Windows Analysis Report
https://web.leitz-cloud.com/shares/folder/k11NnLCmDNb/

Overview

General Information

Sample URL: https://web.leitz-cloud.com/shares/folder/k11NnLCmDNb/
Analysis ID: 1431463
Infos:

Detection

Score: 1
Range: 0 - 100
Whitelisted: false
Confidence: 100%

Signatures

HTML body contains low number of good links
HTML body contains password input but no form action
HTML title does not match URL

Classification

Source: https://web.leitz-cloud.com/auth/forgot/ HTTP Parser: Number of links: 1
Source: https://web.leitz-cloud.com/auth/login/ HTTP Parser: Number of links: 1
Source: https://web.leitz-cloud.com/auth/login/recovery/ HTTP Parser: Number of links: 0
Source: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3F HTTP Parser: <input type="password" .../> found but no <form action="...
Source: https://web.leitz-cloud.com/auth/login/ HTTP Parser: <input type="password" .../> found but no <form action="...
Source: https://web.leitz-cloud.com/auth/login/recovery/ HTTP Parser: <input type="password" .../> found but no <form action="...
Source: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3F HTTP Parser: Title: Einloggen does not match URL
Source: https://web.leitz-cloud.com/auth/forgot/ HTTP Parser: Title: Passwort vergessen does not match URL
Source: https://web.leitz-cloud.com/auth/login/ HTTP Parser: Title: Einloggen does not match URL
Source: https://web.leitz-cloud.com/auth/login/recovery/ HTTP Parser: Title: Kontowiederherstellung does not match URL
Source: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3F HTTP Parser: <input type="password" .../> found
Source: https://web.leitz-cloud.com/auth/login/ HTTP Parser: <input type="password" .../> found
Source: https://web.leitz-cloud.com/auth/login/recovery/ HTTP Parser: <input type="password" .../> found
Source: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3F HTTP Parser: No <meta name="author".. found
Source: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3F HTTP Parser: No <meta name="author".. found
Source: https://web.leitz-cloud.com/auth/forgot/ HTTP Parser: No <meta name="author".. found
Source: https://web.leitz-cloud.com/auth/forgot/ HTTP Parser: No <meta name="author".. found
Source: https://web.leitz-cloud.com/auth/forgot/ HTTP Parser: No <meta name="author".. found
Source: https://web.leitz-cloud.com/auth/login/ HTTP Parser: No <meta name="author".. found
Source: https://web.leitz-cloud.com/auth/login/ HTTP Parser: No <meta name="author".. found
Source: https://web.leitz-cloud.com/auth/login/recovery/ HTTP Parser: No <meta name="author".. found
Source: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3F HTTP Parser: No <meta name="copyright".. found
Source: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3F HTTP Parser: No <meta name="copyright".. found
Source: https://web.leitz-cloud.com/auth/forgot/ HTTP Parser: No <meta name="copyright".. found
Source: https://web.leitz-cloud.com/auth/forgot/ HTTP Parser: No <meta name="copyright".. found
Source: https://web.leitz-cloud.com/auth/forgot/ HTTP Parser: No <meta name="copyright".. found
Source: https://web.leitz-cloud.com/auth/login/ HTTP Parser: No <meta name="copyright".. found
Source: https://web.leitz-cloud.com/auth/login/ HTTP Parser: No <meta name="copyright".. found
Source: https://web.leitz-cloud.com/auth/login/recovery/ HTTP Parser: No <meta name="copyright".. found
Source: unknown HTTPS traffic detected: 184.31.62.93:443 -> 192.168.2.4:49746 version: TLS 1.2
Source: unknown HTTPS traffic detected: 184.31.62.93:443 -> 192.168.2.4:49747 version: TLS 1.2
Source: unknown TCP traffic detected without corresponding DNS query: 104.46.162.224
Source: unknown TCP traffic detected without corresponding DNS query: 173.222.162.32
Source: unknown TCP traffic detected without corresponding DNS query: 173.222.162.32
Source: unknown TCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknown TCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknown TCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknown TCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknown TCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknown TCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknown TCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknown TCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknown TCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknown TCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknown TCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknown TCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknown TCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknown TCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknown TCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknown TCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknown TCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknown TCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknown TCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknown TCP traffic detected without corresponding DNS query: 199.232.214.172
Source: unknown TCP traffic detected without corresponding DNS query: 199.232.214.172
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: global traffic HTTP traffic detected: GET /shares/folder/k11NnLCmDNb/ HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3F HTTP/1.1Host: web.leitz-cloud.comConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentsec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0
Source: global traffic HTTP traffic detected: GET /static/gen/main.ed99ea6b.min.css HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3FAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw
Source: global traffic HTTP traffic detected: GET /custom/styles.css?v=3.6.0.117 HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3FAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw
Source: global traffic HTTP traffic detected: GET /static/js/translations/de.js?v=3.6.0.117 HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3FAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw
Source: global traffic HTTP traffic detected: GET /static/gen/main_header.cf07ee37.min.js HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3FAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw
Source: global traffic HTTP traffic detected: GET /static/themes/default/images/svg/right-arrow.png HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3FAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw
Source: global traffic HTTP traffic detected: GET /static/themes/default/images/svg/lottie.js HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3FAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw
Source: global traffic HTTP traffic detected: GET /fs/windows/config.json HTTP/1.1Connection: Keep-AliveAccept: */*Accept-Encoding: identityIf-Unmodified-Since: Tue, 16 May 2017 22:58:00 GMTRange: bytes=0-2147483646User-Agent: Microsoft BITS/7.8Host: fs.microsoft.com
Source: global traffic HTTP traffic detected: GET /static/themes/default/images/svg/custom_script.js HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3FAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw
Source: global traffic HTTP traffic detected: GET /static/themes/default/images/svg/right-arrow.png HTTP/1.1Host: web.leitz-cloud.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw
Source: global traffic HTTP traffic detected: GET /static/themes/default/images/svg/sidebar.js HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3FAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw
Source: global traffic HTTP traffic detected: GET /sites/1/branding/logo HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3FAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw
Source: global traffic HTTP traffic detected: GET /static/gen/main.52b56941.min.js HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3FAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw
Source: global traffic HTTP traffic detected: GET /static/vendor/select2-4.0.3/dist/js/i18n/de.js?v=3.6.0.117 HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3FAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw
Source: global traffic HTTP traffic detected: GET /static/bootstrap/dist/fonts/sourcesanspro-semibold.woff2 HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://web.leitz-cloud.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: corsSec-Fetch-Dest: fontReferer: https://web.leitz-cloud.com/static/gen/main.ed99ea6b.min.cssAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw
Source: global traffic HTTP traffic detected: GET /static/bootstrap/dist/fonts/axcient-iconfont.ttf?avds6c HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://web.leitz-cloud.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: corsSec-Fetch-Dest: fontReferer: https://web.leitz-cloud.com/static/gen/main.ed99ea6b.min.cssAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw
Source: global traffic HTTP traffic detected: GET /static/bootstrap/dist/fonts/sourcesanspro-regular.woff2 HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://web.leitz-cloud.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: corsSec-Fetch-Dest: fontReferer: https://web.leitz-cloud.com/static/gen/main.ed99ea6b.min.cssAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw
Source: global traffic HTTP traffic detected: GET /sites/1/branding/logo HTTP/1.1Host: web.leitz-cloud.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw
Source: global traffic HTTP traffic detected: GET /api/2/person HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Accept: */*X-Requested-With: XMLHttpRequestsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Sec-Fetch-Site: same-originSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3FAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw
Source: global traffic HTTP traffic detected: GET /matomo.js HTTP/1.1Host: analytics.vboxx.euConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://web.leitz-cloud.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /plugins/HeatmapSessionRecording/configs.php?idsite=33&trackerid=ToyWF0&url=https%3A%2F%2Fweb.leitz-cloud.com%2Fauth%2Flogin%2F%3Fdomain%3Dabtax-Steuerberatung%26next%3D%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3F HTTP/1.1Host: analytics.vboxx.euConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://web.leitz-cloud.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /sites/1/branding/icon/ HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://web.leitz-cloud.com/auth/login/?domain=abtax-Steuerberatung&next=%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3FAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1
Source: global traffic HTTP traffic detected: GET /sites/1/branding/icon/ HTTP/1.1Host: web.leitz-cloud.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1
Source: global traffic HTTP traffic detected: GET /auth/forgot/ HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1
Source: global traffic HTTP traffic detected: GET /sites/1/branding/logo HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://web.leitz-cloud.com/auth/forgot/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1If-Modified-Since: Mon, 07 Aug 2023 14:36:21 -0000
Source: global traffic HTTP traffic detected: GET /static/bootstrap/dist/fonts/sourcesanspro-light.woff2 HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: https://web.leitz-cloud.comsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: corsSec-Fetch-Dest: fontReferer: https://web.leitz-cloud.com/static/gen/main.ed99ea6b.min.cssAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1
Source: global traffic HTTP traffic detected: GET /api/2/person HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Accept: */*X-Requested-With: XMLHttpRequestsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Sec-Fetch-Site: same-originSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://web.leitz-cloud.com/auth/forgot/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1
Source: global traffic HTTP traffic detected: GET /plugins/HeatmapSessionRecording/configs.php?idsite=33&trackerid=z99seb&url=https%3A%2F%2Fweb.leitz-cloud.com%2Fauth%2Fforgot%2F HTTP/1.1Host: analytics.vboxx.euConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://web.leitz-cloud.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /sites/1/branding/logo HTTP/1.1Host: web.leitz-cloud.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1If-Modified-Since: Mon, 07 Aug 2023 14:36:21 -0000
Source: global traffic HTTP traffic detected: GET /auth/login/?clear_cookie=1 HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1
Source: global traffic HTTP traffic detected: GET /auth/login/ HTTP/1.1Host: web.leitz-cloud.comConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: documentsec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1
Source: global traffic HTTP traffic detected: GET /api/2/person HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Accept: */*X-Requested-With: XMLHttpRequestsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Sec-Fetch-Site: same-originSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://web.leitz-cloud.com/auth/login/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1
Source: global traffic HTTP traffic detected: GET /sites/1/branding/logo HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://web.leitz-cloud.com/auth/login/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1If-Modified-Since: Mon, 07 Aug 2023 14:36:21 -0000
Source: global traffic HTTP traffic detected: GET /plugins/HeatmapSessionRecording/configs.php?idsite=33&trackerid=SwQQnj&url=https%3A%2F%2Fweb.leitz-cloud.com%2Fauth%2Flogin%2F HTTP/1.1Host: analytics.vboxx.euConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://web.leitz-cloud.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /sites/1/branding/logo HTTP/1.1Host: web.leitz-cloud.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1If-Modified-Since: Mon, 07 Aug 2023 14:36:21 -0000
Source: global traffic HTTP traffic detected: GET /auth/forgot/ HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1
Source: global traffic HTTP traffic detected: GET /sites/1/branding/logo HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://web.leitz-cloud.com/auth/forgot/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1If-Modified-Since: Mon, 07 Aug 2023 14:36:21 -0000
Source: global traffic HTTP traffic detected: GET /plugins/HeatmapSessionRecording/configs.php?idsite=33&trackerid=0eVsvC&url=https%3A%2F%2Fweb.leitz-cloud.com%2Fauth%2Fforgot%2F HTTP/1.1Host: analytics.vboxx.euConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://web.leitz-cloud.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /api/2/person HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Accept: */*X-Requested-With: XMLHttpRequestsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Sec-Fetch-Site: same-originSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://web.leitz-cloud.com/auth/forgot/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1
Source: global traffic HTTP traffic detected: GET /sites/1/branding/logo HTTP/1.1Host: web.leitz-cloud.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1If-Modified-Since: Mon, 07 Aug 2023 14:36:21 -0000
Source: global traffic HTTP traffic detected: GET /auth/login/?clear_cookie=1 HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1
Source: global traffic HTTP traffic detected: GET /auth/login/ HTTP/1.1Host: web.leitz-cloud.comConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: documentsec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1
Source: global traffic HTTP traffic detected: GET /api/2/person HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Accept: */*X-Requested-With: XMLHttpRequestsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Sec-Fetch-Site: same-originSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://web.leitz-cloud.com/auth/login/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1
Source: global traffic HTTP traffic detected: GET /plugins/HeatmapSessionRecording/configs.php?idsite=33&trackerid=WgIqI3&url=https%3A%2F%2Fweb.leitz-cloud.com%2Fauth%2Flogin%2F HTTP/1.1Host: analytics.vboxx.euConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://web.leitz-cloud.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /sites/1/branding/logo HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://web.leitz-cloud.com/auth/login/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1If-Modified-Since: Mon, 07 Aug 2023 14:36:21 -0000
Source: global traffic HTTP traffic detected: GET /sites/1/branding/logo HTTP/1.1Host: web.leitz-cloud.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1If-Modified-Since: Mon, 07 Aug 2023 14:36:21 -0000
Source: global traffic HTTP traffic detected: GET /auth/login/recovery/ HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1
Source: global traffic HTTP traffic detected: GET /sites/1/branding/logo HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://web.leitz-cloud.com/auth/login/recovery/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1If-Modified-Since: Mon, 07 Aug 2023 14:36:21 -0000
Source: global traffic HTTP traffic detected: GET /api/2/person HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Accept: */*X-Requested-With: XMLHttpRequestsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Sec-Fetch-Site: same-originSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://web.leitz-cloud.com/auth/login/recovery/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1
Source: global traffic HTTP traffic detected: GET /plugins/HeatmapSessionRecording/configs.php?idsite=33&trackerid=RUPzzJ&url=https%3A%2F%2Fweb.leitz-cloud.com%2Fauth%2Flogin%2Frecovery%2F HTTP/1.1Host: analytics.vboxx.euConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://web.leitz-cloud.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /sites/1/branding/logo HTTP/1.1Host: web.leitz-cloud.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1If-Modified-Since: Mon, 07 Aug 2023 14:36:21 -0000
Source: global traffic HTTP traffic detected: GET /auth/forgot/ HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1
Source: global traffic HTTP traffic detected: GET /sites/1/branding/logo HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://web.leitz-cloud.com/auth/forgot/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1If-Modified-Since: Mon, 07 Aug 2023 14:36:21 -0000
Source: global traffic HTTP traffic detected: GET /api/2/person HTTP/1.1Host: web.leitz-cloud.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Accept: */*X-Requested-With: XMLHttpRequestsec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Sec-Fetch-Site: same-originSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://web.leitz-cloud.com/auth/forgot/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1
Source: global traffic HTTP traffic detected: GET /plugins/HeatmapSessionRecording/configs.php?idsite=33&trackerid=TvJd9S&url=https%3A%2F%2Fweb.leitz-cloud.com%2Fauth%2Fforgot%2F HTTP/1.1Host: analytics.vboxx.euConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://web.leitz-cloud.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /sites/1/branding/logo HTTP/1.1Host: web.leitz-cloud.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: logged_in=0; session=v|zjSv7p1LFy^cGqMtP1m:Fedz_ErYAOuvM3tBfn:`znd$OEeQw6WA0kl:cnr3Oc.8TtbiAILPHqACTkCReAiZE0ee3GSMzf205bV75iy8jw; _pk_id.33.208f=1d7f1cb1d782f35f.1714026184.; _pk_ses.33.208f=1If-Modified-Since: Mon, 07 Aug 2023 14:36:21 -0000
Source: chromecache_90.2.dr String found in binary or memory: }}catch(ag){}function af(){try{aj.apply(window,[].slice.call(arguments,0));ah()}catch(ak){ah();throw ak}}window[ai]=af}function ac(){return"object"===typeof YT&&YT&&YT.Player}function Z(){if(!ac()){return}var af=ae.getElementsByTagName("iframe");for(var ag=0;ag<af.length;ag++){if(p.isMediaIgnored(af[ag])){continue}var ah=p.getAttribute(af[ag],"src");if(ah&&(ah.indexOf("youtube.com")>0||ah.indexOf("youtube-nocookie.com")>0)){if(af[ag].setAttribute){af[ag].setAttribute("enablejsapi","true")}new w(af[ag],g.VIDEO)}}}if(Y&&Y.length){if(ac()){Z()}else{if(G.onYouTubeIframeAPIReady){X("onYouTubeIframeAPIReady",Z);ab(false)}else{if(G.onYouTubePlayerAPIReady){X("onYouTubePlayerAPIReady",Z);ab(false)}else{G.onYouTubeIframeAPIReady=Z;ab(true)}}}}function ab(ah){if(!ah&&(typeof G.YT==="object"||t.querySelectorAll('script[src="https://www.youtube.com/iframe_api"]').length>0)){return}var ag=t.createElement("script");ag.src="https://www.youtube.com/iframe_api";var af=t.getElementsByTagName("script");if(af&&af.length){var ai=af[0]; equals www.youtube.com (Youtube)
Source: global traffic DNS traffic detected: DNS query: web.leitz-cloud.com
Source: global traffic DNS traffic detected: DNS query: www.google.com
Source: global traffic DNS traffic detected: DNS query: analytics.vboxx.eu
Source: unknown HTTP traffic detected: POST /matomo.php?action_name=Einloggen&idsite=33&rec=1&r=448950&h=8&m=23&s=3&url=https%3A%2F%2Fweb.leitz-cloud.com%2Fauth%2Flogin%2F%3Fdomain%3Dabtax-Steuerberatung%26next%3D%2Fshares%2Ffolder%2Fk11NnLCmDNb%2F%3F&_id=1d7f1cb1d782f35f&_idn=1&send_image=0&_refts=0&pv_id=s2EsOK&fa_pv=1&fa_fp[0][fa_vid]=pv5G4q&fa_fp[0][fa_id]=valid&fa_fp[0][fa_fv]=1&pf_net=0&pf_srv=328&pf_tfr=2&pf_dm1=4480&uadata=%7B%22fullVersionList%22%3A%5B%7B%22brand%22%3A%22Google%20Chrome%22%2C%22version%22%3A%22117.0.5938.132%22%7D%2C%7B%22brand%22%3A%22Not%3BA%3DBrand%22%2C%22version%22%3A%228.0.0.0%22%7D%2C%7B%22brand%22%3A%22Chromium%22%2C%22version%22%3A%22117.0.5938.132%22%7D%5D%2C%22mobile%22%3Afalse%2C%22model%22%3A%22%22%2C%22platform%22%3A%22Windows%22%2C%22platformVersion%22%3A%2210.0.0%22%7D&pdf=1&qt=0&realp=0&wma=0&fla=0&java=0&ag=0&cookie=1&res=1280x1024 HTTP/1.1Host: analytics.vboxx.euConnection: keep-aliveContent-Length: 0sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-platform: "Windows"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Content-Type: application/x-www-form-urlencoded; charset=utf-8Accept: */*Origin: https://web.leitz-cloud.comSec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyReferer: https://web.leitz-cloud.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: chromecache_97.2.dr String found in binary or memory: http://jqueryui.com)
Source: chromecache_90.2.dr String found in binary or memory: http://www.apache.org/licenses/LICENSE-2.0
Source: chromecache_90.2.dr String found in binary or memory: https://developer.matomo.org/api-reference/tracking-javascript
Source: chromecache_90.2.dr String found in binary or memory: https://developer.matomo.org/guides/tracking-javascript-guide#multiple-piwik-trackers
Source: chromecache_90.2.dr String found in binary or memory: https://github.com/matomo-org/matomo/blob/master/js/piwik.js
Source: chromecache_71.2.dr String found in binary or memory: https://github.com/select2/select2/blob/master/LICENSE.md
Source: chromecache_77.2.dr String found in binary or memory: https://gravatar.com/avatar/
Source: chromecache_90.2.dr String found in binary or memory: https://piwik.org
Source: chromecache_90.2.dr String found in binary or memory: https://piwik.org/free-software/bsd/
Source: chromecache_90.2.dr String found in binary or memory: https://w.soundcloud.com/player/api.js
Source: chromecache_90.2.dr String found in binary or memory: https://www.innocraft.com/
Source: chromecache_90.2.dr String found in binary or memory: https://www.innocraft.com/license
Source: chromecache_90.2.dr String found in binary or memory: https://www.youtube.com/iframe_api
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49744
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49743
Source: unknown Network traffic detected: HTTP traffic on port 49817 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49742
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49741
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49740
Source: unknown Network traffic detected: HTTP traffic on port 49789 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49800 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49743 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49746 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49781 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49803 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49795 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49739
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49738
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49737
Source: unknown Network traffic detected: HTTP traffic on port 49772 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49675 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49820 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49784 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49749 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49763 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49806 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49752 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49777 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49798 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49790 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49819 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49787 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49748 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49760 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49745 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49793 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49805 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49751 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49774 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49757 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49782 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49799
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49798
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49797
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49796
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49795
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49794
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49793
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49792
Source: unknown Network traffic detected: HTTP traffic on port 49814 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49822 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49791
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49790
Source: unknown Network traffic detected: HTTP traffic on port 49740 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49765 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49796 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49808 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49811 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49754 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49737 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49771 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49789
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49822
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49788
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49821
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49787
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49820
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49786
Source: unknown Network traffic detected: HTTP traffic on port 49779 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49785
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49784
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49783
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49782
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49781
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49780
Source: unknown Network traffic detected: HTTP traffic on port 49785 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49762 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49819
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49818
Source: unknown Network traffic detected: HTTP traffic on port 49776 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49799 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49810 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49817
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49816
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49815
Source: unknown Network traffic detected: HTTP traffic on port 49791 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49814
Source: unknown Network traffic detected: HTTP traffic on port 49753 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49779
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49778
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49811
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49777
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49810
Source: unknown Network traffic detected: HTTP traffic on port 49816 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49776
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49774
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49773
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49772
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49771
Source: unknown Network traffic detected: HTTP traffic on port 49788 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49742 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49780 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49794 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49802 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49809
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49808
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49806
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49805
Source: unknown Network traffic detected: HTTP traffic on port 49773 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49803
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49802
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49801
Source: unknown Network traffic detected: HTTP traffic on port 49739 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49756 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49800
Source: unknown Network traffic detected: HTTP traffic on port 49758 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49765
Source: unknown Network traffic detected: HTTP traffic on port 49783 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49763
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49762
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49761
Source: unknown Network traffic detected: HTTP traffic on port 49678 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49760
Source: unknown Network traffic detected: HTTP traffic on port 49821 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49815 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49741 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49797 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49801 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49809 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49778 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49758
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49757
Source: unknown Network traffic detected: HTTP traffic on port 49738 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49755 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49756
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49755
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49754
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49753
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49752
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49751
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49750
Source: unknown Network traffic detected: HTTP traffic on port 49818 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49786 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49761 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49747 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49744 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49750 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49749
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49748
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49747
Source: unknown Network traffic detected: HTTP traffic on port 49792 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49746
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49745
Source: unknown HTTPS traffic detected: 184.31.62.93:443 -> 192.168.2.4:49746 version: TLS 1.2
Source: unknown HTTPS traffic detected: 184.31.62.93:443 -> 192.168.2.4:49747 version: TLS 1.2
Source: classification engine Classification label: clean1.win@22/57@8/6
Source: unknown Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2032 --field-trial-handle=1988,i,5874812371822322334,2225953221869786979,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: unknown Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" "https://web.leitz-cloud.com/shares/folder/k11NnLCmDNb/"
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2032 --field-trial-handle=1988,i,5874812371822322334,2225953221869786979,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: Window Recorder Window detected: More than 3 window changes detected
  • No. of IPs < 25%
  • 25% < No. of IPs < 50%
  • 50% < No. of IPs < 75%
  • 75% < No. of IPs