1.1. http://www.expedia.com/daily/common/moreinfo.asp [trl parameter]
1.2. http://www.expedia.com/pub/agent.dll [rged parameter]
1.3. http://www.expedia.com/pub/agent.dll [rgst parameter]
1.4. http://www.expedia.com/pubspec/scripts/eap.asp [TripLength parameter]
2. Cross-site scripting (reflected)
2.1. http://www.expedia.com/pub/agent.dll [date1 parameter]
2.2. https://www.expedia.com/pub/agent.dll [selc parameter]
2.3. http://www.expedia.com/default.asp [MC1 cookie]
3.1. http://www.expedia.com/daily/common/moreinfo.asp [mon parameter]
3.2. http://www.expedia.com/pub/agent.dll [hfnm parameter]
3.3. https://www.expedia.com/pub/agent.dll [COOKIECHECK cookie]
3.4. https://www.expedia.com/pub/agent.dll [JSESSION cookie]
3.5. https://www.expedia.com/pub/agent.dll [MC1 cookie]
3.6. https://www.expedia.com/pub/agent.dll [U9Z5 cookie]
3.7. https://www.expedia.com/pub/agent.dll [aspp cookie]
3.8. https://www.expedia.com/pub/agent.dll [bn_u cookie]
3.9. https://www.expedia.com/pub/agent.dll [hfnm parameter]
3.10. https://www.expedia.com/pub/agent.dll [iEAPID cookie]
3.11. https://www.expedia.com/pub/agent.dll [ipsnf3 cookie]
3.12. https://www.expedia.com/pub/agent.dll [jscript cookie]
3.13. https://www.expedia.com/pub/agent.dll [p1 cookie]
3.14. https://www.expedia.com/pub/agent.dll [s1 cookie]
3.15. https://www.expedia.com/pub/agent.dll [s_sess cookie]
3.16. https://www.expedia.com/pub/agent.dll [s_vi cookie]
3.17. https://www.expedia.com/pub/agent.dll [srvys cookie]
4.1. http://www.expedia.com/crossdomain.xml
4.2. https://www.expedia.com/crossdomain.xml
5. Cookie scoped to parent domain
5.1. http://www.expedia.com/Hotels
5.2. http://www.expedia.com/default.asp
5.3. http://www.expedia.com/pub/agent.dll
5.4. https://www.expedia.com/pub/agent.dll
6. Cookie without HttpOnly flag set
6.1. http://www.expedia.com/Hotels
6.2. http://www.expedia.com/default.asp
6.3. http://www.expedia.com/pub/agent.dll
6.4. https://www.expedia.com/pub/agent.dll
7. Password field with autocomplete enabled
7.1. https://www.expedia.com/pub/agent.dll
7.2. https://www.expedia.com/pub/agent.dll
10. SSL cookie without secure flag set
11. Cross-domain Referer leakage
11.1. http://www.expedia.com/daily/hotels/unpublishedrates/default.asp
11.2. http://www.expedia.com/pub/agent.dll
11.3. http://www.expedia.com/static/default/default/scripts/exp/core/ChannelTracking.js
11.4. https://www.expedia.com/pub/agent.dll
12. Cross-domain script include
13.1. http://www.expedia.com/pubspec/scripts/include/overrideHelper.js
13.2. https://www.expedia.com/pubspec/scripts/include/overrideHelper.js
14. Private IP addresses disclosed
14.1. http://www.expedia.com/pub/agent.dll
14.2. http://www.expedia.com/pub/agent.dll
14.3. http://www.expedia.com/pub/agent.dll
14.4. http://www.expedia.com/pub/agent.dll
14.5. http://www.expedia.com/pub/agent.dll
14.6. http://www.expedia.com/pub/agent.dll
14.7. http://www.expedia.com/pub/agent.dll
14.8. http://www.expedia.com/pub/agent.dll
14.9. http://www.expedia.com/pub/agent.dll
14.10. https://www.expedia.com/pub/agent.dll
14.11. https://www.expedia.com/pub/agent.dll
14.12. https://www.expedia.com/pub/agent.dll
14.13. https://www.expedia.com/pub/agent.dll
14.14. https://www.expedia.com/pub/agent.dll
14.15. https://www.expedia.com/pub/agent.dll
14.16. https://www.expedia.com/pub/agent.dll
15.1. http://www.expedia.com/daily/styles/3ColFlex1024.css
15.2. https://www.expedia.com/pub/agent.dll
16.1. https://www.expedia.com/pub/agent.dll
16.2. https://www.expedia.com/pubspec/scripts/isE3OnHtx.asp
17. HTML does not specify charset
17.1. http://www.expedia.com/pubspec/scripts/isE3OnHtx.asp
17.2. https://www.expedia.com/pubspec/scripts/isE3OnHtx.asp
18. Content type incorrectly stated
18.1. http://www.expedia.com/daily/js/flash.vbs
18.2. http://www.expedia.com/pubspec/scripts/isE3OnHtx.asp
18.3. https://www.expedia.com/pubspec/scripts/isE3OnHtx.asp
19. Content type is not specified
19.1. http://www.expedia.com/static/default/default/images/close.gif
19.2. http://www.expedia.com/static/frog/v0.1a/images/iconSpritesT.png
19.3. http://www.expedia.com/static/fusion/v2.3/images/buttonBG.png
19.4. http://www.expedia.com/static/fusion/v2.3/images/container/module-borders-sprite-alpha.png
19.5. http://www.expedia.com/static/fusion/v2.3/images/customersupport/flyout_arrow.png
19.6. http://www.expedia.com/static/fusion/v2.3/images/customersupport/lady78x78.gif
19.7. http://www.expedia.com/static/fusion/v2.3/images/iconsSprites.png
19.8. http://www.expedia.com/static/fusion/v2.3/images/wizard/promo_bg.png
19.9. http://www.expedia.com/static/fusion/v2.3/images/wizard/wizard_out_bg.gif
Severity: | High |
Confidence: | Firm |
Host: | http://www.expedia.com |
Path: | /daily/common/moreinfo |
POST /daily/common/moreinfo Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com Cache-Control: max-age=0 Origin: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 Content-Length: 1023 BundleType=1&WT=Home ...[SNIP]... rigName=&LsFlightDestTLA= |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 23:21:24 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: s1=`user=v.8,0,EX011 Set-Cookie: p1=`tpid=v.1,1`accttype=v Content-Length: 77907 <!-- srvpush1 16:21:24(:715) --> <style type="text/css"> .intchk {width: 100%; font-size: 16px; font-weight: bold; color:#C60;} .intchk ul{list-style-type: none; padding: 0; margin-left: 1em;} . ...[SNIP]... <COMMENT ID=ERROR_TEXT TITLE="[MR43]: 37000 (200110): [Microsoft][ODBC SQL Server Driver][SQL Server]SP: FareCacheFareGetDepa ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=flex Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com Cache-Control: max-age=0 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:39:25 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: s1=`user=v.8,0,EX01C Set-Cookie: p1=`tpid=v.1,1`accttype=v Content-Length: 76383 <!-- srvpush1 15:39:25(:293) --> <style type="text/css"> .intchk {width: 100%; font-size: 16px; font-weight: bold; color:#C60;} .intchk ul{list-style-type: none; padding: 0; margin-left: 1em;} . ...[SNIP]... <COMMENT ID=ERROR_TEXT TITLE="[MR43]: 37000 (8114): [Microsoft][ODBC SQL Server Driver][SQL Server]Error converting data type numeric to tinyint."> ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=flex Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com Cache-Control: max-age=0 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:39:02 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: s1=`user=v.8,0,EX01C Set-Cookie: p1=`tpid=v.1,1`accttype=v Content-Length: 77852 <!-- srvpush1 15:39:01(:987) --> <style type="text/css"> .intchk {width: 100%; font-size: 16px; font-weight: bold; color:#C60;} .intchk ul{list-style-type: none; padding: 0; margin-left: 1em;} . ...[SNIP]... <COMMENT ID=ERROR_TEXT TITLE="[MR32]: 37000 (8114): [Microsoft][ODBC SQL Server Driver][SQL Server]Error converting data type int to tinyint."> ...[SNIP]... |
Severity: | High |
Confidence: | Firm |
Host: | http://www.expedia.com |
Path: | /pubspec/scripts/eap.asp |
GET /pubspec/scripts/eap.asp Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com Cache-Control: max-age=0 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:38:49 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: s1=`user=v.8,0,EX01E Set-Cookie: p1=`tpid=v.1,1`accttype=v Content-Length: 77907 <!-- srvpush1 15:38:49(:042) --> <style type="text/css"> .intchk {width: 100%; font-size: 16px; font-weight: bold; color:#C60;} .intchk ul{list-style-type: none; padding: 0; margin-left: 1em;} . ...[SNIP]... <COMMENT ID=ERROR_TEXT TITLE="[MR09]: 37000 (200110): [Microsoft][ODBC SQL Server Driver][SQL Server]SP: FareCacheFareGetDepa ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=flex Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com Cache-Control: max-age=0 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:38:22 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: s1=`user=v.8,0,EX013 Set-Cookie: p1=`tpid=v.1,1`accttype=v Content-Length: 109469 <!-- srvpush1 15:38:22(:749) --> <style type="text/css"> .intchk {width: 100%; font-size: 16px; font-weight: bold; color:#C60;} .intchk ul{list-style-type: none; padding: 0; margin-left: 1em;} . ...[SNIP]... t.value=d; f.rfrr.value=r; f.frtp.value=t; f.fcqp.value=q f.submit(); } function SubmitRdat(q,d,t) { ResetFltWiz(); f.qscr.value='flxc'; f.mnth.value='5/1/2011'; f.ddat.value='5d43e';alert(1)/ f.fcqp.value=q; f.rdat.value=d; if(q) f.rfrr.value="-22530"; else f.rfrr.value="-22531"; f.frtp.value=t; f.submit(); } function StartOver() { f.subm.value= ''; f.qscr.value ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=logi Host: www.expedia.com Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:51:25 GMT Connection: keep-alive Connection: Transfer-Encoding Content-Length: 97453 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... (i==c&&ef)Foci(ef); } g_currSel=c; } } function SHErr(c) { var e=getObj("choice1errorid" if(e)e.style.display=(1! } function SelOptOnLoad() { selectOne(383116;alert(1)/ }AddLoadFn("SelOptOnLoad( //--> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /default.asp |
GET /default.asp HTTP/1.1 Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: p1=`tpid=v.1,1`11; ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 68427 Content-Type: text/html; Charset=iso-8859-1 Cache-Control: private Date: Fri, 06 May 2011 22:34:24 GMT Connection: close Vary: Accept-Encoding Content-Length: 68427 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <COMMENT TITLE="MO ...[SNIP]... <iframe src="http://fls ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | http://www.expedia.com |
Path: | /daily/common/moreinfo |
POST /daily/common/moreinfo Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com Cache-Control: max-age=0 Origin: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 Content-Length: 1023 BundleType=1&WT=Home ...[SNIP]... gTLA=&LsFlightOrigName= |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 34651 Content-Type: text/html; Charset=iso-8859-1 Cache-Control: private Date: Fri, 06 May 2011 23:21:15 GMT Connection: close Vary: Accept-Encoding Content-Length: 34651 <html> <head> <title>Expedia.com</title <link rel="stylesheet" type="text/css" href="/daily/styles/main <style> .pageHeading {font-size:20px;font ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | http://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=cach Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:36:42 GMT Connection: close Connection: Transfer-Encoding Content-Length: 71697 <META HTTP-EQUIV="Content-Type" content="text/html; cha ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
POST /pub/agent.dll HTTP/1.1 Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com Cache-Control: max-age=0 Origin: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 Content-Length: 153 tccb=1&ussl=1&qscr=logi |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:54:23 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: jscript=1; Domain=.expedia.com; path=/ Set-Cookie: s1=`user=v.8,0,EX01C Set-Cookie: p1=`accttype=v.2,3,1 Content-Length: 97905 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
POST /pub/agent.dll HTTP/1.1 Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com Cache-Control: max-age=0 Origin: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 Content-Length: 153 tccb=1&ussl=1&qscr=logi |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:55:29 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: jscript=1; Domain=.expedia.com; path=/ Set-Cookie: s1=`user=v.8,0,EX01C Set-Cookie: p1=`accttype=v.2,3,1 Content-Length: 97905 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
POST /pub/agent.dll HTTP/1.1 Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com Cache-Control: max-age=0 Origin: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 Content-Length: 153 tccb=1&ussl=1&qscr=logi |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:54:03 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: jscript=1; Domain=.expedia.com; path=/ Set-Cookie: s1=`user=v.8,0,EX019 Set-Cookie: p1=`accttype=v.2,3,1 Content-Length: 97905 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
POST /pub/agent.dll HTTP/1.1 Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com Cache-Control: max-age=0 Origin: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 Content-Length: 153 tccb=1&ussl=1&qscr=logi |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:54:57 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: jscript=1; Domain=.expedia.com; path=/ Set-Cookie: s1=`user=v.8,0,EX014 Set-Cookie: p1=`accttype=v.2,3,1 Content-Length: 97905 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
POST /pub/agent.dll HTTP/1.1 Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com Cache-Control: max-age=0 Origin: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 Content-Length: 153 tccb=1&ussl=1&qscr=logi |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:54:29 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: jscript=1; Domain=.expedia.com; path=/ Set-Cookie: s1=`user=v.8,0,EX013 Set-Cookie: p1=`accttype=v.2,3,1 Content-Length: 97905 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
POST /pub/agent.dll HTTP/1.1 Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com Cache-Control: max-age=0 Origin: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 Content-Length: 153 tccb=1&ussl=1&qscr=logi |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:54:49 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: jscript=1; Domain=.expedia.com; path=/ Set-Cookie: s1=`user=v.8,0,EX010 Set-Cookie: p1=`accttype=v.2,3,1 Content-Length: 97905 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=cach Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:46:27 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: s1=`0`user=v.8,0 Content-Length: 71708 <META HTTP-EQUIV="Content-Type" content="text/html; cha ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
POST /pub/agent.dll HTTP/1.1 Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com Cache-Control: max-age=0 Origin: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 Content-Length: 153 tccb=1&ussl=1&qscr=logi |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:55:21 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: jscript=1; Domain=.expedia.com; path=/ Set-Cookie: s1=`user=v.8,0,EX01F Set-Cookie: p1=`accttype=v.2,3,1 Content-Length: 97905 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
POST /pub/agent.dll HTTP/1.1 Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com Cache-Control: max-age=0 Origin: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 Content-Length: 153 tccb=1&ussl=1&qscr=logi |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:53:40 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: jscript=1; Domain=.expedia.com; path=/ Set-Cookie: s1=`user=v.8,0,EX011 Set-Cookie: p1=`accttype=v.2,3,1 Content-Length: 97905 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
POST /pub/agent.dll HTTP/1.1 Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com Cache-Control: max-age=0 Origin: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 Content-Length: 153 tccb=1&ussl=1&qscr=logi |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:55:06 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: jscript=1; Domain=.expedia.com; path=/ Set-Cookie: s1=`user=v.8,0,EX01A Set-Cookie: p1=`accttype=v.2,3,1 Content-Length: 97905 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
POST /pub/agent.dll HTTP/1.1 Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com Cache-Control: max-age=0 Origin: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 Content-Length: 153 tccb=1&ussl=1&qscr=logi |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:55:35 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: jscript=1; Domain=.expedia.com; path=/ Set-Cookie: s1=`user=v.8,0,EX017 Set-Cookie: p1=`accttype=v.2,3,1 Content-Length: 97905 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
POST /pub/agent.dll HTTP/1.1 Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com Cache-Control: max-age=0 Origin: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 Content-Length: 153 tccb=1&ussl=1&qscr=logi |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:55:40 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: jscript=1; Domain=.expedia.com; path=/ Set-Cookie: s1=`user=v.8,0,EX014 Set-Cookie: p1=`accttype=v.2,3,1 Content-Length: 97905 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
POST /pub/agent.dll HTTP/1.1 Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com Cache-Control: max-age=0 Origin: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 Content-Length: 153 tccb=1&ussl=1&qscr=logi |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:55:46 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: jscript=1; Domain=.expedia.com; path=/ Set-Cookie: s1=`user=v.8,0,EX019 Set-Cookie: p1=`accttype=v.2,3,1 Content-Length: 97905 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
POST /pub/agent.dll HTTP/1.1 Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com Cache-Control: max-age=0 Origin: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 Content-Length: 153 tccb=1&ussl=1&qscr=logi |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:54:41 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: jscript=1; Domain=.expedia.com; path=/ Set-Cookie: s1=`user=v.8,0,EX01C Set-Cookie: p1=`accttype=v.2,3,1 Content-Length: 97905 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | Medium |
Confidence: | Tentative |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
POST /pub/agent.dll HTTP/1.1 Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com Cache-Control: max-age=0 Origin: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 Content-Length: 153 tccb=1&ussl=1&qscr=logi |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:55:14 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: jscript=1; Domain=.expedia.com; path=/ Set-Cookie: s1=`user=v.8,0,EX01A Set-Cookie: p1=`accttype=v.2,3,1 Content-Length: 97905 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <a href="http://www ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.expedia.com |
HTTP/1.0 200 OK Content-Length: 1950 Content-Type: text/xml Last-Modified: Tue, 27 Apr 2010 20:20:24 GMT Accept-Ranges: bytes ETag: "0b4401147e6ca1:0" Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Date: Fri, 06 May 2011 22:33:31 GMT Connection: close ...<?xml version="1.0" ?> <!DOCTYPE cross-domain-policy> <cross-domain-policy> <allow-access-from domain="*.expedia.ca" secure="true" /> <allow-access-from domain="*.expedia.co.uk" secure="true" /> ...[SNIP]... <allow-access-from domain="*.expedia.com" secure="true" /> ...[SNIP]... <allow-access-from domain="content.expedia.com" secure="true" /> ...[SNIP]... <allow-access-from domain="ads.expedia.com" secure="true" /> ...[SNIP]... <allow-access-from domain="media.expedia.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.expedia.com.au" secure="true" /> ...[SNIP]... <allow-access-from domain="*.expedia.com.jp" secure="true" /> ...[SNIP]... <allow-access-from domain="*.expedia.de" secure="true" /> ...[SNIP]... <allow-access-from domain="*.expedia.fr" secure="true" /> ...[SNIP]... <allow-access-from domain="*.expedia.it" secure="true" /> ...[SNIP]... <allow-access-from domain="*.expedia.nl" secure="true" /> ...[SNIP]... <allow-access-from domain=" www.expediacorporate.com" secure="true"/> ...[SNIP]... <allow-access-from domain="expediacorporate.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*expediacorporate.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.hotels.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.hotwire.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.tripadvisor.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.wwte.ca" secure="true" /> ...[SNIP]... <allow-access-from domain="*.wwte1.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.wwte4.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.wwte5.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.wwte7.com" secure="true" /> ...[SNIP]... <allow-access-from domain="labadssrv01" secure="true" /> ...[SNIP]... <allow-access-from domain="labadsol01" secure="true" /> ...[SNIP]... <allow-access-from domain="10.95.1.5" secure="true" /> ...[SNIP]... <allow-access-from domain="belwaweb01" secure="true" /> ...[SNIP]... <allow-access-from domain="*.unicast.com" secure="true" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /crossdomain.xml |
GET /crossdomain.xml HTTP/1.0 Host: www.expedia.com |
HTTP/1.0 200 OK Content-Length: 1950 Content-Type: text/xml Last-Modified: Tue, 27 Apr 2010 20:20:24 GMT Accept-Ranges: bytes ETag: "0b4401147e6ca1:0" Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Date: Fri, 06 May 2011 22:40:52 GMT Connection: close ...<?xml version="1.0" ?> <!DOCTYPE cross-domain-policy> <cross-domain-policy> <allow-access-from domain="*.expedia.ca" secure="true" /> <allow-access-from domain="*.expedia.co.uk" secure="true" /> ...[SNIP]... <allow-access-from domain="*.expedia.com" secure="true" /> ...[SNIP]... <allow-access-from domain="content.expedia.com" secure="true" /> ...[SNIP]... <allow-access-from domain="ads.expedia.com" secure="true" /> ...[SNIP]... <allow-access-from domain="media.expedia.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.expedia.com.au" secure="true" /> ...[SNIP]... <allow-access-from domain="*.expedia.com.jp" secure="true" /> ...[SNIP]... <allow-access-from domain="*.expedia.de" secure="true" /> ...[SNIP]... <allow-access-from domain="*.expedia.fr" secure="true" /> ...[SNIP]... <allow-access-from domain="*.expedia.it" secure="true" /> ...[SNIP]... <allow-access-from domain="*.expedia.nl" secure="true" /> ...[SNIP]... <allow-access-from domain=" www.expediacorporate.com" secure="true"/> ...[SNIP]... <allow-access-from domain="expediacorporate.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*expediacorporate.com" secure="true"/> ...[SNIP]... <allow-access-from domain="*.hotels.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.hotwire.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.tripadvisor.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.wwte.ca" secure="true" /> ...[SNIP]... <allow-access-from domain="*.wwte1.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.wwte4.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.wwte5.com" secure="true" /> ...[SNIP]... <allow-access-from domain="*.wwte7.com" secure="true" /> ...[SNIP]... <allow-access-from domain="labadssrv01" secure="true" /> ...[SNIP]... <allow-access-from domain="labadsol01" secure="true" /> ...[SNIP]... <allow-access-from domain="10.95.1.5" secure="true" /> ...[SNIP]... <allow-access-from domain="belwaweb01" secure="true" /> ...[SNIP]... <allow-access-from domain="*.unicast.com" secure="true" /> ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.expedia.com |
Path: | /Hotels |
GET /Hotels HTTP/1.1 Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Vary: Accept-Encoding Content-Type: text/html;charset=UTF-8 Date: Fri, 06 May 2011 22:42:12 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: iEAPID=000,; Domain=.expedia.com; Path=/ Set-Cookie: JSESSION=ed861fe0-7e58 Set-Cookie: s1=`0; Domain=.expedia.com; Path=/ Set-Cookie: p1=`gacct=v.1,1,215819496 Content-Length: 133396 <!DOCTYPE html> <html> <head> <meta name="language" content="en_US"/> <meta name="robots" content="noydir, noodp"/> <title>Hotels: Find cheap hotel deals & resorts, make hotel reservations | E ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /default.asp |
GET /default.asp HTTP/1.1 Host: www.expedia.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: p1=`tpid=v.1,1`11 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 69466 Content-Type: text/html; Charset=iso-8859-1 Cache-Control: private Vary: Accept-Encoding Date: Fri, 06 May 2011 22:33:31 GMT Connection: close Set-Cookie: ipsnf3=v.3|US|1|511 Set-Cookie: MC1=GUID=6EAD9261B09 Set-Cookie: COOKIECHECK=1; domain=.expedia.com; path=/ Content-Length: 69466 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <COMMENT TITLE="MO ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=info HTTP/1.1 Host: www.expedia.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: p1=`tpid=v.1,1`11; ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:35:50 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: jscript=1; Domain=.expedia.com; path=/ Set-Cookie: s1=`user=v.8,0,EX012 Set-Cookie: p1=`tpid=v.1,1`accttype=v Content-Length: 43196 <META HTTP-EQUIV="Content-Type" content="text/html; c ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=fbak& Host: www.expedia.com Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:40:52 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: s1=`user=v.8,0,EX018 Set-Cookie: p1=`tpid=v.1,1`accttype=v Content-Length: 155628 <META HTTP-EQUIV="Content-Type" content="text/html; c ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.expedia.com |
Path: | /Hotels |
GET /Hotels HTTP/1.1 Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Vary: Accept-Encoding Content-Type: text/html;charset=UTF-8 Date: Fri, 06 May 2011 22:42:12 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: iEAPID=000,; Domain=.expedia.com; Path=/ Set-Cookie: JSESSION=ed861fe0-7e58 Set-Cookie: s1=`0; Domain=.expedia.com; Path=/ Set-Cookie: p1=`gacct=v.1,1,215819496 Content-Length: 133396 <!DOCTYPE html> <html> <head> <meta name="language" content="en_US"/> <meta name="robots" content="noydir, noodp"/> <title>Hotels: Find cheap hotel deals & resorts, make hotel reservations | E ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /default.asp |
GET /default.asp HTTP/1.1 Host: www.expedia.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: p1=`tpid=v.1,1`11 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 69466 Content-Type: text/html; Charset=iso-8859-1 Cache-Control: private Vary: Accept-Encoding Date: Fri, 06 May 2011 22:33:31 GMT Connection: close Set-Cookie: ipsnf3=v.3|US|1|511 Set-Cookie: MC1=GUID=6EAD9261B09 Set-Cookie: COOKIECHECK=1; domain=.expedia.com; path=/ Content-Length: 69466 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <COMMENT TITLE="MO ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=info HTTP/1.1 Host: www.expedia.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: p1=`tpid=v.1,1`11; ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:35:50 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: jscript=1; Domain=.expedia.com; path=/ Set-Cookie: s1=`user=v.8,0,EX012 Set-Cookie: p1=`tpid=v.1,1`accttype=v Content-Length: 43196 <META HTTP-EQUIV="Content-Type" content="text/html; c ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=fbak& Host: www.expedia.com Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:40:52 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: s1=`user=v.8,0,EX018 Set-Cookie: p1=`tpid=v.1,1`accttype=v Content-Length: 155628 <META HTTP-EQUIV="Content-Type" content="text/html; c ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=logi Host: www.expedia.com Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:44:13 GMT Connection: keep-alive Connection: Transfer-Encoding Content-Length: 97787 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <table BORDER=0 CELLSPACING=0 CELLPADDING=0> <FORM METHOD=POST NAME="MainForm" ACTION="/pub/agent.dll" onSubmit="return false;"> <script type="text/javascript"> ...[SNIP]... <td><INPUT TYPE=PASSWORD NAME="pas1" id="pas1" SIZE=25,1 MAXLENGTH=30 VALUE=""></TD> ...[SNIP]... <TD><INPUT TYPE=PASSWORD NAME="pas2" id="pas2" SIZE=25,1 MAXLENGTH=30 VALUE=""></TD> ...[SNIP]... |
Severity: | Low |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=logi Host: www.expedia.com Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:44:13 GMT Connection: keep-alive Connection: Transfer-Encoding Content-Length: 97787 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <TABLE BORDER=0 CELLSPACING=0 CELLPADDING=0 width="100%" > <FORM METHOD=POST NAME="SignIn1" ACTION="https://www <TR> ...[SNIP]... <TD><INPUT TYPE=PASSWORD NAME=upwd id="upwd" MAXLENGTH=30 SIZE=30 onKeyPress="TEK( ...[SNIP]... |
Severity: | Low |
Confidence: | Tentative |
Host: | http://www.expedia.com |
Path: | /static/fusion/v2.3 |
GET /static/fusion/v2.3 Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"1636-1303251687426" Last-Modified: Tue, 19 Apr 2011 22:21:27 GMT Content-Length: 1636 Date: Fri, 06 May 2011 22:42:18 GMT Connection: close .PNG . ...IHDR...,...S............ ...[SNIP]... </x:xmpmeta> <?xpacket end="r"?>..M"....PLTE..i......... ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.expedia.com |
Path: | /daily/service/default |
GET /daily/service/default Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 301 Moved Permanently Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Location: http://support.expedia Content-Length: 17530 Content-Type: text/html; Charset=iso-8859-1 Cache-Control: private Date: Fri, 06 May 2011 22:40:06 GMT Connection: close Vary: Accept-Encoding <!--::163099::--> <HTML> <HEAD> <LINK REL=stylesheet HREF="/daily/common/style <TITLE>Customer Service</TITLE> <script language="javascript" src="http://media.expedia </HEAD> <BODY BGCOLOR=#FFFFFF LINK=#333399 VLINK=#660066 ALINK=#333399 TOPMARGIN=0 LEFTMARGIN=0 MARGINWIDTH=0 MARGINHEIGHT=0> <BASEFONT FACE="Arial,Helvetica,San Serif" size=2> <!--::163099::--> <link rel="stylesheet" type="text/css" href="/daily/styles/main <script type="text/javascript" language="javascript" src="/daily/js/common.js <script language="javascript" src="http://media.expedia <script language="javascript" src="/daily/js/flash.js"> <script language="vbscript" src="/daily/js/flash.vbs" <script language="javascript" type="text/javascript" src="/static/default <div id="xp-hdr" style="float:left;"> <script type="text/javascript"> if (typeof xp === "undefined"){ var xp = {}; } if (typeof xp.namespace === "undefined"){ xp.namespace = function() { var args = arguments, root = null, pkg; for (i=0; i<args.length; i=i+1) { pkg = args[i].split('.'); root = window; for (j=0; j<pkg.length; j=j+1) { root[pkg[j]] = root[pkg[j]] || {}; root = root[pkg[j]]; } } return root; }; } xp.namespace("xp.nav"); xp.nav.track ...[SNIP]... |
GET /daily/service/default Host: www.expedia.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 301 Moved Permanently Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Location: http://support.expedia Content-Length: 17530 Content-Type: text/html; Charset=iso-8859-1 Cache-Control: private Date: Fri, 06 May 2011 22:40:35 GMT Connection: close Vary: Accept-Encoding <!--::163099::--> <HTML> <HEAD> <LINK REL=stylesheet HREF="/daily/common/style <TITLE>Customer Service</TITLE> <script language="javascript" src="http://media.expedia </HEAD> <BODY BGCOLOR=#FFFFFF LINK=#333399 VLINK=#660066 ALINK=#333399 TOPMARGIN=0 LEFTMARGIN=0 MARGINWIDTH=0 MARGINHEIGHT=0> <BASEFONT FACE="Arial,Helvetica,San Serif" size=2> <!--::163099::--> <link rel="stylesheet" type="text/css" href="/daily/styles/main <script type="text/javascript" language="javascript" src="/daily/js/common.js <script language="javascript" src="http://media.expedia <script language="javascript" src="/daily/js/flash.js"> <script language="vbscript" src="/daily/js/flash.vbs" <script language="javascript" type="text/javascript" src="/static/default <div id="xp-hdr" style="float:left;"> <script type="text/javascript"> if (typeof xp === "undefined"){ var xp = {}; } if (typeof xp.namespace === "undefined"){ xp.namespace = function() { var args = arguments, root = null, pkg; for (i=0; i<args.length; i=i+1) { pkg = args[i].split('.'); root = window; for (j=0; j<pkg.length; j=j+1) { root[pkg[j]] = root[pkg[j]] || {}; root = root[pkg[j]]; } } return root; }; } xp.namespace("xp.nav"); xp.nav.trackAnalytics = function (obj, type, id){ if('undefined' != typeof(s_exp_trackClick) && s_exp_trackClick){ s_exp_trackClick(obj, type, id); } return true; } xp.namespace("xp.nav ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=fbak& Host: www.expedia.com Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:40:52 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: s1=`user=v.8,0,EX018 Set-Cookie: p1=`tpid=v.1,1`accttype=v Content-Length: 155628 <META HTTP-EQUIV="Content-Type" content="text/html; c ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/hotels/unpubl |
GET /daily/hotels/unpubl Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: p1=`tpid=v.1,1`11; ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 95603 Content-Type: text/html; Charset=iso-8859-1 Cache-Control: private Date: Fri, 06 May 2011 22:34:20 GMT Connection: close Vary: Accept-Encoding Content-Length: 95603 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... </script> <a id="nav-tool-feedback" rel="nofollow" target="_top" href="https://secure Feedback </a> ...[SNIP]... <div style="float:left;padding <iframe src="http://www.facebook ...[SNIP]... <img src="http://media.expedia <a href="http://www.adobe ...[SNIP]... <li><a href="https://joinexpedia ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.hotels ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.venere ...[SNIP]... <li><a href="http://www.hotwire ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.evite ...[SNIP]... <li><a href="http://www.gifts ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.match ...[SNIP]... <li><a href="http://www.hsn.com/ ...[SNIP]... <li><a href="http://www.pronto ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.shoebuy ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.travel ...[SNIP]... <li><a href="http://investors ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <div id="footer-copyright" class="footer-list ©2011 <a href="http://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=flex Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com Cache-Control: max-age=0 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:36:07 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: s1=`user=v.8,0,EX01F Set-Cookie: p1=`tpid=v.1,1`accttype=v Content-Length: 107839 <!-- srvpush1 15:36:07(:810) --> <style type="text/css"> .intchk {width: 100%; font-size: 16px; font-weight: bold; color:#C60;} .intchk ul{list-style-type: none; padding: 0; margin-left: 1em;} . ...[SNIP]... </script> <a id="nav-tool-feedback" rel="nofollow" target="_top" href="https://secure Feedback </a> ...[SNIP]... <div style="float:left;padding <iframe src="http://www.facebook ...[SNIP]... <li><a href="https://joinexpedia ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.hotels ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.venere ...[SNIP]... <li><a href="http://www.hotwire ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.evite ...[SNIP]... <li><a href="http://www.gifts ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.match ...[SNIP]... <li><a href="http://www.hsn.com/ ...[SNIP]... <li><a href="http://www.pronto ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.shoebuy ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.travel ...[SNIP]... <li><a href="http://investors ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <div id="footer-copyright" class="footer-list ©2011 <a href="http://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/default/default |
GET /static/default/default Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: p1=`tpid=v.1,1`11; ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"10855-1304698922517" Last-Modified: Fri, 06 May 2011 16:22:02 GMT Content-Type: text/javascript Cteonnt-Length: 10855 Vary: Accept-Encoding Cache-Control: private, max-age=65846 Date: Fri, 06 May 2011 22:33:33 GMT Connection: close Content-Length: 10855 //configuration --- can be put into separate file //first flag indicates clear seoid //second flag - null indicates check for SEMCID, true is to clear the cookie, false is don't clear the cookie v ...[SNIP]... / footer var footerDiv = document.getElementById( var dynamicFooterDiv = document.createElement( dynamicFooterDiv.id = "msnnzFooterSuffix"; dynamicFooterDiv ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=fbak& Host: www.expedia.com Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:40:52 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: s1=`user=v.8,0,EX018 Set-Cookie: p1=`tpid=v.1,1`accttype=v Content-Length: 155628 <META HTTP-EQUIV="Content-Type" content="text/html; c ...[SNIP]... </script> <a id="nav-tool-feedback" rel="nofollow" target="_top" href="https://secure Feedback </a> ...[SNIP]... </div> <iframe src="https://www.facebook ...[SNIP]... <li><a href="https://joinexpedia ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /default.asp |
GET /default.asp HTTP/1.1 Host: www.expedia.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: p1=`tpid=v.1,1`11 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 69466 Content-Type: text/html; Charset=iso-8859-1 Cache-Control: private Vary: Accept-Encoding Date: Fri, 06 May 2011 22:33:31 GMT Connection: close Set-Cookie: ipsnf3=v.3|US|1|511 Set-Cookie: MC1=GUID=6EAD9261B09 Set-Cookie: COOKIECHECK=1; domain=.expedia.com; path=/ Content-Length: 69466 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org <head> <COMMENT TITLE="MO ...[SNIP]... <div class="fb_like"> <script src="http://connect ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /pubspec/scripts/include |
GET /pubspec/scripts/include Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Cteonnt-Length: 4939 Content-Type: application/x-javascript Last-Modified: Wed, 19 May 2010 19:27:03 GMT Accept-Ranges: bytes ETag: "805d654289f7ca1:0" Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Vary: Accept-Encoding Cache-Control: private, max-age=51062 Date: Fri, 06 May 2011 22:35:52 GMT Connection: close Content-Length: 4939 //This is copied over from prototype since we don't want to fully include it here var Class = { create: function() { return function() { this.initialize.apply } } } ...[SNIP]... <a href="mailto:mkirsch@expedia.com"> ...[SNIP]... <a href="mailto:mkirsch@expedia.com"> ...[SNIP]... <a href="mailto:mkirsch@expedia.com"> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /pubspec/scripts/include |
GET /pubspec/scripts/include Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Content-Type: application/x-javascript Last-Modified: Wed, 19 May 2010 19:27:03 GMT Accept-Ranges: bytes ETag: "805d654289f7ca1:0" Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Vary: Accept-Encoding Date: Fri, 06 May 2011 22:44:26 GMT Connection: keep-alive Content-Length: 4939 //This is copied over from prototype since we don't want to fully include it here var Class = { create: function() { return function() { this.initialize.apply } } } ...[SNIP]... <a href="mailto:mkirsch@expedia.com"> ...[SNIP]... <a href="mailto:mkirsch@expedia.com"> ...[SNIP]... <a href="mailto:mkirsch@expedia.com"> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=litn HTTP/1.1 Host: www.expedia.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:35:51 GMT Connection: close Connection: Transfer-Encoding Content-Length: 43196 <META HTTP-EQUIV="Content-Type" content="text/html; c ...[SNIP]... <!--TS (1/0[CID=0]) compress=1,3 log=0 BR:04000001101010110 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=fbak& Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://support.expedia User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Sat, 07 May 2011 02:49:14 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: jscript=1; Domain=.expedia.com; path=/ Set-Cookie: s1=`user=v.8,0,EX018 Content-Length: 43584 <META HTTP-EQUIV="Content-Type" content="text/html; c ...[SNIP]... <!--TS (1/0[CID=0]) compress=1,3 log=0 BR:04000001101010110 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=flex Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com Cache-Control: max-age=0 User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:36:07 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: s1=`user=v.8,0,EX01F Set-Cookie: p1=`tpid=v.1,1`accttype=v Content-Length: 107839 <!-- srvpush1 15:36:07(:810) --> <style type="text/css"> .intchk {width: 100%; font-size: 16px; font-weight: bold; color:#C60;} .intchk ul{list-style-type: none; padding: 0; margin-left: 1em;} . ...[SNIP]... <!--TS (1/0[CID=0]) compress=1,3 log=0 BR:04000001101010110 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=litn& Host: www.expedia.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:47:04 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: s1=`0`minfo=v.5 Set-Cookie: p1=`gacct=v.1,1,215819496 Content-Length: 43188 <META HTTP-EQUIV="Content-Type" content="text/html; c ...[SNIP]... <!--TS (1/0[CID=0]) compress=1,3 log=0 BR:04000001101010110 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=flex Host: www.expedia.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Sat, 07 May 2011 02:53:51 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: s1=`user=v.8,0,EX01B Set-Cookie: p1=`accttype=v.2,3,1 Content-Length: 77913 <!-- srvpush1 19:53:50(:986) --> <style type="text/css"> .intchk {width: 100%; font-size: 16px; font-weight: bold; color:#C60;} .intchk ul{list-style-type: none; padding: 0; margin-left: 1em;} . ...[SNIP]... <!--TS (1/0[CID=0]) compress=1,3 log=0 BR:04000001101010110 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=logi Host: www.expedia.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:35:57 GMT Connection: close Connection: Transfer-Encoding Content-Length: 43110 <META HTTP-EQUIV="Content-Type" content="text/html; c ...[SNIP]... <!--TS (1/0[CID=0]) compress=1,3 log=0 BR:04000001101010110 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=fbak& Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://support.expedia User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:40:46 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: s1=`user=v.8,0,EX017 Content-Length: 43132 <META HTTP-EQUIV="Content-Type" content="text/html; c ...[SNIP]... <!--TS (1/0[CID=0]) compress=1,3 log=0 BR:04000001101010110 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=flex Host: www.expedia.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:41:23 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: s1=`user=v.8,0,EX011 Set-Cookie: p1=`tpid=v.1,1`accttype=v Content-Length: 77907 <!-- srvpush1 15:41:23(:670) --> <style type="text/css"> .intchk {width: 100%; font-size: 16px; font-weight: bold; color:#C60;} .intchk ul{list-style-type: none; padding: 0; margin-left: 1em;} . ...[SNIP]... <!--TS (1/0[CID=0]) compress=1,3 log=0 BR:04000001101010110 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=info HTTP/1.1 Host: www.expedia.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: p1=`tpid=v.1,1`11; ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:35:50 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: jscript=1; Domain=.expedia.com; path=/ Set-Cookie: s1=`user=v.8,0,EX012 Set-Cookie: p1=`tpid=v.1,1`accttype=v Content-Length: 43196 <META HTTP-EQUIV="Content-Type" content="text/html; c ...[SNIP]... <!--TS (1/0[CID=0]) compress=1,3 log=0 BR:04000001101010110 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=fbak& Host: www.expedia.com Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Sat, 07 May 2011 02:49:20 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: s1=`user=v.8,0,EX015 Set-Cookie: p1=`accttype=v.2,3,1 Content-Length: 155628 <META HTTP-EQUIV="Content-Type" content="text/html; c ...[SNIP]... <!--TS (1/0[CID=0]) compress=1,3 log=0 BR:04000001101010110 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=logi Host: www.expedia.com Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:44:58 GMT Connection: keep-alive Connection: Transfer-Encoding Content-Length: 97895 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <!--TS (1/0[CID=0]) compress=1,3 log=0 BR:04000001101010110 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=logi Host: www.expedia.com Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:44:48 GMT Connection: keep-alive Connection: Transfer-Encoding Content-Length: 97895 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <!--TS (1/0[CID=0]) compress=1,3 log=0 BR:04000001101010110 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=fbak& Host: www.expedia.com Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:40:52 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: s1=`user=v.8,0,EX018 Set-Cookie: p1=`tpid=v.1,1`accttype=v Content-Length: 155628 <META HTTP-EQUIV="Content-Type" content="text/html; c ...[SNIP]... <!--TS (1/0[CID=0]) compress=1,3 log=0 BR:04000001101010110 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
POST /pub/agent.dll HTTP/1.1 Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com Cache-Control: max-age=0 Origin: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 Content-Length: 153 tccb=1&ussl=1&qscr=logi |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:45:56 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: s1=`0`user=v.8,0 Set-Cookie: p1=`gacct=v.1,1,215819496 Content-Length: 43168 <META HTTP-EQUIV="Content-Type" content="text/html; c ...[SNIP]... <!--TS (1/0[CID=0]) compress=1,3 log=0 BR:04000001101010110 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=logi Host: www.expedia.com Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:47:16 GMT Connection: keep-alive Connection: Transfer-Encoding Content-Length: 97417 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <!--TS (1/0[CID=0]) compress=1,3 log=0 BR:04000001101010110 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=logi Host: www.expedia.com Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:44:13 GMT Connection: keep-alive Connection: Transfer-Encoding Content-Length: 97787 <DIV ID="ttDiv" STYLE="position:absolute; visibility:hi ...[SNIP]... <!--TS (1/0[CID=0]) compress=1,3 log=0 BR:04000001101010110 ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/styles/3ColFl |
GET /robots.txt HTTP/1.0 Host: www.expedia.com |
HTTP/1.0 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html ntCoent-Length: 554 Cache-Control: private, max-age=86064 Date: Fri, 06 May 2011 22:33:31 GMT Connection: close User-agent: * Allow: / Disallow: /daily/common/ Disallow: /cd/ Disallow: /pub/agent.dll?qscr=mrdt Disallow: /pub/agent.dll?qscr=mrdr Disallow: /daily/vacations/merch/ Disallow: /daily/ho ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
GET /robots.txt HTTP/1.0 Host: www.expedia.com |
HTTP/1.0 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html Cache-Control: private, max-age=4402 Date: Fri, 06 May 2011 22:40:52 GMT Content-Length: 554 Connection: close User-agent: * Allow: / Disallow: /daily/common/ Disallow: /cd/ Disallow: /pub/agent.dll?qscr=mrdt Disallow: /pub/agent.dll?qscr=mrdr Disallow: /daily/vacations/merch/ Disallow: /daily/ho ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /pub/agent.dll |
GET /pub/agent.dll?qscr=fbak& Host: www.expedia.com Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Type: text/html; charset=iso-8859-1 Vary: Accept-Encoding Date: Fri, 06 May 2011 22:40:52 GMT Connection: keep-alive Connection: Transfer-Encoding Set-Cookie: s1=`user=v.8,0,EX018 Set-Cookie: p1=`tpid=v.1,1`accttype=v Content-Length: 155628 <META HTTP-EQUIV="Content-Type" content="text/html; c ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /pubspec/scripts |
GET /pubspec/scripts Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Length: 18 Content-Type: text/html Cache-Control: private Vary: Accept-Encoding Date: Fri, 06 May 2011 22:44:27 GMT Connection: keep-alive var isE3On = true; |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /pubspec/scripts |
GET /pubspec/scripts Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 18 Content-Type: text/html Cache-Control: private Date: Fri, 06 May 2011 22:35:53 GMT Connection: close Vary: Accept-Encoding Content-Length: 18 var isE3On = true; |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | /pubspec/scripts |
GET /pubspec/scripts Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Length: 18 Content-Type: text/html Cache-Control: private Vary: Accept-Encoding Date: Fri, 06 May 2011 22:44:27 GMT Connection: keep-alive var isE3On = true; |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.expedia.com |
Path: | /daily/js/flash.vbs |
GET /daily/js/flash.vbs HTTP/1.1 Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: p1=`tpid=v.1,1`11; ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Cteonnt-Length: 296 Content-Type: text/vbscript Last-Modified: Thu, 16 Mar 2006 00:03:56 GMT Accept-Ranges: bytes ETag: "07e251e8d48c61:0" Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cache-Control: private Vary: Accept-Encoding Date: Fri, 06 May 2011 22:33:32 GMT Connection: close Content-Length: 296 Function VBGetSwfVer(i) on error resume next Dim swControl, swVersion swVersion = 0 set swControl = CreateObject("Shockw if (IsObject(swControl)) then ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.expedia.com |
Path: | /pubspec/scripts |
GET /pubspec/scripts Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 18 Content-Type: text/html Cache-Control: private Date: Fri, 06 May 2011 22:35:53 GMT Connection: close Vary: Accept-Encoding Content-Length: 18 var isE3On = true; |
Severity: | Information |
Confidence: | Firm |
Host: | https://www.expedia.com |
Path: | /pubspec/scripts |
GET /pubspec/scripts Host: www.expedia.com Connection: keep-alive Referer: https://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Content-Length: 18 Content-Type: text/html Cache-Control: private Vary: Accept-Encoding Date: Fri, 06 May 2011 22:44:27 GMT Connection: keep-alive var isE3On = true; |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/default/default |
GET /static/default/default Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"922-1303251668860" Last-Modified: Tue, 19 Apr 2011 22:21:08 GMT Content-Length: 922 Date: Fri, 06 May 2011 22:42:18 GMT Connection: close GIF89a.... ..!.......,............. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/frog/v0.1a/images |
GET /static/frog/v0.1a/images Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: p1=`tpid=v.1,1`11; ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"5144-1303251708863" Last-Modified: Tue, 19 Apr 2011 22:21:48 GMT Content-Length: 5144 Date: Fri, 06 May 2011 22:34:24 GMT Connection: close .PNG . ...IHDR...,...D........p... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/fusion/v2.3 |
GET /static/fusion/v2.3 Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"1636-1303251687426" Last-Modified: Tue, 19 Apr 2011 22:21:27 GMT Content-Length: 1636 Date: Fri, 06 May 2011 22:42:18 GMT Connection: close .PNG . ...IHDR...,...S............ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/fusion/v2.3 |
GET /static/fusion/v2.3 Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"3834-1303251655888" Last-Modified: Tue, 19 Apr 2011 22:20:55 GMT Content-Length: 3834 Date: Fri, 06 May 2011 22:42:17 GMT Connection: close .PNG . ...IHDR..............q.~... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/fusion/v2.3 |
GET /static/fusion/v2.3 Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"717-1303251687426" Last-Modified: Tue, 19 Apr 2011 22:21:27 GMT Content-Length: 717 Date: Fri, 06 May 2011 22:42:18 GMT Connection: close .PNG . ...IHDR....... .............sRGB........ ..AP....E.MD"..LBhq.E.R.E ..60...M..Y..W... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/fusion/v2.3 |
GET /static/fusion/v2.3 Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"5090-1303251680296" Last-Modified: Tue, 19 Apr 2011 22:21:20 GMT Content-Length: 5090 Date: Fri, 06 May 2011 22:42:19 GMT Connection: close GIF89aN.N....... .......... ... ............ .. ......................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/fusion/v2.3 |
GET /static/fusion/v2.3 Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"4102-1303251652746" Last-Modified: Tue, 19 Apr 2011 22:20:52 GMT Content-Length: 4102 Date: Fri, 06 May 2011 22:42:16 GMT Connection: close .PNG . ...IHDR...i..........pi.... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/fusion/v2.3 |
GET /static/fusion/v2.3 Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"1548-1303251626433" Last-Modified: Tue, 19 Apr 2011 22:20:26 GMT Content-Length: 1548 Date: Fri, 06 May 2011 22:42:18 GMT Connection: close .PNG . ...IHDR.......\.....~.&.... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/fusion/v2.3 |
GET /static/fusion/v2.3 Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.60 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: ipsnf3=v.3|US|1|511 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"779-1303251658821" Last-Modified: Tue, 19 Apr 2011 22:20:58 GMT Content-Length: 779 Date: Fri, 06 May 2011 22:42:18 GMT Connection: close GIF89a........6^.}..9`.{. Tu.b..<b.q.\{.Xx.Uv.Yy.Bg.Fj.Ww Pr.Ei.Gk.Af.Lo.f..Kn.z.]|.k..r..u.[z.l..`~.m..h..z....Il.y ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://www.expedia.com |
Path: | / |
Issued to: | www.expedia.com,ST=WASHINGTON |
Issued by: | Akamai Subordinate CA 3 |
Valid from: | Sun Apr 10 17:54:27 CDT 2011 |
Valid to: | Tue Apr 10 17:54:27 CDT 2012 |
Issued to: | Akamai Subordinate CA 3 |
Issued by: | GTE CyberTrust Global Root |
Valid from: | Thu May 11 10:32:00 CDT 2006 |
Valid to: | Sat May 11 18:59:00 CDT 2013 |
Issued to: | GTE CyberTrust Global Root |
Issued by: | GTE CyberTrust Global Root |
Valid from: | Wed Aug 12 19:29:00 CDT 1998 |
Valid to: | Mon Aug 13 18:59:00 CDT 2018 |