Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 193.232.150.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 193.232.150.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 193.232.150.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 167.235.7.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 167.235.7.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 167.235.7.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 184.28.90.27 |
Source: unknown | TCP traffic detected without corresponding DNS query: 167.235.7.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 167.235.7.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 167.235.7.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 167.235.7.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 167.235.7.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 167.235.7.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 193.232.150.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 193.232.150.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 167.235.7.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 193.232.150.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 193.232.150.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 193.232.150.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 173.222.162.32 |
Source: unknown | TCP traffic detected without corresponding DNS query: 93.184.221.240 |
Source: unknown | TCP traffic detected without corresponding DNS query: 93.184.221.240 |
Source: unknown | TCP traffic detected without corresponding DNS query: 193.232.150.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 195.201.108.196 |
Source: unknown | TCP traffic detected without corresponding DNS query: 195.201.108.196 |
Source: unknown | TCP traffic detected without corresponding DNS query: 195.201.108.196 |
Source: unknown | TCP traffic detected without corresponding DNS query: 193.232.150.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 193.232.150.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 193.232.150.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 193.232.150.148 |
Source: unknown | TCP traffic detected without corresponding DNS query: 193.232.150.148 |
Source: global traffic | HTTP traffic detected: GET /file/BDoevstmwc-LH-sbj-OyBhlAr9f_8REM5GylyjUbzp0C14JNGE0luefvosada74HY1heslHYjIFTJqYowqHZW2U0Ud55ISGdzPYMuUbsvK0U7jqDYY-QLs3IPVb2zbi0EMPrw82DmDiXtGfIl_nXcDU-a02mI72VHUBwEsB8wPyHqiKczgkPdhtL1n1sOO-1c3RWSQMS52k5nV_uHDjd1h8NFSl9LNRD-BGQdwhHx5IRdErI4RlKKXdjeDtsd-MzL846KS9mGB6U7PDlMoKR93EFw9CuEkhZl3NsVJvFI6ObKpJ6EdDOS9ZZBfCfFHU7de_YfmsbShE42TJI1yJqEA.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: http://xn--r1a.website/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/J5IrM8TywMmqx4ZfsUIWmzOHXcIjMdle0j0Zye8AO8h7bW7lhRtHf3rwMLDqu1isIJ0dw4EPOjBNlHAyHkNkqgqqjh8bR4nUqiAq6P_Ej9AZoBXBJeew5Cc4vlPcPkF_wYV80A7hegzAshbhSvXqCnDH5V6aOOf7JlRhjqTNYlbVwc86WiQGXK-PYmGGLWbETscY3DjcM5yPhiNFExJeNB4Vmje0RXBoV0ZTy6_9TRw07Sxw2e1uNLWxPedOdw1hodtMeSZKBpnDOCWgw8at3icavvKT6l06C2LJfPQsvc5AA8D84CylCQg4KJNRiSPyY75fex2yWcr7nk-SqIErpQ.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: http://xn--r1a.website/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/TTkkD8vhw02tx6_lfOH_DCMJAewkY3MM9tiBVlKvkpzhsmMyB-J7bK0oKXpRQAccMp4OsJZMDFmm77EQ8GXduS6izr7JT1sss2JT2zIYl3jTiqOmnwx6SSAW_sNUDqovktr6YzgXP5gad40Yl5ZDNcelYrbftB8jlkqU6fDclHTdBlT8ExxMNtKw1g0UgGpSAe5GFmS8qZgjDz83K9GeJaNmzqAYCvxMdvGKo5_ZiDVfwBW4QAsJ_hKx5Kj4ABcDlMYEX4OdhB4Ym9BKT2MWrwZZtxDk0EJJSX4aUmOFMGae7G3ZIuSvgOaKT7JW9bQO_NQCTsVAxXSflL8MYYmy7Q.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: http://xn--r1a.website/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/mXNwO8DVSXSRafJGfW3LoeUmuU7fidfGqSIAOB8lQIWxs_fxBvKHG0GSvd55EDulEM7uLm8GNgtQG3Wlwc8F2i-Z3d1LlZ4ymAUsAMGc6EYEL8dhxVM3aWiifE5vTAupsOw_VDcNkrzbe3dlIJ2Q7OPwK8nO0ht-SBE_F9i58duZcVAzbCmXRvBqz2-PN6RZaEIy3iFnnzTILo40fVObac7AyFeYjc1G1Hv6LtBLAFiUrGDE-geNNOWqpCIVaGwrQTf2Nbrn5eRUTk8C_k6r88VkZjxHOEAKXEBdkkF2XtsElsfAfvOemPQ7gBDKXPx72NEce3eyKrUOcjvnlQORkg.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: http://xn--r1a.website/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/FmiN1jd6kyJcAeWZgqW4F1M6SO2Eq2RyWTZW_blsnSEOdaGcnsZyCyUn7iIiSZTDSWAItP34AXMi8zvOoqM-IcdUp3TUVCz0MhcVRIWT4BXCt3eTxwYPub8hQGapqCMCUQQ656ysDa7TxKg2_iJgkXF8jnWEsubIs0Q7ol6Ma4rq1Tj21ueeiPUmscCaomkBd2JrnI_qU6CxtVAC7Dn7w-z6QsmN4TePjVK8NNkb7liOQWKnbxGEfgDyDriRvwLWSnaFj8kfRICBMhevGgqVyW0k0KWygDnfKeiWFwAmnmNtvGOtou8h7HZNKTgQEuX-Z2IvurSOcnyALF6aJtSGUg.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: http://xn--r1a.website/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /ads/system/header-bidding.js HTTP/1.1Host: yandex.ruConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: http://xn--r1a.website/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/MRaZr89OCD5Qq9z9INWqGZsk0QSCS36uQSIbQJrq-YdzjVbiaMkbpeXSl1tcB8ZOu5KUs8WzGcfEXddbIVY78z_o8V0IxYibiI4BQsVCubSLMz_lP7idln0bE9i4LU0cr-irveRblfIb2UsB_mN-LI087zClUs3TsB41pQ-pQjAuG9DOmSM9WJDISYjfHg-P2VQOWNeOzARqN_JEa9FzI3lf0xVBuRxjgqwm2ZSf-JgZE5vXLDKKYw2nq41qEvh3ltHN9c_9kF9mUtaVqBhU01z7Ipud_44CPBNBH4BMYOWsZzxLMtqUmCN_GfmitAifPzbWiYtNo8envAOO5HmUUg.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: http://xn--r1a.website/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/JitwEocrGUIsjF7lIVjj81yr99dSOamCXttyW3h-_YJH6F1KYV6qX3iEpHS1nPcEz03nUgOqM9XNa9FbMUsIldglc_Qd9dDVe-Eh9K4cJMOY0AQB78C7CvcLX1boV-UWvh7bEYn87eEeCJM74wYIecz1VUC0dvUSsobArVa0tGYZWpy6eQLxELg5heZS6J_caSMAPmS2xCwwdiCblU0NbmbXanM9fi1RYPQOksZVCklr1QcQz-YHEHNnN8xA7JwcZjCbsWxPZenPnNKQCr5Om6muF5s6PeHKRz7rFNa_Y9N0a6V2-o9ap0ve1s0WFFa_W2TKh266_aX8cFNo1ovPNA.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: http://xn--r1a.website/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/rkk8WbtOH5kDN2Bvh89DE_-q7p6ydKIypCA8qrMoOqnzWuwss2N-4z7JZG8Isbr6ditAmqyfNXwvxeK_2KrdtV6D3-ex5jk64o7V6OPM94oIlbQGJ7hvbexd-6T-UWP_dZI9laui89-InBxC8i1BOjgwXy9o-5877cfMOYnFuqWMSrcLEmuUnE-TUnbvwybZDVJFUsjpvdmaWH7v4hkhcVImSq8bKofyeoaPhl9gH5O28uw9fFlcuMNxWsFOV4ulnqwIQ4coLZR2jr13R24M23Qp1EOW699OASic2AiATScyldwQ1RogzDMI-mCJVh2Rm3qGwbrQFNHwHIqvVaUqgQ.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: http://xn--r1a.website/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/MSpszLg7U46su23KMCgH8A98mn1j0p2-6wBkxrguTs8yEhVA-oaBykeBGHnbmDgMIfkKoJwjFD22bkLCfzLXC_nZkOpn_IvNZWrn4lKleup8F9gallYy7JfpvqYPTDBOfKk_NhPPOXvBte8UjBr8p6BNiekhw_wgidfU07LtxhQxhg-yfs8gODhc8KhI3B2tedOpJt4s3gCKcD8iwg0mvt8ypGShZW-IqnTMdSM6viCBG3d1niNKp-WAIbJqf_Nqt8CF3bJxTZyy07G2fU3oAZBZC0t3aiIqapI8FAZf_TqIt9ENGUPFJdG1adRWyp65Tdcs7sWd9lUAw3udNMgwxA.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: http://xn--r1a.website/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /ads/system/context.js HTTP/1.1Host: yandex.ruConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: http://xn--r1a.website/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: i=GmNVkS+1q5EG+QZWaZequSAdEsZAYIQJqYkSXqpBiBW8RHxpVAeNYZqWeWLxv59vOg/zx7VfGq3GoEcsNjaaQUQpdjA=; yandexuid=1141320511726872524; yashr=6680397161726872524; receive-cookie-deprecation=1; bh=EkAiR29vZ2xlIENocm9tZSI7dj0iMTE3IiwgIk5vdDtBPUJyYW5kIjt2PSI4IiwgIkNocm9taXVtIjt2PSIxMTciKgI/MDoJIldpbmRvd3MiYMz3t7cGah7cyuH/CJLYobEDn8/h6gP7+vDnDev//fYPutfOhwg= |
Source: global traffic | HTTP traffic detected: GET /js/xn--r1a.website.js?ts=1726872521522 HTTP/1.1Host: ads.digitalcaramel.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: http://xn--r1a.website/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /getcookie HTTP/1.1Host: matchid.adfox.yandex.ruConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-platform: "Windows"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Content-Type: application/x-www-form-urlencodedAccept: */*Origin: http://xn--r1a.websiteSec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: http://xn--r1a.website/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: i=GmNVkS+1q5EG+QZWaZequSAdEsZAYIQJqYkSXqpBiBW8RHxpVAeNYZqWeWLxv59vOg/zx7VfGq3GoEcsNjaaQUQpdjA=; yandexuid=1141320511726872524; yashr=6680397161726872524; receive-cookie-deprecation=1; bh=EkAiR29vZ2xlIENocm9tZSI7dj0iMTE3IiwgIk5vdDtBPUJyYW5kIjt2PSI4IiwgIkNocm9taXVtIjt2PSIxMTciKgI/MDoJIldpbmRvd3MiYMz3t7cGah7cyuH/CJLYobEDn8/h6gP7+vDnDev//fYPutfOhwg= |
Source: global traffic | HTTP traffic detected: GET /fs/windows/config.json HTTP/1.1Connection: Keep-AliveAccept: */*Accept-Encoding: identityIf-Unmodified-Since: Tue, 16 May 2017 22:58:00 GMTRange: bytes=0-2147483646User-Agent: Microsoft BITS/7.8Host: fs.microsoft.com |
Source: global traffic | HTTP traffic detected: GET /file/oEMIEzb1yTVBpW6MCUIUeeC2t40SZSMsbVRJJjyKs9mRAbrW--7Ue4_Iy0eBbvSSVVgELurmU-qaGFOiQ0xeEH7ltY329lR7ZMlNTABIskg4fS4M776FzjOm8YQ04V5PpLyo-CQ8nHlJX89Wfm1QVx11GmkY_Ad4rcDaVpCQzNsS-ekKPYDT2fTzWQEeW3CrPjYyxQIeSmLtqGrHHC1v6bQatqQywbR_L1XBI8Er-l7eY-TxX83PtrKirkybMrEckzy4qbQueRWGTXQFwknveFmdzqSFguOPtnexomnO6sH5mxBl33ouBAAOzyU6hHNkkcbpoKbkHVycq-fpqjLgCQ.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: http://xn--r1a.website/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/ELzs1UgArxHStzcD91QUa9uaL2ddyRSFVOb32HZ5Q7SZLZI9SN8-CvHqkdeSTXz-1FJOHYLyaLzDpUXHrn-3RXYO_4I8oBD9yzwbCHmFeXODLfgUkIjYaugi2NfHyyx86_OZkKL2-vj668ki5vH1mtUCpu871TMMon8057k3jLN1Ba5qNzugM2DrntzGDSlJ045JcFoOh8aLOX3xkDOc0zE2t5O1lQOe8IC-8rtsvjePL8Yyh3HfF-P4WjILj0PfQgv1i7-JHb-jW_hkPmRAB42Uq2-m9whBNQYgypUynBNyLqkApbiUN7qdshWXE3jjbrm5i1asFn_Nd1GtMbAZpA.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: http://xn--r1a.website/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/UFNhm7mbEFhB4QrlFgeburrHC3qsTU_P4QzBqpQl7FLGcglXyHwWnn38h1ag9ExV45hNk6v_-VbYoQ2dWzNlG-3HYnELtf553wjaYxDUy2T-b3mxSNS1VcUcsBF0KBR0wC7tzEoFaaFc2-PVjgMhDGUWoBZ1wf0AdPaK-ioNRsa6Hz67S3ThrSQdwaBG2LGo-xHuFMnqvj1nlD-9cNYR9P2pbjuMAxNgIcMtrxJtqgo_YYaI2R_CE0NkOZ9bFw1h-bl__7xhxn0d5NS7SSNjaV91vsGff9xShp_k-qFgfLp7-_9fbSGyA0tWrLMwZK-rdRTLJ_BB2vDmw2YDk2quZg.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: http://xn--r1a.website/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/FmiN1jd6kyJcAeWZgqW4F1M6SO2Eq2RyWTZW_blsnSEOdaGcnsZyCyUn7iIiSZTDSWAItP34AXMi8zvOoqM-IcdUp3TUVCz0MhcVRIWT4BXCt3eTxwYPub8hQGapqCMCUQQ656ysDa7TxKg2_iJgkXF8jnWEsubIs0Q7ol6Ma4rq1Tj21ueeiPUmscCaomkBd2JrnI_qU6CxtVAC7Dn7w-z6QsmN4TePjVK8NNkb7liOQWKnbxGEfgDyDriRvwLWSnaFj8kfRICBMhevGgqVyW0k0KWygDnfKeiWFwAmnmNtvGOtou8h7HZNKTgQEuX-Z2IvurSOcnyALF6aJtSGUg.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/J5IrM8TywMmqx4ZfsUIWmzOHXcIjMdle0j0Zye8AO8h7bW7lhRtHf3rwMLDqu1isIJ0dw4EPOjBNlHAyHkNkqgqqjh8bR4nUqiAq6P_Ej9AZoBXBJeew5Cc4vlPcPkF_wYV80A7hegzAshbhSvXqCnDH5V6aOOf7JlRhjqTNYlbVwc86WiQGXK-PYmGGLWbETscY3DjcM5yPhiNFExJeNB4Vmje0RXBoV0ZTy6_9TRw07Sxw2e1uNLWxPedOdw1hodtMeSZKBpnDOCWgw8at3icavvKT6l06C2LJfPQsvc5AA8D84CylCQg4KJNRiSPyY75fex2yWcr7nk-SqIErpQ.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/BDoevstmwc-LH-sbj-OyBhlAr9f_8REM5GylyjUbzp0C14JNGE0luefvosada74HY1heslHYjIFTJqYowqHZW2U0Ud55ISGdzPYMuUbsvK0U7jqDYY-QLs3IPVb2zbi0EMPrw82DmDiXtGfIl_nXcDU-a02mI72VHUBwEsB8wPyHqiKczgkPdhtL1n1sOO-1c3RWSQMS52k5nV_uHDjd1h8NFSl9LNRD-BGQdwhHx5IRdErI4RlKKXdjeDtsd-MzL846KS9mGB6U7PDlMoKR93EFw9CuEkhZl3NsVJvFI6ObKpJ6EdDOS9ZZBfCfFHU7de_YfmsbShE42TJI1yJqEA.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/TTkkD8vhw02tx6_lfOH_DCMJAewkY3MM9tiBVlKvkpzhsmMyB-J7bK0oKXpRQAccMp4OsJZMDFmm77EQ8GXduS6izr7JT1sss2JT2zIYl3jTiqOmnwx6SSAW_sNUDqovktr6YzgXP5gad40Yl5ZDNcelYrbftB8jlkqU6fDclHTdBlT8ExxMNtKw1g0UgGpSAe5GFmS8qZgjDz83K9GeJaNmzqAYCvxMdvGKo5_ZiDVfwBW4QAsJ_hKx5Kj4ABcDlMYEX4OdhB4Ym9BKT2MWrwZZtxDk0EJJSX4aUmOFMGae7G3ZIuSvgOaKT7JW9bQO_NQCTsVAxXSflL8MYYmy7Q.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/mXNwO8DVSXSRafJGfW3LoeUmuU7fidfGqSIAOB8lQIWxs_fxBvKHG0GSvd55EDulEM7uLm8GNgtQG3Wlwc8F2i-Z3d1LlZ4ymAUsAMGc6EYEL8dhxVM3aWiifE5vTAupsOw_VDcNkrzbe3dlIJ2Q7OPwK8nO0ht-SBE_F9i58duZcVAzbCmXRvBqz2-PN6RZaEIy3iFnnzTILo40fVObac7AyFeYjc1G1Hv6LtBLAFiUrGDE-geNNOWqpCIVaGwrQTf2Nbrn5eRUTk8C_k6r88VkZjxHOEAKXEBdkkF2XtsElsfAfvOemPQ7gBDKXPx72NEce3eyKrUOcjvnlQORkg.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/MRaZr89OCD5Qq9z9INWqGZsk0QSCS36uQSIbQJrq-YdzjVbiaMkbpeXSl1tcB8ZOu5KUs8WzGcfEXddbIVY78z_o8V0IxYibiI4BQsVCubSLMz_lP7idln0bE9i4LU0cr-irveRblfIb2UsB_mN-LI087zClUs3TsB41pQ-pQjAuG9DOmSM9WJDISYjfHg-P2VQOWNeOzARqN_JEa9FzI3lf0xVBuRxjgqwm2ZSf-JgZE5vXLDKKYw2nq41qEvh3ltHN9c_9kF9mUtaVqBhU01z7Ipud_44CPBNBH4BMYOWsZzxLMtqUmCN_GfmitAifPzbWiYtNo8envAOO5HmUUg.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /js/xn--r1a.website.js?ts=1726872521522 HTTP/1.1Host: ads.digitalcaramel.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /ads/system/header-bidding.js HTTP/1.1Host: yandex.ruConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: i=GmNVkS+1q5EG+QZWaZequSAdEsZAYIQJqYkSXqpBiBW8RHxpVAeNYZqWeWLxv59vOg/zx7VfGq3GoEcsNjaaQUQpdjA=; yandexuid=1141320511726872524; yashr=6680397161726872524; bh=EkAiR29vZ2xlIENocm9tZSI7dj0iMTE3IiwgIk5vdDtBPUJyYW5kIjt2PSI4IiwgIkNocm9taXVtIjt2PSIxMTciKgI/MDoJIldpbmRvd3MiYMz3t7cGah7cyuH/CJLYobEDn8/h6gP7+vDnDev//fYPutfOhwg= |
Source: global traffic | HTTP traffic detected: GET /getcookie HTTP/1.1Host: matchid.adfox.yandex.ruConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: i=GmNVkS+1q5EG+QZWaZequSAdEsZAYIQJqYkSXqpBiBW8RHxpVAeNYZqWeWLxv59vOg/zx7VfGq3GoEcsNjaaQUQpdjA=; yandexuid=1141320511726872524; yashr=6680397161726872524; bh=EkAiR29vZ2xlIENocm9tZSI7dj0iMTE3IiwgIk5vdDtBPUJyYW5kIjt2PSI4IiwgIkNocm9taXVtIjt2PSIxMTciKgI/MDoJIldpbmRvd3MiYMz3t7cGah7cyuH/CJLYobEDn8/h6gP7+vDnDev//fYPutfOhwg= |
Source: global traffic | HTTP traffic detected: GET /s3/home/fonts/ys/3/text-variable-full.woff2 HTTP/1.1Host: yastatic.netConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"Origin: http://xn--r1a.websitesec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: corsSec-Fetch-Dest: fontReferer: http://xn--r1a.website/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/JitwEocrGUIsjF7lIVjj81yr99dSOamCXttyW3h-_YJH6F1KYV6qX3iEpHS1nPcEz03nUgOqM9XNa9FbMUsIldglc_Qd9dDVe-Eh9K4cJMOY0AQB78C7CvcLX1boV-UWvh7bEYn87eEeCJM74wYIecz1VUC0dvUSsobArVa0tGYZWpy6eQLxELg5heZS6J_caSMAPmS2xCwwdiCblU0NbmbXanM9fi1RYPQOksZVCklr1QcQz-YHEHNnN8xA7JwcZjCbsWxPZenPnNKQCr5Om6muF5s6PeHKRz7rFNa_Y9N0a6V2-o9ap0ve1s0WFFa_W2TKh266_aX8cFNo1ovPNA.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/rkk8WbtOH5kDN2Bvh89DE_-q7p6ydKIypCA8qrMoOqnzWuwss2N-4z7JZG8Isbr6ditAmqyfNXwvxeK_2KrdtV6D3-ex5jk64o7V6OPM94oIlbQGJ7hvbexd-6T-UWP_dZI9laui89-InBxC8i1BOjgwXy9o-5877cfMOYnFuqWMSrcLEmuUnE-TUnbvwybZDVJFUsjpvdmaWH7v4hkhcVImSq8bKofyeoaPhl9gH5O28uw9fFlcuMNxWsFOV4ulnqwIQ4coLZR2jr13R24M23Qp1EOW699OASic2AiATScyldwQ1RogzDMI-mCJVh2Rm3qGwbrQFNHwHIqvVaUqgQ.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/MSpszLg7U46su23KMCgH8A98mn1j0p2-6wBkxrguTs8yEhVA-oaBykeBGHnbmDgMIfkKoJwjFD22bkLCfzLXC_nZkOpn_IvNZWrn4lKleup8F9gallYy7JfpvqYPTDBOfKk_NhPPOXvBte8UjBr8p6BNiekhw_wgidfU07LtxhQxhg-yfs8gODhc8KhI3B2tedOpJt4s3gCKcD8iwg0mvt8ypGShZW-IqnTMdSM6viCBG3d1niNKp-WAIbJqf_Nqt8CF3bJxTZyy07G2fU3oAZBZC0t3aiIqapI8FAZf_TqIt9ENGUPFJdG1adRWyp65Tdcs7sWd9lUAw3udNMgwxA.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/PRwF4HU2mz8_cqvTXNsa-Kd7jb5s5SrzZiFiOQ3g51eziuzlaGps_s9nO7xGuuagpHrfRXLlHMg5UOeNtTVCbEg-9_HuJStxzLyka7v1AY_XcXJRRoFuO9luY7Lb6KNL9m6aqlxvKnZVq28apWcBebnGFw5mlxhpFxFTR9ftopmrxZaw-xUj7RyzwsXF7ha3GPJcrE7ZHbpPll23Bh3e7TEwqIrEWOQ4CVszx4S6PZXa3x7jXL39680brmWiBdMyJy-Uo_WlsTHaUwr5o16C4qVpoM7GewqNWT1OQIDsftojAVmD_amBa7y9mNOCHNjsk2FcO4zZFJoo87-1vpbkxA.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: http://xn--r1a.website/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/cgF49kKyIze3mCwToG0WWiz2_xQnBNuWR_rlBEEue-BbbFKp-D16ZJxo1gXjON9HRn26_5OxvuQ0WFHhgFELWpAcxOvTxjA1zbE0-2qIM4vxV7olCGiWbKtJ-RUiihXZS4WaX5t6YPs0IXwAkKLIQmwcg6JS9eLoznoFv1yiJD-T55rZblWRR7qJjs7l6ao5Ed-Mxx2FKa2UkrV0NmIno4sICuU56SIoF7acrMzRXeHiDhMUbYcalAGL80oBQDK_3kxaSwVb103nBTxKDGitTID0G1Qdu4-ny0bZooQZhTZroc1RNXyBBQ_G7l6RhN7iTi03qQqIooeMOPvON8UAMw.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: http://xn--r1a.website/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/UFNhm7mbEFhB4QrlFgeburrHC3qsTU_P4QzBqpQl7FLGcglXyHwWnn38h1ag9ExV45hNk6v_-VbYoQ2dWzNlG-3HYnELtf553wjaYxDUy2T-b3mxSNS1VcUcsBF0KBR0wC7tzEoFaaFc2-PVjgMhDGUWoBZ1wf0AdPaK-ioNRsa6Hz67S3ThrSQdwaBG2LGo-xHuFMnqvj1nlD-9cNYR9P2pbjuMAxNgIcMtrxJtqgo_YYaI2R_CE0NkOZ9bFw1h-bl__7xhxn0d5NS7SSNjaV91vsGff9xShp_k-qFgfLp7-_9fbSGyA0tWrLMwZK-rdRTLJ_BB2vDmw2YDk2quZg.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/oEMIEzb1yTVBpW6MCUIUeeC2t40SZSMsbVRJJjyKs9mRAbrW--7Ue4_Iy0eBbvSSVVgELurmU-qaGFOiQ0xeEH7ltY329lR7ZMlNTABIskg4fS4M776FzjOm8YQ04V5PpLyo-CQ8nHlJX89Wfm1QVx11GmkY_Ad4rcDaVpCQzNsS-ekKPYDT2fTzWQEeW3CrPjYyxQIeSmLtqGrHHC1v6bQatqQywbR_L1XBI8Er-l7eY-TxX83PtrKirkybMrEckzy4qbQueRWGTXQFwknveFmdzqSFguOPtnexomnO6sH5mxBl33ouBAAOzyU6hHNkkcbpoKbkHVycq-fpqjLgCQ.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /file/ELzs1UgArxHStzcD91QUa9uaL2ddyRSFVOb32HZ5Q7SZLZI9SN8-CvHqkdeSTXz-1FJOHYLyaLzDpUXHrn-3RXYO_4I8oBD9yzwbCHmFeXODLfgUkIjYaugi2NfHyyx86_OZkKL2-vj668ki5vH1mtUCpu871TMMon8057k3jLN1Ba5qNzugM2DrntzGDSlJ045JcFoOh8aLOX3xkDOc0zE2t5O1lQOe8IC-8rtsvjePL8Yyh3HfF-P4WjILj0PfQgv1i7-JHb-jW_hkPmRAB42Uq2-m9whBNQYgypUynBNyLqkApbiUN7qdshWXE3jjbrm5i1asFn_Nd1GtMbAZpA.jpg HTTP/1.1Host: cdn4.cdn-telegram.orgConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /ads/adfox/332443/getBulk/v2?pr=2302063733&pr1=3849475745&dl=http%3A%2F%2Fxn--r1a.website%2Fs%2Fogorodru&prr=&extid_loader=&extid_tag_loader=xn--r1a.website&fa=&date=2024-09-20T18%3A48%3A47.259-04%3A00&pd=20&pw=5&pv=18&pdw=1280&pdh=1024&ylv=0.1117086&ybv=0.1117086&ytt=509073883660293&is-turbo=0&skip-token=&ad-session-id=8249541726872527269&layout-config=%7B%22win_width%22%3A1280%2C%22win_height%22%3A907%2C%22pixel_ratio%22%3A1%2C%22bandwidth%22%3A1.35%2C%22isInIframe%22%3Afalse%2C%22w%22%3A1278%2C%22h%22%3A98%2C%22width%22%3A1278%2C%22height%22%3A98%2C%22visible%22%3A1%2C%22fullscreenHeaderHeight%22%3A80%2C%22left%22%3A1%2C%22top%22%3A9422%2C%22req_no%22%3A0%2C%22ad_no%22%3A0%7D&pcode-version=1117086&yaru=true&p1=ddhej&p2=iqvg&slotNumber=1&bids=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&ut |