2016-08-15 16:15:47.762141 IP 192.168.4.199.49320 > 204.93.232.121.80: Flags [P.], seq 1:326, ack 1, win 16475, length 325: HTTP: GET / HTTP/1.1 E..m..@…p_…..].y…P%.{.WhI9P.@[B…GET / HTTP/1.1 Accept: text/html, application/xhtml+xml, */* Accept-Language: en-US User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; Trident/7.0; rv:11.0) like Gecko Accept-Encoding: gzip, deflate Host: laspecialty.com Connection: Keep-Alive Cookie: c2b1b4c39b7f3382005f891501443e28=36645e4282139cae3eee4e1b46cf68f7 — 2016-08-15 16:15:49.603587 IP 192.168.4.199.49322 > 185.158.152.195.80: Flags [.], ack 1, win 16475, length 0 E..(..@…………….PyO0.q..NP.@[………. 2016-08-15 16:15:49.603744 IP 192.168.4.199.49322 > 185.158.152.195.80: Flags [P.], seq 1:474, ack 1, win 16475, length 473: HTTP : GET /?xXqKd7CULhrICYA=l3SKfPrfJxzFGMSUb-nJDa9BMEXCRQLPh4SGhKrXCJ-ofSih17OIFxzsmTu2KV_OpqxveN0SZFSOzQfZPVQlyZAdChoB_Oqki0vHjUnH1 cmQ9laHYghP7ZXHHeU-iVvxybAdc810kROD7zRVzr9PUQlF6AoSnazJBKqE HTTP/1.1 E…..@….*………..PyO0.q..NP.@[….GET /?xXqKd7CULhrICYA=l3SKfPrfJxzFGMSUb-nJDa9BMEXCRQLPh4SGhKrXCJ-ofSih17OIFxzsmTu2KV_Opqx veN0SZFSOzQfZPVQlyZAdChoB_Oqki0vHjUnH1cmQ9laHYghP7ZXHHeU-iVvxybAdc810kROD7zRVzr9PUQlF6AoSnazJBKqE HTTP/1.1 Accept: text/html, application/xhtml+xml, */* Referer: http://laspecialty.com/ Accept-Language: en-US User-Agent: Mozilla/5.0 […]