Facebook
From fork, 10 Months ago, written in Plain Text.
Embed
Download Paste or View Raw
Hits: 75
  1. 12:15:08.779468 A2    P   IP 10.1.1.133.52691 > 52.98.171.242.https: Flags [S], seq 485389796, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  2. 12:15:08.779468 bridge0 In  IP 10.1.1.133.52691 > 52.98.171.242.https: Flags [S], seq 485389796, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  3. 12:15:08.841774 tun1  Out IP sti10n-car-2.stillagrcar.com.45641 > 10.10.0.10.domain: 21401+ PTR? 242.171.98.52.in-addr.arpa. (44)
  4. 12:15:08.857207 A2    P   IP 10.1.1.133.52685 > 52.98.152.194.https: Flags [S], seq 4182922169, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  5. 12:15:08.857207 bridge0 In  IP 10.1.1.133.52685 > 52.98.152.194.https: Flags [S], seq 4182922169, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  6. 12:15:08.952886 A2    P   IP 10.1.1.133.52682 > 52.98.152.194.https: Flags [S], seq 3576276534, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  7. 12:15:08.952886 bridge0 In  IP 10.1.1.133.52682 > 52.98.152.194.https: Flags [S], seq 3576276534, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  8. 12:15:10.113025 A2    P   IP 10.1.1.133.52690 > 52.98.171.242.https: Flags [S], seq 1046746951, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  9. 12:15:10.113025 bridge0 In  IP 10.1.1.133.52690 > 52.98.171.242.https: Flags [S], seq 1046746951, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  10. 12:15:10.781795 A2    P   IP 10.1.1.133.52691 > 52.98.171.242.https: Flags [S], seq 485389796, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  11. 12:15:10.781795 bridge0 In  IP 10.1.1.133.52691 > 52.98.171.242.https: Flags [S], seq 485389796, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  12. 12:15:11.408704 A2    P   IP 10.1.1.133.52686 > 13.107.21.239.https: Flags [S], seq 1117572673, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  13. 12:15:11.408704 bridge0 In  IP 10.1.1.133.52686 > 13.107.21.239.https: Flags [S], seq 1117572673, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  14. 12:15:11.679801 A2    P   IP 10.1.1.133.52687 > 13.107.21.239.https: Flags [S], seq 2602595544, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  15. 12:15:11.679801 bridge0 In  IP 10.1.1.133.52687 > 13.107.21.239.https: Flags [S], seq 2602595544, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  16. 12:15:12.347581 A2    P   IP 10.1.1.133.52688 > 52.98.171.242.https: Flags [S], seq 4230996337, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  17. 12:15:12.347581 bridge0 In  IP 10.1.1.133.52688 > 52.98.171.242.https: Flags [S], seq 4230996337, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  18. 12:15:12.444245 A2    P   IP 10.1.1.133.52689 > 52.98.171.242.https: Flags [S], seq 2632036607, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  19. 12:15:12.444245 bridge0 In  IP 10.1.1.133.52689 > 52.98.171.242.https: Flags [S], seq 2632036607, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  20. 12:15:18.933975 tun1  Out IP sti10n-car-2.stillagrcar.com.54648 > 10.10.0.10.domain: 36593+ PTR? 10.0.10.10.in-addr.arpa. (43)
  21. 12:15:34.158047 tun1  Out IP sti10n-car-2.stillagrcar.com.42892 > 10.10.0.10.domain: 7924+ PTR? 239.21.107.13.in-addr.arpa. (44)
  22. 12:15:35.164478 A2    P   IP 10.1.1.133.52696 > 52.98.175.2.https: Flags [S], seq 3051362134, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  23. 12:15:35.164478 bridge0 In  IP 10.1.1.133.52696 > 52.98.175.2.https: Flags [S], seq 3051362134, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  24. 12:15:35.849199 A2    P   IP 10.1.1.133.52697 > 52.98.175.2.https: Flags [S], seq 1168166983, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  25. 12:15:35.849199 bridge0 In  IP 10.1.1.133.52697 > 52.98.175.2.https: Flags [S], seq 1168166983, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  26. 12:15:36.009896 A2    P   IP 10.1.1.133.52698 > 52.98.175.2.https: Flags [S], seq 1124242491, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  27. 12:15:36.009896 bridge0 In  IP 10.1.1.133.52698 > 52.98.175.2.https: Flags [S], seq 1124242491, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  28. 12:15:39.216079 tun1  Out IP sti10n-car-2.stillagrcar.com.33935 > 10.10.0.10.domain: 39144+ PTR? 2.175.98.52.in-addr.arpa. (42)
  29. 12:15:41.392767 A2    P   IP 10.1.1.133.52694 > 52.98.175.2.https: Flags [S], seq 1085874799, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  30. 12:15:41.392767 bridge0 In  IP 10.1.1.133.52694 > 52.98.175.2.https: Flags [S], seq 1085874799, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  31. 12:15:41.504326 A2    P   IP 10.1.1.133.52695 > 52.98.175.2.https: Flags [S], seq 3235402973, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  32. 12:15:41.504326 bridge0 In  IP 10.1.1.133.52695 > 52.98.175.2.https: Flags [S], seq 3235402973, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  33. 12:15:43.033234 A2    P   IP 10.1.1.133.52698 > 52.98.175.2.https: Flags [S], seq 1124242491, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  34. 12:15:43.033234 bridge0 In  IP 10.1.1.133.52698 > 52.98.175.2.https: Flags [S], seq 1124242491, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  35. 12:15:43.176748 A2    P   IP 10.1.1.133.52696 > 52.98.175.2.https: Flags [S], seq 3051362134, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  36. 12:15:43.176748 bridge0 In  IP 10.1.1.133.52696 > 52.98.175.2.https: Flags [S], seq 3051362134, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  37. 12:15:44.910955 A2    P   IP 10.1.1.133.52699 > 52.98.175.2.https: Flags [S], seq 2431211829, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  38. 12:15:44.910955 bridge0 In  IP 10.1.1.133.52699 > 52.98.175.2.https: Flags [S], seq 2431211829, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  39. 12:15:46.915289 A2    P   IP 10.1.1.133.52699 > 52.98.175.2.https: Flags [S], seq 2431211829, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  40. 12:15:46.915289 bridge0 In  IP 10.1.1.133.52699 > 52.98.175.2.https: Flags [S], seq 2431211829, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  41. 12:15:47.416828 A2    P   IP 10.1.1.133.60951 > 10.10.0.10.domain: 22934+ A? outlook.office365.com. (39)
  42. 12:15:47.416828 bridge0 In  IP 10.1.1.133.60951 > 10.10.0.10.domain: 22934+ A? outlook.office365.com. (39)
  43. 12:15:47.416857 tun1  Out IP 10.1.1.133.60951 > 10.10.0.10.domain: 22934+ A? outlook.office365.com. (39)
  44. 12:15:47.478796 tun1  In  IP 10.10.0.10.domain > 10.1.1.133.60951: 22934 7/0/0 CNAME ooc-g2.tm-4.office.com., CNAME outlook.ms-acdc.office.com., CNAME HHN-efz.ms-acdc.office.com., A 52.98.243.2, A 52.98.241.178, A 52.98.243.34, A 40.99.150.114 (188)
  45. 12:15:47.478808 bridge0 Out IP 10.10.0.10.domain > 10.1.1.133.60951: 22934 7/0/0 CNAME ooc-g2.tm-4.office.com., CNAME outlook.ms-acdc.office.com., CNAME HHN-efz.ms-acdc.office.com., A 52.98.243.2, A 52.98.241.178, A 52.98.243.34, A 40.99.150.114 (188)
  46. 12:15:47.478814 A2    Out IP 10.10.0.10.domain > 10.1.1.133.60951: 22934 7/0/0 CNAME ooc-g2.tm-4.office.com., CNAME outlook.ms-acdc.office.com., CNAME HHN-efz.ms-acdc.office.com., A 52.98.243.2, A 52.98.241.178, A 52.98.243.34, A 40.99.150.114 (188)
  47. 12:15:47.479821 A2    P   IP 10.1.1.133.52700 > 52.98.243.2.https: Flags [S], seq 3259068101, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  48. 12:15:47.479821 bridge0 In  IP 10.1.1.133.52700 > 52.98.243.2.https: Flags [S], seq 3259068101, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  49. 12:15:47.505477 A2    P   IP 10.1.1.133.52701 > 52.98.243.2.https: Flags [S], seq 419189295, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  50. 12:15:47.505477 bridge0 In  IP 10.1.1.133.52701 > 52.98.243.2.https: Flags [S], seq 419189295, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  51. 12:15:47.566188 tun1  Out IP sti10n-car-2.stillagrcar.com.37049 > 10.10.0.10.domain: 17644+ PTR? 2.243.98.52.in-addr.arpa. (42)
  52. 12:15:48.239087 A2    P   IP 10.1.1.133.50458 > 10.10.0.10.domain: 39739+ A? config.edge.skype.com. (39)
  53. 12:15:48.239087 bridge0 In  IP 10.1.1.133.50458 > 10.10.0.10.domain: 39739+ A? config.edge.skype.com. (39)
  54. 12:15:48.239132 tun1  Out IP 10.1.1.133.50458 > 10.10.0.10.domain: 39739+ A? config.edge.skype.com. (39)
  55. 12:15:48.239227 A2    P   IP 10.1.1.133.58574 > 10.10.0.10.domain: 35960+ Type65? config.edge.skype.com. (39)
  56. 12:15:48.239227 bridge0 In  IP 10.1.1.133.58574 > 10.10.0.10.domain: 35960+ Type65? config.edge.skype.com. (39)
  57. 12:15:48.239235 tun1  Out IP 10.1.1.133.58574 > 10.10.0.10.domain: 35960+ Type65? config.edge.skype.com. (39)
  58. 12:15:48.292838 tun1  In  IP 10.10.0.10.domain > 10.1.1.133.50458: 39739 5/0/0 CNAME config.edge.skype.com.trafficmanager.net., CNAME l-0007.config.skype.com., CNAME config-edge-skype.l-0007.l-msedge.net., CNAME l-0007.l-msedge.net., A 13.107.42.16 (199)
  59. 12:15:48.292848 bridge0 Out IP 10.10.0.10.domain > 10.1.1.133.50458: 39739 5/0/0 CNAME config.edge.skype.com.trafficmanager.net., CNAME l-0007.config.skype.com., CNAME config-edge-skype.l-0007.l-msedge.net., CNAME l-0007.l-msedge.net., A 13.107.42.16 (199)
  60. 12:15:48.292854 A2    Out IP 10.10.0.10.domain > 10.1.1.133.50458: 39739 5/0/0 CNAME config.edge.skype.com.trafficmanager.net., CNAME l-0007.config.skype.com., CNAME config-edge-skype.l-0007.l-msedge.net., CNAME l-0007.l-msedge.net., A 13.107.42.16 (199)
  61. 12:15:48.294748 tun1  In  IP 10.10.0.10.domain > 10.1.1.133.58574: 35960 4/1/0 CNAME config.edge.skype.com.trafficmanager.net., CNAME l-0007.config.skype.com., CNAME config-edge-skype.l-0007.l-msedge.net., CNAME l-0007.l-msedge.net. (240)
  62. 12:15:48.294752 bridge0 Out IP 10.10.0.10.domain > 10.1.1.133.58574: 35960 4/1/0 CNAME config.edge.skype.com.trafficmanager.net., CNAME l-0007.config.skype.com., CNAME config-edge-skype.l-0007.l-msedge.net., CNAME l-0007.l-msedge.net. (240)
  63. 12:15:48.294753 A2    Out IP 10.10.0.10.domain > 10.1.1.133.58574: 35960 4/1/0 CNAME config.edge.skype.com.trafficmanager.net., CNAME l-0007.config.skype.com., CNAME config-edge-skype.l-0007.l-msedge.net., CNAME l-0007.l-msedge.net. (240)
  64. 12:15:48.295462 A2    P   IP 10.1.1.133.52702 > 13.107.42.16.https: Flags [S], seq 1915487023, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  65. 12:15:48.295462 bridge0 In  IP 10.1.1.133.52702 > 13.107.42.16.https: Flags [S], seq 1915487023, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  66. 12:15:48.493031 A2    P   IP 10.1.1.133.52700 > 52.98.243.2.https: Flags [S], seq 3259068101, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  67. 12:15:48.493031 bridge0 In  IP 10.1.1.133.52700 > 52.98.243.2.https: Flags [S], seq 3259068101, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  68. 12:15:48.493321 A2    P   IP 10.1.1.133.52703 > 13.107.42.16.https: Flags [S], seq 1242784687, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  69. 12:15:48.493321 bridge0 In  IP 10.1.1.133.52703 > 13.107.42.16.https: Flags [S], seq 1242784687, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  70. 12:15:48.508955 A2    P   IP 10.1.1.133.52701 > 52.98.243.2.https: Flags [S], seq 419189295, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  71. 12:15:48.508955 bridge0 In  IP 10.1.1.133.52701 > 52.98.243.2.https: Flags [S], seq 419189295, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  72. 12:15:49.304311 A2    P   IP 10.1.1.133.52702 > 13.107.42.16.https: Flags [S], seq 1915487023, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  73. 12:15:49.304311 bridge0 In  IP 10.1.1.133.52702 > 13.107.42.16.https: Flags [S], seq 1915487023, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  74. 12:15:49.495690 A2    P   IP 10.1.1.133.52703 > 13.107.42.16.https: Flags [S], seq 1242784687, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  75. 12:15:49.495690 bridge0 In  IP 10.1.1.133.52703 > 13.107.42.16.https: Flags [S], seq 1242784687, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  76. 12:15:50.496325 A2    P   IP 10.1.1.133.52700 > 52.98.243.2.https: Flags [S], seq 3259068101, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  77. 12:15:50.496325 bridge0 In  IP 10.1.1.133.52700 > 52.98.243.2.https: Flags [S], seq 3259068101, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  78. 12:15:50.512281 A2    P   IP 10.1.1.133.52701 > 52.98.243.2.https: Flags [S], seq 419189295, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  79. 12:15:50.512281 bridge0 In  IP 10.1.1.133.52701 > 52.98.243.2.https: Flags [S], seq 419189295, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  80. 12:15:52.612296 tun1  Out IP sti10n-car-2.stillagrcar.com.37704 > 10.10.0.10.domain: 14144+ PTR? 16.42.107.13.in-addr.arpa. (43)
  81. 12:15:54.511265 A2    P   IP 10.1.1.133.52700 > 52.98.243.2.https: Flags [S], seq 3259068101, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  82. 12:15:54.511265 bridge0 In  IP 10.1.1.133.52700 > 52.98.243.2.https: Flags [S], seq 3259068101, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  83. 12:15:54.526681 A2    P   IP 10.1.1.133.52701 > 52.98.243.2.https: Flags [S], seq 419189295, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  84. 12:15:54.526681 bridge0 In  IP 10.1.1.133.52701 > 52.98.243.2.https: Flags [S], seq 419189295, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  85. 12:15:58.057558 A2    P   IP 10.1.1.133.52706 > 52.98.243.2.https: Flags [S], seq 1149929348, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  86. 12:15:58.057558 bridge0 In  IP 10.1.1.133.52706 > 52.98.243.2.https: Flags [S], seq 1149929348, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  87. 12:15:58.526355 A2    P   IP 10.1.1.133.52705 > 52.98.242.242.https: Flags [S], seq 3248556346, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  88. 12:15:58.526355 bridge0 In  IP 10.1.1.133.52705 > 52.98.242.242.https: Flags [S], seq 3248556346, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  89. 12:15:58.541844 A2    P   IP 10.1.1.133.52704 > 52.98.242.242.https: Flags [S], seq 404493714, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  90. 12:15:58.541844 bridge0 In  IP 10.1.1.133.52704 > 52.98.242.242.https: Flags [S], seq 404493714, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  91. 12:15:58.616164 tun1  Out IP sti10n-car-2.stillagrcar.com.60174 > 10.10.0.10.domain: 11185+ PTR? 242.242.98.52.in-addr.arpa. (44)
  92. 12:15:58.932463 A2    P   IP 10.1.1.133.52699 > 52.98.175.2.https: Flags [S], seq 2431211829, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  93. 12:15:58.932463 bridge0 In  IP 10.1.1.133.52699 > 52.98.175.2.https: Flags [S], seq 2431211829, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  94. 12:16:00.072994 A2    P   IP 10.1.1.133.52706 > 52.98.243.2.https: Flags [S], seq 1149929348, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  95. 12:16:00.072994 bridge0 In  IP 10.1.1.133.52706 > 52.98.243.2.https: Flags [S], seq 1149929348, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  96. 12:16:02.525870 A2    P   IP 10.1.1.133.52700 > 52.98.243.2.https: Flags [S], seq 3259068101, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  97. 12:16:02.525870 bridge0 In  IP 10.1.1.133.52700 > 52.98.243.2.https: Flags [S], seq 3259068101, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  98. 12:16:02.541469 A2    P   IP 10.1.1.133.52705 > 52.98.242.242.https: Flags [S], seq 3248556346, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  99. 12:16:02.541469 bridge0 In  IP 10.1.1.133.52705 > 52.98.242.242.https: Flags [S], seq 3248556346, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  100. 12:16:02.541469 A2    P   IP 10.1.1.133.52701 > 52.98.243.2.https: Flags [S], seq 419189295, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  101. 12:16:02.541469 bridge0 In  IP 10.1.1.133.52701 > 52.98.243.2.https: Flags [S], seq 419189295, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  102. 12:16:02.557071 A2    P   IP 10.1.1.133.52704 > 52.98.242.242.https: Flags [S], seq 404493714, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  103. 12:16:02.557071 bridge0 In  IP 10.1.1.133.52704 > 52.98.242.242.https: Flags [S], seq 404493714, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  104. 12:16:03.338291 A2    P   IP 10.1.1.133.52702 > 13.107.42.16.https: Flags [S], seq 1915487023, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  105. 12:16:03.338291 bridge0 In  IP 10.1.1.133.52702 > 13.107.42.16.https: Flags [S], seq 1915487023, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  106. 12:16:03.525749 A2    P   IP 10.1.1.133.52703 > 13.107.42.16.https: Flags [S], seq 1242784687, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  107. 12:16:03.525749 bridge0 In  IP 10.1.1.133.52703 > 13.107.42.16.https: Flags [S], seq 1242784687, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  108. 12:16:03.621224 A0    Out IP 192.168.8.135.40230 > dns.google.domain: 11185+ PTR? 242.242.98.52.in-addr.arpa. (44)
  109. 12:16:03.666861 A0    In  IP dns.google.domain > 192.168.8.135.40230: 11185 NXDomain 0/1/0 (130)
  110. 12:16:03.686083 tun1  Out IP sti10n-car-2.stillagrcar.com.35664 > 10.10.0.10.domain: 16053+ PTR? 8.8.8.8.in-addr.arpa. (38)
  111. 12:16:04.088200 A2    P   IP 10.1.1.133.52706 > 52.98.243.2.https: Flags [S], seq 1149929348, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  112. 12:16:04.088200 bridge0 In  IP 10.1.1.133.52706 > 52.98.243.2.https: Flags [S], seq 1149929348, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  113. 12:16:04.950704 A2    P   IP 10.1.1.133.52707 > 52.98.243.2.https: Flags [S], seq 3006907912, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  114. 12:16:04.950704 bridge0 In  IP 10.1.1.133.52707 > 52.98.243.2.https: Flags [S], seq 3006907912, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  115. 12:16:05.978656 A2    P   IP 10.1.1.133.52707 > 52.98.243.2.https: Flags [S], seq 3006907912, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  116. 12:16:05.978656 bridge0 In  IP 10.1.1.133.52707 > 52.98.243.2.https: Flags [S], seq 3006907912, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  117. 12:16:07.994093 A2    P   IP 10.1.1.133.52707 > 52.98.243.2.https: Flags [S], seq 3006907912, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  118. 12:16:07.994093 bridge0 In  IP 10.1.1.133.52707 > 52.98.243.2.https: Flags [S], seq 3006907912, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  119. 12:16:08.556808 A2    P   IP 10.1.1.133.52709 > 52.98.241.178.https: Flags [S], seq 1054166533, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  120. 12:16:08.556808 bridge0 In  IP 10.1.1.133.52709 > 52.98.241.178.https: Flags [S], seq 1054166533, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  121. 12:16:08.556808 A2    P   IP 10.1.1.133.52708 > 52.98.241.178.https: Flags [S], seq 3158762881, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  122. 12:16:08.556808 bridge0 In  IP 10.1.1.133.52708 > 52.98.241.178.https: Flags [S], seq 3158762881, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  123. 12:16:08.691137 A0    Out IP 192.168.8.135.40205 > dns.google.domain: 16053+ PTR? 8.8.8.8.in-addr.arpa. (38)
  124. 12:16:13.878144 tun1  Out IP sti10n-car-2.stillagrcar.com.50682 > 10.10.0.10.domain: 36516+ PTR? 178.241.98.52.in-addr.arpa. (44)
  125. 12:16:15.587109 A2    P   IP 10.1.1.133.52708 > 52.98.241.178.https: Flags [S], seq 3158762881, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  126. 12:16:15.587109 bridge0 In  IP 10.1.1.133.52708 > 52.98.241.178.https: Flags [S], seq 3158762881, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  127. 12:16:15.602690 A2    P   IP 10.1.1.133.52709 > 52.98.241.178.https: Flags [S], seq 1054166533, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  128. 12:16:15.602690 bridge0 In  IP 10.1.1.133.52709 > 52.98.241.178.https: Flags [S], seq 1054166533, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  129. 12:16:16.571966 A2    P   IP 10.1.1.133.52710 > 52.98.152.178.https: Flags [S], seq 2005810540, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  130. 12:16:16.571966 bridge0 In  IP 10.1.1.133.52710 > 52.98.152.178.https: Flags [S], seq 2005810540, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  131. 12:16:16.587426 A2    P   IP 10.1.1.133.52711 > 52.98.152.178.https: Flags [S], seq 3032756068, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  132. 12:16:16.587426 bridge0 In  IP 10.1.1.133.52711 > 52.98.152.178.https: Flags [S], seq 3032756068, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  133. 12:16:17.587704 A2    P   IP 10.1.1.133.52710 > 52.98.152.178.https: Flags [S], seq 2005810540, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  134. 12:16:17.587704 bridge0 In  IP 10.1.1.133.52710 > 52.98.152.178.https: Flags [S], seq 2005810540, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  135. 12:16:17.603306 A2    P   IP 10.1.1.133.52711 > 52.98.152.178.https: Flags [S], seq 3032756068, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  136. 12:16:17.603306 bridge0 In  IP 10.1.1.133.52711 > 52.98.152.178.https: Flags [S], seq 3032756068, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  137. 12:16:18.119381 A2    P   IP 10.1.1.133.52712 > 52.98.241.178.https: Flags [S], seq 965524954, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  138. 12:16:18.119381 bridge0 In  IP 10.1.1.133.52712 > 52.98.241.178.https: Flags [S], seq 965524954, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  139. 12:16:18.883219 A0    Out IP 192.168.8.135.33147 > dns.google.domain: 36516+ PTR? 178.241.98.52.in-addr.arpa. (44)
  140. 12:16:18.920347 A0    In  IP dns.google.domain > 192.168.8.135.33147: 36516 NXDomain 0/1/0 (130)
  141. 12:16:18.920612 tun1  Out IP sti10n-car-2.stillagrcar.com.34155 > 10.10.0.10.domain: 53016+ PTR? 178.152.98.52.in-addr.arpa. (44)
  142. 12:16:19.135242 A2    P   IP 10.1.1.133.52712 > 52.98.241.178.https: Flags [S], seq 965524954, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  143. 12:16:19.135242 bridge0 In  IP 10.1.1.133.52712 > 52.98.241.178.https: Flags [S], seq 965524954, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  144. 12:16:19.604136 A2    P   IP 10.1.1.133.52710 > 52.98.152.178.https: Flags [S], seq 2005810540, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  145. 12:16:19.604136 bridge0 In  IP 10.1.1.133.52710 > 52.98.152.178.https: Flags [S], seq 2005810540, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  146. 12:16:19.619736 A2    P   IP 10.1.1.133.52711 > 52.98.152.178.https: Flags [S], seq 3032756068, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  147. 12:16:19.619736 bridge0 In  IP 10.1.1.133.52711 > 52.98.152.178.https: Flags [S], seq 3032756068, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  148. 12:16:20.026178 A2    P   IP 10.1.1.133.52707 > 52.98.243.2.https: Flags [S], seq 3006907912, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  149. 12:16:20.026178 bridge0 In  IP 10.1.1.133.52707 > 52.98.243.2.https: Flags [S], seq 3006907912, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  150. 12:16:21.135277 A2    P   IP 10.1.1.133.61948 > 10.10.0.10.domain: 49415+ A? winatp-gw-neu3.microsoft.com. (46)
  151. 12:16:21.135277 bridge0 In  IP 10.1.1.133.61948 > 10.10.0.10.domain: 49415+ A? winatp-gw-neu3.microsoft.com. (46)
  152. 12:16:21.135320 tun1  Out IP 10.1.1.133.61948 > 10.10.0.10.domain: 49415+ A? winatp-gw-neu3.microsoft.com. (46)
  153. 12:16:21.151562 A2    P   IP 10.1.1.133.52712 > 52.98.241.178.https: Flags [S], seq 965524954, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  154. 12:16:21.151562 bridge0 In  IP 10.1.1.133.52712 > 52.98.241.178.https: Flags [S], seq 965524954, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  155. 12:16:24.245172 A2    P   IP 10.1.1.133.52713 > 20.82.152.243.https: Flags [S], seq 3438632373, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  156. 12:16:24.245172 bridge0 In  IP 10.1.1.133.52713 > 20.82.152.243.https: Flags [S], seq 3438632373, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  157. 12:16:24.256141 tun1  Out IP sti10n-car-2.stillagrcar.com.51909 > 10.10.0.10.domain: 34165+ PTR? 243.152.82.20.in-addr.arpa. (44)
  158. 12:16:25.166956 A2    P   IP 10.1.1.133.52712 > 52.98.241.178.https: Flags [S], seq 965524954, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  159. 12:16:25.166956 bridge0 In  IP 10.1.1.133.52712 > 52.98.241.178.https: Flags [S], seq 965524954, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  160. 12:16:25.704520 A2    P   IP 10.1.1.133.52936 > 10.10.0.10.domain: 37804+ A? login.microsoftonline.com. (43)
  161. 12:16:25.704520 bridge0 In  IP 10.1.1.133.52936 > 10.10.0.10.domain: 37804+ A? login.microsoftonline.com. (43)
  162. 12:16:25.704563 tun1  Out IP 10.1.1.133.52936 > 10.10.0.10.domain: 37804+ A? login.microsoftonline.com. (43)
  163. 12:16:25.783541 tun1  In  IP 10.10.0.10.domain > 10.1.1.133.52936: 37804 11/0/0 CNAME login.mso.msidentity.com., CNAME ak.privatelink.msidentity.com., CNAME www.tm.ak.prd.aadg.trafficmanager.net., A 40.126.31.73, A 20.190.159.23, A 20.190.159.73, A 20.190.159.4, A 20.190.159.71, A 20.190.159.64, A 20.190.159.0, A 20.190.159.2 (286)
  164. 12:16:25.783555 bridge0 Out IP 10.10.0.10.domain > 10.1.1.133.52936: 37804 11/0/0 CNAME login.mso.msidentity.com., CNAME ak.privatelink.msidentity.com., CNAME www.tm.ak.prd.aadg.trafficmanager.net., A 40.126.31.73, A 20.190.159.23, A 20.190.159.73, A 20.190.159.4, A 20.190.159.71, A 20.190.159.64, A 20.190.159.0, A 20.190.159.2 (286)
  165. 12:16:25.783561 A2    Out IP 10.10.0.10.domain > 10.1.1.133.52936: 37804 11/0/0 CNAME login.mso.msidentity.com., CNAME ak.privatelink.msidentity.com., CNAME www.tm.ak.prd.aadg.trafficmanager.net., A 40.126.31.73, A 20.190.159.23, A 20.190.159.73, A 20.190.159.4, A 20.190.159.71, A 20.190.159.64, A 20.190.159.0, A 20.190.159.2 (286)
  166. 12:16:25.785216 A2    P   IP 10.1.1.133.52714 > 40.126.31.73.https: Flags [S], seq 234757718, win 65535, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  167. 12:16:25.785216 bridge0 In  IP 10.1.1.133.52714 > 40.126.31.73.https: Flags [S], seq 234757718, win 65535, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  168. 12:16:26.042061 A2    P   IP 10.1.1.133.52715 > 52.98.241.178.https: Flags [S], seq 4289402552, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  169. 12:16:26.042061 bridge0 In  IP 10.1.1.133.52715 > 52.98.241.178.https: Flags [S], seq 4289402552, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  170. 12:16:26.791811 A2    P   IP 10.1.1.133.52714 > 40.126.31.73.https: Flags [S], seq 234757718, win 65535, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  171. 12:16:26.791811 bridge0 In  IP 10.1.1.133.52714 > 40.126.31.73.https: Flags [S], seq 234757718, win 65535, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  172. 12:16:27.057398 A2    P   IP 10.1.1.133.52715 > 52.98.241.178.https: Flags [S], seq 4289402552, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  173. 12:16:27.057398 bridge0 In  IP 10.1.1.133.52715 > 52.98.241.178.https: Flags [S], seq 4289402552, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  174. 12:16:29.308893 tun1  Out IP sti10n-car-2.stillagrcar.com.41538 > 10.10.0.10.domain: 19361+ PTR? 73.31.126.40.in-addr.arpa. (43)
  175. 12:16:29.619910 A2    P   IP 10.1.1.133.52716 > 52.98.243.34.https: Flags [S], seq 2796677569, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  176. 12:16:29.619910 bridge0 In  IP 10.1.1.133.52716 > 52.98.243.34.https: Flags [S], seq 2796677569, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  177. 12:16:29.635402 A2    P   IP 10.1.1.133.52717 > 52.98.243.34.https: Flags [S], seq 2138040565, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  178. 12:16:29.635402 bridge0 In  IP 10.1.1.133.52717 > 52.98.243.34.https: Flags [S], seq 2138040565, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  179. 12:16:30.635191 A2    P   IP 10.1.1.133.52717 > 52.98.243.34.https: Flags [S], seq 2138040565, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  180. 12:16:30.635191 bridge0 In  IP 10.1.1.133.52717 > 52.98.243.34.https: Flags [S], seq 2138040565, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  181. 12:16:30.635191 A2    P   IP 10.1.1.133.52716 > 52.98.243.34.https: Flags [S], seq 2796677569, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  182. 12:16:30.635191 bridge0 In  IP 10.1.1.133.52716 > 52.98.243.34.https: Flags [S], seq 2796677569, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  183. 12:16:31.650717 A2    P   IP 10.1.1.133.52711 > 52.98.152.178.https: Flags [S], seq 3032756068, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  184. 12:16:31.650717 bridge0 In  IP 10.1.1.133.52711 > 52.98.152.178.https: Flags [S], seq 3032756068, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  185. 12:16:31.650717 A2    P   IP 10.1.1.133.52710 > 52.98.152.178.https: Flags [S], seq 2005810540, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  186. 12:16:31.650717 bridge0 In  IP 10.1.1.133.52710 > 52.98.152.178.https: Flags [S], seq 2005810540, win 64240, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0
  187. 12:16:34.361849 tun1  Out IP sti10n-car-2.stillagrcar.com.33949 > 10.10.0.10.domain: 50901+ PTR? 34.243.98.52.in-addr.arpa. (43)
  188. 12:16:35.160872 A2    P   IP 10.1.1.133.52936 > 10.10.0.10.domain: 3606+ A? client.wns.windows.com. (40)
  189. 12:16:35.160872 bridge0 In  IP 10.1.1.133.52936 > 10.10.0.10.domain: 3606+ A? client.wns.windows.com. (40)
  190. 12:16:35.160913 tun1  Out IP 10.1.1.133.52936 > 10.10.0.10.domain: 3606+ A? client.wns.windows.com. (40)
  191. 12:16:35.194533 A2    P   IP 10.1.1.133.52100 > 10.10.0.10.domain: 49276+ A? wpad.kundendomain.de. (38)
  192. 12:16:35.194533 bridge0 In  IP 10.1.1.133.52100 > 10.10.0.10.domain: 49276+ A? wpad.kundendomain.de. (38)
  193. 12:16:35.194546 tun1  Out IP 10.1.1.133.52100 > 10.10.0.10.domain: 49276+ A? wpad.kundendomain.de. (38)
  194. 12:16:35.195523 A2    P   IP 10.1.1.133.60058 > 10.10.0.10.domain: 61972+ A? wpad.kundendomain.de. (38)
  195. 12:16:35.195523 bridge0 In  IP 10.1.1.133.60058 > 10.10.0.10.domain: 61972+ A? wpad.kundendomain.de. (38)
  196. 12:16:35.195528 tun1  Out IP 10.1.1.133.60058 > 10.10.0.10.domain: 61972+ A? wpad.kundendomain.de. (38)
  197. 12:16:35.198776 A2    P   IP 10.1.1.133.52153 > 10.10.0.10.domain: 17942+ A? assets.msn.com. (32)
  198. 12:16:35.198776 bridge0 In  IP 10.1.1.133.52153 > 10.10.0.10.domain: 17942+ A? assets.msn.com. (32)
  199. 12:16:35.198782 tun1  Out IP 10.1.1.133.52153 > 10.10.0.10.domain: 17942+ A? assets.msn.com. (32)
  200. 12:16:35.215556 tun1  In  IP 10.10.0.10.domain > 10.1.1.133.52936: 3606 2/0/0 CNAME wns.notify.trafficmanager.net., A 40.113.110.67 (99)
  201. 12:16:35.215567 bridge0 Out IP 10.10.0.10.domain > 10.1.1.133.52936: 3606 2/0/0 CNAME wns.notify.trafficmanager.net., A 40.113.110.67 (99)
  202. 12:16:35.215573 A2    Out IP 10.10.0.10.domain > 10.1.1.133.52936: 3606 2/0/0 CNAME wns.notify.trafficmanager.net., A 40.113.110.67 (99)
captcha