1. Cross-site scripting (reflected)
1.1. http://www.expedia.com/daily/prod/xmlgrid/psf/HotelAndPkgStandard.aspx [host parameter]
1.2. http://www.expedia.com/daily/prod/xmlgrid/psf/HotelAndPkgStandard.aspx [host parameter]
2. Cookie scoped to parent domain
2.1. http://www.expedia.com/New-York-Hotels-Millenium-Hilton.h892034.Hotel-Information
2.2. http://www.expedia.com/daily/prod/xmlgrid/loadingImage.asp
2.3. http://www.expedia.com/daily/prod/xmlgrid/psf/HotelAndPkgStandard.aspx
2.4. http://www.expedia.com/daily/prod/xmlgrid/psf/PsfGridActivities.asp
2.5. http://www.expedia.com/daily/promos/deals/summervacationsale/default.asp
2.6. http://www.expedia.com/daily/promos/deals/summervacationsale/destination_deals.asp
2.9. http://www.expedia.com/hotel.h892034.Hotel-Information
3. Cookie without HttpOnly flag set
3.1. http://www.expedia.com/New-York-Hotels-Millenium-Hilton.h892034.Hotel-Information
3.2. http://www.expedia.com/daily/prod/xmlgrid/loadingImage.asp
3.3. http://www.expedia.com/daily/prod/xmlgrid/psf/HotelAndPkgStandard.aspx
3.4. http://www.expedia.com/daily/prod/xmlgrid/psf/PsfGridActivities.asp
3.5. http://www.expedia.com/daily/promos/deals/summervacationsale/default.asp
3.6. http://www.expedia.com/daily/promos/deals/summervacationsale/destination_deals.asp
3.9. http://www.expedia.com/hotel.h892034.Hotel-Information
4.1. http://www.expedia.com/static/default/default/images/infosite/rating_bar.gif
4.2. http://www.expedia.com/static/default/default/images/infosite/videoPlayLarge.gif
4.3. http://www.expedia.com/static/fusion/v2.3/images/buttonBG.png
4.4. http://www.expedia.com/static/fusion/v2.3/images/iconsSprites.png
6. Cross-domain Referer leakage
6.1. http://www.expedia.com/New-York-Hotels-Millenium-Hilton.h892034.Hotel-Information
6.2. http://www.expedia.com/daily/promos/deals/summervacationsale/default.asp
6.3. http://www.expedia.com/daily/promos/deals/summervacationsale/destination_deals.asp
6.4. http://www.expedia.com/static/default/default/scripts/exp/core/ChannelTracking.js
7. Cross-domain script include
8. HTML does not specify charset
8.1. http://www.expedia.com/daily/prod/xmlgrid/loadingImage.asp
8.2. http://www.expedia.com/daily/prod/xmlgrid/psf/PsfGridActivities.asp
9. Content type incorrectly stated
9.1. http://www.expedia.com/daily/js/flash.vbs
9.2. http://www.expedia.com/daily/prod/xmlgrid/psf/PsfGridActivities.asp
10. Content type is not specified
10.1. http://www.expedia.com/static/default/default/images/close_button.gif
10.2. http://www.expedia.com/static/default/default/images/infosite/hotel_detail_rating_bar.gif
10.3. http://www.expedia.com/static/default/default/images/infosite/icn_quote_beak_down.gif
10.4. http://www.expedia.com/static/default/default/images/infosite/icn_quote_beak_up.gif
10.5. http://www.expedia.com/static/default/default/images/infosite/rating_bar.gif
10.6. http://www.expedia.com/static/default/default/images/infosite/videoPlayLarge.gif
10.7. http://www.expedia.com/static/fusion/v2.3/images/buttonBG.png
10.8. http://www.expedia.com/static/fusion/v2.3/images/container/module-borders-sprite-alpha.png
10.9. http://www.expedia.com/static/fusion/v2.3/images/iconsSprites.png
Severity: | High |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/prod/xmlgrid/psf |
GET /daily/prod/xmlgrid/psf Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" X-AspNet-Version: 2.0.50727 Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Content-Type: text/html; charset=utf-8 ntCoent-Length: 101669 Expires: Sat, 11 Dec 2010 18:02:39 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:28:44 GMT Content-Length: 101669 Connection: close Vary: Accept-Encoding Set-Cookie: SSRT1=bPT1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:28:44 GMT <html xmlns="http://www.w3.org <script type="text/javascript" language="Javascript"> function sendData() { try { var f = (navigator.userAgent ...[SNIP]... <a href="http://www.expedia ...[SNIP]... |
Severity: | High |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/prod/xmlgrid/psf |
GET /daily/prod/xmlgrid/psf Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" X-AspNet-Version: 2.0.50727 Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Content-Type: text/html; charset=utf-8 ntCoent-Length: 101095 Expires: Sat, 11 Dec 2010 18:02:13 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:28:47 GMT Content-Length: 101095 Connection: close Vary: Accept-Encoding Set-Cookie: SSRT1=bvT1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:28:46 GMT <html xmlns="http://www.w3.org <script type="text/javascript" language="Javascript"> function sendData() { try { var f = (navigator.userAgent ...[SNIP]... value; var p2 = document.getElementById( var loc = getLocation(); var id = 'proxyframe'; var proxy = frames[id]; var host = 'http://www.expedia.coma6604';alert(1)/ host = (host == 'http://') ? 'http://www.expedia.com' : host; var url = host + '/daily/common/xmlgrid if(pr ...[SNIP]... |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.expedia.com |
Path: | /New-York-Hotels |
GET /New-York-Hotels Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Vary: Accept-Encoding Content-Type: text/html;charset=UTF-8 Content-Language: en-US Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Expires: Sat, 11 Dec 2010 18:03:04 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:18 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: SSLB=1; path=/; domain=.expedia.com Set-Cookie: SSRT1=E_T1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:15 GMT Set-Cookie: JSESSION=ed77ff0b-ce9e Set-Cookie: s1=`0; Domain=.expedia.com; Path=/ Set-Cookie: p1=`tpid=v.1,1`airp=v.1 Content-Length: 536572 <!DOCTYPE html> <html xmlns:og="http:/ xmlns:fb="http://www <head> <meta name="language" content="en_US"/> <meta name="robots" con ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/prod/xmlgrid |
GET /daily/prod/xmlgrid Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 163 Content-Type: text/html Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Content-Length: 163 Expires: Sat, 11 Dec 2010 18:02:39 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:08 GMT Connection: close Vary: Accept-Encoding Set-Cookie: SSRT1=DPT1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:08 GMT <div style="text-align:center |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/prod/xmlgrid/psf |
GET /daily/prod/xmlgrid/psf Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" X-AspNet-Version: 2.0.50727 Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Content-Type: text/html; charset=utf-8 ntCoent-Length: 100249 Expires: Sat, 11 Dec 2010 18:02:13 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:11 GMT Content-Length: 100249 Connection: close Vary: Accept-Encoding Set-Cookie: SSRT1=DvT1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:10 GMT <html xmlns="http://www.w3.org <script type="text/javascript" language="Javascript"> function sendData() { try { var f = (navigator.userAgent ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/prod/xmlgrid/psf |
GET /daily/prod/xmlgrid/psf Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" ntCoent-Length: 1112 Content-Type: text/html Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Content-Length: 1112 Expires: Sat, 11 Dec 2010 18:02:13 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:12 GMT Connection: close Vary: Accept-Encoding Set-Cookie: SSLB=1; path=/; domain=.expedia.com Set-Cookie: SSRT1=EPT1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:12 GMT Set-Cookie: ipsnf3=v.3|US|1|511 <?xml version="1.0"?> <div class="morewaysCustomTop" ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/promos/deals |
GET /daily/promos/deals Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://googleads.g User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: SSID1=AwCDeikAAAAA5u |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 71777 Content-Type: text/html; Charset=iso-8859-1 Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Expires: Sat, 11 Dec 2010 18:02:13 GMT Pragma: no-cache Vary: Accept-Encoding RTSS: 1 Content-Length: 71998 Date: Mon, 13 Jun 2011 11:26:51 GMT Connection: close Set-Cookie: SSRT1=-_P1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:26:51 GMT <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/promos/deals |
GET /daily/promos/deals Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 68126 Content-Type: text/html; Charset=iso-8859-1 Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Expires: Sat, 11 Dec 2010 18:02:13 GMT Pragma: no-cache Vary: Accept-Encoding RTSS: 1 Content-Length: 68347 Date: Mon, 13 Jun 2011 11:27:08 GMT Connection: close Set-Cookie: SSRT1=DPT1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:08 GMT <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/promos/doubleclick |
GET /daily/promos/doubleclick Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 9539 Content-Type: text/html Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Content-Length: 9539 Expires: Sat, 11 Dec 2010 18:01:23 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:03 GMT Connection: close Vary: Accept-Encoding Set-Cookie: SSRT1=B_T1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:03 GMT <style type="text/css"> body{padding:0;margin:0} #PcoWrapper { font-family:Arial;width .pcoImage {position:relative;width .pc ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/promos/doubleclick |
GET /daily/promos/doubleclick Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 8630 Content-Type: text/html Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Content-Length: 8630 Expires: Sat, 11 Dec 2010 18:02:13 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:03 GMT Connection: close Vary: Accept-Encoding Set-Cookie: SSRT1=B_T1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:03 GMT <style type="text/css"> body{padding:0;margin:0} #PcoWrapper { font-family:Arial;width .pcoImage {position:relative;width .pc ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /hotel.h892034.Hotel |
GET /hotel.h892034.Hotel Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 301 Moved Permanently Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Vary: Accept-Encoding Location: http://www.expedia.com Content-Type: text/html;charset=UTF-8 Content-Language: en-US Content-Length: 0 Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Expires: Sat, 11 Dec 2010 18:02:39 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:14 GMT Connection: close Set-Cookie: SSLB=1; path=/; domain=.expedia.com Set-Cookie: SSRT1=EvT1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:14 GMT Set-Cookie: iEAPID=0000,; Domain=.expedia.com; Path=/ |
Severity: | Low |
Confidence: | Firm |
Host: | http://www.expedia.com |
Path: | /New-York-Hotels |
GET /New-York-Hotels Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Vary: Accept-Encoding Content-Type: text/html;charset=UTF-8 Content-Language: en-US Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Expires: Sat, 11 Dec 2010 18:03:04 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:18 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: SSLB=1; path=/; domain=.expedia.com Set-Cookie: SSRT1=E_T1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:15 GMT Set-Cookie: JSESSION=ed77ff0b-ce9e Set-Cookie: s1=`0; Domain=.expedia.com; Path=/ Set-Cookie: p1=`tpid=v.1,1`airp=v.1 Content-Length: 536572 <!DOCTYPE html> <html xmlns:og="http:/ xmlns:fb="http://www <head> <meta name="language" content="en_US"/> <meta name="robots" con ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/prod/xmlgrid |
GET /daily/prod/xmlgrid Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 163 Content-Type: text/html Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Content-Length: 163 Expires: Sat, 11 Dec 2010 18:02:39 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:08 GMT Connection: close Vary: Accept-Encoding Set-Cookie: SSRT1=DPT1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:08 GMT <div style="text-align:center |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/prod/xmlgrid/psf |
GET /daily/prod/xmlgrid/psf Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" X-AspNet-Version: 2.0.50727 Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Content-Type: text/html; charset=utf-8 ntCoent-Length: 100249 Expires: Sat, 11 Dec 2010 18:02:13 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:11 GMT Content-Length: 100249 Connection: close Vary: Accept-Encoding Set-Cookie: SSRT1=DvT1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:10 GMT <html xmlns="http://www.w3.org <script type="text/javascript" language="Javascript"> function sendData() { try { var f = (navigator.userAgent ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/prod/xmlgrid/psf |
GET /daily/prod/xmlgrid/psf Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" ntCoent-Length: 1112 Content-Type: text/html Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Content-Length: 1112 Expires: Sat, 11 Dec 2010 18:02:13 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:12 GMT Connection: close Vary: Accept-Encoding Set-Cookie: SSLB=1; path=/; domain=.expedia.com Set-Cookie: SSRT1=EPT1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:12 GMT Set-Cookie: ipsnf3=v.3|US|1|511 <?xml version="1.0"?> <div class="morewaysCustomTop" ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/promos/deals |
GET /daily/promos/deals Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://googleads.g User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: SSID1=AwCDeikAAAAA5u |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 71777 Content-Type: text/html; Charset=iso-8859-1 Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Expires: Sat, 11 Dec 2010 18:02:13 GMT Pragma: no-cache Vary: Accept-Encoding RTSS: 1 Content-Length: 71998 Date: Mon, 13 Jun 2011 11:26:51 GMT Connection: close Set-Cookie: SSRT1=-_P1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:26:51 GMT <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/promos/deals |
GET /daily/promos/deals Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 68126 Content-Type: text/html; Charset=iso-8859-1 Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Expires: Sat, 11 Dec 2010 18:02:13 GMT Pragma: no-cache Vary: Accept-Encoding RTSS: 1 Content-Length: 68347 Date: Mon, 13 Jun 2011 11:27:08 GMT Connection: close Set-Cookie: SSRT1=DPT1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:08 GMT <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/promos/doubleclick |
GET /daily/promos/doubleclick Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 9539 Content-Type: text/html Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Content-Length: 9539 Expires: Sat, 11 Dec 2010 18:01:23 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:03 GMT Connection: close Vary: Accept-Encoding Set-Cookie: SSRT1=B_T1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:03 GMT <style type="text/css"> body{padding:0;margin:0} #PcoWrapper { font-family:Arial;width .pcoImage {position:relative;width .pc ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/promos/doubleclick |
GET /daily/promos/doubleclick Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 8630 Content-Type: text/html Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Content-Length: 8630 Expires: Sat, 11 Dec 2010 18:02:13 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:03 GMT Connection: close Vary: Accept-Encoding Set-Cookie: SSRT1=B_T1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:03 GMT <style type="text/css"> body{padding:0;margin:0} #PcoWrapper { font-family:Arial;width .pcoImage {position:relative;width .pc ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /hotel.h892034.Hotel |
GET /hotel.h892034.Hotel Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 301 Moved Permanently Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Vary: Accept-Encoding Location: http://www.expedia.com Content-Type: text/html;charset=UTF-8 Content-Language: en-US Content-Length: 0 Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Expires: Sat, 11 Dec 2010 18:02:39 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:14 GMT Connection: close Set-Cookie: SSLB=1; path=/; domain=.expedia.com Set-Cookie: SSRT1=EvT1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:14 GMT Set-Cookie: iEAPID=0000,; Domain=.expedia.com; Path=/ |
Severity: | Low |
Confidence: | Tentative |
Host: | http://www.expedia.com |
Path: | /static/default/default |
GET /static/default/default Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"1348-1306934969334" Last-Modified: Wed, 01 Jun 2011 13:29:29 GMT Content-Length: 1348 Date: Mon, 13 Jun 2011 11:21:53 GMT Connection: close GIF89ab........9..L.._.._ ..'...............!..XMP DataXMP<?xpacket begin="..." id="W5M0MpCehiHzreSz ...[SNIP]... </x:xmpmeta> <?xpacket end="r"?>......................... ...[SNIP]... |
Severity: | Low |
Confidence: | Tentative |
Host: | http://www.expedia.com |
Path: | /static/default/default |
GET /static/default/default Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"1275-1306934815898" Last-Modified: Wed, 01 Jun 2011 13:26:55 GMT Content-Length: 1275 Date: Mon, 13 Jun 2011 11:21:52 GMT Connection: close GIF89a-.-......i.f....... ...[SNIP]... </x:xmpmeta> <?xpacket end="r"?>......................... ...[SNIP]... |
Severity: | Low |
Confidence: | Tentative |
Host: | http://www.expedia.com |
Path: | /static/fusion/v2.3 |
GET /static/fusion/v2.3 Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"1636-1306934901311" Last-Modified: Wed, 01 Jun 2011 13:28:21 GMT Content-Length: 1636 Date: Mon, 13 Jun 2011 11:21:52 GMT Connection: close .PNG . ...IHDR...,...S............ ...[SNIP]... </x:xmpmeta> <?xpacket end="r"?>..M"....PLTE..i......... ...[SNIP]... |
Severity: | Low |
Confidence: | Tentative |
Host: | http://www.expedia.com |
Path: | /static/fusion/v2.3 |
GET /static/fusion/v2.3 Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"10346-1306932030475" Last-Modified: Wed, 01 Jun 2011 12:40:30 GMT Content-Length: 10346 Date: Mon, 13 Jun 2011 11:21:52 GMT Connection: close .PNG . ...IHDR...i..........wYA... ...[SNIP]... </x:xmpmeta> <?xpacket end="r"?>.....$.IDATx..TKN.0..W... ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.expedia.com |
Path: | /hotel.h892034.Hotel |
GET /hotel.h892034.Hotel Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 301 Moved Permanently Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Vary: Accept-Encoding Location: http://www.expedia.com Content-Type: text/html;charset=UTF-8 Content-Language: en-US Content-Length: 0 Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Expires: Sat, 11 Dec 2010 18:02:39 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:14 GMT Connection: close Set-Cookie: SSLB=1; path=/; domain=.expedia.com Set-Cookie: SSRT1=EvT1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:14 GMT Set-Cookie: iEAPID=0000,; Domain=.expedia.com; Path=/ |
GET /hotel.h892034.Hotel Host: www.expedia.com Proxy-Connection: keep-alive User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 301 Moved Permanently Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Vary: Accept-Encoding Location: http://www.expedia.com Content-Type: text/html;charset=UTF-8 Content-Language: en-US Content-Length: 0 Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Expires: Sat, 11 Dec 2010 18:02:39 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:29:39 GMT Connection: close Set-Cookie: SSRT1=ovT1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:29:38 GMT |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /New-York-Hotels |
GET /New-York-Hotels Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Vary: Accept-Encoding Content-Type: text/html;charset=UTF-8 Content-Language: en-US Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Expires: Sat, 11 Dec 2010 18:03:04 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:18 GMT Connection: close Connection: Transfer-Encoding Set-Cookie: SSLB=1; path=/; domain=.expedia.com Set-Cookie: SSRT1=E_T1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:15 GMT Set-Cookie: JSESSION=ed77ff0b-ce9e Set-Cookie: s1=`0; Domain=.expedia.com; Path=/ Set-Cookie: p1=`tpid=v.1,1`airp=v.1 Content-Length: 536572 <!DOCTYPE html> <html xmlns:og="http:/ xmlns:fb="http://www <head> <meta name="language" content="en_US"/> <meta name="robots" con ...[SNIP]... <noscript> <iframe class="xp-b-noXpend" src="http://fls ...[SNIP]... <noscript> <iframe class="xp-b-noXpend" src="http://fls ...[SNIP]... </script> <a id="nav-tool-feedback" rel="nofollow" target="_top" href="https://secure Feedback </a> ...[SNIP]... <div style="float:left;padding <iframe src="http://www.facebook ...[SNIP]... </span> <img id="staticMap_image" src="http://maps.google </div> ...[SNIP]... <div id="infosite_opinionLab <a id="nav-tool-feedback" class="xp-t-bold" onclick="xp.nav Give your feedback to help us make improvements </a> ...[SNIP]... <li><a href="https://joinexpedia ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.hotels ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.venere ...[SNIP]... <li><a href="http://www.hotwire ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.evite ...[SNIP]... <li><a href="http://www.gifts ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.match ...[SNIP]... <li><a href="http://www.hsn.com/ ...[SNIP]... <li><a href="http://www.pronto ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.shoebuy ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.travel ...[SNIP]... <li><a href="http://investors ...[SNIP]... <li><a href="http://www.expedia <li><a href="http://www.expedia <li><a href="http://www.expedia <li><a href="http://www.expedia <li><a href="http://www.expedia <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia <li><a href="http://www.expedia ...[SNIP]... <div id="footer-copyright" class="footer-list ©2011 <a href="http://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/promos/deals |
GET /daily/promos/deals Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://googleads.g User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: SSID1=AwCDeikAAAAA5u |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 71777 Content-Type: text/html; Charset=iso-8859-1 Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Expires: Sat, 11 Dec 2010 18:02:13 GMT Pragma: no-cache Vary: Accept-Encoding RTSS: 1 Content-Length: 71998 Date: Mon, 13 Jun 2011 11:26:51 GMT Connection: close Set-Cookie: SSRT1=-_P1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:26:51 GMT <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... </script> <a id="nav-tool-feedback" rel="nofollow" target="_top" href="https://secure Feedback </a> ...[SNIP]... <div style="float:left;padding <iframe src="http://www.facebook ...[SNIP]... <div class="fb_like"> <script src="http://connect ...[SNIP]... <li><a href="https://joinexpedia ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.hotels ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.venere ...[SNIP]... <li><a href="http://www.hotwire ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.evite ...[SNIP]... <li><a href="http://www.gifts ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.match ...[SNIP]... <li><a href="http://www.hsn.com/ ...[SNIP]... <li><a href="http://www.pronto ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.shoebuy ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.travel ...[SNIP]... <li><a href="http://investors ...[SNIP]... <li><a href="http://www.expedia <li><a href="http://www.expedia <li><a href="http://www.expedia <li><a href="http://www.expedia <li><a href="http://www.expedia <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia <li><a href="http://www.expedia ...[SNIP]... <div id="footer-copyright" class="footer-list ©2011 <a href="http://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/promos/deals |
GET /daily/promos/deals Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 67956 Content-Type: text/html; Charset=iso-8859-1 Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Expires: Sat, 11 Dec 2010 18:02:39 GMT Pragma: no-cache Vary: Accept-Encoding RTSS: 1 Content-Length: 68177 Date: Mon, 13 Jun 2011 11:21:01 GMT Connection: close <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... </script> <a id="nav-tool-feedback" rel="nofollow" target="_top" href="https://secure Feedback </a> ...[SNIP]... <div style="float:left;padding <iframe src="http://www.facebook ...[SNIP]... <li><a href="https://joinexpedia ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.hotels ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.venere ...[SNIP]... <li><a href="http://www.hotwire ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.evite ...[SNIP]... <li><a href="http://www.gifts ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.match ...[SNIP]... <li><a href="http://www.hsn.com/ ...[SNIP]... <li><a href="http://www.pronto ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.shoebuy ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www ...[SNIP]... <li><a href="http://www.travel ...[SNIP]... <li><a href="http://investors ...[SNIP]... <li><a href="http://www.expedia <li><a href="http://www.expedia <li><a href="http://www.expedia <li><a href="http://www.expedia <li><a href="http://www.expedia <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia ...[SNIP]... <li><a href="http://www.expedia <li><a href="http://www.expedia ...[SNIP]... <div id="footer-copyright" class="footer-list ©2011 <a href="http://www ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/default/default |
GET /static/default/default Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"14441-1307726118848" Last-Modified: Fri, 10 Jun 2011 17:15:18 GMT Content-Type: text/javascript Cteonnt-Length: 14441 Content-Length: 14441 Vary: Accept-Encoding Cache-Control: private, max-age=71169 Date: Mon, 13 Jun 2011 11:26:58 GMT Connection: close //configuration --- can be put into separate file //first flag indicates clear seoid //second flag - null indicates check for SEMCID, true is to clear the cookie, false is don't clear the cookie v ...[SNIP]... / footer var footerDiv = document.getElementById( var dynamicFooterDiv = document.createElement( dynamicFooterDiv.id = "msnnzFooterSuffix"; dynamicFooterDiv ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/promos/deals |
GET /daily/promos/deals Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://googleads.g User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: SSID1=AwCDeikAAAAA5u |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 71777 Content-Type: text/html; Charset=iso-8859-1 Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Expires: Sat, 11 Dec 2010 18:02:13 GMT Pragma: no-cache Vary: Accept-Encoding RTSS: 1 Content-Length: 71998 Date: Mon, 13 Jun 2011 11:26:51 GMT Connection: close Set-Cookie: SSRT1=-_P1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:26:51 GMT <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR <html xmlns="http://www.w3.org ...[SNIP]... <div class="fb_like"> <script src="http://connect ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/prod/xmlgrid |
GET /daily/prod/xmlgrid Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 163 Content-Type: text/html Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Content-Length: 163 Expires: Sat, 11 Dec 2010 18:02:39 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:08 GMT Connection: close Vary: Accept-Encoding Set-Cookie: SSRT1=DPT1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:08 GMT <div style="text-align:center |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/prod/xmlgrid/psf |
GET /daily/prod/xmlgrid/psf Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" ntCoent-Length: 1112 Content-Type: text/html Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Content-Length: 1112 Expires: Sat, 11 Dec 2010 18:02:13 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:12 GMT Connection: close Vary: Accept-Encoding Set-Cookie: SSLB=1; path=/; domain=.expedia.com Set-Cookie: SSRT1=EPT1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:12 GMT Set-Cookie: ipsnf3=v.3|US|1|511 <?xml version="1.0"?> <div class="morewaysCustomTop" ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/promos/doubleclick |
GET /daily/promos/doubleclick Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 9539 Content-Type: text/html Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Content-Length: 9539 Expires: Sat, 11 Dec 2010 18:01:23 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:03 GMT Connection: close Vary: Accept-Encoding Set-Cookie: SSRT1=B_T1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:03 GMT <style type="text/css"> body{padding:0;margin:0} #PcoWrapper { font-family:Arial;width .pcoImage {position:relative;width .pc ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /daily/promos/doubleclick |
GET /daily/promos/doubleclick Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: application/xml Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cteonnt-Length: 8630 Content-Type: text/html Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Content-Length: 8630 Expires: Sat, 11 Dec 2010 18:02:13 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:03 GMT Connection: close Vary: Accept-Encoding Set-Cookie: SSRT1=B_T1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:03 GMT <style type="text/css"> body{padding:0;margin:0} #PcoWrapper { font-family:Arial;width .pcoImage {position:relative;width .pc ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.expedia.com |
Path: | /daily/js/flash.vbs |
GET /daily/js/flash.vbs HTTP/1.1 Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 Cteonnt-Length: 296 Content-Type: text/vbscript Last-Modified: Thu, 16 Mar 2006 00:03:56 GMT Accept-Ranges: bytes P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Cache-Control: must-revalidate, proxy-revalidate, max-age=0 Content-Length: 296 Expires: Thu, 16 Mar 2006 00:03:56 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:20:34 GMT Connection: close Vary: Accept-Encoding Function VBGetSwfVer(i) on error resume next Dim swControl, swVersion swVersion = 0 set swControl = CreateObject("Shockw if (IsObject(swControl)) then ...[SNIP]... |
Severity: | Information |
Confidence: | Firm |
Host: | http://www.expedia.com |
Path: | /daily/prod/xmlgrid/psf |
GET /daily/prod/xmlgrid/psf Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" ntCoent-Length: 1112 Content-Type: text/html Cache-Control: private, max-age=0, proxy-revalidate, no-store, no-cache, must-revalidate Content-Length: 1112 Expires: Sat, 11 Dec 2010 18:02:13 GMT Pragma: no-cache RTSS: 1 Date: Mon, 13 Jun 2011 11:27:12 GMT Connection: close Vary: Accept-Encoding Set-Cookie: SSLB=1; path=/; domain=.expedia.com Set-Cookie: SSRT1=EPT1TQE; path=/; domain=.expedia.com; expires=Tue, 12-Jun-2012 11:27:12 GMT Set-Cookie: ipsnf3=v.3|US|1|511 <?xml version="1.0"?> <div class="morewaysCustomTop" ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/default/default |
GET /static/default/default Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"73-1306934938467" Last-Modified: Wed, 01 Jun 2011 13:28:58 GMT Content-Length: 73 Date: Mon, 13 Jun 2011 11:21:52 GMT Connection: close GIF89a................... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/default/default |
GET /static/default/default Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"448-1306934873248" Last-Modified: Wed, 01 Jun 2011 13:27:53 GMT Content-Length: 448 Date: Mon, 13 Jun 2011 11:21:53 GMT Connection: close GIF89a:..............'... ..........._..r..9..L.... ?!...-.8C.@.R..t;.^#[..J.^..[.0.p..6.. ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/default/default |
GET /static/default/default Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"1185-1306934923821" Last-Modified: Wed, 01 Jun 2011 13:28:43 GMT Content-Length: 1185 Date: Mon, 13 Jun 2011 11:21:53 GMT Connection: close GIF89aG.:..?...k........P ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/default/default |
GET /static/default/default Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"1182-1306934928887" Last-Modified: Wed, 01 Jun 2011 13:28:48 GMT Content-Length: 1182 Date: Mon, 13 Jun 2011 11:21:53 GMT Connection: close GIF89aG.:..?...k........P ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/default/default |
GET /static/default/default Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"1348-1306934969334" Last-Modified: Wed, 01 Jun 2011 13:29:29 GMT Content-Length: 1348 Date: Mon, 13 Jun 2011 11:21:53 GMT Connection: close GIF89ab........9..L.._.._ ..'...............!..XMP DataXMP<?xpacket begin="..." id="W5M0MpCehiHzreSz ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/default/default |
GET /static/default/default Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"1275-1306934815898" Last-Modified: Wed, 01 Jun 2011 13:26:55 GMT Content-Length: 1275 Date: Mon, 13 Jun 2011 11:21:52 GMT Connection: close GIF89a-.-......i.f....... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/fusion/v2.3 |
GET /static/fusion/v2.3 Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"1636-1306934901311" Last-Modified: Wed, 01 Jun 2011 13:28:21 GMT Content-Length: 1636 Date: Mon, 13 Jun 2011 11:21:52 GMT Connection: close .PNG . ...IHDR...,...S............ ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/fusion/v2.3 |
GET /static/fusion/v2.3 Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"3834-1306934880566" Last-Modified: Wed, 01 Jun 2011 13:28:00 GMT Content-Length: 3834 Date: Mon, 13 Jun 2011 11:20:35 GMT Connection: close .PNG . ...IHDR..............q.~... ...[SNIP]... |
Severity: | Information |
Confidence: | Certain |
Host: | http://www.expedia.com |
Path: | /static/fusion/v2.3 |
GET /static/fusion/v2.3 Host: www.expedia.com Proxy-Connection: keep-alive Referer: http://www.expedia.com User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.24 (KHTML, like Gecko) Chrome/11.0.696.77 Safari/534.24 Accept: */* Accept-Encoding: gzip,deflate,sdch Accept-Language: en-US,en;q=0.8 Accept-Charset: ISO-8859-1,utf-8;q=0.7,* Cookie: MC1=GUID=F398C033545 |
HTTP/1.1 200 OK Server: Microsoft-IIS/6.0 P3P: policyref="/w3c/p3p.xml", CP="CAO DSP IND COR ADM CONo CUR CUSi DEV PSA PSD DELi OUR COM NAV PHY ONL PUR UNI" Accept-Ranges: bytes ETag: W/"10346-1306932030475" Last-Modified: Wed, 01 Jun 2011 12:40:30 GMT Content-Length: 10346 Date: Mon, 13 Jun 2011 11:21:52 GMT Connection: close .PNG . ...IHDR...i..........wYA... ...[SNIP]... |