CapTipper

Analysis Info

PCAP File Analysis Time CapTipper Version Traffic Time
/opt/Malware-Project/BigDataset/Scenarios/CTU-Malware-Capture-Botnet-116-2//2012-05-25-captura-2.pcap 04/09/15 20:51:44 0.2 b09 05/29/12 04:19:37

Flow View

192.168.0.151:5357app-static.crossrider.comcrt.usertrust.comcotssl.crossrider.comstats.crossrider.comwww.geoiptool.comglassandlock.co.ukl.sharethis.comedge.sharethis.comseg.sharethis.comxsltcache.alexa.comwd-edge.sharethis.comx.translateth.isxslt.alexa.comw.sharethis.comwww.claimfans.comapi.ipinfodb.comwww.msftncsi.com192.168.0.250:535746.105.227.69netping.bounceme.netb.scorecardresearch.comb.scorecardresearch.comClient

Client Details

IP192.168.0.151
MAC08:00:27:d0:2f:3c
USER-AGENTWSDAPI

Conversations

192.168.0.250:5357    (192.168.0.250:5357)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
0/acc7fe12-3135-466d-a131-c5ba9b41ee06/application/soap+xml0.html200XML2.1 KB05/29/12 04:19:37

www.msftncsi.com    (65.55.119.90:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
1/ncsi.txttext/plainncsi.txt200 OKTEXT14.0 B05/29/12 04:21:40

api.ipinfodb.com    (67.212.77.13:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
2/v2/ip_query_country.php?key=a9df22c8f8a377ac9a5e32a49cfa90a81baff6855766206fc7285a371f8b5b47&timezone=offtext/xmlip_query_country.php200 OKXML177.0 B05/29/12 08:27:46

www.claimfans.com    (205.251.133.247:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
3/ref.php?id=60934text/htmlref.php302 Moved Temporarily0.0 B05/29/12 08:27:55
4/index.phptext/htmlindex.php200 OKHTML8.7 KB05/29/12 08:27:55
5/js/uniform/css/uniform.default.csstext/cssuniform.default.css200 OKTEXT9.2 KB05/29/12 08:27:56
6/js/jdpicker/jdpicker.csstext/cssjdpicker.css200 OKTEXT2.6 KB05/29/12 08:27:56
8/js/visualize/css/visualize.csstext/cssvisualize.css200 OKTEXT2.2 KB05/29/12 08:27:56
9/js/fancybox/jquery.fancybox-1.3.4.csstext/cssjquery.fancybox-1.3.4.css200 OKTEXT8.3 KB05/29/12 08:27:56
10/js/jwysiwyg/jquery.wysiwyg.csstext/cssjquery.wysiwyg.css200 OKTEXT4.4 KB05/29/12 08:27:56
11/css/themes/blue.csstext/cssblue.css200 OKTEXT6.8 KB05/29/12 08:27:56
12/css/ie.csstext/cssie.css200 OKTEXT4.1 KB05/29/12 08:27:56
13/css/ltie8.csstext/cssltie8.css200 OKTEXT518.0 B05/29/12 08:27:56
14/js/jdpicker/jquery.jdpicker.jsapplication/javascriptjquery.jdpicker.js200 OKTEXT20.3 KB05/29/12 08:27:56
16/js/uniform/jquery.uniform.min.jsapplication/javascriptjquery.uniform.min.js200 OKTEXT9.7 KB05/29/12 08:27:56
17/js/jquery.hotkeys.jsapplication/javascriptjquery.hotkeys.js200 OKTEXT5.9 KB05/29/12 08:27:56
18/js/jquery.cookie.jsapplication/javascriptjquery.cookie.js200 OKTEXT1.5 KB05/29/12 08:27:56
19/js/visualize/visualize.jQuery.jsapplication/javascriptvisualize.jQuery.js200 OKTEXT25.0 KB05/29/12 08:27:56
20/js/fancybox/jquery.fancybox-1.3.4.pack.jsapplication/javascriptjquery.fancybox-1.3.4.pack.js200 OKTEXT15.3 KB05/29/12 08:27:56
21/js/jquery.tables.jsapplication/javascriptjquery.tables.js200 OKTEXT5.4 KB05/29/12 08:27:56
22/js/main.jsapplication/javascriptmain.js200 OKTEXT15.0 KB05/29/12 08:27:56
24/css/style.csstext/cssstyle.css200 OKTEXT49.3 KB05/29/12 08:27:56
25/js/jwysiwyg/jquery.wysiwyg.jsapplication/javascriptjquery.wysiwyg.js200 OKTEXT52.5 KB05/29/12 08:27:56
26/js/jquery-ui-1.8.14.custom.min.jsapplication/javascriptjquery-ui-1.8.14.custom.min.js200 OKTEXT68.6 KB05/29/12 08:27:56
27/js/jquery-1.6.2.min.jsapplication/javascriptjquery-1.6.2.min.js200 OKTEXT89.4 KB05/29/12 08:27:56
28/img/bg.jpgimage/jpegbg.jpg200 OKJPG1.1 KB05/29/12 08:28:00
30/images/recover.pngimage/pngrecover.png200 OKPNG2.2 KB05/29/12 08:28:02
31/img/logo_black.pngimage/pnglogo_black.png200 OKPNG13.0 KB05/29/12 08:28:02
32/images/youtube.pngimage/pngyoutube.png200 OKPNG10.0 KB05/29/12 08:28:02
33/images/twitter.pngimage/pngtwitter.png200 OKPNG10.2 KB05/29/12 08:28:02
34/images/facebook.pngimage/pngfacebook.png200 OKPNG9.7 KB05/29/12 08:28:02
35/images/website.pngimage/pngwebsite.png200 OKPNG9.7 KB05/29/12 08:28:02
36/images/google.pngimage/pnggoogle.png200 OKPNG9.6 KB05/29/12 08:28:02
37/images/stumbleupon.pngimage/pngstumbleupon.png200 OKPNG9.9 KB05/29/12 08:28:02
38/images/digg.pngimage/pngdigg.png200 OKPNG9.9 KB05/29/12 08:28:02
39/images/retweet.pngimage/pngretweet.png200 OKPNG8.0 KB05/29/12 08:28:02
40/images/linkedin.pngimage/pnglinkedin.png200 OKPNG9.9 KB05/29/12 08:28:02
41/images/subs.pngimage/pngsubs.png200 OKPNG7.2 KB05/29/12 08:28:02
42/images/myspace.pngimage/pngmyspace.png200 OKPNG6.4 KB05/29/12 08:28:02
43/images/pins.pngimage/pngpins.png200 OKPNG5.9 KB05/29/12 08:28:02
44/images/soundcloud.pngimage/pngsoundcloud.png200 OKPNG2.4 KB05/29/12 08:28:02
45/img/menu_bg_blue.jpgimage/jpegmenu_bg_blue.jpg200 OKJPG8.0 KB05/29/12 08:28:02
46/img/block_bg.jpgimage/jpegblock_bg.jpg200 OKJPG1008.0 B05/29/12 08:28:02
47/img/gray_small.pngimage/pnggray_small.png200 OKPNG449.0 B05/29/12 08:28:02
48/img/logo_bg.pngimage/pnglogo_bg.png200 OKPNG2.9 KB05/29/12 08:28:02
49/usersonline.phpimage/pngusersonline.php200 OKPNG3.8 KB05/29/12 08:28:02
50/img/block_top_bg.jpgimage/jpegblock_top_bg.jpg200 OKJPG7.5 KB05/29/12 08:28:02
51/img/black_arrow.pngimage/pngblack_arrow.png200 OKPNG1.2 KB05/29/12 08:28:02
52/img/pass_bg.pngimage/pngpass_bg.png200 OKPNG636.0 B05/29/12 08:28:02
53/img/footer_bg.pngimage/pngfooter_bg.png200 OKPNG2.9 KB05/29/12 08:28:02
56/js/fancybox/fancybox.pngimage/pngfancybox.png200 OKPNG14.9 KB05/29/12 08:28:03
57/js/fancybox/blank.gifimage/gifblank.gif200 OKGIF43.0 B05/29/12 08:28:03
59/fancybox/fancy_shadow_n.pngtext/htmlfancy_shadow_n.png404 Not FoundHTML8.7 KB05/29/12 08:31:26
60/fancybox/fancy_shadow_ne.pngtext/htmlfancy_shadow_ne.png404 Not FoundHTML8.7 KB05/29/12 08:31:27
61/fancybox/fancy_shadow_e.pngtext/htmlfancy_shadow_e.png404 Not FoundHTML8.7 KB05/29/12 08:31:27
62/fancybox/fancy_shadow_se.pngtext/htmlfancy_shadow_se.png404 Not FoundHTML8.7 KB05/29/12 08:31:27
63/fancybox/fancy_shadow_s.pngtext/htmlfancy_shadow_s.png404 Not FoundHTML8.7 KB05/29/12 08:31:28
64/fancybox/fancy_shadow_sw.pngtext/htmlfancy_shadow_sw.png404 Not FoundHTML8.7 KB05/29/12 08:31:28
65/fancybox/fancy_shadow_w.pngtext/htmlfancy_shadow_w.png404 Not FoundHTML8.7 KB05/29/12 08:31:29
66/fancybox/fancy_shadow_nw.pngtext/htmlfancy_shadow_nw.png404 Not FoundHTML8.7 KB05/29/12 08:31:29
68/favicon.icoimage/x-iconfavicon.ico200 OKICO1.1 KB05/29/12 08:32:47
216/img/ie_menu_bg.pngtext/htmlie_menu_bg.png404 Not FoundHTML8.7 KB05/29/12 13:17:32

w.sharethis.com    (72.246.216.42:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
7/button/buttons.jsapplication/x-javascriptbuttons.js200 OKTEXT23.9 KB05/29/12 08:27:56
55/button/css/buttons.4123613a08b6626b3bc5851d742f24bd.csstext/cssbuttons.4123613a08b6626b3bc5851d742f24bd.css200 OKTEXT3.7 KB05/29/12 08:28:03
74/share4x/js/st.35d4aacd4fd3d345f119a441cbb45043.jsapplication/x-javascriptst.35d4aacd4fd3d345f119a441cbb45043.js200 OKTEXT19.6 KB05/29/12 08:32:52
76/share4x/css/share.3343cba76810cce7b90dcaf8d6bc2e32.csstext/cssshare.3343cba76810cce7b90dcaf8d6bc2e32.css200 OKTEXT4.4 KB05/29/12 08:32:52

xslt.alexa.com    (205.251.223.121:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
15/site_stats/js/s/a?url=www.claimfans.comapplication/x-javascripta200 OKTEXT3.1 KB05/29/12 08:27:56

x.translateth.is    (72.21.195.1:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
23/translate-this.jsapplication/javascripttranslate-this.js200 OKTEXT17.7 KB05/29/12 08:27:57
69/tt-btn1.pngimage/pngtt-btn1.png200 OKPNG2.2 KB05/29/12 08:32:47

wd-edge.sharethis.com    (72.246.216.25:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
29/button/checkOAuth.esitext/javascriptcheckOAuth.esi200 OKTEXT22.0 B05/29/12 08:28:02

xsltcache.alexa.com    (174.129.243.52:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
54/site_stats/gif/s/a/d3d3LmNsYWltZmFucy5jb20=/s.gifimage/gifs.gif200 OKGIF3.1 KB05/29/12 08:28:02

glassandlock.co.uk    (85.233.160.70:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
58/html/admin/HBX321e23e23r.exeapplication/octet-streamHBX321e23e23r.exe200 OKEXE340.0 KB05/29/12 08:31:23
78/html/admin/LDLR43f34t345g45g.exeapplication/octet-streamLDLR43f34t345g45g.exe200 OKEXE12.0 KB05/29/12 09:03:13
79/html/admin/Ldgsherfwrg.exeapplication/octet-streamLdgsherfwrg.exe200 OKEXE1.8 MB05/29/12 09:03:15
87/html/admin/A243t324f234f.exeapplication/octet-streamA243t324f234f.exe200 OKEXE80.0 KB05/29/12 09:04:03
88/html/admin/file.exeapplication/octet-streamfile.exe200 OKEXE100.0 KB05/29/12 09:04:35
97/html/admin/SX433g45r4f.exeapplication/octet-streamSX433g45r4f.exe200 OKEXE640.0 KB05/29/12 09:17:21

www.geoiptool.com    (190.210.100.78:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
67/text/html67.html200 OKHTML11.7 KB05/29/12 08:32:36

seg.sharethis.com    (184.73.185.69:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
70/getSegment.php?purl=http%3A%2F%2Fwww.claimfans.com%2Findex.php&jsref=&rnd=1338280367457text/htmlgetSegment.php200 OKTEXT1.3 KB05/29/12 08:32:47

edge.sharethis.com    (72.246.216.34:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
71/share4x/index.46f5bc5fc0e85c1367fbe18fbd1b1792.htmltext/htmlindex.46f5bc5fc0e85c1367fbe18fbd1b1792.html200 OKHTML2.4 KB05/29/12 08:32:52
72/images/spinner.gifimage/gifspinner.gif200 OKGIF792.0 B05/29/12 08:32:52

b.scorecardresearch.com    (200.182.35.162:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
73/b?c1=7&c2=8097938&rn=983019913&c7=http%3A%2F%2Fseg.sharethis.com%2FgetSegment.php%3Fpurl%3Dhttp%253A%252F%252Fwww.claimfans.com%252Findex.php%26jsref%3D%26rnd%3D1338280367457&c3=8097938&c8=ShareThis%20Segmenter&c9=http%3A%2F%2Fwww.claimfans.com%2Findex.php&cv=2.2&cs=jsb302 Moved Temporarily0.0 B05/29/12 08:32:52
77/b2?c1=7&c2=8097938&rn=983019913&c7=http%3A%2F%2Fseg.sharethis.com%2FgetSegment.php%3Fpurl%3Dhttp%253A%252F%252Fwww.claimfans.com%252Findex.php%26jsref%3D%26rnd%3D1338280367457&c3=8097938&c8=ShareThis%20Segmenter&c9=http%3A%2F%2Fwww.claimfans.com%2Findex.php&cv=2.2&cs=jsb2204 No Content0.0 B05/29/12 08:32:52

l.sharethis.com    (50.16.238.194:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
75/pview?event=pview&fpc=7281473-13797b9d561-779257f4-1&sessionID=1338280367457.31898&sourceURL=http%3A%2F%2Fwww.claimfans.com%2Findex.php&hostname=www.claimfans.com&location=%2Findex.php&publisher=831b48ad-05cd-416f-b05b-dd2865a6a65c&shareHash=sthash.WsYEG8hT&incomingHash=&refDomain=&refQuery=&url=http%3A%2F%2Fwww.claimfans.com%2Findex.php&sharURL=&source=share4x&title=Free%20Facebook%20Fans%20and%20Free%20Twitter%20Followers%20and%20Pinterest%20Pin%20Exchange&ts1338280367457.0=pview204 No Content0.0 B05/29/12 08:32:47

stats.crossrider.com    (208.85.150.249:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
80/installer.gif?action=started&browser=ie8&ver=1_18_149_149&bic=5711114C88F4452CAB319AE07E7C0D99IE&app=4995&appver=0&verifier=e070de45f051af0a83fec8697c4ce3b7&srcid=0&subid=0&zdata=0&ff=0_81&ch=1_17_45&default=X&os=V7&admin=1&type=12289image/gifinstaller.gif200 OKGIF43.0 B05/29/12 09:03:21
85/installer.gif?action=finished&browser=ie8&ver=1_18_149_149&bic=5711114C88F4452CAB319AE07E7C0D99IE&app=4995&appver=50&verifier=e070de45f051af0a83fec8697c4ce3b7&srcid=0&subid=0&zdata=0&ff=0_81&ch=1_17_45&default=X&os=V7&admin=1&type=12289image/gifinstaller.gif200 OKGIF43.0 B05/29/12 09:03:33
86/apps.gif?action=install&browser=ie8&ver=1_18_149_149&bic=5711114C88F4452CAB319AE07E7C0D99IE&app=4995&appver=50&verifier=e070de45f051af0a83fec8697c4ce3b7&installtime=1338282201&curtime=1338282201&lifetime=0image/gifapps.gif200 OKGIF43.0 B05/29/12 09:03:34

cotssl.crossrider.com    (206.41.8.190:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
81/plugin/apps/4995/manifest/1_18_149_149/ie8/manifest.xml?ver=0application/xmlmanifest.xml200 OKXML1.5 KB05/29/12 09:03:30

crt.usertrust.com    (178.255.83.2:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
82/AddTrustExternalCARoot.p7capplication/x-pkcs7-certificatesAddTrustExternalCARoot.p7c200 OKBINARY2.2 KB05/29/12 09:03:31

app-static.crossrider.com    (206.41.8.170:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
83/plugin/apps/4995/plugins/1_18_149_149/ie8/plugins.json?ver=1text/plainplugins.json200 OKTEXT2.0 KB05/29/12 09:03:32
84/plugin/opensearch/ie/4995.xmlapplication/xml4995.xml200 OKXML600.0 B05/29/12 09:03:33

netping.bounceme.net    (8.23.224.90:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
89/(2)text/html(2)302 Found0.0 B05/29/12 09:05:12
91/(3)text/html(3)302 Found0.0 B05/29/12 09:06:37
92/(4)text/html(4)302 Found0.0 B05/29/12 09:09:04
93/(5)text/html(5)302 Found0.0 B05/29/12 09:10:33
94/(6)text/html(6)302 Found0.0 B05/29/12 09:13:15
95/(7)text/html(7)302 Found0.0 B05/29/12 09:15:03
96/(8)text/html(8)302 Found0.0 B05/29/12 09:17:20
98/(9)text/html(9)302 Found0.0 B05/29/12 09:19:06
99/(10)text/html(10)302 Found0.0 B05/29/12 09:20:43
100/(11)text/html(11)302 Found0.0 B05/29/12 09:22:33
101/(12)text/html(12)302 Found0.0 B05/29/12 09:24:49
102/(13)text/html(13)302 Found0.0 B05/29/12 09:27:47
103/(14)text/html(14)302 Found0.0 B05/29/12 09:30:36
104/(15)text/html(15)302 Found0.0 B05/29/12 09:31:46
105/(16)text/html(16)302 Found0.0 B05/29/12 09:34:40
106/(17)text/html(17)302 Found0.0 B05/29/12 09:36:23
107/(18)text/html(18)302 Found0.0 B05/29/12 09:38:37
108/(19)text/html(19)302 Found0.0 B05/29/12 09:40:54
109/(20)text/html(20)302 Found0.0 B05/29/12 09:43:03
110/(21)text/html(21)302 Found0.0 B05/29/12 09:45:19
111/(22)text/html(22)302 Found0.0 B05/29/12 09:46:20
112/(23)text/html(23)302 Found0.0 B05/29/12 09:47:37
113/(24)text/html(24)302 Found0.0 B05/29/12 09:49:21
114/(25)text/html(25)302 Found0.0 B05/29/12 09:51:23
115/(26)text/html(26)302 Found0.0 B05/29/12 09:53:22
116/(27)text/html(27)302 Found0.0 B05/29/12 09:55:29
117/(28)text/html(28)302 Found0.0 B05/29/12 09:57:18
118/(29)text/html(29)302 Found0.0 B05/29/12 10:00:10
119/(30)text/html(30)302 Found0.0 B05/29/12 10:02:19
120/(31)text/html(31)302 Found0.0 B05/29/12 10:04:11
121/(32)text/html(32)302 Found0.0 B05/29/12 10:06:57
122/(33)text/html(33)302 Found0.0 B05/29/12 10:08:04
123/(34)text/html(34)302 Found0.0 B05/29/12 10:10:37
124/(35)text/html(35)302 Found0.0 B05/29/12 10:12:36
125/(36)text/html(36)302 Found0.0 B05/29/12 10:13:58
126/(37)text/html(37)302 Found0.0 B05/29/12 10:15:48
127/(38)text/html(38)302 Found0.0 B05/29/12 10:17:56
128/(39)text/html(39)302 Found0.0 B05/29/12 10:20:33
129/(40)text/html(40)302 Found0.0 B05/29/12 10:22:01
130/(41)text/html(41)302 Found0.0 B05/29/12 10:24:51
131/(42)text/html(42)302 Found0.0 B05/29/12 10:27:42
132/(43)text/html(43)302 Found0.0 B05/29/12 10:30:18
133/(44)text/html(44)302 Found0.0 B05/29/12 10:32:19
134/(45)text/html(45)302 Found0.0 B05/29/12 10:35:01
135/(46)text/html(46)302 Found0.0 B05/29/12 10:36:49
136/(47)text/html(47)302 Found0.0 B05/29/12 10:39:47
137/(48)text/html(48)302 Found0.0 B05/29/12 10:42:20
138/(49)text/html(49)302 Found0.0 B05/29/12 10:45:03
139/(50)text/html(50)302 Found0.0 B05/29/12 10:47:20
140/(51)text/html(51)302 Found0.0 B05/29/12 10:49:17
141/(52)text/html(52)302 Found0.0 B05/29/12 10:52:13
142/(53)text/html(53)302 Found0.0 B05/29/12 10:53:54
143/(54)text/html(54)302 Found0.0 B05/29/12 10:55:37
144/(55)text/html(55)302 Found0.0 B05/29/12 10:56:42
145/(56)text/html(56)302 Found0.0 B05/29/12 10:59:26
146/(57)text/html(57)302 Found0.0 B05/29/12 11:00:40
147/(58)text/html(58)302 Found0.0 B05/29/12 11:02:34
148/(59)text/html(59)302 Found0.0 B05/29/12 11:04:31
149/(60)text/html(60)302 Found0.0 B05/29/12 11:05:52
150/(61)text/html(61)302 Found0.0 B05/29/12 11:06:58
151/(62)text/html(62)302 Found0.0 B05/29/12 11:09:19
152/(63)text/html(63)302 Found0.0 B05/29/12 11:10:59
153/(64)text/html(64)302 Found0.0 B05/29/12 11:13:37
154/(65)text/html(65)302 Found0.0 B05/29/12 11:15:01
155/(66)text/html(66)302 Found0.0 B05/29/12 11:16:47
156/(67)text/html(67)302 Found0.0 B05/29/12 11:18:24
157/(68)text/html(68)302 Found0.0 B05/29/12 11:21:21
158/(69)text/html(69)302 Found0.0 B05/29/12 11:22:25
159/(70)text/html(70)302 Found0.0 B05/29/12 11:25:05
160/(71)text/html(71)302 Found0.0 B05/29/12 11:26:43
161/(72)text/html(72)302 Found0.0 B05/29/12 11:27:58
162/(73)text/html(73)302 Found0.0 B05/29/12 11:29:45
163/(74)text/html(74)302 Found0.0 B05/29/12 11:31:53
164/(75)text/html(75)302 Found0.0 B05/29/12 11:34:42
165/(76)text/html(76)302 Found0.0 B05/29/12 11:36:56
166/(77)text/html(77)302 Found0.0 B05/29/12 11:39:54
167/(78)text/html(78)302 Found0.0 B05/29/12 11:41:17
168/(79)text/html(79)302 Found0.0 B05/29/12 11:44:10
169/(80)text/html(80)302 Found0.0 B05/29/12 11:46:00
170/(81)text/html(81)302 Found0.0 B05/29/12 11:47:53
171/(82)text/html(82)302 Found0.0 B05/29/12 11:50:24
172/(83)text/html(83)302 Found0.0 B05/29/12 11:53:11
173/(84)text/html(84)302 Found0.0 B05/29/12 11:54:37
174/(85)text/html(85)302 Found0.0 B05/29/12 11:55:50
175/(86)text/html(86)302 Found0.0 B05/29/12 11:57:58
176/(87)text/html(87)302 Found0.0 B05/29/12 11:59:46
177/(88)text/html(88)302 Found0.0 B05/29/12 12:02:01
178/(89)text/html(89)302 Found0.0 B05/29/12 12:03:22
179/(90)text/html(90)302 Found0.0 B05/29/12 12:05:15
180/(91)text/html(91)302 Found0.0 B05/29/12 12:07:07
181/(92)text/html(92)302 Found0.0 B05/29/12 12:09:51
182/(93)text/html(93)302 Found0.0 B05/29/12 12:12:41
183/(94)text/html(94)302 Found0.0 B05/29/12 12:14:55
184/(95)text/html(95)302 Found0.0 B05/29/12 12:16:03
185/(96)text/html(96)302 Found0.0 B05/29/12 12:17:34
186/(97)text/html(97)302 Found0.0 B05/29/12 12:19:21
187/(98)text/html(98)302 Found0.0 B05/29/12 12:21:56
188/(99)text/html(99)302 Found0.0 B05/29/12 12:24:03
189/(100)text/html(100)302 Found0.0 B05/29/12 12:26:06
190/(101)text/html(101)302 Found0.0 B05/29/12 12:28:31
191/(102)text/html(102)302 Found0.0 B05/29/12 12:30:32
192/(103)text/html(103)302 Found0.0 B05/29/12 12:33:04
193/(104)text/html(104)302 Found0.0 B05/29/12 12:34:34
194/(105)text/html(105)302 Found0.0 B05/29/12 12:35:38
195/(106)text/html(106)302 Found0.0 B05/29/12 12:37:29
196/(107)text/html(107)302 Found0.0 B05/29/12 12:38:48
197/(108)text/html(108)302 Found0.0 B05/29/12 12:40:54
198/(109)text/html(109)302 Found0.0 B05/29/12 12:42:42
199/(110)text/html(110)302 Found0.0 B05/29/12 12:44:11
200/(111)text/html(111)302 Found0.0 B05/29/12 12:46:02
201/(112)text/html(112)302 Found0.0 B05/29/12 12:48:57
202/(113)text/html(113)302 Found0.0 B05/29/12 12:50:44
203/(114)text/html(114)302 Found0.0 B05/29/12 12:52:00
204/(115)text/html(115)302 Found0.0 B05/29/12 12:53:49
205/(116)text/html(116)302 Found0.0 B05/29/12 12:56:37
206/(117)text/html(117)302 Found0.0 B05/29/12 12:59:03
207/(118)text/html(118)302 Found0.0 B05/29/12 13:00:35
208/(119)text/html(119)302 Found0.0 B05/29/12 13:03:21
209/(120)text/html(120)302 Found0.0 B05/29/12 13:06:06
210/(121)text/html(121)302 Found0.0 B05/29/12 13:07:35
211/(122)text/html(122)302 Found0.0 B05/29/12 13:08:42
212/(123)text/html(123)302 Found0.0 B05/29/12 13:10:02
213/(124)text/html(124)302 Found0.0 B05/29/12 13:12:01
214/(125)text/html(125)302 Found0.0 B05/29/12 13:13:22
215/(126)text/html(126)302 Found0.0 B05/29/12 13:14:50
219/(127)text/html(127)302 Found0.0 B05/29/12 13:17:43
221/(128)text/html(128)302 Found0.0 B05/29/12 13:20:01
222/(129)text/html(129)302 Found0.0 B05/29/12 13:21:52

46.105.227.69    (46.105.227.69:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
90/cmd.phptext/htmlcmd.php200 OK0.0 B05/29/12 09:05:13

seg.sharethis.com    (184.73.185.66:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
217/getSegment.php?purl=http%3A%2F%2Fwww.claimfans.com%2Findex.php&jsref=&rnd=1338297453177text/htmlgetSegment.php200 OKTEXT1.3 KB05/29/12 13:17:33

b.scorecardresearch.com    (63.217.115.67:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
218/b?c1=7&c2=8097938&rn=1188056402&c7=http%3A%2F%2Fseg.sharethis.com%2FgetSegment.php%3Fpurl%3Dhttp%253A%252F%252Fwww.claimfans.com%252Findex.php%26jsref%3D%26rnd%3D1338297453177&c3=8097938&c8=ShareThis%20Segmenter&c9=http%3A%2F%2Fwww.claimfans.com%2Findex.php&cv=2.2&cs=jsb302 Moved Temporarily0.0 B05/29/12 13:17:34
224/b2?c1=7&c2=8097938&rn=1188056402&c7=http%3A%2F%2Fseg.sharethis.com%2FgetSegment.php%3Fpurl%3Dhttp%253A%252F%252Fwww.claimfans.com%252Findex.php%26jsref%3D%26rnd%3D1338297453177&c3=8097938&c8=ShareThis%20Segmenter&c9=http%3A%2F%2Fwww.claimfans.com%2Findex.php&cv=2.2&cs=jsb2204 No Content0.0 B05/29/12 13:17:34

l.sharethis.com    (174.129.236.25:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
220/pview?event=pview&fpc=7281473-13798be8a6f-70e0e89b-1&sessionID=1338297453167.24467&sourceURL=http%3A%2F%2Fwww.claimfans.com%2Findex.php&hostname=www.claimfans.com&location=%2Findex.php&publisher=831b48ad-05cd-416f-b05b-dd2865a6a65c&shareHash=sthash.ndmXLgn7&incomingHash=&refDomain=&refQuery=&url=http%3A%2F%2Fwww.claimfans.com%2Findex.php&sharURL=&source=share4x&title=Free%20Facebook%20Fans%20and%20Free%20Twitter%20Followers%20and%20Pinterest%20Pin%20Exchange&ts1338297453177.0=pview204 No Content0.0 B05/29/12 13:17:33

192.168.0.151:5357    (192.168.0.151:5357)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
223/acc7fe12-3135-466d-a131-c5ba9b41ee06/(2)(2)XML0.0 B05/29/12 04:19:42