Source: unknown |
HTTPS traffic detected: 35.244.181.201:443 -> 192.168.2.20:58570 version: TLS 1.2 |
Source: /usr/lib/firefox/firefox (PID: 4800) |
Reads hosts file: /etc/hosts |
Jump to behavior |
Source: global traffic |
HTTP traffic detected: GET /6/Firefox/66.0.3/20190410113011/Linux_x86_64-gcc3/en-US/release-cck-ubuntu/Linux%204.4.0-116-generic%20(GTK%203.18.9%2Clibpulse%208.0.0)/canonical/1.0/ HTTP/1.1Host: snippets.cdn.mozilla.netUser-Agent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:66.0) Gecko/20100101 Firefox/66.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflate, brConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /us-west/bundles-pregen/Firefox/en-us/default.json HTTP/1.1Host: snippets.cdn.mozilla.netUser-Agent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:66.0) Gecko/20100101 Firefox/66.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflate, brConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /afs/ads?adtest=off&psid=1167268112&pcsa=false&channel=000002%2C000003%2C002843%2Cbucket003&client=dp-teaminternet04_3ph&r=m&hl=en&rpbu=http%3A%2F%2Fselfservicegeneraligroup.com%2F%3Fts%3DfENsZWFuUGVwcGVybWludEJsYWNrfHw1Y2U4NHxidWNrZXQwMDN8fHx8fHw2NjFmNmQ4NDliZTQ3fHx8MTcxMzMzNTY4NC43MjYxfGQzNmE5ZjgxODMwYTBiNmNhNDkwMWY4MjU0MzQzODUzNTIyYjUxN2J8fHx8fDF8fDB8MHx8fHwxfHx8fHwwfDB8fHx8fHx8fFpIQXRkR1ZoYldsdWRHVnlibVYwTURSZk0zQm98ZDgyZjM2MWZiZjFhMmNkYjk1Y2Y3NmRjNjczMTAzZDYzZWVlNTdiZHwwfDB8fDB8fHwwfDB8VzEwPXx8MXxXMTA9fDEwMDIxZjAxZTdjYWU3ZTgxMmFhMzg3N2NhOGZhYzEyZmFjMGYxZDh8MHxkcC10ZWFtaW50ZXJuZXQwNF8zcGh8MHwwfHw%253D&terms=Self%20Service%20Software%2C%E2%80%AASAP%20Netweaver%2COnline%20Registration%20Software%2CHelp%20Desk%20Ticket%20System%2COnboarding%20Software&max_radlink_len=40&type=3&uiopt=true&swp=as-drid-2105895058331848&oe=UTF-8&ie=UTF-8&fexp=21404%2C17300002%2C17301437%2C17301439%2C17301442%2C17301447%2C17301481&client_gdprApplies=0&format=r3%7Cs&nocache=6991713335685068&num=0&output=afd_ads&domain_name=selfservicegeneraligroup.com&v=3&bsl=8&pac=2&u_his=1&u_tz=120&dt=1713335685071&u_w=1024&u_h=768&biw=1009&bih=616&psw=1009&psh=760&frm=0&uio=--&cont=tc&drt=0&jsid=caf&jsv=623135625&rurl=http%3A%2F%2Fselfservicegeneraligroup.com%2F HTTP/1.1Host: www.adsensecustomsearchads.comUser-Agent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:66.0) Gecko/20100101 Firefox/66.0Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflate, brReferer: http://selfservicegeneraligroup.com/Connection: keep-aliveUpgrade-Insecure-Requests: 1 |
Source: global traffic |
HTTP traffic detected: GET /sorry/index?continue=https://www.adsensecustomsearchads.com/afs/ads%3Fadtest%3Doff%26psid%3D1167268112%26pcsa%3Dfalse%26channel%3D000002%252C000003%252C002843%252Cbucket003%26client%3Ddp-teaminternet04_3ph%26r%3Dm%26hl%3Den%26rpbu%3Dhttp%253A%252F%252Fselfservicegeneraligroup.com%252F%253Fts%253DfENsZWFuUGVwcGVybWludEJsYWNrfHw1Y2U4NHxidWNrZXQwMDN8fHx8fHw2NjFmNmQ4NDliZTQ3fHx8MTcxMzMzNTY4NC43MjYxfGQzNmE5ZjgxODMwYTBiNmNhNDkwMWY4MjU0MzQzODUzNTIyYjUxN2J8fHx8fDF8fDB8MHx8fHwxfHx8fHwwfDB8fHx8fHx8fFpIQXRkR1ZoYldsdWRHVnlibVYwTURSZk0zQm98ZDgyZjM2MWZiZjFhMmNkYjk1Y2Y3NmRjNjczMTAzZDYzZWVlNTdiZHwwfDB8fDB8fHwwfDB8VzEwPXx8MXxXMTA9fDEwMDIxZjAxZTdjYWU3ZTgxMmFhMzg3N2NhOGZhYzEyZmFjMGYxZDh8MHxkcC10ZWFtaW50ZXJuZXQwNF8zcGh8MHwwfHw%25253D%26terms%3DSelf%2520Service%2520Software%252C%25E2%2580%25AASAP%2520Netweaver%252COnline%2520Registration%2520Software%252CHelp%2520Desk%2520Ticket%2520System%252COnboarding%2520Software%26max_radlink_len%3D40%26type%3D3%26uiopt%3Dtrue%26swp%3Das-drid-2105895058331848%26oe%3DUTF-8%26ie%3DUTF-8%26fexp%3D21404%252C17300002%252C17301437%252C17301439%252C17301442%252C17301447%252C17301481%26client_gdprApplies%3D0%26format%3Dr3%257Cs%26nocache%3D6991713335685068%26num%3D0%26output%3Dafd_ads%26domain_name%3Dselfservicegeneraligroup.com%26v%3D3%26bsl%3D8%26pac%3D2%26u_his%3D1%26u_tz%3D120%26dt%3D1713335685071%26u_w%3D1024%26u_h%3D768%26biw%3D1009%26bih%3D616%26psw%3D1009%26psh%3D760%26frm%3D0%26uio%3D--%26cont%3Dtc%26drt%3D0%26jsid%3Dcaf%26jsv%3D623135625%26rurl%3Dhttp%253A%252F%252Fselfservicegeneraligroup.com%252F&hl=en&q=EgRRtTk0GIbb_bAGIjACT3pJr805dBCkFxpsUUbhs3ktDDg8TsCyOJ_pdYRyWxV3VGpU2xuczbiWeH2bz_IyAXJKGVNPUlJZX0FCVVNJVkVfTkVUX01FU1NBR0VaAUM HTTP/1.1Host: www.google.comUser-Agent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:66.0) Gecko/20100101 Firefox/66.0Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflate, brReferer: http://selfservicegeneraligroup.com/Connection: keep-aliveUpgrade-Insecure-Requests: 1 |
Source: global traffic |
HTTP traffic detected: GET /recaptcha/api.js HTTP/1.1Host: www.google.comUser-Agent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:66.0) Gecko/20100101 Firefox/66.0Accept: */*Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflate, brReferer: https://www.google.com/sorry/index?continue=https://www.adsensecustomsearchads.com/afs/ads%3Fadtest%3Doff%26psid%3D1167268112%26pcsa%3Dfalse%26channel%3D000002%252C000003%252C002843%252Cbucket003%26client%3Ddp-teaminternet04_3ph%26r%3Dm%26hl%3Den%26rpbu%3Dhttp%253A%252F%252Fselfservicegeneraligroup.com%252F%253Fts%253DfENsZWFuUGVwcGVybWludEJsYWNrfHw1Y2U4NHxidWNrZXQwMDN8fHx8fHw2NjFmNmQ4NDliZTQ3fHx8MTcxMzMzNTY4NC43MjYxfGQzNmE5ZjgxODMwYTBiNmNhNDkwMWY4MjU0MzQzODUzNTIyYjUxN2J8fHx8fDF8fDB8MHx8fHwxfHx8fHwwfDB8fHx8fHx8fFpIQXRkR1ZoYldsdWRHVnlibVYwTURSZk0zQm98ZDgyZjM2MWZiZjFhMmNkYjk1Y2Y3NmRjNjczMTAzZDYzZWVlNTdiZHwwfDB8fDB8fHwwfDB8VzEwPXx8MXxXMTA9fDEwMDIxZjAxZTdjYWU3ZTgxMmFhMzg3N2NhOGZhYzEyZmFjMGYxZDh8MHxkcC10ZWFtaW50ZXJuZXQwNF8zcGh8MHwwfHw%25253D%26terms%3DSelf%2520Service%2520Software%252C%25E2%2580%25AASAP%2520Netweaver%252COnline%2520Registration%2520Software%252CHelp%2520Desk%2520Ticket%2520System%252COnboarding%2520Software%26max_radlink_len%3D40%26type%3D3%26uiopt%3Dtrue%26swp%3Das-drid-2105895058331848%26oe%3DUTF-8%26ie%3DUTF-8%26fexp%3D21404%252C17300002%252C17301437%252C17301439%252C17301442%252C17301447%252C17301481%26client_gdprApplies%3D0%26format%3Dr3%257Cs%26nocache%3D6991713335685068%26num%3D0%26output%3Dafd_ads%26domain_name%3Dselfservicegeneraligroup.com%26v%3D3%26bsl%3D8%26pac%3D2%26u_his%3D1%26u_tz%3D120%26dt%3D1713335685071%26u_w%3D1024%26u_h%3D768%26biw%3D1009%26bih%3D616%26psw%3D1009%26psh%3D760%26frm%3D0%26uio%3D--%26cont%3Dtc%26drt%3D0%26jsid%3Dcaf%26jsv%3D623135625%26rurl%3Dhttp%253A%252F%252Fselfservicegeneraligroup.com%252F&hl=en&q=EgRRtTk0GIbb_bAGIjACT3pJr805dBCkFxpsUUbhs3ktDDg8TsCyOJ_pdYRyWxV3VGpU2xuczbiWeH2bz_IyAXJKGVNPUlJZX0FCVVNJVkVfTkVUX01FU1NBR0VaAUMConnection: keep-alive |
Source: global traffic |
HTTP traffic detected: GET /recaptcha/api2/anchor?ar=1&k=6LfwuyUTAAAAAOAmoS0fdqijC2PbbdH4kjq62Y1b&co=aHR0cHM6Ly93d3cuZ29vZ2xlLmNvbTo0NDM.&hl=en&v=rz4DvU-cY2JYCwHSTck0_qm-&size=normal&s=jkYMcceTXa5O0Ql5TftRgDmCgYkPz5gGnrn2IIvbdOT5roe8FKflJH_PAW-QVZa5Jwb9eM13c_0L5Xi4NoFS5624IVNSJIkoPhiOXF6CApz132Cvk-SDE7By3vUrqTv1kZs2ozuzya1IxyTNJn5SQzaL5kDm2Pev9GvHZppY7Sm0XFSYrqIwuN1tSab_ilre7pcGth-Hes5VC3LxDbe7XIbvTKm1-36FKWTciH9JkpVGWXvckVfM5KxkkqBi4PrNUa4aVXYgvR7o70yzur7iGGautLlBMog&cb=yc2zn4iualcv HTTP/1.1Host: www.google.comUser-Agent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:66.0) Gecko/20100101 Firefox/66.0Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8Accept-Language: en-US,en;q=0.5Accept-Encoding: gzip, deflate, brReferer: https://www.google.com/sorry/index?continue=https://www.adsensecustomsearchads.com/afs/ads%3Fadtest%3Doff%26psid%3D1167268112%26pcsa%3Dfalse%26channel%3D000002%252C000003%252C002843%252Cbucket003%26client%3Ddp-teaminternet04_3ph%26r%3Dm%26hl%3Den%26rpbu%3Dhttp%253A%252F%252Fselfservicegeneraligroup.com%252F%253Fts%253DfENsZWFuUGVwcGVybWludEJsYWNrfHw1Y2U4NHxidWNrZXQwMDN8fHx8fHw2NjFmNmQ4NDliZTQ3fHx8MTcxMzMzNTY4NC43MjYxfGQzNmE5ZjgxODMwYTBiNmNhNDkwMWY4MjU0MzQzODUzNTIyYjUxN2J8fHx8fDF8fDB8MHx8fHwxfHx8fHwwfDB8fHx8fHx8fFpIQXRkR1ZoYldsdWRHVnlibVYwTURSZk0zQm98ZDgyZjM2MWZiZjFhMmNkYjk1Y2Y3NmRjNjczMTAzZDYzZWVlNTdiZHwwfDB8fDB8fHwwfDB8VzEwPXx8MXxXMTA9fDEwMDIxZjAxZTdjYWU3ZTgxMmFhMzg3N2NhOGZhYzEyZmFjMGYxZDh8MHxkcC10ZWFtaW50ZXJuZXQwNF8zcGh8MHwwfHw%25253D%26terms%3DSelf%2520Service%2520Software%252C%25E2%2580%25AASAP%2520Netweaver%252COnline%2520Registration%2520Software%252CHelp%2520Desk%2520Ticket%2520System%252COnboarding%2520Software%26max_radlink_len%3D40%26type%3D3%26uiopt%3Dtrue%26swp%3Das-drid-2105895058331848%26oe%3DUTF-8%26ie%3DUTF-8%26fexp%3D21404%252C17300002%252C17301437%252C17301439%252C17301442%252C17301447%252C17301481%26client_gdprApplies%3D0%26format%3Dr3%257Cs%26nocache%3D6991713335685068%26num%3D0%26output%3Dafd_ads%26domain_name%3Dselfservicegeneraligroup.com%26v%3D3%26bsl%3D8%26pac%3D2%26u_his%3D1%26u_tz%3D120%26dt%3D1713335685071%26u_w%3D1024%26u_h%3D768%26biw%3D1009%26bih%3D616%26psw%3D1009%26psh%3D760%26frm%3D0%26uio%3D--%26cont%3Dtc%26drt%3D0%26jsid%3Dcaf%26jsv%3D623135625%26rurl%3Dhttp%253A%252F%252Fselfservicegeneraligroup.com%252F&hl=en&q=EgRRtTk0GIbb_bAGIjACT3pJr805dBCkFxpsUUbhs3ktDDg8TsCyOJ_pdYRyWxV3VGpU2xuczbiWeH2bz_IyAXJKGVNPUlJZX0FCVVNJVkVfTkVUX01FU1NBR0VaAUMConnection: keep-aliv |