CapTipper

Analysis Info

PCAP File Analysis Time CapTipper Version Traffic Time
/opt/Malware-Project/BigDataset/Scenarios/CTU-Malware-Capture-Botnet-230-1//2017-3-8_win5.pcap 03/08/17 14:53:27 0.2 b10 09/23/78 19:53:52

Flow View


Client Details

IP192.168.1.115
MAC08:00:27:38:31:62
USER-AGENTMicrosoft-CryptoAPI/6.1

Conversations

ocsp.usertrust.com    (178.255.83.1:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
0/MFEwTzBNMEswSTAJBgUrDgMCGgUABBR8sWZUnKvbRO5iJhat9GV793rVlAQUrb2YejS0Jvf6xCZU7wO94CTLVBoCEBPqKHBb9OztDDZjCYBhQzY%3Dapplication/ocsp-responseMFEwTzBNMEswSTAJBgUrDgMCGgUABBR8sWZUnKvbRO5iJhat9GV793rVlAQUrb2YejS0Jvf6xCZU7wO94CTLVBoCEBPqKHBb9OztDDZjCYBhQzY%3D200 OKBINARY471.0 B09/23/78 19:53:52
1/MFIwUDBOMEwwSjAJBgUrDgMCGgUABBTNMNJMNDqCqx8FcBWK16EHdimS6QQUU3m%2FWqorSs9UgOHYm8Cd8rIDZssCEQCX%2BefD9f1Iq1caTv8hQqlsapplication/ocsp-responseMFIwUDBOMEwwSjAJBgUrDgMCGgUABBTNMNJMNDqCqx8FcBWK16EHdimS6QQUU3m%2FWqorSs9UgOHYm8Cd8rIDZssCEQCX%2BefD9f1Iq1caTv8hQqls200 OKBINARY728.0 B10/01/78 03:58:43

www.touslesdrivers.com    (85.31.204.81:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
2/index.php?v_page=31&v_id=fjsrXYp7DblNj7Uptext/htmlindex.php200 OKHTML9.9 KB05/30/79 23:43:42
3/javascript.phpapplication/x-javascriptjavascript.php200 OKTEXT2.5 KB06/06/79 16:33:52
4/style.csstext/cssstyle.css200 OKTEXT2.6 KB06/06/79 05:49:13
6/images/site/logo_fond_bleu.jpgimage/jpeglogo_fond_bleu.jpg200 OKJPG9.3 KB06/18/79 03:37:33
7/images/site/fond.gifimage/giffond.gif200 OKGIF531.0 B06/18/79 04:45:32
25/images/site/option_favoris.gifimage/gifoption_favoris.gif200 OKGIF574.0 B07/26/79 05:10:18
26/images/site/option_rechercher.gifimage/gifoption_rechercher.gif200 OKGIF567.0 B07/26/79 05:06:25
69/favicon.icoimage/x-iconfavicon.ico200 OKICO3.2 KB09/17/79 19:30:06
70/php/scripts/opensearch.phpapplication/opensearchdescription+xmlopensearch.php200 OKXML465.0 B09/19/79 23:43:34

pagead2.googlesyndication.com    (172.217.23.226:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
5/pagead/js/adsbygoogle.jstext/javascript"f.txt"200 OKTEXT19.3 KB06/08/79 12:10:54

js.himediads.com    (62.4.0.28:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
8/js?country=fr&site=touslesdrivers.com&zone=rosapplication/javascriptjs200 OKTEXT13.7 KB06/18/79 23:34:56
13/tracking_debug?country=fr&site=touslesdrivers.com&zone=ros&debug=%7B%22topic%22%3A%22error%22%2C%22error%22%3A%22TypeError%3A%20Object%20doesn't%20support%20this%20property%20or%20method%22%2C%22stack%22%3A%22%22%2C%22session%22%3A%7B%22id%22%3A%221488468916438596201081%22%2C%22counter%22%3A0%2C%22time%22%3A1322%2C%22browser%22%3A%7B%22browser%22%3A%22Explorer%22%2C%22version%22%3A8%2C%22OS%22%3A%22Windows%22%7D%2C%22page%22%3A%22%2Findex.php%22%7D%7D&566591619tracking_debug204 No Content0.0 B07/15/79 13:20:05
14/tracking_site?country=fr&site=touslesdrivers.com&zone=ros&format=728x90&position=unknown&242674369tracking_site204 No Content0.0 B07/15/79 13:15:37

www.google-analytics.com    (216.58.201.78:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
9/analytics.jstext/javascriptanalytics.js200 OKTEXT11.7 KB06/19/79 10:16:12
10/r/collect?v=1&_v=j48&a=540290368&t=pageview&_s=1&dl=http%3A%2F%2Fwww.touslesdrivers.com%2Findex.php%3Fv_page%3D31%26v_id%3DfjsrXYp7DblNj7Up&ul=en-us&de=utf-8&dt=Mes%20Drivers%20-%20d%C3%A9tection%20automatique%20des%20drivers%2C%20des%20pilotes%20et%20de%20la%20configuration&sd=32-bit&sr=819x583&vp=815x391&je=0&fl=10.0%20r22&_u=AEAAAEAAI~&jid=2099768288&cid=1483386665.1488468916&tid=UA-57274222-1&_r=1&z=881461276image/gifcollect200 OKGIF35.0 B06/29/79 19:57:56

premium.hi-mediaserver.com    (104.16.236.23:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
11/premium/ut/fragment/library-1.47.3.jsapplication/javascriptlibrary-1.47.3.js200 OKTEXT21.5 KB06/21/79 08:07:39

c.amazon-adsystem.com    (13.32.23.84:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
12/aax2/amzn_ads.jsapplication/javascriptamzn_ads.js200 OKTEXT3.9 KB07/14/79 13:01:10

tag.leadplace.fr    (137.74.125.58:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
15/libJsLP.jsapplication/javascriptlibJsLP.js200 OKTEXT505.0 B07/16/79 22:59:41

cdn.adnxs.com    (151.101.37.108:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
16/megatag/2.0.1/megatag.jsapplication/x-javascriptmegatag.js200 OKTEXT6.7 KB07/16/79 10:09:31
38/v/s/75/trk.jsapplication/x-javascripttrk.js200 OKTEXT22.5 KB08/01/79 06:09:21

cdn.krxd.net    (151.101.36.175:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
17/controltag?confid=I8wwoLwxtext/javascriptcontroltag200 OKTEXT168.6 KB07/17/79 08:33:46
19/ctjs/controltag.js.836fa2cc8007bb6234a5da3cc5415177application/javascriptcontroltag.js.836fa2cc8007bb6234a5da3cc5415177200 OKTEXT71.5 KB07/18/79 20:31:30
20/partnerjs/xdi/proxy.fbdd44589e2d9fd8c91d841c8cb79227.htmltext/htmlproxy.fbdd44589e2d9fd8c91d841c8cb79227.html200 OKHTML576.0 B07/22/79 06:36:04
30/controltag/I8wwoLwx.jstext/javascriptI8wwoLwx.js200 OKTEXT168.6 KB07/23/79 02:17:08
72/userdata/get?pub=6150139a-c8bf-40e8-845e-351d6bbfa0d3&technographics=1&callback=Krux.ns._default.kxjsonp_userdatatext/javascriptget200 OKTEXT285.0 B09/29/79 14:43:08

rc.rlcdn.com    (52.54.8.112:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
18/400466.htmltext/html400466.html302 Found0.0 B07/21/79 10:47:27
21/400466.html?redirect=1text/html400466.html200 OKHTML646.0 B07/22/79 20:20:49

ib.adnxs.com    (37.252.172.39:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
22/mtj?member=884&mtjtag0=adnxs_tag_108.95320137853458&mtjparams0=size%3D728x90%26hmCount%3D1%26hmPlacementBySizeCount%3D1%26inv_code%3Dtouslesdrivers.com-ros%26promo_sizes%3D468x60%26allowed_media_types%3D1%2C6%26position%3Dunknown%26visi%3Dunknown%26requestKey%3D884touslesdrivers.com-ros%26iframesPopulated%3Dfalse%26iframesPopulationFailed%3Dfalse%26fcp_target%3DA&mtjntags=1&exclusive=false&placements_loaded=1text/htmlmtj302 Found0.0 B07/24/79 16:32:33
23/bounce?%2Fmtj%3Fmember%3D884%26mtjtag0%3Dadnxs_tag_108.95320137853458%26mtjparams0%3Dsize%253D728x90%2526hmCount%253D1%2526hmPlacementBySizeCount%253D1%2526inv_code%253Dtouslesdrivers.com-ros%2526promo_sizes%253D468x60%2526allowed_media_types%253D1%252C6%2526position%253Dunknown%2526visi%253Dunknown%2526requestKey%253D884touslesdrivers.com-ros%2526iframesPopulated%253Dfalse%2526iframesPopulationFailed%253Dfalse%2526fcp_target%253DA%26mtjntags%3D1%26exclusive%3Dfalse%26placements_loaded%3D1application/javascriptbounce200 OKTEXT3.5 KB07/25/79 08:08:55
27/mtj?ttjb=1&bdc=1488468920&bdh=78NLy6WTg0fihvRoBMIYNuP-fpE.&bdref=http%3A%2F%2Fwww.touslesdrivers.com%2Findex.php%3Fv_page%3D31%26v_id%3DfjsrXYp7DblNj7Up&bdtop=true&bdifs=1&bstk=http%3A%2F%2Fwww.touslesdrivers.com%2Findex.php%3Fv_page%3D31%26v_id%3DfjsrXYp7DblNj7Up,http%3A%2F%2Fwww.touslesdrivers.com%2Findex.php%3Fv_page%3D31%26v_id%3DfjsrXYp7DblNj7Up&&member=884&mtjtag0=adnxs_tag_108.95320137853458&mtjparams0=size%3D728x90%26hmCount%3D1%26hmPlacementBySizeCount%3D1%26inv_code%3Dtouslesdrivers.com-ros%26promo_sizes%3D468x60%26allowed_media_types%3D1%2C6%26position%3Dunknown%26visi%3Dunknown%26requestKey%3D884touslesdrivers.com-ros%26iframesPopulated%3Dfalse%26iframesPopulationFailed%3Dfalse%26fcp_target%3DA&mtjntags=1&exclusive=false&placements_loaded=1application/javascriptmtj200 OKTEXT1.4 KB07/26/79 04:23:09
33/getuid?http%3A%2F%2Fidsync.rlcdn.com%2F52154.gif%3Fpartner_uid%3D%24UIDtext/htmlgetuid302 Found0.0 B07/25/79 16:51:54
57/getuid?http://p.univide.com/callback/appnexus?adnxs_uid=$UID&pids=16&cuh=&rfh=text/htmlgetuid302 Found0.0 B07/29/79 13:04:16
59/async_usersync?cbfn=AN_async_loadapplication/javascriptasync_usersync200 OKTEXT1.3 KB08/12/79 20:47:17
76/mapuid?member=364&user=2814931617658647&redir=https%3A%2F%2Fodr.mookie1.com%2Ft%2Fv2%2Fsync%3Ftagid%3DV2_2083%26src.visitorID%3D${UID}%26src.rand%3D4472925817text/htmlmapuid302 Found0.0 B08/04/79 07:20:28

aax.amazon-adsystem.com    (52.94.216.48:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
24/e/dtb/bid?src=3047&u=http%3A%2F%2Fwww.touslesdrivers.com%2Findex.php%3Fv_page%3D31%26v_id%3DfjsrXYp7DblNj7Up&cb=2636814text/javascriptbid200 OKTEXT19.0 B07/25/79 04:25:36

sync.mathtag.com    (185.29.133.52:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
28/sync/img?mt_exid=10017&redir=http%3A%2F%2Fidsync.rlcdn.com%2F47154.gif%3Fpartner_uid%3D%5BMM_UUID%5Dimage/gifimg302 Moved Temporarily0.0 B07/27/79 14:31:54
88/sync/img?mt_exid=10017&redir=http%3A%2F%2Fidsync.rlcdn.com%2F47154.gif%3Fpartner_uid%3D%5BMM_UUID%5D&mm_bnc&mm_bctimage/gifimg302 Moved Temporarily0.0 B07/28/79 04:07:12

cm.g.doubleclick.net    (172.217.23.194:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
29/pixel?google_nid=epsilon&google_cmtext/htmlpixel302 FoundHTML279.0 B07/27/79 18:06:51
31/pixel?google_nid=epsilon&google_cm=&google_tc=text/htmlpixel302 FoundHTML288.0 B07/28/79 00:02:26

lr.zebestof.com    (195.154.148.18:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
32/sync?reserved=1&url=http%3A%2F%2Fidsync.rlcdn.com%2F453199.gif%3Fpartner_uid%3D${ZBO_ID}text/plainsync302 FoundTEXT105.0 B07/27/79 22:37:17

fra1-ib.adnxs.com    (37.252.172.80:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
34/ab?e=wqT_3QKcB_BEnAMAAAMA1gAFAQi49-DFBRCdrtqk-IDL3QcYt7zj-dak7MQvIAEqLQlSIoleRrHlPxForWhznJvkPxkAAABAMzMVQCFoDRIIKVMiCSTwfjCOtio49AZAmxtIAlCslYQeWLH2CGAAaM_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-RjyAhEKBUNQARM8CDE1OTMyMjU08gIPCgVJTwEUAAZJA_B1gAMAiAMBkAMAmAMNoAMAqgMAwAOsAsgDANgDmvIj4AMA6AMA-AMBgAQAkgQEL210apgEAKIEDDE0Ny4zMi44My41NqgEALIECggAEAAYACAAMAC4BADABOTlFsgEANIECzEwLjEzLjcxLjEw2gQCCAHgBADwBGEkRIgFAZgFAKAF____________AQ..&s=c8a84d2f58403db181bd92942c69681e30d7ead3&referrer=http%3A%2F%2Fwww.touslesdrivers.com%2Findex.php%3Fv_page%3D31%26v_id%3DfjsrXYp7DblNj7Upapplication/javascriptab200 OKTEXT3.9 KB07/29/79 08:38:08
61/vevent?e=wqT_3QKcB_BEnAMAAAMA1gAFAQi49-DFBRCdrtqk-IDL3QcYt7zj-dak7MQvIAEqLQlSIoleRrHlPxForWhznJvkPxkAAABAMzMVQCFoDRIIKVMiCSTwfjCOtio49AZAmxtIAlCslYQeWLH2CGAAaM_gBHiIxQSAAQGKAQNVU0SSAQNFVVKYAdgFoAFaqAEBsAEAuAECwAEFyAEC0AEA2AEA4AEA8AEAigJzdWYoJ2EnLCA3MTI3OTUsIDE0ODg0Njg5MjApO3VmKCdyJywgNjI5ODI4MjhGHgAoZycsIDM4MTc3NjVGHQAkaScsIDQ2NzkwNDYcAPDAkgKdAiE2RWxxeHdqZXRzd0hFS3lWaEI0WUFDQ3g5Z2d3QVRnQVFBQklteHRRanJZcVdBQmdMMmdBY0FCNEFJQUJBSWdCQUpBQkFaZ0JBYUFCQXFnQkE3QUJBTGtCTTZ1UldjTllNVURCQVN6VmdmRkxzZVVfeVFIZGszSHNjcmp6UDlrQm44MnF6OVdXT1VEZ0FjREhIUFVCV2k5aFFZQUNBSWdDbWZLMkE0Z0NzZksyQTRnQzg5bmVBNGdDeTdYZgEYAHoNCHB4X1BmQTVBQ0JwZ0NpcHFjVXFBQ0FLZ0NCclVDQQEBBEwwCQjQTUFDQU1nQ0FOQUNBTmdDQU9BQ0FPZ0NBUGdDQUlBREFaQURBcGdEQVEuLpoCMSFJd20xc0E2IAEcc2ZZSUlBQW8FaARqRQFeAQHweHVRQS4u2AKcAeAC7pgN6gJHaHR0cDovL3d3dy50b3VzbGVzZHJpdmVycy5jb20vaW5kZXgucGhwP3ZfcGFnZT0zMSZ2X2lkPWZqc3JYWXA3RGJsTmo3VXDyAhAKBkFEVl9JRBIGNzEyNzk18gIRCgZDUEdfSUQSBzMp-RjyAhEKBUNQARM8CDE1OTMyMjU08gIPCgVJTwEUAAZJA_B1gAMAiAMBkAMAmAMNoAMAqgMAwAOsAsgDANgDmvIj4AMA6AMA-AMBgAQAkgQEL210apgEAKIEDDE0Ny4zMi44My41NqgEALIECggAEAAYACAAMAC4BADABOTlFsgEANIECzEwLjEzLjcxLjEw2gQCCAHgBADwBGEkRIgFAZgFAKAF____________AQ..&s=c8a84d2f58403db181bd92942c69681e30d7ead3&referrer=http%3A%2F%2Fwww.touslesdrivers.com%2Findex.php%3Fv_page%3D31%26v_id%3DfjsrXYp7DblNj7Up&type=nv&nvt=5&px=261&py=16&bw=728&bh=90&sf=0.76&sid=7846478241970375987&sv=75&tv=view6-1&ua=ie8&pl=win&x=v&ct=web&cid=1&cr=nv&sw=819&sh=583&pw=995&ph=389&ww=815&wh=368&ft=2text/htmlvevent200 OK0.0 B08/12/79 11:22:16
78/vevent?e=wqT_3QKcB_BEnAMAAAMA1gAFAQi49-DFBRCdrtqk-IDL3QcYt7zj-dak7MQvIAEqLQlSIoleRrHlPxForWhznJvkPxkAAABAMzMVQCFoDRIIKVMiCSTwfjCOtio49AZAmxtIAlCslYQeWLH2CGAAaM_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-RjyAhEKBUNQARM8CDE1OTMyMjU08gIPCgVJTwEUAAZJA_B1gAMAiAMBkAMAmAMNoAMAqgMAwAOsAsgDANgDmvIj4AMA6AMA-AMBgAQAkgQEL210apgEAKIEDDE0Ny4zMi44My41NqgEALIECggAEAAYACAAMAC4BADABOTlFsgEANIECzEwLjEzLjcxLjEw2gQCCAHgBADwBGEkRIgFAZgFAKAF____________AQ..&s=c8a84d2f58403db181bd92942c69681e30d7ead3&referrer=http%3A%2F%2Fwww.touslesdrivers.com%2Findex.php%3Fv_page%3D31%26v_id%3DfjsrXYp7DblNj7Up&type=pv&px=261&py=16&bw=728&bh=90&sf=0.76&sid=7846478241970375987&sv=75&tv=view6-1&ua=ie8&pl=win&x=v&ct=web&cid=1&cr=nv&ft=2text/htmlvevent200 OK0.0 B08/19/79 02:34:55
87/vevent?e=wqT_3QKcB_BEnAMAAAMA1gAFAQi49-DFBRCdrtqk-IDL3QcYt7zj-dak7MQvIAEqLQlSIoleRrHlPxForWhznJvkPxkAAABAMzMVQCFoDRIIKVMiCSTwfjCOtio49AZAmxtIAlCslYQeWLH2CGAAaM_gBHiIxQSAAQGKAQNVU0SSAQNFVVKYAdgFoAFaqAEBsAEAuAECwAEFyAEC0AEA2AEA4AEA8AEAigJzdWYoJ2EnLCA3MTI3OTUsIDE0ODg0Njg5MjApO3VmKCdyJywgNjI5ODI4MjhGHgAoZycsIDM4MTc3NjVGHQAkaScsIDQ2NzkwNDYcAPDAkgKdAiE2RWxxeHdqZXRzd0hFS3lWaEI0WUFDQ3g5Z2d3QVRnQVFBQklteHRRanJZcVdBQmdMMmdBY0FCNEFJQUJBSWdCQUpBQkFaZ0JBYUFCQXFnQkE3QUJBTGtCTTZ1UldjTllNVURCQVN6VmdmRkxzZVVfeVFIZGszSHNjcmp6UDlrQm44MnF6OVdXT1VEZ0FjREhIUFVCV2k5aFFZQUNBSWdDbWZLMkE0Z0NzZksyQTRnQzg5bmVBNGdDeTdYZgEYAHoNCHB4X1BmQTVBQ0JwZ0NpcHFjVXFBQ0FLZ0NCclVDQQEBBEwwCQjQTUFDQU1nQ0FOQUNBTmdDQU9BQ0FPZ0NBUGdDQUlBREFaQURBcGdEQVEuLpoCMSFJd20xc0E2IAEcc2ZZSUlBQW8FaARqRQFeAQHweHVRQS4u2AKcAeAC7pgN6gJHaHR0cDovL3d3dy50b3VzbGVzZHJpdmVycy5jb20vaW5kZXgucGhwP3ZfcGFnZT0zMSZ2X2lkPWZqc3JYWXA3RGJsTmo3VXDyAhAKBkFEVl9JRBIGNzEyNzk18gIRCgZDUEdfSUQSBzMp-RjyAhEKBUNQARM8CDE1OTMyMjU08gIPCgVJTwEUAAZJA_B1gAMAiAMBkAMAmAMNoAMAqgMAwAOsAsgDANgDmvIj4AMA6AMA-AMBgAQAkgQEL210apgEAKIEDDE0Ny4zMi44My41NqgEALIECggAEAAYACAAMAC4BADABOTlFsgEANIECzEwLjEzLjcxLjEw2gQCCAHgBADwBGEkRIgFAZgFAKAF____________AQ..&s=c8a84d2f58403db181bd92942c69681e30d7ead3&referrer=http%3A%2F%2Fwww.touslesdrivers.com%2Findex.php%3Fv_page%3D31%26v_id%3DfjsrXYp7DblNj7Up&type=pv&px=261&py=16&bw=728&bh=90&sf=0.76&sid=7846478241970375987&sv=75&tv=view6-1&ua=ie8&pl=win&x=v&ct=web&cid=1&cr=nv&pd=92.62&d=290.01&ud=0&id=92.62&ic=1&d0=92.62&d25=92.62&d50=92.62&d75=92.62&d100=0&dm=90&mpx=45&mpy=127&mtx=646&mty=142&ft=2text/htmlvevent200 OK0.0 B10/15/88 06:24:58

t.mookie1.com    (208.81.233.32:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
35/rsp?rurl=http://idsync.rlcdn.com/362318.gif?partner_uid=[MOOKIE]text/plainrsp302 Found0.0 B07/29/79 00:42:07
40/rsp/cc?rurl=http://idsync.rlcdn.com/362318.gif?partner_uid=[MOOKIE]text/plaincc302 Found0.0 B07/31/79 18:10:50

p.univide.com    (176.34.135.1:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
36/t.gif?pid=16text/htmlt.gif302 Found0.0 B07/28/79 21:37:27
81/callback/appnexus?adnxs_uid=3425463765929877047&pids=16&cuh=&rfh=text/htmlappnexus302 Found0.0 B07/30/79 03:42:55

rtd.tubemogul.com    (107.21.248.242:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
37/upi/pid/w8wqx7f2?redir=http%3A%2F%2Fidsync.rlcdn.com%2F367148.gif%3Fpartner_uid%3D%24%7BTM_USER_ID%7Dw8wqx7f2302 Found0.0 B07/28/79 21:34:54

vcdn.adnxs.com    (151.101.37.108:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
39/p/creative-image/00/b6/03/3e/00b6033e-ff9f-4bda-9a98-ea8064b9d672.jpgimage/jpeg00b6033e-ff9f-4bda-9a98-ea8064b9d672.jpg200 OKJPG63.1 KB08/01/79 06:12:40

acdn.adnxs.com    (151.101.37.108:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
41/ib/static/usersync/v3/async_usersync.htmltext/htmlasync_usersync.html200 OKHTML506.0 B08/01/79 17:36:39

static-tagr.gd1.mookie1.com    (23.63.235.163:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
42/s1/sas/lv1/sync.html?cc=CZtext/htmlsync.html200 OKHTML1.7 KB08/02/79 13:21:01
44/s1/sas/le1/tagr_lib.min.js?np.subdomain=cz-gmtdmp&tagid=V2_1261&src.rand=900604509&src.platformID=AN&src.IO=467904&src.LineItem=3817765&src.campaignID=15932254text/javascripttagr_lib.min.js200 OKTEXT1.3 KB08/02/79 13:24:03
45/s1/sas/le1/tagr_lib.min.js?np.subdomain=cz-gmtdmp&tagid=V2_149787&src.rand=168540428&src.IO=467904&src.LineItem=3817765&src.campaignID=15932254&np.adv_id=712795text/javascripttagr_lib.min.js200 OKTEXT1.3 KB08/02/79 13:16:08

beacon.krxd.net    (54.247.115.15:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
43/cookie2json?callback=Krux.ns._default.kxjsonp_3peventstext/javascriptcookie2json200 OKTEXT67.0 B08/06/79 01:11:37
71/optout_check?callback=Krux.ns._default.kxjsonp_optOutChecktext/javascriptoptout_check200 OKTEXT90.0 B09/30/79 06:31:10
75/pixel.gif?source=smarttag&fired=report&confid=I8wwoLwx&_kpid=6150139a-c8bf-40e8-845e-351d6bbfa0d3&_kcp_s=FR_MI_Touslesdrivers.com&_kcp_sc=touslesdrivers.com&_kcp_d=www.touslesdrivers.com&_knifr=5&_kua_kx_tz=480&geo_country=cz&geo_region=pr&rtsegs=ovdxvfuzk%2Covdxrkqi2&_kua_kx_lang=en-us&_kua_kx_tech_browser_language=en-us&_kua_kx_whistle=0&_kua_kx_geo_country=cz&_kua_kx_geo_region=pr&_kpa_keywordsDELIM=%2C&_kpa_keywords=drivers%2Cdriver%2Cpilotes%2Cpilote%2Cbios%2Cfirmware%2Cfirmwares%2Cdrivers%20carte%20graphique%2Cdriver%20carte%20graphique%2Cdrivers%20carte%20son%2Cdriver%20carte%20son%2Cdrivers%20carte%20mere%2Cdriver%20carte%20mere%2Cdrivers%20imprimante%2Cdriver%20imprimante%2Cdrivers%20modem%2Cdriver%20modem%2Cbios%20carte%20m%C3%A8re%2Cfirmware%20lecteur%20cd%2Cfirmware%20lecteur%20dvd%2Cfirmware%20graveur%2Cmicrosoft%2Cwindows%2C8%2C7%2Cvista%2Cxp%2Cdrivers%20windows%2Cpc%2Ccarte%2Ct%C3%A9l%C3%A9chargement%2Cmise%20%C3%A0%20jour%2Cmat%C3%A9riel%2Chardware%2Caide%2Cprobl%C3%A8me%2Cdownload%2Cdevice%20driver%2Cprinter%20driver%2Cgpu%2Cnvidia%2Cgeforce%2Cforceware%2Cdetonators%2Cati%2Camd%2Ccatalyst%2Cradeon%2Casust%2Cmsi%2Cgigabyte%2Cintel%2Crst%2Cpch%2Ccore%2Cvia%2Ccreative%2Csound%20blaster%2Csoundblaster%2Cx-fi%2Crecon3d%2Caudigy%2Clive%2Ceax%2Chercules%2Cplextor%2Csony%2Cpioneer%2Ccrucial%2Cocz%2Csandforce%2Clogitech%2Cmarvell%2Casmedia%2Cjmicron%2Chp%2Clenovo%2Cibm%2Cepson%2Ccanon%2Cpanasonic%2Clg%2Csamsung%2Ctoshiba%2Clexmark%2Colitec%2Cuefi%2Cefi&_kpa_url_path_1=index.php&_kpa_domain=touslesdrivers.com&interchange_ran=false&userdata_was_requested=true&userdata_did_respond=true&userdata_user=LG0NpdmZ%2Crll8klz4r&sview=1&kplt8=24409&kplt9=24410&kplt14=24480&jsonp_requests=%2F%2Fbeacon.krxd.net%2Fcookie2json%2C1842%2C%2F%2Fbeacon.krxd.net%2Foptout_check%2C2244%2C%2F%2Fcdn.krxd.net%2Fuserdata%2Fget%2C2264text/javascriptpixel.gif200 OK90.0 B11/02/79 09:24:29

tags.bluekai.com    (169.47.30.64:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
46/site/2035?phint=rluid=888f90bed1bd9fda85f817ba6dfa4245147aa8e0d612467ed3eeaa7747fcf7cc2971936f2f944561&redir=http%3A%2F%2Fidsync.rlcdn.com%2F401696.gif%3Fpartner_uid%3D%24BK_UUID_25515text/html2035302 Found0.0 B08/06/79 19:10:37
77/site/2035?dt=0&r=2113190064&sig=499049816&bkca=KJyBpg6vQp9Dxms7uD4hJM5dQ6mnYvVpLXEzlO3y3SEo6nKFzvjFmLKVuhF3dL66mm4R2tLiV1ApOS4jQPte/xTGDxwSWap30ROWRhmokWvyaiNc+MavqXWgy8/2GMjy3Rk0cqqVe3srxA87ZEbdWgrbH0o54n2myCb1B26pLNeEWVGg3uf7MNYMAcCfnwBXchKoBKQdm1z6M9==text/html2035302 Found0.0 B08/08/79 00:02:48

dpm.demdex.net    (54.76.155.13:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
47/ibs:dpid=477&dpuuid=c3ee7ecfd44b68cde71264544cbce7357431aee9faf496d43a3e5641a7a023deb0da87c991749652&redir=http%3A%2F%2Fidsync.rlcdn.com%2F362248.gif%3Fpartner_uid%3D%24%7BDD_UUID%7Dibs:dpid=477302 Found0.0 B08/08/79 21:10:41
82/demconf.jpg?et:ibs%7cdata:dpid=477&dpuuid=c3ee7ecfd44b68cde71264544cbce7357431aee9faf496d43a3e5641a7a023deb0da87c991749652&redir=http%3A%2F%2Fidsync.rlcdn.com%2F362248.gif%3Fpartner_uid%3D%24%7BDD_UUID%7Ddemconf.jpg302 Found0.0 B08/09/79 08:08:41

idsync.rlcdn.com    (52.0.95.231:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
48/382666.gif?partner_uid=3425463765929877047image/gif382666.gif200 OKGIF43.0 B08/08/79 09:02:15
49/367148.gif?partner_uid=-6372839211371133641image/gif367148.gif200 OKGIF43.0 B08/08/79 09:04:41
50/47154.gif?partner_uid=2d9258b8-3bb6-4700-8d75-f2232da4105fimage/gif47154.gif200 OKGIF43.0 B08/08/79 09:23:00
51/362318.gif?partner_uid=2814931617658647image/gif362318.gif200 OKGIF43.0 B08/08/79 09:08:20
52/52154.gif?partner_uid=3425463765929877047image/gif52154.gif200 OKGIF43.0 B08/08/79 09:16:52
53/401696.gif?partner_uid=D9KOWNCA999zVnCRimage/gif401696.gif200 OKGIF43.0 B08/10/79 13:21:04
54/362358.gif?redirect=1&rl=72b6c94279fc9863fce059d9e50ba8642d838057a75d5a4ae338b2075e1ce727f307b4168ce6f99750d9caa3d7bf19e59be6172a4e77cf8e353de79349b34d0a1acfbbfbf218e654425c66a0ed6a6b0eimage/gif362358.gif200 OKGIF43.0 B08/10/79 23:11:12
55/362248.gif?partner_uid=11374779229119624544258856625026915519image/gif362248.gif200 OKGIF43.0 B08/10/79 23:38:01
83/453199.gif?partner_uid=ab9a040e-5c50-400a-8a31-9ee10ea7906aimage/gif453199.gif302 Found0.0 B08/08/79 08:58:20
84/362358.gif?google_gid=CAESEHGQlrXQJwfYO3-V_8OdOEQ&google_cver=1image/gif362358.gif302 Found0.0 B08/08/79 10:02:08

match.adsrvr.org    (46.137.175.205:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
56/track/cmf/generic?ttd_pid=mookie-ps&ttd_tpi=1text/htmlgeneric302 FoundTEXT169.0 B08/12/79 04:14:00
58/track/cmb/generic?ttd_pid=mookie-ps&ttd_tpi=1text/htmlgeneric302 FoundTEXT225.0 B08/12/79 14:25:52

odr.mookie1.com    (52.57.198.59:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
60/t/v2/sync?tagid=V2_2087&src.visitorId=cdeaa318-d86f-48f6-b9a1-cedf426f3191image/gifsync200 OKGIF43.0 B08/16/79 18:05:05
85/t/v2/sync?tagid=V2_1961&src.visitorID=qcJhTwdCUnNh&redirect_url=http://secure.adnxs.com/seg?add=6593683&t=2text/plainsync302 Found0.0 B08/16/79 18:01:47
86/t/v2/sync?tagid=v2_360text/plainsync302 Found0.0 B08/16/79 17:58:08

p.adsymptotic.com    (94.31.6.169:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
62/d/px?_pid=13188&_psign=467c3569e71876326338beac82e08d0f&_puuid=2814931617658647&_rand=2814931617658647&_redirect=https%3A%2F%2Fodr.mookie1.com%2Ft%2Fv2%2Fsync%3Ftagid%3DV2_10555%26src.visitorid%3D%24%7BUUID%7Dpx302 Found0.0 B08/19/79 22:09:14
63/d/px?_pid=13188&_psign=467c3569e71876326338beac82e08d0f&_puuid=2814931617658647&_rand=2814931617658647&_redirect=https%3A%2F%2Fodr.mookie1.com%2Ft%2Fv2%2Fsync%3Ftagid%3DV2_10555%26src.visitorid%3D%24%7BUUID%7D&_expected_cookie=cc336a55f4db89d461d94ed05c7c0310px302 Found0.0 B08/20/79 15:01:43

secure.adnxs.com    (185.33.220.197:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
64/seg?add=6593683&t=2image/gifseg200 OKGIF43.0 B08/21/79 09:02:54

e.nexac.com    (54.149.124.73:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
65/e/liveramp_sync.xgi?na_exid=a9c34c35d34dc290febac31ca898ae2b21b44f8cca6590aad9d6998ed6dc86373b87cd2c0007efc4text/htmlliveramp_sync.xgi302 Found0.0 B08/24/79 05:41:32
66/e/xrefid.xgi?na_exid=a9c34c35d34dc290febac31ca898ae2b21b44f8cca6590aad9d6998ed6dc86373b87cd2c0007efc4&na_pid=2028&ru=image/gifxrefid.xgi200 OKGIF43.0 B08/26/79 06:31:11

www.download.windowsupdate.com    (92.123.140.25:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
67/msdownload/update/v3/static/trustedr/en/authrootstl.cabapplication/octet-streamauthrootstl.cab200 OKCAB49.7 KB09/06/79 01:20:54

apiservices.krxd.net    (50.19.82.249:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
68/um?partner=liveramptext/htmlum302 Found0.0 B08/08/79 03:42:10

asset.email-match.com    (87.98.169.74:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
73/1311/asset?type=IMGtext/htmlasset302 Found0.0 B10/25/79 23:10:08
74/1311/asset?mst_uid=13111488468926498348&type=IMGimage/gifasset200 OKGIF43.0 B10/27/79 14:30:56

atout.email-match.com    (87.98.169.74:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
79/1311/ace?url_o=http%3A%2F%2Fasset.email-match.com%2F1311%2Fasset%3Ftype%3DIMGtext/htmlace302 Found0.0 B10/26/79 19:22:36

pxl.jivox.com    (54.243.215.204:80)
IDURIRESPONSE TYPEFILENAMERESPONSE CODEMAGICSIZETIME
80/tags/sync/usync.php?px=7m7ikAORusync.php302 Found0.0 B08/06/79 21:02:11