2016-06-23 20:06:29.966522 IP 192.168.2.187.49207 > 46.30.46.170.80: Flags [P.], seq 474:1160, ack 3301, win 16387, length 686: HTTP: GET /index.php?wXqBcrWVKhnGD4E=l3SMfPrfJxzFGMSUb-nJDa9BMEXCRQLPh4SGhKrXCJ-ofSih17OIFxzsmTu2KV_OpqxveN0SZFSOzQfZPVQlyZAdChoB_Oqki0vHjUnH1cmQ9laHYghP7cSSR-Qy0Vr9muAVdZgvwkfU4TcCyr9LA1kQ5l8Wza-eBKqKp0N6RgBnEB_CbJQlqw-BF3H6PXl5gv2pHn4oieWX_P5xl9o HTTP/1.1 E…..@…._………7.P…2u..fP.@.”8..GET /index.php?wXqBcrWVKhnGD4E=l3SMfPrfJxzFGMSUb-nJDa9BMEXCRQLPh4SGhKrXCJ-ofSih17OIFxzsmTu2KV_OpqxveN0SZFSOzQfZPVQlyZAdChoB_Oqki0vHjUnH1cmQ9laHYghP7cSSR-Qy0Vr9muAVdZgvwkfU4TcCyr9LA1kQ5l8Wza-eBKqKp0N6RgBnEB_CbJQlqw-BF3H6PXl5gv2pHn4oieWX_P5xl9o HTTP/1.1 Accept: */* Referer: http://cv.sertomaartscenter.com/?wXqBcrWVKhnGD4E=l3SKfPrfJxzFGMSUb-nJDa9BMEXCRQLPh4SGhKrXCJ-ofSih17OIFxzsmTu2KV_OpqxveN0SZFSOzQfZPVQlyZAdChoB_Oqki0vHjUnH1cmQ9laHYghP7cSSR-Qy0Vr9muAVdZgvwkfU4TcCyr9LA1kQ5l8Wza-eBKqE Accept-Language: en-US User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; Trident/7.0; rv:11.0) like Gecko Accept-Encoding: gzip, deflate Host: cv.sertomaartscenter.com Connection: Keep-Alive 2016-06-23 20:06:30.300453 IP 46.30.46.170.80 > 192.168.2.187.49207: Flags [.], ack 1160, win 34, length 0 E..(F6@.3..n………P.7u..f….P..”…. 2016-06-23 20:06:30.581358 IP 46.30.46.170.80 > 192.168.2.187.49207: Flags [.], seq 3301:4651, ack 1160, win 34, length 1350: HTTP: HTTP/1.1 200 OK E..nF7@.3..’………P.7u..f….P..”.d..HTTP/1.1 200 OK Server: nginx/1.6.2 Date: Fri, 24 Jun 2016 00:06:36 GMT Content-Type: application/x-shockwave-flash Content-Length: 21772 Connection: keep-alive 2016-06-23 […]