CapTipper

Analysis Info

PCAP File Analysis Time CapTipper Version Traffic Time
/opt/Malware-Project/BigDataset/Scenarios/CTU-Malware-Capture-Botnet-199-1//2016-11-4_win12.pcap 09/22/17 17:06:56 0.3 b13 12/07/80 08:18:13

Flow View


Client Details

IP192.168.1.122
MAC08:00:27:12:45:de
USER-AGENTMozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1)

Conversations

download.mediaget.com    (89.208.146.15:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
0/mediaget-installer-2/binaries/download.php?a=mediaget-libapplication/octet-streamdownload.php200 OK7Z13.9 MB12/07/80 08:18:13
1/mediaget-installer-2/binaries/download.php?a=mediaget-binapplication/octet-streamdownload.php200 OK7Z5.1 MB01/21/81 07:22:15

sub2.admitlead.ru    (92.241.171.35:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
2/r/display/4/0/?a=1&mg_version=2.01.3680&rnd=30333text/html112.html400 Bad RequestHTML1.5 KB11/28/02 05:26:26
5/r/display/4/0/?a=1&mg_version=2.01.3680&rnd=15052text/html114.html400 Bad RequestHTML1.5 KB05/26/08 15:08:29
15/r/get_code/4/?subid=0&version=2.01.3680text/javascript6.html200 OKTEXT1.8 KB08/09/20 11:26:51
16/r/display/4/0/?a=1&mg_version=2.01.3680&rnd=82350text/html8.html400 Bad RequestHTML1.5 KB08/22/20 16:34:33
97/r/display/4/0/?a=1&mg_version=2.01.3680&rnd=71247text/html103.html400 Bad RequestHTML1.5 KB04/07/25 00:11:24
105/r/display/4/0/?a=1&mg_version=2.01.3680&rnd=8818text/html104.html400 Bad RequestHTML1.5 KB08/22/52 23:31:14
110/r/display/4/0/?a=1&mg_version=2.01.3680&rnd=74409text/html107.html400 Bad RequestHTML1.5 KB10/12/34 23:46:49
111/r/display/4/0/?a=1&mg_version=2.01.3680&rnd=79394text/html108.html400 Bad RequestHTML1.5 KB07/15/89 23:37:44

sub2.admitlead.ru    (193.0.201.71:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
3/r/display/4/0/?a=1&mg_version=2.01.3680&rnd=39031text/html113.html400 Bad RequestHTML1.5 KB08/24/05 22:47:15
6/r/display/4/0/?a=1&mg_version=2.01.3680&rnd=48961text/html115.html400 Bad RequestHTML1.5 KB02/27/11 10:23:35
8/r/display/4/0/?a=1&mg_version=2.01.3680&rnd=2962text/html116.html400 Bad RequestHTML1.5 KB11/25/13 16:57:48
106/r/display/4/0/?a=1&mg_version=2.01.3680&rnd=17166text/html105.html400 Bad RequestHTML1.5 KB01/09/80 09:06:37
109/r/display/4/0/?a=1&mg_version=2.01.3680&rnd=43074text/html106.html400 Bad RequestHTML1.5 KB05/28/07 02:30:16
112/r/display/4/0/?a=1&mg_version=2.01.3680&rnd=83131text/html109.html400 Bad RequestHTML1.5 KB12/01/16 23:31:13
113/r/display/4/0/?a=1&mg_version=2.01.3680&rnd=82948text/html110.html400 Bad RequestHTML1.5 KB04/19/44 05:47:52
114/r/display/4/0/?a=1&mg_version=2.01.3680&rnd=43355text/html102.html400 Bad RequestHTML1.5 KB11/10/48 11:16:39
116/r/display/4/0/?a=1&mg_version=2.01.3680&rnd=66511text/html111.html400 Bad RequestHTML1.5 KB09/12/71 15:26:54

update.mgtracker.org:6881    (37.19.5.139:6881)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
4/announce?info_hash=%876%87%8e%d7A%3bB%db%cbl%b9%fe%7d%b7%22%03%16%e6%aa&peer_id=-MG21%970-QAu0ueDkvPat&port=37114&uploaded=221361&downloaded=0&left=0&corrupt=0&key=3A0D3A51&numwant=200&compact=1&no_peer_id=1&supportcrypto=1&redundant=0text/plainannounce200 OKBINARY1.3 KB12/13/05 03:33:04

update.mgtracker.org:6881    (77.91.229.218:6881)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
7/announce?info_hash=%876%87%8e%d7A%3bB%db%cbl%b9%fe%7d%b7%22%03%16%e6%aa&peer_id=-MG21%970-QAu0ueDkvPat&port=37114&uploaded=352092&downloaded=0&left=0&corrupt=0&key=3A0D3A51&numwant=200&compact=1&no_peer_id=1&supportcrypto=1&redundant=0text/plainannounce200 OKBINARY1.3 KB06/13/11 10:11:54
9/announce?info_hash=%d7%3c%f1L%2f%8d%26%09%60%40S%c8%9c%25%c1%09l%b3%a4%83&peer_id=-MG21%970-QAu0ueDkvPat&port=37114&uploaded=0&downloaded=0&left=6513151&corrupt=0&key=211008&event=started&numwant=200&compact=1&no_peer_id=1&supportcrypto=1&redundant=0text/plainannounce200 OKBINARY1.3 KB06/01/20 20:31:19
10/announce?info_hash=%876%87%8e%d7A%3bB%db%cbl%b9%fe%7d%b7%22%03%16%e6%aa&peer_id=-MG21%970-QAu0ueDkvPat&port=37114&uploaded=0&downloaded=0&left=18697158&corrupt=0&key=3A0D3A51&event=started&numwant=200&compact=1&no_peer_id=1&supportcrypto=1&redundant=0text/plainannounce200 OKBINARY1.3 KB06/27/20 20:47:24
98/announce?info_hash=%876%87%8e%d7A%3bB%db%cbl%b9%fe%7d%b7%22%03%16%e6%aa&peer_id=-MG21%970-QAu0ueDkvPat&port=37114&uploaded=434778&downloaded=0&left=0&corrupt=0&key=3A0D3A51&numwant=200&compact=1&no_peer_id=1&supportcrypto=1&redundant=0text/plainannounce200 OKBINARY1.3 KB04/28/27 14:24:46
99/announce?info_hash=%d7%3c%f1L%2f%8d%26%09%60%40S%c8%9c%25%c1%09l%b3%a4%83&peer_id=-MG21%970-QAu0ueDkvPat&port=37114&uploaded=0&downloaded=6609640&left=0&corrupt=0&key=211008&event=completed&numwant=200&compact=1&no_peer_id=1&supportcrypto=1&redundant=0text/plainannounce200 OKBINARY1.3 KB09/23/28 19:23:36
100/announce?info_hash=%d7%3c%f1L%2f%8d%26%09%60%40S%c8%9c%25%c1%09l%b3%a4%83&peer_id=-MG21%970-QAu0ueDkvPat&port=37114&uploaded=0&downloaded=6609640&left=0&corrupt=0&key=211008&event=stopped&numwant=0&compact=1&no_peer_id=1&supportcrypto=1&redundant=0text/plainannounce200 OKTEXT84.0 B10/13/28 00:57:52
101/announce?info_hash=%d7%3c%f1L%2f%8d%26%09%60%40S%c8%9c%25%c1%09l%b3%a4%83&peer_id=-MG21%970-QAu0ueDkvPat&port=37114&uploaded=0&downloaded=0&left=0&corrupt=0&key=211008&event=started&numwant=200&compact=1&no_peer_id=1&supportcrypto=1&redundant=0text/plainannounce200 OKBINARY1.3 KB11/15/29 10:06:17
102/announce?info_hash=%876%87%8e%d7A%3bB%db%cbl%b9%fe%7d%b7%22%03%16%e6%aa&peer_id=-MG21%970-QAu0ueDkvPat&port=37114&uploaded=0&downloaded=19082317&left=0&corrupt=0&key=3A0D3A51&event=completed&numwant=200&compact=1&no_peer_id=1&supportcrypto=1&redundant=0text/plainannounce200 OKBINARY1.3 KB05/29/30 06:41:45
103/announce?info_hash=%876%87%8e%d7A%3bB%db%cbl%b9%fe%7d%b7%22%03%16%e6%aa&peer_id=-MG21%970-QAu0ueDkvPat&port=37114&uploaded=0&downloaded=19082317&left=0&corrupt=0&key=3A0D3A51&event=stopped&numwant=0&compact=1&no_peer_id=1&supportcrypto=1&redundant=0text/plainannounce200 OKTEXT83.0 B07/16/30 10:36:17
104/announce?info_hash=%876%87%8e%d7A%3bB%db%cbl%b9%fe%7d%b7%22%03%16%e6%aa&peer_id=-MG21%970-QAu0ueDkvPat&port=37114&uploaded=0&downloaded=0&left=0&corrupt=0&key=3A0D3A51&event=started&numwant=200&compact=1&no_peer_id=1&supportcrypto=1&redundant=0text/plainannounce200 OKBINARY1.3 KB12/21/30 16:37:32

www2.bubblesmedia.ru    (37.19.5.135:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
11/file/mg_left.php?version=2.01.3680text/htmlmg_left.php200 OKTEXT305.0 B07/10/20 10:03:46

mg.mgshare.com    (193.0.201.68:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
12/?mediaget=2.01.3680&lang=en&client_id=&check=4a99fca9d621f844ac2ed031b5f0ccedtext/html4.html200 OKTEXT1.2 KB07/13/20 04:06:40
13/js/jquery-1.7.1.min.jsapplication/javascriptjquery-1.7.1.min.js200 OKTEXT91.7 KB08/03/20 16:48:18
14/js/jquery-postmessage.jsapplication/javascriptjquery-postmessage.js200 OKTEXT8.6 KB08/03/20 23:27:15
17/menu.php?query=mediaget%3D2.01.3680%26lang%3Den%26client_id%3D%26check%3D4a99fca9d621f844ac2ed031b5f0ccedtext/htmlmenu.php200 OKHTML5.2 KB11/13/20 14:33:31
19/css/main.css?2text/cssmain.css200 OKTEXT3.4 KB11/15/20 07:08:41
20/js/jquery.cookie.jsapplication/javascriptjquery.cookie.js200 OKTEXT3.2 KB11/15/20 11:56:36
25/images/spr-s12323e9111.pngimage/pngspr-s12323e9111.png200 OKPNG8.4 KB12/04/20 10:43:20

games.mgshare.com    (193.0.201.68:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
18/?mediaget=2.01.3680&client_id=&check=4a99fca9d621f844ac2ed031b5f0cced&lang=entext/html13.html200 OKHTML17.5 KB11/14/20 10:31:50
21/css/main.css?1472739210text/cssmain.css200 OKTEXT26.3 KB11/18/20 14:19:52
23/js/jquery.jcarousel.min.js?1application/javascriptjquery.jcarousel.min.js200 OKTEXT17.1 KB11/30/20 03:42:02
24/css/skin.csstext/cssskin.css200 OKTEXT1.1 KB12/01/20 23:31:44
26/css/jquery.jscrollpane.csstext/cssjquery.jscrollpane.css200 OKTEXT1.4 KB12/07/20 23:36:59
27/js/jquery.jscrollpane.min.jsapplication/javascriptjquery.jscrollpane.min.js200 OKTEXT14.8 KB12/16/20 00:02:56
28/js/jquery.mousewheel.jsapplication/javascriptjquery.mousewheel.js200 OKTEXT1.4 KB12/23/20 08:55:38
29/js/action.jsapplication/javascriptaction.js200 OKTEXT726.0 B12/23/20 08:59:09
30/js/jquery-postmessage.jsapplication/javascriptjquery-postmessage.js200 OKTEXT1.0 KB12/23/20 09:01:39
31/js/main.js?1472742146application/javascriptmain.js200 OKTEXT14.0 KB01/10/21 17:10:13
32/js/jquery.cookie.jsapplication/javascriptjquery.cookie.js200 OKTEXT3.1 KB01/10/21 17:12:10
33/css/webkit-scrollbar.css?1415303580text/csswebkit-scrollbar.css200 OKTEXT718.0 B01/10/21 17:13:29
34/css/premieres/adds.css?1450398960text/cssadds.css200 OKTEXT4.5 KB01/10/21 17:15:03
35/css/tour.css?1457027220text/csstour.css200 OKTEXT2.5 KB01/15/21 23:20:45
36/css/sprite.csstext/csssprite.css200 OKTEXT1.6 KB01/15/21 23:22:47
37/css/premieres/sprite.csstext/csssprite.css200 OKTEXT757.0 B02/12/21 05:56:44
47/fonts/metamediumcyr-roman-webfont.ttfapplication/octet-streammetamediumcyr-roman-webfont.ttf200 OKTTF49.4 KB05/13/21 14:59:04

mc.yandex.ru    (87.250.250.119:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
22/metrika/watch.jstext/htmlwatch.js301 Moved PermanentlyHTML184.0 B11/29/20 20:37:56

www.google-analytics.com    (216.58.201.78:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
38/analytics.jstext/javascriptanalytics.js200 OKTEXT11.3 KB02/21/21 09:15:11
48/plugins/ua/linkid.jstext/javascriptlinkid.js200 OKTEXT856.0 B06/02/21 08:08:31
49/r/collect?v=1&_v=j47&a=726279097&t=event&ni=1&_s=1&dl=http%3A%2F%2Fgames.mgshare.com%2F%3Fmediaget%3D2.01.3680%26client_id%3D%26check%3D4a99fca9d621f844ac2ed031b5f0cced%26lang%3Den&dr=http%3A%2F%2Fmg.mgshare.com%2F%3Fmediaget%3D2.01.3680%26lang%3Den%26client_id%3D%26check%3D4a99fca9d621f844ac2ed031b5f0cced&ul=en-us&de=UTF-8&dt=MediaGet%20Catalogue&sd=32-bit&sr=819x583&vp=609x473&je=0&ec=entry&ea=version&el=2013680&_u=CGAAAAQiI~&jid=590785752&cid=1084739089.1476892292&tid=UA-23988018-5&_r=1&z=1109482553image/gifcollect200 OKGIF35.0 B06/09/21 15:48:37
50/collect?v=1&_v=j47&a=726279097&t=pageview&_s=2&dl=http%3A%2F%2Fgames.mgshare.com%2F%3Fmediaget%3D2.01.3680%26client_id%3D%26check%3D4a99fca9d621f844ac2ed031b5f0cced%26lang%3Den&dr=http%3A%2F%2Fmg.mgshare.com%2F%3Fmediaget%3D2.01.3680%26lang%3Den%26client_id%3D%26check%3D4a99fca9d621f844ac2ed031b5f0cced&dp=%2F%3Fcat%3Dmovies%26genre%3Dall%26page%3D1%26mgver%3D2013680&ul=en-us&de=UTF-8&dt=MediaGet%20Catalogue&sd=32-bit&sr=819x583&vp=609x473&je=0&_u=CGCACEQiJ~&jid=&cid=1084739089.1476892292&tid=UA-23988018-5&z=884965917image/gifcollect200 OKGIF35.0 B06/09/21 19:43:32
78/ga.jstext/javascriptga.js200 OKTEXT15.6 KB08/14/22 15:41:40
89/collect?v=1&_v=j47&a=81809196&t=pageview&_s=1&dl=http%3A%2F%2Fmediaget.com%2Fwelcome-screen%3Fp%3Dmgt%26install_id%3D217088491%26ref_id%3Dmediaget%26version%3D2.01.3680&ul=en-us&de=utf-8&dt=MediaGet&sd=32-bit&sr=819x583&vp=780x357&je=0&fl=10.0%20r22&_u=AGAAgE~&jid=693932103&cid=838062965.1476892330&tid=UA-20095956-1&z=1202882564image/gifcollect200 OKGIF35.0 B11/02/22 15:28:11
92/r/__utm.gif?utmwv=5.6.7&utms=1&utmn=1847367874&utmhn=mediaget.com&utmcs=utf-8&utmsr=819x583&utmvp=780x357&utmsc=32-bit&utmul=en-us&utmje=1&utmfl=10.0%20r22&utmdt=MediaGet&utmhid=81809196&utmr=-&utmp=%2Fwelcome-screen%3Fp%3Dmgt%26install_id%3D217088491%26ref_id%3Dmediaget%26version%3D2.01.3680&utmht=1476892337500&utmac=UA-20095956-1&utmcc=__utma%3D1.838062965.1476892330.1476892337.1476892337.1%3B%2B__utmz%3D1.1476892337.1.1.utmcsr%3D(direct)%7Cutmccn%3D(direct)%7Cutmcmd%3D(none)%3B&utmjid=1225133258&utmredir=1&utmu=qhAAAAAAAAAAAAAAAAABAAAE~image/gif__utm.gif200 OKGIF35.0 B11/17/22 09:09:06

img.mgshare.com    (193.0.201.68:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
39/filecache/userfiles/v2/images/torrent%20games/Beyond%20the%20Stars/beyond---width_portrait---145---207.pngimage/pngbeyond---width_portrait---145---207.png200 OKPNG58.9 KB03/04/21 22:05:05
40/filecache/userfiles/v2/images/torrent%20games/Warframe/warframe_poster---width_portrait---145---207.jpgimage/jpegwarframe_poster---width_portrait---145---207.jpg200 OKJPG17.0 KB04/03/21 19:34:32
41/filecache/userfiles/v2/images/torrent%20games/Bleach%20Online/bleach_poster(1)---width_portrait---145---207.jpgimage/jpegbleach_poster(1)---width_portrait---145---207.jpg200 OKJPG15.0 KB04/03/21 19:37:30
42/filecache/userfiles/v2/images/torrent%20games/Drakensang%20Online/drakensang_poster---width_portrait---145---207.jpgimage/jpegdrakensang_poster---width_portrait---145---207.jpg200 OKJPG14.1 KB04/03/21 19:40:36
43/filecache/userfiles/v2/images/torrents/%D0%98%D0%93%D0%A0%D0%AB/worldoftanks/worldtanks---width_portrait---145---207.jpgimage/jpegworldtanks---width_portrait---145---207.jpg200 OKJPG15.0 KB04/03/21 19:43:49
44/filecache/userfiles/v2/images/torrents/%D0%98%D0%93%D0%A0%D0%AB/panzar/panzar_poster---width_portrait---145---207.jpgimage/jpegpanzar_poster---width_portrait---145---207.jpg200 OKJPG5.8 KB04/03/21 19:47:12
45/filecache/userfiles/v2/images/torrents%20games/TURKEY/The%20Witcher%203%20-%20Wild%20Hunt%20-%20Hearts%20of%20Stone/the-witcher-3-wild-hunt-cover---width_portrait---145---207.jpgimage/jpegthe-witcher-3-wild-hunt-cover---width_portrait---145---207.jpg200 OKJPG16.2 KB04/17/21 03:32:46
46/filecache/userfiles/v2/images/torrents%20games/TURKEY/HELLDIVERS/HELLDIVERS-cover---width_portrait---145---207.jpgimage/jpegHELLDIVERS-cover---width_portrait---145---207.jpg200 OKJPG17.2 KB04/21/21 03:05:22

sub2.bubblesmedia.ru    (37.19.5.135:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
51/client/mg_install?version=2.01.3680&install_id=217088491&ref_id=mediagettext/htmlmg_install302 Moved Temporarily0.0 B01/18/22 01:19:05

mediaget.com    (89.208.146.15:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
52/welcome-screen?p=mgt&install_id=217088491&ref_id=mediaget&version=2.01.3680text/htmlwelcome-screen200 OKHTML11.1 KB01/28/22 13:35:53
54/css/after/all.css?201409101601text/cssall.css200 OKTEXT8.6 KB03/16/22 23:00:37
55/css/after/ie8.csstext/cssie8.css200 OKTEXT85.0 B04/14/22 00:16:59
56/js/action.jsapplication/javascriptaction.js200 OKTEXT1.1 KB04/14/22 01:17:47
64/userfiles/images/flags/flag-british.jpgimage/jpegflag-british.jpg200 OKJPG1.7 KB07/26/22 22:43:40
65/userfiles/images/flags/flag-rus.jpgimage/jpegflag-rus.jpg200 OKJPG1.4 KB07/26/22 22:49:05
66/userfiles/images/flags/flag-spanish.jpgimage/jpegflag-spanish.jpg200 OKJPG1.5 KB07/27/22 00:01:58
67/userfiles/images/flags/flag-italian.jpgimage/jpegflag-italian.jpg200 OKJPG733.0 B07/27/22 00:04:46
68/userfiles/images/flags/flag-france.jpgimage/jpegflag-france.jpg200 OKJPG695.0 B07/27/22 00:07:44
69/images/after/body.pngimage/pngbody.png200 OKPNG7.2 KB07/28/22 16:20:10
70/images/after/flags/footer_lang_shape.pngimage/pngfooter_lang_shape.png200 OKPNG2.3 KB07/30/22 19:28:43
71/images/popybg.pngimage/pngpopybg.png200 OKPNG118.0 B07/30/22 20:01:15
72/images/after/mediaget.pngimage/pngmediaget.png200 OKPNG11.5 KB07/31/22 10:42:38
73/images/after/scrin.pngimage/pngscrin.png200 OKPNG338.5 KB08/07/22 12:59:10
74/userfiles/images/flags/flag_china.jpgimage/jpegflag_china.jpg200 OKJPG800.0 B08/07/22 13:02:27
75/userfiles/images/flags/flag_bulgaria.jpgimage/jpegflag_bulgaria.jpg200 OKJPG1.6 KB08/07/22 13:05:07
76/userfiles/images/flags/flag_Ukraine.jpgimage/jpegflag_Ukraine.jpg200 OKJPG831.0 B08/07/22 13:07:45
77/images/popyclose.pngimage/pngpopyclose.png200 OKPNG335.0 B08/11/22 09:12:38
80/images/after/footer.gifimage/giffooter.gif200 OKGIF30.9 KB08/17/22 13:48:51
84/userfiles/images/flags/flag-de.jpgimage/jpegflag-de.jpg200 OKJPG630.0 B08/30/22 18:33:44
85/userfiles/images/flags/flag-czech.jpgimage/jpegflag-czech.jpg200 OKJPG758.0 B08/30/22 18:37:27
86/userfiles/images/flags/flag_arab.jpgimage/jpegflag_arab.jpg200 OKJPG712.0 B08/30/22 18:39:39
87/userfiles/images/flags/flag-turkish.jpgimage/jpegflag-turkish.jpg200 OKJPG763.0 B08/30/22 18:42:19
90/userfiles/images/flags/flag-portugal.jpgimage/jpegflag-portugal.jpg200 OKJPG1.5 KB11/08/22 05:05:39
91/userfiles/images/flags/flag-malaysian.jpgimage/jpegflag-malaysian.jpg200 OKJPG968.0 B11/08/22 05:08:24
94/images/popyshadow.pngimage/pngpopyshadow.png200 OKPNG118.0 B11/17/22 09:18:34
96/favicon.icoimage/x-iconfavicon.ico200 OKICO1.1 KB05/31/24 03:51:09

update.mgtracker.org:6881    (92.241.171.245:6881)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
53/announce?info_hash=%876%87%8e%d7A%3bB%db%cbl%b9%fe%7d%b7%22%03%16%e6%aa&peer_id=-MG21%970-QAu0ueDkvPat&port=37114&uploaded=376750&downloaded=0&left=0&corrupt=0&key=3A0D3A51&numwant=200&compact=1&no_peer_id=1&supportcrypto=1&redundant=0text/plainannounce200 OKBINARY1.3 KB02/16/22 18:52:07
107/announce?info_hash=%d7%3c%f1L%2f%8d%26%09%60%40S%c8%9c%25%c1%09l%b3%a4%83&peer_id=-MG21%970-QAu0ueDkvPat&port=37114&uploaded=0&downloaded=0&left=0&corrupt=0&key=211008&numwant=200&compact=1&no_peer_id=1&supportcrypto=1&redundant=0text/plainannounce200 OKBINARY1.3 KB11/05/87 11:42:02
115/announce?info_hash=%876%87%8e%d7A%3bB%db%cbl%b9%fe%7d%b7%22%03%16%e6%aa&peer_id=-MG21%970-QAu0ueDkvPat&port=37114&uploaded=65536&downloaded=0&left=0&corrupt=0&key=3A0D3A51&numwant=200&compact=1&no_peer_id=1&supportcrypto=1&redundant=0text/plainannounce200 OKBINARY1.3 KB07/27/67 15:15:08

vkontakte.ru    (95.213.4.228:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
57/js/api/share.js?11application/x-javascriptshare.js200 OKTEXT10.0 KB04/17/22 05:01:54

ajax.googleapis.com    (172.217.23.234:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
58/ajax/libs/jquery/1.7.1/jquery.min.jstext/javascriptjquery.min.js200 OKTEXT32.4 KB04/18/22 09:18:42

autocontext.begun.ru    (91.192.148.1:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
59/conversion.jstext/htmlconversion.js302 Moved TemporarilyHTML154.0 B04/20/22 22:43:04
93/analytics.jstext/htmlanalytics.js302 Moved TemporarilyHTML154.0 B11/17/22 09:14:07

userapi.com    (95.213.4.234:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
60/js/api/openapi.js?45application/x-javascriptopenapi.js200 OKTEXT70.9 KB04/30/22 17:53:22

ssp.rambler.ru    (91.192.148.12:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
61/conversion.jsapplication/x-javascriptconversion.js200 OKTEXT352.0 B05/01/22 08:45:13
95/analytics.jsapplication/x-javascriptanalytics.js200 OKTEXT850.0 B11/20/22 15:04:16
117/analytics?target_id=388840426&counter_id=388840426&url=http%3A%2F%2Fmediaget.com%2Fwelcome-screen%3Fp%3Dmgt%26install_id%3D217088491%26ref_id%3Dmediaget%26version%3D2.01.3680&ref=&rnd=0.1370906671271772&tag=1f46103a57e3acc4b65f69c1a205f70fanalytics204 No Content0.0 B12/14/22 04:24:20

cat.mediaget.com    (193.0.201.102:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
62/updateParsers.php?product=mediaget2&version=2.01.3680&id=217088491&os=6.1.7600application/x-msdownloadupdate3645Up.ini200 OKTEXT3.0 KB05/30/22 10:14:19
63/image_server_kat.phapplication/octet-streamimage_server_kat.ph200 OKTEXT401.0 B07/20/22 18:09:47
81/search_server_bitreactor.toapplication/octet-streamsearch_server_bitreactor.to200 OKTEXT1.3 KB08/19/22 04:57:34
82/blocked_words.txttext/plainblocked_words.txt200 OKBINARY268.0 B08/20/22 05:33:47
83/search_stop_wordapplication/octet-streamsearch_stop_word200 OKTEXT526.0 B08/23/22 14:45:36
88/bittorrent_trackersapplication/octet-streambittorrent_trackers200 OKTEXT381.0 B08/31/22 05:51:16

www.googleadservices.com    (172.217.23.194:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
79/pagead/conversion.jstext/javascript"f.txt"200 OKTEXT5.2 KB08/16/22 03:44:41

update.mgtracker.org:6881    (37.19.5.155:6881)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
108/announce?info_hash=%876%87%8e%d7A%3bB%db%cbl%b9%fe%7d%b7%22%03%16%e6%aa&peer_id=-MG21%970-QAu0ueDkvPat&port=37114&uploaded=0&downloaded=0&left=0&corrupt=0&key=3A0D3A51&numwant=200&compact=1&no_peer_id=1&supportcrypto=1&redundant=0text/plainannounce200 OKBINARY1.3 KB08/13/93 06:34:47