k,h);i=b.guid();j='
                  '+l+'
                  ';b.global_dialog.remove_existing_dialog();b.global_dialog.create_dialog(j,h).show(h);b.delegate("click",function(){b.global_dialog.hide();m.apply(window,[true])},this.o_container,"#"+i)};this.position_cover=function(h){var g,i;if(!h){h=b.one(c.o_cover)}c.get_elements();if(h){if(window.innerWidth){g=window.pageXOffset;i=window.pageYOffset}else{g=document.body.scrollLeft;i=document.body.scrollTop}h.setStyle("width","100%");h.setStyle("height",(document.documentElement.clientHeight||document.body.clientHeight)+"px");h.setStyle("top",i+"px");h.setStyle("left",g+"px")}};this.legacy_resize_handler=function(){c.reposition();c.position_cover()};this.legacy_scroll_handler=function(){c.reposition();c.position_cover()};this.key_handler=function(h){var g=h.which||h.keyCode;if(g===27){if(b.contextManager){b.contextManager.unset(b.contextManager.get())}c.hide()}};this.attach_events=function(){if(c.events_on){return false}c.events_on=true;c.resize_event_handle=b.on("resize",c.legacy_resize_handler,window,c,true);c.scroll_event_handle=b.on("scroll",c.legacy_scroll_handler,window,c,true)};this.attach_key_events=function(){c.key_event_handle=b.on("key",c.key_handler,window,"up:27",c,true)};this.detach_events=function(){if(!c.events_on){return false}c.events_on=false;if(c.resize_event_handle){c.resize_event_handle.detach()}if(c.scroll_event_handle){c.scroll_event_handle.detach()}};this.detach_key_events=function(){if(c.key_event_handle){c.key_event_handle.detach()}};this.get_elements()};b.global_dialog=new a()},"0.0.1",{requires:["context-manager","event","event-custom","event-delegate","event-key","focus-tracker","global-dialog-css","global-dialog-transjax","node"]});YUI.add("math",function(a){a.Math={hypotenuse:function(d,c){return Math.sqrt(d*d+c*c)}}},"0.0.1",{});YUI.add("fave-star",function(f){function b(m,h,o){var i,l,g,n,k,j;o=(o||f.one("body"));i=m.one(".star");if(!i){return}l=f.Node.create('');n=-1053-8;k=-51-8;if(h){l.addClass("unfave");k=-11-8}g=f.Node.create('
                  ');g.append(l);o.append(g);g.setXY([i.getX()-i.get("offsetWidth")/2,i.getY()-i.get("offsetHeight")/2]);j=new f.Anim({node:l,to:{width:2080*2,height:120*2,marginLeft:n,marginTop:k,opacity:0},duration:0.4,easing:f.Easing.easeOut});j.on("end",function(){g.remove()});j.run()}function e(g){if(f.Lang.isString(g)){g=f.one(g)}if(!g instanceof f.Node){return}return g}function c(h,g){var i;h=e(h);if(!h){return}i=h.one(".star");if(i){b(h,false,g);i.set("innerHTML","★")}h.addClass("fave")}function d(h,g){var i;h=e(h);if(!h){return}i=h.one(".star");if(i){b(h,true,g);i.set("innerHTML","☆")}h.removeClass("fave")}function a(h,g){h=e(h);if(!h){return}if(h.hasClass("fave")){d(h,g)}else{c(h,g)}}f.faveStar={fave:c,unfave:d,toggle_fave:a}},"0.0.1",{requires:["node","anim"]});/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("widget-stdmod",function(b){var f=b.Lang,q=b.Node,x=b.UA,e=b.Widget,d="",J="hd",G="bd",j="ft",D="header",M="body",K="footer",N="fillHeight",m="stdmod",u="Node",I="Content",C="firstChild",h="childNodes",n="ownerDocument",v="contentBox",z="height",F="offsetHeight",y="auto",l="headerContentChange",B="bodyContentChange",o="footerContentChange",r="fillHeightChange",t="heightChange",O="contentUpdate",w="renderUI",E="bindUI",g="syncUI",H="_applyParsedConfig",s=b.Widget.UI_SRC;function P(L){this._stdModNode=this.get(v);b.before(this._renderUIStdMod,this,w);b.before(this._bindUIStdMod,this,E);b.before(this._syncUIStdMod,this,g);}P.HEADER=D;P.BODY=M;P.FOOTER=K;P.AFTER="after";P.BEFORE="before";P.REPLACE="replace";var k=P.HEADER,A=P.BODY,p=P.FOOTER,a=k+I,c=p+I,i=A+I;P.ATTRS={headerContent:{value:null},footerContent:{value:null},bodyContent:{value:null},fillHeight:{value:P.BODY,validator:function(L){return this._validateFillHeight(L);}}};P.HTML_PARSER={headerContent:function(L){return this._parseStdModHTML(k);},bodyContent:function(L){return this._parseStdModHTML(A);},footerContent:function(L){return this._parseStdModHTML(p);}};P.SECTION_CLASS_NAMES={header:e.getClassName(J),body:e.getClassName(G),footer:e.getClassName(j)};P.TEMPLATES={header:'
                  ',body:'
                  ',footer:'
                  '};P.prototype={_syncUIStdMod:function(){var L=this._stdModParsed;if(!L||!L[a]){this._uiSetStdMod(k,this.get(a));}if(!L||!L[i]){this._uiSetStdMod(A,this.get(i));}if(!L||!L[c]){this._uiSetStdMod(p,this.get(c));}this._uiSetFillHeight(this.get(N));},_renderUIStdMod:function(){this._stdModNode.addClass(e.getClassName(m));this._renderStdModSections();},_renderStdModSections:function(){if(f.isValue(this.get(a))){this._renderStdMod(k);}if(f.isValue(this.get(i))){this._renderStdMod(A);}if(f.isValue(this.get(c))){this._renderStdMod(p);}},_bindUIStdMod:function(){this.after(l,this._afterHeaderChange);this.after(B,this._afterBodyChange);this.after(o,this._afterFooterChange);this.after(r,this._afterFillHeightChange);this.after(t,this._fillHeight);this.after(O,this._fillHeight);},_afterHeaderChange:function(L){if(L.src!==s){this._uiSetStdMod(k,L.newVal,L.stdModPosition);}},_afterBodyChange:function(L){if(L.src!==s){this._uiSetStdMod(A,L.newVal,L.stdModPosition);}},_afterFooterChange:function(L){if(L.src!==s){this._uiSetStdMod(p,L.newVal,L.stdModPosition);}},_afterFillHeightChange:function(L){this._uiSetFillHeight(L.newVal);},_validateFillHeight:function(L){return !L||L==P.BODY||L==P.HEADER||L==P.FOOTER;},_uiSetFillHeight:function(R){var Q=this.getStdModNode(R);var L=this._currFillNode;if(L&&Q!==L){L.setStyle(z,d);}if(Q){this._currFillNode=Q;}this._fillHeight();},_fillHeight:function(){if(this.get(N)){var L=this.get(z);if(L!=d&&L!=y){this.fillHeight(this._currFillNode);}}},_uiSetStdMod:function(S,R,L){if(f.isValue(R)){var Q=this.getStdModNode(S)||this._renderStdMod(S);this._addStdModContent(Q,R,L);this.set(S+I,this._getStdModContent(S),{src:s});}else{this._eraseStdMod(S);}this.fire(O);},_renderStdMod:function(R){var L=this.get(v),Q=this._findStdModSection(R);if(!Q){Q=this._getStdModTemplate(R);}this._insertStdModSection(L,R,Q);this[R+u]=Q;return this[R+u];},_eraseStdMod:function(Q){var L=this.getStdModNode(Q);if(L){L.remove(true);delete this[Q+u];}},_insertStdModSection:function(L,S,R){var Q=L.get(C);if(S===p||!Q){L.appendChild(R);}else{if(S===k){L.insertBefore(R,Q);}else{var T=this[p+u];if(T){L.insertBefore(R,T);}else{L.appendChild(R);}}}},_getStdModTemplate:function(L){return q.create(P.TEMPLATES[L],this._stdModNode.get(n));},_addStdModContent:function(R,Q,L){switch(L){case P.BEFORE:L=0;break;case P.AFTER:L=undefined;break;default:L=P.REPLACE;}R.insert(Q,L);},_getPreciseHeight:function(R){var L=(R)?R.get(F):0,S="getBoundingClientRect";if(R&&R.hasMethod(S)){var Q=R.invoke(S);if(Q){L=Q.bottom-Q.top;}}return L;},_findStdModSection:function(L){return this.get(v).one("> ."+P.SECTION_CLASS_NAMES[L]);},_parseStdModHTML:function(Q){var L=this._findStdModSection(Q);if(L){if(!this._stdModParsed){this._stdModParsed={};b.before(this._applyStdModParsedConfig,this,H);}this._stdModParsed[Q+I]=1;return L.get("innerHTML");}return null;},_applyStdModParsedConfig:function(S,L,R){var Q=this._stdModParsed;if(Q){Q[a]=!(a in L)&&(a in Q);Q[i]=!(i in L)&&(i in Q);Q[c]=!(c in L)&&(c in Q);}},_getStdModContent:function(L){return(this[L+u])?this[L+u].get(h):null;},setStdModContent:function(R,Q,L){this.set(R+I,Q,{stdModPosition:L});},getStdModNode:function(L){return this[L+u]||null;},fillHeight:function(Q){if(Q){var V=this.get(v),W=[this.headerNode,this.bodyNode,this.footerNode],L,X,Y=0,T=0,S=false;for(var U=0,R=W.length;U=0){Q.set(F,T);}}}}}};b.WidgetStdMod=P;},"3.3.0",{requires:["base-build","widget"]});/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("widget-position-constrain",function(C){var F="constrain",D="constrain|xyChange",B="constrainChange",N="preventOverlap",E="align",O="",G="bindUI",I="xy",A="x",M="y",J=C.Node,P="viewportRegion",L="region",K;function H(Q){if(!this._posNode){C.error("WidgetPosition needs to be added to the Widget, before WidgetPositionConstrain is added");}C.after(this._bindUIPosConstrained,this,G);}H.ATTRS={constrain:{value:null,setter:"_setConstrain"},preventOverlap:{value:false}};K=H._PREVENT_OVERLAP={x:{"tltr":1,"blbr":1,"brbl":1,"trtl":1},y:{"trbr":1,"tlbl":1,"bltl":1,"brtr":1}};H.prototype={getConstrainedXY:function(T,S){S=S||this.get(F);var R=this._getRegion((S===true)?null:S),Q=this._posNode.get(L);return[this._constrain(T[0],A,Q,R),this._constrain(T[1],M,Q,R)];},constrain:function(U,R){var T,Q,S=R||this.get(F);if(S){T=U||this.get(I);Q=this.getConstrainedXY(T,S);if(Q[0]!==T[0]||Q[1]!==T[1]){this.set(I,Q,{constrained:true});}}},_setConstrain:function(Q){return(Q===true)?Q:J.one(Q);},_constrain:function(Q,R,Y,S){if(S){if(this.get(N)){Q=this._preventOverlap(Q,R,Y,S);}var V=(R==A),X=(V)?S.width:S.height,U=(V)?Y.width:Y.height,T=(V)?S.left:S.top,W=(V)?S.right-U:S.bottom-U;if(QW){if(UW){Q=W;}}}else{Q=T;}}}return Q;},_preventOverlap:function(R,S,b,T){var W=this.get(E),a=(S===A),Y,V,U,X,Z,Q;if(W&&W.points&&K[S][W.points.join(O)]){V=this._getRegion(W.node);if(V){Y=(a)?b.width:b.height;U=(a)?V.left:V.top;X=(a)?V.right:V.bottom;Z=(a)?V.left-T.left:V.top-T.top;Q=(a)?T.right-V.right:T.bottom-V.bottom;}if(R>U){if(QY){R=U-Y;}}else{if(ZY){R=X;}}}return R;},_bindUIPosConstrained:function(){this.after(B,this._afterConstrainChange);this._enableConstraints(this.get(F));},_afterConstrainChange:function(Q){this._enableConstraints(Q.newVal);},_enableConstraints:function(Q){if(Q){this.constrain();this._cxyHandle=this._cxyHandle||this.on(D,this._constrainOnXYChange);}else{if(this._cxyHandle){this._cxyHandle.detach();this._cxyHandle=null;}}},_constrainOnXYChange:function(Q){if(!Q.constrained){Q.newVal=this.getConstrainedXY(Q.newVal);}},_getRegion:function(Q){var R;if(!Q){R=this._posNode.get(P);}else{Q=J.one(Q);if(Q){R=Q.get(L);}}return R;}};C.WidgetPositionConstrain=H;},"3.3.0",{requires:["widget-position"]});/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("overlay",function(A){A.Overlay=A.Base.create("overlay",A.Widget,[A.WidgetStdMod,A.WidgetPosition,A.WidgetStack,A.WidgetPositionAlign,A.WidgetPositionConstrain]);},"3.3.0",{requires:["widget","widget-stdmod","widget-position","widget-stack","widget-position-align","widget-position-constrain"]});YUI.add("gallery-popover",function(c){var s="boundingBox",i="contentBox",b="tl",m="t",a="tr",f="rt",h="r",q="rb",r="br",g="b",l="bl",d="lb",j="l",e="lt",n=28,p=18;var k={initializer:function(){},bindUI:function(){this.after("arrowPositionChange",function(u){this._arrow.removeClass(this.getClassName("arrow",u.prevVal));this._arrowMask.removeClass(this.getClassName("arrow","mask",u.prevVal));this._arrow.addClass(this.getClassName("arrow",u.newVal));this._arrowMask.addClass(this.getClassName("arrow","mask",u.newVal))})},renderUI:function(){this._arrow=c.Node.create('???');this._arrowMask=c.Node.create('');this.get(s).append(this._arrow).append(this._arrowMask);var u=this.get("arrowPosition");this._arrow.addClass(this.getClassName("arrow",u));this._arrowMask.addClass(this.getClassName("arrow","mask",u));if(c.UA.webkit&&c.UA.os==="windows"){this._arrow.addClass("win-webkit");this._arrow.addClass(c.UA.chrome?"win-chrome":"win-safari")}else{if(c.UA.gecko&&c.UA.os==="windows"){this._arrow.addClass("win-gecko");this._arrow.addClass("win-firefox");if(c.UA.gecko>=1.9&&c.UA.gecko<2){this._arrow.addClass("win-firefox-3")}}}},syncUI:function(){},alignToElement:function(v,C){var u,w,A,B,x,z,y=this.get("arrowPosition");switch(y){case b:u=[c.WidgetPositionAlign.TL,c.WidgetPositionAlign.BC];w={x:-n,y:p};break;case m:u=[c.WidgetPositionAlign.TC,c.WidgetPositionAlign.BC];w={x:0,y:p};break;case a:u=[c.WidgetPositionAlign.TR,c.WidgetPositionAlign.BC];w={x:n,y:p};break;case f:u=[c.WidgetPositionAlign.TR,c.WidgetPositionAlign.LC];w={x:-p,y:-n};break;case h:u=[c.WidgetPositionAlign.RC,c.WidgetPositionAlign.LC];w={x:-p,y:0};break;case q:u=[c.WidgetPositionAlign.BR,c.WidgetPositionAlign.LC];w={x:-p,y:n};break;case r:u=[c.WidgetPositionAlign.BR,c.WidgetPositionAlign.TC];w={x:n,y:-p};break;case g:u=[c.WidgetPositionAlign.BC,c.WidgetPositionAlign.TC];w={x:0,y:-p};break;case l:u=[c.WidgetPositionAlign.BL,c.WidgetPositionAlign.TC];w={x:-n,y:-p};break;case d:u=[c.WidgetPositionAlign.BL,c.WidgetPositionAlign.RC];w={x:p,y:n};break;case j:u=[c.WidgetPositionAlign.LC,c.WidgetPositionAlign.RC];w={x:p,y:0};break;case e:u=[c.WidgetPositionAlign.TL,c.WidgetPositionAlign.RC];w={x:p,y:-n}}t(this._arrow);t(this._arrowMask);this.align(v,u);A=this._posNode.get("region");B=[A.left+w.x,A.top+w.y];this.move(B);if(C){this.constrain(null,C);A=this._posNode.get("region");x=[A.left,A.top];if(y===b||y===m||y===a||y===l||y===g||y===r){if(B[0]!==x[0]){z=B[0]-x[0];this._arrow.setX(this._arrow.getX());this._arrow.setStyle("right","auto");this._arrow.setX(this._arrow.getX()+z);this._arrowMask.setX(this._arrowMask.getX());this._arrowMask.setStyle("right","auto");this._arrowMask.setX(this._arrowMask.getX()+z)}if(B[1]!==x[1]){z=B[1]-x[1];A=this._posNode.get("region");B=[A.left,A.top+z];this.move(B)}}else{if(y===e||y===j||y===d||y===f||y===h||y===q){if(B[1]!==x[1]){z=B[1]-x[1];this._arrow.setY(this._arrow.getY());this._arrow.setStyle("bottom","auto");this._arrow.setY(this._arrow.getY()+z);this._arrowMask.setY(this._arrowMask.getY());this._arrowMask.setStyle("bottom","auto");this._arrowMask.setY(this._arrowMask.getY()+z)}if(B[0]!==x[0]){z=B[0]-x[0];A=this._posNode.get("region");B=[A.left+z,A.top];this.move(B)}}}}}};var o={TOPLEFT:b,TOP:m,TOPRIGHT:a,RIGHTTOP:f,RIGHT:h,RIGHTBOTTOM:q,BOTTOMRIGHT:r,BOTTOM:g,BOTTOMLEFT:l,LEFTBOTTOM:d,LEFT:j,LEFTTOP:e,CSS_PREFIX:"yui3-popover",ATTRS:{arrowPosition:{value:m,validator:function(u){return(u===b||u===m||u===a||u===l||u===g||u===r||u===e||u===j||u===d||u===f||u===h||u===q)}}}};function t(u){u.setStyle("top","").setStyle("right","").setStyle("bottom","").setStyle("left","")}c.Popover=c.Base.create("popover",c.Widget,[c.WidgetStdMod,c.WidgetPosition,c.WidgetStack,c.WidgetPositionAlign,c.WidgetPositionConstrain],k,o)},"0.0.1",{requires:F.config.modules["gallery-popover"].requires||[],optional:F.config.modules["gallery-popover"].optional||[]});/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("event-simulate",function(a){(function(){var k=a.Lang,j=a.Array,f=k.isFunction,d=k.isString,g=k.isBoolean,o=k.isObject,n=k.isNumber,m=a.config.doc,p={click:1,dblclick:1,mouseover:1,mouseout:1,mousedown:1,mouseup:1,mousemove:1},l={keydown:1,keyup:1,keypress:1},c={blur:1,change:1,focus:1,resize:1,scroll:1,select:1},e={scroll:1,resize:1,reset:1,submit:1,change:1,select:1,error:1,abort:1};a.mix(e,p);a.mix(e,l);function i(v,z,u,s,B,r,q,A,x,D,C){if(!v){a.error("simulateKeyEvent(): Invalid target.");}if(d(z)){z=z.toLowerCase();switch(z){case"textevent":z="keypress";break;case"keyup":case"keydown":case"keypress":break;default:a.error("simulateKeyEvent(): Event type '"+z+"' not supported.");}}else{a.error("simulateKeyEvent(): Event type must be a string.");}if(!g(u)){u=true;}if(!g(s)){s=true;}if(!o(B)){B=window;}if(!g(r)){r=false;}if(!g(q)){q=false;}if(!g(A)){A=false;}if(!g(x)){x=false;}if(!n(D)){D=0;}if(!n(C)){C=0;}var y=null;if(f(m.createEvent)){try{y=m.createEvent("KeyEvents");y.initKeyEvent(z,u,s,B,r,q,A,x,D,C);}catch(w){try{y=m.createEvent("Events");}catch(t){y=m.createEvent("UIEvents");}finally{y.initEvent(z,u,s);y.view=B;y.altKey=q;y.ctrlKey=r;y.shiftKey=A;y.metaKey=x;y.keyCode=D;y.charCode=C;}}v.dispatchEvent(y);}else{if(o(m.createEventObject)){y=m.createEventObject();y.bubbles=u;y.cancelable=s;y.view=B;y.ctrlKey=r;y.altKey=q;y.shiftKey=A;y.metaKey=x;y.keyCode=(C>0)?C:D;v.fireEvent("on"+z,y);}else{a.error("simulateKeyEvent(): No event simulation framework present.");}}}function b(A,F,x,u,G,z,w,v,t,r,s,q,E,C,y,B){if(!A){a.error("simulateMouseEvent(): Invalid target.");}if(d(F)){F=F.toLowerCase();if(!p[F]){a.error("simulateMouseEvent(): Event type '"+F+"' not supported.");}}else{a.error("simulateMouseEvent(): Event type must be a string.");}if(!g(x)){x=true;}if(!g(u)){u=(F!="mousemove");}if(!o(G)){G=window;}if(!n(z)){z=1;}if(!n(w)){w=0;}if(!n(v)){v=0;}if(!n(t)){t=0;}if(!n(r)){r=0;}if(!g(s)){s=false;}if(!g(q)){q=false;}if(!g(E)){E=false;}if(!g(C)){C=false;}if(!n(y)){y=0;}B=B||null;var D=null;if(f(m.createEvent)){D=m.createEvent("MouseEvents");if(D.initMouseEvent){D.initMouseEvent(F,x,u,G,z,w,v,t,r,s,q,E,C,y,B);}else{D=m.createEvent("UIEvents");D.initEvent(F,x,u);D.view=G;D.detail=z;D.screenX=w;D.screenY=v;D.clientX=t;D.clientY=r;D.ctrlKey=s;D.altKey=q;D.metaKey=C;D.shiftKey=E;D.button=y;D.relatedTarget=B;}if(B&&!D.relatedTarget){if(F=="mouseout"){D.toElement=B;}else{if(F=="mouseover"){D.fromElement=B;}}}A.dispatchEvent(D);}else{if(o(m.createEventObject)){D=m.createEventObject();D.bubbles=x;D.cancelable=u;D.view=G;D.detail=z;D.screenX=w;D.screenY=v;D.clientX=t;D.clientY=r;D.ctrlKey=s;D.altKey=q;D.metaKey=C;D.shiftKey=E;switch(y){case 0:D.button=1;break;case 1:D.button=4;break;case 2:break;default:D.button=0;}D.relatedTarget=B;A.fireEvent("on"+F,D);}else{a.error("simulateMouseEvent(): No event simulation framework present.");}}}function h(w,v,s,r,q,u){if(!w){a.error("simulateUIEvent(): Invalid target.");}if(d(v)){v=v.toLowerCase();if(!c[v]){a.error("simulateUIEvent(): Event type '"+v+"' not supported.");}}else{a.error("simulateUIEvent(): Event type must be a string.");}var t=null;if(!g(s)){s=(v in e);}if(!g(r)){r=(v=="submit");}if(!o(q)){q=window;}if(!n(u)){u=1;}if(f(m.createEvent)){t=m.createEvent("UIEvents");t.initUIEvent(v,s,r,q,u);w.dispatchEvent(t);}else{if(o(m.createEventObject)){t=m.createEventObject();t.bubbles=s;t.cancelable=r;t.view=q;t.detail=u;w.fireEvent("on"+v,t);}else{a.error("simulateUIEvent(): No event simulation framework present.");}}}a.Event.simulate=function(s,r,q){q=q||{};if(p[r]){b(s,r,q.bubbles,q.cancelable,q.view,q.detail,q.screenX,q.screenY,q.clientX,q.clientY,q.ctrlKey,q.altKey,q.shiftKey,q.metaKey,q.button,q.relatedTarget);}else{if(l[r]){i(s,r,q.bubbles,q.cancelable,q.view,q.ctrlKey,q.altKey,q.shiftKey,q.metaKey,q.keyCode,q.charCode);}else{if(c[r]){h(s,r,q.bubbles,q.cancelable,q.view,q.detail);}else{a.error("simulate(): Event '"+r+"' can't be simulated.");}}}};})();},"3.3.0",{requires:["event-base"]});/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("node-event-simulate",function(a){a.Node.prototype.simulate=function(c,b){a.Event.simulate(a.Node.getDOMNode(this),c,b);};},"3.3.0",{requires:["node-base","event-simulate"]});YUI.add("photo-button-bar-transjax",function(a){a.transjax.add("photo-button-bar",{pool_limit_reached:'Pool limit reached',pool_limit_reached_msg:'You have already added the maximum amount of allowed photos to this pool.',photo_in_maximum_pools:'Photo in maximum number of pools',photo_in_maximum_pools_msg:'This photo has already been added to the maximum allowed number of pools.',video_in_maximum_pools:'Video in maximum number of pools',video_in_maximum_pools_msg:'This video has already been added to the maximum allowed number of pools.',photo_adding_disabled:'Adding items to %s has been disabled.',photo_limits_1:"You can only add %s items to %s. (You\'ve already added %s.) Remove something from the pool if you really want to add this.",photo_limits_2:"You can only add %s item to %s. (You\'ve already added %s.) Remove something from the pool if you really want to add this.",photo_limits_3_day:"You can only add %s items per day to %s. (You\'ve already added %s.) Remove something from the pool if you really want to add this.",photo_limits_3_week:"You can only add %s items per week to %s. (You\'ve already added %s.) Remove something from the pool if you really want to add this.",photo_limits_3_month:"You can only add %s items per month to %s. (You\'ve already added %s.) Remove something from the pool if you really want to add this.",photo_limits_4_day:"You can only add %s item per day to %s. (You\'ve already added %s.) Remove something from the pool if you really want to add this.",photo_limits_4_week:"You can only add %s item per week to %s. (You\'ve already added %s.) Remove something from the pool if you really want to add this.",photo_limits_4_month:"You can only add %s item per month to %s. (You\'ve already added %s.) Remove something from the pool if you really want to add this.",video_already_invited:'The video has already been invited to this group',video_already_invited_msg:'You cannot invite it again.',photo_already_invited:'The photo has already been invited to this group',photo_already_invited_msg:'You cannot invite it again.',cant_invite_that_video:"You can't invite the video to that group",cant_invite_that_video_msg:'',cant_invite_that_photo:"You can't invite the photo to that group",cant_invite_that_photo_msg:'',video_invite_error:'There was an error inviting the video to this group',video_invite_error_msg:'Please reload the page and try again.',photo_invite_error:'There was an error inviting the photo to this group',photo_invite_error_msg:'Please reload the page and try again.',video_in_queue_error:'This video is already in the moderation queue.',video_in_queue_error_msg:"",photo_in_queue_error:'This photo is already in the moderation queue.',photo_in_queue_error_msg:"",cant_add_photo_set_error:"The photo couldn't be added to this set",cant_add_photo_set_error_msg:"This set no longer exists. This may be because it's been deleted, or because all photos have been removed from it.",cant_add_video_set_error:"The video couldn't be added to this set",cant_add_video_set_error_msg:"This set no longer exists. This may be because it's been deleted, or because all photos have been removed from it.",close:'Close',pending_approval:'Pending approval by group administrator',invitation_sent:'Invitation sent',photo_not_added_to_pool_restrictions_zeus:'This photo could not be added to the %s group because it violates one or more of the pool rules.',video_not_added_to_pool_restrictions_zeus:'This video could not be added to the %s group because it violates one or more of the pool rules.',photo_see_group_for_info_zeus:'See the %s group page for more information.',this_photo_also_belongs_to:'This photo also appears in',this_video_also_belongs_to:'This video also appears in',are_you_sure_you_want_to_delete_photo:'Are you sure you want to delete this photo?',are_you_sure_you_want_to_delete_video:'Are you sure you want to delete this video?',cannot_be_undone:'This cannot be undone.',done:'DONE',ok_thanks:'Okay, thanks',cancel:'Cancel',delete_photo_button:'Delete photo',delete_video_button:'Delete video',can_always_find_in_actions_menu:'Just so you know, you can always find an "Add to your map" link in the "Actions" menu.',group_invites:'Group invites',add_to_set:'Add to a set',add_remove_set:'Add to / remove from set',add_to_group:'Add to a group',add_remove_group:'Add to / remove from group',add_to_your_map:'Add to your map',edit_location_on_your_map:'Edit location on your map',remove_from_group_not_a_member:"Are you sure you want to remove the photo from this group? You aren\'t a member of the group, so you will not be able to add it back without an invitation.",remove:'REMOVE',next:'Next',prev:'Prev',older:'Older',newer:'Newer',search_your_sets:'Type to search your sets',search_the_groups:'Type to search the groups',search_your_galleries:'Type to search your galleries',keyboard_shortcut_changed:'That keyboard shortcut has been changed',keyboard_shortcut_set:'The keyboard shortcut for opening the Add to Set interface has been changed from S to E. Sorry for the inconvenience.'})},"0.0.1",{requires:["transjax-base"]});YUI.add("autocomplete-2-5-1",function(Y){if(Y.YUI2){var YAHOO=Y.YUI2}YAHOO.widget.AutoComplete=function(elInput,elContainer,oDataSource,oConfigs){if(elInput&&elContainer&&oDataSource){if(oDataSource instanceof YAHOO.widget.DataSource){this.dataSource=oDataSource}else{return}if(YAHOO.util.Dom.inDocument(elInput)){if(YAHOO.lang.isString(elInput)){this._sName="instance"+YAHOO.widget.AutoComplete._nIndex+" "+elInput;this._elTextbox=document.getElementById(elInput)}else{this._sName=(elInput.id)?"instance"+YAHOO.widget.AutoComplete._nIndex+" "+elInput.id:"instance"+YAHOO.widget.AutoComplete._nIndex;this._elTextbox=elInput}YAHOO.util.Dom.addClass(this._elTextbox,"yui-ac-input")}else{return}if(YAHOO.util.Dom.inDocument(elContainer)){if(YAHOO.lang.isString(elContainer)){this._elContainer=document.getElementById(elContainer)}else{this._elContainer=elContainer}if(this._elContainer.style.display=="none"){}var elParent=this._elContainer.parentNode;var elTag=elParent.tagName.toLowerCase();if(elTag=="div"){YAHOO.util.Dom.addClass(elParent,"yui-ac")}else{}}else{return}if(oConfigs&&(oConfigs.constructor==Object)){for(var sConfig in oConfigs){if(sConfig){this[sConfig]=oConfigs[sConfig]}}}this._initContainer();this._initProps();this._initList();this._initContainerHelpers();var oSelf=this;var elTextbox=this._elTextbox;var elContent=this._elContent;YAHOO.util.Event.addListener(elTextbox,"keyup",oSelf._onTextboxKeyUp,oSelf);YAHOO.util.Event.addListener(elTextbox,"keydown",oSelf._onTextboxKeyDown,oSelf);YAHOO.util.Event.addListener(elTextbox,"focus",oSelf._onTextboxFocus,oSelf);YAHOO.util.Event.addListener(elTextbox,"blur",oSelf._onTextboxBlur,oSelf);YAHOO.util.Event.addListener(elContent,"mouseover",oSelf._onContainerMouseover,oSelf);YAHOO.util.Event.addListener(elContent,"mouseout",oSelf._onContainerMouseout,oSelf);YAHOO.util.Event.addListener(elContent,"scroll",oSelf._onContainerScroll,oSelf);YAHOO.util.Event.addListener(elContent,"resize",oSelf._onContainerResize,oSelf);YAHOO.util.Event.addListener(elTextbox,"keypress",oSelf._onTextboxKeyPress,oSelf);YAHOO.util.Event.addListener(window,"unload",oSelf._onWindowUnload,oSelf);this.textboxFocusEvent=new YAHOO.util.CustomEvent("textboxFocus",this);this.textboxKeyEvent=new YAHOO.util.CustomEvent("textboxKey",this);this.dataRequestEvent=new YAHOO.util.CustomEvent("dataRequest",this);this.dataReturnEvent=new YAHOO.util.CustomEvent("dataReturn",this);this.dataErrorEvent=new YAHOO.util.CustomEvent("dataError",this);this.containerExpandEvent=new YAHOO.util.CustomEvent("containerExpand",this);this.typeAheadEvent=new YAHOO.util.CustomEvent("typeAhead",this);this.itemMouseOverEvent=new YAHOO.util.CustomEvent("itemMouseOver",this);this.itemMouseOutEvent=new YAHOO.util.CustomEvent("itemMouseOut",this);this.itemArrowToEvent=new YAHOO.util.CustomEvent("itemArrowTo",this);this.itemArrowFromEvent=new YAHOO.util.CustomEvent("itemArrowFrom",this);this.itemSelectEvent=new YAHOO.util.CustomEvent("itemSelect",this);this.unmatchedItemSelectEvent=new YAHOO.util.CustomEvent("unmatchedItemSelect",this);this.selectionEnforceEvent=new YAHOO.util.CustomEvent("selectionEnforce",this);this.containerCollapseEvent=new YAHOO.util.CustomEvent("containerCollapse",this);this.textboxBlurEvent=new YAHOO.util.CustomEvent("textboxBlur",this);elTextbox.setAttribute("autocomplete","off");YAHOO.widget.AutoComplete._nIndex++}else{}};YAHOO.widget.AutoComplete.prototype.dataSource=null;YAHOO.widget.AutoComplete.prototype.minQueryLength=1;YAHOO.widget.AutoComplete.prototype.maxResultsDisplayed=10;YAHOO.widget.AutoComplete.prototype.queryDelay=0.2;YAHOO.widget.AutoComplete.prototype.highlightClassName="yui-ac-highlight";YAHOO.widget.AutoComplete.prototype.prehighlightClassName=null;YAHOO.widget.AutoComplete.prototype.delimChar=null;YAHOO.widget.AutoComplete.prototype.autoHighlight=true;YAHOO.widget.AutoComplete.prototype.typeAhead=false;YAHOO.widget.AutoComplete.prototype.animHoriz=false;YAHOO.widget.AutoComplete.prototype.animVert=true;YAHOO.widget.AutoComplete.prototype.animSpeed=0.3;YAHOO.widget.AutoComplete.prototype.forceSelection=false;YAHOO.widget.AutoComplete.prototype.allowBrowserAutocomplete=true;YAHOO.widget.AutoComplete.prototype.alwaysShowContainer=false;YAHOO.widget.AutoComplete.prototype.useIFrame=false;YAHOO.widget.AutoComplete.prototype.useShadow=false;YAHOO.widget.AutoComplete.prototype.toString=function(){return"AutoComplete "+this._sName};YAHOO.widget.AutoComplete.prototype.isContainerOpen=function(){return this._bContainerOpen};YAHOO.widget.AutoComplete.prototype.getListItems=function(){return this._aListItems};YAHOO.widget.AutoComplete.prototype.getListItemData=function(oListItem){if(oListItem._oResultData){return oListItem._oResultData}else{return false}};YAHOO.widget.AutoComplete.prototype.setHeader=function(sHeader){if(this._elHeader){var elHeader=this._elHeader;if(sHeader){elHeader.innerHTML=sHeader;elHeader.style.display="block"}else{elHeader.innerHTML="";elHeader.style.display="none"}}};YAHOO.widget.AutoComplete.prototype.setFooter=function(sFooter){if(this._elFooter){var elFooter=this._elFooter;if(sFooter){elFooter.innerHTML=sFooter;elFooter.style.display="block"}else{elFooter.innerHTML="";elFooter.style.display="none"}}};YAHOO.widget.AutoComplete.prototype.setBody=function(sBody){if(this._elBody){var elBody=this._elBody;if(sBody){elBody.innerHTML=sBody;elBody.style.display="block";elBody.style.display="block"}else{elBody.innerHTML="";elBody.style.display="none"}this._maxResultsDisplayed=0}};YAHOO.widget.AutoComplete.prototype.formatResult=function(oResultItem,sQuery){var sResult=oResultItem[0];if(sResult){return sResult}else{return""}};YAHOO.widget.AutoComplete.prototype.doBeforeExpandContainer=function(elTextbox,elContainer,sQuery,aResults){return true};YAHOO.widget.AutoComplete.prototype.sendQuery=function(sQuery){this._sendQuery(sQuery)};YAHOO.widget.AutoComplete.prototype.doBeforeSendQuery=function(sQuery){return sQuery};YAHOO.widget.AutoComplete.prototype.destroy=function(){var instanceName=this.toString();var elInput=this._elTextbox;var elContainer=this._elContainer;this.textboxFocusEvent.unsubscribeAll();this.textboxKeyEvent.unsubscribeAll();this.dataRequestEvent.unsubscribeAll();this.dataReturnEvent.unsubscribeAll();this.dataErrorEvent.unsubscribeAll();this.containerExpandEvent.unsubscribeAll();this.typeAheadEvent.unsubscribeAll();this.itemMouseOverEvent.unsubscribeAll();this.itemMouseOutEvent.unsubscribeAll();this.itemArrowToEvent.unsubscribeAll();this.itemArrowFromEvent.unsubscribeAll();this.itemSelectEvent.unsubscribeAll();this.unmatchedItemSelectEvent.unsubscribeAll();this.selectionEnforceEvent.unsubscribeAll();this.containerCollapseEvent.unsubscribeAll();this.textboxBlurEvent.unsubscribeAll();YAHOO.util.Event.purgeElement(elInput,true);YAHOO.util.Event.purgeElement(elContainer,true);elContainer.innerHTML="";for(var key in this){if(YAHOO.lang.hasOwnProperty(this,key)){this[key]=null}}};YAHOO.widget.AutoComplete.prototype.textboxFocusEvent=null;YAHOO.widget.AutoComplete.prototype.textboxKeyEvent=null;YAHOO.widget.AutoComplete.prototype.dataRequestEvent=null;YAHOO.widget.AutoComplete.prototype.dataReturnEvent=null;YAHOO.widget.AutoComplete.prototype.dataErrorEvent=null;YAHOO.widget.AutoComplete.prototype.containerExpandEvent=null;YAHOO.widget.AutoComplete.prototype.typeAheadEvent=null;YAHOO.widget.AutoComplete.prototype.itemMouseOverEvent=null;YAHOO.widget.AutoComplete.prototype.itemMouseOutEvent=null;YAHOO.widget.AutoComplete.prototype.itemArrowToEvent=null;YAHOO.widget.AutoComplete.prototype.itemArrowFromEvent=null;YAHOO.widget.AutoComplete.prototype.itemSelectEvent=null;YAHOO.widget.AutoComplete.prototype.unmatchedItemSelectEvent=null;YAHOO.widget.AutoComplete.prototype.selectionEnforceEvent=null;YAHOO.widget.AutoComplete.prototype.containerCollapseEvent=null;YAHOO.widget.AutoComplete.prototype.textboxBlurEvent=null;YAHOO.widget.AutoComplete._nIndex=0;YAHOO.widget.AutoComplete.prototype._sName=null;YAHOO.widget.AutoComplete.prototype._elTextbox=null;YAHOO.widget.AutoComplete.prototype._elContainer=null;YAHOO.widget.AutoComplete.prototype._elContent=null;YAHOO.widget.AutoComplete.prototype._elHeader=null;YAHOO.widget.AutoComplete.prototype._elBody=null;YAHOO.widget.AutoComplete.prototype._elFooter=null;YAHOO.widget.AutoComplete.prototype._elShadow=null;YAHOO.widget.AutoComplete.prototype._elIFrame=null;YAHOO.widget.AutoComplete.prototype._bFocused=true;YAHOO.widget.AutoComplete.prototype._oAnim=null;YAHOO.widget.AutoComplete.prototype._bContainerOpen=false;YAHOO.widget.AutoComplete.prototype._bOverContainer=false;YAHOO.widget.AutoComplete.prototype._aListItems=null;YAHOO.widget.AutoComplete.prototype._nDisplayedItems=0;YAHOO.widget.AutoComplete.prototype._maxResultsDisplayed=0;YAHOO.widget.AutoComplete.prototype._sCurQuery=null;YAHOO.widget.AutoComplete.prototype._sSavedQuery=null;YAHOO.widget.AutoComplete.prototype._oCurItem=null;YAHOO.widget.AutoComplete.prototype._bItemSelected=false;YAHOO.widget.AutoComplete.prototype._nKeyCode=null;YAHOO.widget.AutoComplete.prototype._nDelayID=-1;YAHOO.widget.AutoComplete.prototype._iFrameSrc="javascript:false;";YAHOO.widget.AutoComplete.prototype._queryInterval=null;YAHOO.widget.AutoComplete.prototype._sLastTextboxValue=null;YAHOO.widget.AutoComplete.prototype._initProps=function(){var minQueryLength=this.minQueryLength;if(!YAHOO.lang.isNumber(minQueryLength)){this.minQueryLength=1}var maxResultsDisplayed=this.maxResultsDisplayed;if(!YAHOO.lang.isNumber(maxResultsDisplayed)||(maxResultsDisplayed<1)){this.maxResultsDisplayed=10}var queryDelay=this.queryDelay;if(!YAHOO.lang.isNumber(queryDelay)||(queryDelay<0)){this.queryDelay=0.2}var delimChar=this.delimChar;if(YAHOO.lang.isString(delimChar)&&(delimChar.length>0)){this.delimChar=[delimChar]}else{if(!YAHOO.lang.isArray(delimChar)){this.delimChar=null}}var animSpeed=this.animSpeed;if((this.animHoriz||this.animVert)&&YAHOO.util.Anim){if(!YAHOO.lang.isNumber(animSpeed)||(animSpeed<0)){this.animSpeed=0.3}if(!this._oAnim){this._oAnim=new YAHOO.util.Anim(this._elContent,{},this.animSpeed)}else{this._oAnim.duration=this.animSpeed}}if(this.forceSelection&&delimChar){}};YAHOO.widget.AutoComplete.prototype._initContainerHelpers=function(){if(this.useShadow&&!this._elShadow){var elShadow=document.createElement("div");elShadow.className="yui-ac-shadow";this._elShadow=this._elContainer.appendChild(elShadow)}if(this.useIFrame&&!this._elIFrame){var elIFrame=document.createElement("iframe");elIFrame.src=this._iFrameSrc;elIFrame.frameBorder=0;elIFrame.scrolling="no";elIFrame.style.position="absolute";elIFrame.style.width="100%";elIFrame.style.height="100%";elIFrame.tabIndex=-1;this._elIFrame=this._elContainer.appendChild(elIFrame)}};YAHOO.widget.AutoComplete.prototype._initContainer=function(){YAHOO.util.Dom.addClass(this._elContainer,"yui-ac-container");if(!this._elContent){var elContent=document.createElement("div");elContent.className="yui-ac-content";elContent.style.display="none";this._elContent=this._elContainer.appendChild(elContent);var elHeader=document.createElement("div");elHeader.className="yui-ac-hd";elHeader.style.display="none";this._elHeader=this._elContent.appendChild(elHeader);var elBody=document.createElement("div");elBody.className="yui-ac-bd";this._elBody=this._elContent.appendChild(elBody);var elFooter=document.createElement("div");elFooter.className="yui-ac-ft";elFooter.style.display="none";this._elFooter=this._elContent.appendChild(elFooter)}else{}};YAHOO.widget.AutoComplete.prototype._initList=function(){this._aListItems=[];while(this._elBody.hasChildNodes()){var oldListItems=this.getListItems();if(oldListItems){for(var oldi=oldListItems.length-1;oldi>=0;oldi--){oldListItems[oldi]=null}}this._elBody.innerHTML=""}var oList=document.createElement("ul");oList=this._elBody.appendChild(oList);for(var i=0;i=18&&nKeyCode<=20)||(nKeyCode==27)||(nKeyCode>=33&&nKeyCode<=35)||(nKeyCode>=36&&nKeyCode<=40)||(nKeyCode>=44&&nKeyCode<=45)){return true}return false};YAHOO.widget.AutoComplete.prototype._sendQuery=function(sQuery){if(this.minQueryLength==-1){this._toggleContainer(false);return}var aDelimChar=(this.delimChar)?this.delimChar:null;if(aDelimChar){var nDelimIndex=-1;for(var i=aDelimChar.length-1;i>=0;i--){var nNewIndex=sQuery.lastIndexOf(aDelimChar[i]);if(nNewIndex>nDelimIndex){nDelimIndex=nNewIndex}}if(aDelimChar[i]==" "){for(var j=aDelimChar.length-1;j>=0;j--){if(sQuery[nDelimIndex-1]==aDelimChar[j]){nDelimIndex--;break}}}if(nDelimIndex>-1){var nQueryStart=nDelimIndex+1;while(sQuery.charAt(nQueryStart)==" "){nQueryStart+=1}this._sSavedQuery=sQuery.substring(0,nQueryStart);sQuery=sQuery.substr(nQueryStart)}else{if(sQuery.indexOf(this._sSavedQuery)<0){this._sSavedQuery=null}}}if((sQuery&&(sQuery.length0)){if(this._nDelayID!=-1){clearTimeout(this._nDelayID)}this._toggleContainer(false);return}sQuery=encodeURIComponent(sQuery);this._nDelayID=-1;sQuery=this.doBeforeSendQuery(sQuery);this.dataRequestEvent.fire(this,sQuery);this.dataSource.getResults(this._populateList,sQuery,this)};YAHOO.widget.AutoComplete.prototype._populateList=function(sQuery,aResults,oSelf){if(aResults===null){oSelf.dataErrorEvent.fire(oSelf,sQuery)}if(!oSelf._bFocused||!aResults){return}var isOpera=(navigator.userAgent.toLowerCase().indexOf("opera")!=-1);var contentStyle=oSelf._elContent.style;contentStyle.width=(!isOpera)?null:"";contentStyle.height=(!isOpera)?null:"";var sCurQuery=decodeURIComponent(sQuery);oSelf._sCurQuery=sCurQuery;oSelf._bItemSelected=false;if(oSelf._maxResultsDisplayed!=oSelf.maxResultsDisplayed){oSelf._initList()}var nItems=Math.min(aResults.length,oSelf.maxResultsDisplayed);oSelf._nDisplayedItems=nItems;if(nItems>0){oSelf._initContainerHelpers();var aItems=oSelf._aListItems;for(var i=nItems-1;i>=0;i--){var oItemi=aItems[i];var oResultItemi=aResults[i];oItemi.innerHTML=oSelf.formatResult(oResultItemi,sCurQuery);oItemi.style.display="list-item";oItemi._sResultKey=oResultItemi[0];oItemi._oResultData=oResultItemi}for(var j=aItems.length-1;j>=nItems;j--){var oItemj=aItems[j];oItemj.innerHTML=null;oItemj.style.display="none";oItemj._sResultKey=null;oItemj._oResultData=null}if(aResults.length>oSelf.maxResultsDisplayed&&oSelf.showMaxResultsMessage){aItems[oSelf.maxResultsDisplayed]=document.createElement("li");var oItemi=aItems[oSelf.maxResultsDisplayed];var url=oSelf.MaxResultsUrl.replace(/\%s/,sCurQuery);oItemi.innerHTML=oSelf.MaxResultsMessage.replace(/\[results_shown\]/,oSelf.maxResultsDisplayed).replace(/\[total_results\]/,aResults.length).replace(/\[url\]/,url);oItemi.style.display="list-item";oItemi.className=oSelf.MaxResultsClassName;aItems[0].parentNode.appendChild(oItemi)}var ok=oSelf.doBeforeExpandContainer(oSelf._elTextbox,oSelf._elContainer,sQuery,aResults);oSelf._toggleContainer(ok);if(oSelf.autoHighlight){var oFirstItem=aItems[0];oSelf._toggleHighlight(oFirstItem,"to");oSelf.itemArrowToEvent.fire(oSelf,oFirstItem);oSelf._typeAhead(oFirstItem,sQuery)}else{oSelf._oCurItem=null}}else{oSelf._toggleContainer(false)}oSelf.dataReturnEvent.fire(oSelf,sQuery,aResults)};YAHOO.widget.AutoComplete.prototype._clearSelection=function(){var sValue=this._elTextbox.value;var sChar=(this.delimChar)?this.delimChar[0]:null;var nIndex=(sChar)?sValue.lastIndexOf(sChar,sValue.length-2):-1;if(nIndex>-1){this._elTextbox.value=sValue.substring(0,nIndex)}else{this._elTextbox.value=""}this._sSavedQuery=this._elTextbox.value;this.selectionEnforceEvent.fire(this)};YAHOO.widget.AutoComplete.prototype._textMatchesOption=function(){var foundMatch=null;for(var i=this._nDisplayedItems-1;i>=0;i--){var oItem=this._aListItems[i];if(!oItem._sResultKey){continue}var sMatch=oItem._sResultKey.toLowerCase();if(sMatch==this._sCurQuery.toLowerCase()){foundMatch=oItem;break}}return(foundMatch)};YAHOO.widget.AutoComplete.prototype._typeAhead=function(oItem,sQuery){if(!this.typeAhead||(this._nKeyCode==8)){return}var elTextbox=this._elTextbox;var sValue=this._elTextbox.value;if(!elTextbox.setSelectionRange&&!elTextbox.createTextRange){return}var nStart=sValue.length;this._updateValue(oItem);var nEnd=elTextbox.value.length;this._selectText(elTextbox,nStart,nEnd);var sPrefill=elTextbox.value.substr(nStart,nEnd);this.typeAheadEvent.fire(this,sQuery,sPrefill)};YAHOO.widget.AutoComplete.prototype._selectText=function(elTextbox,nStart,nEnd){if(elTextbox.setSelectionRange){elTextbox.setSelectionRange(nStart,nEnd)}else{if(elTextbox.createTextRange){var oTextRange=elTextbox.createTextRange();oTextRange.moveStart("character",nStart);oTextRange.moveEnd("character",nEnd-elTextbox.value.length);oTextRange.select()}else{elTextbox.select()}}};YAHOO.widget.AutoComplete.prototype._toggleContainerHelpers=function(bShow){var bFireEvent=false;var width=this._elContent.offsetWidth+"px";var height=this._elContent.offsetHeight+"px";if(this.useIFrame&&this._elIFrame){bFireEvent=true;if(bShow){this._elIFrame.style.width=width;this._elIFrame.style.height=height}else{this._elIFrame.style.width=0;this._elIFrame.style.height=0}}if(this.useShadow&&this._elShadow){bFireEvent=true;if(bShow){this._elShadow.style.width=width;this._elShadow.style.height=height}else{this._elShadow.style.width=0;this._elShadow.style.height=0}}};YAHOO.widget.AutoComplete.prototype._toggleContainer=function(bShow){var elContainer=this._elContainer;if(this.alwaysShowContainer&&this._bContainerOpen){return}if(!bShow){if(this._elContent){this._elContent.scrollTop=0}var aItems=this._aListItems;if(aItems&&(aItems.length>0)){for(var i=aItems.length-1;i>=0;i--){aItems[i].style.display="none"}}if(this._oCurItem){this._toggleHighlight(this._oCurItem,"from")}setTimeout(function(){this._oCurItem=null},0);this._nDisplayedItems=0;this._sCurQuery=null}if(!bShow&&!this._bContainerOpen){this._elContent.style.display="none";return}var oAnim=this._oAnim;if(oAnim&&oAnim.getEl()&&(this.animHoriz||this.animVert)){if(!bShow){this._toggleContainerHelpers(bShow)}if(oAnim.isAnimated()){oAnim.stop()}var oClone=this._elContent.cloneNode(true);elContainer.appendChild(oClone);oClone.style.top="-9000px";oClone.style.display="block";var wExp=oClone.offsetWidth;var hExp=oClone.offsetHeight;var wColl=(this.animHoriz)?0:wExp;var hColl=(this.animVert)?0:hExp;oAnim.attributes=(bShow)?{width:{to:wExp},height:{to:hExp}}:{width:{to:wColl},height:{to:hColl}};if(bShow&&!this._bContainerOpen){this._elContent.style.width=wColl+"px";this._elContent.style.height=hColl+"px"}else{this._elContent.style.width=wExp+"px";this._elContent.style.height=hExp+"px"}elContainer.removeChild(oClone);oClone=null;var oSelf=this;var onAnimComplete=function(){oAnim.onComplete.unsubscribeAll();if(bShow){oSelf.containerExpandEvent.fire(oSelf)}else{oSelf._elContent.style.display="none";oSelf.containerCollapseEvent.fire(oSelf)}oSelf._toggleContainerHelpers(bShow)};this._elContent.style.display="block";oAnim.onComplete.subscribe(onAnimComplete);oAnim.animate();this._bContainerOpen=bShow}else{if(bShow){this._elContent.style.display="block";this.containerExpandEvent.fire(this)}else{this._elContent.style.display="none";this.containerCollapseEvent.fire(this)}this._toggleContainerHelpers(bShow);this._bContainerOpen=bShow}};YAHOO.widget.AutoComplete.prototype._toggleHighlight=function(oNewItem,sType){var sHighlight=this.highlightClassName;if(this._oCurItem){YAHOO.util.Dom.removeClass(this._oCurItem,sHighlight)}if((sType=="to")&&sHighlight){YAHOO.util.Dom.addClass(oNewItem,sHighlight);this._oCurItem=oNewItem}};YAHOO.widget.AutoComplete.prototype._togglePrehighlight=function(oNewItem,sType){if(oNewItem==this._oCurItem){return}var sPrehighlight=this.prehighlightClassName;if((sType=="mouseover")&&sPrehighlight){YAHOO.util.Dom.addClass(oNewItem,sPrehighlight)}else{YAHOO.util.Dom.removeClass(oNewItem,sPrehighlight)}};YAHOO.widget.AutoComplete.prototype._updateValue=function(oItem){var elTextbox=this._elTextbox;var sDelimChar=(this.delimChar)?(this.delimChar[0]||this.delimChar):null;var sSavedQuery=this._sSavedQuery;var sResultKey=oItem._sResultKey;if(YAHOO.env.ua.webkit){elTextbox.focus()}else{window.setTimeout(function(){elTextbox.focus()},10)}if(sResultKey){elTextbox.value="";if(sDelimChar){if(sSavedQuery){elTextbox.value=sSavedQuery}elTextbox.value+=sResultKey+sDelimChar;if(sDelimChar!=" "){elTextbox.value+=" "}}else{elTextbox.value=sResultKey}}if(elTextbox.type=="textarea"){elTextbox.scrollTop=elTextbox.scrollHeight}var end=elTextbox.value.length;this._selectText(elTextbox,end,end);this._oCurItem=oItem};YAHOO.widget.AutoComplete.prototype._selectItem=function(oItem){this._bItemSelected=true;this._updateValue(oItem);this._cancelIntervalDetection(this);this.itemSelectEvent.fire(this,oItem,oItem._oResultData);this._toggleContainer(false)};YAHOO.widget.AutoComplete.prototype._jumpSelection=function(){return;if(this._oCurItem){this._selectItem(this._oCurItem)}else{this._toggleContainer(false)}};YAHOO.widget.AutoComplete.prototype._moveSelection=function(nKeyCode){if(this._bContainerOpen){var oCurItem=this._oCurItem;var nCurItemIndex=-1;if(oCurItem){nCurItemIndex=oCurItem._nItemIndex}var nNewItemIndex=(nKeyCode==40)?(nCurItemIndex+1):(nCurItemIndex-1);if(nNewItemIndex<-2||nNewItemIndex>=this._nDisplayedItems){return}if(oCurItem){this._toggleHighlight(oCurItem,"from");this.itemArrowFromEvent.fire(this,oCurItem)}if(nNewItemIndex==-1){if(this.delimChar&&this._sSavedQuery){if(!this._textMatchesOption()){this._elTextbox.value=this._sSavedQuery}else{this._elTextbox.value=this._sSavedQuery+this._sCurQuery}}else{this._elTextbox.value=this._sCurQuery}this._oCurItem=null;return}if(nNewItemIndex==-2){this._toggleContainer(false);return}var oNewItem=this._aListItems[nNewItemIndex];var elContent=this._elContent;var scrollOn=((YAHOO.util.Dom.getStyle(elContent,"overflow")=="auto")||(YAHOO.util.Dom.getStyle(elContent,"overflowY")=="auto"));if(scrollOn&&(nNewItemIndex>-1)&&(nNewItemIndex(elContent.scrollTop+elContent.offsetHeight)){elContent.scrollTop=(oNewItem.offsetTop+oNewItem.offsetHeight)-elContent.offsetHeight}else{if((oNewItem.offsetTop+oNewItem.offsetHeight)(elContent.scrollTop+elContent.offsetHeight)){this._elContent.scrollTop=(oNewItem.offsetTop+oNewItem.offsetHeight)-elContent.offsetHeight}}}}this._toggleHighlight(oNewItem,"to");this.itemArrowToEvent.fire(this,oNewItem);if(this.typeAhead){this._updateValue(oNewItem)}}};YAHOO.widget.AutoComplete.prototype._onItemMouseover=function(v,oSelf){if(oSelf.prehighlightClassName){oSelf._togglePrehighlight(this,"mouseover")}else{oSelf._toggleHighlight(this,"to")}oSelf.itemMouseOverEvent.fire(oSelf,this)};YAHOO.widget.AutoComplete.prototype._onItemMouseout=function(v,oSelf){if(oSelf.prehighlightClassName){oSelf._togglePrehighlight(this,"mouseout")}else{oSelf._toggleHighlight(this,"from")}oSelf.itemMouseOutEvent.fire(oSelf,this)};YAHOO.widget.AutoComplete.prototype._onItemMouseclick=function(v,oSelf){oSelf._toggleHighlight(this,"to");oSelf._selectItem(this)};YAHOO.widget.AutoComplete.prototype._onContainerMouseover=function(v,oSelf){oSelf._bOverContainer=true};YAHOO.widget.AutoComplete.prototype._onContainerMouseout=function(v,oSelf){oSelf._bOverContainer=false;if(oSelf._oCurItem){oSelf._toggleHighlight(oSelf._oCurItem,"to")}};YAHOO.widget.AutoComplete.prototype._onContainerScroll=function(v,oSelf){oSelf._elTextbox.focus()};YAHOO.widget.AutoComplete.prototype._onContainerResize=function(v,oSelf){oSelf._toggleContainerHelpers(oSelf._bContainerOpen)};YAHOO.widget.AutoComplete.prototype._onTextboxKeyDown=function(v,oSelf){var nKeyCode=v.keyCode;switch(nKeyCode){case 9:if(oSelf._oCurItem){if(oSelf.delimChar&&(oSelf._nKeyCode!=nKeyCode)){if(oSelf._bContainerOpen){YAHOO.util.Event.stopEvent(v)}}oSelf._selectItem(oSelf._oCurItem)}else{oSelf._toggleContainer(false)}break;case 13:if(!YAHOO.env.ua.webkit){if(oSelf._oCurItem){if(oSelf._nKeyCode!=nKeyCode){if(oSelf._bContainerOpen){YAHOO.util.Event.stopEvent(v)}}oSelf._selectItem(oSelf._oCurItem)}else{oSelf._toggleContainer(false)}}break;case 27:oSelf._toggleContainer(false);return;case 39:oSelf._jumpSelection();break;case 38:YAHOO.util.Event.stopEvent(v);oSelf._moveSelection(nKeyCode);break;case 40:YAHOO.util.Event.stopEvent(v);oSelf._moveSelection(nKeyCode);break;default:break}};YAHOO.widget.AutoComplete.prototype._onTextboxKeyPress=function(v,oSelf){var nKeyCode=v.keyCode;if(YAHOO.env.ua.webkit){switch(nKeyCode){case 9:if(oSelf._oCurItem){if(oSelf.delimChar&&(oSelf._nKeyCode!=nKeyCode)){YAHOO.util.Event.stopEvent(v)}}break;case 13:if(oSelf._oCurItem){if(oSelf._nKeyCode!=nKeyCode){if(oSelf._bContainerOpen){YAHOO.util.Event.stopEvent(v)}}oSelf._selectItem(oSelf._oCurItem)}else{oSelf._toggleContainer(false)}break;default:break}}else{if(nKeyCode==229){oSelf._queryInterval=setInterval(function(){oSelf._onIMEDetected(oSelf)},500)}}};YAHOO.widget.AutoComplete.prototype._onTextboxKeyUp=function(v,oSelf){oSelf._initProps();var nKeyCode=v.keyCode;oSelf._nKeyCode=nKeyCode;var sText=this.value;if(oSelf._isIgnoreKey(nKeyCode)||(sText.toLowerCase()==oSelf._sCurQuery)){return}else{oSelf._bItemSelected=false;YAHOO.util.Dom.removeClass(oSelf._oCurItem,oSelf.highlightClassName);oSelf._oCurItem=null;oSelf.textboxKeyEvent.fire(oSelf,nKeyCode)}if(oSelf.queryDelay>0){var nDelayID=setTimeout(function(){oSelf._sendQuery(sText)},(oSelf.queryDelay*1000));if(oSelf._nDelayID!=-1){clearTimeout(oSelf._nDelayID)}oSelf._nDelayID=nDelayID}else{oSelf._sendQuery(sText)}};YAHOO.widget.AutoComplete.prototype._onTextboxFocus=function(v,oSelf){oSelf._elTextbox.setAttribute("autocomplete","off");oSelf._bFocused=true;if(!oSelf._bItemSelected){oSelf.textboxFocusEvent.fire(oSelf)}};YAHOO.widget.AutoComplete.prototype._onTextboxBlur=function(v,oSelf){if(!oSelf._bOverContainer||(oSelf._nKeyCode==9)){if(!oSelf._bItemSelected){var oMatch=oSelf._textMatchesOption();if(!oSelf._bContainerOpen||(oSelf._bContainerOpen&&(oMatch===null))){if(oSelf.forceSelection){oSelf._clearSelection()}else{oSelf.unmatchedItemSelectEvent.fire(oSelf)}}else{if(oSelf.forceSelection){oSelf._selectItem(oMatch)}}}if(oSelf._bContainerOpen){oSelf._toggleContainer(false)}oSelf._cancelIntervalDetection(oSelf);oSelf._bFocused=false;oSelf.textboxBlurEvent.fire(oSelf)}};YAHOO.widget.AutoComplete.prototype._onWindowUnload=function(v,oSelf){if(oSelf&&oSelf._elTextbox&&oSelf.allowBrowserAutocomplete){oSelf._elTextbox.setAttribute("autocomplete","on")}};YAHOO.widget.DataSource=function(){};YAHOO.widget.DataSource.ERROR_DATANULL="Response data was null";YAHOO.widget.DataSource.ERROR_DATAPARSE="Response data could not be parsed";YAHOO.widget.DataSource.prototype.maxCacheEntries=15;YAHOO.widget.DataSource.prototype.queryMatchContains=false;YAHOO.widget.DataSource.prototype.queryMatchSubset=false;YAHOO.widget.DataSource.prototype.queryMatchCase=false;YAHOO.widget.DataSource.prototype.toString=function(){return"DataSource "+this._sName};YAHOO.widget.DataSource.prototype.getResults=function(oCallbackFn,sQuery,oParent){var aResults=this._doQueryCache(oCallbackFn,sQuery,oParent);if(aResults.length===0){this.queryEvent.fire(this,oParent,sQuery);this.doQuery(oCallbackFn,sQuery,oParent)}};YAHOO.widget.DataSource.prototype.doQuery=function(oCallbackFn,sQuery,oParent){};YAHOO.widget.DataSource.prototype.flushCache=function(){if(this._aCache){this._aCache=[]}if(this._aCacheHelper){this._aCacheHelper=[]}this.cacheFlushEvent.fire(this)};YAHOO.widget.DataSource.prototype.queryEvent=null;YAHOO.widget.DataSource.prototype.cacheQueryEvent=null;YAHOO.widget.DataSource.prototype.getResultsEvent=null;YAHOO.widget.DataSource.prototype.getCachedResultsEvent=null;YAHOO.widget.DataSource.prototype.dataErrorEvent=null;YAHOO.widget.DataSource.prototype.cacheFlushEvent=null;YAHOO.widget.DataSource._nIndex=0;YAHOO.widget.DataSource.prototype._sName=null;YAHOO.widget.DataSource.prototype._aCache=null;YAHOO.widget.DataSource.prototype._init=function(){var maxCacheEntries=this.maxCacheEntries;if(!YAHOO.lang.isNumber(maxCacheEntries)||(maxCacheEntries<0)){maxCacheEntries=0}if(maxCacheEntries>0&&!this._aCache){this._aCache=[]}this._sName="instance"+YAHOO.widget.DataSource._nIndex;YAHOO.widget.DataSource._nIndex++;this.queryEvent=new YAHOO.util.CustomEvent("query",this);this.cacheQueryEvent=new YAHOO.util.CustomEvent("cacheQuery",this);this.getResultsEvent=new YAHOO.util.CustomEvent("getResults",this);this.getCachedResultsEvent=new YAHOO.util.CustomEvent("getCachedResults",this);this.dataErrorEvent=new YAHOO.util.CustomEvent("dataError",this);this.cacheFlushEvent=new YAHOO.util.CustomEvent("cacheFlush",this)};YAHOO.widget.DataSource.prototype._addCacheElem=function(oResult){var aCache=this._aCache;if(!aCache||!oResult||!oResult.query||!oResult.results){return}if(aCache.length>=this.maxCacheEntries){aCache.shift()}aCache.push(oResult)};YAHOO.widget.DataSource.prototype._doQueryCache=function(oCallbackFn,sQuery,oParent){var aResults=[];var bMatchFound=false;var aCache=this._aCache;var nCacheLength=(aCache)?aCache.length:0;var bMatchContains=this.queryMatchContains;var sOrigQuery;if((this.maxCacheEntries>0)&&aCache&&(nCacheLength>0)){this.cacheQueryEvent.fire(this,oParent,sQuery);if(!this.queryMatchCase){sOrigQuery=sQuery;sQuery=sQuery.toLowerCase()}for(var i=nCacheLength-1;i>=0;i--){var resultObj=aCache[i];var aAllResultItems=resultObj.results;var matchKey=(!this.queryMatchCase)?encodeURIComponent(resultObj.query).toLowerCase():encodeURIComponent(resultObj.query);if(matchKey==sQuery){bMatchFound=true;aResults=aAllResultItems;if(i!=nCacheLength-1){aCache.splice(i,1);this._addCacheElem(resultObj)}break}else{if(this.queryMatchSubset){for(var j=sQuery.length-1;j>=0;j--){var subQuery=sQuery.substr(0,j);if(matchKey==subQuery){bMatchFound=true;for(var k=aAllResultItems.length-1;k>=0;k--){var aRecord=aAllResultItems[k];var sKeyIndex=(this.queryMatchCase)?encodeURIComponent(aRecord[0]).indexOf(sQuery):encodeURIComponent(aRecord[0]).toLowerCase().indexOf(sQuery);if((!bMatchContains&&(sKeyIndex===0))||(bMatchContains&&(sKeyIndex>-1))){aResults.unshift(aRecord)}}resultObj={};resultObj.query=sQuery;resultObj.results=aResults;this._addCacheElem(resultObj);break}}if(bMatchFound){break}}}}if(bMatchFound){this.getCachedResultsEvent.fire(this,oParent,sOrigQuery,aResults);oCallbackFn(sOrigQuery,aResults,oParent)}}return aResults};YAHOO.widget.DS_XHR=function(sScriptURI,aSchema,oConfigs){if(oConfigs&&(oConfigs.constructor==Object)){for(var sConfig in oConfigs){this[sConfig]=oConfigs[sConfig]}}if(!YAHOO.lang.isArray(aSchema)||!YAHOO.lang.isString(sScriptURI)){return}this.schema=aSchema;this.scriptURI=sScriptURI;this._init()};YAHOO.widget.DS_XHR.prototype=new YAHOO.widget.DataSource();YAHOO.widget.DS_XHR.TYPE_JSON=0;YAHOO.widget.DS_XHR.TYPE_XML=1;YAHOO.widget.DS_XHR.TYPE_FLAT=2;YAHOO.widget.DS_XHR.ERROR_DATAXHR="XHR response failed";YAHOO.widget.DS_XHR.prototype.connMgr=YAHOO.util.Connect;YAHOO.widget.DS_XHR.prototype.connTimeout=0;YAHOO.widget.DS_XHR.prototype.scriptURI=null;YAHOO.widget.DS_XHR.prototype.scriptQueryParam="query";YAHOO.widget.DS_XHR.prototype.scriptQueryAppend="";YAHOO.widget.DS_XHR.prototype.responseType=YAHOO.widget.DS_XHR.TYPE_JSON;YAHOO.widget.DS_XHR.prototype.responseStripAfter="\n0){sUri+="&"+this.scriptQueryAppend}var oResponse=null;var oSelf=this;var responseSuccess=function(oResp){if(!oSelf._oConn||(oResp.tId!=oSelf._oConn.tId)){oSelf.dataErrorEvent.fire(oSelf,oParent,sQuery,YAHOO.widget.DataSource.ERROR_DATANULL);return}for(var foo in oResp){}if(!isXML){oResp=oResp.responseText}else{oResp=oResp.responseXML}if(oResp===null){oSelf.dataErrorEvent.fire(oSelf,oParent,sQuery,YAHOO.widget.DataSource.ERROR_DATANULL);return}var aResults=oSelf.parseResponse(sQuery,oResp,oParent);var resultObj={};resultObj.query=decodeURIComponent(sQuery);resultObj.results=aResults;if(aResults===null){oSelf.dataErrorEvent.fire(oSelf,oParent,sQuery,YAHOO.widget.DataSource.ERROR_DATAPARSE);aResults=[]}else{oSelf.getResultsEvent.fire(oSelf,oParent,sQuery,aResults);oSelf._addCacheElem(resultObj)}oCallbackFn(sQuery,aResults,oParent)};var responseFailure=function(oResp){oSelf.dataErrorEvent.fire(oSelf,oParent,sQuery,YAHOO.widget.DS_XHR.ERROR_DATAXHR);return};var oCallback={success:responseSuccess,failure:responseFailure};if(YAHOO.lang.isNumber(this.connTimeout)&&(this.connTimeout>0)){oCallback.timeout=this.connTimeout}if(this._oConn){this.connMgr.abort(this._oConn)}oSelf._oConn=this.connMgr.asyncRequest("GET",sUri,oCallback,null)};YAHOO.widget.DS_XHR.prototype.parseResponse=function(sQuery,oResponse,oParent){var aSchema=this.schema;var aResults=[];var bError=false;var nEnd=((this.responseStripAfter!=="")&&(oResponse.indexOf))?oResponse.indexOf(this.responseStripAfter):-1;if(nEnd!=-1){oResponse=oResponse.substring(0,nEnd)}switch(this.responseType){case YAHOO.widget.DS_XHR.TYPE_JSON:var jsonList,jsonObjParsed;if(YAHOO.lang.JSON){jsonObjParsed=YAHOO.lang.JSON.parse(oResponse);if(!jsonObjParsed){bError=true;break}else{try{jsonList=eval("jsonObjParsed."+aSchema[0])}catch(e){bError=true;break}}}else{if(oResponse.parseJSON){jsonObjParsed=oResponse.parseJSON();if(!jsonObjParsed){bError=true}else{try{jsonList=eval("jsonObjParsed."+aSchema[0])}catch(e){bError=true;break}}}else{if(window.JSON){jsonObjParsed=JSON.parse(oResponse);if(!jsonObjParsed){bError=true;break}else{try{jsonList=eval("jsonObjParsed."+aSchema[0])}catch(e){bError=true;break}}}else{try{while(oResponse.substring(0,1)==" "){oResponse=oResponse.substring(1,oResponse.length)}if(oResponse.indexOf("{")<0){bError=true;break}if(oResponse.indexOf("{}")===0){break}var jsonObjRaw=eval("("+oResponse+")");if(!jsonObjRaw){bError=true;break}jsonList=eval("(jsonObjRaw."+aSchema[0]+")")}catch(e){bError=true;break}}}}if(!jsonList){bError=true;break}if(!YAHOO.lang.isArray(jsonList)){jsonList=[jsonList]}for(var i=jsonList.length-1;i>=0;i--){var aResultItem=[];var jsonResult=jsonList[i];for(var j=aSchema.length-1;j>=1;j--){var dataFieldValue=jsonResult[aSchema[j]];if(!dataFieldValue){dataFieldValue=""}aResultItem.unshift(dataFieldValue)}if(aResultItem.length==1){aResultItem.push(jsonResult)}aResults.unshift(aResultItem)}break;case YAHOO.widget.DS_XHR.TYPE_XML:var xmlList=oResponse.getElementsByTagName(aSchema[0]);if(!xmlList){bError=true;break}for(var k=xmlList.length-1;k>=0;k--){var result=xmlList.item(k);var aFieldSet=[];for(var m=aSchema.length-1;m>=1;m--){var sValue=null;var xmlAttr=result.attributes.getNamedItem(aSchema[m]);if(xmlAttr){sValue=xmlAttr.value}else{var xmlNode=result.getElementsByTagName(aSchema[m]);if(xmlNode&&xmlNode.item(0)&&xmlNode.item(0).firstChild){sValue=xmlNode.item(0).firstChild.nodeValue}else{sValue=""}}aFieldSet.unshift(sValue)}aResults.unshift(aFieldSet)}break;case YAHOO.widget.DS_XHR.TYPE_FLAT:if(oResponse.length>0){var newLength=oResponse.length-aSchema[0].length;if(oResponse.substr(newLength)==aSchema[0]){oResponse=oResponse.substr(0,newLength)}var aRecords=oResponse.split(aSchema[0]);for(var n=aRecords.length-1;n>=0;n--){aResults[n]=aRecords[n].split(aSchema[1])}}break;default:break}sQuery=null;oResponse=null;oParent=null;if(bError){return null}else{return aResults}};YAHOO.widget.DS_XHR.prototype._oConn=null;YAHOO.widget.DS_ScriptNode=function(sUri,aSchema,oConfigs){if(oConfigs&&(oConfigs.constructor==Object)){for(var sConfig in oConfigs){this[sConfig]=oConfigs[sConfig]}}if(!YAHOO.lang.isArray(aSchema)||!YAHOO.lang.isString(sUri)){return}this.schema=aSchema;this.scriptURI=sUri;this._init()};YAHOO.widget.DS_ScriptNode.prototype=new YAHOO.widget.DataSource();YAHOO.widget.DS_ScriptNode.prototype.getUtility=YAHOO.util.Get;YAHOO.widget.DS_ScriptNode.prototype.scriptURI=null;YAHOO.widget.DS_ScriptNode.prototype.scriptQueryParam="query";YAHOO.widget.DS_ScriptNode.prototype.asyncMode="allowAll";YAHOO.widget.DS_ScriptNode.prototype.scriptCallbackParam="callback";YAHOO.widget.DS_ScriptNode.callbacks=[];YAHOO.widget.DS_ScriptNode._nId=0;YAHOO.widget.DS_ScriptNode._nPending=0;YAHOO.widget.DS_ScriptNode.prototype.doQuery=function(oCallbackFn,sQuery,oParent){var oSelf=this;if(YAHOO.widget.DS_ScriptNode._nPending===0){YAHOO.widget.DS_ScriptNode.callbacks=[];YAHOO.widget.DS_ScriptNode._nId=0}var id=YAHOO.widget.DS_ScriptNode._nId;YAHOO.widget.DS_ScriptNode._nId++;YAHOO.widget.DS_ScriptNode.callbacks[id]=function(oResponse){if((oSelf.asyncMode!=="ignoreStaleResponses")||(id===YAHOO.widget.DS_ScriptNode.callbacks.length-1)){oSelf.handleResponse(oResponse,oCallbackFn,sQuery,oParent)}else{}delete YAHOO.widget.DS_ScriptNode.callbacks[id]};YAHOO.widget.DS_ScriptNode._nPending++;var sUri=this.scriptURI+"&"+this.scriptQueryParam+"="+sQuery+"&"+this.scriptCallbackParam+"=YAHOO.widget.DS_ScriptNode.callbacks["+id+"]";this.getUtility.script(sUri,{autopurge:true,onsuccess:YAHOO.widget.DS_ScriptNode._bumpPendingDown,onfail:YAHOO.widget.DS_ScriptNode._bumpPendingDown})};YAHOO.widget.DS_ScriptNode.prototype.handleResponse=function(oResponse,oCallbackFn,sQuery,oParent){var aSchema=this.schema;var aResults=[];var bError=false;var jsonList,jsonObjParsed;try{jsonList=eval("(oResponse."+aSchema[0]+")")}catch(e){bError=true}if(!jsonList){bError=true;jsonList=[]}else{if(!YAHOO.lang.isArray(jsonList)){jsonList=[jsonList]}}for(var i=jsonList.length-1;i>=0;i--){var aResultItem=[];var jsonResult=jsonList[i];for(var j=aSchema.length-1;j>=1;j--){var dataFieldValue=jsonResult[aSchema[j]];if(!dataFieldValue){dataFieldValue=""}aResultItem.unshift(dataFieldValue)}if(aResultItem.length==1){aResultItem.push(jsonResult)}aResults.unshift(aResultItem)}if(bError){aResults=null}if(aResults===null){this.dataErrorEvent.fire(this,oParent,sQuery,YAHOO.widget.DataSource.ERROR_DATAPARSE);aResults=[]}else{var resultObj={};resultObj.query=decodeURIComponent(sQuery);resultObj.results=aResults;this._addCacheElem(resultObj);this.getResultsEvent.fire(this,oParent,sQuery,aResults)}oCallbackFn(sQuery,aResults,oParent)};YAHOO.widget.DS_ScriptNode._bumpPendingDown=function(){YAHOO.widget.DS_ScriptNode._nPending--};YAHOO.widget.DS_JSFunction=function(oFunction,oConfigs){if(oConfigs&&(oConfigs.constructor==Object)){for(var sConfig in oConfigs){this[sConfig]=oConfigs[sConfig]}}if(!YAHOO.lang.isFunction(oFunction)){return}else{this.dataFunction=oFunction;this._init()}};YAHOO.widget.DS_JSFunction.prototype=new YAHOO.widget.DataSource();YAHOO.widget.DS_JSFunction.prototype.dataFunction=null;YAHOO.widget.DS_JSFunction.prototype.doQuery=function(oCallbackFn,sQuery,oParent){var oFunction=this.dataFunction;var aResults=[];aResults=oFunction(sQuery);if(aResults===null){this.dataErrorEvent.fire(this,oParent,sQuery,YAHOO.widget.DataSource.ERROR_DATANULL);return}var resultObj={};resultObj.query=decodeURIComponent(sQuery);resultObj.results=aResults;this._addCacheElem(resultObj);this.getResultsEvent.fire(this,oParent,sQuery,aResults);oCallbackFn(sQuery,aResults,oParent);return};YAHOO.widget.DS_JSArray=function(aData,oConfigs){if(oConfigs&&(oConfigs.constructor==Object)){for(var sConfig in oConfigs){this[sConfig]=oConfigs[sConfig]}}if(!YAHOO.lang.isArray(aData)){return}else{this.data=aData;this._init()}};YAHOO.widget.DS_JSArray.prototype=new YAHOO.widget.DataSource();YAHOO.widget.DS_JSArray.prototype.data=null;YAHOO.widget.DS_JSArray.prototype.doQuery=function(oCallbackFn,sQuery,oParent){var i;var aData=this.data;var aResults=[];var bMatchFound=false;var bMatchContains=this.queryMatchContains;if(sQuery){if(!this.queryMatchCase){sQuery=sQuery.toLowerCase()}for(i=aData.length-1;i>=0;i--){var aDataset=[];if(YAHOO.lang.isString(aData[i])){aDataset[0]=aData[i]}else{if(YAHOO.lang.isArray(aData[i])){aDataset=aData[i]}}if(YAHOO.lang.isString(aDataset[0])){var sKeyIndex=(this.queryMatchCase)?encodeURIComponent(aDataset[0]).indexOf(sQuery):encodeURIComponent(aDataset[0]).toLowerCase().indexOf(sQuery);if((!bMatchContains&&(sKeyIndex===0))||(bMatchContains&&(sKeyIndex>-1))){aResults.unshift(aDataset)}}}}else{for(i=aData.length-1;i>=0;i--){if(YAHOO.lang.isString(aData[i])){aResults.unshift([aData[i]])}else{if(YAHOO.lang.isArray(aData[i])){aResults.unshift(aData[i])}}}}this.getResultsEvent.fire(this,oParent,sQuery,aResults);oCallbackFn(sQuery,aResults,oParent)};YAHOO.register("autocomplete",YAHOO.widget.AutoComplete,{version:"2.5.1",build:"984"});if(!Y.YUI2){Y.YUI2=YAHOO}if(!YAHOO._activ&&YAHOO.util.Event){YAHOO._activ=true;YAHOO.util.Event._load()}},"2.5.2",{requires:["yui2-yahoo","yui2-dom","yui2-event","yui2-datasource"]});YUI.add("bo-selecta",function(b){var a=b.YUI2;b.BoSelecta=function(d,c){this.showUsername=c.showUsername||true;this.showSubtitle=c.showSubtitle||false;this.showIcon=c.showIcon||false;this.showRelationship=c.showRelationship||false;this.usePersonMenu=c.usePersonMenu||false;this.linkUsernameToPhotostream=c.linkUsernameToPhotostream||false;this.linkSubtitle=c.linkSubtitle||false;this.showEditRelationshipLink=c.showEditRelationshipLink||false;this.searchOnUsername=c.searchOnUsername||true;this.searchOnRealname=c.searchOnRealname||false;this.searchOnEmail=c.searchOnEmail||false;this.searchOnPathAlias=c.searchOnPathAlias||false;this.includeUser=c.includeUser||false;this.includeAddressBook=c.includeAddressBook||false;this.maxResultsDisplayed=c.maxResultsDisplayed||5;this.globalMaxResultsDisplayed=c.globalMaxResultsDisplayed||10;this.showTotalResults=c.showTotalResults||false;this.disableMouseHover=c.disableMouseHover||false;this.selectFirstItem=c.selectFirstItem||false;this.hideNoContactMessage=c.hideNoContactMessage||false;this.zeroResultsMessages=c.zeroResultsMessages||[];this.preloadText=c.preloadText||"";this.defaultText=c.defaultText||"";this.loadingText=c.loadingText||b.transjax.get("bo-selecta","loading");this.focusOnFetch=c.focusOnFetch||false;this.fetchDataImmediately=c.fetchDataImmediately||false;this.allowNoContacts=c.allowNoContacts||false;this.allowFormSubmit=c.allowFormSubmit||false;this.respectCanTagFlag=c.respectCanTagFlag||false;this.apiURL=c.apiURL||"";this.enableGlobalSearch=c.enableGlobalSearch||false;this.defaultContainerWidth=c.defaultContainerWidth||250;this.purgeFormOnDataFailure=(typeof c.purgeFormOnDataFailure!=="undefined"?c.purgeFormOnDataFailure:true);this.iconAnimCode=(false)?'style="opacity:0;" onload="var a = new Y.U.Anim(this, { opacity: { to: 1 } }, 0.2, YAHOO.util.Easing.easeOut); a.animate();"':'style="visibility:hidden;" onload="this.style.visibility = \'visible\';"';if(this.includeUser){this.meString=b.transjax.get("bo-selecta","me").toLowerCase()}b.augment(this,b.EventTarget);this.contacts=null;this.skipList={};this.shadowInit=false;this.searchingGlobally=false;this._initHTML(d);this._initAutoComplete();if(this.fetchDataImmediately){this.fetchData()}};b.augment(b.BoSelecta,b.EventTarget);b.BoSelecta.prototype._initHTML=function(e){if(b.Lang.isString(e)){e=b.one(e)}if(!e instanceof b.Node){e=b.one("#BoSelecta_input")}this.inputField=e;this.container=this.inputField.get("parentNode");var c=this.container.all(".no-js-fallback");c.setStyle("display","none");this.container.addClass("bo-selecta");this.container.addClass("yui-skin-sam");this.containerId=b.stamp(this.container);this.inputField.addClass("input");var d=this.container.all(".loading");if(d.size()>0){this.loadingBox=d.item(0);this.loadingBox.setStyle("display",this.fetchDataImmediately?"block":"none")}else{this.loadingBox=b.Node.create('
                  '+this.loadingText+"
                  ");this.loadingBox.setStyle("display",this.fetchDataImmediately?"block":"none");this.container.append(this.loadingBox)}this.inputField.setStyle("display",this.fetchDataImmediately?"none":"inline");this.inputField.set("disabled",false);this.inputField.set("value",this.preloadText);this.inputField.addClass("grey");this.inputField.on("focus",this.clearDefaultText,this,true);this.inputField.on("blur",function(g){if(this.inputField.get("value")===""){this.restoreDefaultText()}},this,true);this.dropdownContainer=b.Node.create('
                  ');this.dropdownContainerId=b.stamp(this.dropdownContainer);this.dropdownContainer.set("id",this.dropdownContainerId);this.container.append(this.dropdownContainer);if(!this.allowFormSubmit){this.form=this.container.ancestor("form");if(this.form){this.form.on("submit",function(g){g.halt()})}}var f=this;this.inputField.on("keydown",this._onInputFieldKeyDown,this,true);this.maxInputWidth=parseInt(this.container.getStyle("width"),10)||this.defaultContainerWidth;this.defaultInputWidth=parseInt(this.inputField.getStyle("width"),10)||this.defaultContainerWidth};b.BoSelecta.prototype._initAutoComplete=function(){var k=this;this.contactsCacheDataSource=new a.widget.DS_JSFunction(function(l){return k._searchContacts(l)});this.contactsCacheDataSource.maxCacheEntries=0;this.globalSearchDataSource=new b.BoSelecta.DS_globalSearch();this.autoComp=new a.widget.AutoComplete(this.inputField.get("id"),this.dropdownContainerId,this.contactsCacheDataSource);this.autoComp.animVert=false;this.autoComp.highlightClassName="highlight";this.autoComp.maxResultsDisplayed=this.maxResultsDisplayed;this.autoComp.queryDelay=0;this.autoComp.useShadow=true;this.autoComp.itemSelectEvent.subscribe(this._onItemSelectEvent,this,true);this.autoComp.containerExpandEvent.subscribe(this._onContainerExpandEvent,this,true);this.autoComp.containerCollapseEvent.subscribe(this._onContainerCollapseEvent,this,true);this.autoComp.textboxKeyEvent.subscribe(this._onTextboxKeyEvent,this,true);this.autoComp.itemArrowToEvent.subscribe(this._onItemArrowToEvent,this,true);this.autoComp.itemArrowFromEvent.subscribe(this._onItemArrowFromEvent,this,true);this.autoComp.itemMouseOverEvent.subscribe(this._onItemMouseOverEvent,this,true);this.autoComp.itemMouseOutEvent.subscribe(this._onItemMouseOutEvent,this,true);this.autoComp.selector=this;this.autoComp.autoHighlight=this.selectFirstItem;if(this.disableMouseHover){this.autoComp.prehighlightClassName="highlight_mouseover"}this.autoComp.formatResult=this._formatResult;this.autoComp.doBeforeExpandContainer=this._resizeDropdownToFit;if(this.showTotalResults){this.autoComp.showMaxResultsMessage=true;this.autoComp.MaxResultsMessage=b.transjax.get("bo-selecta","uber_contact_list_max_results");this.autoComp.MaxResultsUrl="/search/people/?q=%s&m=names&see=all";this.autoComp.MaxResultsClassName="bs-total-results"}this.shadowTable=document.createElement("table");this.shadowTable.className="shadow_table";var i=document.createElement("tbody"),j=document.createElement("tr"),h=document.createElement("tr"),g=document.createElement("tr"),s=document.createElement("td"),q=document.createElement("td"),n=document.createElement("td"),f=document.createElement("td"),e=document.createElement("td"),c=document.createElement("td"),d=document.createElement("td"),o=document.createElement("td"),p=document.createElement("td");s.className="shadow_sprite shadow_tl";q.className="shadow_sprite shadow_t";n.className="shadow_sprite shadow_tr";f.className="shadow_sprite shadow_l";e.className="shadow_sprite shadow_m";c.className="shadow_sprite shadow_r";d.className="shadow_sprite shadow_bl";o.className="shadow_sprite shadow_b";p.className="shadow_sprite shadow_br";s.innerHTML=q.innerHTML=n.innerHTML=f.innerHTML=e.innerHTML=c.innerHTML=d.innerHTML=o.innerHTML=p.innerHTML=" ";this.shadowTable.appendChild(i);i.appendChild(j);i.appendChild(h);i.appendChild(g);j.appendChild(s);j.appendChild(q);j.appendChild(n);h.appendChild(f);h.appendChild(e);h.appendChild(c);g.appendChild(d);g.appendChild(o);g.appendChild(p);this.inputField.on("focus",function(){k.autoComp._sendQuery(k.getQuery())})};b.BoSelecta.prototype._fetchData=function(){this.fire("BoSelecta:dataFetchStart");this.inputField.setStyle("display","none");this.loadingBox.setStyle("display","block");var c=this.apiURL;var d=this;var e={success:function(f,g,l){if(g.responseText==="-1"||g.responseText===""){if(d.allowNoContacts){d.contacts=[];d.restoreDefaultText();d.loadingBox.style.display="none";d.inputField.style.display="inline";if(d.inputField.value===""||d.focusOnFetch){d.clear(true)}d.dataFetchComplete.fire()}else{e.failure()}return}var k=g.responseText.split("\u0002")[1];var p="\u0003";var m="\u0001";d.contacts=k.split(p);var i;for(var h=0,j=d.contacts.length;h0){var d,r,c;for(var e=0,k=this.zeroResultsMessages.length;e'+i._sanitizeString(v.substring(s,u))+""+i._sanitizeString(v.substring(u,v.length))}var o;if(j.globalSearchLink){o='";return o}if(j.message){o='

                  '+j.message+"

                  ";return o}var f=!l?null:new RegExp(i._substituteEquivalentChars(i._escapeForRegEx(l)),"gi");if(!l){l=""}var e=(i.respectCanTagFlag&&j.c==="0")?' class="disabled"':"";if(j.e&&!j.u&&!j.n){if(!j.i){j.i="/images/icon_unread.gif"}var k=i.showIcon?'":"";var q='

                  '+k+''+p(j.e,f)+'

                  ';return q}var h=(j.a)?j.a:j.n;var d=' / '+b.transjax.get("bo-selecta","uber_contact_list_view_profile")+"";if(!j.i){j.i=(j.f&&j.f!==0&&j.s&&j.s!==0)?"http://farm"+j.f+".static"+(b.config.flickr.dev?"-dev":"")+".flickr.com/"+j.s+"/buddyicons/"+j.n+".jpg":"http://www.flickr.com/images/buddyicon.jpg"}var m="";if(i.showRelationship){if(j.d==="1"&&j.y==="1"){m+=b.transjax.get("bo-selecta","uber_contact_list_friend_and_family")}else{if(j.d==="1"){m+=b.transjax.get("bo-selecta","uber_contact_list_friend")}else{if(j.y==="1"){m+=b.transjax.get("bo-selecta","uber_contact_list_family")}else{if(j.removed==="1"){m+=''+b.transjax.get("bo-selecta","uber_contact_list_removed")+""}else{if(i.searchingGlobally){m+=""}else{m+=b.transjax.get("bo-selecta","uber_contact_list_contact")}}}}}if(i.showEditRelationshipLink&&!i.searchingGlobally){m+=' ("+b.transjax.get("bo-selecta","uber_contact_list_edit")+")"}}var k=i.showIcon?'":"";k=i.linkUsernameToPhotostream?''+k+"":k;var c=i.showUsername?p(j.u,f):"";c=i.linkUsernameToPhotostream?''+c+"":''+c+"";var g="";if(i.showSubtitle){if(!j.matched||j.matched==="realname"){g=j.r?p(j.r,f):b.transjax.get("bo-selecta","uber_contact_list_no_realname")}else{if(j.matched==="username"){g=j.r?i._sanitizeString(j.r):b.transjax.get("bo-selecta","uber_contact_list_no_realname")}else{if(j.matched==="email"){g=p(j.e,f)}else{if(j.matched==="path_alias"&&j.a){g="flickr.com/people/"+p(j.a,f)+"/"}}}}g=i.linkSubtitle?''+g+"":''+g+""}var n='

                  '+k+c+g+''+m+"

                  ";return n};b.BoSelecta.prototype._resizeDropdownToFit=function(j,c,h,e){var f=this.selector;c=b.one(c);j=b.one(j);if(!f.shadowInit&&f.autoComp._elShadow&&!b.UA.ie){f.autoComp._elShadow.appendChild(f.shadowTable);f.shadowInit=true}else{if(!f.shadowInit&&f.autoComp._elShadow&&b.UA.ie){b.one(f.autoComp._elShadow).removeClass("yui-ac-shadow");b.one(f.autoComp._elShadow).addClass("yui-ac-shadow-ie");f.shadowInit=true}}var i=j.getXY();i[1]+=j.get("offsetHeight")+(b.UA.ie||b.UA.opera?-1:0);c.setY(i[1]);var d=c.all("p"),g=d.size(),k=f.maxInputWidth-(b.UA.ie?0:2);setTimeout(function(){d.removeClass("measured");var q,y,v,o,w,r,x,p,u,t,m;for(var s=0;sp)?r:p;u=q.one("span.relationship");t=(u)?u.get("offsetWidth"):0;m=v+o+t+38}if(m>k){k=m}if(q.hasClass("bs-send-email-link")){q.get("parentNode").addClass("bs-send-email-link-container")}if(q.hasClass("bs-enter-email-link")){q.get("parentNode").addClass("bs-enter-email-link-container")}}if(b.UA.ie){var l=c.one("div.yui-ac-content");if(g<7){l.addClass("yui-ac-content-short")}else{l.removeClass("yui-ac-content-short")}}c.setStyle("width",k+"px");if(f.autoComp._elShadow&&!b.UA.ie){f.autoComp._elShadow.style.width=(k+14)+"px";f.autoComp._elShadow.style.height=(c.get("firstChild").get("offsetHeight")===0)?"0":(c.get("firstChild").get("offsetHeight")+7)+"px"}d.addClass("measured")},0);if(f.usePersonMenu){f._attachIconEvents(c)}return true};b.BoSelecta.prototype._attachIconEvents=function(e){if(!personmenu_process_img||typeof personmenu_process_img!=="function"){return}var g=e.all("img"),d;for(var f=0,c=g.size();f0){f=(c.item(0).hasClass("bs-message")&&!c.item(0).hasClass("bs-onclick"))}}if(!this.autoComp._oCurItem||f){this.fire("BoSelecta:inputEnter")}}};b.BoSelecta.prototype._onItemArrowToEvent=function(h,c){var g=b.one(c[1]).one("p");var d=g.getAttribute("nsid");var f=g.getAttribute("email");if(d){this.fire("BoSelecta:resultArrowTo",d)}else{if(f){this.fire("BoSelecta:resultArrowTo",f)}}};b.BoSelecta.prototype._onItemArrowFromEvent=function(h,c){var g=b.one(c[1]).one("p");var d=g.getAttribute("nsid");var f=g.getAttribute("email");if(d){this.fire("BoSelecta:resultArrowTo",d)}else{if(f){this.fire("BoSelecta:resultArrowTo",f)}}};b.BoSelecta.prototype._onItemMouseOverEvent=function(h,c){var g=b.one(c[1]).one("p");var d=g.getAttribute("nsid");var f=g.getAttribute("email");if(d){this.fire("BoSelecta:resultArrowTo",d)}else{if(f){this.fire("BoSelecta:resultArrowTo",f)}}};b.BoSelecta.prototype._onItemMouseOutEvent=function(h,c){var g=b.one(c[1]).one("p");var d=g.getAttribute("nsid");var f=g.getAttribute("email");if(d){this.fire("BoSelecta:resultArrowTo",d)}else{if(f){this.fire("BoSelecta:resultArrowTo",f)}}};b.BoSelecta.prototype._sanitizeString=function(c){c=c.replace(//g,">");return c};b.BoSelecta.prototype._unsanitizeString=function(c){c=c.replace(/\</g,"<").replace(/\>/g,">");return c};b.BoSelecta.prototype._escapeForRegEx=function(c){c=decodeURIComponent(c);c=c.replace(/\\/g,"\\\\").replace(/\./g,"\\.").replace(/\*/g,"\\*").replace(/\$/g,"\\$").replace(/\^/g,"\\^").replace(/\?/g,"\\?");c=c.replace(/\|/g,"\\|").replace(/\+/g,"\\+").replace(/\(/g,"\\(").replace(/\)/g,"\\)").replace(/\[/g,"\\[").replace(/\]/g,"\\]");return c};b.BoSelecta.prototype._substituteEquivalentChars=function(f){var c,e,d;c=["(?:ae|??)","(?:oe|??)","(?:ss|??)","(?:th|??)","[a???????????????]","[e??????????]","[i??????????]","[o??????????????????????????????????]","[u?????????????????????????????]","[y????]","[c????]","[d??]","[f??]","[g??]","[h??]","[j??]","[k??]","[l??]","[n????]","[r??]","[s?????]","[t??]","[z??]"];e=c.length;for(d=0;d0){var g,p,f;for(var h=0,o=c.selector.zeroResultsMessages.length;h10){f=undefined;e.Object.each(i,function(l,k){if(!f||lnote or a person?',edit_face_boundry:'Edit face boundary?',add_face_boundry:'Add a face boundary for this person?',remove_person:'Remove this person?',remove_yourself:'Remove yourself from this photo? No one else will be able to re-add you.',already_marked:'That person already has their face marked in this photo.',cant_add_face:"That person has already been added by someone else. You can't add a face boundary for them.",cant_edit:"You can't edit or delete that person at the moment. Please reload the page and try again.",send_an_email_photo:'Send an email to this address, inviting the recipient to confirm they appear in this photo?',send_an_email_video:'Send an email to this address, inviting the recipient to confirm they appear in this video?',or_send_an_email_photo:'Or, send an email to this address, inviting the recipient to confirm they appear in this photo?',or_send_an_email_video:'Or, send an email to this address, inviting the recipient to confirm they appear in this video?',if_you_enter_email_photo:"If you enter an email address instead of a name, we\'ll send an email inviting the recipient to confirm they appear in this photo.",if_you_enter_email_video:"If you enter an email address instead of a name, we\'ll send an email inviting the recipient to confirm they appear in this video.",if_you_enter_email_photo_2:"If you enter an email address instead of a name, we\'ll send a mail inviting the recipient to confirm they appear in this photo.",if_you_enter_email_video_2:"If you enter an email address instead of a name, we\'ll send a mail inviting the recipient to confirm they appear in this video.",reached_user_limit_photo:"You can\'t add any more people to this photo.",reached_user_limit_video:"You can\'t add any more people to this video.",reached_invite_limit_photo:"You can\'t add any more people to this photo.",reached_invite_limit_video:"You can\'t add any more people to this video.",username_tooltip_your_photos:'View your photos of %s',username_tooltip_photos_of_you:'View %s photos of you',username_tooltip:'View %s photos of %s',cant_tag_general_msg:'You cannot add this user to the photo.',cant_tag_vid_general_msg:'You cannot add this user to the video.',cant_tag_msg:'That member does not allow others to add them to photos.',saving_face_boundry:'Saving face boundary...',deleting_face_boundry:'Deleting face boundary...',not_visible_to_others:'Not visible to others',adding:'Adding...',deleting:'Deleting...',type_person_name:'Type the name of this person:',add_yourself_to_video:"Since this isn\'t your video and isn\'t public, the only person you can add to it is yourself. Are you in the video?",add_yourself_to_photo:"Since this isn\'t your photo and isn\'t public, the only person you can add to it is yourself. Are you in the photo?"})},"0.0.1",{requires:["transjax-base"]});YUI.add("photo-people-controller",function(b){var c;function g(k,j,l){var m,o,n;if(!j){n=b.transjax.get("photo-people","cant_tag_general_msg")}else{if(j.c==="0"){n=b.transjax.get("photo-people","cant_tag_msg")}else{if(!j.n&&!j.e){n=b.transjax.get("photo-people","cant_tag_general_msg")}}}if(n){b.fire("peopleController:addPersonFailure",j,n);return}m={photo_id:k};if(l){m.person_h=l.h;m.person_w=l.w;m.person_x=l.x;m.person_y=l.y}o={success:function(q){var p;b.dejaview();if(j.n){b.fire("peopleController:addPersonSuccess",j,l)}else{if(j.e&&q.data&&q.data.result&&parseInt(q.data.result.flickr_member,10)===1&&q.data.result.flickr_member_nsid){b.flickrAPI.callMethod("flickr.people.getInfo",{user_id:q.data.result.flickr_member_nsid},{success:function(){var r=arguments[0].data.person;b.fire("peopleController:addPersonSuccess",{n:r.id,u:r.username._content,r:r.realname._content,e:j.e,s:r.iconserver,f:r.iconfarm,i:(r.iconfarm&&r.iconfarm!==0&&r.iconserver&&r.iconserver!==0)?"http://farm"+r.iconfarm+".static"+(b.config.flickr.dev?"-dev":"")+".flickr.com/"+r.iconserver+"/buddyicons/"+r.id+".jpg":"http://www.flickr.com/images/buddyicon.jpg",a:r.path_alias,d:r.friend,y:r.family},l)},failure:function(){alert("Couldn't get member data.")}})}else{b.fire("peopleController:addPersonSuccess",j,l)}}p=b.PhotoData.get(k);if(p){p.increment("people_count")}},failure:function(p){b.fire("peopleController:addPersonFailure",j,b.transjax.get("photo-people","cant_tag_general_msg"))}};if(j.n){if(!b.config.people.skip){b.config.people.skip={}}b.config.people.skip[j.n]=j;m.user_id=j.n;b.flickrAPI.callMethod("flickr.photos.people.add",m,o)}else{if(j.e){m.email=j.e;b.flickrAPI.callMethod("flickr.photos.people.addByEmail",m,o)}}}function d(k,j){var l,m;l={photo_id:k};if(j.n){l.user_id=j.n}else{if(j.e){l.email=j.e}}m={success:function(o){var n;b.dejaview();b.fire("peopleController:removePersonSuccess",j);n=b.PhotoData.get(k);if(n){n.decrement("people_count")}},failure:function(){b.fire("peopleController:removePersonFailure",j)}};b.flickrAPI.callMethod("flickr.photos.people.delete",l,m)}function h(){return c}function e(j){c=j}function a(j){var k=/^[a-z_0-9\.\-\+]+@[a-z_0-9\.\-\+]+\.[a-z]/i;return k.test(j)}function i(k){var j=/\.|@/;return j.test(k)}function f(j){var l=j.getQuery();if(l!==""){if(!a(l)){var k=j.searchingGlobally?"sharing_no_member":"sharing_no_contact";if(i(l)){k="sharing_email_error"}return false}else{return true}}return false}b.peopleController={addPerson:g,removePerson:d,getContactsCache:h,setContactsCache:e,validateContact:f}},"0.0.1",{requires:["event","gallery-flickr-api","dejaview","photo-people-transjax"]});YUI.add("input-hint",function(d){var g;function m(n){n.hint.addClass("input-hint-hidden")}function e(n){n.hint.removeClass("input-hint-hidden")}function f(n){var o=n.field.get("value");if(n!==g&&o===""){n.hint.setStyle("position","absolute");n.hint.setXY(n.field.getXY());e(n)}else{m(n)}}function l(){var n;if(!d.Lang.isBoolean(l.is_okay)){n=window.document.createElement("input");l.is_okay=!!("placeholder" in n)}return l.is_okay}function b(r){var o,q,p,n;if(d.Lang.isString(r)){r=d.one(r)}if(r&&r instanceof d.Node){q=r.getAttribute("for");p=d.one("#"+q);if(p&&p instanceof d.Node){if(l()){p.setAttribute("placeholder",r.get("innerHTML"));r.remove();o=undefined}else{n=p.ancestor("form")||d.one("body");o={hint:r,field:p,container:n}}}}return o}function i(o,n){n.field.focus()}function j(o,n){if(o.target===n.field){g=n;m(n)}}function a(o,n){g=undefined;f(n)}function h(o,n){window.setTimeout(function(){f(n)},0)}function c(p){var o,n;for(n=0;n'+t+"");r.get("parentNode").insertBefore(o,r)}if(o){p=b(o);if(p){q.push(p)}}}else{r.all("label.input-hint").each(function(w,v,u){p=b(w);if(p){q.push(p)}})}}d.Array.each(q,function(u){if(u.field.test(":focus")||(d.focusTracker.get()===u.field._node)){g=u}u.hint.on("click",i,this,u);u.field.on("drop",function(v){f(u)},this,u);d.one("body").on("click",h,this,u);d.one("body").on("keydown",h,this,u);u.container.on("focus",j,this,u);u.container.on("blur",a,this,u);f(u);n+=1});return{count:n,blurAll:function(){c(q)}}}d.inputHint=k},"0.0.1",{requires:["node","event-focus"]});YUI.add("photo-comments-transjax",function(a){a.transjax.add("photo-comments",{error_delete_permission:"Sorry, but you don\'t have permission to delete that comment, or you aren\'t signed into Flickr.",error_delete_generic:'Sorry, but there was a problem deleting the comment.',error_edit_getting:'Sorry, but there was a problem getting the comment to edit.',error_edit_generic:'Sorry, but there was a problem editing the comment.',error_add_rate_limit:'Slow down, partner! To protect the Flickr community against spam, we place a few restrictions on new accounts. You can read more about these restrictions in this FAQ.',error_add_generic:'We had a problem saving your comment.',reply_wipe_confirmation:'You already started typing a comment. If you continue, that text will be lost!',reply_button_confirm:'OKAY',reply_button_cancel:'CANCEL',delete_confirmation:'Are you sure you want to delete this comment?',delete_button_confirm:'YES, DELETE IT',delete_button_cancel:'CANCEL',hide_formatting_tips:'Hide formatting tips',faves_rollup_placeholder:'...and %s more favorites',block_user:'Block this user from commenting on your stuff in the future.',user_blocked:'You are currently blocking this Flickr member. They cannot add any more comments to any of your stuff. You can remove this via the blocked list on your "Contacts" page.',bert_lorem_ipsum:"Lorem Ip\'sum lorem"})},"0.0.1",{requires:["transjax-base"]});if(typeof deconcept=="undefined"){var deconcept=new Object()}if(typeof deconcept.util=="undefined"){deconcept.util=new Object()}if(typeof deconcept.SWFObjectUtil=="undefined"){deconcept.SWFObjectUtil=new Object()}deconcept._playerVersion=null;deconcept.SWFObject=function(f,d,m,g,j,l,o,i,a,e,n){if(!document.getElementById){return}this.DETECT_KEY=e?e:"detectflash";this.skipDetect=deconcept.util.getRequestParameter(this.DETECT_KEY);this.params=new Object();this.variables=new Object();this.attributes=new Array();if(f){this.setAttribute("swf",f)}if(d){this.setAttribute("id",d)}if(m){this.setAttribute("width",m)}if(g){this.setAttribute("height",g)}this.setAttribute("base",(n)?n:".");if(j){this.setAttribute("version",new deconcept.PlayerVersion(j.toString().split(".")))}this.installedVer=deconcept.SWFObjectUtil.getPlayerVersion();if(!window.opera&&document.all&&this.installedVer.major>7){deconcept.SWFObject.doPrepUnload=true}if(l){this.addParam("bgcolor",l)}var b=o?o:"high";this.addParam("quality",b);this.setAttribute("useExpressInstall",false);this.setAttribute("doExpressInstall",false);var k=(i)?i:window.location;this.setAttribute("xiRedirectUrl",k);this.setAttribute("redirectUrl","");if(a){this.setAttribute("redirectUrl",a)}};deconcept.SWFObject.prototype={useExpressInstall:function(a){this.xiSWFPath=!a?"expressinstall.swf":a;this.setAttribute("useExpressInstall",true)},setAttribute:function(a,b){this.attributes[a]=b},getAttribute:function(a){return this.attributes[a]},addParam:function(a,b){this.params[a]=b},getParams:function(){return this.params},addVariable:function(a,b){this.variables[a]=b},getVariable:function(a){return this.variables[a]},getVariables:function(){return this.variables},getVariablePairs:function(){var a=new Array();var b;var c=this.getVariables();for(b in c){a[a.length]=b+"="+c[b]}return a},getSWFHTML:function(e){var d="";if(navigator.plugins&&navigator.mimeTypes&&navigator.mimeTypes.length){if(this.getAttribute("doExpressInstall")){this.addVariable("MMplayerType","PlugIn");this.setAttribute("swf",this.xiSWFPath)}d='0){d+='flashvars="'+b+'"'}d+="/>"}else{if(this.getAttribute("doExpressInstall")){this.addVariable("MMplayerType","ActiveX");this.setAttribute("swf",this.xiSWFPath)}d='';d+='';d+='';var c=this.getParams();for(var a in c){d+=''}var b=this.getVariablePairs().join("&");if(b.length>0){d+=''}d+=""}d=(typeof e!="undefined"?e:"")+d;return d},write:function(a,d){if(this.getAttribute("useExpressInstall")){var b=new deconcept.PlayerVersion([6,0,65]);if(this.installedVer.versionIsValid(b)&&!this.installedVer.versionIsValid(this.getAttribute("version"))){this.setAttribute("doExpressInstall",true);this.addVariable("MMredirectURL",escape(this.getAttribute("xiRedirectUrl")));document.title=document.title.slice(0,47)+" - Flash Player Installation";this.addVariable("MMdoctitle",document.title)}}if(this.skipDetect||this.getAttribute("doExpressInstall")||this.installedVer.versionIsValid(this.getAttribute("version"))){var c=(typeof a=="string")?document.getElementById(a):a;c.innerHTML=this.getSWFHTML(d);return true}else{if(this.getAttribute("redirectUrl")!=""){document.location.replace(this.getAttribute("redirectUrl"))}}return false}};deconcept.SWFObjectUtil.getPlayerVersion=function(){if(deconcept._playerVersion){return deconcept._playerVersion}var c=new deconcept.PlayerVersion([0,0,0]);if(navigator.plugins&&navigator.mimeTypes.length){var a=navigator.plugins["Shockwave Flash"];if(a&&a.description){a.description.match(/[a-zA-Z\s]([0-9]+)\.([0-9]+)\s*[rbd]([0-9]+)/);var g=[RegExp.$1,RegExp.$2,RegExp.$3];if(navigator.platform.match(/win32/i)&&!g[0]){a.description.match(/[a-zA-Z\s]([0-9]+)\.([0-9]+|([0-9]+.[0-9]+.))\s*[rbd]([0-9]+)/);g=[RegExp.$1,RegExp.$2,RegExp.$3]}c=new deconcept.PlayerVersion(g)}}else{if(navigator.userAgent&&navigator.userAgent.indexOf("Windows CE")>=0){var d=1;var b=3;while(d){try{b++;d=new ActiveXObject("ShockwaveFlash.ShockwaveFlash."+b);c=new deconcept.PlayerVersion([b,0,0])}catch(f){d=null}}}else{try{var d=new ActiveXObject("ShockwaveFlash.ShockwaveFlash.7")}catch(f){try{var d=new ActiveXObject("ShockwaveFlash.ShockwaveFlash.6");c=new deconcept.PlayerVersion([6,0,21]);d.AllowScriptAccess="always"}catch(f){if(c.major==6){return c}}try{d=new ActiveXObject("ShockwaveFlash.ShockwaveFlash")}catch(f){}}if(d!=null){c=new deconcept.PlayerVersion(d.GetVariable("$version").split(" ")[1].split(","))}}}deconcept._playerVersion=c;return c};deconcept.PlayerVersion=function(a){this.major=a[0]!=null?parseInt(a[0]):0;this.minor=a[1]!=null?parseInt(a[1]):0;this.rev=a[2]!=null?parseInt(a[2]):0};deconcept.PlayerVersion.prototype.versionIsValid=function(a){if(this.majora.major){return true}if(this.minora.minor){return true}if(this.rev=0;b--){c[b].style.display="none";for(var a in c[b]){if(typeof c[b][a]=="function"){c[b][a]=function(){}}}}};if(deconcept.SWFObject.doPrepUnload){if(!deconcept.unloadSet){deconcept.SWFObjectUtil.prepUnload=function(){__flash_unloadHandler=function(){};__flash_savedUnloadHandler=function(){};window.attachEvent("onunload",deconcept.SWFObjectUtil.cleanupSWFs)};window.attachEvent("onbeforeunload",deconcept.SWFObjectUtil.prepUnload);deconcept.unloadSet=true}}if(!document.getElementById&&document.all){document.getElementById=function(a){return document.all[a]}}var getQueryParamValue=deconcept.util.getRequestParameter;var FlashObject=deconcept.SWFObject;var SWFObject=deconcept.SWFObject;function SWFMacMouseWheel(a){this.so=a;var b=navigator.appVersion.toLowerCase().indexOf("mac")!=-1;if(b){this.init()}}SWFMacMouseWheel.prototype={init:function(){SWFMacMouseWheel.instance=this;if(window.addEventListener){window.addEventListener("DOMMouseScroll",SWFMacMouseWheel.instance.wheel,false)}window.onmousewheel=document.onmousewheel=SWFMacMouseWheel.instance.wheel},handle:function(a){document[this.so.getAttribute("id")].externalMouseEvent(a)},wheel:function(a){var b=0;if(a.wheelDelta){b=a.wheelDelta/120;if(window.opera){b=-b}}else{if(a.detail){b=-a.detail/3}}if(/AppleWebKit/.test(navigator.userAgent)){b/=3}if(b){SWFMacMouseWheel.instance.handle(b)}if(a.preventDefault){a.preventDefault()}a.returnValue=false}};YUI.add("photo-comments",function(b){var l,D,o=[];function I(){D=b.historyManager.getState().page;var P=b.one("#comments");b.on("available",function(T){f()},"#message");if(b.UA.ie&&b.UA.ie<7&&P){P.on("mouseover",y);P.on("mouseout",x)}if(b.config.flickr.grease_enabled&&!b.grease.enabled&&!b.config.flickr.user.nsid){var S=b.one(".add-comment-form");if(S){S.set("innerHTML","")}}var O=[["comment-reply",F],["comment-edit",h],["comment-delete",J],["comment-button-edit",e],["comment-button-preview",M],["comment-button-post",N]],Q=O.length;function R(V){var T=V.target;if(T.get("id")==="html-info-text"){v(V);return}for(var U=0;U-1){O=window.location.href.substr(R+1);Q=/comment[0-9]+/.exec(location.hash);if(Q&&Q[0]){P=b.one("#"+Q[0]);if(P){P.addClass("comment-highlighted")}}}}function s(O){A();if(O&&O.test("li")){O.addClass("hover")}else{if(O&&!O.test("ul")){s(O.get("parentNode"))}}}function A(){var O=b.one("#comments").all("li");O.removeClass("hover")}function y(O){s(O.target)}function x(O){A()}function f(){var O=b.one("#message");if(O){O.on("focus",function(P){if(b.keyboardShortcutManager){b.keyboardShortcutManager.disable()}});O.on("blur",function(P){if(b.keyboardShortcutManager){b.keyboardShortcutManager.enable()}})}b.inputHint("#message")}function m(P,T){var S,O,R,Q;S=b.Node.getDOMNode(P);if(S.setSelectionRange){R=S.value.substring(S.selectionStart,S.selectionStart-1);Q=S.value.substring(S.selectionEnd,S.selectionEnd+1);if(R!==" "&&R!==""){T=" "+T}if(Q!==" "){T=T+" "}S.value=S.value.substring(0,S.selectionStart)+T+S.value.substring(S.selectionStart,S.selectionEnd)+S.value.substring(S.selectionEnd,S.value.length)}else{if(document.selection&&document.selection.createRange){T=T+" ";S.focus();O=document.selection.createRange();O.text=T+O.text}}return P}function d(){var O=b.one(".previewing-comment");if(O){O.replaceClass("previewing-comment","adding-comment");C();b.one("#message").focus()}}function z(){var O=b.one("#comments");if(O){O.vis.animScrollIntoView(true,100)}}function H(O){if(O){O.vis.animScrollIntoView()}}function C(){var O=b.one("div.add-comment-form div.buttons");if(O){O.vis.animScrollIntoView()}}function q(P){var O;if(P){O=new b.Anim({node:P,from:{backgroundColor:"#E0FDD1"},to:{backgroundColor:"#fff"},duration:2.5,easing:b.Easing.easeBoth});O.on("end",function(){P.setStyle("backgroundColor","")});O.run()}}function e(O){O.preventDefault();d()}function M(O){O.preventDefault();w(true)}function N(O){O.preventDefault();w()}function u(R){var P,O,Q;R.preventDefault();P=R.currentTarget;O=/page([0-9]+)\/?$/.exec(P.get("href"));Q=O?O[1]:1;if(Q){if(Q===1){Q=null}g(Q)}}function L(){if(!b.historyManager.enabled){return true}var O=b.historyManager.getState();if(O.page!==D){if(D>1){O.page=D}else{delete O.page}b.historyManager.replaceState(O);return true}}function g(T){var O,S,P,R,Q;if(D===T){return}D=T;r();if(L()){O=true}S=b.one("#message");P=S?S.get("value"):"";R=b.config.flickr.photo.id;Q={method:"post",data:"magic_cookie="+b.config.flickr.magic_cookie+"&photo="+R+"&page="+T,on:{success:function(W,V,U){B();b.one("#comments").set("innerHTML",V.responseText);K();E();if(O){z()}if(S){S.set("value",P)}f()},failure:function(W,V,U){K();c("HUH?")}}};b.io("/photo_comments_fragment.gne?cachebust="+(new Date()).getTime(),Q)}function w(P){var O;G();O={method:"post",data:"preview="+(P?1:0),form:{id:b.one(".add-comment-form form")},on:{success:function(T,S,R){var Q;B();b.one("#comments").set("innerHTML",S.responseText);E();f();p();if(P){C()}else{Q=b.one(".new-comment");H(Q);q(Q);b.dejaview()}},failure:function(R,S){var Q=S&&S.status;p();if(Q===409){c(b.transjax.get("photo-comments","error_add_rate_limit"))}else{c(b.transjax.get("photo-comments","error_add_generic"))}}}};if(b.config.flickr.grease_enabled){if(!b.config.flickr.user.nsid&&!P&&b.grease.enabled){b.grease.postComment(b.one("#message").get("value"));b.grease.authenticate(function(Q){p()});return false}else{if(b.config.flickr.user.nsid){b.io("/photo_comments_fragment.gne?cachebust="+(new Date()).getTime(),O)}}}else{b.io("/photo_comments_fragment.gne?cachebust="+(new Date()).getTime(),O)}}function E(R){var Q,P,O;Q=b.one("ol#photo-activity");P=E.total;O=Q&&parseInt(Q.getAttribute("data-comments-total"),10)||0;if(!b.Lang.isNumber(P)){P=O}if(R===-1&&O>0){O-=1;Q.setAttribute("data-comments-total",O)}if(b.Lang.isNumber(O)&&O>=0&&O!==P){P=O;b.fire("photo_comments:change",{total:P})}E.total=P}function j(){var P=b.one("#flash_ver"),O;if(P&&deconcept&&deconcept.SWFObjectUtil&&deconcept.SWFObjectUtil.getPlayerVersion){O=deconcept.SWFObjectUtil.getPlayerVersion();P.set("value","Flash V:"+(O.major+"."+O.minor+"."+O.rev))}}function F(Q){var O,P;Q.preventDefault();O=Q.target.ancestor(".comment-block").one(".comment-buddy-icon-link");if(O){P="[http://www.flickr.com/photos/"+O.get("href").replace(/^.*?\/photos\/(.*?)\/$/,"$1")+"]"}if(P){b.one("#message").focus();m(b.one("#message"),P)}}function h(O){if(O.altKey||O.ctrlKey||O.metaKey||O.shiftKey){}else{O.preventDefault();i(O.target.ancestor(".comment-block"))}}function J(O){if(O.altKey||O.ctrlKey||O.metaKey||O.shiftKey){}else{O.preventDefault();t(O.target.ancestor(".comment-block"))}}function G(){b.one("div.add-comment-form form").addClass("spinning")}function p(){b.one("div.add-comment-form form").removeClass("spinning")}function k(O){O.addClass("spinning")}function a(O){O.removeClass("spinning")}function r(){b.global_dialog.remove_existing_dialog();b.global_dialog.show({loading:true,modal:true})}function K(){b.global_dialog.hide()}function c(O){b.global_dialog.create_alert_dialog(O,b.global_dialog.hide,{width:280})}function B(){b.Array.each(o,function(O){if(O&&b.Lang.isFunction(O.destroy)){O.destroy()}});b.all("#comments .comment-editing").removeClass("comment-editing")}function i(U){var R,Q,S,P,T,O;U.addClass("comment-editing");Q=U.getAttribute("data-comment-id");S=U.one(".comment-body");P=S.get("innerHTML");T={comment_id:Q};O={success:function(V){b.use("insitu",function(X){var Z,W;Z="flickr.photos.comments.editComment";W={comment_id:Q,comment_text:V.data.comment._content};R=X.insitu.create(Z,W);o.push(R);R.on("change",function(Y){k(S);X.io("/photo_comments_fragment.gne?cachebust="+(new Date()).getTime(),{method:"post",data:"single_comment_id="+Q+"&magic_cookie="+X.config.flickr.magic_cookie,on:{success:function(ac,ab,aa){R.destroy();S.set("innerHTML",ab.responseText);a(S);q(U)},failure:function(aa){R.destroy();S.set("innerHTML",P);a(S);c(X.transjax.get("photo-comments","error_edit_generic"))},end:function(){U.removeClass("comment-editing")}}})});R.on("cancel",function(Y){R.destroy();S.set("innerHTML",P);U.removeClass("comment-editing")});R.addInput({node:S,param:"comment_text",input_type:"textarea",is_trigger:false});R.edit(S);a(S)})},failure:function(V){a(S);c(b.transjax.get("photo-comments","error_edit_getting"));U.removeClass("comment-editing")}};k(S);b.flickrAPI.callMethod("flickr.photos.comments.getComment",T,O)}function t(U){var R,O,S,T,Q,P;R=U.getAttribute("data-comment-id");if(R){O=U.getAttribute("data-comment-nsid");S={success:function(){var X,W,V;X=U.getStyle("height");W=U.getStyle("minHeight");U.setStyle("overflow","hidden");V=new b.Anim({node:U,from:{height:X,minHeight:W},to:{height:"1px",minHeight:"1px"},duration:0.3,easing:b.Easing.easeIn});V.on("end",function(){var Y;U.addClass("comment-deleted");U.removeClass("comment-deleting");if(P){Y="/ignore.gne?id="+O+"&redir=photoid&photoid="+b.config.flickr.photo.id;if(b.ContextData&&b.ContextData.getContext()){Y+="&context="+b.ContextData.getContext().id}location.assign(Y)}});V.run();b.dejaview();E(-1)},failure:function(W){var V=W.data&&W.data.code;if(V===2){return S.success.apply(this,arguments)}U.removeClass("comment-deleting");if(V===99){c(b.transjax.get("photo-comments","error_delete_permission"))}else{c(b.transjax.get("photo-comments","error_delete_generic"))}}};Q={CONFIRM:b.transjax.get("photo-comments","delete_button_confirm"),CANCEL:b.transjax.get("photo-comments","delete_button_cancel"),width:283,confirm_butt_class:"DeleteButt"};if(O&&O!==b.config.flickr.user.nsid){Q.checkboxes=[b.transjax.get("photo-comments","block_user")];Q.width=380}T=function(X,V){var W=!!(V&&V.checkboxes&&V.checkboxes[0]);if(X){U.addClass("comment-deleting");U.one(".comment-head").append('Deleting...');if(W){r();P=true}b.flickrAPI.callMethod("flickr.photos.comments.deleteComment",{comment_id:R},S)}};b.global_dialog.create_confirmation_dialog("
                  "+b.transjax.get("photo-comments","delete_confirmation")+"
                  ",T,Q)}}function v(R){var P,Q,O;R.preventDefault();P=R.target.ancestor("a");Q=b.one("#html-info-container");if(!Q){Q=b.Node.create('
                  ');P.get("parentNode").append(Q);O={on:{}};O.on.success=function(U,T,S){l=b.one("#html-info-text").get("innerHTML");b.one("#html-info-text").set("innerHTML",b.transjax.get("photo-comments","hide_formatting_tips"));b.one("#html-info-caret").addClass("caret-down");Q.set("innerHTML",T.responseText);Q.vis.animScrollIntoView()};b.io(P.get("href")+"&only_fragment=1",O)}else{if(Q.getStyle("display")==="none"){l=b.one("#html-info-text").get("innerHTML");b.one("#html-info-text").set("innerHTML",b.transjax.get("photo-comments","hide_formatting_tips"));b.one("#html-info-caret").addClass("caret-down");Q.setStyle("display","block");Q.vis.animScrollIntoView()}else{b.one("#html-info-text").set("innerHTML",l);b.one("#html-info-caret").removeClass("caret-down");Q.setStyle("display","none")}}}b.photoComments=I},"0.0.1",{requires:["node","event-delegate","event-custom","anim","anim-scroll","node-visibility","io-form","dejaview","gallery-flickr-api","input-hint","photo-comments-transjax","formatting-tips-css","global-dialog","context-manager","history-manager","swfobject"],optional:["insitu"]});YUI.add("photo-context-menu-transjax",function(b){var a={svn_bump:"",license_copyright_photo:'This photo is %sAll Rights Reserved',license_some_rights_reserved_photo:'This photo has %sSome Rights Reserved',license_no_known_restrictions_photo:'This photo has %sno known copyright restrictions',license_government_work_photo:'This photo is %sUnited States Government Work',license_copyright_video:'This video is %sAll Rights Reserved',license_some_rights_reserved_video:'This video has %sSome Rights Reserved',license_no_known_restrictions_video:'This video has %sno known copyright restrictions',license_government_work_video:'This video is %sUnited States Government Work',view_available_sizes:'View all sizes:',size_sq:'Square',size_t:'Thumbnail',size_s:'Small',size_m:'Medium 500',size_z:'Medium 640',size_v:'Extra-medium',size_l:'Large',size_o:'Original'};b.transjax.add("photo-context-menu",a)},"0.0.1",{requires:["transjax-base"]});YUI.add("number-transjax",function(b){var a={thou_sep:',',dec_sep:'.'};b.transjax.add("number",a)},"0.0.1",{requires:["transjax-base"]});YUI.add("number",function(a){a.Number={pretty_num:function(g){var h=a.transjax.get("number","dec_sep");var f=a.transjax.get("number","thou_sep");var c=g.toString();var b=c.split(".");var e=b[0];var j=(b[1])?h+b[1]:"";if(e.length<4){return c}var k="";for(var d=e.length-1;d>-1;d--){if(d")}function g(n){n=d.Lang.trim(n);n="

                  "+n+"

                  ";n=n.replace(/
                  (.*?)<\/blockquote>/g,"

                  $1

                  ");n=n.replace(/(?:\r?\n){2,}/g,"

                  ");n=n.replace(/(?:\r?\n){1}/g,"
                  ");n=n.replace(/

                  <\/p>/g,"");n=n.replace(/
                  <\/p>/g,"

                  ");n=n.replace(/


                  /g,"

                  ");return n}function f(n){n=n.replace(/&/g,"&");n=n.replace(/"/g,""");n=n.replace(//g,">");return n}function m(n){n=n.replace(/&/g,"&");n=n.replace(/"/g,'"');n=n.replace(/</g,"<");n=n.replace(/>/g,">");return n}function h(r,x,n){if(!n){n=" "}if(!x){x=""}x=x.replace(/\s/g,n);if(r.indexOf("http://")>-1){var u=r.split("\n");for(var s=0;s'+o+""+v+q).replace(/\s/g,n)}p[w]=z+p[w]}u[s]=p.join(" ")}r=u.join("\n")}return r}function j(n){if(d.config.flickr.lang&&d.config.flickr.lang!=="en-us"){return n}if(n.substr(n.length-1,1).toLowerCase()==="s"){return n+"'"}else{return n+"'s"}}function e(r,n,q,p){q=q||"\n";n=n||75;p=p||false;if(!r){return r}var o=".{1,"+n+"}(\\s|$)"+(p?"|.{"+n+"}|.+$":"|\\S+?(\\s|$)");return r.match(RegExp(o,"g")).join(q)}function b(u,o,p,w){o=o||80;p=p||' ';if(w!==false){w=true}var x=e(u,o,p,w);var v=x.split(p);if(v.length<=1){return u}var s="";for(var q=0,r=v.length,t=0;q65536){q[0]=240|((u&1835008)>>>18);q[1]=128|((u&258048)>>>12);q[2]=128|((u&4032)>>>6);q[3]=128|(u&63)}else{if(u>2048){q[0]=224|((u&61440)>>>12);q[1]=128|((u&4032)>>>6);q[2]=128|(u&63)}else{if(u>128){q[0]=192|((u&1984)>>>6);q[1]=128|(u&63)}else{q[0]=u}}}if(q.length>1){for(var p=0;p>>4)+l(n&15);o+="%"+s}}else{if(encodeURIComponent&&typeof encodeURIComponent=="function"){o+=encodeURIComponent(String.fromCharCode(q[0]))}else{o+=(String.fromCharCode(q[0]))}}}return o}function l(n){var o="0123456789ABCDEF";return o.charAt(n)}function a(n){return n.replace(/<\w+(\s+("[^"]*"|'[^']*'|[^>])+)?>|<\/\w+>/gi,"")}function k(p,n,o){n=n||30;o=d.Lang.isString(o)?o:"...";if(p.length>n){p=p.slice(0,n-o.length)+o}return p}d.StringFilters={nl2br:c,nl2p:g,escape_entities:f,unescape_entities:m,linkify:h,possess:j,wordwrap:e,zero_width_wordwrap:b,escape_utf8:i,strip_tags:a,truncate:k}},"0.0.1");/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("transition-native",function(b){var j="-webkit-transition",m="WebkitTransition",h="WebkitTransitionProperty",c="-webkit-transition-property",g="-webkit-transition-duration",a="-webkit-transition-timing-function",d="-webkit-transition-delay",k="webkitTransitionEnd",e="onwebkittransitionend",l="WebkitTransform",i={},f=function(){this.init.apply(this,arguments);};f.fx={};f.toggles={};f._hasEnd={};f._toCamel=function(o){o=o.replace(/-([a-z])/gi,function(q,p){return p.toUpperCase();});return o;};f._toHyphen=function(o){o=o.replace(/([A-Z]?)([a-z]+)([A-Z]?)/g,function(s,r,q,p){var t="";if(r){t+="-"+r.toLowerCase();}t+=q;if(p){t+="-"+p.toLowerCase();}return t;});return o;};f._reKeywords=/^(?:node|duration|iterations|easing|delay|on|onstart|onend)$/i;f.useNative=false;if(j in b.config.doc.documentElement.style){f.useNative=true;f.supported=true;}b.Node.DOM_EVENTS[k]=1;f.NAME="transition";f.DEFAULT_EASING="ease";f.DEFAULT_DURATION=0.5;f.DEFAULT_DELAY=0;f._nodeAttrs={};f.prototype={constructor:f,init:function(p,o){var q=this;q._node=p;if(!q._running&&o){q._config=o;p._transition=q;q._duration=("duration" in o)?o.duration:q.constructor.DEFAULT_DURATION;q._delay=("delay" in o)?o.delay:q.constructor.DEFAULT_DELAY;q._easing=o.easing||q.constructor.DEFAULT_EASING;q._count=0;q._running=false;}return q;},addProperty:function(p,r){var u=this,s=this._node,w=b.stamp(s),v=b.one(s),z=f._nodeAttrs[w],t,y,o,x,q;if(!z){z=f._nodeAttrs[w]={};}x=z[p];if(r&&r.value!==undefined){q=r.value;}else{if(r!==undefined){q=r;r=i;}}if(typeof q==="function"){q=q.call(v,v);}if(x&&x.transition){if(x.transition!==u){x.transition._count--;}}u._count++;o=((typeof r.duration!="undefined")?r.duration:u._duration)||0.0001;z[p]={value:q,duration:o,delay:(typeof r.delay!="undefined")?r.delay:u._delay,easing:r.easing||u._easing,transition:u};t=b.DOM.getComputedStyle(s,p);y=(typeof q==="string")?t:parseFloat(t);if(f.useNative&&y===q){setTimeout(function(){u._onNativeEnd.call(s,{propertyName:p,elapsedTime:o});},o*1000);}},removeProperty:function(q){var p=this,o=f._nodeAttrs[b.stamp(p._node)];if(o&&o[q]){delete o[q];p._count--;}},initAttrs:function(p){var o,q=this._node;if(p.transform&&!p[l]){p[l]=p.transform;delete p.transform;}for(o in p){if(p.hasOwnProperty(o)&&!f._reKeywords.test(o)){this.addProperty(o,p[o]);if(q.style[o]===""){b.DOM.setStyle(q,o,b.DOM.getComputedStyle(q,o));}}}},run:function(s){var r=this,p=r._node,o=r._config,q={type:"transition:start",config:o};if(!r._running){r._running=true;if(o.on&&o.on.start){o.on.start.call(b.one(p),q);}r.initAttrs(r._config);r._callback=s;r._start();}return r;},_start:function(){this._runNative();},_prepDur:function(o){o=parseFloat(o);return o+"s";},_runNative:function(q){var w=this,r=w._node,y=b.stamp(r),p=r.style,u=getComputedStyle(r),C=f._nodeAttrs[y],s="",D=u[c],B=c+": ",v=g+": ",A=a+": ",x=d+": ",t,z,o;if(D!=="all"){B+=D+",";v+=u[g]+",";A+=u[a]+",";x+=u[d]+",";}for(o in C){t=f._toHyphen(o);z=C[o];if(C.hasOwnProperty(o)&&z.transition===w){if(o in r.style){v+=w._prepDur(z.duration)+",";x+=w._prepDur(z.delay)+",";A+=(z.easing)+",";B+=t+",";s+=t+": "+z.value+"; ";}else{this.removeProperty(o);}}}B=B.replace(/,$/,";");v=v.replace(/,$/,";");A=A.replace(/,$/,";");x=x.replace(/,$/,";");if(!f._hasEnd[y]){r.addEventListener(k,w._onNativeEnd,false);f._hasEnd[y]=true;}p.cssText+=B+v+A+x+s;},_end:function(o){var s=this,q=s._node,u=s._callback,p=s._config,r={type:"transition:end",config:p,elapsedTime:o},t=b.one(q);s._running=false;s._callback=null;if(q){if(p.on&&p.on.end){setTimeout(function(){p.on.end.call(t,r);if(u){u.call(t,r);}},1);}else{if(u){setTimeout(function(){u.call(t,r);},1);}}}},_endNative:function(o){var p=this._node,q=p.ownerDocument.defaultView.getComputedStyle(p,"")[c];if(typeof q==="string"){q=q.replace(new RegExp("(?:^|,\\s)"+o+",?"),",");q=q.replace(/^,|,$/,"");p.style[m]=q;}},_onNativeEnd:function(v){var r=this,u=b.stamp(r),o=v,p=f._toCamel(o.propertyName),y=o.elapsedTime,x=f._nodeAttrs[u],w=x[p],s=(w)?w.transition:null,t,q;if(s){s.removeProperty(p);s._endNative(p);q=s._config[p];t={type:"propertyEnd",propertyName:p,elapsedTime:y,config:q};if(q&&q.on&&q.on.end){q.on.end.call(b.one(r),t);}if(s._count<=0){s._end(y);}}},destroy:function(){var o=this;node.removeEventListener(k,o._onNativeEnd,false);o._node=null;}};b.Transition=f;b.TransitionNative=f;b.Node.prototype.transition=function(q,p,u){var o=f._nodeAttrs[b.stamp(this._node)],s=(o)?o.transition||null:null,r,t;if(typeof q==="string"){if(typeof p==="function"){u=p;p=null;}r=f.fx[q];if(p&&typeof p!=="boolean"){p=b.clone(p);for(t in r){if(r.hasOwnProperty(t)){if(!(t in p)){p[t]=r[t];}}}}else{p=r;}}else{u=p;p=q;}if(s&&!s._running){s.init(this,p);}else{s=new f(this._node,p);}s.run(u);return this;};b.Node.prototype.show=function(p,o,q){this._show();if(p&&b.Transition){if(typeof p!=="string"&&!p.push){if(typeof o==="function"){q=o;o=p;}p=this.SHOW_TRANSITION;}this.transition(p,o,q);}return this;};var n=function(p,o,q){return function(){if(o){o.call(p);}if(q){q.apply(p._node,arguments);}};};b.Node.prototype.hide=function(p,o,q){if(p&&b.Transition){if(typeof o==="function"){q=o;o=null;}q=n(this,this._hide,q);if(typeof p!=="string"&&!p.push){if(typeof o==="function"){q=o;o=p;}p=this.HIDE_TRANSITION;}this.transition(p,o,q);}else{this._hide();}return this;};b.NodeList.prototype.transition=function(p,s){var o=this._nodes,q=0,r;while((r=o[q++])){b.one(r).transition(p,s);}return this;};b.Node.prototype.toggleView=function(p,o){var q;this._toggles=this._toggles||[];if(typeof p=="boolean"){o=p;}if(typeof o==="undefined"&&p in this._toggles){o=!this._toggles[p];}o=(o)?1:0;if(o){this._show();}else{q=n(anim,this._hide);}this._toggles[p]=o;this.transition(b.Transition.toggles[p][o],q);};b.NodeList.prototype.toggleView=function(p,s){var o=this._nodes,q=0,r;while((r=o[q++])){b.one(r).toggleView(p,s);}return this;};b.mix(f.fx,{fadeOut:{opacity:0,duration:0.5,easing:"ease-out"},fadeIn:{opacity:1,duration:0.5,easing:"ease-in"},sizeOut:{height:0,width:0,duration:0.75,easing:"ease-out"},sizeIn:{height:function(o){return o.get("scrollHeight")+"px"; },width:function(o){return o.get("scrollWidth")+"px";},duration:0.5,easing:"ease-in",on:{start:function(){var o=this.getStyle("overflow");if(o!=="hidden"){this.setStyle("overflow","hidden");this._transitionOverflow=o;}},end:function(){if(this._transitionOverflow){this.setStyle("overflow",this._transitionOverflow);}}}}});b.mix(f.toggles,{size:["sizeIn","sizeOut"],fade:["fadeOut","fadeIn"]});},"3.3.0",{requires:["node-base"]});YUI.add("transition-timer",function(b){var a=b.Transition;b.mix(a.prototype,{_start:function(){if(a.useNative){this._runNative();}else{this._runTimer();}},_runTimer:function(){var c=this;c._initAttrs();a._running[b.stamp(c)]=c;c._startTime=new Date();a._startTimer();},_endTimer:function(){var c=this;delete a._running[b.stamp(c)];c._startTime=null;},_runFrame:function(){var c=new Date()-this._startTime;this._runAttrs(c);},_runAttrs:function(e){var o=this,n=o._node,u=o._config,f=b.stamp(n),m=a._nodeAttrs[f],h=a.behaviors,l=false,g=false,v,w,j,q,c,s,r,k,p;for(w in m){j=m[w];if((j&&j.transition===o)){r=j.duration;s=j.delay;c=(e-s)/1000;k=e;v={type:"propertyEnd",propertyName:w,config:u,elapsedTime:c};q=(p in h&&"set" in h[p])?h[p].set:a.DEFAULT_SETTER;l=(k>=r);if(k>r){k=r;}if(!s||e>=s){q(o,w,j.from,j.to,k-s,r-s,j.easing,j.unit);if(l){delete m[w];o._count--;if(u[w]&&u[w].on&&u[w].on.end){u[w].on.end.call(b.one(n),v);}if(!g&&o._count<=0){g=true;o._end(c);o._endTimer();}}}}}},_initAttrs:function(){var j=this,e=a.behaviors,l=b.stamp(j._node),q=a._nodeAttrs[l],d,i,k,n,g,c,m,o,p,f,h;for(c in q){d=q[c];if(q.hasOwnProperty(c)&&(d&&d.transition===j)){i=d.duration*1000;k=d.delay*1000;n=d.easing;g=d.value;if(c in j._node.style||c in b.DOM.CUSTOM_STYLES){f=(c in e&&"get" in e[c])?e[c].get(j,c):a.DEFAULT_GETTER(j,c);o=a.RE_UNITS.exec(f);m=a.RE_UNITS.exec(g);f=o?o[1]:f;h=m?m[1]:g;p=m?m[2]:o?o[2]:"";if(!p&&a.RE_DEFAULT_UNIT.test(c)){p=a.DEFAULT_UNIT;}if(typeof n==="string"){if(n.indexOf("cubic-bezier")>-1){n=n.substring(13,n.length-1).split(",");}else{if(a.easings[n]){n=a.easings[n];}}}d.from=Number(f);d.to=Number(h);d.unit=p;d.easing=n;d.duration=i+k;d.delay=k;}else{delete q[c];j._count--;}}}},destroy:function(){this.detachAll();this._node=null;}},true);b.mix(b.Transition,{_runtimeAttrs:{},RE_DEFAULT_UNIT:/^width|height|top|right|bottom|left|margin.*|padding.*|border.*$/i,DEFAULT_UNIT:"px",intervalTime:20,behaviors:{left:{get:function(d,c){return b.DOM._getAttrOffset(d._node,c);}}},DEFAULT_SETTER:function(f,g,i,j,l,e,h,k){i=Number(i);j=Number(j);var d=f._node,c=a.cubicBezier(h,l/e);c=i+c[0]*(j-i);if(d){if(g in d.style||g in b.DOM.CUSTOM_STYLES){k=k||"";b.DOM.setStyle(d,g,c+k);}}else{f._end();}},DEFAULT_GETTER:function(e,c){var d=e._node,f="";if(c in d.style||c in b.DOM.CUSTOM_STYLES){f=b.DOM.getComputedStyle(d,c);}return f;},_startTimer:function(){if(!a._timer){a._timer=setInterval(a._runFrame,a.intervalTime);}},_stopTimer:function(){clearInterval(a._timer);a._timer=null;},_runFrame:function(){var c=true,d;for(d in a._running){if(a._running[d]._runFrame){c=false;a._running[d]._runFrame();}}if(c){a._stopTimer();}},cubicBezier:function(s,m){var z=0,f=0,w=s[0],e=s[1],v=s[2],d=s[3],u=1,c=0,r=u-3*v+3*w-z,q=3*v-6*w+3*z,o=3*w-3*z,n=z,l=c-3*d+3*e-f,k=3*d-6*e+3*f,j=3*e-3*f,i=f,h=(((r*m)+q)*m+o)*m+n,g=(((l*m)+k)*m+j)*m+i;return[h,g];},easings:{ease:[0.25,0,1,0.25],linear:[0,0,1,1],"ease-in":[0.42,0,1,1],"ease-out":[0,0,0.58,1],"ease-in-out":[0.42,0,0.58,1]},_running:{},_timer:null,RE_UNITS:/^(-?\d*\.?\d*){1}(em|ex|px|in|cm|mm|pt|pc|%)*$/},true);a.behaviors.top=a.behaviors.bottom=a.behaviors.right=a.behaviors.left;b.Transition=a;},"3.3.0",{requires:["transition-native","node-style"]});YUI.add("transition",function(a){},"3.3.0",{use:["transition-native","transition-timer"]});YUI.add("photo-filmstrip",function(d){var o={},I={},j,k,i={},x,D=50,n=(d.config.flickr.is_touch_device&&d.config.flickr.enable_advanced_gestures),z=2;function y(){if(!y.is_init){y.is_init=true;k=d.PhotoData.get(d.config.flickr.photo.id);d.Array.each(d.ContextData.getContexts(),function(K){v(K.id)});d.on("ContextData:open",s);d.on("ContextData:totalChange",A);d.on("ContextData:photoLoaded",w);d.on("ContextData:photoRemoved",E);d.on("ContextData:photoUnremoved",b);d.on("ContextData:prevLimitReached",a);d.on("ContextData:nextLimitReached",l);d.on("ContextData:contextAdded",u);d.on("ContextData:contextRemoved",g);d.on("ContextData:contextInvalidated",f);d.after("PhotoData:needs_interstitialChange",B);var J=d.one("#sidebar");J.on("click",function(K){if(K.target.ancestor(".context-link",true)){if(!n){C(K)}else{C(K);K.preventDefault()}}else{if(K.target.ancestor(".remove-from-context",true)){h(K)}}});d.keyboardShortcutManager.register("94,188,190,219,221,226",t,"");d.on("click",function(K){if(K.altKey||K.ctrlKey||K.metaKey||K.shiftKey){}else{K.preventDefault();p()}},"#group-placeholder-link")}}function m(){var K=4,J;if(d.config.flickr.filmstrips&&d.config.flickr.filmstrips.preload_page_count){J=Math.ceil(K/2+K*d.config.flickr.filmstrips.preload_page_count)}else{J=0}return J}function q(){var K,J;y();K=d.one("#group-placeholder-link");if(K){J=d.all("#sidebar-contexts li.rolled-up").size();if(J>1){K.set("innerHTML",d.transjax.get("photo-filmstrip","context_widgets_groups_placeholder_"+(k.get("is_video")?"video":"photo"),J))}else{p()}}}function p(){var J=d.one("#group-placeholder");if(J){J.remove();d.all("#sidebar-contexts li.rolled-up").removeClass("rolled-up")}}function g(J){H(J)}function u(J){v(J.id,{open_immediately:(x&&x===J.id)});x=undefined}function A(L,K){var J=o[L];if(!J){return}if(J.get("total")!==K){J.set("total",K)}}function C(M){var K,L,J;K=M.target.ancestor(".sidebar-context");if(!K){return}L=K.getAttribute("data-context-id");if(!L){return}if(K.hasClass("sidebar-context-open")||M.altKey||M.ctrlKey||M.metaKey||M.shiftKey){if(n){M.preventDefault();J=M.target.ancestor("a.context-link",true);if(J){window.location=J.get("href")}}}else{M.preventDefault();s(L)}}function h(J){y();node=J.target.ancestor(".sidebar-context");if(!node){return}context_id=node.getAttribute("data-context-id");open_context=d.ContextData.getContext();if(!context_id||context_id!==open_context.id){return}J.preventDefault();c(context_id)}function c(O){var L,N,K,J,M,P;L=d.ContextData.getContext(O);N=k.get("sizes")?k.get("sizes").s:undefined;if(!N){return}K=k.get("id");switch(L.type){case"pool":method="flickr.groups.pools.remove";params={group_id:L.group_id,photo_id:K};P=d.transjax.get("photo-filmstrip",k.get("is_video")?"are_you_sure_you_want_to_remove_group_video":"are_you_sure_you_want_to_remove_group_photo",""+d.StringFilters.escape_entities(L.title)+"");break;case"faves":method="flickr.favorites.remove";params={photo_id:K};if(k.get("owner")===d.config.flickr.user.nsid){params.user_id=L.user_id;if(L.owner_name_possessive){P=d.transjax.get("photo-filmstrip","confirm_remove_your_photo_from_specific_members_favorites",""+d.StringFilters.escape_entities(L.owner_name_possessive)+"")}else{P=d.transjax.get("photo-filmstrip","confirm_remove_your_photo_from_this_members_favorites")}}else{P=d.transjax.get("photo-filmstrip","confirm_remove_their_photo_from_your_favorites")}break;case"set":method="flickr.photosets.removePhoto";params={photoset_id:L.set_id,photo_id:K};P=d.transjax.get("photo-filmstrip",k.get("is_video")?"are_you_sure_you_want_to_remove_set_video":"are_you_sure_you_want_to_remove_set_photo",""+d.StringFilters.escape_entities(L.title)+"");break;case"gallery":method="flickr.galleries.removePhoto";params={gallery_id:L.gallery_id,photo_id:K};if(k.get("owner")===d.config.flickr.user.nsid){P=d.transjax.get("photo-filmstrip","are_you_sure_you_want_to_remove_gallery_notyours",""+d.StringFilters.escape_entities(L.owner_name_possessive)+"",""+d.StringFilters.escape_entities(L.title)+"")}else{P=d.transjax.get("photo-filmstrip","are_you_sure_you_want_to_remove_gallery_yours",""+d.StringFilters.escape_entities(L.title)+"")}break}if(!method||!params||!P){d.log("missing method, params, or confirmation_msg","error","photo-filmstrip");return false}J={CONFIRM:d.transjax.get("photo-filmstrip","yes_remove_it"),CANCEL:d.transjax.get("photo-filmstrip","cancel"),width:330,photo:{url:N.url,width:N.width,height:N.height},confirm_butt_class:"DeleteButt"};M=function(Q){if(Q){d.global_dialog.remove_existing_dialog();d.global_dialog.show({loading:true,modal:true});d.flickrAPI.callMethod(method,params,{success:function(){var R='',S=d.transjax.get("photo-filmstrip","api_success");d.global_dialog.remove_existing_dialog();d.global_dialog.create_dialog(R+S,{width:"auto"}).show({loading:false,modal:true,short_message:true});setTimeout(function(){d.global_dialog.hide();d.contextManager.unset("remove-photo-from-context")},2500);d.ContextData.removePhoto(O,d.ContextData.getPhotoPosition(O,K));switch(L.type){case"pool":k.decrement("group_count");break;case"faves":if(L.user_id===d.config.flickr.user.nsid){k.set("is_fave",false)}else{k.decrement("fave_count")}break;case"set":break;case"gallery":d.fire("photo:galleryRemove");break}},failure:function(){var R='';var S=d.transjax.get("photo-filmstrip","api_failure");d.global_dialog.remove_existing_dialog();d.global_dialog.create_dialog(R+S,{width:"auto"}).show({loading:false,modal:true,short_message:true});setTimeout(function(){d.global_dialog.hide();d.contextManager.unset("remove-photo-from-context")},2500)}})}else{d.contextManager.unset("remove-photo-from-context")}};d.global_dialog.create_confirmation_dialog(P,M,J);d.contextManager.set("remove-photo-from-context")}function t(N){var K,M,J,P,L,O;K=d.ContextData.getContext();if(K&&o[K.id]){M=o[K.id]}if(!M){return}N.preventDefault();switch(N.keyCode){case 94:case 188:case 190:case 226:if(N.keyCode===190||(N.shiftKey&&(N.keyCode===94||N.keyCode===226))){M.goTo(M.get("position")+4)}else{if(N.keyCode===188||N.keyCode===94||N.keyCode===226){M.goTo(M.get("position")-4)}}break;case 219:case 221:J=d.all("#sidebar .sidebar-context:not(.sidebar-context-placeholder)");P=J.indexOf(M.get("node"));if(d.Lang.isNumber(P)&&P>-1){L=P+((N.keyCode===221)?1:-1);if(L>J.size()-1){L=0}if(L<0){L=J.size()-1}if(L!==P){O=J.item(L).getAttribute("data-context-id")}}if(O){d.ContextData.open(O)}break}}function v(L,J){var K;if(!d.config.flickr.user.useragent_fully_supported){return}if(!L){return}J=J||{};y();if(!o[L]){K=J.node;if(K&&d.Lang.isString(K)){K=d.one(K)}if(!K){K=d.one('li.sidebar-context[data-context-id="'+L+'"]')}if(!K||!K instanceof d.Node){r(L,J);return}J.node=K;if(d.ContextData.getContext()&&d.ContextData.getContext().id===L){J.defer_initialization=false}if(J.defer_initialization!==false){if(I[L]){return}J.defer_initialization=false;I[L]=K;d.once("mouseover",function(M){if(I[L]){I[L]=undefined;delete I[L];v(L,J)}},K)}else{if(I[L]){I[L]=undefined;delete I[L]}J.context_id=L;o[L]=new e(J);if(J.open_immediately){s(L)}}}}function r(L,J){if(d.contextManager.get()==="touch-lightbox"){return}J=J||{};var K={on:{}};y();K.on.success=function(N,O,R){if(d.contextManager.get()==="touch-lightbox"){return}var M,T,Q,S,P,U;if(!d.one('li.sidebar-context[data-context-id="'+L+'"]')){Q=d.Node.create(O.responseText);if(L==="photostream"){d.one("#primary-context").append(Q)}else{if(!d.one("#secondary-contexts")){M=d.Node.create('

                  '+d.transjax.get("photo-button-bar",k.get("is_video")?"this_video_also_belongs_to":"this_photo_also_belongs_to")+"

                  ");T=d.Node.create('
                    ');d.one("#sidebar-contexts").append(M);d.one("#sidebar-contexts").append(T)}P=d.one("#secondary-contexts");S=Q.getAttribute("data-context-type");switch(S){case"set":U=P.one('li[data-context-type="faves"]')||P.one('li[data-context-type="gallery"]')||P.one('li[data-context-type="pool"]');break;case"faves":U=P.one('li[data-context-type="gallery"]')||P.one('li[data-context-type="pool"]');break;case"gallery":U=P.one('li[data-context-type="pool"]');break;case"pool":U=d.one("#group-placeholder");break}if(U){P.insertBefore(Q,U)}else{P.prepend(Q)}}J.node=Q;v(L,J)}};d.io("/context_fragment.gne?id="+k.get("id")+"&context="+L+"&open="+(J.open_immediately?1:0),K)}function H(M){if(d.contextManager.get()==="touch-lightbox"){return}if(!d.config.flickr.user.useragent_fully_supported){return}var L,K,J;y();L=o[M];if(L){K=L.get("node");o[M]=undefined;delete o[M]}else{if(I[M]){K=I[M];I[M]=undefined;delete I[M]}}if(K){J=K.hasClass("rolled-up");K.remove();if(J){q()}}if(d.one("#secondary-contexts")&&!d.one("#secondary-contexts .sidebar-context")){d.one("#secondary-contexts").remove();d.one("#sidebar-contexts .secondary-contexts-label").remove()}}function w(L,J,K){if(d.contextManager.get()==="touch-lightbox"){return}if(o[L]){o[L].handlePositionLoaded(J,K)}}function E(L,J,K){if(K.get("id")===d.config.flickr.photo.id&&(!o[L]||!o[L].get("is_open"))){d.ContextData.remove(L);return}i[L]=i[L]||{};i[L][K.get("id")]=true;if(o[L]){o[L].insertImage(J,true)}}function b(L,J,K){if(o[L]&&i[L]&&i[L][K.get("id")]){i[L][K.get("id")]=undefined;delete i[L][K.get("id")];o[L].insertImage(J,true)}}function f(J){if(d.photoLightbox&&d.photoLightbox.isOpen()){return}i[J]=undefined;delete i[J];if(o[J]&&o[J].get("is_open")){x=J}d.ContextData.reload(J)}function a(K,J){if(o[K]){o[K].handlePrevLimitReached(J)}}function l(K,J){if(o[K]){o[K].handleNextLimitReached(J)}}function B(L){var J,K,M;if(L.newVal){return}J=L.target;K=J.get("id");M=d.ContextData.getPhotoPositions(K);if(M){d.Object.each(M,function(N,P){var O=o[P];if(O){O.insertImage(N,true)}})}}function G(K,J){if(o[K]){o[K].goTo(J)}}function s(L){if(d.contextManager.get()==="touch-lightbox"){return}var K,J;if(x&&x!==L){return}K=o[L];if(!K){v(L,{open_immediately:true});return}if(K&&!K.get("is_open")){J=d.one("#sidebar-contexts");J.setStyle("height",J.get("offsetHeight")+"px");d.later(400,window,function(){J.setStyle("height","")});if(d.ContextData.getContext().id===L){d.Object.each(o,function(M){if(M.get("is_open")){M.close()}});K.open()}else{d.ContextData.open(L)}}}d.photoFilmstrip={init:y};function e(L){var M,J,K,N,P,Q;M=L.node;if(M&&d.Lang.isString(M)){M=d.one(M)}if(!M instanceof d.Node){return undefined}J=L.context_id;if(!J||!d.Lang.isString(J)){return undefined}e.superclass.constructor.apply(this,arguments);L=L||{};this.set("node",M);this.set("context_id",J);this.set("is_open",M.hasClass("sidebar-context-open"));if(d.config.flickr.is_touch_device){this.set("disable_anim",true)}if(d.Lang.isNumber(L.position)){this.set("position",L.position)}K={};this.getUlNode().all("li.loaded").each(function(S){N=parseInt(S.getAttribute("data-context-position"),10);K[N]=N});this.set("loaded_positions",K);P=d.ContextData.getContext(J);if(P){this.set("total",P.total)}this.updateTimeline();if(d.DOM.winWidth()<1029){d.one("#sidebar-contexts").addClass("narrow")}d.on("resize",d.betterThrottle(function(S){if(d.contextManager.get()==="touch-lightbox"){return}if(d.DOM.winWidth()<1029){d.one("#sidebar-contexts").addClass("narrow")}else{d.one("#sidebar-contexts").removeClass("narrow")}},300));M.append('');M.append('');this.truncate_to_one_line(M.one(".context-link"));if(!d.config.flickr.is_touch_device){M.on("mouseover",this.handleNodeHover,this);M.on("mouseout",this.handleNodeHover,this)}M.on("click",function(S){if(S.target.ancestor('a[href="#"]',true)){S.preventDefault()}else{if(n){if(S.target.ancestor(".context-thumb-link",true)){S.preventDefault()}}}},this);if(n){var R=d.bind(function(V){var T,Z,X;this.getUlNode().setStyle("-webkit-transform","translate3d(0px, 0px, 0px)");var S=V.bind(function(aa){if(this.get("inmotion")){return}this.set("inmotion",true);T=aa.pageX;var Y=this.getUlNode().getStyle("-webkit-transform").match(/3d\((\-?[0-9]+)px/);this.set("leftPos",Y?Y[1]:0);Z=M.on("gesturemove",W)},this);var W=V.bind(function(ab){if(this.get("inmotion")){var aa=0,Y=this.get("leftPos");aa=parseInt(Y,10)+(ab.pageX-T);this.getUlNode().setStyle("-webkit-transform","translate3d("+aa+"px, 0px, 0px)")}},this);var U=V.bind(function(Y){if(Z){Z.detach()}if(this.get("inmotion")){var aa=(Y.pageX-T);if((Math.abs(aa)>D)){if((Math.abs(aa)===aa)&&aa!==0){this.goTo(parseInt(this.get("position"),10)-4)}else{this.goTo(parseInt(this.get("position"),10)+4)}}else{if(Math.abs(aa)>z){this.goTo(parseInt(this.get("position"),10))}else{if(Y.target.ancestor(".context-thumb-link",true)){Y.preventDefault();window.location=Y.target.ancestor(".context-thumb-link",true).get("href")}else{if(Y.target.ancestor(".context-link",true)){Y.preventDefault();C(Y)}}}}V.later(10,this,function(){this.set("inmotion",false)})}else{if(Y.target.ancestor(".context-link",true)){Y.preventDefault();C(Y)}}},this);M.on("gesturemovestart",S,{preventDefault:true});M.on("gesturemoveend",U)},this);d.use("event-gestures",R)}var O=(n)?"click":"mousedown";M.on(O,function(T){var S=T.target;if(this.get("inmotion")){return}if(S.hasClass("left-arrow")||S.get("parentNode").hasClass("left-arrow")){if(T.button!==1){return}T.preventDefault();this.goTo(this.get("position")-4)}else{if(S.hasClass("right-arrow")||S.get("parentNode").hasClass("right-arrow")){if(T.button!==1){return}T.preventDefault();this.goTo(this.get("position")+4)}}},this);this.on("loaded_positionsChange",function(){this.set("pruning",false)},this);if(F.actionQueue){Q=M.one(".context-link").get("id");if(!F.actionQueue["photo-filmstrip"]){F.actionQueue["photo-filmstrip"]={}}F.actionQueue["photo-filmstrip"][Q]={display:function(){window.setTimeout(function(){s(J)},0)}};F.actionQueue.module_loaded("photo-filmstrip",Q)}}e.NAME="filmstrip";e.ATTRS={node:{value:undefined},context_id:{value:undefined},disable_anim:{value:false},position:{value:0},li_width:{value:61},loaded_positions:{value:{}},prune_threshold:{value:30},prune_buffer:{value:10},pruning:{value:false},is_open:{value:false},anim_slide:{value:undefined},anim_open:{value:undefined},anim_close:{value:undefined},total:{value:undefined,setter:function(M,K){var J,L,N;M=parseInt(M,10);if(d.Lang.isNumber(M)&&M!==this.get(K)){J=this.get("node").one(".context-num");L=d.ContextData.getContext(this.get("context_id"));N=L.type;if(N==="pool"||N==="set"||N==="gallery"){J.set("innerHTML","("+d.transjax.get("photo-filmstrip",N)+": "+d.Number.pretty_num(M)+")")}else{J.set("innerHTML","("+d.Number.pretty_num(M)+")")}this.truncate_to_one_line(this.get("node").one(".context-link"))}return M}}};d.extend(e,d.Base,{open:function(K){var O,N,L,J,M,P;O=this.get("node");if(O.hasClass("rolled-up")){p()}this.set("is_open",true);if(this.get("disable_anim")){O.setStyle("height","").addClass("sidebar-context-open").addClass("sidebar-context-mobile").addClass("sidebar-context-mobile-open")}else{if(!this.get("anim_open")){L=this.get("anim_close");if(L){L.pause();this.set("anim_close",undefined)}J=parseInt(O.getStyle("height"),10)||22;M=84;P=J?Math.abs(J-M)/220:0.25;O.setStyle("height",J+"px").addClass("sidebar-context-open");N=new d.Anim({node:O,from:J?{height:J}:undefined,to:{height:M},duration:P,easing:d.Easing.easeOut});N.on("end",function(){O.setStyle("height","");this.set("anim_open",undefined)},this);this.set("anim_open",N);N.run()}}if(!d.Lang.isNumber(K)){K=this.get("position")}this.goTo(K)},close:function(){var N,M,K,J,L,O;N=this.get("node");this.set("is_open",false);if(this.get("disable_anim")){N.removeClass("sidebar-context-open").setStyle("height","").addClass("sidebar-context-mobile").addClass("sidebar-context-mobile-closed")}else{if(!this.get("anim_close")){M=this.get("anim_open");if(M){M.pause();this.set("anim_open",undefined)}J=parseInt(N.getStyle("height"),10)||undefined;L=21;O=J?Math.abs(J-L)/220:0.25;K=new d.Anim({node:N,from:J?{height:J}:undefined,to:{height:L},duration:O,easing:d.Easing.easeOut});K.on("end",function(){N.removeClass("sidebar-context-open").setStyle("height","");this.set("anim_close",undefined)},this);this.set("anim_close",K);K.run()}}},handleNodeHover:function(L){var K,J;K=this.get("node");if(L.target.hasClass("left-arrow")||L.target.get("parentNode").hasClass("left-arrow")){this.loadPosition(this.get("position")-m(),this.get("position"))}else{if(L.target.hasClass("right-arrow")||L.target.get("parentNode").hasClass("right-arrow")){this.loadPosition(this.get("position"),this.get("position")+m())}}if(L.type==="mouseover"){this.checkArrows();K.all(".left-arrow, .right-arrow").addClass("visible");if(!this.get("is_open")){J=this.get("position");this.loadPosition(J-2,J+2)}}else{K.all(".left-arrow, .right-arrow").removeClass("visible")}},handlePrevLimitReached:function(J){this.handleLimitReached("prev",J)},handleNextLimitReached:function(J){this.handleLimitReached("next",J)},handleLimitReached:function(L,J){var M,P,O,K,N;K={"prev-stream":"youre_at_most_recent_photo","next-stream":"youre_at_oldest_photo","prev-pool":"youre_at_most_recent_photo","next-pool":"youre_at_oldest_photo","prev-contacts":"youre_at_most_recent_photo","next-contacts":"youre_at_oldest_photo","prev-photosof":"youre_at_most_recent_photo","next-photosof":"youre_at_oldest_photo","prev-timescrubber":"youre_at_most_recent_photo","next-timescrubber":"youre_at_oldest_photo","prev-set":"youre_at_first_photo","next-set":"youre_at_last_photo","prev-faves":"youre_at_first_photo","next-faves":"youre_at_last_photo","prev-gallery":"youre_at_first_photo","next-gallery":"youre_at_last_photo","prev-photolist":"youre_at_first_photo","next-photolist":"youre_at_last_photo"};N={"prev-stream":"newest","next-stream":"oldest","prev-pool":"newest","next-pool":"oldest","prev-contacts":"newest","next-contacts":"oldest","prev-photosof":"newest","next-photosof":"oldest","prev-timescrubber":"newest","next-timescrubber":"oldest","prev-set":"first","next-set":"last","prev-faves":"first","next-faves":"last","prev-gallery":"first","next-gallery":"last","prev-photolist":"first","next-photolist":"last"};P=d.ContextData.getContext().type;if(L==="prev"){O=''+d.transjax.get("photo-filmstrip",K["prev-"+P])+" →"}else{O='← '+d.transjax.get("photo-filmstrip",K["next-"+P])+""}this.insertPlaceholder(J+1*(L==="prev"?-1:1),O);this.insertPlaceholder(J+2*(L==="prev"?-1:1));this.insertPlaceholder(J+3*(L==="prev"?-1:1));this.insertPlaceholder(J+4*(L==="prev"?-1:1));M=L==="prev"?this.getPrevLimitPosition():this.getNextLimitPosition();if(d.Lang.isNumber(M)){if((L==="prev"&&M>this.get("position"))||(L==="next"&&ML){return this.goTo(O)}Q=this.getNextLimitPosition();if(d.Lang.isNumber(Q)&&Q=this.get("position")-m()&&J<=this.get("position")+m()){this.insertImage(J)}},insertImages:function(){var J,K;J=this.get("position");for(K=J-2;K<=J+2;K++){this.insertImage(K)}for(K=J+3;K<=J+m();K++){this.insertImage(K)}for(K=J-3;K>=J-m();K--){this.insertImage(K)}},insertImage:function(Z,J){var T,S,O,W,N,M,R,X,Y,P,aa,K,Q,L,V,U;T=this.getPositionNode(Z);if(!T){return}S=T.hasClass("loaded");if(S&&!J){return}O=T.one("a.context-thumb-link");if(!O){return}W=O.one("img");if(!W){return}if(!J&&!W.getAttribute("src").match(/spaceout/i)){return}N=this.get("context_id");M=d.ContextData.getPhoto(N,Z);if(!M){return}R=M.get("sizes").sq;if(!R||!R.url){return}if(i[N]&&i[N][M.get("id")]){aa=true;if(!T.getData("removed")){T.setData("removed",true);if(S){K=new d.Anim({node:T,from:{opacity:T.getStyle("opacity")||1},to:{opacity:0.2},duration:0.3,easing:d.Easing.easeOut});K.run()}Q=T.ancestor(".sidebar-context");if(Q&&Q.one(".remove-from-context")){L=new d.Anim({node:Q.one(".remove-from-context"),to:{opacity:0},duration:0.3,easing:d.Easing.easeOut});L.on("end",function(){Q.one(".remove-from-context").setStyle("display","none")});L.run()}}}else{aa=false;if(T.getData("removed")){T.setData("removed",false);if(S){K=new d.Anim({node:T,from:{opacity:T.getStyle("opacity")||0.2},to:{opacity:1},duration:0.3,easing:d.Easing.easeOut});K.run()}Q=T.ancestor(".sidebar-context");if(Q&&Q.one(".remove-from-context")){L=new d.Anim({node:Q.one(".remove-from-context"),to:{opacity:1},duration:0.3,easing:d.Easing.easeOut});Q.one(".remove-from-context").setStyle("display","");L.run()}}}if(!S){d.imageFader.attach(W,aa?0.2:1)}T.addClass("loaded");U=d.urls.photoPage(M,{context:N});O.setAttribute("href",U);V=M.get("title")?M.get("title"):d.transjax.get("photo","untitled");O.setAttribute("title",V);if(M.get("needs_interstitial")){Y=d.config.flickr.images_root+"/fuzzy/photo-fuzzy-s.png"}else{Y=R.url}P=M.get("title")||d.transjax.get("photo-filmstrip","untitled");W.setAttribute("src",Y);W.setAttribute("alt",P);if(M.get("media")==="video"){X=d.Node.create('');O.append(X)}},insertPlaceholder:function(J,K){if(!d.Lang.isString(K)){K=""}this.getPositionNode(J).set("innerHTML",''+K+"")},getUlNode:function(){return this.get("node").one("ul.context-photos-list")},updateTimeline:function(){if(!d.config.flickr.filmstrips.enable_filmstrip_timelines){return}var O,L,K,M,N,J;O=this.get("context_id");if(!O||!d.ContextData.getContext(O)){return}L=this.get("total");K=d.ContextData.getContext(O).start_position;if(!d.Lang.isNumber(L)||!d.Lang.isNumber(K)){return}M=K+this.get("position");N=(100*M/this.get("total"))+"%";if(N<0){N=0}else{if(N>100){N=100}}J=this.get("node").one(".timeline");if(!J){J=d.Node.create('');this.get("node").append(J)}J.one("span").setStyle("left",N)},checkArrows:function(){var J,N,M,L,K;J=this.get("position");N=this.getPrevLimitPosition();M=this.get("node").one(".left-arrow");if(d.Lang.isNumber(N)&&N>=J-2){M.addClass("disabled-arrow")}else{M.removeClass("disabled-arrow")}L=this.getNextLimitPosition();K=this.get("node").one(".right-arrow");if(d.Lang.isNumber(L)&&L<=J+2){K.addClass("disabled-arrow")}else{K.removeClass("disabled-arrow")}},getPositionNode:function(K,J){var L,M;L=this.getUlNode();if(!L){return undefined}if(!d.Lang.isBoolean(J)){J=true}M=L.one('li[data-context-position="'+K+'"]');if(!M&&J){L.setStyle("width",parseInt(L.getStyle("width"),10)+this.get("li_width")+"px");M=d.Node.create('
                  • ');M.setStyle("left",K*this.get("li_width")+"px");L.append(M)}return M},prune:function(){if(!this.get("pruning")){this.set("pruning",true);d.later(2000,this,function(){if(!this.get("pruning")){return}this.set("pruning",false);var J,N,L,K,M,O,P;J=this.get("position");N=this.get("loaded_positions");L=d.Object.keys(N);if(L.length>this.get("prune_threshold")){L.sort(function(R,Q){var T,S;T=Math.abs(R-J);S=Math.abs(Q-J);return(T-S)});d.log("pruning! loaded_position_keys = ",L);M=L.length-this.get("prune_threshold")+this.get("prune_buffer");for(K=1;K<=M;K++){O=L.length-K;P=this.getPositionNode(O,false);if(P){P.remove()}}L=L.splice(L.length-M,M);d.log("remove deleted positions",L.length,L);d.Array.each(L,function(Q){N[Q]=undefined;delete N[Q]});d.log("set loaded_positions via prune",d.Object.keys(N).length);this.set("loaded_positions",N)}})}},truncate_to_one_line:function(L){j=j||{};var P=false,T=L.one(".context-title"),J=L.ancestor(".sidebar-context"),R=false;if(!L){return}L.setStyle("overflow","hidden");L.setStyle("whiteSpace","nowrap");if(J.hasClass("rolled-up")&&P){J.removeClass("rolled-up");R=true}var W=j.max_width||parseInt(L.ancestor(".context-header").get("offsetWidth"),10),U=L.one(".context-wrapper"),Q=L.one(".caret"),N=d.StringFilters.unescape_entities(T.get("title")),S="",K=0,O=null,M=12,V=20;if(!j.max_width){j.max_width=W}Q.setStyle("display","inline-block");T.set("innerHTML",d.StringFilters.escape_entities(N));if(parseInt(U.get("offsetWidth"),10)0){do{K++;S=N.substring(0,N.length-K)+"...";T.set("innerHTML",d.StringFilters.escape_entities(S));O=(parseInt(U.get("offsetWidth"),10)>=(W-M)||(S.charAt(S.length-5)===" "||S.charAt(S.length-4)===" "));if(O&&S.length3)?c.merge(m.splice(3,1)[0]):{};if(!(i in n)){n[i]=this.MIN_VELOCITY;}if(!(e in n)){n[e]=this.MIN_DISTANCE;}if(!(a in n)){n[a]=this.PREVENT_DEFAULT;}return n;},_onStart:function(q,o,u,n){var m=true,t,s,r=u._extra.preventDefault,p=q;if(q.touches){m=(q.touches.length===1);q=q.touches[0];}if(m){if(r){if(!r.call||r(q)){p.preventDefault();}}q.flick={time:new Date().getTime()};u[d]=q;t=u[l];if(!t){s=(o.get(j)===9)?o:o.get(b);t=s.on(g[k],c.bind(this._onEnd,this),null,o,u,n);u[l]=t;}}},_onEnd:function(z,t,A,q){var x=new Date().getTime(),o=A[d],m=!!o,B=z,p,s,y,v,w,n,u,r;if(m){if(z.changedTouches){if(z.changedTouches.length===1&&z.touches.length===0){B=z.changedTouches[0];}else{m=false;}}if(m){v=A._extra;y=v[a];if(y){if(!y.call||y(z)){B.preventDefault();}}p=o.flick.time;x=new Date().getTime();s=x-p;w=[B.pageX-o.pageX,B.pageY-o.pageY];if(v.axis){r=v.axis;}else{r=(Math.abs(w[0])>=Math.abs(w[1]))?"x":"y";}n=w[(r==="x")?0:1];u=(s!==0)?n/s:0;if(isFinite(u)&&(Math.abs(n)>=v[e])&&(Math.abs(u)>=v[i])){z.type="flick";z.flick={time:s,distance:n,velocity:u,axis:r,start:o};q.fire(z);}A[d]=null;}}},MIN_VELOCITY:0,MIN_DISTANCE:0,PREVENT_DEFAULT:false});},"3.3.0",{requires:["node-base","event-touch","event-synthetic"]});YUI.add("event-move",function(e){var j=("ontouchstart" in e.config.win&&!e.UA.chrome)?{start:"touchstart",move:"touchmove",end:"touchend"}:{start:"mousedown",move:"mousemove",end:"mouseup"},x="start",C="move",h="end",l="gesture"+C,a=l+h,i=l+x,B="_msh",m="_mh",w="_meh",r="_dmsh",o="_dmh",c="_dmeh",g="_ms",s="_m",z="minTime",t="minDistance",u="preventDefault",b="button",v="ownerDocument",n="currentTarget",p="target",q="nodeType",k=function(H,F,G){var D=(G)?4:3,E=(F.length>D)?e.merge(F.splice(D,1)[0]):{};if(!(u in E)){E[u]=H.PREVENT_DEFAULT;}return E;},f=function(E,D){return D._extra.root||(E.get(q)===9)?E:E.get(v);},y=function(D,F,E){D.pageX=F.pageX;D.pageY=F.pageY;D.screenX=F.screenX;D.screenY=F.screenY;D.clientX=F.clientX;D.clientY=F.clientY;D[p]=D[p]||F[p];D[n]=D[n]||F[n];D[b]=(E&&E[b])||1;},A=function(E,D){if(D){if(!D.call||D(E)){E.preventDefault();}}},d=e.Event.define;d(i,{on:function(E,D,F){D[B]=E.on(j[x],this._onStart,this,E,D,F);},delegate:function(F,E,H,D){var G=this;E[r]=F.delegate(j[x],function(I){G._onStart(I,F,E,H,true);},D);},detachDelegate:function(F,E,H,D){var G=E[r];if(G){G.detach();E[r]=null;}},detach:function(E,D,G){var F=D[B];if(F){F.detach();D[B]=null;}},processArgs:function(D,E){var F=k(this,D,E);if(!(z in F)){F[z]=this.MIN_TIME;}if(!(t in F)){F[t]=this.MIN_DISTANCE;}return F;},_onStart:function(J,E,P,D,L){if(L){E=J[n];}var F=P._extra,O=true,G=F[z],N=F[t],H=F.button,I=F[u],M=f(E,P),K;if(J.touches){if(J.touches.length===1){y(J,J.touches[0],F);}else{O=false;}}else{O=(H===undefined)||(H===J.button);}if(O){A(J,I);if(G===0||N===0){this._start(J,E,D,F);}else{K=[J.pageX,J.pageY];if(G>0){F._ht=e.later(G,this,this._start,[J,E,D,F]);F._hme=M.on(j[h],e.bind(function(){this._cancel(F);},this));}if(N>0){F._hm=M.on(j[C],e.bind(function(Q){if(Math.abs(Q.pageX-K[0])>N||Math.abs(Q.pageY-K[1])>N){this._start(J,E,D,F);}},this));}}}},_cancel:function(D){if(D._ht){D._ht.cancel();D._ht=null;}if(D._hme){D._hme.detach();D._hme=null;}if(D._hm){D._hm.detach();D._hm=null;}},_start:function(F,D,E,G){if(G){this._cancel(G);}F.type=i;D.setData(g,F);E.fire(F);},MIN_TIME:0,MIN_DISTANCE:0,PREVENT_DEFAULT:false});d(l,{on:function(F,E,H){var D=f(F,E),G=D.on(j[C],this._onMove,this,F,E,H);E[m]=G;},delegate:function(F,E,H,D){var G=this;E[o]=F.delegate(j[C],function(I){G._onMove(I,F,E,H,true);},D);},detach:function(E,D,G){var F=D[m];if(F){F.detach();D[m]=null;}},detachDelegate:function(F,E,H,D){var G=E[o];if(G){G.detach();E[o]=null;}},processArgs:function(D,E){return k(this,D,E);},_onMove:function(J,H,G,I,F){if(F){H=J[n];}var D=G._extra.standAlone||H.getData(g),E=G._extra.preventDefault;if(D){if(J.touches){if(J.touches.length===1){y(J,J.touches[0]);}else{D=false;}}if(D){A(J,E);J.type=l;I.fire(J);}}},PREVENT_DEFAULT:false});d(a,{on:function(G,F,H){var E=f(G,F),D=E.on(j[h],this._onEnd,this,G,F,H);F[w]=D;},delegate:function(F,E,H,D){var G=this;E[c]=F.delegate(j[h],function(I){G._onEnd(I,F,E,H,true);},D);},detachDelegate:function(F,E,H,D){var G=E[c];if(G){G.detach();E[c]=null;}},detach:function(F,E,G){var D=E[w];if(D){D.detach();E[w]=null;}},processArgs:function(D,E){return k(this,D,E);},_onEnd:function(J,H,F,I,E){if(E){H=J[n];}var G=F._extra.standAlone||H.getData(s)||H.getData(g),D=F._extra.preventDefault;if(G){if(J.changedTouches){if(J.changedTouches.length===1){y(J,J.changedTouches[0]);}else{G=false;}}if(G){A(J,D);J.type=a;I.fire(J);H.clearData(g);H.clearData(s);}}},PREVENT_DEFAULT:false});},"3.3.0",{requires:["node-base","event-touch","event-synthetic"]});YUI.add("event-gestures",function(a){},"3.3.0",{use:["event-flick","event-move"]});YUI.add("photo-lightbox-transjax",function(a){a.transjax.add("photo-lightbox",{by:'By %s',close:'Close',prev:'Prev',next:'Next',newer:'Newer',older:'Older',view_photo_page:'View photo page',view_video_page:'View video page',add_to_faves:'Favorite',allsizes:'View all sizes',outside_safesearch:'This photo falls outside your current SafeSearch filter.',you_can_click_through:'You can click through to see it if you want.',show_the_photo:'YES PLEASE, SHOW ME THE PHOTO'})},"0.0.1",{requires:["transjax-base"]});if(typeof YWA==="undefined"){YWA={};YWA.initialize=function(){var a;YWA.ud="undefined";YWA.EXCLPRM="";YWA.ONLOAD=true;YWA.PID=YWA.ud;YWA.flashVer="";YWA.isOnloadOverwrite=false;YWA.windowOnload=null;YWA.errorId="";YWA.isNewYWATEnabled=false;YWA.windowOnerror=null;if(typeof window.ITTs==="undefined"){window.ITTs=[]}a=navigator.appName;YWA.net=(a==="Netscape");YWA.mic=(a.substring(0,9)==="Microsoft"&&(typeof navigator.plugins===YWA.ud||navigator.plugins.length===0));YWA.mac=(navigator.userAgent.indexOf("Mac")>=0);YWA.gec=(navigator.userAgent.indexOf("Firefox")>=0||navigator.userAgent.indexOf("Netscape")>=0);YWA.addOLH()};YWA.ywaOLH=function(a){if(YWA.windowOnload){YWA.windowOnload.call(window,a)}YWA.addOCHs()};YWA.addOLH=function(){if(!YWA.ONLOAD||YWA.isOnloadOverwrite){return}var b=[];if(window.screen||b.toSource||(b.shift&&YWA.mic)){if(window.onload){if(!YWA.windowOnload){YWA.windowOnload=window.onload}}window.onload=YWA.ywaOLH}YWA.isOnloadOverwrite=true};YWA.initialize()}YWA.ywaOCH=function(b){var a,d,c;d=true;for(a=0,c=window.ITTs.length;a=0){c=window.ITTs[a]}else{c=new YWAT(b)}YWA.isNewYWATEnabled=false;return c};YWA.is=function(a){return(typeof a!==YWA.ud)};YWA.getExcludePrm=function(){return YWA.EXCLPRM};YWA.setExcludePrm=function(a){YWA.EXCLPRM=YWA.is(a)?a:""};YWA.getOnload=function(){return YWA.ONLOAD};YWA.setOnload=function(a){YWA.ONLOAD=YWA.is(a)?a:true};YWA.getPID=function(){if(YWA.is(document.scripts)){var b,e,d,c,a;d="ywa.js";c="ywa-";for(a=document.scripts.length,b=a-1;b>=0;b-=1){e=document.scripts[b].src;if(YWA.is(e)&&e.indexOf(d)===e.length-d.length){e=e.substr(0,e.length-d.length-1);e=e.substr(e.lastIndexOf("/")+1+c.length);return"1000"+e}}}return YWA.ud};YWA.getPID();YWA.getExcludeDomains=function(){return""};YWA.getExcludeProtocol=function(){return""};YWA.getDownloadExts=function(){return"\\.pdf$|\\.doc$|\\.dot$|\\.xls$|\\.xlt$|\\.xlw$|\\.ppt$|\\.pps$|\\.zip$|\\.rar$|\\.gz$|\\.gzip$|\\.wav$|\\.mp[3-4]?$|\\.mpeg$"};YWA.getErrorObj=function(b){var a;a=new Error(b);if(!a.msg){a.msg=b}return a};YWA.gcpn=function(a){var c,b,f,e,d;f=location.search;e=f.indexOf("?"+a+"=");d=f.indexOf("&"+a+"=");if((e===0)||(d>-1)){c=(e===0)?0:d;b=f.indexOf("&",c+1);return f.substring(c+2+a.length,(b>-1)?b:f.length)}return""};YWA.getFileName=function(a){var b;b=a.indexOf("?");if(b>0){a=a.substring(0,b)}return a.substring(a.lastIndexOf("/")+1,a.length)};YWA.gh=function(a){var b;b=a.host.indexOf(":");return(b>=0)?a.host.substring(0,b):a.host};YWA.ghs=function(a){var b;b=a.indexOf("//");if(b>=0){a=a.substring(b+2,a.length);b=a.indexOf("/");if(b>=0){return a.substring(0,b)}return a.substring(b+2,a.length)}return""};YWA.gpr=function(a){var c,b;c=a.protocol;b=c.indexOf(":");return(b>=0)?c:c+":"};YWA.gp=function(a){var c,b;c=a.pathname;b=c.indexOf("/");return(b===0)?c:"/"+c};YWA.mxDmnRGXP=function(a){if(a.toUpperCase().indexOf("REGEXP:")===0){return new RegExp(a.substring(7),"i")}else{return new RegExp(YWA.mxRgXpStr(a),"i")}};YWA.mxRgXpStr=function(l){while(l.indexOf(" ")>=0){l=l.replace(" ","")}var g,f,c,m,h,d,k;h="";d=l.split(",");for(g=0,k=d.length;g=0){c[f]=".+"}}if(m>0){d[g]=c.join("\\.")}}if(k>0){h+=d.join("$|^")}if(h.length>0){return"^"+h+"$"}return""};function YWAT(a){if(!YWA.isNewYWATEnabled){throw YWA.getErrorObj("Invalid method to get a tracking object.")}var b,c;this.version="5.09";this.EXCLDOMAINS="";this.DWNLEXTS="";this.EXCLPRM=YWA.getExcludePrm();this.EXCLPRTCL="";this.ONLOAD=YWA.getOnload();this.DOMAINS="";this.DEBUG=false;this.RUN=false;if(!YWA.is(a)){this.PID=YWA.getPID();this.RUN=this.PID===YWA.ud}else{this.PID=a}this.BD=(window.location.protocol.indexOf("https:")===0?"https://":"http://")+"a.analytics.yahoo.com";this.BU=this.BD+"/p.pl?a="+this.PID+"&v="+this.version;this.FU="";this.URL=this.getClnUrl(document.URL?document.URL:document.location);this.REFERRER="";this.TOPLOCATION="";this.cfn=[];this.cfv=[];this.IT="";this.date=new Date();this.PIXELDELAY=false;this.DOCUMENTNAME=document.title;this.CAMPAIGN="";this.CMPPARM="";this.PROMO="";this.PROMOPARM="";this.TPSC=true;this.EXCL="";this.FPCR="";this.FPCN="fpc"+this.PID;this.FPCV="";this.FPCD="";this.ENC="";this.itvs="";this.itsid="";this.itvid="";this.place=document.body;try{c=document.getElementsByTagName("head");if(YWA.is(c)&&c.length>0){this.place=c[0]}}catch(d){}this.FLV=this.flash();if(!YWA.is(window.ITTs)){window.ITTs=[]}this.idx=window.ITTs.length;window.ITTs[this.idx]=this;this.ita=["DOCUMENTNAME","b","DOCUMENTGROUP","c","MEMBERID","m","URL","f","ACTION","x","AMOUNT","xa","ORDERID","oc","TAX","xt","SHIPPING","xs","DISCOUNT","xd","SKU","p","PRODUCTS","u","UNITS","q","AMOUNTS","r","CMPQUERY","cq","ISK","isk","ISR","isr"];this.prmord=["a","v","b","c","m","f","e","t","n","d","cp","cq","scp","ci","enc","x","sid","ca","oc","p","q","r","xa","xd","xs","xt","el","fn","flv","fpc","isk","isr","g","h","ittidx","ix","j","k","l","tp","nr","js","cf01","cf02","cf03","cf04","cf05","cf06","cf07","cf08","cf09","cf10","cf11","cf12","cf13","cf14","cf15","cf16","cf17","cf18","cf19","cf20","cf21","cf22","cf23","cf24","cf25","cf26","cf27","cf28","cf29","cf30","cf31","cf32","cf33","cf34","cf35","cf36","cf37","cf38","cf39","cf40","cf41","cf42","cf43","cf44","cf45","cf46","cf47","cf48","cf49","cf50","cf51","cf52","cf53","cf54","cf55","cf56","cf57","cf58","cf59","cf60","cf61","cf62","cf63","cf64","cf65","cf66","cf67","cf68","cf69","cf70","cf71","cf72","cf73","cf74","cf75","cf76","cf77","cf78","cf79","cf80","cf81","cf82","cf83","cf84","cf85","cf86","cf87","cf88","cf89","cf90","cf91","cf92","cf93","cf94","cf95","cf96","cf97","cf98","cf99","cf100"];for(b=0;b<10;b+=1){this.ita[this.ita.length]="P"+(1+b);this.ita[this.ita.length]="p"+(1+b)}for(b=0;b<99;b+=1){this.ita[this.ita.length]="CF"+((b<9)?"0":"")+(1+b);this.ita[this.ita.length]="cf"+(1+b)}this.imgsl=0;if(YWA.is(document.charset)){this.ENC=document.charset}else{if(YWA.is(document.characterSet)){this.ENC=document.characterSet}else{this.ENC=""}}this.FPCR="&ittidx="+this.idx+"&fpc="+encodeURIComponent(this.getCookie(this.FPCN));this.hasFPC=false}YWAT.prototype.getDocumentName=function(){return this.DOCUMENTNAME};YWAT.prototype.setDocumentName=function(a){this.DOCUMENTNAME=a};YWAT.prototype.getDocumentGroup=function(){return this.DOCUMENTGROUP};YWAT.prototype.setDocumentGroup=function(a){this.DOCUMENTGROUP=a};YWAT.prototype.getMemberId=function(){return this.MEMBERID};YWAT.prototype.setMemberId=function(a){this.MEMBERID=a};YWAT.prototype.getAction=function(){return this.ACTION};YWAT.prototype.setAction=function(b){this.ACTION=b};YWAT.prototype.getAmount=function(){return this.AMOUNT};YWAT.prototype.setAmount=function(b){this.AMOUNT=b};YWAT.prototype.getOrderId=function(){return this.ORDERID};YWAT.prototype.setOrderId=function(a){this.ORDERID=a};YWAT.prototype.getTax=function(){return this.TAX};YWAT.prototype.setTax=function(a){this.TAX=a};YWAT.prototype.getShipping=function(){return this.SHIPPING};YWAT.prototype.setShipping=function(a){this.SHIPPING=a};YWAT.prototype.getDiscount=function(){return this.DISCOUNT};YWAT.prototype.setDiscount=function(a){this.DISCOUNT=a};YWAT.prototype.getSKU=function(){return this.SKU};YWAT.prototype.setSKU=function(a){this.SKU=a};YWAT.prototype.getUnits=function(){return this.UNITS};YWAT.prototype.setUnits=function(a){this.UNITS=a};YWAT.prototype.getAmounts=function(){return this.AMOUNTS};YWAT.prototype.setAmounts=function(b){this.AMOUNTS=b};YWAT.prototype.getCmpQuery=function(){return this.CMPQUERY};YWAT.prototype.setCmpQuery=function(a){this.CMPQUERY=a};YWAT.prototype.getISK=function(){return this.ISK};YWAT.prototype.setISK=function(a){this.ISK=a};YWAT.prototype.getISR=function(){return this.ISR};YWAT.prototype.setISR=function(a){this.ISR=a};YWAT.prototype.getEF=function(a){a=parseInt(a,10);return this["P"+a]};YWAT.prototype.setEF=function(b,a){b=parseInt(b,10);this["P"+b]=a};YWAT.prototype.getCF=function(a){a=parseInt(a,10);return this["CF"+((a<10)?"0":"")+a]};YWAT.prototype.setCF=function(b,a){b=parseInt(b,10);this["CF"+((b<10)?"0":"")+b]=a};YWAT.prototype.getDebug=function(){return this.DEBUG};YWAT.prototype.setDebug=function(a){this.DEBUG=YWA.is(a)?a:false};YWAT.prototype.getRun=function(){return this.RUN};YWAT.prototype.setRun=function(a){if(!YWA.is(a)||a){this.RUN=this.PID!==YWA.ud}else{this.RUN=false}};YWAT.prototype.getUrl=function(){return this.URL};YWAT.prototype.setUrl=function(a){this.URL=this.getClnUrl(a)};YWAT.prototype.getEncoding=function(){return this.ENC};YWAT.prototype.setEncoding=function(a){if(YWA.is(a)){this.ENC=a}else{this.ENC=""}};YWAT.prototype.getCookieDomain=function(){return this.FPCD};YWAT.prototype.setCookieDomain=function(a){if(YWA.is(a)&&a!==""){this.FPCD=a}else{this.FPCD=""}};YWAT.prototype.getTPSC=function(){return this.TPSC};YWAT.prototype.setTPSC=function(a){this.TPSC=YWA.is(a)?a:true};YWAT.prototype.getReferrer=function(){return this.REFERRER};YWAT.prototype.setReferrer=function(a){if(YWA.is(a)&&a.length>0){this.REFERRER=a}};YWAT.prototype.getPixelDelay=function(){return this.PIXELDELAY};YWAT.prototype.setPixelDelay=function(a){this.PIXELDELAY=YWA.is(a)?a:false};YWAT.prototype.getDomains=function(){return this.DOMAINS};YWAT.prototype.setDomains=function(a){this.DOMAINS=(YWA.is(a)&&a!=="")?a:YWA.ud};YWAT.prototype.getFlashUrl=function(){return this.FU};YWAT.prototype.setFlashUrl=function(a){this.FU=YWA.is(a)?a:""};YWAT.prototype.getExcludeDomains=function(){var a;a=YWA.getExcludeDomains();a+=(a.length>0&&this.EXCLDOMAINS.length>0?",":"")+this.EXCLDOMAINS;return a};YWAT.prototype.addExcludeDomain=function(a){this.EXCLDOMAINS+=(this.EXCLDOMAINS.length>0?",":"")+a};YWAT.prototype.removeExcluseDomain=function(c){var b,a,f,e;a=this.EXCLDOMAINS.split(",");f=[];for(b=0,e=a.length;b0&&this.DWNLEXTS.length>0?"|":"")+this.DWNLEXTS;return a};YWAT.prototype.addDownloadExt=function(f){var b,h,g,d,a;g=f.toLowerCase();d="";for(b=0,a=g.length;b="a"&&h<="z")||(h>="0"&&h<="9")||h==="-"||h==="_"){d+=h}}this.DWNLEXTS+=(this.DWNLEXTS.length>0?"|":"")+"\\."+d+"$"};YWAT.prototype.removeDownloadExt=function(f){var a,d,b,c;d=this.DWNLEXTS.split("|");b=[];for(a=0,c=d.length;a0&&this.EXCLPRTCL.length>0?",":"")+this.EXCLPRTCL;return a};YWAT.prototype.addExcludeProtocol=function(a){this.EXCLPRTCL+=(this.EXCLPRTCL.length>0?",":"")+a.toLowerCase()};YWAT.prototype.removeExcludeProtocol=function(f){var a,d,b,c;d=this.EXCLPRTCL.split(",");b=[];for(a=0,c=d.length;a=0};YWAT.prototype.pp=function(){var b,c,a;a=[];for(b=0,c=this.ita.length;b+10){if(d["Shockwave Flash 2.0"]||d["Shockwave Flash"]){c=d["Shockwave Flash 2.0"]?" 2.0":"";a=d["Shockwave Flash"+c].description}}else{b=document.createElement("script");b.language="VBScript";b.text='\nFunction sVBSwfVer(i)\non error resume next\nDim swC,swV\nswV=0\nset swC=CreateObject("ShockwaveFlash.ShockwaveFlash."+CStr(i))\nif(IsObject(swC))then\nswV=swC.GetVariable("$version")\nend if\nsVBSwfVer=swV\nEnd Function\n';this.place.appendChild(b);a=sVBSwfVer(1)}YWA.flashVer=a}return YWA.flashVer};YWAT.prototype.setCookie=function(a,e,g){var c,b,f;f=new Date();f.setTime(f.getTime()+(g*1000));c=(g>0)?"; expires="+f.toGMTString():"";if(g<0){c="; expires=Thu, 01-Jan-1970 00:00:01 GMT"}b=a+"="+e+c+"; path=/"+((this.FPCD!=="")?("; domain="+this.FPCD):(""));document.cookie=b};YWAT.prototype.deleteCookie=function(a){return this.setCookie(a,"1",-1)};YWAT.prototype.getCookie=function(c){var e,b,a,d;a=document.cookie;d=a.indexOf(c+"=");if(d!==-1){e=d+c.length+1;b=a.indexOf(";",e);if(b===-1){b=a.length}return a.substring(e,b)}return""};YWAT.prototype.FPCSupport=function(){if(this.getCookie(this.FPCN)!==""){return true}var c,a,e,b;a="itfpctmp";e=new Date();b="fpc-"+e.getTime();this.setCookie(a,b,180);c=this.getCookie(a);if(c===b){this.deleteCookie(a);return true}return false};YWAT.prototype.trunc=function(k,j){var a,h,i,b,e,d,c,g,f;if(k.length<=j){return k}a=k.split("?");if(a.length>1){b=a[0]+"?";h=a[1];i=h.split("&");i.sort();c=false;f=i.length;for(e=0,g=this.prmord.length;ej){return b+"&trnc=1"}b+=(c?"&":"")+i[d];c=true;break}}}return b}else{return k}};YWAT.prototype.chkl0=function(s,p,o,c,a){var j,n,g,f,h,q,m,t,b,l,e;for(j=0,e=p.length,l=s.length;jo;j+=1){n=s.length-o;g=s.indexOf("&"+p[j]+"=");if(g>0){g+=p[j].length+2;f=s.indexOf("&",g);if(f>0){q=g;m=s.toLowerCase().indexOf("%3f",g);t=s.toLowerCase().indexOf("%3d",g);if(f-g>n+a.length+c){g+=f-g-n-a.length;for(h=1;h<10;h+=1){if(s.charAt(g-h)==="%"){g-=h;break}}}else{if(f-g>c){g+=c;for(h=1;h<10;h+=1){if(s.charAt(g-h)==="%"){g-=h;break}}}else{continue}}b=s.substring(0,g);if(m>0&&mf){b+="%3D"}b+="%26"}b+=a;b+=s.substring(f);s=b}}}if(s.length>o){return this.chkl(s,p,o,c/2,a)}return s};YWAT.prototype.chkl=function(a,e,d,c,b){a=this.chkl0(a,e,d,c,b);if(a.length>d){a=this.chkl0(a,e,d,c/2,b)}return a};YWAT.prototype.trk=function(c){var a,b;a=this.trunc(this.BU+(!this.TPSC?"&tp=0":"")+"&enc="+encodeURIComponent(this.ENC)+this.IT+c+"&ix="+this.imgsl+this.FPCR,2000);if(!this.isProtocolExcluded()){this.imgsl+=1;if(this.DEBUG){window.alert(a)}else{b=new Image();if(YWA.net||this.PIXELDELAY){window.setTimeout(function(){b.src=a},1)}else{b.src=a}window.setTimeout(function(){b=null},10000)}}else{if(this.DEBUG){window.alert("'"+a+"' isn't tracked because of excluded protocol.")}}this.reset();this.IT="";return a};YWAT.prototype.gcpn=function(a){return YWA.gcpn(a)};YWAT.prototype.getFileName=function(a){return YWA.getFileName(a)};YWAT.prototype.gh=function(a){return YWA.gh(a)};YWAT.prototype.ghs=function(a){return YWA.ghs(a)};YWAT.prototype.gpr=function(a){return YWA.gpr(a)};YWAT.prototype.gp=function(a){return YWA.gp(a)};YWAT.prototype.mxDmnRGXP=function(a){return YWA.mxDmnRGXP(a)};YWAT.prototype.mxRgXpStr=function(a){return YWA.mxRgXpStr(a)};YWAT.prototype.customfield_reset=function(){this.cfn.length=0;this.cfv.length=0};YWAT.prototype.customfield_set=function(b,a){this.cfn[this.cfn.length]=b;this.cfv[this.cfv.length]=a};YWAT.prototype.cf_ts=function(){var c,b,a,d;b="&cf=1";for(c=0,a=this.cfn.length,d=this.cfv.length;c0&&this.cfv.length>0){var a;a=this.cf_ts();this.customfield_reset();this.pp();this.trk(a)}};YWAT.prototype.submit_action=function(){this.pp();this.trk("&ca=1")};YWAT.prototype.submit_icmp=function(){this.pp();this.trk("&ci=1")};YWAT.prototype.exitlink=function(a){this.pp();this.trk("&el="+encodeURIComponent(a))};YWAT.prototype.el=function(a){var b;if(YWA.gh(location)===YWA.gh(a)){return true}if(!this.isProtocolExcluded()){b=(YWA.is(this.DOMAINS)&&this.DOMAINS!=="")?YWA.mxDmnRGXP(this.DOMAINS):YWA.mxDmnRGXP(YWA.gh(location))}else{b=YWA.mxDmnRGXP("protocolexclusion")}if(b.test(YWA.gh(a))){return true}if(a.href.indexOf("java")!==0){this.exitlink(a.href)}return true};YWAT.prototype.download=function(a){this.pp();this.trk("&fn="+encodeURIComponent(a))};YWAT.prototype.oco=function(a){var c,b,d;d=this.getExcludeDomains();if(d!==""){c=YWA.mxDmnRGXP(d);if(c.test(YWA.gh(a))){if(this.DEBUG){window.alert("'"+YWA.gh(a)+"' isn't tracked as exitlink.")}return true}}if(YWA.is(a.pathname)){b=YWA.getFileName(a.pathname);if(b!==""){c=new RegExp(this.getDownloadExts(),"i");if(c.test(b)&&(b.indexOf(".")!==-1)){if(((this.EXCL!=="")&&(!YWA.mxDmnRGXP(this.EXCL).test(a.pathname)))||(this.EXCL.length===0)){this.download(a.href)}}else{this.el(a)}}else{this.el(a)}}};YWAT.prototype.track=function(j,b){var f,m,h,l,a,c;l="";a=document.referrer;YWA.errorId=this.idx;c=[];if(YWA.is(this.REFERRER)&&this.REFERRER.length>0){a=this.REFERRER}else{if((navigator.userAgent.indexOf("Mac")>=0)&&(navigator.userAgent.indexOf("MSIE 4")>=0)){a=document.referrer}else{if(j){YWA.windowOnerror=window.onerror;window.onerror=YWA.ywaOEH;h=true;try{l=top.location.href;l=""}catch(k){h=false}if(h&&document.location!==top.location){a=top.document.referrer;l=top.location.href}}else{c[0]="&nr=t"}}}if(YWA.windowOnerror){window.onerror=YWA.windowOnerror}else{window.onerror=null}this.pp();if(a.length>0){m=YWA.is(this.DOMAINS)?YWA.mxDmnRGXP(this.DOMAINS):YWA.mxDmnRGXP(YWA.gh(location));c[1]="&e="+encodeURIComponent(m.test(YWA.ghs(a))?this.getClnUrl(a):a)}if(l.length>0){c[2]="&t="+encodeURIComponent(l)}f=this.FPCSupport();this.date=new Date();c[3]="&flv="+encodeURIComponent(this.FLV);c[4]="&d="+encodeURIComponent(this.date.toGMTString());c[5]="&n="+encodeURIComponent(parseInt(this.date.getTimezoneOffset()/60,10));c[6]="&g="+encodeURIComponent(YWA.net?navigator.language:navigator.userLanguage);c[7]="&h="+encodeURIComponent((navigator.javaEnabled()?"Y":"N"));try{c[8]="&j="+encodeURIComponent(screen.width+"x"+screen.height);c[9]="&k="+encodeURIComponent(YWA.mic?screen.colorDepth:screen.pixelDepth)}catch(g){}c[10]="&l="+((f)?"true":"false");if(this.CAMPAIGN!==""){c[11]="&cp="+encodeURIComponent(this.CAMPAIGN)}if(this.CMPPARM!==""){c[12]="&cp="+encodeURIComponent(YWA.gcpn(this.CMPPARM))}if(this.PROMO!==""){c[13]="&scp="+encodeURIComponent(this.PROMO)}if(this.PROMOPARM!==""){c[14]="&scp="+encodeURIComponent(YWA.gcpn(this.PROMOPARM))}this.IT+=c.join("");if(this.RUN){return}if(f&&b){this.fpc()}else{this.trk("")}YWA.errorId=""};YWAT.prototype.submitPT=function(){return this.submit(false)};YWAT.prototype.submit=function(a){var b;b=(typeof a).toLowerCase();if(b==="undefined"||b!=="boolean"){a=true}a=(this.hasFPC?false:a);return this.track(true,a)};YWAT.prototype.fpc=function(){this.getFPCvars()};YWAT.prototype.ywaW3C=function(d){var a,c,b;b=[];b[0]=this.BD;b[1]="/fpc.pl?a=";b[2]=this.PID;b[3]="&v=";b[4]=this.version;if(!this.TPSC){b[5]="&tp=0"}b[6]="&enc=";b[7]=encodeURIComponent(this.ENC);b[8]=this.IT;b[9]=this.FPCR;c=this.trunc(b.join(""),2000);if(!this.isProtocolExcluded()){if(d===0){if(!this.DEBUG){a=document.createElement("SCRIPT");a.defer=true;a.type="text/javascript";a.src=c;this.place.appendChild(a);this.hasFPC=true}else{window.alert(c)}}else{this.trk("")}}else{if(this.DEBUG){window.alert("'"+c+"' isn't tracked because of excluded protocol.")}}this.reset();this.IT=""};YWAT.prototype.getFPCvars=function(){var a=this.FPCSupport();if(a&&!this.hasFPC){this.ywaW3C(0)}else{this.ywaW3C(1)}};YWAT.prototype.setFPCookies=function(){if(this.FPCV!==""){this.setCookie(this.FPCN,this.FPCV,31536000)}};YWAT.prototype.page=function(e,c,f,d,b){var a;a=this.URL;this.URL=this.FU!==""?this.FU:"FLASH";this.DOCUMENTNAME=e;this.DOCUMENTGROUP=c;this.MEMBERID=f;this.ACTION=d;this.AMOUNT=b;this.submit();this.URL=a};YWAT.prototype.getClnUrl=function(n){var c,b,o,d,m,l,a,j,e,q,g,h,f;g="_S_PEPOS,_S_PEPRM";if(!YWA.is(this.EXCLPRM)){return n}c=n.split("?");if(c.length===1){return n}b=c[1].split("&");o=((this.EXCLPRM.indexOf(";")>=0)?this.EXCLPRM.split(";"):this.EXCLPRM.split(","));d=[];l=0;for(j=0,m=o.length;j0&&!q.test(d[l])||e.length===0&&d[l]!=="")}if(f){a+=((a.length>0)?"&":"")+b[j]}}return c[0]+((a.length>0)?"?"+a:"")};YUI.add("photo-ywa-tracking",function(b){var a;var c={"Context Widget (any photo)":13,"Context Widget scroll arrows":14,"Owner Setting (show more)":15,"Current context next":16,"Current context prev":17,"Other context next":18,"Other context prev":19,"All Sizes":20,"Blog This":21,Browse:22,"Comment, Post":23,"Favorites star":24,"Next, previous":25,"Person, Add":26,"Person, In photo":27,"Sign in (top)":28,"Sign in (bottom)":29,"Sign up (top)":30,"Sign up (bottom)":31,"Sign in (comment form)":32,"Sign up (comment form)":33,Share:34,"Account name":35,"Camera, Taken with":36,"Commenter names":37,"Edit photos":38,"Galleries, Add to":39,"Groups, Send to":40,"Location, Taken in, Places":42,"Order prints":43,"Context Title":44,Slideshow:45,"Tag(s), Add to":46,"Tag(s)":47,"Tag(s), Global":41,"Camera, More properties":48,"Date, Taken on":49,"Tour Dismiss":50,Explore:51,"Favorites count":52,"Location, Taken in, Map":53,"Search box":54,"Stats, Photo":55,Tour:56,Actions:57,"Lightbox Icon":58,"Lightbox Close":59,"Location, Add to Map":60};b.photoYwaTracking={init:function(e,d,f){a=YWA.getTracker(e);a.setDocumentName(d);a.setUrl("http://www.flickr.com/photo");a.setCF(1,f);a.submit();b.delegate("click",function(i){var h=i.currentTarget;var g=h.getAttribute("data-ywa-name");b.photoYwaTracking.log_action(g)},"body",".ywa-track")},log_action:function(d){if(a&&d&&c[d]){a.setAction(c[d]);a.setUrl("http://www.flickr.com/photo");a.submit_action()}}}},"0.0.1",{requires:["event","yahoo-web-analytics"]});YUI.add("box-host",function(g){function e(h){if(!h.one(".box-stroke-outer")){h.append('')}if(!h.one(".box-stroke-main")){h.append('')}if(!h.one(".box-stroke-inner")){h.append('')}}function a(h){if(!h.one(".resize-nw")){h.append('')}if(!h.one(".resize-ne")){h.append('')}if(!h.one(".resize-se")){h.append('')}if(!h.one(".resize-sw")){h.append('')}}function c(k,j){var i,h;i=parseInt(k.getStyle("width"),10)*parseInt(k.getStyle("height"),10);h=parseInt(j.getStyle("width"),10)*parseInt(j.getStyle("height"),10);if(i>h){return -1}else{if(h>i){return 1}else{return 0}}}function d(i,h){i.setStyle("zIndex",h+1)}function b(h){h.sort(c);g.Array.each(h,d)}function f(x,i){var z,j=[],r,n,p,y,h,q,t,s,w,u,v,k;n=n||{};z={pixel_threshold:20,can_draw:true,box_tag_name:"div",newBoxCoords:{x:10,y:10,w:20,h:20}};if(!g.Lang.isObject(i)){i={}}z=g.mix(i,z);if(g.Lang.isString(x)){x=g.one(x)}if(!x instanceof g.Node){return false}if(!x.hasClass("boxes")){x.addClass("boxes")}x.all(".box").each(function(B){e(B);a(B);j.push(B)});b(j);x.on("mousedrag:start",function(C){var B=C.mouseTarget;if(B.test(".box-editable, .box-editable .box-stroke")){p=B.hasClass("box")?B:B.ancestor(".box");p.addClass("active-box");x.addClass("moving");q=true;w=parseInt(p.getStyle("left"),10);u=parseInt(p.getStyle("top"),10);l("move:start",p,C)}else{if(B.test(".resize, .resize span")){p=B.ancestor(".boxes .box");p.addClass("active-box");x.addClass("resizing");t=true;if(B.test(".resize-nw, .resize-nw span")){s="nw";x.addClass("resizing-nw")}else{if(B.test(".resize-ne, .resize-ne span")){s="ne";x.addClass("resizing-ne")}else{if(B.test(".resize-se, .resize-se span")){s="se";x.addClass("resizing-se")}else{if(B.test(".resize-sw, .resize-sw span")){s="sw";x.addClass("resizing-sw")}}}}w=parseInt(p.getStyle("left"),10);u=parseInt(p.getStyle("top"),10);v=parseInt(p.getStyle("width"),10);k=parseInt(p.getStyle("height"),10);l("resize:start",p,C)}else{if(!r&&z.can_draw&&!B.hasClass("box")&&!B.ancestor(".box")){y=true}}}});x.on("mousedrag:step",function(H){var I,C,G,E,D,B;I=10;C=10;if(y&&!p&&z.pixel_threshold");e(p);a(p);x.appendChild(p);j.push(p);x.addClass("drawing");y=false;h=true;l("draw:start",p,H)}if(p){if(h){G=H.nodeRegion.left;E=H.nodeRegion.top;D=H.nodeRegion.width;B=H.nodeRegion.height;if(DparseInt(x.getStyle("width"),10)){D=parseInt(x.getStyle("width"),10)-G}if(G<0){D=D+G;G=0}if(E+B>parseInt(x.getStyle("height"),10)){B=parseInt(x.getStyle("height"),10)-E}if(E<0){B=B+E;E=0}if(G>w+v-I){G=w+v-I;D=I}if(G+Du+k-C){E=u+k-C;B=C}if(E+BparseInt(x.getStyle("width"),10)){G=parseInt(x.getStyle("width"),10)-D}if(E+B>parseInt(x.getStyle("height"),10)){E=parseInt(x.getStyle("height"),10)-B}if(g.Lang.isNumber(G)){p.setStyle("left",G+"px")}if(g.Lang.isNumber(E)){p.setStyle("top",E+"px")}if(g.Lang.isNumber(D)){p.setStyle("width",D+"px")}if(g.Lang.isNumber(B)){p.setStyle("height",B+"px")}if(h){l("draw:step",p,H)}else{if(t){l("resize:step",p,H)}else{if(q){l("move:step",p,H)}}}}});x.on("mousedrag:end",function(B){if(!p){return}if(t){x.removeClass("resizing");x.removeClass("resizing-nw");x.removeClass("resizing-ne");x.removeClass("resizing-se");x.removeClass("resizing-sw");t=false;l("resize:end",p,B)}else{if(h){x.removeClass("drawing");h=false;l("draw:end",p,B)}else{if(q){x.removeClass("moving");q=false;l("move:end",p,B)}}}b(j);p.removeClass("active-box");p=undefined});function l(B,C,D){if(n[B]){g.Object.each(n[B],function(E){E.apply(window,[C,D])})}}function m(D,C){var B=g.guid();if(!n[D]){n[D]={}}n[D][B]=C;return B}function A(B){g.Object.each(n,function(C){if(C[B]){C[B]=undefined;delete C[B]}})}function o(){var B=g.Node.create("<"+z.box_tag_name+' class="box box-editable">");B.setStyle("left",z.newBoxCoords.x+"px");B.setStyle("top",z.newBoxCoords.y+"px");B.setStyle("width",z.newBoxCoords.w+"px");B.setStyle("height",z.newBoxCoords.h+"px");e(B);a(B);x.append(B);j.push(B);b(j);return B}return{on:m,detach:A,create:o,disableDraw:function(){r=true},enableDraw:function(){r=false}}}g.boxHost=f},"0.0.1",{requires:F.config.modules["box-host"].requires||[],optional:F.config.modules["box-host"].optional||[]});YUI.add("photo-notes-transjax",function(a){a.transjax.add("photo-notes",{svn_bump:"",saving:'Saving...',loading:'Loading...',deleting:'Deleting...',error_retrieving_note_to_edit:'There was a problem retrieving your note to edit.',error_retrieving_new_note:'There was a problem retrieving your new note.',error_deleting_note:"Uh oh, deleting that note didn't work.",error_deleting_person:"Uh oh, deleting that person didn't work.",error_saving_face_boundary:"Uh oh, saving that face boundary didn't work.",error_saving_note:"Uh oh, saving that note didn't work.",error_empty_note:"That won't work. Your note is empty!",error_invalid_email:"Oops! That doesn't look like a real email address. Try again?",button_save:"SAVE",button_cancel:"CANCEL",button_note:"NOTE",button_person:"PERSON",button_delete:"DELETE",button_yes_add_me:"YES, ADD ME",button_no_cancel:"NO, CANCEL"})},"0.0.1",{requires:["transjax-base"]});YUI.add("photo-notes",function(ab){var a2,B,aH,am,aT,s,Z,aF,aG,ak,ae,aC,X,U,e,a0,ah,v,J,aL,aZ,o,Q,x,b,i,r,aN,az,m,R,E,aj,aB,g,D,ai,al,an;function ar(){aG=ab.transjax.get("photo-notes","button_save");ak=ab.transjax.get("photo-notes","button_cancel");ae=ab.transjax.get("photo-notes","button_note");aC=ab.transjax.get("photo-notes","button_person");X=ab.transjax.get("photo-notes","button_delete");U=ab.transjax.get("photo-notes","button_yes_add_me");e=ab.transjax.get("photo-notes","button_no_cancel");a0=ab.transjax.get("photo-notes","loading");ah=ab.transjax.get("photo-notes","saving");v=ab.transjax.get("photo-notes","deleting");J=ab.transjax.get("photo-notes","error_retrieving_note_to_edit");aL=ab.transjax.get("photo-notes","error_retrieving_new_note");aZ=ab.transjax.get("photo-notes","error_saving_face_boundary");o=ab.transjax.get("photo-notes","error_empty_note");Q=ab.transjax.get("photo-notes","error_saving_note");x=ab.transjax.get("photo-notes","error_deleting_note");b=ab.transjax.get("photo-notes","error_deleting_person");i=ab.transjax.get("photo-notes","error_invalid_email");r=ab.transjax.get("photo-people","type_person_name");aN=ab.transjax.get("photo-people","face_or_note");az=ab.transjax.get("photo-people","not_visible_to_others");m=ab.transjax.get("photo-people","or_send_an_email_video");R=ab.transjax.get("photo-people","or_send_an_email_photo");E=ab.transjax.get("photo-people","send_an_email_video");aj=ab.transjax.get("photo-people","send_an_email_photo");aB=ab.transjax.get("photo-people","if_you_enter_email_video");g=ab.transjax.get("photo-people","if_you_enter_email_photo");D=ab.transjax.get("photo-people","add_yourself_to_video");ai=ab.transjax.get("photo-people","add_yourself_to_photo");al=ab.transjax.get("bo-selecta","uber_contact_list_no_realname");an=ab.transjax.get("bo-selecta","uber_contact_list_default_text");var a4,a3,Y;if(!a2){aH=ab.one("#notes");if(!aH){return undefined}a2=true;Z=ab.config.flickr.notes.photo_id;aF=ab.config.flickr.notes.ratio;if(ab.config.flickr.user.nsid){B=ab.boxHost(aH,{can_draw:ab.config.flickr.notes.can_add_note||ab.config.flickr.notes.can_add_person,box_tag_name:"li",newBoxCoords:{x:20,y:20,w:40,h:40}});B.on("draw:start",a1);B.on("draw:end",u);B.on("move:start",G);B.on("move:step",aX);B.on("move:end",aE);B.on("resize:start",G);B.on("resize:step",c);B.on("resize:end",aE)}aH.on("mouseover",n);aH.on("mouseout",n);ab.delegate("mouseover",S,aH,".note");ab.delegate("mouseout",S,aH,".note");ab.on("mousedown",M,"body");ab.on("mouseup",M,"body");ab.delegate("click",function(a5){ab.eventAnnotations.add(a5,{preventLightbox:true});aV(a5)},aH,".note-buttons input");ab.on("peopleController:addPersonSuccess",ac);ab.on("peopleController:addPersonFailure",ao);ab.on("peopleController:removePersonSuccess",O);ab.on("peopleController:removePersonFailure",K);aA()}}function M(a3){var Y;if(a3.button!==1){return}if(a3.target.ancestor(".note-text")){ab.eventAnnotations.add(a3,{ignoreDrag:true})}switch(a3.type){case"mousedown":M.mousedown_event=undefined;Y=a3.target.ancestor(".note",true);if(Y&&!a3.target.test("a, a *")){if(aY(Y)&&!Y.test(".note-new, .note-editing, .note-saving")&&!Y.siblings(".note-new, .note-editing, .note-saving").size()){d(Y)}M.mousedown_event=a3}break;case"mouseup":if(M.mousedown_event){if(a3.target===M.mousedown_event.target&&a3.target.test(".note .note-buttons input[type=button]")){aV(a3)}M.mousedown_event=undefined}break}}function aV(a3){if(a3.button!==1){return}var Y=a3.target.ancestor(".note");if(a3.target.hasClass("note-button-add-cancel")){I(Y,"");T(Y)}if(a3.target.hasClass("note-button-add-note")){I(Y,"");ap(Y)}if(a3.target.hasClass("note-button-add-person")){I(Y,"");af(null,Y)}if(a3.target.hasClass("note-button-add-note-save")){aM(Y)}if(a3.target.hasClass("note-button-add-person-cancel")){T(Y)}if(a3.target.hasClass("note-button-add-person-yes-self")){N(Y)}if(a3.target.hasClass("note-button-add-face-save")){aM(Y);ab.fire("photoNote:addFace",{n:Y.getAttribute("data-person-nsid"),e:Y.getAttribute("data-person-email")})}if(a3.target.hasClass("note-button-add-face-cancel")){T(Y);ab.fire("photoNote:addFaceCancelled",{n:Y.getAttribute("data-person-nsid"),e:Y.getAttribute("data-person-email")})}if(a3.target.hasClass("note-button-edit-note-save")){aM(Y)}if(a3.target.hasClass("note-button-edit-note-delete")){aQ(Y)}if(a3.target.hasClass("note-button-edit-note-cancel")){ad(Y)}}function n(Y){if(am){return}switch(Y.type){case"mouseover":if(Y.target===aH){Y.target.addClass("notes-visible");C();n.hovered_node=Y.target}break;case"mouseout":if(n.hovered_node&&!n.hovered_node.contains(Y.relatedTarget)){n.hovered_node.removeClass("notes-visible");at();n.hovered_node=undefined}break}}function S(a3){var Y=a3.target.ancestor(".note",true);switch(a3.type){case"mouseover":if(am){return}if(Y.hasClass("note")){y(Y);S.little_notes_pushed_down=[];aH.all(".note").each(function(a6,a4,a5){if(Y!==a6&&a6.getStyle("zIndex")>Y.getStyle("zIndex")&&a6.inRegion(Y.one(".note-content"),false)){S.little_notes_pushed_down.push([a6,a6.getStyle("zIndex")]);a6.setStyle("zIndex",Y.getStyle("zIndex")-1)}});if(aY(Y)){Y.addClass("note-editable")}S.hovered_node=Y}break;case"mouseout":if(S.hovered_node&&!S.hovered_node.contains(a3.relatedTarget)){aa(S.hovered_node);S.hovered_node.removeClass("note-editable");S.hovered_node=undefined;if(S.little_notes_pushed_down){ab.Array.each(S.little_notes_pushed_down,function(a6,a5,a4){a6[0].setStyle("zIndex",a6[1]);a4[a5]=undefined});S.little_notes_pushed_down=undefined}}break}}function H(a4){var a3,Y,a6,a5;a3=w(a4);Y=a4.get("region");a6=a3.get("region");a5=aH.get("region");if(Y.bottom+a6.height>a5.bottom&&Y.top-a6.height>a5.top){a3.setStyle("top","auto").setStyle("bottom","100%")}else{a3.setStyle("bottom","auto").setStyle("top","100%")}}H=ab.betterThrottle(H,50);function c(Y){H(Y)}function aX(Y){H(Y)}function a1(Y){V(Y);am=true}function u(Y){H(Y);k(Y)}function G(Y){if(!Y.hasClass("note-new")){aT=aT||{left:Y.getStyle("left"),top:Y.getStyle("top"),width:Y.getStyle("width"),height:Y.getStyle("height")}}}function aE(Y){if(!Y.hasClass("note-new")){s={left:Y.getStyle("left"),top:Y.getStyle("top"),width:Y.getStyle("width"),height:Y.getStyle("height")};aP()}}function V(Y){Y.addClass("note").addClass("note-new");Y.setAttribute("data-note-user_id",ab.config.flickr.user.dbid);if(ab.config.flickr.photo.isOwner){Y.addClass("note-byowner")}return Y}function w(Y){var a3=Y.one(".note-content");if(!a3){a3=ab.Node.create('');Y.append(a3)}return a3}function A(a5,Y){var a4,a3;if(!ab.Lang.isBoolean(Y)){Y=true}a4=w(a5);a3=a4.one(".note-text");if(!a3&&Y){a3=ab.Node.create('');if(a4.one(".note-buttons")){a4.insertBefore(a3,a4.one(".note-buttons"))}else{a4.append(a3)}}return a3}function P(a4){var a3,Y;a3=A(a4);if(!ab.config.people.canOnlyAddSelf){if(!a3.one("span.note-selecta-hint")){a3.append(''+r+"")}if(!a3.one("input.note-selecta")){Y=ab.Node.create('');a3.append(Y)}L(a4)}else{if(!a3.one("span.note-selecta-hint")){a3.append(''+(ab.config.flickr.photo.is_video?D:ai)+"")}}}function aR(a7){var a3,a6,Y,a5,a4,a8,a9;a3=A(a7);a6=a7.one("textarea");if(!a6){a5=true;a6=ab.Node.create("");a3.append(a6);a4=a7.getAttribute("data-note-id")}if(a5&&a4){Y=a7.one(".note-buttons");if(Y){Y.setStyle("display","none")}a6.set("value",a0);a8={note_id:a4};a9={success:function(ba){if(ba.data&&ba.data.note&&ba.data.note._content){a6.set("value",ba.data.note._content);a6.focus();if(Y){Y.setStyle("display","")}}else{a9.failure(ba)}},failure:function(ba){a6.set("value",J)}};ab.flickrAPI.callMethod("flickr.photos.notes.getInfo",a8,a9)}a6.focus()}function aq(a5,a3){var a4,Y;a4=w(a5);Y=a5.one(".note-buttons");if(!Y){Y=ab.Node.create('');a4.append(Y)}Y.set("innerHTML",a3)}function aK(a3){var Y="";Y+='';Y+='';aq(a3,Y)}function aI(a3){var Y="";Y+='';Y+='';Y+='';aq(a3,Y)}function aJ(a3){var Y="";if(ab.config.flickr.notes.can_add_note){Y+=''}if(ab.config.flickr.notes.can_add_person){Y+=''}Y+='';aq(a3,Y)}function h(a3){var Y="";Y+='';Y+='';aq(a3,Y)}function ag(a3){var Y="";Y+='';Y+='';aq(a3,Y)}function p(a4,Y){var a3="";if(!ab.config.people.canOnlyAddSelf){a3+=''}else{a3+='';a3+=''}aq(a4,a3)}function z(Y){aq(Y,"")}function aY(Y){if(ab.config.flickr.photo.isOwner){return true}if(ab.config.flickr.user.dbid&&Y.getAttribute("data-note-user_id")===ab.config.flickr.user.dbid){return true}if(ab.config.flickr.user.nsid&&Y.getAttribute("data-person-added_by")===ab.config.flickr.user.nsid){return true}if(ab.config.flickr.user.nsid&&(Y.getAttribute("data-person-nsid")===ab.config.flickr.user.nsid)){return true}return false}function av(Y){Y.remove();Y=undefined}function T(Y){ax(Y);av(Y)}function ad(a3){var Y;z(a3);a3.removeClass("note-editing");a3.removeClass("box-editable");if(aT){a3.setStyle("left",aT.left);a3.setStyle("top",aT.top);a3.setStyle("width",aT.width);a3.setStyle("height",aT.height)}ax(a3)}function aO(){return V(aD())}function aD(){if(B){return B.create()}}function ay(){if(B){B.enableDraw()}}function aP(){if(B){B.disableDraw()}}function k(Y){I(Y,aN);aJ(Y);aP()}function af(Y,a3){if(!a2){ar();if(!a2){return undefined}}am=true;aP();at();aH.addClass("notes-visible");if(!a3){a3=f(Y);if(a3){if(aY(a3)){d(a3);a3.vis.animScrollIntoView(true,20)}return}else{a3=aO()}}a3.addClass("person-note");a3.setAttribute("data-person-added_by",ab.config.flickr.user.nsid);a3.vis.animScrollIntoView(true,20);if(Y&&Y.n){a3.setAttribute("data-person-nsid",Y.n)}else{a3.setAttribute("data-person-nsid","")}if(Y&&Y.e){a3.setAttribute("data-person-email",Y.e)}else{a3.setAttribute("data-person-email","")}if(Y){t(a3,Y);d(a3);ag(a3)}else{P(a3);p(a3)}}function ap(Y){if(!a2){ar();if(!a2){return undefined}}am=true;aP();at();aH.addClass("notes-visible");if(!Y){Y=aO()}h(Y);aR(Y)}function d(a4){var Y,a3;Y=!a4.getAttribute("data-note-id");if(Y&&a4.getAttribute("data-person-added_by")!==ab.config.flickr.user.nsid){a3=true}a4.addClass("note-editing");aa(a4);am=true;aP();at();aH.addClass("notes-visible");if(a3){a4.all(".resize").setStyle("display","none");aK(a4)}else{a4.addClass("box-editable");aI(a4)}if(Y){a4.addClass("person-note")}else{aR(a4)}}function ax(Y){I(Y,"");am=false;aT=undefined;s=undefined;Y.removeClass("note-deleting");Y.removeClass("note-saving");Y.removeClass("note-new");Y.removeClass("note-editing");ab.focusTracker.blur();q(Y);ay()}function aw(Y){var a3,a4;a3={note_id:Y.getAttribute("data-note-id")};a4={success:function(a7){var a6,a5;if(a7.data&&a7.data.note&&a7.data.note._content){a5=a7.data.note.author===ab.config.flickr.photo.ownerNsid?"":' - '+a7.data.note.authorname+"";a6=a7.data.note._content;a6=ab.StringFilters.linkify(a6);a6=ab.StringFilters.nl2br(a6);a6=a6+a5;A(Y).one("span.note-wrap").set("innerHTML",a6);if(A(Y).one("textarea")){A(Y).one("textarea").set("value",a7.data.note._content)}ax(Y);aA(Y)}else{a4.failure(a7)}},failure:function(a5){I(Y,aL);ax(Y)}};ab.flickrAPI.callMethod("flickr.photos.notes.getInfo",a3,a4)}function aU(Y){return{x:parseInt(Y.getStyle("left"),10)/aF,y:parseInt(Y.getStyle("top"),10)/aF,w:parseInt(Y.getStyle("width"),10)/aF,h:parseInt(Y.getStyle("height"),10)/aF}}function aM(a6){var ba,a8,a4,Y,a3,a9,a7,a5;ba=a6.getAttribute("data-note-id");a4=l(a6);a7=A(a6);a8=aU(a6);z(a6);a6.removeClass("note-new").removeClass("note-editing");a6.addClass("note-saving");a6.removeClass("box-editable");I(a6,ah);if(a4&&(a4.n||a4.e)){a3={photo_id:Z,person_x:a8.x,person_y:a8.y,person_w:a8.w,person_h:a8.h};if(a4.n){a3.user_id=a4.n}else{if(a4.e){a3.email=a4.e}}a9={success:function(bb){t(a6,a4);ax(a6);aA(a6)},failure:function(bb){h(a6);a6.addClass("note-editing");a6.removeClass("note-saving");I(a6,"");aS(aZ)}};ab.flickrAPI.callMethod("flickr.photos.people.editCoords",a3,a9)}else{Y=ab.Lang.trim(a6.one("textarea").get("value"));if(Y===""){aS(o);h(a6);a6.addClass("note-new");a6.removeClass("note-saving");I(a6,"");return}a3={note_x:a8.x,note_y:a8.y,note_w:a8.w,note_h:a8.h,note_text:Y};if(ba){a3.note_id=ba;a9={success:function(bb){aw(a6)},failure:function(bb){d(a6);aS(Q)}};ab.flickrAPI.callMethod("flickr.photos.notes.edit",a3,a9)}else{a3.photo_id=Z;a9={success:function(bb){a6.setAttribute("data-note-id",bb.data.note.id);aw(a6)},failure:function(bb){h(a6);a6.addClass("note-new");a6.removeClass("note-saving");I(a6,"");aS(Q)}};ab.flickrAPI.callMethod("flickr.photos.notes.add",a3,a9)}}}function I(a4,a5){var a3,Y;a3=A(a4);Y=a3.one("span.msg");if(!Y){Y=ab.Node.create('');a3.append(Y)}Y.set("innerHTML",a5)}function aQ(a5){var a4,a3,a6,a7,Y;a4=a5.getAttribute("data-note-id");z(a5);a5.removeClass("note-editing");a5.addClass("note-deleting");I(a5,v);if(a4){a6={note_id:a4};a7={success:function(a8){ax(a5);av(a5)},failure:function(a8){aS(x);a5.removeClass("note-deleting");d(a5)}};ab.flickrAPI.callMethod("flickr.photos.notes.delete",a6,a7)}else{a3=l(a5);if(a3){ab.peopleController.removePerson(ab.config.flickr.photo.id,a3)}}}function l(Y){var a4,a3;a4=Y.getAttribute("data-person-nsid");a3=Y.getAttribute("data-person-email");return(a4||a3)?{n:a4,e:a3}:undefined}function f(Y){var a3;if(!Y){return undefined}if(Y.n){a3=aH.one('.note[data-person-nsid="'+Y.n+'"]')}if(!a3&&Y.e){a3=aH.one('.note[data-person-email="'+Y.e+'"]')}return a3}function ac(Y,a4){var a3;if(!a4){return}a3=f(Y);if(a3){t(a3,Y);ax(a3);aA(a3)}}function ao(Y,a4){var a3=f(Y);if(a3&&a3.hasClass("note-saving")){j(a3,Y);af(null,a3);aS(a4)}}function O(Y){var a3=f(Y);if(a3){j(a3,Y);ax(a3);av(a3)}}function K(Y){var a3=f(Y);if(a3&&a3.hasClass("note-deleting")){a3.removeClass("note-deleting");I(a3,"");d(a3);aS(b)}}function au(a3,Y){var a4;if(Y.n){a3.setAttribute("data-person-nsid",Y.n)}else{if(Y.e){a3.setAttribute("data-person-email",Y.e)}}a3.setAttribute("data-person-added_by",ab.config.flickr.user.nsid);a4={x:parseInt(a3.getStyle("left"),10)/aF,y:parseInt(a3.getStyle("top"),10)/aF,w:parseInt(a3.getStyle("width"),10)/aF,h:parseInt(a3.getStyle("height"),10)/aF};z(a3);a3.removeClass("note-new");a3.addClass("note-saving");a3.removeClass("box-editable");ab.peopleController.addPerson(ab.config.flickr.photo.id,Y,a4)}function N(a4){var Y,a3;Y=ab.config.flickr.user;a3={n:Y.nsid,u:Y.name,i:Y.icon_url,a:Y.pathalias};au(a4,a3)}function a(a4,a3){var Y;Y=L(a4);Y.clear(true);Y.skipContact(a3);au(a4,a3)}function t(a7,a4){var a6,a5,Y,a3;if(!a7.one(".note-wrap .person")){if(a4.n){a5=(a4.a||a4.n)?(ab.config.flickr.photo.ownersUrl+"people/"+(a4.a?a4.a:a4.n)+"/"):"";Y=ab.BoSelecta.sanitizeString(a4.u);if(Y.length>20){Y=Y.substr(0,20)+"..."}}else{if(a4.e){a3=ab.BoSelecta.sanitizeString(a4.e);if(a3.length>20){a3=a3.substr(0,20)+"\u2026"}}}a6=((a4.n)?''+(a5?'':"")+''+Y+''+(a4.r?ab.BoSelecta.sanitizeString(a4.r):al)+""+(a5?"":"")+"":'");A(a7).one(".note-wrap").set("innerHTML",a6)}}function j(a4,a3){var Y=L(a4,false);if(Y){Y.unskipContact(a3)}if(a3.n&&ab.config.people.skip&&ab.config.people.skip[a3.n]){delete ab.config.people.skip[a3.n]}if(a3.e&&ab.config.people.skip&&ab.config.people.skip[a3.e]){delete ab.config.people.skip[a3.e]}}function q(a3){var Y,a4;Y=L(a3,false);if(Y){Y.destroy()}a4=a3.one(".note-selecta-hint");if(a4){a4.remove()}}function L(ba,Y){var a4,a9,a7,a5,a3,a6,a8;if(!ab.Lang.isBoolean(Y)){Y=true}a4=L.selectas||{};a9=ba.one("input[type=text]");if(a9){a5=a9.get("id");a7=a4[a5]}if(!a7&&Y&&!ab.config.people.canOnlyAddSelf){a8=function(bb){if(ab.peopleController.validateContact(a7)){a(ba,{e:a7.getQuery()})}else{aS(i)}};a3=ab.peopleController.getContactsCache();a6=[{message:""+ab.config.flickr.photo.is_video?m:R+"",className:"bs-send-email-link",onclick:a8,validator:function(bb){return(ab.peopleController.validateContact(bb)&&!bb.searchingGlobally)}},{message:""+ab.config.flickr.photo.is_video?E:aj+"",className:"bs-send-email-link",onclick:a8,validator:function(bb){return(ab.peopleController.validateContact(bb)&&bb.searchingGlobally)}},{message:""+ab.config.flickr.photo.is_video?aB:g+"",className:"bs-enter-email-link",onclick:a8,validator:function(bb){return(!ab.peopleController.validateContact(bb)&&bb.searchingGlobally)}}];a7=new ab.BoSelecta(a9,{showSubtitle:true,showIcon:true,searchOnUsername:true,searchOnRealname:true,searchOnEmail:true,searchOnPathAlias:true,includeAddressBook:true,includeUser:true,defaultText:an,focusOnFetch:true,fetchDataImmediately:!a3,selectFirstItem:true,allowFormSubmit:false,respectCanTagFlag:true,enableGlobalSearch:true,zeroResultsMessages:a6,apiURL:ab.config.people.api_url});if(a3){a7.contacts=a3;a7.clear(true)}else{a7.on("BoSelecta:dataFetchComplete",function(){ab.peopleController.setContactsCache(a7.contacts)})}a7.on("BoSelecta:resultSelect",function(bb){a(ba,bb)});a7.on("BoSelecta:resultClick",function(bb){a(ba,bb)});a7.on("BoSelecta:inputEnter",a8);if(ab.config.people.skip){ab.Object.each(ab.config.people.skip,function(bd,bb,bc){a7.skipContact(bd)})}a4[a5]=a7;L.selectas=a4}return a7}function aS(Y){ab.global_dialog.create_alert_dialog(Y,ab.global_dialog.hide,{width:280})}function aA(Y){var a3,a4;if(Y){a3=Y;a4="note-flash"}else{a3=aH;a4="notes-flash"}a3.addClass(a4);setTimeout(function(){a3.removeClass(a4)},1300)}function y(Y){Y.addClass("note-visible");at();C(Y)}function aa(Y){Y.removeClass("note-visible");C();at(Y)}function C(Y){var a3=Y||aH.all(".note:not(.person-note)");a3.addClass("note-highlight")}function at(Y){var a3=Y||aH.all(".note:not(.person-note)");a3.removeClass("note-highlight")}function W(Y){var a3;if(!a2){return undefined}a3=f(Y);if(a3){y(a3)}}function aW(Y){var a3;if(!a2){return undefined}a3=f(Y);if(a3){aa(a3)}}ab.photoNotes={init:ar,addNote:ap,addPerson:af,highlightPerson:W,unhighlightPerson:aW}},"0.0.1",{requires:F.config.modules["photo-notes"].requires||[],optional:F.config.modules["photo-notes"].optional||[]});YUI.add("bitmap-text",function(a){a.BitmapText={convert:function(b,s){var k=b.innerHTML;b.innerHTML="";var c=document.createElement("canvas");b.appendChild(c);var l=a.BitmapText.tokenize(k);var D=s.scale||1;var y=s.lineSpacing||1;var m=s.font||Fonts.Silkscreen;var d=a.BitmapText.calculateLength(l,m,D,y);var r=s.width||d.totalWidth;var o=d.lineHeight*Math.ceil(d.totalWidth/r);for(var f=0,C=0,i=1,h=l.length;fr)&&((l[f-1]==="space"&&z<=r)||(C+p>r))){i++;C=0}C+=(j[0].length+1)*D}o=d.lineHeight*i;var x=s.angle||0;c.width=(x===90||x===270)?o:r;c.height=(x===90||x===270)?r:o;var t=c.getContext("2d");var v=window.getComputedStyle(b,"");var u=v.getPropertyValue("color");t.fillStyle=u;var A=0,e=0;for(var q=0,w=l.length;qs)&&((m[e-1]==="space"&&B<=s)||(E+q>s))){i++;E=0}E+=(k[0].length+1)*F}p=b.lineHeight*i;u.fillStyle=v;var C=0,d=0;if(c==="right"&&p===b.lineHeight&&b.totalWidth").replace(/&/g,"&");for(var g=0,b=f.length,e=[],c,d;g":c="rightAngleBracket";break;case"?":c="questionMark";break;case"??":c="copyright";break;default:c=""}}if(c!==""){e.push(c)}}return e},calculateLength:function(e,c,g,f){var d={totalWidth:0};for(var h=0,b=e.length;hq)&&((j[e-1]==="space"&&v<=q)||(z+o>q))){d++;z=0}var c=0;for(var p=0,t=i.length*A;p"){var d="/"+a.tagName,e;while((e=a.nextSibling)&&e.tagName!=d){e.removeNode()}if(e){e.removeNode()}}a.parentNode.replaceChild(c,a);return c},initElement:function(a){a=this.q(a);a.getContext=function(){if(this.l){return this.l}return this.l=new K(this)};a.attachEvent("onpropertychange",V);a.attachEvent("onresize", W);var b=a.attributes;if(b.width&&b.width.specified){a.style.width=b.width.nodeValue+"px"}else{a.width=a.clientWidth}if(b.height&&b.height.specified){a.style.height=b.height.nodeValue+"px"}else{a.height=a.clientHeight}return a}};function V(a){var b=a.srcElement;switch(a.propertyName){case "width":b.style.width=b.attributes.width.nodeValue+"px";b.getContext().clearRect();break;case "height":b.style.height=b.attributes.height.nodeValue+"px";b.getContext().clearRect();break}}function W(a){var b=a.srcElement; if(b.firstChild){b.firstChild.style.width=b.clientWidth+"px";b.firstChild.style.height=b.clientHeight+"px"}}Q.init();var R=[];for(var E=0;E<16;E++){for(var F=0;F<16;F++){R[E*16+F]=E.toString(16)+F.toString(16)}}function J(){return[[1,0,0],[0,1,0],[0,0,1]]}function G(a,b){var c=J();for(var d=0;d<3;d++){for(var e=0;e<3;e++){var g=0;for(var h=0;h<3;h++){g+=a[d][h]*b[h][e]}c[d][e]=g}}return c}function N(a,b){b.fillStyle=a.fillStyle;b.lineCap=a.lineCap;b.lineJoin=a.lineJoin;b.lineWidth=a.lineWidth;b.miterLimit= a.miterLimit;b.shadowBlur=a.shadowBlur;b.shadowColor=a.shadowColor;b.shadowOffsetX=a.shadowOffsetX;b.shadowOffsetY=a.shadowOffsetY;b.strokeStyle=a.strokeStyle;b.d=a.d;b.e=a.e}function O(a){var b,c=1;a=String(a);if(a.substring(0,3)=="rgb"){var d=a.indexOf("(",3),e=a.indexOf(")",d+1),g=a.substring(d+1,e).split(",");b="#";for(var h=0;h<3;h++){b+=R[Number(g[h])]}if(g.length==4&&a.substr(3,1)=="a"){c=g[3]}}else{b=a}return[b,c]}function S(a){switch(a){case "butt":return"flat";case "round":return"round"; case "square":default:return"square"}}function K(a){this.a=J();this.m=[];this.k=[];this.c=[];this.strokeStyle="#000";this.fillStyle="#000";this.lineWidth=1;this.lineJoin="miter";this.lineCap="butt";this.miterLimit=m*1;this.globalAlpha=1;this.canvas=a;var b=a.ownerDocument.createElement("div");b.style.width=a.clientWidth+"px";b.style.height=a.clientHeight+"px";b.style.overflow="hidden";b.style.position="absolute";a.appendChild(b);this.j=b;this.d=1;this.e=1}var j=K.prototype;j.clearRect=function(){this.j.innerHTML= "";this.c=[]};j.beginPath=function(){this.c=[]};j.moveTo=function(a,b){this.c.push({type:"moveTo",x:a,y:b});this.f=a;this.g=b};j.lineTo=function(a,b){this.c.push({type:"lineTo",x:a,y:b});this.f=a;this.g=b};j.bezierCurveTo=function(a,b,c,d,e,g){this.c.push({type:"bezierCurveTo",cp1x:a,cp1y:b,cp2x:c,cp2y:d,x:e,y:g});this.f=e;this.g=g};j.quadraticCurveTo=function(a,b,c,d){var e=this.f+0.6666666666666666*(a-this.f),g=this.g+0.6666666666666666*(b-this.g),h=e+(c-this.f)/3,l=g+(d-this.g)/3;this.bezierCurveTo(e, g,h,l,c,d)};j.arc=function(a,b,c,d,e,g){c*=m;var h=g?"at":"wa",l=a+M(d)*c-A,n=b+L(d)*c-A,o=a+M(e)*c-A,f=b+L(e)*c-A;if(l==o&&!g){l+=0.125}this.c.push({type:h,x:a,y:b,radius:c,xStart:l,yStart:n,xEnd:o,yEnd:f})};j.rect=function(a,b,c,d){this.moveTo(a,b);this.lineTo(a+c,b);this.lineTo(a+c,b+d);this.lineTo(a,b+d);this.closePath()};j.strokeRect=function(a,b,c,d){this.beginPath();this.moveTo(a,b);this.lineTo(a+c,b);this.lineTo(a+c,b+d);this.lineTo(a,b+d);this.closePath();this.stroke()};j.fillRect=function(a, b,c,d){this.beginPath();this.moveTo(a,b);this.lineTo(a+c,b);this.lineTo(a+c,b+d);this.lineTo(a,b+d);this.closePath();this.fill()};j.createLinearGradient=function(a,b,c,d){var e=new H("gradient");return e};j.createRadialGradient=function(a,b,c,d,e,g){var h=new H("gradientradial");h.n=c;h.o=g;h.i.x=a;h.i.y=b;return h};j.drawImage=function(a,b){var c,d,e,g,h,l,n,o,f=a.runtimeStyle.width,k=a.runtimeStyle.height;a.runtimeStyle.width="auto";a.runtimeStyle.height="auto";var q=a.width,r=a.height;a.runtimeStyle.width= f;a.runtimeStyle.height=k;if(arguments.length==3){c=arguments[1];d=arguments[2];h=(l=0);n=(e=q);o=(g=r)}else if(arguments.length==5){c=arguments[1];d=arguments[2];e=arguments[3];g=arguments[4];h=(l=0);n=q;o=r}else if(arguments.length==9){h=arguments[1];l=arguments[2];n=arguments[3];o=arguments[4];c=arguments[5];d=arguments[6];e=arguments[7];g=arguments[8]}else{throw"Invalid number of arguments";}var s=this.b(c,d),t=[],v=10,w=10;t.push(" ','","");this.j.insertAdjacentHTML("BeforeEnd",t.join(""))};j.stroke=function(a){var b=[],c=O(a?this.fillStyle:this.strokeStyle),d=c[0],e=c[1]*this.globalAlpha,g=10,h=10;b.push("n.x){n.x=k.x}if(l.y== null||k.yn.y){n.y=k.y}}}b.push(' ">');if(typeof this.fillStyle=="object"){var v={x:"50%",y:"50%"},w=n.x-l.x,x=n.y-l.y,p=w>x?w:x;v.x=i(this.fillStyle.i.x/w*100+50)+"%";v.y=i(this.fillStyle.i.y/x*100+50)+"%";var y=[];if(this.fillStyle.p=="gradientradial"){var z=this.fillStyle.n/p*100,B=this.fillStyle.o/p*100-z}else{var z=0,B=100}var C={offset:null,color:null},D={offset:null,color:null};this.fillStyle.h.sort(function(T,U){return T.offset-U.offset});for(var o=0;oC.offset||C.offset==null){C.offset=u.offset;C.color=u.color}if(u.offset')}else if(a){b.push('')}else{b.push("')}b.push("");this.j.insertAdjacentHTML("beforeEnd",b.join(""));this.c=[]};j.fill=function(){this.stroke(true)};j.closePath=function(){this.c.push({type:"close"})};j.b=function(a,b){return{x:m*(a*this.a[0][0]+b*this.a[1][0]+this.a[2][0])-A,y:m*(a*this.a[0][1]+b*this.a[1][1]+this.a[2][1])-A}};j.save=function(){var a={};N(this,a); this.k.push(a);this.m.push(this.a);this.a=G(J(),this.a)};j.restore=function(){N(this.k.pop(),this);this.a=this.m.pop()};j.translate=function(a,b){var c=[[1,0,0],[0,1,0],[a,b,1]];this.a=G(c,this.a)};j.rotate=function(a){var b=M(a),c=L(a),d=[[b,c,0],[-c,b,0],[0,0,1]];this.a=G(d,this.a)};j.scale=function(a,b){this.d*=a;this.e*=b;var c=[[a,0,0],[0,b,0],[0,0,1]];this.a=G(c,this.a)};j.clip=function(){};j.arcTo=function(){};j.createPattern=function(){return new P};function H(a){this.p=a;this.n=0;this.o= 0;this.h=[];this.i={x:0,y:0}}H.prototype.addColorStop=function(a,b){b=O(b);this.h.push({offset:1-a,color:b})};function P(){}G_vmlCanvasManager=Q;CanvasRenderingContext2D=K;CanvasGradient=H;CanvasPattern=P})()}; YUI.add("flapid",function(c){var b="flickr.metrics.increment";function a(d,g,f,e){var h={key:d,addValue:(g||1)};if(f){h.data=f}if(e){h.source=e}c.flickrAPI.callMethod(b,h)}c.flapid={track:a}},"0.0.1",{requires:["gallery-flickr-api"]});YUI.add("photo-sidebar-transjax",function(a){a.transjax.add("photo-sidebar",{tags_placeholder_photo:'...and %s more tags',tags_placeholder_video:'...and %s more tags',comments_zero:'%s comments',comments_one:'%s comment',comments_two_or_more:'%s comments',favorites_zero:'%s favorites',favorites_one:'%s favorite',favorites_two_or_more:'%s favorites',galleries_zero:'%s galleries',galleries_one:'%s gallery',galleries_two_or_more:'%s galleries'})},"0.0.1",{requires:["transjax-base"]});/* Copyright (c) 2010, Yahoo! Inc. All rights reserved. Code licensed under the BSD License: http://developer.yahoo.com/yui/license.html version: 3.3.0 build: 3167 */ YUI.add("stylesheet",function(b){var k=b.config.doc,c=k.createElement("p"),g=c.style,e=b.Lang.isString,n={},j={},l=("cssFloat" in g)?"cssFloat":"styleFloat",h,a,m,o="opacity",q="float",f="";a=(o in g)?function(d){d.opacity=f;}:function(d){d.filter=f;};g.border="1px solid red";g.border=f;m=g.borderLeft?function(d,s){var r;if(s!==l&&s.toLowerCase().indexOf(q)!=-1){s=l;}if(e(d[s])){switch(s){case o:case"filter":a(d);break;case"font":d.font=d.fontStyle=d.fontVariant=d.fontWeight=d.fontSize=d.lineHeight=d.fontFamily=f;break;default:for(r in d){if(r.indexOf(s)===0){d[r]=f;}}}}}:function(d,p){if(p!==l&&p.toLowerCase().indexOf(q)!=-1){p=l;}if(e(d[p])){if(p===o){a(d);}else{d[p]=f;}}};function i(x,s){var A,v,z,y={},p,B,u,w,d,t;if(!(b.instanceOf(this,i))){return new i(x,s);}if(x){if(b.Node&&x instanceof b.Node){v=x._node;}else{if(x.nodeName){v=x;}else{if(e(x)){if(x&&j[x]){return j[x];}v=k.getElementById(x.replace(/^#/,f));}}}if(v&&j[b.stamp(v)]){return j[b.stamp(v)];}}if(!v||!/^(?:style|link)$/i.test(v.nodeName)){v=k.createElement("style");v.type="text/css";}if(e(x)){if(x.indexOf("{")!=-1){if(v.styleSheet){v.styleSheet.cssText=x;}else{v.appendChild(k.createTextNode(x));}}else{if(!s){s=x;}}}if(!v.parentNode||v.parentNode.nodeName.toLowerCase()!=="head"){A=(v.ownerDocument||k).getElementsByTagName("head")[0];A.appendChild(v);}z=v.sheet||v.styleSheet;p=z&&("cssRules" in z)?"cssRules":"rules";u=("deleteRule" in z)?function(r){z.deleteRule(r);}:function(r){z.removeRule(r);};B=("insertRule" in z)?function(D,C,r){z.insertRule(D+" {"+C+"}",r);}:function(D,C,r){z.addRule(D,C,r);};for(w=z[p].length-1;w>=0;--w){d=z[p][w];t=d.selectorText;if(y[t]){y[t].style.cssText+=";"+d.style.cssText;u(w);}else{y[t]=d;}}i.register(b.stamp(v),this);if(s){i.register(s,this);}b.mix(this,{getId:function(){return b.stamp(v);},enable:function(){z.disabled=false;return this;},disable:function(){z.disabled=true;return this;},isEnabled:function(){return !z.disabled;},set:function(E,D){var G=y[E],F=E.split(/\s*,\s*/),C,r;if(F.length>1){for(C=F.length-1;C>=0;--C){this.set(F[C],D);}return this;}if(!i.isValidSelector(E)){return this;}if(G){G.style.cssText=i.toCssText(D,G.style.cssText);}else{r=z[p].length;D=i.toCssText(D);if(D){B(E,D,r);y[E]=z[p][r];}}return this;},unset:function(E,D){var G=y[E],F=E.split(/\s*,\s*/),r=!D,H,C;if(F.length>1){for(C=F.length-1;C>=0;--C){this.unset(F[C],D);}return this;}if(G){if(!r){D=b.Array(D);g.cssText=G.style.cssText;for(C=D.length-1;C>=0;--C){m(g,D[C]);}if(g.cssText){G.style.cssText=g.cssText;}else{r=true;}}if(r){H=z[p];for(C=H.length-1;C>=0;--C){if(H[C]===G){delete y[E];u(C);break;}}}}return this;},getCssText:function(D){var E,C,r;if(e(D)){E=y[D.split(/\s*,\s*/)[0]];return E?E.style.cssText:null;}else{C=[];for(r in y){if(y.hasOwnProperty(r)){E=y[r];C.push(E.selectorText+" {"+E.style.cssText+"}");}}return C.join("\n");}}});}h=function(r,t){var s=r.styleFloat||r.cssFloat||r[q],d=b.Lang.trim,v;try{g.cssText=t||f;}catch(u){c=k.createElement("p");g=c.style;g.cssText=t||f;}if(s&&!r[l]){r=b.merge(r);delete r.styleFloat;delete r.cssFloat;delete r[q];r[l]=s;}for(v in r){if(r.hasOwnProperty(v)){try{g[v]=d(r[v]);}catch(p){}}}return g.cssText;};b.mix(i,{toCssText:((o in g)?h:function(d,p){if(o in d){d=b.merge(d,{filter:"alpha(opacity="+(d.opacity*100)+")"});delete d.opacity;}return h(d,p);}),register:function(d,p){return !!(d&&p instanceof i&&!j[d]&&(j[d]=p));},isValidSelector:function(p){var d=false;if(p&&e(p)){if(!n.hasOwnProperty(p)){n[p]=!/\S/.test(p.replace(/\s+|\s*[+~>]\s*/g," ").replace(/([^ ])\[.*?\]/g,"$1").replace(/([^ ])::?[a-z][a-z\-]+[a-z](?:\(.*?\))?/ig,"$1").replace(/(?:^| )[a-z0-6]+/ig," ").replace(/\\./g,f).replace(/[.#]\w[\w\-]*/g,f));}d=n[p];}return d;}},true);b.StyleSheet=i;},"3.3.0");]]> false 8083892676195001344 5244416 Cookie without HttpOnly flag set http://www.thatshiphop.com Low Firm
                    You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
                  • PHPSESSID=381b21d3877f25ff2a87a81a84e39518; path=/; domain=thatshiphop.com
                  The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.]]> false 3712175649723726848 5243648 Cookie scoped to parent domain http://www.wtp101.com Information Certain
                • tuuid=549188a1-a07c-4231-be94-7f725e1a19f7; path=/; expires=Tue, 16 Apr 2013 23:36:55 GMT; domain=.wtp101.com
                • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]> false 8045778252869610496 5243648 Cookie scoped to parent domain http://www.naked.com Information Certain
                • nkCookie[mcatid]=Girls; path=/; domain=.naked.com
                • nkCookie[oneCatServer]=deleted; expires=Sat, 17-Apr-2010 20:31:32 GMT; path=/; domain=.naked.com
                • The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
                  false
                  8807939535147992064 5243648 Cookie scoped to parent domain http://translate.google.com Information Certain
                • PREF=ID=0772c9d5ef13aaaf:U=d212295d0f1573ee:TM=1303071569:LM=1303072583:S=o_rTP7-q_AB_6p6K; expires=Tue, 16-Apr-2013 20:36:23 GMT; path=/; domain=.google.com
                • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                  Google Translate

                  Google Translate

                  Try a new browser with automatic translation.
                  Download Google Chrome
                  Type text or a website address or translate a document.

                  Do more with Google Translate

                  • Wake up to translation. Translate text right from your iGoogle homepage.
                  • Wish your Norwegian fans could read your blog? Install the Google Translate Element for easy translation.
                  • Build your global business. Advertise across languages using Google Global Market Finder.
                  • Stay in touch with your pen-pal in Paris. Enable automatic email and chat translation in Gmail.
                  ]]>
                  false
                  5906760796876516352 5244416 Cookie without HttpOnly flag set http://t.mookie1.com Low Firm
                  You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
                • session=1303072666|1303072809; path=/; domain=.mookie1.com
                • id=914804995789526; path=/; expires=Fri, 11-May-12 20:40:09 GMT; domain=.mookie1.com
                • The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
                  false
                  3265484531152047104 3145984 Cleartext submission of password http://utopiaguide.com High Certain
                • http://utopiaguide.com/forums/login.php?do=login
                • The form contains the following password field:
                  • vb_login_password
                  ]]>
                  UtopiaGuide - FAQ



                  Go Back   UtopiaGuide
                  Register FAQ Members List CalendarvBookieToplist Today's Posts

                  Search FAQ Search FAQ
                  Search Word(s):
                  Matching Options:
                  Search in:

                  vBulletin FAQ

                  All times are GMT -8. The time now is 12:31 PM.

                  This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

                  Powered by vBulletin® Version 3.6.8
                  Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

                  ]]>
                  false
                  5405658972262857728 5245440 TRACE method is enabled http://www.lessonofpassion.com Information Certain
                  Although this behaviour is apparently harmless in itself, it can sometimes be leveraged to support attacks against other application users. If an attacker can find a way of causing a user to make a TRACE request, and can retrieve the response to that request, then the attacker will be able to capture any sensitive data which is included in the request by the user's browser, for example session cookies or credentials for platform-level authentication. This may exacerbate the impact of other vulnerabilities, such as cross-site scripting.]]>
                  false
                  717840842711786496 5244416 Cookie without HttpOnly flag set http://outcastacademy.com Low Firm
                  You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
                • PHPSESSID=3cb4731f3eb933ddca39fc8bb561b8ec; path=/
                • The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                  Outcast Academy - Lesson of Passion PREMIUM site by leonizer <a href="index.php" title="Outcast Academy erotic flash game">Welcome to our academy We will support your change into a better young woman. With good manners, well educated and ready for life in a modern society. If you are sentenced here... ...it means that you were bad bad girl.</a> <a href="girls.php" title="Sexy flash game Outcast Academy">Academy is populated with many young students who were directed here from all over the world. Girls has split themselves ints ome kind of fractions - Models, Emos and more. Sometimes there are incidents between them but management tries to keep everything under control.</a>
                               

                  Do you need our support? Please contact us.



                  WARNING: This website contains explicit adult material. You may only use this Website if you are at least 18 years of age, or at least the age of majority in the jurisdiction where you reside or from which you access this Website. If you do not meet these requirements, then you do not have permission to use the Website.



                  ?? 2011 Outcast Academy by Lesson of Passion games



                  ]]> false 2540107305402185728 8389632 Content type incorrectly stated http://www.crowdgather.com Information Firm
                  In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
                • Content-Type: image/gif
                • The response states that it contains a GIF image. However, it actually appears to contain a JPEG image.]]>
                  ???=?; e?????H????cY)??O?? ??E?eRz??????8??M??O:?Xj|???????/?`?K?x?${t'[?m??`X~???+?_???????\????$??B2Q?^??e?'??x?$&f??q?9?D?/?W?????????_?u??:wR*????SA* ???FR??Dh???#DF??"4D???t?xb???*???? |~9????H?????X`q??? ?Q2??Du??Q?v9O?e???.?F=?w??b????o??m?WO?W?5a??WT ?%?XvV????V???qA??? ??H?d?????s?2x?????%??????-?j;?H???u_??Ss Mm.???????n?\?????1 ?2:.??Y#DF??"4Dh?o???E??U?c~?[?1Y??j???m,b?~?[y? ??\??b0d?1X?.?e?) ?e%;???? ?j???9?????}????*??x$?sx?u?J?????6K/l;?v??V8???&Pre?"???????S!k??)?v??? 4??I???n}???O?F??QP??k>#?5????z-?B???i ?@G?>??? ????"4Dh???,g??N{%?*?4? ??Y???i'?\?F?(??v|.?????3?dn???*????E??J\y?u ?? ?e="4Dh??????]t?4?,??7??9^??dg$??A???f????????JP??????V????2??9?v?R???????"C?'?[??????rLip?%kK?6?T????LCf????????07FCM??YG????????9O??.=???,??????d?B????b????K??;?he????5???vVMm_??W\g/?T?S`????rW???Q????I??????????:k???Y????>?q/?p?????.?? ??!?VU??Z?Z?OE%?V?v Hw???w?W0???9??Q?t???}??x?3r? ) ??>?co[?yk4?H???#?d??N??Q?v??????H?????*?C"???b;????9O??,yr[X??????A???????DY?????hq?7?? ??C??n???p?????\3J;???@?%'?`?I?P??v?V?`??n"M.?o?????.R?r??&?v??A??!???T/;??\?G??B?s?????)s?,R??,??bb2?bJJ?????Hm??b?8?????"s???????(?\?FD.?lA?'??????????#C?l???d???gI?U?7`??B?????kp|? s^? %??????[?Q+?')h? ?d?g??{?%|??????????Wo?#??x???7$?ws?? 5?gi?h-?????TP??W????? ??^ ???=?W?1Lf????"?3YLy?l8??w???{???}?V????$??? JDD??9??m?y q?l?? ???%?????-?????m???O ?VV?1??????H????GQ??????f??{?Q?:u?XY??( $!??:?i#???+~n?)?R?7??qo?H?[j?!.DK8q??%y???(yi;('??Y~?? YH??X"?k?%???L??+2? fN$[B?????? ?AM???j 8(?r?????=???????c??:o???)"?9???|?Xr_??|?????T??s??? &M??????m?:F???u??8?vO???? ???z??|?22?Y???uT??v??? ???&;??L%??_?U????1?? ??7???ub? &b???]fdh?&3???e???? P?T??????qr,?"F??pH?!? ?n?A???P?@???b???????>?k?0?\R\???q?3?#?????\?5????0??yHHJO?????9F?B?#!?$?c?a&???fv7??*?Q??/?'1v?e_??s??Px????&?[?'??^qQ`???d?)q?m??? ?3??,x?m}????I?????????I??\xU??? I?+r4Dh???.}O?_?D?????????x??^/?o????q????a ?F?o.???h??#DF??YG???A?2?/?????o??/?>Q?~/7O7?o?Ww??S???v.??}????[????????).?????#DF??"4E??]]> false
                  7255831994902821888 5243648 Cookie scoped to parent domain http://ad.turn.com Information Certain
                • uid=2931142961646634775; Domain=.turn.com; Expires=Fri, 14-Oct-2011 20:43:41 GMT; Path=/
                • adImpCount=B8MczozRVryTximg0572dSLAcMiDebP8hhcUBawLHRApagDPKKctVczI9DEFcEkPvFBMD_r71JCvgjjawylbakT4Hy0v6ksSnCDa7fz11eaMifLpV7fqak3Dns_efbQIXFrofTsD-VjzD17HEaQiDIvVeEI_ShgUiVKLKx23oGmyKyuZekSrBs8bFOGeiOzaXBLzrMtX1DsPIUaGIdRa3Q; Domain=.turn.com; Expires=Fri, 14-Oct-2011 20:43:41 GMT; Path=/
                • fc=-C2EWVCCQsegLqdoQkO8K4iZHhLVAYkAWKBPAg6WLuB3AL7Gx9Az1OHn7o3KNmBF6aOZ_B1S0lxLfHFBmANc1b3wc-cQ7FRKnITKYzO3zYV52dhK4dSErN9-EcLOAtq0; Domain=.turn.com; Expires=Fri, 14-Oct-2011 20:43:41 GMT; Path=/
                • pf=pw1IlegMqlOo9iuWjWgsqt1x3peAZekyA2CgXd0EnaIPkNaW3X0pm_fQ4RfYGdhS2aZbyiatV59WiX88fVL7XjJsK7mjf-D1y3j2WAHvG04; Domain=.turn.com; Expires=Fri, 14-Oct-2011 20:43:41 GMT; Path=/
                • The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
                  = 0; } var naturalImages = new Array; naturalImageOnLoad = function() { if (this.width >= this.height) { // this.originalImageTag.width = this.boxSize; this.originalImageTag.height = (this.boxSize * this.height / this.width); } else { // this.originalImageTag.height = this.boxSize; this.originalImageTag.width = (this.boxSize * this.width / this.height); } this.originalImageTag.style.visibility='visible'; } function resizeImage(obj, size) { if(obj.naturalWidth > 0 && obj.naturalHeight > 0) { if (obj.naturalWidth >= obj.naturalHeight) { // obj.width = size; obj.height = (size * obj.naturalHeight / obj.naturalWidth); } else { // obj.height = size; obj.width = (size * obj.naturalWidth / obj.naturalHeight); } } else { var img = new Image(); img.onload = naturalImageOnLoad; img.originalImageTag = obj; img.boxSize = size; img.src = obj.src; naturalImages.push(img); } if(!checkIt("msie")) { obj.style.visibility='visible'; } } /** * SWFObject v1.5: Flash Player detection and embed - http://blog.deconcept.com/swfobject/ * * SWFObject is (c) 2007 Geoff Stearns and is released under the MIT License: * http://www.opensource.org/licenses/mit-license.php * */ if(typeof deconcept=="undefined"){var deconcept=new Object();}if(typeof deconcept.util=="undefined"){deconcept.util=new Object();}if(typeof deconcept.SWFObjectUtil=="undefined"){deconcept.SWFObjectUtil=new Object();}deconcept.SWFObject=function(_1,id,w,h,_5,c,_7,_8,_9,_a){if(!document.getElementById){return;}this.DETECT_KEY=_a?_a:"detectflash";this.skipDetect=deconcept.util.getRequestParameter(this.DETECT_KEY);this.params=new Object();this.variables=new Object();this.attributes=new Array();if(_1){this.setAttribute("swf",_1);}if(id){this.setAttribute("id",id);}if(w){this.setAttribute("width",w);}if(h){this.setAttribute("height",h);}if(_5){this.setAttribute("version",new deconcept.PlayerVersion(_5.toString().split(".")));}this.installedVer=deconcept.SWFObjectUtil.getPlayerVersion();if(!window.opera&&document.all&&this.installedVer.major>7){deconcept.SWFObject.doPrepUnload=true;}if(c){this.addParam("bgcolor",c);}var q=_7?_7:"high";this.addParam("quality",q);this.setAttribute("useExpressInstall",false);this.setAttribute("doExpressInstall",false);var _c=(_8)?_8:window.location;this.setAttribute("xiRedirectUrl",_c);this.setAttribute("redirectUrl","");if(_9){this.setAttribute("redirectUrl",_9);}};deconcept.SWFObject.prototype={useExpressInstall:function(_d){this.xiSWFPath=!_d?"expressinstall.swf":_d;this.setAttribute("useExpressInstall",true);},setAttribute:function(_e,_f){this.attributes[_e]=_f;},getAttribute:function(_10){return this.attributes[_10];},addParam:function(_11,_12){this.params[_11]=_12;},getParams:function(){return this.params;},addVariable:function(_13,_14){this.variables[_13]=_14;},getVariable:function(_15){return this.variables[_15];},getVariables:function(){return this.variables;},getVariablePairs:function(){var _16=new Array();var key;var _18=this.getVariables();for(key in _18){_16[_16.length]=key+"="+_18[key];}return _16;},getSWFHTML:function(){var _19="";if(navigator.plugins&&navigator.mimeTypes&&navigator.mimeTypes.length){if(this.getAttribute("doExpressInstall")){this.addVariable("MMplayerType","PlugIn");this.setAttribute("swf",this.xiSWFPath);}_19="0){_19+="flashvars=\""+_1c+"\"";}_19+="/>";}else{if(this.getAttribute("doExpressInstall")){this.addVariable("MMplayerType","ActiveX");this.setAttribute("swf",this.xiSWFPath);}_19="";_19+="";var _1d=this.getParams();for(var key in _1d){_19+="";}var _1f=this.getVariablePairs().join("&");if(_1f.length>0){_19+="";}_19+="";}return _19;},write:function(_20){if(this.getAttribute("useExpressInstall")){var _21=new deconcept.PlayerVersion([6,0,65]);if(this.installedVer.versionIsValid(_21)&&!this.installedVer.versionIsValid(this.getAttribute("version"))){this.setAttribute("doExpressInstall",true);this.addVariable("MMredirectURL",escape(this.getAttribute("xiRedirectUrl")));document.title=document.title.slice(0,47)+" - Flash Player Installation";this.addVariable("MMdoctitle",document.title);}}if(this.skipDetect||this.getAttribute("doExpressInstall")||this.installedVer.versionIsValid(this.getAttribute("version"))){var n=(typeof _20=="string")?document.getElementById(_20):_20;n.innerHTML=this.getSWFHTML();return true;}else{if(this.getAttribute("redirectUrl")!=""){document.location.replace(this.getAttribute("redirectUrl"));}}return false;}};deconcept.SWFObjectUtil.getPlayerVersion=function(){var _23=new deconcept.PlayerVersion([0,0,0]);if(navigator.plugins&&navigator.mimeTypes.length){var x=navigator.plugins["Shockwave Flash"];if(x&&x.description){_23=new deconcept.PlayerVersion(x.description.replace(/([a-zA-Z]|\s)+/,"").replace(/(\s+r|\s+b[0-9]+)/,".").split("."));}}else{if(navigator.userAgent&&navigator.userAgent.indexOf("Windows CE")>=0){var axo=1;var _26=3;while(axo){try{_26++;axo=new ActiveXObject("ShockwaveFlash.ShockwaveFlash."+_26);_23=new deconcept.PlayerVersion([_26,0,0]);}catch(e){axo=null;}}}else{try{var axo=new ActiveXObject("ShockwaveFlash.ShockwaveFlash.7");}catch(e){try{var axo=new ActiveXObject("ShockwaveFlash.ShockwaveFlash.6");_23=new deconcept.PlayerVersion([6,0,21]);axo.AllowScriptAccess="always";}catch(e){if(_23.major==6){return _23;}}try{axo=new ActiveXObject("ShockwaveFlash.ShockwaveFlash");}catch(e){}}if(axo!=null){_23=new deconcept.PlayerVersion(axo.GetVariable('$version').split(" ")[1].split(","));}}}return _23;};deconcept.PlayerVersion=function(_29){this.major=_29[0]!=null?parseInt(_29[0]):0;this.minor=_29[1]!=null?parseInt(_29[1]):0;this.rev=_29[2]!=null?parseInt(_29[2]):0;};deconcept.PlayerVersion.prototype.versionIsValid=function(fv){if(this.majorfv.major){return true;}if(this.minorfv.minor){return true;}if(this.rev=0;i--){_2f[i].style.display="none";for(var x in _2f[i]){if(typeof _2f[i][x]=="function"){_2f[i][x]=function(){};}}}};if(deconcept.SWFObject.doPrepUnload){if(!deconcept.unloadSet){deconcept.SWFObjectUtil.prepUnload=function(){__flash_unloadHandler=function(){};__flash_savedUnloadHandler=function(){};window.attachEvent("onunload",deconcept.SWFObjectUtil.cleanupSWFs);};window.attachEvent("onbeforeunload",deconcept.SWFObjectUtil.prepUnload);deconcept.unloadSet=true;}}if(!document.getElementById&&document.all){document.getElementById=function(id){return document.all[id];};}var getQueryParamValue=deconcept.util.getRequestParameter;var FlashObject=deconcept.SWFObject;var SWFObject=deconcept.SWFObject; document.write('\n\n\n \n\n \n \n \n \n \n\n\n\n\n\n\n \n \n \n \n \n \n \n \nfunction pr_swfver(){\nvar osf,osfd,i,axo=1,v=0,nv=navigator;\nif(nv.plugins&&nv.mimeTypes.length){osf=nv.plugins["Shockwave Flash"];if(osf&&osf.description){osfd=osf.description;v=parseInt(osfd.substring(osfd.indexOf(".")-2))}}\nelse{try{for(i=5;axo!=null;i++){axo=new ActiveXObject("ShockwaveFlash.ShockwaveFlash."+i);v=i}}catch(e){}}\nreturn v;\n}\nvar pr_d=new Date();pr_d=pr_d.getDay()+"|"+pr_d.getHours()+":"+pr_d.getMinutes()+"|"+-pr_d.getTimezoneOffset()/60;\nvar pr_postal="";\nvar pr_data="";\nvar pr_redir="http://r.turn.com/r/tpclick/id/QDRIiX1HEikSCwEA_QEBAA/3c/http%3A%2F%2Fgoogleads.g.doubleclick.net%2Faclk%3Fsa%3Dl%26ai%3DB5z3ybFCrTa6HDa7GsQeSt-C5AY200M4B9bmdvRTJkYikFwAQARgBIAA4AVCAx-HEBGDJ7oOI8KPsEoIBF2NhLXB1Yi05NjQzMDMyNzM1Mjk0NjY4sgETd3d3LnRoYXRzaGlwaG9wLmNvbboBCTcyOHg5MF9hc8gBCdoBdWh0dHA6Ly93d3cudGhhdHNoaXBob3AuY29tL2Jyb3dzZS5waHA_dHlwZT0nJTIyLS0lM0UlM0Mvc3R5bGUlM0UlM0Mvc2NyaXB0JTNFJTNDc2NyaXB0JTNFYWxlcnQoMHgwMDAwOTIpJTNDL3NjcmlwdCUzRZgCsgXAAgTIArWc1RGoAwHoA4YI6APhBegD2QHoA9AE9QMEAADEgAaJh6_u2aeujZIB%26num%3D1%26sig%3DAGiWqtwOTLLbew_MglE3l-F2ONNz20_qaQ%26client%3Dca-pub-9643032735294668%26adurl%3D/url/$CTURL$";\nvar pr_nua=navigator.userAgent.toLowerCase();\nvar prHost=(("https:"==document.location.protocol)?"https://":"http://");var pr_sec=((prHost==\'https://\')?\'&secure=1\':\'\');\nvar pr_pos="",pr_inif=(window!=top);\nif(pr_inif){try{pr_pos=(typeof(parent.document)!="unknown")?(((typeof(inDapIF)!="undefined")&&(inDapIF))||(parent.document.domain==document.domain))?"&pos=s":"&pos=x":"&pos=x";}\ncatch(e){pr_pos="&pos=x";}if(pr_pos=="&pos=x"){var pr_u=new RegExp("[A-Za-z]+:[/][/][A-Za-z0-9.-]+");var pr_t=this.window.document.referrer;\nvar pr_m=pr_t.match(pr_u);if(pr_m!=null){pr_pos+="&dom="+pr_m[0];}}else{if(((typeof(inDapMgrIf)!="undefined")&&(inDapMgrIf))||((typeof(isAJAX)!="undefined")&&(isAJAX))){pr_pos+="&ajx=1"}}}\nif(pr_postal!=""){var przipmatch=/^\\d{5}$/;if(przipmatch.test(pr_postal)){pr_pos+="&postal="+pr_postal;}}\nif((pr_data!="")&&(pr_data.indexOf("&")<0)){pr_pos+="&data="+pr_data;}\nvar pr_s="ads.pointroll.com/PortalServe/?pid=1149217T71620101123190930&flash="+pr_swfver()+"&time="+pr_d+"&redir="+pr_redir+pr_pos+pr_sec+"&r="+Math.random();\ndocument.write("");\n\n \n \n \n \n \n \n \n \n\n\n\n\n \n\n \n\n') ]]> false
                  1121937346903559168 5243648 Cookie scoped to parent domain http://img139.imageshack.us Information Certain
                • is_uuid=4d59c25b35894a13ac5a03167e1ecf77; expires=Thu, 31-Dec-37 23:55:55 GMT; domain=.imageshack.us; path=/
                • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                  ? J8?9I?$xM??{<f??H?o????? ?m??,$?Y?.W??}??? [iW|4??f????eWR????J??????&?;???Wq?????????\???G??????Hp?????}he{kY???p?=~???????N???7 ?j?????????Q????n?????}????????O??n?Ql??~??rW=s?Y??k??3????NN 9??TO??(???|=??|???????1d?o???Z?<+3c5.?:????;)?%E??x??v???t????????1?????????? f%??7??k?n?jS ?Z??]%???s?????M?< ??]???rH???X?l??zq????????5K?#?6U??i;??U?=8z?]??a????xu????",???>S?????\?!????????:??g?U[?????4tT$'9??V????????m?~??I??_]??C=??Lgk?S?w$???&???m?d??c??? ??c?b?[E?????rm< ?Cj?iC??s?E??-??xE????$?+7??Z???5?K?l???m??????gdb`\??7?5?xgY??=as?]?1????%_??'?OZ?5??|5?Of>?E?,????x???#??????????9?c???$v$??X?$?J??5?+ (???8??`??|7s?2?1M?6???Eoo?=v?/?-5?P7??a????Mi??MYC,?o? ??Z??????ksxK????S#????|z????i??{???+?Xs?Z??ll!?%????U9n???cX????\?ool8??s$#?????|9c ?7z???A4{??!??}???^??./m?????K??mK1??mq???????PH???&? ?xX??????_4?^?eIa????h?g}2?I?t????' ??8????a???Z??????[?n?W????H?-??Z?????[?O?t?an?2?\?+? ????5??+??2?G?x"???6?V??????c?Q????)~'??{\???y<?=???????2??mp??,w??P???=E6??:???qc'????x?d??6?OA?OZ?C?>?%?5I]2??????????^?W?k+}??s??xWz<?z?????s?jV?? ??C??w?^_???????cOXYIer?P??8?[??????^z????u6??????@??????rQ?^?r??f??????w??z?Y?f? Wri?mr??cs?('? h\Y???Z? ??2?M??~=????Q??<_??G??dq ??? ??]?u?6+F????G:???*???Z????M?Y???R???????*???wr{??)????? W?2?kz??*?t?|???LWh/?e??f??QG???*F;??W???[?T???;?I?@{??Tq?Y?R?S?F,???W?u?t?-?k!???*bb??{?I}???]:?)?X?X????x ?+????|T?I,????Z?9 ????@?[Q???l?? ????=?9Q??]'?2v?????]j?I#?t?M?RT??@?X7q??Z?^?MlR???????;0?;?!u?Px?I???????nZBw!?V???|GAm??8?B?]?*??k,."R???(??Vq=N??X????>? ?yb#???X???.?????R%?r?_?W????y????Io+?K+A"?W?HL?9??|~?>*???B???v??fe?F??85?.*_?mQi?j?v??o?+X?-?????~?d??m(???M|??}????)n/-????h??m?O???X?7?O??fOX?=????vf=?y?~????[;?J????r???O?}&??????7J ???|1?????g,?g7???9??'?WK??kT???%?u?Ky h?? ???nGN ?????n??"V)nU??U?|~??y?K\???7?????L(??????8?f?A?y?????O??}&??[??V?????R??????????????,^?0?#?{??G?8??????'_????R_x?Q?jj??[??l?????B?z?:eFV?2.?_G??la????V=?R>?q??ug????i?$q?? ?@9???bn?i??|x?to???P? ??'???1c?U?.tN?????-???????????????w6?????1+?i"? ??~?~?????[o?&????a?R??3???????5??usiu?F????h@VG?z?]?k???Q?E???=?S?^e?V??XN?????#???5??xo?v?/?.,5D?l??/d|B???X^???Y?.?v,^kgQtS?4.G??a?x?\kk?)???BR3?,?No^???5gS???? t????R??5=B?8e??v??ko??l?????g?:????O ??Yl??(Tf\g?w??j??B\??`?E???>????/????Y[o?"2pc?q?????????????ZL4???o4Sp????z ~?/?~???Gc??]?Syd??p?Z?o>?)?,??7?4?{`??_%U@?rzV[??gb=?5-ac?KX???Y.??2??"I??#"??]??zp=?I?k??:???? `?? ?$????`??1??@??? ? ,|=???????????K0?;??T??0???????FT?????<%??;[?4?.u?{?[(??`??[f?+` ????|W?D?w??i?\q???w?????s????O???~?7:'?>9?o?k?[=0??=??r[??aO?????g??? ?G??j???4????I3B?;?Or?Y^????????p??'*{????Q?{w??&?g?gI4?r?#?v?8???iQx?L???k? Q?y?N??' ??e?n?CK??e????????K ??\?(J?D3???W??k???????A:??????????%f????k????i?T?=???????=u?f???4?n????.Q?dy????s?}+???|?x?[]v??,??q ??d!?ps????^???]?????? }OG??M2???P??O????+?>#???V?{b!?????M???;?6?W=*????'cF?"?8?w>?????V ?h??b?????!?????f?ox???9?4??<'d?{f??_.X ??`?x??????}?x?zk?o@?????? [F:????d?????7?????#?W???q ??Xp} ?&?~IIF[????Kc+W???u ?j?%??!?HX??:v?/|E???/????????[G? 8?6I????T?Y???qC6???zy??S0D-??~k???W??]?e??????w gi?=y?P??????Q?l?p?ko_[\?D6r????+?????J??xF??Wp?1j?i????pTw>?O?/???h(?#?n?;?;?K)?i???a?/???Q"??P????+??d<????\n j0????:?????W??? ?????+?w?;?|???????w????3(??2I??a?zN?F???x????{?>K?oF"Xv???[? &,@Q?U??W?7??? i?C??p?Hx?J??i??[??U?{??a?2?9?????c???Q?????@_ ?E@$h???c?P?x?????c=??.$Y???N??=?k?s? >x.UOh?V????>?????Bk??????v?LZw?"U???????R?????6????> ?W??[[??$X??&????+??u ?f}N;i? ?6bf?h??????C???{???+F????M?d%&?? s?+?k?_??????z??"??*?P)?????p: ?0????????????r?x?????y-???98&3?????G??V??;??lI6/??????????F???v??RH?(?i??|??O?????IM????8?1}H4??i?i?#?7 ?\???;???????????Co?4??? P??$g5P?C???G,@???@:??????:??7VR????c??????#Sh???J??9??M[??E)@?????@?#l??????,?Mw;?:o????w#i???bF?3????2r:??U??>???????X???|@?-?5P?c?V~t?O???????i{??>??????|J???r?5e?????f?/?l??O???????L?F??????6???J???????R????WD??yi??{}?@?? ?????n?g??H.5M*1???|??n]r:?\p??M?4??ui??????????????e;Vk??u?????z??5??t??+?IV@??v?L????d??:bH"??A.?~??V????5?OY????j???l???u'SE??RT???+???K???{?:?312.? 8 ???k?_?:TW?~ ??_n?{????1?"I???_w?/"??_???F??q8??5???k{??:?T???7#??????S|????%]??1?x?Y?wt&?5o?i?\J?d?7]?GS????????W?+?!d?Q/c???\?^?\t??Q?[ ?^{?.???????q????????'?? ?v??Sv?4k( ?=:?5i???L??I?????+?o?|>??? K?????x??c=T??z?c@?5GU??Q?>r??Me??6O_j??jE?~?~2?? c? ?9???k??}OX???L????7?Q?pq?TJm?J?^????h?X?d????x????lcC??2??dc85?y?H?L??W?$???WO??9??k?;?z???x???z?,?g?"????????t????&??e?$U ??dn??w?H?1?????? ???M?L?>???|1?X???2??"U?????sX?????????sh ?8 ??$????v?zU?|R???skke???4??9?r??????I??x??)?u??3?x???_?????3xm? >?N???~K|K?-????=G?????????]???d^?????(??c??;6M?#'$|???8?7?|?k+???|>?????????i?5??#$Og?2N ??v????????[????? k?.????J?x?O?h? 7?4{[w?;????{?Y# ???????#???}?VOZGq{m??)m??>??: ?qSMZ*??c??G?0i\??xsW?/?????.?.c? ???B?G_A]????9??|/????[^?l?^F??? ??sT?1jz?V^&??????V??L?e?H? a???K?;??f??I?!???( ????c;?8&?NRM??c]???#?_?{R?G?|u?:?z???X???x??[?-S???}.m?O??`S??Ny??I?????:??? XC'?w6????x-?p;I?('<{q^#?k?]?P??R)-???yK?C?q?^^6?????d??sMB???.??_x9? ?C?k?8??}?????~?a?u}2?9u?V????b??7??k;?4????????????????IT ???Gk???go?N??X:???$?A?*?????5?J?%?yic?????N???R????~??i???%??!?2 ?wFG??^????????4?]???A ????????F????tgJ.??}???????4?#????k\??FNv?{???g?a???p7 ?????+?.???????q?\? )GB??0G??<*???G?9??-??????|/???g?????`????c??????[? Eg??C?N?BK???s???_>Z?$??uo?o`?5??0?????#?5??8?;??d#**R?????>"?=?xc?u?-???%C'??}??'??z/?????F?&?"?/?:???????x?M[^??Y????$B;i???<)?]7^??iR?"?5?yj?????w?UU????????W.^??????d??i??ki[????Lp?-????&?o??$[?"?-??Q%!??~????O???e)?eIy?????RuRrc_??][???B?qd?0I?*ps[?o??]????????9?\o???$Q!?Yf9?;??}f??x???0?_"e?9w?k2Xo?????F??Y7?F?Z?l%??? ?+??" ?H=??h?S??}???r??pn7?ED?(?Rw??9?pk?|W??%????s?[{A???/?f???6?PN?P&?=??s?}k????6???????=B??U??^?4VN.Moc??U?i??)$?GEW???D???8Q?(?T????B-eR??I??%????? ?? [?????`???h?s?/^i?m?=^1m)xT??*0pq^????? W????mw?x?0????? w_??P???u?<#?m:??*?I|????@???A???L?],?_????K6?n??8???u???j?MR?i????X0?P?%????G??^?^ %?)XU?'\z?v???.?-3?L?d?Ha?F?c?~2?/h`???kI?QA??~??3?uk?O?/????i? ~???????P?,a?_??;??^a???O?????Q??!1Y??v??7>??????|e???[y?j?{??6Lg??RI5?|?j?x??{??o???Zxv]Yc????L;}?3?W??????????'K??63i,r ?(????}?,;?}??\{WU???'?????V?M???????u??b?U?Z+VS?????????}?;?G?|8b"?G3??Q??n?8?s\??_?V? ????B???fa?????|$]s?z?+ 8?n4??9h?BO^3??c??I?$?v(?5?B?-8sg???u?????2????{???LK;???oD?Ra?L ?????'???xO?????? &?&?&? Wa? ?k?u--O2????*??|??rx????y?V?L???{bKI!?pO?+????1?1?&6vJ??E???|`p; s_"x?? K??V?Km E????? .????Z?w^?????f?\?5??k]?be??r"?E????%?n??*?R???4?;+??wm?5]bV7?????O!?n????????mL????6g+??|???9? V??I?? e?h7Z2?????W~?eC?????Y????c??d???7@BG!?uI?}???i+Oc??V??4|;???|M?? c??Z?A???\?8??o?n?????L? 7?%?GO>?m ?tyC?~u???GJ'??????_???t??????Y?,|????W?? ?q???^YL??"?ty\mH? ?:??O???9e+M,??Ie?A*=0r3?X?]???c??????CG?x?Q????????Z??gK?_~????a?HMy??,????8???ia\]ouZ????;Q?c?O?)??6???????$???A! ?s??x'?? _????O?yO??????h?^??8)?/ ???8K??????{~u??O?>?@???????)??C(?X??y??X???v>z???$???l_??.???xn???J,??hLW ????? 7? ?????;?J?C???x"??????{w???D????????????o????G??_?????W?|l??5??{??f?6*?NI>??f?:???O "??????c/?/???*???r??E?S??X? ?3H???G??6?Mqc%>^X???0????ww???|>?!?^I? ??#?^1?_u~??t ?/?h??????????~|x???????????DWQ|?????}??!?l??tm?C}?C??s???N^?)?????~???>)?g?????q??$??x??zW???Q=(k?|.??b???#?u???? ???5??Z????6,??9?? g?^?c?Z?e?M??V??[-6?$?????????n?U??????K4??D.r}?P??!????+??a????\w??ZMF(????y$?y?UU?N?c?}:?U?%8?M??UIt?U??? ?~?k??E?$e????????[?M3?o?mR2?u9?pJ?????:iQ|??b??%[ .?w??@??_?Z??z??5Mfx?%?????C1=*"?m?????Y?C???????b?????s???}?????T???? *9>???-\X??[?\??fe%?;g<??|?3?????q?5????1???V??(??I?s??$? ?Vi????a???L?????[?a2? ?????G??/+? ?0?j??Jd?\????Ib ?1???????????BD}??=???;???????{R?5?????DR0 3?b??E??N?;??k{??O?7 ?T??>?????????#?????.?{?? ???Ae?V?bI?x?CF9+?????=?iT??V???-?[]"?,Ot^,?;???????4???m&?????&H6?????????a?0\??4?9'9CZ???????>?l ????r??I?pI??{?????5? ?A?L?Z??????/?e?\??K??U?Q??A??_=jw:fZ?M>M=I2 ?`?O?????:?K??{?~%?8????????ym??xFj?O??w?g??+??%?]~?6'??'???~???]f^???;U?m:???M????????'???r?X?o?5??Qw<`q??????> ?(???????5?"?? ???? ???%?n?U?s?0?I???3??]?:v?u?]?o~T?? t????%??jH?7?**drx?????7?w[?e?L?1?^?Y?"?'k??\W???9?*?????|??:??w?U???B>Mi^6??? ? oUb^??^mG?W??^KU??;??'E???C????n??C????J???m????j_??j??Ym???Q?C?k?_?'z;|?Q??Bq???|a?V????m;V???[9>Q?d??{?Sm??o?Tcz?C.?1?j????????H?.m???S??O5???AB%???D?e]0????c??:???7???m????7sD[SSn?X?J???~?O?????uln,4?$? e+?;/?b??=????kY4g???bJ???Y?MS?G?-w?ze???W,7j?[ga?@?x?s7?&??^???\[?j???3G?d????_?????i?=??q?Z?Dw???"$c#?=s?x*??????-|???-??.^em? ????W?9'?90??b?'????? k? ?Ug???o J??G9?l???????s?x?V??qj??f1ga?????K??????jx7??n????/O????"???v#????B??????g???is?X??-2??v~? t????k?b??Y??.??~?/??????X???L???5`?Y????y????I??/#???6? |?/????c^g?[?KX????U???7???^???dlm_p?^?? ??_?\?l???5?d???s]4??JL??`eG?????(???k? f?@?L????q?@5?????O???y???NR?c2H?z)?NJ?c? 5??j? 12?G?#.?P0??Z?+??g??i??? ??L6?????g?>??k?rP?j??\/??v>???;J???M???????0]E(?1?&;g??|#?/?W?~.?????tW???????0?`{m?8?~???|????j?????%??f5??}3??????o~?? #xvI;'?l????=?????k?v????Z??????T??YfU$0'???PY~?^+?n???|_?W4?J????{????q??*?V[?K???=+??`?z??d?B?eB?^?zn????e?au4???#*:m?q?????Sk??;???(???)?$:??_?|I?S??????E?'??H#X???? ?????A:??#???{W???????=c???z??A`???<?L???gh? ???>????3?(:???>?????um_??kz????WS??????=?wW????)ndM??Q????K?$?b???`?F?os???o ?L??J??0??GcO???h?nJ^???"D???q?????b9?H?~t????qU?????O4lJ??k??? t?+???&?}???}F8,?$Ha3#/&???????c?0]?+t-?YI??????'???`??yA? Hl???^??[\???????"x?y?q%?ya??q\x??(7?XU?M.?.4???4?|???g9?Eh??w?B?????????k?F~?]???j?\hRi?^J??=??A?????????m.a?MhS+'??B3Z?i?????N?=??m?? Ac?kN???^)??.?? ??hN???@?=Mt??????????#?.?u??i ??'?q??z??1???g?x?????Omlax?6 s?z?????5????Q@?4 !??t??]M????i???]??L???hd?l??d?'?h?? o?;?5?jZt2\j7C Prq??APA?%9?(??i?r???x;????q$?????????<(9???/???????l?V?+?_.&$??????????E?j??(??h??Ve7?[?>??????? G?>?|??%?E?/???r?1L? ?:?????\J?b???%V????~'????/?? g?7?72E?Y!dV8?IU??|{?????n?? ???b_?0????z???5 =7Tw?????p4??????? ???> ??M????n?.??2S3I4?!QGR?h???? ?7???y|U?3?z?????W???1 ????V?????u{? ?M????????s??zH????u (?f??1?\???????\???f?? W[???]Q??^9?=?1I7(?(?j?B6????kI??Z?Q???.?,?????eh~?5su|?F+?#??4??/z2u??^ijp? o?k?????b???@G????? ?YiV???????v?)#????V????G???%???.???I?9!}?ma???du?:5j>n]C?PoV\?_??? ,??N?kccn???O??>??x?_?|M??5}e?????W??&???1]v?as???u}i{?r??f?AkGq?W 9??V????k?e??v???W? aiz?h?d?=?? c????'???;)?????q?jo}Z]?3D?E?1????A6??Z?????? n????H?'???I?5?l?? ???????10*???~??(S??-?r=?-??Y???W?u?9n?6?m:?Z???8?G?Q???{U???"??A?m5?J9|9x?n????1#?9??=;?????^???\K?\9?8P?????tw ?W???u??c,?m??vD???Q??2x???4?-?1??rM??X,dH???e?]??c???8l???4?????a?C?v?Ya?8 ?@??d?xr ??J?|>?F?uo?$?hkW?0$?&i7m??>P?%???rU?"??=Q?qT?l??l??q???_^[???Hm????e???~???t)nO?.?]?Xgm?????????{?[?v?z2????}MB8\??,1X?'^;?????4;=POmcsj? ??I+7???yl???+?^lhc!w8^???J???5??s?g?k??[??{?v???????????a=??v?^j).o5 ??O?=0Nq???t?2o x?Hf????S?? ??2??V?????+?????SP? ???????$E?V?y?|#???!h?4*??i?ik?V?;?O ???I??Z=??????l?????????| y??+_???-|?_??$???Ly?a????W???qcz?]?yR??0??gko?t?WQ?????????ife?????i??p[??"?}El??,AX7(?AL??O?????`? y?Y???fX}H???k?????..?)*`??9l P?c?a?>g??gO?\;Z?{qe >$8N????J???|? n?y??9?6?????M{?J9^kx~g??L\???????? ??O???l????/?O#?}@?? Et?r?-l-????Qv8x? g???????i:YK??:????b?w2?}??51X??F# ????j;???t_x?{{???I?*$x@?)|?s?????>"?CJ??M?>??? ?8b????d??????????.d?e?O1Hh???Q????5?VQ?l-?]>?;?%??iXK?y?9?9???rS?.?j1?E?? ?????&_#??s??3<@pN9?j????-???$t?7??q???9???5c{uq??mceo??Kms TA(?j ??pz?? 6?qb??Z?l???!?9???R???#????-??4r*???{y?????Y?????:?5??????????Qh? ?4????lui???,??tE$?n?j???u /??="?L?$R???Do?N??7?e?uq?????r_B?????zC\?|Eq,??k ???????:|bY????Cup?????????OJ?MB{?h?????3{???????Wy#k????<+???4[?H?%?$0??Nd?w)?????????E4??????+Y?ak^???ay|A?j ?P ?????p=P????*?K??>?f???H??s3o8'?*5????/???Q?I&?$?E??F??????G@+6??wp&?%??-c???????I.????3?????_]?u??a[ I?,??'?w??jcF?I'2e ?????Xt??u?[Hc?xF??S??:b????k?{MrX"??]??*????'#???x?,?4?S??1??d6?, ??~\????5-.????|s??#???s???[S??E??g?????????016K?z2???*Z?6?'(?{????0????j??V?I`?8??????????_J?????U??>?b?u?s^?????R?}???_?p?jMj&h??bV?"T??8?S?/??? ]??u??w??jV? ?????`H?Xl~5???????????~\.6,????.?0????????y?sX?sKC?????=?C??????E????+?#1???????p??+?????#??G??ht+e?????F ??(?:????? ??T??^[????j ;;{?????ks?{??I?|?'R1X8TOFLi?wij{.???Y0nx~?Xm)???$???#J ? ???NI???????k?d?wrir?.m$\?u?0b\??)??M;?????k??e??????9??./m?u)???N?+[??????8$uk4?^?4?4???????N??????D?????? ?? ??????S??????.?????????s?e??x??T????ue*#I????BBH>??5??Z#????n_M?A?3????r?k?"?J??????G??WK???+?l????l?+n??? ?I????????2^Cqda??o??x?6f$8?f&?{X????g?[+??????????????!????<;??\C??.??>??9???(?O Ms???|k?5- ?4?d3??w/????_??c?'8??v??????g??a?q?e#? ??{?sbR???P]O??Wo?-GQ??K??'?.b?S??-,?,??E?p??$?^???/t?y?+v???????9J??rwpEp ?6 ?G??????+ r??N1Z??I?h?k?_M=?R????mYS??+????t?4???Y????k?\xv(??q$!n fY;6V,2C.y???I????%s?$??&O:)Z??x?P:0??^c??????R?F???h~??|y1?"??}?W/|aegk???m?4??gq?'t??????w????N6h???n?Q?h?PG?4?Sf????L??2?tC????msT7??o?M?E??????\( ????:??u?~[????_?a??KG[??????i??K} [????_???B}*????????a?f???B???x????Gn??? NsRoTuzO???M]?N?D???2In!|??nw???a???, ???%?????F??????$@???????+h~??=???At%D??????$??j?{?5??|=?Z??k8/$??n?B???P???Y???{PYH*!m? 3???*??R???????i5@??n??`7 ??Z???N O*???Y??[?C@?K???l?K?k????n???MO?C}x?{??s?? ?????x??(??????u?]k????? %\??%?1?L}?T"????????J?g?;M??9T?W? ??sr;\??????;??T?$??????-eK{Y"K?Y??Q''q?????H?\\ZOm%??????n????`>s??Y?}????j?????e-?h0???|??v??`kF???l??mx??b%??0?`|?F89??R???Y???(-m??{?Z???Zlz?XFW2???????)?(nW????+?n?kKmZ?e???4Xi2JH?u?1??YZ??Z?????Kqp?*??F?????????O???t?????? Y?9???+?8?J?n??]E?k:??$z?????????Q[yn?T? ??-?H ???=v???Cm-???i?????P?fb?D???R??>?????n??????-?B"???L? p?#?U?T?]?^???7?J?2m)??_A[?k?m?`?4QH?54????5W???5+Qm}x?N????aF6????????h???????ik$??RE"}??G-??0nA???W:u?h?????wH???????t???-?H?pb?E?`Wi????J?X?\%d?tir??$??V(????2g$(? ?????$ `?K?C?s?2?????????n??$C!7?'??h??{W6>??(?bUG?;?[2@?LC??????????5???$=???H?#?R?|??????|V?\ ?????&?{??l??y??$W???????]?i??????px????~????????^??????,???_\?g????k?5M+?o?dd??N/?A?7R?^@+ ?'D????=????'8 -??????w?1??W????X?n?K\??_????????}??]??}85??c????2???????????\?e??Y????r??????R????O? s???5?2??d??n?"~?8??E?S??c OIh{E??? x??{u?A?#C??????p????5?xg? ?qe?_????Cs???$?|g?? ??C?????B?f??K?G??t??????????????y?????.+T??{v??{???|6????>>h?f?Y |????G?????/???h??}2ON+???[FUK?????Z?????G??s?Q\?[????????????g{{????|c???QU^[3+(?????????bh?)?c?G??^#b!,??~???F????fV?1?>?? IG?9?????U|N???e??? ?}??jF????7?(??k???n????W?5.?2?C?_)?q%?l,$f?s?W?>0x???????????H'?e\?d???7Q?p???q??Ocx?=???3j?\\?8H?299??KP?? ???[?K?+r?????M?oO??vv???~????L?<`???b?_??-3F???i?~?k?X???e??C/???T?{5vz?3?~??????6???'??b??????'???4?n&?????r?.FR??Z ??am{pmcP?WV?j??g?rzv?Y?~ ?D??? i???2ha???k??5????J??S??????M*[??j????Y???????????????>/i????????cb\1?h???b??%r*?N??Qv? ?? nTu? KC???[????N??^e??ih?30'??Q^???_W??u?o??????????p????M??!?_ ??n???b?>xVC?XX?? ?"?????%A??]????p??????+??<'x?%7?'?uvI6??En??x??\s^???#???Mo??B?n?1????<?+?????{???f??WC???/c??:?6I]WNSj?????]\=>x????????$?j?A?ksL?????3?G??i????-w??I?D????>?I??U=???/??y????~m????>??/>"O?Pj? ? ?lE?s????<)N?y?[?n7?Q???O??????"? ?h??a?.UP=????*x?MX??u??F??Ee?H??z~??O7?5x4; ? ??w?]&?????{7'??/?????????d?L?4E????????y?%???72_&n????g?x7?.?6??F?? &;e?]?K??x?w??? ????????A?Tq??Eg`W?A?yO?o?k??^????ZAx?X)o?2?[??n??C?E??j?'?u??/af??>????X?,C?"???0?????????9?_-!??R&????=??)~"?E+?]??&?,?????'???ry???#?Q?C????-?????o9J?.???A??y????0??7??C5????z????C???{,???'*?/??=?K:?~U???>?E??] ?s f?z??x B????? G?????i?m??|????????|???^????????U??M$i?b*p?? ???R??j??????8?s??Uv}???i?N&i-|)??f#??N?U?G???-?t{@??&?F??]?;???gq???5?8m?Db????=?| ??]?????K?] ?Y?re??*??L??oe j??If1??*Uy??~???!SY??(???????'????=?k????+?????hj:U?????^??[???HC??W???*T??HX?k??T??|?? ?.iC??0?????? ???????a???? K?e??q?%(1???x;9??;???]??!?v??){el?6*`8$+??\??IchZ???(p:?_d?~???*d??<`W???~???1?????Ny?; ???h?#??l?v???^??Mn??])?d?KR3?-]??w?k??hbx??3??+?5_??O??E*D??+??7???????h??j4????P?5*?? ??T?????????V?bH?7?#h??g??????i??6????U?rH???~?ii?x??X?H???5???G?S???"X?[?:n?g|???c^?Y??]?F?8h?<~Z?a????? t???#xb?2?Q?1?w????;X?s?G?N?l!k???Oj??? o???(?0\??|?????]C?????i2??(lU?n? 3?:???????;:q|?EJ?Rjr??r??b???y:?????n??w?gM??NGnk????x??q\??J?-??????????????7?*I1L?^3?????/M??`Kk+x????Y?0?????"1?????*2???j?0?????x???S?R#??` ?j?k?!7z???????c?:?c??????)?A.?????4?+???s?????]jk1???b3???c+T?7??>G?????wG?????W:??????)}R??2 ???????6??h?e??g?4???eR???????????r????N?Oh?ZJGL?W?????rx?[??????;??0??cO??ak?/?????n?{ ??????[?#???go'???O?5???I??0V9??OJ???P???O5?3? ??F|?jN1????^??+k???H?e???d???? ?h?(=?4???V??Z???P??E??iZ??u??Q?k??VS????"????????E<+?i_m{????E?????|?'R?_?A??? M:????d??5?5?6?u/??"?twtho?(o\9?Z?~?x?W?Q???L???K?d ??d~?3??W??-?i??4;???V? ?$AP?????? ?Z| ?????c?Z]]?i-~Yc???Z??+}^S???)V????????g?x:+?)t?mR?as(I? ?$?#??U?/??????>T????v k?|{??;??? Z???????B] 1H}r?"??]??u???+???ZL?p?k??1`??t???}???V.?U4?c????s??7?m{??)??6L???Z6????e?i?F?????f??R???F<FG?^_k????O?1?fM=??I_Uk?ur??.Of=?o?^?{????x?.?{2=??S?3????? ??s{xl???V???R??X?/????-$???\]??????j?Cwr?6?GlS??>p??z??j???0??u? ???????Y>w\uU=H??W?h?~%???Z???????7b????w?zx??r?Qk{?n??: ??#c?|;??k?????????@#?My??4? izf????z?Y]=????????`GN???9???<+ ?Z??Sj7FVD??????~???V:?????6pJKY'g???=k???q????)????{??a??QP??????y???u{???5?c?c?)?zW??[?7:?e?Z?h????? ?????????g????? ?;}5????*??N???????????7?U??Ki??/???I1????<>????????$?|????e???|?r?~? ????+?N?<=?????gZ?z??Ma??H?7HPar>P9?{??=.|v??J?r]??L ??^f?&# ??P???k????????|?g???>X??a_????z?????,?xm???*??s?v??Ej??????!@\??~?W??????g?C?9i??%???????`??I=i??????bI ?_??wP??ke????NF??????M??Y??c??YK4[???m?@???????[???{e`????B???2???9??UN"???Xy?:T??]????,?3?5????B?|f?1???]u???????Q????V0??"?=0Z??W?d:? ???W:????;?????,88?\???]i?????<???o=?gk??????R???'f??`e??????t_ ?Z???]????????E???? kk?U?i????Ql?????????? ??e?????Kd???H?h?$?6 &??jO?_ ?/??^h????z??m&?y??x??WB?*K?JQ?c???CH$?yl?*:Z??X?'??eyn%$????+?|?n?D??9??>0??2J??ks?,??????R?| ??-??o???&??# Qz?}????? ?J?L0Xi?Cm?V#$?.?wf&???>h?-?Zj??h?????e?S????k?P???j??9oS;???????'???N?Q??.n?L@?w??R?2??O4o 4~keN: ?MN?E???o.??>?[?m??`????*Ms?l?????5??.?k?????w^??3?k?????'R?od???VJ?Ij????0_A????FN???V?????????i ????????xkR?~*X?x9b?[H?? F4-?P? ???k??2?.?<9?Cjz???W?}&?y??&x?0??6??Gw?9?/??l?E?O?/6KI$8Rq^;sd??e?? >???Q?W??????????Z6[s?c?x?[IRj??ME??/r?x;[?L????????z?????u???q??!?? ??w??Px???????|P??5?Qe????@???X8RW?dj??hZ\?????B???V??F5+??t{GNn]?w????_? ???x?/???KX??v???@Z???5???zT??U?e ??d??G??|I?m?i??|&?-?h???p??e???pQ??"?.????? v?Z???xS?f?P?x??#Bt?f ???kF-??A????$?2o?&???L?????t|?=9??*?V????'v???????o[j???)??{?????Em.?f??E???? #?n???oE??????T?*??G??????~`z?:A?+E????M????]???0|-???????[???G????|??? ?I??\??????_?[*?b? } Q????????Q_ ??O????????j???[?w? ??dr_T~ i|k$?M?????'?y?=I??^?7w????????4??.???[???$s{??|z?B?yTO?U???o_X??I???????]O??N??M_?x?K? ?r?????c?Etz??S??|????:?k???5J1??=?_~k??????dFb???c???\??_????.??? ~?v~*??5[7???Y^E????{_Y|3?_a??C??O?I???c?'S?^#?&x?{??9?n??|9-B3??}0? =?D?j???5??aisI??&6rv?C?????=-t?? 2???R{dW??/?>?e #???????c???G#m1Nd'???????T??Hg?/???????8:3?*???oS?J?Zx?R?1n?=?A7?_??%???P>l?A????W?????f? ??T????l?????/?)??@J???????]????~K?^?7?s?uKT???i#e?x?????[?Y|1q???")]?u????WO??fF????????&??^.???7VhU???c???? ??D????ED=???3???N??q9???U??k????f???!????^???v9?$#??&?|#??w???"??W3A%??h???1?l?KO/??g????S??=W???]??8:????????c?0?I^????J???R~????~k???% ?? ??n?OgO??k?-?E??f+???t??H?|s??O?G? ???pA????0?*C?W?F???Q?S????cO>???.]???diz???,Fj?????+??Ciq??mU??T?"??^:WU? m8??o|S?>???~?\???`???k?Z?????Q?-????|??f ?~???A??S????A???@iV??Qt???? ?U??,????7????Mg??D??=?o??????G?o??&????H??????f;{?b?Nr?(?????SI???;(???k?iV~?MP???*??????????.h???{W???5?r????G???? (???}+G??T2???;?;RKT??????{???i?x'J??R?_\??p?}? ???g?|??c??Mm?%??????V9??3????W?!?????? L?mV?R?!????^?aYQ??S]?+ K?}????~%]????j?i?X?0fkpQQgS????\???s3?????9??W?W,?d? /u8u?MN?K?E???,???,??<`?-?Yx{W?G???o?[?PGt??.???_?O:???w?C??W ?S?3|7???9??d???????A?X ?v?s??]7??.?Ew5?@?.?Z??????s\??T-???r?}???PU$????S??(?e?kF???z??]Ao1*??U??>???cN????d?v?????S?G?a??Y[??M??????F ???q^E?;?j????mCX?F????.9?`??=@???*????M??OkF?%???{?_?>?S??E??}??[?,7?^?gn???E{?????|2?sp?-w?K??:l$n??Z??f???[??D????+??Te??????0???L? h2??=s^;???????4?B>W?#8?W?;????n?O?v??T??????My????\?Vw|??+?1????;u]b????^???N-!??W?????`r?????u?]q?-Ji5%???? ?2?rp3??O???? ?????7?????e??S??]??|i??????????g???V#??????Oa?D?????)???F???Tg.h?????o$I/-!??Ov?????????Q??}??6?? ?~|???T?iS?????zW?x?V??-?b?Y5?:?`?ovl?9p@U? f??j?"?]?=(??3?????????z??S???.J?go?_??|F?B?,???+-@?????<???Zz??WO??MK?;??\Mm$h'?E?5??(???R?????iz>???w?h?-???Mmz`h?f ?3?VS?jE???6??=?z?5????????e_2 ???1?} ??W5?GY?'F ???y6?q???Bd??H? ??9S?8?p??W?G?$K??'[T??Xc??l1 ??}1^3???x?????y??jF??s\???f???C???@?%??|???O?y???Y????M]?r?3????G=??,#???????4d2?i??V????? ?bW,????^??-???$???f??u$??e??;???l"??f5?Y????)???'?]?4?f??c??[E???`??+?+????g??>!x}g[+}[??e???v-??>o~Fkx????n0?dX}??g:v5??/?Z??lo?5??_?m???w??~???l??i??:?? ???$ ??`????pP??????+???=??o?d?4???>??QF???yp?^;f?w???t?????%???BF?\??]:$????,?????? $?Ui-6/?n:???W???2??,?<2-u?f?e?? ??=*??6?\??s??/??]??t?3i\? ???????q!Z????g???????????I,-o *D??$>??????{?gB?????'????\ ?????P?$????9bi???? A?J|4?? A?i?j?<?Q???y?9???~|d???n?N??oz'???C??## ?????c?k??z??????Qi?a)?0w\w?:Xu{O^x?_???H??Kcnd?f^A?e??Z???_????Z??/?> ????J?5 ?)?M*???,p0???j?? ?Q?>??????m??? @5&w??*g;??????????i?)??C?jB??e?,`m?/?dW??i??ztPx?L?????????H{o??+? ? 5?M????3I?{t,??????'??k?????6?????o\???s???W??????V??^Z??G???U5???G?[?:?W??&???y?L???L??????R??PX???E?!??I?^??8???r???)F??^g&????ON??????????6{E?L?IQ?[??Dx$(v?1?3]??<3??gJ???Ksc??aM?c?ob?k???V????U?v???R? Y@?????iT2?r??o???K$?????z~??g????+??d??'?k??!??\G=?????Q??????{WI??? ??Ew???I?E????l??p0IUA??8???"????O??????Q?y??"[??????<??????!o???????k?.????o???M???V?/?4?I?I"V82A!^{???>?|2??:V??[K?6?R?m??y??????'?Wp?jV?M???D#K???y8?ni?4??7?4???n?Bc?-??????\x?8????%&???0??^6?(?Z?2?:?4?+o xnP@?wq??q?Nz???=???Igg?}N)??8?i>???????>9??-/J???kXm??}??eHG??9#5???? ?=^V???]??=?rg???????Y????T?Y?ToZ?:?????qt?=?w7Z{??c?K??<`}?R+??=?c????a'????????E?H?1?J{??1???.???o ?#4??;?3n?k?????Mw?k????!?^C??'q?k?R?]???J??kuc??WZ?o????jfGh???9=?U?{?b?|E?X??k?????u ??Q??????Z5???J??S??In#??;?_B{????u-$>?~?^M?&HX??1?;??????5?n|???xP?4???-??B??????j???'???S???i?G?I?1????z??????t?U????? ?9?o????????kW????????7.???1[9?????sRw??Z??????/%???i??1?????'?y???H??????B????X?jgO??u4?-D&V`?xvn?R??C??k5??N?????^U9:5???Xs??M?{?]?hX'?+??v>????!??I???2?wN???8?k????????]t?6???w ??_?k????.??????c????8?"C???|/?_]??W{??"??D?!|?$???VWG?_5n???C???~!?U??^_? ??P????|+???_????? ??$??9?Jw?y?'?5/ ???Mm?m'???Q!>??????5D??8??\??}??K?{??eZ}sK?7%??>J(Q??\??iO x3N??%p??r????(?cy?<7?*Ad?8?V???????#;???Z???Q??n?????:??*??T??z??u2????f;???+?/?????'?5&?m>?2?nX??????_&iv???"??????6NB????@? xF xN)??4h6F?H,Ny?r????=??????SS????;L????????h???\????^Q?9????????]??H?a?/??Bb??8??+??k?N?sa???$????JH8#9?Oz??V??}y???Y?-?s?F0p??????5LR????????A?9-?????O??Sg??5e????)????8??????K?o?? ?i?V?ve???F????g=I???n&???lO???U???????S?B??5?=?QS??8??|mfs{ &v???Rk~???????$??c?]?4}J 69?%?V?????X6?&?d?????L????|??B?L????P?|?l?@N??q?_VM??E?s??]4?????5??P??O~??o?m.?g{?|A6?sv?r?B? ??v ?9??5?'*u5???*?ENw>????>$??Mz^?U?+???#+???J?~0?;?{}??2/?Hd????+???>???2 ????v?????=???6??Ru???n?????9?/???tO?????%???\???G?9V???ta*S????UVK??????3????N??[?n?v?w??j?q?3T?e?/???x???n,?N?R???X???wl'? ?)???~1?;?Ai???^?/$e?!????^?&t1b?r?????t&??>??U??OL?.?|Em4??;E3?&?'>[?????m?C?Ohm????/?/??u?uUH?/?-?Z??M\?MGY???w??9?????!???^????????7??N[??????M:???p????Z??_???4??5?O?x?r??[,?_5?o^?m<=5????f9??:???????_|???+4?~g=8??z????x????i sF?T))= ?5?8?|B?]??67?g??K?r[?U?||?|?[?[M??V??,?.3????$????????r??0k?-b{????NzdWDi?t9]????w???????]?? ?|K X'82c?+??<{&??????2Z[&6B??.>_C_???????????_i?H???h?B9?[?????????V?YQ-????????cy??????-?gi??g?M??[G?A?g???D?%QM?3?\?c??q?z/??k.????5k?"?9?Q%?a`,d,?]??a?A???W??-4?io'T?,7v????Oww?y?W?jj?Y?97B??(?D?????$2???u?jim vv:?????X??^]t?????I?<=??>(????????N?3n>I;??B?=+s???.??Z?j???????????C??O???(?loL?;4?op?=???x????i?&??I?]6?????q?????\Uy9B?V?v1??? o)bGBx???/?/~?c?a???4W_??cd|??*?_?O???????}??I?+??e??2????_P????%??w?`? ??H=Vb@??|??? 8?4y)?U|;v??h???H>`???????"???#????? ??o?|?'??(}H??IX4?T`?=)X?e?n???? "???\?V?m ?'??-??\e????VO??Hm>Y????Hw?3?>?L???????? ??McW??G9??}>??|d????K?K??xm??L\yi?????y?????????????G?u????9^???Sz????g?_?i??>@qgw????Dq?:k??7/?>!i??$?3\?@?9?;c?q?|S/?<}??K ?????*v&?????> ????[?<0????????8z^?????7??? |G??????A??v??????Z??gG?8?? W?b??O?'???g??R???lv??~ ??e????\]k??'?O?2\??]?\'?Q??u7? ?O??????:J4????Da??zqU??4??WK??Q?-??0??)??[?ZW?Or#??????S????DxoW???7A?(m4?????ry ??T??7??cK?P???LUY????/?!???x?????{???.? ???]??fBU?r???f?> |o??M???6?K????v??_?rAQ?t????c?b?P??J?J3rj?/?c?l<3o???zu???SN?Y?W?@?eh>-?'??#?]??l?G??6??q????????"??????I??D?bs?u??^????_???????U????m???H??v?v?MU?*??Vrr????????~??^"?????gm?? &y???{i1?VE??C?r??f? ?m?$c??;?O?????x:?{??2????V??|?sq?Mh?=?W?c(T?9U?s?????Ldx5?~???f?????O ??"?!?o???&?Ng??=?????5W?h??9i?????U?xH??X?u6???(?????YOFFs]?>!??e?i7???r???h?Uv????z?C?o?????????????V ????2?J-r+???gJ?\=??'??????? o$%5?????I??r????,|k??]B?F??o??????`I?+??o???/??OEiM??W?0q?(YN ????O +Z?????5?????????_U ??b?????M~??h3&???Q?@?dKt#P?d??[jI?o ??@?RI??w?zv??j????n?Cf??Y???z}+???w???*???ic?U?dc?c?????7M?c??,i?~?????u,rd]????|?k3?v? d??7 ??? ?????Z~???? ??-?m?!c??9?_*|A?7?x;S6?i$???]?rYZ?x??N??7????????W???|??{???n`?]N ??????5?n???H?M?W ???-#(??K???:U??+?y????e?.Y?? ??|??O??????ZK?????+?u+p`????W???~o208*E ?_?W^?????j? ???????Y????q?5??s???'???G??+hIY ??Z,? ^T?"\9W?M3??\?<=v.4??-??M?q???W????o??i??wX\??m?B????W?l??Mq?_??K???l?`v?dM?$?+P?;?5=GN?p??m?T??????o?????,?OH?|???Zd??'?~???Wo??nR??[8?????'??6+?5/???\?  -???I,8?8 ?>???~???\????}????#2????3?5????????1?q???y?D??U%?6??E???^?&????:]r?Px???1?m ???^0k?o?[\?J?csku???????Fr  oxS????1??_E??f????&??????? ??\UA:sM???b!;T???e?'???1p?:?&????!$}??f?N6??!v? ??zW??G??????]????(O?????S?x? ?d_8aNI?Q_?fP?_:?????H*TTlz,???f?*D?:c=j??5???;~fR?pA??5??>;[??F?0VF:?????[???^???????o No???o&?$ZM???D1?(??lW??????6??2??O?uc???Q??????? ?F<?3k?Nuf??V?????nA?????????x??2_?g?|x?7?m????<3? ??5m0????R?????f?&???e???M?V?????_jRmg?? ???^???P|w?-u?,?)???????g?0I?]E????{_???k6??7$6????i?&??????X^?O'????~??u+?WQ?????P???G?^???Z???u?_?K??^???????I????????2?]???????? ?k??????4M K?6? ?4?,?b???-?M?b?-?sG?A???c?inI??X???^@5?A,?h??ns??PR`????:?????????]????????????W??4=7@?=????e??Z???(_?i??\??'?Yd\??~`W??d?7???????{D?M??C?????}??y?0???l???)'^?;Wg?|????-???5???{????Z2??%??1\???R?4?<$?[[???X???]T?N;??k?~?P?_??}V?b????S??\?????}|G}s?+?l???!m??+'r2z??V???'[lzt??N?R????i?E??mc9??  >???*???=?WW{??????U5??H?5?$nA? ?????'e????-???[14??c;~??)?f?????5mV?;X?C????%??5?1?8?????W???.??k:?????Jc??\I?a@?#`R5?h_ ~k? s?i?%???$?????? ??:??????x????>????????Kn?I??< yi{? ?t?6??? ?????IbbPn??m?;?????e{h?????b???????x????{?]X???wl?D????g??7k[gr&y:???ZTU:J?Gn????g????^?ZK?|?r?1????i????"@ ???z?????o ?C??+=?^??F??2?Um??f??g?/#?g8?K/???T?N?9?????(?t?U??? {`??g??]GO??m???6?U????U??? ???=????tVEU?}o?V?K??edm?M+|??voJ?P???j??L?????LP???Q?zk??m^? !?in??G???4n????y????Z?=.=I??-??(?AoJ#*??R???????e??H?[{?5?4????B??;?+}????+?Nt??c???|{?,?G??\??b???]??????4????????(???X??H???]l??KxSD?F??$?n??=??}kY??k/?????????u???d?A???"??E6]1?[?GBi??$???X??,?Xn?????l??(_i??~e??+K4??F??????????)<2f???{??????!?Q??gQ??Ni?^J??|?????j?:=??lf??H9???v?'*??W qQ????WgS?M????{x??SHl?????t?o?!h??R??.#?\H4? -?s?????jo?\Y????4?????fP2?z??K???q??Q?z\???k???@??(/?????????q?Xz%???[?ZX?|G,??%??Bz??????M> ????????GRHn????QH?[#?)nR?D??????`? ???n:u?Ag8?m'fy????5?~'?????x~???M{h?#+ :????? ?8]Y\C1_?????R|?mBk+Ml?o???:?9=????kj?o ?w?r?0N??K???1???1q?'??????????????%??????} ???8?H?^{?n????P??K???@????O$c??????>???_??3???? ???^??????W?z????'??Q??U??uI??`H#??????????MR?8b?+??I@?n+??u}?k????=??8???&?'????[M6??3`7???7c?^??o?x???>???? ?ld??I ???????^;??K??|I??$G??B?`x.?#]??K?'????C?i??si*?2?1=?X?tcRQ???-?(BQZ?B?|)???B?w?????#Y?jI??>??:???????=C???#?4????I?????-???%\?+!W??????m?H??0c??K]C???m@]???g?RA^y.??N?????J? ????{?Q]?*J??4?^ri%????]??G?????,??+?X??d??=??|S???%?r??@\??*?@?c?+???wc?????B????I??*'??FHu??Z?????VWwv?=????RW&[????H????t ??>X??T?JV??^g?W?F8X(G?8??c?sC????????,???g? ?w?|C??XZ?\?ouk*M ?a?r}??????.#???? ?R_????j[?H?????|??~?F?????&Q????6{z?G?}r??IrKS???pMI]??Z?t???! ??;??n???e6?4QkZ?QM5?2!l?xz??<???C??Te9??4?O![?;??q?/??m????????Mu$??a[H??b?^LG?d??????_/O??N?i4?w(????Z????=NK??a, r??a(??KM????k?? O5?a?Bx???X???NdvPY??????O??:??Xy|Qh?3T?]PYL??(?yl?ko?B????W&??T??FV??xb?2?P9_Z??????U???????I???c??c?N?V???W??7?s?o_% (c?x??b??:???M?g?Z???a?5?-?q??Q??r ????W ?4?i??n?Z!??X>???????i????1?7??@W????T`?????|?Ki?Bi???j~?-c?Db??u?q????b??OF?k???9?7?|=?????)?#?\???x/?t???R?km\??%?Isv%1?U??rZO?+?????2??{??*??F3???]n????:?]?6?cV!,???A??s?U/?'Tk???#:-?v=?x?'hH???yR?~???_;?e?????????"?????q?g??#??????=?\???????}ki|G??P?q%?-l?E ? ??????c*?T??zzF?6?w???h~#x??O????`?sZ?N??&?????z?"?????[??mD=?:??I?X.???+?^,?p3???j??wFw?m??/?"A?0=??K?PZN??'F????y??x?6?s!?y.????W???2? #?F+???g ??_?H?&?;?2{??RDK??a?5N???????9P???_+??s?N?U?4???V ??F?* %??5????p???v?z5?k{u)y??????U`???V?[]x{T?U\??????h???xJ?-??E?I)?`?a?? 1?&???L?e?U?~1?C????0k?T??[O??F?????????4g?????-)Y???????'???W????t?I??j?\?q??Z?_?w?????????%?u?(??%??$?:|?'?vZ???D?l5? h?#?_????f??[[????\?????}kKmo?;?H?[??[w?Ns??X?~?^??\?v?y?2?+?^??????c????lb??,?? q?|g??[?j?w+?????+????????^?H?a?'F;?GL0??????[?mS?z????? ?,V??!?'9??????.?) ??,*?@?CFs?:U??h/?v???x???0?h?T??? ??ag????g??????*??C?n??&????\?j???;HH? ???5??????\????e??B??????+R??< l??w?CB????W????????_ ??W_q?????/?_?????K????c???>7??"?]?? 5??7???1?w.?N ???:???/X[??5 ????*?r??#hT~??t?wO?!?[]?^$5????|?34?Vnt???K[??2?C?q?o??`????k3u?E~?T?.?????^??xs????n??ysgyn"|=??6K ?\???oA????v???Xh?^).2??c?G?+?G???=??u M??B???g?z???Sh?u??, ?Zj<1??5?wC???8???0???(?p??t~o??_ RP?=??|?{?7?????? [???: ???6??? l????????w?j??VZn?-????6???X?=???:???V????x?ma???"-??#?7\????%?kQ-??5=;?Y%?KD?8??Aq?+?5?????????M^?V??????z?????v4?1?i,?s\????g??ZG?|g{h ??jH???????5??^??Z-:&???V?6d+?M{??k??^?6???D*A?g?\?c^F'?N.?Tw??g?1?????r?L?T[h?TM#????qRI??6???G&?l?A???k7?rxbK???Wi p???~g?q?u?x??]I?????ZNM??k????i?5%C?a??l??W????_ mln??????[?L~U?|????|cg1F-??#9U???sT? B;yD??(?X??? ?????{??+*?nci? ???+?:8???.???j?N??{~??\????oa(b???@??5????N??j?W?????8Ys??w? E?????{?c>V?gm~6?`???y7???_5'??y???G<8? GQ?_?U???????t?;?: O^????b? ??\? ??{o???];R?l??,????_8j^0????? ??? ?????E}???????-?????9?? ??5??R?$????|?m??V?[????BN>???n?OJ?E???????_????ku??@4????bs??x????3????z?????????Q???Pk????R E?5z?')"??? ??CH??\l?s??@????=?&s-?????2??q?W_e??;?=r?n_??zc?W=?Z ?N?6;?U?z ?f?i>~?? ,>i?Z? ?jw??3??]??Z??W?#??????I??@?,??w?dF\??s^??F?>???ui???b???( g??????<?=????????I???Q?"@??{??????_u???Y?5??_1?D?;v??XE?ss[??gU?8?{Z??#??????' ???????z?~%x^x4?-o? ?]??C?^A?O??5;?"?<?]?.>T?;N~??O????>??z??t??1v?4???O:L???M)Ft??b?ju=??~~???z?????*?Z;?9?.9???=?? ??H#??5???_G???????WV?$$,?p2+??E????@A?J 3?rG?9?j2???4?o*+???,q;u???;?vv???"??Inz??:,?????{C??k????>u????0+ ahT~??tS?1T??F{???[??Z???l?+? ?Xy?%?c??kvO??t?????j???`??>?????????u??jD?;Kt??q??????X>/?M??$????? '$?W?_?_4z?1???Q???????r+??x8??ae?e`=A??t???J????FX?R ????`W?>&?>Zj?C6?f??!??b9`9????L?~x?S?,t??\Eg&???1? ?@???|?+??g????#?-l? E?????v"r??8??~?????wpc????????#??????7??qq-????3?????????????W?k??_??t-*y?Gee?M?C T??u??+?o?E5????O |)??mO?t????d?????Q???? ???????? ?X?f?,??z??????s{.?W?xgm???P}9?G?#\??WZ???wm'????=???R???,??b?WXd}'u???"+_?? N&?^D? 8????7?v????????????~=?5?????t?o?????_4???????~?^#????????wc????%=?9?F+?8h??????W???ou6?????B??=W?q???????X??????b!??r?|??~?>6?l??b??"Ab?&???_h?? ?????EL???+G?????1???T??R?>??>0?)?V?????Y???bH!P??9$?:?C???Qh?&?,??????X`d????|9????j1?qt????2????9##????:??g???.m?)y??w?????FM z???=Z???O??<???f??m??+?(? (???&??5?KRsme?<2??Vr$?"?v:?xDS?d??a].?Wiw?????8??????<%?j?7??J??????$>k?9???p?????J???????8#?????1yf????8????8??k???_Z?1k6:????H&??)z??0??s??????c?????qw4J!0?W As??l?%????K??/ock1/? #>F?? 2?\??Yk_ ????? ??????r ????#?KmkX}. /K?}?X???2!?u??}?? ??R??5R:\??M>?P?F}"?????1?t???2 z????x?]?w??a???P?!??^???%Rd?????x??????.zu??&?/ ?U?o=????J?mB???!?:?_???v,?&?.NI?:?TW??_??>???????[?zu?[7?n?'?>??r??B?yf?p??6?????R???[/uO???? ??O??????R??????67:???l ?(??????t P?E?[>???my?i ??k?9m9$??G_??N?A+?f|[???|N???3???^?~????}20+??x?[??????G??j???????brs?=???W????H???????Z??????G????d?????S?a??N?s??[??ti????k????J???u?u? ??`F????~1?b??o?`l?a???G?Tm?,???????-????9?I????$???q?3?Qm?????J?_?M???=xI?Y(.??d<^E;?????Zg???y?[?N?oq??~h???W?????z}????? ? j?P?]M?F??g??ZP??K?N.I??>)??qe?????h??3??W????????tk?Z+zi??2?nrN0?A_G???T?????;????@$?d???~}||? MFa2d\c?zW?M:?\??jIRO???7??]*v??&????Jwns?]???j{?&?k?z?p?{`?????k4fv??5??]??$3j?s"?^-?)##5?}J???dq?S?>?????a???R?k?-?'Y?~? ?????v? ?/????"??K???L?:|????O?9???x??,?t?>k?2?V?Z%i???}??r:u??t????y?a????w????r?^?g????8?????(R?IE9?x???B???"??(-|E&???-2?????~Yj?D?Y?#r????i????0??Q??t?p?N'??7O1????????,?X/???????W??????h?Zj?????vN??????z+?>n??Yz?????E??|5?@.?????`?V???>hV?;?p ?V?&?kA?-??67K{e??a?i? ? /??^?????6???e??nw???Y6????]KH?g????B?.~??m?????i)T?T??u?~??e??iQo??2??? !??????G?c0????????????k???????f??z?E??c=??? %??????x??>3???~!???? &??W?]??)`%_U?O?[??0???Ru$?3?????????i?????????d????v??}k??h}G^??@H??.-????M?~l???v??sH??u?f????S???:?????Caa|?6(??k???AZ??=??*M???]? ?????GT}"hT?????:?_k???{mQt?JH/?? ?k???????j? _ j?j??????I)e??;O???=Fk???m??D?&~?j??V8=??3^>#,?:??{?K????F?iY?O??????s????k?? ???? ??s??zW?=???7????N?M?>??2 ??????????.?#???J0cV???8-?]o?K??A+Iut?;I-$b???????`q??:3?)???p?1????e ?'U??H.??M&?G\??M??V???Ox???"?u?6?{ ???t?$d?????\???7?? xl?y??p?#?H~??IB?????+?#???????,??m??h?7(?_YW*??????h??*ugkl}5???s??p??^G[????!??D??{o?:??m??XO`??e?F\??E>??o??!xWQ?m?K????????X??FG???kB +?T????i$ ????w??,w?"?YM;??????^??{????-??,:??????3W??=???[B?/?#+[??%?~?N2??1???g??7?e:v.?,.?gu?????? ???K)n??>?????@#?b????qK??zrh??&N x?ZZCo?=Z???+[@??s_?S?7?A?????V?I#??(F???9???h?'?????c?#??|R?4???A+?????U??????????cq?j6??R??b>??G G5???L??.??:???z??+?????K?????w?X??????? ??r?/????5M????????<???????0"???????9??|w???uc???Db?? ??????QC?a?Wm?t7??V:|?k?L9V.????W[?R??O?????Yfv???g"???~&???M???u ?? ?A??c/??_b?-213??`|????>???n1|??n?}????fm?????s????X??J??]n?m=>\???4???s[j??_c?t???W?|/???3`?;N???#*?????????f?0??????W??/?| ?DN??d;?%??!??_?w;?????F? ;aw????~???? b}??;?o??y?P$;??|??U????`????????'????????[????C%???YRk?????[???|???????sw,????x??????6)nF?^8?C???x?????^?? Kmk}w,?V?-?N?J?e??t?Q??q?u?R????i'?????|?$??y???j???>I??f?k???v?????p?\??Y???s?@?????F?????Ko#s?7????n?os?8?Y????i?6:???p??)??k???.v?pqv?}???????????MO??Q@?g????M?s_y4}??W????~??|35?????????e8???(mQ??^>??/?F?~??_?v/?>????uese??*????Ca??O?Z?z???Eo&$C???@??Co????K?? p%%7W?|?mu??m*X\X????v?7???????WZf??9?1E?? ??(OBqK?/bW?{?|V?#?|6[]GQ??????hd_?P?]??|I?7?i??"?s};????????????????|@??uI?"??;a??????h?j?>$_x.??t?e???/?B??c#??Q????s???yk??H???E?xo???K????$?2H}I?.???Y?????1?H?????x?k?X?TyC?????ad?????e?????????/????$??????????? #?????wy??????mN?>HN?uw??bd????W????9???? xG?Z??Q[j???"??=?v0A??W??q\xs? v??.?qp?n??7 ??????????????V qr? d ;???????Z??? ?=??Z??????)???F??ka:D^Hmm#?)????g?????i??T???v?? ?c???mtTKX?q???0~ zf????_?,????]???0??s??},R?Q?t?'k?} ?*x?S????3????}??h?J?E???A#G???|???????-_??????dK???????J??]?L?EW??=+?u?[ S?????e??1?b+?????1?_Xmh}1?(??B?4V?E??[???UK?'???/~??W???'s?n?nH>?pk?;??&???<.?h??S?g??????3?#?6???n?%P#?uW??3_!??q1??aj?>????i:J?h\?????L=j?I??S\i???n_?C_Q??2??[?G?????-?mi??c??w?@5?o?'?????KO?^??????a??,{?? f????a?x?X?/??r?d??s?'?s??]??u????8?^????s???? ??H ?-?4????#$??k????j?[y?g?F$m? ?3??d$?rG|v???^???<??4?#1H~b`???PEv????dVF????5?]?J?????????1?J?0?5?S????????N??????q??I$???S??^?????V+????{=*?;u ???????u=@??O??R???Q[???x?????????M$U?b?SX??9?3?\t?g]?? mhr3?2?????a? ????q?z?N??E??P?K}?=??1??*??NP?t6??w?k????>??Zc??+????K????$-???v??<\x????N?Zi??G8?S^[??qz??%c?G9??W??????%?! ??9?5?????? ?????ZT??U? ??s?????m??v????&??f(?????#?]??mu?|?#?o!?????D??(??W*s??$Lg?>??{?-!b ?_??9E??c???kCW?]???????D??2??d?O???{(???|?'e`???>???t)?N???????%??HG???, ??k)?h??>|a?|1?f?G????L?/&??X!??m???(???{?v?9+x?IT?????I??6???4?!]R?uI??m?????Xh?? b?b1?????MS\?X?/?Fp6??????J?s? ????5?h?66z<?q??#s??oJ????[=O??/?tM=2??1?????????y?W?@e??a?z??d)M?s???'????o??????K?,3?dW??$??????f?J?S??(q??`???'?[??bF?n$???_`|n?f???I??=@Y???S!?c???}Qr????:????g-S????p?gN??!?8?S??o?^i?C??Y??r{W?~????|;???U????4?nc?A_'k7??^O%???????????II?m????{8?????W??$???}j????????y?f???7^??(\??E??u_??v???x??o????9=??cS??N?L?j2l?? ?? r???^????IgJ???zdt?*?yRXq?^???LL??o7??!????-?q??????? w`qN?EsR??X/??-?????5J+9u=H?V|???d?I?=?[?U?w?????? pr??U?_C??I?D?????????y??VW????[??E6???}??c?W??;????]h:??N??#??x#5?F??z?U???E?O?N???D[???a??V???W????0D?` ??? ????R4???'??v^?^?C?it????O??X?K???z??ee?E t??^J?C?1??*??,?*yX ??U??e??# ??^+?+jq?\?b?4????y'????53???? w??T1;?F>F`?J??8???|S??x????S?V??r3?#???????;??'?3 .8?o??9?wZ??\?x????A {W?V#?????? ? ??.?? ?????I???R?;? +?5@[????D?!? ???=??r_??*?w?e?????????[R??jWm{(c$C??Oh??S??4??cH?? ??m2??]???v??????"???$?????? ?-6????6??0??5??I? ??? ? ??/jk??1m? q??*?????????-Rr?(?L??????2??O?3?r\??Y/B????K? |?g??Q@??]y??A????_[h?7?f?5-????????n????'??"??O??T.N>a????|5???? ?~?i?,????????;????ls_Y??U????Ny?????yQ?}j???#???6"~??u??j?4??6????d?X??%???G??P????n'g2 ?????q<????V;?h#???ZI?kl~?|?C???????Z?^?Q? ???'?????]??????????i?N??????????=??_??~:?@?!zf???=????v??M???]???o??>&?????}8?6??6????%&?:i??V}q?b?z??????hn|M4{R(?>_l?LW???O??s_?;M??Ij?lQ??'u??? \????N?w??_C?3G????U?e<H?W?]?~x?J????yl????? ?8???_?G?:P??????]>?"?_*(?9?d???[X??*?T?SrX?,???? X?U?[{??w.???????m???tX.,54?V?y2Z+??1?F:t?y?E#??I??2??4???ol?$?y?kl9=?????r???xZ?????r?1??O?+?|????_>%v?A??HD?~\??95?/?Eam?|?K??? ?;3s???????E:?U???S? ?|????oX?9?Ij>? j???)??j?i???? fX|?L??N?(????m?#&?oc??m%?????????h???P????&?,?\=??29 ???3?"?;?/??x????,4??Yg?;C??'?s??????^??>0??5#y?-??Y?~U?J?? ??jb+s???.?)?p????2v??V???'??4b??F??-??????j?M????}???h)\ub??I)?S??%???V??d??q????M????<;???Y?@YB??????wg??(?#w??=?|s?9?MwP?U?wH??Y??????\???I?oQ?]s????\?????%s???^?kxm????q?|z?s???T?????R????8?????n?????,o<#w?Kn????p`|??C?x?????!?x?L???tKk?>u ?r???g?lA??y????\???(?>???W???_?u'??NE@#%??)~?~?.<1s?Y??Gl???????_?????u+?Y?.??????`???O?_??F?:??$??????UxiJ>????Q??[?/???%????r??n??P?k??/??a} y??VG?B???????[ |?T 5?x?Gg?????#?`?>????? :?b??Tk???lc-??)F[9m???cS?G ??97)?G??????c?d???? ??x??X????h?{I?)?4m????U??? ???;q.??82*???>??Msqy$:??p??+?3Wh?h?h?qs L @????????|E?{?? ???????M ????J??nT+Cdc???Q??o??w?x??q?;f }??>????nM#???=??dh?C?h?-MiTG?4~[?????]R]+9????K???9????k?7w??f???$N????s?A?v?????~ OYi?O|????PHa_C??q?O#J??(???????//??U g???J??????+B?<;?.???$????}y???Hf????p%??B???W1?x{\????lE?Q???L?E??I?[-???X??z????6?q??s|?6fKt?I??j?nX?\?|?rrjT??y3n?9_,????:c????\?j? u?XA???r"???????n?A?~???j??[?%???.?^?? t??r??{m)R;??+$a??Z? UU?c/3? G???%???7@??????h?]?\ya???![??xw?M?j yc?gI??`? ?w? ?t??-F?Q?????$?$?[?o5????D?lEp???u??NU}??????Nh??>f???i?????K"L??1?\??n?.?)IQ???mKT????d?73l?????+H??|Cx,l?2?U#???^?4??3?*??-?[R???? ???/????^??g????|]k*Z4??M?B???zt???????????k?? ?????Xd?_??????Eit?[?.?W?Q?????Fz??Z?Q?^????c???S????u?B?8?mA4?In??'?L ?????bk^5??>??6>?/?F???{?E?j?3????<??????]Ey?k(???fA??????????=bl?????? I???'?????;?Q?I?)#?oo???f?N@/?f?E??v?H?HcRI?_?>x??sZ&??j'?YD ??$:W???c????n?G=?P?K< ?yr?]????????W+?s?1????dob???/????F#????=+???K? ???:???h??????/????k97-??N)n|?s`?q-???_???tVf?"?)*??5??_????+????'xn????+?9??o?!? ?f???????f?`9?? ?S?5r??|?w??? S*?dLva?W??[kkXQa????????k???????-=??????[?#?4qF?}??&?n|K?d?:7?=(???Z?Y3?@l?S?2?????p[??"e????H<?=v?????WPv8_?Y???Z??C???o.~??|;???cQ?????eV&???? ?7???F??????{??M??&??>?q??u??t?%p?K?u??????????4Oa??X???yh??8?hW?|0??i????V??cZ ??Up?U5R???Q???????????di?RFJ?y=z?j?????j????? y?g[?J(?? ?3X9d#??[?~??~'???Q?$k??w??ab?/j??zyY\?{so,s(?p??#????6???`pn??[V??J-? ??e2G?I?>???Is!v?W????v8??t>1????????Z??y?`????? ???t??kH??ifgRA?'????4eOM?j{????y?|???U????"? ?_"V+???`=??kw??;u9R?liC?9?X?S???|??S??q?E????V??M?K[FF?s??T???? ? ??g@q,Cht?R?jp??&??????9|????*?ln?{ ?????>2??????I9??d?~n????(u ??#??P??????o'?6*?9?????V?Cb%??E??_,L?x??j???WH??????.??????/???P???Gg0 ?9Fs??5?I??\?F?: ????????5X ??n???v?BjO | ??4 ??5?:??6?8G?????\u??6???????CF?-???= ?^?????>??S? ??8k??l?????????9??+?????f??????c?V??i?=???d???????o??!???s?'\Da?????j^?/?>??%?_????*Kn?S?9?'?v?}??i??\?%?f?Y???z7??(f???Os?\;G?Sv?????????+ZuA????????y?k??????I?T??4r{g??5?k??ZlWV?Imm?i?I?/? ????0?_???????p?m?cvzp w??*?????4xs SB?????+c??J?? ~?9?????kH^i>'k?7m??9??c>??|E?L????D#???????wI??%?t?!??-t?u?4?k???q?y???t??d??_ w?-?_?n???:??????'?}*wi????5??g??Ez??????????o5??l?Z???Kk??y??[c?? u??7??V/>F????p?????\T??\4??j(??Zw ??A?+?u)?#?o???? ?b?,cC?r????U?8_??q?U)?#??|4????$:t?7?@'????/?^???kU?????I?X,?(?????C?x???C??:;?-?-4?YM o?$=x????k?t[o? ??????S?w$F?t=?q]X?B?Z?aB??c??o??{?`Z^,?6?? ???'??????o???Z??????@?2I?=?????#.????o???"?a?x?gl???5?? ??????Fm??_4?=Zso????rg???t "????`?o??p??n8%??u????o??'G????e?|?7??????kN=k?V??t?????s????=?R????j? ,uYm?? /5{A?}?}??;?(P??-??? -??????%x??V?G?????&???~$??????0*??4??????j????V??v?or? r9j?}fnm??q>????? ?a????KC??? ?? ?????O?Vn4??ih?2?9x>N????XI??W??qsf?$" w?c`? ????NFo5?A0??????$!]D?G??2 ???pn~?.????????V????????bp 6?8??kmnRQs#>??=?2??????J?#!?????/???@*G?JXeW????6?GN??Z?:????????[??n?????X????????VZU???[]??Y????(\?-???N?a}??.e??{??fnI?????J?b????.x???L????>?o?f=??8??=O?????$c?wp\??????'QEH??5 S??I??a???????w?t?up?EX????#????o?g???4??D???(F???z?~+i??L7Z???}???n?????????y7? h?^????? u ???c?I:rZ??U?R??s??N{?_Myk#Ie?f?'%????i?"??K???A??2M??Q????j??k5??9fx? DO???????lth?|?T?\y????u# }k?r???U>????l?;???oc??ZxZ{?'i?? ???????$????|????G??j???i??????,?????????N?m&??O=??????e#??s_S??>{??0x??P??ExN?wf??/G?E?????????????????6?{sa??|?q?j????'??jt#y??????Y??????!K}?G?Risjz?y4?,0 ?gqp~?????G?3[?=? ^??7Oogi*? ??????J???????????ws???c?????? 2??.???*>?Rg????{??'?{}:?G?M??\!]??? {??Y?p\??A%?????IGL?s]W??|8???+? ?k????_^l?i??????R?+q?f?<#??x??)?n??j?????M}q-???U1?????%???"'?F J??V???x??&[b\N??????E???????h??,???%N7'??C^?????'??Ci????????Rj&?KX?)?,[??????>??|?m3Zi????w?j`?,Lyg??_*???X't?????Kh????????????fa???M{\?i??;?v;k?? F????E?O?????h??-o&????? z ???{??o???????%??v?-? ?'?^px?/?k????.r??v????-a?K??:e????(????%6??7?e>^Xg?=h???!?????ZYj:}??usl?????c??? #h??]q??????y??n???(C??b?|I??????h?^K{q)?_??R?E?Mo?z?k??F^?????u???d????Z?Il?h?r?(????.??2G??j?h???.??W?z??[}cQ?-???-???$?#????,\????????:??u ?S5?????q??]^??x??_i?i??N?5??*??q?Ubcy????`????4 ?I?^?z???!o:M>D???*??>?y???e????? ???8?}=?=n?8/P???i?}c??W?Xg???*??????\]?:CD?????e?2????=?rKW???O7?>4xbQ?S???K???o?^???>??????Fd???`????3??& ??5t??]g?+T$??E3QW????3?~vR01M????*?`?(n?zn???4?1?liq???]+??????:w^c???o9??qYZ????%? ? ?7(???{? e_???& ???V????kv?N???l?IPq???r??i????q%??92?????k?4~u?I??????A?? ?????dh?oJ????tK).nn ?dt?PAb???p?oy?????Xh????58?? ?8??????G?w???uQ~a??W??hn'S$*r?J??????t 20????p?T?z W?B:KTj????^=?e?????8?H?!?9v?????5???????NX? $???->*?????g?]:?_?????????Q?]'??wSA7??"????{?`?????????????l??$?[m Y?'?>U?W?oNu??i?c??"?s???9=?\???^?D???d{??H?Ib?????W?????????Ic;?F??=s^?9iS?"?Di7?3?~??i~#??i???m????T?j?3?^???????????&nZG?}9??r???G,???n???>?G???~???r???????|g?N|?<1???Q%?X?*c????v?F????=??I??V?????j???W???7??eBFGun????]???amndR???F^???EE???? ?t? |=????i??*??+????+?dA???O?ZE??jb??????*???pPg?????? ???o0???->????/?$?T?n?&?O=?b?UZ?? ?2IKB[?????h?m?G}y?????-O?b???!??J?$??y??? ??t?_I?-??Y??&?jc???Nz?kw??????GR??5x?n?fo.s?,???C??[????????zU??\?r?L??+?@a?? 8>??:????D?zf????4?????x??M?????L?r}?1????5??+E??]?????,???/ ???Y?^????V?X??Cr??r????O?i?~?@?~??0??e????V?w????*<?k???/ ?O???o?????}U?5"???X?lxq??;????+???k%????%??)??TW???G?2{??W)??????h?T????IAst??RD????????'?-Ya???%?????????_?5==n?? j???????Z?:??Iyp???U?kx????y??v?6??p{*QI9j?~?Rx;?? ???3????kzM????I7#??=Ep??o??T???m.?x" p!!@?=?J?k???:c^v???^??n???-!bx??:W?|C??t?j:M????f#?uV?;9#??Vu6h???:??????-?9/'E3\????g ?;???7???meo??,.K ??9?????z???RO???3>??8$?Jf??Y?G?}?t?????1(?LW?*?v?{??8;?`?? ???????8? a?9????Z}????{4?1????2??x?????u)e?a=??3? ?^???#????3$R"&9?A?+??1??8???N1?9???x??Zx??Y??O(?????????o?[??,a?`$X?C??? ?[~??9????????J??v?\[?4I?BI ;??mm??|?,?????h??????5???M?[&?6?E?? 4?2?:u?]L???????!?;,f6??p?LU9T?;?;(?4??????"???*?m?????#?^?B?m?????Yh???}5/?KV????8????\????????A?A5??n?`?X? {?+????????w??]h?y?KF?? ??d???n????n??Ob??5????V?("?g,jSa@???[?????y??R?M?C#Z???!??????????u{???K.?z??&??)3?@?????MMc^?m??a??%? ?d??v??{? ??w??b??v??d?:O??5??][????&?v@"?+???3??$??????.?,??^??0iO??????i?Gh??? ?H?m={s?W??+?????>??yam?y??}?Q??b0??z?????%X?g??#??>5x??????$Q>Dw6? ?c?R'??wo?6??(?O?S??^?????}:8?}.:?????\O? ??w?H??=6X??6??[???b(C??r}???????S???Hn???????+?\W?mz?w?????*?S????? [????/???????? ?7???,|?????"???^??\iZ??Z?m??+?r9??~hx??/??L? ???y2r?? ?{W????f7Z?}N?????????x?W??Z????'?A?1??/?g?4ms@?M??w??S4?F>??LW?~??^?n&?mDL O*??8bL???p??$WM??? ???w?o? ?U?cj|?l??r??????? ?w w??????-rF????^A?G!???9???2?);A???J?????x?RK3?@?s?????U??+W??kY?Q??8??B?$1?<???)??Y}y9.vt??%???o?0????;q??J?????g????B$E\ar+???gT?Qv[ C???h??Fz?A???????Sj~1\[????.UN;??)?q0?JO?=*SU0???????K??}em??,??g?>??9-t;M???%?*?U????a???u B?Kr?Q???2???z?<?????[?n2?z[*!B}wW??R???????????????!x??\??>'&???Ym?2??1o?$????\??????HBt?r??m@?????0???,???G??S??;\[??????t21?u'= ??????pG???? F?N?v???zU?????????$c?pW8??U?/1??P?5???xV?{????F?PdB???_?Z0?P?M,M??H?.fa?I??y?????????-t?ic??whUq?y?;?CT?????d?y&xe????8????`?!?&??4?>??KI?????L??Vz F???7 }?F??????????qmo ???????3??bO??k[)?Mgx2??? ?4d?????/3??????%8??~?????tux#F?D? ?!?1=1? ??<?>?3???sp&a????qV[Mv?? ???S{?l??1????h? ???b?2e??6????r+h??Ynp:0Z???o ?I????Z d??A7?q6?d8? ?-??????ak???? ??X??9?|,???/V5f?#?#?b,j????Eq?a???TW??y\?w=???Vv?e????![?????????[?v? ?H??? `????e???+???T?g? ?? $?#?W??.G???? ????@ I?NT?W?ci?U??>?>t?"?????:?i??B?Sl??????????^?1?XZ??4?M?????m?c?_?Xdr3????z???t???????4$Y#????z??j?m??U??#?U?bM?#=??E? ?"????z47?E??????R;???%?f5 ??????+{iwX???`R?0??u?????T??l?????????~ ?? ?????*??,No??W?u???\x {?e??Y?r;t?u???t?|J?4X??X???u?X?? +_?j????< ?M*?x-$ u?[?F\r3?_?p?d?vW??ONS??kh{'????e????.?=???&F?????Vy?? ??????-)!?W?v|U?[???OM}9'? ?c"?_???};?'??LjDv?~?I?5?4?^???g?:z??k?/j^%?:f?i8BQp?'???????????fK?;].??w};V??? x??~??Os ????????H?F?n^?O?Q%???h??!??B?49?-E}my???-Oh?uHF?q#?d?,???????? ?|/6'????????;????F?`B?%?z?z?#??*??g?G14Qm?:?k???W?Q????:?Er?\???E?????=??6?H0T??pj????G?:?y???? ?????CO????6?a??Cr?pv?Tw???Y#??|;y????????SR?+E?z T???&t??h?(?5 %O"E n?|?????????iz#?H?@7?c???'??.?K3\^??j $??6????m5???o?? ?{??7?Aa?N)zb1??)?Zl???X?{??\y?B???V?e??!f????2E I???=????????&Pz? u5????wQ? ;?????&',z?2x?(ex?{U???kTz??ABR????????\?/?;??)?_?????e?)m???605?!?j?, o?w??~C??l???????????????m?????K{9??C+#y?4 %#?????:??r?.x??/??????f?v???Xuj? ?t?tra??I?????O???l?R>?F???S?????Q??$??????K)?????r!?$ S$1??*??f???-?V??Q?Tx??V?]??*??????z???>??@Z'?9?(?.:??????h?-?E6?a.?bc?\u?Ju!w= {R?:???]?jKV???#,??"??=?????1X\?JB????rO?\?)?R??Q?[y??5?y??Ot???yK????z??A%?$|??i???B?????????[?Y- U??#???$???N?????.$h???ErA?NI??_@~?ii???N"??|ya??F?^???v???[?]1n>F??q???~y??]??[??E??N??gq?F??U??h??//H?c?EV Fq???3?m? 8-???E)????an>??K?b?4?5??s<9?X>???te???q??;U-????g?6t{ ????x?x?m??6_?l>?E????3??en?F,2y?{=????U??2?0????Q?Ozd?0???K-:9?@?F?c(x?V????6L?????!???i????L???-??u9?i???/??R$?~eu??5????Sn?XirM????;?????@???? ????t}s??x???????+-n?)??QL??'??#?\w????N??????I,??,"?nUHeLQZ?x????%?9Ac ??>o*o7?sG??td?oJ?????n?J??G?[???H?}??;P@??Y?`????I-t?XH??a?A[#?z?r]E??d???0???\sn+Z????)??y????9???[Y??p?d?Vf??k?Hd7??zL????x?????YOr?v?,*????;C??:?"Zil"]?????4?~UobK?I+??5????j6m?? ?z`?'?1????I??????o??2?S??5????})d? ??????OBq\????Y?????4;??t???{q?9m???b?r???D?????u? ?:??Z??7??.'IC?r$dI?y?L???i^ ????M??-?s? ???q7??SM3?zT?q6?R;??>??X?w? u*?_`??fp ns?????~n0???y#?(?6_h?~???M?\??/D??fy??x#n?c????bYJ???-???ov?'`7(?L???W???&?D;O?#pO??]????/h7 :v?????=:M???=[D? >'8?K??3??q?p^ ???M?[F"G??@N?????+?2????????f???if?1?L????qW??k??M=?rJa????+???>u?/j?r?~??+v????lhG??>???s??wH3??:QEsV~?.:? ?]&?g?Wxc"=???v??????.???N?q???W??7E? ?????'?(?????D????5?o][??^?3F?4l ?6}?????????g??Y9Y?c.??o?4Q^????H?< false
                  993044853736827904 5243648 Cookie scoped to parent domain http://foxnewsmobile.112.2o7.net Information Certain
                • s_vi_kbuchzx7Ex60bodah=[CS]v4|26D5B4C105013A4D-6000010900519EAD|4DAB6981[CE]; Expires=Fri, 15 Apr 2016 22:28:18 GMT; Domain=.2o7.net; Path=/
                • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                  false
                  7417122835713340416 3145984 Cleartext submission of password http://utopiaguide.com High Certain
                • http://utopiaguide.com/forums/login.php?do=login
                • The form contains the following password field:
                  • vb_login_password
                  ]]>
                  UtopiaGuide



                  Go Back   UtopiaGuide
                  Register FAQ Members List CalendarvBookieToplist Today's Posts

                  vBulletin Message
                  You are not logged in or you do not have permission to access this page. This could be due to one of several reasons:
                  1. You are not logged in. Fill in the form at the bottom of this page and try again.
                  2. You may not have sufficient privileges to access this page. Are you trying to edit someone else's post, access administrative features or some other privileged system?
                  3. If you are trying to post, the administrator may have disabled your account, or it may be awaiting activation.
                  Log in
                  User Name:
                  Password:
                  Forgotten Your Password?
                  The administrator may have required you to register before you can view this page.

                  Forum Jump

                  All times are GMT -8. The time now is 12:32 PM.

                  This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

                  Powered by vBulletin® Version 3.6.8
                  Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

                  ]]>
                  false
                  3320844829748753408 5243648 Cookie scoped to parent domain http://maps.google.com Information Certain
                • PREF=ID=0772c9d5ef13aaaf:U=d212295d0f1573ee:TM=1303071569:LM=1303072544:S=VL32M1G2MR3iECjk; expires=Tue, 16-Apr-2013 20:35:44 GMT; path=/; domain=.google.com
                • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                  Google Maps Screen reader users: click here for plain HTML
                  Loading...


                  500 km
                  500 mi
                  Satellite
                  more
                  ]]>
                  false
                  4662494945806309376 5244928 Password field with autocomplete enabled http://www.epicdreams.com Low Certain
                  The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
                  autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
                • http://www.epicdreams.com/login_confirm.shtm
                • The form contains the following password field with autocomplete enabled:
                  • pwenter
                  ]]>
                  EpicDreams
                  EpicDreams, Epic Dreams, Escort, Escorts, incall, outcall, Escort Reviews, Escort Directory, Escort Classifieds Welcome, Guest
                  Log In | Free Hobbyist Account | Free Provider Ad | Help
                  Home
                  myEpicDreams
                  VIP Escorts
                  Directory
                  Photo Gallery
                  Calendar
                  Reviews & Forums
                  Adult Store
                  Advertise
                  CustomerCare
                  April 17, 2011
                  Login
                  Providers and Members (Client/Hobbyist):
                  Enter your email address and password to log in.
                  Email Address:
                  Password:
                  Forgot Your Password?
                  Enter the e-mail address and your account information will be sent to you.
                    
                   Sponsor Spotlight

                  Name: Pamela Sweet
                  Location: Allentown, PA
                  Quote: I love to wear sexy lingerie... More >>

                   Sponsor Spotlight

                  Name: kara kane
                  Location: Charlotte, NC
                  Quote: PORNSTAR,FORMER NBA CHEERLEADER,HOOTERS ... More >>

                   Sponsor Spotlight

                  Name: Lovely Lauren
                  Location: Dallas, TX
                  Quote: Standing 5'6" with an amazing to... More >>

                   Sponsor Spotlight

                  Name: Kellie Sinz
                  Location: Las Vegas, NV
                  Quote: Did you ever hear the old saying "Good t... More >>

                   Sponsor Spotlight

                  Name: Amy Taylor
                  Location: Los Angeles, CA

                   Sponsor Spotlight

                  Name: Asian Kitty
                  Location: Las Vegas, NV
                  Quote: Hi Baby ! I am Exactl... More >>

                   Provider Spotlight

                  Name: Toi
                  Location: San Diego, CA
                  Quote: Hello everybody. I am a 27yr old black female... More >>

                  A D V E R T I S E M E N T S

                  List your banner here!

                   RSS Feeds | What's New | FREE Provider Ad | Escort & Adult Links | Adult Store & DVDs
                  Copyright © 1998-2011 EpicDreams, All rights reserved. | About EpicDreams | 2257 Notice
                  ]]>
                  false
                  262185893829476352 1050368 XML injection http://static.xxxmatch.com Medium Tentative
                  This kind of vulnerability can be difficult to detect and exploit remotely; you should review the application's response, and the purpose which the relevant input performs within the application's functionality, to determine whether it is indeed vulnerable.]]>
                  ]]>> was appended to the value of the REST URL parameter 1. The application's response indicated that this input may have caused an error within a server-side XML or SOAP parser, suggesting that the input has been inserted into an XML document or SOAP message without proper sanitisation. ]]> >/xxxmatch.com/freesex/swfmacmousewheel.js HTTP/1.1 Host: static.xxxmatch.com Proxy-Connection: keep-alive Referer: http://www.xxxmatch.com/dating/freesex User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 Cookie: referral_path=%2F63790%2Fverifiedplaymatespop%2F%2F0%2F0 ]]> 404 - Not Found

                  404 - Not Found

                  ]]>
                  false
                  9154737468493092864 8389632 Content type incorrectly stated http://www.democracyforums.com Information Firm
                  In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
                • Content-Type: image/gif
                • The response states that it contains a GIF image. However, it actually appears to contain a JPEG image.]]>
                  W'R??X???N?B???X?????T ^?I)?o=L) O??????+?6 Y????T???????:UmMo V?oaM9%?>???~?? }??uI??/???B?%j????1?d??*?={??d^?Zb??|>??????k??D????v?[?????Y}??;L?????????h??N?y$; ?n?-?^A????gr?S)2?O$? ?'bcB??}h[?]j?4?????4????@n???????? ?y????$????^???????)??}????n?Sg??y???`?H?K?1? ??K?\E~??9S{x\?)RlT}????NH??0????m?G?;?o?R jJ?K????/??,4??I??g?#*?t??7? ??N??|z|?????v9??~Qt??in???`v?????HDV?/????K;?F?fb??? ????\``??y,??H+?????)??????,????{} ??????~e??u ???U?N?A Df??^????????t??_cV????]??P5?1v,?t=?O?#o??6???:????pgm???1???r#pU???m?????0s?OoBQ??????[?}~Z?,MlYr??6?OC??????B{?4????Q?>0??D?q????(B?R?s??O=?xi?W?!??YD ?H?On??j?,??oA????E??[W?zv?X=?????VO?:>g5h?`???rIZ2#{??n?{?t}z}?????V???-?[?i&?y? @?^>?????i??]? ???z????????n?^)??`x????]v?vWy??w'???mc{?`c]?0?<_??)??62?Y$?X??+|}??z??%^? ???^?p|?%j???=????R?H?:?&?????P?o????6?b%@~?C???\????t?z???????i,??eZ??%!???@????\m??t????9??Vt_$?G??\Q?c??? ?N+q#D??|+(2?nw????K 0>N??3?hGPd3??? ?R7V?N???l}??w??]?+?6?(??xV>Y?C ??AV*_???h ?Hm6? 7,???O????;????]Z!??'0????+????/r?@b??? ?h?????2?? false
                  6627266295913857024 8389120 HTML does not specify charset http://caseyofhouston.com Information Certain
                  In most cases, the absence of a charset directive does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
                  charset=ISO-8859-1.]]> Check my calendar !

                  Caseyofhouston  

                  HomeAbout MePhotosServicesRatesGiftsGuestbookReviewsCalendarFAQLinksContact

                  Escort Calendar

                  I am based in Houston, however I do tour. I am currently touring New York, Boston, Chicago, and New Jersey.

                  April 2011

                  SundayMondayTuesdayWednesdayThursdayFridaySaturday
                  27 Mar
                  28 Mar
                  29 Mar
                  30 Mar
                  31 Mar
                  1 AprBook ME
                  Available
                  2 AprBook ME
                  Available
                  3 AprBook ME
                  Available
                  4 AprBook ME
                  Available
                  5 AprBook ME
                  Available
                  6 AprBook ME
                  Available
                  7 AprBook ME
                  Available
                  8 AprBook ME
                  Available
                  9 AprBook ME
                  Available
                  10 AprBook ME
                  Available
                  11 AprBook ME
                  Available
                  12 AprBook ME
                  Available
                  13 AprBook ME
                  Available
                  14 AprBook ME
                  Available
                  15 AprBook ME
                  Available
                  16 AprBook ME
                  Available
                  17 AprBook ME
                  Available
                  18 AprBook ME
                  Available
                  19 AprBook ME
                  Available
                  20 AprBook ME
                  Available
                  21 AprBook ME
                  Available
                  22 AprBook ME
                  Available
                  23 AprBook ME
                  Available
                  24 AprBook ME
                  Available
                  25 AprBook ME
                  Available
                  26 AprBook ME
                  Available
                  27 AprBook ME
                  Available
                  28 AprBook ME
                  Available
                  29 AprBook ME
                  Available
                  30 AprBook ME
                  Available
                  (Previous month) <<<>>> (Next month)

                  May 2011

                  SundayMondayTuesdayWednesdayThursdayFridaySaturday
                  1 May
                  2 May
                  3 May
                  4 May
                  5 May
                  6 May
                  7 May
                  8 May
                  9 May
                  10 May
                  11 May
                  12 May
                  13 May
                  14 May
                  15 May
                  16 May
                  17 May
                  18 May
                  19 May
                  20 May
                  21 May
                  22 May
                  23 May
                  24 May
                  25 May
                  26 May
                  27 May
                  28 May
                  29 May
                  30 May
                  31 May
                  1 Jun
                  2 Jun
                  3 Jun
                  4 Jun


                  June 2011

                  SundayMondayTuesdayWednesdayThursdayFridaySaturday
                  29 May
                  30 May
                  31 May
                  1 Jun
                  2 Jun
                  3 Jun
                  4 Jun
                  5 Jun
                  6 Jun
                  7 Jun
                  8 Jun
                  9 Jun
                  10 Jun
                  11 Jun
                  12 Jun
                  13 Jun
                  14 Jun
                  15 Jun
                  16 Jun
                  17 Jun
                  18 Jun
                  19 Jun
                  20 Jun
                  21 Jun
                  22 Jun
                  23 Jun
                  24 Jun
                  25 Jun
                  26 Jun
                  27 Jun
                  28 Jun
                  29 Jun
                  30 Jun
                  1 Jul
                  2 Jul

                  Register for my free newsletter
                  Email
                  You may also unsubscribe at any time.

                  eccie.net

                  SitemapRSSAdd to My Yahoo!Add to Google Homepage or Google Reader !
                  ]]>
                  false
                  1783355697601384448 5244416 Cookie without HttpOnly flag set http://www.google.com Information Certain
                  You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
                • PREF=ID=0772c9d5ef13aaaf:U=d212295d0f1573ee:FF=0:TM=1303071569:LM=1303071853:S=FQDi4EMhKk_8fo5L; expires=Tue, 16-Apr-2013 20:24:13 GMT; path=/; domain=.google.com
                • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                  false
                  3415542494612323328 8389632 Content type incorrectly stated http://www.pocketbikeplanet.com Information Firm
                  In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
                • Content-Type: text/html; charset=UTF-8
                • The response states that it contains HTML. However, it actually appears to contain plain text.]]>
                  false
                  7716728195167095808 6291968 Email addresses disclosed http://utopiaguide.com Information Certain
                  However, email addresses of developers and other individuals (whether appearing on-screen or hidden within page source) may disclose information that is useful to an attacker; for example, they may represent usernames that can be used at the application's login, and they may be used in social engineering attacks against the organisation's personnel. Unnecessary or excessive disclosure of email addresses may also lead to an increase in the volume of spam email received.]]>
                • service@utopiaguide.com
                • ]]>
                  UtopiaGuide



                  Go Back   UtopiaGuide
                  Register FAQ Members List CalendarvBookieToplist Today's Posts

                  vBulletin Message
                  Invalid Thread specified. If you followed a valid link, please notify the administrator

                  Forum Jump

                  All times are GMT -8. The time now is 12:32 PM.

                  This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

                  Powered by vBulletin® Version 3.6.8
                  Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

                  ]]>
                  false
                  5976510527429955584 5244416 Cookie without HttpOnly flag set http://www.wtp101.com Information Certain
                  You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
                • tuuid=549188a1-a07c-4231-be94-7f725e1a19f7; path=/; expires=Tue, 16 Apr 2013 23:36:55 GMT; domain=.wtp101.com
                • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                  false
                  1235981511964404736 5243648 Cookie scoped to parent domain http://www.google.com Information Certain
                • PREF=ID=0772c9d5ef13aaaf:U=d212295d0f1573ee:FF=0:TM=1303071569:LM=1303071853:S=FQDi4EMhKk_8fo5L; expires=Tue, 16-Apr-2013 20:24:13 GMT; path=/; domain=.google.com
                • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                  false
                  351719063492882432 5244416 Cookie without HttpOnly flag set http://www.verifiedplaymates.com Information Certain
                  You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
                • apache2_cookie=173.193.214.243.1303071697242759; path=/; expires=Thu, 16-Jun-11 20:21:37 GMT
                • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                  0){a.style.left=parseInt(b.style.left)-d+"px";a.style.top=parseInt(b.style.top)-d+"px";a.style.display="block";a.style.width=(b.clientWidth||b.offsetWidth)+(d*2)+"px";a.style.height=(b.clientHeight||b.offsetHeight)+(d*2)+"px"}},default_services:function(e){var c=e||a2a.type,f=a2a[c].main_services_col_1,a=f.length,d=a2a[c].main_services_col_2,g=d.length;for(var b=0;bf){h[0]=h[0]-l[0]+i-8}if(g.orientation=="up"||g.orientation!="down"&&h[1]-d+l[1]+c>p&&h[1]>l[1]){h[1]=h[1]-l[1]-c}n.style.left=m+h[0]+2+"px";n.style.top=m+h[1]+c+"px"}else{if(!q){q={}}n.style.position=q.position||"absolute";n.style.left=q.left||(f/2-l[0]/2+"px");n.style.top=q.top||(p/2-l[1]/2+"px")}a2a.border();if(!a2a[j].doc_mouseup_toggle_dropdown&&!a2a[j].no_hide){a2a.doc_mousedown_check_scroll=function(){a2a.last_scroll_pos=a2a.getScrollDocDims("h")};a2a[j].doc_mouseup_toggle_dropdown=(function(o){return function(){if(a2a.last_scroll_pos==a2a.getScrollDocDims("h")){a2a.toggle_dropdown("none",o)}}})(j);if(!window.addEventListener){document.attachEvent("onmousedown",a2a.doc_mousedown_check_scroll);document.attachEvent("onmouseup",a2a[j].doc_mouseup_toggle_dropdown)}else{document.addEventListener("mousedown",a2a.doc_mousedown_check_scroll,false);document.addEventListener("mouseup",a2a[j].doc_mouseup_toggle_dropdown,false)}document.onkeydown=a2a.checkKey}a2a.embeds_visibility(false);if(j=="feed"){a2a.gEl(a+"_DEFAULT").href=g.linkurl;if(a2a.c.fb_feedcount&&!a2a.c.ssl){a2a.feedburner_feedcount("init")}}a2a.a2a_track("test3");if(g.track_pub){a2a.a2a_track("z_"+g.track_pub)}},embeds_visibility:function(h){var b=a2a.c.hide_embeds;if(b===0||b===false){return}if(!a2a.embeds){a2a.embeds=a2a.HTMLcollToArray(document.getElementsByTagName("object")).concat(a2a.HTMLcollToArray(document.getElementsByTagName("embed"))).concat(a2a.HTMLcollToArray(document.getElementsByTagName("applet")))}var j=a2a.gEl("a2a"+a2a.type+"_dropdown"),k=[parseInt(j.style.left),parseInt(j.style.top)],f=[j.clientWidth,j.clientHeight],g=a2a.embeds,c=g.length,e;for(var d=0;daPos[0]&&k[1]+f[1]>aPos[1]){e="hidden"}}g[d].style.visibility=e}},no_brdr:function(f){var c=f,b=c.length;for(var d=0;d'+a2a.c.localize.BookmarkInstructions+"
                  ";a2a.tabs("BROWSER",true)}}if(a==1){return c}},loadExtScript:function(c,e,d){var b=document.createElement("script");b.charset="UTF-8";b.src=c;document.getElementsByTagName("head")[0].appendChild(b);if(typeof e=="function"){var a=setInterval(function(){var f=false;try{f=e.call()}catch(g){}if(f){clearInterval(a);d.call()}},100)}},domready_init:function(){var a=a2a.domready={},g=false,e=false,f=[];function b(){if(!e){e=true;if(f){for(var h=0;h0){var cookie=document.cookie.indexOf("__utas=");if(cookie!=-1){return true}else{return false}}}function c_ok(){if(c_isset()){return false}var date=new Date();date.setDate(date.getDate()+7);document.cookie="__utas=1; expires="+date.toGMTString()+"; path=/";if(!c_isset()){return false}else{return true}}var ifr=gas_ifrs(),ie=/*@cc_on!@*/false;if(ifr[0]&&ifr.length<3&&ie&&c_ok()){var a2a_as_last_num=ifr.length-1,a2a_as_last=ifr[a2a_as_last_num]}else{return}a2a_as_last.style.display="none";gas_vars("ad_client","pub-7957824725474864");a2a_gas_params={};var query=a2a_as_last.src.substring(a2a_as_last.src.indexOf("?")+1);var vars=query.split("&");for(var i=0;i0){var l="__utma_a2a",r=document.cookie.indexOf(l+"="),c,o;if(r!=-1){r=r+l.length+1;c=document.cookie.indexOf(";",r);if(c==-1){c=document.cookie.length}o=unescape(document.cookie.substring(r,c))}}var j=new Date(),b=Math.round(j.getTime()/1000),d=Math.floor(Math.random()*9999999999),m=(o)?o.split("."):new Array(),q=m[1]||d,h=m[2]||b,i=m[4]||b,a=b,e=(m[5])?parseInt(m[5])+1:1,f="1."+q+"."+h+"."+i+"."+a+"."+e,k="http"+((a2a.c.ssl)?"s":"")+"://www.google-analytics.com/__utm.gif?&utmwv=4.3utmn="+d+"&utmhn="+window.location.hostname+"&utmt=event&utme=5("+p+"%20menu*"+encodeURIComponent(n)+((g)?"*"+encodeURIComponent(g):"")+")&utmcs="+((document.characterSet)?document.characterSet:document.charset)+"&utmsr="+screen.width+"x"+screen.height+"&utmsc="+screen.colorDepth+"-bit&utmul="+(navigator.browserLanguage||navigator.language).toLowerCase()+"&utmdt="+document.title+"&utmhid="+d+"&utmr="+((document.referrer)?document.referrer:"-")+"&utmp="+window.location.pathname+"&utmac="+((p=="Share")?"UA-1244922-3":"UA-1244922-4")+"&utmcc=__utma%3D"+f+"%3B";j.setDate(j.getDate()+730);document.cookie="__utma_a2a="+escape(f)+"; expires="+j.toGMTString()+"; path=/";a2a.track(k)},GA:function(){var a=a2a.type,b;a2a.onLoad(function(){if(typeof urchinTracker=="function"){b=1}else{if(typeof pageTracker=="object"){b=2}else{if(typeof _gaq=="object"){b=3}else{return}}}var g=a2a[a].all_services,d=g.length,l,c,e,h=(a=="feed")?"subscriptions":"pages",j=(a=="feed")?"AddToAny Subscribe Button":"AddToAny Share/Save Button",k;if(a=="page"){g.push(a2a.gEl("a2apage_any_email"),a2a.gEl("a2apage_email_client"))}for(var f=0;f0){a=g;break}}if(a===false){return false}a2a[a2a.type].inFocus=[a,0];a2a.moveFocus(0,0);return false}if(c){var f=d(b[c[0]].getElementsByTagName("a"));if(j==38){if(c[1]<1){if(typeof f[f.length-1]!="undefined"){a2a.moveFocus(0,f.length-1)}}else{if(typeof f[c[1]-1]!="undefined"){a2a.moveFocus(0,-1)}}return false}else{if(j==40){if(c[1]>f.length-2){a2a.moveFocus(0,-(c[1]))}else{a2a.moveFocus(0,1)}return false}else{if(j==37){if(c[0]<1){if(typeof d(b[b.length-1].getElementsByTagName("a"))[c[1]]!="undefined"){a2a.moveFocus(b.length-1,0)}}else{if(typeof d(b[c[0]-1].getElementsByTagName("a"))[c[1]]!="undefined"){a2a.moveFocus(-1,0)}}}else{if(j==39){if(c[0]>b.length-2){if(typeof d(b[0].getElementsByTagName("a"))[c[1]]!="undefined"){a2a.moveFocus(-(b.length-1),0)}}else{if(typeof d(b[c[0]+1].getElementsByTagName("a"))[c[1]]!="undefined"){a2a.moveFocus(1,0)}}}}}}}if(j==27&&a2a[a2a.type].tab=="DEFAULT"){a2a.gEl("a2a"+a2a.type+"_find").value="";a2a.do_find();a2a.focus_find()}else{if(j>40||j==32){a2a.focus_find()}}},css:function(){var d,k,c=a2a.c,e=c.css=document.createElement("style"),g=c.color_main||"EEE",i=c.color_bg||"FFF",f=c.color_border||"CCC",a=c.color_link_text||"00F",h=c.color_link_text_hover||"000",m=c.color_link_text_hover||"999",b=c.color_link_text||"000",j=(g.toLowerCase()=="ffffff")?"EEE":g,l=c.color_link_text||"CCC",n=c.color_link_text||"000";d=".a2a_menu *{margin:0;padding:0}.a2a_menu table{border-collapse:collapse;border-spacing:0;width:auto}.a2a_menu table,.a2a_menu tbody,.a2a_menu td,.a2a_menu tr{border:0;margin:0;padding:0;background-color:transparent;_background-color:#"+i+"}.a2a_menu td{vertical-align:top}.a2a_menu,.a2a_menu_border{display:none;z-index:9999999;position:absolute;margin:0;padding:0;-webkit-border-radius:16px;-moz-border-radius:16px}.a2a_menu{display:none;direction:ltr;min-width:200px;background-color:#"+i+";font:12px Arial,Helvetica,sans-serif;color:#000;line-height:12px;border:1px solid #"+f+";vertical-align:baseline;padding:8px;overflow:hidden}.a2a_menu_border{border:1px solid #"+g+";background-color:#"+g+";opacity:.6;filter:alpha(opacity=60)}.a2a_menu a,#a2a_hist_list a,.a2a_tabs div{color:#"+a+";text-decoration:none;font:12px Arial,Helvetica,sans-serif;line-height:12px;height:auto;width:auto;clear:none;outline:none;-moz-outline:none;-webkit-border-radius:8px;-moz-border-radius:8px}.a2a_menu a:visited,#a2a_hist_list a:visited{color:#"+a+";clear:right}.a2a_menu a:hover,.a2a_menu a:active,.a2a_menu a.a2a_i:focus,.a2a_tabs div:hover{color:#"+h+";border:1px solid #"+f+";background-color:#"+g+";text-decoration:none}.a2a_menu img,.a2a_menu a img, a2a_img{width:16px;height:16px;border:0;padding:0;background:url("+a2a.icons_img_url+") no-repeat}.a2a_menu img{display:inline;vertical-align:middle;margin:0 4px 2px 0}.a2a_menu img.a2a_i_find{position:absolute;left:5px;top:2px}.a2a_menu_title_container{margin-bottom:2px;padding:6px}.a2a_menu_find_container{position:relative;text-align:left;margin:4px 1px;padding:1px 24px 1px 0;border:1px solid #"+l+";-webkit-border-radius:8px;-moz-border-radius:8px}input.a2a_menu_title{display:block;color:#"+n+";background-color:#"+i+";border:0;margin:0;padding:0;width:100%}input.a2a_menu_find{display:block;position:relative;left:24px;color:#"+n+";font-size:12px;padding:2px 0;outline:0;border:0;background-color:transparent;_background-color:#"+i+";width:250px}table.a2a_cols_container{width:100%}.a2a_cols{width:50%}"+((typeof document.body.style.maxHeight!="undefined")?".a2a_clear{clear:both}":".a2a_clear{clear:both;height:0;width:0;line-height:0;font-size:0}")+".a2a_hr{margin:0 12px 12px;padding:1px;background:none;background-color:#"+g+"}.a2a_nowrap{white-space:nowrap}.a2a_note{margin:0 auto;padding:9px;font-size:11px;text-align:center}.a2a_note .a2a_note_note{margin:0 0 9px;color:#"+b+"}.a2a_wide a{display:block;margin-top:3px;border:1px solid #"+j+";padding:3px;text-align:center}.a2a_tabs{float:left;margin:0 0 3px}.a2a_tabs a,.a2a_tabs div{margin:1px;background-color:#"+g+";border:1px solid #"+g+";font-size:11px;padding:6px 12px 2px;white-space:nowrap}.a2a_tabs a img, .a2a_tabs div img{margin-bottom:4px}.a2a_tabs a, .a2a_tabs a:visited, .a2a_tabs a:hover, .a2a_tabs div, .a2a_tabs div:hover{cursor:pointer;border-bottom:1px solid #"+g+";color:#"+h+";-webkit-border-bottom-left-radius:0;-moz-border-radius-bottomleft:0;-webkit-border-bottom-right-radius:0;-moz-border-radius-bottomright:0}a.a2a_tab_selected,a.a2a_tab_selected:visited,a.a2a_tab_selected:hover,a.a2a_tab_selected:active,a.a2a_tab_selected:focus, div.a2a_tab_selected,div.a2a_tab_selected:hover{color:#"+a+";background-color:#"+i+";border:1px solid #"+f+";border-bottom:1px solid #"+i+"}a.a2a_i{display:block;padding:4px 6px 2px;border:1px solid #"+i+";text-align:left;white-space:nowrap}a.a2a_sss{font-weight:700}a.a2a_ind{display:inline;margin:0;padding:0}a.a2a_emailer{display:inline-block;border:1px solid #EEE;margin:0 9px;text-align:center}a.a2a_menu_show_more_less{margin:4px 0 8px;padding:0}a.a2a_menu_show_more_less img{vertical-align:baseline;height:12px}a.a2a_menu_powered_by,a.a2a_menu_powered_by:visited{background-color:#"+g+";font-size:9px;color:#"+m+"}.a2a_i_agregator{background-position:0 0 !important}.a2a_i_aiderss{background-position:0 -17px !important}.a2a_i_aim{background-position:0 -34px !important}.a2a_i_allvoices{background-position:0 -51px !important}.a2a_i_amazon{background-position:0 -68px !important}.a2a_i_aol{background-position:0 -85px !important}.a2a_i_apple_mail{background-position:0 -102px !important}.a2a_i_arto{background-position:0 -119px !important}.a2a_i_ask{background-position:0 -136px !important}.a2a_i_avantgo{background-position:0 -153px !important}.a2a_i_backflip{background-position:0 -170px !important}.a2a_i_bebo{background-position:0 -187px !important}.a2a_i_bibsonomy{background-position:0 -204px !important}.a2a_i_bitty{background-position:0 -221px !important}.a2a_i_blinklist{background-position:0 -238px !important}.a2a_i_blogger{background-position:0 -255px !important}.a2a_i_bloglines{background-position:0 -272px !important}.a2a_i_blogmarks{background-position:0 -289px !important}.a2a_i_blogrovr{background-position:0 -306px !important}.a2a_i_bookmark{background-position:0 -323px !important}.a2a_i_bookmarks_fr{background-position:0 -340px !important}.a2a_i_box{background-position:0 -357px !important}.a2a_i_buddymarks{background-position:0 -374px !important}.a2a_i_buzmob{background-position:0 -391px !important}.a2a_i_buzz{background-position:0 -408px !important}.a2a_i_bzzster{background-position:0 -425px !important}.a2a_i_care2{background-position:0 -442px !important}.a2a_i_citeulike{background-position:0 -459px !important}.a2a_i_clear{background-position:0 -476px !important}.a2a_i_connotea{background-position:0 -493px !important}.a2a_i_current{background-position:0 -510px !important}.a2a_i_dailyme{background-position:0 -527px !important}.a2a_i_dailyrotation{background-position:0 -544px !important}.a2a_i_darr{background-position:0 -561px !important}.a2a_i_darr_wt{background-position:0 -578px !important}.a2a_i_default{background-position:0 -595px !important}.a2a_i_delicious{background-position:0 -612px !important}.a2a_i_designfloat{background-position:0 -629px !important}.a2a_i_digg{background-position:0 -646px !important}.a2a_i_diglog{background-position:0 -663px !important}.a2a_i_diigo{background-position:0 -680px !important}.a2a_i_dzone{background-position:0 -697px !important}.a2a_i_email{background-position:0 -714px !important}.a2a_i_eskobo{background-position:0 -731px !important}.a2a_i_evernote{background-position:0 -748px !important}.a2a_i_excitemix{background-position:0 -765px !important}.a2a_i_expression{background-position:0 -782px !important}.a2a_i_facebook{background-position:0 -799px !important}.a2a_i_fark{background-position:0 -816px !important}.a2a_i_faves{background-position:0 -833px !important}.a2a_i_feed{background-position:0 -850px !important}.a2a_i_feedblitz{background-position:0 -867px !important}.a2a_i_feedbucket{background-position:0 -884px !important}.a2a_i_feedlounge{background-position:0 -901px !important}.a2a_i_feedm8{background-position:0 -918px !important}.a2a_i_feedmailer{background-position:0 -935px !important}.a2a_i_feedreader_net{background-position:0 -952px !important}.a2a_i_feedshow{background-position:0 -969px !important}.a2a_i_find{background-position:0 -986px !important}.a2a_i_fireant{background-position:0 -1003px !important}.a2a_i_flurry{background-position:0 -1020px !important}.a2a_i_folkd{background-position:0 -1037px !important}.a2a_i_foxiewire{background-position:0 -1054px !important}.a2a_i_friendfeed{background-position:0 -1071px !important}.a2a_i_friendster{background-position:0 -1088px !important}.a2a_i_funp{background-position:0 -1105px !important}.a2a_i_furl{background-position:0 -1122px !important}.a2a_i_fwicki{background-position:0 -1138px !important}.a2a_i_gabbr{background-position:0 -1155px !important}.a2a_i_global_grind{background-position:0 -1172px !important}.a2a_i_gmail{background-position:0 -1189px !important}.a2a_i_google{background-position:0 -1206px !important}.a2a_i_healthranker{background-position:0 -1223px !important}.a2a_i_hellotxt{background-position:0 -1240px !important}.a2a_i_hemidemi{background-position:0 -1257px !important}.a2a_i_hi5{background-position:0 -1274px !important}.a2a_i_hubdog{background-position:0 -1291px !important}.a2a_i_hugg{background-position:0 -1308px !important}.a2a_i_hyves{background-position:0 -1325px !important}.a2a_i_identica{background-position:0 -1342px !important}.a2a_i_im{background-position:0 -1359px !important}.a2a_i_imera{background-position:0 -1376px !important}.a2a_i_instapaper{background-position:0 -1393px !important}.a2a_i_iterasi{background-position:0 -1410px !important}.a2a_i_itunes{background-position:0 -1427px !important}.a2a_i_jamespot{background-position:0 -1444px !important}.a2a_i_jots{background-position:0 -1461px !important}.a2a_i_jumptags{background-position:0 -1478px !important}.a2a_i_khabbr{background-position:0 -1495px !important}.a2a_i_kledy{background-position:0 -1512px !important}.a2a_i_klipfolio{background-position:0 -1529px !important}.a2a_i_linkagogo{background-position:0 -1546px !important}.a2a_i_linkatopia{background-position:0 -1563px !important}.a2a_i_linkedin{background-position:0 -1580px !important}.a2a_i_live{background-position:0 -1597px !important}.a2a_i_livejournal{background-position:0 -1614px !important}.a2a_i_ma_gnolia{background-position:0 -1631px !important}.a2a_i_maple{background-position:0 -1648px !important}.a2a_i_meneame{background-position:0 -1665px !important}.a2a_i_mindbodygreen{background-position:0 -1682px !important}.a2a_i_miro{background-position:0 -1699px !important}.a2a_i_mister-wong{background-position:0 -1716px !important}.a2a_i_mixx{background-position:0 -1733px !important}.a2a_i_mobile{background-position:0 -1750px !important}.a2a_i_mozillaca{background-position:0 -1767px !important}.a2a_i_msdn{background-position:0 -1784px !important}.a2a_i_multiply{background-position:0 -1801px !important}.a2a_i_my_msn{background-position:0 -1818px !important}.a2a_i_mylinkvault{background-position:0 -1835px !important}.a2a_i_myspace{background-position:0 -1852px !important}.a2a_i_netimechannel{background-position:0 -1869px !important}.a2a_i_netlog{background-position:0 -1886px !important}.a2a_i_netomat{background-position:0 -1903px !important}.a2a_i_netvibes{background-position:0 -1920px !important}.a2a_i_netvouz{background-position:0 -1937px !important}.a2a_i_newgie{background-position:0 -1954px !important}.a2a_i_newsalloy{background-position:0 -1971px !important}.a2a_i_newscabby{background-position:0 -1988px !important}.a2a_i_newsgator{background-position:0 -2005px !important}.a2a_i_newshutch{background-position:0 -2022px !important}.a2a_i_newsisfree{background-position:0 -2039px !important}.a2a_i_newstrust{background-position:0 -2056px !important}.a2a_i_newsvine{background-position:0 -2073px !important}.a2a_i_nowpublic{background-position:0 -2090px !important}.a2a_i_odeo{background-position:0 -2107px !important}.a2a_i_oneview{background-position:0 -2124px !important}.a2a_i_openbm{background-position:0 -2141px !important}.a2a_i_orkut{background-position:0 -2158px !important}.a2a_i_outlook{background-position:0 -2175px !important}.a2a_i_pageflakes{background-position:0 -2192px !important}.a2a_i_pdf{background-position:0 -2209px !important}.a2a_i_phonefavs{background-position:0 -2226px !important}.a2a_i_ping{background-position:0 -2243px !important}.a2a_i_plaxo{background-position:0 -2260px !important}.a2a_i_plurk{background-position:0 -2277px !important}.a2a_i_plusmo{background-position:0 -2294px !important}.a2a_i_podnova{background-position:0 -2311px !important}.a2a_i_posterous{background-position:0 -2328px !important}.a2a_i_printfriendly{background-position:0 -2345px !important}.a2a_i_propeller{background-position:0 -2362px !important}.a2a_i_protopage{background-position:0 -2379px !important}.a2a_i_pusha{background-position:0 -2396px !important}.a2a_i_rapidfeeds{background-position:0 -2413px !important}.a2a_i_rasasa{background-position:0 -2430px !important}.a2a_i_reader{background-position:0 -2447px !important}.a2a_i_reddit{background-position:0 -2464px !important}.a2a_i_rssfwd{background-position:0 -2481px !important}.a2a_i_segnalo{background-position:0 -2498px !important}.a2a_i_share{background-position:0 -2515px !important}.a2a_i_shoutwire{background-position:0 -2532px !important}.a2a_i_shyftr{background-position:0 -2549px !important}.a2a_i_simpy{background-position:0 -2566px !important}.a2a_i_sitejot{background-position:0 -2583px !important}.a2a_i_skimbit{background-position:0 -2600px !important}.a2a_i_slashdot{background-position:0 -2617px !important}.a2a_i_smaknews{background-position:0 -2634px !important}.a2a_i_sodahead{background-position:0 -2651px !important}.a2a_i_sofomo{background-position:0 -2668px !important}.a2a_i_spaces{background-position:0 -2685px !important}.a2a_i_sphere{background-position:0 -2702px !important}.a2a_i_sphinn{background-position:0 -2718px !important}.a2a_i_spurl{background-position:0 -2735px !important}.a2a_i_squidoo{background-position:0 -2752px !important}.a2a_i_startaid{background-position:0 -2769px !important}.a2a_i_strands{background-position:0 -2786px !important}.a2a_i_stumbleupon{background-position:0 -2803px !important}.a2a_i_stumpedia{background-position:0 -2820px !important}.a2a_i_symbaloo{background-position:0 -2837px !important}.a2a_i_taggly{background-position:0 -2854px !important}.a2a_i_tagza{background-position:0 -2871px !important}.a2a_i_tailrank{background-position:0 -2888px !important}.a2a_i_technet{background-position:0 -2905px !important}.a2a_i_technorati{background-position:0 -2922px !important}.a2a_i_technotizie{background-position:0 -2939px !important}.a2a_i_thefreedictionary{background-position:0 -2956px !important}.a2a_i_thefreelibrary{background-position:0 -2973px !important}.a2a_i_thunderbird{background-position:0 -2990px !important}.a2a_i_tipd{background-position:0 -3007px !important}.a2a_i_toolbar_google{background-position:0 -3024px !important}.a2a_i_tumblr{background-position:0 -3041px !important}.a2a_i_twiddla{background-position:0 -3058px !important}.a2a_i_twine{background-position:0 -3075px !important}.a2a_i_twitter{background-position:0 -3092px !important}.a2a_i_txtvox{background-position:0 -3109px !important}.a2a_i_typepad{background-position:0 -3126px !important}.a2a_i_uarr{background-position:0 -3143px !important}.a2a_i_uarr_wt{background-position:0 -3160px !important}.a2a_i_unalog{background-position:0 -3177px !important}.a2a_i_viadeo{background-position:0 -3194px !important}.a2a_i_webnews{background-position:0 -3211px !important}.a2a_i_webwag{background-position:0 -3229px !important}.a2a_i_wikio{background-position:0 -3246px !important}.a2a_i_windows_mail{background-position:0 -3263px !important}.a2a_i_wink{background-position:0 -3280px !important}.a2a_i_winksite{background-position:0 -3297px !important}.a2a_i_wists{background-position:0 -3314px !important}.a2a_i_wordpress{background-position:0 -3331px !important}.a2a_i_xanga{background-position:0 -3348px !important}.a2a_i_xerpi{background-position:0 -3365px !important}.a2a_i_xianguo{background-position:0 -3382px !important}.a2a_i_yahoo{background-position:0 -3399px !important}.a2a_i_yample{background-position:0 -3416px !important}.a2a_i_yigg{background-position:0 -3433px !important}.a2a_i_yim{background-position:0 -3450px !important}.a2a_i_yoolink{background-position:0 -3467px !important}.a2a_i_youmob{background-position:0 -3484px !important}.a2a_i_yourminis{background-position:0 -3501px !important}.a2a_i_zaptxt{background-position:0 -3518px !important}.a2a_i_zhuaxia{background-position:0 -3535px !important}.a2a_i_zune{background-position:0 -3552px !important}";e.setAttribute("type","text/css");if(e.styleSheet){e.styleSheet.cssText=d}else{k=document.createTextNode(d);e.appendChild(k)}a2a.head_tag.appendChild(e)},mk_srvc:function(a,c,f,h,g,i,d){var j=document.createElement("a"),b=a2a.c,e=function(){a2a.linker(this,this.safename)};j.id="a2a"+a2a.type+"_"+c;j.rel="nofollow";j.className="a2a_i";j.href="/";j.target="_blank";j.onmousedown=e;j.onkeydown=e;j.homepage=f;j.safename=c;j.servicename=a;j.serviceNameLowerCase=a.toLowerCase();j.appendChild(b.transparent_img.cloneNode(true));j.appendChild(document.createTextNode(a));a2a.add_event(j,"click",function(){var k=a2a["n"+a2a.n];a2a.a2a_track("testShare1",a);if(k.track_pub){a2a.a2a_track("z_"+k.track_pub+"Share",a)}});if(g){j.stype=g}if(b.tracking_callback){a2a.add_event(j,"click",function(){var k=a2a["n"+a2a.n],l={service:a,title:k.linkname,url:k.linkurl};b.tracking_callback(l)})}if(i){j.customserviceuri=i}if(d){j.firstChild.style.backgroundImage="url("+d+")"}else{if(h){j.firstChild.className="a2a_i_"+h}else{j.firstChild.className="a2a_i_default"}}return j},i18n:function(){var c=["ar","id","bn","bs","bg","ca-AD","ca-ES","cs","da","de","el","et","es","es-AR","es-VE","eo","en-US","fa","fr","fr-CA","he-IL","hi","hr","is","it","ja","ko-KR","lv","lt","hu","mk","nl","no","pl-PL","pt","pt-BR","pt-PT","ro","ru","sr","fi","sk","sl","sv-SE","ta","te","tr-TR","uk","vi","zh-CN","zh-TW"],d=(navigator.browserLanguage||navigator.language).toLowerCase(),b=a2a.in_array(d,c,true);if(!b){var a=d.indexOf("-");if(a!=-1){b=a2a.in_array(d.substr(0,a),c,true)}}if(d!="en-us"&&b){return b}else{return false}}};a2a.type=a2a.c.menu_type||"page";if(!a2a[a2a.type]&&!window["a2a"+a2a.type+"_init"]){a2a[a2a.type]={};window.a2a_show_dropdown=a2a.show_menu;window.a2a_onMouseOut_delay=a2a.onMouseOut_delay;window.a2a_fluids=a2a.border;window.a2a_init=a2a.init;a2a.create_page_dropdown=function(t){var a=a2a.gEl,e=a2a.type=t,c="a2a"+e,s=a2a.c,q=s.localize,m=s.transparent_img=new Image(),n=a2a.transparent_img_url;a2a.css();q=s.localize={Share:q.Share||"Share",Save:q.Save||"Save",Subscribe:q.Subscribe||"Subscribe",Email:q.Email||"E-mail",Bookmark:q.Bookmark||"Bookmark",ShowAll:q.ShowAll||"Show all",ShowLess:q.ShowLess||"Show less",FindAnyServiceToAddTo:q.FindAnyServiceToAddTo||"Instantly find any service to add to",PoweredBy:q.PoweredBy||"Powered by",AnyEmail:"Any e-mail",ShareViaEmail:q.ShareViaEmail||"Share via e-mail",SubscribeViaEmail:q.SubscribeViaEmail||"Subscribe via email",BookmarkInYourBrowser:q.BookmarkInYourBrowser||"Bookmark in your browser",BookmarkInstructions:q.BookmarkInstructions||"Press Ctrl+D or ⌘+D to bookmark this page",AddToYourFavorites:q.AddToYourFavorites||"Add to Favorites",SendFromWebOrProgram:q.SendFromWebOrProgram||"Send from any other e-mail address or e-mail program",EmailProgram:q.EmailProgram||"E-mail program"};var b='
                  ';if(e=="page"){b+='
                  '+q.Share+" / "+q.Save+'
                  '+q.Email+'
                  '+a2a.bmBrowser(1)+'
                  '}if(e=="page"){b+='
                  '}b+='
                  ';if(e!="mail"){b+='
                  '}b+='
                  ";var l="a2a_menu_container";a2a_w=a(l)||document.createElement("div"),stop_propagation=function(i){if(!i){i=window.event}i.cancelBubble=true;if(i.stopPropagation){i.stopPropagation()}};a2a_w.onmouseup=a2a_w.onmousedown=stop_propagation;a2a_w.innerHTML=b;if(a2a_w.id!=l){a2a_w.style.position="static";document.body.insertBefore(a2a_w,document.body.firstChild)}else{s.border_size=0}m.src=n;m.width=16;m.height=16;var d=new RegExp("[\\?&]awesm=([^&#]*)"),g=d.exec(window.location.href);if(g!=null){s.awesm=g[1]}else{s.awesm=false}var h,f=a2a.mk_srvc;var k=new Array(["Facebook","facebook","http://www.facebook.com/","facebook"],["Delicious","delicious","http://delicious.com/","delicious"],["Yahoo Buzz","yahoo_buzz","http://buzz.yahoo.com/","buzz"],["MySpace","myspace","http://www.myspace.com/","myspace"],["Windows Live Favorites","windows_live_favorites","http://favorites.live.com/","live"],["Yahoo Bookmarks","yahoo_bookmarks","http://bookmarks.yahoo.com/","yahoo"],["Mister-Wong","mister_wong","http://www.mister-wong.com/","mister-wong"],["Google Reader","google_reader","http://www.google.com/reader/","reader"],["Evernote","evernote","http://www.evernote.com/","evernote"],["Stumpedia","stumpedia","http://www.stumpedia.com/","stumpedia"],["Posterous","posterous","http://posterous.com","posterous"],["MSDN","msdn","http://social.msdn.microsoft.com/","msdn"],["Expression","expression","http://social.expression.microsoft.com/","expression"],["Tipd","tipd","http://tipd.com/","tipd"],["Plurk","plurk","http://www.plurk.com/","plurk"],["Yahoo Messenger","yahoo_messenger","http://messenger.yahoo.com/","yim"],["Mozillaca","mozillaca","http://www.mozillaca.com/","mozillaca"],["TypePad Post","typepad_post","http://www.typepad.com/","typepad"],["Mixx","mixx","http://mixx.com/","mixx"],["Technorati Favorites","technorati_favorites","http://technorati.com/","technorati"],["CiteULike","citeulike","http://www.citeulike.org/","citeulike"],["Windows Live Spaces","windows_live_spaces","http://spaces.live.com/","spaces"],["FunP","funp","http://funp.com/","funp"],["PhoneFavs","phonefavs","http://phonefavs.com/","phonefavs"],["Netvouz","netvouz","http://www.netvouz.com/","netvouz"],["Diigo","diigo","http://www.diigo.com/","diigo"],["Taggly","taggly","http://www.taggly.com/","taggly"],["Tailrank","tailrank","http://www.tailrank.com/","tailrank"],["Kledy","kledy","http://www.kledy.de/","kledy"],["Meneame","meneame","http://meneame.net/","meneame"],["Bookmarks.fr","bookmarks_fr","http://www.bookmarks.fr/","bookmarks_fr"],["NewsVine","newsvine","http://www.newsvine.com/","newsvine"],["FriendFeed","friendfeed","http://friendfeed.com/","friendfeed"],["Ping","ping","http://ping.fm/","ping"],["Protopage Bookmarks","protopage_bookmarks","http://www.protopage.com/","protopage"],["Faves","faves","http://faves.com/","faves"],["Webnews","webnews","http://www.webnews.de/","webnews"],["Pusha","pusha","http://www.pusha.se/","pusha"],["Slashdot","slashdot","http://slashdot.org/","slashdot"],["Allvoices","allvoices","http://www.allvoices.com/","allvoices"],["Imera Brazil","imera_brazil","http://imera.com.br/","imera"],["LinkaGoGo","linkagogo","http://www.linkagogo.com/","linkagogo"],["unalog","unalog","http://unalog.com/","unalog"],["Diglog","diglog","http://www.diglog.com/","diglog"],["Propeller","propeller","http://www.propeller.com/","propeller"],["LiveJournal","livejournal","http://www.livejournal.com/","livejournal"],["HelloTxt","hellotxt","http://hellotxt.com","hellotxt"],["Yample","yample","http://yample.com/","yample"],["Linkatopia","linkatopia","http://www.linkatopia.com/","linkatopia"],["LinkedIn","linkedin","http://www.linkedin.com/","linkedin"],["Ask.com MyStuff","ask_com_mystuff","http://mystuff.ask.com/","ask"],["Maple","maple","http://www.maple.nu/","maple"],["Connotea","connotea","http://www.connotea.org/","connotea"],["MyLinkVault","mylinkvault","http://www.mylinkvault.com/","mylinkvault"],["Sphinn","sphinn","http://sphinn.com/","sphinn"],["DZone","dzone","http://www.dzone.com/","dzone"],["Hyves","hyves","http://www.hyves.nl/","hyves"],["Bitty Browser","bitty_browser","http://www.bitty.com/","bitty"],["Symbaloo Feeds","symbaloo_feeds","http://www.symbaloo.com/","symbaloo"],["Foxiewire","foxiewire","http://www.foxiewire.com/","foxiewire"],["VodPod","vodpod","http://vodpod.com/","default"],["Amazon Wish List","amazon_wish_list","http://www.amazon.com/","amazon"],["Read It Later","read_it_later","http://readitlaterlist.com/","default"]);var r=new Array(["Google Gmail","google_gmail","","gmail","email"],["Hotmail","hotmail","","live","email"]);if(e!="mail"){for(var p=0,o=k.length;p false 1961043609557157888 5244416 Cookie without HttpOnly flag set http://d.adsverse.com Information Certain
                  You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
                • OAGEO=US%7CTX%7CDallas%7C75207%7C32.7825%7C-96.8207%7C623%7C214%7CMedia+Visions%7C%7C; path=/
                • OAID=574904589a3ae5378ce2de7809c7b231; expires=Mon, 16-Apr-2012 20:12:30 GMT; path=/
                • The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
                  Advertisement
                  Undress her !
                  Some are genuine escorts in !
                  ]]>
                  false
                  7466818146776431616 8389632 Content type incorrectly stated http://www.google.com Information Firm
                  In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
                • Content-Type: text/html; charset=UTF-8
                • The response states that it contains HTML. However, it actually appears to contain CSS.]]>
                  false
                  1905543929006093312 5244416 Cookie without HttpOnly flag set https://h10078.www1.hp.com Low Firm
                  You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
                • JSESSIONID=BD23389F1DACA55C536C0D84E03213D8.g1u1195c_13; Path=/cda; Secure
                • The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                  Error The page you are trying to access issued an error.
                  If the problem persists, please contact your System Administrator.
                  ]]>
                  false
                  2477223978787170304 2097920 Cross-site scripting (reflected) http://textad.xxxmatch.com High Certain
                  The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

                  Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

                  The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
                • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
                • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
                • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
                  6bb91"><script>alert(1)</script>b078a70ae03 was submitted in the keyword parameter. This input was echoed unmodified in the application's response.

                  This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
                  b078a70ae03 HTTP/1.1 Host: textad.xxxmatch.com Proxy-Connection: keep-alive Referer: http://www.verifiedplaymates.com/Long-Island_NY/erotic-services User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 ]]> Untitled Document ]]> false
                  6342872405556180992 2097920 Cross-site scripting (reflected) http://www.flashforadults.com High Certain
                  The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

                  Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

                  The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
                • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
                • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
                • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
                  6504d"><script>alert(1)</script>eb0a2c44d25 was submitted in the name of an arbitrarily supplied request parameter. This input was echoed unmodified in the application's response.

                  This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
                  eb0a2c44d25=1 HTTP/1.1 Host: www.flashforadults.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close ]]> Flash for Adults

                  Content on this page requires a newer version of Adobe Flash Player.

                  Get Adobe Flash player

                  Lucky TV repairmaner Release: 04/17/2011
                  You get to pay the lucky tv repairman and if you do a good job this redhead will let you fuck her in many ways.
                  Apartment Deal Release: 04/14/2011
                  Here your the landlord of a great apartment and here comes a hot chick that wants ot rent it, but she wants a DEAL can you make a deal with her and get fucked at the same time ?
                  Birthday Surprise Release: 04/11/2011
                  You are one of the grat guys nad bring your wife 5 of your friends home so she can have them all fuck her cause its been her dream for years but you make her do the guessing game before she can have them all.
                  TV Buddys Release: 04/08/2011
                  Your always going over to this girls aptment to watch tv with her and finally she calls you out on all the times you come over can you stand the heat and tell her your there cause you want ot secertly fuck her?
                  Salesman pickup Release: 04/05/2011
                  This game you get to play the lucky salesman that gets to show a blonde babe just what she wants to wear!
                  Cat Woman Fuck Release: 04/02/2011
                  Cat woman is on the loose and in a new movie you get a sneak peek at her movie but then she finds out can you make this cat meow?
                  Birthday Hooker Release: 03/30/2011
                  Its Stans birthday and for a present the guys gert together and surprise him with a birthday hooker you can just guess what goes on with this hooker and you as you get to play Stan!
                  Party Time Slut Release: 03/27/2011
                  Your at your friends party and find a bored girl there as well if your good you can talk her into comeing back to your place for a little sex all tied up.
                  Clinic Doctor Release: 03/24/2011
                  Your the doctor on call at this clinic and a redhead comes walking in and needs ot be looked at right away! You might need to check her ass out really good though! Can you cut it?
                  Massage pickup Release: 03/21/2011
                  You meet a sweet taned girl and if your nice to her she will be nice back and let you play with her tits then fuck her till you cum.
                   
                  FREE BONUS! You'll get FREE access to more sites by subscribing to this site! CLICK HERE FOR MORE INFO
                  JOIN NOW  |  MEMBERS  |  SUPPORT  |  WEBMASTERS
                  This site contains sexually explicit Ex Girlfriend Sluts. If you are not at least 18 years of age, or object to viewing sexually explicit material involving real Ex-Girlfriend photos and videos submitted by our members, or if you don't consider amateur porn to conform to your community standards, please leave now.
                  LEGAL NOTICE: All models appearing on the site were at least 18 years of age at the time their photographs were taken.
                  Please refer to our 18 U.S.C. 2257 Record-Keeping Requirements Compliance statement below for further information and documentation.
                  Terms & Conditions of Membership | 18 U.S.C. 2257 Record-Keeping Requirements Compliance statement | Privacy Policy
                  Links | Customer Service | Webmaster Program
                  © 1996 - 2010 by PowerNetX, Inc.
                   
                  ]]>
                  false
                  827166623535092736 2097920 Cross-site scripting (reflected) http://textad.xxxmatch.com High Certain
                  The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

                  Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

                  The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
                • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
                • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
                • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
                  50bee"><script>alert(1)</script>5ffdf4ec12c was submitted in the name of an arbitrarily supplied request parameter. This input was echoed unmodified in the application's response.

                  This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
                  5ffdf4ec12c=1 HTTP/1.1 Host: textad.xxxmatch.com Proxy-Connection: keep-alive Referer: http://www.verifiedplaymates.com/Long-Island_NY/erotic-services User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 ]]> Untitled Document ]]> false
                  2164692078469407744 2097920 Cross-site scripting (reflected) http://d.adsverse.com High Certain
                  The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

                  Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

                  The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
                • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
                • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
                • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
                  ad9e3</script><script>alert(1)</script>cc37b1c5331 was submitted in the cb parameter. This input was echoed unmodified in the application's response.

                  This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

                  Note that a redirection occurred between the attack request and the response containing the echoed input. It is necessary to follow this redirection for the attack to succeed. When the attack is carried out via a browser, the redirection will be followed automatically.]]>
                  cc37b1c5331&loc=http%3A%2F%2Fcaseyofhouston.com%2Freviews.php HTTP/1.1 Host: d.adsverse.com Proxy-Connection: keep-alive Referer: http://d.adsverse.com/afr.php?key=L2SmMKyiMzuiqKA0o24hL29g&refresh=60&zoneid=14&cb=2130598163 User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 Cookie: OAGEO=US%7CTX%7CDallas%7C75207%7C32.7825%7C-96.8207%7C623%7C214%7CMedia+Visions%7C%7C; OAID=574904589a3ae5378ce2de7809c7b231 ]]> Advertisement cc37b1c5331&loc=http%3A%2F%2Fcaseyofhouston.com%2Freviews.php")', 60000); // ]]]> -->
                  Undress her !
                  Some are genuine escorts in !
                  ]]>
                  true
                  2236446762827475968 5243904 Cross-domain Referer leakage http://googleads.g.doubleclick.net Information Certain
                  If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

                  You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

                  Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

                  Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
                • http://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-9643032735294668&output=html&h=90&slotname=1105967903&w=728&lmt=1303090863&flash=10.2.154&url=http%3A%2F%2Fwww.thatshiphop.com%2Fbrowse.php%3Ftype%3D%2527%2522--%253E%253C%2Fstyle%253E%253C%2Fscript%253E%253Cscript%253Ealert(0x000092)%253C%2Fscript%253E&dt=1303072863906&bpp=3&shv=r20110406&jsv=r20110412&correlator=1303072863918&frm=0&adk=2878790657&ga_vid=183639622.1303072864&ga_sid=1303072864&ga_hid=1147196049&ga_fc=0&u_tz=-300&u_his=1&u_java=1&u_h=1200&u_w=1920&u_ah=1156&u_aw=1920&u_cd=16&u_nplug=9&u_nmime=44&biw=1079&bih=1016&fu=0&ifi=1&dtd=28&xpc=QJw8odlS4z&p=http%3A//www.thatshiphop.com
                • The response contains the following links to other domains:
                  • http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
                  • http://pagead2.googlesyndication.com/pagead/abglogo/abg-en-100c-ffffff.png
                  • http://pagead2.googlesyndication.com/pagead/images/i.png
                  • http://pagead2.googlesyndication.com/pagead/imgad?id=COGHlq2_yOmkahDYBRhaMggURmXwJutCYw
                  • http://pagead2.googlesyndication.com/pagead/js/abg.js
                  • http://pagead2.googlesyndication.com/pagead/js/graphics.js
                  • http://www.google.com/url?ct=abg&q=https://www.google.com/adsense/support/bin/request.py%3Fcontact%3Dabg_afc%26url%3Dhttp://www.thatshiphop.com/browse.php%253Ftype%253D%2527%252522--%25253E%25253C/style%25253E%25253C/script%25253E%25253Cscript%25253Ealert(0x000092)%25253C/script%25253E%26hl%3Den%26client%3Dca-pub-9643032735294668%26adU%3DMyGreenDot.com%26adT%3DImageAd%26gl%3DUS&usg=AFQjCNG3Z7gUMqCIj1XzvLEH2FIWPkj9AQ
                  ]]>
                  (i)
                  Ads by Google
                  ]]>
                  false
                  522805471916322816 5243904 Cross-domain Referer leakage http://choices.truste.com Information Certain
                  If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

                  You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

                  Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

                  Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
                • http://choices.truste.com/ca?pid=mec01&aid=att02&cid=0311wl300x250&c=att02cont1&w=300&h=250&ox=20&zi=10002&plc=tr&iplc=ctr
                • The response contains the following link to another domain:
                  • http://www.att.com/gen/privacy-policy?pid=2506
                  ]]>
                  \ \
                  \
                  \ \

                  \ This ad was delivered on behalf of AT&T. It was automatically matched to your computer\'s browsing activity. AT&T is commited to providing you with transparency and control over the types of advertising you see by us.\


                  \ More information & opt-out options »

                  \ Online Privacy Information »

                  \ AT&T Privacy FAQ »\

                  \
                  \
                  \
                  \ Powered by \
                  \ \ '; var te_clr1_att02cont1_bi = {'baseName':'te-clr1-att02cont1','anchName':'te-clr1-att02cont1-anch','width':300,'height':250,'ox':20,'oy':0,'plc':'tr','iplc':'ctr','intDivName':'te-clr1-att02cont1-itl','iconSpanId':'te-clr1-att02cont1-icon','backgroundColor':'white','opacity':.8,'filterOpacity':80,'containerId':'att02cont1','noticeBaseUrl':'http://choices.truste.com/camsg?','interstitial':te_clr1_att02cont1_ib,'interstitialWidth':300,'interstitialHeight':250,'popTab':false,'showLink':'javascript:truste.ca.showoverlay(te_clr1_att02cont1_bi)','hideLink':'javascript:truste.ca.hideoverlay(te_clr1_att02cont1_bi)','icon':'http://choices.truste.com/assets/admarker.png','icon_cam':'http://choices.truste.com/assets/adicon.png','iconText':'','aid':'att02','pid':'mec01','zindex':'10002','cam':'2'}; var tecabaseurl = 'choices.truste.com'; truste.ca.addEvent(window, 'load', function() { if(!truste.defjsload) { var element = document.createElement('script'); element.src = 'http://' + tecabaseurl + '/js/tecaintjs.js'; document.body.appendChild(element); truste.defjsload = true; } truste.ca.addBinding(te_clr1_att02cont1_bi); }); ]]>
                  false
                  5621162126254877696 2097920 Cross-site scripting (reflected) http://optimized-by.rubiconproject.com Information Certain
                  The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

                  Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

                  The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
                • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
                • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
                • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
                  1e9e8"-alert(1)-"4b43d6c9f7a was submitted in the ruid cookie. This input was echoed unmodified in the application's response.

                  This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

                  Because the user data that is copied into the response is submitted within a cookie, the application's behaviour is not trivial to exploit in an attack against another user. Typically, you will need to find a means of setting an arbitrary cookie value in the victim's browser in order to exploit the vulnerability. This limitation considerably mitigates the impact of the vulnerability.]]>
                  <\/script>"; rubicon_tag_code = rubicon_tag_code.replace(/##RUBICON_CB##/g,rubicon_cb); document.write(rubicon_tag_code); document.write("\"Quantcast\"/ Facebook
                  FilesTube - Media Search Engine
                  Confirm
                  You like FilesTube - Media Search Engine. · Admin Page · Insights · ErrorYou like this.148,901 · Admin Page · Insights · Error
                  ]]>
                  false
                  3026860307496250368 5243904 Cross-domain Referer leakage http://www.lessonofpassion.com Information Certain
                  If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

                  You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

                  Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

                  Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
                • http://www.lessonofpassion.com/user.php?type=login
                • The response contains the following links to other domains:
                  • http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js
                  • http://www.flashforadults.com/?t=110138,1,66,0
                  • http://www.google-analytics.com/urchin.js
                  • http://www.playforceone.com/
                  • http://www.sexizu.com/
                  ]]>
                  Lesson of Passion - erotic flash games


                  Username   Password  

                  If you want to post comments and gain access to special features please your account.
                  Login ERROR

                  You have not defined your LOGIN or PASSWORD.
                  Please LOGIN again using correct data.

                  If you are new user please REGISTER
                  ]]> false 9013319778829645824 2097920 Cross-site scripting (reflected) http://b.scorecardresearch.com High Certain
                  The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

                  Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

                  The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
                • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
                • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
                • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
                  594c9<script>alert(1)</script>e8c12eeb877 was submitted in the c6 parameter. This input was echoed unmodified in the application's response.

                  This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
                  alert(1)e8c12eeb877&c10=3202889&c15= HTTP/1.1 Host: b.scorecardresearch.com Proxy-Connection: keep-alive Referer: http://www.democracyforums.com/frontpage/index.php User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 ]]> 2080?a.substr(0,2075)+"&ct=1":a;if(!/BlackBerry.*?\/([1-3]\.|4\.[0-5])/.test(b.userAgent)){var c=new Image();c.onload=function(){};c.src=a}else{a=a.replace(/\/b\?/,"/p?");j.write("")}return a}catch(h){}};COMSCORE.purge=function(a){try{var c=[],f,b;a=a||_comscore;for(b=a.length-1;b>=0;b--){f=COMSCORE.beacon(a[b]);a.splice(b,1);if(f){c.push(f)}}return c}catch(d){}};COMSCORE.purge(); COMSCORE.beacon({c1:"8", c2:"6135404", c3:"25", c4:"13345", c5:"", c6:"594c9e8c12eeb877", c10:"3202889", c15:"", c16:"", r:""}); ]]> false
                  3625166064537345024 5244160 Cross-domain script include http://www.lessonofpassion.com Information Certain
                  If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
                • http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js
                • http://www.google-analytics.com/urchin.js
                • ]]>
                  Lesson of Passion - erotic flash games


                  Username   Password  

                  If you want to post comments and gain access to special features please your account.
                  Login ERROR

                  You have not defined your LOGIN or PASSWORD.
                  Please LOGIN again using correct data.

                  If you are new user please REGISTER
                  ]]> false 1481361363913550848 2097920 Cross-site scripting (reflected) http://www.xxxmatch.com Information Certain
                  The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

                  Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

                  The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>
                • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
                • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
                • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]>
                  3f4fe"><script>alert(1)</script>8733f712cf8 was submitted in the REST URL parameter 1. This input was echoed unmodified in the application's response.

                  This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.

                  Note that the response into which user data is copied is an HTTP redirection. Typically, browsers will not process the contents of the response body in this situation. Unless you can find a way to prevent the application from performing a redirection (for example, by interfering with the response headers), the observed behaviour may not be exploitable in practice. This limitation considerably mitigates the impact of the vulnerability.]]>
                  8733f712cf8/freesex HTTP/1.1 Host: www.xxxmatch.com Proxy-Connection: keep-alive Referer: http://www.verifiedplaymates.com/Long-Island_NY/erotic-services User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16 Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5 Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3 Cookie: referral_path=%2F63790%2Fverifiedplaymatespop%2F%2F0%2F0 ]]> 8733f712cf8/freesex Content-Length: 153 Connection: close Content-Type: text/html 8733f712cf8/freesex">Click here if you have not been redirected automatically]]> false
                  4692277483769946112 8389632 Content type incorrectly stated http://www.google.com Information Firm
                  In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
                • Content-Type: application/json; charset=UTF-8
                • The response states that it contains JSON. However, it actually appears to contain unrecognised content.]]>
                  ?3?w\nb){var a\x3dnew Image,e\x3dgoogle,g\x3de.lc,f\x3de.li;a.onerror\x3d(a.onload\x3d(a.onabort\x3dfunction(){delete g[f]}));g[f]\x3da;b\x3db||\x22/gen_204?atyp\x3di\x26ct\x3d\x22+c+\x22\x26cad\x3d\x22+d+\x22\x26zx\x3d\x22+google.time();a.src\x3db;e.li\x3df+1},lc:[],li:0,\nToolbelt:{}};\nif(!window.chrome)window.chrome\x3d{};window.chrome.sv\x3d1.00;\n\x3c/script\x3e\x3cscript\x3e\n\n\n\n\n\n\n\n\n\nwindow.google.loc\x3d_loc;\x3c/script\x3e\x3cscript\x3ewindow.je \x3d parent.google.j;window.dr \x3d 1;window.fp \x3d \x2730c63f58a41e025b\x27;\x3c/script\x3e\x3cscript\x3e(function(){var classname\x3d\x27\x27; je.ad(_loc,document.title,window.google.kEI,window.fp,_ss,window.google.kCSIE);je.bc\x26\x26je.bc(classname);})();\x3c/script\x3e\x3cscript\x3eif(je){je.ph(_loc,{\x27gb_1\x27:\x27http://www.google.com/webhp?hl\\x3den\\x26tab\\x3dww\x27,\x27gb_2\x27:\x27http://www.google.com/images?hl\\x3den\\x26q\\x3dlongislanderotic+sql+injection\\x26um\\x3d1\\x26ie\\x3dUTF-8\\x26source\\x3dog\\x26sa\\x3dN\\x26tab\\x3dwi\x27,\x27gb_12\x27:\x27http://www.google.com/search?hl\\x3den\\x26q\\x3dlongislanderotic+sql+injection\\x26um\\x3d1\\x26ie\\x3dUTF-8\\x26tbo\\x3du\\x26tbs\\x3dvid:1\\x26source\\x3dog\\x26sa\\x3dN\\x26tab\\x3dwv\x27,\x27gb_8\x27:\x27http://maps.google.com/maps?hl\\x3den\\x26q\\x3dlongislanderotic+sql+injection\\x26um\\x3d1\\x26ie\\x3dUTF-8\\x26sa\\x3dN\\x26tab\\x3dwl\x27,\x27gb_5\x27:\x27http://www.google.com/search?hl\\x3den\\x26q\\x3dlongislanderotic+sql+injection\\x26um\\x3d1\\x26ie\\x3dUTF-8\\x26tbo\\x3du\\x26tbs\\x3dnws:1\\x26source\\x3dog\\x26sa\\x3dN\\x26tab\\x3dwn\x27,\x27gb_6\x27:\x27http://www.google.com/search?hl\\x3den\\x26q\\x3dlongislanderotic+sql+injection\\x26um\\x3d1\\x26ie\\x3dUTF-8\\x26tbo\\x3du\\x26tbs\\x3dshop:1\\x26source\\x3dog\\x26sa\\x3dN\\x26tab\\x3dwf\x27,\x27gb_10\x27:\x27http://www.google.com/search?hl\\x3den\\x26q\\x3dlongislanderotic+sql+injection\\x26um\\x3d1\\x26ie\\x3dUTF-8\\x26tbo\\x3du\\x26tbs\\x3dbks:1\\x26source\\x3dog\\x26sa\\x3dN\\x26tab\\x3dwp\x27,\x27gb_27\x27:\x273 ??k?\\x3den\\x26q\\x3dlongislanderotic+sql+injection\\x26um\\x3d1\\x26ie\\x3dUTF-8\\x26sa\\x3dN\\x26tab\\x3dwe\x27,\x27gb_51\x27:\x27C*? ?\\x3den\\x26q\\x3dlongislanderotic+sql+injection\\x26um\\x3d1\\x26ie\\x3dUTF-8\\x26sa\\x3dN\\x26tab\\x3dwT\x27,\x27gb_9\x27:\x27S$??%\\x3den\\x26q\\x3dlongislanderotic+sql+injection\\x26um\\x3d1\\x26ie\\x3dUTF-8\\x26sa\\x3dN\\x26tab\\x3dws\x27,\x27gb_13\x27:\x27http://www.google.com/search?hl\\x3den\\x26q\\x3dlongislanderotic+sql+injection\\x26um\\x3d1\\x26ie\\x3dUTF-8\\x26tbo\\x3du\\x26tbs\\x3dblg:1\\x26source\\x3dog\\x26sa\\x3dN\\x26tab\\x3dwb\x27,\x27gb_92\x27:\x27http://www.google.com/search?hl\\x3den\\x26q\\x3dlongislanderotic+sql+injection\\x26um\\x3d1\\x26ie\\x3dUTF-8\\x26tbo\\x3du\\x26tbs\\x3dmbl:1\\x26source\\x3dog\\x26sa\\x3dN\\x26tab\\x3dwY\x27,\x27gb_36\x27:\x27c!?^?#\\x3den\\x26q\\x3dlongislanderotic+sql+injection\\x26um\\x3d1\\x26ie\\x3dUTF-8\\x26sa\\x3dN\\x26tab\\x3dw1\x27,\x27gb_24\x27:\x27http://www.google.com/calendar?hl\\x3den\\x26q\\x3dlongislanderotic+sql+injection\\x26um\\x3d1\\x26ie\\x3dUTF-8\\x26sa\\x3dN\\x26tab\\x3dwc\x27,\x27gb_31\x27:\x273&?1?\\x3den\\x26q\\x3dlongislanderotic+sql+injection\\x26um\\x3d1\\x26ie\\x3dUTF-8\\x26sa\\x3dN\\x26tab\\x3dwq\x27,\x27gb_3\x27:\x27C"?k?\\x3den\\x26q\\x3dlongislanderotic+sql+injection\\x26um\\x3d1\\x26ie\\x3dUTF-8\\x26sa\\x3dN\\x26tab\\x3dwg\x27,\x27gb_70\x27:\x27S ?x?ServiceLogin?hl\\x3den\\x26continue\\x3dhttp://www.google.com/%23q%3Dlongislanderotic%2Bsql%2Binjection%26hl%3Den\x27,\x27gb_70\x27:\x27? /?ServiceLogin?hl\\x3den\\x26continue\\x3dhttp://www.google.com/%23q%3Dlongislanderotic%2Bsql%2Binjection%26hl%3Den\x27,\x27gb_70\x27:\x27? /?ServiceLogin?hl\\x3den\\x26continue\\x3dhttp://www.google.com/%23q%3Dlongislanderotic%2Bsql%2Binjection%26hl%3Den\x27,\x27gb_70\x27:\x27? /?ServiceLogin?hl\\x3den\\x26continue\\x3dhttp://www.google.com/%23q%3Dlongislanderotic%2Bsql%2Binjection%26hl%3Den\x27,\x27gb_70\x27:\x27? /?aServiceLogin?hl\\x3den\\x26continue\\x3dhttp://www.google.com/%23q%3Dlongislanderotic%2Bsql%2Binjection%26hl%3Den\x27},_ss,true);je.slp\x26\x26je.slp(_loc,1,_ss);}\x3c/script\x3e\x3cscript\x3eje.p(_loc,\x27tophf\x27,\x27 \\x3cinput type\\x3dhidden name\\x3dhl value\\x3d\\x22en\\x22\\x3e \\x3cinput name\\x3d\\x22source\\x22 type\\x3d\\x22hidden\\x22 value\\x3d\\x22hp\\x22/\\x3e \x27,_ss);\x3c/script\x3e\x3cscript\x3eje.p(_loc,\x27ss-bar\x27,\x27\x27,_ss);\x3c/script\x3e"}/*""*/??o??Z??s??L????y?v{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943\x26pnp\x3d1",d:" "}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"(function(){})();(function(){})();\x3cscript\x3eje.p(_loc,\x27srchdsc\x27,\x27 \x27,_ss);\x3c/script\x3e"}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"\x3cscript\x3eje.p(_loc,\x27sdb\x27,\x27 \x27,_ss);\x3c/script\x3e"}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"\x3cscript\x3eje.ph(_loc,{sflas:\x27/advanced_search?q\\x3dlongislanderotic+sql+injection\\x26hl\\x3den\\x26prmd\\x3divns\x27},_ss);\x3c/script\x3e"}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"\x3cscript\x3eje.p(_loc,\x27sbfrm_l\x27,\x27\\x3cdiv id\\x3dresultStats\\x3eAbout 539 results\\x3cnobr\\x3e (0.21 seconds)\\x26nbsp;\\x3c/nobr\\x3e\\x3c/div\\x3e\x27,_ss);\x3c/script\x3e"}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"\x3cscript\x3eje.p(_loc,\x27ucs\x27,\x27 \x27,_ss);\x3c/script\x3e"}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"\x3cscript\x3eje.p(_loc,\x27taw\x27,\x27 \\x3cdiv class\\x3dc id\\x3dtads style\\x3d\\x224??!\\x22\\x3e\\x3ch2 style\\x3d\\x223RA? \\x22\\x3eAds\\x3c/h2\\x3e\\x3col onmouseover\\x3d\\x22return true\\x22 style\\x3d\\x22padding:3px 0\\x22\\x3e\\x3cli class\\x3dtaf\\x3e\\x3ch3\\x3e\\x3ca id\\x3dpa1 href\\x3d\\x22/aclk?sa\\x3dl\\x26amp;ai\\x3dCIFdMG0KrTdOWKI2i0AHutZGBAYPM3_MBw-iygh3p6cgFCAAQASgDUKHi55X5_____wFgyc6MjeSksBSgAYu0-_0DyAEBqgQiT9C-G5a1G7p2NnhHOFFoimwo8yX_eF16zRCmfQALouOt9w\\x26amp;sig\\x3dAGiWqtzaAXxxgbTrAj4FJ1iHHyQbWsECNw\\x26amp;ved\\x3d0CAUQ0Qw\\x26amp;adurl\\x3dhttps://www.ibm.com/services/forms/signup.do%3Flang%3Den_US%26source%3Dsw-infomgt%26S_PKG%3DGuardium_hardening_database_wp%26_kk%3DSQL%2520injection%26_kt%3D8229e3db-8b5b-4b81-87cd-ff7251d53494\\x22 \\x3e\\x3cb\\x3eSQL Injection\\x3c/b\\x3e Protection - Offering Complimentary White Paper\\x3c/a\\x3e\\x3c/h3\\x3e\\x3cspan class\\x3dac\\x3e8 Steps: Holistic Database Security \\x3c/span\\x3e\\x3cbr\\x3e\\x3cspan\\x3e\\x3ccite\\x3ewww.ibm.com/guardium\\x3c/cite\\x3e\\x3c/span\\x3e\\x3cli class\\x3dtam\\x3e\\x3ch3\\x3e\\x3ca id\\x3dpa2 href\\x3d\\x22/aclk?sa\\x3dl\\x26amp;ai\\x3dCDwDLG0KrTdOWKI2i0AHutZGBAeztgt8BjKaZkRjp6cgFCAAQAigDULXwhrkFYMnOjI3kpLAUoAHWr_L9A8gBAaoEH0_QnjKvshu5djZ4R3BR29Ddk9i9t_SW5HDCx0H6vn4\\x26amp;sig\\x3dAGiWqtzpB7emRBzuPCPR_9cSklCucUmwVw\\x26amp;ved\\x3d0CAkQ0Qw\\x26amp;adurl\\x3dhttps://h10078.www1.hp.com/cda/hpms/display/main/hpms_content.jsp%3Fzn%3Dbto%26cp%3D1-11-201_4000_100__%26jumpid%3Dex_R11374_us/en/large/eb/btoapps_sqlinject_googlesemaw%26s_kwcid%3DTC%7C14803%7CSQL%2520injection%7C%7CS%7Cp%7C6384123564\\x22 \\x3e\\x3cb\\x3eSQL Injection\\x3c/b\\x3e Solution - HP App Security Solns Can Help\\x3c/a\\x3e\\x3c/h3\\x3e\\x3cspan class\\x3dac\\x3eMitigate \\x3cb\\x3eSQL Injection\\x3c/b\\x3e Risk-See How \\x3c/span\\x3e\\x3cbr\\x3e\\x3cspan style\\x3d\\x22color:#666\\x22\\x3ehp.com is rated \\x3ctable border\\x3d0 cellpadding\\x3d0 cellspacing\\x3d0 class\\x3d\\x22ti\\x22 style\\x3d\\x22height:px;width:px\\x22\\x3e\\x3ctr\\x3e\\x3ctd\\x3e\\x3cp style\\x3d\\x22J??r\\x22\\x3e\\x3cimg alt\\x3d\\x22Rated 4.1 out of 5.0\\x22 src\\x3d\\x22/images/nav_logo40.png\\x22 style\\x3d\\x22S$?,\\x22\\x3e\\x3ctd\\x3e\\x3cp style\\x3d\\x22?J?^\\x22\\x3e\\x3cimg alt\\x3d\\x22\\x22 src\\x3d\\x22/images/nav_logo40.png\\x22 style\\x3d\\x22?$-,\\x22\\x3e\\x3ctd\\x3e\\x3cp style\\x3d\\x22?J?^\\x22\\x3e\\x3cimg alt\\x3d\\x22\\x22 src\\x3d\\x22/images/nav_logo40.png\\x22 style\\x3d\\x22?$-,\\x22\\x3e\\x3ctd\\x3e\\x3cp style\\x3d\\x22?J?^\\x22\\x3e\\x3cimg alt\\x3d\\x22\\x22 src\\x3d\\x22/images/nav_logo40.png\\x22 style\\x3d\\x22?$-,\\x22\\x3e\\x3ctd\\x3e\\x3cp style\\x3d\\x22?J?^\\x22\\x3e\\x3cimg alt\\x3d\\x22\\x22 src\\x3d\\x22/images/nav_logo40.png\\x22 style\\x3d\\x22? -Y70px\\x22\\x3e\\x3c/table\\x3e (\\x3ca class\\x3d\\x22fl\\x22 href\\x3d\\x22/url?url\\x3dC.?3?Qhp.com\\x26rct\\x3dj\\x26sa\\x3dX\\x26ei\\x3dG0KrTfCVJ6HE0QG-q_T5CA\\x26ved\\x3d0CAcQwQY\\x26q\\x3dlongislanderotic+sql+injection\\x26usg\\x3dAFQjCNFaTLm3hknnq0Xkkw_T_onfIYs2kg\\x22\\x3e783 reviews\\x3c/a\\x3e)\\x3c/span\\x3e\\x26nbsp;\\x3cbr\\x3e\\x3cspan\\x3e\\x3ccite\\x3ewww.hp.com/go/appsec\\x3c/cite\\x3e\\x3c/span\\x3e\\x3cli class\\x3dtal\\x3e\\x3ch3\\x3e\\x3ca id\\x3dpa3 href\\x3d\\x22/aclk?sa\\x3dl\\x26amp;ai\\x3dChKt4G0KrTdOWKI2i0AHutZGBAYHRr5UB8a79uAzWy46nAQgAEAMoA1CbyqHi-P____8BYMnOjI3kpLAUoAGzzKL-A8gBAaoEIk_Q7lK4sRu4djZ4RzhRaIpsBvF9_3hdes0Qpn0AC6Ljrfc\\x26amp;sig\\x3dAGiWqtxr_ohcTVZn2XxQOxJFeuMN0A3R2A\\x26amp;ved\\x3d0CAsQ0Qw\\x26amp;adurl\\x3dhttp://www.acunetix.com/vulnerability-scanner/sql-injection-scanner.htm\\x22 \\x3e\\x3cb\\x3eSQL Injection\\x3c/b\\x3e scanner - Check for \\x3cb\\x3eSQL injection\\x3c/b\\x3e hacks \\x26amp; XSS\\x3c/a\\x3e\\x3c/h3\\x3e\\x3cspan class\\x3dac\\x3eDownload Free Acunetix Web Scanner \\x3c/span\\x3e\\x3cbr\\x3e\\x3cspan\\x3e\\x3ccite\\x3ewww.acunetix.com/free-edition/\\x3c/cite\\x3e\\x3c/span\\x3e\\x3c/ol\\x3e\\x3c/div\\x3e \x27,_ss);\x3c/script\x3e"}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"\x3cscript\x3eje.p(_loc,\x27topstuff\x27,\x27 \x27,_ss);\x3c/script\x3e"}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"\x3cscript\x3eje.p(_loc,\x27search\x27,\x27 \\x3c!--a--\\x3e \\x3ch2 class\\x3d\\x22hd\\x22\\x3eSearch Results\\x3c/h2\\x3e \\x3cdiv id\\x3d\\x22ires\\x22\\x3e \\x3col id\\x3d\\x22rso\\x22\\x3e \\x3c/ol\\x3e \\x3c/div\\x3e \\x3c!--z--\\x3e \x27,_ss);\x3c/script\x3e"}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"\x3cscript\x3eje.pa(_loc, \x27rso\x27, \x27\\x3c!--m--\\x3e\\x3cli class\\x3dg style\\x3d\\x22margin-bottom:8px;\\x22\\x3e\\x3cdiv class\\x3dvsc sig\\x3dHlD\\x3e\\x3cspan class\\x3dtl\\x3e\\x3ch3 class\\x3d\\x22r\\x22\\x3e\\x3ca href\\x3d\\x22http://www.cloudscan.me/2011/04/longislanderoticcom-sql-injection.html\\x22 class\\x3dl onmousedown\\x3d\\x22return rwt(this,\\x27\\x27,\\x27\\x27,\\x27\\x27,\\x271\\x27,\\x27AFQjCNFRpl6wXiEi22FBN5kDRpSjyDe16g\\x27,\\x27\\x27,\\x270CB0QFjAA\\x27)\\x22\\x3e\\x3cem\\x3elongislanderotic\\x3c/em\\x3e.com, \\x3cem\\x3eSQL Injection\\x3c/em\\x3e, Single Quote, DORK, CWE-89 \\x3cb\\x3e...\\x3c/b\\x3e\\x3c/a\\x3e\\x3c/h3\\x3e\\x3cbutton class\\x3dvspib\\x3e\\x3c/button\\x3e\\x3c/span\\x3e\\x3cdiv class\\x3d\\x22s\\x22\\x3eApr 17, 2011 \\x3cb\\x3e...\\x3c/b\\x3e Issue: \\x3cem\\x3eSQL injection\\x3c/em\\x3e. Severity: High. Confidence: Certain. Host: http://www.\\x3cwbr\\x3e\\x3cem\\x3elongislanderotic\\x3c/em\\x3e.com. Path: /\\x3cem\\x3elongislanderotic\\x3c/em\\x3e/forum/ \\x3cb\\x3e...\\x3c/b\\x3e\\x3cbr\\x3e\\x3cspan class\\x3df\\x3e\\x3ccite\\x3ewww.cloudscan.me/2011/04/\\x3cb\\x3elongislanderotic\\x3c/b\\x3ecom-\\x3cb\\x3esql\\x3c/b\\x3e-\\x3cb\\x3einjection\\x3c/b\\x3e.html\\x3c/cite\\x3e\\x3cspan class\\x3dgl\\x3e\\x3c/span\\x3e\\x3c/span\\x3e\\x3c/div\\x3e\\x3c/div\\x3e\\x3ch3 id\\x3d\\x22tbpr_1\\x22 class\\x3dtbpr style\\x3d\\x22display:none\\x22\\x3e\\x3ca href\\x3d\\x22/search?q\\x3dlongislanderotic+sql+injection\\x26amp;hl\\x3den\\x26amp;prmd\\x3divns\\x26amp;tbs\\x3dqdr:d\\x26amp;tbo\\x3du\\x26amp;sa\\x3dX\\x26amp;ei\\x3dG0KrTfCVJ6HE0QG-q_T5CA\\x26amp;ved\\x3d0CCIQmAcwAA\\x22 \\x3e\\x3cspan class\\x3dmicon style\\x3d\\x22background-position:-51px -62px\\x22\\x3e\\x3c/span\\x3e#'??~??N\\x3c/a\\x3e\\x3c/h3\\x3e\\x3c!--n--\\x3e\\x3c!--m--\\x3e\\x3cli class\\x3dg id\\x3dmbb2\\x3e\\x3cdiv class\\x3dvsc sig\\x3dAtT\\x3e\\x3cspan class\\x3dtl\\x3e\\x3ch3 class\\x3d\\x22r\\x22\\x3e\\x3ca href\\x3d\\x22http://www.cloudscan.me/\\x22 class\\x3dl onmousedown\\x3d\\x22return rwt(this,\\x27\\x27,\\x27\\x27,\\x27\\x27,\\x272\\x27,\\x27AFQjCNEDw7Oq70GLwE7KCD1P9xG4YpbElw\\x27,\\x27\\x27,\\x270CCMQFjAB\\x27)\\x22\\x3ePenetration Testing | Hoyt LLC\\x3c/a\\x3e\\x3c/h3\\x3e\\x3cbutton class\\x3dvspib\\x3e\\x3c/button\\x3e\\x3c/span\\x3e\\x3cdiv class\\x3d\\x22s\\x22\\x3eIssue: \\x3cem\\x3eSQL injection\\x3c/em\\x3e. Severity: High. Confidence: Certain. Host: http://www \\x3cb\\x3e...\\x3c/b\\x3e\\x3cbr\\x3e\\x3cspan class\\x3df\\x3e\\x3ccite\\x3ewww.cloudscan.me/\\x3c/cite\\x3e\\x3cspan class\\x3dgl\\x3e\\x3c/span\\x3e\\x3c/span\\x3e\\x3c/div\\x3e\\x3c/div\\x3e\\x3cdiv class\\x3dmbl\\x3e\\x3cdiv class\\x3dbl\\x3e\\x3cspan class\\x3dch id\\x3dmbl2 onclick\\x3d\\x22google.x(this)\\x22 style\\x3d\\x22display:inline-block\\x22\\x3e\\x3cdiv class\\x3dmbi\\x3e\\x3c/div\\x3e\\x3ca href\\x3d# onclick\\x3d\\x22return false\\x22 class\\x3dmblink\\x3eShow more results from cloudscan.me\\x3c/a\\x3e\\x3c/span\\x3e\\x3c/div\\x3e\\x3c/div\\x3e\\x3cdiv id\\x3dmbf2\\x3e\\x3cspan\\x3e\\x3c/span\\x3e\\x3c/div\\x3e\\x3c!--n--\\x3e\\x3c!--m--\\x3e\\x3cli class\\x3dg\\x3e\\x3cdiv class\\x3dvsc \\x3e\\x3cspan class\\x3dtl\\x3e\\x3ch3 class\\x3d\\x22r\\x22\\x3e\\x3ca href\\x3d\\x22http://db61bd0b.livejournal.com/\\x22 class\\x3dl onmousedown\\x3d\\x22return rwt(this,\\x27\\x27,\\x27\\x27,\\x27\\x27,\\x273\\x27,\\x27AFQjCNEynm0ty54LLaG-9nX8hzVdvD7LpA\\x27,\\x27\\x27,\\x270CCkQFjAC\\x27)\\x22\\x3edb61bd0b\\x3c/a\\x3e\\x3c/h3\\x3e\\x3c/span\\x3e\\x3cdiv class\\x3d\\x22s\\x22\\x3eApr 1, 2009 \\x3cb\\x3e...\\x3c/b\\x3e dollar field format \\x3cem\\x3esql\\x3c/em\\x3e \\x26middot; jokes teenage sex \\x3cb\\x3e...\\x3c/b\\x3e rubber \\x3cem\\x3einjection\\x3c/em\\x3e mold maker \\x26middot; water flow rate calulation \\x26middot; life is but a journey \\x26middot; how can i get on bebo \\x26middot; you make me live queen \\x26middot; \\x3cem\\x3elong island erotic\\x3c/em\\x3e massage parlor rating \\x3cb\\x3e...\\x3c/b\\x3e\\x3cbr\\x3e\\x3cspan class\\x3df\\x3e\\x3ccite\\x3edb61bd0b.livejournal.com/\\x3c/cite\\x3e - \\x3cspan class\\x3dgl\\x3e\\x3ca href\\x3d\\x22http://webcache.googleusercontent.com/search?q\\x3dcache:0dT0S3SCAZEJ:db61bd0b.livejournal.com/+longislanderotic+sql+injection\\x26amp;cd\\x3d3\\x26amp;hl\\x3den\\x26amp;ct\\x3dclnk\\x26amp;gl\\x3dus\\x26amp;source\\x3dwww.google.com\\x22 onmousedown\\x3d\\x22return rwt(this,\\x27\\x27,\\x27\\x27,\\x27\\x27,\\x273\\x27,\\x27AFQjCNFNhc6lv41862N6NbcXqGrfo7pSEg\\x27,\\x27\\x27,\\x270CCsQIDAC\\x27)\\x22\\x3eCached\\x3c/a\\x3e\\x3c/span\\x3e\\x3c/span\\x3e\\x3c/div\\x3e\\x3c/div\\x3e\\x3c!--n--\\x3e\\x3c!--m--\\x3e\\x3cli class\\x3dg\\x3e\\x3cdiv class\\x3dvsc sig\\x3djud\\x3e\\x3cspan class\\x3dtl\\x3e\\x3ch3 class\\x3d\\x22r\\x22\\x3e\\x3ca href\\x3d\\x22http://www.onair.ru/main/forum/browse_messages/FRMTHRID__567/number__10/start__10/\\x22 class\\x3dl onmousedown\\x3d\\x22return rwt(this,\\x27\\x27,\\x27\\x27,\\x27\\x27,\\x274\\x27,\\x27AFQjCNG4aNRJROZR7KXitb68Nm5Nvbm5cA\\x27,\\x27\\x27,\\x270CCwQFjAD\\x27)\\x22\\x3e/ ???????????????????? ???????????? ??. ????????. ???????????????? ???????????????????? (???????????? ???????? \\x3cb\\x3e...\\x3c/b\\x3e\\x3c/a\\x3e\\x3c/h3\\x3e\\x3cbutton class\\x3dvspib\\x3e\\x3c/button\\x3e\\x3c/span\\x3e\\x3cdiv class\\x3d\\x22s\\x22\\x3e\\x3cem\\x3esql\\x3c/em\\x3e-ledger process latex impotence and men deep fist gay marriage in las vegas \\x3cb\\x3e......\\x3c/b\\x3e \\x3cem\\x3elong island erotic\\x3c/em\\x3e services classifieds craigslist forced face sitting porn \\x3cb\\x3e.....\\x3c/b\\x3e ass \\x3cem\\x3einjection\\x3c/em\\x3e needle london zoo regent\\x26#39;s park make a woman cum hard \\x3cb\\x3e...\\x3c/b\\x3e\\x3cbr\\x3e\\x3cspan class\\x3df\\x3e\\x3ccite\\x3ewww.onair.ru/main/forum/browse_messages/...10/start__10/\\x3c/cite\\x3e - \\x3cspan class\\x3dgl\\x3e\\x3ca href\\x3d\\x22http://webcache.googleusercontent.com/search?q\\x3dcache:ISwWqPXfYRMJ:www.onair.ru/main/forum/browse_messages/FRMTHRID__567/number__10/start__10/+longislanderotic+sql+injection\\x26amp;cd\\x3d4\\x26amp;hl\\x3den\\x26amp;ct\\x3dclnk\\x26amp;gl\\x3dus\\x26amp;source\\x3dwww.google.com\\x22 onmousedown\\x3d\\x22return rwt(this,\\x27\\x27,\\x27\\x27,\\x27\\x27,\\x274\\x27,\\x27AFQjCNFHQ7k9lm2YQVrhTIeGB7MoS2pubQ\\x27,\\x27\\x27,\\x270CDEQIDAD\\x27)\\x22\\x3eCached\\x3c/a\\x3e\\x3c/span\\x3e\\x3c/span\\x3e\\x3c/div\\x3e\\x3c/div\\x3e\\x3c!--n--\\x3e\x27,_ss);\x3c/script\x3e"}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"\x3cscript\x3eje.pa(_loc, \x27rso\x27, \x27\\x3c!--m--\\x3e\\x3cli class\\x3dg\\x3e\\x3cdiv class\\x3dvsc \\x3e\\x3cspan class\\x3dtl\\x3e\\x3ch3 class\\x3d\\x22r\\x22\\x3e\\x3ca href\\x3d\\x22http://maptixemi.weblog.ro/\\x22 class\\x3dl onmousedown\\x3d\\x22return rwt(this,\\x27\\x27,\\x27\\x27,\\x27\\x27,\\x275\\x27,\\x27AFQjCNEyxkVcCfbVUnzwxqXHMnQelBKPaA\\x27,\\x27\\x27,\\x270CDIQFjAE\\x27)\\x22\\x3eMaptixemi blog\\x3c/a\\x3e\\x3c/h3\\x3e\\x3c/span\\x3e\\x3cdiv class\\x3d\\x22s\\x22\\x3eNov 9, 2010 \\x3cb\\x3e...\\x3c/b\\x3e Fuel \\x3cem\\x3einjection\\x3c/em\\x3e jeff city mo \\x26middot; Http:www.familyfeud.com \\x26middot; Biotest diagnostics corporation \\x26middot; Ramadan 2011 \\x3cb\\x3e......\\x3c/b\\x3e \\x3cem\\x3eSql\\x3c/em\\x3e delete from multiple tables \\x3cb\\x3e......\\x3c/b\\x3e \\x3cem\\x3eLong island erotic\\x3c/em\\x3e \\x26middot; The care bear movie \\x26middot; Ydueueuuturitrtyuuyyu0h \\x3cb\\x3e...\\x3c/b\\x3e\\x3cbr\\x3e\\x3cspan class\\x3df\\x3e\\x3ccite\\x3emaptixemi.weblog.ro/\\x3c/cite\\x3e - \\x3cspan class\\x3dgl\\x3e\\x3ca href\\x3d\\x22http://webcache.googleusercontent.com/search?q\\x3dcache:krDA4fUbpbIJ:maptixemi.weblog.ro/+longislanderotic+sql+injection\\x26amp;cd\\x3d5\\x26amp;hl\\x3den\\x26amp;ct\\x3dclnk\\x26amp;gl\\x3dus\\x26amp;source\\x3dwww.google.com\\x22 onmousedown\\x3d\\x22return rwt(this,\\x27\\x27,\\x27\\x27,\\x27\\x27,\\x275\\x27,\\x27AFQjCNGzNWXXjCcJdebyOY15Xt4LJ6NdHA\\x27,\\x27\\x27,\\x270CDQQIDAE\\x27)\\x22\\x3eCached\\x3c/a\\x3e\\x3c/span\\x3e\\x3c/span\\x3e\\x3c/div\\x3e\\x3c/div\\x3e\\x3c!--n--\\x3e\\x3c!--m--\\x3e\\x3cli class\\x3dg\\x3e\\x3cdiv class\\x3dvsc \\x3e\\x3cspan class\\x3dtl\\x3e\\x3ch3 class\\x3d\\x22r\\x22\\x3e\\x3ca href\\x3d\\x22http://www.wingcorp.com/cgi-bin/log/r200612\\x22 class\\x3dl onmousedown\\x3d\\x22return rwt(this,\\x27\\x27,\\x27\\x27,\\x27\\x27,\\x276\\x27,\\x27AFQjCNGMNmiHYFE1-X0s4-I2I9E_ZDslQg\\x27,\\x27\\x27,\\x270CDUQFjAF\\x27)\\x22\\x3eR200612 - ????????????????????????????????????????????????????????????????????? \\x3cb\\x3e...\\x3c/b\\x3e\\x3c/a\\x3e\\x3c/h3\\x3e\\x3c/span\\x3e\\x3cdiv class\\x3d\\x22s\\x22\\x3e\\x3cb\\x3e...\\x3c/b\\x3e http://www.geocities.com/alyssaclemons01/build-web-microsoft-\\x3cem\\x3esql\\x3c/em\\x3e-server. \\x3cb\\x3e.....\\x3c/b\\x3e \\x3cem\\x3elong island erotic\\x3c/em\\x3e massage, \\x3cb\\x3e......\\x3c/b\\x3e \\x3cem\\x3einjection\\x3c/em\\x3e mold design software, 8-PPP, \\x3cb\\x3e...\\x3c/b\\x3e\\x3cbr\\x3e\\x3cspan class\\x3df\\x3e\\x3ccite\\x3ewww.wingcorp.com/cgi-bin/log/r200612\\x3c/cite\\x3e - \\x3cspan class\\x3dgl\\x3e\\x3ca href\\x3d\\x22http://webcache.googleusercontent.com/search?q\\x3dcache:3uHg6OABKgEJ:www.wingcorp.com/cgi-bin/log/r200612+longislanderotic+sql+injection\\x26amp;cd\\x3d6\\x26amp;hl\\x3den\\x26amp;ct\\x3dclnk\\x26amp;gl\\x3dus\\x26amp;source\\x3dwww.google.com\\x22 onmousedown\\x3d\\x22return rwt(this,\\x27\\x27,\\x27\\x27,\\x27\\x27,\\x276\\x27,\\x27AFQjCNFgtsHhx79kxhYIs4mjAZGHiXezVg\\x27,\\x27\\x27,\\x270CDcQIDAF\\x27)\\x22\\x3eCached\\x3c/a\\x3e\\x3c/span\\x3e\\x3c/span\\x3e\\x3c/div\\x3e\\x3c/div\\x3e\\x3c!--n--\\x3e\\x3c!--m--\\x3e\\x3cli class\\x3dg\\x3e\\x3cdiv class\\x3dvsc \\x3e\\x3cspan class\\x3dtl\\x3e\\x3ch3 class\\x3d\\x22r\\x22\\x3e\\x3ca href\\x3d\\x22http://friend.kir.jp/CGI/bgboardv12/old/log0545.log\\x22 class\\x3dl onmousedown\\x3d\\x22return rwt(this,\\x27\\x27,\\x27\\x27,\\x27\\x27,\\x277\\x27,\\x27AFQjCNG3hiU9_L1oQwRuQFV1jx-bqrsdOw\\x27,\\x27\\x27,\\x270CDgQFjAG\\x27)\\x22\\x3e163502\\x26lt;\\x26gt;2008/07/24 (Thu) 21:43:07\\x26lt;\\x26gt;desirefemme.net/go/gerries \\x3cb\\x3e...\\x3c/b\\x3e\\x3c/a\\x3e\\x3c/h3\\x3e\\x3c/span\\x3e\\x3cdiv class\\x3d\\x22s\\x22\\x3e\\x3cb\\x3e...\\x3c/b\\x3e or http://ladiesclubuncut.com/erotic-massage-\\x3cem\\x3elong-island erotic\\x3c/em\\x3e massage \\x3cb\\x3e......\\x3c/b\\x3e ndifferent smile [url\\x3dhttp://onlinelqks.com/lanoxin-\\x3cem\\x3einjection\\x3c/em\\x3e/]lanoxin \\x3cb\\x3e......\\x3c/b\\x3e dynamic cursor in \\x3cem\\x3esql\\x3c/em\\x3e server 38639 found titanic \\x3d-[ janet oke biography \\x3cb\\x3e...\\x3c/b\\x3e\\x3cbr\\x3e\\x3cspan class\\x3df\\x3e\\x3ccite\\x3efriend.kir.jp/CGI/bgboardv12/old/log0545.log\\x3c/cite\\x3e - \\x3cspan class\\x3dgl\\x3e\\x3ca href\\x3d\\x22http://webcache.googleusercontent.com/search?q\\x3dcache:8qhyg_OowYkJ:friend.kir.jp/CGI/bgboardv12/old/log0545.log+longislanderotic+sql+injection\\x26amp;cd\\x3d7\\x26amp;hl\\x3den\\x26amp;ct\\x3dclnk\\x26amp;gl\\x3dus\\x26amp;source\\x3dwww.google.com\\x22 onmousedown\\x3d\\x22return rwt(this,\\x27\\x27,\\x27\\x27,\\x27\\x27,\\x277\\x27,\\x27AFQjCNFa-_wv9HqmH_bDf75hf-u-y24FWA\\x27,\\x27\\x27,\\x270CDoQIDAG\\x27)\\x22\\x3eCached\\x3c/a\\x3e - \\x3ca href\\x3d\\x22/search?hl\\x3den\\x26amp;q\\x3drelated:friend.kir.jp/CGI/bgboardv12/old/log0545.log+longislanderotic+sql+injection\\x26amp;tbo\\x3d1\\x26amp;sa\\x3dX\\x26amp;ei\\x3dG0KrTfCVJ6HE0QG-q_T5CA\\x26amp;ved\\x3d0CDsQHzAG\\x22\\x3eSimilar\\x3c/a\\x3e\\x3c/span\\x3e\\x3c/span\\x3e\\x3c/div\\x3e\\x3c/div\\x3e\\x3c!--n--\\x3e\\x3c!--m--\\x3e\\x3cli class\\x3dg\\x3e\\x3cdiv class\\x3dvsc sig\\x3d3Gg\\x3e\\x3cspan class\\x3dtl\\x3e\\x3ch3 class\\x3d\\x22r\\x22\\x3e\\x3ca href\\x3d\\x22http://ccs.wu.ac.th/webboard/view.php?No\\x3d5\\x22 class\\x3dl onmousedown\\x3d\\x22return rwt(this,\\x27\\x27,\\x27\\x27,\\x27\\x27,\\x278\\x27,\\x27AFQjCNHtf-RNTYMAmtjefp2o-8N-eul4Xg\\x27,\\x27\\x27,\\x270CDwQFjAH\\x27)\\x22\\x3eWarning: main(../headlogg.php) [function.main]: failed to open \\x3cb\\x3e...\\x3c/b\\x3e\\x3c/a\\x3e\\x3c/h3\\x3e\\x3cbutton class\\x3dvspib\\x3e\\x3c/button\\x3e\\x3cspan class\\x3dkobd style\\x3d\\x22display:none\\x22\\x3ewu.ac.th\\x3c/span\\x3e\\x3c/span\\x3e\\x3cdiv class\\x3d\\x22s\\x22\\x3e\\x3cb\\x3e...\\x3c/b\\x3e myspace.com chanson canal bridal fetish tangas de putas using \\x3cem\\x3esql\\x3c/em\\x3e query \\x3cb\\x3e......\\x3c/b\\x3e for sex in chennai asian pretty girls 2 \\x3cem\\x3elong island erotic\\x3c/em\\x3e service mom \\x3cb\\x3e......\\x3c/b\\x3e porno msn cam cam free girl horny web fetish \\x3cem\\x3einjection\\x3c/em\\x3e medical video bbs \\x3cb\\x3e...\\x3c/b\\x3e\\x3cbr\\x3e\\x3cspan class\\x3df\\x3e\\x3ccite\\x3eccs.wu.ac.th/webboard/view.php?No\\x3d5\\x3c/cite\\x3e - \\x3cspan class\\x3dgl\\x3e\\x3ca href\\x3d\\x22/search?hl\\x3den\\x26amp;q\\x3drelated:ccs.wu.ac.th/webboard/view.php%3FNo%3D5+longislanderotic+sql+injection\\x26amp;tbo\\x3d1\\x26amp;sa\\x3dX\\x26amp;ei\\x3dG0KrTfCVJ6HE0QG-q_T5CA\\x26amp;ved\\x3d0CEEQHzAH\\x22\\x3eSimilar\\x3c/a\\x3e\\x3c/span\\x3e\\x3c/span\\x3e\\x3c/div\\x3e\\x3c/div\\x3e\\x3c!--n--\\x3e\\x3c!--m--\\x3e\\x3cli class\\x3dg\\x3e\\x3cdiv class\\x3dvsc sig\\x3dFWC\\x3e\\x3cspan class\\x3dtl\\x3e\\x3ch3 class\\x3d\\x22r\\x22\\x3e\\x3ca href\\x3d\\x22http://www.dynetech.co.kr/bbs/zboard.php?id\\x3ddynetech\\x26amp;page\\x3d1\\x26amp;sn1\\x3don\\x26amp;divpage\\x3d1\\x26amp;sn\\x3don\\x26amp;ss\\x3doff\\x26amp;sc\\x3doff\\x26amp;keyword\\x3d%20%B4%D9%C1%F8%BB%EA%BE%F7\\x26amp;select_arrange\\x3dname\\x26amp;desc\\x3dasc\\x26amp;no\\x3d6\\x26amp;PHPSESSID\\x3dfcfe8da80288a905f6709a93e33c7bfa\\x22 class\\x3dl onmousedown\\x3d\\x22return rwt(this,\\x27\\x27,\\x27\\x27,\\x27\\x27,\\x279\\x27,\\x27AFQjCNFKxqF8xCIwdKZ5sOO-kSGkUvnFcw\\x27,\\x27\\x27,\\x270CEIQFjAI\\x27)\\x22\\x3e??????????????? ???????????? ????????? ??????????????? ------------\\x3c/a\\x3e\\x3c/h3\\x3e\\x3cbutton class\\x3dvspib\\x3e\\x3c/button\\x3e\\x3cspan class\\x3dkobd style\\x3d\\x22display:none\\x22\\x3edynetech.co.kr\\x3c/span\\x3e\\x3c/span\\x3e\\x3cdiv class\\x3d\\x22s\\x22\\x3eboy \\x3cem\\x3einjection\\x3c/em\\x3e molding machine bikinis en la piscina bobby car girlie lakanal cp \\x3cb\\x3e......\\x3c/b\\x3e oracle \\x3cem\\x3esql\\x3c/em\\x3e error messages lovely ladies pics jean grey nude ladys swing \\x3cb\\x3e......\\x3c/b\\x3e \\x3cem\\x3elong island erotic\\x3c/em\\x3e service essex cricket club message board \\x3cb\\x3e...\\x3c/b\\x3e\\x3cbr\\x3e\\x3cspan class\\x3df\\x3e\\x3ccite\\x3ewww.dynetech.co.kr/bbs/zboard.php?...\\x3c/cite\\x3e\\x3cspan class\\x3dgl\\x3e\\x3c/span\\x3e\\x3c/span\\x3e\\x3c/div\\x3e\\x3c/div\\x3e\\x3c!--n--\\x3e\\x3c!--m--\\x3e\\x3cli class\\x3dg\\x3e\\x3cdiv class\\x3dvsc sig\\x3dPsF\\x3e\\x3cspan class\\x3dtl\\x3e\\x3ch3 class\\x3d\\x22r\\x22\\x3e\\x3ca href\\x3d\\x22http://abar.co.kr/bbs/view.php?id\\x3dfree\\x26amp;page\\x3d3\\x26amp;sn1\\x3d\\x26amp;divpage\\x3d1\\x26amp;sn\\x3doff\\x26amp;ss\\x3don\\x26amp;sc\\x3don\\x26amp;select_arrange\\x3dname\\x26amp;desc\\x3dasc\\x26amp;no\\x3d2365\\x22 class\\x3dl onmousedown\\x3d\\x22return rwt(this,\\x27\\x27,\\x27\\x27,\\x27\\x27,\\x2710\\x27,\\x27AFQjCNH548sWZQn-4nnMZ_BNaA1bWufnSQ\\x27,\\x27\\x27,\\x270CEcQFjAJ\\x27)\\x22\\x3e??????????????? ?????????Q\\x26amp;A ???????????? ???????????? 2152 144 3 View Articles \\x3cb\\x3e...\\x3c/b\\x3e\\x3c/a\\x3e\\x3c/h3\\x3e\\x3cbutton class\\x3dvspib\\x3e\\x3c/button\\x3e\\x3cspan class\\x3dkobd style\\x3d\\x22display:none\\x22\\x3eabar.co.kr\\x3c/span\\x3e\\x3c/span\\x3e\\x3cdiv class\\x3d\\x22s\\x22\\x3e\\x3cb\\x3e...\\x3c/b\\x3e yahoo.com nifty erotic story \\x3cem\\x3elong island erotic\\x3c/em\\x3e service chat erotico web cam dallas \\x3cb\\x3e......\\x3c/b\\x3e nylonic porn alanylon.com prada black nylon handbag 610 \\x3cem\\x3einjection\\x3c/em\\x3e moulding nylon \\x3cb\\x3e......\\x3c/b\\x3e http://\\x3cem\\x3esql\\x3c/em\\x3e.hmes.kh.edu.tw/guestbk/add.php?srcid\\x3d9857 \\x3cb\\x3e...\\x3c/b\\x3e\\x3cbr\\x3e\\x3cspan class\\x3df\\x3e\\x3ccite\\x3eabar.co.kr/bbs/view.php?id\\x3dfree\\x26amp;page\\x3d3...1...\\x3c/cite\\x3e\\x3cspan class\\x3dgl\\x3e\\x3c/span\\x3e\\x3c/span\\x3e\\x3c/div\\x3e\\x3c/div\\x3e\\x3c!--n--\\x3e\x27,_ss);\x3c/script\x3e"}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"\x3cscript\x3eje.p(_loc,\x27botstuff\x27,\x27 \\x3cdiv id\\x3dvspb\\x3e\\x3cspan id\\x3dvspci\\x3e\\x3c/span\\x3e\\x3cspan id\\x3dvsrs\\x3e\\x3c/span\\x3e\\x3cspan id\\x3dvsrsr\\x3e\\x3c/span\\x3e\\x3cdiv id\\x3dvspc\\x3e\\x3cdiv id\\x3dvsic\\x3e\\x3cimg alt\\x3d\\x22\\x22 id\\x3dvsli\\x3e\\x3cdiv id\\x3dvsm\\x3e\\x3c/div\\x3e\\x3ca id\\x3dvsia\\x3e\\x3cimg alt\\x3d\\x22Preview image\\x22 id\\x3dvsi\\x3e\\x3c/a\\x3e\\x3c/div\\x3e\\x3cdiv id\\x3dvsvpc\\x3e\\x3c/div\\x3e\\x3c/div\\x3e\\x3c/div\\x3e \x27,_ss);\x3c/script\x3e"}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"\x3cscript\x3eje.p(_loc,\x27bottomads\x27,\x27\x27,_ss);\x3c/script\x3e"}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"\x3cscript\x3eje.p(_loc,\x27rhscol\x27,\x27\x27,_ss);\x3c/script\x3e"}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"\x3cscript\x3eje.p(_loc,\x27leftnavc\x27,\x27\\x3cdiv id\\x3dleftnav role\\x3dnavigation style\\x3d\\x223???%?_\\x22 onclick\\x3d\\x22google.psy\\x26\\x26google.psy.qs(event)\\x22\\x3e\\x3cdiv id\\x3dms\\x3e\\x3cul\\x3e\\x3cli class\\x3d\\x22mitem msel\\x22\\x3e\\x3cspan class\\x3dmicon style\\x3d\\x22background-position:-20px -85px\\x22\\x3e\\x3c/span\\x3eEverything\\x3cli class\\x3d\\x22mitem\\x22\\x3e\\x3ca href\\x3d\\x22/search?q\\x3dlongislanderotic+sql+injection\\x26amp;hl\\x3den\\x26amp;prmd\\x3divns\\x26amp;source\\x3dlnms\\x26amp;tbm\\x3disch\\x26amp;ei\\x3dG0KrTfCVJ6HE0QG-q_T5CA\\x26amp;sa\\x3dX\\x26amp;oi\\x3dmode_link\\x26amp;ct\\x3dmode\\x26amp;cd\\x3d2\\x26amp;ved\\x3d0CBAQ_AUoAQ\\x22 class\\x3d\\x22q qs\\x22\\x3e\\x3cspan class\\x3dmicon style\\x3d\\x22background-position:-40px -85px\\x22\\x3e\\x3c/span\\x3eImages\\x3c/a\\x3e\\x3cli class\\x3d\\x22mitem\\x22\\x3e\\x3ca href\\x3d\\x22/search?q\\x3dlongislanderotic+sql+injection\\x26amp;hl\\x3den\\x26amp;prmd\\x3divns\\x26amp;source\\x3dlnms\\x26amp;tbm\\x3dvid\\x26amp;ei\\x3dG0KrTfCVJ6HE0QG-q_T5CA\\x26amp;sa\\x3dX\\x26amp;oi\\x3dmode_link\\x26amp;ct\\x3dmode\\x26amp;cd\\x3d3\\x26amp;ved\\x3d0CBEQ_AUoAg\\x22 class\\x3d\\x22q qs\\x22\\x3e\\x3cspan class\\x3dmicon style\\x3d\\x22background-position:-80px -85px\\x22\\x3e\\x3c/span\\x3eVideos\\x3c/a\\x3e\\x3cli class\\x3d\\x22mitem\\x22\\x3e\\x3ca href\\x3d\\x22/search?q\\x3dlongislanderotic+sql+injection\\x26amp;hl\\x3den\\x26amp;prmd\\x3divns\\x26amp;source\\x3dlnms\\x26amp;tbm\\x3dnws\\x26amp;ei\\x3dG0KrTfCVJ6HE0QG-q_T5CA\\x26amp;sa\\x3dX\\x26amp;oi\\x3dmode_link\\x26amp;ct\\x3dmode\\x26amp;cd\\x3d4\\x26amp;ved\\x3d0CBIQ_AUoAw\\x22 class\\x3d\\x22q qs\\x22\\x3e\\x3cspan class\\x3dmicon style\\x3d\\x22S ??B\\x22\\x3e\\x3c/span\\x3eNews\\x3c/a\\x3e\\x3cli class\\x3d\\x22mitem\\x22\\x3e\\x3ca href\\x3d\\x22/search?q\\x3dlongislanderotic+sql+injection\\x26amp;hl\\x3den\\x26amp;prmd\\x3divns\\x26amp;source\\x3dlnms\\x26amp;tbm\\x3dshop\\x26amp;ei\\x3dG0KrTfCVJ6HE0QG-q_T5CA\\x26amp;sa\\x3dX\\x26amp;oi\\x3dmode_link\\x26amp;ct\\x3dmode\\x26amp;cd\\x3d5\\x26amp;ved\\x3d0CBMQ_AUoBA\\x22 class\\x3d\\x22q qs\\x22\\x3e\\x3cspan class\\x3dmicon style\\x3d\\x22c!?? \\x22\\x3e\\x3c/span\\x3eShopping\\x3c/a\\x3e\\x3c/ul\\x3e\\x3cul class\\x3dnojsb id\\x3d\\x22hidden_modes\\x22\\x3e\\x3cli class\\x3d\\x22mitem\\x22\\x3e\\x3ca href\\x3d\\x22/search?q\\x3dlongislanderotic+sql+injection\\x26amp;hl\\x3den\\x26amp;prmd\\x3divns\\x26amp;source\\x3dlnms\\x26amp;tbm\\x3dbks\\x26amp;ei\\x3dG0KrTfCVJ6HE0QG-q_T5CA\\x26amp;sa\\x3dX\\x26amp;oi\\x3dmode_link\\x26amp;ct\\x3dmode\\x26amp;cd\\x3d6\\x26amp;ved\\x3d0CBQQ_AUoBQ\\x22 class\\x3d\\x22q qs\\x22\\x3e\\x3cspan class\\x3dmicon style\\x3d\\x223 ?C?(\\x22\\x3e\\x3c/span\\x3eBooks\\x3c/a\\x3e\\x3cli class\\x3d\\x22mitem\\x22\\x3e\\x3ca href\\x3d\\x22/search?q\\x3dlongislanderotic+sql+injection\\x26amp;hl\\x3den\\x26amp;prmd\\x3divns\\x26amp;source\\x3dlnms\\x26amp;tbm\\x3dplcs\\x26amp;ei\\x3dG0KrTfCVJ6HE0QG-q_T5CA\\x26amp;sa\\x3dX\\x26amp;oi\\x3dmode_link\\x26amp;ct\\x3dmode\\x26amp;cd\\x3d7\\x26amp;ved\\x3d0CBUQ_AUoBg\\x22 class\\x3d\\x22q qs\\x22\\x3e\\x3cspan class\\x3dmicon style\\x3d\\x22background-position:-80px -105px\\x22\\x3e\\x3c/span\\x3ePlaces\\x3c/a\\x3e\\x3cli class\\x3d\\x22mitem\\x22\\x3e\\x3ca href\\x3d\\x22/search?q\\x3dlongislanderotic+sql+injection\\x26amp;hl\\x3den\\x26amp;prmd\\x3divns\\x26amp;source\\x3dlnms\\x26amp;tbm\\x3dblg\\x26amp;ei\\x3dG0KrTfCVJ6HE0QG-q_T5CA\\x26amp;sa\\x3dX\\x26amp;oi\\x3dmode_link\\x26amp;ct\\x3dmode\\x26amp;cd\\x3d8\\x26amp;ved\\x3d0CBYQ_AUoBw\\x22 class\\x3d\\x22q qs\\x22\\x3e\\x3cspan class\\x3dmicon style\\x3d\\x22background-position:0 -105px\\x22\\x3e\\x3c/span\\x3eBlogs\\x3c/a\\x3e\\x3cli class\\x3d\\x22mitem\\x22\\x3e\\x3ca href\\x3d\\x22/search?q\\x3dlongislanderotic+sql+injection\\x26amp;hl\\x3den\\x26amp;prmd\\x3divns\\x26amp;source\\x3dlnms\\x26amp;tbm\\x3dmbl\\x26amp;ei\\x3dG0KrTfCVJ6HE0QG-q_T5CA\\x26amp;sa\\x3dX\\x26amp;oi\\x3dmode_link\\x26amp;ct\\x3dmode\\x26amp;cd\\x3d9\\x26amp;ved\\x3d0CBcQ_AUoCA\\x22 class\\x3d\\x22q qs\\x22\\x3e\\x3cspan class\\x3dmicon style\\x3d\\x22background-position:-40px -125px\\x22\\x3e\\x3c/span\\x3eRealtime\\x3c/a\\x3e\\x3cli class\\x3d\\x22mitem\\x22\\x3e\\x3ca href\\x3d\\x22/search?q\\x3dlongislanderotic+sql+injection\\x26amp;hl\\x3den\\x26amp;prmd\\x3divns\\x26amp;source\\x3dlnms\\x26amp;tbm\\x3ddsc\\x26amp;ei\\x3dG0KrTfCVJ6HE0QG-q_T5CA\\x26amp;sa\\x3dX\\x26amp;oi\\x3dmode_link\\x26amp;ct\\x3dmode\\x26amp;cd\\x3d10\\x26amp;ved\\x3d0CBgQ_AUoCQ\\x22 class\\x3d\\x22q qs\\x22\\x3e\\x3cspan class\\x3dmicon style\\x3d\\x22background-position:0 -125px\\x22\\x3e\\x3c/span\\x3eDiscussions\\x3c/a\\x3e\\x3cli class\\x3d\\x22mitem\\x22\\x3e\\x3ca href\\x3d\\x22/search?q\\x3dlongislanderotic+sql+injection\\x26amp;hl\\x3den\\x26amp;prmd\\x3divns\\x26amp;source\\x3dlnms\\x26amp;tbm\\x3drcp\\x26amp;ei\\x3dG0KrTfCVJ6HE0QG-q_T5CA\\x26amp;sa\\x3dX\\x26amp;oi\\x3dmode_link\\x26amp;ct\\x3dmode\\x26amp;cd\\x3d11\\x26amp;ved\\x3d0CBkQ_AUoCg\\x22 class\\x3d\\x22q qs\\x22\\x3e\\x3cspan class\\x3dmicon style\\x3d\\x22background:url(/images/srpr/icons/recipe.png);background-position:0 0\\x22\\x3e\\x3c/span\\x3eRecipes\\x3c/a\\x3e\\x3c/ul\\x3e\\x3ca id\\x3dshowmodes class\\x3d\\x22jsb q nj\\x22 href\\x3d\\x22#\\x22 onclick\\x3d\\x22CC?:\\x22 style\\x3d\\x22S L? padding-bottom:9px\\x22\\x3e\\x3cspan class\\x3d\\x22micon\\x22\\x3e\\x3c/span\\x3e\\x3cspan class\\x3d\\x22msm\\x22\\x3eMore\\x3c/span\\x3e\\x3cspan class\\x3d\\x22msl\\x22\\x3eFewer\\x3c/span\\x3e\\x3c/a\\x3e\\x3c/div\\x3e\\x3cdiv id\\x3d\\x22lc\\x22 style\\x3d\\x22s/?A16px\\x22 class\\x3d\\x22lco jsb\\x22\\x3e\\x3cul style\\x3d\\x22+??K?Y\\x22class\\x3d\\x22lcdl\\x22\\x3e\\x3cli class\\x3d\\x22tbos\\x22\\x3eSearch near\\x26hellip;\\x3c/li\\x3e\\x3c/ul\\x3e\\x3cul id\\x3d\\x22set_location_section\\x22 style\\x3d\\x22margin-bottom:5px\\x22\\x3e\\x3cli style\\x3d\\x22margin-bottom:3px;list-style-type:none\\x22\\x3e\\x3cform id\\x3d\\x22change_location_form\\x22 onsubmit\\x3d\\x223 ? ?cloc.submit()});return false;\\x22\\x3e\\x3cinput type\\x3d\\x22text\\x22 id\\x3d\\x22lc-input\\x22 value\\x3d\\x22Enter location\\x22 style\\x3d\\x22margin-left:8px;width:85px;color:#666666;font-size:12px\\x22 onfocus\\x3d\\x22? ?loc.f()})\\x22 onblur\\x3d\\x22? ??loc.b()})\\x22\\x3e\\x3c/input\\x3e\\x3cinput type\\x3d\\x22submit\\x22 style\\x3d\\x22margin-left:5px\\x22 value\\x3d\\x22Set\\x22\\x3e\\x3c/input\\x3e\\x3cdiv id\\x3d\\x22error_section\\x22 style\\x3d\\x22display:block;margin-left:9px;font-size:11px\\x22\\x3e\\x3c/div\\x3e\\x3c/form\\x3e\\x3c/li\\x3e\\x3c/ul\\x3e\\x3c/div\\x3e\\x3cdiv style\\x3d\\x22clear:both;overflow:hidden\\x22\\x3e\\x3ch2 class\\x3dhd\\x3eSearch Options\\x3c/h2\\x3e\\x3cul id\\x3dtbd class\\x3d\\x22med\\x22\\x3e\\x3cli class\\x3djsb style\\x3d\\x27display:none\\x27\\x3e\\x3cul class\\x3d\\x22tbt\\x22\\x3e\\x3c/ul\\x3e\\x3cli class\\x3djsb style\\x3d\\x27display:none\\x27\\x3e\\x3cul class\\x3d\\x22tbt\\x22\\x3e\\x3c/ul\\x3e\\x3c/ul\\x3e\\x3ca href\\x3d\\x22/search?q\\x3dlongislanderotic+sql+injection\\x26amp;hl\\x3den\\x26amp;prmd\\x3divns\\x26amp;tbo\\x3d1\\x22 class\\x3d\\x22nj q\\x22 id\\x3dtbpi onclick\\x3d\\x22C ?"39?^\\x22 style\\x3d\\x22S#B? \\x22\\x3e\\x3cnobr class\\x3dtbpo\\x3eHide search tools\\x3c/nobr\\x3e\\x3cnobr class\\x3dtbpc\\x3eShow search tools\\x3c/nobr\\x3e\\x3c/a\\x3e\\x3c/div\\x3e\\x3c/div\\x3e\x27,_ss);\x3c/script\x3e"}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"\x3cscript\x3eje.p(_loc,\x27xjs\x27,\x27 \\x3cdiv id\\x3d\\x22navcnt\\x22\\x3e \\x3ctable style\\x3d\\x22border-collapse:collapse;c0?L?#\\x22 id\\x3d\\x22nav\\x22\\x3e \\x3ctr valign\\x3d\\x22top\\x22\\x3e \\x3ctd class\\x3d\\x22b navend\\x22\\x3e \\x3cspan class\\x3d\\x22csb\\x22 style\\x3d\\x223&f?\\x22\\x3e\\x3c/span\\x3e \\x3c/td\\x3e\\x3ctd class\\x3d\\x22cur\\x22\\x3e \\x3cspan class\\x3d\\x22csb\\x22 style\\x3d\\x22C&V?H\\x22\\x3e\\x3c/span\\x3e 1 \\x3c/td\\x3e\\x3ctd\\x3e \\x3ca class\\x3d\\x22fl\\x22 href\\x3d\\x22/search?q\\x3dlongislanderotic+sql+injection\\x26amp;hl\\x3den\\x26amp;prmd\\x3divns\\x26amp;ei\\x3dG0KrTfCVJ6HE0QG-q_T5CA\\x26amp;start\\x3d10\\x26amp;sa\\x3dN\\x22\\x3e \\x3cspan class\\x3d\\x22csb ch\\x22 style\\x3d\\x22S&?x?B\\x22\\x3e\\x3c/span\\x3e 2 \\x3c/a\\x3e \\x3c/td\\x3e\\x3ctd class\\x3d\\x22b navend\\x22\\x3e \\x3ca id\\x3d\\x22pnnext\\x22 class\\x3d\\x22pn\\x22 style\\x3d\\x22text-decoration:none;text-align:left\\x22 href\\x3d\\x22/search?q\\x3dlongislanderotic+sql+injection\\x26amp;hl\\x3den\\x26amp;prmd\\x3divns\\x26amp;ei\\x3dG0KrTfCVJ6HE0QG-q_T5CA\\x26amp;start\\x3d10\\x26amp;sa\\x3dN\\x22\\x3e \\x3cspan class\\x3d\\x22csb ch\\x22 style\\x3d\\x22c&?3\\x22\\x3e\\x3c/span\\x3e \\x3cspan style\\x3d\\x2238<?\\x22\\x3e Next \\x3c/span\\x3e \\x3c/a\\x3e \\x3c/td\\x3e \\x3c/tr\\x3e \\x3c/table\\x3e \\x3c/div\\x3e \x27,_ss);\x3c/script\x3e"}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"\x3cscript\x3eje.p(_loc,\x27fblmi\x27,\x27 \x27,_ss);\x3c/script\x3e"}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"\x3cscript\x3eje.p(_loc,\x27fblsd\x27,\x27 \x27,_ss);\x3c/script\x3e"}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"\x3cscript\x3eje.ph(_loc,{fblqf:\x27/quality_form?q\\x3dlongislanderotic+sql+injection\\x26hl\\x3den\\x26prmd\\x3divns\x27},_ss);\x3c/script\x3e"}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"\x3cscript\x3eje.sa(_loc,\x27foot\x27,{style:{visibility:\x27\x27}},_ss);\x3c/script\x3e"}/*""*/{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:1,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"\x3cscript\x3eje.p(_loc,\x27bfoot\x27,\x27 \x27,_ss);\x3c/script\x3e"}/*""*/??o?.?j?"????<?{e:"G0KrTfCVJ6HE0QG-q_T5CA",c:0,u:"http://www.google.com/search?sclient\x3dpsy\x26hl\x3den\x26site\x3d\x26source\x3dhp\x26q\x3dlongislanderotic+sql+injection\x26aq\x3df\x26aqi\x3d\x26aql\x3d\x26oq\x3d\x26pbx\x3d1\x26fp\x3d30c63f58a41e025b\x26tch\x3d1\x26ech\x3d1\x26psi\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943",d:"(function(){})();(function(){})();\x3cscript\x3eje.p(_loc,\x27xfoot\x27,\x27 \\x3cdiv id\\x3dxjsd\\x3e\\x3c/div\\x3e\\x3cdiv id\\x3dxjsi\\x3e\\x3cscript\\x3eif(google.y)google.y.first\\x3d[];google.dlj\\x3d#.?F? \\x3ddocument.createElement(\\x22script\\x22);a.src\\x3db;document.getElementById(\\x22xjsd\\x22).appendChild(a)},0)};\\nwindow.mbtb1\\x3d{tbm:\\x22\\x22,tbs:\\x22\\x22,docid:\\x2215736042610843720357\\x22,usg:\\x22cb06\\x22,obd:false};google.base_href\\x3d\\x27/search?q\\\\x3dlongislanderotic+sql+injection\\\\x26hl\\\\x3den\\\\x26prmd\\\\x3divns\\x27;google.sn\\x3d\\x27web\\x27;google.Toolbelt.atg\\x3d[7,9];google.Toolbelt.pbt\\x3d[];google.Toolbelt.pti\\x3d{};var oldElement\\x3ddocument.getElementById(\\x27tbt3\\x273[?z?r\\x3d [];google.mc \\x3d google.mc.concat([[69,{}],[14,{}],[60,{}],[81,{}],[42,{}],[43,{}],[83,{}],[95,{\\x22kfe\\x22:{\\x22kfeHost\\x22:\\x22clients1.google.com\\x22,\\x22kfeUrlPrefix\\x22:\\x22/webpagethumbnail?c\\x3d11\\\\u0026r\\x3d2\\\\u0026f\\x3d2\\\\u0026s\\x3d300:585\\\\u0026query\\x3dlongislanderotic+sql+injection\\\\u0026hl\\x3den\\\\u0026gl\\x3dus\\x22,\\x22maxPrefetchConnections\\x22:2,\\x22prefetch\\x22:90,\\x22slowConnection\\x22:false},\\x22logging\\x22:{\\x22csiFraction\\x22:0.05,\\x22gen204Fraction\\x22:0.05},\\x22msgs\\x22:{\\x22loading\\x22:\\x22Still loading...\\x22,\\x22mute\\x22:\\x22Mute\\x22,\\x22noPreview\\x22:\\x22Preview not available\\x22,\\x22sound\\x22:\\x22Sound:\\x22,\\x22soundOff\\x22:\\x22off\\x22,\\x22soundOn\\x22:\\x22on\\x22,\\x22unmute\\x22:\\x22Unmute\\x22},\\x22pb\\x22:{\\x22desiredHeight\\x22:585,\\x22desiredWidth\\x22:300,\\x22hideRhsAds\\x22:false,\\x22minHeight\\x22:200,\\x22minWidth\\x22:300},\\x22time\\x22:{\\x22hoverClose\\x22:300,\\x22hoverModeTimeout\\x22:60,\\x22hoverOpen\\x22:125,\\x22loading\\x22:100,\\x22longHoverOpen\\x22:725,\\x22prefetchOnLoad\\x22:3000,\\x22timeout\\x22:2500},\\x22vp\\x22:{\\x22fixChromeRendering\\x22:true,\\x22previewUrls\\x22:null,\\x22setUserPrefsUrl\\x22:\\x22/setprefs?vpsndts\\x3d%(exptime)s\\\\u0026sig\\x3d0_eq-CVDTXiG2bdpOqhUqheX1EnYw\\x3d\\\\u0026noredirect\\x3d1\\x22}}],[78,{}],[25,{\\x22m\\x22:{\\x22bks\\x22:true,\\x22blg\\x22:true,\\x22dsc\\x22:true,\\x22evn\\x22:true,\\x22frm\\x22:true,\\x22isch\\x22:true,\\x22klg\\x22:true,\\x22mbl\\x22:true,\\x22nws\\x22:true,\\x22plcs\\x22:true,\\x22ppl\\x22:true,\\x22prc\\x22:true,\\x22pts\\x22:true,\\x22rcp\\x22:true,\\x22shop\\x22:true,\\x22vid\\x22:true},\\x22t\\x22:null}],[64,{}],[105,{}],[22,{\\x22m_errors\\x22:{\\x2232\\x22:\\x22Sorry, no more results to show.\\x22,\\x22default\\x22:\\x22\\\\u003Cfont color\\x3dred\\\\u003EError:\\\\u003C/font\\\CL?}?s\\x22},\\x22m_tip\\x22:\\x22Click for more information\\x22}],[77,{}],[84,{}],[99,{}],[116,{\\x22bd\\x22:[],\\x22bu\\x22:[],\\x22mb\\x22:500}],[29,{}],[92,{\\x22avgTtfc\\x22:2000,\\x22fd\\x22:1000,\\x22fl\\x22:true,\\x22focus\\x22:true,\\x22hpt\\x22:250,\\x22kn\\x22:true,\\x22mds\\x22:\\x22clir,clue,dfn,evn,frim,klg,prc,pts,rl,show,sp,sts,ww,mbl_he,mbl_hs,mbl_re,mbl_rs,mbl_sv,isch\\x22,\\x22msg\\x22:{\\x22dym\\x22:\\x22Did you mean:\\x22,\\x22gs\\x22:\\x22Google Search\\x22,\\x22kntt\\x22:\\x22SY?{?l\\x22,\\x22sif\\x22:\\x22Search instead for\\x22,\\x22srf\\x22:\\x22Showing results for\\x22},\\x22ophe\\x22:true,\\x22pq\\x22:true,\\x22rpt\\x22:41,\\x22tct\\x22:\\x22 ?\\x22,\\x22tdur\\x22:50}],[24,{}],[38,{}]]);(function(){var r\\x3dc/?P?1;window.google.loc.m3\\x3d\\x22Server error. Please try again.\\x22;window.google.loc.s\\x3d\\x220_eq-CVDTXiG2bdpOqhUqheX1EnYw\\\\x3d\\x22;window.google.loc.m4\\x3d\\x22Enter location\\x22;;window.gdmb2\\x3dfunction(){window.mb2\\x3dManyBox.register(\\x272\\x27,\\x273_vCirVFaSoJ\\x27,\\x272c06\\x27,32,\\x27Hide more results from cloudscan.me\\x27);mb2.append([\\x27mres\\x3d3_vCirVFaSoJ:LwuP-6hmXNwJ:\\x27]);mb2.append([\\x27q\\x3d3"?6_cloudscan.me%2Blongislanderotic%2Bsql%2Binjection\\x27]);mb2.append([\\x27ved\\x3d0CE8Qswg\\x27CGN \\x272\\x27S&rvar form\\x3dc=?;?W\\x27\\x27,\\x27longislanderotic sql injection\\x27,\\x27\\x27,{o:1,sw:1,af:0});var a\\x3d{};a.hover\\x3d{};a.hover.HOVER_DELAY\\x3d400;a.hover.d\\x3d[];a.hover.a\\x3d{};a.hover.init\\x3dfunction(){for(var b\\x3dgoogle.dom.getAll(\\x22.son\\x22),d\\x3d0,c;c\\x3db[d];d++){var f\\x3dgoogle.dom.getAll(\\x22.soha\\x22,c);c\\x3dgoogle.dom.getAll(\\x22.soh\\x22,c);if(f.length\\x3d\\x3dc.length)for(var g\\x3d0,e;e\\x3df[g];g++){var h\\x3dc[g];a.hover.c(e,\\x22mouseover\\x223*?\\x22mouseout\\x22C)4\\x3dS&*\\x3dc4'?g\\na.hover.showHover\\x3dfunction(b){b.style.display\\x3d\\x22block\\x22;b.style.top\\x3d\\x2224px\\x22;b.style.left\\x3d\\x220\\x22};a.hover.hideHover\\x3dfunction(b){b.style.display\\x3d\\x22none\\x22};a.hover.getOnMouseOver\\x3d3!?.if(a.hover.a[c]\\x3d\\x3dundefined){var f\\x3d3T? $\\x3df}}};a.hover.getOnMouseOut\\x3d?OO\\x3dC!P,\\na.hover.b\\x3dfunction(){for(var b;b\\x3d3?C\\x3dCc?n\\x3da;google.sos.hover.init();\\n;google.sc\\x3dgoogle.sc||{};google.sc[\\x27riu\\x27]\\x3d{\\x27u\\x27:\\x27S)??PJACN6ICA3JpdQ/fLaSGnHKqSU.js\\x27,\\x27cb\\x27:[]};google.smc \\x3d google.smc || [];google.smc \\x3d google.smc.concat([[63,{\\x22cnfrm\\x22:\\x22Reported\\x22,\\x22prmpt\\x22:\\x22Report\\x22}]]);;google.riu\\x3d{render:function(){google.util.xjsl(\\x27riu\\x27)}};;google.sc\\x3dgoogle.sc||{};google.sc[\\x27rvu\\x27]\\x3d{\\x27u\\x27:\\x27/extern_js/f/CgJlbhICdXMrMHI4ACyAAjyQAjeiAgNydnU/cpUnousihug.js\\x27,\\x27cb\\x27:[]};google.smc \\x3d google.smc || [];google.smc \\x3d google.smc.concat([[114,{\\x22rvu_report_msg\\x22:\\x22Report\\x22,\\x22rvu_reported_msg\\x22:\\x22Reported\\x22}]]);;}catch(e){google.ml(e,false,{\\x27cause\\x27:\\x27defer\\x27c ?=\\x27init\\x273"&?g\\x27history\\x27);}google.History\\x26\\x26google.History.initialize(\\x27/search?sclient\\\\x3dpsy\\\\x26amp;hl\\\\x3den\\\\x26amp;site\\\\x3d\\\\x26amp;source\\\\x3dhp\\\\x26amp;q\\\\x3dlongislanderotic+sql+injection\\\\x26amp;aq\\\\x3df\\\\x26amp;aqi\\\\x3d\\\\x26amp;aql\\\\x3d\\\\x26amp;oq\\\\x3d\\\\x26amp;pbx\\\\x3d1\\\\x26amp;fp\\\\x3d30c63f58a41e025b\\\\x26amp;tch\\\\x3d1\\\\x26amp;ech\\\\x3d1\\\\x26amp;psi\\\\x3dDkKrTZfhKMXFgAfpn53ZCQ13030692117943\\x27)});});r();var l\\x3dCN?\\\x27#\\x27)):\\x27#\\x27;if(l\\x3d\\x3d\\x27#\\x27\\x26\\x26google.defre){google.defre\\x3dS,~.\\x26\\x26google.j.init){google.rein\\x26\\x26c)J\\x26\\x26google.j.en\\x26\\x263/8\\x3c/script\\x3e\\x3c/div\\x3e \x27,_ss);\x3c/script\x3e\x3cscript\x3eif(je.zz)je.zz(_loc,_ss);\x3c/script\x3e"}/*""*/]]> false
                  7096260384800122880 1049088 SQL injection http://www.thatshiphop.com High Certain
                  Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.]]>
                  every variable data item that is incorporated into database queries, even if it is not obviously tainted, to prevent oversights occurring and avoid vulnerabilities being introduced by changes elsewhere within the code base of the application.

                  You should be aware that some commonly employed and recommended mitigations for SQL injection vulnerabilities are not always effective:
                  • One common defence is to double up any single quotation marks appearing within user input before incorporating that input into a SQL query. This defence is designed to prevent malformed data from terminating the string in which it is inserted. However, if the data being incorporated into queries is numeric, then the defence may fail, because numeric data may not be encapsulated within quotes, in which case only a space is required to break out of the data context and interfere with the query. Further, in second-order SQL injection attacks, data that has been safely escaped when initially inserted into the database is subsequently read from the database and then passed back to it again. Quotation marks that have been doubled up initially will return to their original form when the data is reused, allowing the defence to be bypassed.
                  • Another often cited defence is to use stored procedures for database access. While stored procedures can provide security benefits, they are not guaranteed to prevent SQL injection attacks. The same kinds of vulnerabilities that arise within standard dynamic SQL queries can arise if any SQL is dynamically constructed within stored procedures. Further, even if the procedure is sound, SQL injection can arise if the procedure is invoked in an unsafe manner using user-controllable data.
                  ]]>

                  The database appears to be MySQL.]]>
                  false ThatsHiphop.com - Page Not Found
                  ThatsHiphop.com

                   

                  The file you have requested was not found.

                   

                  ]]>
                  false
                  7526807924717638656 5244416 Cookie without HttpOnly flag set http://img141.imageshack.us Information Certain
                  You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
                • is_uuid=ad1a64962a724101932a2af3addf287e; expires=Thu, 31-Dec-37 23:55:55 GMT; domain=.imageshack.us; path=/
                • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                  ?W?&q?J? ???!????p??&??p??r?/????????? ???4?#=w?H???C??*5??1K???r??????5???_??js?T0? `???k?A*e????"2????U>K ?y???!??o?~??si???r??KP??{????????m????$k?s??n0\M??-|??=??u%??%)?ol\???!O??ZA;?%[? 2?? +A??E? ?~?/?c@/??Q???Tn??????4?=1?#5G[N)ZV??=?v?#?Q????4%?"???A???!t?.=E??%=R???6DUG?KA???H?6??"N????_??#??_???,??xyR?6???)?M?h?P'??lGU7?0?rD|?????iU?I?lw??'r???$DV??D??r?????????w8??!BqR_D?f??2E???q?{b??????S?[%Jp2?N????d?????u??Q?<_h???Q*?cn????p?d:??aW?lE???CL?tH?~7,?]q?e*??>?!.?j????)?Fu??/????8-Y{ ???g%ip?mY ???M?p????j??iG??G ??l ?]? ??R??E??)(?JI????K??Y????q??T???$V#???q??{?,6??2O???>y??F?)L?r? ??????:???? 4@???V?q?$?r ??#?\???P?v ???Z?Hj6`?PUL????8??=??p?#p??Nb?Q???diKK??$???n???4?!A?.J??M??????}?Q??????/;3:K?B?R?[k}??k6}??3?????q???Lf?????r??P???)?b1??????J?O??Y=???E???r??n??=5C??|Ff??y??M?`-?C?TM2*$w?r?L%!????????O???)?ZQ??fg?? ??,? ??u?`??z???b?$?_? ???c??????V?z/9!?)$??bk>eJi?}B#?)?kl???????&r?Sm????)W5H\b???OL?G?d5hF?)???\??5e? ??*JYsO0????????!?J?C ?? e6???[o?}g??????*eJ)???????Nw??$?DJ?C?P(YM?#????2?8???? ????vcQ????!?l?S~?????7???LkRZqKN???h?r?!?UU?waED???a???z??4?Pp?]qKJR?,?$??6u??i??????Dzx??-Ot\sR?!?O8?jj??????K?Pie^?0??<:Il1?9:@ ?K???k?p?kDL?M:5k%l?D?a??i???/??T??V??J????a??=i6??????%7E?? ?Lv????? ?)??????????Lf???? ???N%??A\D?o0?Z-?%m???`o???L?tU??\9M?fK?c???!??R?m???pC?m"?5???????-y?? ??N??????5??l???*?A?????[^??;x?a?????2?;??o?i??????mcr7??.^t?$\+??? ?,+%?4??7????`/????A?C`'??{?????l?AB=d??????H????]??hBZI????'\dB0i?LpR????D\????E?8??$??iM?b???8?VKSF?1????Q?k~?,V????!????)EJ ?????&?(?A1???#bs&???0v?K???S?[???) ??{ ?Ou[?????Sj?n0????????I}IYB?G?*?V???r??;Mk????*??r?F??|??e????[???q?$Ta???l4$??u?? ?j?9??s.?q"3?8Ja9? ]??BH_O6??r'o?i_+/?)?HB?Fy??J?C????1????z?m?1???[x!*+t?Jw#V?6???????x???[qZt?.???.>????????+0C,s????W??t??F??HQ^?i_Q(Q??sT?2P?* ?w???A????KJ?U????p??O??/?y??[??v]*???) ?U?K:T??*?>?9O??`?l?X???'????? ??=z?"?9WB4V???T??n?eK????!?? ?Q??a??|h?N?X?'3 [?R?N?@$kHM?&?_??????? ?A?SQ'C??????]B??r?A0?3V?O-?:BV?p???M?U????|?B~?d? ?+=C?????5S??%A???H?Q>E??? ?????C?????l???C???3?WeB??r??E?pH?JI??-???`D?2??u?_????dTw???L???^?E???I?l?)?2 Z????? ? X????9??9jU9??B`?T YS??@??>??/7 ??R????";Q??h ?????a0fu??3&?K}?d???y7???0KR?C?6?,??&??J?c?d?!???}(?E???9r%:???&??9???????p????Dh??U?1-CHA??o? TxM???qZ???IB??}W?t???a$????x?????L?!?uRR????[?>b1?yB#??:??ZJO??[??cs?s6?ibm5m?/GP????????????d"-?R"?Bw&????|)???aq?F?w2??#?d?J?*?^?Kd[r???nSi2?SL4?,?? ????H?D?s.4#> ??6????? iD??L????[???????'?g`?? U :Az;h? ]%6???:f???o?2>6???????a+?I??uz???A??pb ?k??????p???7??.u?????Re???# ??]%iPKIU????q??S?q??@??.4??qH?s?^/?4?t? ???{???-??9Qb??#K@^?O{`???2??w-??:?CoK?f? h?A??0??s?mv?Qa'= Il ???_5??q?S?i-7p[n?????$????????????|t ???p ???e??Q????s??1?5(??/?o?$6?0?"S)Lf?V??e[??jB,??~ %ha ?]?JM?w?GM?*???y&Rf??)???$r?C??]w??????No%p???????:AP?+??9?????\W??i???(?sB}7?/??OT??r??-:?E?Kb????????L??7?)O?VHV_?Z?6??u?M9???????j??!??D???B?e???v7?W+??8G????!?&1??T?q?p]?4????? \??{???%q??l??A?&I??q%?8???[)????g???q??[????uP#????B?-?q?c?W? ?k[rp??w??????{iBYw@P_T??{???9??d???Qg??G?p?GR??$??Vv?>;???q???*??UX????n??????M???[ABbH??)-3??W~)`i_4???%=?U"??2'ip??4.!F]*s-?}??GX???7?8??? ?V???(,?4?n?a??[?t?O3?????????0?r???k?v7? ?????[b???@)?e?????PZ?w?*?????????A????Le??!?%r ?[??P??Y???????aiZ???{b????k???e? [z?$????+Iz?DR?????? ???F??????:?????????xM?????L?S? ?8?e??n@??????????U??V??Ka/?????pU?:1???????H#` ?>qx???D????????? ??????D,?E?"???? v??d?-???7????Y??4?s??2???t?k?F??Hz ?UU??????????'`|?A??be???5??x?&2??*A?????;m?????P|?#??|??z???p#@ G,???n??ro?;??????(z??\?{c?x?Q?????i5*??$?u??4? o????i?? ????~???db?(s&d?????????i????????*??V????U/?#/ ??A?n ?????i#????a?&??????\? ?!$?Co?????s\?????H??!O5&??u??I;??3?8??R???5?8?Q?.??[eOBdi???xI?S~?????D??(?8?2f4??Z??? ?c????C?Pc?r8????j?>????b??G????>Yn+??H`'??!{)'?????8o?R?e????O???Jt:??R?Bw?v?Lsz??~??q??????~W?l?u$?????-??\s???w?>?????????? 4.??Yd???1|?j+ ?? k?????EB?E?m???s?j??X??f???? oS??67{??Y2??RP~2M????a???????\Be??s?5~U??????,??M%??H????68?WH ????????a???F?:?M??[??1+R??; %?2;??Ud??\B?w?Q??c/???|?????a????ma~?????j????j???DO?_???cS?lJB??(?h??Kf&h???)ZJ????*:q~,OS??P ?,??z?????%4???wQP+Z????U?\???Y?Q?1+???Ul??x??T??8?5!?@?{?~???&d*? ??S?\?N?\g??X?? ?bO 3va??u??????????&?)??q?Y??H?? V?{g?v?6?I6????(j_[???????P??%I?T?K?m.???k???@?????F??#?#H?)d?????o???u?????0?SEJRU?????:??? l_???kiO??6c???B?#?O?K?0??[??}???;@b[h??%???N?A {?xpr?*+]??]?????r??0?UN?MY??)??BM???????V?}+RR?j?E?s???z??????H2Y??`,? fw?"?%??BN???s?Q??a?????U ??l???M*???/? ??y-??%.???t?HK\D'I*YE??zy?fY?-o????+M?:h???? ??P]3W???Al$?LvR;?b????{????RH????hak??ej?P???F6Z}???mw@7;w?#????9j??? ?Ju??'??Wp?bm2*eV??????m??8???+;????v#P L???s:?????<3r?-??????jQA}???????x?Q??r????7?!W??o??.q"g???@??6?x?t??m????R??)??????H???o?? ??XR?????????f?ur !:y*?H???l=}??5?m?G?u?????G{???}G?-[D?\?????{_?jc?yfJ?[?t/`6w??~???Z???W?I???jC??U???r?I???\}?????????z?suM?%?Ei??l~???M?4bS???@ p??rq??M?32?N?!?Cn8BW???????1>???T???O?9???f??RA67??*I?%!??C0BRi@(7???0E??1?3EJ ??",h?O?l?????z?:U?no?tl? ????T?ndb N?????c????#?T1{U????c?3?*??_?.EBd8??6?#??n?c?>?V???.??h/??V&N{r Nr?N]SFd?? 4?j?3SK^[?ji?_d X ?? \D{?k5z? \J???cJ?'?nz??`o???H???Oq??\? ?'{????1?i?????r?? j???4???J?.?fQp??\?????`?U?0?VY?s???}??C?h?M??J????8??"t-%??VO??;%$?6?????f^B?R???!d lR1Y#?|/a?J^y--{???*$`wc???O????-?sc?e?$!2???}??P??W|u?P? P???`???G?==??4???\?????0?.?V??z?'??R????? ?N?J??j??r@?o???Jq?{m???DV?V"*?*???jL?V?V?????O?????J?N[&9e??S?G??w7??????????0? ?ti-??'P=oa?"W$???2??K?d==???o???c>??#??o^xb??8??????R????????a??(:w ????!)#????x?????&????mPz?:??c?y?S??M?3k??????at?'???$j????P+?D????*4?*K?;?]???$?^?E???.k??W?&??z???? ????r?/E???~d????"?'??"?5???M???b??C??j^?R K?oJ?8I?/a?;?u???2??e??R??!?V????a??9}R?L?R?u?C?[@X?q?????k??a ?H???a???S3??\???)?q???@???7?~?? ???T????Q)Y&????e????7"*PI't&??u1[???l???b?ac?,}?&?W1]y??.-v??#???*"LzsQ???Xyz?m???21??SAD???????uQ??????\Kk?? ?zlU{1?? e?i?4)!JK??~Uv??qr?T-???J???????B?????????????+. ??%-????Y?J?'O??P?U??u"T??e?????)W?`?<:??????$A}Q`?Hy g????p???)??^C???*#)?z\'|-?j??K ???N??????b?????9??G?? ?[?? ? Il? {?l??nZCm? YZ??RO??X????G!HN????*?~????l???u.??????o=I??'?NP?B??Hw??J????a???e?|?P??Pi??)???7????? ???U|??B???z+??8?>??c>S???????"??u>??????????W?-?NG?%??u)K??t^?????(2?m????d???)7??S??)NEv3???BH??x7?6???$H}??:4v#W?6?c????2?0\??bA??Z??J??????z??ya?9????????)??-???]J>A??dj??????~KM?IMG!?#D???*Y? d??e-cg?<@???%O??Y?V).L1I???*F?d2??r??W??????????6t??y???H%K?}V=????L!?'D?a?Y /????"?!???o??M?+.?d???|Z?Z???:y????6??h????'"??LV??.???% ?w?/_?&q0????/6?+l??7???*9N??Ul???v^]?z$????9@?m{??vQ?6??x'lq????R????'?1d}????"&han?????7pS??}MF?)?$%*[gt??????t??????B?z??????L*?Z#?L?????s??*;?Z?p?I=?????,?1???T??[???[M???t;??????Q????y~?????(???????>?S???\B`?? m? ???u??k?8? ?/?m??|????;???/???????n9 p?@??n??a{??8???g:?i)????$2?YS???[#ae??8Xu? TTf?o4???-im????m?E???^?:K?G?R?????}pr??>??U'S??(??j3?JT???I??m?|?????3Vh?l0??B??? %Jl???:???Rjgi??z%?{'???I?Q???FR??S?????:zZ??.??^m???m ?%?-???O}??o?????.??al??i"?F6?+/???d?5???|#?'R?l???c^k?!???)????$?!??????u\?[?Y?2??)????????oXM?C??U;? ??E+?uyBR?1IW[N8.?P??ISq?????J?TAl?P?\c?~?Y??VL4H?B?T??U}-??$x?8??bJj ?*?X??#??JO?7??F??m?3pj)S6??? ??$]$????&8??Q??M????l?B ?PQm??;EN,p??a ??z?}?g?l?"?M?-q???)??B_??B]R???m??0???\s??T?y?)&?N??`????sm ?z??ZH?}???X??g????l?q????\?V?B})????R?Ha"O?v??????0K4%?T????d*?R???@D?@i?KP?Z????}?q?[GFJ3??? )??$??M?????[????,r?<?? ??X??F)?pb?_????$??????@ w????>??I?F?#'P?H?!?;6?q? Y?????&? % ????O+5t??q?#?JXG&?i?V?"?V?d??8???t??|F5d??????????t????$Ev@K?r,]lQ????ZyR]qM?H'q??p????%???R??QkRT??P?????o??}??d???)???Kl?????2b9t?n? hB????:}q?s3?{?P?9????.? !!??s(O??!???e>?1?4I3?.?????'???E????8??&TY?%?_f?,'e????,l@?w???i?5???vC0?SeczI???66=q?| ?????#?jJ??vL8??N???(Y???2???,k?V?O|}Z??L?;"d&?OvRQV?????D??f5V55?1?*?d?`m???????.c???? ??c???ZP?7&??{a?V']E??f\t??D??D????mWBd9?6?`?y?&K?? F0? O?B?b???Xt?9?????:CQff? 2?JUzw??????Y|9r?>???fD?'RS??G?\1?7??)???i*?'4??s???X????e?????8D???b~ @??$~a??1b?3?]f???;P???d????d?w7?l???O}??]J??)n:5#??&?15^?oiEF?'W3!??6,*BV?N?U??q?Z?L}??BS?mi??6?????`??f?+Mf????P??{?o=1??E?.?:o???L?+?YP?o'????/???1&J?;H???.??)???i:? ???@???? 4 ??MZ?L??af??????C\W?'?%.???K?iE?$u6???C?*K ^?c??j(^???$v????h4?&????^F??)?W?????d?) ???o?"??3f\??j&1<4?kh?;????*=e?P\??* ? M?{lz?;s&?5??WC?%ED *??'?jS?R?KU8???m*??hK??_A??R??n-??? ?4'O???GG????k,|?j???B??Q?GN???U~\F?]?2_??n?v~??????@}?~??o'??!????"?s?????h?M?(??}?O?}E???{`{?v??R?9?k? ?d,????S?3&I~?9??*?6???Q??*2??A???q??>?a qv????i1?h+Q?????,???????~C??(?? ?|TQr???J????%%?4???????+1?t?&?ui?(?????!???n?rYN??? qUE??IYu>p^Q?VIk????:?N???7?9???a}mG?U?/???!2???nl<_ q?~????g?s?l)???N??G??/j????X??`???*p\?d!???.Ki??M7e??u??i?G??J7???J\??? DM4?J?x??(???????>T???? f???n?H????9??4#???{^?S~ ?@J???dX#qo??Cc???tz????????v?&5!?m?p6'?q??8L??KB\???v??M7?0Lk??bh1??5? n:???wP+.??) ??????{-??v??}'??^ >?? S?? ?[????+?????B???+KhQ"????l???b?V??I 2V????Dt???z???9I?O?H ?P???B???? ??????m???V???!]?b?? r!???h|??X??????O???Dn?????%???M??y??????L??"34-?K?&??v??t? ?ySM??P?V d"????I?????2{??=???k??*??6?? ?Q?M?`;n?`?N)?@I?+??=???'V?Wd2?6t?? 7 ????R?-??-????\?????nn?H~f?aM:?????)c??*?)?j?% ?%??'??~??4??"\?%v??>-??v??OJC?}???n???/[???I?N?,)J??!??O.??{???`??2S9?WL?(???[???)F?2I?U?o???:?^ZM4d???? ;?????t???%??Wj??L????`?9I/?A?????HA?P????Gj?U:?Qm?X?JJ[_K?*??m?BGBOC??P??ls* ???a/"$??T????6J????????w?Tk?????????K!?[-???sm??|aK??) ??K?.???'VA???J?@?KJvO?b???H?A???d.????Sm?H???WK?n ?lp-t?lS)?X??qU?f?? ??i?X???'F??h?C?R?Gs????8???(????_?b:`m*?a?[?Om?????q?\? hI????? ???${?@3?twLr????l?m??????t?!#?n????e??|???J???????????b S??d?b??f???K??`H????????XQ??-mSTqZ???(?8????k???;&????3?.???v?*R6????????C?L??????A ???#??????6?^?????MK~4???$??R y????bm>??:Cq?3).!????opn?..?*^?Z????;??^??,??u?z??? j*?RB???7??+Z?H?Z?!?xM???iIi?D[A?]??b-N??F??G?g?C??D??M??V?GB.,/?*S?????!$??? ????? ?k~???A???I?Av<??????LI 4.? ?B:???o?J":??T??0?u???z??4??V?E?,?{?4????;?)?A????|o?V?O?Pr?J?K[?D?jPn;? ?Rv??~?????gC{?[???E?????????? ?W@:z???r,?AVa?Mm0??)??~??????N?a?`kk????? f|????V?R?t?Xc{r??Fa?{????Kj?J!?)???H?? ??1??^p?Q??o???u?F??????_q?)???f?P?[q ^??kP>?????`{2?f\?*u@???6??)l?uh  ?9M?5!??JS2jJ???P??a?c?V?=Ko??-??^??j??q??????.K??[7=:??[??9????q?A,????R?V????F?tN?8??A? |Z?J;??|K?a ???6Z??( b5F??n?a?{R?)i?????-?)+v??????v??????R??T??yk??Xo?kw?8(j?o?C?s?u$ff??Ve}??f?8???B?? ??r1?*2cEEB r???v?X0??????????*R?@a-?oJS:?d+HIP ???8???? 0?????>[nYZ ????|U}??3?ZWz?N?B+ORq??R??d??IR??4??eGa???.??MTb1MT?h???_U=N???Z? ;i=?`MU? ??E?S???Hq??????*&?#??LF?^s?'Ah52#L?kF???U?uQ=|?Jb?? ??/d???_|?????/??\j@??C?qZma??w&?^??jmAR???X??5!??.??U??GK????sh+?c ?&??$????Lx?$ ?_? d]???i*U? ?F??-M??rd?X??m?-???5??I?F??|{ ?%??'[B )r!??(j.(+?A???7?Kz?j? ? dj?P&z?RB?????????8??] *>?+\?5??/?"S??+5h1 'HR?Ckt%j?n??.#??-???b??B???ydod???_?>s??p??"5??1? ???*H?KObq??g? d???]ZLjssf???[JZ??-?D??$\]??Cr?R??UPy2????????H??????1?,w[??}?S ?4???hJ?H_eX????DW>?,??-???j:@Ry%O1'?P???/?]H????5'?r??????[l/??z??*???>d?????G!???"J?TU!??????Q"?ab??nM"Sg??2C!1?,??r?]?|????R+O??k?}?Q)m?b? ?n?c???w9~????J?:?"? ?S?=U?%6?????????[????VjuYC/??!??$??:????o}?.?'F]*LD????H??K*J??? ?????#*M_+????&??]????I@Aij?m???? 7?R??/?_???MEc????F?IH???pN???5??}K?I?????+?G??4r??+Q??>Vr\d?-?y.6?= ?2R??????c6??? _Z?4!` w`?X??????C H??+?q???P??[?8??0?H?R}??? ?H?$w???*J??y????????F???(????q??%?1??????Su,?KZS?S!V|?b??=??5?s?????A ?^??2? ????5?h?j?~???!QZ??o*K?J?????? e[??W??3??o??U??P?f?e>A-6???*j?T?'??X#??? ?}?O??????%?????)5??Km????FA? ?????f)H?l?s~ZAM?6??\???BL????S ??I?V?a???&?u???q?,?RJ~Uy???????-??c???%IH)??Ql??? Y?????+5?RB~:+??e??%?7????6B??,?%e?????+}?K???H~?????p?**U?Iq:P??}q?5j????q??+???u??? ?z???^?)P?????????????p%??7B?r????lJ??,???!?5-M?! ?n?n????? ?+a??K?????R/?a]o?p?[rYMe???[ ?\???o?O?c???G.?"?*?YSuyYDW?? ?K??q?y?r?Y\?m???%???T?n??tQ??>i?T?Ga Gjs?e?}??cP??g????s$???R??H??R?j?K?????b?s?????R???j?j?d?i?% >?S?Q???l?R?p*Ft?M?#.*C??*u??+????T%EQ[??y???J??#???? >??L??L?:I???QQ??\Xt???}?n'??I?w???U????t??T.??????? ????' ?`M?R'V?v-Bq_R? ?AB???V??????N?T??%???E?:J?U#???2u W?v??U ??%??S?I?s?_???.??=??8? ?*MF?]vuUS?O???????m?-???c?5???W???I??r>?t?Z*2*??9???Gm7????7?|~?hYjC??e"??,r +gH>?c???je??q???Tv???V?!Q????"?b??????i??2??????R{?I??f2jq?B?fKvahP??z(?q?1?? ???)r?d??? ???am?G???WA??N>???8???mJkJ?0*??i?K??]}???? ^?{?h?#?ljr2?E????#??)??0?P??os?2)9???"K?S?????bJ?em???R?z?"?k???????'%4??Y=wI?612?????S?R??$?@????p?69Q??P??%??Cj?%]@8?M??x??teY,?#J?? ?O????Q??\?|?? N?9Ly????e?????:??-kmcl?H??? ???????????????YR????I??^?:?=?? ???????Gp;?8?s&Aecd??K?????`?M1?%Qr+RS?%o,??~?3????\D???2???_?? )?????+?8??|?????PU????$?eqr?^aD[PcV?7???@In????)??!?T??l??Sn?b??*????y?K{?u*?|XUj??}?Ou???\Gd?????????f?x& e W??r?Y??]?ACh}?d???[?? |^?%?U?????Q?)?????%$-?P?K???-2????6?? ?G#?a?0^?%J??%?*UR[????b2?K.4U?*?0[?Lp??+$?s?Z???HH??? ????*???RBh8??s?`68jv+A6? c*????????? 6Qm%?p?op6?4??ve^?a?R??}+7?F"He`??,????T?$?? PM?;?+[ ???G??C???Y?7????aM????N???\+?Q!???T???F??N?? $??0`?J?`D??kXq? ? 0??C\i?m??m?6?p???2?un?z??y?????;?????C??w[$??n?????=w?u*??)c?1?S?3L???85;???h3UVT;1!n$?)??:???EC???!???KP?z?Si?N?u??+???]????lt????.???????? ??6????? ??412??????????G???C??[?a?H?0?Db?->??????rY-]kH??@?[?g*??XyyZ?N? Tu&V =?????'??D??[?H????F??@M?????`????@?w?J?W??w??T R???[Q??-r?????c6??*?rBB???RZ ??_?a?????O??+?f+?????)?o?l??3Eq?%R'??????>F?N?>0k}5?}?o?M????#?????"?R?[S?r0) iSc????????bm)??2\eS"|3o:R?(????l[?]?T)b\*?B??P ?p;o?-}???=?uB?????R?M? ??H[?????[St?r?E???Gj[ ????%???on?0bg s?Z????un?-l?'?????{`??i??qa??HrTv?%j???I?uaC?????F}G*?*???e??f:c???heVWkX?'b???-6'bAe?:?aP|j-?Ke?;????c$?X?~?S???t?e?*?1??+{?? |?B)J?`ot??W?:* ??0sr?Ic?#NZ?g ?m?? ???P????mf?r/????????r?2?T?Jt-??????q?L&???? ]???O"??k? ?V?U?}ZVh\?Fq????y?????????W??m\??i+?uj??O????P*)v????r1?_h?b??S??> 5?,???I*??????bQ?K??+ IK?\a?V4????O????[?|$??ar^JC?5?$???? ?UJ????Z2?????????T? hP??Rr??.r??2 'd?v?f|?>? ?????}???"????E??? #?&k????|?Or?o a!yU??]?u?!?????F?????^??a????>>e[2???q?|I??$&??Ip?T????g??????)?:?????2$J|j?5S????(? ???,p?WL?Kj2??9???H ?-?X??v?S?3?+????VY?f??;?????bAX`?V?y?lyU????L???R?~hp????-?t??.???6??m??W???'??[j?V?????YB?Z??$?c???B9("?]~?A????s?N??????2hb+IQ+?????`?8??3??yZ%!M? K?!??d H???$??????dM?K????8????R??(?O4??el?????????? mm`??{a1ej????3!_??F????#?7?o?<?k?8c?yc1P?&?EKV?rN?*???`v'???ba?YV;???/?}?6???????H???0?p??????H>F e\?V?I}4?Iy??r\YK?@??????????jz"??*Xa??)???bn7?????B?????fo?u)? ??E5(?Y?Qd?~??1XeXs?R?4?-2?!n(]&?e[X?gm&??????)??8?7Jok??id6BW??Ut;?#UG(???nL?m??b?q?^????SO???r??H7! ???a??8????R?;?^??~????????v?S?M-??!???S*)B????MU??.0S???k ??t??Wa??_@R??e2B???b???d|[???$?KBO??^?*???=?_2?????/@?cDt???? q??J??d6?E?;?Qk?h4?r?G^??e??l()m??????9?E???&g?>??|? ?yR?BE???32eT?? ?e,??H5| a??J??k`??????1??????"????i-J0?+??pmq??%+???Z??z?!?????H~?(?????S?S?H#H??vA??/-/?T?AWL]??%?Wy %)H???c????R?$?????W??h*?g?l???R??vB[IJc?;??8i!??:????I?LY???tf?$2w?a????"ju??????!=_,??? G???|????eI^???m?q?C???%.?+)H????<+3??j?????{?dZ??Z4?????n?a??Y??0EY?2FYx??z?Q?#?N"=?[b???g??????i]l?AB???:`?W?&?)???????R?K???ao??k !? ?????uC?1I???S??Z??6?X??m??O6??P?$??#???Ra??%-?mj?{?????(B?"f8 r*O?? f??????? s????V\???T???D?H??~bb??lG??????]?=35g(?_(???eD???c!V_??.??DTD??q??jR??????$?? ??ubLS%j?????;|m=n?5?"???v?g?T?|h???i .??R??? y????I?V??}??>}? "W2,Wm?q??Q?6?6??K?!jIS?)???y??/???, ?R???J0??P!U??zaYn9$2???!l????%?!)???$ $???;VwDT?(? ????g?.F?K?JH)T?TG??i9M? ??h??3f|?S?*r???RR?U??:_???/UX??Br4T?%RBE?rI?C????????=???R??%*R?????ZE?(??Hm??)eEc??????Bk?3HT???.%P?4?????:Hu![jJ???}p?FQPb?????(???????? HhZ??de?tj?q????jrh?CB?'??\]????a??a 1?R9G??:d?????)?2??AJ[???lI?fzr??u*]fT???) ???m??R??2??W?uz? ????bP2??@q?{lq7$T???????#?????@????_?R??x??? ??n??1a?(fJ=L>??`@??$? PZ.?????.%?? ??$O??E?????p|au,'??B/?1???"?tby?>????????????????w??7E?"[???-????\?,jl19L#>?u?qHP???5fL??&?&T?2IX???\g-????-?e?? ?R??>???Z?????0??????Ip??Uh??q??z?????As???F???yq&Ip?)?@?6 ?-?K??)l??k??T???8??m??Zm ChBS?cc?K????8????an??x?J??3?!?;?-??b??NB1?$?q:Q?sAX?*?6?|)???,?m6+?'JV??W?0???"#4??S-?= X??????eN??\u8???R?Q??m??}???uH??????Z2?????J??1?jT@?????J'?#?b4?\?B???>5:??????b???^???~5HJq3-?A[?o?*??????o???{[????o? ~W???k?r??????>?? U????;\??????v_?2m,S]?.??5??{R?moum??? 3}_3????N1lhi)?k? Q?q??q]C?S?)n-i????5Og?v ??-o???n?U?9k7??.J S u??_????????b????eiN?E????|???;???U?;??67?#?a?Z^`~?[??eR?G??!JB????v?Pc?????;???n????????+S?:?5,?GOlf9?*?t??? ?w???U?%JmR??6B???,~??5??W???4?~:lHR?<_??Q??qO??????3??3?e%?(??]?tLl?SR?^??cs????d??>C????f? ?y???u?*?z?-2?R???Uz6?72=??yI8`LN"?????U???? ?????a?$?)3?[*N1??RJBB?U???c;{v? ?????#fl??Z??-4?????9?Ko???ar?_?P???R^e????J7??3??wA?? [??7?3?C???B??6o??VD_???#??\Hs?.cv?X??J'??l ?UZ%Y?I?A\g??%JV??Os?4X?3N?(?R????T???x????j ?M??????U????NX\?x???????cV?WyS1?i*i?????J????o??-???~#?R??? ?;?H;Rw?3?????????C?????? W1??????e?c?P,??c??????;????{?Z??d?*????)???yV,??B?un?e???R??;??o|)?r6i???????)s?.??v??G?x?Um??!????????' ???XP?n?1?|b??KC??R?} ?%I??~?R??|?q,k????ShPk??4? @???p?J???K:[?F????DT??IqIM??1??J??4K???"3M??u,]G?????Jd???H&?}2?W}??S})? ??i???`??y`?Qs?(??+(?%?&??";?-??????P???)?'?6??eN??c?C???M??=/T???.i(i?q????N?4?oB8???4?^Zsq??8v??FF]??Ih? u?V??e{_l'?2?????B?????????a?I?C???C??? I?8u?g????-?1?E???+a%!C????U_??*5????????5?3^? o??w????E/'???v?jk?S?-,?'???Ez'"??^\?p$? ????'??????NC??&*?,?? a%??:?q3T???}?r?i???D???u? n??E??#????0??-;?A?L?1*Yv??MEU6,??'4c????%+?u????R??)????}B?>< m???_F?M?S???,??!??jN?u$]D????2??Fl?D*K????%*G?l6# ??(S??7??????Q? ?GV?!Gea9B??????R?1??oe?8??q?*?b{ y?^?UB???x?$(-CZ?OT???????P????q:??;?? B? ?p??? ? ]?m?g????a???CMJz@???B?x???(d?????3 ???Q}????}Y???L??c????!??#?KR4dV?T???Ny??+?8???;???????&?Zg}???X????J??)?_?_???=PJ ???JF?J???? 1??M_O?H?v????f?Y??s??$?-$?$x>q?I?I??g?3?J`???6K?l??Y????A?'???e??:l??Y??`w?P??0???ej????????^mJHP?? ?w??;???\??????d?????H??|h????m&t?:??]XR???LV1?3'U ?'?d<4????l;?&8wQ??}??? ?J52??????????[???"|?[??????$?5??:?~!? r??7?GC?S?7??;???w?*UD(??g????? ?*?[P???!?e?s? <I?? ???H???P$ ?6???G{???%q8`?qte?GJ?q\G?o?P^}:??#???r??Sz????3???????)????;??7??`2`4$).6?%#J??I??&^??t?Y ??!IN???>??? G??c9T?? -VC??t????l???V?n?UHT????a.Qf???Q?U?,x#?:S$P)??4???N???????8??$?)?*??6?G???-?'3%e?"Ot??5Z\???~R=???T????W?e?T?:P/q??9????3cO'^?"?a??8???Ev???B?PK`?~???????bODM-?9iIW?(???R????0?)"Vq??*b?PwE?|K??f*?Q ????p??o:x?R??m?j?,@???;??k?B??A?*c2u??3?G_?? ?Y ??r?@?*(4?]}???)H???q??$??q??@=&f9B????1L"$???>WX$ ?6$c???&}IL????????P=????-????????3KB??|?????Aq(?`?c??&[?j?E??Jq??[@?}???(?R?P??dE[???>e?M???4???&K??6?X$}p *FbI??v?????d??!??3!-7w"?1"?dL???S\?p????p??N^???4?N?8 ???o????7?!D?QT???l??E#??q?$??h??? r>e ??????&KJT????I????E????m??n????!2??x?X?]?R?9G:R??U?d5?US^??i?5??xC?????????Ch?ND?%?*?U?qn???.~l:?RU k??iRa???q????*?7???????8j?[z?QQe?? ?Yk??1?????F??y?H?#??8??;?kUee6? ??.???H[??? (???{??????(????[ ?T?????:?3E4?????1]%!?5????#R?????!l????l?j???U????Q(?_?+?B\???^?S???? ??m~??a???*3)ODv3r????M? ? ???3K???) ?um????q_/y{=???/?\???8???`??clX? ?E??[??S???H[iW??q???g?YDv?n?< ??? Y??V6=?b4??j?^?5X???9*qM?H??OKl:??wY???????#????Tf?)?????>? ???p?7%T???i??J???o?? ?d?oH????????0?>P???U?Si|????y?"MUCM?????R????E?nA??D????;3P?????X?P??C???=D?? ?A???:O??{?T?%&???r:???jG?l?"}y?s?#S?Zn??????m??? ????~???Q??H:?p??????? ???}?k3f??????*%V+?)?."?PU? 3?\???eo??????IU????[?3NF???s??)???9??uW??f?????/?K ,??d??u??(S?C~??Az?i)%:w??EM?*??9o?????Qk3P??S?G????Hr0?Re_|???e9m??p???o?C??????5??% ??k7?y?????????? I??a?[j??? _???eE?v?)*$\??_ Y2????)??J??8l?m?VM?)??9??^psT ?????%A?u??D?ez|??u?S???????|L?GLK)r4????6$???p????Q????-???*?'?0??G??s]?g?CaCG???.l???(?P??*?QD 1?b???T???????D?C?????]?|?0?j&C!?????m? ????TyM??=o)?W*W?ro???????W?????L??9vXk??d;??I"???{`z?mF?c?*.????&2[kY>?~an???Na??h??,z}mh,?1?E8??7?;?? S???*L???P??pm?/r??e???X??k?+???.^]??Pm??aRF? ?p[????WNp?G??t????"m???D?(4z{???*??cHm?y <??f???4??9vB???W???wT|?????0[[m?O???,?????j?H??$)"M??w?????f?[?G?.|d???W%???[?A?nqCf??@ST??_:K?q?^ov?t??N4???:"f????r?R?L??9???+Qb??$??:?x?@????3e>KS???yS5?t?\7?<{v?9*??3rc[?????????\?????Yn*??I??????w??9?k?*L????,??a?v`????(PeU>??? ?P)?O????1?n3{?g?4??M_h??f?l?*T???K?C????H???'Y{,U??y?)?(i/?I ??L+W?i?N]S/?@)A?????????,Q?,A??t?????\0?????!?[? wU+?s.#L??F? ?J @?'??u{.???????g???#?????{2?R?rL?L4#???????l:?K???+3F???m?y?]mnz????*?c???^???U?U!f?2?1n?!?oM??????/M=? ??'Q??W????UJtiPq?:?.???? ?BD??C^?ZbV\v)J)?#?b?_????h?4 2?:?E??? -?nn<[l&???{??????Nv?="??)?z??jC??_?5m??7??????CTW!2?%??%VSv?B:?,??$ ????z Q?hQ???4????;??J?Z?[TjK?$>?(!???_??H???????????K?]?\I?O\fX???|F??e ??????Uc1R?yJH???i??????U?r1.?V??K????/2???]??N??S??? j????v?Sc??u?q??T?????^R????]=K?5$ ?}?? WZ????g?H#b0??i?RZf4a%??N?*?I??P???A?_p???|c?Z????H???[T??i+n6?q?jh??ma2%>?h7????{?z?s;??+v?S??)?[???????????k??1ezm'!e???l???O?V?g?I??|?l?????x%?????_??:?h?t!????!rP?p????'f En35??i ??M??+????Wj?z&,4??CV??>???U???U??l?k6?7w?G???J??%]?I?L ?o?q??C?I??M??}?????RS?????f?K?4w??%???)??~?y?L|?V? L}??$?p]E$t??P??b3?[?????`0AO%?e:????I??;?????n???f?2??M!?????Y!l?za?:9?:Lw!Ua??;?RJu ???qUqb???e&KI??J?a )u?????_a?E??E~p? ???X?1T?DG#4????I(P?o???&??M~L?o)Q????)#b ?O|4p???^???hm?S?qkp!?.?????#|YTL?????Uu??a??-? ?qas??^?c?;?T$?5&3???e?6??q? ?o0T#"L??|C?L??e:~???SI?Q?Q?F/HsQBRl??m??D?0?0?????[??????? ?*/F:????]???T????????;i??Z?P??J?[quL???j??-?6?? 9nd??tT?a|?????-?c??$?b?Rf5?5QX$8???????P????V?IJD?)n)L?=v?TF???r??((?Ie????*?V????`??]??bu???.8??,???q?`V?N?1%??)JJ@)mkN?#??b?r?|?C????RK{<.?m?_pGl)????@?a?J5?fN?? ?_q??S?^????B~?R? ??A??C?1???0?t??_f?????5 p?b??[I?.Rza?$7?????E?3/????????y??)e@????O b???D?????1?>P50 T???u(,?Rf?Ae?Or?`v'??c???4.%Fz???%N'9??~n?nv??[???j??u?i??i??(}???H:m????U???O??.?j a $?P6n1?.?+????LA???9???/!Tj??!????:??????????Gv?1?| (SO1???[?y??J?????N?Tv3???????????????|:s??4????t;?V?}?v|?u?l???i???Lbf??%??RKm??GM?{??^+_??T?T)?&???!M????=?H?? Tl?k?&~?S?I?X??Zf???????8[??R??A,;K???:??t?'s?b T-?R???5???????Ry ?/???%??c?z??V??E2s.#`ZuN!?n? ?.??????~!#??Nu??9@?????l??yb???P???4??1????????/??????C?e???????_?eZ?:??wcHed??6????v?d?Ss?hUjl???X*u?z?p??+RA? ???Mc*?b?J]SZ??O-?R???u???????I?? ??7t?i??K?dTf9?y?G??t?P? ???U?????,?L???e???HC?JB????0?? \rb??H????e r{?d?6?@= ??{???R[K??At????(6N????J?SJ? 9?Jl???F?k? '???cs??x??*t? ?^~#S?)???I??-^?(?;? b??7&o??|????IU??"????QX%}{??qK????T?? ?H??? ^?d?'??????l????]U?1???i?_?q???????(UA??m?,??r jyB@:?????/??}1?0???\V??????0F[e??*a&?M?#??qT????|5L6?P?j:?W_W?(j9F?u?N?Ki?P9??????PZa==??G??i??zs,??.???????+T?#.HkBB?P?b???? ez?z????9?^??"??:] 'p??$(%e!X?????>[I'??s?B|?YU??9SE?4??!e&???????[gslt!?)??o??|K????Gh??W8ji???S?l ?.0J?Wzu6$'-?0 ????lj ?r??2K?!A'?4?????Y0Kp??? ?s??? 9~;-???R?6?????sc??U?r???_??g@u?w ?o?x??;0}?????b?7?Y?4?ym????SkX{?U?????????????????X?4?+?Z???Q??yX8N??|??uF???????V?????p??Xl?A?)?=????*4??A?T(?%*??????.!@?o????T?>?o??E? ??_?JR/?? ?>????????ZL??v???n_`?;?n?vn??hs?Ng?T??)b*?qI??E?????\??? ????qn??(z?5?o? ?T??> d'?? Q2?]M?r?ri9IR??}????\????)?w??uV??Z????E????????9??X}\?c??????6,?g_0%U???'???*?Y??"Xn? H}1Q?i?????5??9V?????gU?C?ZrH????W?2?s???(a??aPjl???$ ?\)G?????*k?\?X?A?"i???W"????#??*??? ?????~2?.Z?i.j??Z?????8__????"?3?d()?l???q ?6|nH?b?{/??#D???h???????m4???Ooq????*??iI???@K??k6??l????W?4 DC"?;???% ??????\??+?"???R?>5E?7? D{Z?C???[??+?\Hk$l,?S?2?q? ????olsDl??y??6Kl???H@?? 6?*Zg`??S?]mKH$[N??pq?5?kC9N???? ?b?????????kQ,?9?:G??t?f*???d)???:????$??NK??%$???????????%????z?~)??Z?v$lN??1T??][??Ca)U?????w?Cb&??&?o???????5?v?7 &????5?gWc?q`0^????!?b??0?#q???????3 ???6????,/R?M????????tew9??%?}K"???0??R??E?H?|=?8_?#T????????_a?yw?9?z?.@XqG???+=?e$? y??WK??auN!?4??Nw ?????J?1??*?2;?:??b??c??.?c?x?P?M?fj/Kv)?? $iJOT?X[ S2?Z?3Wb?5?????.???G?|/???&Ego????G???g???YK?q?~.?7??9??5??H?G?1?????d???$_l[Y{*U?d#P?N"bn????7I?Ss?Os-OvC!$rd???????????????}?9??c?ykSJ???&=R?b?2???n*%;???????j??????-|??????????*??\ (TP T?7%??.?~?|???_%?2?\?? ??]mD:???G?.z?W???r??? 6?8?B?$w?8??9??r??UV???d?I??m??B??h/M\?<$"?J???????[_???^???????Jan(Hm!? 65???vM??e?L??,????bnV??\Wj??`??-?? ??m?|d???dY????k ?/k?6?X??*\??D???"l???}???\g ?????????e8?[?uIl ????~??j?@??%??????n?? NQh???Z`r%?T???[?|?%?/??v ??t??|l?9?? ???lEu????(V?.qZ?_???????*S????^????nR?\???Z????4?BR???OB?#?SJ@m???-???9R???v?.??*'?m?'???eD ?-[???????B??u?F"?)?2H??u?U9?c8j.?r v ????{?=?#S?e?B??i??? ?"?/???L]}Y?RP?#?y?A8?:??!j P?z?q?s(?nE9kn?MzCRt8??@??u8/"d?4???+C??-Ii??o??/????H?oD?k9?n-HR?R:v?1?W???[+)W?8????#?)o|lf???[??=??!I??_T??z?????R?,??_??Q???=@?I???+h??WL?KJRVP???P???*H )?4??l&?:??F@K md\X??V?7?m???@J??J????????q)u???(l?????W?E??U?/r?6??? ^%????????K?qY??HMI?P???}/?????Ib?b!?(??2????????????????????%?L?&????G)??Sj?/??j*?$??Qe?J ??>?cq?b?6^f???t%A?d??c????=1.z???m??1U7??9???????%gK?DXR?z\X?| ?}?8v?w?h??????????NF??N?????"???|R??j??2?p? ? )U???WU??}1S?TR??;!j??Q?????RM?V?\/?.?1??.??O??0?Z??????B?@??b?9.??mwQk)Y?#??N?Ct???t??b?)}??b?/??????Jw2T??\??R ?F?\A???8oNk??&NTV\???@q? ZZJ?.A??C???Z?? ??,?5":#NmW??????!?:~c?@?c?)??q?+M?a??}?Uh ??????Or??9??Y???jT?????A??6??mm????8?C?K_??? h+????\?2D?????NQi[?_T(o??,|???XmH???????:U???? dk?????? ??x??????YB?Hp??S?v7??w ?5?F?? ???W???????????-W?*E` ?YF?rm?I?1"?>??)????Z?G??????aL????Z?g? eH??EQt??c|???B?\w????B]ZR??????p6??RQ??hoZ??????l??????O??K Xd)&????????E:]? ?? ???8?E???d???????n?.???pG?!?o?68???_?h?P??J???J???0?"I4??/?:??P?????P6??^#???YL?ZU%t?1R????V *$?X}>?#T?S*?$?":\X(R@[??????VZ?!M????)??y????A???N?????uWS???^???????????J?!??\. G@R???? Il?+??b????#P???k???h1????/???n\l???.)`9}??@Gl???y?.?[AC???R?dP????????I??f????? ?R??b-??c?t?tz??2L???<I?z?o??@o??`xh@=?-?,??,???????VQG`?b?.J???8???????O??Q? ?2? ?Z?Ho?BR????*????s ??????KH[f???;???$ ???m=)?O4????V?:??c??????$v#??^???O???b?????[?#X!*??O???V???Z????????? ? ;~k{?[N6K?????-??p?mk8????,y??????????:^??)?$X7a?????uIR?LPc,5-?-Ad???u??VL????iSM??b?d:;????E-5 d????(??? A????0??dI???!?!?2?6?^?? ?????Zd?{N?&B)iB^?????????@5'Z??W?M????Yp!GR?+"?)????44???uK?YHE?S???.???%A,?(8T?:???$X??????????M?6??Z?Jn:\t??v????????>;v ???iu8???@6???{`?7???}?w?N?????b?+?@???8?Rb??B??-??B???????W??????????-?5!??$??_M?3??V?? ?U????????7? 5$??q)???????J?W??K?~'-\?8??@ u!?*??5?"??FU?d?0???7 &??W-zu???d9K??"?????V????????^???#????@m?p?y4?`????DZw??$}[?0??}??'?^??y???R@?E??p?T????A~???]%>?G??a??O&??Zz????7u$??????}????t:?9??aL??H? ??o?%?????)?5???l5Q+??)????G???Sm?????AV????? ????bS???Y?d??@??4??? ????? P?Z?]?&??Q??d???a-????I Z?????/????s?>?bR???J6?????z?F?U? ?????????P??sOl'KUSC?m??XJ?????9?V???H??yS???w?l.m?3?Yk8I???? j?MB~??-?? ????.?????U?Q??h iJ?Q?Me? Am-?4?swj#? ]a??????X ??znQ???Jfna?0*j???Z?t?*N?)$t?/?=8D??R?????d?a??b?D?????`0Q?????o?$?????$G&??????????vg??????????6c????*?R?????J_- ? 0??*???C??3,L??%l?I@?????*?|?E?????w8???????RZab?0?L~xq//???MP??d???s????8??p=u,^O?bIj*??-I*?W???6??)Z ,Hl????c???4?h????? B????[B"??E=??6???-zAA;?:`~???????z?T?? (1?O????????jC+dU??RB?}??????1?%??n?] w??:??F????Cqu?&#N$?Y??l0q@=??q:Y?J?&g????%?H?RM?6???gj??%NDv???%VJO{?b?rU^b??????m????Q??]???y?O?5"??F?{? ?E??1?? h5??j?}?8. ?0M~????K??lH6?kbRx+8?]B2T?Kd???7?.pg%f\???*???R?Ip?Wb?v?*S+I?@?????iqC??YT??B???7???J(D-?????$?"?Wnm2????iz???{Z???6]??cR[vJD????m?????t?4#[n?W??t?????S'??E|X?r?????q *?????1 r??=2KuFV??nLs?Bv[c????Tn????s"!: ???????4??- &??z]??M????|?.`?meV? ?-M?7=??L ?g??u????94)!RKk t??????&,??y?H???I|?????3?dzeJS?6?? P)Z7(=????8S??F??<>?UEh?[@?o??X?????;?2?Y?UJUM??B?m)???????(5??4?5??CKZ????A??L?M????|????|:GS???R)?] -????????~?T?9??8??\???i?6 ?R?Kg???k??????SV?C? ????8/?'?a?`L?M???GJQu??Z?cMO?O???i??3?!J??? w2?????f:?l@?????P?2c?D?O???!????{y??e ?????G*???0??b???)??F?`9?o8??cm?P???:?5Z3-:?Le?????cr????'??7?e6????????A??????S???$bcV%?8????e???&?(???????*????l??]=j?h?%???]3?hr?$??6???I'??qlU1%??2[J??/pk '????N+?m?:?w?t??I?????L?^Z???S??9iHkW??8??????+??2?m?>??hi ????6??*??u)?l??-@ ?:??c??M%??Qm.\%W?P? ???#?e>?=:?+Ah?K?? p6???}K??>??Ki?FTF?Tl??????2?*W6TF$?ii!??YI???}?aY?"e??@??b?5????G?? 7????Sp*??ye ??i??'? ?=??c+?C?L4?n-?iY??!8??k???uI?M??????n????ZTBRh~?-??U9???L?#%.?$%"?(v??????)??9jJnBQ?%I#sa???|?n(?1b\??!???MKv???+J??????0?d????@J?Q??p???4??J???m ??{??c6????8??l??>U?/??K?M??(g?Q y?E?-?q??V$?3?O???????J????z???a?????????! M?z?GLD???k?J??z ?-/?????F??K?????2??bT?O???tl:???l??!??T?0\$ >5??;??z?D??C ??N?j[?#Jl|y???Oj4?aL???9???AO_??A??id?FZ??S?i?Yu?\????6?#?P?U^D?\d?-?? &? On?T??j?E4?6??#?A??$?????vr?uhl?^?:?????k??(YKv -*z??????E??????????)?g?!J???n??7?H?*?I????olw ???I??:??????A_iOL????????k???fo?h?J?Tz?d5r\*?@?????w??O???@RJ@.p@?f??(?&?? AR?? ?????k= ???g?a?"?E??r?z???U?9)wB?????}???G??iT???S&?q?8??R?QN??? +?T ???%?V??7M?Q|???/?|;?????VH??????;0?????U?m???NR????.???c??q??????W$d?r?aJr,??e?H???? ??\ ?5%?X?l??r??d?????-?b??5?`0??? zhS??G?"T?N??QRP?(Q?`??6f????t? ?dHR?%??>?>???,?9P?.??????????? ?H?9+????H????9F???????XN??????O>?XM???|]^S????9?=u*m??a?????@???vab???u?kq&H J?R??%??;??|T??? /9??i?62?R????5???'???? *BA?lN??????????'EU?-??)L:??+?*-?0?0?X???MJ??>??0Q&???_?4ER&V?Imm?0_k8J?D?4??.E???t?|,k?o?OX??r???O???? ?1??Io"D?e Z?? ?o|[?2????6?)?Cdr?uM???????t????*????SqT?R??Ro?6?"?*.?s\&? ??k?q???m?4????? ???KU)kd???-GF?J/????N?]???7&zV???O????w+?x???=?]z???n?m??3;?cM%? ???i`nI? 8?_V?G?H3G#?q??"e???)Mfr??\??B?I???F ?????? 8 o????? t???s?7+??? ??-!n?????????b?B?JE?c???|]=R??+????t(???43/?Ac?? ?>??Co]????k(?????q(G?BJ????p??h?A:n??a?n??Z?2?TB??J"?(X?????????Z??? ?0Y?? ????1?6??@Q?x??J???Q{??m??:s_}d??ER,?h?qb????D:??????#?\{_Es?y?PR??q????.; e?{????&??BB\???n??3?????M????l?au? 6? \??! ????)?o#"k{???,??0??))J?B??????HX)1?Y??.SsfN????>?2Qf?Bn??????\ ?y"'????Z?????B??U$??*?l?f?0]Jh$^???^?{c?I?v??h.?.|cJf?|?$?????%)C?????4!:?oq??# ??L)????6??? ?????]RJ?6?-N}?$????U??^N?P????m??^f??p?T?siR?v?)? aW?g?1???f3??[A??X??IW??R?$[~??Z?ZR??n#H`,?6???\????a}?K???-h&?7???8Y?\A?[?]?t?{???5???7?t?9*$?l$8???W7??r?a?U}? 0??<6s??????d=Vc?[W1V%-?_}???x??xWz????X????UvL%??]???9?????%c??pR{?1??Y V?@| Ch,?`/??2[-???,\0?T|?\????M??`?PJ?J\?;?W??9b????2d%??%I??l2??sz2?>??M??K[?A ??b ????????%???{yIl'?????-I??./??u?(?O %??*??}@&@ '?[?Rs??qj????d/?R?m{w?c ?n ?,?*En?vm?=?S?????~??+?DNd???J?U??L?????X??9E??6USp????w?? 7?U?Q??XoI?^?e??M?"R[???&??]???????Q]??b??:???^-?'?Qm:`??????g}%?e??U??s,???jU?? D??K??K?p?I?JJn??????Zn???Q???>?P?*?"?? ?4??ut???{b??{Z?:?????PG!?Go??J?z??'?b????S??'?t?OP-t?????3*?m???5NJ!86??l?GRz??J?"???????V?+??I? ???????????JU??0??k?)?v??iH????O????G????l&(???LrU]U*"\v?%d??*'??{????D?n ??c???o???ulq?t!}S? ?(_9 u~#?'W??8?Mo'??U)"4???/+gG????i??????'?v?e?5~B?%??P???B??7????t???Y,!J???G??k?3>??[?&?N??|??2??E?)$?\?Q?\'T?_f,??Q?Ntl?????}???*S??y?????? ?Z???4?lt??????b???"?????: ???eI~e^\??S????????k???x[. ?*C?????8??%? J??? =>?d?9nuzth?????%?k??s???7?????>?'????^i????S?:?8??lt$?d??+?????n????s5 ????B>????h$,?r??q????^NG??u??33%?RN??c?*????S???|?Y* >??#8?YR??)???pE?c??2?_)(?J}???9???C??M-??>??u?pH??R5?{k???????l???8??*?o{b?? S*?fd?:0??Et?$P?o?1I?r??????-?5"??K??s???5:Ucd??qw?L??!????m?>C?? kN??p-?? ?ftS???"-I?JR???'?"'*? PUJ]?RR??W('apz????~?ma????f??Dt?IGkc?]?L?vDP2???C???5WQ:S? p?? ?=? T?U%iR?i)'?? -i?!????3\K??Y7??1??K??%?i\O??:B???H=???>??!?? ??n?u=O???Q)JM??????n:?f???vR?n?LO???9?????`ia ?c???o??b??J?%????ZY? ????q??Q?0T?%7????r\?3??$?DHM?????????????g?? ?WS??I?F??U9d??? Ju??'3?????Qd?h6?@?G??v???? -?!JkRB=$[???|l? ?S??R?F?\?h?$?lb?c 3?62????w:?.???? ?T???????<_?Y??S????}??#"5??? _{?6x???K?J?8?L)????;???r??)5?u?$6?J?.-}???? rq??!??].J???(?:@??u????fZ?? U?N4?9??-??J?I v;TFDD7?Z ????jr.S?%l???g?9G3;??2??q??l?Joq?[ ??X???\?t??)n[w?F?{c????7?i}z????OH?5?&N?Kv`??B???J?kq?0???`F?5i??)??e?zl??sJ~$ *t??I IY??? sVY??T?u#??????Ca????pO??F?????(??8w?3e??????Kj?C?$?WCK???B???????j:??)S???????}??k???Rl?*d?+??+!??6????-J,6???JX?????/????KPBJ???|:??X?&k?/LD?2??~?n????x5Y??? ?T?nw)?|?E????h?GN??sJ@'B?????iE2??PcD???(7??c??H?H??i?q\??C?%h+?P ???aJ??!??)??-?>??????K?;a???u??????[m???A???0??]?-am????F?8Q???vY $$??b6ci?M??Q?H? ?P??N?GS?^y?2??N?RI??????(???F????R?[k ???8bJ?p\?pS???u?%????????&?]-2???s?-u~P1 ??G???7??m{???#???9?P?}??-?I????AaM?K?.$HQqc?=????????|????;`?[?$j?re]??uJDe; z]l?=/?19???a*????????R????dH?59?Z???M??d????B[????wV? ???Gq???qChY???b??"S????????'?t??a=*???{_???5????2e$4??) _RN%FDy ?? *???#???d?C?\Sl0??I?c?]??/???{?+????f0?M5?????)???HQ?;????{?+?e?K?r4b? ??w6?aN??MK????*?n$???????C? ?2??b?P?{??X???R????PZ?????:??f?X]?6?B?????yf??i?|_???i?MJ?>R?????~?=???=k ??1?????%?*4?G???4?J#????5?N??P?ua? ?d?J?V??M????????C?G?s?!?y6?IC?G???uv?;?K???G???????n@8\E7-R???%??Ssd?;#?e???????????J?J[??x???.?X?e?&??pq?R?W[?n ?=p]?DR???:?n?p?>PN?Ms+?B?fL??7.c?90???W?R???:?????\J??E?R??n?#HJ4op{?5P?_)??p S3??p?F?R???aJ3?\)?=?????1????BE[4???Z@PO??;ok????T?.=By?????????aq??Y??"V^Eim[?? ??_????`??r?@??Hp????+~?Rp?5?v?LX??????s?,?%?????2?h>.p%?J));?>?Iy????09?V????????M?N?[ &}?flt% ?v????u=????k$?:oeu?X?W ?{? ^PBJ??V ?????ZV????>1$8A(?v'????- ??}D?y????(hF??kGE ??\}?????M?ux?#-???#RB??8??,???~???D?%Re-?AKI??P?v??"Di??'???n?H%w??T?x??^??'????????y?UNL?b???.??ZN?*?? ?m??c?&s??R|?I????Z?d9u"??.P?t????o?>???E?????}7???C?i?q?M5??????~u????5??v73?? ??y?)??C?????b??????7(%67??'^??Z?8y?i????6??????B?E:T" K??????????????r*S1?$(???????9n?i#%??!???6.??m?,% I????&T????6? ???_2????rOM???? C???m7?????????&xb?4?????{????oR&u?B?1???%%??vc?+H????u#Q6?{?C?!j[k)h?Tz??|?@???`jI;?>y???p:?- ????s?&I(?^???T???r[@???/???%d? P\??>???A?`?$???cZ?M???z@6????? ?[?g?n?N~K?%??????m?????I??k3?/%k??c????i/?J.]a? w9? o?6;~???!1???;?NF???????VB?n4?????:?(\+???j^~*???Zo????o?T???$??H?qii??vJ? ?(n}??L?nB? ????#r???'Kz$yX}jK?B????\?Tuo?Hu??SI@??Rl?S?IH?}???????? ????%?6???????ZM+,???????[?t?:{v???????S??K????9?W?G??{?]?6??E????V???&??\l?2?F??)?947???tC@?Z}??| ???Kz? ??W?[??.,z???? f?2B?R?I??? s? ??|?aR??d???(??`??P????6k?f????=???\????*r?(J?*X?????j   Z?qdxM?*?y^?rb3t???GCY???*?'0$eR*UU??;?[*q`o????l??(???(% t7=p????])M?*????8?-EM??M???*|2?y=?S?A??T?|?????>v??4e%?3 JB???"?1??mN?@5HK ??fOB1M???3?T????3?wQM??/???V??[BT?/?I?=%??*qX??? ?"?Z?????H?g?[4?j,?%?? ??>??o|#???S??-???f????O[?)?????Q?6G?J?'?? \Gm ??O??c7v??????? ??Hi*e??????????U(?QkY????*??Z????????cd6/?>F,\??&p???~T9?g?P=????qU??Q??c?ihJ??TBB?z?_???',q??R?"?????6??Mn-??'?Z??R?.R/??lB\p????S????????t??}???i)+[.&?'H `?L}?P ?"???{??VKr?a?,?rz?Od~*???????6??R??-AG?$m??[???P????N????u????&?0?W???p?)i?Cf??????`'e:??V?yOX(?N??M?cSr8)(Q~?%]RG\?"???v?R???YCkl/-l?u?P?Qk??)?1*??d?a?q?? X?)%+F??? ????%aVP'p;B?S???? j??bH ????=?NHK(:S?o???}?M](??????? W??B??[????B???)??I???:J??IX{???]??Sj???5???70?$??R??F??+t[??12???6`FiO1? D???|V?h??%1??F?o?9) ??????? MF????U/1?j%FH rC???r?????M?F????PR??)????^???l?M!???V?$??????Y?J?f??5D??y:?nm???????T??&?Vh?????Q$??IV??6??????TI'~?-:?\?"T?f0??'*9y?M ??????P?6??RD?????h?j?????p?*?Y?????n?p?-M??4%??!?J????????*:/{[k?J??????`U???w??[D??b?0??*?9 ?????????+3A?n?k??????'?1?Y.?Q??`?:?I??XA???#?????|??F?D~=.?Q??$??4)??6% ?u7??C? ??vy?u??k???U ?????7e?F???pr???????h?????y??J??????????9???hNau?.XZ??rE??????`???W?_??4????*?c~6???????Fc??R?RV?x,?Z????|'?a??m?????I?$G[ ??P?? &?`?? ?.?????I???? ?*?X??P????u(?Nu/??9?E?lTG??5?SU???DYe??????v??$ ??Y??*??H{??M????IJ?%Q3?!I?2?NOB??I?)?sT?9?uM?!E??c?7S??q?f?Nbh??JloB???;aoR-j ? ??`???$WkKy! ???*K|?a??6???#?Kv??5Of^l????;?????|??Q?cB?l~?eWBf2??$t???6????w?=?o$S??uQ?)E(mEw????|??\??Jt?Z?t??Y*l??????lGP+P=/n???????X?h?D?????7g!?-?O? R?K?????(Q E?????K??e????*qJ??N?~?F???B??KA???M??b?????0vD+*|G???]qF?)O8J?|i???]??!&????SeDY??) ??LV5??hnhSA???\??O\Y<? ?(UR??f!mb?a`?G??$??`??%b?"?\wJP???1???^??!?n?? ?>??'?U?pO??Pu6?`??2?W?V???????x??6??? *W?6?#c??:?HJ? ??e??k???t? qi*#??U`?P??~??i>>???d?L?n0?E??(?B??`>???k??C.4?f?yE,?[q#?????/???9@???s?=OuN."&?.????w?u?p??L?W?"???5647O????"?2?u????4???;????????Y???Tf?]?RBd(????8?)?y??,E???0??k??I3?'J?????%??_|G}?N?8?]?M??A??I sQ?????p??l?????????8???g@AJ???V???{b??P???Q??R??H?????I??h??Cm???&K? H;u?????????*-??AIKL????{??^??gi???????$??)[?a?????P}?, ??9??j.:GQ? ??+ K?o?6b????Al?j?/?M???c2?&?????#r????g8??D?I?8?+?P) c?s&??z??:D?????:{?????4{??a? yK%????q?Y?|5T&Ea?&<_$~mg zR???[?;?k?B?N?LH??d?8?\bmo1??B? wn,V??$w?P??????'u?5C50?5?m?~??_???yKJ????}A8`c.??N?R?CQ?\??R7?h??"l$?E???gP?T??J??????(Z?????:C???gS?R??g??N $j?f:????? ?D???sp????nOof??s?H???r?B?@'}#%RCk)X ??o8?8?2;?!)????u??(&?)!@t??+Z??2T?!=4??? H?I?=P?YbhN?L?M=?N?]&?6???v???>??????R?B??in{?6V@y??u???k7??aq?a??5?????????_I?RVGa???j??3?4??????????zQH! a?????`KQ???Qy?YIQL?i* ?>?|?????r)`?Ye? ??Q#q??.???!?E4??R^m?}*??>?b?????@???b??8??vm5O?# ??????5?I?(??&?jK??lGC"??H???6B?:)R???????%_???????\???^U?|?rj?^B?uiW1??????l?=nY?Y?5?7}??? ??&k?? ????W ?P???Dw@6?????\????k7v?G??RN?c?+?2?z,?;mo?P?:?s???g???b?mE??????8??)??P??5$?P=??"qF??i???w??!!?&E?)~|?HI(?e ???hhL?&????-?????1[WM????t???????]12g1C??????|Pz?"0?H;? ??.:P?u?q??(??+B?K?&??+? {SgK???Pt??{?L??M@??y?-~???????m6Us?"??DBu,?iF?????4e?R???'P?????)?o??8????jAnz??-AKL???K???????w???=7I?7 ??o?m???u??R??=??C?I"?.j?????DH?Ba?????????/ ?E??e}qO0T???8?$??cdN???k/f???RR?U?F?O?G[~??r??????l7??Q? ?!WV?i??????5?i?P?;??&??6B?T{????;?:G?B??~_????????C?Zv?.??.?#???????xn-?\??*C??$?? 7H|+?{}1?B?!p?|jZnG%??BPm??`b_Q??WL$l???IW??T??Z?1?????^a?v?2 +! 7?S?`??e57?J?wY$???=? ??"?{??f???$Z??l??t?o|\?Y&????#?q_5??^v;?D??P???'k?pJ?Y???S?Z??CL?? ?F?$c???k??k2??????X#?.?6M?:?N?Fq???1u?Q1??)R????R=g?????J?????mn????i??:???5?_C??????8?qL?n:?|`?cs?"?k?{???Vs?"?:j???!M?????e?}:???!3U????????^?5?"??`??9???-M?bM?m ???L?l???r?qK????&j,M???Xv? ??,k,??NzXM?)?3CK????????M+_??vRRz????L?:\G?w3???????l]_?f;???'!?iR?E?_? ??O?H?C??/?????%?;?????J4?@??1g/?5? ??[?eV7??Xm?????$`??)Y?iR`??e?Hn?????r??????yg:??????????e???????,w?!??po???O???O?"??)?.??{??L??\Zf??qZ????_?-???J?????w????p-??*g2Pw ?????J??~???e ?6????b?{j {x???3?*E?fs???J??o??q???4?k`H?O??(????V\??|??G?P?~???W?j?z[B????? [d?`W?M??]??.?????9{c?(GYZ???|HFUuq??Q ???qM??Q?**85Oa??V??P??Xe?'????IjE??z?J?(??Kt? ?.4????N??cEB?Sa??*????k? ??"G??0f?a`"??JB?`?n????f???z,R??Hb??#?q?"??????????m\?Tg WKkw?? ?Ab?0e?|[???f?)H'Dv??O??t?eG??? ?+?J??????J??H?5?n??L?V??%?P?+???U?l???#8O???U??(??hn?????T?z??v??\??,Ttf?=n? ???MF;Ki?=&???Q)-bv>??(5?tH`LDp?7 P'????"t8?B??V?HKZ6Q?O`s???8e?? ??r??-???????????????08?FS???i??zYP?-?? ??*???3?\?Q???#)???:??M?OM^???R??!??R,??*E????x?yS?=e?5?rO????\Ka_iIiN?+(K@?[ge~??,j[o?qTE???,???h???6?g?z?S????r??? B? ????83%?s?B???-?AGJ?F?>?/!l??_Z?`)??F?Pmq=??^?'6V?\u-??????8?(??V^??t????ASEM???}$??&D?????|) T???8&?-? 2?U?i?l6?o?? R???eea??????N,?.??*??sJ->?IJ?m?????>F6?:???N ?o?pQQ[??r??-I??U??<`?q?????+?[?M?%?m??p*??????$???Z\SjekQ????\E??$??r1?'A??ky?z2??#)?XRn??\???q??eD??T??uB?????;_?`a??U?1??|6??+??,???q??r"???t?vp)?ZTGO????Z?V??A?(V?P?o6????9@s??*RO?R??[6z??]???Z???$hi/?$rN???j?C[??R}???@8?(?T???????K?0Z????R?\>?o??loB??SUh????J??????,?R???c?????~^??(H???? '?1Aq??r?????R?;0K???!NX??L ?l?J?? q?$?b?}q??W?=?K#??h?s????????v6??,??LP???2??j?vWO?????T']???? ???-??{???9h????w???????=???J?:????I??[1jEI(i??????V????H?HjM1?~-?q%??(??0??Y *$D?B~l?IK??uRM??????zsUy4?? ?? ?2T???[?w?????!N??*\??z:_?????,'?)+???a;?G?:? ????j?I?Re?????U?ONa?R6?z z?YvC?????????? a??????`??qRc??bSKS?+E?7?e#c??%2J??U??) %NX%w W?#q????I????6?????vjLD?????6B ???YN?????=P?|?TVg&}[??????-?Q???}@?x?&Q e??PIr[?$?ime6?@??V?L??kN*g5?~???M?]IY?:`2?K??C?,[u ??#?'?????]??#6???'_?M?2?X.%??l?????> ?j5?????R?0?N8????%)&??| ?U??A?>?? 9???b?;??x J?e?d8?Z????`?{?????.T??z?5i?????Y:?Z???hP7?{?faAejn??K??u&??????J]?[???3*3?u?{)Q?Y?1???>r\???v K*/????p?M???s ???????A?;1!??0?K??)u??w?9?????w=EU??w?X9?L?????IZP?$ y?????????:???8???:??[9????1OS?Al???w?????(????[G?4}(X7???1???Z ??=???&??_?0?KT19?:?? ???bo ??_??!??HsRE?W????[????S-?,????? J???1+,?v?U$%,?\/?U???y??0???o0?M?T?1?V????m??="?v??X??l?n?571E\?7z??d?{\o??????C?m?%+Z?Z????7=!??:;98?+IU?Z??T??J$?????0?????4%??}?N?8?*?????)????5??45???'? 4?T&???u?n[? E??t????mO?]?Y?Lq??E?Ud???? ???Z???I??%w???c??C???+l?=k??/???xO?v????qa?q?G6of????$??? $s ????OK?Ca ???[?js?????u?IZ??:$HS?6?-Hh?5'??????mn?S1?????[?Q???m?/ 4H ?????5n???N???8? Yq? !#???{+?6_9f?m(???HB?X8?O2??y????H???xYT?H??_????{???N?Y6?s???FZ?dC???2fR?f??"??;?puRPt?5~??$???NXw:???q??x2??d????????p??8????r?e U>UmZs;?zPiHG??e)?T?Y?$C?+?Q????r ??~S./U?>U ??}???9??I?? 1I?P????U? C} ????e6????'' ?2???39??1 %L6???t?s?U ?H?4???2?A5??j???????6G??s????>9?Vt:Fj ??x*',?RU}E?:u??{5??c?{?nT?Hz6f??jo?X???w??%???`BE?=?[?e?2?]?33#??t???]j3?????????5??q?????Zl?V?K???**@;??c??? ???H5?r??A????_??h????)?S??"J?)$r??t^?k????D????P?E??>??Nrc???[SiOP;???'p=?z?S???1 OA??w?5?????Y??????!???b?????O??7q?G??|?Zj??!????BZ4?NZF?E????? ???I?U2Ma???1?zT?||?z}.??$,?w-}?oeu?W(?? 7An?,???3dP[???#?????_ut?h?3-W&f*?H????I???I??X?`{x?(4?????/gx?R3?ahW???RH?? _?????!36?b???O1?>J?lt??X?s?? ???????3$!E??????Wy???????O~?????????I "??v#????9?"ev?pY?????L???????#?*&????????t>?:???~!???X?????????h5j?9?K??? -?????q]FJ%7,?B?:?I? ?La*???B?a???v?GQ??@?9(j??m????,?????l?????FE???uW?>y2b?1?????|?!?T_?j??????$???=?? 2Z??F9k L??:~ez??????d?~????r:? ?r??@? ?2???S??J|Z?MDy?&?v:4?? ??F???T????pR?1s&???S??????{X~?]??]#.(>??(???q???4??p?-S_q }O??T???L,??~ ?7? ?????gW%3 ?R??SpLh?x%m??!???b??,S??-??????:?????????r??%FR]Lw?w ? |+???R?????Q??[ ?????.B3x???????_?B4?\?5? i???????)A ?)c????????v??a?)????AK?q??I??tT ?O??kIU???{U???F`?u??P?>??p%??(o O7 \$% ${???)??sY~U+?*?????lf?"? ??}<:?P??p%Gc??????d'2??? Y_????U??hm?s????AJAA?m? ?n?1?? ??-m?G?v?uPe??;&?\?Qu ????H??+??W????G????x;???? R ??{_xi&~?E???z )y??????P??+u|???????`c?|?l???c??Qe?J??pP??*J?I+?????u ?8???-?{?d_??????{z????55?-TV?f?`??M?)?Y??1???@rw?)????i?Y?? ]??)#???n??T4???>??????:z?!?r?q,?k}?C??? ??(??ECb3n???jW{[????-?Y???w-u7w>?b???? ????????????kM?W????tJ[6T????^?-?z?IBn.?M?,}'??1??$????????C?`?RI?n?????9??F^??l?Z?y??yD?{??f?&R???????????e????2???Y&???????U???? ?b;???k.???6"?N$T?C????V??q ) ??`G??6t|??(??wJ?K??}E?????H??kb?O?? ????x?Y??ad*???2????p?%?? ???2f_?[j?i???)hzB???{$m????B??????32?}???. ????7?q. p?TY??O???*Q??U{??????(?QV??s???4?#?????O.& ? RW??w?%??n-??M'U?q#?a?d??47R???9)?Q?p_}Z ??????)?0?Z???????#+Se??????? b??jZ0??%?W???p?Pqf??i?????`~????jG/???BR??I]??|A?G?Q??N???-??v??)?s? Y??u???/??4|???5U??s???????????E?/8?-??D????'|yi,(?:nl?H??T??R???C??????/??)???~?V@?al?d?2???S?Q???????1H?Q??)??^bpX,+?A????/??z ??uGB?G?[{??29???*?v?;{?Z????2?????6? ??7V???Ux?_[P???TJ??????h?d~?S????Z[?*?S?@Z?:J??P(6E???I??VR??+????C??b?:To?\v? ? ng????V???"6??d??????\[???i?dinFa??a?5 ???7mWE?=V?zA???F??Z{3??r?D??yI?????'W??W^?\?l ??fQXD???????|t?M???6?dM?^-? [?lU f?F??? ;?cYMsN?f?O???????[NC 6?T??[k)%+?lo?Qo??31??R??5]??VH?"u?$????*?????????g\W?U???J?O???(??a??????=ZG;Z?????????????B?1dIJ`8?R?7wX?o??s????Z?l?Z??w@9j??  _??J?D?7=&?i ?M2?*;E?H??Ub{J{???CVIH*?:+??3???U?e?Xm??? ??M??m?q1&??i* e???V???e$o??n??aq?w?f??? ??a???o-?c?M???b,q??^u,??? ?)7????I????- 6M?U+}?}?!?ZnBT???k??_[acY:???????F??mm?#K.?j???????6?%!,%I 7H??9???l?8?l?Y??V??>?%/??J??(|??????Hbv???.?.???Uae???e`7??"?bF??Zi)l?Ir???Q??+?3r??Ph/??i^?o?lm?|}?0?^?"M?r,??M???????0??!???/???{cU1qMQiT49-*7._??u???3|?? ??????m??????1?J???Z\*r?"?]?Te1I?El??P?4???$i????(???;??J????U????t???=i?R??Z??M?qu ?MUd?&?)nhR?????Oe'??Y??$)??SI????)Z?L????}1E??csY6???????q!j?'{?!??u uiN Jx7w"????????L?????S?)??iQ????d?fN?????$UR??U?I????\Y?sB?|??.?#?+ ^? z?BG@1[????>ZV?????i$??????P????? ?-?i?a?zW?????hT?F]?F??4G\8T?7-????1?@$w??v???HbD?F???qm?A?Zo{????ber??:&?HR???n???_??+?D?????(>???N 7k???!%???q???$w?2P?R??;=??P?????yIN??/???U?4E????~V?Xo??????\?%N=p? ??n9??:??B`?'r?6?????F@P???r?ea??'5K???[R.?z?????bl??%!q?J??ua???T????_Tvb??5????32iE??-?m?%E???Ro????!???G5?z??~?YZ?? ?b??????U?!iv-?;b??m??L???H??B#?lT?~??y???? (t???*???|?r ?aO?_|zZ??Z??h?l?gDx??T??2?? i\?T?6?$?????? ?? ??6?a.?B?]f?"J???=@??9O;C]31L???C? x??????b?'P2Ur,?}???K?????S8H???G???kt????'k???????S???R?E ????? ?(?I??????0u?????:o??1????Bn??pRm?? ":??????l;?? )? A)B~??]??AE????Q ?}???]p??oa|t?C???BT?CT?????????P?V??B??K ?qup?k??-?0K?_X????~?? iB?C???e?? ??6tL?d???J?u???R???|?K2$`??? ?.d???;:2, ?i"?N*??^?? Q?ZQ ?c????Do?2?%f??????b?57!??Qx!?R???????ou???OU?)_?K??2?-??y???.?R?Taq????v>.???????z ?Lj?-??????Zt??7K????TQT6??5??g[$?*?o???J??i??T??Ur??? I?.e|????????77??[?????Y?XMR??6: T??? ?q?C?!)t?*Z?!^????e?????????^?w???9J??)??@n;e??~??~;?<}?=??R????ZR!W?N?0:U]???t?HZ@-??*???U{?????M?U`???>1"????x?? ???3O.??t'??#?a?|k????? ?\?bb?????????2??|"B?4???????W%?H??m?????o???????????q??Bl???\ @?(?M??zcT?????C??Z??X+?S?#???`u2???P$+?Oa{?? ?a??????]??V?n????/a??C?:6???+G?R??MjuE?????8?ZR?6?J??? ???B?*???-?c???????+????_q??tal ?!?????lOr1jp?9b???<????]]> false
                  817394275106703360 5244928 Password field with autocomplete enabled http://utopiaguide.com Low Certain
                  The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
                  autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>
                • http://utopiaguide.com/forums/login.php?do=login
                • The form contains the following password field with autocomplete enabled:
                  • vb_login_password
                  ]]>
                  UtopiaGuide



                  Go Back   UtopiaGuide
                  Register FAQ Members List CalendarvBookieToplist Today's Posts

                  vBulletin Message
                  Invalid Forum specified. If you followed a valid link, please notify the administrator

                  Forum Jump

                  All times are GMT -8. The time now is 12:31 PM.

                  This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

                  Powered by vBulletin® Version 3.6.8
                  Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

                  ]]>
                  false
                  5173551446053894144 8389632 Content type incorrectly stated http://www.google.com Information Firm
                  In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
                • Content-Type: text/html; charset=UTF-8
                • The response states that it contains HTML. However, it actually appears to contain CSS.]]>
                  false
                  2911224719673909248 1049088 SQL injection http://tap.rubiconproject.com High Tentative
                  Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.]]>
                  every variable data item that is incorporated into database queries, even if it is not obviously tainted, to prevent oversights occurring and avoid vulnerabilities being introduced by changes elsewhere within the code base of the application.

                  You should be aware that some commonly employed and recommended mitigations for SQL injection vulnerabilities are not always effective:
                  • One common defence is to double up any single quotation marks appearing within user input before incorporating that input into a SQL query. This defence is designed to prevent malformed data from terminating the string in which it is inserted. However, if the data being incorporated into queries is numeric, then the defence may fail, because numeric data may not be encapsulated within quotes, in which case only a space is required to break out of the data context and interfere with the query. Further, in second-order SQL injection attacks, data that has been safely escaped when initially inserted into the database is subsequently read from the database and then passed back to it again. Quotation marks that have been doubled up initially will return to their original form when the data is reused, allowing the defence to be bypassed.
                  • Another often cited defence is to use stored procedures for database access. While stored procedures can provide security benefits, they are not guaranteed to prevent SQL injection attacks. The same kinds of vulnerabilities that arise within standard dynamic SQL queries can arise if any SQL is dynamically constructed within stored procedures. Further, even if the procedure is sound, SQL injection can arise if the procedure is invoked in an unsafe manner using user-controllable data.
                  ]]>
                  '%20and%201%3d1--%20 and '%20and%201%3d2--%20 were each submitted in the put_2132 cookie. These two requests resulted in different responses, indicating that the input is being incorporated into a SQL query in an unsafe way.

                  Note that automated difference-based tests for SQL injection flaws can often be unreliable and are prone to false positive results. You should manually review the reported requests and responses to confirm whether a vulnerability is actually present.]]>
                  false false
                  1188187908652275712 5243648 Cookie scoped to parent domain http://www.google.com Information Certain
                • PREF=ID=0772c9d5ef13aaaf:U=d212295d0f1573ee:FF=0:TM=1303071569:LM=1303071854:S=-12yg0SrBzdFcgP0; expires=Tue, 16-Apr-2013 20:24:14 GMT; path=/; domain=.google.com
                • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                  false
                  1643598205576963072 3145984 Cleartext submission of password http://www.playforceone.com High Certain
                • http://www.playforceone.com/user.php?type=login
                • The form contains the following password field:
                  • password
                  ]]>
                  Play Force One - erotic flash game
                    If you are new here please
                  Username    Password   

                   





                  ]]> false 8997048400578139136 4195584 Cross-domain POST http://www.roofable.com Information Certain www.feedburner.com. The form contains the following fields:
                  • email
                  • url
                  • title
                  • loc
                  ]]>
                  Roofable » Page not found
                  A rooftop view of Orlando’s real estate market, trends and neighborhoods
                  ]]>
                  false
                  7199450567991100416 6291968 Email addresses disclosed http://utopiaguide.com Information Certain
                  However, email addresses of developers and other individuals (whether appearing on-screen or hidden within page source) may disclose information that is useful to an attacker; for example, they may represent usernames that can be used at the application's login, and they may be used in social engineering attacks against the organisation's personnel. Unnecessary or excessive disclosure of email addresses may also lead to an increase in the volume of spam email received.]]>
                • service@utopiaguide.com
                • ]]>
                  UtopiaGuide



                  Go Back   UtopiaGuide
                  Register FAQ Members List CalendarvBookieToplist Today's Posts

                  vBulletin Message
                  No Thread specified. If you followed a valid link, please notify the administrator

                  Forum Jump

                  All times are GMT -8. The time now is 12:31 PM.

                  This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

                  Powered by vBulletin® Version 3.6.8
                  Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

                  ]]>
                  false
                  1051051055668675584 8389120 HTML does not specify charset http://d.adsverse.com Information Certain
                  In most cases, the absence of a charset directive does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
                  charset=ISO-8859-1.]]> false
                  8605123307679896576 5243648 Cookie scoped to parent domain http://sorry.google.com Information Certain
                • S=sorry=TERA0PM30LpwNu-DKA3SOw; path=/; domain=google.com
                • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                  http://www.google.com/search?sourceid=chrome&ie=UTF-8&q=linkto%3Alessonsofpassion.com


                  To continue, please type the characters below:

                  Please enable images





                  About this page

                  Our systems have detected unusual traffic from your computer network. This page checks to see if it's really you sending the requests, and not a robot. Why did this happen?


                  IP address: 173.193.214.243
                  Time: 2011-04-17T20:37:02Z
                  URL: http://www.google.com/search?sourceid=chrome&ie=UTF-8&q=linkto%3Alessonsofpassion.com
                  ]]>
                  false
                  2341618559046005760 5243904 Cross-domain Referer leakage http://www.lessonofpassion.com Information Certain
                  If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

                  You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

                  Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

                  Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
                • http://www.lessonofpassion.com/lop_games.php?mygame=Gilligans%20Long%20Island
                • The response contains the following links to other domains:
                  • http://affiliates.thrixxx.com/scripts/connect.php?bid=0&ccb=2001057&int=INT-EN-0000
                  • http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js
                  • http://outcastacademy.com/index.php?targeo=lopvert
                  • http://outcastacademy.com/index.php?targeo=pf1
                  • http://playforceone.com/salesforce/games_ffa_06.jpg
                  • http://playforceone.com/salesforce/games_outcast_03.jpg
                  • http://playforceone.com/salesforce/games_red_02.jpg
                  • http://playforceone.com/salesforce/games_sexvilla_06.jpg
                  • http://webmaster.utherverse.com/Public/Incoming.aspx?id=533&ca=823&ad=348
                  • http://www.facebook.com/sharer.php?u=http://lessonofpassion.com/lop_games.php?mygame=Gilligans Long Island&t=Gilligans Long Island - Lesson of Passion
                  • http://www.flashforadults.com/?t=110138,1,66,0
                  • http://www.google-analytics.com/urchin.js
                  • http://www.playforceone.com/
                  • http://www.sexizu.com/
                  ]]>
                  Lesson of Passion - Gilligans Long Island erotic flash game


                  Username   Password  

                  If you want to post comments and gain access to special features please your account.

                     Gilligans Long Island




                   
                  GAME RATING:
                  68.67%
                  VIEWS:
                  3386
                  COMMENTS:
                  4



                  Other games

                       


                  Comments

                  Brono1601 2011.03.22
                  way to much clicking is required. graphics are poor quality, story is boring

                  alex0412 2011.02.10
                  good game and very good pictures

                  Xyzzy 2011.01.11
                  Never did like the Charlie games too much. Some good ideas, but way to repetitive, and no thought required by the player, just point and click.

                  ahclem 2010.11.27
                  Charlie games are way too simple. More challenge is required


                  Add your own comment - only for LOP CLUB members
                  If you are new user please REGISTER for FREE.
                  ]]> false 959523941247316992 2098176 Flash cross-domain policy http://imgs.rare-escort.com High Certain
                  Even if an allowed domain is not overtly malicious in itself, security vulnerabilities within that domain could potentially be leveraged by a third-party attacker to exploit the trust relationship and attack the application which allows access.]]>

                  Allowing access from all domains means that any domain can perform two-way interaction with this application. Unless the application consists entirely of unprotected public content, this policy is likely to present a significant security risk.]]>
                  ]]> false
                  1356330319068902400 5243648 Cookie scoped to parent domain http://ib.adnxs.com Information Certain
                • uuid2=2724386019227846218; path=/; expires=Sat, 16-Jul-2011 23:42:43 GMT; domain=.adnxs.com; HttpOnly
                • uuid2=2724386019227846218; path=/; expires=Sat, 16-Jul-2011 23:42:44 GMT; domain=.adnxs.com; HttpOnly
                • icu=ChII3I4BEAoYByAHKAcw9PWt7QQQ9PWt7QQYBg..; path=/; expires=Sat, 16-Jul-2011 23:42:44 GMT; domain=.adnxs.com; HttpOnly
                • acb379849=-@L6D208WM[w[5$%64(.3VOnu?enc=4Zf6eVORzD9MNEjBU0jIPwAAAMDMzPw_TDRIwVNIyD_hl_p5U5HMP2SiEAgHzrUKSsYda6b2ziXzeqtNAAAAAMVYAwAdAgAApgEAAAIAAACLSgMAk8AAAAEAAABVU0QAVVNEACwB-gBWHwAAhw4BAgUCAAUAAAAACCW8YQAAAAA.&tt_code=1626909&udj=uf%28%27a%27%2C+6376%2C+1303083764%29%3Buf%28%27c%27%2C+51148%2C+1303083764%29%3Buf%28%27r%27%2C+215691%2C+1303083764%29%3B&cnd=!2xcJawjMjwMQi5UNGAAgk4EDKAAxMrHrw1WRzD9CEwgAEAAYACABKP7__________wFCCwi2VBAAGAAgAigBSAFQAFjWPmAAaKYD; path=/; expires=Mon, 18-Apr-2011 23:42:44 GMT; domain=.adnxs.com; HttpOnly
                • uuid2=2724386019227846218; path=/; expires=Sat, 16-Jul-2011 23:42:44 GMT; domain=.adnxs.com; HttpOnly
                • anj=Kfu=8fG5EfCxrx)0s]#%2L_'x%SEV/hnKD-GW_55dWhK/!!svq; path=/; expires=Sat, 16-Jul-2011 23:42:44 GMT; domain=.adnxs.com; HttpOnly
                • The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
                  ');]]> false
                  1635700343323483136 5243392 SSL cookie without secure flag set https://adwords.google.com Information Certain
                • SAG=EXPIRED;Path=/;Expires=Mon, 01-Jan-1990 00:00:00 GMT
                • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                  Moved Temporarily

                  Moved Temporarily

                  The document has moved here. ]]>
                  false
                  369050880030765056 3145984 Cleartext submission of password http://utopiaguide.com High Certain
                • http://utopiaguide.com/forums/login.php?do=login
                • The form contains the following password field:
                  • vb_login_password
                  ]]>
                  UtopiaGuide



                  Go Back   UtopiaGuide
                  Register FAQ Members List CalendarvBookieToplist Today's Posts

                  vBulletin Message
                  Invalid Post specified. If you followed a valid link, please notify the administrator

                  Forum Jump

                  All times are GMT -8. The time now is 12:32 PM.

                  This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

                  Powered by vBulletin® Version 3.6.8
                  Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

                  ]]>
                  false
                  4840443797579798528 5244672 Session token in URL http://caseyofhouston.com Medium Firm
                • http://caseyofhouston.com/code.php?PHPSESSID=9c427f4c538ed5c84467b8adec1aca52
                • http://caseyofhouston.com/partners_jump.php?pid=163771&PHPSESSID=9c427f4c538ed5c84467b8adec1aca52
                • ]]>
                  My Escort Reviews

                  Caseyofhouston  

                  HomeAbout MePhotosServicesRatesGiftsGuestbookReviewsCalendarFAQLinksContact

                  Escort Reviews
                  Reviewer: SHOTSONGOAL (13-Apr-2011)
                  Saw the provider on backpage and her long blonde hair caught my eye. Read that she was originally from Texas and is visiting LI for a little bit. She is thin, blonde, and looks like a pleasant southerner. Called, left a message, then she called back and I was directed to the usual escort hotel in that area. Classic 2 call system as I received the room number on the 2nd call. Knocked on the door and it was opened by a thin, blonde, beautiful woman in a white dress.
                  Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1087986
                  Reviewer: IAMKVOTHE (02-Apr-2011)
                  I did a search and found nothing (surprisingly) for Casey. This is my first review so I hope this will help fellow members. She was well reviewed on TER and has a personal website so I took the plunge. I called her and got voicemail. She called back and we were set for an hour later. She sounded sweet and professional on the phone. I called again once off the exit to get incall spot (at a nice clean hotel), then once more while in the parking lot to get the room number. When she opened the door, I was pleasantly surprised. She is very good looking and her photos, while accurate, makes her look a lot older and taller. She is about 5'6" with long dirty blonde hair and a great spinner body. She greeted me warmly in a short white dress. I put the donation on the table while having a couple laughs with her, then we were off to the races! We started with a good CBJ to get things warmed up. Perfect combination of rhythm, suction and hands. Once I was ready, we switched to Mish. She was extremely tight and felt amazing! We then discussed Greek and she said she is just starting, but "we'll try" for an additional 75. We went slowly for a while and had mild success but ended up abandoning the endeavor. We changed covers and proceeded with Mish, CG, and finished with a great CBJ; she cleaned up with a hot towel. We chatted for a bit while I dressed. She is intelligent and the southern accent is perfect. I mentioned bgfe to her and hopefully she'll be joining as a provider here soon. She is currently on BP: http://newyork.backpage.com/FemaleEs...ng-26/17674627 Looks: 8 - she's younger and prettier than her pics Body: 7 - nice spinner body with A-cups Attitude: 10 - very pleasant, intelligent, and accommodating. Cleanliness: 10 (she is a smoker, but the room does not smell) Rate: 225/hr + 75 for Greek (hopefully she gets more practice so the next time will be a true trip to the islands) Services: CBJ, Mish, CG, Greek (+75) (YMMV on this service). I did not go for LFK/DFK or DATY Repeat: Yes once she has more experience with Greek Casey, if you read this, thanks for a great time!
                  Source: http://www.bestgfe.com/forum/showthread.php?186069-TOFTT-Casey-Of-Houston-currently-on-BP
                  Reviewer: MOONMAN1 (01-Apr-2011)
                  Have seen reviews of Casey and most are positive. My first choice had canceled so I was looking for back up plan. Must say Casey was a good alternative. Easy to set up the appt. There was some light screening. She will not discuss services on the phone so do not ask. Got to the hotel and when the door opened there was an attractive young blonde. She indeed does look better than her pics. Light kiss and hug and some light talk. She asked for the donation and I left the envelope on the dresser. She did count it and I guess that's OK. She said get undressed and lay down on the bed.
                  Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1085153
                  Reviewer: DACRITIC (31-Mar-2011)
                  I had seen pictures of Casey on backpage and wondered about meeting her. Checked out her review (TER 143871) and they looked good. Decided to make a late call and she was only able to meet for a half hour. Met her at her hotel and the pictures are well representative of her looks. She is very thin, and I prefer more curves, but she had a cool attitude. Decided to go ahead and have some fun.
                  Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1082663
                  Reviewer: bergenbob38 (30-Mar-2011)
                  First of all, I'm new here. New to the area too. Have seen several girls in Jersey but only a few on the Island.   Saw Casey's ad on BP and checked out her website at caseyofhouston.com.  Definately worth the trip.  Friendly and easy going.  Great BJ, covered but great.  Full service made it a good choice.  Seconds are available too.
                  Source: http://www.longislanderotic.com/longislanderotic/forum/forum_posts.asp?TID=2437
                  Reviewer: TRIGGER (26-Mar-2011)
                  Recently, I am kind of discouraged with the Amps, so I have decided to go the escort route. I saw her advertisment on BP and based on her photos I wasn't impressed. I decided to do some research and found out that she has great reviews on other boards. She is a small, petite blonde with small tits. Personally, I like big-titted women. but I guess let me try her out based on the reviews. It's a two-call screening process. When she is in town, she hosts in Nassau, near the LIE. Anyway, I get to the room, and I was like supe happy. She is very cute and has a nice body. She greets me and we hug and I am grabbing hert ass. It was heaven! We chatted a bit as I got comfortable and then proceeds to give me a nice back rub to make me relax. Afterwards, she gave an excellent CBJ, that I couldn't hold any longer and was in ecstasy. I was worried that I was done after 1 pop. She said let's try for round 2. Gentlemen, I am closer to 60 than 50 and wasn't sure if I could. Well, little trigger did stand at attention, but I couldn't spew forth l*** from the volcano. However, it was a nice dry run. She doesn't allow coming on face or licking of the balls, but her personality, Texas accent and technique were great. 1hr $225 with MSOG possible. Unfortunately, according to her website (google caseyofhouston) it's nothing personal but she doen't partake in dark chocalate. Therefore, If you want to upgrade to the escort level, she's a good bang for the $$.
                  Source: http://www.utopiaguide.com/forums/showthread.php?t=44783&highlight=CASEYOFHOUSTON
                  Reviewer: WIZZWHIG (18-Mar-2011)
                  Was looking forward to meeting Casey for awhile here on Long Island, NY - finally got a chance today and called. She picked up and we were able to arrange a mutual time to get together. Called to confirm and got the location and a few screening questions, another call for the room and up I went. Glad I did - her photos did her no justice - she is gorgeous - but better - she has a personality to match. Great conversation, great attitude and a great experience with her. She made me feel comfortable like we were old friends. Will be looking for a repeat visit. Nice kiss upon leaving too from this sweet gal!
                  Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1081084
                  Reviewer: COSTUMED1 (23-Feb-2011)
                  I saw Casey on Back Page, and saw that she had excellent reviews here on TER. Because of what I saw and read, and because she is from out of town, I thought there was no way I would be able to get an appointment with this tomato. But she picked right up when I called and I set up the time I wanted, a little afternoon delight a few hours later at 2 pm. Which means there's a lot of guys out there who are really missing out! She's very friendly on the phone ( and with an adorable Texas accent that gets your motor running just talking to her!), just asked a few questions and we set up the time - easy! When I got to her hotel, she gave me the room number and also detailed instructions of how to get there - very cute and helpful. And hearing her voice on the phone again - I couldn't wait to get up there. She opened the door, wearing a thong and cammie kind of thing, and I thought - those guys on TER were right, her pictures do not do her justice. She seems a lot taller and sleeker in her pictures than she is. But more than that, in the pics, she seems kind of hard - nothing could be farther from the truth. She is the sweetest, softest little piece of heaven you can imagine. Non VIPs, let me just say this - I was on for an hour, but I wasn't there even fifteen minutes before I was asking how much for an extra half an hour. I knew this was not going to be quick. More to come, for VIPs...
                  Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1072139
                  Reviewer: EROTICTHRUST (15-Feb-2011)
                  Just happen to be in Houston on business and needed some R&R during the trip as it was getting a little stressful. Upon going through some of the TER reviews I came across Casey and based on her info and reviews decided to give her a shot. Emailed her my info and exchanged info, upon my arrival gave her a call and had a very nice conversation, as she has one of those welcoming southern accents. Although she showed up a half hour late due to traffic she called ahead and was very apologetic. Once she showed up at my door I was not disappointed as she looks better in person than her pics. Non VIPâeTMs if you are ever in Houston I defiantly recommendâe¦VIPâeTMs read on.
                  Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1070877&user=0
                  Reviewer: thomas1960 (23-Jan-2011)
                  Reviewer thomas1960 Review Date 1/19/2011 Visit Date 1/17/2011 On Time : Perfect Visited At Houston, TX Rating : Best of the best Overall Attitude : Passionate, outgoing Appearance Overall Appearance : Super Model Accurate Photo : Yes Accurate Profile : Yes Tattoos : One Age Range : Late 20's Body Type : Tight & toned Grooming / Hygiene : Immaculate Dress : Sexy Details Friendliness : Very friendly Temperament : Extremely attentive Personality : Wild Child Conversation : Great conversationalist Motivation : Loves her job Encounter What type of encounter did you have? Private time Was this your first experience? Yes Did your encounter go as expected? Yes, everything was perfect Was the time with your companion reasonable priced? Rates were consistent as quoted What will you remember most about your experience? Wonderful in all ways. Would you see again? Definitely
                  Source: http://www.escorts.com/review/198871/198871
                  Reviewer: MNSCMAN (20-Dec-2010)
                  Called Casey around 8:00pm and made appointment for 10:00pm. Very comfortable with coming to my room once I told her I was member of TER and had read some of her reviews. She did call me in my room to verify our converation. Casey prides herself on being punctional so called to say she would be 10 minutes late because of parking problems. Arrived in very tight jeans and tight red sweater that showed off her nice thin body. She checked the donation and suggested we get comfortable.
                  Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1052167
                  Reviewer: BRUSHFIRE (03-Dec-2010)
                  I discovered Casey on TER. She had good reviews so I decided to give her a call. She does a good job of screening and doesnâeTMt waste any time. She arrived at my place right on time. I like girls but I really like punctual girls. Casey is tall and thin, nices ass, small tits and a nicely trimmed snatch, the photos are accurate. She was wearing a blouse and tight blue jeans. After an exchange of pleasantries we both got undressed. (I recommend)
                  Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1045585
                  Reviewer: absolut (22-Nov-2010)
                  Review: Casey made her case for GFE -------------------------------------------------------------------------------- Date: Sun Provider: CaseyOfHouston Phone: 281-763-8032 Email Address: - URL / Website: http://www.eccie.net/showthread.php?t=128548 City: Houston State: Texas Address: BW & 59S Appointment Type: Incall Did the Appointment take place at the agreed-upon time?: Yes Activities: LK, disrobed, NE, FK, SE, DATY, BJ, MPCFS, clean up, conversation, random repeat Session Length: 1 hr Fee: 200 Hair Color and Length: LONG blond with streaks, to middle of back Age: 2x Smoking Status: I Couldn't Tell Ethnic Background: White/Caucasian Physical Description: Casey is about 5-8, maybe 100# soaking wet, THIN spinner, model thin, not anorexic thin IMHO. Dazzling eyes, perfect smile that will charm the pants of you. A-cup with very responsive nipples. Some marks on a FLAT tummy, absolutely no problem for me. Marks of motherhood denote a REAL WOMAN. Recommendation: Yes
                  Source: http://www.eccie.net/showthread.php?t=131733
                  Reviewer: BBS3469 (16-Nov-2010)
                  I read some of Casey's reviews before deciding to finally see her. The first time I called her she got nervous and hung up on me. I tried again from a different number and after a couple of light screening questions and checks she agreed to come to my hotel near the Houston Galleria. Took her about half an hour to arrive. She arrived dressed in jeans, nice heels, a nice black top and matching black jacket, looking sexy as hell but not attracting too much attention. She looks youthful and attractive and her smile is really warm and welcoming, made me relax the minute I saw her. Non-VIPs she's a real nice girl...
                  Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1042332
                  Reviewer: Bigdog5475 (03-Nov-2010)
                  Date: 11-2-2010 Provider: Casey Phone: 281-763-8032 Email Address: - URL / Website: http://caseyofhouston.rare-playmate.com/ City: Beaumont State: Texas Address: Notel Appointment Type: Incall Did the Appointment take place at the agreed-upon time?: Yes Activities: CBJ, HJ, CBJ, CG, Frog, Mish Session Length: 1 hour Fee: 200 Hair Length and Color: Past Shoulder, Blonde with Black streaks. Age: 26 Smoking Status: I Couldn't Tell Ethnic Background: White/Caucasian Physical Description: Her photo's make her appear to be very tall but in person she is a small petite woman. Breast A cups. Small tat on her lower stomach and one on her lower back but not destrating. Recommendation: Yes
                  Source: http://www.eccie.net/showthread.php?t=122323
                  Reviewer: GENT1 (05-Sep-2010)
                  Called Casey when I made it to town. Saw her on backpage and her reviews. She was easy to make the appointment with. Very friendly. She called when she was on her way. Ance she got there I was amazed at how beautiful this girl is.... Stunning is the only word that comes to mind. She has a great witty personality and knows how to make you feel at ease. After a little small talk we got comfortable. WOW! Non Vips yes, yes, yes... Vips read on....
                  Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1017645
                  Reviewer: GREYGOOSE2000 (01-Sep-2010)
                  Casey looks as hot in person as her photos. Long blonde hair, tight body and a great ass. The session was Non GFE but I still had a good time. I would recommend her because she is hot and she is reasonably priced.
                  Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1015918
                  Reviewer: crzybull5912 (01-Sep-2010)
                  Date: 8-25-10 Provider: Casey Phone: 281-763-8032 Email Address: URL / Website: http://beaumont.backpage.com/FemaleEscorts/8786449- www.caseyofhouston.rare-playmate.com City: Beaumont State: Texas Address: Notel, College street/I10 Appointment Type: Incall Did the Appointment take place at the agreed-upon time?: Yes Activities: She met me at door, room dimly light nice and cool. Wow, first impressions, a beautiful girl. Easy to talk to, very good personality. conversed during almost all of the activities you see here except when she had a mouth full. CBJ, DS, FDAU, CFS, sitting up position with her on my lap facing me, then standing up, then placed her on the bed on her back, put her ankles next to her ears and worked that for a while, then rolled her on her side, spread legs apart with one over my shoulder til finish. Session Length: 1 hr Fee: 200 Hair Length and Color: Middle of back, Blonde with Black mixed, matches pictures. Age: Mid 20's Smoking Status: I Couldn't Tell Ethnic Background: White/Caucasian Physical Description:A spinner, her pics make her appear taller than she is. I would say ad portrays accurate stats. Very beautiful girl, even better looking in person. Petitie, small tits, nice nipples with good size areola around them, they are real too, sagging some but just my type. Shaved Kitty, a couple of small tats from what I remember but not distracting obviously. Has that kind of sexy face you like to watch when tending to business. Recommendation: Yes
                  Source: http://www.eccie.net/showthread.php?t=90698
                  Reviewer: METROJAY1 (05-Aug-2010)
                  After seeing her ad on backpage, I googled her and found her on Eros, TER, and her own personal website. Everything seemed good so I called her. She had a few screening questions and we made the appt. When I arrived at her location I called again to get the room number. Non VIP's - this girl is hot. VIP's read on.
                  Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=1006687
                  Reviewer: brwalker240 (23-Jul-2010)
                  Easy to set the appointment. On time and very welcoming. I got there and we started talking. She was very personable and relaxing. Once we broke the ice we got busy. She was very accommodating and well worth it. Specific Details : She was dressed very hot with tight jeans and a tight top. Her face looked beautiful. She has a great accent and is a sweet talker. We got naked after about 5 minutes and she gave me an awsome CBJ. I then went down on her and she came. She then returned to CBJ and I had multiple pops.
                  Source: http://www.escorts.com/review/168206/Great
                  Reviewer: CHITOWNPIMP (10-May-2010)
                  Casey's Eros ad caught my eye and I gave her a call. I did some research and she has reviews on other sites as well. She was very pleasant over the phone and we setup a time for later in the day. Once I arrived, Casey was ready to go.
                  Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=977917
                  Reviewer: INER (23-Apr-2010)
                  I was in Houston for the night and was lonely. When she arrived at my hotel I knew right off that I had made a good decision in calling her. Casey is an intelligent friendly down to earth beauty. Her understated good looks and outgoing personality made me feel at ease immediately. As she began to disrobe she asked me to get more comfortable.
                  Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=972773
                  Reviewer: STVBA (19-Apr-2010)
                  I called and set up an outcall for later on that night at my hotel. She showed right on time after she called about 20 minutes out. I was stunned when she walked in. Gorgeous...the pictures do nothing for her. She is stunning. Tight little jeans and t-shirt. We had a little small talk, took care of the donation and got undressed. Non-VIP's, will definitely repeat.
                  Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=971637
                  Reviewer: Soldierboy18 (16-Mar-2010)
                  Visiting town on business, saw Casey's ad and read her reviews and got very interested. She was incredibly nice and friendly on the phone, scheduled an odd-hour appointment on short notice. Once she showed up, I was glad I called her - she is even hotter in real life than in her pics. Non-VIPs I recommend, for the rest of you read on.
                  Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=960450&user=0
                  Reviewer: iner1 (24-Feb-2010)
                  General Details : Met Casey through this site. She is a intelligent friendly down to earth beauty. When she arrived at my hotel I knew right off that I had made a good decision in calling her. Specific Details : Her understated good looks and outgoing personality made me feel at ease immediately. As she began to disrobe she asked me to get more comfortable. She has a good figure but it was her personality that immediately turned me on. She began by caressing me between my legs and then began what was one of the best cbj's I have ever had. So good in fact that I blew my load much sooner than I had expected. She was surprised and said she was sorry because she had much more in mind. Her attitude and attentiveness makes me want to call her the next time I am in Houston.
                  Source: http://www.escorts.com/review/141153/Great-experience
                  Reviewer: wade1966 (11-Feb-2010)
                  Casey was very easy to book an appointment with and came to my hotel right on time. She looks stunning and is such a young attractive thing. She reminded me of the babyitter from next door. After a little small talk she gave me a CBJ that is one of the best I ever had. She has a very small kitty and I loved giving her treats down there. Then we did many different positions. She is very athletic and really knows how to satisfy a man. I high ly recommend her and will have to see her again next time I am in Houston.
                  Source: http://www.escorts.com/review/139292/What-a-hottie
                  Reviewer: MIKEE (16-Jan-2010)
                  Have been eyeing Casey for quite a while but I have my regulars and most times I try something new has been a real disappointment. Now Im pounding my forehead for being such a dumb-ass! This lady was outasight! Great personality! Great tight little body and an even tighter... If you dont enjoy seeing her, you are probably dead.
                  Source: http://www.theeroticreview.com/reviews/showReview.asp?Review=941236
                  Reviewer: dsblinder (12-Jan-2010)
                  Title : Sweet Southern Lady Reviewer : dsblinder123 Review Date : 12/31/2009 Visit Date : 12/30/2009 Visit Length : 1 Hour On Time : Yes Meeting Location : Escort's Hotel Visit : Provided Agreed Upon Time Visited At : Houston, TX Rating : A cut above Overall Rating : Average General Details : I called her and she answered with a sweet southern accent. After a quick screening process she told me where to meet her.
                  Source: http://www.escorts.com/review/132953/Sweet-Southern-Lady
                  Reviewer: dsblinder (11-Jan-2010)
                  When I called Casey and it was easy to get hold of her. She answered and asked a few questions and I told her I was p411 she sounded relieved. She got all my info and set up the appointment and told me she would call about 30 minutes before and tell me where to meet. I met her at her incall hotel and when I first saw her she looked so much better than her pictures. She checked my ID for her safety and then we went into the room.......VIP's read on
                  Source: http://www.theeroticreview.com/reviews/show.asp?id=143871
                  (only for escort private view)

                  eccie.net

                  SitemapRSSAdd to My Yahoo!Add to Google Homepage or Google Reader !
                  ]]>
                  false
                  2237620218600185856 5244160 Cross-domain script include http://www.verifiedplaymates.com Information Certain
                  If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
                • http://199.80.58.115/openx/www/delivery/spcjs.php?id=1&block=1&blockcampaign=1
                • ]]>
                  SEXY Escorts - VerifiedPlaymates.com Escorts

                  Verified Playmates
                  Fetish Fetish / Fantasy Tantra Tantra BDSM BDSM
                  select a city
                  Albuquerque Escorts Allentown Escorts Anaheim Escorts Arlington Escorts Arlington Escorts Atlanta Escorts Atlantic City Escorts Austin Escorts Bakersfield Escorts Baltimore Escorts Boston Escorts Carson City Escorts Charlotte Escorts Chicago Escorts Cincinnati Escorts Cleveland Escorts Colorado Springs Escorts Columbus Escorts Dallas Escorts Dayton Escorts Denver Escorts Detroit Escorts El Paso Escorts Fort Lauderdale Escorts Fort Worth Escorts Fremont Escorts Fresno Escorts Hollywood Escorts Honolulu Escorts Houston Escorts Huntington Beach Escorts Indianapolis Escorts Inland Empire Escorts Jacksonville Escorts Kansas City Escorts Las Vegas Escorts Long Beach Escorts Long Island Escorts Los Angeles Escorts Louisville Escorts Manhattan Escorts Memphis Escorts Miami Escorts Milwaukee Escorts Minneapolis Escorts Modesto Escorts Monterey Escorts Nashville Escorts Nassau Escorts New Orleans Escorts New York City Escorts Norfolk Escorts Oakland Escorts Oklahoma City Escorts Omaha Escorts Orange County Escorts Orlando Escorts Palm Springs Escorts Philadelphia Escorts Phoenix Escorts Pittsburgh Escorts Portland Escorts Raleigh Escorts Reno Escorts Riverside Escorts Sacramento Escorts Saint Louis Escorts Salt Lake City Escorts San Antonio Escorts San Diego Escorts San Fernando Escorts San Francisco Escorts San Jose Escorts Santa Ana Escorts Seattle Escorts South Lake Tahoe Escorts Staten Island Escorts Stockton Escorts Tampa Escorts Tucson Escorts Vancouver Escorts Virginia Escorts Virginia Beach Escorts Washington D.C. Escorts More Escorts: All Cities...
                  Verified Playmates: ( Guaranteed Authentic - Photos Taken By Us. )
                  Manhattan escort - VIP Erica Reed
                  VIP Erica Reed
                  Manhattan
                  Las Vegas escort - Malina
                  Malina
                  Las Vegas
                  Manhattan escort - Nataly - GFE - NYC
                  Nataly GFE NYC
                  Manhattan
                  Las Vegas escort - Tawny Brie
                  Tawny Brie
                  Las Vegas
                  Los Angeles escort - Ava Monroe
                  Ava Monroe
                  Los Angeles
                  Getting Verified through a VP photoshoot will make you stand out as someone special and unique, and build confidence with new clients. When guys see the VP watermark, they know for certain that you are the girl in the photo. A photoshoot will also give your ad front page and top rotation exposure.

                  For more info on a VerifiedPlaymates.com Verification shoot:
                  More Playmates: ( Available for Booking Across the US )
                  Featured Playmates
                  New York City escort - Playmate Sophia
                  Playmate Sophia
                  New York City
                  Allentown escort - ATYOURPLEASURE
                  ATYOURPLEASURE
                  Allentown
                  San Diego escort - Japanese Geisha Miki
                  Japanese Geisha Miki
                  San Diego
                  Tucson escort - Dawn in tucson
                  Dawn in tucson
                  Tucson
                  Orange County escort - Aeryn Moore
                  Aeryn Moore
                  Orange County
                  Las Vegas escort - annaeuro
                  annaeuro
                  Las Vegas
                  Manhattan escort - CLAUDIA COLE
                  CLAUDIA COLE
                  Manhattan

                  Apres Vous

                  Nashville escort - Liz Monroe
                  Liz Monroe
                  Nashville
                  Orange County escort - Kitty Kitty Kay
                  Kitty Kitty Kay
                  Orange County
                  Washington escort - Wetty
                  Wetty
                  Washington
                  New York City escort - Major Escort
                  Major Escort
                  New York City
                  Chicago escort - AshleyMarie
                  AshleyMarie
                  Chicago
                  Arlington escort - Kourtney Kline
                  Kourtney Kline
                  Arlington
                  Pittsburgh escort - Irene
                  Irene
                  Pittsburgh
                  Orange County escort - Barbi
                  Barbi
                  Orange County
                  New York City escort - lucyyyy
                  lucyyyy
                  New York City
                  San Francisco escort - Niki
                  Niki
                  San Francisco
                  Allentown escort - Oasis Entertainment
                  Oasis Entertainment
                  Allentown
                  San Francisco escort - Ellie Ashlyn
                  Ellie Ashlyn
                  San Francisco
                  New York City escort - BrendaBoobies
                  BrendaBoobies
                  New York City
                  Tucson escort - Sage Needs
                  Sage Needs
                  Tucson
                  Dallas escort - Star Wellness Center
                  Star Wellness Center
                  Dallas
                  New York City escort - Yoshi
                  Yoshi
                  New York City
                  Atlanta escort - Exclusiveatlantaplay
                  Exclusiveatlantaplay
                  Atlanta
                  Austin escort - Darby Depoy
                  Darby Depoy
                  Austin
                  Manhattan escort - ELENA - GFE - NYC
                  ELENA GFE NYC
                  Manhattan
                  Charlotte escort - CarolinaEscorts
                  CarolinaEscorts
                  Charlotte
                  Manhattan escort - blueyebrunette
                  blueyebrunette
                  Manhattan
                  Portland escort - Elite Ladies
                  Elite Ladies
                  Portland
                  Orange County escort - Tiffany Europe
                  Tiffany Europe
                  Orange County
                  Fresno escort - mistressmandy
                  mistressmandy
                  Fresno
                  New York City escort - Nikkei
                  Nikkei
                  New York City
                  San Francisco escort - Tabitha Layne
                  Tabitha Layne
                  San Francisco
                  Houston escort - Amanda Jadore
                  Amanda Jadore
                  Houston
                  Los Angeles escort - Shama Helena Malin
                  Shama Helena Malin
                  Los Angeles
                  Memphis escort - Maya in Memphis
                  Maya in Memphis
                  Memphis
                  Miami escort - Bella Naples
                  Bella Naples
                  Miami
                  Oklahoma City escort - SWEET CANDICE
                  SWEET CANDICE
                  Oklahoma City
                  Orange County escort - VPleasuress
                  VPleasuress
                  Orange County
                  Chicago escort - mychicagobeauties
                  mychicagobeauties
                  Chicago
                  Arlington escort - Nikoletta Armani
                  Nikoletta Armani
                  Arlington
                  New York City escort - Mikei
                  Mikei
                  New York City
                  Chicago escort - Sasha Banks
                  Sasha Banks
                  Chicago
                  Phoenix escort - Chanda
                  Chanda
                  Phoenix
                  Charlotte escort - Princess Roni
                  Princess Roni
                  Charlotte
                  New York City escort - PoshModels
                  PoshModels
                  New York City
                  Reno escort - Jaz
                  Jaz
                  Reno
                  Virginia escort - April Azura
                  April Azura
                  Virginia
                  Dallas escort - Liza Italian Passion
                  Liza Italian Passion
                  Dallas
                  Manhattan escort - Kamasutra
                  Kamasutra
                  Manhattan
                  Las Vegas escort - SS
                  SS
                  Las Vegas
                  Las Vegas escort - Tawny Brie
                  Tawny Brie
                  Las Vegas
                  San Francisco escort - Piper
                  Piper
                  San Francisco
                  Las Vegas escort - JennySyn
                  JennySyn
                  Las Vegas
                  Atlanta escort - NaughtyNatalie
                  NaughtyNatalie
                  Atlanta
                  Chicago escort - sofia
                  sofia
                  Chicago
                  Detroit escort - busty blonde
                  busty blonde
                  Detroit
                  Los Angeles escort - Miss Nina Swiss
                  Miss Nina Swiss
                  Los Angeles
                  Manhattan escort - Playmate Christina
                  Playmate Christina
                  Manhattan
                  Vancouver escort - tabitha_extreme
                  tabitha extreme
                  Vancouver
                  New York City escort - FiveStarNYC
                  FiveStarNYC
                  New York City
                  San Francisco escort - MsKaylaKim
                  MsKaylaKim
                  San Francisco
                  Denver escort - Nadia Rayne
                  Nadia Rayne
                  Denver
                  Atlanta escort - kristen rose 35
                  kristen rose 35
                  Atlanta
                  Chicago escort - Ashley G
                  Ashley G
                  Chicago
                      Welcome to VerifiedPlaymates.com, where you'll find many REAL photos of escorts and playmates we've shot personally. Unlike other sites where you have to sift through all the mess and the fake pictures, we are working hard to shoot the escorts ourselves so you will know they are at least real. Your time is important. Stick with us, and support the ladies that work hard and take the initiative to get Verified at a VP photoshoot, because in the end that will save you time and enhance the experience for everyone involved. We are working long hours here to showcase the finest and best escort playmates nationwide. Whether you're a client looking for that beautiful hot encounter, or for exciting new thrills, this is the website to find it all.

                      Very soon, you will be seeing more high-quality erotic and authentic photographs of sexy escort playmates that we've shot, and as time goes on, you will see a whole lot more throughout 2011. So guys, sit back, enjoy, and bookmark this site. You'll seeing stunning updates soon. It's worth the wait! VP is going to do whatever it takes to make sure that this isn't just another escort website. It will be content rich, and continually FRESH.

                      In the meantime, feel free to browse around and enjoy all the eye candy on this website. We have so many escorts and playmates advertising here that you will be sure to find one that you would really like to meet. This is the way of the future guys and if we want goodness to prevail, support the cool and hardworking ladies that take time out of their busy day to play straight by getting Verified! This benefits everyone. Support good and honest business practices, and support it with your actions, if this is what we all want as the way of the future!

                  Please read our disclaimer before entering this site:



                  Craigslist Adult Alternative Replacement Website
                  © 2009-2010 - VerifiedPlaymates.com VP Escort Directory - All rights reserved.


                  ]]>
                  false
                  3571502440782717952 5243904 Cross-domain Referer leakage http://www.lessonofpassion.com Information Certain
                  If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

                  You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

                  Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

                  Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
                • http://www.lessonofpassion.com/user.php?type=login
                • The response contains the following links to other domains:
                  • http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js
                  • http://outcastacademy.com/index.php?targeo=lopvert
                  • http://www.google-analytics.com/urchin.js
                  • http://www.playforceone.com/
                  • http://www.sexizu.com/
                  ]]>
                  Lesson of Passion - erotic flash games


                  Username   Password  

                  If you want to post comments and gain access to special features please your account.
                  Login ERROR

                  You have not defined your LOGIN or PASSWORD.
                  Please LOGIN again using correct data.

                  If you are new user please REGISTER
                  ]]> false 6893878480890528768 1049088 SQL injection http://www.epicdreams.com High Firm
                  Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.]]>
                  every variable data item that is incorporated into database queries, even if it is not obviously tainted, to prevent oversights occurring and avoid vulnerabilities being introduced by changes elsewhere within the code base of the application.

                  You should be aware that some commonly employed and recommended mitigations for SQL injection vulnerabilities are not always effective:
                  • One common defence is to double up any single quotation marks appearing within user input before incorporating that input into a SQL query. This defence is designed to prevent malformed data from terminating the string in which it is inserted. However, if the data being incorporated into queries is numeric, then the defence may fail, because numeric data may not be encapsulated within quotes, in which case only a space is required to break out of the data context and interfere with the query. Further, in second-order SQL injection attacks, data that has been safely escaped when initially inserted into the database is subsequently read from the database and then passed back to it again. Quotation marks that have been doubled up initially will return to their original form when the data is reused, allowing the defence to be bypassed.
                  • Another often cited defence is to use stored procedures for database access. While stored procedures can provide security benefits, they are not guaranteed to prevent SQL injection attacks. The same kinds of vulnerabilities that arise within standard dynamic SQL queries can arise if any SQL is dynamically constructed within stored procedures. Further, even if the procedure is sound, SQL injection can arise if the procedure is invoked in an unsafe manner using user-controllable data.
                  ]]>
                  ' was submitted in the catcity parameter, and a database error message was returned. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

                  The database appears to be MySQL.]]>
                  Long Island Escorts, Long Island Escort Service, Long Island Erotic Massage Service, Long Island Tantra, Long Island Escort Agencies, Long Island TV/TS, Long Island Fetish/Fantasy
                  EpicDreams, Epic Dreams, Escort, Escorts, incall, outcall, Escort Reviews, Escort Directory, Escort Classifieds Welcome, Guest
                  Log In | Free Hobbyist Account | Free Provider Ad | Help
                  Home
                  myEpicDreams
                  VIP Escorts
                  Directory
                  Photo Gallery
                  Calendar
                  Reviews & Forums
                  Adult Store
                  Advertise
                  CustomerCare
                  April 17, 2011
                  Cities > Long Island
                  Choose a category:
                   Escorts: (44)
                   Massage: (3)
                   Tantra: (0)
                   Dancers: (3)
                   BD/SM: (0)
                   Fetish/Fantasy: (5)
                   TVTS/Shemale: (0)
                   Models/Centerfolds: (4)
                   After Dark: (0)
                   Agencies: (8)
                    Calendar Postings:
                  Providers travel dates in this city
                    Services Wanted: (0)
                  Post services or services wanted information in this city
                  Query failed: You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near 'AND ad.id=person.id AND ad.id=category.id AND ad.id=city.id AND ad.active='Y' AN' at line 6]]>false 5387309244416619520 8389120 HTML does not specify charset http://www.utopiaguide.com Information Certain
                  In most cases, the absence of a charset directive does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
                  charset=ISO-8859-1.]]> UtopiaGuide - Escort Reviews, Incall and Outcall
                  Local Sponsor Spotlight (Become a sponsor)

                  Escort Reviews, Incall and Outcall Forums

                  Members Enter - Register To Access The Boards Here (it's free)
                  To gain access you need to register

                  Spend Some Time With Me!
                  Escorts Incall Outcall
                  Check out the Classifieds 

                  Classifieds
                  Looking for local escort action?
                  Live Girls
                  Live American Girls Naked
                   

                  RSAC  Cyber Patrol   SurfWatch 

                   

                  Click Here Now If You Wish To Leave




                  Call girl Totally Explained ]]> false 1909417819006232576 2097920 Cross-site scripting (reflected) http://textad.xxxmatch.com High Certain
                  The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

                  Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).

                  The security impact of cross-site scripting vulnerabilities is dependent upon the nature of the vulnerable application, the kinds of data and functionality which it contains, and the other applications which belong to the same domain and organisation. If the application is used only to display non-sensitive public content, with no authentication or access control functionality, then a cross-site scripting flaw may be considered low risk. However, if the same application resides on a domain which can access cookies for other more security-critical applications, then the vulnerability could be used to attack those other applications, and so may be considered high risk. Similarly, if the organisation which owns the application is a likely target for phishing attacks, then the vulnerability could be leveraged to lend credibility to such attacks, by injecting Trojan functionality into the vulnerable application, and exploiting users' trust in the organisation in order to capture credentials for other applications which it owns. In many kinds of application, such as those providing online banking functionality, cross-site scripting should always be considered high risk.]]>

                • Input should be validated as strictly as possible on arrival, given the kind of content which it is expected to contain. For example, personal names should consist of alphabetical and a small range of typographical characters, and be relatively short; a year of birth should consist of exactly four numerals; email addresses should match a well-defined regular expression. Input which fails the validation should be rejected, not sanitised.
                • User input should be HTML-encoded at any point where it is copied into application responses. All HTML metacharacters, including < > " ' and =, should be replaced with the corresponding HTML entities (&lt; &gt; etc).
                • In cases where the application's functionality allows users to author content using a restricted subset of HTML tags and attributes (for example, blog comments which allow limited formatting and linking), it is necessary to parse the supplied HTML to validate that it does not use any dangerous syntax; this is a non-trivial task.]]> b7410"><script>alert(1)</script>102f2278912 was submitted in the name of an arbitrarily supplied request parameter. This input was echoed unmodified in the application's response.

                  This proof-of-concept attack demonstrates that it is possible to inject arbitrary JavaScript into the application's response.]]>
                  102f2278912=1 HTTP/1.1 Host: textad.xxxmatch.com Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close ]]> 160x600_jQuery_ZoomInfo
                  102f2278912//" target="_blank"> Click Here to Read More>>
                  TaylorS, 23

                  About Me: I have sexy smile with nice full... More >>

                  102f2278912//" target="_blank"> Click Here to Read More>>
                  Rihanna, 19

                  About Me: I'm looking for someone who... More >>

                  102f2278912//" target="_blank"> Click Here to Read More>>
                  BlackEyedPeas, 22

                  About Me: I\'m looking to meet other people... More >>

                  102f2278912//" target="_blank"> Click Here to Read More>>
                  HornyHelpless, 25

                  About Me: I am extremely sexual! Send me... More >>

                  ]]>
                  false
                  8961848639710584832 5244416 Cookie without HttpOnly flag set http://utopiaguide.com Information Certain
                  You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
                • bbcalendar=ab160f9a5db316fdb7edf39b2b3d7b61a-1-%7Bs-7-.calyear._i-2011_%7D; path=/; domain=.utopiaguide.com
                • bbcalendar=0c7453e271d70a52a13a2f59db4485e7a-2-%7Bs-7-.calyear._i-2011_s-8-.calmonth._i-4_%7D; path=/; domain=.utopiaguide.com
                • bbcalendar=c550c7f5f126367c6d115d2b1e789f41a-2-%7Bs-7-.calyear._s-4-.2006._s-8-.calmonth._i-4_%7D; path=/; domain=.utopiaguide.com
                • bbcalendar=8766f4d270e0b9db6fb72d96ad3ca600a-2-%7Bs-7-.calyear._s-4-.2006._s-8-.calmonth._i-12_%7D; path=/; domain=.utopiaguide.com
                • bbcalendar=f02c2083ecf3e683df9c96794c8430d1a-3-%7Bs-7-.calyear._s-4-.2006._s-8-.calmonth._i-12_s-8-.calview1._s-12-.displaymonth._%7D; path=/; domain=.utopiaguide.com
                • The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
                  UtopiaGuide - Calendar



                  Go Back   UtopiaGuide > Calendar
                  Register FAQ Members List CalendarvBookieToplist Today's Posts

                  Public Show Today Monthly View Add New Event
                  December 2006
                  >
                  >
                  >
                  26 Sun
                   
                  27 Mon
                   
                  28 Tue
                   
                  29 Wed
                   
                  30 Thu
                   
                  1 Fri
                  2 Sat
                  >
                  >
                  >
                  3 Sun
                  4 Mon
                  5 Tue
                  6 Wed
                  7 Thu
                  8 Fri
                  9 Sat
                  >
                  >
                  >
                  10 Sun
                  11 Mon
                  spmocyt1 (46)
                  12 Tue
                  13 Wed
                  14 Thu
                  15 Fri
                  16 Sat
                  chac77 (29)
                  >
                  >
                  >
                  17 Sun
                  18 Mon
                  19 Tue
                  20 Wed
                  21 Thu
                  22 Fri
                  23 Sat
                  candishop (21)
                  >
                  >
                  >
                  24 Sun
                  25 Mon
                  capitan2 (34)
                  26 Tue
                  27 Wed
                  28 Thu
                  xyniks (41)
                  xkyroutx (25)
                  29 Fri
                  30 Sat
                  >
                  >
                  >
                  31 Sun
                  1 Mon
                   
                  2 Tue
                   
                  3 Wed
                   
                  4 Thu
                   
                  5 Fri
                   
                  6 Sat
                   

                  November 2006
                    S M T W T F S
                  > 29 30 31 1 2 3 4
                  > 5 6 7 8 9 10 11
                  > 12 13 14 15 16 17 18
                  > 19 20 21 22 23 24 25
                  > 26 27 28 29 30 1 2
                  January 2007
                    S M T W T F S
                  > 31 1 2 3 4 5 6
                  > 7 8 9 10 11 12 13
                  > 14 15 16 17 18 19 20
                  > 21 22 23 24 25 26 27
                  > 28 29 30 31 1 2 3
                   
                  Add New Event
                  Jump to month
                  Calendar Jump
                  All times are GMT -8. The time now is 12:32 PM.

                  This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

                  Powered by vBulletin® Version 3.6.8
                  Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

                  ]]>
                  false
                  6609772510649835520 5244416 Cookie without HttpOnly flag set http://tap.rubiconproject.com Information Certain
                  You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
                • cd=false; Domain=.rubiconproject.com; Expires=Mon, 16-Apr-2012 23:48:38 GMT; Path=/
                • dq=8|3|5|0; Expires=Mon, 16-Apr-2012 23:48:38 GMT; Path=/
                • lm="17 Apr 2011 23:48:38 GMT"; Version=1; Domain=.rubiconproject.com; Max-Age=31536000; Path=/
                • The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
                  false
                  2842882705653417984 5245440 TRACE method is enabled http://domainspector.com Information Certain
                  Although this behaviour is apparently harmless in itself, it can sometimes be leveraged to support attacks against other application users. If an attacker can find a way of causing a user to make a TRACE request, and can retrieve the response to that request, then the attacker will be able to capture any sensitive data which is included in the request by the user's browser, for example session cookies or credentials for platform-level authentication. This may exacerbate the impact of other vulnerabilities, such as cross-site scripting.]]>
                  false
                  1437124068476250112 8389632 Content type incorrectly stated http://www.verifiedplaymates.com Information Firm
                  In most cases, the presence of an incorrect content type statement does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
                • Content-Type: text/plain; charset=UTF-8
                • The response states that it contains plain text. However, it actually appears to contain unrecognised content.]]>
                  false
                  3118137782857769984 6292992 Robots.txt file http://www.utopiaguide.com Information Certain
                  The presence of the robots.txt does not in itself present any kind of security vulnerability. However, it is often used to identify restricted or private areas of a site's contents. The information in the file may therefore help an attacker to map out the site's contents, especially if some of the locations identified are not linked from elsewhere in the site. If the application relies on robots.txt to protect access to these areas, and does not enforce proper access control over them, then this presents a serious vulnerability.]]>
                  false
                  6770359080418670592 5244416 Cookie without HttpOnly flag set http://www.tripadvisor.com Low Firm
                  You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
                • TASession=%1%V2ID.7EDA6FF73423A7D829855C5A9454B65B*SQ.1*GR.55*TCPAR.45*TBR.47*EXEX.49*ABTR.91*PPRP.17*PHTB.93*FS.51*HS.popularity*ES.popularity*AS.popularity*DS.5*DF.0*FP.%2FTourism-g48080-Long_Island_City_New_York-Vacations%5C.html-x26amp*LP.%2FTourism-g48080-Long_Island_City_New_York-Vacations%5C.html-x26amp*TRA.true; Domain=.tripadvisor.com; Path=/
                • v1st=500B9EC2562484E9; path=/; expires=Wed, 19 Feb 2020 14:28:00 GMT; domain=.tripadvisor.com
                • TATravelInfo=V2*A.2*MG.-1*HP.2*FL.3; Domain=.tripadvisor.com; Expires=Wed, 14-Apr-2021 20:32:19 GMT; Path=/
                • PassThruUrlArgs=x26amp; Domain=.tripadvisor.com; Expires=Sun, 24-Apr-2011 20:32:19 GMT; Path=/
                • The highlighted cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
                  301 Moved Permanently

                  Found

                  The document has moved here.

                  ]]> false 5080576314537825280 5244928 Password field with autocomplete enabled http://utopiaguide.com Low Certain
                  The stored credentials can be captured by an attacker who gains access to the computer, either locally or through some remote compromise. Further, methods have existed whereby a malicious web site can retrieve the stored credentials for other applications, by exploiting browser vulnerabilities or through application-level cross-domain attacks. ]]>
                  autocomplete="off" within the FORM tag (to protect all form fields) or within the relevant INPUT tags (to protect specific individual fields).]]>

                • http://utopiaguide.com/forums/login.php?do=login
                • The form contains the following password field with autocomplete enabled:
                  • vb_login_password
                  ]]> UtopiaGuide - Calendar



                  Go Back   UtopiaGuide > Calendar
                  Register FAQ Members List CalendarvBookieToplist Today's Posts

                  Public Show Today Monthly View Add New Event
                  December 2006
                  >
                  >
                  >
                  26 Sun
                   
                  27 Mon
                   
                  28 Tue
                   
                  29 Wed
                   
                  30 Thu
                   
                  1 Fri
                  2 Sat
                  >
                  >
                  >
                  3 Sun
                  4 Mon
                  5 Tue
                  6 Wed
                  7 Thu
                  8 Fri
                  9 Sat
                  >
                  >
                  >
                  10 Sun
                  11 Mon
                  spmocyt1 (46)
                  12 Tue
                  13 Wed
                  14 Thu
                  15 Fri
                  16 Sat
                  chac77 (29)
                  >
                  >
                  >
                  17 Sun
                  18 Mon
                  19 Tue
                  20 Wed
                  21 Thu
                  22 Fri
                  23 Sat
                  candishop (21)
                  >
                  >
                  >
                  24 Sun
                  25 Mon
                  capitan2 (34)
                  26 Tue
                  27 Wed
                  28 Thu
                  xyniks (41)
                  xkyroutx (25)
                  29 Fri
                  30 Sat
                  >
                  >
                  >
                  31 Sun
                  1 Mon
                   
                  2 Tue
                   
                  3 Wed
                   
                  4 Thu
                   
                  5 Fri
                   
                  6 Sat
                   

                  November 2006
                    S M T W T F S
                  > 29 30 31 1 2 3 4
                  > 5 6 7 8 9 10 11
                  > 12 13 14 15 16 17 18
                  > 19 20 21 22 23 24 25
                  > 26 27 28 29 30 1 2
                  January 2007
                    S M T W T F S
                  > 31 1 2 3 4 5 6
                  > 7 8 9 10 11 12 13
                  > 14 15 16 17 18 19 20
                  > 21 22 23 24 25 26 27
                  > 28 29 30 31 1 2 3
                   
                  Add New Event
                  Jump to month
                  Calendar Jump
                  All times are GMT -8. The time now is 12:32 PM.

                  This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

                  Powered by vBulletin® Version 3.6.8
                  Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

                  ]]>
                  false
                  5876476546205626368 5243648 Cookie scoped to parent domain http://pixel.rubiconproject.com Information Certain
                • rpb=5328%3D1%265671%3D1%264212%3D1%262372%3D1%263810%3D1%262374%3D1%266286%3D1%266073%3D1%264210%3D1%265852%3D1; expires=Tue, 17-May-2011 23:51:33 GMT; path=/; domain=.rubiconproject.com
                • put_2101=8218888f-9a83-4760-bd14-33b4666730c0; expires=Tue, 17-May-2011 23:51:33 GMT; path=/; domain=.rubiconproject.com
                • The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
                  false
                  7575781295933435904 6292224 Private IP addresses disclosed http://static.ak.fbcdn.net Information Certain
                  Discovering the private addresses used within an organisation can help an attacker in carrying out network-layer attacks aiming to penetrate the organisation's internal infrastructure.]]>
                • 10.138.64.183
                • ]]>
                  false
                  5645009377023478784 5243904 Cross-domain Referer leakage http://www.lessonofpassion.com Information Certain
                  If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

                  You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

                  Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

                  Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
                • http://www.lessonofpassion.com/games_category.php?type=category&category=%27%22--%3E%3C/style%3E%3C/script%3E%3Cscript%3Ealert(0x000146)%3C/script%3E
                • The response contains the following links to other domains:
                  • http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js
                  • http://www.google-analytics.com/urchin.js
                  • http://www.playforceone.com/
                  • http://www.sexizu.com/
                  • http://www.sextronix.com/hit/144/110138/1/1/default/
                  ]]>
                  Lesson of Passion - \'\"--></style></script><script>alert(0x000146)</script> erotic flash games


                  Username   Password  

                  If you want to post comments and gain access to special features please your account.
                  \'\"--> games
                  ]]> false 2865478653085252608 8389120 HTML does not specify charset http://longislanderotic.com Information Certain
                  In most cases, the absence of a charset directive does not constitute a security flaw, particularly if the response contains static content. You should review the contents of the response and the context in which it appears to determine whether any vulnerability exists.]]>
                  charset=ISO-8859-1.]]> ErrorThe system cannot find the file specified. ]]> false
                  716917607942797312 5244160 Cross-domain script include http://www.cloudscan.me Information Certain
                  If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
                • http://hostedusa3.whoson.com/include.js?domain=stalker.opticalcorp.com
                • http://www.blogger.com/static/v1/widgets/560535965-widgets.js
                • http://www.google.com/jsapi
                • http://www.google.com/uds/solutions/slideshow/gfslideshow.js
                • ]]>
                  Penetration Testing | Hoyt LLC: SQL Injection
                  Showing newest posts with label SQL Injection. Show older posts
                  Showing newest posts with label SQL Injection. Show older posts

                  Sunday, April 17, 2011

                  colivia.de, SQL Injection, Single Quote, DORK, CWE-89, CAPEC-66

                  colivia.de, SQL Injection, Single Quote, DORK, CWE-89, CAPEC-66

                  Issue:   SQL injection
                  Severity:   High
                  Confidence:   Firm
                  Host:   http://www.colivia.de
                  Path:   /submit.php


                  Issue detail

                  The name of an arbitrarily supplied request parameter appears to be vulnerable to SQL injection attacks. The payload " was submitted in the name of an arbitrarily supplied request parameter, and a database error message was returned. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

                  The database appears to be MySQL.

                  Remediation detail

                  The application should handle errors gracefully and prevent SQL error messages from being returned in responses.

                  Issue background

                  SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

                  Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.  

                  SQL Injection in colivia.de, DORK, SQL Injection, CWE-89, CAPEC-66

                  gabbr.com, SQL Injection, DORK, Single Quote, CWE-89, CAPEC-66

                  gabbr.com, SQL Injection, DORK, Single Quote, CWE-89, CAPEC-66

                  Issue:   SQL injection
                  Severity:   High
                  Confidence:   Firm
                  Host:   http://www.gabbr.com
                  Path:   /inc/fauxMenu.css


                  Issue detail

                  The REST URL parameter 1 appears to be vulnerable to SQL injection attacks. The payload ' was submitted in the REST URL parameter 1, and a database error message was returned. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

                  The database appears to be MySQL.

                  The application attempts to block SQL injection attacks but this can be circumvented by submitting a URL-encoded NULL byte () before the characters that are being blocked.

                  Remediation detail

                  The application should handle errors gracefully and prevent SQL error messages from being returned in responses. NULL byte bypasses typically arise when the application is being defended by a web application firewall (WAF) that is written in native code, where strings are terminated by a NULL byte. You should fix the actual vulnerability within the application code, and if appropriate ask your WAF vendor to provide a fix for the NULL byte bypass.

                  Issue background

                  SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

                  Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.  


                  SQL Injection in gabbr.com, DORK, SQL Injection, CWE-89, CAPEC-66

                  longislanderotic.com, SQL Injection, Single Quote, DORK, CWE-89, CAPEC-66

                  longislanderotic.com - OWNED and EXPOSED.

                  Issue:   SQL injection
                  Severity:   High
                  Confidence:   Certain
                  Host:   http://www.longislanderotic.com
                  Path:   /longislanderotic/forum/

                  All the user info is open for all to see via SQL Injection with Reverse Shell.


                  Issue detail
                  The name of an arbitrarily supplied request parameter appears to be vulnerable to SQL injection attacks. A single quote was submitted in the name of an arbitrarily supplied request parameter, and a database error message was returned. Two single quotes were then submitted and the error message disappeared. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

                  The database appears to be Microsoft SQL Server.

                  Remediation detail

                  The application should handle errors gracefully and prevent SQL error messages from being returned in responses.

                  Issue background

                  SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

                  Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.  


                  SQL Injection in longislanderotic.com, DORK, SQL Injection, CWE-89, CAPEC-66
                  http://xss.cx/examples/dork/sql-injection/4.16.2011-sql-injection-dork-poc-example-report-vulnerable-server.html#1.34


                  Summary

                  Severity:  High
                  Confidence:  Firm
                  Host:  http://www.longislanderotic.com
                  Path:  /longislanderotic/forum/

                  Issue detail

                  The Referer HTTP header appears to be vulnerable to SQL injection attacks. The payload ',0,0,0)waitfor%20delay'0%3a0%3a20'-- was submitted in the Referer HTTP header, and a database error message was returned. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

                  The database appears to be Microsoft SQL Server.

                  Remediation detail

                  The application should handle errors gracefully and prevent SQL error messages from being returned in responses.

                  Request

                  GET /longislanderotic/forum/ HTTP/1.1
                  Host: www.longislanderotic.com
                  Proxy-Connection: keep-alive
                  Referer: http://www.google.com/search?hl=en&q=',0,0,0)waitfor%20delay'0%3a0%3a20'--
                  User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US) AppleWebKit/534.16 (KHTML, like Gecko) Chrome/10.0.648.204 Safari/534.16
                  Accept: application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5
                  Accept-Encoding: gzip,deflate,sdch
                  Accept-Language: en-US,en;q=0.8
                  Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.3

                  Response

                  HTTP/1.1 200 OK
                  Connection: close
                  Date: Sun, 17 Apr 2011 17:42:53 GMT
                  Server: Microsoft-IIS/6.0
                  X-Powered-By: ASP.NET
                  Content-Type: text/html
                  Set-Cookie: WWF=SID=zb688d2ede1dz9157b8c16f4219bdeaz; path=/longislanderotic
                  Set-Cookie: ASPSESSIONIDQSBBADSQ=NBMDCGFBPOLHPEEEBPKECEJF; path=/
                  Cache-control: private

                  <br /><strong>Server Error in Forum Application</strong><br />An error has occured while writing to the database.<br />Please contact the forum administrator.<br /><br /><strong>Support Error Code:-</
                  ...[SNIP]...
                  <br />Microsoft OLE DB Provider for SQL Server<br />
                  ...[SNIP]...

                  amenme.com, Single Quote, SQL Injection, DORK, CWE-89, CAPEC-66

                  amenme.com, Single Quote, SQL Injection, DORK, CWE-89, CAPEC-66

                  Issue:   SQL injection
                  Severity:   High
                  Confidence:   Certain
                  Host:   http://www.amenme.com
                  Path:   /AmenMe/Amens/AmenToThis.aspx


                  Issue detail

                  The Referer HTTP header appears to be vulnerable to SQL injection attacks. A single quote was submitted in the Referer HTTP header, and a database error message was returned. Two single quotes were then submitted and the error message disappeared. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

                  The database appears to be Microsoft SQL Server.

                  Remediation detail

                  The application should handle errors gracefully and prevent SQL error messages from being returned in responses.

                  Issue background

                  SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

                  Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.  


                  SQL Injection in amenme.com, DORK, SQL Injection, CWE-89, CAPEC-66

                  Saturday, April 16, 2011

                  brownrudnick.com, XSS, SQL Injection, CWE-89, CAPEC-66, CAPEC-86, Cross Site Scripting, CWE-79, DORK

                  brownrudnick.com, XSS, SQL Injection, CWE-89, CAPEC-66, CAPEC-86, Cross Site Scripting, CWE-79, DORK




                  Hoyt LLC Research comments that XSS and SQL Injection via DORK is an Unforgivable Vulnerability.


                  Issue Background


                  Reflected cross-site scripting vulnerabilities arise when data is copied from a request and echoed into the application's immediate response in an unsafe way. An attacker can use the vulnerability to construct a request which, if issued by another application user, will cause JavaScript code supplied by the attacker to execute within the user's browser in the context of that user's session with the application.

                  The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

                  Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).


                  XSS in brownrudnick.com, DORK, Cross Site Scripting, CWE-79, CAPEC-86

                  XSS in brownrudnick.com, DORK, Cross Site Scripting, CWE-79, CAPEC-86

                  External References

                  morrisonmahoney.com, XSS, SQL Injection, CWE-89, CAPEC-66, CAPEC-86, Cross Site Scripting, CWE-79, DORK

                  morrisonmahoney.com, XSS, SQL Injection, CWE-89, CAPEC-66, CAPEC-86, Cross Site Scripting, CWE-79, DORK




                  Hoyt LLC Research comments that XSS and SQL Injection via DORK is an Unforgivable Vulnerability.


                  Issue Background


                  Reflected cross-site scripting vulnerabilities arise when data is copied from a request and echoed into the application's immediate response in an unsafe way. An attacker can use the vulnerability to construct a request which, if issued by another application user, will cause JavaScript code supplied by the attacker to execute within the user's browser in the context of that user's session with the application.

                  The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

                  Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).


                  XSS in morrisonmahoney.com, DORK, Cross Site Scripting, CWE-79, CAPEC-86

                  XSS in morrisonmahoney.com, DORK, Cross Site Scripting, CWE-79, CAPEC-86

                  External References

                  Thursday, April 7, 2011

                  skadden.com, SQL Injection, XSS, XML Injection, CWE-79, CWE-89, DORK

                   About Us
                  Hoyt LLC Research | Vulnerability Disclosure Policy
                  Coordinated Disclosure | Uncoordinated Disclosure

                  XSS.CX Research investigates and reports on security vulnerabilities embedded in Web Applications and Products used in wide-scale deployment.

                  Hoyt LLC provides litigation expertise with research, forensic analysis and support services targeting the SS7, PSTN and IP Networks. Please use Live Chat to contact us 7x24x365.

                  The responsibility for all software and hardware products rests with the Vendor alone, and we suggest that Vendors take that responsibility very seriously. Vulnerable Applications create Legal, Compliance and Regulatory exposure for all parties.

                  The identification and reporting of emerging and known vulnerabilities is more difficult when details of a vulnerability are made public before by another 3rd party prior to an update being developed. When such events occur, Full Disclosure is our primary consideration, in order to protect the Public against malicious attackers whom may exploit the vulnerability.

                  Subject: Full Disclosure

                  XSS in skadden.com
                  Timeline: 1) October 2010, Vulnerable Site contacted by external facing, public form.
                  2) April 6, 2011, XSS remains unfixed despite IP|CIDR connect from *.skadden.com Host on 1-21-2011.
                  3) Target also notified of multiple, critical vulnerabilities in October 2011, no response.

                  XML + SQL Injection in skadden.com
                  Timeline: 1) DORK Crawler identifies DNA indicating Blind and SQL Injection with XSS on 1/29/2011
                  2) Vulnerable Site again contacted, no response.
                  3) Disclosure on 4/6/2011

                  Hoyt LLC Research and our Private Vulnerability Reporting are an opportunity for a Company to implement a resolution, demonstrate Best Practices, and work with a widely recognized research team to resolve all OWASP Top 10 issues in a timely manner, pro bono.

                  Issue #1
                  SQL Injection occurs when data input for example by a user is interpreted as a SQL command rather than normal data by the backend database. This is an extremely common vulnerability and its successful exploitation can have critical implications. SQL Injection is confirmed by executing a test SQL Query on the back-end database, for example, these Proof of Concepts (PoC's):

                  Select @@version
                  Microsoft SQL Server 2005 - 9.00.4053.00 (Intel X86) May 26 2009 14:24:20 Copyright (c) 1988-2005 Microsoft Corporation Standard Edition on Windows NT 5.2 (Build 3790: Service Pack 2)

                  Select SUSER_SNAME()
                  SKADCOM\svcCldFusion

                  Select @@servername
                  SKADLQS01\SKADLQS01

                  Issue #2

                  Multiple Adobe products with different Data Services versions are vulnerable to XML External Entity (XXE) and XML injection attacks. XML external Entities injection allows a wide range of XML based attacks, including local file disclosure, TCP scans and Denial of Service condition, which can be achieved by recursive entity injection, attribute blow up and other types of injection. For more information about the implications associated to this vulnerability, refer to the RFC2518 (17.7 Implications of XML External Entities): http://www.ietf.org/rfc/rfc2518.txt.

                  Proof of Concept - REDACTED - PARTIAL

                  EXAMPLE - DOCTYPE test ENTITY x3 SYSTEM c:/windows/win.ini

                  Pattern found:
                  ; for 16-bit app support

                  Issue #3

                  XSS - The Site provides many XSS vectors, including the ability access the File System. Possible Stored XSS and Reflected XSS attacks are made easy by bringing unsuspecting victims to the Skadden Site and inject a Payload from the skadden.com server.

                  Issue background

                  Reflected cross-site scripting vulnerabilities arise when data is copied from a request and echoed into the application's immediate response in an unsafe way. An attacker can use the vulnerability to construct a request which, if issued by another application user, will cause JavaScript code supplied by the attacker to execute within the user's browser in the context of that user's session with the application.
                  Summary: Unforgivable Vulnerabilities, Lawyers, News, GRC, RISK, Exposure, No Experience Required

                  Saturday, April 2, 2011

                  SQL Injection, DORK, Single Quote, CWE-89, CAPEC-66, Database Error, April 1, 2011 Report


                  Issue:   SQL injection
                  Severity:   High
                  Confidence:   Certain
                  Host:   http://sql.injection.dorks


                  Issue detail

                  21 instances of this issue were identified, at the following locations:
                  • http://www.usf.edu/server-info [REST URL parameter 1]
                  • http://www.usf.edu/server-info [name of an arbitrarily supplied request parameter]
                  • http://www.x17online.com/server-status [REST URL parameter 1]
                  • http://www.usf.edu/server-status [REST URL parameter 1]
                  • http://www.beeg.com/server-status [REST URL parameter 1]
                  • http://www.usf.edu/server-status [name of an arbitrarily supplied request parameter]
                  • http://www.beeg.com/server-status [name of an arbitrarily supplied request parameter]
                  • http://www.beeg.com/favicon.ico [REST URL parameter 1]
                  • http://www.tech-recipes.com/server-info [REST URL parameter 1]
                  • http://www.qwickstep.com/server-status [REST URL parameter 1]
                  • http://www.tech-recipes.com/server-status [REST URL parameter 1]
                  • http://www.almanac.com/server-status [REST URL parameter 1]
                  • http://www.travelscream.com/server-status [REST URL parameter 1]
                  • http://www.comannet.com/server-status [REST URL parameter 1]
                  • http://www.essortment.com/server-status [REST URL parameter 1]
                  • http://www.lyricsdepot.com/server-status [REST URL parameter 1]
                  • http://www.excite.com/server-status [REST URL parameter 1]
                  • http://www.smartertravel.com/server-status [REST URL parameter 1]
                  • http://www.helium.com/server-status [name of an arbitrarily supplied request parameter]
                  • http://www.newsweek.com/server-status [name of an arbitrarily supplied request parameter]
                  • http://www.comannet.com/server-status [name of an arbitrarily supplied request parameter]


                  Issue background

                  SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

                  Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.

                  Issue remediation

                  The most effective way to prevent SQL injection attacks is to use parameterised queries (also known as prepared statements) for all database access. This method uses two steps to incorporate potentially tainted data into SQL queries: first, the application specifies the structure of the query, leaving placeholders for each item of user input; second, the application specifies the contents of each placeholder. Because the structure of the query has already defined in the first step, it is not possible for malformed data in the second step to interfere with the query structure. You should review the documentation for your database and application platform to determine the appropriate APIs which you can use to perform parameterised queries. It is strongly recommended that you parameterise every variable data item that is incorporated into database queries, even if it is not obviously tainted, to prevent oversights occurring and avoid vulnerabilities being introduced by changes elsewhere within the code base of the application.

                  You should be aware that some commonly employed and recommended mitigations for SQL injection vulnerabilities are not always effective:
                  • One common defence is to double up any single quotation marks appearing within user input before incorporating that input into a SQL query. This defence is designed to prevent malformed data from terminating the string in which it is inserted. However, if the data being incorporated into queries is numeric, then the defence may fail, because numeric data may not be encapsulated within quotes, in which case only a space is required to break out of the data context and interfere with the query. Further, in second-order SQL injection attacks, data that has been safely escaped when initially inserted into the database is subsequently read from the database and then passed back to it again. Quotation marks that have been doubled up initially will return to their original form when the data is reused, allowing the defence to be bypassed.
                  • Another often cited defence is to use stored procedures for database access. While stored procedures can provide security benefits, they are not guaranteed to prevent SQL injection attacks. The same kinds of vulnerabilities that arise within standard dynamic SQL queries can arise if any SQL is dynamically constructed within stored procedures. Further, even if the procedure is sound, SQL injection can arise if the procedure is invoked in an unsafe manner using user-controllable data.       

                  Friday, April 1, 2011

                  politicalwire.com, SQL Injection, favicon.ico, DORK, CWE-89, CAPEC-66

                  politicalwire.com, SQL Injection, favicon.ico, DORK, CWE-89, CAPEC-66

                  Click to Execute URI in the form of http://politicalwire.com/favicon.ico' produces application response of:

                  Error: pdo error: [1064: You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near ''/') or (fileinfo_url like '/favicon.ico'/index%')) and te' at line 2] in EXECUTE("select mt_fileinfo.* from mt_fileinfo JOIN mt_template ON fileinfo_template_id = template_id WHERE fileinfo_blog_id = 4 and ((fileinfo_url = '/favicon.ico'' or fileinfo_url = '/favicon.ico'/') or (fileinfo_url like '/favicon.ico'/index%')) and template_type != 'backup' order by length(fileinfo_url) asc")
                  #0 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/extlib/adodb5/adodb.inc.php(1037): adodb_throw('pdo', 'EXECUTE', 1064, 'You have an err...', 'select mt_filei...', false, Object(ADODB_pdo))
                  #1 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/extlib/adodb5/adodb.inc.php(1012): ADOConnection->_Execute('select mt_filei...', false)
                  #2 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/extlib/adodb5/adodb.inc.php(1543): ADOConnection->Execute('select mt_filei...', false)
                  #3 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/extlib/adodb5/adodb.inc.php(1380): ADOConnection->GetArray('select mt_filei...', false)
                  #4 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/extlib/adodb5/adodb-active-record.inc.php(959): ADOConnection->GetAll('select mt_filei...', false)
                  #5 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/extlib/adodb5/adodb.inc.php(2119): adodb_GetActiveRecordsClass(Object(ADODB_pdo), 'FileInfo', 'mt_fileinfo  JO...', 'fileinfo_blog_i...', false, false, Array, Array)
                  #6 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/lib/class.baseobject.php(143): ADOConnection->GetActiveRecordsClass('FileInfo', 'mt_fileinfo  JO...', 'fileinfo_blog_i...', false, false, Array)
                  #7 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/lib/mtdb.base.php(240): BaseObject->Find('fileinfo_blog_i...', false, false, Array)
                  #8 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/mt.php(645): MTDatabase->resolve_url('/favicon.ico%27', 4)
                  #9 /nfs/c01/h08/mnt/1720/domains/helvidius.com/cgi-bin/mt5/php/mt.php(488): MT->resolve_url('/favicon.ico%27')
                  #10 /nfs/c01/h08/mnt/1720/domains/politicalwire.com/html/mtview.php(6): MT->view()
                  #11 {main}

                  Monday, March 21, 2011

                  Daily DORK, SQL Injection, Unforgivable Vulnerabilities, CWE-89, CAPEC-66, Scanner Lack of Coverage

                  Daily DORK, SQL Injection, Unforgivable Vulnerabilities, CWE-89, CAPEC-66, Scanner Lack of Coverage

                  Hoyt LLC Research asks the rhetorical question, does your Vulnerability Scanner test for Unforgivable Vulnerabilities? This is low hanging fruit. 1 in 6 major market vulnerability scanners does not see this DORK!

                  Application Request:
                  GET /ib2 HTTP/1.1
                  Host: tools.ip2location.com
                  User-Agent: '


                  Application Response:
                  ERROR [42000] [MySQL][ODBC 5.1 Driver][mysqld-5.1.31-community-log]You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '
                  XSS in tools.ip2location.com, DORK, Cross Site Scripting, CWE-79, CAPEC-86

                  Friday, March 18, 2011

                  publisher.mediapass.com, XSS, CAPEC-86, Cross Site Scripting, CWE-79, CWE-89, SQL Injection, CAPEC-86, CAPEC-66

                  publisher.mediapass.com, Login Form, XSS, SQL Injection, XSS Report


                  Updated 4-8-2011 - Vendor is unresponsive after a series of e-mails. Inquiry made to when SQL Injection + XSS Vulnerability would be resolved.


                  Issue Background


                  Reflected cross-site scripting vulnerabilities arise when data is copied from a request and echoed into the application's immediate response in an unsafe way. An attacker can use the vulnerability to construct a request which, if issued by another application user, will cause JavaScript code supplied by the attacker to execute within the user's browser in the context of that user's session with the application.

                  The attacker-supplied code can perform a wide variety of actions, such as stealing the victim's session token or login credentials, performing arbitrary actions on the victim's behalf, and logging their keystrokes.

                  Users can be induced to issue the attacker's crafted request in various ways. For example, the attacker can send a victim a link containing a malicious URL in an email or instant message. They can submit the link to popular web sites that allow content authoring, for example in blog comments. And they can create an innocuous looking web site which causes anyone viewing it to make arbitrary cross-domain requests to the vulnerable application (using either the GET or the POST method).


                  XSS in publisher.mediapass.com, DORK, Cross Site Scripting, CWE-79, CAPEC-86

                  XSS in publisher.mediapass.com, DORK, Cross Site Scripting, CWE-79, CAPEC-86

                  External References

                  Wednesday, March 16, 2011

                  dce.sapha.com, DORK, SQL Injection, Single Quote, CWE-89, CAPEC-66

                  CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')



                  Issue: SQL injection
                  Severity: High
                  Confidence: Certain
                  Host: http://dce.sapha.com
                  Path: /engine.php


                  Issue detail

                  The ac parameter appears to be vulnerable to SQL injection attacks. A single quote was submitted in the ac parameter, and a database error message was returned. Two single quotes were then submitted and the error message disappeared. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

                  The database appears to be MySQL.

                  Remediation detail

                  The application should handle errors gracefully and prevent SQL error messages from being returned in responses.

                  Issue background

                  SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

                  Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.

                  tours.sapha.com, CWE-89, CAPEC-66, DORK, SQL Injection, Single Quote

                  tours.sapha.com, CWE-89, CAPEC-66, DORK, SQL Injection, Single Quote


                  Issue: SQL injection
                  Severity: High
                  Confidence: Certain
                  Host: http://tours.sapha.com
                  Path: /


                  Issue detail

                  The scs_sid parameter appears to be vulnerable to SQL injection attacks. A single quote was submitted in the scs_sid parameter, and a database error message was returned. Two single quotes were then submitted and the error message disappeared. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

                  The database appears to be MySQL.

                  Remediation detail

                  The application should handle errors gracefully and prevent SQL error messages from being returned in responses.

                  Issue background

                  SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

                  Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.

                  Remediation background

                  The most effective way to prevent SQL injection attacks is to use parameterised queries (also known as prepared statements) for all database access. This method uses two steps to incorporate potentially tainted data into SQL queries: first, the application specifies the structure of the query, leaving placeholders for each item of user input; second, the application specifies the contents of each placeholder. Because the structure of the query has already defined in the first step, it is not possible for malformed data in the second step to interfere with the query structure. You should review the documentation for your database and application platform to determine the appropriate APIs which you can use to perform parameterised queries. It is strongly recommended that you parameterise every variable data item that is incorporated into database queries, even if it is not obviously tainted, to prevent oversights occurring and avoid vulnerabilities being introduced by changes elsewhere within the code base of the application.

                  You should be aware that some commonly employed and recommended mitigations for SQL injection vulnerabilities are not always effective:
                  • One common defence is to double up any single quotation marks appearing within user input before incorporating that input into a SQL query. This defence is designed to prevent malformed data from terminating the string in which it is inserted. However, if the data being incorporated into queries is numeric, then the defence may fail, because numeric data may not be encapsulated within quotes, in which case only a space is required to break out of the data context and interfere with the query. Further, in second-order SQL injection attacks, data that has been safely escaped when initially inserted into the database is subsequently read from the database and then passed back to it again. Quotation marks that have been doubled up initially will return to their original form when the data is reused, allowing the defence to be bypassed.
                  • Another often cited defence is to use stored procedures for database access. While stored procedures can provide security benefits, they are not guaranteed to prevent SQL injection attacks. The same kinds of vulnerabilities that arise within standard dynamic SQL queries can arise if any SQL is dynamically constructed within stored procedures. Further, even if the procedure is sound, SQL injection can arise if the procedure is invoked in an unsafe manner using user-controllable data.

                  apps.sapha.com, SQL Injection, Single Quote, DORK, CWE-89, CAPEC-66

                  CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')


                  SQL Injection DORK - Click to Execute URI

                  Application Response:

                  Database error on host '192.168.50.20', db 'sapha_core', user 'www', object 'globalDB': Invalid SQL: select SQL_CACHE * from site_options where site_ID = ''+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),(SELECT now()),CHAR(95),CHAR(33),CHAR(64)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))+''
                  MySQL Error: 1062 (Duplicate entry '_!@2011-03-16 13:54:16_!@:1' for key 1)
                  Session halted.

                  Issue: SQL injection
                  Severity: High
                  Confidence: Certain
                  Host: http://apps.sapha.com
                  Path: /hooktour/tourservice.php

                  Issue detail

                  The scs%5Fsid parameter appears to be vulnerable to SQL injection attacks. A single quote was submitted in the scs%5Fsid parameter, and a database error message was returned. Two single quotes were then submitted and the error message disappeared. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

                  The database appears to be MySQL.

                  Remediation detail

                  The application should handle errors gracefully and prevent SQL error messages from being returned in responses.

                  Issue background

                  SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

                  Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.

                  Remediation background

                  The most effective way to prevent SQL injection attacks is to use parameterised queries (also known as prepared statements) for all database access. This method uses two steps to incorporate potentially tainted data into SQL queries: first, the application specifies the structure of the query, leaving placeholders for each item of user input; second, the application specifies the contents of each placeholder. Because the structure of the query has already defined in the first step, it is not possible for malformed data in the second step to interfere with the query structure. You should review the documentation for your database and application platform to determine the appropriate APIs which you can use to perform parameterised queries. It is strongly recommended that you parameterise every variable data item that is incorporated into database queries, even if it is not obviously tainted, to prevent oversights occurring and avoid vulnerabilities being introduced by changes elsewhere within the code base of the application.

                  You should be aware that some commonly employed and recommended mitigations for SQL injection vulnerabilities are not always effective:
                  • One common defence is to double up any single quotation marks appearing within user input before incorporating that input into a SQL query. This defence is designed to prevent malformed data from terminating the string in which it is inserted. However, if the data being incorporated into queries is numeric, then the defence may fail, because numeric data may not be encapsulated within quotes, in which case only a space is required to break out of the data context and interfere with the query. Further, in second-order SQL injection attacks, data that has been safely escaped when initially inserted into the database is subsequently read from the database and then passed back to it again. Quotation marks that have been doubled up initially will return to their original form when the data is reused, allowing the defence to be bypassed.
                  • Another often cited defence is to use stored procedures for database access. While stored procedures can provide security benefits, they are not guaranteed to prevent SQL injection attacks. The same kinds of vulnerabilities that arise within standard dynamic SQL queries can arise if any SQL is dynamically constructed within stored procedures. Further, even if the procedure is sound, SQL injection can arise if the procedure is invoked in an unsafe manner using user-controllable data.

                  Sunday, March 13, 2011

                  SQL Injection, Exposed, Risk, Single Quote Injection, DORK Report, CWE-89, CAPEC-66

                  SQL Injection, Single Quote Injection, DORK Report, CWE-89, CAPEC-66

                  Hoyt LLC Research observes Sunday Morning Daily SQL Injection DORKs with Click to Execute URI's on display from Netsparker, our tool of choice for automated SQL Injection Analysis of Forms and Parameters.

                  Netsparker's unique detection and exploitation techniques allows it to be dead accurate in reporting hence it's the first and the only False Positive Free web application security scanner.

                  Hoyt LLC Research suggests the use of Netsparker for individual URI/Parameter analysis. Don't Point/Train and Shoot! We express the opinion that Netsparker is a manual analysis tool best combined with Burp Suite Pro for Manual Penetration Testing. Netsparker is a best-of-breed tool for exposing the true risk of vulnerabilities.

                  SQL Injection DORK #1 for Sunday, March 13, 2011
                  Question #1 - The Current Time is?


                  Somewhere in California deep inside an Owned and Expose MySQL Server, the time is 2011-03-13 10:39:05

                  SQL Injection DORK #2 for Sunday, March 13, 2011
                  Question #2 - The Current SQL Server Version running behind a Login Form is?


                  Somewhere in Massachusetts deep inside an Owned and Expose MS SQl Server Server, the MS SQL Server Version details are:
                  Microsoft SQL Server 2000 - 8.00.760 (Intel X86) Dec 17 2002 14:22:05 Copyright (c) 1988-2003 Microsoft Corporation Standard Edition on Windows NT 5.2 (Build 3790: Service Pack 2)

                  More to come this Sunday Morning.....

                  Wednesday, March 9, 2011

                  Single Quote, lion.com, SQL Injection, DORK, CWE-89, CAPEC-66

                  Single Quote, SQL Injection, DORK, CWE-89, CAPEC-66

                  Hoyt LLC Research observes a Single Quote SQL Injection DORK in the form of Click to Execute URI http://www.lion.com/?1'=1

                  Application Response:

                  Microsoft OLE DB Provider for SQL Server error '80040e14'

                  Incorrect syntax near '='.

                  /inc/menus.asp, line 40


                  Issue: SQL injection
                  Severity: High
                  Confidence: Certain
                  Host: http://www.lion.com
                  Path: /

                  Issue detail

                  The name of an arbitrarily supplied request parameter appears to be vulnerable to SQL injection attacks. A single quote was submitted in the name of an arbitrarily supplied request parameter, and a database error message was returned. Two single quotes were then submitted and the error message disappeared. You should review the contents of the error message, and the application's handling of other input, to confirm whether a vulnerability is present.

                  The database appears to be Microsoft SQL Server.

                  Remediation detail

                  The application should handle errors gracefully and prevent SQL error messages from being returned in responses.

                  Issue background

                  SQL injection vulnerabilities arise when user-controllable data is incorporated into database SQL queries in an unsafe manner. An attacker can supply crafted input to break out of the data context in which their input appears and interfere with the structure of the surrounding query.

                  Various attacks can be delivered via SQL injection, including reading or modifying critical application data, interfering with application logic, escalating privileges within the database and executing operating system commands.

                  Remediation background

                  The most effective way to prevent SQL injection attacks is to use parameterised queries (also known as prepared statements) for all database access. This method uses two steps to incorporate potentially tainted data into SQL queries: first, the application specifies the structure of the query, leaving placeholders for each item of user input; second, the application specifies the contents of each placeholder. Because the structure of the query has already defined in the first step, it is not possible for malformed data in the second step to interfere with the query structure. You should review the documentation for your database and application platform to determine the appropriate APIs which you can use to perform parameterised queries. It is strongly recommended that you parameterise every variable data item that is incorporated into database queries, even if it is not obviously tainted, to prevent oversights occurring and avoid vulnerabilities being introduced by changes elsewhere within the code base of the application.

                  You should be aware that some commonly employed and recommended mitigations for SQL injection vulnerabilities are not always effective:
                  • One common defence is to double up any single quotation marks appearing within user input before incorporating that input into a SQL query. This defence is designed to prevent malformed data from terminating the string in which it is inserted. However, if the data being incorporated into queries is numeric, then the defence may fail, because numeric data may not be encapsulated within quotes, in which case only a space is required to break out of the data context and interfere with the query. Further, in second-order SQL injection attacks, data that has been safely escaped when initially inserted into the database is subsequently read from the database and then passed back to it again. Quotation marks that have been doubled up initially will return to their original form when the data is reused, allowing the defence to be bypassed.
                  • Another often cited defence is to use stored procedures for database access. While stored procedures can provide security benefits, they are not guaranteed to prevent SQL injection attacks. The same kinds of vulnerabilities that arise within standard dynamic SQL queries can arise if any SQL is dynamically constructed within stored procedures. Further, even if the procedure is sound, SQL injection can arise if the procedure is invoked in an unsafe manner using user-controllable data.

                  [High Possibility] SQL Injection

                  1 TOTAL
                  CRITICAL
                  SQL Injection occurs when data input for example by a user is interpreted as a SQL command rather than normal data by the backend database. This is an extremely common vulnerability and its successful exploitation can have critical implications. Even though Netsparker believes that there is a SQL Injection in here it could not confirm it. There can be numerous reasons for Netsparker not being able to confirm this. We strongly recommend investigating the issue manually to ensure that it is an SQL Injection and that it needs to be addressed. You can also consider sending the details of this issue to us, in order that we can address this issue for the next time and give you a more precise result.

                  Impact

                  Depending on the backend database, database connection settings and the operating system, an attacker can mount one or more of the following type of attacks successfully:
                  • Reading, Updating and Deleting arbitrary data from the database
                  • Executing commands on the underlying operating system
                  • Reading, Updating and Deleting arbitrary tables from the database

                    Actions to Take

                    1. See the remedy for solution.
                    2. If you are not using a database access layer (DAL) within the architecture consider its benefits and implement if appropriate. As a minimum the use of s DAL will help centralize the issue and its resolution. You can also use an ORM (object relational mapping). Most ORM systems use parameterized queries and this can solve many if not all SQL Injection based problems.
                    3. Locate all of the dynamically generated SQL queries and convert them to parameterised queries. (If you decide to use a DAL/ORM, change all legacy code to use these new libraries)
                    4. Monitor and review weblogs and application logs in order to uncover active or previous exploitation attempts.

                    Remedy

                    A very robust method for mitigating the threat of SQL Injection based vulnerabilities is to use parameterized queries (prepared statements). Almost all modern languages provide built in libraries for this. Wherever possible do not create dynamic SQL queries or SQL queries with string concatenation.

                    Required Skills for Successful Exploitation

                    There are numerous freely available tools to test for SQL Injection vulnerabilities. This is a complex area with many dependencies, however it should be noted that the numerous resources available in this area have raised both attacker awareness of the issues and their ability to discover and leverage them. SQL Injection is one of the most common web application vulnerabilities.

                    External References

                    Remedy References

                    ]]>
                    false
                    3715098994365715456 5243648 Cookie scoped to parent domain http://www.google.com Information Certain
                  • PREF=ID=0772c9d5ef13aaaf:U=d212295d0f1573ee:FF=0:TM=1303071569:LM=1303071854:S=-12yg0SrBzdFcgP0; expires=Tue, 16-Apr-2013 20:24:14 GMT; path=/; domain=.google.com
                  • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                    GoogleScreen reader users, click here to turn off Google Instant.
                    ]]>
                    false
                    4748308542169835520 5243904 Cross-domain Referer leakage http://googleads.g.doubleclick.net Information Certain
                    If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

                    You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

                    Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

                    Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
                  • http://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-9643032735294668&output=html&h=90&slotname=1105967903&w=728&lmt=1303090887&flash=10.2.154&url=http%3A%2F%2Fwww.thatshiphop.com%2Fbrowse.php%3Ftype%3D%2527%2522--%253E%253C%2Fstyle%253E%253C%2Fscript%253E%253Cscript%253Ealert(0x000092)%253C%2Fscript%253E&dt=1303072887768&bpp=3&shv=r20110406&jsv=r20110412&prev_slotnames=1105967903%2C2809290749&correlator=1303072863918&frm=0&adk=1974906927&ga_vid=183639622.1303072864&ga_sid=1303072864&ga_hid=1147196049&ga_fc=0&u_tz=-300&u_his=1&u_java=1&u_h=1200&u_w=1920&u_ah=1156&u_aw=1920&u_cd=16&u_nplug=9&u_nmime=44&biw=1063&bih=1016&fu=0&ifi=3&dtd=7&xpc=RWkYKyADsd&p=http%3A//www.thatshiphop.com
                  • The response contains the following link to another domain:
                    • http://ad.turn.com/server/ads.js?pub=11185880&cch=11185948&code=11186021&l=728x90&aid=25444166&ahcid=610155&bimpd=qYLvujOJFkQDEN3ucKMA0a2VsGCMwdNaYo3wPnqY2wurmm_YJAlQJiQkbPKyb3DQxIqThrfGIxmN0C34famBEvz_6jan7hdVp-1zCCV0Kq2AuhfCoQvzNo1m63dhQIntvxZNu0ivF915mOtJGyB34157ll15kW2FXUqvm6x1Js5e38ZHE-sWcwaKWihygipylab5VACDqOtiysyNimd2IeQGQcNe6IdvGBIfDiDSRHwmQbPXyRYDFc68imfq1sZ4yhak8cEJfJBq2GcrrYW3o4buPgyPUQ_GOvgzI4wBfkzY8XWbMo2k-GGvvtcypHgziZ9aRVRCv1mWobphlPiT3r5ODqZ5aBKSTbLgkUm8Mni-gZBAzYBqbTLuD9OI9kZsB-fFgpBZNcCOTjhX-C_CgEhnnb2NC7FZnEH8rykbb5VZEYbTj4SESV1QK1yppXCmI9Y2d2izZGD5CKwRkLpSQbK3dKfhvtRjLJCtmDD0lT5bX1WdE9YPtXU1WcVyHMWnSCz3Y0z1m9UWvTu5JDw4h9-R920A5EIWSmuuCTKdxYKnkzSkfTNHL4HC1UCBbs1UvfBz5xDsVEqchMpjM7fNhQoC-tSBmvzodh_3KL1AF8a5pbACck4sFtAOC9p0g8_WYJJed149nSRrr58HyPpSVZTDPWVVp_RHCqeyFGFff-1MWjNRh_WFab1eau4jtDPi7wQkRG0IBjIy3InciZNLhpHCtcsBAp7HzOXgWI6D0RpX3SPUv-fwmTVQG3b11wH-F6G3eK8GfPeHCjDxdpQTpQ&acp=TatQ_QABOAoK7GWsGwdNvkTS7y6ec9OrAW9a1w&3c=http://googleads.g.doubleclick.net/aclk%3Fsa%3Dl%26ai%3DBDQOv_VCrTYrwBKzLsQe-m53YAY200M4B9bmdvRTJkYikFwAQARgBIAA4AVCAx-HEBGDJ7oOI8KPsEoIBF2NhLXB1Yi05NjQzMDMyNzM1Mjk0NjY4sgETd3d3LnRoYXRzaGlwaG9wLmNvbboBCTcyOHg5MF9hc8gBCdoBdWh0dHA6Ly93d3cudGhhdHNoaXBob3AuY29tL2Jyb3dzZS5waHA_dHlwZT0nJTIyLS0lM0UlM0Mvc3R5bGUlM0UlM0Mvc2NyaXB0JTNFJTNDc2NyaXB0JTNFYWxlcnQoMHgwMDAwOTIpJTNDL3NjcmlwdCUzRZgCzgTAAgTIArWc1RGoAwHoA4YI6APhBegD2QHoA9AE9QMEAADEgAaJh6_u2aeujZIB%26num%3D1%26sig%3DAGiWqtz23bHOA0JHoxn8htpQk3MGEJFg_Q%26client%3Dca-pub-9643032735294668%26adurl%3D
                    ]]>
                    ]]> false
                    6890663076854645760 6292992 Robots.txt file http://www.google-analytics.com Information Certain
                    The presence of the robots.txt does not in itself present any kind of security vulnerability. However, it is often used to identify restricted or private areas of a site's contents. The information in the file may therefore help an attacker to map out the site's contents, especially if some of the locations identified are not linked from elsewhere in the site. If the application relies on robots.txt to protect access to these areas, and does not enforce proper access control over them, then this presents a serious vulnerability.]]>
                    false
                    349926987884967936 5245440 TRACE method is enabled http://lessonofpassion.com Information Certain
                    Although this behaviour is apparently harmless in itself, it can sometimes be leveraged to support attacks against other application users. If an attacker can find a way of causing a user to make a TRACE request, and can retrieve the response to that request, then the attacker will be able to capture any sensitive data which is included in the request by the user's browser, for example session cookies or credentials for platform-level authentication. This may exacerbate the impact of other vulnerabilities, such as cross-site scripting.]]>
                    false
                    6173398667601305600 5244416 Cookie without HttpOnly flag set http://www.playforceone.com Low Firm
                    You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
                  • PHPSESSID=e77b423360b29972240373409a7b9625; path=/
                  • The cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                    Play Force One - erotic flash game
                      If you are new here please
                    Username    Password   

                     





                    ]]> false 5053203210042320896 6292224 Private IP addresses disclosed http://www.facebook.com Information Certain
                    Discovering the private addresses used within an organisation can help an attacker in carrying out network-layer attacks aiming to penetrate the organisation's internal infrastructure.]]>
                  • 10.36.172.111
                  • ]]>
                    Login | Facebook
                    ]]>
                    false
                    6406795057725787136 5243904 Cross-domain Referer leakage http://googleads.g.doubleclick.net Information Certain
                    If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

                    You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

                    Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

                    Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
                  • http://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-4063878933780912&output=html&h=90&slotname=2510184792&w=728&lmt=1303090402&flash=10.2.154&url=http%3A%2F%2Fxss.cx%2Fexamples%2Fnetsparker%2Fwww.lessonofpassion.com_80.htm&dt=1303072709444&bpp=4&shv=r20110406&jsv=r20110412&correlator=1303072709696&frm=0&adk=3330096013&ga_vid=1251571925.1303072710&ga_sid=1303072710&ga_hid=1193155842&ga_fc=0&u_tz=-300&u_his=2&u_java=1&u_h=1200&u_w=1920&u_ah=1156&u_aw=1920&u_cd=16&u_nplug=9&u_nmime=44&biw=1063&bih=1016&fu=0&ifi=1&dtd=401&xpc=qyvUNQgXnq&p=http%3A//xss.cx
                  • The response contains the following links to other domains:
                    • http://pagead2.googlesyndication.com/pagead/abglogo/abg-en-100c-ffffff.png
                    • http://pagead2.googlesyndication.com/pagead/images/i.png
                    • http://pagead2.googlesyndication.com/pagead/js/abg.js
                    • http://pagead2.googlesyndication.com/pagead/js/graphics.js
                    • http://www.google.com/url?ct=abg&q=https://www.google.com/adsense/support/bin/request.py%3Fcontact%3Dabg_afc%26url%3Dhttp://xss.cx/examples/netsparker/www.lessonofpassion.com_80.htm%26hl%3Den%26client%3Dca-pub-4063878933780912%26adU%3Dwww.FullSail.edu%26adT%3DImageAd%26gl%3DUS&usg=AFQjCNGisHrTZlF8_YxQLfACqnQBnRf6Ew
                    ]]>
                    (i)
                    Ads by Google
                    ]]>
                    false
                    9222760113724982272 5244160 Cross-domain script include http://caseyofhouston.com Information Certain
                    If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
                  • http://www.google-analytics.com/urchin.js
                  • ]]>
                    Caseyofhouston

                    Caseyofhouston

                    WARNING: This Site Contains Adult Material !
                    If you are under 18 years of age or if it is illegal to view adult material in your community, please leave now. I cannot be held responsible for your actions. I am not acting in any way to send you this information; you are choosing to receive it! Continuing further means that you understand and accept responsibility for your own actions, thus releasing the creator of this web site and myself from all liability. I strongly support parental controls on the Internet. These web pages are not intended to be viewed by minors. Under no circumstances does the creator of this site or myself consent to or has knowledge of any illegal activity committed by anyone associated with this website. NO sexual activities are implied or condoned by myself or the creator of this site. This site does not promote a prostitution ring nor is this advertisement or any content therein an offer for prostitution. Money exchanged is for companionship only and anything beyond that is a choice made between two consenting adults and not contracted for by the site or myself. My visitors have their responsibility for the texts inserted in pages Guestbook, Reviews or Partners.

                    Enter

                       

                    Exit


                    eccie.net


                    Get your free escort web design !
                    ]]>
                    false
                    3148777676832956416 5243904 Cross-domain Referer leakage http://l.yimg.com Information Certain
                    If the resource being requested resides on a different domain, then the Referer header is still generally included in the cross-domain request. If the originating URL contains any sensitive information within its query string, such as a session token, then this information will be transmitted to the other domain. If the other domain is not fully trusted by the application, then this may lead to a security compromise.

                    You should review the contents of the information being transmitted to other domains, and also determine whether those domains are fully trusted by the originating application.

                    Today's browsers may withhold the Referer header in some situations (for example, when loading a non-HTTPS resource from a page that was loaded over HTTPS, or when a Refresh directive is issued), but this behaviour should not be relied upon to protect the originating URL from disclosure.

                    Note also that if users can author content within the application then an attacker may be able to inject links referring to a domain they control in order to capture data from URLs used within the application.]]>
                  • http://l.yimg.com/g/combo/1/3.3.0?j/.HV.A.vTNfS&j/.CM-.DO.A.vPboE&j/.B-.D.A.vTUYw&j/.HX-.CZ.A.vTKhs&j/.B-.T-.CI.A.vUryE&j/.B-.H-.BB.A.vSrSj&j/.B-.N.A.vUrLJ&j/.BF_.D-.C-.F.A.vPGYN&j/.BF_.D.A.vUn5j&j/.HV-.HW-.C-.F.A.vNwZG&j/.HV-.HW.A.vTKjb&j/.B-.R-.C-.F.A.vPfwj&j/.B-.R.A.vTNsW&j/.J-.GA.A.vThpQ&j/.CB-.C-.F.A.vNwWf&j/.CB-.D.A.vSPs3&j/.J-.D.A.vUey7&j/.DN-.BB-.D-.C-.F.A.vU7FQ&j/.HF.HH-.C-.F.A.vTPCb&j/.HG-.HR.A.vSpEJ&j/.HF.HJ.A.vU5p5&j/.HF.HH.A.vUd4U&j/.HF.HL.A.vThWS&j/.HF.HT.A.vTV89&j/.HF.HU.A.vUi9J&j/.HF.HK.A.vUi9J&j/.HF.HM.A.vU3fW&j/.HF.CM-.HI.A.vU1vd&j/.HG-.W.A.vUi9J&j/.HG-.HS.A.vTpss&j/.HG-.BB.A.vUsMm
                  • The response contains the following link to another domain:
                    • http://www.flickr.com/places/United+States/Nevada/Trego
                    ]]>
                    m&&tv&&r=l||r<=v||r>=s)&&i){if(p){o=new h.Anim({node:p,to:{opacity:1},duration:0.15,easing:h.Easing.easeOut});o.run()}if(k){u=new h.Anim({node:k,to:{opacity:0},duration:0.15,easing:h.Easing.easeOut});u.run()}if(k){d(5);i=false}}}catch(n){}});j.on("mouseout",function(q){try{var n=h.one("#photo-story-map-zoom-out"),o=h.one("#photo-story-map-zoom-in"),r=h.one("#photo-story-map-zoom-street");if(n){var l=new h.Anim({node:n,to:{opacity:1},duration:0.15,easing:h.Easing.easeOut});l.run()}if(o){var k=new h.Anim({node:o,to:{opacity:0},duration:0.15,easing:h.Easing.easeOut});k.run()}if(r){var m=new h.Anim({node:r,to:{opacity:0},duration:0.15,easing:h.Easing.easeOut});m.run()}d(6)}catch(p){}});a("")}function f(k){if(!h.Lang.isObject(k)){k={}}var p=h.all("#thetags li");var o=35;var n=o-1;if(p&&p.size()>o){p.each(function(r,q){if(q>n){r.setStyle("display","none")}});var j=h.Node.create("
                  • ");j.set("innerHTML",''+h.transjax.get("photo-sidebar","tags_placeholder_"+(h.config.flickr.photo.is_video?"video":"photo"),p.size()-o)+"");h.one("#thetags").appendChild(j);h.one("#tags-placeholder-link").on("click",function(q){q.halt();j.remove();p.setStyle("display","")})}b();h.on("photo_comments:change",function(t){var s,r,u,q;s=h.one("#comment-count");r=t.total;if(s){u=(r===0)?"comments_zero":((r===1)?"comments_one":"comments_two_or_more");q=''+h.transjax.get("photo-sidebar",u,r);s.set("innerHTML",q);if(r>0){s.removeClass("zero")}else{s.addClass("zero")}c()}});h.on("contact_changer:change",function(r){var q={method:"get",data:"badge=1&magic_cookie="+h.config.flickr.magic_cookie+"&nsid="+h.PhotoData.get(h.config.flickr.photo.id).get("owner"),on:{success:function(u,t,s){h.one(".realname").set("innerHTML",t.responseText);h.one(".realname").addClass("contact-highlight");h.later(1000,this,function(){h.one(".realname").removeClass("contact-highlight")});if(l){l=undefined;h.flapid.track("facegrease_contact_added_link");h.rapidTracker.addModules("contact-changer");h.rapidTracker.beaconClick("contact-changer","add-from-badge")}},failure:function(u,t,s){}}};h.io("/photos_relationship_fragment.gne?cachebust="+(new Date()).getTime(),q)});var m=h.one(".realname");var l;if(m){m.on("click",function(s){if(s.target.hasClass("contact-changer-trigger")){s.preventDefault();if(s.target.hasClass("badge_add_contact")){l=true}else{l=false}var r=h.PhotoData.get(h.config.flickr.photo.id);var q=r.get("owner");h.use("contact-changer",function(t){t.contact_changer.show(q)})}})}h.after("PhotoData:fave_countChange",function(u){var r,t,s,v,q;r=u.target;if(h.config.flickr.photo.id===r.get("id")){t=h.one("#fave-count");s=u.newVal;if(t){v=(s===0)?"favorites_zero":((s===1)?"favorites_one":"favorites_two_or_more");q=''+h.transjax.get("photo-sidebar",v,s);t.set("innerHTML",q);if(s>0){t.removeClass("zero")}else{t.addClass("zero")}c()}}});h.on("photo:galleryAdd",function(){i(1)});h.on("photo:galleryRemove",function(){i(-1)});function i(q){var t,s,u,r;t=h.one("#gallery-count");if(t){s=parseInt(t.getAttribute("data-gallery-count"),10)+q;t.setAttribute("data-gallery-count",s);u=(s===0)?"galleries_zero":((s===1)?"galleries_one":"galleries_two_or_more");r=''+h.transjax.get("photo-sidebar",u,s);t.set("innerHTML",r);if(s>0){t.removeClass("zero")}else{t.addClass("zero")}c()}}c();h.on("click",function(r){var q=h.one("#comments");if(q){q.vis.animScrollIntoView(true,20)}r.preventDefault()},"#comment-count");h.on("click",function(q){h.one("#offensive-form").submit()},"#offensive")}function d(n,m){var l=h.one("#photo-story-map"),q;if(l){if(m){var j=document.createElement("canvas");e=(j.getContext)?j:document.createElement("div");e.id="photo-story-dot";l.one("a").append(e);q=h.one(e);if(typeof G_vmlCanvasManager!=="undefined"&&e&&e.tagName!=="DIV"){q.set("width",16);q.set("height",16);G_vmlCanvasManager.initElement(j);q=h.one(document.getElementById("photo-story-dot"))}}else{q=h.one("#photo-story-dot")}q.set("width",16);q.set("height",16);var i=h.one("#photo-story-image-dot");if(e&&e.tagName!=="DIV"){var o=h.Node.getDOMNode(q).getContext("2d");var p=[7,7,7,7,7,5.5,4.5,3,3,3,2,2,2,3,3,3,3,3];var k=[5,5,5,5,5,4,3.2,2,2,2,1,1,1,2,2,2,2,2];if(n===6){i.removeClass("hide");o.clearRect(0,0,16,16)}else{i.addClass("hide");o.fillStyle="rgba(0, 0, 0, .75)";o.beginPath();o.arc(9,9,p[n],0,2*Math.PI,false);o.fill();o.fillStyle="#fff";o.beginPath();o.arc(8,8,p[n],0,2*Math.PI,false);o.fill();o.fillStyle="#fe40a3";o.beginPath();o.arc(8,8,k[n],0,2*Math.PI,false);o.fill()}}else{if(n===6){i.removeClass("hide")}else{i.addClass("hide")}}}}function a(m){var l=h.one("#photo-story-map");if(l){var j=document.createElement("canvas");j.id="photo-story-copyright";var i=h.one(j);l.one("a").append(i);if(typeof G_vmlCanvasManager!=="undefined"){i.setAttribute("width",300);i.setAttribute("height",100);G_vmlCanvasManager.initElement(j);i=h.one(document.getElementById("photo-story-copyright"))}if(j.getContext){var k=h.Node.getDOMNode(i).getContext("2d");i.setAttribute("width",300);i.setAttribute("height",100);h.BitmapText.addStringToCanvas(m,k,{x:212,y:93,font:h.BitmapTypeSilkscreen,color:"#000"})}}}function c(){var j=h.one("#photo-story-stats"),k=parseInt(j.getStyle("lineHeight"),10),i=j.all(".stat-item");i.removeClass("minimal");if(parseInt(j.getStyle("height"),10)>k){i.addClass("minimal")}}h.photoSidebar=f;h.photoSidebar.story={refresh:function(){b();d(6,true);a("")}}},"0.0.1",{requires:["node","anim","bitmap-text","bitmap-type-silkscreen","event-custom","event-delegate","gallery-flickr-api","node-visibility","photo-data","photo-sidebar-transjax","stylesheet","flapid"]});if(typeof YAHOO=="undefined"){YAHOO={}}if(!YAHOO.ULT){YAHOO.ULT={}}if(!YAHOO.ULT.BEACON){YAHOO.ULT.BEACON="http://geo.yahoo.com/t"}if(!YAHOO.ULT.IMG){YAHOO.ULT.IMG=new Image()}YAHOO.ULT.SRC_SPACEID_KEY="_S";YAHOO.ULT.DEST_SPACEID_KEY="_s";YAHOO.ULT.YLC_LIBSRC=2;YAHOO.ULT.CTRL_C="\x03";YAHOO.ULT.CTRL_D="\x04";YAHOO.ULT.BASE64_STR="ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789._-";(function(){YAHOO.ULT.track_click=function(c,g){if(!c||!g){return c}g._r=YAHOO.ULT.YLC_LIBSRC;var h=[];var d=0;for(var b in g){var a=g[b];if(typeof(a)=="undefined"){a=g[b]=""}if(b.length<1){return c}if(b.length>8){return c}if(b.indexOf(" ")!=-1){return c}if(YAHOO.ULT.has_ctrl_char(b)||YAHOO.ULT.has_ctrl_char(a)){return c}h[d++]=b}h=h.sort();var e=[];for(d=0;d1024){return c}e=";_ylc="+YAHOO.ULT.encode64(e);d=c.indexOf("/*");if(d==-1){d=c.indexOf("/?")}if(d==-1){d=c.indexOf("?")}if(d==-1){return c+e}else{return c.substr(0,d)+e+c.substr(d)}};YAHOO.ULT.beacon_click=function(c,b){if(!b){b=YAHOO.ULT.IMG}if(c){var a=YAHOO.ULT.track_click(YAHOO.ULT.BEACON,c);a+="?t="+Math.random();b.src=a}return true};YAHOO.ULT.has_ctrl_char=function(b){for(var a=0;a>2;g=((k&3)<<4)|(h>>4);e=((h&15)<<2)|(f>>6);d=f&63;if(isNaN(h)){e=d=64}else{if(isNaN(f)){d=64}}a=a+YAHOO.ULT.BASE64_STR.charAt(j)+YAHOO.ULT.BASE64_STR.charAt(g)+YAHOO.ULT.BASE64_STR.charAt(e)+YAHOO.ULT.BASE64_STR.charAt(d);k=h=f="";j=g=e=d=""}while(bMath.round(new Date().getTime()/1000)){return false}if(b.config.flickr.enable_rapid_tracking){b.use("rapid-tracker",function(n){n.rapidTracker.beaconEvent("occult-photo-setDatePosted",{photo_id:h("id"),date_posted:m})})}b.global_dialog.remove_existing_dialog();b.global_dialog.show({loading:true,modal:true});b.flickrAPI.callMethod("flickr.photos.setDates",{photo_id:h("id"),date_posted:m},{success:function(){b.global_dialog.hide();g.set("date_posted",m)}})},getPerms:function(m){if(!h("is_owner")){return false}return h("perms")},setPerms:function(n){var o,m;if(!h("is_owner")){return false}o=h("perms");o.is_public=o.is_public?1:0;o.is_friend=o.is_friend?1:0;o.is_family=o.is_family?1:0;n=n||{};m={};n.photo_id=h("id");n.is_public=typeof n.is_public==="undefined"?o.is_public:(n.is_public?1:0);n.is_friend=n.is_public?0:(typeof n.is_friend==="undefined"?o.is_friend:(n.is_friend?1:0));n.is_family=n.is_public?0:(typeof n.is_family==="undefined"?o.is_family:(n.is_family?1:0));n.perm_comment=(typeof n.perm_comment==="undefined"||parseInt(n.perm_comment,10)<0||parseInt(n.perm_comment,10)>3)?o.perm_comment:parseInt(n.perm_comment,10);n.perm_addmeta=(typeof n.perm_addmeta==="undefined"||parseInt(n.perm_addmeta,10)<0||parseInt(n.perm_addmeta,10)>3)?o.perm_addmeta:parseInt(n.perm_addmeta,10);m.is_public=(o.is_public!==n.is_public);m.is_friend=(o.is_friend!==n.is_friend);m.is_family=(o.is_family!==n.is_family);m.perm_comment=(o.perm_comment!==n.perm_comment);m.perm_addmeta=(o.perm_addmeta!==n.perm_addmeta);if(!m.is_public&&!m.is_friend&&!m.is_family&&!m.perm_comment&&!m.perm_addmeta){return}b.global_dialog.remove_existing_dialog();b.global_dialog.show({loading:true,modal:true});b.flickrAPI.callMethod("flickr.photos.setPerms",n,{success:function(){if(m.is_public){g.set("is_public",n.is_public)}if(m.is_friend){g.set("is_friend",n.is_friend)}if(m.is_family){g.set("is_family",n.is_family)}if(m.perm_comment){g.set("perm_comment",n.perm_comment)}if(m.perm_addmeta){g.set("perm_addmeta",n.perm_addmeta)}b.global_dialog.hide()}})}});l=h("is_video");f=h("dmca_takedown");b.config.flickr.photo=d;b.photoButtonBar.init();b.photoSidebar();if(!l){b.photoNotes.init()}if(b.config.flickr.user.nsid||b.config.flickr.grease_enabled){b.photoComments()}b.photoKeyboardShortcuts();b.photoFilmstrip.init();if(!l&&!f){b.on("contextmenu",function(m){if(m.target.ancestor(".note-content, .note resize",true)){return}b.photoContextMenu.show(m,g)},"#photo-drag-proxy")}if(!f&&(b.photoLightbox||b.touchLightbox)&&b.config.flickr.lightbox.enable&&b.config.flickr.user.useragent_fully_supported){var k,c;c=function(m){if(k||b.contextManager.get()!==""||b.eventAnnotations.get(m,"preventLightbox")||b.eventAnnotations.get(m,"closingLightbox")||m.altKey||m.ctrlKey||m.metaKey||m.shiftKey){return}m.preventDefault();b.eventAnnotations.add(m,{openingLightbox:true});if(b.config.flickr.is_touch_device&&b.config.flickr.enable_advanced_gestures_lightbox){b.touchLightbox.open()}else{b.photoLightbox.open()}b.photoYwaTracking.log_action("Lightbox Icon")};b.one("#nav-bar-lightbox").on("click",c);b.keyboardShortcutManager.register("76",function(m){m.preventDefault();b.fire("flickr-menus:hide");c(m)},"");if(!l){b.on("mousedrag:step",function(m){if(!k&&b.Math.hypotenuse((Math.abs(m.current.clientX-m.start.clientX)),(Math.abs(m.current.clientY-m.start.clientY)))>3){k=true}},"#photo-drag-proxy");b.on("mousedrag:end",function(m){setTimeout(function(){k=undefined},50)},"#photo-drag-proxy");b.on("click",c,"#photo-drag-proxy")}}else{if(b.config.flickr.is_touch_device&&b.config.flickr.enable_advanced_gestures_lightbox){b.touchLightbox.init()}}if(!l&&!f&&b.one("#notes")){b.one("#notes").on("click",function(m){if(b.one("#notes").one(".note-editing, .note-new, .note-saving")||m.target.test(".note-editable, .note-content, .note-editable *, .note-content *")){b.eventAnnotations.add(m,{preventLightbox:true})}});if(!b.config.flickr.is_touch_device){b.one("#notes").on("mouseover",function(m){if(b.one("#notes").one(".note-editing, .note-new, .note-saving")||m.target.test(".note-editable, .note-content, .note-editable *, .note-content *")){b.one("#photo-drag-proxy").removeClass("zoom-trigger")}else{b.one("#photo-drag-proxy").addClass("zoom-trigger")}});b.one("#notes").on("mouseout",function(n){var m=b.one("#photo-drag-proxy");m&&m.addClass("zoom-trigger")})}}b.on("click",function(m){YAHOO.ULT.beacon_click({tm_lnk:"U1101527",tm_ppty:"photos",tm_dmech:"text",tm_net:"yahoo"})},"a.get-pro-link");b.after("PhotoData:is_faveChange",function(n){var m=n.target;if(b.config.flickr.photo.id===m.get("id")){b.config.flickr.photo.is_fave=m.get("is_fave")}});b.after("PhotoData:date_postedChange",function(n){var m=n.target;if(b.config.flickr.photo.id===m.get("id")){if(b.ContextData&&b.ContextData.getContext("photostream")){b.ContextData.invalidate("photostream")}}});b.after("PhotoData:titleChange",function(q){var m=q.target,p,o,n;if(b.config.flickr.photo.id===m.get("id")){if(b.photoLightbox&&b.photoLightbox.getOpenPhoto()&&b.photoLightbox.getOpenPhoto()!==m){}else{p=b.one("body").get("ownerDocument");o=q.newVal||b.transjax.get("photo","untitled");n=b.transjax.get("photo","window_title",o);if(b.Lang.isString(n)){p.set("title",n)}}}});var j=b.one("#referral-welcome-upsell");if(j){function i(){j.removeClass("end");b.later(2,this,function(){j.addClass("end");b.later(90000,this,i)})}i()}}b.photo=a},"0.0.1",{requires:F.config.modules.photo.requires||[],optional:F.config.modules.photo.optional||[]});YUI.add("photo-people-list",function(c){var k;function w(){if(!w.is_init){w.is_init=true;c.delegate("click",h,".photos-people",".add-person-link");c.delegate("click",u,".photos-people",".face-icon-editable");c.delegate("click",D,".photos-people",".delete-icon");c.delegate("mouseover",A,".photos-people","#people-tags li");c.delegate("mouseout",A,".photos-people","#people-tags li");c.on("peopleController:addPersonSuccess",x);c.on("peopleController:addPersonFailure",E);c.on("peopleController:removePersonSuccess",z);c.on("peopleController:removePersonFailure",G);c.on("photoNote:addFaceCancelled",m);c.on("photoNote:addFace",C)}}function h(H){H.preventDefault();r()}function u(J){var H,I;J.preventDefault();H=v(J.target);I=o(H);I.one(".face-icon").addClass("face-icon-adding");c.global_dialog.set_loading(true);c.use("photo-notes",function(K){K.global_dialog.hide();K.photoNotes.addPerson(H)})}function D(I){var H=v(I.target);I.preventDefault();s(H);if(k){k.unskipContact(H)}if(H.n&&c.config.people.skip&&c.config.people.skip[H.n]){delete c.config.people.skip[H.n]}if(H.e&&c.config.people.skip&&c.config.people.skip[H.e]){delete c.config.people.skip[H.e]}c.peopleController.removePerson(c.config.flickr.photo.id,H)}function A(J){var I,H;I=J.currentTarget;if(!c.photoNotes||!I.one(".face-icon-active")){return}switch(J.type){case"mouseover":if(I.test("#people-tags li")){H=v(I);c.photoNotes.highlightPerson(H);A.hovered_node=I}break;case"mouseout":if(A.hovered_node&&!A.hovered_node.contains(J.relatedTarget)){H=v(A.hovered_node);c.photoNotes.unhighlightPerson(H);A.hovered_node=undefined}break}}function x(H,I){if(!o(H)){l(H,!!I)}if(j(H)){g(H)}if(c.one(".photos-people .no-people")){c.one(".photos-people .no-people").setStyle("display","none")}}function E(H,I){if(j(H)){g(H);e(I)}f(H)}function z(J){var I=o(J);if(I){var N,M,H,L,K;N=I.getStyle("height");M=I.getStyle("minHeight");I.setStyle("overflow","hidden");L={height:N};K={height:"1px"};if(c.Lang.isNumber(parseInt(M,10))){L.minHeight=M;K.minHeight="1px"}H=new c.Anim({node:I,from:L,to:K,duration:0.3,easing:c.Easing.easeIn});H.on("end",function(){I.remove();var O=c.all("#people-tags li");if((!O||O.size()===0)&&c.one(".photos-people .no-people")){if(c.one("#people-tagging-ui").getStyle("display")!=="block"){c.one(".photos-people .no-people").setStyle("display","")}}});H.run()}}function G(I){var H=o(I);if(H&&H.hasClass("deleting")){e("It seems there was a problem removing that person from the photo.");y(I)}}function C(H){var I=o(H);if(I){I.one(".face-icon").removeClass("face-icon-adding").addClass("face-icon-active")}}function m(H){var I=o(H);if(I){I.one(".face-icon").removeClass("face-icon-adding")}}function q(H){if(k&&c.peopleController.validateContact(k)){b({e:k.getQuery()})}}function f(H){if(k){k.unskipContact(H)}if(H.n&&c.config.people.skip&&c.config.people.skip[H.n]){delete c.config.people.skip[H.n]}if(H.e&&c.config.people.skip&&c.config.people.skip[H.e]){delete c.config.people.skip[H.e]}}function o(H){var I=B(H);return c.one('#people-tags li[data-person-n="'+I+'"], #people-tags li[data-person-e="'+I+'"]')}function e(H){c.global_dialog.create_alert_dialog(H,c.global_dialog.hide,{width:280})}function v(H){H=H.test("#people-tags li")?H:H.ancestor("#people-tags li");return(!H)?undefined:{n:H?H.getAttribute("data-person-n"):undefined,e:H?a(H.getAttribute("data-person-e")):undefined,i:H?H.one("img").get("src"):undefined,u:H?H.one(".username").get("innerHTML"):undefined,r:H?H.one(".realname").get("innerHTML"):undefined}}function B(H){return H.n?H.n:n(H.e)}function i(H){return H.e?n(H.e):undefined}function j(I){var K,L,J,H;K=B(I);L=c.all(".photos-people .badge-spinner");if(L&&L.size&&L.size()){L.some(function(M){if(M.getAttribute("data-person-n")===K||M.getAttribute("data-person-e")===K){J=M;return true}})}if(!J){H=i(I);if(H){if(L&&L.size&&L.size()){L.some(function(M){if(M.getAttribute("data-person-e")===H){J=M;return true}})}}else{}}return J}function t(H){var I,J;if(!j(H)){I=B(H);J=c.Node.create('
                    "+c.transjax.get("photo-people","adding")+"
                    ");c.one(".photos-people").insertBefore(J,c.one("#people-tagging-ui-container"))}}function g(H){var I=j(H);if(I){I.remove()}}function s(H){var I=o(H);I.addClass("deleting");I.one(".controls").append(''+c.transjax.get("photo-people","deleting")+"")}function y(H){var I=o(H);I.removeClass("deleting");I.one(".controls .deleting").remove()}function b(H){if(H){t(H);if(k){k.clear(true);k.skipContact(H)}c.peopleController.addPerson(c.config.flickr.photo.id,H)}}function a(H){return c.BoSelecta.unsanitizeString(H)}function n(H){return c.BoSelecta.sanitizeString(H)}function l(L,O,P,K){var H,J,Q,M,N,I;H=c.one("#people-tags");if(!H){H=c.Node.create('
                      ');c.one(".photos-people").insertBefore(H,c.one("#people-tagging-ui-container"))}if(!c.config.flickr.user.useragent_fully_supported&&!c.config.flickr.user.useragent_partially_supported){K=true}J=B(L);if(L.n){Q=c.BoSelecta.sanitizeString(L.u);if(Q.length>20){Q=Q.substr(0,20)+"..."}}else{if(L.e){M=c.BoSelecta.sanitizeString(L.e);if(M.length>20){M=M.substr(0,20)+"\u2026"}}}N=c.config.flickr.photo.ownersUrl+"people/"+(L.a?L.a:L.n)+"/";I="
                      false
                      1748358380110515200 5244416 Cookie without HttpOnly flag set http://wt.xxxmatch.com Information Certain
                      You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
                    • WT_ID=173.193.214.243-1303071690.193057::8A2E6862C2F5E3A952443BAC20B06970; expires=Wed, 14-Apr-2021 20:21:30 GMT; path=/
                    • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                      false
                      7745307044218376192 3145984 Cleartext submission of password http://www.lessonofpassion.com High Certain
                    • http://www.lessonofpassion.com/user.php?type=login
                    • The form contains the following password field:
                      • password
                      ]]>
                      Lesson of Passion - \'\"--></style></script><script>alert(0x000146)</script> erotic flash games


                      Username   Password  

                      If you want to post comments and gain access to special features please your account.
                      \'\"--> games
                      ]]> false 2255401634673746944 5244416 Cookie without HttpOnly flag set http://ad.yieldmanager.com Information Certain
                      You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
                    • ih="b!!!!'!*loT!!!!#<vl)_!/_KY!!!!#<vl)T!/hOD!!!!#<vl,@!/h[p!!!!#<vl)["; path=/; expires=Tue, 16-Apr-2013 20:41:33 GMT
                    • bh="b!!!!'!!-yu!!!!#<vl)W!!.+B!!!!#<vl)X!#2YX!!!!$<vl,@!#5[N!!!!#<vl)_"; path=/; expires=Tue, 16-Apr-2013 20:41:33 GMT
                    • vuday1=a0+i7fy5!HoyOxBfy5!H!1Z'Ha<A.]; path=/; expires=Mon, 18-Apr-2011 00:00:00 GMT
                    • pv1="b!!!!(!#M*E!,Y+@!$Xwq!/h[p!%:3<!!!!$!?5%!(/4f4!w1K*!%4fo!'i8L!'>d6~~~~~<vl)[<wjgu~!#h(/!r1bF!$W<(!/hOD!%9!@!!!!$!?5%!(/4f4!w1K*!$>jN!'b=q!'=33~~~~~<vl,@=#'nJ~!#h(1!r1bF!$W<(!/hOD!%9!@!!!!$!?5%!(/4f4!w1K*!$>jN!'b=q!'=33~~~~~<vl,@=#'nJ~!#h(3!r1bF!$W<(!/hOD!%9!@!!!!$!?5%!(/4f4!w1K*!$>jN!'b=q!'=33~~~~~<vl,@=#'nJ~!#h(5!r1bF!$W<(!/hOD!%9!@!!!!$!?5%!(/4f4!w1K*!$>jN!'b=q!'=33~~~~~<vl,@=#'nJ~"; path=/; expires=Tue, 16-Apr-2013 20:41:33 GMT
                    • BX=8khj7j56qmjsh&b=4&s=dk&t=106; path=/; expires=Tue, 19-Jan-2038 03:14:07 GMT
                    • liday1=N%OfmZ-_V5!1Z'HTcz$d; path=/; expires=Mon, 18-Apr-2011 00:00:00 GMT
                    • The cookies do not appear to contain session tokens, which may reduce the risk associated with this issue. You should review the contents of the cookies to determine their function.]]>
                      d6~~~~~ d6~~~~~jN!'b=q!'=33~~~~~jN!'b=q!'=33~~~~~jN!'b=q!'=33~~~~~jN!'b=q!'=33~~~~~'); var rm_data = new Object(); rm_data.creative_id = 7857262; rm_data.offer_type = 14; rm_data.entity_id = 161520; document.write(''); if (window.rm_crex_data) {rm_crex_data.push(7857262);}]]> false
                      6846753833490033664 5244416 Cookie without HttpOnly flag set http://books.google.com Information Certain
                      You should be aware that the restrictions imposed by the HttpOnly flag can potentially be circumvented in some circumstances, and that numerous other serious attacks can be delivered by client-side script injection, aside from simple cookie stealing.]]>
                    • PREF=ID=0772c9d5ef13aaaf:U=d212295d0f1573ee:TM=1303071569:LM=1303072453:S=1V1Ldz25cOQUSFnc; expires=Tue, 16-Apr-2013 20:34:13 GMT; path=/; domain=.google.com
                    • The cookie does not appear to contain a session token, which may reduce the risk associated with this issue. You should review the contents of the cookie to determine its function.]]>
                      Google Books

                      Researching a topic?

                      Search the latest index of the world's books. Find millions of great books you can preview or read for free.

                      Browse books and magazines »

                      New! Shop at the Google eBookstore

                      Go to the Google eBookstore for over 3 million eBooks to read on the Web, Android, iPhone, iPad, Sony and Nook.

                      Go to the Google eBookstore now »
                      Google has reached a groundbreaking agreement with authors and publishers.
                      ]]>
                      false
                      1602843451733492736 5244160 Cross-domain script include http://www.youtube.com Information Certain
                      If you include a script from an external domain, then you are trusting that domain with the data and functionality of your application, and you are trusting the domain's own security to prevent an attacker from modifying the script to perform malicious actions within your application.]]>
                    • http://s.ytimg.com/yt/jsbin/www-core-vfl8PDcRe.js
                    • ]]>
                      YouTube - Broadcast Yourself.
                      Sort by:

                      Search results for

                      Alert icon
                      We have updated the search options. Let us guide you through the changes.
                      Sort by
                      No video results for “”


                      Queue (0) Return to active list
                        1. Your queue is empty. Add videos to your queue using this button:
                          or sign in to load a different list.
                        Loading...Loading...Saving...
                        ]]>
                        false
                        4432325339212354560 6292224 Private IP addresses disclosed http://connect.facebook.net Information Certain
                        Discovering the private addresses used within an organisation can help an attacker in carrying out network-layer attacks aiming to penetrate the organisation's internal infrastructure.]]>
                      1. 10.28.40.192
                      2. ]]>
                        -1)||(window.location.search.indexOf('session=')>-1)||(window.location.search.indexOf('signed_request=')>-1)||(window.name.indexOf('iframe_canvas')>-1)||(window.name.indexOf('app_runner')>-1)),_https:(window.name.indexOf('_fb_https')>-1),_domain:{api:'https://api.facebook.com/',api_read:'https://api-read.facebook.com/',cdn:'http://static.ak.fbcdn.net/',https_cdn:'https://s-static.ak.fbcdn.net/',graph:'https://graph.facebook.com/',staticfb:'http://static.ak.facebook.com/',https_staticfb:'https://s-static.ak.facebook.com/',www:window.location.protocol+'//www.facebook.com/',https_www:'https://www.facebook.com/'},_locale:null,_localeIsRtl:false,getDomain:function(a){switch(a){case 'api':return FB._domain.api;case 'api_read':return FB._domain.api_read;case 'cdn':return (window.location.protocol=='https:'||FB._https)?FB._domain.https_cdn:FB._domain.cdn;case 'graph':return FB._domain.graph;case 'staticfb':return FB._https?FB._domain.https_staticfb:FB._domain.staticfb;case 'https_staticfb':return FB._domain.https_staticfb;case 'www':return FB._https?FB._domain.https_www:FB._domain.www;case 'https_www':return FB._domain.https_www;}},copy:function(d,c,b,e){for(var a in c)if(b||typeof d[a]==='undefined')d[a]=e?e(c[a]):c[a];return d;},create:function(c,h){var e=window.FB,d=c?c.split('.'):[],a=d.length;for(var b=0;b');e.root.innerHTML='';f=true;window.setTimeout(function(){e.root.innerHTML=b;e.onInsert&&e.onInsert(e.root.firstChild);},0);}else{var c=document.createElement('iframe');c.id=e.id;c.name=e.name;c.onload=FB.Content._callbacks[a];c.scrolling='no';c.style.border='none';c.style.overflow='hidden';if(e.title)c.title=e.title;if(e.className)c.className=e.className;if(e.height)c.style.height=e.height+'px';if(e.width)c.style.width=e.width+'px';e.root.appendChild(c);f=true;c.src=e.url;e.onInsert&&e.onInsert(c);}},submitToTarget:function(c,b){var a=document.createElement('form');a.action=c.url;a.target=c.target;a.method=(b)?'GET':'POST';FB.Content.appendHidden(a);FB.Array.forEach(c.params,function(f,e){if(f!==null&&f!==undefined){var d=document.createElement('input');d.name=e;d.value=f;a.appendChild(d);}});a.submit();a.parentNode.removeChild(a);}}); FB.provide('Flash',{_minVersions:[[9,0,159,0],[10,0,22,87]],_swfPath:'swf/XdComm.swf',_callbacks:[],init:function(){if(FB.Flash._init)return;FB.Flash._init=true;window.FB_OnFlashXdCommReady=function(){FB.Flash._ready=true;for(var d=0,e=FB.Flash._callbacks.length;d'+''+''+'');FB.Content.appendHidden(b);},hasMinVersion:function(){if(typeof FB.Flash._hasMinVersion==='undefined'){var i,a,b,h=[];try{i=new ActiveXObject('ShockwaveFlash.ShockwaveFlash').GetVariable('$version');}catch(j){if(navigator.mimeTypes.length>0){var mimeType='application/x-shockwave-flash';if(navigator.mimeTypes[mimeType].enabledPlugin){var name='Shockwave Flash';i=(navigator.plugins[name+' 2.0']||navigator.plugins[name]).description;}}}if(i){var f=i.replace(/\D+/g,',').match(/^,?(.+),?$/)[1].split(',');for(a=0,b=f.length;ag[c])break majorVersion;}};}return FB.Flash._hasMinVersion;},onReady:function(a){FB.Flash.init();if(FB.Flash._ready){window.setTimeout(a,0);}else FB.Flash._callbacks.push(a);}}); if(!this.JSON)this.JSON={};(function(){function f(n){return n<10?'0'+n:n;}if(typeof Date.prototype.toJSON!=='function'){Date.prototype.toJSON=function(key){return isFinite(this.valueOf())?this.getUTCFullYear()+'-'+f(this.getUTCMonth()+1)+'-'+f(this.getUTCDate())+'T'+f(this.getUTCHours())+':'+f(this.getUTCMinutes())+':'+f(this.getUTCSeconds())+'Z':null;};String.prototype.toJSON=Number.prototype.toJSON=Boolean.prototype.toJSON=function(key){return this.valueOf();};}var cx=/[\u0000\u00ad\u0600-\u0604\u070f\u17b4\u17b5\u200c-\u200f\u2028-\u202f\u2060-\u206f\ufeff\ufff0-\uffff]/g,escapable=/[\\\"\x00-\x1f\x7f-\x9f\u00ad\u0600-\u0604\u070f\u17b4\u17b5\u200c-\u200f\u2028-\u202f\u2060-\u206f\ufeff\ufff0-\uffff]/g,gap,indent,meta={'\b':'\\b','\t':'\\t','\n':'\\n','\f':'\\f','\r':'\\r','"':'\\"','\\':'\\\\'},rep;function quote(string){escapable.lastIndex=0;return escapable.test(string)?'"'+string.replace(escapable,function(a){var c=meta[a];return typeof c==='string'?c:'\\u'+('0000'+a.charCodeAt(0).toString(16)).slice(-4);})+'"':'"'+string+'"';}function str(key,holder){var i,k,v,length,mind=gap,partial,value=holder[key];if(value&&typeof value==='object'&&typeof value.toJSON==='function')value=value.toJSON(key);if(typeof rep==='function')value=rep.call(holder,key,value);switch(typeof value){case 'string':return quote(value);case 'number':return isFinite(value)?String(value):'null';case 'boolean':case 'null':return String(value);case 'object':if(!value)return 'null';gap+=indent;partial=[];if(Object.prototype.toString.apply(value)==='[object Array]'){length=value.length;for(i=0;i-1?'&':'?')+FB.QS.encode(e));if(h.length>2000)throw new Error('JSONP only support a maximum of 2000 bytes of input.');FB.ApiServer._callbacks[c]=function(i){a&&a(i);delete FB.ApiServer._callbacks[c];g.parentNode.removeChild(g);};g.src=h;document.getElementsByTagName('head')[0].appendChild(g);},flash:function(b,e,c,d,a){if(!window.FB_OnXdHttpResult)window.FB_OnXdHttpResult=function(g,f){FB.ApiServer._callbacks[g](decodeURIComponent(f));};FB.Flash.onReady(function(){var h=FB.getDomain(b)+e,f=FB.QS.encode(d);if(c==='get'){if(h.length+f.length>2000){if(b==='graph')d.method='get';c='post';f=FB.QS.encode(d);}else{h+=(h.indexOf('?')>-1?'&':'?')+f;f='';}}else if(c!=='post'){if(b==='graph')d.method=c;c='post';f=FB.QS.encode(d);}var g=document.XdComm.sendXdHttpRequest(c.toUpperCase(),h,f,null);FB.ApiServer._callbacks[g]=function(i){a&&a(FB.JSON.parse(i));delete FB.ApiServer._callbacks[g];};});}}); FB.provide('EventProvider',{subscribers:function(){if(!this._subscribersMap)this._subscribersMap={};return this._subscribersMap;},subscribe:function(b,a){var c=this.subscribers();if(!c[b]){c[b]=[a];}else c[b].push(a);},unsubscribe:function(b,a){var c=this.subscribers()[b];FB.Array.forEach(c,function(e,d){if(e==a)c[d]=null;});},monitor:function(d,a){if(!a()){var b=this,c=function(){if(a.apply(a,arguments))b.unsubscribe(d,c);};this.subscribe(d,c);}},clear:function(a){delete this.subscribers()[a];},fire:function(){var a=Array.prototype.slice.call(arguments),b=a.shift();FB.Array.forEach(this.subscribers()[b],function(c){if(c)c.apply(this,a);});}});FB.provide('Event',FB.EventProvider); FB.provide('XD',{_origin:null,_transport:null,_callbacks:{},_forever:{},_xdProxyUrl:'connect/xd_proxy.php',init:function(a){if(FB.XD._origin)return;if(window.addEventListener&&!window.attachEvent&&window.postMessage){FB.XD._origin=(window.location.protocol+'//'+window.location.host+'/'+FB.guid());FB.XD.PostMessage.init();FB.XD._transport='postmessage';}else if(!a&&FB.Flash.hasMinVersion()){if(document.getElementById('fb-root')){var b=document.domain;if(b=='facebook.com')b=window.location.host;FB.XD._origin=(window.location.protocol+'//'+b+'/'+FB.guid());FB.XD.Flash.init();FB.XD._transport='flash';}else{if(FB.log)FB.log('missing fb-root, defaulting to fragment-based xdcomm');FB.XD._transport='fragment';FB.XD.Fragment._channelUrl=a||window.location.toString();}}else{FB.XD._transport='fragment';FB.XD.Fragment._channelUrl=a||window.location.toString();}},resolveRelation:function(b){var g,d,f=b.split('.'),e=window;for(var a=0,c=f.length;a0)return 'javascript:false;//';var f=FB.getDomain('cdn')+FB.XD._xdProxyUrl+'#',c=FB.guid();if(FB.XD._transport=='fragment'){f=FB.XD.Fragment._channelUrl;var d=f.indexOf('#');if(d>0)f=f.substr(0,d);f+=((f.indexOf('?')<0?'?':'&')+FB.XD.Fragment._magic+'#?=&');}if(b)FB.XD._forever[c]=true;FB.XD._callbacks[c]=a;return f+FB.QS.encode({cb:c,origin:FB.XD._origin,relation:e||'opener',transport:FB.XD._transport});},recv:function(b){if(typeof b=='string')b=FB.QS.decode(b);var a=FB.XD._callbacks[b.cb];if(!FB.XD._forever[b.cb])delete FB.XD._callbacks[b.cb];a&&a(b);},PostMessage:{init:function(){var a=FB.XD.PostMessage.onMessage;window.addEventListener?window.addEventListener('message',a,false):window.attachEvent('onmessage',a);},onMessage:function(event){FB.XD.recv(event.data);}},Flash:{init:function(){FB.Flash.onReady(function(){document.XdComm.postMessage_init('FB.XD.Flash.onMessage',FB.XD._origin);});},onMessage:function(a){FB.XD.recv(decodeURIComponent(a));}},Fragment:{_magic:'fb_xd_fragment',checkAndDispatch:function(){var b=window.location.toString(),a=b.substr(b.indexOf('#')+1),c=b.indexOf(FB.XD.Fragment._magic);if(c>0){FB.init=FB.getLoginStatus=FB.api=function(){};document.documentElement.style.display='none';FB.XD.resolveRelation(FB.QS.decode(a).relation).FB.XD.recv(a);}}}});FB.XD.Fragment.checkAndDispatch(); FB.provide('Arbiter',{_canvasProxyUrl:'connect/canvas_proxy.php',inform:function(c,e,f,b){if(FB.Canvas.isTabIframe()){var d=FB.JSON.stringify({method:c,params:e});if(window.postMessage){FB.XD.resolveRelation(f||'parent').postMessage(d,'*');return;}else try{window.opener.postMessage(d);return;}catch(a){}}var h=(FB.getDomain((b?'https_':'')+'staticfb')+FB.Arbiter._canvasProxyUrl+'#'+FB.QS.encode({method:c,params:FB.JSON.stringify(e||{}),relation:f}));var g=FB.Content.appendHidden('');FB.Content.insertIframe({url:h,root:g,width:1,height:1,onload:function(){setTimeout(function(){g.parentNode.removeChild(g);},10);}});}}); FB.provide('Canvas',{_timer:null,_lastSize:{},_pageInfo:{clientWidth:0,clientHeight:0,scrollLeft:0,scrollTop:0,offsetLeft:0,offsetTop:0},_pageInfoPollInterval:200,init:function(){var d=FB.Dom.getViewportInfo();FB.Canvas._pageInfo.clientWidth=d.width;FB.Canvas._pageInfo.clientHeight=d.height;var c='top.frames['+window.name+']';var a=FB.XD.handler(function(e){if(e.type=='pageInfo.update'){FB.Canvas._pageInfo.clientWidth=e.clientWidth;FB.Canvas._pageInfo.clientHeight=e.clientHeight;FB.Canvas._pageInfo.scrollLeft=e.scrollLeft;FB.Canvas._pageInfo.scrollTop=e.scrollTop;FB.Canvas._pageInfo.offsetLeft=e.offsetLeft;FB.Canvas._pageInfo.offsetTop=e.offsetTop;FB.Event.fire('canvas.pageInfoChange',FB.Canvas._pageInfo);}},c,true);var b={channelUrl:a,frame:window.name,updateInterval:FB.Canvas._pageInfoPollInterval};FB.Arbiter.inform('pollPageInfo',b,'top');},setSize:function(b){if(typeof b!="object")b={};b=FB.copy(b||{},FB.Canvas._computeContentSize());b=FB.copy(b,{frame:window.name||'iframe_canvas'});if(FB.Canvas._lastSize[b.frame]){var a=FB.Canvas._lastSize[b.frame].height;if(FB.Canvas._lastSize[b.frame].width==b.width&&(b.height<=a&&(Math.abs(a-b.height)<=16)))return false;}FB.Canvas._lastSize[b.frame]=b;FB.Arbiter.inform('setSize',b);return true;},scrollTo:function(a,b){FB.Arbiter.inform('scrollTo',{frame:window.name||'iframe_canvas',x:a,y:b});},setAutoResize:function(b,a){if(a===undefined&&typeof b=="number"){a=b;b=true;}if(b===undefined||b){if(FB.Canvas._timer===null)FB.Canvas._timer=window.setInterval(FB.Canvas.setSize,a||100);FB.Canvas.setSize();}else if(FB.Canvas._timer!==null){window.clearInterval(FB.Canvas._timer);FB.Canvas._timer=null;}},isTabIframe:function(){return (window.name.indexOf('app_runner_')===0);},getPageInfo:function(){return FB.Canvas._pageInfo;},_computeContentSize:function(){var a=document.body,c=document.documentElement,d=0,b=Math.max(Math.max(a.offsetHeight,a.scrollHeight)+a.offsetTop,Math.max(c.offsetHeight,c.scrollHeight)+c.offsetTop);if(a.offsetWidthd)d=f;});if(c.clientLeft>0)d+=(c.clientLeft*2);if(c.clientTop>0)b+=(c.clientTop*2);return {height:b,width:d};}}); FB.provide('Intl',{_punctCharClass:('['+'.!?'+'\u3002'+'\uFF01'+'\uFF1F'+'\u0964'+'\u2026'+'\u0EAF'+'\u1801'+'\u0E2F'+'\uFF0E'+']'),_endsInPunct:function(a){if(typeof a!='string')return false;return a.match(new RegExp(FB.Intl._punctCharClass+'['+')"'+"'"+'\u00BB'+'\u0F3B'+'\u0F3D'+'\u2019'+'\u201D'+'\u203A'+'\u3009'+'\u300B'+'\u300D'+'\u300F'+'\u3011'+'\u3015'+'\u3017'+'\u3019'+'\u301B'+'\u301E'+'\u301F'+'\uFD3F'+'\uFF07'+'\uFF09'+'\uFF3D'+'\s'+']*$'));},_tx:function(d,a){if(a!==undefined)if(typeof a!='object'){FB.log('The second arg to FB.Intl._tx() must be an Object for '+'tx('+d+', ...)');}else{var c;for(var b in a)if(a.hasOwnProperty(b)){if(FB.Intl._endsInPunct(a[b])){c=new RegExp('\{'+b+'\}'+FB.Intl._punctCharClass+'*','g');}else c=new RegExp('\{'+b+'\}','g');d=d.replace(c,a[b]);}}return d;},tx:function(b,a){function c(e,d){void(0);}if(!FB.Intl._stringTable)return null;return FBIntern.Intl._tx(FB.Intl._stringTable[b],a);}}); FB.provide('String',{trim:function(a){return a.replace(/^\s*|\s*$/g,'');},format:function(a){if(!FB.String.format._formatRE)FB.String.format._formatRE=/(\{[^\}^\{]+\})/g;var b=arguments;return a.replace(FB.String.format._formatRE,function(e,d){var c=parseInt(d.substr(1),10),f=b[c+1];if(f===null||f===undefined)return '';return f.toString();});},escapeHTML:function(b){var a=document.createElement('div');a.appendChild(document.createTextNode(b));return a.innerHTML.replace(/"/g,'"').replace(/'/g,''');},quote:function(c){var a=/["\\\x00-\x1f\x7f-\x9f]/g,b={'\b':'\\b','\t':'\\t','\n':'\\n','\f':'\\f','\r':'\\r','"':'\\"','\\':'\\\\'};return a.test(c)?'"'+c.replace(a,function(d){var e=b[d];if(e)return e;e=d.charCodeAt();return '\\u00'+Math.floor(e/16).toString(16)+(e%16).toString(16);})+'"':'"'+c+'"';}}); FB.provide('UA',{ie:function(){return FB.UA._populate()||this._ie;},firefox:function(){return FB.UA._populate()||this._firefox;},opera:function(){return FB.UA._populate()||this._opera;},safari:function(){return FB.UA._populate()||this._safari;},chrome:function(){return FB.UA._populate()||this._chrome;},windows:function(){return FB.UA._populate()||this._windows;},osx:function(){return FB.UA._populate()||this._osx;},linux:function(){return FB.UA._populate()||this._linux;},iphone:function(){return FB.UA._populate()||this._iphone;},_populated:false,_populate:function(){if(FB.UA._populated)return;FB.UA._populated=true;var a=/(?:MSIE.(\d+\.\d+))|(?:(?:Firefox|GranParadiso|Iceweasel).(\d+\.\d+))|(?:Opera(?:.+Version.|.)(\d+\.\d+))|(?:AppleWebKit.(\d+(?:\.\d+)?))/.exec(navigator.userAgent);var c=/(Mac OS X)|(Windows)|(Linux)/.exec(navigator.userAgent);var b=/\b(iPhone|iP[ao]d)/.exec(navigator.userAgent);if(a){FB.UA._ie=a[1]?parseFloat(a[1]):NaN;if(FB.UA._ie>=8&&!window.HTMLCollection)FB.UA._ie=7;FB.UA._firefox=a[2]?parseFloat(a[2]):NaN;FB.UA._opera=a[3]?parseFloat(a[3]):NaN;FB.UA._safari=a[4]?parseFloat(a[4]):NaN;if(FB.UA._safari){a=/(?:Chrome\/(\d+\.\d+))/.exec(navigator.userAgent);FB.UA._chrome=a&&a[1]?parseFloat(a[1]):NaN;}else FB.UA._chrome=NaN;}else FB.UA._ie=FB.UA._firefox=FB.UA._opera=FB.UA._chrome=FB.UA._safari=NaN;if(c){FB.UA._osx=!!c[1];FB.UA._windows=!!c[2];FB.UA._linux=!!c[3];}else FB.UA._osx=FB.UA._windows=FB.UA._linux=false;FB.UA._iphone=b;}}); FB.provide('Dom',{containsCss:function(c,a){var b=' '+c.className+' ';return b.indexOf(' '+a+' ')>=0;},addCss:function(b,a){if(!FB.Dom.containsCss(b,a))b.className=b.className+' '+a;},removeCss:function(b,a){if(FB.Dom.containsCss(b,a)){b.className=b.className.replace(a,'');FB.Dom.removeCss(b,a);}},getStyle:function(a,c){var d=false,b=a.style;if(a.currentStyle){FB.Array.forEach(c.match(/\-([a-z])/g),function(e){c=c.replace(e,e.substr(1,1).toUpperCase());});d=a.currentStyle[c];}else{FB.Array.forEach(c.match(/[A-Z]/g),function(e){c=c.replace(e,'-'+e.toLowerCase());});if(window.getComputedStyle){d=document.defaultView.getComputedStyle(a,null).getPropertyValue(c);if(c=='background-position-y'||c=='background-position-x')if(d=='top'||d=='left')d='0px';}}if(c=='opacity'){if(a.filters&&a.filters.alpha)return d;return d*100;}return d;},setStyle:function(a,c,d){var b=a.style;if(c=='opacity'){if(d>=100)d=99.999;if(d<0)d=0;b.opacity=d/100;b.MozOpacity=d/100;b.KhtmlOpacity=d/100;if(a.filters)if(a.filters.alpha==undefined){a.filter="alpha(opacity="+d+")";}else a.filters.alpha.opacity=d;}else b[c]=d;},addScript:function(b){var a=document.createElement('script');a.type="text/javascript";a.src=b;return document.getElementsByTagName('head')[0].appendChild(a);},addCssRules:function(e,c){if(!FB.Dom._cssRules)FB.Dom._cssRules={};var a=true;FB.Array.forEach(c,function(f){if(!(f in FB.Dom._cssRules)){a=false;FB.Dom._cssRules[f]=true;}});if(a)return;if(!FB.UA.ie()){var d=document.createElement('style');d.type='text/css';d.textContent=e;document.getElementsByTagName('head')[0].appendChild(d);}else try{document.createStyleSheet().cssText=e;}catch(b){if(document.styleSheets[0])document.styleSheets[0].cssText+=e;}},getViewportInfo:function(){var a=(document.documentElement&&document.compatMode=='CSS1Compat')?document.documentElement:document.body;return {scrollTop:a.scrollTop,scrollLeft:a.scrollLeft,width:self.innerWidth?self.innerWidth:a.clientWidth,height:self.innerHeight?self.innerHeight:a.clientHeight};},ready:function(a){if(FB.Dom._isReady){a();}else FB.Event.subscribe('dom.ready',a);}});(function(){function domReady(){FB.Dom._isReady=true;FB.Event.fire('dom.ready');FB.Event.clear('dom.ready');}if(FB.Dom._isReady||document.readyState=='complete')return domReady();if(document.addEventListener){document.addEventListener('DOMContentLoaded',domReady,false);}else if(document.attachEvent)document.attachEvent('onreadystatechange',domReady);if(FB.UA.ie()&&window===top)(function(){try{document.documentElement.doScroll('left');}catch(error){setTimeout(arguments.callee,0);return;}domReady();})();var oldonload=window.onload;window.onload=function(){domReady();if(oldonload)if(typeof oldonload=='string'){eval(oldonload);}else oldonload();};})(); FB.provide('Dialog',{_loaderEl:null,_stack:[],_active:null,_findRoot:function(a){while(a){if(FB.Dom.containsCss(a,'fb_dialog'))return a;a=a.parentNode;}},_showLoader:function(a,c){if(!FB.Dialog._loaderEl){c=parseInt(c,10);c=c?c:460;FB.Dialog._loaderEl=FB.Dialog._findRoot(FB.Dialog.create({content:('
                        '+' '+'
                        '+'
                        '+' Facebook'+'
                        '+'
                        '+'
                        '+''),width:c}));}if(!a)a=function(){};var b=FB.$('fb_dialog_loader_close');FB.Dom.removeCss(b,'fb_hidden');b.onclick=function(){FB.Dialog._hideLoader();a();};FB.Dialog._makeActive(FB.Dialog._loaderEl);},_hideLoader:function(){if(FB.Dialog._loaderEl&&FB.Dialog._loaderEl==FB.Dialog._active)FB.Dialog._loaderEl.style.top='-10000px';},_makeActive:function(a){FB.Dialog._lowerActive();FB.Dialog._active=a;FB.Dialog._centerActive(FB.Canvas.getPageInfo());},_lowerActive:function(){if(!FB.Dialog._active)return;FB.Dialog._active.style.top='-10000px';FB.Dialog._active=null;},_removeStacked:function(a){FB.Dialog._stack=FB.Array.filter(FB.Dialog._stack,function(b){return b!=a;});},_centerActive:function(f){var a=FB.Dialog._active;if(!a)return;var h=FB.Dom.getViewportInfo();var i=parseInt(a.offsetWidth,10);var b=parseInt(a.offsetHeight,10);var c=h.scrollLeft+(h.width-i)/2;var e=(h.height-b)/2.5;if(cd)g=d;g+=h.scrollTop;a.style.left=(c>0?c:0)+'px';a.style.top=(g>0?g:0)+'px';},create:function(e){e=e||{};if(e.loader)FB.Dialog._showLoader(e.onClose,e.loaderWidth);var d=document.createElement('div'),c=document.createElement('div'),a='fb_dialog';if(e.closeIcon&&e.onClose){var b=document.createElement('a');b.className='fb_dialog_close_icon';b.onclick=e.onClose;d.appendChild(b);}if(FB.UA.ie()){a+=' fb_dialog_legacy';FB.Array.forEach(['vert_left','vert_right','horiz_top','horiz_bottom','top_left','top_right','bottom_left','bottom_right'],function(g){var h=document.createElement('span');h.className='fb_dialog_'+g;d.appendChild(h);});}else a+=' fb_dialog_advanced';if(e.content)FB.Content.append(e.content,c);d.className=a;var f=parseInt(e.width,10);if(!isNaN(f))d.style.width=f+'px';c.className='fb_dialog_content';d.appendChild(c);FB.Content.append(d);if(e.visible)FB.Dialog.show(d);return c;},show:function(a){a=FB.Dialog._findRoot(a);if(a){FB.Dialog._removeStacked(a);FB.Dialog._hideLoader();FB.Dialog._makeActive(a);FB.Dialog._stack.push(a);}},remove:function(a){a=FB.Dialog._findRoot(a);if(a){var b=FB.Dialog._active==a;FB.Dialog._removeStacked(a);FB.Dialog._hideLoader();if(b)if(FB.Dialog._stack.length>0){FB.Dialog.show(FB.Dialog._stack.pop());}else FB.Dialog._lowerActive();window.setTimeout(function(){a.parentNode.removeChild(a);},3000);}}}); FB.provide('',{ui:function(e,b){if(!e.method){FB.log('"method" is a required parameter for FB.ui().');return;}var a=FB.UIServer.prepareCall(e,b);if(!a)return;var d=a.params.display;if(d=='dialog')d='iframe';var c=FB.UIServer[d];if(!c){FB.log('"display" must be one of "popup", "iframe" or "hidden".');return;}c(a);}});FB.provide('UIServer',{Methods:{},_active:{},_defaultCb:{},_resultToken:'"xxRESULTTOKENxx"',genericTransform:function(a){if(a.params.display=='dialog'||a.params.display=='iframe'){a.params.display='iframe';a.params.channel=FB.UIServer._xdChannelHandler(a.id,'parent.parent');}return a;},prepareCall:function(h,b){var g=h.method.toLowerCase(),f=FB.UIServer.Methods[g]||{size:{width:575,height:240}},e=FB.guid(),d=(f.noHttps!==true)&&(FB._https||(g!=='auth.status'));FB.copy(h,{api_key:FB._apiKey,app_id:FB._apiKey,locale:FB._locale,sdk:'joey',access_token:d&&FB._session&&FB._session.access_token||undefined});h.display=FB.UIServer.getDisplayMode(f,h);if(!f.url){f.url='dialog/'+g;if(!FB.Canvas.isTabIframe())delete h.method;}var a={cb:b,id:e,size:f.size||{},url:FB.getDomain(d?'https_www':'www')+f.url,params:h};var j=f.transform?f.transform:FB.UIServer.genericTransform;if(j){a=j(a);if(!a)return;}var i=FB.UIServer.getXdRelation(a.params.display);if(!(a.id in FB.UIServer._defaultCb)&&!('next' in a.params))a.params.next=FB.UIServer._xdResult(a.cb,a.id,i,true);if(i==='parent')a.params.channel_url=FB.UIServer._xdChannelHandler(e,'parent.parent');a.params=FB.JSON.flatten(a.params);var c=FB.QS.encode(a.params);if((a.url+c).length>2000){a.post=true;}else if(c)a.url+='?'+c;return a;},getDisplayMode:function(a,b){if(b.display==='hidden')return 'hidden';if(FB.Canvas.isTabIframe()&&b.display!=='popup')return 'async';if(!FB._session&&b.display=='dialog'&&!a.loggedOutIframe){FB.log('"dialog" mode can only be used when the user is connected.');return 'popup';}if(a.connectDisplay&&!FB._inCanvas)return a.connectDisplay;return b.display||(FB._session?'dialog':'popup');},getXdRelation:function(a){if(a==='popup')return 'opener';if(a==='dialog'||a==='iframe'||a==='hidden')return 'parent';if(a==='async')return 'parent.frames['+window.name+']';},popup:function(b){var a=typeof window.screenX!='undefined'?window.screenX:window.screenLeft,i=typeof window.screenY!='undefined'?window.screenY:window.screenTop,g=typeof window.outerWidth!='undefined'?window.outerWidth:document.documentElement.clientWidth,f=typeof window.outerHeight!='undefined'?window.outerHeight:(document.documentElement.clientHeight-22),k=b.size.width,d=b.size.height,h=(a<0)?window.screen.width+a:a,e=parseInt(h+((g-k)/2),10),j=parseInt(i+((f-d)/2.5),10),c=('width='+k+',height='+d+',left='+e+',top='+j+',scrollbars=1');if(b.params.method=='permissions.request')c+=',location=1,toolbar=0';if(b.post){FB.UIServer._active[b.id]=window.open('about:blank',b.id,c);FB.Content.submitToTarget({url:b.url,target:b.id,params:b.params});}else FB.UIServer._active[b.id]=window.open(b.url,b.id,c);if(b.id in FB.UIServer._defaultCb)FB.UIServer._popupMonitor();},hidden:function(a){a.className='FB_UI_Hidden';a.root=FB.Content.appendHidden('');FB.UIServer._insertIframe(a);},iframe:function(a){a.className='FB_UI_Dialog';a.root=FB.Dialog.create({onClose:function(){FB.UIServer._triggerDefault(a.id);},loader:!a.hideLoader,loaderWidth:a.size.width,closeIcon:true});FB.Dom.addCss(a.root,'fb_dialog_iframe');FB.UIServer._insertIframe(a);},async:function(a){a.frame=window.name;delete a.url;delete a.size;FB.Arbiter.inform('showDialog',a);},_insertIframe:function(b){FB.UIServer._active[b.id]=false;var a=function(c){if(b.id in FB.UIServer._active)FB.UIServer._active[b.id]=c;};if(b.post){FB.Content.insertIframe({url:'about:blank',root:b.root,className:b.className,width:b.size.width,height:b.size.height,onInsert:a,onload:function(c){FB.Content.submitToTarget({url:b.url,target:c.name,params:b.params});}});}else FB.Content.insertIframe({url:b.url,root:b.root,className:b.className,width:b.size.width,height:b.size.height,onInsert:a});},_triggerDefault:function(a){FB.UIServer._xdRecv({frame:a},FB.UIServer._defaultCb[a]||function(){});},_popupMonitor:function(){var a;for(var b in FB.UIServer._active)if(FB.UIServer._active.hasOwnProperty(b)&&b in FB.UIServer._defaultCb){var c=FB.UIServer._active[b];try{if(c.tagName)continue;}catch(d){}try{if(c.closed){FB.UIServer._triggerDefault(b);}else a=true;}catch(e){}}if(a&&!FB.UIServer._popupInterval){FB.UIServer._popupInterval=window.setInterval(FB.UIServer._popupMonitor,100);}else if(!a&&FB.UIServer._popupInterval){window.clearInterval(FB.UIServer._popupInterval);FB.UIServer._popupInterval=null;}},_xdChannelHandler:function(a,b){return FB.XD.handler(function(c){var d=FB.UIServer._active[a];if(!d)return;if(c.type=='resize'){if(c.height)d.style.height=c.height+'px';if(c.width)d.style.width=c.width+'px';FB.Arbiter.inform('resize.ack',c.ackData||{},'parent.frames['+d.name+']',true);FB.Dialog.show(d);}},b,true);},_xdNextHandler:function(a,b,d,c){if(c)FB.UIServer._defaultCb[b]=a;return FB.XD.handler(function(e){FB.UIServer._xdRecv(e,a);},d)+'&frame='+b;},_xdRecv:function(b,a){var c=FB.UIServer._active[b.frame];try{if(FB.Dom.containsCss(c,'FB_UI_Hidden')){window.setTimeout(function(){c.parentNode.parentNode.removeChild(c.parentNode);},3000);}else if(FB.Dom.containsCss(c,'FB_UI_Dialog'))FB.Dialog.remove(c);}catch(d){}try{if(c.close){c.close();FB.UIServer._popupCount--;}}catch(e){}delete FB.UIServer._active[b.frame];delete FB.UIServer._defaultCb[b.frame];a(b);},_xdResult:function(a,b,d,c){return (FB.UIServer._xdNextHandler(function(e){a&&a(e.result&&e.result!=FB.UIServer._resultToken&&FB.JSON.parse(e.result));},b,d,c)+'&result='+encodeURIComponent(FB.UIServer._resultToken));}}); FB.provide('',{getLoginStatus:function(a,b){if(!FB._apiKey){FB.log('FB.getLoginStatus() called before calling FB.init().');return;}if(a)if(!b&&FB.Auth._loadState=='loaded'){a({status:FB._userStatus,session:FB._session});return;}else FB.Event.subscribe('FB.loginStatus',a);if(!b&&FB.Auth._loadState=='loading')return;FB.Auth._loadState='loading';var c=function(d){FB.Auth._loadState='loaded';FB.Event.fire('FB.loginStatus',d);FB.Event.clear('FB.loginStatus');};FB.ui({method:'auth.status',display:'hidden'},c);},getSession:function(){return FB._session;},login:function(a,b){FB.ui(FB.copy({method:'permissions.request',display:'popup'},b||{}),a);},logout:function(a){FB.ui({method:'auth.logout',display:'hidden'},a);}});FB.provide('Auth',{_callbacks:[],setSession:function(e,g){var b=!FB._session&&e,c=FB._session&&!e,a=FB._session&&e&&FB._session.uid!=e.uid,f=b||c||(FB._session&&e&&FB._session.access_token!=e.access_token),h=g!=FB._userStatus;var d={session:e,status:g};FB._session=e;FB._userStatus=g;if(f&&FB.Cookie&&FB.Cookie.getEnabled())FB.Cookie.set(e);if(h)FB.Event.fire('auth.statusChange',d);if(c||a)FB.Event.fire('auth.logout',d);if(b||a)FB.Event.fire('auth.login',d);if(f)FB.Event.fire('auth.sessionChange',d);if(FB.Auth._refreshTimer){window.clearTimeout(FB.Auth._refreshTimer);delete FB.Auth._refreshTimer;}if(FB.Auth._loadState&&e&&e.expires)FB.Auth._refreshTimer=window.setTimeout(function(){FB.getLoginStatus(null,true);},1200000);return d;},xdHandler:function(a,b,f,c,e,d){return FB.UIServer._xdNextHandler(FB.Auth.xdResponseWrapper(a,e,d),b,f,c);},xdResponseWrapper:function(a,c,b){return function(d){try{b=FB.JSON.parse(d.session);}catch(f){}if(b)c='connected';if(d&&d.fb_https&&!FB._https)FB._https=true;var e=FB.Auth.setSession(b||null,c);e.perms=d&&d.perms||null;a&&a(e);};}});FB.provide('UIServer.Methods',{'permissions.request':{size:{width:627,height:326},transform:function(a){if(!FB._apiKey){FB.log('FB.login() called before calling FB.init().');return;}if(FB._session&&!a.params.perms&&!a.params.auth_type){FB.log('FB.login() called when user is already connected.');a.cb&&a.cb({status:FB._userStatus,session:FB._session});return;}a=FB.UIServer.genericTransform(a);a.cb=FB.Auth.xdResponseWrapper(a.cb,FB._userStatus,FB._session);a.params.method='permissions.request';FB.copy(a.params,{fbconnect:FB._inCanvas?0:1,return_session:1,session_version:3});return a;}},'auth.logout':{url:'logout.php',transform:function(a){if(!FB._apiKey){FB.log('FB.logout() called before calling FB.init().');}else if(!FB._session){FB.log('FB.logout() called without a session.');}else{a.params.next=FB.Auth.xdHandler(a.cb,a.id,'parent',false,'unknown');return a;}}},'auth.status':{url:'extern/login_status.php',transform:function(a){var b=a.cb,c=a.id,d=FB.Auth.xdHandler;delete a.cb;FB.copy(a.params,{no_session:d(b,c,'parent',false,'notConnected'),no_user:d(b,c,'parent',false,'unknown'),ok_session:d(b,c,'parent',false,'connected'),session_version:3,extern:FB._inCanvas?0:2});return a;}}}); FB.provide('Cookie',{_domain:null,_enabled:false,setEnabled:function(a){FB.Cookie._enabled=a;},getEnabled:function(){return FB.Cookie._enabled;},load:function(){var a=document.cookie.match('\\bfbs_'+FB._apiKey+'="([^;]*)\\b'),b;if(a){b=FB.QS.decode(a[1]);b.expires=parseInt(b.expires,10);FB.Cookie._domain=b.base_domain;}return b;},setRaw:function(c,b,a){document.cookie='fbs_'+FB._apiKey+'="'+c+'"'+(c&&b==0?'':'; expires='+new Date(b*1000).toGMTString())+'; path=/'+(a?'; domain=.'+a:'');FB.Cookie._domain=a;},set:function(a){a?FB.Cookie.setRaw(FB.QS.encode(a),a.expires,a.base_domain):FB.Cookie.clear();},clear:function(){FB.Cookie.setRaw('',0,FB.Cookie._domain);}}); FB.provide('Frictionless',{_allowedRecipients:{},_updateRecipients:function(){FB.Frictionless._allowedRecipients={};FB.api('/me/apprequestformerrecipients',function(a){if(!a||a.error)return;FB.Array.forEach(a.data,function(b){FB.Frictionless._allowedRecipients[b.recipient_id]=true;},false);});},init:function(){FB.Event.subscribe('auth.login',function(a){if(a.session)FB.Frictionless._updateRecipients();});},processRequestResponse:function(a){return function(c){if(c){var d=c.frictionless_value;if(typeof d!=='undefined'){var b=[];FB.Array.forEach(c.request_ids,function(f,e){FB.Frictionless._allowedRecipients[e]=d;b.push(f);},false);c.request_ids=b;}}a&&a(c);};},isAllowed:function(c){if(!c)return false;if(typeof c==='number'||typeof c==='string')return FB.Frictionless._allowedRecipients[c];var a=true;var b=false;FB.Array.forEach(c,function(d){a=a&&FB.Frictionless._allowedRecipients[d];b=true;},false);return a&&b;}});FB.provide('UIServer.Methods',{apprequests:{size:{width:575,height:240},transform:function(a){a=FB.UIServer.genericTransform(a);a.cb=FB.Frictionless.processRequestResponse(a.cb);a.hideLoader=FB.Frictionless.isAllowed(a.params.to);return a;}}}); FB.provide('',{initSitevars:{},init:function(a){a=FB.copy(a||{},{logging:true,status:true});FB._apiKey=a.appId||a.apiKey;if(!a.logging&&window.location.toString().indexOf('fb_debug=1')<0)FB._logging=false;FB.XD.init(a.channelUrl);if(a.frictionlessRequests)FB.Frictionless.init();if(FB._apiKey){FB.Cookie.setEnabled(a.cookie);a.session=a.session||FB.Cookie.load();FB.Auth.setSession(a.session,a.session?'connected':'unknown');if(a.status)FB.getLoginStatus();}if(FB._inCanvas)FB.Canvas.init();if(a.xfbml)window.setTimeout(function(){if(FB.XFBML)if(FB.initSitevars.parseXFBMLBeforeDomReady){FB.XFBML.parse();var b=window.setInterval(function(){FB.XFBML.parse();},100);FB.Dom.ready(function(){window.clearInterval(b);FB.XFBML.parse();});}else FB.Dom.ready(FB.XFBML.parse);},0);if(FB.Canvas&&FB.Canvas.EarlyFlush)FB.Canvas.EarlyFlush.maybeSample();}}); FB.provide('Canvas.EarlyFlush',{_sampleRate:0,_appIds:[],maybeSample:function(){if(!FB._inCanvas||!FB._apiKey||!FB.Canvas.EarlyFlush._sampleRate)return;var b=Math.random();if(b>1/FB.Canvas.EarlyFlush._sampleRate)return;var a=FB.Canvas.EarlyFlush._appIds;if(FB.Array.indexOf(FB.Canvas.EarlyFlush._appIds,parseInt(FB._apiKey,10))==-1)return;window.setTimeout(FB.Canvas.EarlyFlush.sample,10000);},sample:function(){var c={object:'data',link:'href',script:'src'};var a=[];FB.Array.forEach(c,function(d,e){FB.Array.forEach(window.document.getElementsByTagName(e),function(f){if(f[d])a.push(f[d]);});});var b=FB.JSON.stringify(a);FB.api(FB._apiKey+'/staticresources','post',{urls:b});}}); FB.provide('UIServer.Methods',{'stream.share':{size:{width:575,height:380},url:'sharer.php',transform:function(a){if(!a.params.u)a.params.u=window.location.toString();return a;}},'fbml.dialog':{size:{width:575,height:300},url:'render_fbml.php',loggedOutIframe:true,transform:function(a){return a;}},'auth.logintofacebook':{size:{width:530,height:287},url:'login.php',transform:function(a){a.params.skip_api_login=1;var c=FB.UIServer.getXdRelation(a.params.display);var b=FB.UIServer._xdResult(a.cb,a.id,c,true);a.params.next=FB.getDomain(FB._https?'https_www':'www')+"login.php?"+FB.QS.encode({api_key:FB._apiKey,next:b,skip_api_login:1});return a;}}}); FB.provide('',{share:function(a){FB.log('FB.share() has been deprecated. Please use FB.ui() instead.');FB.ui({display:'popup',method:'stream.share',u:a});},publish:function(b,a){FB.log('FB.publish() has been deprecated. Please use FB.ui() instead.');b=b||{};FB.ui(FB.copy({display:'popup',method:'stream.publish',preview:1},b||{}),a);},addFriend:function(b,a){FB.log('FB.addFriend() has been deprecated. Please use FB.ui() instead.');FB.ui({display:'popup',id:b,method:'friend.add'},a);}});FB.UIServer.Methods['auth.login']=FB.UIServer.Methods['permissions.request']; FB.provide('XFBML',{_renderTimeout:30000,parse:function(c,a){c=c||document.body;var b=1,d=function(){b--;if(b===0){a&&a();FB.Event.fire('xfbml.render');}};FB.Array.forEach(FB.XFBML._tagInfos,function(f){if(!f.xmlns)f.xmlns='fb';var g=FB.XFBML._getDomElements(c,f.xmlns,f.localName);for(var e=0;e0)FB.log(b+' XFBML tags failed to render in '+FB.XFBML._renderTimeout+'ms.');},FB.XFBML._renderTimeout);d();},registerTag:function(a){FB.XFBML._tagInfos.push(a);},_processElement:function(dom,tagInfo,cb){var element=dom._element;if(element){element.subscribe('render',cb);element.process();}else{var processor=function(){var fn=eval(tagInfo.className);var getBoolAttr=function(attr){var attr=dom.getAttribute(attr);return (attr&&FB.Array.indexOf(['true','1','yes','on'],attr.toLowerCase())>-1);};var isLogin=false;var showFaces=true;var renderInIframe=false;if(tagInfo.className==='FB.XFBML.LoginButton'){renderInIframe=getBoolAttr('render-in-iframe');showFaces=getBoolAttr('show-faces')||getBoolAttr('show_faces');isLogin=renderInIframe||showFaces;if(isLogin)fn=FB.XFBML.Login;}element=dom._element=new fn(dom);if(isLogin){var extraParams={show_faces:showFaces};var perms=dom.getAttribute('perms');if(perms)extraParams.perms=perms;element.setExtraParams(extraParams);}element.subscribe('render',cb);element.process();};if(FB.CLASSES[tagInfo.className.substr(3)]){processor();}else FB.log('Tag '+tagInfo.className+' was not found.');}},_getDomElements:function(a,e,d){var c=e+':'+d;if(FB.UA.firefox()){return a.getElementsByTagNameNS(document.body.namespaceURI,c);}else if(FB.UA.ie()<9){try{var docNamespaces=document.namespaces;if(docNamespaces&&docNamespaces[e]){var nodes=a.getElementsByTagName(d);if(!document.addEventListener||nodes.length>0)return nodes;}}catch(b){}return a.getElementsByTagName(c);}else return a.getElementsByTagName(c);},_tagInfos:[{localName:'activity',className:'FB.XFBML.Activity'},{localName:'add-profile-tab',className:'FB.XFBML.AddProfileTab'},{localName:'bookmark',className:'FB.XFBML.Bookmark'},{localName:'comments',className:'FB.XFBML.Comments'},{localName:'comments-count',className:'FB.XFBML.CommentsCount'},{localName:'connect-bar',className:'FB.XFBML.ConnectBar'},{localName:'fan',className:'FB.XFBML.Fan'},{localName:'like',className:'FB.XFBML.Like'},{localName:'like-box',className:'FB.XFBML.LikeBox'},{localName:'live-stream',className:'FB.XFBML.LiveStream'},{localName:'login',className:'FB.XFBML.Login'},{localName:'login-button',className:'FB.XFBML.LoginButton'},{localName:'facepile',className:'FB.XFBML.Facepile'},{localName:'friendpile',className:'FB.XFBML.Friendpile'},{localName:'name',className:'FB.XFBML.Name'},{localName:'profile-pic',className:'FB.XFBML.ProfilePic'},{localName:'recommendations',className:'FB.XFBML.Recommendations'},{localName:'registration',className:'FB.XFBML.Registration'},{localName:'send',className:'FB.XFBML.Send'},{localName:'serverfbml',className:'FB.XFBML.ServerFbml'},{localName:'share-button',className:'FB.XFBML.ShareButton'},{localName:'social-bar',className:'FB.XFBML.SocialBar'}]});(function(){try{if(document.namespaces&&!document.namespaces.item.fb)document.namespaces.add('fb');}catch(a){}}()); FB.provide('XFBML',{set:function(b,c,a){FB.log('FB.XFBML.set() has been deprecated.');b.innerHTML=c;FB.XFBML.parse(b,a);}}); FB.provide('',{bind:function(){var a=Array.prototype.slice.call(arguments),c=a.shift(),b=a.shift();return function(){return c.apply(b,a.concat(Array.prototype.slice.call(arguments)));};},Class:function(b,a,d){if(FB.CLASSES[b])return FB.CLASSES[b];var c=a||function(){};c.prototype=d;c.prototype.bind=function(e){return FB.bind(e,this);};c.prototype.constructor=c;FB.create(b,c);FB.CLASSES[b]=c;return c;},subclass:function(d,b,c,e){if(FB.CLASSES[d])return FB.CLASSES[d];var a=FB.create(b);FB.copy(e,a.prototype);e._base=a;e._callBase=function(g){var f=Array.prototype.slice.call(arguments,1);return a.prototype[g].apply(this,f);};return FB.Class(d,c?c:function(){if(a.apply)a.apply(this,arguments);},e);},CLASSES:{}});FB.provide('Type',{isType:function(a,b){while(a)if(a.constructor===b||a===b){return true;}else a=a._base;return false;}}); FB.Class('Obj',null,FB.copy({setProperty:function(a,b){if(FB.JSON.stringify(b)!=FB.JSON.stringify(this[a])){this[a]=b;this.fire(a,b);}}},FB.EventProvider)); FB.subclass('Waitable','Obj',function(){},{set:function(a){this.setProperty('value',a);},error:function(a){this.fire("error",a);},wait:function(a,b){if(b)this.subscribe('error',b);this.monitor('value',this.bind(function(){if(this.value!==undefined){a(this.value);return true;}}));}}); FB.subclass('Data.Query','Waitable',function(){if(!FB.Data.Query._c)FB.Data.Query._c=1;this.name='v_'+FB.Data.Query._c++;},{parse:function(a){var b=FB.String.format.apply(null,a),d=(/^select (.*?) from (\w+)\s+where (.*)$/i).exec(b);this.fields=this._toFields(d[1]);this.table=d[2];this.where=this._parseWhere(d[3]);for(var c=1;c-1){return d;}else return b;});},isValid:function(){for(var a=this.dom;a;a=a.parentNode)if(a==document.body)return true;},clear:function(){this.dom.innerHTML='';}},FB.EventProvider)); FB.subclass('XFBML.IframeWidget','XFBML.Element',null,{_showLoader:true,_refreshOnAuthChange:false,_allowReProcess:false,_fetchPreCachedLoader:false,_visibleAfter:'load',getUrlBits:function(){throw new Error('Inheriting class needs to implement getUrlBits().');},setupAndValidate:function(){return true;},oneTimeSetup:function(){},getSize:function(){},getIframeName:function(){},getIframeTitle:function(){},getChannelUrl:function(){if(!this._channelUrl){var a=this;this._channelUrl=FB.XD.handler(function(b){a.fire('xd.'+b.type,b);},'parent.parent',true);}return this._channelUrl;},getIframeNode:function(){return this.dom.getElementsByTagName('iframe')[0];},process:function(a){if(this._done){if(!this._allowReProcess&&!a)return;this.clear();}else this._oneTimeSetup();this._done=true;if(!this.setupAndValidate()){this.fire('render');return;}if(this._showLoader)this._addLoader();FB.Dom.addCss(this.dom,'fb_iframe_widget');if(this._visibleAfter!='immediate'){FB.Dom.addCss(this.dom,'fb_hide_iframes');}else this.subscribe('iframe.onload',FB.bind(this.fire,this,'render'));var c=this.getSize()||{};var d=this._getURL();if(!this._fetchPreCachedLoader)d+='?'+FB.QS.encode(this._getQS());if(d.length>2000){d='about:blank';var b=FB.bind(function(){this._postRequest();this.unsubscribe('iframe.onload',b);},this);this.subscribe('iframe.onload',b);}FB.Content.insertIframe({url:d,root:this.dom.appendChild(document.createElement('span')),name:this.getIframeName(),title:this.getIframeTitle(),className:FB._localeIsRtl?'fb_rtl':'fb_ltr',height:c.height,width:c.width,onload:FB.bind(this.fire,this,'iframe.onload')});},_oneTimeSetup:function(){this.subscribe('xd.resize',FB.bind(this._handleResizeMsg,this));if(FB.getLoginStatus){this.subscribe('xd.refreshLoginStatus',FB.bind(FB.getLoginStatus,FB,function(){},true));this.subscribe('xd.logout',FB.bind(FB.logout,FB,function(){}));}if(this._refreshOnAuthChange)this._setupAuthRefresh();if(this._visibleAfter=='load')this.subscribe('iframe.onload',FB.bind(this._makeVisible,this));this.oneTimeSetup();},_makeVisible:function(){this._removeLoader();FB.Dom.removeCss(this.dom,'fb_hide_iframes');this.fire('render');},_setupAuthRefresh:function(){FB.getLoginStatus(FB.bind(function(b){var a=b.status;FB.Event.subscribe('auth.statusChange',FB.bind(function(c){if(!this.isValid())return;if(a=='unknown'||c.status=='unknown')this.process(true);a=c.status;},this));},this));},_handleResizeMsg:function(b){if(!this.isValid())return;var a=this.getIframeNode();a.style.height=b.height+'px';if(b.width)a.style.width=b.width+'px';a.style.border='none';this._makeVisible();},_addLoader:function(){if(!this._loaderDiv){FB.Dom.addCss(this.dom,'fb_iframe_widget_loader');this._loaderDiv=document.createElement('div');this._loaderDiv.className='FB_Loader';this.dom.appendChild(this._loaderDiv);}},_removeLoader:function(){if(this._loaderDiv){FB.Dom.removeCss(this.dom,'fb_iframe_widget_loader');if(this._loaderDiv.parentNode)this._loaderDiv.parentNode.removeChild(this._loaderDiv);this._loaderDiv=null;}},_getQS:function(){return FB.copy({api_key:FB._apiKey,locale:FB._locale,sdk:'joey',session_key:FB._session&&FB._session.session_key,ref:this.getAttribute('ref')},this.getUrlBits().params);},_getURL:function(){var a='www',b='';if(this._fetchPreCachedLoader){a='cdn';b='static/';}return FB.getDomain(a)+'plugins/'+b+this.getUrlBits().name+'.php';},_postRequest:function(){FB.Content.submitToTarget({url:this._getURL(),target:this.getIframeNode().name,params:this._getQS()});}}); FB.subclass('XFBML.Activity','XFBML.IframeWidget',null,{_visibleAfter:'load',_refreshOnAuthChange:true,setupAndValidate:function(){this._attr={border_color:this.getAttribute('border-color'),colorscheme:this.getAttribute('color-scheme'),filter:this.getAttribute('filter'),font:this.getAttribute('font'),header:this._getBoolAttribute('header'),height:this._getPxAttribute('height',300),recommendations:this._getBoolAttribute('recommendations'),site:this.getAttribute('site',location.hostname),width:this._getPxAttribute('width',300)};return true;},getSize:function(){return {width:this._attr.width,height:this._attr.height};},getUrlBits:function(){return {name:'activity',params:this._attr};}}); FB.subclass('XFBML.ButtonElement','XFBML.Element',null,{_allowedSizes:['icon','small','medium','large','xlarge'],onClick:function(){throw new Error('Inheriting class needs to implement onClick().');},setupAndValidate:function(){return true;},getButtonMarkup:function(){return this.getOriginalHTML();},getOriginalHTML:function(){return this._originalHTML;},process:function(){if(!('_originalHTML' in this))this._originalHTML=FB.String.trim(this.dom.innerHTML);if(!this.setupAndValidate()){this.fire('render');return;}var d=this._getAttributeFromList('size','medium',this._allowedSizes),a='',b='';if(d=='icon'){a='fb_button_simple';}else{var c=FB._localeIsRtl?'_rtl':'';b=this.getButtonMarkup();a='fb_button'+c+' fb_button_'+d+c;}this.dom.innerHTML=(''+''+b+''+'');this.dom.firstChild.onclick=FB.bind(this.onClick,this);this.fire('render');}}); FB.provide('Helper',{isUser:function(a){return a<2.2e+09||(a>=1e+14&&a<=100099999989999);},getLoggedInUser:function(){return FB._session?FB._session.uid:null;},upperCaseFirstChar:function(a){if(a.length>0){return a.substr(0,1).toUpperCase()+a.substr(1);}else return a;},getProfileLink:function(c,b,a){a=a||(c?FB.getDomain('www')+'profile.php?id='+c.uid:null);if(a)b=''+b+'';return b;},invokeHandler:function(handler,scope,args){if(handler)if(typeof handler==='string'){eval(handler);}else if(handler.apply)handler.apply(scope,args||[]);},fireEvent:function(a,b){var c=b._attr.href;b.fire(a,c);FB.Event.fire(a,c,b);},executeFunctionByName:function(d){var a=Array.prototype.slice.call(arguments,1);var f=d.split(".");var c=f.pop();var b=window;for(var e=0;e0){a.xid=encodeURIComponent(document.URL.substring(0,c));}else a.xid=encodeURIComponent(document.URL);}if(a.migrated)a.href='http://www.facebook.com/plugins/comments_v1.php?'+'app_id='+FB._apiKey+'&xid='+encodeURIComponent(a.xid)+'&url='+encodeURIComponent(a.url);}else{var b=this.getAttribute('fb_comment_id');if(!b){b=FB.QS.decode(document.URL.substring(document.URL.indexOf('?')+1)).fb_comment_id;if(b&&b.indexOf('#')>0)b=b.substring(0,b.indexOf('#'));}if(b){a.fb_comment_id=b;this.subscribe('render',FB.bind(function(){window.location.hash=this.getIframeNode().id;},this));}}this._attr=a;return true;},oneTimeSetup:function(){this.subscribe('xd.addComment',FB.bind(this._handleCommentMsg,this));this.subscribe('xd.commentCreated',FB.bind(this._handleCommentCreatedMsg,this));this.subscribe('xd.commentRemoved',FB.bind(this._handleCommentRemovedMsg,this));},getSize:function(){return {width:this._attr.width,height:200};},getUrlBits:function(){return {name:'comments',params:this._attr};},_handleCommentMsg:function(a){if(!this.isValid())return;FB.Event.fire('comments.add',{post:a.post,user:a.user,widget:this});},_handleCommentCreatedMsg:function(b){if(!this.isValid())return;var a={href:b.href,commentID:b.commentID,parentCommentID:b.parentCommentID};FB.Event.fire('comment.create',a);},_handleCommentRemovedMsg:function(b){if(!this.isValid())return;var a={href:b.href,commentID:b.commentID};FB.Event.fire('comment.remove',a);}}); FB.subclass('XFBML.CommentsCount','XFBML.Element',null,{process:function(){this._href=this.getAttribute('href',window.location.href);this._count=FB.Data._selectByIndex(['commentsbox_count'],'link_stat','url',this._href);FB.Dom.addCss(this.dom,'fb_comments_count_zero');this._count.wait(FB.bind(function(){var a=this._count.value[0].commentsbox_count;this.dom.innerHTML=FB.String.format('{0}',a);if(a>0)FB.Dom.removeCss(this.dom,'fb_comments_count_zero');this.fire('render');},this));}}); FB.provide('Anim',{ate:function(c,g,d,b){d=!isNaN(parseFloat(d))&&d>=0?d:750;var e=40,f={},j={},a=null,h=c.style,i=setInterval(FB.bind(function(){if(!a)a=new Date().getTime();var k=1;if(d!=0)k=Math.min((new Date().getTime()-a)/d,1);FB.Array.forEach(g,FB.bind(function(o,m){if(!f[m]){var n=FB.Dom.getStyle(c,m);if(n===false)return;f[m]=this._parseCSS(n+'');}if(!j[m])j[m]=this._parseCSS(o.toString());var l='';FB.Array.forEach(f[m],function(q,p){if(isNaN(j[m][p].numPart)&&j[m][p].textPart=='?'){l=q.numPart+q.textPart;}else if(isNaN(q.numPart)){l=q.textPart;}else l+=(q.numPart+Math.ceil((j[m][p].numPart-q.numPart)*Math.sin(Math.PI/2*k)))+j[m][p].textPart+' ';});FB.Dom.setStyle(c,m,l);},this));if(k==1){clearInterval(i);if(b)b(c);}},this),e);},_parseCSS:function(a){var b=[];FB.Array.forEach(a.split(' '),function(d){var c=parseInt(d,10);b.push({numPart:c,textPart:d.replace(c,'')});});return b;}}); FB.provide('Insights',{impression:function(e,a){var b=FB.guid(),g="//ah8.facebook.com/impression.php/"+b+"/",c=new Image(1,1),f=[];if(!e.api_key&&FB._apiKey)e.api_key=FB._apiKey;for(var d in e)f.push(encodeURIComponent(d)+'='+encodeURIComponent(e[d]));g+='?'+f.join('&');if(a)c.onload=a;c.src=g;}}); FB.subclass('XFBML.ConnectBar','XFBML.Element',null,{_initialHeight:null,_initTopMargin:0,_picFieldName:'pic_square',_page:null,_displayed:false,_notDisplayed:false,_container:null,_animationSpeed:0,process:function(){FB.getLoginStatus(this.bind(function(a){FB.Event.monitor('auth.statusChange',this.bind(function(){if(this.isValid()&&FB._userStatus=='connected'){this._uid=FB.Helper.getLoggedInUser();FB.api({method:'Connect.shouldShowConnectBar'},this.bind(function(b){if(b!=2){this._animationSpeed=(b==0)?750:0;this._showBar();}else this._noRender();}));}else this._noRender();return false;}));}));},_showBar:function(){var a=FB.Data._selectByIndex(['first_name','profile_url',this._picFieldName],'user','uid',this._uid);var b=FB.Data._selectByIndex(['display_name'],'application','api_key',FB._apiKey);FB.Data.waitOn([a,b],FB.bind(function(c){c[0][0].site_name=c[1][0].display_name;if(!this._displayed){this._displayed=true;this._notDisplayed=false;this._renderConnectBar(c[0][0]);this.fire('render');FB.Insights.impression({lid:104,name:'widget_load'});this.fire('connectbar.ondisplay');FB.Event.fire('connectbar.ondisplay',this);FB.Helper.invokeHandler(this.getAttribute('on-display'),this);}},this));},_noRender:function(){if(this._displayed){this._displayed=false;this._closeConnectBar();}if(!this._notDisplayed){this._notDisplayed=true;this.fire('render');this.fire('connectbar.onnotdisplay');FB.Event.fire('connectbar.onnotdisplay',this);FB.Helper.invokeHandler(this.getAttribute('on-not-display'),this);}},_renderConnectBar:function(d){var b=document.createElement('div'),c=document.createElement('div');b.className='fb_connect_bar';c.className='fb_reset fb_connect_bar_container';c.appendChild(b);document.body.appendChild(c);this._container=c;this._initialHeight=Math.round(parseFloat(FB.Dom.getStyle(c,'height'))+parseFloat(FB.Dom.getStyle(c,'borderBottomWidth')));b.innerHTML=FB.String.format('
                        '+''+'{2}'+''+'
                        '+''+'{4}'+''+'{5}'+' '+'{6} – '+'{0}'+'',FB.Intl._tx("No Thanks"),FB.getDomain('cdn')+FB.XFBML.ConnectBar.imgs.buttonUrl,FB.Intl._tx("Close"),d[this._picFieldName]||FB.getDomain('cdn')+FB.XFBML.ConnectBar.imgs.missingProfileUrl,FB.String.escapeHTML(d.first_name),FB.Intl._tx("Hi {firstName}. \u003cstrong>{siteName}\u003c\/strong> is using Facebook to personalize your experience.",{firstName:FB.String.escapeHTML(d.first_name),siteName:FB.String.escapeHTML(d.site_name)}),FB.Intl._tx("Learn More"),d.profile_url,FB.getDomain('www')+'sitetour/connect.php');var a=this;FB.Array.forEach(b.getElementsByTagName('a'),function(g){g.onclick=FB.bind(a._clickHandler,a);});this._page=document.body;var f=0;if(this._page.parentNode){f=Math.round((parseFloat(FB.Dom.getStyle(this._page.parentNode,'height'))-parseFloat(FB.Dom.getStyle(this._page,'height')))/2);}else f=parseInt(FB.Dom.getStyle(this._page,'marginTop'),10);f=isNaN(f)?0:f;this._initTopMargin=f;if(!window.XMLHttpRequest){c.className+=" fb_connect_bar_container_ie6";}else{c.style.top=(-1*this._initialHeight)+'px';FB.Anim.ate(c,{top:'0px'},this._animationSpeed);}var e={marginTop:this._initTopMargin+this._initialHeight+'px'};if(FB.UA.ie()){e.backgroundPositionY=this._initialHeight+'px';}else e.backgroundPosition='? '+this._initialHeight+'px';FB.Anim.ate(this._page,e,this._animationSpeed);},_clickHandler:function(a){a=a||window.event;var b=a.target||a.srcElement;while(b.nodeName!='A')b=b.parentNode;switch(b.className){case 'fb_bar_close':FB.api({method:'Connect.connectBarMarkAcknowledged'});FB.Insights.impression({lid:104,name:'widget_user_closed'});this._closeConnectBar();break;case 'fb_learn_more':case 'fb_profile':window.open(b.href);break;case 'fb_no_thanks':this._closeConnectBar();FB.api({method:'Connect.connectBarMarkAcknowledged'});FB.Insights.impression({lid:104,name:'widget_user_no_thanks'});FB.api({method:'auth.revokeAuthorization',block:true},this.bind(function(){this.fire('connectbar.ondeauth');FB.Event.fire('connectbar.ondeauth',this);FB.Helper.invokeHandler(this.getAttribute('on-deauth'),this);if(this._getBoolAttribute('auto-refresh',true))window.location.reload();}));break;}return false;},_closeConnectBar:function(){this._notDisplayed=true;var a={marginTop:this._initTopMargin+'px'};if(FB.UA.ie()){a.backgroundPositionY='0px';}else a.backgroundPosition='? 0px';var b=(this._animationSpeed==0)?0:300;FB.Anim.ate(this._page,a,b);FB.Anim.ate(this._container,{top:(-1*this._initialHeight)+'px'},b,function(c){c.parentNode.removeChild(c);});this.fire('connectbar.onclose');FB.Event.fire('connectbar.onclose',this);FB.Helper.invokeHandler(this.getAttribute('on-close'),this);}});FB.provide('XFBML.ConnectBar',{imgs:{buttonUrl:'images/facebook-widgets/close_btn.png',missingProfileUrl:'pics/q_silhouette.gif'}}); FB.subclass('XFBML.Facepile','XFBML.IframeWidget',null,{_visibleAfter:'load',_extraParams:{},setupAndValidate:function(){this._attr={href:this.getAttribute('href'),channel:this.getChannelUrl(),max_rows:this.getAttribute('max-rows'),width:this._getPxAttribute('width',200),ref:this.getAttribute('ref')};for(var a in this._extraParams)this._attr[a]=this._extraParams[a];return true;},setExtraParams:function(a){this._extraParams=a;},oneTimeSetup:function(){var a=FB._userStatus;FB.Event.subscribe('auth.statusChange',FB.bind(function(b){if(a=='connected'||b.status=='connected')this.process(true);a=b.status;},this));},getSize:function(){return {width:this._attr.width,height:70};},getUrlBits:function(){return {name:'facepile',params:this._attr};}}); FB.subclass('XFBML.Fan','XFBML.IframeWidget',null,{_visibleAfter:'load',setupAndValidate:function(){this._attr={api_key:FB._apiKey,connections:this.getAttribute('connections','10'),css:this.getAttribute('css'),height:this._getPxAttribute('height'),id:this.getAttribute('profile-id'),logobar:this._getBoolAttribute('logo-bar'),name:this.getAttribute('name'),stream:this._getBoolAttribute('stream',true),width:this._getPxAttribute('width',300)};if(!this._attr.id&&!this._attr.name){FB.log(' requires one of the "id" or "name" attributes.');return false;}var a=this._attr.height;if(!a)if((!this._attr.connections||this._attr.connections==='0')&&!this._attr.stream){a=65;}else if(!this._attr.connections||this._attr.connections==='0'){a=375;}else if(!this._attr.stream){a=250;}else a=550;if(this._attr.logobar)a+=25;this._attr.height=a;return true;},getSize:function(){return {width:this._attr.width,height:this._attr.height};},getUrlBits:function(){return {name:'fan',params:this._attr};}}); FB.subclass('XFBML.Friendpile','XFBML.Facepile',null,{}); FB.subclass('XFBML.EdgeCommentWidget','XFBML.IframeWidget',function(a){this._iframeWidth=a.width;this._iframeHeight=a.height;this._attr={master_frame_name:a.masterFrameName};this.dom=a.commentNode;this.dom.style.top=a.relativeHeightOffset;if(a.relativeWidthOffset)if(FB._localeIsRtl){this.dom.style.right=a.relativeWidthOffset;}else this.dom.style.left=a.relativeWidthOffset;this.dom.style.zIndex=FB.XFBML.EdgeCommentWidget.NextZIndex++;FB.Dom.addCss(this.dom,'fb_edge_comment_widget');},{_visibleAfter:'load',_showLoader:false,getSize:function(){return {width:this._iframeWidth,height:this._iframeHeight};},getUrlBits:function(){return {name:'comment_widget_shell',params:this._attr};}});FB.provide('XFBML.EdgeCommentWidget',{NextZIndex:10000}); FB.subclass('XFBML.EdgeWidget','XFBML.IframeWidget',null,{_visibleAfter:'immediate',_showLoader:false,setupAndValidate:function(){FB.Dom.addCss(this.dom,'fb_edge_widget_with_comment');this._attr={channel_url:this.getChannelUrl(),debug:this._getBoolAttribute('debug'),href:this.getAttribute('href',window.location.href),is_permalink:this._getBoolAttribute('is-permalink'),node_type:this.getAttribute('node-type','link'),width:this._getWidgetWidth(),font:this.getAttribute('font'),layout:this._getLayout(),colorscheme:this.getAttribute('color-scheme'),action:this.getAttribute('action'),ref:this.getAttribute('ref'),show_faces:this._shouldShowFaces(),no_resize:this._getBoolAttribute('no_resize'),send:this.getAttribute('send'),url_map:this.getAttribute('url_map')};return true;},oneTimeSetup:function(){this.subscribe('xd.authPrompted',FB.bind(this._onAuthPrompt,this));this.subscribe('xd.edgeCreated',FB.bind(this._onEdgeCreate,this));this.subscribe('xd.edgeRemoved',FB.bind(this._onEdgeRemove,this));this.subscribe('xd.presentEdgeCommentDialog',FB.bind(this._handleEdgeCommentDialogPresentation,this));this.subscribe('xd.dismissEdgeCommentDialog',FB.bind(this._handleEdgeCommentDialogDismissal,this));this.subscribe('xd.hideEdgeCommentDialog',FB.bind(this._handleEdgeCommentDialogHide,this));this.subscribe('xd.showEdgeCommentDialog',FB.bind(this._handleEdgeCommentDialogShow,this));},getSize:function(){return {width:this._getWidgetWidth(),height:this._getWidgetHeight()};},_getWidgetHeight:function(){var a=this._getLayout();var c=this._shouldShowFaces()?'show':'hide';var b={standard:{show:80,hide:35},box_count:{show:65,hide:65},button_count:{show:21,hide:21},simple:{show:20,hide:20}};return b[a][c];},_getWidgetWidth:function(){var e=this._getLayout();var g=this._shouldShowFaces()?'show':'hide';var c=this.getAttribute('action')==='recommend'?130:90;var b=this.getAttribute('action')==='recommend'?100:55;var h=this.getAttribute('action')==='recommend'?90:50;var f={standard:{show:450,hide:450},box_count:{show:b,hide:b},button_count:{show:c,hide:c},simple:{show:h,hide:h}};var d=f[e][g];var i=this._getPxAttribute('width',d);var a={standard:{min:225,max:900},box_count:{min:b,max:900},button_count:{min:c,max:900},simple:{min:49,max:900}};if(ia[e].max)i=a[e].max;return i;},_getLayout:function(){return this._getAttributeFromList('layout','standard',['standard','button_count','box_count','simple']);},_shouldShowFaces:function(){return this._getLayout()==='standard'&&this._getBoolAttribute('show-faces',true);},_handleEdgeCommentDialogPresentation:function(b){if(!this.isValid())return;var a=document.createElement('span');this._commentSlave=this._createEdgeCommentWidget(b,a);this.dom.appendChild(a);this._commentSlave.process();this._commentWidgetNode=a;},_createEdgeCommentWidget:function(b,a){var c={commentNode:a,externalUrl:b.externalURL,width:330,height:200,masterFrameName:b.masterFrameName,layout:this._getLayout(),relativeHeightOffset:this._getHeightOffset(b),relativeWidthOffset:this._getWidthOffset(b)};return new FB.XFBML.EdgeCommentWidget(c);},_getHeightOffset:function(c){if(c&&c.preComputedHeightOffset)return parseInt(c.preComputedHeightOffset,10)+'px';var a=this._getLayout();var b={standard:'21px',button_count:'18px',box_count:'-5px',simple:'17px'};return b[a];},_getCommonEdgeCommentWidgetOpts:function(c,a,d,b){return {colorscheme:this._attr.colorscheme,commentNode:a,controllerID:c.controllerID,nodeImageURL:c.nodeImageURL,nodeTitle:c.nodeTitle,nodeURL:c.nodeURL,nodeSummary:c.nodeSummary,width:400,height:300,relativeHeightOffset:(b?this._getHeightOffset(c):this._getHeightOffset()),relativeWidthOffset:(d?this._getWidthOffset(c):this._getWidthOffset()),error:c.error,siderender:c.siderender};},_getWidthOffset:function(c){if(c&&c.preComputedWidthOffset)return parseInt(c.preComputedWidthOffset,10)+'px';var a=this._getLayout();var b={standard:'0px',box_count:'0px',button_count:'0px',simple:'0px'};return b[a];},_handleEdgeCommentDialogDismissal:function(a){if(this._commentWidgetNode){this.dom.removeChild(this._commentWidgetNode);delete this._commentWidgetNode;}},_handleEdgeCommentDialogHide:function(){if(this._commentWidgetNode)this._commentWidgetNode.style.display="none";},_handleEdgeCommentDialogShow:function(){if(this._commentWidgetNode)this._commentWidgetNode.style.display="block";},_fireEventAndInvokeHandler:function(b,a){FB.Helper.fireEvent(b,this);FB.Helper.invokeHandler(this.getAttribute(a),this,[this._attr.href]);},_onEdgeCreate:function(){this._fireEventAndInvokeHandler('edge.create','on-create');},_onEdgeRemove:function(){this._fireEventAndInvokeHandler('edge.remove','on-remove');},_onAuthPrompt:function(){this._fireEventAndInvokeHandler('auth.prompt','on-prompt');}}); FB.subclass('XFBML.SendButtonFormWidget','XFBML.EdgeCommentWidget',function(a){this._base(a);FB.Dom.addCss(this.dom,'fb_send_button_form_widget');this._attr.nodeImageURL=a.nodeImageURL;this._attr.nodeTitle=a.nodeTitle;this._attr.nodeURL=a.nodeURL;this._attr.nodeSummary=a.nodeSummary;this._attr.channel=this.getChannelUrl();this._attr.controllerID=a.controllerID;this._attr.colorscheme=a.colorscheme;this._attr.error=a.error;this._attr.siderender=a.siderender;},{_showLoader:true,getUrlBits:function(){return {name:'send_button_form_shell',params:this._attr};},oneTimeSetup:function(){this.subscribe('xd.messageSent',FB.bind(this._onMessageSent,this));},_onMessageSent:function(){FB.Event.fire('message.send',this._attr.nodeURL,this);}}); FB.subclass('XFBML.Send','XFBML.EdgeWidget',null,{setupAndValidate:function(){FB.Dom.addCss(this.dom,'fb_edge_widget_with_comment');this._attr={channel:this.getChannelUrl(),api_key:FB._apiKey,colorscheme:this.getAttribute('colorscheme','light'),href:this.getAttribute('href',window.location.href)};return true;},getUrlBits:function(){return {name:'send',params:this._attr};},_createEdgeCommentWidget:function(b,a){var c=this._getCommonEdgeCommentWidgetOpts(b,a);return new FB.XFBML.SendButtonFormWidget(c);},_getHeightOffset:function(){return '21px';},_getWidthOffset:function(){return '0px';},getSize:function(){return {width:FB.XFBML.Send.Dimensions.width,height:FB.XFBML.Send.Dimensions.height};}});FB.provide('XFBML.Send',{Dimensions:{width:56,height:25}}); FB.subclass('XFBML.Like','XFBML.EdgeWidget',null,{getUrlBits:function(){return {name:'like',params:this._attr};},_createEdgeCommentWidget:function(b,a){if('send' in this._attr&&'widget_type' in b&&b.widget_type=='send'){var c=this._getCommonEdgeCommentWidgetOpts(b,a,true,true);return new FB.XFBML.SendButtonFormWidget(c);}else return this._callBase("_createEdgeCommentWidget",b,a);},getIframeTitle:function(){return 'Like this content on Facebook.';}}); FB.subclass('XFBML.LikeBox','XFBML.IframeWidget',null,{_visibleAfter:'load',setupAndValidate:function(){this._attr={channel:this.getChannelUrl(),api_key:FB._apiKey,connections:this.getAttribute('connections'),css:this.getAttribute('css'),height:this.getAttribute('height'),id:this.getAttribute('profile-id'),header:this._getBoolAttribute('header',true),name:this.getAttribute('name'),show_faces:this._getBoolAttribute('show-faces',true),stream:this._getBoolAttribute('stream',true),width:this._getPxAttribute('width',300),href:this.getAttribute('href'),colorscheme:this.getAttribute('colorscheme','light')};if(this._attr.connections==='0'){this._attr.show_faces=false;}else if(this._attr.connections)this._attr.show_faces=true;if(!this._attr.id&&!this._attr.name&&!this._attr.href){FB.log(' requires one of the "id" or "name" attributes.');return false;}var a=this._attr.height;if(!a)if(!this._attr.show_faces&&!this._attr.stream){a=62;}else{a=95;if(this._attr.show_faces)a+=163;if(this._attr.stream)a+=300;if(this._attr.header&&this._attr.header!=='0')a+=32;}this._attr.height=a;this.subscribe('xd.likeboxLiked',FB.bind(this._onLiked,this));this.subscribe('xd.likeboxUnliked',FB.bind(this._onUnliked,this));return true;},getSize:function(){return {width:this._attr.width,height:this._attr.height};},getUrlBits:function(){return {name:'likebox',params:this._attr};},_onLiked:function(){FB.Helper.fireEvent('edge.create',this);},_onUnliked:function(){FB.Helper.fireEvent('edge.remove',this);}}); FB.subclass('XFBML.LiveStream','XFBML.IframeWidget',null,{_visibleAfter:'load',setupAndValidate:function(){this._attr={height:this._getPxAttribute('height',500),hideFriendsTab:this.getAttribute('hide-friends-tab'),redesigned:this._getBoolAttribute('redesigned-stream'),width:this._getPxAttribute('width',400),xid:this.getAttribute('xid','default'),always_post_to_friends:this._getBoolAttribute('always-post-to-friends',false),via_url:this.getAttribute('via_url')};return true;},getSize:function(){return {width:this._attr.width,height:this._attr.height};},getUrlBits:function(){var a=this._attr.redesigned?'live_stream_box':'livefeed';return {name:a,params:this._attr};}}); FB.subclass('XFBML.Login','XFBML.Facepile',null,{_visibleAfter:'load',getSize:function(){return {width:this._attr.width,height:94};},getUrlBits:function(){return {name:'login',params:this._attr};}}); FB.subclass('XFBML.LoginButton','XFBML.ButtonElement',null,{setupAndValidate:function(){if(this._alreadySetup)return true;this._alreadySetup=true;this._attr={autologoutlink:this._getBoolAttribute('auto-logout-link'),length:this._getAttributeFromList('length','short',['long','short']),onlogin:this.getAttribute('on-login'),perms:this.getAttribute('perms'),registration_url:this.getAttribute('registration-url'),status:'unknown'};if(this._attr.autologoutlink)FB.Event.subscribe('auth.statusChange',FB.bind(this.process,this));if(this._attr.registration_url){FB.Event.subscribe('auth.statusChange',this._saveStatus(this.process));FB.getLoginStatus(this._saveStatus(this.process));}return true;},getButtonMarkup:function(){var a=this.getOriginalHTML();if(a)return a;if(!this._attr.registration_url){if(FB.getSession()&&this._attr.autologoutlink){return FB.Intl._tx("Facebook Logout");}else return this._getLoginText();}else switch(this._attr.status){case 'unknown':return this._getLoginText();case 'notConnected':return FB.Intl._tx("Register");case 'connected':if(FB.getSession()&&this._attr.autologoutlink)return FB.Intl._tx("Facebook Logout");return this._getLoginText();default:FB.log('Unknown status: '+this.status);return FB.Intl._tx("Login");}},_getLoginText:function(){return this._attr.length=='short'?FB.Intl._tx("Login"):FB.Intl._tx("Login with Facebook");},onClick:function(){if(!this._attr.registration_url){if(!FB.getSession()||!this._attr.autologoutlink){FB.login(FB.bind(this._authCallback,this),{perms:this._attr.perms});}else FB.logout(FB.bind(this._authCallback,this));}else switch(this._attr.status){case 'unknown':FB.ui({method:'auth.loginToFacebook'},FB.bind(function(a){FB.getLoginStatus(this._saveStatus(this._authCallback),true);},this));break;case 'notConnected':window.top.location=this._attr.registration_url;break;case 'connected':if(!FB.getSession()||!this._attr.autologoutlink){this._authCallback();}else FB.logout(FB.bind(this._authCallback,this));break;default:FB.log('Unknown status: '+this.status);}},_authCallback:function(a){FB.Helper.invokeHandler(this._attr.onlogin,this,[a]);},_saveStatus:function(a){return FB.bind(function(b){this._attr.status=b.status;if(a){a=this.bind(a,this);return a(b);}},this);}}); FB.subclass('XFBML.Name','XFBML.Element',null,{process:function(){FB.copy(this,{_uid:this.getAttribute('uid'),_firstnameonly:this._getBoolAttribute('first-name-only'),_lastnameonly:this._getBoolAttribute('last-name-only'),_possessive:this._getBoolAttribute('possessive'),_reflexive:this._getBoolAttribute('reflexive'),_objective:this._getBoolAttribute('objective'),_linked:this._getBoolAttribute('linked',true),_subjectId:this.getAttribute('subject-id')});if(!this._uid){FB.log('"uid" is a required attribute for ');this.fire('render');return;}var b=[];if(this._firstnameonly){b.push('first_name');}else if(this._lastnameonly){b.push('last_name');}else b.push('name');if(this._subjectId){b.push('sex');if(this._subjectId==FB.Helper.getLoggedInUser())this._reflexive=true;}var a;FB.Event.monitor('auth.statusChange',this.bind(function(){if(!this.isValid()){this.fire('render');return true;}if(!this._uid||this._uid=='loggedinuser')this._uid=FB.Helper.getLoggedInUser();if(!this._uid)return;if(FB.Helper.isUser(this._uid)){a=FB.Data._selectByIndex(b,'user','uid',this._uid);}else a=FB.Data._selectByIndex(['name','id'],'profile','id',this._uid);a.wait(this.bind(function(c){if(this._subjectId==this._uid){this._renderPronoun(c[0]);}else this._renderOther(c[0]);this.fire('render');}));}));},_renderPronoun:function(b){var c='',a=this._objective;if(this._subjectId){a=true;if(this._subjectId===this._uid)this._reflexive=true;}if(this._uid==FB.Connect.get_loggedInUser()&&this._getBoolAttribute('use-you',true)){if(this._possessive){if(this._reflexive){c='your own';}else c='your';}else if(this._reflexive){c='yourself';}else c='you';}else switch(b.sex){case 'male':if(this._possessive){c=this._reflexive?'his own':'his';}else if(this._reflexive){c='himself';}else if(a){c='him';}else c='he';break;case 'female':if(this._possessive){c=this._reflexive?'her own':'her';}else if(this._reflexive){c='herself';}else if(a){c='her';}else c='she';break;default:if(this._getBoolAttribute('use-they',true)){if(this._possessive){if(this._reflexive){c='their own';}else c='their';}else if(this._reflexive){c='themselves';}else if(a){c='them';}else c='they';}else if(this._possessive){if(this._reflexive){c='his/her own';}else c='his/her';}else if(this._reflexive){c='himself/herself';}else if(a){c='him/her';}else c='he/she';break;}if(this._getBoolAttribute('capitalize',false))c=FB.Helper.upperCaseFirstChar(c);this.dom.innerHTML=c;},_renderOther:function(c){if(!c)return;var b='',a='';if(this._uid==FB.Helper.getLoggedInUser()&&this._getBoolAttribute('use-you',true)){if(this._reflexive){if(this._possessive){b='your own';}else b='yourself';}else if(this._possessive){b='your';}else b='you';}else{if(null===c.first_name)c.first_name='';if(null===c.last_name)c.last_name='';if(this._firstnameonly&&c.first_name!==undefined){b=FB.String.escapeHTML(c.first_name);}else if(this._lastnameonly&&c.last_name!==undefined)b=FB.String.escapeHTML(c.last_name);if(!b)b=FB.String.escapeHTML(c.name);if(b!==''&&this._possessive)b+='\'s';}if(!b)b=FB.String.escapeHTML(this.getAttribute('if-cant-see','Facebook User'));if(b){if(this._getBoolAttribute('capitalize',false))b=FB.Helper.upperCaseFirstChar(b);if(this._linked){a=FB.Helper.getProfileLink(c,b,this.getAttribute('href',null));}else a=b;}this.dom.innerHTML=a;}}); FB.subclass('XFBML.ProfilePic','XFBML.Element',null,{process:function(){var d=this.getAttribute('size','thumb'),b=FB.XFBML.ProfilePic._sizeToPicFieldMap[d],g=this._getPxAttribute('width'),a=this._getPxAttribute('height'),e=this.dom.style,f=this.getAttribute('uid');if(this._getBoolAttribute('facebook-logo'))b+='_with_logo';if(g){g=g+'px';e.width=g;}if(a){a=a+'px';e.height=a;}var c=this.bind(function(j){var l=j?j[0]:null,i=l?l[b]:null;if(!i)i=FB.getDomain('cdn')+FB.XFBML.ProfilePic._defPicMap[b];var k=((g?'width:'+g+';':'')+(a?'height:'+g+';':'')),h=FB.String.format('{1}',i,l?FB.String.escapeHTML(l.name):'',k,this.dom.className);if(this._getBoolAttribute('linked',true))h=FB.Helper.getProfileLink(l,h,this.getAttribute('href',null));this.dom.innerHTML=h;FB.Dom.addCss(this.dom,'fb_profile_pic_rendered');this.fire('render');});FB.Event.monitor('auth.statusChange',this.bind(function(){if(!this.isValid()){this.fire('render');return true;}if(this.getAttribute('uid',null)=='loggedinuser')f=FB.Helper.getLoggedInUser();if(FB._userStatus&&f){FB.Data._selectByIndex(['name',b],FB.Helper.isUser(f)?'user':'profile',FB.Helper.isUser(f)?'uid':'id',f).wait(c);}else c();}));}});FB.provide('XFBML.ProfilePic',{_defPicMap:{pic:'pics/s_silhouette.jpg',pic_big:'pics/d_silhouette.gif',pic_big_with_logo:'pics/d_silhouette_logo.gif',pic_small:'pics/t_silhouette.jpg',pic_small_with_logo:'pics/t_silhouette_logo.gif',pic_square:'pics/q_silhouette.gif',pic_square_with_logo:'pics/q_silhouette_logo.gif',pic_with_logo:'pics/s_silhouette_logo.gif'},_sizeToPicFieldMap:{n:'pic_big',normal:'pic_big',q:'pic_square',s:'pic',small:'pic',square:'pic_square',t:'pic_small',thumb:'pic_small'}}); FB.subclass('XFBML.Recommendations','XFBML.IframeWidget',null,{_visibleAfter:'load',_refreshOnAuthChange:true,setupAndValidate:function(){this._attr={border_color:this.getAttribute('border-color'),colorscheme:this.getAttribute('color-scheme'),filter:this.getAttribute('filter'),font:this.getAttribute('font'),header:this._getBoolAttribute('header'),height:this._getPxAttribute('height',300),site:this.getAttribute('site',location.hostname),width:this._getPxAttribute('width',300)};return true;},getSize:function(){return {width:this._attr.width,height:this._attr.height};},getUrlBits:function(){return {name:'recommendations',params:this._attr};}}); FB.subclass('XFBML.Registration','XFBML.IframeWidget',null,{_visibleAfter:'immediate',_baseHeight:167,_fieldHeight:28,_skinnyWidth:520,_skinnyBaseHeight:173,_skinnyFieldHeight:52,setupAndValidate:function(){this._attr={action:this.getAttribute('action'),border_color:this.getAttribute('border-color'),channel_url:this.getChannelUrl(),client_id:FB._apiKey,fb_only:this._getBoolAttribute('fb-only',false),fields:this.getAttribute('fields'),height:this._getPxAttribute('height'),redirect_uri:this.getAttribute('redirect-uri',window.location.href),no_footer:this._getBoolAttribute('no-footer'),no_header:this._getBoolAttribute('no-header'),onvalidate:this.getAttribute('onvalidate'),width:this._getPxAttribute('width',600)};if(this._attr.onvalidate)this.subscribe('xd.validate',this.bind(function(b){var d=FB.JSON.parse(b.value);var a=this.bind(function(e){FB.Arbiter.inform('Registration.Validation',{errors:e,id:b.id},'parent.frames["'+this.getIframeNode().name+'"]',window.location.protocol=='https:');});var c=FB.Helper.executeFunctionByName(this._attr.onvalidate,d,a);if(c)a(c);}));this.subscribe('xd.authLogin',FB.bind(this._onAuthLogin,this));this.subscribe('xd.authLogout',FB.bind(this._onAuthLogout,this));return true;},getSize:function(){return {width:this._attr.width,height:this._getHeight()};},_getHeight:function(){if(this._attr.height)return this._attr.height;var b;if(!this._attr.fields){b=['name'];}else try{b=FB.JSON.parse(this._attr.fields);}catch(a){b=this._attr.fields.split(/,/);}if(this._attr.width requires the "fbml" attribute.');return false;}return true;},getSize:function(){return {width:this._attr.width,height:this._attr.height};},getUrlBits:function(){return {name:'serverfbml',params:this._attr};}}); FB.subclass('XFBML.ShareButton','XFBML.Element',null,{process:function(){this._href=this.getAttribute('href',window.location.href);this._type=this.getAttribute('type','icon_link');FB.Dom.addCss(this.dom,'fb_share_count_hidden');this._renderButton(true);},_renderButton:function(h){if(!this.isValid()){this.fire('render');return;}var d='',e='',f='',c='',g=FB.Intl._tx("Share"),i='';switch(this._type){case 'icon':case 'icon_link':c='fb_button_simple';d=(''+(this._type=='icon_link'?g:' ')+'');h=false;break;case 'link':d=FB.Intl._tx("Share on Facebook");h=false;break;case 'button':d=''+g+'';c='fb_button fb_button_small';h=false;break;case 'button_count':d=''+g+'';e=(' '+''+this._getCounterMarkup()+'');c='fb_button fb_button_small';break;default:d=''+g+'';f=(' '+''+this._getCounterMarkup()+'');c='fb_button fb_button_small';i='fb_share_count_wrapper';}var b=FB.guid();this.dom.innerHTML=FB.String.format('{4}{3}{5}',i,b,c,d,f,e);var a=document.getElementById(b);a.href=this._href;a.onclick=function(){FB.ui({method:'stream.share',u:this._href});return false;};if(!h)this.fire('render');},_getCounterMarkup:function(){if(!this._count)this._count=FB.Data._selectByIndex(['total_count'],'link_stat','url',this._href);var b='0';if(this._count.value!==undefined){if(this._count.value.length>0){var a=this._count.value[0].total_count;if(a>3){FB.Dom.removeCss(this.dom,'fb_share_count_hidden');b=a>=1e+07?Math.round(a/1e+06)+'M':(a>=10000?Math.round(a/1000)+'K':a);}}}else this._count.wait(FB.bind(this._renderButton,this,false));return ''+b+'';}}); FB.subclass('XFBML.SocialBar','XFBML.EdgeWidget',function(a){if(FB.XFBML.SocialBar.oInstance)return FB.XFBML.SocialBar.oInstance;this.dom=a;FB.XFBML.SocialBar.oInstance=this;return this;},{_fetchPreCachedLoader:false,_showLoader:false,_initialWidth:860,_initialHeight:34,_barIframe:null,_currentZ:0,_refreshOnAuthChange:true,_visibleAfter:'load',_getPageWidth:function(){var a=this._barIframe;var b=parseInt(FB.Dom.getStyle(a.parentNode,'width'),10);if(isNaN(b))b=parseInt(a.parentNode.offsetWidth,10);return b;},_minimizeToolbar:function(c){var a=this._barIframe;c.resetWidth=false;var d=300;if(c.width=='100%'){c.resetWidth=true;c.width=this._getPageWidth();}if(a.offsetWidth!=c.width){FB.Anim.ate(a,{width:c.width+'px'},d,function(e){if(c.resetWidth)FB.Dom.setStyle(e,'width','100%');});var b=this.dom.getElementsByTagName('iframe');FB.Array.forEach(b,function(e){if(e.parentNode.id=='fb_social_bar_container')return;if(!e._isHidden){e._origHeight=parseInt(FB.Dom.getStyle(e,'height'),10);e._origWidth=parseInt(FB.Dom.getStyle(e,'width'),10);e._origRight=parseInt(FB.Dom.getStyle(e,'right'),10);e._origLeft=parseInt(FB.Dom.getStyle(e,'left'),10);e._isHidden=true;FB.Anim.ate(e,{height:'0px',width:'0px',right:c.width+'px',left:(a.offsetWidth-c.width)+'px',opacity:0},d);}else{FB.Anim.ate(e,{height:e._isClosed?'0px':e._origHeight+'px',width:e._origWidth+'px',right:e._origRight+'px',left:e._origLeft+'px',opacity:100},d);e._isHidden=false;}});}},_spawnChild:function(f){var d=this._barIframe,i,g,h=document.createElement('i');if(!f.position||f.position!='left'){g=parseInt(FB.Dom.getStyle(d.parentNode,'paddingRight'),10)+(f.position?0:parseInt(f.minimizeWidth,10));i='right';}else{g=parseInt(FB.Dom.getStyle(d.parentNode,'paddingLeft'),10)+parseInt(f.offsetLeft?f.offsetLeft:0,10);i='left';}if(f.name in window.frames){var e=this.dom.getElementsByTagName?this.dom.getElementsByTagName('iframe'):document.getElementsByTagName('iframe');for(var c=0;c span{background:url(http:\/\/static.ak.fbcdn.net\/rsrc.php\/v1\/zd\/r\/Cou7n-nqK52.gif) no-repeat 5px 50\u0025;float:left;padding:5px 0 7px 26px}\n.fb_dialog_content .dialog_content{background:url(http:\/\/static.ak.fbcdn.net\/rsrc.php\/v1\/z9\/r\/jKEcVPZFk-2.gif) no-repeat 50\u0025 50\u0025;border:1px solid #555;border-bottom:0;border-top:0;height:150px}\n.fb_dialog_content .dialog_footer{background:#f2f2f2;border:1px solid #555;border-top-color:#ccc;height:40px}\n#fb_dialog_loader_close{float:right}\n.fb_iframe_widget{position:relative;display:-moz-inline-block;display:inline-block}\n.fb_iframe_widget iframe{position:relative;vertical-align:text-bottom}\n.fb_iframe_widget span{position:relative}\n.fb_hide_iframes iframe{position:relative;left:-10000px}\n.fb_iframe_widget_loader{position:relative;display:inline-block}\n.fb_iframe_widget_loader iframe{min-height:32px;z-index:2;zoom:1}\n.fb_iframe_widget_loader .FB_Loader{background:url(http:\/\/static.ak.fbcdn.net\/rsrc.php\/v1\/z9\/r\/jKEcVPZFk-2.gif) no-repeat;height:32px;width:32px;margin-left:-16px;position:absolute;left:50\u0025;z-index:4}\n.fb_button_simple,\n.fb_button_simple_rtl{background-image:url(http:\/\/static.ak.fbcdn.net\/rsrc.php\/v1\/zH\/r\/eIpbnVKI9lR.png);background-repeat:no-repeat;cursor:pointer;outline:none;text-decoration:none}\n.fb_button_simple_rtl{background-position:right 0}\n.fb_button_simple .fb_button_text{margin:0 0 0 20px;padding-bottom:1px}\n.fb_button_simple_rtl .fb_button_text{margin:0 10px 0 0}\na.fb_button_simple:hover .fb_button_text,\na.fb_button_simple_rtl:hover .fb_button_text,\n.fb_button_simple:hover .fb_button_text,\n.fb_button_simple_rtl:hover .fb_button_text{text-decoration:underline}\n.fb_button,\n.fb_button_rtl{background:#29447e url(http:\/\/static.ak.fbcdn.net\/rsrc.php\/v1\/zL\/r\/FGFbc80dUKj.png);background-repeat:no-repeat;cursor:pointer;display:inline-block;padding:0 0 0 1px;text-decoration:none;outline:none}\n.fb_button .fb_button_text,\n.fb_button_rtl .fb_button_text{background:#5f78ab url(http:\/\/static.ak.fbcdn.net\/rsrc.php\/v1\/zL\/r\/FGFbc80dUKj.png);border-top:solid 1px #879ac0;border-bottom:solid 1px #1a356e;color:#fff;display:block;font-family:\"lucida grande\",tahoma,verdana,arial,sans-serif;font-weight:bold;padding:2px 6px 3px 6px;margin:1px 1px 0 21px;text-shadow:none}\na.fb_button,\na.fb_button_rtl,\n.fb_button,\n.fb_button_rtl{text-decoration:none}\na.fb_button:active .fb_button_text,\na.fb_button_rtl:active .fb_button_text,\n.fb_button:active .fb_button_text,\n.fb_button_rtl:active .fb_button_text{border-bottom:solid 1px #29447e;border-top:solid 1px #45619d;background:#4f6aa3;text-shadow:none}\n.fb_button_xlarge,\n.fb_button_xlarge_rtl{background-position:left -60px;font-size:24px;line-height:30px}\n.fb_button_xlarge .fb_button_text{padding:3px 8px 3px 12px;margin-left:38px}\na.fb_button_xlarge:active{background-position:left -99px}\n.fb_button_xlarge_rtl{background-position:right -268px}\n.fb_button_xlarge_rtl .fb_button_text{padding:3px 8px 3px 12px;margin-right:39px}\na.fb_button_xlarge_rtl:active{background-position:right -307px}\n.fb_button_large,\n.fb_button_large_rtl{background-position:left -138px;font-size:13px;line-height:16px}\n.fb_button_large .fb_button_text{margin-left:24px;padding:2px 6px 4px 6px}\na.fb_button_large:active{background-position:left -163px}\n.fb_button_large_rtl{background-position:right -346px}\n.fb_button_large_rtl .fb_button_text{margin-right:25px}\na.fb_button_large_rtl:active{background-position:right -371px}\n.fb_button_medium,\n.fb_button_medium_rtl{background-position:left -188px;font-size:11px;line-height:14px}\na.fb_button_medium:active{background-position:left -210px}\n.fb_button_medium_rtl{background-position:right -396px}\n.fb_button_text_rtl,\n.fb_button_medium_rtl .fb_button_text{padding:2px 6px 3px 6px;margin-right:22px}\na.fb_button_medium_rtl:active{background-position:right -418px}\n.fb_button_small,\n.fb_button_small_rtl{background-position:left -232px;font-size:10px;line-height:10px}\n.fb_button_small .fb_button_text{padding:2px 6px 3px;margin-left:17px}\na.fb_button_small:active,\n.fb_button_small:active{background-position:left -250px}\n.fb_button_small_rtl{background-position:right -440px}\n.fb_button_small_rtl .fb_button_text{padding:2px 6px;margin-right:18px}\na.fb_button_small_rtl:active{background-position:right -458px}\n.fb_share_count_wrapper{position:relative;float:left}\n.fb_share_count{background:#b0b9ec none repeat scroll 0 0;color:#333;font-family:\"lucida grande\", tahoma, verdana, arial, sans-serif;text-align:center}\n.fb_share_count_inner{background:#e8ebf2;display:block}\n.fb_share_count_right{margin-left:-1px;display:inline-block}\n.fb_share_count_right .fb_share_count_inner{border-top:solid 1px #e8ebf2;border-bottom:solid 1px #b0b9ec;margin:1px 1px 0 1px;font-size:10px;line-height:10px;padding:2px 6px 3px;font-weight:bold}\n.fb_share_count_top{display:block;letter-spacing:-1px;line-height:34px;margin-bottom:7px;font-size:22px;border:solid 1px #b0b9ec}\n.fb_share_count_nub_top{border:none;display:block;position:absolute;left:7px;top:35px;margin:0;padding:0;width:6px;height:7px;background-repeat:no-repeat;background-image:url(http:\/\/static.ak.fbcdn.net\/rsrc.php\/v1\/zU\/r\/bSOHtKbCGYI.png)}\n.fb_share_count_nub_right{border:none;display:inline-block;padding:0;width:5px;height:10px;background-repeat:no-repeat;background-image:url(http:\/\/static.ak.fbcdn.net\/rsrc.php\/v1\/zX\/r\/i_oIVTKMYsL.png);vertical-align:top;background-position:right 5px;z-index:10;left:2px;margin:0 2px 0 0;position:relative}\n.fb_share_no_count{display:none}\n.fb_share_size_Small .fb_share_count_right .fb_share_count_inner{font-size:10px}\n.fb_share_size_Medium .fb_share_count_right .fb_share_count_inner{font-size:11px;padding:2px 6px 3px;letter-spacing:-1px;line-height:14px}\n.fb_share_size_Large .fb_share_count_right .fb_share_count_inner{font-size:13px;line-height:16px;padding:2px 6px 4px;font-weight:normal;letter-spacing:-1px}\n.fb_share_count_hidden .fb_share_count_nub_top,\n.fb_share_count_hidden .fb_share_count_top,\n.fb_share_count_hidden .fb_share_count_nub_right,\n.fb_share_count_hidden .fb_share_count_right{visibility:hidden}\n.fb_connect_bar_container div,\n.fb_connect_bar_container span,\n.fb_connect_bar_container a,\n.fb_connect_bar_container img,\n.fb_connect_bar_container strong{background:none;border-spacing:0;border:0;direction:ltr;font-style:normal;font-variant:normal;letter-spacing:normal;line-height:1;margin:0;overflow:visible;padding:0;text-align:left;text-decoration:none;text-indent:0;text-shadow:none;text-transform:none;visibility:visible;white-space:normal;word-spacing:normal;vertical-align:baseline}\n.fb_connect_bar_container{position:fixed;left:0 !important;right:0 !important;height:42px !important;padding:0 25px !important;margin:0 !important;vertical-align:middle !important;border-bottom:1px solid #333 !important;background:#3b5998 !important;z-index:99999999 !important;overflow:hidden !important}\n.fb_connect_bar_container_ie6{position:absolute;top:expression(document.compatMode==\"CSS1Compat\"? document.documentElement.scrollTop+\"px\":body.scrollTop+\"px\")}\n.fb_connect_bar{position:relative;margin:auto;height:100\u0025;width:100\u0025;padding:6px 0 0 0 !important;background:none;color:#fff !important;font-family:\"lucida grande\", tahoma, verdana, arial, sans-serif !important;font-size:13px !important;font-style:normal !important;font-variant:normal !important;font-weight:normal !important;letter-spacing:normal !important;line-height:1 !important;text-decoration:none !important;text-indent:0 !important;text-shadow:none !important;text-transform:none !important;white-space:normal !important;word-spacing:normal !important}\n.fb_connect_bar a:hover{color:#fff}\n.fb_connect_bar .fb_profile img{height:30px;width:30px;vertical-align:middle;margin:0 6px 5px 0}\n.fb_connect_bar div a,\n.fb_connect_bar span,\n.fb_connect_bar span a{color:#bac6da;font-size:11px;text-decoration:none}\n.fb_connect_bar .fb_buttons{float:right;margin-top:7px}\n.fb_edge_widget_with_comment{position:relative;*z-index:1000}\n.fb_edge_widget_with_comment span.fb_edge_comment_widget{position:absolute}\n.fb_edge_widget_with_comment span.fb_edge_comment_widget iframe.fb_ltr{left:-4px}\n.fb_edge_widget_with_comment span.fb_edge_comment_widget iframe.fb_rtl{left:2px}\n.fb_edge_widget_with_comment span.fb_send_button_form_widget{left:0}\n.fb_edge_widget_with_comment span.fb_send_button_form_widget .FB_Loader{left:10\u0025}\n#fb_social_bar_container{position:fixed;left:0;right:0;height:34px;padding:0 25px;z-index:999999999}\n.fb_social_bar_iframe{position:relative;float:right;opacity:0;-moz-opacity:0;filter:alpha(opacity=0)}\n.fb_social_bar_iframe_bottom_ie6{bottom:auto;top:expression(eval(document.documentElement.scrollTop+document.documentElement.clientHeight-this.offsetHeight-(parseInt(this.currentStyle.marginTop,10)||0)-(parseInt(this.currentStyle.marginBottom,10)||0)))}\n.fb_social_bar_iframe_top_ie6{bottom:auto;top:expression(eval(document.documentElement.scrollTop-this.offsetHeight-(parseInt(this.currentStyle.marginTop,10)||0)-(parseInt(this.currentStyle.marginBottom,10)||0)))}\n", ["fb.css.base","fb.css.dialog","fb.css.iframewidget","fb.css.button","fb.css.sharebutton","fb.css.connectbarwidget","fb.css.edgecommentwidget","fb.css.sendbuttonformwidget","fb.css.socialbarwidget"]); }]]>
                        false
                        3588795701143493632 3145984 Cleartext submission of password http://utopiaguide.com High Certain
                      3. http://utopiaguide.com/forums/login.php?do=login
                      4. The form contains the following password field:
                        • vb_login_password
                        ]]>
                        UtopiaGuide



                        Go Back   UtopiaGuide
                        Register FAQ Members List CalendarvBookieToplist Today's Posts

                        vBulletin Message
                        Invalid Action Specified

                        Forum Jump

                        All times are GMT -8. The time now is 12:33 PM.

                        This site is operated under license by  UtopiaGuide LLC Copyright 2006-2007 and all rights reserved UtopiaGuide.com

                        Powered by vBulletin® Version 3.6.8
                        Copyright ©2000 - 2011, Jelsoft Enterprises Ltd.

                        ]]>
                        false