Source: unknown | TCP traffic detected without corresponding DNS query: 23.1.237.91 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.1.237.91 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.1.237.91 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.1.237.91 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.1.237.91 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.1.237.91 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.1.237.91 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: global traffic | HTTP traffic detected: GET /xboxtv.mpeg HTTP/1.1Accept: */*Accept-Language: en-chUA-CPU: AMD64Accept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 10.0; Win64; x64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: playoffchampions.s3.eu-north-1.amazonaws.comConnection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /v2/loginForm?partID=PFAP HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/css/styles.css?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/css/tabs.css?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/css/bootstrap.min.css?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/css/sa-custom.css?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /app/pfstatic_static/js/pf-footer.js HTTP/1.1Host: static.portaldasfinancas.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.acesso.gov.pt/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/pf/css/footer.css?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/pf/css/pf-main.css?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/js/modernizr.js?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/js/footer/footer.js?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/img/autenticacaogov.png HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/img/iconGovPt_20x20.png HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /app/pfstatic_static/js/pf-footer.js HTTP/1.1Host: static.portaldasfinancas.gov.ptConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/js/jquery/jquery-1.11.1.min.js?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/img/background.png HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.acesso.gov.pt/autentica_static/css/styles.css?cb=5.2.14Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/img/logo-at.png HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/js/jquery/jquery.validate.min.js?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/js/jquery/jquery.uniform.min.js?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/js/smartresize.js?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/js/modernizr.js?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/js/footer/footer.js?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/img/autenticacaogov.png HTTP/1.1Host: www.acesso.gov.ptConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/img/iconGovPt_20x20.png HTTP/1.1Host: www.acesso.gov.ptConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/js/app.js?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/js/bootstrap/bootstrap-3.3.4.min.js?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/js/capslock-login.js?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/js/smartresize.js?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/img/logo-at.png HTTP/1.1Host: www.acesso.gov.ptConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/js/jquery/jquery.uniform.min.js?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/img/background.png HTTP/1.1Host: www.acesso.gov.ptConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/js/jquery/jquery.validate.min.js?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/js/jquery/jquery-1.11.1.min.js?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/js/capslock-login.js?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/js/app.js?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/js/bootstrap/bootstrap-3.3.4.min.js?cb=5.2.14 HTTP/1.1Host: www.acesso.gov.ptConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/icons/favicon.ico HTTP/1.1Host: www.acesso.gov.ptConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: global traffic | HTTP traffic detected: GET /autentica_static/icons/favicon.ico HTTP/1.1Host: www.acesso.gov.ptConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: ADRUM_BTa=R:0|g:3456e7b1-061b-466c-9917-b4d449a90644|n:customer1_ce667124-ad2e-4cec-9605-d46ab36ccf73; SameSite=None; ADRUM_BT1=R:0|i:26383|e:9; autentica_JSessionID=0yGUWL-tDrpV-dRbYlT4_nilHZq1zq3H66cHGlOgKue8VTFTKq1v!-583688011!-300282855; AT_P=!JOTw1azzUazpv5uXNCYICHCNuUpMadNCTQ1TwzO2BnURPP8ufo7RG9hD0MgwxoP68Hy1JxEt9n0/sLo=; TS017b475d=01e43c52fec4824682e931aea7dbe99fc0da8ef7a5332311d3b9fc9457150550b8660f940edb60af9b9ebf9d6c66f888962fd17bc6; TSbfdc4c04027=08def0a5edab20002afdebab6ceade4bbf702402da574956e2d3d2603a9f6e2ef0736dc704abc62508639a79311130005df524463572ab5ee183f3a82a1f291d806bcd98f43f85350a9f2f65d995ac995ab16bb6adbac0f0bee883cfe775e1b6 |
Source: chromecache_94.4.dr | String found in binary or memory: http://fontawesome.io |
Source: chromecache_94.4.dr | String found in binary or memory: http://fontawesome.io/license |
Source: chromecache_93.4.dr, chromecache_88.4.dr, chromecache_109.4.dr | String found in binary or memory: http://getbootstrap.com) |
Source: chromecache_117.4.dr, chromecache_108.4.dr | String found in binary or memory: http://jqueryvalidation.org/ |
Source: chromecache_96.4.dr, chromecache_103.4.dr | String found in binary or memory: http://modernizr.com/download/#-shiv-addtest-prefixed-teststyles-testprop-testallprops-hasevent-pref |
Source: chromecache_100.4.dr, chromecache_113.4.dr | String found in binary or memory: http://unscriptable.com/index.php/2009/03/20/debouncing-javascript-methods/ |
Source: playoff.exe, 00000007.00000000.2223508151.00000000002C9000.00000020.00000001.01000000.0000000B.sdmp, playoff.exe, 00000007.00000003.2228095895.0000017A563EC000.00000004.00001000.00020000.00000000.sdmp, playoff.exe.0.dr | String found in binary or memory: https://ailiadasclubdasmilhas.s3.eu-north-1.amazonaws.com/CafeMusic.mpeg |
Source: playoff.exe, 00000007.00000000.2223508151.00000000002C9000.00000020.00000001.01000000.0000000B.sdmp, playoff.exe, 00000007.00000003.2228095895.0000017A563EC000.00000004.00001000.00020000.00000000.sdmp, playoff.exe.0.dr | String found in binary or memory: https://ailiadasclubdasmilhas.s3.eu-north-1.amazonaws.com/DanceMarine.mpeg |
Source: chromecache_93.4.dr, chromecache_88.4.dr, chromecache_109.4.dr | String found in binary or memory: https://github.com/twbs/bootstrap/blob/master/LICENSE) |
Source: chromecache_92.4.dr, chromecache_120.4.dr | String found in binary or memory: https://info.portaldasfinancas.gov.pt/pt/at/Pages/Encarregado_protecao_dados.aspx |
Source: chromecache_92.4.dr, chromecache_120.4.dr | String found in binary or memory: https://info.portaldasfinancas.gov.pt/pt/quem_somos/privacidade/Pages/privacidade.aspx |
Source: wscript.exe, 00000000.00000003.2226243533.00000233BFCCA000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2045060057.00000233BD94A000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2232386458.00000233BA6F8000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2047326034.00000233BE771000.00000004.00000020.00020000.00000000.sdmp, GuiaAT256201.vbs | String found in binary or memory: https://playoffchampions.s3.eu-north-1.amazonaws.com/xboxtv.mpeg |
Source: wscript.exe, 00000000.00000003.2232386458.00000233BA6F8000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://www.acesso.gov.pt/v2/loginFo |
Source: wscript.exe, 00000000.00000003.2226243533.00000233BFCCA000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2045060057.00000233BD94A000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2053801050.00000233BA521000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2232386458.00000233BA6F8000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2047326034.00000233BE771000.00000004.00000020.00020000.00000000.sdmp, GuiaAT256201.vbs | String found in binary or memory: https://www.acesso.gov.pt/v2/loginForm?partID=PFAP |
Source: wscript.exe, 00000000.00000003.2053801050.00000233BA539000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://www.acesso.gov.pt/v2/loginForm?partID=PFAP76R |
Source: wscript.exe, 00000000.00000003.2053801050.00000233BA539000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://www.acesso.gov.pt/v2/loginForm?partID=PFAP86 |
Source: wscript.exe, 00000000.00000003.2053801050.00000233BA539000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://www.acesso.gov.pt/v2/loginForm?partID=PFAP9 |
Source: wscript.exe, 00000000.00000003.2053993426.00000233BA572000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2053801050.00000233BA539000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPC: |
Source: wscript.exe, 00000000.00000003.2053801050.00000233BA539000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPL- |
Source: wscript.exe, 00000000.00000003.2053801050.00000233BA539000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPQ60 |
Source: wscript.exe, 00000000.00000003.2050678399.00000233BA6FA000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPc |
Source: wscript.exe, 00000000.00000003.2053801050.00000233BA539000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPp |
Source: wscript.exe, 00000000.00000003.2053801050.00000233BA521000.00000004.00000020.00020000.00000000.sdmp | String found in binary or memory: https://www.acesso.gov.pt/v2/loginForm?partID=PFAPtCookiesgCj |
Source: unknown | Network traffic detected: HTTP traffic on port 49733 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49744 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49743 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49742 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49741 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49740 |
Source: unknown | Network traffic detected: HTTP traffic on port 49727 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49704 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49743 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49720 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49713 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49738 |
Source: unknown | Network traffic detected: HTTP traffic on port 49717 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49736 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49737 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49736 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49735 |
Source: unknown | Network traffic detected: HTTP traffic on port 49753 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49734 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49733 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 50029 |
Source: unknown | Network traffic detected: HTTP traffic on port 49675 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49732 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49731 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49730 |
Source: unknown | Network traffic detected: HTTP traffic on port 49732 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49703 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49724 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49742 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49728 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49721 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49729 |
Source: unknown | Network traffic detected: HTTP traffic on port 49752 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49728 |
Source: unknown | Network traffic detected: HTTP traffic on port 50029 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49714 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49727 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49726 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49725 |
Source: unknown | Network traffic detected: HTTP traffic on port 49718 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49735 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49724 |
Source: unknown | Network traffic detected: HTTP traffic on port 49674 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49722 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49721 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49720 |
Source: unknown | Network traffic detected: HTTP traffic on port 49706 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49731 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49712 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49725 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49741 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49729 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49748 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49745 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49719 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49722 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49719 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49718 |
Source: unknown | Network traffic detected: HTTP traffic on port 49751 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49717 |
Source: unknown | Network traffic detected: HTTP traffic on port 49715 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49716 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49715 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49714 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49713 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49712 |
Source: unknown | Network traffic detected: HTTP traffic on port 49738 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49734 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49753 |
Source: unknown | Network traffic detected: HTTP traffic on port 49673 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49752 |
Source: unknown | Network traffic detected: HTTP traffic on port 49730 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49751 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49750 |
Source: unknown | Network traffic detected: HTTP traffic on port 49726 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49740 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49744 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49706 |
Source: unknown | Network traffic detected: HTTP traffic on port 49716 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49750 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49704 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49748 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49703 |
Source: unknown | Network traffic detected: HTTP traffic on port 49737 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49745 |
Source: unknown | Process created: C:\Windows\System32\wscript.exe C:\Windows\System32\WScript.exe "C:\Users\user\Desktop\GuiaAT256201.vbs" | |
Source: C:\Windows\System32\wscript.exe | Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://www.acesso.gov.pt/v2/loginForm?partID=PFAP | |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2088 --field-trial-handle=2040,i,14633557413047616428,5381384248003885766,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 | |
Source: C:\Windows\System32\wscript.exe | Process created: C:\Users\Public\xboxtv\playoff.exe "C:\users\public\xboxtv\playoff.exe" | |
Source: C:\Windows\System32\wscript.exe | Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://www.acesso.gov.pt/v2/loginForm?partID=PFAP | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Process created: C:\Users\Public\xboxtv\playoff.exe "C:\users\public\xboxtv\playoff.exe" | Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2088 --field-trial-handle=2040,i,14633557413047616428,5381384248003885766,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 | Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe | Process created: unknown unknown | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: version.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: kernel.appcore.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: uxtheme.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: sxs.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: vbscript.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: amsi.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: userenv.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: profapi.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: wldp.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: msasn1.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: cryptsp.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: rsaenh.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: cryptbase.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: msisip.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: wshext.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: scrobj.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: scrrun.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: mpr.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: windows.storage.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: propsys.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: urlmon.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: iertutil.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: srvcli.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: netutils.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: windows.shell.servicehostbuilder.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: onecoreuapcommonproxystub.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: ieframe.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: netapi32.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: winhttp.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: wkscli.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: windows.staterepositoryps.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: edputil.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: secur32.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: sspicli.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: mlang.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: wininet.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: policymanager.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: msvcp110_win.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: wintypes.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: onecorecommonproxystub.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: msxml3.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: ondemandconnroutehelper.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: winhttp.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: mswsock.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: iphlpapi.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: winnsi.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: dnsapi.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: rasadhlp.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: fwpuclnt.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: schannel.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: mskeyprotect.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: ntasn1.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: dpapi.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: gpapi.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: ncrypt.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: ncryptsslp.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: msdart.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: apphelp.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: zipfldr.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: dui70.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: duser.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: chartv.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: oleacc.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: atlthunk.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: textinputframework.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: coreuicomponents.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: coremessaging.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: ntmarta.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: coremessaging.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: wtsapi32.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: winsta.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: textshaping.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: windows.fileexplorer.common.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: explorerframe.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: shdocvw.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: linkinfo.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: ntshrui.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: cscapi.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: appresolver.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: bcp47langs.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: slc.dll | Jump to behavior |
Source: C:\Windows\System32\wscript.exe | Section loaded: sppc.dll | Jump to behavior |
Source: C:\Users\Public\xboxtv\playoff.exe | Section loaded: wininet.dll | Jump to behavior |
Source: C:\Users\Public\xboxtv\playoff.exe | Section loaded: version.dll | Jump to behavior |
Source: C:\Users\Public\xboxtv\playoff.exe | Section loaded: wtsapi32.dll | Jump to behavior |
Source: C:\Users\Public\xboxtv\playoff.exe | Section loaded: uxtheme.dll | Jump to behavior |
Source: C:\Users\Public\xboxtv\playoff.exe | Section loaded: kernel.appcore.dll | Jump to behavior |
Source: C:\Users\Public\xboxtv\playoff.exe | Section loaded: winsta.dll | Jump to behavior |
Source: C:\Users\Public\xboxtv\playoff.exe | Section loaded: textshaping.dll | Jump to behavior |
Source: C:\Users\Public\xboxtv\playoff.exe | Section loaded: textinputframework.dll | Jump to behavior |
Source: C:\Users\Public\xboxtv\playoff.exe | Section loaded: coreuicomponents.dll | Jump to behavior |
Source: C:\Users\Public\xboxtv\playoff.exe | Section loaded: coremessaging.dll | Jump to behavior |
Source: C:\Users\Public\xboxtv\playoff.exe | Section loaded: ntmarta.dll | Jump to behavior |
Source: C:\Users\Public\xboxtv\playoff.exe | Section loaded: wintypes.dll | Jump to behavior |
Source: C:\Users\Public\xboxtv\playoff.exe | Section loaded: wintypes.dll | Jump to behavior |
Source: C:\Users\Public\xboxtv\playoff.exe | Section loaded: wintypes.dll | Jump to behavior |
Source: C:\Users\Public\xboxtv\playoff.exe | Section loaded: dwmapi.dll | Jump to behavior |
Source: wscript.exe, 00000000.00000003.2053801050.00000233BA539000.00000004.00000020.00020000.00000000.sdmp | Binary or memory string: \??\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\Files- |
Source: wscript.exe, 00000000.00000003.2053801050.00000233BA539000.00000004.00000020.00020000.00000000.sdmp | Binary or memory string: \??\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b} |
Source: wscript.exe, 00000000.00000003.2178582283.00000233BA5AB000.00000004.00000020.00020000.00000000.sdmp, wscript.exe, 00000000.00000003.2157185248.00000233BA5B4000.00000004.00000020.00020000.00000000.sdmp | Binary or memory string: Hyper-V RAW |
Source: wscript.exe, 00000000.00000003.2053801050.00000233BA539000.00000004.00000020.00020000.00000000.sdmp | Binary or memory string: \??\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\Device\CdRom0\??\Volume{a33c736e-61ca-11ee-8c18-806e6f6e6963}\DosDevices\D: |
Source: wscript.exe, 00000000.00000003.2053801050.00000233BA539000.00000004.00000020.00020000.00000000.sdmp | Binary or memory string: -b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b} |
Source: wscript.exe, 00000000.00000003.2178563168.00000233BC702000.00000004.00000020.00020000.00000000.sdmp | Binary or memory string: xboxtv/playoff.exea-11ee-8c18-806e6f6e6963}#0000000000100000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000006500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000C5E500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\STORAGE#Volume#{a33c735c-61ca-11ee-8c18-806e6f6e6963}#0000000007500000#{53f5630d-b6bf-11d0-94f2-00a0c91efb8b}\\?\SCSI#CdRom&Ven_NECVMWar&Prod_VMware_SATA_CD00#4&224f42ef&0&000000#{53f5630d-b6bf-11d0-94f2-00a0c91ef |