Windows Analysis Report
http://www.infoleadzsalez.com

Overview

General Information

Sample URL: http://www.infoleadzsalez.com
Analysis ID: 1523602
Infos:

Detection

Score: 1
Range: 0 - 100
Whitelisted: false
Confidence: 100%

Signatures

Found iframes
HTML title does not match URL
Stores files to the Windows start menu directory

Classification

Source: https://businessemail.rediff.com/domain?sc_cid=pages-uc-domain-register&ref=domain-registration-india HTTP Parser: Iframe src: //metric.rediff.com/blank.html?1727807659875
Source: https://businessemail.rediff.com/domain?sc_cid=pages-uc-domain-register&ref=domain-registration-india HTTP Parser: Iframe src: https://td.doubleclick.net/td/ga/rul?tid=G-0JHQDSS37Y&gacid=245393721.1727807661&gtm=45je49u0v9135786248za200&dma=0&gcd=13l3l3l3l1l1&npa=0&pscdl=noapi&aip=1&fledge=1&frm=0&tag_exp=101671035~101686685~101747727&z=1228848990
Source: https://businessemail.rediff.com/domain?sc_cid=pages-uc-domain-register&ref=domain-registration-india HTTP Parser: Iframe src: //metric.rediff.com/blank.html?1727807659875
Source: https://businessemail.rediff.com/domain?sc_cid=pages-uc-domain-register&ref=domain-registration-india HTTP Parser: Iframe src: https://td.doubleclick.net/td/ga/rul?tid=G-0JHQDSS37Y&gacid=245393721.1727807661&gtm=45je49u0v9135786248za200&dma=0&gcd=13l3l3l3l1l1&npa=0&pscdl=noapi&aip=1&fledge=1&frm=0&tag_exp=101671035~101686685~101747727&z=1228848990
Source: https://businessemail.rediff.com/domain?sc_cid=pages-uc-domain-register&ref=domain-registration-india HTTP Parser: Iframe src: //metric.rediff.com/blank.html?1727807659875
Source: https://businessemail.rediff.com/domain?sc_cid=pages-uc-domain-register&ref=domain-registration-india HTTP Parser: Iframe src: https://td.doubleclick.net/td/ga/rul?tid=G-0JHQDSS37Y&gacid=245393721.1727807661&gtm=45je49u0v9135786248za200&dma=0&gcd=13l3l3l3l1l1&npa=0&pscdl=noapi&aip=1&fledge=1&frm=0&tag_exp=101671035~101686685~101747727&z=1228848990
Source: https://businessemail.rediff.com/contact-us?sc_cid=pages-uc-websites&ref=get-a-free-consultation HTTP Parser: Iframe src: //metric.rediff.com/blank.html?1727807695235
Source: https://businessemail.rediff.com/contact-us?sc_cid=pages-uc-websites&ref=get-a-free-consultation HTTP Parser: Iframe src: //metric.rediff.com/blank.html?1727807695235
Source: https://businessemail.rediff.com/contact-us?sc_cid=pages-uc-websites&ref=get-a-free-consultation HTTP Parser: Iframe src: //metric.rediff.com/blank.html?1727807695235
Source: https://businessemail.rediff.com/domain?sc_cid=pages-uc-domain-register&ref=domain-registration-india HTTP Parser: Title: Buy .com, .org, .in domains on Rediffmail for Work does not match URL
Source: https://businessemail.rediff.com/contact-us?sc_cid=pages-uc-websites&ref=get-a-free-consultation HTTP Parser: Title: Contact Us - Rediffmail For Work does not match URL
Source: http://www.infoleadzsalez.com/ HTTP Parser: No favicon
Source: https://businessemail.rediff.com/?sc_cid=pages-uc-rediffmailenterprises HTTP Parser: No favicon
Source: https://businessemail.rediff.com/domain?sc_cid=pages-uc-domain-register&ref=domain-registration-india HTTP Parser: No <meta name="author".. found
Source: https://businessemail.rediff.com/domain?sc_cid=pages-uc-domain-register&ref=domain-registration-india HTTP Parser: No <meta name="author".. found
Source: https://businessemail.rediff.com/domain?sc_cid=pages-uc-domain-register&ref=domain-registration-india HTTP Parser: No <meta name="author".. found
Source: https://businessemail.rediff.com/contact-us?sc_cid=pages-uc-websites&ref=get-a-free-consultation HTTP Parser: No <meta name="author".. found
Source: https://businessemail.rediff.com/contact-us?sc_cid=pages-uc-websites&ref=get-a-free-consultation HTTP Parser: No <meta name="author".. found
Source: https://businessemail.rediff.com/contact-us?sc_cid=pages-uc-websites&ref=get-a-free-consultation HTTP Parser: No <meta name="author".. found
Source: https://businessemail.rediff.com/domain?sc_cid=pages-uc-domain-register&ref=domain-registration-india HTTP Parser: No <meta name="copyright".. found
Source: https://businessemail.rediff.com/domain?sc_cid=pages-uc-domain-register&ref=domain-registration-india HTTP Parser: No <meta name="copyright".. found
Source: https://businessemail.rediff.com/domain?sc_cid=pages-uc-domain-register&ref=domain-registration-india HTTP Parser: No <meta name="copyright".. found
Source: https://businessemail.rediff.com/contact-us?sc_cid=pages-uc-websites&ref=get-a-free-consultation HTTP Parser: No <meta name="copyright".. found
Source: https://businessemail.rediff.com/contact-us?sc_cid=pages-uc-websites&ref=get-a-free-consultation HTTP Parser: No <meta name="copyright".. found
Source: https://businessemail.rediff.com/contact-us?sc_cid=pages-uc-websites&ref=get-a-free-consultation HTTP Parser: No <meta name="copyright".. found
Source: unknown HTTPS traffic detected: 184.28.90.27:443 -> 192.168.2.5:49721 version: TLS 1.2
Source: unknown HTTPS traffic detected: 184.28.90.27:443 -> 192.168.2.5:49722 version: TLS 1.2
Source: unknown TCP traffic detected without corresponding DNS query: 23.1.237.91
Source: unknown TCP traffic detected without corresponding DNS query: 23.1.237.91
Source: unknown TCP traffic detected without corresponding DNS query: 23.1.237.91
Source: unknown TCP traffic detected without corresponding DNS query: 23.1.237.91
Source: unknown TCP traffic detected without corresponding DNS query: 23.1.237.91
Source: unknown TCP traffic detected without corresponding DNS query: 23.1.237.91
Source: unknown TCP traffic detected without corresponding DNS query: 23.1.237.91
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown TCP traffic detected without corresponding DNS query: 184.28.90.27
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknown UDP traffic detected without corresponding DNS query: 1.1.1.1
Source: global traffic HTTP traffic detected: HTTP/1.1 200 OKDate: Tue, 01 Oct 2024 18:34:01 GMTServer: ApacheVary: Accept-Encoding,User-AgentContent-Encoding: gzipContent-Length: 733Keep-Alive: timeout=15, max=100Connection: Keep-AliveContent-Type: text/htmlData Raw: 1f 8b 08 00 00 00 00 00 00 03 bd 55 5d 6f d3 30 14 7d df af b8 64 12 82 87 c4 ed b4 0f 94 26 41 62 ec 7d 1a 5f 8f c8 89 6f 12 33 c7 8e 6c a7 5d 19 fb ef 5c 3b 5d d9 98 84 98 90 68 a5 c4 be be f5 39 e7 9e 6b b7 e8 fd a0 aa 83 a2 47 2e e8 35 a0 e7 a0 f9 80 65 62 4d 6d bc 4b a0 31 da a3 f6 65 a2 8d d4 02 6f 12 60 94 e8 a5 57 58 7d 90 1e e1 13 45 2d 9c 1b ed bc 9d 1a 2f 8d 2e d8 bc 7c 50 38 bf 55 08 7e 3b d2 86 1e 6f 3c 6b 9c 4b aa ac 35 c6 a3 bd dd 48 e1 fb fc ec ec cd 78 b3 6a 09 26 6d f9 20 d5 36 e7 56 72 35 47 9c fc 8e f9 72 49 09 03 b7 9d d4 f9 d9 82 c6 23 17 42 ea 2e 5f 86 49 6d 2c 11 48 bd 19 73 67 94 14 40 d9 70 28 4e c2 77 d5 18 65 6c 7e 78 7a 7a ba 52 52 63 da a3 ec 7a 9f 2f b3 13 1c 56 77 59 bb 3c e2 f6 f6 8f d8 47 04 71 57 b0 a8 84 14 b1 5d a5 6a 23 b6 50 77 71 ff f2 b0 8d 1f 0a 37 54 2a b4 a1 40 bc 26 e5 51 61 79 bc 58 40 83 4a ed 68 97 f3 cc 8d bc 99 67 b3 82 10 56 dc b9 32 89 ac 92 b0 89 ad 0a 2f 60 26 5d 26 cb c5 22 a9 a8 b8 22 3c ec 7e bd 2a e4 d0 81 b3 4d 99 30 26 87 8d b1 4a 64 16 85 6c db ac 31 03 d3 b8 19 79 87 6e 0e b1 51 de 30 32 d5 65 9d 6c 93 5f d8 5c c9 4e 97 36 20 55 45 5d 7d ec a5 03 17 fc a5 f7 14 2d 6e 1e 58 9c 15 b5 ad 2e 15 72 87 b0 96 94 07 bc e3 52 83 37 d0 f4 d8 5c 83 ef 11 9c e7 7e 72 59 c1 ea 0a 0a 59 f9 9e eb 6b f7 a2 60 92 00 2c b5 d1 ee f9 6c f6 91 ce 6f f4 77 95 3e 3e ba af d6 f2 24 b8 14 01 76 a6 14 38 54 05 87 de 62 5b 26 df f8 9a bb c6 ca d1 e7 a4 d4 1b bb cd 3a f3 2a 5d be 4e aa 73 25 49 40 8f 16 0b c6 ab 20 a9 33 50 f3 20 ca 44 5d a3 c5 b5 34 93 83 40 8c e4 85 7d d9 3d 48 b0 e7 60 e7 0f 8b 5d 40 03 21 d7 7b 73 63 ef 27 d5 a5 d9 10 82 80 7a 0b 7b 52 bd f7 a3 cb 19 ab 27 47 cd ea 1c 0e 5c aa 87 c5 78 eb 9a af 8d 14 65 ac 48 3a 35 e9 bc 16 d2 22 fc 68 a5 43 3a 61 57 fb 30 5c ec e3 41 cd 5c 91 cf d1 b1 ff 08 0b 5c 0b e8 d0 43 8d ce 83 40 ae 1c 18 fd 0c 06 c2 50 44 13 6e 47 66 59 1e 5a 30 a5 eb 48 f2 27 d4 1e 65 86 42 bf 8f 01 b8 7a f0 d3 40 e9 a5 ae dd b8 82 1f 30 0f fe 9e 4a 6f 36 74 d9 a4 f5 b4 4d 69 3a 72 bd 4d 63 4e 4a 9d fa 84 cd a3 5d 92 ea dd 6e 0a 17 61 fe 4f 34 a8 9a 29 4f 5b 8b 98 86 83 39 29 1f a5 3d 61 b0 c1 3a 1c 63 72 e7 cb 6e 14 fb 80 51 4b 86 0e dd 5f 58 2c dc 68 f1 82 0b ff 08 3f 01 99 cf c9 96 18 06 00 00 Data Ascii: U]o0}d&Ab}_o3l]\;]h9kG.5ebMmK1eo`WX}E-/.|P8U~;o<kK5Hxj&m 6Vr5GrI#B._Im,Hsg@p(Nwel~xzzRRcz/VwY<GqW]j#Pwq7T*@&QayX@JhgV2/`&]&""<~*M0&Jdl1ynQ02el_\N6 UE]}-nX.rR7\~rYYk`,low>>$v8Tb[&:*]Ns%I@ 3P D]4@}=H`]@!{sc'z{R'
Source: global traffic HTTP traffic detected: HTTP/1.1 200 OKDate: Tue, 01 Oct 2024 18:34:02 GMTServer: ApacheVary: Accept-Encoding,User-AgentContent-Encoding: gzipContent-Length: 733Connection: closeContent-Type: text/htmlData Raw: 1f 8b 08 00 00 00 00 00 00 03 bd 55 5d 6f d3 30 14 7d df af b8 64 12 82 87 c4 ed b4 0f 94 26 41 62 ec 7d 1a 5f 8f c8 89 6f 12 33 c7 8e 6c a7 5d 19 fb ef 5c 3b 5d d9 98 84 98 90 68 a5 c4 be be f5 39 e7 9e 6b b7 e8 fd a0 aa 83 a2 47 2e e8 35 a0 e7 a0 f9 80 65 62 4d 6d bc 4b a0 31 da a3 f6 65 a2 8d d4 02 6f 12 60 94 e8 a5 57 58 7d 90 1e e1 13 45 2d 9c 1b ed bc 9d 1a 2f 8d 2e d8 bc 7c 50 38 bf 55 08 7e 3b d2 86 1e 6f 3c 6b 9c 4b aa ac 35 c6 a3 bd dd 48 e1 fb fc ec ec cd 78 b3 6a 09 26 6d f9 20 d5 36 e7 56 72 35 47 9c fc 8e f9 72 49 09 03 b7 9d d4 f9 d9 82 c6 23 17 42 ea 2e 5f 86 49 6d 2c 11 48 bd 19 73 67 94 14 40 d9 70 28 4e c2 77 d5 18 65 6c 7e 78 7a 7a ba 52 52 63 da a3 ec 7a 9f 2f b3 13 1c 56 77 59 bb 3c e2 f6 f6 8f d8 47 04 71 57 b0 a8 84 14 b1 5d a5 6a 23 b6 50 77 71 ff f2 b0 8d 1f 0a 37 54 2a b4 a1 40 bc 26 e5 51 61 79 bc 58 40 83 4a ed 68 97 f3 cc 8d bc 99 67 b3 82 10 56 dc b9 32 89 ac 92 b0 89 ad 0a 2f 60 26 5d 26 cb c5 22 a9 a8 b8 22 3c ec 7e bd 2a e4 d0 81 b3 4d 99 30 26 87 8d b1 4a 64 16 85 6c db ac 31 03 d3 b8 19 79 87 6e 0e b1 51 de 30 32 d5 65 9d 6c 93 5f d8 5c c9 4e 97 36 20 55 45 5d 7d ec a5 03 17 fc a5 f7 14 2d 6e 1e 58 9c 15 b5 ad 2e 15 72 87 b0 96 94 07 bc e3 52 83 37 d0 f4 d8 5c 83 ef 11 9c e7 7e 72 59 c1 ea 0a 0a 59 f9 9e eb 6b f7 a2 60 92 00 2c b5 d1 ee f9 6c f6 91 ce 6f f4 77 95 3e 3e ba af d6 f2 24 b8 14 01 76 a6 14 38 54 05 87 de 62 5b 26 df f8 9a bb c6 ca d1 e7 a4 d4 1b bb cd 3a f3 2a 5d be 4e aa 73 25 49 40 8f 16 0b c6 ab 20 a9 33 50 f3 20 ca 44 5d a3 c5 b5 34 93 83 40 8c e4 85 7d d9 3d 48 b0 e7 60 e7 0f 8b 5d 40 03 21 d7 7b 73 63 ef 27 d5 a5 d9 10 82 80 7a 0b 7b 52 bd f7 a3 cb 19 ab 27 47 cd ea 1c 0e 5c aa 87 c5 78 eb 9a af 8d 14 65 ac 48 3a 35 e9 bc 16 d2 22 fc 68 a5 43 3a 61 57 fb 30 5c ec e3 41 cd 5c 91 cf d1 b1 ff 08 0b 5c 0b e8 d0 43 8d ce 83 40 ae 1c 18 fd 0c 06 c2 50 44 13 6e 47 66 59 1e 5a 30 a5 eb 48 f2 27 d4 1e 65 86 42 bf 8f 01 b8 7a f0 d3 40 e9 a5 ae dd b8 82 1f 30 0f fe 9e 4a 6f 36 74 d9 a4 f5 b4 4d 69 3a 72 bd 4d 63 4e 4a 9d fa 84 cd a3 5d 92 ea dd 6e 0a 17 61 fe 4f 34 a8 9a 29 4f 5b 8b 98 86 83 39 29 1f a5 3d 61 b0 c1 3a 1c 63 72 e7 cb 6e 14 fb 80 51 4b 86 0e dd 5f 58 2c dc 68 f1 82 0b ff 08 3f 01 99 cf c9 96 18 06 00 00 Data Ascii: U]o0}d&Ab}_o3l]\;]h9kG.5ebMmK1eo`WX}E-/.|P8U~;o<kK5Hxj&m 6Vr5GrI#B._Im,Hsg@p(Nwel~xzzRRcz/VwY<GqW]j#Pwq7T*@&QayX@JhgV2/`&]&""<~*M0&Jdl1ynQ02el_\N6 UE]}-nX.rR7\~rYYk`,low>>$v8Tb[&:*]Ns%I@ 3P D]4@}=H`]@!{sc'z{R'G\xeH:5"hC:aW0\A
Source: global traffic HTTP traffic detected: HTTP/1.1 200 OKDate: Tue, 01 Oct 2024 18:34:04 GMTServer: ApacheVary: Accept-Encoding,User-AgentContent-Encoding: gzipContent-Length: 733Keep-Alive: timeout=15, max=100Connection: Keep-AliveContent-Type: text/htmlData Raw: 1f 8b 08 00 00 00 00 00 00 03 bd 55 5d 6f d3 30 14 7d df af b8 64 12 82 87 c4 ed b4 0f 94 26 41 62 ec 7d 1a 5f 8f c8 89 6f 12 33 c7 8e 6c a7 5d 19 fb ef 5c 3b 5d d9 98 84 98 90 68 a5 c4 be be f5 39 e7 9e 6b b7 e8 fd a0 aa 83 a2 47 2e e8 35 a0 e7 a0 f9 80 65 62 4d 6d bc 4b a0 31 da a3 f6 65 a2 8d d4 02 6f 12 60 94 e8 a5 57 58 7d 90 1e e1 13 45 2d 9c 1b ed bc 9d 1a 2f 8d 2e d8 bc 7c 50 38 bf 55 08 7e 3b d2 86 1e 6f 3c 6b 9c 4b aa ac 35 c6 a3 bd dd 48 e1 fb fc ec ec cd 78 b3 6a 09 26 6d f9 20 d5 36 e7 56 72 35 47 9c fc 8e f9 72 49 09 03 b7 9d d4 f9 d9 82 c6 23 17 42 ea 2e 5f 86 49 6d 2c 11 48 bd 19 73 67 94 14 40 d9 70 28 4e c2 77 d5 18 65 6c 7e 78 7a 7a ba 52 52 63 da a3 ec 7a 9f 2f b3 13 1c 56 77 59 bb 3c e2 f6 f6 8f d8 47 04 71 57 b0 a8 84 14 b1 5d a5 6a 23 b6 50 77 71 ff f2 b0 8d 1f 0a 37 54 2a b4 a1 40 bc 26 e5 51 61 79 bc 58 40 83 4a ed 68 97 f3 cc 8d bc 99 67 b3 82 10 56 dc b9 32 89 ac 92 b0 89 ad 0a 2f 60 26 5d 26 cb c5 22 a9 a8 b8 22 3c ec 7e bd 2a e4 d0 81 b3 4d 99 30 26 87 8d b1 4a 64 16 85 6c db ac 31 03 d3 b8 19 79 87 6e 0e b1 51 de 30 32 d5 65 9d 6c 93 5f d8 5c c9 4e 97 36 20 55 45 5d 7d ec a5 03 17 fc a5 f7 14 2d 6e 1e 58 9c 15 b5 ad 2e 15 72 87 b0 96 94 07 bc e3 52 83 37 d0 f4 d8 5c 83 ef 11 9c e7 7e 72 59 c1 ea 0a 0a 59 f9 9e eb 6b f7 a2 60 92 00 2c b5 d1 ee f9 6c f6 91 ce 6f f4 77 95 3e 3e ba af d6 f2 24 b8 14 01 76 a6 14 38 54 05 87 de 62 5b 26 df f8 9a bb c6 ca d1 e7 a4 d4 1b bb cd 3a f3 2a 5d be 4e aa 73 25 49 40 8f 16 0b c6 ab 20 a9 33 50 f3 20 ca 44 5d a3 c5 b5 34 93 83 40 8c e4 85 7d d9 3d 48 b0 e7 60 e7 0f 8b 5d 40 03 21 d7 7b 73 63 ef 27 d5 a5 d9 10 82 80 7a 0b 7b 52 bd f7 a3 cb 19 ab 27 47 cd ea 1c 0e 5c aa 87 c5 78 eb 9a af 8d 14 65 ac 48 3a 35 e9 bc 16 d2 22 fc 68 a5 43 3a 61 57 fb 30 5c ec e3 41 cd 5c 91 cf d1 b1 ff 08 0b 5c 0b e8 d0 43 8d ce 83 40 ae 1c 18 fd 0c 06 c2 50 44 13 6e 47 66 59 1e 5a 30 a5 eb 48 f2 27 d4 1e 65 86 42 bf 8f 01 b8 7a f0 d3 40 e9 a5 ae dd b8 82 1f 30 0f fe 9e 4a 6f 36 74 d9 a4 f5 b4 4d 69 3a 72 bd 4d 63 4e 4a 9d fa 84 cd a3 5d 92 ea dd 6e 0a 17 61 fe 4f 34 a8 9a 29 4f 5b 8b 98 86 83 39 29 1f a5 3d 61 b0 c1 3a 1c 63 72 e7 cb 6e 14 fb 80 51 4b 86 0e dd 5f 58 2c dc 68 f1 82 0b ff 08 3f 01 99 cf c9 96 18 06 00 00 Data Ascii: U]o0}d&Ab}_o3l]\;]h9kG.5ebMmK1eo`WX}E-/.|P8U~;o<kK5Hxj&m 6Vr5GrI#B._Im,Hsg@p(Nwel~xzzRRcz/VwY<GqW]j#Pwq7T*@&QayX@JhgV2/`&]&""<~*M0&Jdl1ynQ02el_\N6 UE]}-nX.rR7\~rYYk`,low>>$v8Tb[&:*]Ns%I@ 3P D]4@}=H`]@!{sc'z{R'
Source: global traffic HTTP traffic detected: GET /fs/windows/config.json HTTP/1.1Connection: Keep-AliveAccept: */*Accept-Encoding: identityIf-Unmodified-Since: Tue, 16 May 2017 22:58:00 GMTRange: bytes=0-2147483646User-Agent: Microsoft BITS/7.8Host: fs.microsoft.com
Source: global traffic HTTP traffic detected: GET /cs/6035613/beacon.js HTTP/1.1Host: sb.scorecardresearch.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /internal-cs/default/beacon.js HTTP/1.1Host: sb.scorecardresearch.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /internal-cs/default/beacon.js HTTP/1.1Host: sb.scorecardresearch.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /b?c1=2&c2=6035613&cs_it=b8&cv=4.0.0%2B2301240627&ns__t=1727807660236&ns_c=UTF-8&c7=https%3A%2F%2Fbusinessemail.rediff.com%2Fdomain%3Fsc_cid%3Dpages-uc-domain-register%26ref%3Ddomain-registration-india&c8=Buy%20.com%2C%20.org%2C%20.in%20domains%20on%20Rediffmail%20for%20Work&c9= HTTP/1.1Host: sb.scorecardresearch.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /td/ga/rul?tid=G-0JHQDSS37Y&gacid=245393721.1727807661&gtm=45je49u0v9135786248za200&dma=0&gcd=13l3l3l3l1l1&npa=0&pscdl=noapi&aip=1&fledge=1&frm=0&tag_exp=101671035~101686685~101747727&z=1228848990 HTTP/1.1Host: td.doubleclick.netConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7X-Client-Data: CIe2yQEIprbJAQipncoBCMDdygEIk6HLAQiFoM0BCOnFzQEIucrNAQiK080BGI/OzQEYwtjNARjrjaUXSec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /b2?c1=2&c2=6035613&cs_it=b8&cv=4.0.0%2B2301240627&ns__t=1727807660236&ns_c=UTF-8&c7=https%3A%2F%2Fbusinessemail.rediff.com%2Fdomain%3Fsc_cid%3Dpages-uc-domain-register%26ref%3Ddomain-registration-india&c8=Buy%20.com%2C%20.org%2C%20.in%20domains%20on%20Rediffmail%20for%20Work&c9= HTTP/1.1Host: sb.scorecardresearch.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: UID=14A18b48486fa8459b2d8af1727807662; XID=14A18b48486fa8459b2d8af1727807662
Source: global traffic HTTP traffic detected: GET /blank.html?1727807659875 HTTP/1.1Host: metric.rediff.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: same-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: sc_cid=pages-uc-domain-register
Source: global traffic HTTP traffic detected: GET /businessemail.rediff.com/domain/?sc_cid=pages-uc-domain-register&ref=domain-registration-india&rkey=664174&device_param=pc HTTP/1.1Host: hostsmetric.rediff.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: sc_cid=pages-uc-domain-register
Source: global traffic HTTP traffic detected: GET /businessemail.rediff.com/domain/?sc_cid=pages-uc-domain-register&ref=domain-registration-india&rkey=664174&device_param=pc HTTP/1.1Host: hostsmetric.rediff.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: sc_cid=pages-uc-domain-register; _ga_0JHQDSS37Y=GS1.1.1727807661.1.0.1727807661.60.0.0; _ga=GA1.2.245393721.1727807661; _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd
Source: global traffic HTTP traffic detected: GET /cs/6035613/beacon.js HTTP/1.1Host: sb.scorecardresearch.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: UID=14A18b48486fa8459b2d8af1727807662; XID=14A18b48486fa8459b2d8af1727807662
Source: global traffic HTTP traffic detected: GET /b?c1=2&c2=6035613&cs_it=b8&cv=4.0.0%2B2301240627&ns__t=1727807675243&ns_c=UTF-8&c7=https%3A%2F%2Fbusinessemail.rediff.com%2F%3Fsc_cid%3Dpages-uc-rediffmailenterprises&c8=Rediffmail%20for%20Work%3A%20Email%20for%20Your%20Business&c9= HTTP/1.1Host: sb.scorecardresearch.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: UID=14A18b48486fa8459b2d8af1727807662; XID=14A18b48486fa8459b2d8af1727807662
Source: global traffic HTTP traffic detected: GET /blank.html?1727807676224 HTTP/1.1Host: metric.rediff.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: same-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _ga_0JHQDSS37Y=GS1.1.1727807661.1.0.1727807661.60.0.0; _ga=GA1.2.245393721.1727807661; _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; sc_cid=pages-uc-rediffmailenterprises
Source: global traffic HTTP traffic detected: GET /businessemail.rediff.com/?sc_cid=pages-uc-rediffmailenterprises&rkey=729776&device_param=pc HTTP/1.1Host: hostsmetric.rediff.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _ga_0JHQDSS37Y=GS1.1.1727807661.1.0.1727807661.60.0.0; _ga=GA1.2.245393721.1727807661; _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; sc_cid=pages-uc-rediffmailenterprises
Source: global traffic HTTP traffic detected: GET /businessemail.rediff.com/?sc_cid=pages-uc-rediffmailenterprises&rkey=729776&device_param=pc HTTP/1.1Host: hostsmetric.rediff.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; sc_cid=pages-uc-rediffmailenterprises; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807676.45.0.0; _ga=GA1.1.245393721.1727807661
Source: global traffic HTTP traffic detected: GET /cs/6035613/beacon.js HTTP/1.1Host: sb.scorecardresearch.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: UID=14A18b48486fa8459b2d8af1727807662; XID=14A18b48486fa8459b2d8af1727807662
Source: global traffic HTTP traffic detected: GET /b?c1=2&c2=6035613&cs_it=b8&cv=4.0.0%2B2301240627&ns__t=1727807688653&ns_c=UTF-8&c7=https%3A%2F%2Fbusinessemail.rediff.com%2Femail-for-business%3Fsc_cid%3Dpages-uc-businessemail&c8=Email%20Hosting%20Solutions%20%26%20Collaboration%20Suite&c9= HTTP/1.1Host: sb.scorecardresearch.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: UID=14A18b48486fa8459b2d8af1727807662; XID=14A18b48486fa8459b2d8af1727807662
Source: global traffic HTTP traffic detected: GET /blank.html?1727807686788 HTTP/1.1Host: metric.rediff.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: same-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807676.45.0.0; _ga=GA1.1.245393721.1727807661; sc_cid=pages-uc-businessemail
Source: global traffic HTTP traffic detected: GET /businessemail.rediff.com/email-for-business/?sc_cid=pages-uc-businessemail&rkey=440881&device_param=pc HTTP/1.1Host: hostsmetric.rediff.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807676.45.0.0; _ga=GA1.1.245393721.1727807661; sc_cid=pages-uc-businessemail
Source: global traffic HTTP traffic detected: GET /?skill=rpro-sales&authenticator=open&browseragent=pc HTTP/1.1Host: chatbot.rediff.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: same-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; sc_cid=pages-uc-businessemail; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807688.33.0.0; _ga=GA1.1.245393721.1727807661
Source: global traffic HTTP traffic detected: GET /businessemail.rediff.com/chat-with-user/chatbot/open?rkey=836955 HTTP/1.1Host: hostsmetric.rediff.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: same-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; sc_cid=pages-uc-businessemail; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807688.33.0.0; _ga=GA1.1.245393721.1727807661
Source: global traffic HTTP traffic detected: GET /businessemail.rediff.com/email-for-business/?sc_cid=pages-uc-businessemail&rkey=440881&device_param=pc HTTP/1.1Host: hostsmetric.rediff.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; sc_cid=pages-uc-businessemail; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807688.33.0.0; _ga=GA1.1.245393721.1727807661
Source: global traffic HTTP traffic detected: GET /v1/checkout.js HTTP/1.1Host: checkout.razorpay.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://chatbot.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /public/styles-18.css HTTP/1.1Host: chatbot.rediff.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://chatbot.rediff.com/?skill=rpro-sales&authenticator=open&browseragent=pcAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807688.33.0.0; _ga=GA1.1.245393721.1727807661; sc_cid=pages-uc-websites
Source: global traffic HTTP traffic detected: GET /public/typing.gif HTTP/1.1Host: chatbot.rediff.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://chatbot.rediff.com/?skill=rpro-sales&authenticator=open&browseragent=pcAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807688.33.0.0; _ga=GA1.1.245393721.1727807661; sc_cid=pages-uc-websites
Source: global traffic HTTP traffic detected: GET /public/send-chat.png HTTP/1.1Host: chatbot.rediff.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://chatbot.rediff.com/?skill=rpro-sales&authenticator=open&browseragent=pcAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807688.33.0.0; _ga=GA1.1.245393721.1727807661; sc_cid=pages-uc-websites
Source: global traffic HTTP traffic detected: GET /cs/6035613/beacon.js HTTP/1.1Host: sb.scorecardresearch.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: UID=14A18b48486fa8459b2d8af1727807662; XID=14A18b48486fa8459b2d8af1727807662
Source: global traffic HTTP traffic detected: GET /b?c1=2&c2=6035613&cs_it=b8&cv=4.0.0%2B2301240627&ns__t=1727807696259&ns_c=UTF-8&c7=https%3A%2F%2Fbusinessemail.rediff.com%2Fcontact-us%3Fsc_cid%3Dpages-uc-websites%26ref%3Dget-a-free-consultation&c8=Contact%20Us%20-%20Rediffmail%20For%20Work&c9= HTTP/1.1Host: sb.scorecardresearch.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: UID=14A18b48486fa8459b2d8af1727807662; XID=14A18b48486fa8459b2d8af1727807662
Source: global traffic HTTP traffic detected: GET /public/client-89.min.js HTTP/1.1Host: chatbot.rediff.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://chatbot.rediff.com/?skill=rpro-sales&authenticator=open&browseragent=pcAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807695.26.0.0; _ga=GA1.2.245393721.1727807661; sc_cid=pages-uc-websites%7Crediff_com_chatbot
Source: global traffic HTTP traffic detected: GET /businessemail.rediff.com/contact-us/?sc_cid=pages-uc-websites&ref=get-a-free-consultation&rkey=263689&device_param=pc HTTP/1.1Host: hostsmetric.rediff.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; sc_cid=pages-uc-websites; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807695.26.0.0; _ga=GA1.2.245393721.1727807661
Source: global traffic HTTP traffic detected: GET /blank.html?1727807695235 HTTP/1.1Host: metric.rediff.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: same-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; sc_cid=pages-uc-websites; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807695.26.0.0; _ga=GA1.2.245393721.1727807661
Source: global traffic HTTP traffic detected: GET /public/send-chat.png HTTP/1.1Host: chatbot.rediff.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807695.26.0.0; _ga=GA1.2.245393721.1727807661; sc_cid=pages-uc-websites%7Crediff_com_chatbot; ckey=c6d9f2c993f6591509a5e8421992a47d
Source: global traffic HTTP traffic detected: GET /public/typing.gif HTTP/1.1Host: chatbot.rediff.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807695.26.0.0; _ga=GA1.2.245393721.1727807661; sc_cid=pages-uc-websites%7Crediff_com_chatbot; ckey=c6d9f2c993f6591509a5e8421992a47d
Source: global traffic HTTP traffic detected: GET /?skill=rpro-sales&authenticator=open&browseragent=pc&sc_cid=pages-uc-websites|rediff_com_chatbot&parent=https%3A%2F%2Fbusinessemail.rediff.com%2F HTTP/1.1Host: chatbot.rediff.comConnection: UpgradePragma: no-cacheCache-Control: no-cacheUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Upgrade: websocketOrigin: https://chatbot.rediff.comSec-WebSocket-Version: 13Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807695.26.0.0; _ga=GA1.2.245393721.1727807661; sc_cid=pages-uc-websites%7Crediff_com_chatbot; ckey=c6d9f2c993f6591509a5e8421992a47dSec-WebSocket-Key: BOKPUyKJERgZ+AkiVFJ+rQ==Sec-WebSocket-Extensions: permessage-deflate; client_max_window_bits
Source: global traffic HTTP traffic detected: GET /public/client-89.min.js HTTP/1.1Host: chatbot.rediff.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807695.26.0.0; _ga=GA1.2.245393721.1727807661; sc_cid=pages-uc-websites%7Crediff_com_chatbot; ckey=c6d9f2c993f6591509a5e8421992a47d
Source: global traffic HTTP traffic detected: GET /chatbot.rediff.com/MainWindow?skill=rpro-sales&authenticator=open&browseragent=pc&sc_cid=pages-uc-websites|rediff_com_chatbot&rkey=628581 HTTP/1.1Host: hostsmetric.rediff.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://chatbot.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807695.26.0.0; _ga=GA1.2.245393721.1727807661; sc_cid=pages-uc-websites%7Crediff_com_chatbot; ckey=c6d9f2c993f6591509a5e8421992a47d
Source: global traffic HTTP traffic detected: GET /businessemail.rediff.com/contact-us/?sc_cid=pages-uc-websites&ref=get-a-free-consultation&rkey=263689&device_param=pc HTTP/1.1Host: hostsmetric.rediff.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807695.26.0.0; _ga=GA1.2.245393721.1727807661; sc_cid=pages-uc-websites%7Crediff_com_chatbot; ckey=c6d9f2c993f6591509a5e8421992a47d
Source: global traffic HTTP traffic detected: GET /chatbot.rediff.com/MainWindow?skill=rpro-sales&authenticator=open&browseragent=pc&sc_cid=pages-uc-websites|rediff_com_chatbot&rkey=628581 HTTP/1.1Host: hostsmetric.rediff.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807695.26.0.0; _ga=GA1.2.245393721.1727807661; sc_cid=pages-uc-websites%7Crediff_com_chatbot; ckey=c89fc02b27b186b2dad35ffe0b2bbd9a
Source: global traffic HTTP traffic detected: GET /cs/6035613/beacon.js HTTP/1.1Host: sb.scorecardresearch.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: UID=14A18b48486fa8459b2d8af1727807662; XID=14A18b48486fa8459b2d8af1727807662
Source: global traffic HTTP traffic detected: GET /b?c1=2&c2=6035613&cs_it=b8&cv=4.0.0%2B2301240627&ns__t=1727807714267&ns_c=UTF-8&c7=https%3A%2F%2Fbusinessemail.rediff.com%2Fpricing%3Fsc_cid%3Dpages-uc-domain-register%7Cpricing&c8=Pricing%20Plans%20-%20Rediffmail%20for%20Work&c9= HTTP/1.1Host: sb.scorecardresearch.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: UID=14A18b48486fa8459b2d8af1727807662; XID=14A18b48486fa8459b2d8af1727807662
Source: global traffic HTTP traffic detected: GET /businessemail.rediff.com/pricing/?sc_cid=pages-uc-domain-register|pricing&rkey=300568&device_param=pc HTTP/1.1Host: hostsmetric.rediff.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807695.26.0.0; _ga=GA1.2.245393721.1727807661; ckey=c89fc02b27b186b2dad35ffe0b2bbd9a; sc_cid=pages-uc-domain-register%7Cpricing
Source: global traffic HTTP traffic detected: GET /blank.html?1727807713160 HTTP/1.1Host: metric.rediff.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: same-siteSec-Fetch-Mode: navigateSec-Fetch-Dest: iframeReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807695.26.0.0; _ga=GA1.2.245393721.1727807661; ckey=c89fc02b27b186b2dad35ffe0b2bbd9a; sc_cid=pages-uc-domain-register%7Cpricing
Source: global traffic HTTP traffic detected: GET /businessemail.rediff.com/pricing/?sc_cid=pages-uc-domain-register|pricing&rkey=300568&device_param=pc HTTP/1.1Host: hostsmetric.rediff.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: _gid=GA1.2.49577587.1727807661; _gat_gtag_UA_111630784_3=1; RuW=a5d2ac55.6236e922e47dd; ckey=c89fc02b27b186b2dad35ffe0b2bbd9a; sc_cid=pages-uc-domain-register%7Cpricing; _ga_0JHQDSS37Y=GS1.1.1727807661.1.1.1727807713.8.0.0; _ga=GA1.1.245393721.1727807661
Source: global traffic HTTP traffic detected: GET / HTTP/1.1Host: www.infoleadzsalez.comConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Accept-Encoding: gzip, deflateAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /favicon.ico HTTP/1.1Host: www.infoleadzsalez.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Referer: http://www.infoleadzsalez.com/Accept-Encoding: gzip, deflateAccept-Language: en-US,en;q=0.9
Source: global traffic HTTP traffic detected: GET /favicon.ico HTTP/1.1Host: www.infoleadzsalez.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Accept-Encoding: gzip, deflateAccept-Language: en-US,en;q=0.9
Source: chromecache_210.2.dr, chromecache_168.2.dr String found in binary or memory: c?"runIfCanceled":"runIfUncanceled",[]);if(!g.length)return!0;var k=qA(a,c,e);Q(121);if(k["gtm.elementUrl"]==="https://www.facebook.com/tr/")return Q(122),!0;if(d&&f){for(var m=Kb(b,g.length),n=0;n<g.length;++n)g[n](k,m);return m.done}for(var p=0;p<g.length;++p)g[p](k,function(){});return!0},tA=function(){var a=[],b=function(c){return ob(a,function(d){return d.form===c})};return{store:function(c,d){var e=b(c);e?e.button=d:a.push({form:c,button:d})},get:function(c){var d=b(c);return d?d.button:null}}}, equals www.facebook.com (Facebook)
Source: chromecache_248.2.dr, chromecache_205.2.dr, chromecache_210.2.dr, chromecache_131.2.dr, chromecache_244.2.dr, chromecache_199.2.dr, chromecache_129.2.dr, chromecache_168.2.dr String found in binary or memory: return b}IC.F="internal.enableAutoEventOnTimer";var gc=ja(["data-gtm-yt-inspected-"]),KC=["www.youtube.com","www.youtube-nocookie.com"],LC,MC=!1; equals www.youtube.com (Youtube)
Source: chromecache_210.2.dr, chromecache_168.2.dr String found in binary or memory: var XB=function(a,b,c,d,e){var f=Oz("fsl",c?"nv.mwt":"mwt",0),g;g=c?Oz("fsl","nv.ids",[]):Oz("fsl","ids",[]);if(!g.length)return!0;var k=Tz(a,"gtm.formSubmit",g),m=a.action;m&&m.tagName&&(m=a.cloneNode(!1).action);Q(121);if(m==="https://www.facebook.com/tr/")return Q(122),!0;k["gtm.elementUrl"]=m;k["gtm.formCanceled"]=c;a.getAttribute("name")!=null&&(k["gtm.interactedFormName"]=a.getAttribute("name"));e&&(k["gtm.formSubmitElement"]=e,k["gtm.formSubmitElementText"]=e.value);if(d&&f){if(!By(k,Dy(b, equals www.facebook.com (Facebook)
Source: global traffic DNS traffic detected: DNS query: www.infoleadzsalez.com
Source: global traffic DNS traffic detected: DNS query: www.google.com
Source: global traffic DNS traffic detected: DNS query: imworld.rediff.com
Source: global traffic DNS traffic detected: DNS query: businessemail.rediff.com
Source: global traffic DNS traffic detected: DNS query: sb.scorecardresearch.com
Source: global traffic DNS traffic detected: DNS query: metric.rediff.com
Source: global traffic DNS traffic detected: DNS query: hostsmetric.rediff.com
Source: global traffic DNS traffic detected: DNS query: analytics.google.com
Source: global traffic DNS traffic detected: DNS query: td.doubleclick.net
Source: global traffic DNS traffic detected: DNS query: stats.g.doubleclick.net
Source: global traffic DNS traffic detected: DNS query: www.rediff.com
Source: global traffic DNS traffic detected: DNS query: chatbot.rediff.com
Source: global traffic DNS traffic detected: DNS query: im.rediff.com
Source: global traffic DNS traffic detected: DNS query: checkout.razorpay.com
Source: unknown HTTP traffic detected: POST /g/collect?v=2&tid=G-0JHQDSS37Y&gtm=45je49u0v9135786248za200&_p=1727807657763&_gaz=1&gcd=13l3l3l3l1l1&npa=0&dma=0&tag_exp=101671035~101686685~101747727&cid=245393721.1727807661&ul=en-us&sr=1280x1024&ir=1&uaa=x86&uab=64&uafvl=Google%2520Chrome%3B117.0.5938.132%7CNot%253BA%253DBrand%3B8.0.0.0%7CChromium%3B117.0.5938.132&uamb=0&uam=&uap=Windows&uapv=10.0.0&uaw=0&are=1&pae=1&frm=0&pscdl=noapi&_eu=EAAI&_s=1&sid=1727807661&sct=1&seg=0&dl=https%3A%2F%2Fbusinessemail.rediff.com%2Fdomain%3Fsc_cid%3Dpages-uc-domain-register%26ref%3Ddomain-registration-india&dt=Buy%20.com%2C%20.org%2C%20.in%20domains%20on%20Rediffmail%20for%20Work&en=page_view&_fv=1&_nsi=1&_ss=1&tfd=9227 HTTP/1.1Host: analytics.google.comConnection: keep-aliveContent-Length: 0sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://businessemail.rediff.comX-Client-Data: CIe2yQEIprbJAQipncoBCMDdygEIk6HLAQiFoM0BCOnFzQEIucrNAQiK080BGI/OzQEYwtjNARjrjaUXSec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyReferer: https://businessemail.rediff.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: chromecache_144.2.dr, chromecache_172.2.dr String found in binary or memory: http://beta.rediffmailpro.com/ajaxprism/forgotpwd.php
Source: chromecache_257.2.dr, chromecache_196.2.dr, chromecache_213.2.dr, chromecache_246.2.dr String found in binary or memory: http://businessemail.rediff.com/ordererror?error=
Source: chromecache_212.2.dr, chromecache_251.2.dr String found in binary or memory: http://davidwalsh.name/javascript-debounce-function
Source: chromecache_246.2.dr String found in binary or memory: http://ishare.rediff.com/embed_config.php?id=
Source: chromecache_246.2.dr String found in binary or memory: http://ishare.rediff.com/images/embed_plugin_30052011.swf&autostart=true
Source: chromecache_246.2.dr String found in binary or memory: http://ishare.rediff.com/images/player_embed_dm_27052011.swf
Source: chromecache_212.2.dr, chromecache_251.2.dr String found in binary or memory: http://johanhalse.mit-license.org
Source: chromecache_144.2.dr, chromecache_172.2.dr String found in binary or memory: http://login.rediff.com/cgi-bin/subs/passwd_remind.cgi?FormName=showlogin
Source: chromecache_144.2.dr, chromecache_172.2.dr String found in binary or memory: http://track.rediff.com/click?url=___
Source: chromecache_215.2.dr, chromecache_230.2.dr String found in binary or memory: http://wicky.nillia.ms/headroom.js
Source: chromecache_244.2.dr String found in binary or memory: https://ad.doubleclick.net
Source: chromecache_131.2.dr, chromecache_244.2.dr String found in binary or memory: https://ade.googlesyndication.com
Source: chromecache_168.2.dr String found in binary or memory: https://adservice.google.com/pagead/regclk?
Source: chromecache_217.2.dr, chromecache_181.2.dr String found in binary or memory: https://ampcid.google.com/v1/publisher:getClientId
Source: chromecache_150.2.dr, chromecache_187.2.dr String found in binary or memory: https://businessemail.rediff.com/clicktocall
Source: chromecache_125.2.dr, chromecache_235.2.dr String found in binary or memory: https://businessemail.rediff.com/rediffmailpro/onlinebiz/images/down_arr.png)
Source: chromecache_125.2.dr, chromecache_235.2.dr String found in binary or memory: https://businessemail.rediff.com/rediffmailpro/onlinebiz/images/reset_icon.png)
Source: chromecache_248.2.dr, chromecache_205.2.dr, chromecache_210.2.dr, chromecache_131.2.dr, chromecache_244.2.dr, chromecache_199.2.dr, chromecache_129.2.dr, chromecache_168.2.dr String found in binary or memory: https://cct.google/taggy/agent.js
Source: chromecache_234.2.dr, chromecache_150.2.dr, chromecache_187.2.dr, chromecache_163.2.dr String found in binary or memory: https://chatbot.rediff.com/?skill=rpro-sales&authenticator=open
Source: chromecache_150.2.dr, chromecache_187.2.dr String found in binary or memory: https://chatbot.rediff.com/?skill=rpro-sales&authenticator=open&browseragent=
Source: chromecache_150.2.dr, chromecache_187.2.dr String found in binary or memory: https://chatbot.rediff.com/?skill=rpro-sales&authenticator=open&refresh=1
Source: chromecache_159.2.dr String found in binary or memory: https://checkout.razorpay.com/v1/checkout.js
Source: chromecache_125.2.dr, chromecache_235.2.dr String found in binary or memory: https://fonts.googleapis.com/css?family=Nunito:300
Source: chromecache_184.2.dr String found in binary or memory: https://fonts.gstatic.com/s/nunito/v26/XRXV3I6Li01BKofIMeaBXso.woff2)
Source: chromecache_184.2.dr String found in binary or memory: https://fonts.gstatic.com/s/nunito/v26/XRXV3I6Li01BKofINeaB.woff2)
Source: chromecache_184.2.dr String found in binary or memory: https://fonts.gstatic.com/s/nunito/v26/XRXV3I6Li01BKofIO-aBXso.woff2)
Source: chromecache_184.2.dr String found in binary or memory: https://fonts.gstatic.com/s/nunito/v26/XRXV3I6Li01BKofIOOaBXso.woff2)
Source: chromecache_184.2.dr String found in binary or memory: https://fonts.gstatic.com/s/nunito/v26/XRXV3I6Li01BKofIOuaBXso.woff2)
Source: chromecache_212.2.dr, chromecache_251.2.dr String found in binary or memory: https://github.com/JuhQ
Source: chromecache_212.2.dr, chromecache_251.2.dr String found in binary or memory: https://github.com/phoebebright
Source: chromecache_168.2.dr String found in binary or memory: https://google.com
Source: chromecache_168.2.dr String found in binary or memory: https://googleads.g.doubleclick.net
Source: chromecache_231.2.dr String found in binary or memory: https://hostsmetric.rediff.com/
Source: chromecache_234.2.dr, chromecache_150.2.dr, chromecache_187.2.dr, chromecache_163.2.dr String found in binary or memory: https://hostsmetric.rediff.com/businessemail.rediff.com/chat-with-user/
Source: chromecache_250.2.dr, chromecache_231.2.dr String found in binary or memory: https://hostsmetric.rediff.com/businessemail.rediff.com/company-email-hosting-services/
Source: chromecache_222.2.dr String found in binary or memory: https://lineicons.com
Source: chromecache_222.2.dr String found in binary or memory: https://lineicons.com/license
Source: chromecache_222.2.dr String found in binary or memory: https://lineicons.com/licensehttps://lineicons.com/licenseVersion
Source: chromecache_222.2.dr String found in binary or memory: https://lineicons.comhttps://lineicons.comFree
Source: chromecache_222.2.dr String found in binary or memory: https://lineicons.comhttps://lineicons.comhttps://lineicons.comhttps://lineicons.comhttps://lineicon
Source: chromecache_168.2.dr String found in binary or memory: https://pagead2.googlesyndication.com
Source: chromecache_248.2.dr, chromecache_205.2.dr, chromecache_210.2.dr, chromecache_131.2.dr, chromecache_244.2.dr, chromecache_199.2.dr, chromecache_129.2.dr, chromecache_168.2.dr String found in binary or memory: https://pagead2.googlesyndication.com/pagead/gen_204?id=tcfe
Source: chromecache_207.2.dr, chromecache_216.2.dr String found in binary or memory: https://sb.scorecardresearch.com/b2?
Source: chromecache_207.2.dr, chromecache_216.2.dr String found in binary or memory: https://sb.scorecardresearch.com/b?
Source: chromecache_248.2.dr, chromecache_205.2.dr String found in binary or memory: https://stats.g.doubleclick.net/g/collect
Source: chromecache_181.2.dr String found in binary or memory: https://stats.g.doubleclick.net/j/collect
Source: chromecache_217.2.dr, chromecache_181.2.dr String found in binary or memory: https://tagassistant.google.com/
Source: chromecache_248.2.dr, chromecache_205.2.dr, chromecache_210.2.dr, chromecache_131.2.dr, chromecache_244.2.dr, chromecache_199.2.dr, chromecache_129.2.dr, chromecache_168.2.dr String found in binary or memory: https://td.doubleclick.net
Source: chromecache_212.2.dr, chromecache_251.2.dr String found in binary or memory: https://twitter.com/hejsna
Source: chromecache_199.2.dr, chromecache_129.2.dr String found in binary or memory: https://www.google-analytics.com/analytics.js
Source: chromecache_217.2.dr, chromecache_181.2.dr String found in binary or memory: https://www.google-analytics.com/debug/bootstrap?id=
Source: chromecache_217.2.dr, chromecache_181.2.dr String found in binary or memory: https://www.google-analytics.com/gtm/js?id=
Source: chromecache_217.2.dr, chromecache_181.2.dr String found in binary or memory: https://www.google.%/ads/ga-audiences
Source: chromecache_168.2.dr String found in binary or memory: https://www.google.com
Source: chromecache_217.2.dr, chromecache_181.2.dr String found in binary or memory: https://www.google.com/ads/ga-audiences
Source: chromecache_168.2.dr String found in binary or memory: https://www.googleadservices.com
Source: chromecache_168.2.dr String found in binary or memory: https://www.googletagmanager.com
Source: chromecache_210.2.dr, chromecache_168.2.dr String found in binary or memory: https://www.googletagmanager.com/a?
Source: chromecache_131.2.dr, chromecache_244.2.dr String found in binary or memory: https://www.googletagmanager.com/dclk/ns/v1.js
Source: chromecache_217.2.dr, chromecache_181.2.dr String found in binary or memory: https://www.googletagmanager.com/gtag/js?id=
Source: chromecache_159.2.dr String found in binary or memory: https://www.googletagmanager.com/gtag/js?id=AW-600756359
Source: chromecache_159.2.dr String found in binary or memory: https://www.googletagmanager.com/gtag/js?id=DC-11216040
Source: chromecache_210.2.dr, chromecache_168.2.dr String found in binary or memory: https://www.googletagmanager.com/static/service_worker/
Source: chromecache_248.2.dr, chromecache_205.2.dr String found in binary or memory: https://www.merchant-center-analytics.goog
Source: unknown Network traffic detected: HTTP traffic on port 49890 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49863
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49862
Source: unknown Network traffic detected: HTTP traffic on port 49766 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49898 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49875 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49878 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49852 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49859
Source: unknown Network traffic detected: HTTP traffic on port 49906 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49849 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49889 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49841 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49675 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49852
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49850
Source: unknown Network traffic detected: HTTP traffic on port 49711 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49703 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49872 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49749 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49909 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49849
Source: unknown Network traffic detected: HTTP traffic on port 49777 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49848
Source: unknown Network traffic detected: HTTP traffic on port 49869 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49674 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49722
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49721
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49841
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49840
Source: unknown Network traffic detected: HTTP traffic on port 49873 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49828 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49850 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49904 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49774 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49887 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49782 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49711
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49830
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49796
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49792
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49791
Source: unknown Network traffic detected: HTTP traffic on port 49870 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49895 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49796 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49828
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49827
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49703
Source: unknown Network traffic detected: HTTP traffic on port 49813 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49782
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49780
Source: unknown Network traffic detected: HTTP traffic on port 49859 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49871 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49791 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49759 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49813
Source: unknown Network traffic detected: HTTP traffic on port 49902 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49778
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49899
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49777
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49898
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49897
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49896
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49774
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49895
Source: unknown Network traffic detected: HTTP traffic on port 49862 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49891
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49890
Source: unknown Network traffic detected: HTTP traffic on port 49897 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49780 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49879 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49721 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49827 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49830 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49848 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49882 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49889
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49766
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49887
Source: unknown Network traffic detected: HTTP traffic on port 49863 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49883
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49882
Source: unknown Network traffic detected: HTTP traffic on port 49840 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49896 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49722 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49908 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49883 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49778 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49759
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49879
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49878
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49875
Source: unknown Network traffic detected: HTTP traffic on port 49891 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49673 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49873
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49872
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49871
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49870
Source: unknown Network traffic detected: HTTP traffic on port 49899 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49909
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49908
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49906
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49904
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49749
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49903
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49869
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49902
Source: unknown Network traffic detected: HTTP traffic on port 49903 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49792 -> 443
Source: unknown HTTPS traffic detected: 184.28.90.27:443 -> 192.168.2.5:49721 version: TLS 1.2
Source: unknown HTTPS traffic detected: 184.28.90.27:443 -> 192.168.2.5:49722 version: TLS 1.2
Source: classification engine Classification label: clean1.win@22/222@44/12
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps Jump to behavior
Source: unknown Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2256 --field-trial-handle=2204,i,666688079235395417,2684045064378826231,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: unknown Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" "http://www.infoleadzsalez.com"
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2256 --field-trial-handle=2204,i,666688079235395417,2684045064378826231,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: Google Drive.lnk.0.dr LNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
Source: YouTube.lnk.0.dr LNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
Source: Sheets.lnk.0.dr LNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
Source: Gmail.lnk.0.dr LNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
Source: Slides.lnk.0.dr LNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
Source: Docs.lnk.0.dr LNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
Source: Window Recorder Window detected: More than 3 window changes detected
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk Jump to behavior
  • No. of IPs < 25%
  • 25% < No. of IPs < 50%
  • 50% < No. of IPs < 75%
  • 75% < No. of IPs