Analysis Report http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCT

Overview

General Information

Sample URL: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCT
Analysis ID: 429144
Infos:

Most interesting Screenshot:

Detection

Score: 48
Range: 0 - 100
Whitelisted: false
Confidence: 100%

Signatures

Snort IDS alert for network traffic (e.g. based on Emerging Threat rules)
Found iframes
HTML title does not match URL
None HTTPS page querying sensitive user data (password, username or email)

Classification

Phishing:

barindex
Found iframes
Source: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCT HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6Ld9lQAVAAAAALmKl0QIzXSrPG6V5UJsGqktklj5&co=aHR0cDovL3dlYmFjY2Vzcy5nYXBvcnRzLmNvbTo4MA..&hl=en&v=sG0iO6gHcGdWJzjJjW9AY49S&size=invisible&cb=r0w700hrwat5
Source: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCT HTTP Parser: Iframe src: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6Ld9lQAVAAAAALmKl0QIzXSrPG6V5UJsGqktklj5&co=aHR0cDovL3dlYmFjY2Vzcy5nYXBvcnRzLmNvbTo4MA..&hl=en&v=sG0iO6gHcGdWJzjJjW9AY49S&size=invisible&cb=r0w700hrwat5
HTML title does not match URL
Source: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCT HTTP Parser: Title: Log In does not match URL
Source: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCT HTTP Parser: Title: Log In does not match URL
None HTTPS page querying sensitive user data (password, username or email)
Source: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCT HTTP Parser: Has password / email / username input fields
Source: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCT HTTP Parser: Has password / email / username input fields
Source: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCT HTTP Parser: No <meta name="author".. found
Source: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCT HTTP Parser: No <meta name="author".. found
Source: https://www.navis.com/ HTTP Parser: No <meta name="author".. found
Source: https://www.navis.com/ HTTP Parser: No <meta name="author".. found
Source: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCT HTTP Parser: No <meta name="copyright".. found
Source: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCT HTTP Parser: No <meta name="copyright".. found
Source: https://www.navis.com/ HTTP Parser: No <meta name="copyright".. found
Source: https://www.navis.com/ HTTP Parser: No <meta name="copyright".. found
Source: C:\Program Files (x86)\Internet Explorer\iexplore.exe File opened: C:\Program Files (x86)\Java\jre1.8.0_211\bin\msvcr100.dll Jump to behavior
Source: unknown HTTPS traffic detected: 104.16.19.94:443 -> 192.168.2.6:49748 version: TLS 1.2
Source: unknown HTTPS traffic detected: 104.16.19.94:443 -> 192.168.2.6:49749 version: TLS 1.2
Source: unknown HTTPS traffic detected: 104.16.19.94:443 -> 192.168.2.6:49750 version: TLS 1.2
Source: unknown HTTPS traffic detected: 104.16.19.94:443 -> 192.168.2.6:49751 version: TLS 1.2
Source: unknown HTTPS traffic detected: 104.16.19.94:443 -> 192.168.2.6:49752 version: TLS 1.2
Source: unknown HTTPS traffic detected: 35.201.125.192:443 -> 192.168.2.6:49753 version: TLS 1.2
Source: unknown HTTPS traffic detected: 35.201.125.192:443 -> 192.168.2.6:49754 version: TLS 1.2
Source: unknown HTTPS traffic detected: 35.190.5.192:443 -> 192.168.2.6:49762 version: TLS 1.2
Source: unknown HTTPS traffic detected: 35.190.5.192:443 -> 192.168.2.6:49763 version: TLS 1.2
Source: unknown HTTPS traffic detected: 152.199.21.175:443 -> 192.168.2.6:49767 version: TLS 1.2
Source: unknown HTTPS traffic detected: 152.199.21.175:443 -> 192.168.2.6:49766 version: TLS 1.2
Source: unknown HTTPS traffic detected: 34.95.105.148:443 -> 192.168.2.6:49771 version: TLS 1.2
Source: unknown HTTPS traffic detected: 34.95.105.148:443 -> 192.168.2.6:49770 version: TLS 1.2
Source: unknown HTTPS traffic detected: 142.251.5.154:443 -> 192.168.2.6:49774 version: TLS 1.2
Source: unknown HTTPS traffic detected: 142.251.5.154:443 -> 192.168.2.6:49775 version: TLS 1.2
Source: unknown HTTPS traffic detected: 172.217.19.99:443 -> 192.168.2.6:49778 version: TLS 1.2
Source: unknown HTTPS traffic detected: 172.217.19.99:443 -> 192.168.2.6:49779 version: TLS 1.2
Source: unknown HTTPS traffic detected: 54.86.117.43:443 -> 192.168.2.6:49780 version: TLS 1.2
Source: unknown HTTPS traffic detected: 54.86.117.43:443 -> 192.168.2.6:49780 version: TLS 1.2
Source: unknown HTTPS traffic detected: 52.6.75.166:443 -> 192.168.2.6:49781 version: TLS 1.2
Source: unknown HTTPS traffic detected: 52.0.129.236:443 -> 192.168.2.6:49797 version: TLS 1.2
Source: unknown HTTPS traffic detected: 52.0.129.236:443 -> 192.168.2.6:49798 version: TLS 1.2

Networking:

barindex
Snort IDS alert for network traffic (e.g. based on Emerging Threat rules)
Source: Traffic Snort IDS: 882 WEB-CGI calendar access 192.168.2.6:49718 -> 104.26.6.110:80
Source: Traffic Snort IDS: 882 WEB-CGI calendar access 192.168.2.6:49713 -> 104.26.6.110:80
Source: Traffic Snort IDS: 882 WEB-CGI calendar access 192.168.2.6:49714 -> 104.26.6.110:80
Source: global traffic HTTP traffic detected: GET /express/secure/today.jsp?Facility=GCT HTTP/1.1Accept: text/html, application/xhtml+xml, image/jxr, */*Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-Alive
Source: global traffic HTTP traffic detected: GET /express/css/modules/tooltip.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/main.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/n4standard.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/n4addendum.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/skins/gpa/n4client.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/includes/ImageSwap.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/includes/popupWindow.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/browserSniff.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/ieEmulation.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/font.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/menu.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/actionbar.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/content.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/navPane.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/button.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/table.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/form.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/tab.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/header.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/shadow.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/modalDialog.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/calendar.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/appointment.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/common.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/globalEvents.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/autocomplete.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/lovHandlers.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/getOptions.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/dropShadow.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/includes/simplecalendar.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/paging.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/skins/gpa/logo.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/s.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/spacer.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/poweredbynavis.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/down.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/up.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCTAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /favicon.ico HTTP/1.1Accept: */*Accept-Encoding: gzip, deflateUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoHost: webaccess.gaports.comConnection: Keep-Alive
Source: global traffic HTTP traffic detected: GET / HTTP/1.1Accept: text/html, application/xhtml+xml, image/jxr, */*Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-Alive
Source: global traffic HTTP traffic detected: GET /express/index.jsp HTTP/1.1Accept: text/html, application/xhtml+xml, image/jxr, */*Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/tooltip.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1853-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/main.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1732-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/n4standard.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:56 GMTIf-None-Match: W/"19654-1619547716000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/n4addendum.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:56 GMTIf-None-Match: W/"9069-1619547716000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/skins/gpa/n4client.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 24 Apr 2018 18:47:44 GMTIf-None-Match: W/"13807-1524595664000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/font.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"833-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/menu.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2886-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/actionbar.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2708-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/navPane.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"3126-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/content.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2627-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/button.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"3835-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/table.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"3121-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/form.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1113-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/tab.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2768-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/header.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1517-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/shadow.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"718-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/modalDialog.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"863-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/calendar.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2243-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/appointment.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1227-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/includes/ImageSwap.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2128-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/includes/popupWindow.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2361-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/browserSniff.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"15400-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/ieEmulation.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"6959-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/common.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"5576-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/globalEvents.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"3702-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/autocomplete.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"21234-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/lovHandlers.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1695-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/getOptions.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"4948-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/dropShadow.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2700-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/includes/simplecalendar.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"18756-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/paging.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"998-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/skins/gpa/logo.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Fri, 31 Aug 2018 19:11:15 GMTIf-None-Match: W/"12519-1535742675345"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/s.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"43-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/up.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"172-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/down.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"175-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/icons/export.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/icons/pdf.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/spacer.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"43-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/poweredbynavis.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/index.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"840-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/about.jsp HTTP/1.1Accept: text/html, application/xhtml+xml, image/jxr, */*Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/tooltip.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1853-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/main.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1732-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/n4standard.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:56 GMTIf-None-Match: W/"19654-1619547716000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/n4addendum.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:56 GMTIf-None-Match: W/"9069-1619547716000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/skins/gpa/n4client.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 24 Apr 2018 18:47:44 GMTIf-None-Match: W/"13807-1524595664000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/font.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"833-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/menu.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2886-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/actionbar.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2708-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/content.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2627-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/navPane.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"3126-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/button.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"3835-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/table.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"3121-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/form.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1113-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/tab.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2768-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/header.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1517-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/shadow.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"718-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/modalDialog.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"863-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/calendar.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2243-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/appointment.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1227-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/includes/ImageSwap.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2128-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/includes/popupWindow.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2361-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/browserSniff.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"15400-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/ieEmulation.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"6959-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/common.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"5576-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/globalEvents.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"3702-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/autocomplete.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"21234-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/lovHandlers.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1695-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/getOptions.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"4948-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/dropShadow.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2700-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/includes/simplecalendar.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"18756-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/paging.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"998-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/skins/gpa/logo.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Fri, 31 Aug 2018 19:11:15 GMTIf-None-Match: W/"12519-1535742675345"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/s.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"43-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/up.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"172-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/down.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"175-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/spacer.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"43-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/poweredbynavis.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/about.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"840-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/showNotice.do?report_type=1&GKEY=112 HTTP/1.1Accept: text/html, application/xhtml+xml, image/jxr, */*Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/tooltip.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1853-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/main.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1732-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/n4standard.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:56 GMTIf-None-Match: W/"19654-1619547716000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/n4addendum.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:56 GMTIf-None-Match: W/"9069-1619547716000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/skins/gpa/n4client.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 24 Apr 2018 18:47:44 GMTIf-None-Match: W/"13807-1524595664000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/font.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"833-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/menu.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2886-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/actionbar.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2708-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/content.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2627-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/navPane.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"3126-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/table.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"3121-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/button.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"3835-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/form.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1113-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/tab.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2768-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/header.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1517-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/shadow.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"718-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/modalDialog.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"863-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/calendar.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2243-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/appointment.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1227-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/includes/ImageSwap.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2128-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/includes/popupWindow.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2361-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/browserSniff.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"15400-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/ieEmulation.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"6959-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/common.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"5576-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/globalEvents.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"3702-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/autocomplete.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"21234-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/lovHandlers.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1695-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/getOptions.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"4948-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/dropShadow.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2700-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/includes/simplecalendar.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"18756-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/paging.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"998-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/skins/gpa/logo.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Fri, 31 Aug 2018 19:11:15 GMTIf-None-Match: W/"12519-1535742675345"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/s.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"43-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/up.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"172-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/down.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"175-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/icons/export.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"313-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/icons/pdf.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"980-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/spacer.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"43-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/poweredbynavis.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"840-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /cdn-cgi/scripts/5c5dd728/cloudflare-static/email-decode.min.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-Alive
Source: global traffic HTTP traffic detected: GET /express/terms.jsp HTTP/1.1Accept: text/html, application/xhtml+xml, image/jxr, */*Accept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comConnection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/tooltip.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1853-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/main.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1732-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/n4standard.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:56 GMTIf-None-Match: W/"19654-1619547716000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/n4addendum.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:56 GMTIf-None-Match: W/"9069-1619547716000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/skins/gpa/n4client.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 24 Apr 2018 18:47:44 GMTIf-None-Match: W/"13807-1524595664000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/font.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"833-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/menu.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2886-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/actionbar.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2708-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/content.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2627-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/navPane.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"3126-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/button.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"3835-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/table.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"3121-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/form.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1113-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/tab.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2768-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/header.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1517-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/shadow.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"718-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/modalDialog.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"863-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/calendar.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2243-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/css/modules/appointment.css HTTP/1.1Accept: text/css, */*Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1227-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/includes/ImageSwap.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2128-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/includes/popupWindow.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2361-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/browserSniff.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"15400-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/ieEmulation.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"6959-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/common.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"5576-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/globalEvents.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"3702-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/autocomplete.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"21234-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/lovHandlers.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"1695-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/getOptions.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"4948-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/dropShadow.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"2700-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/includes/simplecalendar.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"18756-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/javascript/paging.js HTTP/1.1Accept: application/javascript, */*;q=0.8Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"998-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/skins/gpa/logo.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Fri, 31 Aug 2018 19:11:15 GMTIf-None-Match: W/"12519-1535742675345"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/s.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"43-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/up.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"172-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/down.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"175-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/spacer.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"43-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: global traffic HTTP traffic detected: GET /express/images/poweredbynavis.gif HTTP/1.1Accept: image/png, image/svg+xml, image/jxr, image/*;q=0.8, */*;q=0.5Referer: http://webaccess.gaports.com/express/terms.jspAccept-Language: en-USUser-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; Trident/7.0; rv:11.0) like GeckoAccept-Encoding: gzip, deflateHost: webaccess.gaports.comIf-Modified-Since: Tue, 27 Apr 2021 18:21:58 GMTIf-None-Match: W/"840-1619547718000"Connection: Keep-AliveCookie: JSESSIONID=AA9D0CAAC5FFF61AF33033B2BAE8AC30.tomcat3
Source: unknown DNS traffic detected: queries for: webaccess.gaports.com
Source: global[1].js.2.dr String found in binary or memory: http://albertino.eti.br
Source: jquery.matchHeight-min[1].js.2.dr String found in binary or memory: http://brm.io/jquery-match-height/
Source: popover[1].js.2.dr String found in binary or memory: http://code.jquery.com/jquery-1.6.4.js
Source: animate[1].css.2.dr String found in binary or memory: http://daneden.me/animate
Source: allIntegrations[1].js.2.dr String found in binary or memory: http://developers.hubspot.com/docs/methods/tracking_code_api/tracking_code_overview
Source: global[1].css.2.dr String found in binary or memory: http://getbootstrap.com)
Source: global[1].js.2.dr String found in binary or memory: http://getbootstrap.com/javascript/#modals
Source: global[1].js.2.dr String found in binary or memory: http://github.com/kenwheeler/slick
Source: global[1].js.2.dr String found in binary or memory: http://github.com/kenwheeler/slick/issues
Source: global[1].js.2.dr String found in binary or memory: http://james.padolsey.com)
Source: global[1].js.2.dr String found in binary or memory: http://jfbastien.github.io/papers/Math.signbit.html
Source: global[1].js.2.dr String found in binary or memory: http://jquery.org/license
Source: global[1].js.2.dr String found in binary or memory: http://jsperf.lnkit.com/fast-apply/5
Source: global[1].js.2.dr String found in binary or memory: http://kenwheeler.github.io
Source: global[1].js.2.dr String found in binary or memory: http://kenwheeler.github.io/slick
Source: popover[1].js.2.dr String found in binary or memory: http://mjijackson.com/2008/02/rgb-to-hsl-and-rgb-to-hsv-color-model-conversion-algorithms-in-javascr
Source: animate[1].css.2.dr String found in binary or memory: http://opensource.org/licenses/MIT
Source: simplecalendar[1].js.2.dr String found in binary or memory: http://tech.irt.org/articles/js052/index.htm
Source: browserSniff[1].js.2.dr String found in binary or memory: http://tim.dobbelaere.com)
Source: global[1].js.2.dr String found in binary or memory: http://vodkabears.github.io/vide/
Source: index[1].htm.2.dr String found in binary or memory: http://webaccess.gaports.com
Source: ~DF28BA84602B075A4F.TMP.1.dr String found in binary or memory: http://webaccess.gaports.com/express/about.jsp
Source: ~DF28BA84602B075A4F.TMP.1.dr String found in binary or memory: http://webaccess.gaports.com/express/about.jspess/index.jsp
Source: ~DF28BA84602B075A4F.TMP.1.dr String found in binary or memory: http://webaccess.gaports.com/express/index.jsp
Source: ~DF28BA84602B075A4F.TMP.1.dr String found in binary or memory: http://webaccess.gaports.com/express/index.jspy.jsp?Facility=GCT~
Source: index[1].htm.2.dr String found in binary or memory: http://webaccess.gaports.com/express/secure/Today.jsp?Facility=
Source: ~DF28BA84602B075A4F.TMP.1.dr String found in binary or memory: http://webaccess.gaports.com/express/secure/today.jsp?Facility=GCT
Source: ~DF28BA84602B075A4F.TMP.1.dr String found in binary or memory: http://webaccess.gaports.com/express/showNotice.do?report_type=1&GKEY=112
Source: ~DF28BA84602B075A4F.TMP.1.dr String found in binary or memory: http://webaccess.gaports.com/express/terms.jsp
Source: ~DF28BA84602B075A4F.TMP.1.dr String found in binary or memory: http://webaccess.gaports.com/express/terms.jspdo?report_type=1&GKEY=112~
Source: imagestore.dat.2.dr String found in binary or memory: http://webaccess.gaports.com/favicon.ico~
Source: ~DF28BA84602B075A4F.TMP.1.dr String found in binary or memory: http://webaccess.gaports.com/xpress/secure/today.jsp?Facility=GCT
Source: ~DF28BA84602B075A4F.TMP.1.dr String found in binary or memory: http://webaccess.gaports.com/xpress/secure/today.jsp?Facility=GCT.com/express/secure/today.jsp?Facil
Source: KFOlCnqEu92Fr1MmYUtfBBc9[1].ttf.2.dr, KFOmCnqEu92Fr1Mu4mxP[1].ttf.2.dr String found in binary or memory: http://www.apache.org/licenses/LICENSE-2.0
Source: browserSniff[1].js.2.dr String found in binary or memory: http://www.it97.de/javascript/js_tutorial/bstat/browseraol.html
Source: browserSniff[1].js.2.dr String found in binary or memory: http://www.it97.de/javascript/js_tutorial/bstat/navobj.html
Source: index[1].htm.2.dr String found in binary or memory: http://www.navis.com
Source: about[1].htm.2.dr String found in binary or memory: http://www.navis.com/
Source: about[1].htm.2.dr String found in binary or memory: http://www.navis.com/pr_webaccess.jsp
Source: a738e861168318774f614d60b63625f12599f189[1].dat.2.dr String found in binary or memory: http://www.videolan.org/x264.html
Source: gtm[1].js.2.dr String found in binary or memory: https://adservice.google.com/pagead/regclk
Source: index[1].htm.2.dr String found in binary or memory: https://ajax.googleapis.com/ajax/libs/jquery/3.2.1/jquery.min.js
Source: analytics[1].js.2.dr String found in binary or memory: https://ampcid.google.com/v1/publisher:getClientId
Source: launch-55dc93f37385.min[1].js.2.dr String found in binary or memory: https://assets.adobedtm.com/175f7caa2b90/53d2855b9b40/launch-55dc93f37385.js
Source: global[1].js.2.dr String found in binary or memory: https://bugs.chromium.org/p/chromium/issues/detail?id=378607
Source: global[1].js.2.dr String found in binary or memory: https://bugs.chromium.org/p/chromium/issues/detail?id=449857
Source: global[1].js.2.dr String found in binary or memory: https://bugs.chromium.org/p/chromium/issues/detail?id=470258
Source: global[1].js.2.dr String found in binary or memory: https://bugs.chromium.org/p/chromium/issues/detail?id=589347
Source: global[1].js.2.dr String found in binary or memory: https://bugs.jquery.com/ticket/12359
Source: global[1].js.2.dr String found in binary or memory: https://bugs.jquery.com/ticket/13378
Source: global[1].js.2.dr String found in binary or memory: https://bugs.webkit.org/show_bug.cgi?id=136851
Source: global[1].js.2.dr String found in binary or memory: https://bugs.webkit.org/show_bug.cgi?id=137337
Source: global[1].js.2.dr String found in binary or memory: https://bugs.webkit.org/show_bug.cgi?id=29084
Source: global[1].js.2.dr String found in binary or memory: https://bugzilla.mozilla.org/show_bug.cgi?id=687787
Source: popover[1].js.2.dr String found in binary or memory: https://caniuse.com/#search=webp
Source: gtm[1].js.2.dr String found in binary or memory: https://cct.google/taggy/agent.js
Source: global[1].js.2.dr String found in binary or memory: https://code.google.com/p/v8/issues/detail?id=3509
Source: global[1].js.2.dr String found in binary or memory: https://code.google.com/p/v8/issues/detail?id=687
Source: global[1].js.2.dr String found in binary or memory: https://developer.mozilla.org/en-US/docs/CSS/display
Source: recaptcha__en[1].js.2.dr String found in binary or memory: https://developers.google.com/recaptcha/docs/faq#are-there-any-qps-or-daily-limits-on-my-use-of-reca
Source: recaptcha__en[1].js.2.dr String found in binary or memory: https://developers.google.com/recaptcha/docs/faq#localhost_support
Source: recaptcha__en[1].js.2.dr String found in binary or memory: https://developers.google.com/recaptcha/docs/faq#my-computer-or-network-may-be-sending-automated-que
Source: global[1].js.2.dr String found in binary or memory: https://drafts.csswg.org/cssom/#common-serializing-idioms
Source: global[1].js.2.dr String found in binary or memory: https://drafts.csswg.org/cssom/#resolved-values
Source: css[1].css.2.dr String found in binary or memory: https://fonts.gstatic.com/s/montserrat/v15/JTURjIg1_i6t8kCHKm45_ZpC3gnD-A.woff)
Source: css[1].css.2.dr String found in binary or memory: https://fonts.gstatic.com/s/montserrat/v15/JTURjIg1_i6t8kCHKm45_bZF3gnD-A.woff)
Source: css[1].css.2.dr String found in binary or memory: https://fonts.gstatic.com/s/montserrat/v15/JTURjIg1_i6t8kCHKm45_cJD3gnD-A.woff)
Source: css[1].css.2.dr String found in binary or memory: https://fonts.gstatic.com/s/montserrat/v15/JTURjIg1_i6t8kCHKm45_dJE3gnD-A.woff)
Source: css[1].css.2.dr String found in binary or memory: https://fonts.gstatic.com/s/montserrat/v15/JTUSjIg1_i6t8kCHKm459WlhzQ.woff)
Source: css[1].css.2.dr String found in binary or memory: https://fonts.gstatic.com/s/opensans/v20/mem8YaGs126MiZpBA-UFVZ0d.woff)
Source: global[1].js.2.dr String found in binary or memory: https://gist.github.com/BrendanEich/4294d5c212a6d2254703
Source: global[1].js.2.dr String found in binary or memory: https://github.com/Albejr/jquery-albe-timeline
Source: global[1].js.2.dr String found in binary or memory: https://github.com/DavidBruant/Map-Set.prototype.toJSON
Source: global[1].js.2.dr String found in binary or memory: https://github.com/amitguptagwl
Source: global[1].js.2.dr String found in binary or memory: https://github.com/benjamingr/RexExp.escape
Source: global[1].js.2.dr String found in binary or memory: https://github.com/eslint/eslint/issues/3229
Source: global[1].js.2.dr String found in binary or memory: https://github.com/eslint/eslint/issues/6125
Source: global[1].js.2.dr String found in binary or memory: https://github.com/facebook/regenerator/issues/274
Source: global[1].js.2.dr String found in binary or memory: https://github.com/feross/ieee754
Source: global[1].css.2.dr String found in binary or memory: https://github.com/h5bp/html5-boilerplate/blob/master/src/css/main.css
Source: global[1].js.2.dr String found in binary or memory: https://github.com/jquery/jquery/pull/557)
Source: global[1].js.2.dr String found in binary or memory: https://github.com/jquery/sizzle/pull/225
Source: global[1].js.2.dr String found in binary or memory: https://github.com/jrburke/requirejs/wiki/Updating-existing-libraries#wiki-anon
Source: global[1].js.2.dr String found in binary or memory: https://github.com/ljharb/proposal-is-error
Source: global[1].js.2.dr String found in binary or memory: https://github.com/mathiasbynens/String.prototype.at
Source: popover[1].js.2.dr String found in binary or memory: https://github.com/moagrius/Color/blob/master/Color.js
Source: animate[1].css.2.dr String found in binary or memory: https://github.com/nickpettit/glide
Source: global[1].js.2.dr String found in binary or memory: https://github.com/rwaldron/tc39-notes/blob/master/es6/2014-09/sept-25.md#510-globalasap-for-enqueui
Source: picturefill.min[1].js.2.dr String found in binary or memory: https://github.com/scottjehl/picturefill/blob/master/Authors.txt;
Source: global[1].js.2.dr String found in binary or memory: https://github.com/sebmarkbage/ecmascript-string-left-right-trim
Source: global[1].js.2.dr String found in binary or memory: https://github.com/tc39/Array.prototype.includes
Source: global[1].js.2.dr String found in binary or memory: https://github.com/tc39/proposal-global
Source: global[1].js.2.dr String found in binary or memory: https://github.com/tc39/proposal-object-getownpropertydescriptors
Source: global[1].js.2.dr String found in binary or memory: https://github.com/tc39/proposal-object-values-entries
Source: global[1].js.2.dr String found in binary or memory: https://github.com/tc39/proposal-promise-finally
Source: global[1].js.2.dr String found in binary or memory: https://github.com/tc39/proposal-promise-try
Source: global[1].js.2.dr String found in binary or memory: https://github.com/tc39/proposal-string-pad-start-end
Source: global[1].js.2.dr, global[1].css.2.dr String found in binary or memory: https://github.com/twbs/bootstrap/blob/master/LICENSE)
Source: global[1].js.2.dr String found in binary or memory: https://github.com/websockets/ws/pull/645
Source: global[1].js.2.dr String found in binary or memory: https://github.com/zenparsing/es-observable
Source: global[1].js.2.dr String found in binary or memory: https://github.com/zloirock/core-js/issues/173
Source: global[1].js.2.dr String found in binary or memory: https://github.com/zloirock/core-js/issues/280
Source: global[1].js.2.dr String found in binary or memory: https://github.com/zloirock/core-js/issues/339
Source: global[1].js.2.dr String found in binary or memory: https://github.com/zloirock/core-js/issues/86#issuecomment-115759028
Source: global[1].js.2.dr String found in binary or memory: https://html.spec.whatwg.org/#strip-and-collapse-whitespace
Source: global[1].js.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/forms.html#category-listed
Source: global[1].js.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/forms.html#concept-fe-disabled
Source: global[1].js.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/forms.html#concept-option-disabled
Source: global[1].js.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/infrastructure.html#strip-and-collapse-whitespace
Source: global[1].js.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/scripting.html#selector-disabled
Source: global[1].js.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/scripting.html#selector-enabled
Source: global[1].js.2.dr String found in binary or memory: https://html.spec.whatwg.org/multipage/syntax.html#attributes-2
Source: global[1].js.2.dr String found in binary or memory: https://jquery.com/
Source: global[1].js.2.dr String found in binary or memory: https://jquery.org/license
Source: global[1].js.2.dr String found in binary or memory: https://jsperf.com/getall-vs-sizzle/2
Source: global[1].js.2.dr String found in binary or memory: https://jsperf.com/thor-indexof-vs-for/5
Source: gtm[1].js.2.dr String found in binary or memory: https://pagead2.googlesyndication.com
Source: global[1].js.2.dr String found in binary or memory: https://people.mozilla.org/~jorendorff/es6-draft.html#sec-generatorresume
Source: recaptcha__en[1].js.2.dr String found in binary or memory: https://play.google.com/log?format=json&hasfast=true
Source: global[1].js.2.dr String found in binary or memory: https://promisesaplus.com/#point-48
Source: global[1].js.2.dr String found in binary or memory: https://promisesaplus.com/#point-54
Source: global[1].js.2.dr String found in binary or memory: https://promisesaplus.com/#point-57
Source: global[1].js.2.dr String found in binary or memory: https://promisesaplus.com/#point-59
Source: global[1].js.2.dr String found in binary or memory: https://promisesaplus.com/#point-61
Source: global[1].js.2.dr String found in binary or memory: https://promisesaplus.com/#point-64
Source: global[1].js.2.dr String found in binary or memory: https://promisesaplus.com/#point-75
Source: global[1].js.2.dr String found in binary or memory: https://raw.github.com/facebook/regenerator/master/LICENSE
Source: global[1].js.2.dr String found in binary or memory: https://rwaldron.github.io/proposal-math-extensions/
Source: picturefill.min[1].js.2.dr String found in binary or memory: https://scottjehl.github.io/picturefill/
Source: global[1].js.2.dr String found in binary or memory: https://sizzlejs.com/
Source: analytics[1].js.2.dr String found in binary or memory: https://stats.g.doubleclick.net/j/collect
Source: recaptcha__en[1].js.2.dr String found in binary or memory: https://support.google.com/recaptcha
Source: recaptcha__en[1].js.2.dr String found in binary or memory: https://support.google.com/recaptcha#6262736
Source: recaptcha__en[1].js.2.dr String found in binary or memory: https://support.google.com/recaptcha/#6175971
Source: recaptcha__en[1].js.2.dr String found in binary or memory: https://support.google.com/recaptcha/?hl=en#6223828
Source: analytics[1].js.2.dr String found in binary or memory: https://tagassistant.google.com/
Source: global[1].js.2.dr String found in binary or memory: https://tc39.github.io/String.prototype.matchAll/
Source: global[1].js.2.dr String found in binary or memory: https://tc39.github.io/ecma262/#sec-toindex
Source: global[1].js.2.dr String found in binary or memory: https://tc39.github.io/proposal-flatMap/#sec-Array.prototype.flatMap
Source: global[1].js.2.dr String found in binary or memory: https://tc39.github.io/proposal-flatMap/#sec-Array.prototype.flatten
Source: global[1].js.2.dr String found in binary or memory: https://tc39.github.io/proposal-flatMap/#sec-FlattenIntoArray
Source: global[1].js.2.dr String found in binary or memory: https://tc39.github.io/proposal-setmap-offrom/
Source: global[1].js.2.dr String found in binary or memory: https://tc39.github.io/proposal-setmap-offrom/#sec-map.from
Source: global[1].js.2.dr String found in binary or memory: https://tc39.github.io/proposal-setmap-offrom/#sec-map.of
Source: global[1].js.2.dr String found in binary or memory: https://tc39.github.io/proposal-setmap-offrom/#sec-set.from
Source: global[1].js.2.dr String found in binary or memory: https://tc39.github.io/proposal-setmap-offrom/#sec-set.of
Source: global[1].js.2.dr String found in binary or memory: https://tc39.github.io/proposal-setmap-offrom/#sec-weakmap.from
Source: global[1].js.2.dr String found in binary or memory: https://tc39.github.io/proposal-setmap-offrom/#sec-weakmap.of
Source: global[1].js.2.dr String found in binary or memory: https://tc39.github.io/proposal-setmap-offrom/#sec-weakset.from
Source: global[1].js.2.dr String found in binary or memory: https://tc39.github.io/proposal-setmap-offrom/#sec-weakset.of
Source: global[1].js.2.dr String found in binary or memory: https://web.archive.org/web/20100324014747/http://blindsignals.com/index.php/2009/07/jquery-delay/
Source: global[1].js.2.dr String found in binary or memory: https://web.archive.org/web/20141116233347/http://fluidproject.org/blog/2008/01/09/getting-setting-a
Source: analytics[1].js.2.dr String found in binary or memory: https://www.google-analytics.com/debug/bootstrap
Source: analytics[1].js.2.dr String found in binary or memory: https://www.google-analytics.com/gtm/js?id=
Source: analytics[1].js.2.dr String found in binary or memory: https://www.google.%/ads/ga-audiences
Source: gtm[1].js.2.dr String found in binary or memory: https://www.google.com
Source: recaptcha__en[1].js.2.dr String found in binary or memory: https://www.google.com/log?format=json&hasfast=true
Source: today[1].htm.2.dr String found in binary or memory: https://www.google.com/recaptcha/api.js?render=6Ld9lQAVAAAAALmKl0QIzXSrPG6V5UJsGqktklj5
Source: recaptcha__en[1].js.2.dr, anchor[1].htm.2.dr String found in binary or memory: https://www.google.com/recaptcha/api2/
Source: ~DF28BA84602B075A4F.TMP.1.dr String found in binary or memory: https://www.google.com/recaptcha/api2/anchor?ar=1&k=6Ld9lQAVAAAAALmKl0QIzXSrPG6V5UJsGqktklj5&co=aHR0
Source: gtm[1].js.2.dr String found in binary or memory: https://www.googletagmanager.com/a?id=
Source: gtm[1].js.2.dr String found in binary or memory: https://www.googletagmanager.com/debug/bootstrap
Source: analytics[1].js.2.dr String found in binary or memory: https://www.googletagmanager.com/gtag/js?id=
Source: webworker[1].js.2.dr, anchor[1].htm.2.dr String found in binary or memory: https://www.gstatic.com/recaptcha/releases/sG0iO6gHcGdWJzjJjW9AY49S/recaptcha__en.js
Source: anchor[1].htm.2.dr String found in binary or memory: https://www.gstatic.com/recaptcha/releases/sG0iO6gHcGdWJzjJjW9AY49S/styles__ltr.css
Source: ~DF28BA84602B075A4F.TMP.1.dr String found in binary or memory: https://www.navis.com/
Source: ~DF28BA84602B075A4F.TMP.1.dr String found in binary or memory: https://www.navis.com/.com/express/terms.jspdo?report_type=1&GKEY=112
Source: imagestore.dat.2.dr String found in binary or memory: https://www.navis.com/favicon.png#
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49766
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49763
Source: unknown Network traffic detected: HTTP traffic on port 49779 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49762
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49781
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49780
Source: unknown Network traffic detected: HTTP traffic on port 49748 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49766 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49762 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49781 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49770 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49797 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49751 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49778 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49753 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49774 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49779
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49778
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49754
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49798
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49753
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49775
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49797
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49752
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49774
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49751
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49750
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49771
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49770
Source: unknown Network traffic detected: HTTP traffic on port 49767 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49749 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49763 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49780 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49752 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49775 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49750 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49798 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49749
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49748
Source: unknown Network traffic detected: HTTP traffic on port 49754 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49767
Source: unknown Network traffic detected: HTTP traffic on port 49771 -> 443
Source: unknown HTTPS traffic detected: 104.16.19.94:443 -> 192.168.2.6:49748 version: TLS 1.2
Source: unknown HTTPS traffic detected: 104.16.19.94:443 -> 192.168.2.6:49749 version: TLS 1.2
Source: unknown HTTPS traffic detected: 104.16.19.94:443 -> 192.168.2.6:49750 version: TLS 1.2
Source: unknown HTTPS traffic detected: 104.16.19.94:443 -> 192.168.2.6:49751 version: TLS 1.2
Source: unknown HTTPS traffic detected: 104.16.19.94:443 -> 192.168.2.6:49752 version: TLS 1.2
Source: unknown HTTPS traffic detected: 35.201.125.192:443 -> 192.168.2.6:49753 version: TLS 1.2
Source: unknown HTTPS traffic detected: 35.201.125.192:443 -> 192.168.2.6:49754 version: TLS 1.2
Source: unknown HTTPS traffic detected: 35.190.5.192:443 -> 192.168.2.6:49762 version: TLS 1.2
Source: unknown HTTPS traffic detected: 35.190.5.192:443 -> 192.168.2.6:49763 version: TLS 1.2
Source: unknown HTTPS traffic detected: 152.199.21.175:443 -> 192.168.2.6:49767 version: TLS 1.2
Source: unknown HTTPS traffic detected: 152.199.21.175:443 -> 192.168.2.6:49766 version: TLS 1.2
Source: unknown HTTPS traffic detected: 34.95.105.148:443 -> 192.168.2.6:49771 version: TLS 1.2
Source: unknown HTTPS traffic detected: 34.95.105.148:443 -> 192.168.2.6:49770 version: TLS 1.2
Source: unknown HTTPS traffic detected: 142.251.5.154:443 -> 192.168.2.6:49774 version: TLS 1.2
Source: unknown HTTPS traffic detected: 142.251.5.154:443 -> 192.168.2.6:49775 version: TLS 1.2
Source: unknown HTTPS traffic detected: 172.217.19.99:443 -> 192.168.2.6:49778 version: TLS 1.2
Source: unknown HTTPS traffic detected: 172.217.19.99:443 -> 192.168.2.6:49779 version: TLS 1.2
Source: unknown HTTPS traffic detected: 54.86.117.43:443 -> 192.168.2.6:49780 version: TLS 1.2
Source: unknown HTTPS traffic detected: 54.86.117.43:443 -> 192.168.2.6:49780 version: TLS 1.2
Source: unknown HTTPS traffic detected: 52.6.75.166:443 -> 192.168.2.6:49781 version: TLS 1.2
Source: unknown HTTPS traffic detected: 52.0.129.236:443 -> 192.168.2.6:49797 version: TLS 1.2
Source: unknown HTTPS traffic detected: 52.0.129.236:443 -> 192.168.2.6:49798 version: TLS 1.2
Source: classification engine Classification label: mal48.win@3/139@17/11
Source: C:\Program Files\internet explorer\iexplore.exe File created: C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{CF7C2D6C-C4C1-11EB-90E5-ECF4BB2D2496}.dat Jump to behavior
Source: C:\Program Files\internet explorer\iexplore.exe File created: C:\Users\user\AppData\Local\Temp\~DF9C1055103331DFD4.TMP Jump to behavior
Source: C:\Program Files\internet explorer\iexplore.exe File read: C:\Users\desktop.ini Jump to behavior
Source: unknown Process created: C:\Program Files\internet explorer\iexplore.exe 'C:\Program Files\Internet Explorer\iexplore.exe' -Embedding
Source: C:\Program Files\internet explorer\iexplore.exe Process created: C:\Program Files (x86)\Internet Explorer\iexplore.exe 'C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE' SCODEF:5116 CREDAT:17410 /prefetch:2
Source: C:\Program Files\internet explorer\iexplore.exe Process created: C:\Program Files (x86)\Internet Explorer\iexplore.exe 'C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE' SCODEF:5116 CREDAT:17410 /prefetch:2 Jump to behavior
Source: C:\Program Files (x86)\Internet Explorer\iexplore.exe File opened: C:\Windows\SysWOW64\Macromed\Flash\ss.cfg Jump to behavior
Source: C:\Program Files\internet explorer\iexplore.exe Automated click: Accept
Source: C:\Program Files\internet explorer\iexplore.exe Automated click: Accept
Source: C:\Program Files\internet explorer\iexplore.exe Automated click: Accept
Source: C:\Program Files\internet explorer\iexplore.exe Automated click: Accept
Source: C:\Program Files\internet explorer\iexplore.exe Automated click: Accept
Source: C:\Program Files\internet explorer\iexplore.exe Automated click: Accept
Source: Window Recorder Window detected: More than 3 window changes detected
Source: C:\Program Files (x86)\Internet Explorer\iexplore.exe File opened: C:\Program Files (x86)\Java\jre1.8.0_211\bin\msvcr100.dll Jump to behavior
  • No. of IPs < 25%
  • 25% < No. of IPs < 50%
  • 50% < No. of IPs < 75%
  • 75% < No. of IPs