Source: https://33208b95.7187b59e75e5ee4922ee53c8.workers.dev/?qrc=jgol@bgclinic.com | HTTP Parser: No favicon |
Source: https://33208b95.7187b59e75e5ee4922ee53c8.workers.dev/?qrc=jgol@bgclinic.com | HTTP Parser: No favicon |
Source: https://33208b95.7187b59e75e5ee4922ee53c8.workers.dev/?qrc=jgol@bgclinic.com | HTTP Parser: No favicon |
Source: https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/ydlqt/0x4AAAAAAAUst_7UhbXCEgdQ/auto/normal | HTTP Parser: No favicon |
Source: https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/ydlqt/0x4AAAAAAAUst_7UhbXCEgdQ/auto/normal | HTTP Parser: No favicon |
Source: https://24karat.us/captcha.rdr?ref=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 | HTTP Parser: No favicon |
Source: https://24karat.us/captcha.rdr?ref=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... | HTTP Parser: No favicon |
Source: unknown | TCP traffic detected without corresponding DNS query: 173.222.162.32 |
Source: unknown | TCP traffic detected without corresponding DNS query: 173.222.162.32 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.51.58.94 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.51.58.94 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.51.58.94 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.51.58.94 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.51.58.94 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.51.58.94 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.51.58.94 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.51.58.94 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.51.58.94 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.51.58.94 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.51.58.94 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.51.58.94 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.51.58.94 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.51.58.94 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.51.58.94 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.51.58.94 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.51.58.94 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.51.58.94 |
Source: unknown | TCP traffic detected without corresponding DNS query: 173.222.162.32 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.206.121.28 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.206.121.28 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.206.121.39 |
Source: unknown | TCP traffic detected without corresponding DNS query: 23.206.121.39 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: unknown | UDP traffic detected without corresponding DNS query: 1.1.1.1 |
Source: global traffic | HTTP traffic detected: GET /subscriptions/subscribe/update?c=01H0G3BVA5P4WT38NKH3DY6QEB&a=WkVYqE&p=eyJUaWNrZXRfb3B0IGluIjogIlllcyJ9&k=53b9cf0c5602fbaff2d592c0e9b9058a&r=bigswitch%25E3%2580%2582co%25E3%2580%2582in///////////portfolio////////wpfile///////////wp-user%25E3%2580%2582////////////hgsusysyues////////amdvbEBiZ2NsaW5pYy5jb20= HTTP/1.1Host: manage.kmail-lists.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /fs/windows/config.json HTTP/1.1Connection: Keep-AliveAccept: */*Accept-Encoding: identityIf-Unmodified-Since: Tue, 16 May 2017 22:58:00 GMTRange: bytes=0-2147483646User-Agent: Microsoft BITS/7.8Host: fs.microsoft.com |
Source: global traffic | HTTP traffic detected: GET /?qrc=jgol@bgclinic.com HTTP/1.1Host: 33208b95.7187b59e75e5ee4922ee53c8.workers.devConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: documentReferer: http://bigswitch.co.in/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /turnstile/v0/api.js?onload=onloadTurnstileCallback HTTP/1.1Host: challenges.cloudflare.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://33208b95.7187b59e75e5ee4922ee53c8.workers.dev/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /turnstile/v0/b/de9364586261/api.js?onload=onloadTurnstileCallback HTTP/1.1Host: challenges.cloudflare.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://33208b95.7187b59e75e5ee4922ee53c8.workers.dev/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/ydlqt/0x4AAAAAAAUst_7UhbXCEgdQ/auto/normal HTTP/1.1Host: challenges.cloudflare.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://33208b95.7187b59e75e5ee4922ee53c8.workers.dev/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /cdn-cgi/challenge-platform/h/b/cmg/1/wh0E0SXYnx6pTBdJW%2Fl926I%2BPRUplRdtQz3K9lHXs%2Fs%3D HTTP/1.1Host: challenges.cloudflare.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/ydlqt/0x4AAAAAAAUst_7UhbXCEgdQ/auto/normalAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /cdn-cgi/challenge-platform/h/b/orchestrate/chl_api/v1?ray=8686d7969ff38c8d HTTP/1.1Host: challenges.cloudflare.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/ydlqt/0x4AAAAAAAUst_7UhbXCEgdQ/auto/normalAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /cdn-cgi/challenge-platform/h/b/cmg/1/wh0E0SXYnx6pTBdJW%2Fl926I%2BPRUplRdtQz3K9lHXs%2Fs%3D HTTP/1.1Host: challenges.cloudflare.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /favicon.ico HTTP/1.1Host: 33208b95.7187b59e75e5ee4922ee53c8.workers.devConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://33208b95.7187b59e75e5ee4922ee53c8.workers.dev/?qrc=jgol@bgclinic.comAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /cdn-cgi/challenge-platform/h/b/flow/ov1/1866956230:1711114023:qi2FWv_Rg0fiI6pnc0EZrR7oXCzTXz1FUAULF1OGhso/8686d7969ff38c8d/99cb5747b72fd32 HTTP/1.1Host: challenges.cloudflare.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /favicon.ico HTTP/1.1Host: 33208b95.7187b59e75e5ee4922ee53c8.workers.devConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /cdn-cgi/challenge-platform/h/b/i/8686d7969ff38c8d/1711117435474/PuCra0aeu8l9_kN HTTP/1.1Host: challenges.cloudflare.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/ydlqt/0x4AAAAAAAUst_7UhbXCEgdQ/auto/normalAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /cdn-cgi/challenge-platform/h/b/i/8686d7969ff38c8d/1711117435474/PuCra0aeu8l9_kN HTTP/1.1Host: challenges.cloudflare.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /cdn-cgi/challenge-platform/h/b/pat/8686d7969ff38c8d/1711117435475/87838355b32f03578a2010d5ec95bff9ab3c967b76019571c44cca83e4d48e46/SNU9Px4ZWVIK_59 HTTP/1.1Host: challenges.cloudflare.comConnection: keep-aliveCache-Control: max-age=0sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://challenges.cloudflare.com/cdn-cgi/challenge-platform/h/b/turnstile/if/ov2/av0/rcv0/0/ydlqt/0x4AAAAAAAUst_7UhbXCEgdQ/auto/normalAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /cdn-cgi/challenge-platform/h/b/flow/ov1/1866956230:1711114023:qi2FWv_Rg0fiI6pnc0EZrR7oXCzTXz1FUAULF1OGhso/8686d7969ff38c8d/99cb5747b72fd32 HTTP/1.1Host: challenges.cloudflare.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /cdn-cgi/challenge-platform/h/b/flow/ov1/1866956230:1711114023:qi2FWv_Rg0fiI6pnc0EZrR7oXCzTXz1FUAULF1OGhso/8686d7969ff38c8d/99cb5747b72fd32 HTTP/1.1Host: challenges.cloudflare.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /?dataXX0=eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9.eyJ1cmwiOiJodHRwczovLzI0a2FyYXQudXMiLCJkb21haW4iOiIyNGthcmF0LnVzIiwia2V5IjoiRzBsbW84Q0VrYmk3IiwicXJjIjoiamdvbEBiZ2NsaW5pYy5jb20iLCJpYXQiOjE3MTExMTc0NDksImV4cCI6MTcxMTExNzU2OX0.s-ZTKIIMiAyWUPU--t4qvflYQNokE9Efj6w9WMo6whI HTTP/1.1Host: 24karat.usConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://33208b95.7187b59e75e5ee4922ee53c8.workers.dev/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /?qrc=jgol%40bgclinic.com HTTP/1.1Host: 24karat.usConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Referer: https://33208b95.7187b59e75e5ee4922ee53c8.workers.dev/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: qPdM=G0lmo8CEkbi7; qPdM.sig=SQo4T0JDmvCxZj-g4pAzrzjJHn4 |
Source: global traffic | HTTP traffic detected: GET /owa/?login_hint=jgol%40bgclinic.com HTTP/1.1Host: 24karat.usConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Referer: https://33208b95.7187b59e75e5ee4922ee53c8.workers.dev/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: qPdM=G0lmo8CEkbi7; qPdM.sig=SQo4T0JDmvCxZj-g4pAzrzjJHn4 |
Source: global traffic | HTTP traffic detected: GET /captcha.rdr?ref=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 HTTP/1.1Host: 24karat.usConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Referer: https://33208b95.7187b59e75e5ee4922ee53c8.workers.dev/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: qPdM=G0lmo8CEkbi7; qPdM.sig=SQo4T0JDmvCxZj-g4pAzrzjJHn4; ClientId=AD8DDA6D248F459D832803D0055B823B; OIDC=1; OpenIdConnect.nonce.v3.g427BzjQDBzf0BO-QNx0HwoLVfc2raPrjczMthckQqc=638467142511721442.75e664b3-455f-4a7a-b6ee-97291afcfdb8; X-OWA-RedirectHistory=ArLym14B4nsrvntK3Ag |
Source: global traffic | HTTP traffic detected: GET /aadcdn.msftauth.net/~/shared/1.0/content/js/BssoInterrupt_Core_GW4zPEKtwiiwtRHaCqGPVw2.js HTTP/1.1Host: 24karat.usConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://24karat.us/captcha.rdr?ref=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Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: qPdM=G0lmo8CEkbi7; qPdM.sig=SQo4T0JDmvCxZj-g4pAzrzjJHn4; ClientId=AD8DDA6D248F459D832803D0055B823B; OIDC=1; OpenIdConnect.nonce.v3.g427BzjQDBzf0BO-QNx0HwoLVfc2raPrjczMthckQqc=638467142511721442.75e664b3-455f-4a7a-b6ee-97291afcfdb8; X-OWA-RedirectHistory=ArLym14B4nsrvntK3Ag; esctx-lZyzPZZ7dso=AQABCQEAAADnfolhJpSnRYB1SVj-Hgd85eCgDwL7M8YVfiTo-qIfO8StpvsLk0tqGoGFWefLdFyaafHaf7O_n8GPUbJCkB87Vi65bbl_yGNCRT2TFf8iuGD99QfWdfwTN6UEFGMUgIqrJqaS-tOc1s6BT-joOb3kURJuKMJLK3JyzXobixdYjiAA; fpc=AnAxjE-_txJPjQb7YYiXMlU; esctx=PAQABBwEAAADnfolhJpSnRYB1SVj-Hgd828fF6I_XkBu9671vguo1Q-kUj_aaWavCZbbevWme2Iye5T7j5evWQA9m7zcoikJfzS2vlzmFf7HRVxoZwN2oO7hhr3V4eB-Y53a95UCEfmIL7cAmUFARrV8dZ_bC-AirXdhJ0AzcrEQHwh7utoz485kNe-KtFuVC1ODAc4cxDK8gAA; x-ms-gateway-slice=estsfd; stsservicecookie=estsfd |
Source: global traffic | HTTP traffic detected: GET /favicon.ico HTTP/1.1Host: 33208b95.7187b59e75e5ee4922ee53c8.workers.devConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://33208b95.7187b59e75e5ee4922ee53c8.workers.dev/?qrc=jgol@bgclinic.comAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /captcha.rdr?ref=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&sso_reload=true HTTP/1.1Host: 24karat.usConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: same-originSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://24karat.us/captcha.rdr?ref=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Acc |