Click to jump to signature section
Source: https://accounts.google.com/v3/signin/identifier?continue=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&emr=1&followup=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&ifkv=ARZ0qKIHrR-OP7wuyBHgl5kCupPQoNCArmS8_o9stByQ3swkcy54UbGwOeFbS3ltHD7t_ObTxPJ2Ug&osid=1&passive=1209600&service=mail&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S1929935711%3A1713300719426040&theme=mn&ddm=0 | HTTP Parser: Iframe src: https://accounts.youtube.com/accounts/CheckConnection?pmpo=https%3A%2F%2Faccounts.google.com&v=-1321404373×tamp=1713300722730 |
Source: https://accounts.google.com/v3/signin/identifier?continue=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&emr=1&followup=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&ifkv=ARZ0qKIHrR-OP7wuyBHgl5kCupPQoNCArmS8_o9stByQ3swkcy54UbGwOeFbS3ltHD7t_ObTxPJ2Ug&osid=1&passive=1209600&service=mail&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S1929935711%3A1713300719426040&theme=mn&ddm=0 | HTTP Parser: Iframe src: /_/bscframe |
Source: https://accounts.google.com/v3/signin/identifier?continue=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&emr=1&followup=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&ifkv=ARZ0qKIHrR-OP7wuyBHgl5kCupPQoNCArmS8_o9stByQ3swkcy54UbGwOeFbS3ltHD7t_ObTxPJ2Ug&osid=1&passive=1209600&service=mail&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S1929935711%3A1713300719426040&theme=mn&ddm=0 | HTTP Parser: Iframe src: https://accounts.youtube.com/accounts/CheckConnection?pmpo=https%3A%2F%2Faccounts.google.com&v=-1321404373×tamp=1713300722730 |
Source: https://accounts.google.com/v3/signin/identifier?continue=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&emr=1&followup=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&ifkv=ARZ0qKIHrR-OP7wuyBHgl5kCupPQoNCArmS8_o9stByQ3swkcy54UbGwOeFbS3ltHD7t_ObTxPJ2Ug&osid=1&passive=1209600&service=mail&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S1929935711%3A1713300719426040&theme=mn&ddm=0 | HTTP Parser: Iframe src: /_/bscframe |
Source: https://accounts.google.com/v3/signin/identifier?continue=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&emr=1&followup=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&ifkv=ARZ0qKIHrR-OP7wuyBHgl5kCupPQoNCArmS8_o9stByQ3swkcy54UbGwOeFbS3ltHD7t_ObTxPJ2Ug&osid=1&passive=1209600&service=mail&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S1929935711%3A1713300719426040&theme=mn&ddm=0 | HTTP Parser: <input type="password" .../> found but no <form action="... |
Source: https://accounts.google.com/v3/signin/identifier?continue=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&emr=1&followup=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&ifkv=ARZ0qKIHrR-OP7wuyBHgl5kCupPQoNCArmS8_o9stByQ3swkcy54UbGwOeFbS3ltHD7t_ObTxPJ2Ug&osid=1&passive=1209600&service=mail&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S1929935711%3A1713300719426040&theme=mn&ddm=0 | HTTP Parser: Title: Gmail does not match URL |
Source: https://accounts.google.com/v3/signin/identifier?continue=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&emr=1&followup=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&ifkv=ARZ0qKIHrR-OP7wuyBHgl5kCupPQoNCArmS8_o9stByQ3swkcy54UbGwOeFbS3ltHD7t_ObTxPJ2Ug&osid=1&passive=1209600&service=mail&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S1929935711%3A1713300719426040&theme=mn&ddm=0 | HTTP Parser: <input type="password" .../> found |
Source: https://accounts.google.com/v3/signin/identifier?continue=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&emr=1&followup=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&ifkv=ARZ0qKIHrR-OP7wuyBHgl5kCupPQoNCArmS8_o9stByQ3swkcy54UbGwOeFbS3ltHD7t_ObTxPJ2Ug&osid=1&passive=1209600&service=mail&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S1929935711%3A1713300719426040&theme=mn&ddm=0 | HTTP Parser: No favicon |
Source: https://accounts.google.com/v3/signin/identifier?continue=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&emr=1&followup=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&ifkv=ARZ0qKIHrR-OP7wuyBHgl5kCupPQoNCArmS8_o9stByQ3swkcy54UbGwOeFbS3ltHD7t_ObTxPJ2Ug&osid=1&passive=1209600&service=mail&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S1929935711%3A1713300719426040&theme=mn&ddm=0 | HTTP Parser: No favicon |
Source: https://accounts.google.com/v3/signin/identifier?continue=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&emr=1&followup=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&ifkv=ARZ0qKIHrR-OP7wuyBHgl5kCupPQoNCArmS8_o9stByQ3swkcy54UbGwOeFbS3ltHD7t_ObTxPJ2Ug&osid=1&passive=1209600&service=mail&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S1929935711%3A1713300719426040&theme=mn&ddm=0 | HTTP Parser: No <meta name="author".. found |
Source: https://accounts.google.com/v3/signin/identifier?continue=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&emr=1&followup=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&ifkv=ARZ0qKIHrR-OP7wuyBHgl5kCupPQoNCArmS8_o9stByQ3swkcy54UbGwOeFbS3ltHD7t_ObTxPJ2Ug&osid=1&passive=1209600&service=mail&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S1929935711%3A1713300719426040&theme=mn&ddm=0 | HTTP Parser: No <meta name="author".. found |
Source: https://accounts.google.com/v3/signin/identifier?continue=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&emr=1&followup=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&ifkv=ARZ0qKIHrR-OP7wuyBHgl5kCupPQoNCArmS8_o9stByQ3swkcy54UbGwOeFbS3ltHD7t_ObTxPJ2Ug&osid=1&passive=1209600&service=mail&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S1929935711%3A1713300719426040&theme=mn&ddm=0 | HTTP Parser: No <meta name="copyright".. found |
Source: https://accounts.google.com/v3/signin/identifier?continue=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&emr=1&followup=https%3A%2F%2Fmail.google.com%2Fmail%2Fu%2F0%2F&ifkv=ARZ0qKIHrR-OP7wuyBHgl5kCupPQoNCArmS8_o9stByQ3swkcy54UbGwOeFbS3ltHD7t_ObTxPJ2Ug&osid=1&passive=1209600&service=mail&flowName=GlifWebSignIn&flowEntry=ServiceLogin&dsh=S1929935711%3A1713300719426040&theme=mn&ddm=0 | HTTP Parser: No <meta name="copyright".. found |
Source: unknown | HTTPS traffic detected: 204.79.197.200:443 -> 192.168.2.16:49742 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 40.126.29.13:443 -> 192.168.2.16:49744 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 52.165.165.26:443 -> 192.168.2.16:49745 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 51.104.15.253:443 -> 192.168.2.16:49746 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 23.201.212.130:443 -> 192.168.2.16:49748 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 23.201.212.130:443 -> 192.168.2.16:49750 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 204.79.197.222:443 -> 192.168.2.16:49757 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 23.201.214.29:443 -> 192.168.2.16:49759 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 23.201.214.29:443 -> 192.168.2.16:49758 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 23.201.214.29:443 -> 192.168.2.16:49762 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 13.107.42.254:443 -> 192.168.2.16:49763 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 52.113.196.254:443 -> 192.168.2.16:49766 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 150.171.22.254:443 -> 192.168.2.16:49769 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 23.54.200.10:443 -> 192.168.2.16:49800 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 23.54.200.10:443 -> 192.168.2.16:49801 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 23.54.200.10:443 -> 192.168.2.16:49798 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 23.54.200.10:443 -> 192.168.2.16:49803 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 23.54.200.10:443 -> 192.168.2.16:49802 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 23.54.200.10:443 -> 192.168.2.16:49799 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 20.96.52.198:443 -> 192.168.2.16:49826 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 23.211.118.80:443 -> 192.168.2.16:49827 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 20.96.52.198:443 -> 192.168.2.16:49830 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 40.126.29.13:443 -> 192.168.2.16:49829 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 23.201.214.29:443 -> 192.168.2.16:49832 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 40.126.29.13:443 -> 192.168.2.16:49831 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 20.96.63.25:443 -> 192.168.2.16:49836 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 20.96.63.25:443 -> 192.168.2.16:49839 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 52.165.165.26:443 -> 192.168.2.16:49841 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 23.201.214.29:443 -> 192.168.2.16:49843 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 52.185.73.156:443 -> 192.168.2.16:49847 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 52.185.73.156:443 -> 192.168.2.16:49848 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 52.185.73.156:443 -> 192.168.2.16:49849 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 52.185.73.156:443 -> 192.168.2.16:49850 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 52.185.73.156:443 -> 192.168.2.16:49851 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 52.185.73.156:443 -> 192.168.2.16:49852 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 52.185.73.156:443 -> 192.168.2.16:49853 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 52.185.73.156:443 -> 192.168.2.16:49854 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 20.22.113.133:443 -> 192.168.2.16:49855 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 20.22.113.133:443 -> 192.168.2.16:49856 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 20.22.113.133:443 -> 192.168.2.16:49857 version: TLS 1.2 |
Source: unknown | HTTPS traffic detected: 20.22.113.133:443 -> 192.168.2.16:49858 version: TLS 1.2 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown | TCP traffic detected without corresponding DNS query: 192.229.211.108 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 40.126.29.13 |
Source: unknown | TCP traffic detected without corresponding DNS query: 40.126.29.13 |
Source: unknown | TCP traffic detected without corresponding DNS query: 40.126.29.13 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 204.79.197.200 |
Source: unknown | TCP traffic detected without corresponding DNS query: 51.104.15.253 |
Source: unknown | TCP traffic detected without corresponding DNS query: 51.104.15.253 |
Source: unknown | TCP traffic detected without corresponding DNS query: 51.104.15.253 |
Source: unknown | TCP traffic detected without corresponding DNS query: 51.104.15.253 |
Source: unknown | TCP traffic detected without corresponding DNS query: 40.126.29.13 |
Source: unknown | TCP traffic detected without corresponding DNS query: 40.126.29.13 |
Source: unknown | TCP traffic detected without corresponding DNS query: 40.126.29.13 |
Source: unknown | TCP traffic detected without corresponding DNS query: 40.126.29.13 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 51.104.15.253 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 52.165.165.26 |
Source: unknown | TCP traffic detected without corresponding DNS query: 40.126.29.13 |
Source: unknown | TCP traffic detected without corresponding DNS query: 40.126.29.13 |
Source: unknown | TCP traffic detected without corresponding DNS query: 40.126.29.13 |
Source: unknown | TCP traffic detected without corresponding DNS query: 40.126.29.13 |
Source: global traffic | HTTP traffic detected: GET /mail/u/0/ HTTP/1.1Host: mail.google.comConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentsec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /accounts/CheckConnection?pmpo=https%3A%2F%2Faccounts.google.com&v=-1321404373×tamp=1713300722730 HTTP/1.1Host: accounts.youtube.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-full-version: "117.0.5938.132"sec-ch-ua-arch: "x86"sec-ch-ua-platform: "Windows"sec-ch-ua-platform-version: "10.0.0"sec-ch-ua-model: ""sec-ch-ua-bitness: "64"sec-ch-ua-wow64: ?0sec-ch-ua-full-version-list: "Google Chrome";v="117.0.5938.132", "Not;A=Brand";v="8.0.0.0", "Chromium";v="117.0.5938.132"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7X-Client-Data: CIu2yQEIprbJAQipncoBCLbgygEIlKHLAQj2mM0BCIWgzQEI3L3NAQi5ys0BCMfRzQEIidPNAQjc080BCMvWzQEI9NbNAQiK180BCKfYzQEI+cDUFRi60s0BGMvYzQEY642lFw==Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://accounts.google.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /favicon.ico HTTP/1.1Host: www.google.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-arch: "x86"sec-ch-ua-full-version: "117.0.5938.132"sec-ch-ua-platform-version: "10.0.0"sec-ch-ua-full-version-list: "Google Chrome";v="117.0.5938.132", "Not;A=Brand";v="8.0.0.0", "Chromium";v="117.0.5938.132"sec-ch-ua-bitness: "64"sec-ch-ua-model: ""sec-ch-ua-wow64: ?0sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8X-Client-Data: CIu2yQEIprbJAQipncoBCLbgygEIlKHLAQj2mM0BCIWgzQEI3L3NAQi5ys0BCMfRzQEIidPNAQjc080BCMvWzQEI9NbNAQiK180BCKfYzQEI+cDUFRi60s0BGMvYzQEY642lFw==Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://accounts.google.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /favicon.ico HTTP/1.1Host: www.google.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*X-Client-Data: CIu2yQEIprbJAQipncoBCLbgygEIlKHLAQj2mM0BCIWgzQEIucrNAQiJ080BGMvYzQEY642lFw==Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /manifest/threshold.appcache HTTP/1.1Accept: */*Referer: https://www.bing.com/AS/API/WindowsCortanaPane/V2/InitOrigin: https://www.bing.comAccept-Encoding: gzip, deflate, brUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; Cortana 1.14.7.19041; 10.0.0.0.19045.2006) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.102 Safari/537.36 Edge/18.19045Host: www.bing.comConnection: Keep-AliveCookie: MUID=5047E5942BB2460EA35B53CCF78DDB3D; _SS=SID=117ACB7E7D246FD81513DF607C366EB7&CPID=1707317782133&AC=1&CPH=c645c844; _EDGE_S=SID=117ACB7E7D246FD81513DF607C366EB7&mkt=de-ch; SRCHUID=V=2&GUID=E0DD87A720F84B6F91D233EB006F66A1&dmnchg=1; SRCHD=AF=NOFORM; SRCHUSR=DOB=20240207; SRCHHPGUSR=SRCHLANG=de&HV=1707317784&IPMH=3a628620&IPMID=1707317755885; MUIDB=5047E5942BB2460EA35B53CCF78DDB3D |
Source: global traffic | HTTP traffic detected: GET /SLS/%7B522D76A4-93E1-47F8-B8CE-07C937AD1A1E%7D/x64/10.0.19045.2006/0?CH=700&L=en-GB&P=&PT=0x30&WUA=10.0.19041.1949&MK=66ka7AY8zWtDbHC&MD=LZZ2D3WS HTTP/1.1Connection: Keep-AliveAccept: */*User-Agent: Windows-Update-Agent/10.0.10011.16384 Client-Protocol/2.33Host: slscr.update.microsoft.com |
Source: global traffic | HTTP traffic detected: GET /fs/windows/config.json HTTP/1.1Connection: Keep-AliveAccept: */*Accept-Encoding: identityIf-Unmodified-Since: Tue, 16 May 2017 22:58:00 GMTRange: bytes=0-2147483646User-Agent: Microsoft BITS/7.8Host: fs.microsoft.com |
Source: global traffic | HTTP traffic detected: GET /AS/API/WindowsCortanaPane/V2/Suggestions?qry=st&setlang=en-CH&cc=CH&nohs=1&qfm=1&cp=2&cvid=06383237da004593a51c2cfed9916957&ig=4aa0e05b1fdf4fef8ea380075a1f6b48 HTTP/1.1Referer: https://www.bing.com/AS/API/WindowsCortanaPane/V2/InitAccept: */*Accept-Language: en-CHX-BM-ClientFeatures: FontV22,LightAnswers,PreviewPaneAvailable,RevStoreX-MSEdge-ExternalExp: d-thshld42,dsbdailyset_c,expmegaclick_cf,hashexpt3,iffsqloptwin10c,msbdsbedu9cf,wsbqfnewsynonym,wsbref-t,wsbswgc-t2X-MSEdge-ExternalExpType: JointCoordAccept-Encoding: gzip, deflate, brUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; Cortana 1.14.7.19041; 10.0.0.0.19045.2006) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.102 Safari/537.36 Edge/18.19045Host: www.bing.comConnection: Keep-AliveCookie: MUID=5047E5942BB2460EA35B53CCF78DDB3D; _SS=SID=117ACB7E7D246FD81513DF607C366EB7&CPID=1713300731144&AC=1&CPH=c645c844; _EDGE_S=SID=117ACB7E7D246FD81513DF607C366EB7&mkt=de-ch; SRCHUID=V=2&GUID=E0DD87A720F84B6F91D233EB006F66A1&dmnchg=1; SRCHD=AF=NOFORM; SRCHUSR=DOB=20240207; SRCHHPGUSR=SRCHLANG=de&HV=1713300733&IPMH=3a628620&IPMID=1707317755885; MUIDB=5047E5942BB2460EA35B53CCF78DDB3D |
Source: global traffic | HTTP traffic detected: GET /AS/API/WindowsCortanaPane/V2/Suggestions?qry=store&setlang=en-CH&cc=CH&nohs=1&qfm=1&cp=5&cvid=06383237da004593a51c2cfed9916957&ig=c3cac62bd6cb435c81e9969e065052f6 HTTP/1.1Referer: https://www.bing.com/AS/API/WindowsCortanaPane/V2/InitAccept: */*Accept-Language: en-CHX-BM-ClientFeatures: FontV22,LightAnswers,PreviewPaneAvailable,RevStoreX-MSEdge-ExternalExp: d-thshld42,dsbdailyset_c,expmegaclick_cf,hashexpt3,iffsqloptwin10c,msbdsbedu9cf,wsbqfnewsynonym,wsbref-t,wsbswgc-t2X-MSEdge-ExternalExpType: JointCoordAccept-Encoding: gzip, deflate, brUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; Cortana 1.14.7.19041; 10.0.0.0.19045.2006) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.102 Safari/537.36 Edge/18.19045Host: www.bing.comConnection: Keep-AliveCookie: MUID=5047E5942BB2460EA35B53CCF78DDB3D; _SS=SID=117ACB7E7D246FD81513DF607C366EB7&CPID=1713300731144&AC=1&CPH=c645c844; _EDGE_S=SID=117ACB7E7D246FD81513DF607C366EB7&mkt=de-ch; SRCHUID=V=2&GUID=E0DD87A720F84B6F91D233EB006F66A1&dmnchg=1; SRCHD=AF=NOFORM; SRCHUSR=DOB=20240207; SRCHHPGUSR=SRCHLANG=de&HV=1713300733&IPMH=3a628620&IPMID=1707317755885; MUIDB=5047E5942BB2460EA35B53CCF78DDB3D |
Source: global traffic | HTTP traffic detected: GET /AS/API/WindowsCortanaPane/V2/Suggestions?qry=s&setlang=en-CH&cc=CH&nohs=1&qfm=1&cp=1&cvid=06383237da004593a51c2cfed9916957&ig=fa13123c3b65485a8c0ad1d225b24786 HTTP/1.1Referer: https://www.bing.com/AS/API/WindowsCortanaPane/V2/InitAccept: */*Accept-Language: en-CHX-BM-ClientFeatures: FontV22,LightAnswers,PreviewPaneAvailable,RevStoreX-MSEdge-ExternalExp: d-thshld42,dsbdailyset_c,expmegaclick_cf,hashexpt3,iffsqloptwin10c,msbdsbedu9cf,wsbqfnewsynonym,wsbref-t,wsbswgc-t2X-MSEdge-ExternalExpType: JointCoordAccept-Encoding: gzip, deflate, brUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; Cortana 1.14.7.19041; 10.0.0.0.19045.2006) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.102 Safari/537.36 Edge/18.19045Host: www.bing.comConnection: Keep-AliveCookie: MUID=5047E5942BB2460EA35B53CCF78DDB3D; _SS=SID=117ACB7E7D246FD81513DF607C366EB7&CPID=1713300731144&AC=1&CPH=c645c844; _EDGE_S=SID=117ACB7E7D246FD81513DF607C366EB7&mkt=de-ch; SRCHUID=V=2&GUID=E0DD87A720F84B6F91D233EB006F66A1&dmnchg=1; SRCHD=AF=NOFORM; SRCHUSR=DOB=20240207; SRCHHPGUSR=SRCHLANG=de&HV=1713300733&IPMH=3a628620&IPMID=1707317755885; MUIDB=5047E5942BB2460EA35B53CCF78DDB3D |
Source: global traffic | HTTP traffic detected: GET /AS/API/WindowsCortanaPane/V2/Suggestions?qry=stor&setlang=en-CH&cc=CH&nohs=1&qfm=1&cp=4&cvid=06383237da004593a51c2cfed9916957&ig=65c7158fa9b5475fa1472641d85191b1 HTTP/1.1Referer: https://www.bing.com/AS/API/WindowsCortanaPane/V2/InitAccept: */*Accept-Language: en-CHX-BM-ClientFeatures: FontV22,LightAnswers,PreviewPaneAvailable,RevStoreX-MSEdge-ExternalExp: d-thshld42,dsbdailyset_c,expmegaclick_cf,hashexpt3,iffsqloptwin10c,msbdsbedu9cf,wsbqfnewsynonym,wsbref-t,wsbswgc-t2X-MSEdge-ExternalExpType: JointCoordAccept-Encoding: gzip, deflate, brUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; Cortana 1.14.7.19041; 10.0.0.0.19045.2006) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.102 Safari/537.36 Edge/18.19045Host: www.bing.comConnection: Keep-AliveCookie: MUID=5047E5942BB2460EA35B53CCF78DDB3D; _SS=SID=117ACB7E7D246FD81513DF607C366EB7&CPID=1713300731144&AC=1&CPH=c645c844; _EDGE_S=SID=117ACB7E7D246FD81513DF607C366EB7&mkt=de-ch; SRCHUID=V=2&GUID=E0DD87A720F84B6F91D233EB006F66A1&dmnchg=1; SRCHD=AF=NOFORM; SRCHUSR=DOB=20240207; SRCHHPGUSR=SRCHLANG=de&HV=1713300733&IPMH=3a628620&IPMID=1707317755885; MUIDB=5047E5942BB2460EA35B53CCF78DDB3D |
Source: global traffic | HTTP traffic detected: GET /AS/API/WindowsCortanaPane/V2/Suggestions?qry=sto&setlang=en-CH&cc=CH&nohs=1&qfm=1&cp=3&cvid=06383237da004593a51c2cfed9916957&ig=4eb84d662f164b0b9973aa16ab8f073b HTTP/1.1Referer: https://www.bing.com/AS/API/WindowsCortanaPane/V2/InitAccept: */*Accept-Language: en-CHX-BM-ClientFeatures: FontV22,LightAnswers,PreviewPaneAvailable,RevStoreX-MSEdge-ExternalExp: d-thshld42,dsbdailyset_c,expmegaclick_cf,hashexpt3,iffsqloptwin10c,msbdsbedu9cf,wsbqfnewsynonym,wsbref-t,wsbswgc-t2X-MSEdge-ExternalExpType: JointCoordAccept-Encoding: gzip, deflate, brUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; Cortana 1.14.7.19041; 10.0.0.0.19045.2006) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.102 Safari/537.36 Edge/18.19045Host: www.bing.comConnection: Keep-AliveCookie: MUID=5047E5942BB2460EA35B53CCF78DDB3D; _SS=SID=117ACB7E7D246FD81513DF607C366EB7&CPID=1713300731144&AC=1&CPH=c645c844; _EDGE_S=SID=117ACB7E7D246FD81513DF607C366EB7&mkt=de-ch; SRCHUID=V=2&GUID=E0DD87A720F84B6F91D233EB006F66A1&dmnchg=1; SRCHD=AF=NOFORM; SRCHUSR=DOB=20240207; SRCHHPGUSR=SRCHLANG=de&HV=1713300733&IPMH=3a628620&IPMID=1707317755885; MUIDB=5047E5942BB2460EA35B53CCF78DDB3D |
Source: global traffic | HTTP traffic detected: GET /conf/v2/asgw/fpconfig.min.json?monitorId=asgw HTTP/1.1Origin: https://www.bing.comReferer: https://www.bing.com/AS/API/WindowsCortanaPane/V2/InitAccept: */*Accept-Language: en-CHAccept-Encoding: gzip, deflate, brUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; Cortana 1.14.7.19041; 10.0.0.0.19045.2006) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/70.0.3538.102 Safari/537.36 Edge/18.19045Host: fp.msedge.netConnection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /v8.0/callerspecificdata/?market=CH&locale=en-CH&appversion=11910.1002.0.0&deviceFamily=Windows.Desktop&deviceFamilyVersion=2814750970478592&catalogLocales=en-CH%2Cen-GB&oemId=Public&scmId=Public&moId=Public&hardware=arm0%2Carm640%2Cble0%2Ccmb0%2Ccmf0%2Ccmr0%2Cdcb1%2Cdcc1%2Cdx91%2Cdxa1%2Cdxb1%2Cgyr0%2Chce0%2Chdc0%2Chov0%2Chsa0%2Chss1%2Ckbd1%2Cm041%2Cm060%2Cm080%2Cm120%2Cm160%2Cm200%2Cm301%2Cm751%2CmA01%2Cmct0%2Cmgn0%2Cmic0%2Cmrc0%2Cmse1%2CmT01%2Cnfc0%2Crs10%2Crs20%2Crs30%2Crs40%2Crs50%2Crs60%2Ctch0%2Ctel0%2Cv010%2Cv020%2Cv040%2Cx641%2Cx860%2Cx86a640%2Cxbd0%2Cxbo0%2Cxbs0%2Cxbx0%2Cxgp0&packageHardware=dcb%2Cdcc%2Cdx9%2Cdxa%2Cdxb%2Cm30%2Cm75%2CmA0%2CmT0&pzn=1&preciseAppVersion=11910.1002.5.0&preciseDeviceFamilyVersion=2814751015241686&mfg=VMware%2C+Inc.&model=VMware20%2C1 HTTP/1.1OSContentId: 482e3ada-05f0-d73c-4fef-cc9d8f8d989fAccept-Encoding: gzip, deflateOSIsSMode: FalseOSIsGenuine: TrueAccept: */*TASIGNORE: YESMS-PreciseDeviceFamilyVersion: 2814751015241686User-Agent: WindowsStore/11910.1002.5.0MS-CV: UxEEy7KhKESwa2v1.2Accept-Language: en-CHAuthorization: Bearer MSAHW1.0=t=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 |